Data Storage Basics, Explained in Plain English

9 concepts · 4 comparisons · 9 updated this month

Data storage basics in plain English: types of storage, HDD vs SSD, DAS, NAS and SAN, file, block and object storage, RAID levels, cloud and backup.

3-2-1the backup rule
RAID 10the safe default
iSCSIblock over Ethernet
4Ksector size on modern drives
In this guide

Data storage basics, from a single drive to shared storage

Data storage basics answer four questions about any piece of data: what it is stored on, how a computer reaches it, how it survives a failure, and how it comes back after a disaster. A laptop drive, a NAS in an office closet and a cloud bucket are all answers to the same four questions, at different scales.

This guide covers the storage fundamentals in the order they build on each other: what data storage is, the types of storage, the devices, direct-attached versus network storage, file, block and object storage, RAID, performance, backup, and how to choose. Each section links to a full page in this library.

DefinitionWhat is data storage?

Data storage is the recording of digital information on a medium so that it can be read back later. Everything is stored as bits, grouped into bytes, and capacity is counted in multiples of bytes: a gigabyte is a billion bytes, a terabyte is a thousand gigabytes.

Drive makers count in powers of ten and operating systems often count in powers of two, which is why a 1 TB drive shows up as about 931 GB.

The first distinction is between memory and storage:

  • Primary storage is memory the processor works in directly: RAM and cache. It is very fast and volatile, which means it loses its contents when the power goes off.
  • Secondary storage holds data permanently: hard drives, solid-state drives and tape. It is slower, far larger and non-volatile.

When people say storage, they almost always mean secondary storage, and that is what the rest of this guide covers.

StakesWhy data storage matters

An organization's data is usually worth more than the devices it is stored on. Customer files, accounting records, email and designs cannot be bought again, so the decisions about where to store information, who can access it and how many copies exist are business decisions as much as technical ones.

Good storage keeps data available to the people who need it, keeps it from everyone else, and keeps the cost of both under control.

MechanicsHow data storage works

Every storage device does the same two things: it writes data when an application saves, and it reads data back when an application asks. What differs is how the device finds the right location, and how long that takes.

  1. The application asks the operating system to store or open a file.
  2. The file system translates the file name into the locations on the device where the data lives.
  3. The controller sends the request over an interface: SATA or SAS for most drives, NVMe for fast flash, or a network for shared storage.
  4. The device reads or writes the data. A hard disk moves a head across a spinning platter to reach it, which takes milliseconds; flash storage addresses it electronically, which takes microseconds.

That difference in access time is the reason the types of storage devices behave so differently under load, and the reason the same data is often kept on more than one type: fast storage for what is in use, cheaper storage for what is kept.

OverviewTypes of data storage

Storage is classified in three independent ways, and most of the confusion comes from mixing them up. A single system has an answer to each.

QuestionOptionsDecides
What medium?Hard disk, solid-state, tape, opticalSpeed, cost per terabyte, lifespan
How is it attached?Direct-attached (DAS), network-attached (NAS), storage area network (SAN), cloudWho can reach it, and how it is shared
How is data addressed?File, block, objectWhat kind of application it suits

MediaStorage devices: HDD, SSD and tape

The choice of medium is a trade between speed and cost per terabyte.

DeviceHow it stores dataStrengthBest for
Hard disk drive (HDD)Magnetic platters that spin under a moving headLowest cost per terabyte of any online mediumBulk capacity, backup targets, archives
Solid-state drive (SSD), SATAFlash memory, no moving partsFar faster than a hard disk, silent, shock resistantOperating systems and everyday workloads
NVMe SSDFlash memory attached over PCIe instead of SATAThe fastest option, with very low latencyDatabases, virtual machines, anything that waits on disk
Tape (LTO)Magnetic tape in removable cartridgesCheap, durable, and offline by natureLong-term archive and ransomware-proof backup copies

Smaller storage devices fill the gaps: external USB drives for a simple local backup, USB flash drives and SD cards for moving files between devices, and optical discs, now rare, for distribution and long-term archives. They are convenient and easy to lose, so anything sensitive stored on a portable device should be encrypted.

The SSD vs HDD page compares the two in detail, including how each one fails. How a drive is divided and booted is a separate question, covered in MBR vs GPT: MBR is limited to 2 TB and four primary partitions, which is why modern systems use GPT.

On top of the partitions sits a file system, which tracks where each file lives: NTFS on Windows, ext4 and XFS on Linux, APFS on a Mac, and ZFS where data integrity matters most.

AttachmentDAS, NAS and SAN: how storage is attached

How storage connects to the computers that use it decides who can share it.

TypeWhat it isShared?Typical use
DAS, direct-attached storageDrives inside or plugged directly into one computerNo, one machine onlyA workstation, a single server, an external backup drive
NAS, network-attached storageA storage appliance that shares folders over the ordinary networkYes, as filesOffice file shares, home media, backup targets
SAN, storage area networkA dedicated network that presents raw disks to serversYes, as blocksVirtualization clusters and databases
Cloud storageCapacity rented from a provider and reached over the internetYes, from anywhereOff-site backup, archives, application data

A NAS speaks file protocols, SMB for Windows and NFS for Linux, so a user sees a shared folder. A SAN speaks block protocols, iSCSI or Fibre Channel, so a server sees what looks like a local disk. NAS vs SAN explains when each is the right answer, and SMB port 445 covers the protocol most office file sharing runs on.

CloudCloud storage

Cloud storage is capacity in a provider's data centers, rented by the gigabyte and reached over the internet. Users access files from any device, the provider replaces failed hardware, and capacity grows without a purchase order. It comes in three deployment models:

  • Public cloud: shared infrastructure from a provider such as AWS, Microsoft Azure or Google Cloud. The lowest cost to start and the easiest to scale.
  • Private cloud: the same technology on infrastructure dedicated to one organization, for data that must stay under its control.
  • Hybrid cloud: a mix, typically keeping active files on local storage and sending backups and archives to the cloud.

Two things surprise people. The first is cost: storing data in the cloud is cheap, but reading it back out can carry a retrieval or egress charge, and the cheapest archive tiers take hours to return a file.

The second is responsibility: the provider secures the platform, while access, permissions, sharing links and a second copy remain the customer's job. File sync services such as OneDrive are storage, not backup; OneDrive vs SharePoint explains what each one is for.

AccessFile, block and object storage

The third classification is how data is addressed, and it determines which applications a storage system suits.

  • File storage organizes data as files in folders, with a path to each one. It is what people expect, and it is what a NAS provides. It struggles when there are billions of files.
  • Block storage splits data into fixed-size blocks with no structure of their own; the server's file system gives them meaning. It is the fastest form, so it backs databases and virtual machine disks, and it is what a SAN and cloud volumes provide.
  • Object storage keeps each item as an object with its data, its metadata and a unique ID in one flat pool, reached over HTTP. It scales almost without limit and is cheap, so it holds backups, media and archives. Amazon S3 is the familiar example.

RedundancyRAID basics: surviving a drive failure

RAID combines several drives so that the failure of one does not lose data or stop the system. The common levels trade capacity against protection and speed:

LevelHow it worksMinimum drivesSurvivesUsable capacity
RAID 0Striping, data split across drives2Nothing; one failure loses everythingAll of it
RAID 1Mirroring, every drive holds a full copy2One driveHalf
RAID 5Striping with one drive's worth of parity3One driveAll but one drive
RAID 6Striping with two drives' worth of parity4Two drivesAll but two drives
RAID 10Mirrored pairs, striped together4One drive in each pairHalf

RAID 5 vs RAID 10 covers the choice most people actually face, including why rebuild times on large drives have pushed many toward RAID 6 or RAID 10.

The rule that matters most: RAID is not a backup. It protects against a failed drive. It does nothing about a deleted file, a corrupted database, ransomware, a fire or a mistake, because every one of those is faithfully copied to all the drives at once.

PerformanceStorage performance: IOPS, throughput and latency

Three numbers describe how fast storage is, and they measure different things:

  • IOPS: input/output operations per second, the count of small reads and writes a device can handle. It matters for databases and virtual machines.
  • Throughput: the volume of data moved per second, in megabytes. It matters for backups, video and large file copies.
  • Latency: the delay before a single operation completes. It is what a user feels as responsiveness.

A hard disk has respectable throughput and poor IOPS, because the head must physically move for each random read. An SSD improves IOPS and latency by orders of magnitude, which is why moving a slow server to flash often fixes it outright.

ProtectionBackup and recovery basics

A backup is a separate copy of data, kept somewhere the original's problems cannot reach, from which the data can be restored. The standard to aim for is the 3-2-1 backup rule: three copies of the data, on two different media, with one copy off-site.

  • Full, incremental and differential: a full backup copies everything; an incremental copies what changed since the last backup of any kind; a differential copies what changed since the last full.
  • Snapshots are not backups when they live on the same system as the data. They are a fast way to undo a change, and they die with the array.
  • RPO and RTO: the recovery point objective is how much data you can afford to lose; the recovery time objective is how long you can afford to be down. Those two numbers decide the backup design and its cost.
  • Immutability: ransomware looks for backups first. A copy that cannot be altered or deleted for a set period, described on the immutable backups page, is the defense.
  • Test the restore. A backup that has never been restored is an assumption.

The wider planning, including failover and the order in which systems come back, is covered in backup and disaster recovery.

SecurityData storage security

Stored data needs protecting from the people who should not read it as much as from hardware failure.

  • Encryption at rest makes a stolen drive or a lost laptop unreadable. Most NAS devices, cloud services and operating systems offer it; it only has to be turned on.
  • Access control limits each share and folder to the groups that need it, with permissions given to groups and not to individuals.
  • Secure disposal matters at the end of a drive's life. Deleting files does not remove the data; a drive should be securely erased or physically destroyed before it leaves the building.
  • Audit logs record who accessed or deleted what, which is often a compliance requirement for regulated information.

DecisionsHow to choose a data storage solution

Work through these in order and the answer usually falls out:

  1. How much data, and how fast is it growing? Size for three years, not for today.
  2. Who needs to reach it? One machine means DAS; an office means a NAS; a virtualization cluster means a SAN or shared block storage.
  3. How fast must it be? Databases and virtual machines need flash; archives and backups do not.
  4. What does losing it cost? That sets the RAID level, the backup schedule and whether an off-site copy is optional. It is not.
  5. How sensitive is it? Sensitive data needs encryption at rest, such as BitLocker or FileVault on endpoints, and access control on shares.
  6. Who will run it? Cloud storage moves the hardware work to a provider in exchange for a monthly bill and a dependency on the internet link.

In practiceData storage solutions for a business

Three setups cover most small and midsize organizations, and each is a combination of the types of storage described above:

  • A small office: files in a cloud storage service or on a small NAS with mirrored drives, backed up nightly to a second device and to the cloud. No servers to look after.
  • A growing office: a NAS or file server with RAID 6 for shared data, flash storage for the applications that need speed, and backup software that keeps a local copy for fast restores and an off-site copy for disasters.
  • A virtualized environment: shared block storage, a SAN or a hyperconverged cluster, so that virtual machines can move between hosts, with snapshots for quick rollback and an immutable backup copy outside the cluster. The virtualization library covers the compute side.

The right data storage solution is the simplest one that meets the capacity, speed and recovery targets, because every extra device is something else to patch, monitor and secure.

GlossaryStorage terms worth knowing

The data storage basics above lean on a small vocabulary. These are the terms that come up in every storage conversation:

  • Volume: a usable storage area with a file system on it, which may span part of a drive or many drives.
  • LUN: a logical unit number, the name for a block device a SAN presents to a server.
  • Thin provisioning: promising more capacity than physically exists and allocating it only as data is written.
  • Deduplication: storing identical blocks once, which shrinks backups considerably.
  • Hot, cool and archive tiers: cloud storage classes priced by how often the data is read; the colder the tier, the cheaper to keep and the dearer to retrieve.
  • Hot spare: an idle drive in an array that takes over automatically when another fails.
  • Bit rot: silent corruption of stored data over time, which checksumming file systems such as ZFS detect and repair.

How to read the storage silo

Data storage basics in plain English: types of storage, HDD vs SSD, DAS, NAS and SAN, file, block and object storage, RAID levels, cloud and backup.

  • Start with the concepts at the top, in order. They take about an hour together and everything else refers back to them.
  • Use the index by topic. Each group maps to a chapter of the common certification outlines.
  • Go straight to the troubleshooting group. Each page has a checklist at the top.
  • The comparison pages end with a decision chooser and link to the companies listed in the directory that deploy them.

Storage questions we get most

Short answers here, full pages one click away.

What are the basics of data storage?

Four questions: what medium the data sits on (hard disk, SSD, tape), how it is attached (directly, over the network as a NAS or SAN, or in the cloud), how it survives a drive failure (RAID), and how it comes back after a disaster (backup). Every storage system is an answer to those four.

What are the main types of data storage?

By attachment: direct-attached storage, network-attached storage, a storage area network and cloud storage. By how data is addressed: file, block and object storage. By medium: hard disk, solid-state and tape. A real system has one answer from each list.

What is the difference between memory and storage?

Memory, or RAM, is fast working space that loses its contents when the power goes off. Storage, such as an SSD or hard disk, is slower, much larger, and keeps data permanently.

Is RAID a backup?

No. RAID keeps a system running when a disk fails. It does nothing about deletion, ransomware, fire or a bad update, which are what backups are for.

How many copies of my data do I need?

Three copies, on two different kinds of media, with one off site. That is the 3-2-1 rule, and the backup pages explain how to meet it on a small budget.

What is the difference between NAS and SAN?

A NAS shares folders over the ordinary network using file protocols such as SMB and NFS. A SAN is a dedicated network that presents raw block devices to servers, which see them as local disks. A NAS suits file sharing; a SAN suits virtualization and databases.

Should I buy SSDs or hard disks for a NAS?

Hard disks for capacity and sequential work, SSDs for virtual machines and databases. Many small offices run hard disks with an SSD cache and get most of the benefit.

What is the difference between file, block and object storage?

File storage keeps data as files in folders. Block storage splits it into raw blocks that a server formats itself, which is the fastest form. Object storage keeps each item with its metadata in a flat pool reached over HTTP, which scales furthest and costs least.

Which RAID level should I use?

RAID 1 for two drives, RAID 6 or RAID 10 for larger arrays. RAID 5 tolerates only one failure, and on large drives a second failure during the long rebuild is a real risk. RAID 0 has no protection at all.

What do IOPS, throughput and latency mean?

IOPS counts small operations per second and matters for databases. Throughput is the volume of data per second and matters for backups and video. Latency is the delay on one operation and is what users feel. An SSD beats a hard disk most on IOPS and latency.

Is cloud storage safer than local storage?

It removes hardware failure and site disasters from your list and adds account compromise and dependence on the internet link. The provider protects the platform; protecting the account and keeping a second copy is still your job.

How long do hard drives and SSDs last?

Both are usually replaced on a schedule of a few years in business use, before they fail. Hard disks wear mechanically; SSDs wear by the amount written. Neither gives reliable warning, which is the reason for RAID and backups.

Other silos

One packet a weekA short, illustrated explainer every Tuesday. No vendor pitches, unsubscribe in one click.