Configuring the vSphere Native Key Provider and vSAN Encryption with vSphere/vSAN 7.0u2

preview_player
Показать описание
In this demo, I am going to show you how to configure the vSphere Native Key Provider and how to enable vSAN data-at-rest and data-in-transit encryption for vSAN/vSphere 7.0 Update 2. The Native Key Provider enables you to configure encryption without the need for a 3rd party key management system, especially useful in edge deployments or smaller environments!
Рекомендации по теме
Комментарии
Автор

Hi.
what happens when you configure native key provider to the existing infrastructure with VM's ?

Haresafshan
Автор

So we have been recently receiving requests for vSAN encryption and have been leveraging CloudLink.. Most of our customers are on VxRail with embedded vCenters. Are there any "gotchas" to be aware of with vSphere Native Key Provider?

slimchachi
Автор

Hi, I have a few queries on VSAN encryption,
If encryption is enabled on the existing VSAN DC cluster,
1. There are TBs of existing data, how much time will it take for rolling reformat of disks?
2. Also, if VMs are replicated (Using Dell RP4VM) from DC to DR site, what must be configured on DR site? Do we need to enable encryption on the DR site too and add the same KMS server?

hrishipradhananga
Автор

What happens if I lose access to my vCenter? What is the performance impact when this is enabled?

readysetmoses