An administrator wants to enable encryption on an existing vSAN cluster that already contains virtual machines. Which additional step should the administrator take to ensure no data is lost during the encryption process?
Select an option, then click Submit answer.
Reference / correct answer:
Make vCenter Server trust the KMS, either by trusting the KMS or by uploading a KMS certificate.
Most accepted answer: B. Make vCenter Server trust the KMS, either by trusting the KMS or by uploading a KMS certificate.
Community votes: A=1, B=2
Selected Answer: B B As per my previous answer upvoted 6 times
Answer is B. https://docs.vmware.com/en/VMware-vSphere/7.0/com.vmware.vsphere.vsan.doc/GUID-E7CA36B7-D7EB-423A-ADD1-7E410E36F5A7.html upvoted 2 times
i think its A https://blogs.vmware.com/virtualblocks/2018/07/16/ve-erase-disks-before-use/ upvoted 2 times
Selected Answer: A I'm going with A. I don't like this question at all. None of them really have anything to do with data not being lost, but ideally you want to wipe the disk if you're encrypting it so that all old data is also encrypted (otherwise, only new data will be encrypted). upvoted 2 times
Answer:A Recommendations for “Erase disks before use” when using vSAN Encryption are: Select “Erase disks before use” When enabling vSAN Encryption for existing vSAN clusters that have vSAN objects on them When adding a host that has data on local devices to an encrypted vSAN cluster When performing a rekey operation to invoke a deep rekey (requesting a new KEK and new unique DEKs created for each vSAN storage device) https://blogs.vmware.com/virtualblocks/2018/07/16/ve-erase-disks-before-use/ upvoted 1 times FISJAC 3 years, 10 months ago In the blogs, you can see: What occurs when “Erase disks before use” is used? First, it is important to understand that this does not destroy active data. upvoted 1 times ...