IBM Support

What is needed to use data-at-rest encryption?

Question & Answer


Question

What is needed to use data-at-rest encryption?

Answer

Answer

If you want to use encryption at rest, you must use VMware vSAN Enterprise edition with a key management server (KMS) like KMIP for VMware on IBM Cloud.

The KMIP adapter “instance” exists to tie together the vCenter certificate and the Key Protect instance / root key. The KMS must be configured separately in vCenter.

For additional information about KMIP service, visit the following documents:

[{"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Product":{"code":"SSCLB3","label":"VMware Solutions"},"Component":"","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"All Versions","Edition":"","Line of Business":{"code":"","label":""}}]

Document Information

Modified date:
01 August 2019

UID

ibm1KB0012064