1Z0-821 · Question #175
You have already generated a 256-bit AES raw key and named the keystore file /mykey. You need to use the key to create an encrypted file system. Which command should you use to create a ZFS…
The correct answer is B. zfs create - o encryption = 256-ccm - o keysource = raw, file : ///my key pool1/encrypt. Example: Encrypting a ZFS File System by Using a Raw Key In the following example, an aes-256-ccm encryption key is generated by using the pktool command and is written to a file, /cindykey.file. # pktool genkey keystore=file outkey=/cindykey.file keytype=aes keylen=256 Then…
Question
You have already generated a 256-bit AES raw key and named the keystore file /mykey. You need to use the key to create an encrypted file system. Which command should you use to create a ZFS encrypted file system named pool1/encrypt using the /mykey keystore?
Options
- Azfs create - o encryption = /mykey pool1/encrypt
- Bzfs create - o encryption = 256-ccm - o keysource = raw, file : ///my key pool1/encrypt
- Czfs create - o encryption = AES keysource = /mykey pool1/encrypt
- Dzfs create - o encryption = on keystore = /mykey pool1/encrypt
How the community answered
(50 responses)- A16% (8)
- B72% (36)
- C4% (2)
- D8% (4)
Explanation
Example: Encrypting a ZFS File System by Using a Raw Key In the following example, an aes-256-ccm encryption key is generated by using the pktool command and is written to a file, /cindykey.file. # pktool genkey keystore=file outkey=/cindykey.file keytype=aes keylen=256 Then, the /cindykey.file is specified when the tank/home/cindy file system is created. # zfs create -o encryption=aes-256-ccm -o keysource=raw,file:///cindykey.file tank/home/cindys
Topics
Community Discussion
No community discussion yet for this question.