nerdexam
Broadcom-VMware

5V0-21.20 · Question #13

As part of a security strategy for data, a company has elected to migrate to a new KMS system. Existing vSAN clusters are configured for Data At Rest Encryption. Considering the scenario, which…

The correct answer is C. Existing encrypted vSAN Clusters will need to be decrypted to use the new KMS system. See the full explanation below for the reasoning.

Question

As part of a security strategy for data, a company has elected to migrate to a new KMS system. Existing vSAN clusters are configured for Data At Rest Encryption. Considering the scenario, which statement is true?

Options

  • AFull data evacuation will be required to use the new KMS system.
  • BExisting unencrypted datastores can be encrypted without data migration.
  • CExisting encrypted vSAN Clusters will need to be decrypted to use the new KMS system.
  • DKeys from the new KMS system can be applied without any data movement.

How the community answered

(35 responses)
  • A
    9% (3)
  • B
    3% (1)
  • C
    86% (30)
  • D
    3% (1)

Community Discussion

No community discussion yet for this question.

Full 5V0-21.20 Practice