nerdexam
Broadcom-VMware

5V0-21.21 · Question #50

An administrator wants to enable encryption on an existing vSAN cluster that already contains virtual machines. Which additional step should the administrator take to ensure no data is lost during…

The correct answer is B. Make vCenter Server trust the KMS, either by trusting the KMS or by uploading a KMS certificate. You must have configured a standard key provider and established a trusted connection between vCenter Server and the KMS.

Deploy and Configure VMware HCI

Question

An administrator wants to enable encryption on an existing vSAN cluster that already contains virtual machines. Which additional step should the administrator take to ensure no data is lost during the encryption process?

Options

  • ASelect 'Erase disks before use' check box when enabling encryption on a vSAN cluster.
  • BMake vCenter Server trust the KMS, either by trusting the KMS or by uploading a KMS certificate.
  • CEnsure that the vSAN Encryption is enabled by default on the existing cluster to encrypt old and
  • DDisable vSphere Distributed Resources Schedule (DRS) on the vSAN cluster.

How the community answered

(35 responses)
  • A
    3% (1)
  • B
    86% (30)
  • C
    9% (3)
  • D
    3% (1)

Explanation

You must have configured a standard key provider and established a trusted connection between vCenter Server and the KMS.

Topics

#vSAN encryption#KMS certificate trust#data protection#encryption enablement

Community Discussion

No community discussion yet for this question.

Full 5V0-21.21 Practice