nerdexam
Broadcom-VMware

5V0-22.21 · Question #57

A vSAN administrator has been asked to encrypt all traffic for data and metadata across all hosts in a vSAN cluster. Which action is necessary to achieve this level of encryption?

The correct answer is B. Enable vSAN Data In-Transit encryption at the cluster level. No KMS is required. vSphere/7.0/com.vmware.vsphere.vsan.doc/GUID-10099331-92E7-41AF-BCAA- 88DB4B4A4B7B.html

Deploy and Configure VMware HCI

Question

A vSAN administrator has been asked to encrypt all traffic for data and metadata across all hosts in a vSAN cluster. Which action is necessary to achieve this level of encryption?

Options

  • AEnable vSAN Cluster level encryption via Storage Policy. No KMS is required.
  • BEnable vSAN Data In-Transit encryption at the cluster level. No KMS is required.
  • CDeploy KMS server, and enable vSAN Data at Rest encryption at the cluster level.
  • DDeploy KMS server, and enable vSAN Data at Rest and In-Transit encryption at the host level.

How the community answered

(46 responses)
  • A
    4% (2)
  • B
    72% (33)
  • C
    15% (7)
  • D
    9% (4)

Explanation

vSphere/7.0/com.vmware.vsphere.vsan.doc/GUID-10099331-92E7-41AF-BCAA- 88DB4B4A4B7B.html

Topics

#data in-transit encryption#vSAN cluster encryption#KMS requirements#metadata encryption

Community Discussion

No community discussion yet for this question.

Full 5V0-22.21 Practice