Broadcom-VMware
5V0-22.21 · Question #57
A vSAN administrator has been asked to encrypt all traffic for data and metadata across all hosts in a vSAN cluster. Which action is necessary to achieve this level of encryption?
The correct answer is B. Enable vSAN Data In-Transit encryption at the cluster level. No KMS is required. vSphere/7.0/com.vmware.vsphere.vsan.doc/GUID-10099331-92E7-41AF-BCAA- 88DB4B4A4B7B.html
Deploy and Configure VMware HCI
Question
A vSAN administrator has been asked to encrypt all traffic for data and metadata across all hosts in a vSAN cluster. Which action is necessary to achieve this level of encryption?
Options
- AEnable vSAN Cluster level encryption via Storage Policy. No KMS is required.
- BEnable vSAN Data In-Transit encryption at the cluster level. No KMS is required.
- CDeploy KMS server, and enable vSAN Data at Rest encryption at the cluster level.
- DDeploy KMS server, and enable vSAN Data at Rest and In-Transit encryption at the host level.
How the community answered
(46 responses)- A4% (2)
- B72% (33)
- C15% (7)
- D9% (4)
Explanation
vSphere/7.0/com.vmware.vsphere.vsan.doc/GUID-10099331-92E7-41AF-BCAA- 88DB4B4A4B7B.html
Topics
#data in-transit encryption#vSAN cluster encryption#KMS requirements#metadata encryption
Community Discussion
No community discussion yet for this question.