From the course: Learning VMware vSAN

Unlock this course with a free trial

Join today to access over 22,600 courses taught by industry experts.

vSAN encryption

vSAN encryption

- [Rick] In this video I'll introduce you to vSAN Encryption and how it can be used to protect data that is stored on a vSAN datastore. And that is the purpose of vSAN encryption, it's used to protect data at rest. So the data that is written to our vSAN datastore will be encrypted after other operations such as de-duplication. De-duplication is going to give us significant space savings but it wouldn't work if the data was already encrypted, so the data is encrypted after processes like de-duplication are complete. And it protects you in the scenario where maybe somebody pulls a disk out of a physical host and walks out the door with it. While all of the data on that physical disk is going to be encrypted if it's stored on our vSAN datastore. And there's a special permission required for administrators who want to perform either encryption or decryption tasks. So in order to set up vSAN encryption we have to set up an external key management server. We need vCenter. We of course need…

Contents