Exam 5v0-2223 All QuestionsBrowse all questions from this exam
Question 24

What are two characteristics of the vSAN Data-At-Rest Encryption (DARE)? (Choose two.)

    Correct Answer: C, E

    vSAN Data-At-Rest Encryption (DARE) is software-defined, meaning it operates independently of the type of drives (cache or capacity) installed in the nodes, making it flexible and adaptable to various hardware setups. Additionally, it continues to function normally even if the vCenter Server experiences downtime, ensuring ongoing data protection.

Discussion
goatbernardOptions: CE

Two characteristics of vSAN Data-At-Rest Encryption (DARE) are: It is Software Defined and works independently of the Cache or Capacity drives installed on the Nodes . This means that it is not dependent on the type of drives used in the vSAN cluster, and can be enabled on any vSAN datastore. It continues to operate unaffected during downtime on vCenter Server . This means that even if vCenter Server is down, data-at-rest encryption continues to function normally.

FR_WolfmanOptions: CE

C&E are correct. A: vSAN DARE can use SEDs, but the SED functionality must be disabled, as vSAN manages the software encryption B : Data-at-rest encryption can be enabled, while data-in-transit encryption is disabled. They are not linked. D : Yes, you can use vSAN encryption on stretched clusters

Ansari678Options: AB

A. It requires Self-Encrypting Drives (SEDs) in order to work: vSAN DARE can utilize Self-Encrypting Drives (SEDs) to provide data-at-rest encryption. These drives have built-in encryption capabilities, which vSAN can leverage. However, it's important to note that vSAN also supports Software Encryption, which doesn't require SEDs. E. It continues to operate unaffected during downtime on vCenter Server: vSAN DARE is independent of vCenter Server and continues to operate unaffected during downtime or maintenance of the vCenter Server. It's a feature of the vSAN cluster and doesn't rely on vCenter for ongoing operation.

ieee13940

I don't think self encrypting drives are a necessity to use this feature

trunghieuet

it's not correct