2V0-21.23 Question 442
Select 3You are tasked with deploying an encrypted virtual machine in your vSphere environment. Before proceeding, you need to ensure that all prerequisites are met. Which of the following steps are mandatory prerequisites for deploying an encrypted virtual machine?
- A
Configure a Key Management Server (KMS) and establish trust with vCenter Server.
- B
Enable vSphere DRS on the cluster where the encrypted VM will be deployed.
- C
Ensure the host is running ESXi 6.5 or later and is in a trusted cluster.
- D
Use a VM storage policy with encryption enabled when creating the virtual machine.
- E
Enable vSphere HA for the cluster where the encrypted VM will be deployed.
Show answer and explanation
Correct answers: A, C, D
Explanation
To deploy an encrypted virtual machine in vSphere, certain prerequisites must be met. A Key Management Server (KMS) must be configured and trusted by vCenter Server to manage the encryption keys. The ESXi host must be version 6.5 or later and in a trusted cluster to support encryption. Additionally, a VM storage policy with encryption enabled must be used when creating the virtual machine. Enabling vSphere DRS and vSphere HA is optional and not required for encryption.
- A. Correct.
This is correct. A Key Management Server (KMS) must be configured and trusted by vCenter Server to provide the encryption keys for virtual machine encryption.
- B. Incorrect.
This is incorrect. While vSphere DRS can provide benefits for resource management, it is not a prerequisite for deploying encrypted virtual machines.
- C. Correct.
This is correct. Encrypted virtual machines require ESXi 6.5 or later, and the host must be in a trusted cluster for encryption to work.
- D. Correct.
This is correct. A VM storage policy with encryption enabled is mandatory to deploy an encrypted virtual machine.
- E. Incorrect.
This is incorrect. While vSphere HA can be useful for ensuring high availability, it is not a requirement for deploying encrypted virtual machines.