Jump to content

Recommended Posts

Posted

Hi folks,

 

Simple question: does anyone encrypt their SANs, or do people rely on the inherent complexity of hooking it up to a new system, or the difficulty in stealing it?

 

Thanks

Posted
The thought has cross my mind, I'm looking into using virtual TPM chips in Hyper-v and enabling BitLocker on the virtual hard disk and encrypting in that directing. Wondering if it would ultimately be less complex come disaster recovery.
  • Thanks 1
Posted
The thought has cross my mind, I'm looking into using virtual TPM chips in Hyper-v and enabling BitLocker on the virtual hard disk and encrypting in that directing. Wondering if it would ultimately be less complex come disaster recovery.

 

I'd have thought this would be much worse as you wouldn't be able to mount the vhd's to a new server if you needed to, or use any kind of item level restore in your backup solution?

Posted (edited)
I'd have thought this would be much worse as you wouldn't be able to mount the vhd's to a new server if you needed to, or use any kind of item level restore in your backup solution?

 

"DPM 2016 supports backup and recovery of Shielded VMs that have their VHDs/VHDXs protected with vTPM. Note that Item Level Recovery (ILR) and Alternate Location Recovery (ALR) to a location outside the guarded fabric is not available for this scenario." https://docs.microsoft.com/en-us/system-center/dpm/what-s-new-in-dpm-2016#

 

In DR where the whole VM is restored the vTPM i assume should stay intact.

Edited by RobFuller

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...