Creating Software Encrypted Volumes
Starting with HXCSI 1.2(3a), you can create software encrypted volumes.
Prerequisites for Creating Software Encrypted Volumes
The following prerequisites must be met prior to creating software encrypted volumes using the HyperFlex CSI storage integration.
-
Cisco HyperFlex cluster is installed and running 5.0(2a) or later. For more information, see the Cisco HyperFlex Systems Installation Guide for VMware ESXi, Release 5.0.
-
Enable HyperFlex Software Encryption on a cluster. For more information, see HyperFlex Software Encryption in the Cisco HyperFlex Data Platform Administration Guide, Release 5.0.
Creating Software Encrypted Volumes
To create software encrypted volumes, create a Kubernetes Storage Class with software encryption enabled.
Before you begin
The HX cluster must support software encryption before you can encrypt any datastore (DS) on this cluster.
Procedure
Step 1 |
Create a Kubernetes Storage Class with software encryption enabled. You can do this in the storage class file, by indicating
the datastore name (for example, " For example, on a Storage Class file called " Example:
|
||
Step 2 |
Create a persistent volume claim which refers to the storage class file using the storageClassName field. For example, on a persistent volume claim, you can refer to a software encrypted storage class: Example:
|