Question 1
A financial services company is implementing a PowerStore T array for a new VDI environment. The security team requires that all data-at-rest be encrypted using an external Key Management Interoperability Protocol (KMIP) compliant server for centralized key control. During the initial setup, the administrator configures the external key manager but notices the system is still using its internal keys. What is the most likely reason for this behavior?
Answer and explanation
Correct answer: C
PowerStore's Data-at-Rest Encryption (D@RE) is always on. However, the choice between using the internal key manager or an external KMIP server is made during the Initial Configuration Wizard (ICW). Once this choice is made, it cannot be changed without reinitializing the entire cluster. Therefore, if the system was initially configured with the internal manager, simply adding an external one later will not cause the system to switch over.