Skip to main content
NetApp Knowledge Base site will be down for 3 hours between Oct 26, 23:59 PST and Oct 27, 02:59 PST, for system maintenance and infrastructure update.
NetApp Stage KB

How do we validate that encryption is enabled for specific AWS EBS volumes?

Views:
Visibility:
Public
Votes:
0
Category:
cloud-volumes-ontap-cvo
Specialty:
cloud
Last Updated:

 

 

Applies to

  • ONTAP Cloud using Amazon Web Services (AWS)
  • AWS Key Management Service (KMS)
  • Data At Rest Encryption
  • AWS Elastic Block Storage (EBS)

Answer

  • AWS KMS encrypts the EBS volumes.   The encryption occurs at the AWS level and not within ONTAP.   
  • To verify the EBS volumes are encypted use the AWS portal to view the volumes.

Example:

 

Additional Information

  • To encrypt ONTAP volumes you must use NetApp Volume Encryption (NVE) with supported external KMIP servers.  For more information see the Cloud Manager Security document.  
 

 

NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.