162 questions with Azure Disk Encryption tags

Sort by: Updated
1 answer

Azure VM - Managed disk encryption in transit between VM and disk storage service ?

Normally, I would be inclined to assume that data are encrypted in transit between a VM and the managed disk storage service. However, in [Enable end-to-end encryption using encryption at host][1], it is stated that “When you enable encryption at…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Disk Storage
Azure Disk Storage
A high-performance, durable block storage designed to be used with Azure Virtual Machines and Azure VMware Solution.
590 questions
asked 2022-09-23T12:25:40.93+00:00
Søren Brandt (SOB) 1 Reputation point
answered 2022-09-26T23:16:41.047+00:00
SaiKishor-MSFT 17,216 Reputation points
5 answers One of the answers was accepted by the question author.

How to get bitlocker recovery key from Azure Portal for old MS account.

Hello, Few years ago Dell has sold new laptop to me. It appears that laptop was protected with Bitlocker as Dell usually do. I was not notified on that, so - I didn't switch it off or store recovery key somewhere. Now laptop get into bitlocker…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,368 questions
asked 2021-08-27T10:11:38.49+00:00
Alex Kumpan 41 Reputation points
commented 2022-09-21T12:31:01.637+00:00
Chintan Ganatra 1 Reputation point
2 answers

scope of Encryption at host with platform managed keys . Copy disk across tenants

Hello Everyone, Would like to understand the scope of platform managed keys. I have enabled encryption at host with platform managed keys. Can i now take a snapshot of the disk and move it to a different tenant / subscription . Would i be able to…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Disk Storage
Azure Disk Storage
A high-performance, durable block storage designed to be used with Azure Virtual Machines and Azure VMware Solution.
590 questions
asked 2022-08-19T13:07:23.517+00:00
Venglatur, Viswanath 1 Reputation point
commented 2022-09-09T18:57:56.097+00:00
SaiKishor-MSFT 17,216 Reputation points
1 answer

What's the difference between New-AzureRmResourceGroupDeployment and New-AzDiskEncryptionSets when creating the DiskEncryptionSet?

I'm trying to create DiskEncryptionSet resource in TDS and then fetch the managed identity with power shell script. There are two ways could achieve this. The first is using New-AzDiskEncryptionSet and Get-AzServicePrincipal commands with Az Power…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,368 questions
asked 2022-08-31T10:45:06.58+00:00
Jingjing Xiao 1 Reputation point Microsoft Employee
commented 2022-08-31T11:36:02.6+00:00
Jingjing Xiao 1 Reputation point Microsoft Employee
1 answer

Azure Storage Encrytion Scope performance

The docs for Encryption Scopes for Blob storage does not talk about the performance implications when Encryption Scopes are used. Is there a recommended limit on the number of scopes that can be created within a given storage account after which we start…

Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
2,875 questions
Azure Blob Storage
Azure Blob Storage
An Azure service that stores unstructured data in the cloud as blobs.
2,578 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2022-08-04T20:49:52.91+00:00
Nimisha Srinivasa 26 Reputation points Microsoft Employee
commented 2022-08-16T06:04:43.63+00:00
Nimisha Srinivasa 26 Reputation points Microsoft Employee
1 answer

Azure Backup Failure - Could not communicate with the VM agent for snapshot status - Snapshot VM sub task timed out

Hi, I have one query regarding Azure Backup Error on Azure VM. Below are the Observation: Extensions Provisioning : Failed (Due to that Disk Encryption shows Failed) Antivirus Block : Not Observed any AV issues. Network…

Azure Backup
Azure Backup
An Azure backup service that provides built-in management at scale.
1,176 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2022-07-11T16:06:08.687+00:00
Manoj Prabhu 1 Reputation point
commented 2022-08-04T15:09:55.863+00:00
SadiqhAhmed-MSFT 40,446 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

Can a Different Asymetric Key be used to Wrap a Different Symetric Key

Hello All Can someone please help me with the following question, I understand when using Azure KeyVault Premium (HSM backed) if I create a symmetric key (secret) in Azure Key vault (for example an AES key for example used to encrypt data at…

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,176 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2022-07-18T14:16:29.853+00:00
Charlie Melga 126 Reputation points
accepted 2022-07-28T06:10:43.357+00:00
Charlie Melga 126 Reputation points
1 answer One of the answers was accepted by the question author.

I don't see the parameter for TDE in my ARM template

I cannot find the boolean parameter for enabling Transparent Data Encryption. I included my parameters for a database, server and storage account below. Is there perhaps a reason why this parameter is not shown? And can I leave a way all the network…

Azure DevTest Labs
Azure DevTest Labs
An Azure service that is used for provisioning development and test environments.
262 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Disk Storage
Azure Disk Storage
A high-performance, durable block storage designed to be used with Azure Virtual Machines and Azure VMware Solution.
590 questions
asked 2022-07-14T16:01:39.59+00:00
John 101 Reputation points
accepted 2022-07-22T21:02:33.87+00:00
John 101 Reputation points
2 answers

Disk Encryption in Azure VM

I want to apply storage disk encryption on my Azure VM with minimum downtime or without stopping my VM.

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2022-07-20T07:32:09.243+00:00
Khushi Gupta 6 Reputation points
answered 2022-07-21T11:58:16.277+00:00
Sumarigo-MSFT 44,996 Reputation points Microsoft Employee
0 answers

Why replication method on azure site recovery keep recognizing disk encryption despite it is not enabled on the VM

Why replication method on azure site recovery keep recognizing disk encryption despite it is not enabled on the VM, I have the VM without disk encryption extension.

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Site Recovery
Azure Site Recovery
An Azure native disaster recovery service. Previously known as Microsoft Azure Hyper-V Recovery Manager.
672 questions
asked 2022-06-21T16:03:37.517+00:00
Diego Novoa A 1 Reputation point
commented 2022-07-13T20:44:05.467+00:00
Monalla-MSFT 12,771 Reputation points
0 answers

About Modern Standby - Standard NVMe drive in Sleepstudy report.

Dear Sir or Madam: We try run the modern standby function in our platform, then test result show two Standard NVMe driver info (but we only connect one disk drive.). How can I judge this situation? One data list Pass(Green background) but another…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Disk Storage
Azure Disk Storage
A high-performance, durable block storage designed to be used with Azure Virtual Machines and Azure VMware Solution.
590 questions
asked 2022-06-24T10:06:36.8+00:00
Tester 1 Reputation point
commented 2022-06-27T01:17:52.56+00:00
Tester 1 Reputation point
1 answer One of the answers was accepted by the question author.

Linux VM - Azure OS disk to store data

I'm planning to deploy an ubuntu VM to publish my web based application. It does not use much storage. Can I use Azure OS disk to store data? Is there any downside for this ?

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Disk Storage
Azure Disk Storage
A high-performance, durable block storage designed to be used with Azure Virtual Machines and Azure VMware Solution.
590 questions
asked 2022-06-13T06:32:18.78+00:00
Shyju Kanaprath 21 Reputation points
accepted 2022-06-22T05:53:28.073+00:00
Shyju Kanaprath 21 Reputation points
1 answer One of the answers was accepted by the question author.

Schedule for RHEL8 ADE support

Is there already a schedule for RHEL8/CentOS 8 support for ADE?

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-06-12T23:08:39.537+00:00
Manuel 41 Reputation points
commented 2022-06-19T14:15:14.24+00:00
Punuri Sandhya Kiranmayi 41 Reputation points
1 answer

Are platform managed keys (SSE+PMK at rest) per resource or do they use a shared key across customers?

Trying to find official confirmation. My AZ-500 course indicated they were per resource but mostly stressed that it was all backend and you don't have to worry about it. Security has concerns about shared keys being used or leaked as that was a concern…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,480 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Disk Storage
Azure Disk Storage
A high-performance, durable block storage designed to be used with Azure Virtual Machines and Azure VMware Solution.
590 questions
asked 2022-06-09T21:48:10.253+00:00
Josh Heman 1 Reputation point
commented 2022-06-11T05:43:35.793+00:00
risolis 8,701 Reputation points
1 answer

azure disk can not select customer's key vault

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,176 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2022-06-07T07:53:31.257+00:00
yangyifan 1 Reputation point
commented 2022-06-08T22:28:10.793+00:00
JamesTran-MSFT 36,531 Reputation points Microsoft Employee
4 answers

How to define the custom azure policy to enfore azure disk encryption for 100s of machines all at once in a subscription

Hi Everyone, I am trying to create the remediation for one of the defender for cloud recommendations(VMs should be encrypted with temp disks, cache and the data flowing between vm and storage account) .Can somebody please advise me the solution for…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Policy
Azure Policy
An Azure service that is used to implement corporate governance and standards at scale for Azure resources.
821 questions
asked 2022-05-19T09:33:47.773+00:00
Maheswararaju P 6 Reputation points
answered 2022-06-03T14:25:48.027+00:00
Maheswararaju P 11 Reputation points
4 answers One of the answers was accepted by the question author.

Bitlocker could not be enabled

I have a Dell Laptop that is running Windows 10 Version 21H1. I recently had the mother board replaced. When trying to enable bitlocker, I get the following error: "Bitlocker Could Not Be Enabled. The Bitlocker Encryption key cannot be obtained.…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,824 questions
asked 2022-04-29T00:58:35.53+00:00
Chris Reyes 21 Reputation points
answered 2022-05-03T11:18:44.43+00:00
Chris Reyes 21 Reputation points
1 answer One of the answers was accepted by the question author.

How to use GnuPG in HDInsight for encryption and decryption?

Hi, I am working with the HDInsight Spark cluster on Azure. Trying to encrypt files with pgp encryption using our private key. Is there a way that this can achieve rather than using the inbuilt encryption mechanism? How to set the home for GnuPG…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure HDInsight
Azure HDInsight
An Azure managed cluster service for open-source analytics.
204 questions
asked 2022-04-17T03:02:56.34+00:00
vijay singh parmar 26 Reputation points
accepted 2022-04-28T07:21:51.667+00:00
vijay singh parmar 26 Reputation points
2 answers One of the answers was accepted by the question author.

Azure Service Bus Encryption at Rest & Transit (Standard Tier)

Could someone help out in answering this question if Azure Service Bus (Standard Tier) also follows encryption at Rest & Transit as it is for Premium Tier. How could this be verified for a standard tier deployment if encryption is enabled or not. …

Azure Service Bus
Azure Service Bus
An Azure service that provides cloud messaging as a service and hybrid integration.
579 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2021-06-07T05:57:32.417+00:00
Antra Sharma 41 Reputation points Microsoft Employee
answered 2022-04-26T17:53:47.48+00:00
Chaudhary, Sahil 1 Reputation point
1 answer

I have uploaded my vhdx file to Azure as Block blob. How can I create vm from it?

I have uploaded my vhdx file to Azure as Block blob. How can I create vm from it? Please give me the step by step procedure. If it is not possible then what is the other way to do that? If anyone can help me I will be grateful to that.

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,480 questions
Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
2,875 questions
Azure Migrate
Azure Migrate
A central hub of Azure cloud migration services and tools to discover, assess, and migrate workloads to the cloud.
745 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2022-03-31T15:35:30.52+00:00
nimi 91 Reputation points
commented 2022-04-04T08:15:46.28+00:00
Alan Kinane 16,806 Reputation points MVP