171 questions with Azure Disk Encryption tags

Sort by: Updated
1 answer

Offline time window when enabling Encryption at Host

Good morning, i have a question regarding enabling Encryption at Host. Currently i have the option to enable it, but the VM must be offline, so i am wondering what is the time that machine has to be offline while this process is executing? What does it…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2023-07-28T14:11:00.3633333+00:00
Nermin Pezerovic 0 Reputation points
commented 2023-08-22T13:51:27.8866667+00:00
TP 84,291 Reputation points
2 answers

Azure Disk encryption on Azure virtual desktop

we already enabled ADE on Azure VMs disks based on CloudCheckR tool recommendations. But now, we need suggestions whether we should also enable ADE (Azure Disk Encryptions) on AVD (Azure Virtual Desktops)? Or not required if any justification, since…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
Azure Virtual Desktop
Azure Virtual Desktop
A Microsoft desktop and app virtualization service that runs on Azure. Previously known as Windows Virtual Desktop.
1,455 questions
asked 2023-07-26T20:06:23.97+00:00
M Hemant Kumar 20 Reputation points
commented 2023-08-02T14:57:56.0666667+00:00
Sumarigo-MSFT 45,416 Reputation points Microsoft Employee
1 answer

Do Enabling Customer Managed Keys will have any effect while accessing data using SAS keys?

We are trying to implement customer managed keys in storage accounts. So i do understand that we might have to make few code changes while connecting to Storage account as mentioned in the article…

Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
2,949 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
Azure FastTrack
Azure FastTrack
Azure: A cloud computing platform and infrastructure for building, deploying and managing applications and services through a worldwide network of Microsoft-managed datacenters.FastTrack: This tag is no longer in use. Please use 'Azure Startups' instead.
76 questions
asked 2023-07-21T07:08:39.1766667+00:00
Sachin Vettiyattil-FT 41 Reputation points
commented 2023-08-02T14:49:33.7133333+00:00
Sumarigo-MSFT 45,416 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

Azure Disk Encryption - Failing due to SSL/TLS secure connection

Hi All, Our Azure Disk Encyrption keeps failing to due to an error saying a secure SSL/TLS connection could not be established, from my troubleshooting it seems it is our proxy that is causing it to fail as once uninstalled it works fine. Does anyone…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2023-07-28T09:13:53.8666667+00:00
Ben Woodman 106 Reputation points
accepted 2023-08-01T08:08:42.4266667+00:00
Ben Woodman 106 Reputation points
1 answer One of the answers was accepted by the question author.

SERVER SIDE ENCRYPTION - PMK TO CMK

We have several linux azure VMs and storage accounts with SSE encryption being Platform managed keys. The existing infra built using terraform. Now we are planning to convert all managed disks and storage accounts to SSE CMK. The question is, Does pmk to…

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,201 questions
Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
2,949 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2023-07-18T21:14:20.5733333+00:00
Venkat 60 Reputation points
accepted 2023-07-26T01:29:54.2833333+00:00
Venkat 60 Reputation points
1 answer One of the answers was accepted by the question author.

What does "SSE with PMK & ADE" mean?

I understand what Server Side Encryption and Azure Disk Encryption mean and how you can turn them on. I don't understand that when I turn on the ADE (BitLocker) for a (windows) VM's OS disk, the OS disk encryption says "SSE with PMK &…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2022-10-05T04:00:12.477+00:00
Anuj Jain 71 Reputation points
commented 2023-07-22T07:38:42.6266667+00:00
Aditya Garg 61 Reputation points
1 answer

Azure Policy to remediate/Enforce "Encryption at Host"

Hello Community, I observe the in built Azure Policy here to audit VMs for "encryption at host" setting(end to end encryption using PMK or CMK). "Virtual machines and virtual machine scale sets should have encryption at host…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
Azure Policy
Azure Policy
An Azure service that is used to implement corporate governance and standards at scale for Azure resources.
836 questions
asked 2023-06-26T16:52:04.5333333+00:00
Aditya Garg 61 Reputation points
answered 2023-07-20T03:58:13.29+00:00
Jesse Loudon 336 Reputation points MVP
1 answer One of the answers was accepted by the question author.

Can we add "Disk Encryption Set" managed Identity to AD groups

As part of implementing Managed Disks SSE-CMK, we are planning to associate/add "Disk Encryption Set "managed Identity to Azure security AD groups. Is it possible? As per my knowledge I can do this with user managed Identity, but would like to…

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,201 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,681 questions
asked 2023-07-06T12:32:30.55+00:00
Venkat 60 Reputation points
accepted 2023-07-18T22:03:14.34+00:00
Venkat 60 Reputation points
3 answers One of the answers was accepted by the question author.

What RSA Size should i use to enable ADE on Azure VMs?

Hi, When i try to enable ADE on our Azure Virtual Machines they keep failing due to an error: VM has reported a failure when processing extension 'AzureDiskEncryption'. Error message: "[2.3.0.0] Failed to enable Azure Disk Encryption on the VM with…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2023-07-12T14:27:26.3966667+00:00
Ben Woodman 106 Reputation points
accepted 2023-07-14T07:38:20.2766667+00:00
Ben Woodman 106 Reputation points
1 answer

How to update a generalized disk in Azure VM

I am facing an issue where I am unable to upgrade the disk size of my generalized VM through the Azure portal. The portal does not show me the update option under the disk section. I have tried using az-cli, but I am encountering permission issues and…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,602 questions
Azure VMware Solution
Azure VMware Solution
An Azure service that runs native VMware workloads on Azure.
344 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
Azure Disk Storage
Azure Disk Storage
A high-performance, durable block storage designed to be used with Azure Virtual Machines and Azure VMware Solution.
604 questions
Azure Virtual Machine Scale Sets
Azure Virtual Machine Scale Sets
Azure compute resources that are used to create and manage groups of heterogeneous load-balanced virtual machines.
367 questions
asked 2023-07-04T07:47:07.93+00:00
devidinesh7890@gmail.com 0 Reputation points
commented 2023-07-14T05:56:31.98+00:00
Prrudram-MSFT 23,211 Reputation points
0 answers

Not able to enable ADE on SQL VM with data disks attached

Dear team   I’m trying to enable the ADE on an SQL workload that runs on  2 SQL servers both are identical with the following DISK configuration   OS Disk Standard SSD 127 GB Data Disk1 Premium SSD 512 GB Data Disk2 Premium SSD 512 GB File Stream SSD 32…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
SQL Server
SQL Server
A family of Microsoft relational database management and analysis systems for e-commerce, line-of-business, and data warehousing solutions.
13,384 questions
asked 2023-07-09T07:30:25.61+00:00
Hazem Rajab 1 Reputation point
commented 2023-07-10T16:40:24.63+00:00
KarishmaTiwari-MSFT 19,032 Reputation points Microsoft Employee
1 answer

In Key vault it says 4000 transactions per 10 sec. What does transactions stands for here.

We are planning to associate some good amount of VMs to a particular key vault with n number of keys. I see the 4000 transactions per 10 sec in the details of it. Will there be any latency issue while read/write to the VMs which are associated if the…

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,201 questions
Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
2,949 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2023-07-04T06:02:44.9766667+00:00
Aditya Vashisth 25 Reputation points
commented 2023-07-06T07:32:06.84+00:00
Aditya Vashisth 25 Reputation points
1 answer One of the answers was accepted by the question author.

How to Contact uphold Support & customer service

Contact uphold support My amount is stuck in asset wallet and i couldn't withdraw it and Now login also it shows my email ID invalid while I am putting my I'd in reference please help me to get my amount back

Azure Cost Management
Azure Cost Management
A Microsoft offering that enables tracking of cloud usage and expenditures for Azure and other cloud providers.
2,361 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2023-07-04T17:10:27.57+00:00
kevin peterson 20 Reputation points
edited the question 2023-07-05T15:02:11.09+00:00
TP 84,291 Reputation points
0 answers

Manually mounting an Encrypted Data disk in Linux Ubuntu 20.04 (Encrypted with ADE).

How to add mount point to my Azure Data Encrypted data disk. I have already performed all the method suggested here: https://learn.microsoft.com/en-us/troubleshoot/azure/virtual-machines/unlock-encrypted-linux-disk-offline-repair#lvm but nothing…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2023-06-13T10:46:56.8766667+00:00
ElijahDaleVidanes-8007 0 Reputation points
commented 2023-06-30T16:58:14.06+00:00
Sumarigo-MSFT 45,416 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

Can anyone give me more detailed information on Encryption at host for Virtual Machines in Azure?

Hi, Currently there is recommendation form defender for cloud in Microsoft azure to enable encryption at host for virtual Linux machines. I want to implement that so what is the process for implementing this feature in virtual machine. Please let me know…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,602 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2023-06-30T07:37:10.6466667+00:00
Sumedh Patil 20 Reputation points
accepted 2023-06-30T09:53:24.82+00:00
Sumedh Patil 20 Reputation points
1 answer

Equipamento não ativa o recurso de bitlocker após a formatação

Prezados, Estamos com alguns problemas na gestão do recurso de criptografia em algumas máquinas que precisaram ser formatadas e/ou sofreram substituição de periféricos (placa mãe), após diversos testes e tentativa de ativação do recurso manualmente via…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2023-06-26T18:40:25.9133333+00:00
Rafael Moretto Ribeiro da Silva 0 Reputation points
commented 2023-06-30T07:50:13.71+00:00
Sumarigo-MSFT 45,416 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

How I can use CMKs from a key vault from one subscription for the VMs in another subscription

I have a key vault present in subscription A I want to use it for the VMs present in subscription B. How can we achieve this goal.

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,201 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2023-06-19T09:04:30.3733333+00:00
Aditya Vashisth 25 Reputation points
accepted 2023-06-27T17:23:11.83+00:00
Aditya Vashisth 25 Reputation points
3 answers One of the answers was accepted by the question author.

Write a query to see what disks are encrypted with ADE verses just the standard SSE with PMK

Hi there - I'm trying to figure out how to search all the disks that have encryption set with ADE and any other type of encryption that is support like CMK. Thanks

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
Azure Data Explorer
Azure Data Explorer
An Azure data analytics service for real-time analysis on large volumes of data streaming from sources including applications, websites, and internet of things devices.
508 questions
asked 2023-01-21T06:03:28.78+00:00
Parm Dhesi 25 Reputation points
commented 2023-06-27T17:20:15.0666667+00:00
Parm Dhesi 25 Reputation points
1 answer One of the answers was accepted by the question author.

Costs while using Encryption at Host with PMK as the underlying key encryption mechanism

Hello Community, Wish to understand if there would be any cost for using Encryption at Host with PMK? I understand Encryption at Host with CMK would be chargeable under Key Vault: https://azure.microsoft.com/en-in/pricing/details/key-vault/ Specifically,…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
Azure Disk Storage
Azure Disk Storage
A high-performance, durable block storage designed to be used with Azure Virtual Machines and Azure VMware Solution.
604 questions
asked 2023-06-21T08:44:55.94+00:00
Aditya Garg 61 Reputation points
accepted 2023-06-21T11:11:54.7133333+00:00
Aditya Garg 61 Reputation points
1 answer One of the answers was accepted by the question author.

Azure Disk Encryption impact on Application Side

Hello Team, I would like to understand the impact of enabling Azure Disk Encryption at the application level. This is being enabled in existing VM's where applications are running, so would like to check whether application code changes are required for…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
171 questions
asked 2023-06-06T16:16:44.02+00:00
Dinesh Kumar Palani 20 Reputation points
accepted 2023-06-09T05:41:13.7266667+00:00
Dinesh Kumar Palani 20 Reputation points