162 questions with Azure Disk Encryption tags

Sort by: Updated
1 answer

Encryption secrets sometimes do not appear in key vault as secrets when Azure disk encryption enabled for Linux VM

We are trying to encrypt some Linux VMs using Azure disk encryption. We use the following command as we want the temporary disks to be encrypted as well and we use KEK(Key encryption key) too. az vm encryption enable --resource-group…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-11-25T20:21:54.193+00:00
Divit SANJAY KARMIANI 1 Reputation point
commented 2020-11-27T16:43:33.117+00:00
Divit SANJAY KARMIANI 1 Reputation point
1 answer

How to configure Azure Disk Encryption on a VM with Keyvault using Private link?

Hi All We are using Azure Disk encryption on Azure, where encryption keys are stored in KeyVault, we are planning to use Private Link for our Keyvault and has below questions 1)Does ADE supports keyvault with Private Link? 2)Is it possible to…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Private Link
Azure Private Link
An Azure service that provides private connectivity from a virtual network to Azure platform as a service, customer-owned, or Microsoft partner services.
471 questions
asked 2020-11-17T12:39:43.933+00:00
Ramisetty, Pratap 1 Reputation point
commented 2020-11-25T10:03:46.103+00:00
Sumarigo-MSFT 43,911 Reputation points Microsoft Employee
1 answer

How to do key rotation when using Azure Disk Encryption (ADE)

Hi, We are encrypting temporary disk of a linux VMs using ADE (Azure Disk Encryption) and storing some data in temporary disk. We know that for Linux VMs ADE for temporary disk is done using --encrypt-format-all feature as shown below. az vm…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-11-13T07:11:03.283+00:00
Rajesh KATARAKI 1 Reputation point
commented 2020-11-20T12:24:40.657+00:00
Rajesh KATARAKI 1 Reputation point
1 answer One of the answers was accepted by the question author.

List of Azure Data Storage Services that support BYOK

Hi, Could you confirm the list of "Azure Data Storage" Services that support BYOK (Bring Your Own Key), please. Thanks

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,141 questions
Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
2,731 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Data Catalog
Azure Data Catalog
An Azure service that serves as a system of registration and system of discovery for enterprise data assets.
97 questions
asked 2020-11-12T15:03:17.587+00:00
Raju Golla 41 Reputation points
accepted 2020-11-12T18:31:07.663+00:00
Raju Golla 41 Reputation points
1 answer One of the answers was accepted by the question author.

Create certificate for encrypted database failed

I'm trying to get familiar with TDE operation because one of my production database is already encrypted. Since I did not work with encryption before in SQL I found good YouTube tutorial…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
SQL Server
SQL Server
A family of Microsoft relational database management and analysis systems for e-commerce, line-of-business, and data warehousing solutions.
12,841 questions
asked 2020-11-10T01:29:22.467+00:00
Susja 711 Reputation points
accepted 2020-11-10T18:56:56.953+00:00
Susja 711 Reputation points
2 answers

Clone encrypted disk and attach it to another VM

We have a VM with all the disks encrypted and the goal is to "clone" one of the data disks and attach it to another VM (same region) We tried several approaches without success, but it would be better to achieve it quickly since we must…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-11-05T11:02:00.177+00:00
Vicent Alemany (AuraQuantic) 1 Reputation point
commented 2020-11-10T18:55:39.577+00:00
deherman-MSFT 33,786 Reputation points Microsoft Employee
3 answers

AAD client/secret is not supported

Hello, i have some VM's encrypted via RSA HSM key. I want change it, but I receive this error: "Azure Disk Encryption extension version '1.1 ' without AAD client/secret is not supported on VMs previously encrypted with AAD client/secret. " …

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-10-26T07:51:24.857+00:00
Momo 21 Reputation points
commented 2020-11-04T16:56:33.653+00:00
Momo 21 Reputation points
2 answers One of the answers was accepted by the question author.

Update to Azure Disk Encryption extension for Linux - minor version change?

Azure customers have been notified through an alert email asking them to prepare for breaking changes through an Azure Disk Encryption Extension. All the notification specifies is a general outline "to improve security, we are making potentially…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-10-01T13:18:02.317+00:00
Sriramadhesikan, Sam 21 Reputation points
answered 2020-10-22T20:39:21.983+00:00
Shanmuga Sundaram 1 Reputation point
2 answers

Full Version of TypeHandlerVersion in Get-AzVMExtension

Greetings, when using Get-AzVMExtension in Powershell with the AzureDiskEncryption extension, Get-AzVMExtension shows only two levels of version number (e.g., 2.2), while the portal shows 4 (e.g., 2.2.0.10). Does anyone know how to see the full version…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-09-30T15:36:48.023+00:00
McKim, Geoff 6 Reputation points
commented 2020-10-09T22:10:23.22+00:00
JamesTran-MSFT 36,461 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

How many methods are provided for encryption by windows server?

How many methods are provided for encryption by windows server except EFS and BitLocker? May I ask for some examples?

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-09-19T05:33:08.493+00:00
Eggsyrup 21 Reputation points
commented 2020-09-24T07:25:36.43+00:00
Eggsyrup 21 Reputation points
2 answers One of the answers was accepted by the question author.

Restore an Azure VM with the existing VM still running

I have a VM that has an Windows Update issue. I want to restore the Azure managed disk to about 1 month ago to see if this issue was there at that point. I don’t want to affect the original VM because its still working ok apart from the update…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,236 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-09-17T14:42:07.563+00:00
mij2020 366 Reputation points
accepted 2020-09-18T14:21:18.027+00:00
mij2020 366 Reputation points
2 answers

Encryption state between portal and CLI varies

I have activated Azure Disk Encryption for a Windows VM which did not have any data disks. I did so by selecting "Disks to encrypt: OS and data disks" in the Azure portal. The OS disk was then shown as "SSE with PMK & ADE" in the…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-06-12T22:16:34.357+00:00
Manuel 41 Reputation points
answered 2020-09-16T23:26:41.17+00:00
JamesTran-MSFT 36,461 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

Not able to set ADE on data disk for SQL VM.

Problem Statement: We had a request to create a Standard B4ms SQL VM with two standard SSD to store DB logs while creating the VM we were not able to attach Standard SSDs of 512 GB to the VM so we followed below steps Measures took: Setting up…

SQL Server on Azure Virtual Machines
Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,236 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-08-03T14:36:27.377+00:00
RSaw-Knack 41 Reputation points
accepted 2020-08-21T09:30:21.227+00:00
RSaw-Knack 41 Reputation points
2 answers

How to manage temporary disk with active ADE

When using the EncryptFormatAll feature to initiate ADE on a Linux VM the temporary disk will get encrypted as well. The Azure documentation states that the Azure Linux Agent therefore cannot manage swap files anymore on that disk. The documentation…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-06-28T06:38:34.627+00:00
Manuel 41 Reputation points
answered 2020-08-13T09:05:22.707+00:00
Sumarigo-MSFT 43,911 Reputation points Microsoft Employee
3 answers

User profile - Folder Encrypted in Windows 10

Windows 10 (1809) - User profile folder has encrypted automatically by machine itself and why this is happening .In this case how can we find the root cause /log .However, the event viewer not showing related to encryption error . For eg User Outlook…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Windows 10 Setup
Windows 10 Setup
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Setup: The procedures involved in preparing a software program or application to operate within a computer or mobile device.
1,912 questions
Outlook Management
Outlook Management
Outlook: A family of Microsoft email and calendar products.Management: The act or process of organizing, handling, directing or controlling something.
4,924 questions
asked 2020-08-03T04:23:27.777+00:00
Vijay 1 Reputation point
answered 2020-08-12T06:15:10.807+00:00
Vicky Wang 2,646 Reputation points
4 answers

Enabling Azure Disk Encryption after Azure Migrate

I have recently migrated a virtual machine from on-premise and are trying to enable Azure Disk Encryption which fails. The error we get in 'BitLockerExtension.log' is: 2020-07-20T07:18:11.3357689Z [Info]: InitializeMachineVolumes: Encryptable OS…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-07-20T10:16:30.503+00:00
Thomas Pike 1 Reputation point
commented 2020-08-06T11:11:31.39+00:00
Sumarigo-MSFT 43,911 Reputation points Microsoft Employee
2 answers

How can remove azure disk encryption on vm if AzureDiskEncryption extension is deleted.

I am trying to remove encryption on one VM but mistakenly extension is deleted first . I am unable to disable encryption as I am getting errors while removing the encryption on the VM. Is there any solution for this. Below is the error. …

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-07-10T09:44:22.18+00:00
Mahitha 21 Reputation points
commented 2020-07-28T08:40:09.013+00:00
Sumarigo-MSFT 43,911 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

Disk Encryption

How long a VM will take to complete Disk encryption in Azure to enable disk encryption policy

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,210 questions
asked 2020-07-23T03:17:12.79+00:00
Soundarya A 21 Reputation points
accepted 2020-07-23T18:58:50.573+00:00
Soundarya A 21 Reputation points
2 answers One of the answers was accepted by the question author.

Windows VM Data Disk Encrypted with ADE but Encryption Status shows incorrectly in Azure

I have applied ADE to my VM; both to the OS Disk and Data Disk and the encryption appears to have been applied correctly to both. However the encryption status is not being picked up correctly by Azure, in the Portal or by PowerShell command. The OS Disk…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
asked 2020-07-14T19:59:44.437+00:00
Libstar 21 Reputation points
commented 2020-07-15T16:36:10.403+00:00
JamesTran-MSFT 36,461 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

Does Infoblox NIOS support Disk Encytion by Azure?

Could see only limited distributions of linux support Azure Disk Encyption methords as said in documentation"Linux server distributions that are not endorsed by Azure do not support Azure Disk Encryption" Could you please confirm if…

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Disk Storage
Azure Disk Storage
A high-performance, durable block storage designed to be used with Azure Virtual Machines and Azure VMware Solution.
579 questions
asked 2020-06-18T15:19:14.457+00:00
Bincy Babu S 21 Reputation points
answered 2020-06-22T17:37:54.617+00:00
Bincy Babu S 21 Reputation points