Forum Discussion

soolean's avatar
soolean
Level 4
12 months ago

Can I disable Key Management Service (KMS) encryption

I want to do it for testing purposes. My backups automatically run the policy through a script I set in centos. Will this be affected?

As far as I understand from the document, a policy needs to be created again. This seems to affect my system.

https://www.veritas.com/support/en_US/article.100020249

 

  • You don't - you just update the policy to point to a non ENCR_ volume pool

    E.g - names are for illustrative purposes

    Policy WIN-FS-PROD = Encr_ProdBackup  Backup will be encrypted on tape

    Policy WIN-FS-TEST = TestBackup. Backups will not be encrypted on tape

  • You don't - you just update the policy to point to a non ENCR_ volume pool

    E.g - names are for illustrative purposes

    Policy WIN-FS-PROD = Encr_ProdBackup  Backup will be encrypted on tape

    Policy WIN-FS-TEST = TestBackup. Backups will not be encrypted on tape

  • If the backup destination is a device that use encryption and the keys are provided by netbackup KMS then your backups will fail.
    The same goes for any duplication job you may have
    If not then it is ok to stop KMS service.