Skip to main content
NetApp Knowledge Base

Do I need self-encrypting drives to use NSE

Views:
16
Visibility:
Public
Votes:
0
Category:
ontap-9
Specialty:
CORE
Last Updated:
6/12/2025, 1:19:38 PM

Applies to

  • ONTAP 9
  • NetApp Storage Encryption (NSE)
  • Self-Encrypting Drives (SED)
  • Federal Information Processing Standards (FIPS) Drives

Answer

  • SEDs are necessary for hardware-based encryption
  • These drives automatically encrypt data at rest using built-in encryption capabilities
  • If the storage system does not have SEDs, the storage encryption disk show command will not list any disks because there are no drives with encryption capabilities to display
  • To determine if your storage system has SEDs, you can use the following command:
::> storage disk show -fields encrypt
 
(This command will list all disks and their encryption status. If the encrypt field is false for all disks, it indicates that none of the disks are SEDs)
  • Alternative Encryption Options: If upgrading to SEDs is not feasible, consider using software-based encryption options such as NVE or NAE, which do not require SEDs

 

NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.