Move an encrypted volume

Contributors

You can use the volume move start command to move an encrypted volume. The moved volume can reside on the same aggregate or a different aggregate.

What you’ll need

You must be a cluster administrator to perform this task, or an SVM administrator to whom the cluster administrator has delegated authority.

About this task

The move will fail if the destination node or destination volume does not support volume encryption.

The -encrypt-destination option for volume move start defaults to true for encrypted volumes. Requiring you to specify explicitly that you do not want the destination volume to be encrypted ensures that you do not inadvertently unencrypt the data on the volume.

Steps
  1. Move an existing encrypted volume and leave the data on the volume encrypted:

    volume move start -vserver SVM_name -volume volume_name -destination-aggregate aggregate_name

    For complete command syntax, see the man page for the command.

    The following command moves an existing volume named vol1 to the destination aggregate aggr3 and leaves the data on the volume encrypted:

    cluster1::> volume move start -vserver vs1 -volume vol1 -destination-aggregate aggr3
  2. Verify that the volume is enabled for encryption:

    volume show -is-encrypted true

    For complete command syntax, see the man page for the command.

    The following command displays the encrypted volumes on cluster1:

    cluster1::> volume show -is-encrypted true
    
    Vserver  Volume  Aggregate  State  Type  Size  Available  Used
    -------  ------  ---------  -----  ----  -----  --------- ----
    vs1      vol1    aggr3     online    RW  200GB    160.0GB  20%