In vSphere 6.7 and later, a vCenter Server alarm notifies you when an ESXi host's encryption mode has become deactivated. You can re-activate the host encryption mode if it has become deactivated.

Prerequisites

  • Verify that you have the required privileges: Cryptographic operations.Register host
  • Before re-activating encryption mode, troubleshoot the cause and attempt to fix the problem manually.

Procedure

  1. Connect to vCenter Server by using the vSphere Client.
  2. Navigate to the Summary tab for the ESXi host.
    When the encryption mode is deactivated, the Host Requires Encryption Mode Enabled alarm appears.
  3. Decide if you want to either acknowledge the alarm, or reset the alarm to green but not re-activate the host encryption mode now.
    When you click either Acknowledge or Reset to green, the alarm goes away, but the encryption mode for the host remains deactivated until you re-activate it.
  4. Navigate to the Monitor tab for the ESXi host and click Events.
    More information is displayed about why encryption mode is deactivated. Perform suggested troubleshooting before you re-activate the encryption mode.
  5. On the Summary tab, click Enable Host Encryption Mode to re-activate host encryption.
    A message appears, warning that encryption key data is transmitted to the host.
  6. Click Yes.