Soru

Zorluk: OrtaConfigure Azure Data Box and Import/Export Services

You plan to use the Azure Import/Export service to import 12 TB12\text{ TB} of archive data from your on-premises network to an Azure Storage account. You have prepared several SATA hard drives and need to run the WAImportExport tool on a Windows client machine to copy the files and prepare the drives.

Which file must be generated by the WAImportExport tool during drive preparation and then uploaded to the Azure portal when creating the import job?

  1. A journal (.jrn) file that contains drive information, BitLocker encryption keys, and file copy logs.Cevap
  2. B
    A Shared Access Signature (.sas) token file that authorizes the Azure datacenter to access the destination storage account containers.
  3. C
    A storage account firewall configuration (.json) file that bypasses network restrictions for the client machine's public IP address.
  4. D
    An Azure RBAC role assignment (.xml) file that delegates the Storage Blob Data Contributor role to the import job principal.

Cevap

The journal (.jrn) file containing drive information, BitLocker encryption keys, and file copy logs.
The journal (.jrn) file is the standard output of the WAImportExport tool. It contains the drive metadata, BitLocker encryption keys, and log of copied files. Uploading this file to the Azure portal during import job creation is mandatory because it allows Azure to decrypt the physical drive once it arrives at the Azure datacenter.

Adım Adım Çözüm

1
Run the WAImportExport tool on the on-premises client machine to copy data and prepare the drives.
The tool copies the data to the hard drives, encrypts them using BitLocker, and generates a journal (.jrn) file.
The journal file is required to link the physical drive to the import job.
2
Create an import job in the Azure portal.
You provide destination storage account details, shipping information, and upload the generated journal (.jrn) file.
Azure needs the journal file to retrieve the BitLocker recovery keys and map the drive contents to the destination storage account.
3
Ship the physical drives to the Azure datacenter.
Azure operators mount the drives and use the uploaded journal file info to copy the data to your storage account.
This completes the offline transfer process securely without exposing encryption keys in transit.

Anahtar Kavram

Drive preparation and journal (.jrn) file requirements in Azure Import/Export service.
Bu soruyu puanla