Managing Encryption Keys
Each encrypted cluster file system requires a wrapping key, which persistently stores the encrypted data-encryption keys that ZFS manages. Oracle Solaris Cluster stores the wrapping key in the Cluster Configuration Repository (CCR). By using the CCR, the wrapping key is always available during a failover or switchover.