Oracle Solaris 11 ZFS Encryption

Use OKM with Oracle Solaris 11 ZFS to manage encryption and decryption of files in ZFS storage pools.

You can configure ZFS to use OKM's PKCS#11 provider, pkcs11_kms, to retrieve encryption keys from an OKM cluster. This requires a configured OKM cluster and a Solaris 11 system with established connectivity to KMAs in this OKM cluster. Once a Solaris 11 administrator installs and configures pkcs11_kms, the administrator can request that pkcs11_kms create a key, and then direct ZFS to use it.