# About "Encryption at rest" using x-pack trial

**URL:** <https://discuss.elastic.co/t/about-encryption-at-rest-using-x-pack-trial/102931>\
**Category:** Elasticsearch\
**Created:** [October 6, 2017, 1:50am UTC](https://discuss.elastic.co/t/about-encryption-at-rest-using-x-pack-trial/102931 "2017-10-06T01:50:43Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![KanakoNakai](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/kanakonakai/32/18450_2.png) [@KanakoNakai](https://discuss.elastic.co/u/KanakoNakai)\
**Post date:** [October 6, 2017, 1:50am UTC](https://discuss.elastic.co/t/about-encryption-at-rest-using-x-pack-trial/102931/1 "2017-10-06T01:50:43Z")

</div>

we are planing to subscribe PLATINUM support, so I investigating security feature using x-pack trial.  
x-pack security provide "Encryption at rest support" but I could not find any kind of this setting information in Elasticsearch official document.  
I checked subscriptions page (see below).

> **[Subscriptions | Elastic Stack Products & Support | Elastic](https://www.elastic.co/subscriptions)**
>
> See subscription levels, pricing, and tiered features for on-prem deployments of the Elastic Stack (Elasticsearch Kibana, Beats, and Logstash), Elastic Cloud, and Elastic Cloud Enterprise.

How can I setting "Encryption at rest" using x-pack trial.

In addition, I found following topic in this forum.

> [@How should I encrypt data at rest with Elasticsearch?](https://discuss.elastic.co/t/how-should-i-encrypt-data-at-rest-with-elasticsearch/96):
>
> Note: while we recommend these options, we cannot provide support for any particular tool or help debugging issues with dm-crypt itself. For the purpose of protecting Data at Rest through encryption, from the Elasticsearch point of view, we believe the relying on the underlying Operating System to handle this function is best. The recommended encryption method is [dm-crypt](http://en.wikipedia.org/wiki/Dm-crypt). dm-crypt is available on most major linux distributions -- it just needs to be [enabled and configured](https://wiki.archlinux.org/index.php/Dm-crypt). We cannot recommend …

If PLATINUM subscription does not support "Encryption at rest data", we need to consider altanative solution for encript data...

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [October 6, 2017, 4:00am UTC](https://discuss.elastic.co/t/about-encryption-at-rest-using-x-pack-trial/102931/2 "2017-10-06T04:00:56Z")

</div>

We have a procedure using dmcrypt, that if followed to apply encryption at rest, will guarantee support for your cluster

---

<div class="post-metadata">

**Author:** ![KanakoNakai](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/kanakonakai/32/18450_2.png) [@KanakoNakai](https://discuss.elastic.co/u/KanakoNakai)\
**Post date:** [October 6, 2017, 4:26am UTC](https://discuss.elastic.co/t/about-encryption-at-rest-using-x-pack-trial/102931/3 "2017-10-06T04:26:51Z")

</div>

Thank you for your reply.

I see.  
So if we buy a subscription of Elasticsearch , elastic will provide that 'procedure of dm-crypt' and support setup.

I felt that the phrase 'Encryption at rest support','support' was misleading in subscription page.  
you can write 'Encryption at rest (LUKS) setup support' is better..

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [November 3, 2017, 4:34am UTC](https://discuss.elastic.co/t/about-encryption-at-rest-using-x-pack-trial/102931/4 "2017-11-03T04:34:56Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
