Disk Encryption at Host Compliance Issue on Windows VM

Thorben J Nielsen 0 Reputation points
2024-12-10T16:44:49.8233333+00:00

After enabling Disk Encryption at Host on a Windows VM, the policy is still shown as non-compliant.

The disk is confirmed to be encrypted via both the console and PowerShell checks.

What could be causing the compliance status not to update?

What steps can be taken to resolve this?

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
8,173 questions
Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
177 questions
{count} votes

1 answer

Sort by: Most helpful
  1. anashetty 1,145 Reputation points Microsoft Vendor
    2024-12-11T05:25:44.22+00:00

    Hi Thorben J Nielsen,

    Welcome to the Microsoft Q&A Platform! Thank you for asking your question here.

    We understand from your query that you are experiencing an issue after enabling Disk Encryption at Host on a Windows VM, the policy is still shown as non-compliant. Please try below troubleshooting steps that I felt will help resolve the issue you reported.

    There are many causes for this as Policy evaluation may not be updated, Policy definition might not be in the latest version. Try this troubleshooting steps virtual machines should enable Azure Disk Encryption or EncryptionAtHost.

    Please try these steps How to debug unexpected Azure Policy compliance status for Azure resources?

    For more information on Policy issues, please check Scenario: Compliance isn't as expected

    Determine causes of non-compliance

    If you have any further queries, please do let us know. If the answer is helpful, please click "Accept Answer" and "Upvote it."User's image


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.