Skip to content

Commit 80de56a

Browse files
Merge pull request #211168 from sipastak/dbd-cmk
1983080 Data Box Disk: [Update] CMK for Data Box Disk and CxD
2 parents 3492c7d + f0722bc commit 80de56a

23 files changed

+105
-28
lines changed

articles/databox/data-box-disk-deploy-ordered.md

Lines changed: 105 additions & 28 deletions
Original file line numberDiff line numberDiff line change
@@ -7,21 +7,21 @@ author: alkohli
77
ms.service: databox
88
ms.subservice: disk
99
ms.topic: tutorial
10-
ms.date: 07/10/2022
10+
ms.date: 10/21/2022
1111
ms.author: alkohli
1212
# Customer intent: As an IT admin, I need to be able to order Data Box Disk to upload on-premises data from my server onto Azure.
1313
---
1414
# Tutorial: Order an Azure Data Box Disk
1515

16-
Azure Data Box Disk is a hybrid cloud solution that allows you to import your on-premises data into Azure in a quick, easy, and reliable way. You transfer your data to solid-state disks (SSDs) supplied by Microsoft and ship the disks back. This data is then uploaded to Azure.
16+
Azure Data Box Disk is a hybrid cloud solution that allows you to import your on-premises data into Azure in a quick, easy, and reliable way. You transfer your data to solid-state disks (SSDs) supplied by Microsoft and ship the disks back. This data is then uploaded to Azure.
1717

1818
This tutorial describes how you can order an Azure Data Box Disk. In this tutorial, you learn about:
1919

2020
> [!div class="checklist"]
2121
>
2222
> * Order a Data Box Disk
2323
> * Track the order
24-
> * Cancel the order
24+
> * Cancel the order
2525
2626
## Prerequisites
2727

@@ -60,62 +60,139 @@ Take the following steps to order Data Box Disk.
6060

6161
|Setting|Value|
6262
|---|---|
63-
|Subscription|Select the subscription for which Data Box service is enabled.<br> The subscription is linked to your billing account. |
6463
|Transfer type| Import to Azure|
64+
|Subscription|Select the subscription for which Data Box service is enabled.<br> The subscription is linked to your billing account. |
65+
|Resource group| Select the resource group you want to use to order a Data Box. <br> A resource group is a logical container for the resources that can be managed or deployed together.|
6566
|Source country/region | Select the country/region where your data currently resides.|
6667
|Destination Azure region|Select the Azure region where you want to transfer data.|
6768

6869
4. Select **Data Box Disk**. The maximum capacity of the solution for a single order of 5 disks is 35 TB. You could create multiple orders for larger data sizes.
6970

7071
![Select Data Box Disk option 2](media/data-box-disk-deploy-ordered/select-data-box-sku-zoom.png)
7172

72-
5. In **Order**, specify the **Order details**. Enter or select the following information.
73+
5. In **Order**, specify the **Order details** in the **Basics** tab. Enter or select the following information.
74+
7375

7476
|Setting|Value|
7577
|---|---|
76-
|Name|Provide a friendly name to track the order.<br> The name can have between 3 and 24 characters that can be letters, numbers, and hyphens. <br> The name must start and end with a letter or a number. |
77-
|Resource group| Use an existing or create a new one. <br> A resource group is a logical container for the resources that can be managed or deployed together. |
78-
|Destination Azure region| Select a region for your storage account.<br> Currently, storage accounts in all regions in US, West and North Europe, Canada, and Australia are supported. |
79-
|Estimated data size in TB| Enter an estimate in TB. <br>Based on the data size, Microsoft sends you an appropriate number of 8 TB SSDs (7 TB usable capacity). <br>The maximum usable capacity of 5 disks is up to 35 TB. |
78+
|Subscription| The subscription is automatically populated based on your earlier selection. |
79+
|Resource group| The resource group you selected previously. |
80+
|Import order name|Provide a friendly name to track the order.<br> The name can have between 3 and 24 characters that can be letters, numbers, and hyphens. <br> The name must start and end with a letter or a number. |
81+
|Number of disks per order| Enter the number of disks you would like to order. <br> There can be a maximum of 5 disks per order (1 disk = 7TB). |
8082
|Disk passkey| Supply the disk passkey if you check **Use custom key instead of Azure generated passkey**. <br> Provide a 12 to 32-character alphanumeric key that has at least one numeric and one special character. The allowed special characters are `@?_+`. <br> You can choose to skip this option and use the Azure generated passkey to unlock your disks.|
81-
|Storage destination | Choose from storage account or managed disks or both. <br> Based on the specified Azure region, select a storage account from the filtered list of an existing storage account. Data Box Disk can be linked with only 1 storage account. <br> You can also create a new **General-purpose v1**, **General-purpose v2**, or **Blob storage account**. <br>Storage accounts with virtual networks are supported. To allow Data Box service to work with secured storage accounts, enable the trusted services within the storage account network firewall settings. For more information, see how to [Add Azure Data Box as a trusted service](../storage/common/storage-network-security.md#exceptions).|
8283

83-
If using storage account as the storage destination, you see the following screenshot:
84+
![Screenshot of order details](media/data-box-disk-deploy-ordered/data-box-disk-order.png)
85+
86+
6. On the **Data destination** screen, select the **Data destination** - either storage accounts or managed disks (or both).
87+
88+
|Setting|Value|
89+
|---|---|
90+
|Data destination |Choose from storage account or managed disks or both.<br> Based on the specified Azure region, select a storage account from the filtered list of an existing storage account. Data Box Disk can be linked with only 1 storage account.<br> You can also create a new General-purpose v1, General-purpose v2, or Blob storage account.<br> Storage accounts with virtual networks are supported. To allow Data Box service to work with secured storage accounts, enable the trusted services within the storage account network firewall settings. For more information, see how to Add Azure Data Box as a trusted service.|
91+
|Destination Azure region| Select a region for your storage account. <br> Currently, storage accounts in all regions in US, West and North Europe, Canada, and Australia are supported. |
92+
|Resource group| If using Data Box Disk to create managed disks from the on-premises VHDs, you need to provide the resource group.<br> Create a new resource group if you intend to create managed disks from on-premises VHDs. Use an existing resource group only if it was created for Data Box Disk order for managed disk by Data Box service.<br> Only one resource group is supported.|
93+
94+
![Screenshot of Data Box Disk data destination.](media/data-box-disk-deploy-ordered/data-box-disk-order-destination.png)
95+
96+
The storage account specified for managed disks is used as a staging storage account. The Data Box service uploads the VHDs to the staging storage account and then converts those into managed disks and moves to the resource groups. For more information, see Verify data upload to Azure.
97+
98+
7. Select **Next: Security>** to continue.
99+
100+
The **Security** screen lets you use your own encryption key.
101+
102+
All settings on the **Security** screen are optional. If you don't change any settings, the default settings will apply.
103+
104+
8. If you want to use your own customer-managed key to protect the unlock passkey for your new resource, expand **Encryption type**.
105+
106+
![Screenshot of Data Box Disk encryption type.](media/data-box-disk-deploy-ordered/data-box-disk-encryption.png)
107+
108+
Configuring a customer-managed key for your Azure Data Box Disk is optional. By default, Data Box uses a Microsoft managed key to protect the unlock passkey.
109+
110+
A customer-managed key doesn't affect how data on the device is encrypted. The key is only used to encrypt the device unlock passkey.
111+
112+
If you don't want to use a customer-managed key, skip to Step 14.
113+
114+
1. To use a customer-managed key, select **Customer managed key** as the key type. Then choose **Select a key vault and key**.
115+
116+
![Screenshot of Customer managed key selection.](media/data-box-disk-deploy-ordered/data-box-disk-customer-key.png)
117+
118+
1. In the **Select key from Azure Key Vault** blade:
119+
120+
- The **Subscription** is automatically populated.
121+
122+
- For **Key vault**, you can select an existing key vault from the dropdown list.
123+
124+
![Screenshot of existing key vault.](media/data-box-disk-deploy-ordered/data-box-disk-select-key-vault.png)
125+
126+
Or select **Create new key vault** if you want to create a new key vault.
127+
128+
![Screenshot of new key vault.](media/data-box-disk-deploy-ordered/data-box-disk-create-new-key-vault.png)
129+
130+
Then, on the **Create key vault** screen, enter the resource group and a key vault name. Ensure that **Soft delete** and **Purge protection** are enabled. Accept all other defaults, and select **Review + Create**.
131+
132+
![Screenshot of Create key vault blade.](media/data-box-disk-deploy-ordered/data-box-disk-key-vault-blade.png)
133+
134+
Review the information for your key vault, and select **Create**. Wait for a couple minutes for key vault creation to complete.
135+
136+
![Screenshot of Review + create.](media/data-box-disk-deploy-ordered/data-box-disk-create-key-vault.png)
137+
138+
1. The **Select a key** blade will display your selected key vault.
139+
140+
![Screenshot of new key vault 2.](media/data-box-disk-deploy-ordered/data-box-disk-new-key-vault.png)
141+
142+
If you want to create a new key, select **Create new key**. You must use an **RSA key**. The size can be 2048 or greater. Enter a name for your new key, accept the other defaults, and select **Create**.
143+
144+
![Screenshot of Create new key.](media/data-box-disk-deploy-ordered/data-box-disk-new-key.png)
145+
146+
You'll be notified when the key has been created in your key vault. Your new key will be selected and displayed on the **Select a key** blade.
147+
148+
1. Select the **Version** of the key to use, and then choose **Select**.
149+
150+
![Screenshot of key version.](media/data-box-disk-deploy-ordered/data-box-disk-key-version.png)
151+
152+
If you want to create a new key version, select **Create new version**.
153+
154+
![Screenshot of new key version.](media/data-box-disk-deploy-ordered/data-box-disk-new-key-version.png)
155+
156+
Choose settings for the new key version, and select **Create**.
157+
158+
![Screenshot of new key version settings.](media/data-box-disk-deploy-ordered/data-box-disk-new-key-settings.png)
159+
160+
The **Encryption type** settings on the **Security** screen show your key vault and key.
161+
162+
![Screenshot of encryption type settings.](media/data-box-disk-deploy-ordered/data-box-disk-encryption-settings.png)
163+
164+
1. Select a user identity that you'll use to manage access to this resource. Choose **Select a user identity**. In the panel on the right, select the subscription and the managed identity to use. Then choose **Select**.
84165

85-
![Data Box Disk order for storage account](media/data-box-disk-deploy-ordered/order-storage-account.png)
166+
A user-assigned managed identity is a stand-alone Azure resource that can be used to manage multiple resources. For more information, see Managed identity types.
86167

87-
If using Data Box Disk to create managed disks from the on-premises VHDs, you also need to provide the following information:
168+
If you need to create a new managed identity, follow the guidance in Create, list, delete, or assign a role to a user-assigned managed identity using the Azure portal.
88169

89-
|Setting |Value |
90-
|---------|---------|
91-
|Resource group | Create a new resource group if you intend to create managed disks from on-premises VHDs. Use an existing resource group only if it was created for Data Box Disk order for managed disk by Data Box service. <br> Only one resource group is supported.|
170+
![Screenshot of user identity.](media/data-box-disk-deploy-ordered/data-box-disk-user-identity.png)
92171

93-
![Data Box Disk order for managed disk](media/data-box-disk-deploy-ordered/order-managed-disks.png)
172+
The user identity is shown in Encryption type settings.
94173

95-
The storage account specified for managed disks is used as a staging storage account. The Data Box service uploads the VHDs to the staging storage account and then converts those into managed disks and moves to the resource groups. For more information, see [Verify data upload to Azure](data-box-disk-deploy-upload-verify.md#verify-data-upload-to-azure).
174+
![Screenshot of user identity 2.](media/data-box-disk-deploy-ordered/data-box-disk-user-identity-2.png)
96175

97-
6. Click **Next**.
98176

99-
![Supply order details](media/data-box-disk-deploy-ordered/data-box-order-details.png)
177+
8. In the **Contact details** tab, select **Add address** and enter the address details. Click Validate address. The service validates the shipping address for service availability. If the service is available for the specified shipping address, you receive a notification to that effect.
100178

101-
7. In the **Shipping address** tab, provide your first and last name, name and postal address of the company and a valid phone number. Click **Validate address**. The service validates the shipping address for service availability. If the service is available for the specified shipping address, you receive a notification to that effect.
179+
If you have chosen self-managed shipping, see [Use self-managed shipping](data-box-disk-portal-customer-managed-shipping.md).
102180

103-
After the order is processed, you will receive an email notification. If you have chosen self-managed shipping, see [Use self-managed shipping](data-box-disk-portal-customer-managed-shipping.md).
181+
![Screenshot of Data Box Disk contact details.](media/data-box-disk-deploy-ordered/data-box-disk-contact-details.png)
104182

105-
![Provide shipping address](media/data-box-disk-deploy-ordered/data-box-shipping-address.png)
106-
8. In the **Notification details**, specify email addresses. The service sends email notifications regarding any updates to the order status to the specified email addresses.
183+
Specify valid email addresses as the service sends email notifications regarding any updates to the order status to the specified email addresses.
107184

108185
We recommend that you use a group email so that you continue to receive notifications if an admin in the group leaves.
109186

110-
9. Review the information **Summary** related to the order, contact, notification, and privacy terms. Check the box corresponding to the agreement to privacy terms.
187+
9. Review the information in the **Review + Order** tab related to the order, contact, notification, and privacy terms. Check the box corresponding to the agreement to privacy terms.
111188

112-
10. Click **Order**. The order takes a few minutes to be created.
189+
10. Click **Order**. The order takes a few minutes to be created.
113190

114191
## Track the order
115192

116193
After you have placed the order, you can track the status of the order from Azure portal. Go to your order and then go to **Overview** to view the status. The portal shows the job in **Ordered** state.
117194

118-
![Data Box Disk status ordered](media/data-box-disk-deploy-ordered/data-box-portal-ordered.png)
195+
![Data Box Disk status ordered.](media/data-box-disk-deploy-ordered/data-box-portal-ordered.png)
119196

120197
If the disks are not available, you receive a notification. If the disks are available, Microsoft identifies the disks for shipment and prepares the disk package. During disk preparation, following actions occur:
121198

@@ -133,7 +210,7 @@ To cancel this order, in the Azure portal, go to **Overview** and click **Cancel
133210

134211
You can only cancel when the disks are ordered, and the order is being processed for shipment. Once the order is processed, you can no longer cancel the order.
135212

136-
![Cancel order](media/data-box-disk-deploy-ordered/cancel-order1.png)
213+
![Cancel order.](media/data-box-disk-deploy-ordered/cancel-order1.png)
137214

138215
To delete a canceled order, go to **Overview** and click **Delete** from the command bar.
139216

94.1 KB
Loading
48.3 KB
Loading
31.5 KB
Loading
114 KB
Loading
56.4 KB
Loading
77.5 KB
Loading
78.3 KB
Loading
29.4 KB
Loading
21.9 KB
Loading

0 commit comments

Comments
 (0)