This note that is referring to the previous context about KMS is in the middle about cluster-wide encryption that does not require an advanced subscription. PLEASE make this note clearer. I almost didn't look deeper into cluster-wide encryption because I thought the whole feature required the advanced sub. The data sheet at https://www.redhat.com/en/resources/openshift-data-foundation-datasheet table 1 helped me understand the cluster wide encryption is available but only with a Kubernetes secret. Reported by: rhn-gps-abaumann https://access.redhat.com/documentation/en-us/red_hat_openshift_data_foundation/4.13/html/planning_your_deployment/security-considerations_rhodf#annotations:90631325-7cfe-45aa-8c6d-35033c87577b