Microsoft Azure DCsv3 and DCdsv3 virtual machines are now generally available
Security and privacy are critically important when storing and processing sensitive information in the cloud, from payment transactions to financial records, personal health data, and more.
DC-series virtual machines are unique as they offer support for Intel Software Guard Extensions (Intel® SGX). These virtual machines enable customers to define a private memory region (application enclave), where other processes are prevented from reading the data while it is being processing in the central processing unit (CPU), thus protecting data from the operating system, hypervisor, and even from cloud operators.
Today, we are announcing the general availability of DCsv3 and DCdsv3-series Azure Virtual Machines. Customers can now run large workloads while protecting the confidentiality and integrity of their data even while it is being processed. As containers becoming de facto for customers to run their applications, Azure Kubernetes Service (AKS) with Intel® SGX add-on AKS is also generally available (GA) supporting in all DCsv3 regions.
DCsv3 and DCdsv3 VMs are built on 3rd Generation Intel® Xeon Scalable processors bringing in exciting new capabilities for customers. When compared to second generation Intel® Xeon E-2288G processors, the size of the Enclave Page Cache (EPC) memory has increased 1500 times, regular memory has increased 12 times and CPU cores have increased by 6x enabling larger workloads while maintaining data confidentiality.
With this generation, we are enabling customers to encrypt their virtual machine with unique key using Intel® Total Memory Encryption - Multi Key (TME-MK), which enables always-on encryption and provides protection against tenants on the same node. Leveraging both, customers using Intel SGX get confidential computing in application enclaves and additional protection for all software in their VMs.
Customer use cases
Multi-party data analytics
With an exponential growth of datasets and the desire to share data between multiple parties, organizations need to meet consumer data privacy and compliance requirements, particularly in heavily regulated industries such as healthcare.
Now, with DC-series virtual machines that are generally available today as part of the Azure confidential computing (ACC) portfolio will help organizations to meet their privacy and security needs and health care industry regulations like such as HIPAA and GDPR. For example, BeeKeeperAI on Microsoft Azure leverages DC-series virtual machines to create application enclaves enabling researchers and healthcare organizations to run analytics on a combined data set while maintaining confidentiality of the code and the data.
Secure blockchain
In the financial industry, Azure confidential computing is increasingly being used as a platform for secure blockchain solutions. One such partner leveraging Azure is Fireblocks.
Get started with DCsv3 today
To deploy DCsv3 and DCdsv3 virtual machines using Azure portal, check out the quick start guide available here. Additionally, a getting started guide to deploy an Azure Kubernetes service (AKS) cluster with DCsv3 VM nodes is available here.
DCsv3 and DCdsv3 are now available in:
- Australia: Australia East
- Asia: Southeast Asia, Japan East
- Europe: West Europe, North Europe, Switzerland North
- North America: East US2, Central US, South Central US, West US
For latest information on region availability, please refer to Azure Products by Region. To learn about Azure confidential computing, Intel SGX and DCsv3 VMs, please refer below links
- Azure Confidential Computing – Protect Data In Use | Microsoft Azure
- Intel® Software Guard Extensions (Intel® SGX)
- DCsv3 and DCdsv3-series - Azure Virtual Machines | Microsoft Docs
- Confidential computing Intel SGX nodes on Azure Kubernetes Service (AKS) | Microsoft Docs
- Big data analytics on confidential computing - Azure Example Scenarios | Microsoft Docs
- QuickStart - Create Intel SGX VM in the Azure Portal | Microsoft Docs
- Azure Confidential Computing FAQ | Microsoft Docs
Published on:
Learn moreRelated posts
Azure Marketplace and AppSource: A Unified AI Apps and Agents Marketplace
The Microsoft AI Apps and Agents Marketplace is set to transform how businesses discover, purchase, and deploy AI-powered solutions. This new ...
Episode 413 – Simplifying Azure Files with a new file share-centric management model
Welcome to Episode 413 of the Microsoft Cloud IT Pro Podcast. Microsoft has introduced a new file share-centric management model for Azure Fil...
Bringing Context to Copilot: Azure Cosmos DB Best Practices, Right in Your VS Code Workspace
Developers love GitHub Copilot for its instant, intelligent code suggestions. But what if those suggestions could also reflect your specific d...
Build an AI Agentic RAG search application with React, SQL Azure and Azure Static Web Apps
Introduction Leveraging OpenAI for semantic searches on structured databases like Azure SQL enhances search accuracy and context-awareness, pr...
Sales Collaboration: How Sales Teams Work in Dynamics 365 CE
A Sales Team in Microsoft Dynamics 365 Sales represents a group of users who collaborate to manage and close sales opportunities efficiently. ...
Announcing latest Azure Cosmos DB Python SDK: Powering the Future of AI with OpenAI
We’re thrilled to announce the stable release of Azure Cosmos DB Python SDK version 4.14.0! This release brings together months of innov...
Environment Variables vs Configuration Tables vs Hardcoding in Dynamics 365 Customer Engagement (CE)
In Dynamics 365 Customer Engagement (CE), managing configuration values effectively is key to building scalable and maintainable solutions. En...
How Azure CLI handles your tokens and what you might be ignoring
Running az login feels like magic. A browser pops up, you pick an account, and from then on, everything just works. No more passwords, no more...
Boost your Azure Cosmos DB Efficiency with Azure Advisor Insights
Azure Cosmos DB is Microsoft’s globally distributed, multi-model database service, trusted for mission-critical workloads that demand high ava...
Microsoft Azure Fundamentals #5: Complex Error Handling Patterns for High-Volume Microsoft Dataverse Integrations in Azure
🚀 1. Problem Context When integrating Microsoft Dataverse with Azure services (e.g., Azure Service Bus, Azure Functions, Logic Apps, Azure SQ...
