Note
Access to this page requires authorization. You can try signing in or changing directories.
Access to this page requires authorization. You can try changing directories.
Applies to: ✔️ Linux VMs ✔️ Windows VMs ✔️ Flexible scale sets ✔️ Uniform scale sets
The 'EC' sub-family of VM size series are one of Azure's security focused memory-optimized VM instances. They're designed for confidential computing with enhanced data protection and integrity, featuring various hardware-based Trusted Execution Environments (TEEs). These instances are ideal for memory-intensive workloads, such as large databases, big data analytics, and enterprise applications that require significant amounts of RAM to maintain high performance.
Workloads and use cases
Memory-Intensive Workloads: Any workload that demands a large memory footprint to efficiently handle tasks, such as simulations, large-scale computations in scientific research, or financial risk modeling.
Large Databases and SQL Servers: They are ideal for hosting large relational databases like SQL Server and NoSQL databases that benefit from high memory capacities for improved performance in data processing and transaction handling.
Enterprise Applications: Suitable for resource-intensive enterprise applications, including large-scale ERP and CRM systems, where the availability of ample memory is crucial for managing complex transactions and user loads.
Big Data Applications: Effective for big data analytics applications that need to process vast amounts of data in memory to speed up analysis and insights generation.
In-Memory Computing: Such as in-memory databases (e.g., SAP HANA) that require large amounts of RAM to keep the entire dataset in memory, allowing for ultra-fast data processing and query responses.
Data Warehousing: Provides the necessary resources for data warehousing solutions that handle and analyze large datasets, improving query performance and reducing response times.
Series in family
ECasv6 and ECadsv6-series
Azure's ECasv6-series virtual machines provide robust confidential computing capabilities, ensuring code and data remain secure during processing. Companies can migrate sensitive workloads to cloud infrastructure without modifying existing applications. The series runs on AMD's fourth-generation EPYC™ processors configured for multi-threaded operations with enhanced L3 cache architecture. AMD's SEV-SNP technology creates hardware-isolated environments that prevent unauthorized access from hypervisors, host management systems, and administrative users. This isolation protects virtual machines from neighboring VMs, hypervisor vulnerabilities, and both hardware and software-based security threats.
The platform includes hardware-based VM memory encryption alongside native support for confidential disk encryption feature. Organizations can implement OS disk encryption at boot through customer-managed keys (CMK) or platform-managed keys (PMK). This feature is fully integrated with Azure KeyVault and Azure Managed HSM ensuring FIPS 140-2 Level 3 compliance.
ECasv6 instances provide balanced memory-to-vCPU ratios suitable for production environments. Configurations scale up to 96 vCPUs paired with 672 GiB RAM and remote storage connectivity. These specifications support diverse workloads including e-commerce platforms, web services, desktop virtualization, secure databases, enterprise applications and more.
View the full ECasv6-series page.
| Part | Quantity Count Units | Specs SKU ID, Performance Units, etc. | 
|---|---|---|
| Processor | 2 - 96 vCPUs | AMD EPYC™ 9004 (Genoa) [x86-64] | 
| Memory | 16 - 672 GiB | |
| Local Storage | None | |
| Remote Storage | 8 - 64 Disks | 4000 - 175000 IOPS 90 - 4320 MBps | 
| Network | 2 - 8 NICs | 12500 - 34000 Mbps | 
| Accelerators | None | 
ECesv5 and ECedsv5-series
The ECesv5-series and ECedsv5-series are Azure confidential VMs that can be used to protect the confidentiality and integrity of your code and data while it's being processed in the public cloud. Organizations can use these VMs to seamlessly bring confidential workloads to the cloud without any code changes to the application. These machines are powered by Intel® 4th Generation Xeon® Scalable processors with Base Frequency of 2.1 GHz, All Core Turbo Frequency of reach 2.9 GHz and Intel® Advanced Matrix Extensions (AMX) for AI acceleration. Featuring Intel® Trust Domain Extensions (TDX), these VMs are hardened from the cloud virtualized environment by denying the hypervisor, other host management code and administrators access to the VM memory and state. It helps to protect VMs against a broad range of sophisticated hardware and software attacks. These VMs have native support for confidential disk encryption meaning organizations can encrypt their VM disks at boot with either a customer-managed key (CMK), or platform-managed key (PMK). This feature is fully integrated with Azure KeyVault or Azure Managed HSM with validation for FIPS 140-2 Level 3.
View the full ECesv5 and ECedsv5-series page.
| Part | Quantity Count Units | Specs SKU ID, Performance Units, etc. | 
|---|---|---|
| Processor | 2 - 128vCores | Intel Xeon (Sapphire Rapids) | 
| Memory | 16 - 768GiB | |
| Data Disks | 4 - 32Disks | 3750 - 459200IOPS / 80 - 4000MBps | 
| Network | 2 - 8NICs | 3000 - 30000Mbps | 
| Accelerators | None | 
ECas_ccv5 and ECads_ccv5-series
Confidential child capable VMs allow you to borrow resources from the parent VM you deploy, to create AMD SEV-SNP protected child VMs. The parent VM has almost complete feature parity with any other general purpose Azure VM (for example, E-series VMs). This parent-child deployment model can help you achieve higher levels of isolation from the Azure host and parent VM. These confidential child capable VMs are built on the same hardware that powers our Azure confidential VMs. Azure confidential VMs are now generally available.
View the full ECas_ccv5 and ECads_ccv5-series page.
| Part | Quantity Count Units | Specs SKU ID, Performance Units, etc. | 
|---|---|---|
| Processor | 4 - 96vCores | AMD EPYC (Milan) | 
| Memory | 32 - 672GiB | |
| Data Disks | 4 - 32Disks | 6400 - 80000IOPS / 144 - 1600MBps | 
| Network | 2 - 8NICs | |
| Accelerators | None | 
Previous-generation EC family series
For older sizes, see previous generation sizes.
Other size information
List of all available sizes: Sizes
Pricing Calculator: Pricing Calculator
Information on Disk Types: Disk Types
Next steps
Take advantage of the latest performance and features available for your workloads by changing the size of a virtual machine.
Utilize Microsoft's in-house designed ARM processors with Azure Cobalt VMs.
Learn how to Monitor Azure virtual machines.