
Section: [none]
Explanation:
SQL Databases: Transparent Data Encryption (TDE)
Azure SQL Database currently supports encryption at rest for Microsoft-managed service side and client-side encryption scenarios.
Support for server encryption is currently provided through the SQL feature called Transparent Data Encryption.
Once an Azure SQL Database customer enables TDE key are automatically created and managed for them.
Encryption at rest can be enabled at the database and server levels.
Virtual machine code: Azure confidential compute
Azure confidential computing protects your data while it's in use. It is the final piece to enable data protection through its lifecycle whether at rest, in transit, or in use. It is the cornerstone of Microsoft's 'Confidential Cloud' vision, which aims to make data and code opaque to the cloud provider.
Reference:
https://docs.microsoft.com/en-us/azure/security/fundamentals/encryption-atrest
https://azure.microsoft.com/en-us/blog/protect-data-in-use-with-the-public-preview-of-azure-confidential- computing/