Windows 365 Cloud PCs: now secured with encryption at host

This post has been republished via RSS; it originally appeared at: New blog articles in Microsoft Community Hub.

The Windows Cloud Experiences team is happy to announce that as of April 2023, all newly provisioned Cloud PCs will now be encrypted at the host level using Azure’s host-based encryption capabilities. To provide the best in class zero trust protection, all levels of the stack, Windows 365 will now encrypt the physical Azure server that your Cloud PC is allocated to.

How it works and at what cost

All data is encrypted at rest and flows encrypted from the host to the storage service, where it’s persisted. Essentially, encryption at host encrypts your data from end-to-end. Encryption at host doesn’t use your Cloud PC's CPU and doesn't impact your Cloud PC's performance.

This capability will be available for all Cloud PC SKUs at no additional cost. It’ll also be in addition to the storage encryption that already exists for Cloud PC data at rest today.

Learn more about host-based encryption

To learn how to deploy this capability, see Use the Azure portal to enable end-to-end encryption using encryption at host. To learn more about the default security posture of Windows 365 Cloud PCs and how you can configure security policies that are optimized for the needs of your organization, see Security guidelines.


Continue the conversation. Find best practices. Bookmark the Windows 365 Community and follow us @MSWindowsITPro on Twitter. 

Leave a Reply

Your email address will not be published. Required fields are marked *

*

This site uses Akismet to reduce spam. Learn how your comment data is processed.