Host infrastructure
Host infrastructure security pertains to the configuration, management, and security of compute (virtual machines, containers, and so on) and storage. This includes access permissions management of the servers, as well as applying optimal configuration at the OS level, and keeping up to date with security patching. In the IaaS model, the shared responsibility of the client starts at securing the host infrastructure.
With the PaaS model, including serverless compute, the cloud provider accepts full responsibility of securing the host infrastructure.
This provides another significant advantage of moving to the public cloud, particularly, to the PaaS services and serverless compute.
Since host infrastructure security is handled by the platform, we will not discuss it further in this chapter. Once again, certain details on it can be acquired from Azure compliance reports, which can be found on the Azure Trust Center website https://azure.microsoft.com/en-us/support/trust-center...