Configuring Azure Disk Encryption for VMs
Azure Disk Encryption for VMs can help you to meet your organizational security and compliance commitments by encrypting the disks of your VMs in Azure. For Windows VMs, it uses the BitLocker feature and, for Linux VMs, it uses the DM-Crypt feature to encrypt the OS and data disks. Azure Disk Encryption is available for Windows and Linux VMs with a minimum of 2 GB of memory, and for Standard VMs and VMs with Azure Premium Storage; however, it is not available for Basic, A-series, or generation 2 VMs.
Tip
For more information about the prerequisites of Azure Disk Encryption, you can refer to the documentation at https://docs.microsoft.com/en-us/azure/security/azure-security-disk-encryption-prerequisites.
It uses Azure Key Vault to help to control and manage the disk encryption keys and secrets. Azure Disk Encryption also ensures that disks that are stored in Azure Storage are encrypted at rest.
You will get a High Severity alert...