{
    "api_version": "1",
    "kind": "dse_post",
    "self": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/",
    "item": {
        "id": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/",
        "slug": "dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs",
        "url": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/",
        "alternate_urls": {
            "markdown": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs.md",
            "json": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/"
        },
        "title": "Review isolation retirement separately from whether an Azure VM size still runs",
        "summary": "Can a VM size remain available after its dedicated isolation property is retired?",
        "format": {
            "slug": "guide",
            "name": "Guide"
        },
        "priority": {
            "slug": "info",
            "name": "Information"
        },
        "featured": false,
        "image": {
            "theme": "cyber-defense",
            "label": "Cyber defense",
            "alt": "Layered glass and metal cyber-defense structure with controlled blue and gold signal paths.",
            "card_url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-card.webp?v=1.8.20",
            "hero_url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-hero.webp?v=1.8.20",
            "social_url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-social-v2.jpg?v=1.8.20",
            "width": 2400,
            "height": 1350
        },
        "topics": [
            {
                "slug": "cybersecurity",
                "name": "Cybersecurity",
                "url": "https://update.dsesecurity.com/topic/cybersecurity/"
            },
            {
                "slug": "it",
                "name": "IT",
                "url": "https://update.dsesecurity.com/topic/it/"
            }
        ],
        "author": {
            "name": "DSE Security Editorial Team",
            "url": "https://update.dsesecurity.com/#editorial-team",
            "type": "Organization"
        },
        "publisher": {
            "name": "Detection Systems & Engineering",
            "url": "https://dsesecurity.com/"
        },
        "published_at": "2026-09-10T00:30:48+00:00",
        "modified_at": "2026-09-10T00:35:07+00:00",
        "reviewed_on": "2026-09-09",
        "reading_minutes": 2,
        "word_count": 259,
        "potentially_affected": "Owners of Azure workloads selected for an isolated VM size's single-server isolation property.",
        "dse_recommendation": "Track the isolation retirement notice as a workload design change even when the VM size itself remains usable.",
        "primary_source": {
            "name": "Isolation for VMs in Azure - Azure Virtual Machines | Microsoft Learn",
            "url": "https://learn.microsoft.com/en-us/azure/virtual-machines/isolation",
            "published_on": null,
            "authority": "Microsoft Learn"
        },
        "publishing_principles": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
        "usage_info": "https://update.dsesecurity.com/usage/",
        "copyright_notice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
        "content_html": "<h2>Source facts</h2>\n<p>Azure isolated VM sizes are tied to specific hardware generations and have a limited hardware lifetime. Microsoft distinguishes retirement of isolation from retirement of the size: unless stated otherwise, an isolated size without an &#8220;i&#8221; in its name can lose only the isolation feature, while sizes containing &#8220;i&#8221; are retired entirely. Where only isolation ends, the source says the transition requires no action or downtime; retaining isolation requires moving to a replacement size. <a href=\"https://learn.microsoft.com/en-us/azure/virtual-machines/isolation\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn</a>.</p>\n<h2>Applicability</h2>\n<p>Use this review when an architecture depends on a VM being the only VM on its physical server. Confirm the exact size and retirement announcement rather than interpreting its current running state as continuing evidence of the desired isolation. Keep regulatory interpretation outside this technical inventory.</p>\n<h2>DSE recommendation</h2>\n<p>Track the isolation retirement notice as a workload design change even when the VM size itself remains usable. Ask the workload and security owners whether the original isolation requirement still applies. If it does, select a currently supported replacement and approve its migration plan before the stated retirement boundary. Keep continued operation and continued isolation as separate acceptance questions.</p>\n<h2>Verification</h2>\n<p>Compare the deployed size with the current isolated-size listing and its specific announcement. For an approved replacement, verify the resulting size and test workload capacity and operation. Retain the reason for migration, relevant deadline, and final deployment identity. An application that continues responding after a retirement date should not by itself close the review of the physical-isolation requirement.</p>\n<h2>Official references</h2>\n<p><a href=\"https://learn.microsoft.com/en-us/azure/virtual-machines/isolation\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn: Virtual machine sizes that provide isolation in Azure</a>. Source reviewed September 9, 2026.</p>",
        "content_text": "Source facts\nAzure isolated VM sizes are tied to specific hardware generations and have a limited hardware lifetime. Microsoft distinguishes retirement of isolation from retirement of the size: unless stated otherwise, an isolated size without an “i” in its name can lose only the isolation feature, while sizes containing “i” are retired entirely. Where only isolation ends, the source says the transition requires no action or downtime; retaining isolation requires moving to a replacement size. Microsoft Learn.\nApplicability\nUse this review when an architecture depends on a VM being the only VM on its physical server. Confirm the exact size and retirement announcement rather than interpreting its current running state as continuing evidence of the desired isolation. Keep regulatory interpretation outside this technical inventory.\nDSE recommendation\nTrack the isolation retirement notice as a workload design change even when the VM size itself remains usable. Ask the workload and security owners whether the original isolation requirement still applies. If it does, select a currently supported replacement and approve its migration plan before the stated retirement boundary. Keep continued operation and continued isolation as separate acceptance questions.\nVerification\nCompare the deployed size with the current isolated-size listing and its specific announcement. For an approved replacement, verify the resulting size and test workload capacity and operation. Retain the reason for migration, relevant deadline, and final deployment identity. An application that continues responding after a retirement date should not by itself close the review of the physical-isolation requirement.\nOfficial references\nMicrosoft Learn: Virtual machine sizes that provide isolation in Azure. Source reviewed September 9, 2026.",
        "content_markdown": "## Source facts\n\nAzure isolated VM sizes are tied to specific hardware generations and have a limited hardware lifetime. Microsoft distinguishes retirement of isolation from retirement of the size: unless stated otherwise, an isolated size without an “i” in its name can lose only the isolation feature, while sizes containing “i” are retired entirely. Where only isolation ends, the source says the transition requires no action or downtime; retaining isolation requires moving to a replacement size. [Microsoft Learn](https://learn.microsoft.com/en-us/azure/virtual-machines/isolation).\n\n## Applicability\n\nUse this review when an architecture depends on a VM being the only VM on its physical server. Confirm the exact size and retirement announcement rather than interpreting its current running state as continuing evidence of the desired isolation. Keep regulatory interpretation outside this technical inventory.\n\n## DSE recommendation\n\nTrack the isolation retirement notice as a workload design change even when the VM size itself remains usable. Ask the workload and security owners whether the original isolation requirement still applies. If it does, select a currently supported replacement and approve its migration plan before the stated retirement boundary. Keep continued operation and continued isolation as separate acceptance questions.\n\n## Verification\n\nCompare the deployed size with the current isolated-size listing and its specific announcement. For an approved replacement, verify the resulting size and test workload capacity and operation. Retain the reason for migration, relevant deadline, and final deployment identity. An application that continues responding after a retirement date should not by itself close the review of the physical-isolation requirement.\n\n## Official references\n\n[Microsoft Learn: Virtual machine sizes that provide isolation in Azure](https://learn.microsoft.com/en-us/azure/virtual-machines/isolation). Source reviewed September 9, 2026."
    },
    "json_ld": {
        "@context": "https://schema.org",
        "@graph": [
            {
                "@type": "Organization",
                "@id": "https://dsesecurity.com/#organization",
                "name": "Detection Systems & Engineering",
                "alternateName": "DSE Security",
                "url": "https://dsesecurity.com/",
                "logo": {
                    "@type": "ImageObject",
                    "url": "https://update.dsesecurity.com/assets/dse-logo-20260812.png?v=1.8.20"
                }
            },
            {
                "@type": "Organization",
                "@id": "https://update.dsesecurity.com/#editorial-team",
                "name": "DSE Security Editorial Team",
                "url": "https://update.dsesecurity.com/",
                "parentOrganization": {
                    "@id": "https://dsesecurity.com/#organization"
                }
            },
            {
                "@type": "WebSite",
                "@id": "https://update.dsesecurity.com/#website",
                "name": "DSE Updates",
                "alternateName": "DSE Security Knowledge Hub",
                "url": "https://update.dsesecurity.com/",
                "inLanguage": "en-US",
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "potentialAction": {
                    "@type": "SearchAction",
                    "target": {
                        "@type": "EntryPoint",
                        "urlTemplate": "https://update.dsesecurity.com/?q={search_term_string}"
                    },
                    "query-input": "required name=search_term_string"
                }
            },
            {
                "@type": "WebPage",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/",
                "isPartOf": {
                    "@id": "https://update.dsesecurity.com/#website"
                },
                "lastReviewed": "2026-09-09"
            },
            {
                "@type": "BreadcrumbList",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/#breadcrumbs",
                "itemListElement": [
                    {
                        "@type": "ListItem",
                        "position": 1,
                        "name": "DSE Updates",
                        "item": "https://update.dsesecurity.com/"
                    },
                    {
                        "@type": "ListItem",
                        "position": 2,
                        "name": "Review isolation retirement separately from whether an Azure VM size still runs",
                        "item": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/"
                    }
                ]
            },
            {
                "@type": [
                    "Article",
                    "TechArticle"
                ],
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/#article",
                "identifier": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/",
                "headline": "Review isolation retirement separately from whether an Azure VM size still runs",
                "description": "Can a VM size remain available after its dedicated isolation property is retired?",
                "abstract": "Can a VM size remain available after its dedicated isolation property is retired?",
                "articleBody": "Source facts\nAzure isolated VM sizes are tied to specific hardware generations and have a limited hardware lifetime. Microsoft distinguishes retirement of isolation from retirement of the size: unless stated otherwise, an isolated size without an “i” in its name can lose only the isolation feature, while sizes containing “i” are retired entirely. Where only isolation ends, the source says the transition requires no action or downtime; retaining isolation requires moving to a replacement size. Microsoft Learn.\nApplicability\nUse this review when an architecture depends on a VM being the only VM on its physical server. Confirm the exact size and retirement announcement rather than interpreting its current running state as continuing evidence of the desired isolation. Keep regulatory interpretation outside this technical inventory.\nDSE recommendation\nTrack the isolation retirement notice as a workload design change even when the VM size itself remains usable. Ask the workload and security owners whether the original isolation requirement still applies. If it does, select a currently supported replacement and approve its migration plan before the stated retirement boundary. Keep continued operation and continued isolation as separate acceptance questions.\nVerification\nCompare the deployed size with the current isolated-size listing and its specific announcement. For an approved replacement, verify the resulting size and test workload capacity and operation. Retain the reason for migration, relevant deadline, and final deployment identity. An application that continues responding after a retirement date should not by itself close the review of the physical-isolation requirement.\nOfficial references\nMicrosoft Learn: Virtual machine sizes that provide isolation in Azure. Source reviewed September 9, 2026.",
                "datePublished": "2026-09-10T00:30:48+00:00",
                "dateModified": "2026-09-10T00:35:07+00:00",
                "mainEntityOfPage": {
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/"
                },
                "inLanguage": "en-US",
                "isAccessibleForFree": true,
                "author": {
                    "@type": "Organization",
                    "name": "DSE Security Editorial Team",
                    "url": "https://update.dsesecurity.com/#editorial-team"
                },
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "image": {
                    "@type": "ImageObject",
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-068-review-isolation-retirement-separately-from-whether-an-azure-vm-size-still-runs/#primaryimage",
                    "url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-social-v2.jpg?v=1.8.20",
                    "contentUrl": "https://update.dsesecurity.com/assets/editorial/cyber-defense-social-v2.jpg?v=1.8.20",
                    "width": 1200,
                    "height": 630,
                    "caption": "Review isolation retirement separately from whether an Azure VM size still runs"
                },
                "articleSection": [
                    "Cybersecurity",
                    "IT"
                ],
                "keywords": [
                    "Cybersecurity",
                    "IT",
                    "Guide",
                    "Information priority"
                ],
                "genre": "Guide",
                "about": [
                    {
                        "@type": "Thing",
                        "name": "Cybersecurity",
                        "url": "https://update.dsesecurity.com/topic/cybersecurity/"
                    },
                    {
                        "@type": "Thing",
                        "name": "IT",
                        "url": "https://update.dsesecurity.com/topic/it/"
                    }
                ],
                "wordCount": 259,
                "timeRequired": "PT2M",
                "publishingPrinciples": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
                "usageInfo": "https://update.dsesecurity.com/usage/",
                "copyrightHolder": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "copyrightNotice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
                "citation": {
                    "@type": "CreativeWork",
                    "name": "Isolation for VMs in Azure - Azure Virtual Machines | Microsoft Learn",
                    "url": "https://learn.microsoft.com/en-us/azure/virtual-machines/isolation"
                }
            }
        ]
    }
}