AWS 與 Azure 服務相比AWS to Azure services comparison

本文有助於了解 Microsoft Azure 服務與 Amazon Web Services (AWS) 相比有何優勢。This article helps you understand how Microsoft Azure services compare to Amazon Web Services (AWS). 無論您是計劃要採行 Azure 和 AWS 搭配的多重雲端解決方案,或是移轉至 Azure,都可以比較所有類別下 Azure 和 AWS 服務的 IT 功能。Whether you are planning a multicloud solution with Azure and AWS, or migrating to Azure, you can compare the IT capabilities of Azure and AWS services in all categories.

本文會比較大致比較的服務。This article compares services that are roughly comparable. 並非每個 AWS 服務或 Azure 服務都會列出,而且並非每個符合的服務都具有功能相同的功能同位。Not every AWS service or Azure service is listed, and not every matched service has exact feature-for-feature parity.

Azure 和 AWS 在多重雲端解決方案上互別苗頭Azure and AWS for multicloud solutions

Azure 和 AWS 是領先的公用雲端平臺,各自提供一組廣泛且深度的功能,並具有全球涵蓋範圍。As the leading public cloud platforms, Azure and AWS each offer a broad and deep set of capabilities with global coverage. 但有許多組織選擇並用這兩種平台,讓自己能有更多的選擇與彈性,同時利用多重雲端這種方法來分散風險與依賴程度。Yet many organizations choose to use both platforms together for greater choice and flexibility, as well as to spread their risk and dependencies with a multicloud approach. 有鑑於 Azure 與 AWS 代表雲端市場需求的主流,因此顧問公司與軟體廠商也可能會想要建置在兩者之上。Consulting companies and software vendors might also build on and use both Azure and AWS, as these platforms represent most of the cloud market demand.

如需適用於 AWS 使用者的 Azure 概觀,請參閱適用於 AWS 專業人員的 Azure 簡介For an overview of Azure for AWS users, see Introduction to Azure for AWS professionals.

MarketplaceMarketplace

AWS 服務AWS service Azure 服務Azure service 描述Description
AWS MarketplaceAWS Marketplace Azure MarketplaceAzure Marketplace 易於部署並會自動設定的第三方應用程式,包括單一虛擬機器或多部虛擬機器的解決方案。Easy-to-deploy and automatically configured third-party applications, including single virtual machine or multiple virtual machine solutions.

AI 和機器學習AI and machine learning

AWS 服務AWS service Azure 服務Azure service 描述Description
SageMakerSageMaker Azure Machine LearningAzure Machine Learning 用來定型、部署、自動化及管理機器學習模型的雲端服務。A cloud service to train, deploy, automate, and manage machine learning models.
SageMakerSageMaker Azure Machine Learning Studio (傳統)Azure Machine Learning Studio (classic) 共同作業式的拖放工具,可在您的資料上建立、測試及部署預測性分析解決方案。A collaborative, drag-and-drop tool to build, test, and deploy predictive analytics solutions on your data.
Alexa 技能套件Alexa Skills Kit Microsoft Bot FrameworkMicrosoft Bot Framework 使用文字/SMS、Skype、小組、時差、Office 365 郵件、Twitter 和其他熱門服務,建立並連接與您的使用者互動的智慧型 bot。Build and connect intelligent bots that interact with your users using text/SMS, Skype, Teams, Slack, Office 365 mail, Twitter, and other popular services.
Amazon LexAmazon Lex 語音服務Speech Services 能將語音轉換成文字、了解意圖,並將文字轉換回語音,以自然進行回應的 API。API capable of converting speech to text, understanding intent, and converting text back to speech for natural responsiveness.
Amazon LexAmazon Lex Language Understanding (LUIS)Language Understanding (LUIS) 可讓您的應用程式從內容中了解使用者的命令。Allows your applications to understand user commands contextually.
Amazon Pollyamazon 轉譯Amazon Polly, Amazon Transcribe 語音服務Speech Services 同時啟用「語音轉換文字」和「文字轉語音」這兩種功能。Enables both Speech to Text, and Text into Speech capabilities.
Amazon RekognitionAmazon Rekognition 認知服務Cognitive Services 電腦視覺:從影像中解壓縮資訊,以分類及處理視覺化資料。Computer Vision: Extract information from images to categorize and process visual data.

臉部:偵測、識別和分析相片中的臉部。Face: Detect, identy, and analyze faces in photos.

表情:辨識影像中的表情。Emotions: Recognize emotions in images.
Alexa 技能套件Alexa Skills Kit Azure 虛擬助理Azure Virtual Assistant 虛擬助理範本結合了數個我們在建置交談式體驗時發現的最佳做法,並自動整合對 Bot Framework 開發人員非常有幫助的元件。The Virtual Assistant Template brings together a number of best practices we've identified through the building of conversational experiences and automates integration of components that we've found to be highly beneficial to Bot Framework developers.

海量資料和分析Big data and analytics

資料倉儲Data warehouse

AWS 服務AWS service Azure 服務Azure service 描述Description
RedshiftRedshift Azure Synapse 分析Azure Synapse Analytics 雲端式企業資料倉儲(EDW),利用大量平行處理(MPP),在數以 pb 計的資料中快速執行複雜的查詢。Cloud-based Enterprise Data Warehouse (EDW) that uses Massively Parallel Processing (MPP) to quickly run complex queries across petabytes of data.

巨量資料處理Big data processing

AWS 服務AWS service Azure 服務Azure service 描述Description
EMREMR Azure DatabricksAzure Databricks 以 Apache Spark 為基礎的分析平台。Apache Spark-based analytics platform.
EMREMR HDInsightHDInsight 受控 Hadoop 服務。Managed Hadoop service. 在 Azure 中部署及管理 Hadoop 叢集。Deploy and manage Hadoop clusters in Azure.

資料協調流程/ETLData orchestration / ETL

AWS 服務AWS service Azure 服務Azure service 描述Description
資料管線AWS 粘附Data Pipeline, AWS Glue Data FactoryData Factory 除可在不同的計算與儲存體服務之間,也可在內部部署資料來源之間依指定間隔處理及移動資料。Processes and moves data between different compute and storage services, as well as on-premises data sources at specified intervals. 建立、排程、協調及管理資料管線。Create, schedule, orchestrate, and manage data pipelines.
AWS 粘附AWS Glue 資料目錄Data Catalog 完全受控的服務,可作為企業資料來源的註冊系統和探索系統A fully managed service that serves as a system of registration and system of discovery for enterprise data sources

分析和視覺效果Analytics and visualization

AWS 服務AWS service Azure 服務Azure service 描述Description
Kinesis 分析Kinesis Analytics 串流分析Stream Analytics

Data Lake AnalyticsData Lake Analytics

Data Lake StoreData Lake Store
儲存體與分析平台,可從大量的資料或來自許多來源的資料建立深入解析。Storage and analysis platforms that create insights from large quantities of data, or data that originates from many sources.
QuickSightQuickSight Power BIPower BI 您可以利用各種商業智慧工具為資料建置視覺效果與執行特定的分析,並從資料延伸出更深一層的商業資訊。Business intelligence tools that build visualizations, perform ad hoc analysis, and develop business insights from data.
CloudSearchCloudSearch Azure 搜尋服務Azure Search 提供全文檢索搜尋及相關搜尋分析與功能。Delivers full-text search and related search analytics and capabilities.
Amazon Athena-ioAmazon Athena Azure Data Lake AnalyticsAzure Data Lake Analytics 提供使用標準 SQL 分析資料庫的無伺服器互動式查詢服務。Provides a serverless interactive query service that uses standard SQL for analyzing databases.

計算Compute

虛擬伺服器Virtual servers

AWS 服務AWS service Azure 服務Azure service 描述Description
彈性計算雲端(EC2)實例Elastic Compute Cloud (EC2) Instances Azure 虛擬機器Azure Virtual Machines 虛擬伺服器可讓使用者部署、管理及維護作業系統與伺服器軟體。Virtual servers allow users to deploy, manage, and maintain OS and server software. 執行個體類型提供各種不同的 CPU/RAM 組合。Instance types provide combinations of CPU/RAM. 只有使用到的部分使用者才須付費,而且可以隨時變更大小。Users pay for what they use with the flexibility to change sizes.
AWS 批次AWS Batch Azure BatchAzure Batch 在雲端有效地執行大規模的平行和高效能計算應用程式。Run large-scale parallel and high-performance computing applications efficiently in the cloud.
AWS 自動調整AWS Auto Scaling 虛擬機器擴展集Virtual Machine Scale Sets 可讓您自動變更 VM 實例的數目。Allows you to automatically change the number of VM instances. 您可設定定義好的計量與閾值,以指定平台應增加或移除執行個體。You set defined metric and thresholds that determine if the platform adds or removes instances.
AWS 上的 VMware 雲端VMware Cloud on AWS 依 CloudSimple 的 Azure VMwareAzure VMware by CloudSimple 使用 Azure VMware Solution by CloudSimple,將 VMware 企業工作負載重新部署並延伸至 Azure。Redeploy and extend your VMware-based enterprise workloads to Azure with Azure VMware Solution by CloudSimple. 繼續使用您熟悉的 VMware 工具來管理 Azure 上的工作負載,而不會中斷網路、安全性或資料保護原則。Keep using the VMware tools you already know to manage workloads on Azure without disrupting network, security, or data protection policies.

容器和容器協調器Containers and container orchestrators

AWS 服務AWS service Azure 服務Azure service 描述Description
彈性容器服務(ECS)Elastic Container Service (ECS)

FargateFargate
Azure 容器執行個體Azure Container Instances Azure Container Instances 提供最簡單最快速的方法,讓您無需佈建任何虛擬機器或採用更高層級的協調流程服務,就能在 Azure 中執行容器。Azure Container Instances is the fastest and simplest way to run a container in Azure, without having to provision any virtual machines or adopt a higher-level orchestration service.
彈性 Container RegistryElastic Container Registry Azure Container RegistryAzure Container Registry 可讓客戶儲存 Docker 格式的映像。Allows customers to store Docker formatted images. 用來在 Azure 上建立所有類型的容器部署。Used to create all types of container deployments on Azure.
彈性 Kubernetes 服務(EKS)Elastic Kubernetes Service (EKS) Azure Kubernetes Service (AKS)Azure Kubernetes Service (AKS) 以 Kubernetes 部署協調的容器化應用程式。Deploy orchestrated containerized applications with Kubernetes. 透過自動升級和內建的作業主控台,來簡化監視和叢集管理。Simplify monitoring and cluster management through auto upgrades and a built-in operations console.
應用程式網格App Mesh Service Fabric MeshService Fabric Mesh 一個受到完整管理的服務,讓開發人員能夠部署微服務應用程式,而不需管理虛擬機器、儲存體或網路功能。Fully managed service that enables developers to deploy microservices applications without managing virtual machines, storage, or networking.

無伺服器Serverless

AWS 服務AWS service Azure 服務Azure service 描述Description
LambdaLambda Azure FunctionsAzure Functions 整合系統並執行後端處理序,以回應事件或排程,而無須佈建或管理伺服器。Integrate systems and run backend processes in response to events or schedules without provisioning or managing servers.

資料庫Database

類型Type AWS 服務AWS Service Azure 服務Azure Service 描述Description
關聯式資料庫Relational database RDSRDS SQL DatabaseSQL Database

適用於 MySQL 的 Azure 資料庫Azure Database for MySQL

適用於 PostgreSQL 的 Azure 資料庫Azure Database for PostgreSQL
受管理的關係資料庫服務,其中的復原、調整和維護主要由平臺處理。Managed relational database service where resiliency, scale, and maintenance are primarily handled by the platform.
NoSQL/檔NoSQL / Document DynamoDBDynamoDB

SimpleDBSimpleDB

Amazon DocumentDBAmazon DocumentDB
Azure Cosmos DBAzure Cosmos DB 散佈全球的多模型資料庫,可原生支援機碼值、文件、圖形和單欄式等多種資料模型。A globally distributed, multi-model database that natively supports multiple data models: key-value, documents, graphs, and columnar.
CachingCaching ElastiCacheElastiCache Azure Cache for RedisAzure Cache for Redis 一種以記憶體內為基礎的分散式快取服務,可提供高效能的存放區,通常會用於分攤資料庫的非交易式工作。An in-memory–based, distributed caching service that provides a high-performance store typically used to offload nontransactional work from a database.
資料庫移轉Database migration AWS 資料庫移轉服務AWS Database Migration Service Azure Database Migration ServiceAzure Database Migration Service 將資料庫架構和資料從某個資料庫格式遷移到雲端中的特定資料庫技術。Migration of database schema and data from one database format to a specific database technology in the cloud.

DevOps 和應用程式監視DevOps and application monitoring

AWS 服務AWS service Azure 服務Azure service 描述Description
CloudWatchAWS X-RayCloudWatch, AWS X-Ray Azure 監視器Azure Monitor 從您的雲端和內部部署環境收集、分析及操作遙測的完整解決方案。Comprehensive solution for collecting, analyzing, and acting on telemetry from your cloud and on-premises environments.
CodeDeployCodeDeploy

CodeCommitCodeCommit

CodePipelineCodePipeline
Azure DevOpsAzure DevOps 適用於程式碼開發共同作業的雲端服務。A cloud service for collaborating on code development.
AWS 開發人員工具AWS Developer Tools Azure 開發人員工具Azure Developer Tools 用於建立、偵測、部署、診斷和管理多平臺可擴充應用程式和服務的工具集合。Collection of tools for building, debugging, deploying, diagnosing, and managing multiplatform scalable apps and services.
AWS CodeBuildAWS CodeBuild Azure DevOpsAzure DevOps 完全受控且可支援持續整合和部署的組建服務。Fully managed build service that supports continuous integration and deployment.
命令列介面Command Line Interface Azure CLIAzure CLI

Azure PowerShellAzure PowerShell
建置在所有雲端服務的原生 REST API 之上,各種程式設計語言特定的包裝函式,可提供更簡單的方式讓您用於建立解決方案。Built on top of the native REST API across all cloud services, various programming language-specific wrappers provide easier ways to create solutions.
OpsWorks (以 Chef 為基礎)OpsWorks (Chef-based) Azure 自動化Azure Automation 設定及操作所有種類與大小的應用程式,並提供範本,協助建立及管理資源集合。Configures and operates applications of all shapes and sizes, and provides templates to create and manage a collection of resources.
CloudFormationCloudFormation Azure Resource ManagerAzure Resource Manager

VM 延伸模組VM extensions

Azure 自動化Azure Automation
可提供使用者將手動、長期執行、容易出錯及頻繁重複的 IT 工作自動化的方法。Provides a way for users to automate the manual, long-running, error-prone, and frequently repeated IT tasks.

物聯網 (IoT)Internet of things (IoT)

AWS 服務AWS service Azure 服務Azure service 描述Description
AWS IoTAWS IoT Azure IoT 中心Azure IoT Hub 用以管理數十億部 IoT 裝置雙向通訊的雲端閘道,不但安全且具有規模。A cloud gateway for managing bidirectional communication with billions of IoT devices, securely and at scale.
AWS GreengrassAWS Greengrass Azure IoT EdgeAzure IoT Edge 直接在 IoT 裝置上部署雲端智慧,以在內部部署案例中執行。Deploy cloud intelligence directly on IoT devices to run in on-premises scenarios.
Kinesis FirehoseKinesis 資料流程Kinesis Firehose, Kinesis Streams 事件中樞Event Hubs 這些服務可以大量擷取小筆的資料輸入 (通常來自裝置或感應器),用以處理及路由傳送資料。Services that allow the mass ingestion of small data inputs, typically from devices and sensors, to process and route the data.
AWS IoT 物圖AWS IoT Things Graph Azure Digital TwinsAzure Digital Twins Azure 數位 Twins 是一項 IoT 服務,可協助您建立完整的實體環境模型。Azure Digital Twins is an IoT service that helps you create comprehensive models of physical environments. 建立空間智慧圖形,讓人員、地點和裝置之間的關聯性和互動模型化。Create spatial intelligence graphs to model the relationships and interactions between people, places, and devices. 從實體空間查詢資料,而不是從各不相同的感應器查詢。Query data from a physical space rather than disparate sensors.

管理性Management

AWS 服務AWS service Azure 服務Azure service 描述Description
信任的 AdvisorTrusted Advisor Azure AdvisorAzure Advisor 可提供雲端資源設定與安全性的分析,確保訂閱者使用的是最佳做法與設定。Provides analysis of cloud resource configuration and security so subscribers can ensure they’re making use of best practices and optimum configurations.
AWS 使用量和帳單報告AWS Usage and Billing Report Azure 計費 APIAzure Billing API 可協助依時間、組織或產品資源,針對資源使用量來產生、監視、預測及共用計費資料的服務。Services to help generate, monitor, forecast, and share billing data for resource usage by time, organization, or product resources.
AWS 管理主控台AWS Management Console Azure 入口網站Azure portal 統一的管理主控台,可簡化雲端資源的建置、部署和操作。A unified management console that simplifies building, deploying, and operating your cloud resources.
AWS 應用程式探索服務AWS Application Discovery Service Azure MigrateAzure Migrate 評估要遷移至 Azure 的內部部署工作負載、執行以效能為基礎的大小調整,並提供成本預估。Assesses on-premises workloads for migration to Azure, performs performance-based sizing, and provides cost estimations.
Amazon EC2 Systems ManagerAmazon EC2 Systems Manager Azure 監視器Azure Monitor 從您的雲端和內部部署環境收集、分析及操作遙測的完整解決方案。Comprehensive solution for collecting, analyzing, and acting on telemetry from your cloud and on-premises environments.
AWS 個人健全狀況儀表板AWS Personal Health Dashboard Azure 資源健康狀態Azure Resource Health 提供有關資源健康狀態的詳細資訊,以及維護資源健康狀態的建議行動。Provides detailed information about the health of resources as well as recommended actions for maintaining resource health.

訊息和事件Messaging and eventing

AWS 服務AWS service Azure 服務Azure service 描述Description
簡單佇列服務(SQS)Simple Queue Service (SQS) Azure 佇列儲存體Azure Queue Storage 提供受控的訊息佇列服務,用以在低耦合應用程式元件之間進行通訊。Provides a managed message queueing service for communicating between decoupled application components.
簡單佇列服務(SQS)Simple Queue Service (SQS) 服務匯流排Service Bus 支援一套以雲端為基礎、訊息導向的中介軟體技術,包括可靠的訊息佇列和持久的發佈/訂閱訊息。Supports a set of cloud-based, message-oriented middleware technologies including reliable message queuing and durable publish/subscribe messaging.
簡單通知服務Simple Notification Service Event GridEvent Grid 完全受控的事件路由服務,允許使用發佈/訂閱模型進行統一的事件耗用量。A fully managed event routing service that allows for uniform event consumption using a publish/subscribe model.

行動服務Mobile services

AWS 服務AWS service Azure 服務Azure service 描述Description
行動中樞Mobile Hub App CenterApp Center

Xamarin 應用程式Xamarin Apps
提供後端行動服務,可協助您快速開發行動解決方案,並能提供所有裝置的身分識別管理、資料同步處理、儲存體與通知。Provides backend mobile services for rapid development of mobile solutions, identity management, data synchronization, and storage and notifications across devices.
Mobile SDKMobile SDK App CenterApp Center 提供用以針對行動裝置快速建置跨平台和原生應用程式的技術。Provides the technology to rapidly build cross-platform and native apps for mobile devices.
CognitoCognito App CenterApp Center 提供行動應用程式的驗證功能。Provides authentication capabilities for mobile applications.
AWS 裝置伺服器陣列AWS Device Farm App CenterApp Center 提供用以支援測試行動應用程式的服務。Provides services to support testing mobile applications.
行動分析Mobile Analytics App CenterApp Center 支援對行動應用程式服務品質的偵錯和分析進行監視及收集意見反應。Supports monitoring, and feedback collection for the debugging and analysis of a mobile application service quality.

網路功能Networking

區域Area AWS 服務AWS service Azure 服務Azure service 描述Description
雲端虛擬網路Cloud virtual networking 虛擬私人雲端(VPC)Virtual Private Cloud (VPC) 虛擬網路Virtual Network 在雲端提供獨立的私人環境。Provides an isolated, private environment in the cloud. 使用者可以控制自己的虛擬網路環境,包括選取自己的 IP 位址範圍、建立子網路,以及設定路由表與網路閘道。Users have control over their virtual networking environment, including selection of their own IP address range, creation of subnets, and configuration of route tables and network gateways.
跨單位連線Cross-premises connectivity AWS VPN 閘道AWS VPN Gateway Azure VPN 閘道Azure VPN Gateway 將 Azure 虛擬網路連線到其他 Azure 虛擬網路或客戶的內部部署網路(站對站)。Connects Azure virtual networks to other Azure virtual networks, or customer on-premises networks (Site To Site). 可讓終端使用者透過 VPN 通道(點對站)連線到 Azure 服務。Allows end users to connect to Azure services through VPN tunneling (Point To Site).
DNS 管理DNS management 路線53Route 53 Azure DNSAzure DNS 您可以使用其他 Azure 服務所使用的同一組認證、帳單及支援合約來管理您的 DNS 記錄。Manage your DNS records using the same credentials and billing and support contract as your other Azure services
  路線53Route 53 流量管理員Traffic Manager 一種網域名稱代管服務,可以將使用者路由到網際網路應用程式、將使用者要求連線到資料中心、管理連入應用程式的流量以及運用自動容錯移轉,改善應用程式的可用性。A service that hosts domain names, plus routes users to Internet applications, connects user requests to datacenters, manages traffic to apps, and improves app availability with automatic failover.
專用網路Dedicated network 直接連接Direct Connect ExpressRouteExpressRoute 可在某位置與雲端提供者之間建立專用的私人網路連線 (不透過網際網路)。Establishes a dedicated, private network connection from a location to the cloud provider (not over the Internet).
負載平衡Load balancing 網路 Load BalancerNetwork Load Balancer 負載平衡器Load Balancer Azure Load Balancer 在第4層(TCP 或 UDP)平衡流量負載。Azure Load Balancer load-balances traffic at layer 4 (TCP or UDP).
  應用程式 Load BalancerApplication Load Balancer 應用程式閘道Application Gateway 應用程式閘道是第 7 層負載平衡器。Application Gateway is a layer 7 load balancer. 它支援 SSL 終止、以 cookie 為基礎的會話親和性,以及用於負載平衡流量的迴圈配置資源。It supports SSL termination, cookie-based session affinity, and round robin for load-balancing traffic.

安全性、身分識別和存取Security, identity, and access

驗證和授權Authentication and authorization

AWS 服務AWS service Azure 服務Azure service 描述Description
身分識別與存取管理(IAM)Identity and Access Management (IAM) Azure Active DirectoryAzure Active Directory 可讓使用者安全地控制對服務及資源的存取,同時提供資料安全性與保護。Allows users to securely control access to services and resources while offering data security and protection. 建立及管理使用者與群組,並利用權限允許和拒絕資源存取。Create and manage users and groups, and use permissions to allow and deny access to resources.
身分識別與存取管理(IAM)Identity and Access Management (IAM) Azure 角色型存取控制Azure Role Based Access Control 角色型存取控制 (RBAC) 協助您管理可存取 Azure 資源的人員、這些人員如何使用資源,以及他們存取的區域。Role-based access control (RBAC) helps you manage who has access to Azure resources, what they can do with those resources, and what areas they have access to.
AWS 組織AWS Organizations Azure 訂用帳戶管理 + Azure RBACAzure Subscription Management + Azure RBAC 使用多個帳戶時的安全性原則和角色管理。Security policy and role management for working with multiple accounts.
Multi-Factor AuthenticationMulti-Factor Authentication Multi-Factor AuthenticationMulti-Factor Authentication 保護對資料和應用程式的存取,同時滿足使用者對簡單登入流程的需求。Safeguard access to data and applications while meeting user demand for a simple sign-in process.
AWS 目錄服務AWS Directory Service Azure Active Directory 網域服務Azure Active Directory Domain Services 提供與 Windows Server Active Directory 完全相容的受控網域服務,例如加入網域、群組原則、LDAP 和 Kerberos/NTLM 驗證。Provides managed domain services such as domain join, group policy, LDAP, and Kerberos/NTLM authentication that are fully compatible with Windows Server Active Directory.
CognitoCognito Azure Active Directory B2CAzure Active Directory B2C 高可用性的全域身分識別管理服務,可用於處理數億個身分識別的消費者端應用程式。A highly available, global, identity management service for consumer-facing applications that scales to hundreds of millions of identities.
AWS 組織AWS Organizations Azure 原則Azure Policy Azure 原則是 Azure 中的一個服務,您可以用來建立、指派和管理原則。Azure Policy is a service in Azure that you use to create, assign, and manage policies. 這些原則會對您的資源強制執行不同的規則和效果,讓這些資源能符合公司標準和服務等級協定的規範。These policies enforce different rules and effects over your resources, so those resources stay compliant with your corporate standards and service level agreements.
AWS 組織AWS Organizations 管理群組Management Groups Azure 管理群組可以在訂用帳戶之上提供範圍層級。Azure management groups provide a level of scope above subscriptions. 您要將訂用帳戶整理到稱為「管理群組」的容器中,並將治理條件套用至管理群組。You organize subscriptions into containers called "management groups" and apply your governance conditions to the management groups. 管理群組內的所有訂用帳戶都會自動繼承套用到管理群組的條件。All subscriptions within a management group automatically inherit the conditions applied to the management group. 無論您擁有哪種類型的訂用帳戶,管理群組都可為您提供大規模的企業級管理。Management groups give you enterprise-grade management at a large scale, no matter what type of subscriptions you have.

加密Encryption

AWS 服務AWS service Azure 服務Azure service 描述Description
使用 Amazon S3 金鑰管理服務的伺服器端加密Server-side encryption with Amazon S3 Key Management Service Azure 儲存體服務加密Azure Storage Service Encryption 可協助您保護資料安全,以符合組織安全性和合規性承諾。Helps you protect and safeguard your data and meet your organizational security and compliance commitments.
金鑰管理服務(KMS)CloudHSMKey Management Service (KMS), CloudHSM 金鑰保存庫Key Vault 可提供安全性解決方案,並透過提供管理、建立及控制儲存在硬體安全性模組 (HSM) 中加密金鑰的方式,與其他服務搭配。Provides security solution and works with other services by providing a way to manage, create, and control encryption keys stored in hardware security modules (HSM).

防火牆Firewall

AWS 服務AWS service Azure 服務Azure service 描述Description
Web 應用程式防火牆Web Application Firewall 應用程式閘道-Web 應用程式防火牆Application Gateway - Web Application Firewall 可以協助 Web 應用程式抵禦常見網路攻擊的防火牆。A firewall that protects web applications from common web exploits.
Web 應用程式防火牆Web Application Firewall Azure 防火牆Azure Firewall 提供非 HTTP/S 通訊協定的輸入保護、所有埠和通訊協定的輸出網路層級保護,以及輸出 HTTP/S 的應用層級保護。Provides inbound protection for non-HTTP/S protocols, outbound network-level protection for all ports and protocols, and application-level protection for outbound HTTP/S.

安全性Security

AWS 服務AWS service Azure 服務Azure service 描述Description
偵測器Inspector 資訊安全中心Security Center 自動化的安全性評估服務,可改善應用程式的安全性與合規性。An automated security assessment service that improves the security and compliance of applications. 可自動評估應用程式有無弱點或偏離最佳做法。Automatically assess applications for vulnerabilities or deviations from best practices.
憑證管理員Certificate Manager 入口網站上可用的 App Service 憑證App Service Certificates available on the Portal 可讓客戶在雲端順暢地建立、管理及取用憑證的服務。Service that allows customers to create, manage, and consume certificates seamlessly in the cloud.
GuardDutyGuardDuty Azure 進階威脅防護Azure Advanced Threat Protection 偵測和調查內部部署和雲端中的進階攻擊。Detect and investigate advanced attacks on-premises and in the cloud.
AWS 成品AWS Artifact 服務信任入口網站Service Trust Portal 提供來自雲端服務的稽核報告、合規性指南和信任文件存取。Provides access to audit reports, compliance guides, and trust documents from across cloud services.
AWS 盾AWS Shield Azure DDoS 保護服務Azure DDos Protection Service 提供具有分散式阻斷服務 (DDoS) 攻擊防護的雲端服務。Provides cloud services with protection from distributed denial of services (DDoS) attacks.

儲存體Storage

物件儲存體Object storage

AWS 服務AWS service Azure 服務Azure service 描述Description
簡單儲存體服務(S3)Simple Storage Services (S3) Azure Blob 儲存體Azure Blob storage 物件儲存體服務,可用於雲端應用程式、內容發佈、備份、封存、災害復原及巨量資料分析。Object storage service, for use cases including cloud applications, content distribution, backup, archiving, disaster recovery, and big data analytics.

虛擬伺服器磁片Virtual server disks

AWS 服務AWS service Azure 服務Azure service 描述Description
彈性封鎖存放區(EBS)Elastic Block Store (EBS) Azure 受控磁片Azure managed disks SSD 儲存體,已針對 I/O 密集讀取/寫入作業最佳化。SSD storage optimized for I/O intensive read/write operations. 作為高效能 Azure 虛擬機器儲存體使用。For use as high-performance Azure virtual machine storage.

共用檔案Shared files

AWS 服務AWS service Azure 服務Azure service 描述Description
彈性檔案系統Elastic File System Azure 檔案Azure Files 提供簡單的介面,可讓您快速地建立及設定檔案系統及共用通用檔案。Provides a simple interface to create and configure file systems quickly, and share common files. 可以與透過網路存取檔案的傳統通訊協定搭配使用。Can be used with traditional protocols that access files over a network.

封存與備份Archiving and backup

AWS 服務AWS service Azure 服務Azure service 描述Description
S3 不頻繁存取(IA)S3 Infrequent Access (IA) Azure 儲存體非經常性存取層Azure Storage cool tier 非經常性儲存體是較低成本的層,用於儲存不常存取且長期存留的資料。Cool storage is a lower-cost tier for storing data that is infrequently accessed and long-lived.
S3 GlacierS3 Glacier Azure 儲存體封存存取層Azure Storage archive access tier 封存儲存體的儲存成本最低,而相較於經常性存取和非經常性存取儲存體,其資料擷取成本比較高。Archive storage has the lowest storage cost and higher data retrieval costs compared to hot and cool storage.
AWS 備份AWS Backup Azure 備份Azure Backup 從雲端備份及復原檔案和資料夾,並提供異地保護以防止資料遺失。Back up and recover files and folders from the cloud, and provide offsite protection against data loss.

混合式儲存體Hybrid storage

AWS 服務AWS service Azure 服務Azure service 描述Description
儲存閘道Storage Gateway StorSimpleStorSimple 整合內部部署的 IT 環境與雲端儲存體。Integrates on-premises IT environments with cloud storage. 自動化資料管理與儲存體,並支援災害復原。Automates data management and storage, plus supports disaster recovery.

大量資料轉送Bulk data transfer

AWS 服務AWS service Azure 服務Azure service 描述Description
AWS 匯入/匯出磁片AWS Import/Export Disk 匯入/匯出Import/Export 一種資料傳輸解決方案,使用安全的磁碟與設備傳輸大量資料。A data transport solution that uses secure disks and appliances to transfer large amounts of data. 此外在傳輸期間也會提供資料保護。Also offers data protection during transit.
AWS 匯入/匯出雪球雪球 EdgeSnowmobileAWS Import/Export Snowball, Snowball Edge, Snowmobile Azure 資料箱Azure Data Box Pb 到 exabyte-規模的資料傳輸解決方案,使用安全資料儲存裝置在 Azure 之間傳輸大量資料。Petabyte- to exabyte-scale data transport solution that uses secure data storage devices to transfer large amounts of data to and from Azure.

Web 應用程式Web applications

AWS 服務AWS service Azure 服務Azure service 描述Description
彈性 BeanstalkElastic Beanstalk App ServiceApp Service 受控裝載平臺,提供輕鬆使用的服務來部署和調整 web 應用程式和服務。Managed hosting platform providing easy to use services for deploying and scaling web applications and services.
API 閘道API Gateway API 管理API Management 周全的解決方案,用以將 API 發佈給外部及內部消費者。A turnkey solution for publishing APIs to external and internal consumers.
CloudFrontCloudFront Azure 內容傳遞網路Azure Content Delivery Network 遍佈全球的內容傳遞網路,可傳遞音訊、視訊、應用程式、影像及其他檔案。A global content delivery network that delivers audio, video, applications, images, and other files.
全域加速器Global Accelerator Azure Front DoorAzure Front Door 使用 HTTP 負載平衡和以路徑為基礎的路由規則,輕鬆地將您的分散式微服務架構加入單一全域應用程式中。Easily join your distributed microservice architectures into a single global application using HTTP load balancing and path-based routing rules. 使用 API 驅動的全域動作自動啟動新的區域和相應放大,以及 Azure 中的後端微服務(或任何地方)的獨立容錯。Automate turning up new regions and scale-out with API-driven global actions, and independent fault-tolerance to your back end microservices in Azure—or anywhere.

其他Miscellaneous

區域Area AWS 服務AWS service Azure 服務Azure service 描述Description
後端處理序邏輯Backend process logic AWS 步驟函式AWS Step Functions Logic AppsLogic Apps 使用立即可用的連接器來建置分散式應用程式的雲端技術,可減少整合上的挑戰。Cloud technology to build distributed applications using out-of-the-box connectors to reduce integration challenges. 連線內部部署或雲端的應用程式、資料和裝置。Connect apps, data and devices on-premises or in the cloud.
企業應用程式服務Enterprise application services Amazon WorkMailamazon WorkDocsAmazon WorkMail, Amazon WorkDocs Office 365Office 365 完全整合的雲端服務,可在雲端提供通訊、電子郵件、文件管理,並可在各種裝置上使用。Fully integrated Cloud service providing communications, email, document management in the cloud and available on a wide variety of devices.
玩遊戲Gaming GameLiftGameSparksGameLift, GameSparks PlayFabPlayFab 受控服務,用以裝載專用的遊戲伺服器。Managed services for hosting dedicated game servers.
媒體轉碼Media transcoding 彈性轉碼程式Elastic Transcoder 媒體服務Media Services 該服務可提供廣播品質的視訊串流服務,包括各種轉碼技術。Services that offer broadcast-quality video streaming services, including various transcoding technologies.
工作流程Workflow 簡單工作流程服務(SWF)Simple Workflow Service (SWF) Logic AppsLogic Apps 無伺服器技術可將應用程式、資料和裝置連接到任何地方,不論是在內部部署或雲端中,都可用於 SaaS 和雲端式連接器的大型生態系統。Serverless technology for connecting apps, data and devices anywhere, whether on-premises or in the cloud for large ecosystems of SaaS and cloud-based connectors.
混合式Hybrid OutpostsOutposts Azure StackAzure Stack Azure Stack 是混合式雲端平臺,可讓您在公司或服務提供者的資料中心內執行 Azure 服務。Azure Stack is a hybrid cloud platform that enables you to run Azure services in your company's or service provider's datacenter. 身為開發人員,您可以在 Azure Stack 上建置應用程式。As a developer, you can build apps on Azure Stack. 接著,您可以將它們部署到 Azure Stack 或 Azure,也可以建立真正的混合式應用程式,利用 Azure Stack 雲端與 Azure 之間的連線能力。You can then deploy them to either Azure Stack or Azure, or you can build truly hybrid apps that take advantage of connectivity between an Azure Stack cloud and Azure.

學習更多More learning

如果您不熟悉 Azure,請參閱互動式核心雲端服務- Microsoft Learn上的 Azure 模組簡介。If you are new to Azure, review the interactive Core Cloud Services - Introduction to Azure module on Microsoft Learn.