All Products
Document Center

Elastic Compute Service:Services that work with ECS

Last Updated:Dec 22, 2023

This topic describes the relationships between Elastic Compute Service (ECS) and other Alibaba Cloud services.

The following figure shows the relationships between ECS and other Alibaba Cloud services.


The following table describes the relationships between ECS and other Alibaba Cloud services.





Virtual Private Cloud (VPC) provides an isolated, stable, secure, fast-deliverable, and controllable network environment for ECS. You have complete control over IP addresses and network topology within a VPC. VPCs are suitable for users who have high network security requirements.



Elastic IP addresses (EIPs) are NAT IP addresses that are located in the public gateway of Alibaba Cloud. By means of NAT gateways, EIPs are mapped to the primary elastic network interfaces (ENIs) of the ECS instances that are associated with the EIPs. You can associate EIPs with ECS instances that are located in VPCs to enable the instances to communicate over the Internet.


Server Load Balancer (SLB) distributes traffic across multiple ECS instances.



CloudMonitor develops monitoring solutions for ECS instances, system disks, and public bandwidth.


Resource Access Management (RAM) allows you to manage the identities and permissions of Alibaba Cloud services and users to implement access control over ECS resources.

RAM overview


Anti-DDoS Origin Basic is a service that protects ECS instances from DDoS attacks to ensure system stability. If inbound traffic to an instance exceeds the maximum traffic rate allowed by the instance type, Alibaba Cloud Security throttles the traffic.

Anti-DDoS Origin Basic

Security Center

Alibaba Cloud Security Center provides ECS with basic security services such as unusual logon detection, vulnerability scan, and baseline check. You can check the security status of your ECS instances in the ECS console or in the Security Center console.

Basic security services


The ECS disk encryption feature uses Key Management Service (KMS) to encrypt data stored in ECS instances.


Auto Scaling (ESS) adjusts the number of ECS instances based on business and policy changes.

  • ESS adds ECS instances to ensure computing capabilities as business requirements increase.

  • ESS removes ECS instances to reduce costs as business requirements decrease.


You can create a stack template by using the Resource Orchestration Service (ROS) console or by calling ROS API operations. Then, you can use the template to quickly create and manage ECS resources.



You can use CloudOps Orchestration Service (OOS) to execute automatic O&M tasks on ECS resources.


ApsaraDB RDS

ECS instances work with ApsaraDB RDS instances that reside within the same region as the ECS instances to build a typical service access architecture. This reduces network latency and Internet traffic fees and ensures the optimal performance of ApsaraDB RDS instances.

How do I connect an ECS instance to an ApsaraDB RDS instance over an internal network?


Container Service for Kubernetes (ACK) uses Docker containers to manage application lifecycles on groups of ECS instances.

Dedicated Host

You can deploy ECS instances on a dedicated host and gain exclusive access to its physical resources. Dedicated Host allows you to redeploy your business or migrate your business to the cloud at minimal costs. ECS instances deployed on dedicated hosts meet strict regulatory compliance requirements.


You can use Server Migration Center (SMC) to migrate ECS instances within an Alibaba Cloud account or across Alibaba Cloud accounts.

Migrate servers

Alibaba Cloud Marketplace

Alibaba Cloud Marketplace is a platform where third-party partners provide various software and services such as software infrastructure, business software, website construction, hosted O&M, cloud security, data, API operations, and solutions for ECS.

Use Alibaba Cloud Marketplace images