Skip navigation

Create an Azure Key Vault Managed HSM

Last updated: 29/10/2021

This template creates an Azure Key Vault Managed HSM.

This Azure Resource Manager template was created by a member of the community and not by Microsoft. Each Resource Manager template is licensed to you under a licence agreement by its owner, not Microsoft. Microsoft is not responsible for Resource Manager templates provided and licensed by community members and does not screen for security, compatibility, or performance. Community Resource Manager templates are not supported under any Microsoft support programme or service, and are made available AS IS without warranty of any kind.


Parameter Name Description
managedHSMName String specifying the name of the managed HSM.
location String specifying the Azure location where the managed HSM should be created.
initialAdminObjectIds Array specifying the objectIDs associated with a list of initial administrators.
tenantId String specifying the Azure Active Directory tenant ID that should be used for authenticating requests to the managed HSM.
softRetentionInDays Specifies the number of days that managed Key Vault will be kept recoverable if deleted. If you do not want to have soft delete enabled, set value to 0.

Use the template


New-AzResourceGroup -Name <resource-group-name> -Location <resource-group-location> #use this command when you need to create a new resource group for your deployment
New-AzResourceGroupDeployment -ResourceGroupName <resource-group-name> -TemplateUri
Install and configure Azure PowerShell

Command line

az group create --name <resource-group-name> --location <resource-group-location> #use this command when you need to create a new resource group for your deployment
az group deployment create --resource-group <my-resource-group> --template-uri
Install and Configure the Azure Cross-Platform Command-Line Interface

More templates by M. Baldwin