Last updated: 04/06/2016

This template creates a Key Vault and creates secrets within the vault as passed along with the parameters

This Azure Resource Manager (ARM) template was created by a member of the community and not by Microsoft. Each ARM template is licensed to you under a licence agreement by its owner, not Microsoft. Microsoft is not responsible for ARM templates provided and licensed by community members and does not screen for security, compatibility or performance. Community ARM templates are not supported under any Microsoft support programme or service, and are made available AS IS without warranty of any kind.


Parameter Name Description
keyVaultName Name of the Key Vault
tenantId Tenant Id for the subscription and use assigned access to the vault. Available from the Get-AzureRMSubscription PowerShell cmdlet
accessPolicies Access policies object {"tenantId":"","objectId":"","permissions":{"keys":[""],"secrets":[""]}}
vaultSku SKU for the vault
enabledForDeployment Specifies if the vault is enabled for VM or Service Fabric deployment
enabledForTemplateDeployment Specifies if the vault is enabled for ARM template deployment
enableVaultForVolumeEncryption Specifies if the vault is enabled for volume encryption
secrets all secrets {"secretName":"","secretValue":""}

Use the template

New-AzureRmResourceGroupDeployment -Name <deployment-name> -ResourceGroupName <resource-group-name> -TemplateUri
Command line
azure config mode arm
azure group deployment create <my-resource-group> <my-deployment-name> --template-uri
