Skip navigation

Azure Bastion as a Service

Last updated: 22/04/2021

This template provisions Azure Bastion in a Virtual Network

This Azure Resource Manager template was created by a member of the community and not by Microsoft. Each Resource Manager template is licensed to you under a licence agreement by its owner, not Microsoft. Microsoft is not responsible for Resource Manager templates provided and licensed by community members and does not screen for security, compatibility, or performance. Community Resource Manager templates are not supported under any Microsoft support programme or service, and are made available AS IS without warranty of any kind.


Parameter Name Description
vnet-name Name of new or existing vnet to which Azure Bastion should be deployed
vnet-ip-prefix IP prefix for available addresses in vnet address space
vnet-new-or-existing Specify whether to provision new vnet or deploy to existing vnet
bastion-subnet-ip-prefix Bastion subnet IP prefix MUST be within vnet IP prefix address space
bastion-host-name Name of Azure Bastion resource
location Azure region for Bastion and virtual network

Use the template


New-AzResourceGroup -Name <resource-group-name> -Location <resource-group-location> #use this command when you need to create a new resource group for your deployment
New-AzResourceGroupDeployment -ResourceGroupName <resource-group-name> -TemplateUri
Install and configure Azure PowerShell

Command line

az group create --name <resource-group-name> --location <resource-group-location> #use this command when you need to create a new resource group for your deployment
az group deployment create --resource-group <my-resource-group> --template-uri
Install and Configure the Azure Cross-Platform Command-Line Interface