Create Key Vault with logging

This template creates a Key Vault and a storage account that is used for logging. It optionally creates resource locks to protect your Key Vault and storage resources.

参数名 说明
keyVaultName KeyVault name
accessPolicies Access policies object {"tenantId":"","objectId":"","permissions":{"keys":[""],"secrets":[""]}}
logsRetentionInDays Specifies the number of days that logs are gonna be kept. If you do not want to apply any retention policy and retain data forever, set value to 0.
enableVaultForDeployment Specifies if the vault is enabled for deployment by script or compute (VM, Service Fabric, ...)
enableVaultForTemplateDeployment Specifies if the vault is enabled for a template deployment
enableVaultForDiskEncryption Specifies if the azure platform has access to the vault for enabling disk encryption scenarios.
vaultSku Specifies the SKU for the vault
New-AzureRmResourceGroupDeployment -Name <deployment-name> -ResourceGroupName <resource-group-name> -TemplateUri
azure config mode arm
azure group deployment create <my-resource-group> <my-deployment-name> --template-uri
