The type of Managed Identity used by the DiskEncryptionSet. Only SystemAssigned is supported for new creations. Disk Encryption Sets can be updated with Identity type None during migration of subscription to a new Azure Active Directory tenant; it will cause the encrypted resources to lose access to the keys.
'None' 'SystemAssigned'
EncryptionSetProperties
Name
Description
Value
activeKey
The key vault key which is currently used by this disk encryption set.
Fully versioned Key Url pointing to a key in KeyVault
string (required)
sourceVault
Resource id of the KeyVault containing the key or secret. This property is optional and cannot be used if the KeyVault subscription is not the same as the Disk Encryption Set subscription.
The type of Managed Identity used by the DiskEncryptionSet. Only SystemAssigned is supported for new creations. Disk Encryption Sets can be updated with Identity type None during migration of subscription to a new Azure Active Directory tenant; it will cause the encrypted resources to lose access to the keys.
'None' 'SystemAssigned'
EncryptionSetProperties
Name
Description
Value
activeKey
The key vault key which is currently used by this disk encryption set.
Fully versioned Key Url pointing to a key in KeyVault
string (required)
sourceVault
Resource id of the KeyVault containing the key or secret. This property is optional and cannot be used if the KeyVault subscription is not the same as the Disk Encryption Set subscription.
The type of Managed Identity used by the DiskEncryptionSet. Only SystemAssigned is supported for new creations. Disk Encryption Sets can be updated with Identity type None during migration of subscription to a new Azure Active Directory tenant; it will cause the encrypted resources to lose access to the keys.
'None' 'SystemAssigned'
EncryptionSetProperties
Name
Description
Value
activeKey
The key vault key which is currently used by this disk encryption set.
Fully versioned Key Url pointing to a key in KeyVault
string (required)
sourceVault
Resource id of the KeyVault containing the key or secret. This property is optional and cannot be used if the KeyVault subscription is not the same as the Disk Encryption Set subscription.