az keyvault network-rule

Manage vault network ACLs.

Commands

az keyvault network-rule add

Add a network rule to the network ACLs for a Key Vault.

az keyvault network-rule list

List the network rules from the network ACLs for a Key Vault.

az keyvault network-rule remove

Remove a network rule from the network ACLs for a Key Vault.

az keyvault network-rule wait

Place the CLI in a waiting state until a condition of the vault is met.

az keyvault network-rule add

Add a network rule to the network ACLs for a Key Vault.

az keyvault network-rule add --name
                             [--ip-address]
                             [--no-wait]
                             [--resource-group]
                             [--subnet]
                             [--subscription]
                             [--vnet-name]

Required Parameters

--name -n

Name of the Vault.

Optional Parameters

--ip-address

IPv4 address or CIDR range.

--no-wait

Do not wait for the long-running operation to finish.

--resource-group -g

Proceed only if Key Vault belongs to the specified resource group.

--subnet

Name or ID of subnet. If name is supplied, --vnet-name must be supplied.

--subscription

Name or ID of subscription. You can configure the default subscription using az account set -s NAME_OR_ID.

--vnet-name

Name of a virtual network.

az keyvault network-rule list

List the network rules from the network ACLs for a Key Vault.

az keyvault network-rule list --name
                              [--query-examples]
                              [--resource-group]
                              [--subscription]

Required Parameters

--name -n

Name of the Vault.

Optional Parameters

--query-examples

Recommend JMESPath string for you. You can copy one of the query and paste it after --query parameter within double quotation marks to see the results. You can add one or more positional keywords so that we can give suggestions based on these key words.

--resource-group -g

Proceed only if Key Vault belongs to the specified resource group.

--subscription

Name or ID of subscription. You can configure the default subscription using az account set -s NAME_OR_ID.

az keyvault network-rule remove

Remove a network rule from the network ACLs for a Key Vault.

az keyvault network-rule remove --name
                                [--ip-address]
                                [--no-wait]
                                [--resource-group]
                                [--subnet]
                                [--subscription]
                                [--vnet-name]

Required Parameters

--name -n

Name of the Vault.

Optional Parameters

--ip-address

IPv4 address or CIDR range.

--no-wait

Do not wait for the long-running operation to finish.

--resource-group -g

Proceed only if Key Vault belongs to the specified resource group.

--subnet

Name or ID of subnet. If name is supplied, --vnet-name must be supplied.

--subscription

Name or ID of subscription. You can configure the default subscription using az account set -s NAME_OR_ID.

--vnet-name

Name of a virtual network.

az keyvault network-rule wait

Place the CLI in a waiting state until a condition of the vault is met.

az keyvault network-rule wait --name
                              [--created]
                              [--custom]
                              [--deleted]
                              [--exists]
                              [--interval]
                              [--resource-group]
                              [--subscription]
                              [--timeout]
                              [--updated]

Examples

Pause CLI until the network ACLs are updated.

az keyvault network-rule wait --name MyVault --updated

Required Parameters

--name -n

Name of the Vault.

Optional Parameters

--created

Wait until created with 'provisioningState' at 'Succeeded'.

--custom

Wait until the condition satisfies a custom JMESPath query. E.g. provisioningState!='InProgress', instanceView.statuses[?code=='PowerState/running'].

--deleted

Wait until deleted.

--exists

Wait until the resource exists.

--interval

Polling interval in seconds.

default value: 30
--resource-group -g

Proceed only if Key Vault belongs to the specified resource group.

--subscription

Name or ID of subscription. You can configure the default subscription using az account set -s NAME_OR_ID.

--timeout

Maximum wait in seconds.

default value: 3600
--updated

Wait until updated with provisioningState at 'Succeeded'.