We recommend using Azure Native.
azure.appconfiguration.ConfigurationStore
Explore with Pulumi AI
Example Usage
import * as pulumi from "@pulumi/pulumi";
import * as azure from "@pulumi/azure";
const example = new azure.core.ResourceGroup("example", {
name: "example-resources",
location: "West Europe",
});
const appconf = new azure.appconfiguration.ConfigurationStore("appconf", {
name: "appConf1",
resourceGroupName: example.name,
location: example.location,
});
import pulumi
import pulumi_azure as azure
example = azure.core.ResourceGroup("example",
name="example-resources",
location="West Europe")
appconf = azure.appconfiguration.ConfigurationStore("appconf",
name="appConf1",
resource_group_name=example.name,
location=example.location)
package main
import (
"github.com/pulumi/pulumi-azure/sdk/v5/go/azure/appconfiguration"
"github.com/pulumi/pulumi-azure/sdk/v5/go/azure/core"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
example, err := core.NewResourceGroup(ctx, "example", &core.ResourceGroupArgs{
Name: pulumi.String("example-resources"),
Location: pulumi.String("West Europe"),
})
if err != nil {
return err
}
_, err = appconfiguration.NewConfigurationStore(ctx, "appconf", &appconfiguration.ConfigurationStoreArgs{
Name: pulumi.String("appConf1"),
ResourceGroupName: example.Name,
Location: example.Location,
})
if err != nil {
return err
}
return nil
})
}
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using Azure = Pulumi.Azure;
return await Deployment.RunAsync(() =>
{
var example = new Azure.Core.ResourceGroup("example", new()
{
Name = "example-resources",
Location = "West Europe",
});
var appconf = new Azure.AppConfiguration.ConfigurationStore("appconf", new()
{
Name = "appConf1",
ResourceGroupName = example.Name,
Location = example.Location,
});
});
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.azure.core.ResourceGroup;
import com.pulumi.azure.core.ResourceGroupArgs;
import com.pulumi.azure.appconfiguration.ConfigurationStore;
import com.pulumi.azure.appconfiguration.ConfigurationStoreArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var example = new ResourceGroup("example", ResourceGroupArgs.builder()
.name("example-resources")
.location("West Europe")
.build());
var appconf = new ConfigurationStore("appconf", ConfigurationStoreArgs.builder()
.name("appConf1")
.resourceGroupName(example.name())
.location(example.location())
.build());
}
}
resources:
example:
type: azure:core:ResourceGroup
properties:
name: example-resources
location: West Europe
appconf:
type: azure:appconfiguration:ConfigurationStore
properties:
name: appConf1
resourceGroupName: ${example.name}
location: ${example.location}
Encryption)
import * as pulumi from "@pulumi/pulumi";
import * as azure from "@pulumi/azure";
const example = new azure.core.ResourceGroup("example", {
name: "example-resources",
location: "West Europe",
});
const exampleUserAssignedIdentity = new azure.authorization.UserAssignedIdentity("example", {
name: "example-identity",
location: example.location,
resourceGroupName: example.name,
});
const current = azure.core.getClientConfig({});
const exampleKeyVault = new azure.keyvault.KeyVault("example", {
name: "exampleKVt123",
location: example.location,
resourceGroupName: example.name,
tenantId: current.then(current => current.tenantId),
skuName: "standard",
softDeleteRetentionDays: 7,
purgeProtectionEnabled: true,
});
const server = new azure.keyvault.AccessPolicy("server", {
keyVaultId: exampleKeyVault.id,
tenantId: current.then(current => current.tenantId),
objectId: exampleUserAssignedIdentity.principalId,
keyPermissions: [
"Get",
"UnwrapKey",
"WrapKey",
],
secretPermissions: ["Get"],
});
const client = new azure.keyvault.AccessPolicy("client", {
keyVaultId: exampleKeyVault.id,
tenantId: current.then(current => current.tenantId),
objectId: current.then(current => current.objectId),
keyPermissions: [
"Get",
"Create",
"Delete",
"List",
"Restore",
"Recover",
"UnwrapKey",
"WrapKey",
"Purge",
"Encrypt",
"Decrypt",
"Sign",
"Verify",
"GetRotationPolicy",
],
secretPermissions: ["Get"],
});
const exampleKey = new azure.keyvault.Key("example", {
name: "exampleKVkey",
keyVaultId: exampleKeyVault.id,
keyType: "RSA",
keySize: 2048,
keyOpts: [
"decrypt",
"encrypt",
"sign",
"unwrapKey",
"verify",
"wrapKey",
],
}, {
dependsOn: [
client,
server,
],
});
const exampleConfigurationStore = new azure.appconfiguration.ConfigurationStore("example", {
name: "appConf2",
resourceGroupName: example.name,
location: example.location,
sku: "standard",
localAuthEnabled: true,
publicNetworkAccess: "Enabled",
purgeProtectionEnabled: false,
softDeleteRetentionDays: 1,
identity: {
type: "UserAssigned",
identityIds: [exampleUserAssignedIdentity.id],
},
encryption: {
keyVaultKeyIdentifier: exampleKey.id,
identityClientId: exampleUserAssignedIdentity.clientId,
},
replicas: [{
name: "replica1",
location: "West US",
}],
tags: {
environment: "development",
},
}, {
dependsOn: [
client,
server,
],
});
import pulumi
import pulumi_azure as azure
example = azure.core.ResourceGroup("example",
name="example-resources",
location="West Europe")
example_user_assigned_identity = azure.authorization.UserAssignedIdentity("example",
name="example-identity",
location=example.location,
resource_group_name=example.name)
current = azure.core.get_client_config()
example_key_vault = azure.keyvault.KeyVault("example",
name="exampleKVt123",
location=example.location,
resource_group_name=example.name,
tenant_id=current.tenant_id,
sku_name="standard",
soft_delete_retention_days=7,
purge_protection_enabled=True)
server = azure.keyvault.AccessPolicy("server",
key_vault_id=example_key_vault.id,
tenant_id=current.tenant_id,
object_id=example_user_assigned_identity.principal_id,
key_permissions=[
"Get",
"UnwrapKey",
"WrapKey",
],
secret_permissions=["Get"])
client = azure.keyvault.AccessPolicy("client",
key_vault_id=example_key_vault.id,
tenant_id=current.tenant_id,
object_id=current.object_id,
key_permissions=[
"Get",
"Create",
"Delete",
"List",
"Restore",
"Recover",
"UnwrapKey",
"WrapKey",
"Purge",
"Encrypt",
"Decrypt",
"Sign",
"Verify",
"GetRotationPolicy",
],
secret_permissions=["Get"])
example_key = azure.keyvault.Key("example",
name="exampleKVkey",
key_vault_id=example_key_vault.id,
key_type="RSA",
key_size=2048,
key_opts=[
"decrypt",
"encrypt",
"sign",
"unwrapKey",
"verify",
"wrapKey",
],
opts=pulumi.ResourceOptions(depends_on=[
client,
server,
]))
example_configuration_store = azure.appconfiguration.ConfigurationStore("example",
name="appConf2",
resource_group_name=example.name,
location=example.location,
sku="standard",
local_auth_enabled=True,
public_network_access="Enabled",
purge_protection_enabled=False,
soft_delete_retention_days=1,
identity=azure.appconfiguration.ConfigurationStoreIdentityArgs(
type="UserAssigned",
identity_ids=[example_user_assigned_identity.id],
),
encryption=azure.appconfiguration.ConfigurationStoreEncryptionArgs(
key_vault_key_identifier=example_key.id,
identity_client_id=example_user_assigned_identity.client_id,
),
replicas=[azure.appconfiguration.ConfigurationStoreReplicaArgs(
name="replica1",
location="West US",
)],
tags={
"environment": "development",
},
opts=pulumi.ResourceOptions(depends_on=[
client,
server,
]))
package main
import (
"github.com/pulumi/pulumi-azure/sdk/v5/go/azure/appconfiguration"
"github.com/pulumi/pulumi-azure/sdk/v5/go/azure/authorization"
"github.com/pulumi/pulumi-azure/sdk/v5/go/azure/core"
"github.com/pulumi/pulumi-azure/sdk/v5/go/azure/keyvault"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
example, err := core.NewResourceGroup(ctx, "example", &core.ResourceGroupArgs{
Name: pulumi.String("example-resources"),
Location: pulumi.String("West Europe"),
})
if err != nil {
return err
}
exampleUserAssignedIdentity, err := authorization.NewUserAssignedIdentity(ctx, "example", &authorization.UserAssignedIdentityArgs{
Name: pulumi.String("example-identity"),
Location: example.Location,
ResourceGroupName: example.Name,
})
if err != nil {
return err
}
current, err := core.GetClientConfig(ctx, nil, nil)
if err != nil {
return err
}
exampleKeyVault, err := keyvault.NewKeyVault(ctx, "example", &keyvault.KeyVaultArgs{
Name: pulumi.String("exampleKVt123"),
Location: example.Location,
ResourceGroupName: example.Name,
TenantId: pulumi.String(current.TenantId),
SkuName: pulumi.String("standard"),
SoftDeleteRetentionDays: pulumi.Int(7),
PurgeProtectionEnabled: pulumi.Bool(true),
})
if err != nil {
return err
}
server, err := keyvault.NewAccessPolicy(ctx, "server", &keyvault.AccessPolicyArgs{
KeyVaultId: exampleKeyVault.ID(),
TenantId: pulumi.String(current.TenantId),
ObjectId: exampleUserAssignedIdentity.PrincipalId,
KeyPermissions: pulumi.StringArray{
pulumi.String("Get"),
pulumi.String("UnwrapKey"),
pulumi.String("WrapKey"),
},
SecretPermissions: pulumi.StringArray{
pulumi.String("Get"),
},
})
if err != nil {
return err
}
client, err := keyvault.NewAccessPolicy(ctx, "client", &keyvault.AccessPolicyArgs{
KeyVaultId: exampleKeyVault.ID(),
TenantId: pulumi.String(current.TenantId),
ObjectId: pulumi.String(current.ObjectId),
KeyPermissions: pulumi.StringArray{
pulumi.String("Get"),
pulumi.String("Create"),
pulumi.String("Delete"),
pulumi.String("List"),
pulumi.String("Restore"),
pulumi.String("Recover"),
pulumi.String("UnwrapKey"),
pulumi.String("WrapKey"),
pulumi.String("Purge"),
pulumi.String("Encrypt"),
pulumi.String("Decrypt"),
pulumi.String("Sign"),
pulumi.String("Verify"),
pulumi.String("GetRotationPolicy"),
},
SecretPermissions: pulumi.StringArray{
pulumi.String("Get"),
},
})
if err != nil {
return err
}
exampleKey, err := keyvault.NewKey(ctx, "example", &keyvault.KeyArgs{
Name: pulumi.String("exampleKVkey"),
KeyVaultId: exampleKeyVault.ID(),
KeyType: pulumi.String("RSA"),
KeySize: pulumi.Int(2048),
KeyOpts: pulumi.StringArray{
pulumi.String("decrypt"),
pulumi.String("encrypt"),
pulumi.String("sign"),
pulumi.String("unwrapKey"),
pulumi.String("verify"),
pulumi.String("wrapKey"),
},
}, pulumi.DependsOn([]pulumi.Resource{
client,
server,
}))
if err != nil {
return err
}
_, err = appconfiguration.NewConfigurationStore(ctx, "example", &appconfiguration.ConfigurationStoreArgs{
Name: pulumi.String("appConf2"),
ResourceGroupName: example.Name,
Location: example.Location,
Sku: pulumi.String("standard"),
LocalAuthEnabled: pulumi.Bool(true),
PublicNetworkAccess: pulumi.String("Enabled"),
PurgeProtectionEnabled: pulumi.Bool(false),
SoftDeleteRetentionDays: pulumi.Int(1),
Identity: &appconfiguration.ConfigurationStoreIdentityArgs{
Type: pulumi.String("UserAssigned"),
IdentityIds: pulumi.StringArray{
exampleUserAssignedIdentity.ID(),
},
},
Encryption: &appconfiguration.ConfigurationStoreEncryptionArgs{
KeyVaultKeyIdentifier: exampleKey.ID(),
IdentityClientId: exampleUserAssignedIdentity.ClientId,
},
Replicas: appconfiguration.ConfigurationStoreReplicaArray{
&appconfiguration.ConfigurationStoreReplicaArgs{
Name: pulumi.String("replica1"),
Location: pulumi.String("West US"),
},
},
Tags: pulumi.StringMap{
"environment": pulumi.String("development"),
},
}, pulumi.DependsOn([]pulumi.Resource{
client,
server,
}))
if err != nil {
return err
}
return nil
})
}
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using Azure = Pulumi.Azure;
return await Deployment.RunAsync(() =>
{
var example = new Azure.Core.ResourceGroup("example", new()
{
Name = "example-resources",
Location = "West Europe",
});
var exampleUserAssignedIdentity = new Azure.Authorization.UserAssignedIdentity("example", new()
{
Name = "example-identity",
Location = example.Location,
ResourceGroupName = example.Name,
});
var current = Azure.Core.GetClientConfig.Invoke();
var exampleKeyVault = new Azure.KeyVault.KeyVault("example", new()
{
Name = "exampleKVt123",
Location = example.Location,
ResourceGroupName = example.Name,
TenantId = current.Apply(getClientConfigResult => getClientConfigResult.TenantId),
SkuName = "standard",
SoftDeleteRetentionDays = 7,
PurgeProtectionEnabled = true,
});
var server = new Azure.KeyVault.AccessPolicy("server", new()
{
KeyVaultId = exampleKeyVault.Id,
TenantId = current.Apply(getClientConfigResult => getClientConfigResult.TenantId),
ObjectId = exampleUserAssignedIdentity.PrincipalId,
KeyPermissions = new[]
{
"Get",
"UnwrapKey",
"WrapKey",
},
SecretPermissions = new[]
{
"Get",
},
});
var client = new Azure.KeyVault.AccessPolicy("client", new()
{
KeyVaultId = exampleKeyVault.Id,
TenantId = current.Apply(getClientConfigResult => getClientConfigResult.TenantId),
ObjectId = current.Apply(getClientConfigResult => getClientConfigResult.ObjectId),
KeyPermissions = new[]
{
"Get",
"Create",
"Delete",
"List",
"Restore",
"Recover",
"UnwrapKey",
"WrapKey",
"Purge",
"Encrypt",
"Decrypt",
"Sign",
"Verify",
"GetRotationPolicy",
},
SecretPermissions = new[]
{
"Get",
},
});
var exampleKey = new Azure.KeyVault.Key("example", new()
{
Name = "exampleKVkey",
KeyVaultId = exampleKeyVault.Id,
KeyType = "RSA",
KeySize = 2048,
KeyOpts = new[]
{
"decrypt",
"encrypt",
"sign",
"unwrapKey",
"verify",
"wrapKey",
},
}, new CustomResourceOptions
{
DependsOn =
{
client,
server,
},
});
var exampleConfigurationStore = new Azure.AppConfiguration.ConfigurationStore("example", new()
{
Name = "appConf2",
ResourceGroupName = example.Name,
Location = example.Location,
Sku = "standard",
LocalAuthEnabled = true,
PublicNetworkAccess = "Enabled",
PurgeProtectionEnabled = false,
SoftDeleteRetentionDays = 1,
Identity = new Azure.AppConfiguration.Inputs.ConfigurationStoreIdentityArgs
{
Type = "UserAssigned",
IdentityIds = new[]
{
exampleUserAssignedIdentity.Id,
},
},
Encryption = new Azure.AppConfiguration.Inputs.ConfigurationStoreEncryptionArgs
{
KeyVaultKeyIdentifier = exampleKey.Id,
IdentityClientId = exampleUserAssignedIdentity.ClientId,
},
Replicas = new[]
{
new Azure.AppConfiguration.Inputs.ConfigurationStoreReplicaArgs
{
Name = "replica1",
Location = "West US",
},
},
Tags =
{
{ "environment", "development" },
},
}, new CustomResourceOptions
{
DependsOn =
{
client,
server,
},
});
});
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.azure.core.ResourceGroup;
import com.pulumi.azure.core.ResourceGroupArgs;
import com.pulumi.azure.authorization.UserAssignedIdentity;
import com.pulumi.azure.authorization.UserAssignedIdentityArgs;
import com.pulumi.azure.core.CoreFunctions;
import com.pulumi.azure.keyvault.KeyVault;
import com.pulumi.azure.keyvault.KeyVaultArgs;
import com.pulumi.azure.keyvault.AccessPolicy;
import com.pulumi.azure.keyvault.AccessPolicyArgs;
import com.pulumi.azure.keyvault.Key;
import com.pulumi.azure.keyvault.KeyArgs;
import com.pulumi.azure.appconfiguration.ConfigurationStore;
import com.pulumi.azure.appconfiguration.ConfigurationStoreArgs;
import com.pulumi.azure.appconfiguration.inputs.ConfigurationStoreIdentityArgs;
import com.pulumi.azure.appconfiguration.inputs.ConfigurationStoreEncryptionArgs;
import com.pulumi.azure.appconfiguration.inputs.ConfigurationStoreReplicaArgs;
import com.pulumi.resources.CustomResourceOptions;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var example = new ResourceGroup("example", ResourceGroupArgs.builder()
.name("example-resources")
.location("West Europe")
.build());
var exampleUserAssignedIdentity = new UserAssignedIdentity("exampleUserAssignedIdentity", UserAssignedIdentityArgs.builder()
.name("example-identity")
.location(example.location())
.resourceGroupName(example.name())
.build());
final var current = CoreFunctions.getClientConfig();
var exampleKeyVault = new KeyVault("exampleKeyVault", KeyVaultArgs.builder()
.name("exampleKVt123")
.location(example.location())
.resourceGroupName(example.name())
.tenantId(current.applyValue(getClientConfigResult -> getClientConfigResult.tenantId()))
.skuName("standard")
.softDeleteRetentionDays(7)
.purgeProtectionEnabled(true)
.build());
var server = new AccessPolicy("server", AccessPolicyArgs.builder()
.keyVaultId(exampleKeyVault.id())
.tenantId(current.applyValue(getClientConfigResult -> getClientConfigResult.tenantId()))
.objectId(exampleUserAssignedIdentity.principalId())
.keyPermissions(
"Get",
"UnwrapKey",
"WrapKey")
.secretPermissions("Get")
.build());
var client = new AccessPolicy("client", AccessPolicyArgs.builder()
.keyVaultId(exampleKeyVault.id())
.tenantId(current.applyValue(getClientConfigResult -> getClientConfigResult.tenantId()))
.objectId(current.applyValue(getClientConfigResult -> getClientConfigResult.objectId()))
.keyPermissions(
"Get",
"Create",
"Delete",
"List",
"Restore",
"Recover",
"UnwrapKey",
"WrapKey",
"Purge",
"Encrypt",
"Decrypt",
"Sign",
"Verify",
"GetRotationPolicy")
.secretPermissions("Get")
.build());
var exampleKey = new Key("exampleKey", KeyArgs.builder()
.name("exampleKVkey")
.keyVaultId(exampleKeyVault.id())
.keyType("RSA")
.keySize(2048)
.keyOpts(
"decrypt",
"encrypt",
"sign",
"unwrapKey",
"verify",
"wrapKey")
.build(), CustomResourceOptions.builder()
.dependsOn(
client,
server)
.build());
var exampleConfigurationStore = new ConfigurationStore("exampleConfigurationStore", ConfigurationStoreArgs.builder()
.name("appConf2")
.resourceGroupName(example.name())
.location(example.location())
.sku("standard")
.localAuthEnabled(true)
.publicNetworkAccess("Enabled")
.purgeProtectionEnabled(false)
.softDeleteRetentionDays(1)
.identity(ConfigurationStoreIdentityArgs.builder()
.type("UserAssigned")
.identityIds(exampleUserAssignedIdentity.id())
.build())
.encryption(ConfigurationStoreEncryptionArgs.builder()
.keyVaultKeyIdentifier(exampleKey.id())
.identityClientId(exampleUserAssignedIdentity.clientId())
.build())
.replicas(ConfigurationStoreReplicaArgs.builder()
.name("replica1")
.location("West US")
.build())
.tags(Map.of("environment", "development"))
.build(), CustomResourceOptions.builder()
.dependsOn(
client,
server)
.build());
}
}
resources:
example:
type: azure:core:ResourceGroup
properties:
name: example-resources
location: West Europe
exampleUserAssignedIdentity:
type: azure:authorization:UserAssignedIdentity
name: example
properties:
name: example-identity
location: ${example.location}
resourceGroupName: ${example.name}
exampleKeyVault:
type: azure:keyvault:KeyVault
name: example
properties:
name: exampleKVt123
location: ${example.location}
resourceGroupName: ${example.name}
tenantId: ${current.tenantId}
skuName: standard
softDeleteRetentionDays: 7
purgeProtectionEnabled: true
server:
type: azure:keyvault:AccessPolicy
properties:
keyVaultId: ${exampleKeyVault.id}
tenantId: ${current.tenantId}
objectId: ${exampleUserAssignedIdentity.principalId}
keyPermissions:
- Get
- UnwrapKey
- WrapKey
secretPermissions:
- Get
client:
type: azure:keyvault:AccessPolicy
properties:
keyVaultId: ${exampleKeyVault.id}
tenantId: ${current.tenantId}
objectId: ${current.objectId}
keyPermissions:
- Get
- Create
- Delete
- List
- Restore
- Recover
- UnwrapKey
- WrapKey
- Purge
- Encrypt
- Decrypt
- Sign
- Verify
- GetRotationPolicy
secretPermissions:
- Get
exampleKey:
type: azure:keyvault:Key
name: example
properties:
name: exampleKVkey
keyVaultId: ${exampleKeyVault.id}
keyType: RSA
keySize: 2048
keyOpts:
- decrypt
- encrypt
- sign
- unwrapKey
- verify
- wrapKey
options:
dependson:
- ${client}
- ${server}
exampleConfigurationStore:
type: azure:appconfiguration:ConfigurationStore
name: example
properties:
name: appConf2
resourceGroupName: ${example.name}
location: ${example.location}
sku: standard
localAuthEnabled: true
publicNetworkAccess: Enabled
purgeProtectionEnabled: false
softDeleteRetentionDays: 1
identity:
type: UserAssigned
identityIds:
- ${exampleUserAssignedIdentity.id}
encryption:
keyVaultKeyIdentifier: ${exampleKey.id}
identityClientId: ${exampleUserAssignedIdentity.clientId}
replicas:
- name: replica1
location: West US
tags:
environment: development
options:
dependson:
- ${client}
- ${server}
variables:
current:
fn::invoke:
Function: azure:core:getClientConfig
Arguments: {}
Create ConfigurationStore Resource
Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.
Constructor syntax
new ConfigurationStore(name: string, args: ConfigurationStoreArgs, opts?: CustomResourceOptions);
@overload
def ConfigurationStore(resource_name: str,
args: ConfigurationStoreArgs,
opts: Optional[ResourceOptions] = None)
@overload
def ConfigurationStore(resource_name: str,
opts: Optional[ResourceOptions] = None,
resource_group_name: Optional[str] = None,
encryption: Optional[ConfigurationStoreEncryptionArgs] = None,
identity: Optional[ConfigurationStoreIdentityArgs] = None,
local_auth_enabled: Optional[bool] = None,
location: Optional[str] = None,
name: Optional[str] = None,
public_network_access: Optional[str] = None,
purge_protection_enabled: Optional[bool] = None,
replicas: Optional[Sequence[ConfigurationStoreReplicaArgs]] = None,
sku: Optional[str] = None,
soft_delete_retention_days: Optional[int] = None,
tags: Optional[Mapping[str, str]] = None)
func NewConfigurationStore(ctx *Context, name string, args ConfigurationStoreArgs, opts ...ResourceOption) (*ConfigurationStore, error)
public ConfigurationStore(string name, ConfigurationStoreArgs args, CustomResourceOptions? opts = null)
public ConfigurationStore(String name, ConfigurationStoreArgs args)
public ConfigurationStore(String name, ConfigurationStoreArgs args, CustomResourceOptions options)
type: azure:appconfiguration:ConfigurationStore
properties: # The arguments to resource properties.
options: # Bag of options to control resource's behavior.
Parameters
- name string
- The unique name of the resource.
- args ConfigurationStoreArgs
- The arguments to resource properties.
- opts CustomResourceOptions
- Bag of options to control resource's behavior.
- resource_name str
- The unique name of the resource.
- args ConfigurationStoreArgs
- The arguments to resource properties.
- opts ResourceOptions
- Bag of options to control resource's behavior.
- ctx Context
- Context object for the current deployment.
- name string
- The unique name of the resource.
- args ConfigurationStoreArgs
- The arguments to resource properties.
- opts ResourceOption
- Bag of options to control resource's behavior.
- name string
- The unique name of the resource.
- args ConfigurationStoreArgs
- The arguments to resource properties.
- opts CustomResourceOptions
- Bag of options to control resource's behavior.
- name String
- The unique name of the resource.
- args ConfigurationStoreArgs
- The arguments to resource properties.
- options CustomResourceOptions
- Bag of options to control resource's behavior.
Constructor example
The following reference example uses placeholder values for all input properties.
var configurationStoreResource = new Azure.AppConfiguration.ConfigurationStore("configurationStoreResource", new()
{
ResourceGroupName = "string",
Encryption = new Azure.AppConfiguration.Inputs.ConfigurationStoreEncryptionArgs
{
IdentityClientId = "string",
KeyVaultKeyIdentifier = "string",
},
Identity = new Azure.AppConfiguration.Inputs.ConfigurationStoreIdentityArgs
{
Type = "string",
IdentityIds = new[]
{
"string",
},
PrincipalId = "string",
TenantId = "string",
},
LocalAuthEnabled = false,
Location = "string",
Name = "string",
PublicNetworkAccess = "string",
PurgeProtectionEnabled = false,
Replicas = new[]
{
new Azure.AppConfiguration.Inputs.ConfigurationStoreReplicaArgs
{
Location = "string",
Name = "string",
Endpoint = "string",
Id = "string",
},
},
Sku = "string",
SoftDeleteRetentionDays = 0,
Tags =
{
{ "string", "string" },
},
});
example, err := appconfiguration.NewConfigurationStore(ctx, "configurationStoreResource", &appconfiguration.ConfigurationStoreArgs{
ResourceGroupName: pulumi.String("string"),
Encryption: &appconfiguration.ConfigurationStoreEncryptionArgs{
IdentityClientId: pulumi.String("string"),
KeyVaultKeyIdentifier: pulumi.String("string"),
},
Identity: &appconfiguration.ConfigurationStoreIdentityArgs{
Type: pulumi.String("string"),
IdentityIds: pulumi.StringArray{
pulumi.String("string"),
},
PrincipalId: pulumi.String("string"),
TenantId: pulumi.String("string"),
},
LocalAuthEnabled: pulumi.Bool(false),
Location: pulumi.String("string"),
Name: pulumi.String("string"),
PublicNetworkAccess: pulumi.String("string"),
PurgeProtectionEnabled: pulumi.Bool(false),
Replicas: appconfiguration.ConfigurationStoreReplicaArray{
&appconfiguration.ConfigurationStoreReplicaArgs{
Location: pulumi.String("string"),
Name: pulumi.String("string"),
Endpoint: pulumi.String("string"),
Id: pulumi.String("string"),
},
},
Sku: pulumi.String("string"),
SoftDeleteRetentionDays: pulumi.Int(0),
Tags: pulumi.StringMap{
"string": pulumi.String("string"),
},
})
var configurationStoreResource = new ConfigurationStore("configurationStoreResource", ConfigurationStoreArgs.builder()
.resourceGroupName("string")
.encryption(ConfigurationStoreEncryptionArgs.builder()
.identityClientId("string")
.keyVaultKeyIdentifier("string")
.build())
.identity(ConfigurationStoreIdentityArgs.builder()
.type("string")
.identityIds("string")
.principalId("string")
.tenantId("string")
.build())
.localAuthEnabled(false)
.location("string")
.name("string")
.publicNetworkAccess("string")
.purgeProtectionEnabled(false)
.replicas(ConfigurationStoreReplicaArgs.builder()
.location("string")
.name("string")
.endpoint("string")
.id("string")
.build())
.sku("string")
.softDeleteRetentionDays(0)
.tags(Map.of("string", "string"))
.build());
configuration_store_resource = azure.appconfiguration.ConfigurationStore("configurationStoreResource",
resource_group_name="string",
encryption=azure.appconfiguration.ConfigurationStoreEncryptionArgs(
identity_client_id="string",
key_vault_key_identifier="string",
),
identity=azure.appconfiguration.ConfigurationStoreIdentityArgs(
type="string",
identity_ids=["string"],
principal_id="string",
tenant_id="string",
),
local_auth_enabled=False,
location="string",
name="string",
public_network_access="string",
purge_protection_enabled=False,
replicas=[azure.appconfiguration.ConfigurationStoreReplicaArgs(
location="string",
name="string",
endpoint="string",
id="string",
)],
sku="string",
soft_delete_retention_days=0,
tags={
"string": "string",
})
const configurationStoreResource = new azure.appconfiguration.ConfigurationStore("configurationStoreResource", {
resourceGroupName: "string",
encryption: {
identityClientId: "string",
keyVaultKeyIdentifier: "string",
},
identity: {
type: "string",
identityIds: ["string"],
principalId: "string",
tenantId: "string",
},
localAuthEnabled: false,
location: "string",
name: "string",
publicNetworkAccess: "string",
purgeProtectionEnabled: false,
replicas: [{
location: "string",
name: "string",
endpoint: "string",
id: "string",
}],
sku: "string",
softDeleteRetentionDays: 0,
tags: {
string: "string",
},
});
type: azure:appconfiguration:ConfigurationStore
properties:
encryption:
identityClientId: string
keyVaultKeyIdentifier: string
identity:
identityIds:
- string
principalId: string
tenantId: string
type: string
localAuthEnabled: false
location: string
name: string
publicNetworkAccess: string
purgeProtectionEnabled: false
replicas:
- endpoint: string
id: string
location: string
name: string
resourceGroupName: string
sku: string
softDeleteRetentionDays: 0
tags:
string: string
ConfigurationStore Resource Properties
To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.
Inputs
The ConfigurationStore resource accepts the following input properties:
- Resource
Group stringName - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- Encryption
Configuration
Store Encryption - An
encryption
block as defined below. - Identity
Configuration
Store Identity An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- Local
Auth boolEnabled - Whether local authentication methods is enabled. Defaults to
true
. - Location string
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- Name string
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- Public
Network stringAccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- Purge
Protection boolEnabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- Replicas
List<Configuration
Store Replica> - One or more
replica
blocks as defined below. - Sku string
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - Soft
Delete intRetention Days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- Dictionary<string, string>
- A mapping of tags to assign to the resource.
- Resource
Group stringName - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- Encryption
Configuration
Store Encryption Args - An
encryption
block as defined below. - Identity
Configuration
Store Identity Args An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- Local
Auth boolEnabled - Whether local authentication methods is enabled. Defaults to
true
. - Location string
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- Name string
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- Public
Network stringAccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- Purge
Protection boolEnabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- Replicas
[]Configuration
Store Replica Args - One or more
replica
blocks as defined below. - Sku string
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - Soft
Delete intRetention Days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- map[string]string
- A mapping of tags to assign to the resource.
- resource
Group StringName - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- encryption
Configuration
Store Encryption - An
encryption
block as defined below. - identity
Configuration
Store Identity An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- local
Auth BooleanEnabled - Whether local authentication methods is enabled. Defaults to
true
. - location String
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- name String
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- public
Network StringAccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- purge
Protection BooleanEnabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- replicas
List<Configuration
Store Replica> - One or more
replica
blocks as defined below. - sku String
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - soft
Delete IntegerRetention Days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- Map<String,String>
- A mapping of tags to assign to the resource.
- resource
Group stringName - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- encryption
Configuration
Store Encryption - An
encryption
block as defined below. - identity
Configuration
Store Identity An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- local
Auth booleanEnabled - Whether local authentication methods is enabled. Defaults to
true
. - location string
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- name string
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- public
Network stringAccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- purge
Protection booleanEnabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- replicas
Configuration
Store Replica[] - One or more
replica
blocks as defined below. - sku string
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - soft
Delete numberRetention Days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- {[key: string]: string}
- A mapping of tags to assign to the resource.
- resource_
group_ strname - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- encryption
Configuration
Store Encryption Args - An
encryption
block as defined below. - identity
Configuration
Store Identity Args An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- local_
auth_ boolenabled - Whether local authentication methods is enabled. Defaults to
true
. - location str
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- name str
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- public_
network_ straccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- purge_
protection_ boolenabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- replicas
Sequence[Configuration
Store Replica Args] - One or more
replica
blocks as defined below. - sku str
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - soft_
delete_ intretention_ days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- Mapping[str, str]
- A mapping of tags to assign to the resource.
- resource
Group StringName - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- encryption Property Map
- An
encryption
block as defined below. - identity Property Map
An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- local
Auth BooleanEnabled - Whether local authentication methods is enabled. Defaults to
true
. - location String
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- name String
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- public
Network StringAccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- purge
Protection BooleanEnabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- replicas List<Property Map>
- One or more
replica
blocks as defined below. - sku String
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - soft
Delete NumberRetention Days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- Map<String>
- A mapping of tags to assign to the resource.
Outputs
All input properties are implicitly available as output properties. Additionally, the ConfigurationStore resource produces the following output properties:
- Endpoint string
- The URL of the App Configuration Replica.
- Id string
- The provider-assigned unique ID for this managed resource.
- Primary
Read List<ConfigurationKeys Store Primary Read Key> - A
primary_read_key
block as defined below containing the primary read access key. - Primary
Write List<ConfigurationKeys Store Primary Write Key> - A
primary_write_key
block as defined below containing the primary write access key. - Secondary
Read List<ConfigurationKeys Store Secondary Read Key> - A
secondary_read_key
block as defined below containing the secondary read access key. - Secondary
Write List<ConfigurationKeys Store Secondary Write Key> - A
secondary_write_key
block as defined below containing the secondary write access key.
- Endpoint string
- The URL of the App Configuration Replica.
- Id string
- The provider-assigned unique ID for this managed resource.
- Primary
Read []ConfigurationKeys Store Primary Read Key - A
primary_read_key
block as defined below containing the primary read access key. - Primary
Write []ConfigurationKeys Store Primary Write Key - A
primary_write_key
block as defined below containing the primary write access key. - Secondary
Read []ConfigurationKeys Store Secondary Read Key - A
secondary_read_key
block as defined below containing the secondary read access key. - Secondary
Write []ConfigurationKeys Store Secondary Write Key - A
secondary_write_key
block as defined below containing the secondary write access key.
- endpoint String
- The URL of the App Configuration Replica.
- id String
- The provider-assigned unique ID for this managed resource.
- primary
Read List<ConfigurationKeys Store Primary Read Key> - A
primary_read_key
block as defined below containing the primary read access key. - primary
Write List<ConfigurationKeys Store Primary Write Key> - A
primary_write_key
block as defined below containing the primary write access key. - secondary
Read List<ConfigurationKeys Store Secondary Read Key> - A
secondary_read_key
block as defined below containing the secondary read access key. - secondary
Write List<ConfigurationKeys Store Secondary Write Key> - A
secondary_write_key
block as defined below containing the secondary write access key.
- endpoint string
- The URL of the App Configuration Replica.
- id string
- The provider-assigned unique ID for this managed resource.
- primary
Read ConfigurationKeys Store Primary Read Key[] - A
primary_read_key
block as defined below containing the primary read access key. - primary
Write ConfigurationKeys Store Primary Write Key[] - A
primary_write_key
block as defined below containing the primary write access key. - secondary
Read ConfigurationKeys Store Secondary Read Key[] - A
secondary_read_key
block as defined below containing the secondary read access key. - secondary
Write ConfigurationKeys Store Secondary Write Key[] - A
secondary_write_key
block as defined below containing the secondary write access key.
- endpoint str
- The URL of the App Configuration Replica.
- id str
- The provider-assigned unique ID for this managed resource.
- primary_
read_ Sequence[Configurationkeys Store Primary Read Key] - A
primary_read_key
block as defined below containing the primary read access key. - primary_
write_ Sequence[Configurationkeys Store Primary Write Key] - A
primary_write_key
block as defined below containing the primary write access key. - secondary_
read_ Sequence[Configurationkeys Store Secondary Read Key] - A
secondary_read_key
block as defined below containing the secondary read access key. - secondary_
write_ Sequence[Configurationkeys Store Secondary Write Key] - A
secondary_write_key
block as defined below containing the secondary write access key.
- endpoint String
- The URL of the App Configuration Replica.
- id String
- The provider-assigned unique ID for this managed resource.
- primary
Read List<Property Map>Keys - A
primary_read_key
block as defined below containing the primary read access key. - primary
Write List<Property Map>Keys - A
primary_write_key
block as defined below containing the primary write access key. - secondary
Read List<Property Map>Keys - A
secondary_read_key
block as defined below containing the secondary read access key. - secondary
Write List<Property Map>Keys - A
secondary_write_key
block as defined below containing the secondary write access key.
Look up Existing ConfigurationStore Resource
Get an existing ConfigurationStore resource’s state with the given name, ID, and optional extra properties used to qualify the lookup.
public static get(name: string, id: Input<ID>, state?: ConfigurationStoreState, opts?: CustomResourceOptions): ConfigurationStore
@staticmethod
def get(resource_name: str,
id: str,
opts: Optional[ResourceOptions] = None,
encryption: Optional[ConfigurationStoreEncryptionArgs] = None,
endpoint: Optional[str] = None,
identity: Optional[ConfigurationStoreIdentityArgs] = None,
local_auth_enabled: Optional[bool] = None,
location: Optional[str] = None,
name: Optional[str] = None,
primary_read_keys: Optional[Sequence[ConfigurationStorePrimaryReadKeyArgs]] = None,
primary_write_keys: Optional[Sequence[ConfigurationStorePrimaryWriteKeyArgs]] = None,
public_network_access: Optional[str] = None,
purge_protection_enabled: Optional[bool] = None,
replicas: Optional[Sequence[ConfigurationStoreReplicaArgs]] = None,
resource_group_name: Optional[str] = None,
secondary_read_keys: Optional[Sequence[ConfigurationStoreSecondaryReadKeyArgs]] = None,
secondary_write_keys: Optional[Sequence[ConfigurationStoreSecondaryWriteKeyArgs]] = None,
sku: Optional[str] = None,
soft_delete_retention_days: Optional[int] = None,
tags: Optional[Mapping[str, str]] = None) -> ConfigurationStore
func GetConfigurationStore(ctx *Context, name string, id IDInput, state *ConfigurationStoreState, opts ...ResourceOption) (*ConfigurationStore, error)
public static ConfigurationStore Get(string name, Input<string> id, ConfigurationStoreState? state, CustomResourceOptions? opts = null)
public static ConfigurationStore get(String name, Output<String> id, ConfigurationStoreState state, CustomResourceOptions options)
Resource lookup is not supported in YAML
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- resource_name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- Encryption
Configuration
Store Encryption - An
encryption
block as defined below. - Endpoint string
- The URL of the App Configuration Replica.
- Identity
Configuration
Store Identity An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- Local
Auth boolEnabled - Whether local authentication methods is enabled. Defaults to
true
. - Location string
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- Name string
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- Primary
Read List<ConfigurationKeys Store Primary Read Key> - A
primary_read_key
block as defined below containing the primary read access key. - Primary
Write List<ConfigurationKeys Store Primary Write Key> - A
primary_write_key
block as defined below containing the primary write access key. - Public
Network stringAccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- Purge
Protection boolEnabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- Replicas
List<Configuration
Store Replica> - One or more
replica
blocks as defined below. - Resource
Group stringName - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- Secondary
Read List<ConfigurationKeys Store Secondary Read Key> - A
secondary_read_key
block as defined below containing the secondary read access key. - Secondary
Write List<ConfigurationKeys Store Secondary Write Key> - A
secondary_write_key
block as defined below containing the secondary write access key. - Sku string
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - Soft
Delete intRetention Days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- Dictionary<string, string>
- A mapping of tags to assign to the resource.
- Encryption
Configuration
Store Encryption Args - An
encryption
block as defined below. - Endpoint string
- The URL of the App Configuration Replica.
- Identity
Configuration
Store Identity Args An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- Local
Auth boolEnabled - Whether local authentication methods is enabled. Defaults to
true
. - Location string
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- Name string
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- Primary
Read []ConfigurationKeys Store Primary Read Key Args - A
primary_read_key
block as defined below containing the primary read access key. - Primary
Write []ConfigurationKeys Store Primary Write Key Args - A
primary_write_key
block as defined below containing the primary write access key. - Public
Network stringAccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- Purge
Protection boolEnabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- Replicas
[]Configuration
Store Replica Args - One or more
replica
blocks as defined below. - Resource
Group stringName - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- Secondary
Read []ConfigurationKeys Store Secondary Read Key Args - A
secondary_read_key
block as defined below containing the secondary read access key. - Secondary
Write []ConfigurationKeys Store Secondary Write Key Args - A
secondary_write_key
block as defined below containing the secondary write access key. - Sku string
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - Soft
Delete intRetention Days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- map[string]string
- A mapping of tags to assign to the resource.
- encryption
Configuration
Store Encryption - An
encryption
block as defined below. - endpoint String
- The URL of the App Configuration Replica.
- identity
Configuration
Store Identity An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- local
Auth BooleanEnabled - Whether local authentication methods is enabled. Defaults to
true
. - location String
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- name String
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- primary
Read List<ConfigurationKeys Store Primary Read Key> - A
primary_read_key
block as defined below containing the primary read access key. - primary
Write List<ConfigurationKeys Store Primary Write Key> - A
primary_write_key
block as defined below containing the primary write access key. - public
Network StringAccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- purge
Protection BooleanEnabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- replicas
List<Configuration
Store Replica> - One or more
replica
blocks as defined below. - resource
Group StringName - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- secondary
Read List<ConfigurationKeys Store Secondary Read Key> - A
secondary_read_key
block as defined below containing the secondary read access key. - secondary
Write List<ConfigurationKeys Store Secondary Write Key> - A
secondary_write_key
block as defined below containing the secondary write access key. - sku String
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - soft
Delete IntegerRetention Days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- Map<String,String>
- A mapping of tags to assign to the resource.
- encryption
Configuration
Store Encryption - An
encryption
block as defined below. - endpoint string
- The URL of the App Configuration Replica.
- identity
Configuration
Store Identity An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- local
Auth booleanEnabled - Whether local authentication methods is enabled. Defaults to
true
. - location string
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- name string
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- primary
Read ConfigurationKeys Store Primary Read Key[] - A
primary_read_key
block as defined below containing the primary read access key. - primary
Write ConfigurationKeys Store Primary Write Key[] - A
primary_write_key
block as defined below containing the primary write access key. - public
Network stringAccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- purge
Protection booleanEnabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- replicas
Configuration
Store Replica[] - One or more
replica
blocks as defined below. - resource
Group stringName - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- secondary
Read ConfigurationKeys Store Secondary Read Key[] - A
secondary_read_key
block as defined below containing the secondary read access key. - secondary
Write ConfigurationKeys Store Secondary Write Key[] - A
secondary_write_key
block as defined below containing the secondary write access key. - sku string
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - soft
Delete numberRetention Days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- {[key: string]: string}
- A mapping of tags to assign to the resource.
- encryption
Configuration
Store Encryption Args - An
encryption
block as defined below. - endpoint str
- The URL of the App Configuration Replica.
- identity
Configuration
Store Identity Args An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- local_
auth_ boolenabled - Whether local authentication methods is enabled. Defaults to
true
. - location str
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- name str
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- primary_
read_ Sequence[Configurationkeys Store Primary Read Key Args] - A
primary_read_key
block as defined below containing the primary read access key. - primary_
write_ Sequence[Configurationkeys Store Primary Write Key Args] - A
primary_write_key
block as defined below containing the primary write access key. - public_
network_ straccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- purge_
protection_ boolenabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- replicas
Sequence[Configuration
Store Replica Args] - One or more
replica
blocks as defined below. - resource_
group_ strname - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- secondary_
read_ Sequence[Configurationkeys Store Secondary Read Key Args] - A
secondary_read_key
block as defined below containing the secondary read access key. - secondary_
write_ Sequence[Configurationkeys Store Secondary Write Key Args] - A
secondary_write_key
block as defined below containing the secondary write access key. - sku str
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - soft_
delete_ intretention_ days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- Mapping[str, str]
- A mapping of tags to assign to the resource.
- encryption Property Map
- An
encryption
block as defined below. - endpoint String
- The URL of the App Configuration Replica.
- identity Property Map
An
identity
block as defined below.NOTE: Azure does not allow a downgrade from
standard
tofree
.- local
Auth BooleanEnabled - Whether local authentication methods is enabled. Defaults to
true
. - location String
- Specifies the supported Azure location where the resource exists. Changing this forces a new resource to be created.
- name String
- Specifies the name of the App Configuration. Changing this forces a new resource to be created.
- primary
Read List<Property Map>Keys - A
primary_read_key
block as defined below containing the primary read access key. - primary
Write List<Property Map>Keys - A
primary_write_key
block as defined below containing the primary write access key. - public
Network StringAccess The Public Network Access setting of the App Configuration. Possible values are
Enabled
andDisabled
.NOTE: If
public_network_access
is not specified, the App Configuration will be created asAutomatic
. However, once a different value is defined, can not be set again as automatic.- purge
Protection BooleanEnabled Whether Purge Protection is enabled. This field only works for
standard
sku. Defaults tofalse
.!> Note: Once Purge Protection has been enabled it's not possible to disable it. Deleting the App Configuration with Purge Protection enabled will schedule the App Configuration to be deleted (which will happen by Azure in the configured number of days).
- replicas List<Property Map>
- One or more
replica
blocks as defined below. - resource
Group StringName - The name of the resource group in which to create the App Configuration. Changing this forces a new resource to be created.
- secondary
Read List<Property Map>Keys - A
secondary_read_key
block as defined below containing the secondary read access key. - secondary
Write List<Property Map>Keys - A
secondary_write_key
block as defined below containing the secondary write access key. - sku String
- The SKU name of the App Configuration. Possible values are
free
andstandard
. Defaults tofree
. - soft
Delete NumberRetention Days The number of days that items should be retained for once soft-deleted. This field only works for
standard
sku. This value can be between1
and7
days. Defaults to7
. Changing this forces a new resource to be created.Note: If Purge Protection is enabled, this field can only be configured one time and cannot be updated.
- Map<String>
- A mapping of tags to assign to the resource.
Supporting Types
ConfigurationStoreEncryption, ConfigurationStoreEncryptionArgs
- Identity
Client stringId - Specifies the client id of the identity which will be used to access key vault.
- Key
Vault stringKey Identifier - Specifies the URI of the key vault key used to encrypt data.
- Identity
Client stringId - Specifies the client id of the identity which will be used to access key vault.
- Key
Vault stringKey Identifier - Specifies the URI of the key vault key used to encrypt data.
- identity
Client StringId - Specifies the client id of the identity which will be used to access key vault.
- key
Vault StringKey Identifier - Specifies the URI of the key vault key used to encrypt data.
- identity
Client stringId - Specifies the client id of the identity which will be used to access key vault.
- key
Vault stringKey Identifier - Specifies the URI of the key vault key used to encrypt data.
- identity_
client_ strid - Specifies the client id of the identity which will be used to access key vault.
- key_
vault_ strkey_ identifier - Specifies the URI of the key vault key used to encrypt data.
- identity
Client StringId - Specifies the client id of the identity which will be used to access key vault.
- key
Vault StringKey Identifier - Specifies the URI of the key vault key used to encrypt data.
ConfigurationStoreIdentity, ConfigurationStoreIdentityArgs
- Type string
- Specifies the type of Managed Service Identity that should be configured on this App Configuration. Possible values are
SystemAssigned
,UserAssigned
,SystemAssigned, UserAssigned
(to enable both). - Identity
Ids List<string> A list of User Assigned Managed Identity IDs to be assigned to this App Configuration.
NOTE: This is required when
type
is set toUserAssigned
orSystemAssigned, UserAssigned
.- Principal
Id string - The Principal ID associated with this Managed Service Identity.
- Tenant
Id string - The Tenant ID associated with this Managed Service Identity.
- Type string
- Specifies the type of Managed Service Identity that should be configured on this App Configuration. Possible values are
SystemAssigned
,UserAssigned
,SystemAssigned, UserAssigned
(to enable both). - Identity
Ids []string A list of User Assigned Managed Identity IDs to be assigned to this App Configuration.
NOTE: This is required when
type
is set toUserAssigned
orSystemAssigned, UserAssigned
.- Principal
Id string - The Principal ID associated with this Managed Service Identity.
- Tenant
Id string - The Tenant ID associated with this Managed Service Identity.
- type String
- Specifies the type of Managed Service Identity that should be configured on this App Configuration. Possible values are
SystemAssigned
,UserAssigned
,SystemAssigned, UserAssigned
(to enable both). - identity
Ids List<String> A list of User Assigned Managed Identity IDs to be assigned to this App Configuration.
NOTE: This is required when
type
is set toUserAssigned
orSystemAssigned, UserAssigned
.- principal
Id String - The Principal ID associated with this Managed Service Identity.
- tenant
Id String - The Tenant ID associated with this Managed Service Identity.
- type string
- Specifies the type of Managed Service Identity that should be configured on this App Configuration. Possible values are
SystemAssigned
,UserAssigned
,SystemAssigned, UserAssigned
(to enable both). - identity
Ids string[] A list of User Assigned Managed Identity IDs to be assigned to this App Configuration.
NOTE: This is required when
type
is set toUserAssigned
orSystemAssigned, UserAssigned
.- principal
Id string - The Principal ID associated with this Managed Service Identity.
- tenant
Id string - The Tenant ID associated with this Managed Service Identity.
- type str
- Specifies the type of Managed Service Identity that should be configured on this App Configuration. Possible values are
SystemAssigned
,UserAssigned
,SystemAssigned, UserAssigned
(to enable both). - identity_
ids Sequence[str] A list of User Assigned Managed Identity IDs to be assigned to this App Configuration.
NOTE: This is required when
type
is set toUserAssigned
orSystemAssigned, UserAssigned
.- principal_
id str - The Principal ID associated with this Managed Service Identity.
- tenant_
id str - The Tenant ID associated with this Managed Service Identity.
- type String
- Specifies the type of Managed Service Identity that should be configured on this App Configuration. Possible values are
SystemAssigned
,UserAssigned
,SystemAssigned, UserAssigned
(to enable both). - identity
Ids List<String> A list of User Assigned Managed Identity IDs to be assigned to this App Configuration.
NOTE: This is required when
type
is set toUserAssigned
orSystemAssigned, UserAssigned
.- principal
Id String - The Principal ID associated with this Managed Service Identity.
- tenant
Id String - The Tenant ID associated with this Managed Service Identity.
ConfigurationStorePrimaryReadKey, ConfigurationStorePrimaryReadKeyArgs
- Connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- Id string
- The ID of the Access Key.
- Secret string
- The Secret of the Access Key.
- Connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- Id string
- The ID of the Access Key.
- Secret string
- The Secret of the Access Key.
- connection
String String - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id String
- The ID of the Access Key.
- secret String
- The Secret of the Access Key.
- connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id string
- The ID of the Access Key.
- secret string
- The Secret of the Access Key.
- connection_
string str - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id str
- The ID of the Access Key.
- secret str
- The Secret of the Access Key.
- connection
String String - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id String
- The ID of the Access Key.
- secret String
- The Secret of the Access Key.
ConfigurationStorePrimaryWriteKey, ConfigurationStorePrimaryWriteKeyArgs
- Connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- Id string
- The ID of the Access Key.
- Secret string
- The Secret of the Access Key.
- Connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- Id string
- The ID of the Access Key.
- Secret string
- The Secret of the Access Key.
- connection
String String - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id String
- The ID of the Access Key.
- secret String
- The Secret of the Access Key.
- connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id string
- The ID of the Access Key.
- secret string
- The Secret of the Access Key.
- connection_
string str - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id str
- The ID of the Access Key.
- secret str
- The Secret of the Access Key.
- connection
String String - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id String
- The ID of the Access Key.
- secret String
- The Secret of the Access Key.
ConfigurationStoreReplica, ConfigurationStoreReplicaArgs
ConfigurationStoreSecondaryReadKey, ConfigurationStoreSecondaryReadKeyArgs
- Connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- Id string
- The ID of the Access Key.
- Secret string
- The Secret of the Access Key.
- Connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- Id string
- The ID of the Access Key.
- Secret string
- The Secret of the Access Key.
- connection
String String - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id String
- The ID of the Access Key.
- secret String
- The Secret of the Access Key.
- connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id string
- The ID of the Access Key.
- secret string
- The Secret of the Access Key.
- connection_
string str - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id str
- The ID of the Access Key.
- secret str
- The Secret of the Access Key.
- connection
String String - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id String
- The ID of the Access Key.
- secret String
- The Secret of the Access Key.
ConfigurationStoreSecondaryWriteKey, ConfigurationStoreSecondaryWriteKeyArgs
- Connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- Id string
- The ID of the Access Key.
- Secret string
- The Secret of the Access Key.
- Connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- Id string
- The ID of the Access Key.
- Secret string
- The Secret of the Access Key.
- connection
String String - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id String
- The ID of the Access Key.
- secret String
- The Secret of the Access Key.
- connection
String string - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id string
- The ID of the Access Key.
- secret string
- The Secret of the Access Key.
- connection_
string str - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id str
- The ID of the Access Key.
- secret str
- The Secret of the Access Key.
- connection
String String - The Connection String for this Access Key - comprising of the Endpoint, ID and Secret.
- id String
- The ID of the Access Key.
- secret String
- The Secret of the Access Key.
Import
App Configurations can be imported using the resource id
, e.g.
$ pulumi import azure:appconfiguration/configurationStore:ConfigurationStore appconf /subscriptions/00000000-0000-0000-0000-000000000000/resourceGroups/resourceGroup1/providers/Microsoft.AppConfiguration/configurationStores/appConf1
To learn more about importing existing cloud resources, see Importing resources.
Package Details
- Repository
- Azure Classic pulumi/pulumi-azure
- License
- Apache-2.0
- Notes
- This Pulumi package is based on the
azurerm
Terraform Provider.