az sql mi tde-key

Manage a SQL Instance's encryption protector.

Commands

az sql mi tde-key set Sets the SQL Instance's encryption protector.
az sql mi tde-key show Gets a managed instance encryption protector.

az sql mi tde-key set

Sets the SQL Instance's encryption protector.

az sql mi tde-key set --server-key-type {AzureKeyVault, ServiceManaged}
[--ids]
[--kid]
[--managed-instance]
[--resource-group]
[--subscription]

Required Parameters

--server-key-type -t

The type of the server key.

accepted values: AzureKeyVault, ServiceManaged

Optional Parameters

--ids

One or more resource IDs (space-delimited). If provided, no other 'Resource Id' arguments should be specified.

--kid -k

The Azure Key Vault key identifier of the server key. An example key identifier is "https://YourVaultName.vault.azure.net/keys/YourKeyName/01234567890123456789012345678901".

--managed-instance --mi

Name of the Azure SQL managed instance.

--resource-group -g

Name of resource group. You can configure the default group using az configure --defaults group=<name>.

--subscription

Name or ID of subscription. You can configure the default subscription using az account set -s NAME_OR_ID.

az sql mi tde-key show

Gets a managed instance encryption protector.

az sql mi tde-key show [--ids]
[--managed-instance]
[--resource-group]
[--subscription]

Optional Parameters

--ids

One or more resource IDs (space-delimited). If provided, no other 'Resource Id' arguments should be specified.

--managed-instance --mi

Name of the Azure SQL managed instance.

--resource-group -g

Name of resource group. You can configure the default group using az configure --defaults group=<name>.

--subscription

Name or ID of subscription. You can configure the default subscription using az account set -s NAME_OR_ID.