github.com/khulnasoft-lab/defsec@v1.0.5-0.20230827010352-5e9f46893d95/avd_docs/azure/keyvault/AVD-AZU-0013/Terraform.md (about) 1 2 Set a network ACL for the key vault 3 4 ```hcl 5 resource "azurerm_key_vault" "good_example" { 6 name = "examplekeyvault" 7 location = azurerm_resource_group.good_example.location 8 enabled_for_disk_encryption = true 9 soft_delete_retention_days = 7 10 purge_protection_enabled = false 11 12 network_acls { 13 bypass = "AzureServices" 14 default_action = "Deny" 15 } 16 } 17 18 ``` 19 20 #### Remediation Links 21 - https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/key_vault#network_acls 22