│ Error: expected access_policy.0.key_permissions
i have created these user ,Ad group and SP.
provider "azurerm" { features {} }
module "key-vault" { source = "kumarvna/key-vault/azurerm" version = "2.2.0"
resource_group_name = "deepak-test" key_vault_name = "demo-project-shard" key_vault_sku_pricing_tier = "premium"
enable_purge_protection = false
access_policies = [ { azure_ad_user_principal_names = ["[email protected]", "[email protected]"] key_permissions = ["get", "list"] secret_permissions = ["get", "list"] certificate_permissions = ["get", "import", "list"] storage_permissions = ["backup", "get", "list", "recover"] },
{
azure_ad_group_names = ["team-test"]
key_permissions = ["get", "list"]
secret_permissions = ["get", "list"]
certificate_permissions = ["get", "import", "list"]
storage_permissions = ["backup", "get", "list", "recover"]
},
{
azure_ad_service_principal_names = ["testing", "testing1"]
key_permissions = ["get", "list"]
secret_permissions = ["get", "list"]
certificate_permissions = ["get", "import", "list"]
storage_permissions = ["backup", "get", "list", "recover"]
}
]
secrets = { "message" = "Hello, world!" "vmpass" = "" }
log_analytics_workspace_id = var.log_analytics_workspace_id
tags = { ProjectName = "demo-project" Env = "dev" Owner = "[email protected]" BusinessUnit = "CORP" ServiceClass = "Gold" } }
ERROR
Error: expected access_policy.0.certificate_permissions.0 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.0.certificate_permissions.1 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got import │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.0.certificate_permissions.2 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.0.key_permissions.0 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.0.key_permissions.1 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.0.secret_permissions.0 to be one of [Backup Delete Get List Purge Recover Restore Set], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.0.secret_permissions.1 to be one of [Backup Delete Get List Purge Recover Restore Set], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.0.storage_permissions.0 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got backup │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.0.storage_permissions.1 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.0.storage_permissions.2 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.0.storage_permissions.3 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got recover │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.1.certificate_permissions.0 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.1.certificate_permissions.1 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got import │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.1.certificate_permissions.2 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.1.key_permissions.0 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.1.key_permissions.1 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.1.secret_permissions.0 to be one of [Backup Delete Get List Purge Recover Restore Set], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.1.secret_permissions.1 to be one of [Backup Delete Get List Purge Recover Restore Set], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.1.storage_permissions.0 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got backup │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.1.storage_permissions.1 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.1.storage_permissions.2 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.1.storage_permissions.3 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got recover │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.0 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got backup │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.1 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got create │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.2 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got delete │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.3 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got deleteissuers │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.4 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.5 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got getissuers │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.6 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got import │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.7 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.8 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got listissuers │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.9 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got managecontacts │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.10 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got manageissuers │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.11 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got purge │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.12 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got recover │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.13 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got restore │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.14 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got setissuers │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.certificate_permissions.15 to be one of [Backup Create Delete DeleteIssuers Get GetIssuers Import List ListIssuers ManageContacts ManageIssuers Purge Recover Restore SetIssuers Update], got update │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.0 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got create │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.1 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got delete │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.2 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.3 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got backup │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.4 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got decrypt │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.5 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got encrypt │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.6 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got import │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.7 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.8 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got purge │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.9 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got recover │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.10 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got restore │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.11 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got sign │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.12 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got update │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.key_permissions.13 to be one of [Backup Create Decrypt Delete Encrypt Get Import List Purge Recover Restore Sign UnwrapKey Update Verify WrapKey Release Rotate GetRotationPolicy SetRotationPolicy], got verify │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.secret_permissions.0 to be one of [Backup Delete Get List Purge Recover Restore Set], got backup │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.secret_permissions.1 to be one of [Backup Delete Get List Purge Recover Restore Set], got delete │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.secret_permissions.2 to be one of [Backup Delete Get List Purge Recover Restore Set], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.secret_permissions.3 to be one of [Backup Delete Get List Purge Recover Restore Set], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.secret_permissions.4 to be one of [Backup Delete Get List Purge Recover Restore Set], got purge │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.secret_permissions.5 to be one of [Backup Delete Get List Purge Recover Restore Set], got recover │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.secret_permissions.6 to be one of [Backup Delete Get List Purge Recover Restore Set], got restore │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.secret_permissions.7 to be one of [Backup Delete Get List Purge Recover Restore Set], got set │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.0 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got backup │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.1 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got delete │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.2 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got deletesas │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.3 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got get │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.4 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got getsas │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.5 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got list │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.6 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got listsas │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.7 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got purge │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.8 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got recover │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.9 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got regeneratekey │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.10 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got restore │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.11 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got set │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.12 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got setsas │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" { │ ╵ ╷ │ Error: expected access_policy.2.storage_permissions.13 to be one of [Backup Delete DeleteSAS Get GetSAS List ListSAS Purge Recover RegenerateKey Restore Set SetSAS Update], got update │ │ with module.key-vault.azurerm_key_vault.main, │ on .terraform/modules/key-vault/main.tf line 133, in resource "azurerm_key_vault" "main": │ 133: resource "azurerm_key_vault" "main" {
Permissions now have to start with Upper case character.