Azure / missionlz

Azure landing zone for SCCA-compliant organizations.
MIT License
214 stars 122 forks source link

"Encryption at Host" RP not enabled by default. #1036

Closed sergio-re closed 1 month ago

sergio-re commented 1 month ago

Description

When deploying Windows and Linux VMs for remote access (jump boxes), deployment fails because the Encryption at Host Resource Provider is not enabled by default. Recommend enabling the RP with the deployment or marking it as a pre-requisite.

Steps to Reproduce

Deployed VM on a new subscription, Encryption at Host Resource Provider is not enabled by default, so when deploying the LZ with Windows and Linux VMs, deployment fails.   Steps to reproduce the behavior: N/A

Expected behavior

Windows and Linux machines deploying w/o issue.

Actual behavior

VM deployments fail

Screenshots

Additional context

Operating System: Terraform Version: Cloud (public, Azure Government, etc.):

jamasten commented 1 month ago

This prerequisite is already documented: https://github.com/Azure/missionlz/blob/main/docs/deployment-guide-bicep.md