Automatic rotation of a Key Vault key, either a fixed interval after creation or ahead of expiry, plus a setting for when to notify. Secrets can't have one; only keys can.
Also called rotation policy.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Key rotation policy in context, with comparison tables and the common traps.
Terms in this definition
- Access policies
Older permission model for Key Vault, now superseded by the Azure RBAC model.
- Index field attributes
Settings applied to each field in an Azure AI Search index:
searchablefor full text,retrievableto return it,filterablefor exact-match$filter,sortable,facetablefor counts, andkeyfor the unique document ID.
Related terms
- SecretNearExpiry
Event that Key Vault publishes to Event Grid 30 days ahead of a secret's expiry. Since secrets lack a built-in rotation policy, a Logic App or function typically reacts to it to rotate them.