Microsoft Azure
How-to use customer-managed keys with Azure Key Vault and Azure Storage encryption using ARM Template
I got a question from a reader asking how to use the Managed Identity of a storage account against Azure Key Vault to enable storage encryption using customer-managed keys. The documentation doesn't say storage accounts can have an identity. Testing a solution made me realize I was wrong,