Allow deploying certificate to VM from raw contents
We are deploying a virtual machine to Azure using an ARM template and Azure Deployment Manager (EV2), and we need a certain certificate to be deployed on the VM as well. The certificate is in an Azure Key Vault, but not necessarily in the same subscription as the VM being deployed.
The VM ARM template seems to support deploying certificates from an Azure Key Vault, but requires that the vault be in the same subscription as the VM being deployed.
Our feature request is for one or more of these two options:
Allow deploying a certificate to a virtual machine from an Azure Key Vault in another subscription.
Allow deploying a certificate to a virtual machine from the raw certificate content (so that we can use ADM/EV2 secret substitution support to fill in the content from the key vault). This is very similar to how certificates can currently be deployed to classic Cloud Services.