Allow a key vault access policy to be restricted to a certain key
If a company has a single KeyVault which holds dev and production keys, as long as you access the keyvault through a valid access policy and key can be used (for the usages mentioned in the access policy).
Subramani Ananthapadmanabhan commented
I have ~ 10 keys that need to be shared across 50 apps. Without granular secret level RBAC I have to have ~300 KV for each of my 4 environments. if this feature is enabled, I can have 10 keyvaults per secret and use MSI to grant Get permissions to the key vautls.