Key Vault replication & backup/restore secret update
TLDR: I want the possibility to overwrite already existing secrets with the Restore-AzKeyVaultSecret/Key/Certificate to allow for replication in the customers control.
According to the Key Vault documentation Azure Key Vault provides a 99.9% availability percentage and a replication to the pair region takes place to ensure customers can continue using their Key Vaults after a failover in read-only.
However this is a situation a customer does not and can not control. This means that a customer has to wait until Microsoft declares a disaster and fails over the vaults to the pair region. I would like it if we would be able to take more control of this process.
This can be made possible by being able to backup and restore secrets on a more continuous basis to another Key Vault which resides in the pair region. It is currently impossible to overwrite an already existing secret with a backup file if it already exists by name even though the backup has a newer version of the secret than the one already residing in the target Key Vault.