Skip to main content

BackupAzureExecute

Resource BackupAzureExecute in pulumi-portainer.
3 min read

Resource BackupAzureExecute in pulumi-portainer.

Pulumi type: portainer:index/backupAzureExecute:BackupAzureExecute.

name is the Pulumi resource name. Nested object fields are documented under that object. They are not arguments of this resource.

Example#

Only required arguments are set. A string in angle brackets stands in for that argument. Any other value is an option or example written in the SDK description.

Arguments#

PropertyTypeRequiredDescription
authMethodstringyesHow Portainer authenticates against Azure: servicePrincipalSecret, servicePrincipalCertificate, managedIdentity or storageAccountKey. The other fields required depend on which one is chosen.
backupAzureExecuteIdstringno
clientCertificatestringnoPEM-encoded client certificate of the service principal. Used with 'authMethod'= "servicePrincipalCertificate"'.
clientCertificatePasswordstringnoPassword protecting clientCertificate, when it is encrypted.
clientIdstringnoApplication (client) ID of the service principal.
clientSecretstringnoClient secret of the service principal. Used with 'authMethod'= "servicePrincipalSecret"'.
containerNamestringyesBlob container the backups are written to.
managedIdentityClientIdstringnoClient ID of the user-assigned managed identity. Used with 'authMethod'= "managedIdentity"'; leave unset for a system-assigned identity.
passwordstringnoPassword the backup archive itself is encrypted with. Leave unset for an unencrypted archive.
serviceUrlstringnoBlob service endpoint, for a sovereign cloud or a storage emulator. Leave unset for the public Azure cloud.
storageAccountKeystringnoStorage account access key. Used with 'authMethod'= "storageAccountKey"'.
storageAccountNamestringyesName of the Azure storage account holding the container.
tenantIdstringnoEntra ID tenant of the service principal. Used with both servicePrincipal* methods.
triggers{ [key: string]: string }noArbitrary values that force another backup run when they change. A backup is a one-shot action, so without a trigger the resource runs once and then stays put.

Outputs#

Computed outputs are produced by the provider. They are not constructor arguments.

PropertyTypeComputedDescription
authMethodstringnoHow Portainer authenticates against Azure: servicePrincipalSecret, servicePrincipalCertificate, managedIdentity or storageAccountKey. The other fields required depend on which one is chosen.
backupAzureExecuteIdstringno
clientCertificatestringnoPEM-encoded client certificate of the service principal. Used with 'authMethod'= "servicePrincipalCertificate"'.
clientCertificatePasswordstringnoPassword protecting clientCertificate, when it is encrypted.
clientIdstringnoApplication (client) ID of the service principal.
clientSecretstringnoClient secret of the service principal. Used with 'authMethod'= "servicePrincipalSecret"'.
containerNamestringnoBlob container the backups are written to.
managedIdentityClientIdstringnoClient ID of the user-assigned managed identity. Used with 'authMethod'= "managedIdentity"'; leave unset for a system-assigned identity.
passwordstringnoPassword the backup archive itself is encrypted with. Leave unset for an unencrypted archive.
serviceUrlstringnoBlob service endpoint, for a sovereign cloud or a storage emulator. Leave unset for the public Azure cloud.
storageAccountKeystringnoStorage account access key. Used with 'authMethod'= "storageAccountKey"'.
storageAccountNamestringnoName of the Azure storage account holding the container.
tenantIdstringnoEntra ID tenant of the service principal. Used with both servicePrincipal* methods.
triggers{ [key: string]: string }noArbitrary values that force another backup run when they change. A backup is a one-shot action, so without a trigger the resource runs once and then stays put.