provider "azurerm" { features { key_vault { purge_soft_deleted_certificates_on_destroy = true recover_soft_deleted_secrets = true } } }