4.8.0b3 (2026-09-30)
Features Added
- Added support for service API version
2026-07-01-preview#48963 - Added EKM proxy private endpoint management to
KeyVaultEkmClient. The client now exposes
begin_create_ekm_private_endpoint,begin_delete_ekm_private_endpoint,get_ekm_private_endpoint,
list_ekm_private_endpoints, andget_ekm_private_endpoint_operation_status. - Added
KeyVaultEkmPrivateEndpoint,KeyVaultEkmPrivateEndpointConnectionState,
KeyVaultEkmPrivateEndpointProperties, andKeyVaultEkmPrivateEndpointOperationmodels, along with the
KeyVaultEkmConnectivityMode,KeyVaultEkmPrivateEndpointConnectionStatus,
KeyVaultEkmPrivateEndpointOperationStatus,KeyVaultEkmPrivateEndpointOperationType, and
KeyVaultEkmPrivateEndpointProvisioningStateenums. - Added a
connectivity_modekeyword argument and attribute toKeyVaultEkmConnection. Set this to
KeyVaultEkmConnectivityMode.PRIVATE_ENDPOINTto reach the EKM proxy through an EKM proxy private endpoint, in which
casehostis the name of the private endpoint instead of a DNS name or IP address.
Bugs Fixed
- Fixed a bug in the challenge authentication policy where the authentication challenge was cached before the challenge resource was verified. The challenge is now cached only after resource verification succeeds #48710.
Other Changes
- Key Vault API version
2026-07-01-previewis now the default.