I want to setup Azure Disk encryption and created rules in the NSG that allows access to the service tags “Azure KeyVault” and “Azure KeyVault EastUS2” with the correct priority – However disk encryption still fails because it cannot access the IP address of our vault (vaultname.vault.azure.net).

