Enable encryption on a running Windows VM without AAD

This template enables encryption on a running windows VM without needing an AAD application.

Prerequisites: Create a KeyVault in the same subscription and region as the VM and set EnabledForDiskEncryption access policy

  1. Set-AzureRmKeyVaultAccessPolicy -ResourceGroupName -VaultName -EnabledForDiskEncryption

References: White paper - https://azure.microsoft.com/documentation/articles/azure-security-disk-encryption/

