Can't create virtual machine #4328
When deploying the following, I'm receiving this error FILE:Bastion.bicep param natGatewayName string = 'NATGateway'
param bastion_name string = 'MIMBastion'
param vnet_name string = 'mim-vnet'
param public_IPAddress_name string = 'mim-vnet-ip'
//param location string = 'eastus'
param location string = resourceGroup().location
param webSubnet_name string = 'WebSubnet'
param SQLSubnet_name string = 'SQLSubnet'
param appSubnet_name string = 'AppSubnet'
param dcSubnet_name string = 'DCSubnet'
resource bastionHostIP 'Microsoft.Network/publicIPAddresses@2020-11-01' = {
name: 'bastionIPName'
location: 'eastus'
sku: {
name: 'Standard'
tier: 'Regional'
properties: {
ipAddress: ''
publicIPAddressVersion: 'IPv4'
publicIPAllocationMethod: 'Static'
idleTimeoutInMinutes: 4
ipTags: []
resource natGatewayIPname 'Microsoft.Network/publicIPAddresses@2020-11-01' = {
name: 'natGatewayPublicIPName'
location: 'eastus'
sku: {
name: 'Standard'
tier: 'Regional'
properties: {
ipAddress: ''
publicIPAddressVersion: 'IPv4'
publicIPAllocationMethod: 'Static'
idleTimeoutInMinutes: 4
ipTags: []
resource natGatewayName_resource 'Microsoft.Network/natGateways@2020-11-01' = {
name: natGatewayName
location: 'eastus'
sku: {
name: 'Standard'
properties: {
idleTimeoutInMinutes: 10
publicIpAddresses: [
resource public_IPAddress_name_resource 'Microsoft.Network/publicIPAddresses@2020-11-01' = {
name: public_IPAddress_name
location: location
sku: {
name: 'Standard'
tier: 'Regional'
properties: {
ipAddress: ''
publicIPAddressVersion: 'IPv4'
publicIPAllocationMethod: 'Static'
idleTimeoutInMinutes: 4
ipTags: []
resource vnet_name_resource 'Microsoft.Network/virtualNetworks@2020-11-01' = {
name: vnet_name
location: location
properties: {
addressSpace: {
addressPrefixes: [
subnets: [
name: 'AzureBastionSubnet'
properties: {
addressPrefix: ''
delegations: []
privateEndpointNetworkPolicies: 'Enabled'
privateLinkServiceNetworkPolicies: 'Enabled'
name: webSubnet_name
properties: {
addressPrefix: ''
natGateway: {
delegations: []
privateEndpointNetworkPolicies: 'Enabled'
privateLinkServiceNetworkPolicies: 'Enabled'
name: SQLSubnet_name
properties: {
addressPrefix: ''
natGateway: {
delegations: []
privateEndpointNetworkPolicies: 'Enabled'
privateLinkServiceNetworkPolicies: 'Enabled'
name: appSubnet_name
properties: {
addressPrefix: ''
natGateway: {
delegations: []
privateEndpointNetworkPolicies: 'Enabled'
privateLinkServiceNetworkPolicies: 'Enabled'
name: dcSubnet_name
properties: {
addressPrefix: ''
natGateway: {
serviceEndpoints: []
delegations: []
privateEndpointNetworkPolicies: 'Enabled'
privateLinkServiceNetworkPolicies: 'Enabled'
virtualNetworkPeerings: []
enableDdosProtection: false
resource vnet_name_dcSubnet 'Microsoft.Network/VirtualNetworks/subnets@2019-11-01' = {
parent: vnet_name_resource
name: 'dcSubnet'
properties: {
addressPrefix: ''
natGateway: {
serviceEndpoints: []
privateEndpointNetworkPolicies: 'Enabled'
privateLinkServiceNetworkPolicies: 'Enabled'
resource vnet_name_AzureBastionSubnet 'Microsoft.Network/virtualNetworks/subnets@2020-11-01' = {
parent: vnet_name_resource
name: 'AzureBastionSubnet'
properties: {
addressPrefix: ''
delegations: []
privateEndpointNetworkPolicies: 'Enabled'
privateLinkServiceNetworkPolicies: 'Enabled'
resource bastion_name_resource 'Microsoft.Network/bastionHosts@2020-11-01' = {
name: bastion_name
location: location
properties: {
dnsName: ''
ipConfigurations: [
name: 'IpConf'
properties: {
privateIPAllocationMethod: 'Dynamic'
publicIPAddress: {
subnet: {
module dcModule 'Modules/Domain-Controller.bicep' = {
name: 'dcDeploy'
location: location
dependsOn: [
} FILE: Modules/Domain-Controller.bicep param location string
param subNetID string
resource virtualMachines_MIM_DC_01_name_resource 'Microsoft.Compute/virtualMachines@2021-03-01' = {
name: 'MIM-DC01'
location: location
properties: {
hardwareProfile: {
vmSize: 'Standard_B2ms'
storageProfile: {
imageReference: {
publisher: 'MicrosoftWindowsServer'
offer: 'WindowsServer'
sku: '2019-datacenter-gensecond'
version: 'latest'
osDisk: {
osType: 'Windows'
name: 'OsDisk'
createOption: 'FromImage'
caching: 'ReadWrite'
managedDisk: {
storageAccountType: 'Premium_LRS'
diskSizeGB: 127
dataDisks: []
osProfile: {
computerName: 'MIM-DC01'
adminUsername: 'xAdministrator'
adminPassword: '1qazXSW@3edcVFR$'
windowsConfiguration: {
provisionVMAgent: true
enableAutomaticUpdates: true
patchSettings: {
patchMode: 'AutomaticByOS'
assessmentMode: 'ImageDefault'
enableHotpatching: false
secrets: []
allowExtensionOperations: true
requireGuestProvisionSignal: true
networkProfile: {
networkApiVersion: '2020-11-01'
networkInterfaceConfigurations: [
name: 'MIM-DC-01592'
properties: {
deleteOption: 'Delete'
ipConfigurations: [
name: 'MIM-DC01-pi'
properties: {
primary: true
privateIPAddressVersion: 'IPv4'
subnet: {
id: subNetID
diagnosticsProfile: {
bootDiagnostics: {
enabled: true
} |
Where did you derive those Public IP Address values that you are using on the Public IP resources ? The public IP addresses are owned by Azure. So generally they are a read only property. You can request a range of them via a 'public ip address prefix' resource, however other than that you will leave the value empty and an available public IP will be assigned to you. You can select it to be static/dynamic. Example template: |
Thank you @brwilkinson, this answer allowed me to resolve the issue. Now if I can only correct to me CD VM via Bastiom... |
Where did you derive those Public IP Address values that you are using on the Public IP resources ?
The public IP addresses are owned by Azure. So generally they are a read only property.
You can request a range of them via a 'public ip address prefix' resource, however other than that you will leave the value empty and an available public IP will be assigned to you. You can select it to be static/dynamic.
Example template: