Note
Access to this page requires authorization. You can try signing in or changing directories.
Access to this page requires authorization. You can try changing directories.
Bicep resource definition
The dnsResolvers/inboundEndpoints resource type can be deployed with operations that target:
For a list of changed properties in each API version, see change log.
Resource format
To create a Microsoft.Network/dnsResolvers/inboundEndpoints resource, add the following Bicep to your template.
resource symbolicname 'Microsoft.Network/dnsResolvers/inboundEndpoints@2025-10-01-preview' = {
  parent: resourceSymbolicName
  ___location: 'string'
  name: 'string'
  properties: {
    ipConfigurations: [
      {
        privateIpAddress: 'string'
        privateIpAllocationMethod: 'string'
        subnet: {
          id: 'string'
        }
      }
    ]
  }
  tags: {
    {customized property}: 'string'
  }
}
Property Values
Microsoft.Network/dnsResolvers/inboundEndpoints
| Name | Description | Value | 
|---|---|---|
| ___location | The geo-___location where the resource lives | string (required) | 
| name | The resource name | string (required) | 
| parent | In Bicep, you can specify the parent resource for a child resource. You only need to add this property when the child resource is declared outside of the parent resource. For more information, see Child resource outside parent resource. | Symbolic name for resource of type: dnsResolvers | 
| properties | Properties of the inbound endpoint. | InboundEndpointProperties (required) | 
| tags | Resource tags | Dictionary of tag names and values. See Tags in templates | 
InboundEndpointProperties
| Name | Description | Value | 
|---|---|---|
| ipConfigurations | IP configurations for the inbound endpoint. | IpConfiguration[] (required) | 
IpConfiguration
| Name | Description | Value | 
|---|---|---|
| privateIpAddress | Private IP address of the IP configuration. | string | 
| privateIpAllocationMethod | Private IP address allocation method. | 'Dynamic' 'Static' | 
| subnet | The reference to the subnet bound to the IP configuration. | SubResource (required) | 
SubResource
| Name | Description | Value | 
|---|---|---|
| id | Resource ID. | string (required) | 
TrackedResourceTags
| Name | Description | Value | 
|---|
Usage Examples
Azure Quickstart Samples
The following Azure Quickstart templates contain Bicep samples for deploying this resource type.
| Bicep File | Description | 
|---|---|
| Azure DNS Private Resolver | This template provisions Azure DNS Private Resolver in a virtual network with required forwarding ruleset and rules. It creates a new virtual network with two subnets, and deploy Azure DNS Private Resolver in this VNET. | 
ARM template resource definition
The dnsResolvers/inboundEndpoints resource type can be deployed with operations that target:
For a list of changed properties in each API version, see change log.
Resource format
To create a Microsoft.Network/dnsResolvers/inboundEndpoints resource, add the following JSON to your template.
{
  "type": "Microsoft.Network/dnsResolvers/inboundEndpoints",
  "apiVersion": "2025-10-01-preview",
  "name": "string",
  "___location": "string",
  "properties": {
    "ipConfigurations": [
      {
        "privateIpAddress": "string",
        "privateIpAllocationMethod": "string",
        "subnet": {
          "id": "string"
        }
      }
    ]
  },
  "tags": {
    "{customized property}": "string"
  }
}
Property Values
Microsoft.Network/dnsResolvers/inboundEndpoints
| Name | Description | Value | 
|---|---|---|
| apiVersion | The api version | '2025-10-01-preview' | 
| ___location | The geo-___location where the resource lives | string (required) | 
| name | The resource name | string (required) | 
| properties | Properties of the inbound endpoint. | InboundEndpointProperties (required) | 
| tags | Resource tags | Dictionary of tag names and values. See Tags in templates | 
| type | The resource type | 'Microsoft.Network/dnsResolvers/inboundEndpoints' | 
InboundEndpointProperties
| Name | Description | Value | 
|---|---|---|
| ipConfigurations | IP configurations for the inbound endpoint. | IpConfiguration[] (required) | 
IpConfiguration
| Name | Description | Value | 
|---|---|---|
| privateIpAddress | Private IP address of the IP configuration. | string | 
| privateIpAllocationMethod | Private IP address allocation method. | 'Dynamic' 'Static' | 
| subnet | The reference to the subnet bound to the IP configuration. | SubResource (required) | 
SubResource
| Name | Description | Value | 
|---|---|---|
| id | Resource ID. | string (required) | 
TrackedResourceTags
| Name | Description | Value | 
|---|
Usage Examples
Azure Quickstart Templates
The following Azure Quickstart templates deploy this resource type.
| Template | Description | 
|---|---|
| Azure DNS Private Resolver | This template provisions Azure DNS Private Resolver in a virtual network with required forwarding ruleset and rules. It creates a new virtual network with two subnets, and deploy Azure DNS Private Resolver in this VNET. | 
Terraform (AzAPI provider) resource definition
The dnsResolvers/inboundEndpoints resource type can be deployed with operations that target:
For a list of changed properties in each API version, see change log.
Resource format
To create a Microsoft.Network/dnsResolvers/inboundEndpoints resource, add the following Terraform to your template.
resource "azapi_resource" "symbolicname" {
  type = "Microsoft.Network/dnsResolvers/inboundEndpoints@2025-10-01-preview"
  name = "string"
  parent_id = "string"
  ___location = "string"
  tags = {
    {customized property} = "string"
  }
  body = {
    properties = {
      ipConfigurations = [
        {
          privateIpAddress = "string"
          privateIpAllocationMethod = "string"
          subnet = {
            id = "string"
          }
        }
      ]
    }
  }
}
Property Values
Microsoft.Network/dnsResolvers/inboundEndpoints
| Name | Description | Value | 
|---|---|---|
| ___location | The geo-___location where the resource lives | string (required) | 
| name | The resource name | string (required) | 
| parent_id | The ID of the resource that is the parent for this resource. | ID for resource of type: dnsResolvers | 
| properties | Properties of the inbound endpoint. | InboundEndpointProperties (required) | 
| tags | Resource tags | Dictionary of tag names and values. | 
| type | The resource type | "Microsoft.Network/dnsResolvers/inboundEndpoints@2025-10-01-preview" | 
InboundEndpointProperties
| Name | Description | Value | 
|---|---|---|
| ipConfigurations | IP configurations for the inbound endpoint. | IpConfiguration[] (required) | 
IpConfiguration
| Name | Description | Value | 
|---|---|---|
| privateIpAddress | Private IP address of the IP configuration. | string | 
| privateIpAllocationMethod | Private IP address allocation method. | 'Dynamic' 'Static' | 
| subnet | The reference to the subnet bound to the IP configuration. | SubResource (required) | 
SubResource
| Name | Description | Value | 
|---|---|---|
| id | Resource ID. | string (required) | 
TrackedResourceTags
| Name | Description | Value | 
|---|
Usage Examples
Terraform Samples
A basic example of deploying Private DNS Resolver Inbound Endpoint.
terraform {
  required_providers {
    azapi = {
      source = "Azure/azapi"
    }
  }
}
provider "azapi" {
  skip_provider_registration = false
}
variable "resource_name" {
  type    = string
  default = "acctest0001"
}
variable "___location" {
  type    = string
  default = "westeurope"
}
resource "azapi_resource" "resourceGroup" {
  type     = "Microsoft.Resources/resourceGroups@2020-06-01"
  name     = var.resource_name
  ___location = var.___location
}
resource "azapi_resource" "virtualNetwork" {
  type      = "Microsoft.Network/virtualNetworks@2022-07-01"
  parent_id = azapi_resource.resourceGroup.id
  name      = var.resource_name
  ___location  = var.___location
  body = {
    properties = {
      addressSpace = {
        addressPrefixes = [
          "10.0.0.0/16",
        ]
      }
      dhcpOptions = {
        dnsServers = [
        ]
      }
      subnets = [
      ]
    }
  }
  schema_validation_enabled = false
  response_export_values    = ["*"]
  lifecycle {
    ignore_changes = [body.properties.subnets]
  }
}
resource "azapi_resource" "subnet" {
  type      = "Microsoft.Network/virtualNetworks/subnets@2022-07-01"
  parent_id = azapi_resource.virtualNetwork.id
  name      = "inbounddns"
  body = {
    properties = {
      addressPrefix = "10.0.0.0/28"
      delegations = [
        {
          name = "Microsoft.Network.dnsResolvers"
          properties = {
            serviceName = "Microsoft.Network/dnsResolvers"
          }
        },
      ]
      privateEndpointNetworkPolicies    = "Enabled"
      privateLinkServiceNetworkPolicies = "Enabled"
      serviceEndpointPolicies = [
      ]
      serviceEndpoints = [
      ]
    }
  }
  schema_validation_enabled = false
  response_export_values    = ["*"]
}
resource "azapi_resource" "dnsResolver" {
  type      = "Microsoft.Network/dnsResolvers@2022-07-01"
  parent_id = azapi_resource.resourceGroup.id
  name      = var.resource_name
  ___location  = var.___location
  body = {
    properties = {
      virtualNetwork = {
        id = azapi_resource.virtualNetwork.id
      }
    }
  }
  schema_validation_enabled = false
  response_export_values    = ["*"]
}
resource "azapi_resource" "inboundEndpoint" {
  type      = "Microsoft.Network/dnsResolvers/inboundEndpoints@2022-07-01"
  parent_id = azapi_resource.dnsResolver.id
  name      = var.resource_name
  ___location  = var.___location
  body = {
    properties = {
      ipConfigurations = [
        {
          privateIpAllocationMethod = "Dynamic"
          subnet = {
            id = azapi_resource.subnet.id
          }
        },
      ]
    }
  }
  schema_validation_enabled = false
  response_export_values    = ["*"]
}