---
sourceDocument: Yokohama IT Operations Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/yokohama/it-operations-management

 Release :

    - yokohama

ft:locale :

    - en-US

ft:publication_title :

    - Yokohama IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# Azure Disk Encryption Set

# Azure Disk Encryption Set pattern-based discovery {#ariaid-title1}

* Release version: Yokohama
* 
* Updated August 11, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read

Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Azure Disk Encryption Set pattern-based discovery

The Azure Disk Encryption Set pattern in ServiceNow's Discovery and Service Mapping Patterns application enables automated discovery of Azure Disk Encryption Sets within your cloud environment.
This pattern populates detailed resource information into both CMDB and non-CMDB tables, supporting comprehensive visibility and management of encryption resources in Microsoft Azure.
Show full answer Show less  

## Key Features

* **Pattern Activation:** The Azure Disk Encryption Set discovery pattern is disabled by default and must be enabled manually. Activating or deactivating patterns starting with Visibility Content version 6.28.0 is no longer considered customization, allowing patterns to receive ongoing updates seamlessly.
* **Discovery Prerequisites:** Ensure Microsoft Azure discovery prerequisites are met, including proper Azure service account setup and using datacenter URLs for GovCloud (US) environments.
* **Data Storage:**
  * **Non-CMDB Tables:** Extended inventory details such as encryption type, identity type, key URL, provisioning state, and tenant ID are stored in the *cmdbazurediskencryptionsetdiskencryptionset* table.
  * **CMDB Tables:** Core resource attributes including install status, operational status, resource type, and location are stored in the *cmdbcicmpresource* table.
* **CI Relationships:** The pattern establishes relationships between Azure Disk Encryption Sets and other configuration items such as resource groups and Azure datacenters, enhancing configuration management and impact analysis.
* **Tag Collection:** The pattern gathers Azure tags associated with Disk Encryption Sets and stores them in the *cmdbkeyvalue* table for flexible tagging and filtering capabilities.

## Practical Benefits for ServiceNow Customers

* Gain accurate, up-to-date visibility into Azure Disk Encryption Sets across your cloud infrastructure, crucial for security and compliance management.
* Leverage automated discovery to reduce manual effort and errors in tracking encryption resources.
* Maintain a clean, well-structured CMDB with clear relationships and tagging to support governance, reporting, and operational workflows.
* Support discovery in specialized Azure environments such as GovCloud by configuring the discovery schedule with appropriate datacenter URLs.  
Discovery and Service Mapping Patterns finds Azure services on your cloud environment. Discovering some of these resources may require updating to the latest version of the Discovery and Service Mapping Patterns application from the ServiceNow Store.

## Pattern-based discovery and mapping requirements {#azure-disk-encryption-set__section_ipy_53n_jfc}

Verify the Microsoft Azure discovery prerequisites{#azure-disk-encryption-set__verify-azure-discovery-prerequisites-dlentry}
:   For more information, see the prerequisites section in [Microsoft Azure Cloud components discovery using patterns](https://servicenow-prod.fluidtopics.net/JeDZ0tlC9eLF5fei5qSv3w "Discovery uses multiple patterns to discover components of the Microsoft Azure Cloud deployment during horizontal discovery. Discovering some of these resources may require updating to the latest version of the Discovery and Service Mapping Patterns application from the ServiceNow Store.").

Enable the relevant pattern{#azure-disk-encryption-set__enable-pattern-reuse-dlentry}
:   The pattern for this service is disabled by default. Starting with Visibility Content version 6.28.0, activating or deactivating a pattern won't be considered a customization, and it will continue to receive updates. Patterns that were previously activated or deactivated will reset to the latest predefined version after upgrading while retaining the last active field value. For more information on enabling patterns, see [Activate a disabled pattern](https://servicenow-prod.fluidtopics.net/R5W5GP640V_5uNIhVNRPCw "If you want to use a pattern for discovery that's disabled by default, activate it manually.").{#azure-disk-encryption-set__activating-disabled-pattern-not-customization}

Configure the Discovery schedule to support GovCloud{#azure-disk-encryption-set__configure-govcloud-azure-dlentry}
:   Discovering Azure GovCloud (US) accounts requires using a datacenter URL when setting up an Azure service account. For more information, see [Set up Azure service accounts](https://servicenow-prod.fluidtopics.net/wA59_lRoV_0PzpuODHnNjA "Create and configure cloud service accounts at ServiceNow AI Platform for the corresponding Microsoft Azure accounts.").{#azure-disk-encryption-set__configure-govcloud-azure-dd}
{#azure-disk-encryption-set__configure-govcloud-azure-dd} Discovery and Service Mapping Patterns application populates data in both CMDB and non-CMDB tables.

## Data stored in non-CMDB tables {#azure-disk-encryption-set__section_aq4_qkq_hfc}

Discovery and Service Mapping Patterns application populates data in the non-CMDB table when running the Azure - Disk Encryption Set - Extended Inventory(LP) pattern.

You can review the non-CMDB
Azure tables by navigating to AllConfigurationAzure. You can also search the navigation filter for the specific pattern name.  
{#azure-disk-encryption-set__section_aq4_qkq_hfc__entry__2}

| Field | Description |
|-|-|
| Encryption Type \[encryption_type\] | The method used to encrypt the resource data. |
| Identity type \[identity_type\] | The classification of the identity assigned to the resource. For example: SystemAssigned or UserAssigned. |
| Key Url \[key_url\] | The URL where the encryption key is stored or accessible. |
| Location \[location\] | The geographic region where the resource is deployed. |
| Object Id \[object_id\] | The unique identifier of the resource. |
| Provisioning State \[provisioning_state\] | The current status of the resource provisioning process. |
| Resource Group \[resource_group\] | Name of the resource group. |
| Tenant Id \[tenant_id\] | The identifier for the tenant that owns the resource. |
| Configuration Item \[configuration_item\] | References the Cloud Resource \[cmdb_ci_cmp_resource\] table. |
[Table 1. Azure Disk Encryption Set \[cmdb_azure_disk_encryption_set_disk_encryption_set\]]

## Data stored in CMDB tables

Discovery and Service Mapping Patterns application populates data in the CMDB when running the Azure - Disk Encryption Set - Extended Inventory(LP) pattern.  
{#azure-disk-encryption-set__entry__22}

| Field | Description |
|-|-|
| Install Status \[install_status\] | Install status of the resource. Default value is Installed. |
| Location \[location\] | The geographic region where the resource is deployed. |
| Name \[name\] | The name of the resource. |
| Object ID \[object_id\] | The unique identifier of the resource. |
| Operational status \[operational_status\] | Operational status of the resource. Default value is Operational. |
| Resource type \[resource_type\] | Type of resource. The value is set to microsoft.compute/diskencryptionsets. |
[Table 2. Cloud Resource \[cmdb_ci_cmp_resource\]]

## CI relationships

The pattern creates these relationships to support discovery.
{#azure-disk-encryption-set__entry__37}

| CI | Relationship | CI |
|-|-|-|
| Resource Group \[cmdb_ci_resource_group\] | Contains::Contained by | Cloud Resource \[cmdb_ci_cmp_resource\] |
| Cloud Resource \[cmdb_ci_cmp_resource\] | Hosted on::Hosts | Azure Datacenter \[cmdb_ci_azure_datacenter\] |
| Azure Disk Encryption Set \[cmdb_azure_disk_encryption_set_disk_encryption_set\] | References | Cloud Resource \[cmdb_ci_cmp_resource\] |
[ ]

## Azure tag discovery {#azure-disk-encryption-set__section_ezc_jwt_jfc}

The pattern collects tags and populates them in the Key Value \[cmdb_key_value\] table. {#azure-disk-encryption-set__table_axq_spc_y2c__entry__2}

| Field | Description |
|-|-|
| Key \[key\] | Tag name. |
| Value \[value\] | Tag value. |
[Table 3. Key Value \[cmdb_key_value\]]

{#azure-disk-encryption-set__table_axq_spc_y2c}

*[\>]: and then


