Our client has a requirement that the private key for their SSL certificate be protected by an HSM. We will be doing this using the option in the Azure Key Vault, as the website will be hosted on an Azure Virtual Machine (running Ubuntu).
However, the documentation on how to then configure the virtual machine is conflicting. Some sources, e.g.