figured it out
const allAzureFirewall = new azure_native.sql.FirewallRule("allow-all-azure-services", {
startIpAddress: "0.0.0.0",
endIpAddress: "0.0.0.0",
firewallRuleName: "allow-all-azure-services",
resourceGroupName: resourceGroup.name,
serverName: sqlServer.name
});