Copy Page/dynamic-secret-create-rdppost https://api.akeyless.io/dynamic-secret-create-rdpRecent RequestsLog in to see full request historyTimeStatusUser Agent Retrieving recent requests…LoadingLoading…Body ParamsdynamicSecretCreateRdp is a command that creates rdp dynamic secretProviderTypestringallow-user-extend-sessionint64AllowUserExtendSessionara-enabledbooleanEnable or disable Agentic Runtime Authority rule enforcement for this item. Mirrors commands.AgenticRulesParams.AraEnabled.truefalseblock-parent-target-accessstringBlock access to the parent target when using a linked target [true/false]. Empty keeps the existing value on updatecustom-username-templatestringCustomize how temporary usernames are generated using go templatedelete_protectionstringProtection from accidental deletion of this object [true/false]descriptionstringDescription of the objectenable-agentic-runtime-authoritybooleanEnableAra is the documented spelling of AraEnabled; --ara-enabled shipped first and stays as an undocumented alias.truefalseenable-ai-quorumbooleanTurns on AI Quorum checks for this item.truefalsefixed-user-claim-keynamestringDefaults to ext_usernameFor externally provided users, denotes the key-name of IdP claim to extract the username from (relevant only for fixed-user-only=true)fixed-user-onlystringDefaults to falseAllow access using externally (IdP) provided username [true/false]host-providerstringHost provider type [explicit/target], Default Host provider is explicit, Relevant only for SRA items.input-rulearray of stringsAgentic input rule in name=...,rule=... format (e.g. name=rule1,rule=Sanitize input) Mirrors commands.AgenticRulesParams — kept separate because ResourceDS cannot embed it (different package, different struct layout).input-ruleADD stringitem-custom-fieldsobjectAdditional custom fields to associate with the itemitem-custom-fields objectjsonbooleanDefaults to falseSet output format to JSONtruefalsenamestringrequiredDynamic secret nameoutput-rulearray of stringsAgentic output rule in name=...,rule=... format (e.g. name=rule1,rule=Mask secrets)output-ruleADD stringpassword-lengthstringThe length of the password to be generatedproducer-encryption-key-namestringDynamic producer encryption keyrdp-admin-namestringRDP Admin Namerdp-admin-pwdstringRDP Admin passwordrdp-host-namestringHostnamerdp-host-portstringDefaults to 22Portrdp-user-groupsstringGroupssecure-access-allow-external-userbooleanDefaults to falseAllow providing external user for a domain userstruefalsesecure-access-bastion-issuerstringDeprecated. use secure-access-certificate-issuersecure-access-certificate-issuerstringPath to the SSH Certificate Issuer for your Akeyless Secure Accesssecure-access-delayint64The delay duration, in seconds, to wait after generating just-in-time credentials. Accepted range: 0-120 secondssecure-access-enablestringEnable/Disable secure remote access [true/false]secure-access-enforce-hosts-restrictionbooleanEnforce connections only to allowed SRA hoststruefalsesecure-access-hostarray of stringsTarget servers for connections (In case of Linked Target association, host(s) will inherit Linked Target hosts - Relevant only for Dynamic Secrets/producers)secure-access-hostADD stringsecure-access-rd-gateway-serverstringRD Gateway serversecure-access-rdp-domainstringRequired when the Dynamic Secret is used for a domain usersecure-access-rdp-userstringOverride the RDP Domain usernameskip_dry_runstringIf set, dry-run will be skippedtagsarray of stringsAdd tags attached to this objecttagsADD stringtargetarray of stringsA list of targets to be associated with an SRA item, To specify multiple targets use argument multiple timestargetADD stringtarget-namestringTarget nametokenstringAuthentication token (see /auth and /configure)uid-tokenstringThe universal identity token, Required only for universal_identity authenticationuse-capital-lettersstringSpecifies whether the generated temporary password must contain at least one uppercase character from the ISO basic Latin alphabet (A to Z). [true/false]use-lower-lettersstringSpecifies whether the generated temporary password must contain at least one lowercase character from the ISO basic Latin alphabet (a to z). [true/false]use-numbersstringSpecifies whether the generated temporary password must contain at least one numeric character (0 to 9). [true/false]use-special-charactersstringuser-ttlstringDefaults to 60mUser TTLwarn-user-before-expirationint64WarnBeforeUserExpirationResponses 201dynamicSecretCreateRdpResponse wraps response body. defaulterrorResponse wraps any error to return it as a JSON object with one "error" field.Updated 4 days ago /dynamic-secret-create-rabbitmq/dynamic-secret-create-redisDid this page help you?YesNo