/update-rotated-secretCopy Pagepost https://api.akeyless.io/update-rotated-secretRecent RequestsLog in to see full request historyTimeStatusUser Agent Retrieving recent requests…LoadingLoading…Body ParamsProviderTypestringadd-tagarray of stringsList of the new tags that will be attached to this itemadd-tagADD stringapi-idstringAPI ID to rotateapi-keystringAPI key to rotateauto-rotatestringWhether to automatically rotate every --rotation-interval days, or disable existing automatic rotation [true/false]aws-regionstringDefaults to us-east-2Aws Region (relevant only for aws)custom-payloadstringSecret payload to be sent with rotation request (relevant only for rotator-type=custom)descriptionstringDefaults to default_metadataDescription of the objectgcp-keystringBase64-encoded service account private key textgrace-rotationstringCreate a new access key without deleting the old key from AWS for backup (relevant only for AWS) [true/false]host-providerstringHost provider type [explicit/target], Default Host provider is explicit, Relevant only for Secure Remote Access of ssh cert issuer, ldap rotated secret and ldap dynamic secretjsonbooleanDefaults to falseSet output format to JSONtruefalsekeep-prev-versionstringWhether to keep previous version [true/false]. If not set, use default according to account settingskeystringThe name of a key that used to encrypt the secret value (if empty, the account default protectionKey key will be used)lock-during-sra-sessionstringLock this secret for read/update while an SRA session is activenamestringrequiredSecret namenew-metadatastringDefaults to default_metadataDeprecated - use descriptionnew-namestringNew item namenew-versionbooleanDeprecatedtruefalserm-tagarray of stringsList of the existent tags that will be removed from this itemrm-tagADD stringrotate-after-disconnectstringStringOrBool accepts JSON strings, booleans, and numbers for backward compatibility with older SDK versions that send boolean values for rotate-after-disconnect.rotated-passwordstringrotated-username passwordrotated-usernamestringusername to be rotated, if selected use-self-creds at rotator-creds-type, this username will try to rotate it's own password, if use-target-creds is selected, target credentials will be use to rotate the rotated-passwordrotation-hourint32The Hour of the rotation in UTCrotation-intervalstringThe number of days to wait between every automatic key rotation (7-365)rotator-creds-typestringDefaults to use-self-credsThe credentials to connect with use-self-creds/use-target-credsrotator-custom-cmdstring"Custom rotation command (relevant only for ssh target)same-passwordstringRotate same password for each host from the Linked Target (relevant only for Linked Target)secure-access-allow-external-userbooleanDefaults to falseAllow providing external user for a domain users (relevant only for rdp)truefalsesecure-access-aws-account-idstringThe AWS account id (relevant only for aws)secure-access-aws-native-clibooleanThe AWS native clitruefalsesecure-access-bastion-issuerstringDeprecated. use secure-access-certificate-issuersecure-access-certificate-issuerstringPath to the SSH Certificate Issuer for your Akeyless Secure Accesssecure-access-db-namestringThe DB name (relevant only for DB Dynamic-Secret)secure-access-db-schemastringThe db schema (relevant only for mssql or postgresql)secure-access-disable-concurrent-connectionsbooleanEnable this flag to prevent simultaneous use of the same secrettruefalsesecure-access-enablestringEnable/Disable secure remote access [true/false]secure-access-hostarray of stringsTarget servers for connections (In case of Linked Target association, host(s) will inherit Linked Target hosts - Relevant only for Dynamic Secrets/producers)secure-access-hostADD stringsecure-access-rdp-domainstringRequired when the Dynamic Secret is used for a domain user (relevant only for RDP Dynamic-Secret)secure-access-rdp-userstringOverride the RDP Domain username (relevant only for rdp)secure-access-urlstringDestination URL to inject secretssecure-access-webbooleanDefaults to falseEnable Web Secure Remote Accesstruefalsesecure-access-web-browsingbooleanDefaults to falseSecure browser viaAkeyless's Secure Remote Access (SRA) (relevant only for aws or azure)truefalsesecure-access-web-proxybooleanDefaults to falseWeb-Proxy via Akeyless's Secure Remote Access (SRA) (relevant only for aws or azure)truefalsessh-passwordstringDeprecated: use RotatedPasswordssh-usernamestringDeprecated: use RotatedUserstorage-account-key-namestringThe name of the storage account key to rotate [key1/key2/kerb1/kerb2]tokenstringAuthentication token (see /auth and /configure)uid-tokenstringThe universal identity token, Required only for universal_identity authenticationuser-attributestringDefaults to cnLDAP User Attribute, Default value "cn"user-dnstringLDAP User Base DNResponses 200updateRotatedSecretResponse wraps response body. defaulterrorResponse wraps any error to return it as a JSON object with one "error" field.Updated 7 months ago