v1
latestOpenAPI 3.0.02026-07-246171,3332.1 MBRequest body
API ID to rotate (relevant only for rotator-type=api-key)
API key to rotate (relevant only for rotator-type=api-key)
Id of the azure app that hold the serect to be rotated (relevant only for rotator-type=api-key & authentication-credentials=use-target-creds)
The credentials to connect with use-user-creds/use-target-creds
Whether to automatically rotate every --rotation-interval days, or disable existing automatic rotation [true/false]
Protection from accidental deletion of this object [true/false]
Description of the object
If set, explicitly provide the storage account details [true/false]
Enable graceful rotation (keep both versions temporarily). When enabled, a new secret version is created while the previous version is kept for the grace period, so both versions exist for a limited time. [true/false]
The Hour of the grace rotation in UTC
The number of days to wait before deleting the old key (must be bigger than rotation-interval)
When to create the new version relative to the rotation date [after/before]
Agentic input rule in name=...,rule=... format (e.g. name=rule1,rule=Sanitize input)
Additional custom fields to associate with the item
Set output format to JSON
The name of a key that used to encrypt the secret value (if empty, the account default protectionKey key will be used)
Lock this secret for read/update while an SRA session is active
Set the maximum number of versions, limited by the account settings defaults.
Rotated secret name
Agentic output rule in name=...,rule=... format (e.g. name=rule1,rule=Mask secrets)
The length of the password to be generated
The resource group name (only relevant when explicitly-set-sa=true)
The name of the storage account (only relevant when explicitly-set-sa=true)
StringOrBool accepts JSON strings, booleans, and numbers for backward compatibility with older SDK versions that send boolean values for rotate-after-disconnect.
How many days before the rotation of the item would you like to be notified
The Hour of the rotation in UTC
The number of days to wait between every automatic key rotation (1-365)
The rotator type. options: [target/password/api-key/azure-storage-account]
Enable this flag to prevent simultaneous use of the same secret
Enable/Disable secure remote access [true/false]
Destination URL to inject secrets
Enable Web Secure Remote Access
Secure browser via Akeyless's Secure Remote Access (SRA)
Web-Proxy via Akeyless's Secure Remote Access (SRA)
The name of the storage account key to rotate [key1/key2/kerb1/kerb2] (relevat to azure-storage-account)
Add tags attached to this object
The target name to associate
Authentication token (see /auth and /configure)
The universal identity token, Required only for universal_identity authentication
The user principal name to rotate his password (relevant only for rotator-type=password)
Response
rotatedSecretCreateAzureResponse wraps response body.