v1
latestOpenAPI 3.0.02026-07-246171,3332.1 MBRequest body
The credentials to connect with use-user-creds/use-target-creds
Whether to automatically rotate every --rotation-interval days, or disable existing automatic rotation [true/false]
Protection from accidental deletion of this object [true/false]
Description of the object
Host provider type [explicit/target], Default Host provider is explicit, Relevant only for Secure Remote Access of ssh cert issuer, ldap rotated secret and ldap dynamic secret
Agentic input rule in name=...,rule=... format (e.g. name=rule1,rule=Sanitize input)
Additional custom fields to associate with the item
Set output format to JSON
The name of a key that used to encrypt the secret value (if empty, the account default protectionKey key will be used)
Lock this secret for read/update while an SRA session is active
Set the maximum number of versions, limited by the account settings defaults.
Rotated secret name
Agentic output rule in name=...,rule=... format (e.g. name=rule1,rule=Mask secrets)
The length of the password to be generated
StringOrBool accepts JSON strings, booleans, and numbers for backward compatibility with older SDK versions that send boolean values for rotate-after-disconnect.
rotated-username password (relevant only for rotator-type=ldap)
username to be rotated, if selected use-self-creds at rotator-creds-type, this username will try to rotate it's own password, if use-target-creds is selected, target credentials will be use to rotate the rotated-password (relevant only for rotator-type=ldap)
How many days before the rotation of the item would you like to be notified
The Hour of the rotation in UTC
The number of days to wait between every automatic key rotation (1-365)
The rotator type. options: [target/ldap]
Deprecated. use secure-access-certificate-issuer
Path to the SSH Certificate Issuer for your Akeyless Secure Access
Enable/Disable secure remote access [true/false]
Target servers for connections (In case of Linked Target association, host(s) will inherit Linked Target hosts - Relevant only for Dynamic Secrets/producers)
Default domain name server. i.e. microsoft.com
Destination URL to inject secrets
Enable Web Secure Remote Access
Secure browser via Akeyless's Secure Remote Access (SRA)
Web-Proxy via Akeyless's Secure Remote Access (SRA)
Add tags attached to this object
A list of linked targets to be associated, Relevant only for Secure Remote Access for ssh cert issuer, ldap rotated secret and ldap dynamic secret, To specify multiple targets use argument multiple times
The target name to associate
Authentication token (see /auth and /configure)
The universal identity token, Required only for universal_identity authentication
LDAP User Attribute, Default value "cn"
Base DN to Perform User Search
Response
rotatedSecretCreateLdapResponse wraps response body.