v1
latestOpenAPI 3.0.02026-07-246171,3332.1 MBRequest body
List of the new tags that will be attached to this item
API ID to rotate (relevant only for rotator-type=api-key)
API key to rotate (relevant only for rotator-type=api-key)
The credentials to connect with use-user-creds/use-target-creds
Whether to automatically rotate every --rotation-interval days, or disable existing automatic rotation [true/false]
Aws Region
Protection from accidental deletion of this object [true/false]
Description of the object
Enable graceful rotation (keep both versions temporarily). When enabled, a new secret version is created while the previous version is kept for the grace period, so both versions exist for a limited time. [true/false]
The Hour of the grace rotation in UTC
The number of days to wait before deleting the old key (must be bigger than rotation-interval)
When to create the new version relative to the rotation date [after/before]
Agentic input rule in name=...,rule=... format (e.g. name=rule1,rule=Sanitize input)
Additional custom fields to associate with the item
Set output format to JSON
Whether to keep previous version [true/false]. If not set, use default according to account settings
The name of a key that used to encrypt the secret value (if empty, the account default protectionKey key will be used)
Lock this secret for read/update while an SRA session is active
Set the maximum number of versions, limited by the account settings defaults.
Rotated secret name
New item name
Agentic output rule in name=...,rule=... format (e.g. name=rule1,rule=Mask secrets)
The length of the password to be generated
List of the existent tags that will be removed from this item
StringOrBool accepts JSON strings, booleans, and numbers for backward compatibility with older SDK versions that send boolean values for rotate-after-disconnect.
How many days before the rotation of the item would you like to be notified
The Hour of the rotation in UTC
The number of days to wait between every automatic key rotation (1-365)
The AWS account id
The AWS native cli
Deprecated. use secure-access-certificate-issuer
Path to the SSH Certificate Issuer for your Akeyless Secure Access
Enable/Disable secure remote access [true/false]
Authentication token (see /auth and /configure)
The universal identity token, Required only for universal_identity authentication
Response
rotatedSecretUpdateAwsResponse wraps response body.