Interlaken
API referenceIdentity and accessAPI clients

Rotate an API client's secret

POST
/api/v1/api-clients/{id}/rotate

Requires the api_clients:update permission.

The previous secret stops working immediately; tokens already issued run to their expiry.

Authorization

AuthorizationBearer <token>

An access token from this zone's POST /oauth/token, or a session token from POST /api/v1/auth/login. Send it as Authorization: Bearer <token>.

In: header

Path Parameters

id*string

Response Body

application/json

application/json

application/json

application/json

application/json

application/json

curl -X POST "https://example.com/api/v1/api-clients/string/rotate"
{  "client_id": "string",  "client_secret": "string",  "rotated_at": "2019-08-24T14:15:22Z",  "secret_hint": "string"}