Rotate Access Key
Path parameters
jti
Stable JWT ID of the Scoped Access Key for the lifecycle operation.
Request
This endpoint expects an object.
grace_period_seconds
Grace period in seconds for the rotated-out key. Omit to use auth.access_keys.rotation_grace_period_seconds. Subject to auth.access_keys.max_rotation_grace_period_seconds.
Response
Successful Response
new_key
Newly minted successor Scoped Access Key. Its raw token is returned only once.
previous_jti
Stable JWT ID of the Scoped Access Key that was rotated out.
previous_status
Effective status of the rotated-out key immediately after this request. Normally ROTATING, but may already read as REVOKED or EXPIRED if reconciling this request’s outcome was itself delayed past the grace deadline or a concurrent revoke.
grace_period_seconds
Seconds the rotated-out key remains usable before it is treated as revoked.
grace_period_expires_at
Timestamp when the rotated-out key’s grace period expires.
Errors
400
Bad Request Error
404
Not Found Error
409
Conflict Error
422
Unprocessable Entity Error
501
Not Implemented Error