Skip to main content

Rotate OIDC Client Secret Encryption

POST 

/client/sso/config/rotate-secret

Decrypt and re-encrypt the stored OIDC client secret with fresh key material, emitting an audit event. Returns 404 if no OIDC configuration exists and 400 if no encrypted secret is stored.

Responses

Successful Response