post
https://{host}:{port}/api/v3/key-management/keys//rotations
Creates a successor key and atomically replaces {kid}.
The request body contains:
- newKey: The successor key specification using unified KeyRequest format
- acknowledgeCapabilityReduction (optional): Set to true to allow rotations
that reduce key capabilities (e.g., RSA with encrypt+sign → ML-DSA with sign only)
On success, returns 200 OK with the newly-created key metadata.
Recent Requests
Log in to see full request history
| Time | Status | User Agent | |
|---|---|---|---|
Retrieving recent requests… | |||
Loading…