Rotating a Client Secret

Jamf Pro Documentation 11.16.0

Solution
Application
Content Type
Technical Documentation
Utilities & Services
version
11.16.0
ft:locale
en-US
vrm_version
11.16.0

You can rotate a client secret to generate a new secret for an API client. This invalidates the previous secret, which can then no longer be used to generate access tokens.

Note:

Adding or removing privileges from an API role does not require regeneration of a client secret. Adding or removing an API role from an API client does require the generation of a new client secret for the changes to take effect.

  1. In Jamf Pro, navigate to the API client you want to generate a new client secret for.
  2. Click Rotate Client Secret.
    A confirmation dialog appears.
  3. Click Rotate Secret.

The previous client secret is invalidated and can no longer be used to generate an access token. A new client secret is created.