Product Feedback Forum
cancel
Showing results for 
Search instead for 
Did you mean: 
Status: New Idea

We want to rotate the API key for our system user but need to make sure there's no downtime. 

This means we need to have 2 keys working in parallel for the same user for a period of time until we can cycle all of our services to pick up the latest api key.

The problem is as soon as the API key is rotated, the old key immediately stopped working.  

Majority of systems out there support key rotation (like allowing a time delay before the old key expires like FB app, or ability to temporary create a second key and then we can promote it as primary once we are ready).

 

Key rotation is a best practice for security principles.