openapi: 3.1.0
info:
title: Managed Database for PostgreSQL and MySQL Access Control List Secret Versions API
description: "Managed Database for PostgreSQL and MySQL provides fully-managed relational Database Instances, with MySQL or PostgreSQL as database engines. The resource allows you to focus on development rather than administration or configuration. It comes with a high-availability mode, data replication, and automatic backups.\n\nCompared to traditional database management, which requires customers to provide their infrastructure and resources to manage their databases, Managed Database for PostgreSQL and MySQL Instance offers the user access to Database Instances without setting up the hardware or configuring the software. Scaleway handles the provisioning, manages the configuration, and provides useful features as high availability, automated backup, user management, and more.\n\n\n\n\n## Concepts\n\nRefer to our [dedicated concepts page](https://www.scaleway.com/en/docs/managed-databases-for-postgresql-and-mysql/concepts/) to find definitions of the different terms referring to Managed Database for PostgreSQL and MySQL.\n\n\n\n\n## Quickstart\n\n1. Configure your environment variables.\n \n This is an optional step that seeks to simplify your usage of the APIs.\n \n\n ```bash\n export SCW_ACCESS_KEY=\"\"\n export SCW_SECRET_KEY=\"\"\n export SCW_REGION=\"\"\n ```\n2. Edit the POST request payload you will use to create your Database Instance. Replace the parameters in the following example:\n ```json\n '{\n \"project_id\": \"d8e65f2b-cce9-40b7-80fc-6a2902db6826\",\n \"name\": \"myDB\",\n \"engine\": \"PostgreSQL-15\",\n \"tags\": [\"donnerstag\"],\n \"is_ha_cluster\": true,\n \"node_type\": \"db-pro2-xxs\",\n \"disable_backup\": false,\n \"user_name\": \"my_initial_user\",\n \"password\": \"thiZ_is_v0ry_s3cret\",\n \"volume_type\": \"sbs_5k\",\n \"volume_size\": \"30000000000\"\n }'\n ```\n\n | Parameter | Description |\n | :--------------- |:-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|\n | `project_id` | The ID of the Project you want to create your Database Instance in. To find your Project ID you can **[list the projects](/api/account/project-api/#path-projects-list-all-projects-of-an-organization)** or consult the **[Scaleway console](https://console.scaleway.com/project/settings)**. |\n | `engine` | **REQUIRED** Version ID of the database engine. To check the list of available engines you can use the following endpoint: `https://api.scaleway.com/rdb/v1/regions/$SCW_REGION/database-engines` |\n | `name` | Name of the Database Instance |\n | `node_type` | **REQUIRED** The node type. To check the list of available node types you can use the following endpoint: `https://api.scaleway.com/rdb/v1/regions/$SCW_REGION/node-types` |\n | `is_ha_cluster` | **BOOLEAN** Defines whether High Availability is enabled for the Database Instance |\n | `disable_backup` | **BOOLEAN** Defines whether automated backups are disabled for the Database Instance |\n | `tags` | The list of tags `[\"tag1\", \"tag2\", ...]` that will be associated with the Database Instance. Tags can be appended to the query of the [List Database Instances](#path-database-instances-list-database-instances) call to show results for only the Database Instances using a specific tag. You can also combine tags to list Database Instances that possess all the appended tags. |\n | `user_name` | **REQUIRED** Identifier of the default user, which is created concurrently with the Database Instance |\n | `password` | **REQUIRED** Password for the default user |\n | `volume_type` | Type of volume where data is stored. You can specify either local volume (`lssd`) or block volume (`bssd`, `sbs_5k` or `sbs_15k`). The default value is `lssd` |\n | `volume_size` | Volume size when volume_type is `bssd`, `sbs_5k` or `sbs_15k`. The value should be expressed in bytes. For example 30GB is expressed as 30000000000 |\n3. Create a Database Instance by running the following command. Make sure you include the payload you edited in the previous step.\n ```bash\n curl -X POST \\\n -H \"X-Auth-Token: $SCW_SECRET_KEY\" \\\n \"Content-Type: application/json\" \\\n https://api.scaleway.com/rdb/v1/regions/$SCW_REGION/instances \\\n -d '{\n \"project_id\": \"d8e65f2b-cce9-40b7-80fc-6a2902db6826\",\n \"name\": \"myDB\",\n \"engine\": \"PostgreSQL-15\",\n \"tags\": [\"donnerstag\"],\n \"is_ha_cluster\": true,\n \"node_type\": \"db-pro2-xxs\",\n \"disable_backup\": false,\n \"user_name\": \"my_initial_user\",\n \"password\": \"thiZ_is_v0ry_s3cret\",\n \"volume_type\": \"sbs_5k\",\n \"volume_size\": \"30000000000\"\n }'\n ```\n4. List your Database Instances.\n ```bash\n curl -X GET \\\n -H \"Content-Type: application/json\" \\\n -H \"X-Auth-Token: $SCW_SECRET_KEY\" https://api.scaleway.com/rdb/v1/regions/$SCW_REGION/instances\n ```\n\n You should get a response like the following:\n\n \n This is a response example, the UUIDs and IP address displayed are not real.\n \n\n ```json\n {\n \"id\": \"f5122f66-fb50-4cef-aa02-487ef4fc1af0\",\n \"name\": \"myDB\",\n \"organization_id\": \"895693aa-3915-4896-8761-c2923b008be7\",\n \"project_id\": \"d8e65f2b-cce9-40b7-80fc-6a2902db6826\",\n \"status\": \"ready\",\n \"engine\": \"PostgreSQL-15\",\n \"endpoint\": {\n \"ip\": \"198.51.100.0\",\n \"port\": 22245,\n \"name\": null\n },\n \"tags\": [\n \"donnerstag\"\n ],\n \"settings\": [],\n \"backup_schedule\": {\n \"frequency\": 24,\n \"retention\": 7,\n \"disabled\": true\n },\n \"is_ha_cluster\": true,\n \"read_replicas\": [],\n \"node_type\": \"db-pro2-xxs\",\n \"volume\": {\n \"type\": \"sbs_5k\",\n \"size\": 30000000000\n }\n \"created_at\": \"2019-04-19T16:24:52.591417Z\",\n \"region\": \"fr-par\"\n }\n ```\n5. Retrieve your Database Instance IP and port from the response.\n \n In the example above, the IP and port are `198.51.100.0` and `22245`, respectively.\n \n6. Connect to your Database Instance with the database client of the engine you selected.\n For MySQL, run the following command:\n ```bash\n mysql -h --port -p -u \n ```\n\n For PostgreSQL, run:\n ```bash\n psql -h -p -U -d rdb\n ```\n\n For the recurring example, the command would look like:\n\n ```bash\n psql -h 198.51.100.0 -p 22245 -U my_initial_user -d rdb\n ```\n7. Enter the database password that you defined upon creation.\n\nYou are now connected to your Managed Database.\n\n\n\nTo perform the following steps, you must first ensure that:\n - you have an account and are logged into the [Scaleway console](https://console.scaleway.com/organization)\n - you have created an [API key](https://www.scaleway.com/en/docs/iam/how-to/create-api-keys/) and that the API key has sufficient [IAM permissions](https://www.scaleway.com/en/docs/iam/reference-content/permission-sets/) to perform the actions described on this page.\n - you have [installed `curl`](https://curl.se/download.html)\n\n\n\n## Technical Information\n\n### Regions\n\nScaleway's infrastructure is spread across different [regions and Availability Zones](https://www.scaleway.com/en/docs/account/reference-content/products-availability/).\n\nManaged Database for PostgreSQL and MySQL is available in the Paris, Amsterdam and Warsaw regions, which are represented by the following path parameters:\n\n- `fr-par`\n- `nl-ams`\n- `pl-waw`\n\n### PostgreSQL specifications\n\n#### Versions\n\nScaleway Database for PostgreSQL supports PostgreSQL versions 11, 12, 13, 14 and 15.\n\n#### System\n\nDifferent modules are available for installation, including TimescaleDB and PostGIS. Refer to the [Managed Database for PostgreSQL and MySQL FAQ page](https://www.scaleway.com/en/docs/managed-databases-for-postgresql-and-mysql/faq/#which-postgresql-extensions-are-available) for an extensive list of PostgreSQL extensions.\n\n#### Database Management\n\nYou can create logical databases through the Scaleway console, the Scaleway APIs or SQL.\n\n- databases created using the Scaleway console or the API are owned by an internal system user. These are called \"managed databases\".\n- databases created using SQL will be owned by the creator. These are called \"unmanaged databases\".\n\n### MySQL specifications\n\n#### Versions\n\nScaleway Database for MySQL supports MySQL 8.\n\n#### System\n\n- only the [InnoDB engine](https://dev.mysql.com/doc/refman/8.0/en/innodb-storage-engine.html) is supported\n- the [Global Transaction Identifier (GTID)](https://dev.mysql.com/doc/refman/8.0/en/replication-gtids-concepts.html) is enabled.\n- [`mysql_native_password`](https://dev.mysql.com/doc/refman/8.0/en/native-pluggable-authentication.html) (default) and [`caching_sha2_password`](https://dev.mysql.com/doc/refman/8.0/en/caching-sha2-pluggable-authentication.html) authentication are supported.\n\n#### User Management\n\n- users with an `admin` role have access to all logical databases and can create new ones.\n- users created via the API are authenticated using the default authentication plugin, which can be changed in the settings.\n\n## Technical Limitations\n\n### PostgreSQL\n\n#### User Management\n\n- users with an `admin` role have `CREATEROLE` and `CREATEDB` privileges.\n- users do NOT have `SUPERUSER` nor `REPLICATION` privileges.\n- permission management through the Scaleway console or API is only possible for the \"managed databases\".\n\n#### Backup and restoration\n\nDatabases that have been backed up and then restored retain the user permission settings in use at the time of backup. If you delete users after backup and then restore your backup in the same database, or if you restore a backup to a different database with different or no users, the permissions configured for them continue to exist, but with no associated owner. This error will put a stop to the restoration process.\n\nTo avoid this issue, we recommend you re-create the users you deleted. In the occasion you restore the backup to a new database, you must create new users with the same names.\n\n## Going Further\n\nFor more information about Managed Database for PostgreSQL and MySQL, you can check out the following pages:\n\n* [Managed Database for PostgreSQL and MySQL Documentation](https://www.scaleway.com/en/docs/managed-databases/postgresql-and-mysql/)\n* [Managed Database for PostgreSQL and MySQL FAQ](https://www.scaleway.com/en/docs/managed-databases-for-postgresql-and-mysql/faq/)\n* [Scaleway Slack Community](https://scaleway-community.slack.com/) join the #database channel\n* [Contact our support team](https://console.scaleway.com/support/tickets)\n\n### How to migrate a database\n\nIf you wish to migrate existing databases to a Managed Database for PostgreSQL or MySQL, you can refer to the [Migrating existing databases to a Database Instance](https://www.scaleway.com/en/docs/tutorials/migrate-databases-instance/) tutorial page.\n\n### Troubleshoooting\n\n#### Disk full status\n\nIf your Database Instance uses local storage, your local volume might eventually approach full capacity and shift to `disk_full` mode. This mode grants you enough space to either [upgrade your node type](https://www.scaleway.com/en/docs/managed-databases-for-postgresql-and-mysql/how-to/upgrade-version/#how-to-change-the-node-type) or [clear out space in your volume](https://www.scaleway.com/en/docs/managed-databases-for-postgresql-and-mysql/troubleshooting/disk-full/)."
version: v1
servers:
- url: https://api.scaleway.com
tags:
- name: Secret Versions
description: Versions store the sensitive data contained in your secrets (API keys, passwords, or certificates)
paths:
/secret-manager/v1beta1/regions/{region}/secrets-by-path/versions/{revision}/access:
get:
tags:
- Secret Versions
operationId: AccessSecretVersionByPath
summary: Access a secret's version using the secret's name and path
description: Access sensitive data in a secret's version specified by the `region`, `secret_name`, `secret_path` and `revision` parameters.
parameters:
- in: path
name: region
description: The region you want to target
required: true
schema:
type: string
enum:
- fr-par
- nl-ams
- pl-waw
- in: path
name: revision
description: 'Version number.
The first version of the secret is numbered 1, and all subsequent revisions augment by 1. Value can be either:
- an integer (the revision number)
- "latest" (the latest revision)
- "latest_enabled" (the latest enabled revision).'
required: true
schema:
type: string
- in: query
name: secret_path
description: Secret's path.
required: true
schema:
type: string
- in: query
name: secret_name
description: Secret's name.
required: true
schema:
type: string
- in: query
name: project_id
description: ID of the Project to target. (UUID format)
required: true
schema:
type: string
example: 6170692e-7363-616c-6577-61792e636f6d
responses:
'200':
description: ''
content:
application/json:
schema:
$ref: '#/components/schemas/scaleway.secret_manager.v1beta1.AccessSecretVersionResponse'
security:
- scaleway: []
x-codeSamples:
- lang: cURL
source: "curl -X GET \\\n -H \"X-Auth-Token: $SCW_SECRET_KEY\" \\\n \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets-by-path/versions/{revision}/access?project_id=6170692e-7363-616c-6577-61792e636f6d&secret_name=string&secret_path=string\""
- lang: HTTPie
source: "http GET \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets-by-path/versions/{revision}/access\" \\\n X-Auth-Token:$SCW_SECRET_KEY \\\n project_id==6170692e-7363-616c-6577-61792e636f6d \\\n secret_name==string \\\n secret_path==string"
/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions:
get:
tags:
- Secret Versions
operationId: ListSecretVersions
summary: List versions of a secret using the secret's ID
description: Retrieve the list of a given secret's versions specified by the `secret_id` and `region` parameters.
parameters:
- in: path
name: region
description: The region you want to target
required: true
schema:
type: string
enum:
- fr-par
- nl-ams
- pl-waw
- in: path
name: secret_id
description: ID of the secret. (UUID format)
required: true
schema:
type: string
example: 6170692e-7363-616c-6577-61792e636f6d
- in: query
name: page
schema:
$ref: '#/components/schemas/google.protobuf.Int32Value'
- in: query
name: page_size
schema:
type: integer
format: uint32
- in: query
name: status
description: Filter results by status.
schema:
type: array
items:
$ref: '#/components/schemas/scaleway.secret_manager.v1beta1.SecretVersion.Status'
responses:
'200':
description: ''
content:
application/json:
schema:
$ref: '#/components/schemas/scaleway.secret_manager.v1beta1.ListSecretVersionsResponse'
security:
- scaleway: []
x-codeSamples:
- lang: cURL
source: "curl -X GET \\\n -H \"X-Auth-Token: $SCW_SECRET_KEY\" \\\n \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions\""
- lang: HTTPie
source: "http GET \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions\" \\\n X-Auth-Token:$SCW_SECRET_KEY"
post:
tags:
- Secret Versions
operationId: CreateSecretVersion
summary: Create a version
description: Create a version of a given secret specified by the `region` and `secret_id` parameters.
parameters:
- in: path
name: region
description: The region you want to target
required: true
schema:
type: string
enum:
- fr-par
- nl-ams
- pl-waw
- in: path
name: secret_id
description: ID of the secret. (UUID format)
required: true
schema:
type: string
example: 6170692e-7363-616c-6577-61792e636f6d
responses:
'200':
description: ''
content:
application/json:
schema:
$ref: '#/components/schemas/scaleway.secret_manager.v1beta1.SecretVersion'
requestBody:
required: true
content:
application/json:
schema:
type: object
properties:
data:
type: string
description: The base64-encoded secret payload of the version.
description:
type: string
description: Description of the version.
nullable: true
disable_previous:
type: boolean
description: 'Disable the previous secret version.
(Optional.) If there is no previous version or if the previous version was already disabled, does nothing.'
nullable: true
data_crc32:
type: integer
description: '(Optional.) The CRC32 checksum of the data as a base-10 integer.
If specified, Secret Manager will verify the integrity of the data received against the given CRC32 checksum. An error is returned if the CRC32 does not match. If, however, the CRC32 matches, it will be stored and returned along with the SecretVersion on future access requests.'
format: uint32
nullable: true
x-properties-order:
- data
- description
- disable_previous
- data_crc32
security:
- scaleway: []
x-codeSamples:
- lang: cURL
source: "curl -X POST \\\n -H \"X-Auth-Token: $SCW_SECRET_KEY\" \\\n -H \"Content-Type: application/json\" \\\n -d '{\"data\":\"string\"}' \\\n \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions\""
- lang: HTTPie
source: "http POST \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions\" \\\n X-Auth-Token:$SCW_SECRET_KEY \\\n data=\"string\""
/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}:
get:
tags:
- Secret Versions
operationId: GetSecretVersion
summary: Get metadata of a secret's version using the secret's ID
description: Retrieve the metadata of a secret's given version specified by the `region`, `secret_id` and `revision` parameters.
parameters:
- in: path
name: region
description: The region you want to target
required: true
schema:
type: string
enum:
- fr-par
- nl-ams
- pl-waw
- in: path
name: secret_id
description: ID of the secret. (UUID format)
required: true
schema:
type: string
example: 6170692e-7363-616c-6577-61792e636f6d
- in: path
name: revision
description: 'Version number.
The first version of the secret is numbered 1, and all subsequent revisions augment by 1. Value can be either:
- a number (the revision number)
- "latest" (the latest revision)
- "latest_enabled" (the latest enabled revision).'
required: true
schema:
type: string
responses:
'200':
description: ''
content:
application/json:
schema:
$ref: '#/components/schemas/scaleway.secret_manager.v1beta1.SecretVersion'
security:
- scaleway: []
x-codeSamples:
- lang: cURL
source: "curl -X GET \\\n -H \"X-Auth-Token: $SCW_SECRET_KEY\" \\\n \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}\""
- lang: HTTPie
source: "http GET \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}\" \\\n X-Auth-Token:$SCW_SECRET_KEY"
patch:
tags:
- Secret Versions
operationId: UpdateSecretVersion
summary: Update metadata of a version
description: Edit the metadata of a secret's given version, specified by the `region`, `secret_id` and `revision` parameters.
parameters:
- in: path
name: region
description: The region you want to target
required: true
schema:
type: string
enum:
- fr-par
- nl-ams
- pl-waw
- in: path
name: secret_id
description: ID of the secret. (UUID format)
required: true
schema:
type: string
example: 6170692e-7363-616c-6577-61792e636f6d
- in: path
name: revision
description: 'Version number.
The first version of the secret is numbered 1, and all subsequent revisions augment by 1. Value can be either:
- a number (the revision number)
- "latest" (the latest revision)
- "latest_enabled" (the latest enabled revision).'
required: true
schema:
type: string
responses:
'200':
description: ''
content:
application/json:
schema:
$ref: '#/components/schemas/scaleway.secret_manager.v1beta1.SecretVersion'
requestBody:
required: true
content:
application/json:
schema:
type: object
properties:
description:
type: string
description: Description of the version.
nullable: true
ephemeral_properties:
type: object
description: 'Ephemeral properties of the version.
(Optional.) Properties that defines the version''s expiration date, whether it expires after being accessed once, and the action to perform (disable or delete) once the version expires.'
properties:
expires_at:
type: string
description: 'The version''s expiration date.
(Optional.) If not specified, the version does not have an expiration date. (RFC 3339 format)'
format: date-time
example: '2022-03-22T12:34:56.123456Z'
nullable: true
expires_once_accessed:
type: boolean
description: 'Returns `true` if the version expires after a single user access.
(Optional.) If not specified, the version can be accessed an unlimited amount of times.'
nullable: true
action:
type: string
description: 'Action to perform when the version of a secret expires.
See `EphemeralPolicy.Action` enum for a description of values.'
enum:
- unknown_action
- delete
- disable
x-enum-descriptions:
values:
delete: The version is deleted once it expires.
disable: The version is disabled once it expires.
default: unknown_action
x-properties-order:
- expires_at
- expires_once_accessed
- action
x-properties-order:
- description
- ephemeral_properties
security:
- scaleway: []
x-codeSamples:
- lang: cURL
source: "curl -X PATCH \\\n -H \"X-Auth-Token: $SCW_SECRET_KEY\" \\\n -H \"Content-Type: application/json\" \\\n -d '{}' \\\n \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}\""
- lang: HTTPie
source: "http PATCH \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}\" \\\n X-Auth-Token:$SCW_SECRET_KEY"
delete:
tags:
- Secret Versions
operationId: DeleteSecretVersion
summary: Delete a version
description: Delete a secret's version and the sensitive data contained in it. Deleting a version is permanent and cannot be undone.
parameters:
- in: path
name: region
description: The region you want to target
required: true
schema:
type: string
enum:
- fr-par
- nl-ams
- pl-waw
- in: path
name: secret_id
description: ID of the secret. (UUID format)
required: true
schema:
type: string
example: 6170692e-7363-616c-6577-61792e636f6d
- in: path
name: revision
description: 'Version number.
The first version of the secret is numbered 1, and all subsequent revisions augment by 1. Value can be either:
- a number (the revision number)
- "latest" (the latest revision)
- "latest_enabled" (the latest enabled revision).'
required: true
schema:
type: string
responses:
'204':
description: ''
security:
- scaleway: []
x-codeSamples:
- lang: cURL
source: "curl -X DELETE \\\n -H \"X-Auth-Token: $SCW_SECRET_KEY\" \\\n \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}\""
- lang: HTTPie
source: "http DELETE \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}\" \\\n X-Auth-Token:$SCW_SECRET_KEY"
/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}/access:
get:
tags:
- Secret Versions
operationId: AccessSecretVersion
summary: Access a secret's version using the secret's ID
description: Access sensitive data in a secret's version specified by the `region`, `secret_id` and `revision` parameters.
parameters:
- in: path
name: region
description: The region you want to target
required: true
schema:
type: string
enum:
- fr-par
- nl-ams
- pl-waw
- in: path
name: secret_id
description: ID of the secret. (UUID format)
required: true
schema:
type: string
example: 6170692e-7363-616c-6577-61792e636f6d
- in: path
name: revision
description: 'Version number.
The first version of the secret is numbered 1, and all subsequent revisions augment by 1. Value can be either:
- a number (the revision number)
- "latest" (the latest revision)
- "latest_enabled" (the latest enabled revision).'
required: true
schema:
type: string
responses:
'200':
description: ''
content:
application/json:
schema:
$ref: '#/components/schemas/scaleway.secret_manager.v1beta1.AccessSecretVersionResponse'
security:
- scaleway: []
x-codeSamples:
- lang: cURL
source: "curl -X GET \\\n -H \"X-Auth-Token: $SCW_SECRET_KEY\" \\\n \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}/access\""
- lang: HTTPie
source: "http GET \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}/access\" \\\n X-Auth-Token:$SCW_SECRET_KEY"
/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}/disable:
post:
tags:
- Secret Versions
operationId: DisableSecretVersion
summary: Disable a version
description: Make a specific version inaccessible. You must specify the `region`, `secret_id` and `revision` parameters.
parameters:
- in: path
name: region
description: The region you want to target
required: true
schema:
type: string
enum:
- fr-par
- nl-ams
- pl-waw
- in: path
name: secret_id
description: ID of the secret. (UUID format)
required: true
schema:
type: string
example: 6170692e-7363-616c-6577-61792e636f6d
- in: path
name: revision
description: 'Version number.
The first version of the secret is numbered 1, and all subsequent revisions augment by 1. Value can be either:
- a number (the revision number)
- "latest" (the latest revision)
- "latest_enabled" (the latest enabled revision).'
required: true
schema:
type: string
responses:
'200':
description: ''
content:
application/json:
schema:
$ref: '#/components/schemas/scaleway.secret_manager.v1beta1.SecretVersion'
requestBody:
required: true
content:
application/json:
schema:
type: object
security:
- scaleway: []
x-codeSamples:
- lang: cURL
source: "curl -X POST \\\n -H \"X-Auth-Token: $SCW_SECRET_KEY\" \\\n -H \"Content-Type: application/json\" \\\n -d '{}' \\\n \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}/disable\""
- lang: HTTPie
source: "http POST \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}/disable\" \\\n X-Auth-Token:$SCW_SECRET_KEY"
/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}/enable:
post:
tags:
- Secret Versions
operationId: EnableSecretVersion
summary: Enable a version
description: Make a specific version accessible. You must specify the `region`, `secret_id` and `revision` parameters.
parameters:
- in: path
name: region
description: The region you want to target
required: true
schema:
type: string
enum:
- fr-par
- nl-ams
- pl-waw
- in: path
name: secret_id
description: ID of the secret. (UUID format)
required: true
schema:
type: string
example: 6170692e-7363-616c-6577-61792e636f6d
- in: path
name: revision
description: 'Version number.
The first version of the secret is numbered 1, and all subsequent revisions augment by 1. Value can be either:
- a number (the revision number)
- "latest" (the latest revision)
- "latest_enabled" (the latest enabled revision).'
required: true
schema:
type: string
responses:
'200':
description: ''
content:
application/json:
schema:
$ref: '#/components/schemas/scaleway.secret_manager.v1beta1.SecretVersion'
requestBody:
required: true
content:
application/json:
schema:
type: object
security:
- scaleway: []
x-codeSamples:
- lang: cURL
source: "curl -X POST \\\n -H \"X-Auth-Token: $SCW_SECRET_KEY\" \\\n -H \"Content-Type: application/json\" \\\n -d '{}' \\\n \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}/enable\""
- lang: HTTPie
source: "http POST \"https://api.scaleway.com/secret-manager/v1beta1/regions/{region}/secrets/{secret_id}/versions/{revision}/enable\" \\\n X-Auth-Token:$SCW_SECRET_KEY"
components:
schemas:
scaleway.secret_manager.v1beta1.SecretVersion.Status:
type: string
enum:
- unknown_status
- enabled
- disabled
- deleted
- scheduled_for_deletion
default: unknown_status
scaleway.secret_manager.v1beta1.SecretVersion:
type: object
properties:
revision:
type: integer
description: 'Version number.
The first version of the secret is numbered 1, and all subsequent revisions augment by 1.'
format: uint32
secret_id:
type: string
description: ID of the secret. (UUID format)
example: 6170692e-7363-616c-6577-61792e636f6d
status:
type: string
description: 'Current status of the version.
* `unknown_status`: the version is in an invalid state.
* `enabled`: the version is accessible.
* `disabled`: the version is not accessible but can be enabled.
* `scheduled_for_deletion`: the version is scheduled for deletion. It will be deleted in 7 days.
* `deleted`: the version is permanently deleted. It is not possible to recover it.'
enum:
- unknown_status
- enabled
- disabled
- deleted
- scheduled_for_deletion
default: unknown_status
created_at:
type: string
description: Date and time of the version's creation. (RFC 3339 format)
format: date-time
example: '2022-03-22T12:34:56.123456Z'
nullable: true
updated_at:
type: string
description: Last update of the version. (RFC 3339 format)
format: date-time
example: '2022-03-22T12:34:56.123456Z'
nullable: true
deleted_at:
type: string
description: Date and time of the version's deletion. (RFC 3339 format)
format: date-time
example: '2022-03-22T12:34:56.123456Z'
nullable: true
description:
type: string
description: Description of the version.
nullable: true
latest:
type: boolean
description: Returns `true` if the version is the latest.
ephemeral_properties:
type: object
description: 'Properties of the ephemeral version.
Returns the version''s expiration date, whether it expires after being accessed once, and the action to perform (disable or delete) once the version expires.'
properties:
expires_at:
type: string
description: 'The version''s expiration date.
(Optional.) If not specified, the version does not have an expiration date. (RFC 3339 format)'
format: date-time
example: '2022-03-22T12:34:56.123456Z'
nullable: true
expires_once_accessed:
type: boolean
description: 'Returns `true` if the version expires after a single user access.
(Optional.) If not specified, the version can be accessed an unlimited amount of times.'
nullable: true
action:
type: string
description: 'Action to perform when the version of a secret expires.
See `EphemeralPolicy.Action` enum for a description of values.'
enum:
- unknown_action
- delete
- disable
x-enum-descriptions:
values:
delete: The version is deleted once it expires.
disable: The version is disabled once it expires.
default: unknown_action
x-properties-order:
- expires_at
- expires_once_accessed
- action
deletion_requested_at:
type: string
description: Returns the time at which deletion was requested. (RFC 3339 format)
format: date-time
example: '2022-03-22T12:34:56.123456Z'
nullable: true
region:
type: string
description: Region of the version.
x-properties-order:
- revision
- secret_id
- status
- created_at
- updated_at
- deleted_at
- description
- latest
- ephemeral_properties
- deletion_requested_at
- region
google.protobuf.Int32Value:
type: integer
format: int32
nullable: true
scaleway.secret_manager.v1beta1.AccessSecretVersionResponse:
type: object
properties:
secret_id:
type: string
description: ID of the secret. (UUID format)
example: 6170692e-7363-616c-6577-61792e636f6d
revision:
type: integer
description: 'Version number.
The first version of the secret is numbered 1, and all subsequent revisions augment by 1.'
format: uint32
data:
type: string
description: The base64-encoded secret payload of the version.
data_crc32:
type: integer
description: 'The CRC32 checksum of the data as a base-10 integer.
This field is only available if a CRC32 was supplied during the creation of the version.'
format: uint32
nullable: true
type:
type: string
description: 'Type of the secret.
See the `Secret.Type` enum for a description of values.'
enum:
- unknown_type
- opaque
- certificate
- key_value
- basic_credentials
- database_credentials
- ssh_key
x-enum-descriptions:
values:
opaque: Default type.
certificate: List of concatenated PEM blocks. They can contain certificates, private keys or any other PEM block types.
key_value: Flat JSON that allows you to set as many first level keys and scalar types as values (string, numeric, boolean) as you need.
basic_credentials: Flat JSON that allows you to set a username and a password.
database_credentials: Flat JSON that allows you to set an engine, username, password, host, database name, and port.
ssh_key: Flat JSON that allows you to set an SSH key.
default: unknown_type
x-properties-order:
- secret_id
- revision
- data
- data_crc32
- type
scaleway.secret_manager.v1beta1.ListSecretVersionsResponse:
type: object
properties:
versions:
type: array
description: Single page of versions.
items:
$ref: '#/components/schemas/scaleway.secret_manager.v1beta1.SecretVersion'
total_count:
type: integer
description: Number of versions.
format: uint64
x-properties-order:
- versions
- total_count
securitySchemes:
scaleway:
in: header
name: X-Auth-Token
type: apiKey