July 11, 2022 By Shawna Guilianelli
Janet Van
2 min read

Build automated flows that help you safely rotate and delete secrets with IBM Cloud Secrets Manager.

In a previous article, we shared how IBM Cloud Secrets Manager can help you to create private SSL/TLS certificates and manage them centrally in a single location, along with the rest of your application secrets. Today, we’re excited to announce that you can now add locks that can help to prevent modification to secrets that can be disruptive to your applications.

New to Secrets Manager? Check out the documentation to learn more. 

What are secret locks?

By default, the secrets that you manage in Secrets Manager can be modified at any time by an authorized user or application. But, how can you prevent a secret from being accidentally deleted or misconfigured during a rotation? With secret locks, you can build automated workflows that can help you to do the following:

  • Indicate that a secret is in use by one or more applications or services.
  • Prevent secret data from being deleted, even after it expires.
  • Safely delete older versions of a secret after the newest version is deployed.
  • Avoid inadvertent downtime in your applications.

Secret locks help you to map a secret with your client or application. If a secret has a lock attached to it, it is currently being used by your application and cannot be modified or deleted until the lock is removed. 

Ready to get started?

Start by provisioning a Secrets Manager service instance in the IBM Cloud console. Because a dedicated instance is provisioned, it can take a few minutes. While you wait, you can continue to work elsewhere on IBM Cloud, or you might consider learning about best practices for rotating and locking secrets.

If you’re working from an existing instance, go to Secrets > name > Locks to create your first lock:

Questions? Contact us

We’d love to hear from you. To send feedback, you can open a GitHub issue from a link at the bottom of any page in the documentation, open a support ticket

More from Cloud

New 4th Gen Intel Xeon profiles and dynamic network bandwidth shake up the IBM Cloud Bare Metal Servers for VPC portfolio

3 min read - We’re pleased to announce that 4th Gen Intel® Xeon® processors on IBM Cloud Bare Metal Servers for VPC are available on IBM Cloud. Our customers can now provision Intel’s newest microarchitecture inside their own virtual private cloud and gain access to a host of performance enhancements, including more core-to-memory ratios (21 new server profiles/) and dynamic network bandwidth exclusive to IBM Cloud VPC. For anyone keeping track, that’s 3x as many provisioning options than our current 2nd Gen Intel Xeon…

IBM and AWS: Driving the next-gen SAP transformation  

5 min read - SAP is the epicenter of business operations for companies around the world. In fact, 77% of the world’s transactional revenue touches an SAP system, and 92% of the Forbes Global 2000 companies use SAP, according to Frost & Sullivan.   Global challenges related to profitability, supply chains and sustainability are creating economic uncertainty for many companies. Modernizing SAP systems and embracing cloud environments like AWS can provide these companies with a real-time view of their business operations, fueling growth and increasing…

Experience unmatched data resilience with IBM Storage Defender and IBM Storage FlashSystem

3 min read - IBM Storage Defender is a purpose-built end-to-end data resilience solution designed to help businesses rapidly restart essential operations in the event of a cyberattack or other unforeseen events. It simplifies and orchestrates business recovery processes by providing a comprehensive view of data resilience and recoverability across primary and  auxiliary storage in a single interface. IBM Storage Defender deploys AI-powered sensors to quickly detect threats and anomalies. Signals from all available sensors are aggregated by IBM Storage Defender, whether they come…

IBM Newsletters

Get our newsletters and topic updates that deliver the latest thought leadership and insights on emerging trends.
Subscribe now More newsletters