PUT PAM Providers Local ID Entries

The PUT /PamProviders/Local/{providerId}/Entries operation updates an existing PAMClosed PAM (Privileged Access Management): Controls privileged access by vaulting credentials, enforcing least-privilege/just-in-time access, rotating secrets, and auditing sessions. Across Keyfactor products, PAM protects diverse sensitive operations and secrets—for example certificate stores and CA credentials—via built-in or third-party providers; external integrations are delivered as custom PAM extensions (several published on Keyfactor’s public GitHub). description for a local PAM provider secret. On success, the operation returns HTTP 200 OK with  details for the updated secret (not including the actual secret).

Tip:  The following permissions (see Security Roles and Claims) are required to use this feature:

/pam/modify/
OR
/pam/modify/#/ (where # is a specific PAM provider ID)

Permissions for PAM providers can be set at the system-wide level or with fine-grained control at the PAM provider level. See PAM Permissions for more information about the differences between system-wide and more targeted permissions.

Important:  This operation replaces the entire record. Any fields not included in the request are cleared or set to their default values.

To avoid unintended data loss, first perform a GET to retrieve the existing record, update only the required fields, and then submit the full set of values in the PUT request.

Table 660: PUT PamProviders Local {providerId} Entries Input Parameters

Name

Description

ProviderId Required. An integer containing the Keyfactor Command reference ID for the PAM provider associated with the secret.

Use the GET PAM Providers operation to retrieve a list of all the PAM providers to determine the PAM provider's ID.

SecretName Required. A string containing the Keyfactor Command reference name for the PAM secret.
Description A string containing a description for the PAM secret.
SecretValue A string containing the secret data for the PAM secret. This data is not returned in responses or GET requests.

Table 661: PUT PamProviders Local {providerId} Entries Response Data

Name

Description

ProviderId An integer containing the Keyfactor Command reference ID for the PAM provider associated with the secret.
SecretName A string containing the Keyfactor Command reference name for the PAM secret.
Description A string containing a description for the PAM secret.