Rotate a NAS shared secret

POST /api/v1/admin/nas/{id}/rotate-secret prm_nas_update

View as Markdown

Issues a new shared secret for the device. The router must be updated to match, or it stops authenticating — this endpoint changes the platform side only.

There is no overlap window. From the moment this returns, RADIUS packets signed with the old secret are rejected. Push the new secret to the device in the same maintenance step.

At a glance

Authentication
Staff token or session
Requires permission
prm_nas_update Edit NAS
Rate limit
t_mutate

Parameters

Parameter Description
idrequired path · integer NAS id.

Try it on your own network.

50 subscribers for 7 days. You pay nothing.