Skip to content

Commit eb370fb

Browse files
committed
Updates from reviews
1 parent f1e6ec1 commit eb370fb

File tree

1 file changed

+7
-1
lines changed

1 file changed

+7
-1
lines changed

articles/operator-nexus/howto-credential-rotation.md

Lines changed: 7 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -21,6 +21,9 @@ This article describes the Operator Nexus credential rotation lifecycle includin
2121
- The Cluster update command allows users to add or change key vault information.
2222
- For information on configuring the key vault to receive credential rotation updates, see [Setting up Key Vault for Managed Credential Rotation](how-to-credential-manager-key-vault.md).
2323

24+
> [!IMPORTANT]
25+
> A key vault must be provided on the Cluster, otherwise credentials will not be retrievable. Microsoft Support does not have access to the credentials.
26+
2427
## Rotating credentials
2528

2629
The Operator Nexus Platform offers a managed credential rotation process that automatically rotates the following credentials:
@@ -29,7 +32,10 @@ The Operator Nexus Platform offers a managed credential rotation process that au
2932
- Pure Storage Array Administrator
3033
- Console User for emergency access
3134

32-
The managed credential process automatically rotates these credentials every 60 days. The updated credentials are written to the key vault associated with the Cluster resource. The last rotation timestamps are currently not visible to users, but is a planned enhancement to the Operator Nexus Platform.
35+
When a new Cluster is created, the credentials are automatically rotated during deployment. The managed credential process then automatically rotates these credentials every 60 days. The updated credentials are written to the key vault associated with the Cluster resource. The last rotation timestamps are currently not visible to users, but is a planned enhancement to the Operator Nexus Platform.
36+
37+
> [!NOTE]
38+
> The Nexus 2403.1 release enables auto-rotation for existing sites. If the BMC, Storage Administrator or Console User credentials have not been rotated within the last 60 days, they will be rotated at the time of upgrade.
3339
3440
Operator Nexus also provides a service for preemptive rotation of the above Platform credentials. This service is available to customers upon request through a support ticket. Credential rotation for Operator Nexus Fabric devices also requires a support ticket. Instructions for generating a support request are described in the next section.
3541

0 commit comments

Comments
 (0)