sops_rotate_generated
Rotate generated secrets with new random values, keeping external secrets intact. Requires the encrypted secrets file and a private key for the target domain.
Instructions
Re-generate 'generated' secrets with new random values while preserving 'external' secrets. Requires a private key for the target domain.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| domain | No | Name of the key domain to encrypt to / decrypt with. Optional. Defaults to the domain recorded in the file's _meta_unencrypted block, and failing that to 'default'. Call sops_list_domains to see what this server has configured. | |
| encrypted_content | Yes | Contents of an existing secrets.enc.yaml file |