If your organisation uses Single Sign-On (SSO) with Kinesis and your client secret is approaching its expiry date, a new secret needs to be provided to Kinesis before the current one expires to avoid any interruption to sign-in.
Can the existing secret be renewed?
No. Client secrets cannot be renewed or extended once created. The expiry date is set in your identity platform (for example, Microsoft 365 / Entra ID) at the time the secret is created, so a new secret will need to be issued from your tenancy.
Kinesis accepts secrets of any duration, so you are welcome to choose an expiry period that suits your organisation's security policy.
Steps
Generate a new client secret in your identity platform, for the app registration used for your Kinesis SSO connection.
Send the new secret to security@kinesis.org using your preferred secure method.
Email support@kinesis.org to advise that the secret has been shared with our security team and needs to be actioned. Our support team will help ensure it is applied promptly.
What happens next
Once received, our team will apply the new secret as soon as possible β generally within a few hours. If your current secret is still valid when the new one is applied, there will be no interruption to SSO for your users.
