Rotating Tokens
What & Why
Rotating tokens is a security practice used to enhance the safety of your systems by periodically changing access credentials. By regularly rotating tokens, we can limit the potential damage from compromised tokens and reduce the window of opportunity for malicious actors. This proactive approach helps maintain robust security by ensuring that even if a token is exposed, it becomes invalid after a short period, thereby minimising the risk of unauthorised access.
We recommend you rotate all security tokens between 180 days and 365 days.
Token Age
NEONNOW will show you your token ages in the table view. Each token will show the number of days it's been active and an icon if it's age is higher than the recommendation.
In the table view, under the Token Expired column
Generating a New Token
You can rotate your token at any time, by using the three dot action menu in the table for any item and clicking Security Token
. This will open a modal window, which will show you your token age and your existing token:
Generating a new token will invalidate the old one. Ensure you are ready to use the new token and move your third party services to a new token before generating.
An example token modal
Click the New Token
button to generate a new token.