Skip to main content

Rotating Tokens

What & Why

Rotating tokens is a security practice used to enhance the safety of your systems by periodically changing access credentials. By regularly rotating tokens, we can limit the potential damage from compromised tokens and reduce the window of opportunity for malicious actors. This proactive approach helps maintain robust security by ensuring that even if a token is exposed, it becomes invalid after a short period, thereby minimising the risk of unauthorised access.

info

We recommend you rotate all security tokens between 180 days and 365 days.

Token Age

NEONNOW will show you your token ages in the table view. Each token will show the number of days it's been active and an icon if it's age is higher than the recommendation.

screenshot

In the table view, under the Token Expired column

Generating a New Token

You can rotate your token at any time, by using the three dot action menu in the table for any item and clicking Security Token. This will open a modal window, which will show you your token age and your existing token:

warning

Generating a new token will invalidate the old one. Ensure you are ready to use the new token and move your third party services to a new token before generating.

screenshot

An example token modal

Click the New Token button to generate a new token.