Credential Sets - Update
Updates a credential set for a container registry with the specified parameters.
PATCH https://management.azure.com/subscriptions/{subscriptionId}/resourceGroups/{resourceGroupName}/providers/Microsoft.ContainerRegistry/registries/{registryName}/credentialSets/{credentialSetName}?api-version=2025-11-01
URI Parameters
| Name | In | Required | Type | Description |
|---|---|---|---|---|
|
credential
|
path | True |
string minLength: 5maxLength: 50 pattern: ^[a-zA-Z0-9-]*$ |
The name of the credential set. |
|
registry
|
path | True |
string minLength: 5maxLength: 50 pattern: ^[a-zA-Z0-9]*$ |
The name of the container registry. |
|
resource
|
path | True |
string minLength: 1maxLength: 90 |
The name of the resource group. The name is case insensitive. |
|
subscription
|
path | True |
string (uuid) |
The ID of the target subscription. The value must be an UUID. |
|
api-version
|
query | True |
string minLength: 1 |
The API version to use for this operation. |
Request Body
| Name | Type | Description |
|---|---|---|
| identity |
Identities associated with the resource. This is used to access the KeyVault secrets. |
|
| properties.authCredentials |
List of authentication credentials stored for an upstream. Usually consists of a primary and an optional secondary credential. |
Responses
| Name | Type | Description |
|---|---|---|
| 200 OK |
Azure operation completed successfully. |
|
| 201 Created |
Resource 'CredentialSet' create operation succeeded Headers
|
|
| Other Status Codes |
An unexpected error response. |
Security
azure_auth
Azure Active Directory OAuth2 Flow.
Type:
oauth2
Flow:
implicit
Authorization URL:
https://login.microsoftonline.com/common/oauth2/authorize
Scopes
| Name | Description |
|---|---|
| user_impersonation | impersonate your user account |
Examples
CredentialSetUpdate
Sample request
PATCH https://management.azure.com/subscriptions/00000000-0000-0000-0000-000000000000/resourceGroups/myResourceGroup/providers/Microsoft.ContainerRegistry/registries/myRegistry/credentialSets/myCredentialSet?api-version=2025-11-01
{
"properties": {
"authCredentials": [
{
"name": "Credential1",
"usernameSecretIdentifier": "https://myvault.vault.azure.net/secrets/username2",
"passwordSecretIdentifier": "https://myvault.vault.azure.net/secrets/password2"
}
]
}
}
Sample response
{
"type": "Microsoft.ContainerRegistry/registries/credentialSets",
"identity": {
"principalId": "00000000-0000-0000-0000-000000000000",
"tenantId": "00000000-0000-0000-0000-000000000000",
"type": "SystemAssigned"
},
"id": "/subscriptions/00000000-0000-0000-0000-000000000000/resourceGroups/myResourceGroup/providers/Microsoft.ContainerRegistry/registries/myRegistry/credentialSets/myCredentialSet",
"name": "myCredentialSet",
"properties": {
"loginServer": "docker.io",
"authCredentials": [
{
"name": "Credential1",
"usernameSecretIdentifier": "https://myvault.vault.azure.net/secrets/username2",
"passwordSecretIdentifier": "https://myvault.vault.azure.net/secrets/password2",
"credentialHealth": {
"status": "Healthy"
}
}
],
"creationDate": "2022-11-07T18:20:08.012276+00:00",
"provisioningState": "Succeeded"
}
}
Azure-AsyncOperation: https://management.azure.com/subscriptions/00000000-0000-0000-0000-000000000000/resourceGroups/myResourceGroup/providers/Microsoft.ContainerRegistry/registries/myRegistry/credentialSets/myCredentialSet/operationStatuses/credentialsets-00000000-0000-0000-0000-000000000000?api-version=2025-11-01
{
"type": "Microsoft.ContainerRegistry/registries/credentialSets",
"identity": {
"principalId": "00000000-0000-0000-0000-000000000000",
"tenantId": "00000000-0000-0000-0000-000000000000",
"type": "SystemAssigned"
},
"id": "/subscriptions/00000000-0000-0000-0000-000000000000/resourceGroups/myResourceGroup/providers/Microsoft.ContainerRegistry/registries/myRegistry/credentialSets/myCredentialSet",
"name": "myCredentialSet",
"properties": {
"loginServer": "docker.io",
"authCredentials": [
{
"name": "Credential1",
"usernameSecretIdentifier": "https://myvault.vault.azure.net/secrets/username2",
"passwordSecretIdentifier": "https://myvault.vault.azure.net/secrets/password2",
"credentialHealth": {
"status": "Healthy"
}
}
],
"creationDate": "2022-11-07T18:20:08.012276+00:00",
"provisioningState": "Updating"
}
}
Definitions
| Name | Description |
|---|---|
|
Auth |
Authentication credential stored for an upstream. |
|
created |
The type of identity that created the resource. |
|
Credential |
The health of the auth credential. |
|
Credential |
The health status of credential. |
|
Credential |
The name of the credential. |
|
Credential |
An object that represents a credential set resource for a container registry. |
|
Credential |
The parameters for updating a credential set |
|
Error |
The resource management error additional info. |
|
Error |
The error detail. |
|
Error |
Error response |
|
Identity |
Managed identity for the resource. |
|
Provisioning |
The provisioning state of the archive at the time the operation was called. |
|
Resource |
The identity type. |
|
system |
Metadata pertaining to creation and last modification of the resource. |
|
User |
AuthCredential
Authentication credential stored for an upstream.
| Name | Type | Description |
|---|---|---|
| credentialHealth |
This provides data pertaining to the health of the auth credential. |
|
| name |
The name of the credential. |
|
| passwordSecretIdentifier |
string |
KeyVault Secret URI for accessing the password. |
| usernameSecretIdentifier |
string |
KeyVault Secret URI for accessing the username. |
createdByType
The type of identity that created the resource.
| Value | Description |
|---|---|
| User | |
| Application | |
| ManagedIdentity | |
| Key |
CredentialHealth
The health of the auth credential.
| Name | Type | Description |
|---|---|---|
| errorCode |
string |
Error code representing the health check error. |
| errorMessage |
string |
Descriptive message representing the health check error. |
| status |
The health status of credential. |
CredentialHealthStatus
The health status of credential.
| Value | Description |
|---|---|
| Healthy | |
| Unhealthy |
CredentialName
The name of the credential.
| Value | Description |
|---|---|
| Credential1 |
CredentialSet
An object that represents a credential set resource for a container registry.
| Name | Type | Description |
|---|---|---|
| id |
string (arm-id) |
Fully qualified resource ID for the resource. E.g. "/subscriptions/{subscriptionId}/resourceGroups/{resourceGroupName}/providers/{resourceProviderNamespace}/{resourceType}/{resourceName}" |
| identity |
Identities associated with the resource. This is used to access the KeyVault secrets. |
|
| name |
string |
The name of the resource |
| properties.authCredentials |
List of authentication credentials stored for an upstream. Usually consists of a primary and an optional secondary credential. |
|
| properties.creationDate |
string (date-time) |
The creation date of credential store resource. |
| properties.loginServer |
string |
The credentials are stored for this upstream or login server. |
| properties.provisioningState |
Provisioning state of the resource. |
|
| systemData |
Azure Resource Manager metadata containing createdBy and modifiedBy information. |
|
| type |
string |
The type of the resource. E.g. "Microsoft.Compute/virtualMachines" or "Microsoft.Storage/storageAccounts" |
CredentialSetUpdateParameters
The parameters for updating a credential set
| Name | Type | Description |
|---|---|---|
| identity |
Identities associated with the resource. This is used to access the KeyVault secrets. |
|
| properties.authCredentials |
List of authentication credentials stored for an upstream. Usually consists of a primary and an optional secondary credential. |
ErrorAdditionalInfo
The resource management error additional info.
| Name | Type | Description |
|---|---|---|
| info |
object |
The additional info. |
| type |
string |
The additional info type. |
ErrorDetail
The error detail.
| Name | Type | Description |
|---|---|---|
| additionalInfo |
The error additional info. |
|
| code |
string |
The error code. |
| details |
The error details. |
|
| message |
string |
The error message. |
| target |
string |
The error target. |
ErrorResponse
Error response
| Name | Type | Description |
|---|---|---|
| error |
The error object. |
IdentityProperties
Managed identity for the resource.
| Name | Type | Description |
|---|---|---|
| principalId |
string |
The principal ID of resource identity. |
| tenantId |
string |
The tenant ID of resource. |
| type |
The identity type. |
|
| userAssignedIdentities |
<string,
User |
The list of user identities associated with the resource. The user identity dictionary key references will be ARM resource ids in the form: '/subscriptions/{subscriptionId}/resourceGroups/{resourceGroupName}/ providers/Microsoft.ManagedIdentity/userAssignedIdentities/{identityName}'. |
ProvisioningState
The provisioning state of the archive at the time the operation was called.
| Value | Description |
|---|---|
| Creating | |
| Updating | |
| Deleting | |
| Succeeded | |
| Failed | |
| Canceled |
ResourceIdentityType
The identity type.
| Value | Description |
|---|---|
| SystemAssigned | |
| UserAssigned | |
| SystemAssigned, UserAssigned | |
| None |
systemData
Metadata pertaining to creation and last modification of the resource.
| Name | Type | Description |
|---|---|---|
| createdAt |
string (date-time) |
The timestamp of resource creation (UTC). |
| createdBy |
string |
The identity that created the resource. |
| createdByType |
The type of identity that created the resource. |
|
| lastModifiedAt |
string (date-time) |
The timestamp of resource last modification (UTC) |
| lastModifiedBy |
string |
The identity that last modified the resource. |
| lastModifiedByType |
The type of identity that last modified the resource. |
UserIdentityProperties
| Name | Type | Description |
|---|---|---|
| clientId |
string |
The client id of user assigned identity. |
| principalId |
string |
The principal id of user assigned identity. |