OCI Secret Management

With Oracle Cloud Infrastructure (OCI) Secret Management Service, you can securely store, retrieve, and manage passwords, API keys, tokens, and other sensitive information across your cloud environments.

Features of OCI Secret Management


Secret auto-generation

Use configurable templates to automatically generate secrets including passwords, SSH keys, and random bytes.

Secret auto-rotation

Set up automatic rotation intervals ranging from 1 to 12 months to update secrets regularly.

Cross-region replication

Replicate secrets across up to three OCI regions to support disaster recovery and high availability.

Secret expiry and reuse rules

Define rules to automatically expire secrets on a set date and prevent reuse of previous values to help secure lifecycle management and reduce credential-related risks.

Versioning

Maintain, track, and rotate multiple versions of a secret and retrieve specific versions or the most current ones to enable safe updates and rollbacks.

OCI Secret Management pricing

Core Security

Service
Price
Oracle Cloud Infrastructure Secret Management
Free

Key benefits

  • Centralized protection of sensitive data

    Store application secrets in a dedicated, isolated service backed by FIPS-validated key protection. Secrets are encrypted at rest using OCI Vault keys, allowing for consistent security controls across your environment.

  • Integrated lifecycle automation

    Define secret rotation rules with automated versioning, secure archival, and programmable refresh. OCI handles lifecycle transitions and access control, helping reduce manual overhead and prevent outages caused by expired secrets.

  • Fine-grained access policies

    Leverage OCI IAM policies to define who or what can read, update, rotate, or manage each secret. Integrate with compartments, tags, and governance tooling to isolate secrets by team, project, or environment.

  • Enterprise-scale design

    Leverage a system built for high availability, regional isolation, and zero-downtime versioning. Secrets can be replicated and delivered with low latency to distributed applications.

August 14, 2025

Announcing Cross-Region Replication for OCI Secret Management

Suyog Pathak, Principal Product Manager, OCI Security and Cryptography

Oracle Cloud Infrastructure (OCI) has launched cross-region replication for Secret Management, now generally available. This new feature enables customers to replicate secrets across up to three regions, supporting disaster recovery, high availability, and multiregion deployments.

Read the complete post

Get started with OCI Secret Management


Learn more about Oracle security

Learn more about Oracle’s security portfolio in our latest ebook.


Try Oracle Cloud

Take advantage of Oracle Cloud Free Tier.


Oracle Cloud Infrastructure security

Download our infographic about OCI’s security differentiators.