Chilkat Online Tools

Python / MongoDB Atlas / Enable and Configure Encryption at Rest using Customer Key Management for One Project Copy

Back to Collection Items

import sys
import chilkat

# This example assumes the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.

http = chilkat.CkHttp()

http.put_DigestAuth(True)
http.put_Login("username")
http.put_Password("password")

# Use this online tool to generate code from sample JSON: Generate Code to Create JSON

# The following JSON is sent in the request body.

# {
#   "azureKeyVault": {
#     "enabled": true,
#     "clientID": "g54f9e2-89e3-40fd-8188-EXAMPLEID",
#     "azureEnvironment": "AZURE",
#     "subscriptionID": "0ec944e3-g725-44f9-a147-EXAMPLEID",
#     "resourceGroupName": "ExampleRGName",
#     "keyVaultName": "EXAMPLEKeyVault",
#     "keyIdentifier": "https://EXAMPLEKeyVault.vault.azure.net/keys/EXAMPLEKey/d891821e3d364e9eb88fbd3d11807b86",
#     "secret": "EXAMPLESECRET",
#     "tenantID": "e8e4b6ba-ff32-4c88-a9af-EXAMPLEID"
#   }
# }

json = chilkat.CkJsonObject()
json.UpdateBool("azureKeyVault.enabled",True)
json.UpdateString("azureKeyVault.clientID","g54f9e2-89e3-40fd-8188-EXAMPLEID")
json.UpdateString("azureKeyVault.azureEnvironment","AZURE")
json.UpdateString("azureKeyVault.subscriptionID","0ec944e3-g725-44f9-a147-EXAMPLEID")
json.UpdateString("azureKeyVault.resourceGroupName","ExampleRGName")
json.UpdateString("azureKeyVault.keyVaultName","EXAMPLEKeyVault")
json.UpdateString("azureKeyVault.keyIdentifier","https://EXAMPLEKeyVault.vault.azure.net/keys/EXAMPLEKey/d891821e3d364e9eb88fbd3d11807b86")
json.UpdateString("azureKeyVault.secret","EXAMPLESECRET")
json.UpdateString("azureKeyVault.tenantID","e8e4b6ba-ff32-4c88-a9af-EXAMPLEID")

sbRequestBody = chilkat.CkStringBuilder()
json.EmitSb(sbRequestBody)

# resp is a CkHttpResponse
resp = http.PTextSb("PATCH","https://domain.com/api/atlas/{{version}}/groups/{{ProjectID}}/encryptionAtRest",sbRequestBody,"utf-8","application/json",False,False)
if (http.get_LastMethodSuccess() == False):
    print(http.lastErrorText())
    sys.exit()

print(str(resp.get_StatusCode()))
print(resp.bodyStr())

Curl Command

curl -X PATCH
	--digest -u 'username:password'
	-d '{
    "azureKeyVault": {
        "enabled": true,
        "clientID": "g54f9e2-89e3-40fd-8188-EXAMPLEID",
        "azureEnvironment": "AZURE",
        "subscriptionID": "0ec944e3-g725-44f9-a147-EXAMPLEID",
        "resourceGroupName": "ExampleRGName",
        "keyVaultName": "EXAMPLEKeyVault",
        "keyIdentifier": "https://EXAMPLEKeyVault.vault.azure.net/keys/EXAMPLEKey/d891821e3d364e9eb88fbd3d11807b86",
        "secret": "EXAMPLESECRET",
        "tenantID": "e8e4b6ba-ff32-4c88-a9af-EXAMPLEID"
    }
}'
https://domain.com/api/atlas/{{version}}/groups/{{ProjectID}}/encryptionAtRest

Postman Collection Item JSON

{
  "name": "Enable and Configure Encryption at Rest using Customer Key Management for One Project Copy",
  "request": {
    "method": "PATCH",
    "header": [
    ],
    "body": {
      "mode": "raw",
      "raw": "{\n    \"azureKeyVault\": {\n        \"enabled\": true,\n        \"clientID\": \"g54f9e2-89e3-40fd-8188-EXAMPLEID\",\n        \"azureEnvironment\": \"AZURE\",\n        \"subscriptionID\": \"0ec944e3-g725-44f9-a147-EXAMPLEID\",\n        \"resourceGroupName\": \"ExampleRGName\",\n        \"keyVaultName\": \"EXAMPLEKeyVault\",\n        \"keyIdentifier\": \"https://EXAMPLEKeyVault.vault.azure.net/keys/EXAMPLEKey/d891821e3d364e9eb88fbd3d11807b86\",\n        \"secret\": \"EXAMPLESECRET\",\n        \"tenantID\": \"e8e4b6ba-ff32-4c88-a9af-EXAMPLEID\"\n    }\n}",
      "options": {
        "raw": {
          "language": "json"
        }
      }
    },
    "url": {
      "raw": "{{base_url}}/api/atlas/{{version}}/groups/{{ProjectID}}/encryptionAtRest",
      "host": [
        "{{base_url}}"
      ],
      "path": [
        "api",
        "atlas",
        "{{version}}",
        "groups",
        "{{ProjectID}}",
        "encryptionAtRest"
      ]
    },
    "description": "https://docs.atlas.mongodb.com/reference/api/enable-configure-encryptionatrest/"
  },
  "response": [
  ]
}