Model infrastructureProviders
Provider reauthentication
Rotate an expired subscription credential out of band through Weles and redeem the replacement safely.
Provider reauthentication — contract and behavior
- An authentication-class provider failure may trigger the configured Weles reauthentication endpoint.
- Weles rotates the capability-backed vault entry; Brama then performs a fresh capability redemption before retrying.
- Plaintext credentials returned in the reauthentication response are rejected.
- Endpoint aliases include WELES_BRAMA_REAUTH_URL, MODEL_ROUTER_REAUTH_URL, and WELES_REAUTH_URL; bearer and x-weles-reauth-secret headers are optional deployment controls.