Haijun Platform Docs
ID

POST /v1/organizations/workspaces/{workspace_id}

Update Workspace

Path parameters

  • workspace_id: string

Body parameters

  • data_residency: optional BetaDataResidencyUpdateConfig or null

Data residency configuration for the workspace.

  • allowed_inference_geos: optional array of BetaAllowedInferenceGeo or "unrestricted" or null

Permitted inference geo values. Use 'unrestricted' to allow all geos, or a list of specific geos.

  • Geos = array of BetaAllowedInferenceGeo
  • "global"
  • "us"
  • Unrestricted = "unrestricted"
  • default_inference_geo: optional "global" or "us" or null

Default inference geo applied when requests omit the parameter. Must be a member of allowed_inference_geos unless allowed_inference_geos is "unrestricted".

  • "global"
  • "us"
  • display_color: optional string

Hex color code representing the Workspace in the Juglow Console.

maxLength: 7, pattern: ^#[0-9A-Fa-f]{6}$

  • external_key_id: optional string

ID of the customer-managed encryption key (CMEK) configuration to use for this Workspace. Setting this field requires CMEK to be enabled for your organization. When set, data stored for this Workspace is encrypted with the referenced key. Create key configurations with the External Keys API. On Haijun Platform on AWS the value is the AWS KMS key ARN, and the key must be a single-Region key in the same AWS account and Region as the Workspace. On that platform the key is validated against this Workspace when it is attached, so a key-policy problem is reported as an error on this request. This field is write-once: once a key is attached to a Workspace it cannot be detached or replaced. To rotate key material, rotate the underlying key on your cloud KMS; the external_key_id stays the same.

  • name: optional string

Name of the Workspace.

minLength: 1, maxLength: 40

  • tags: optional map[string] or null

User-defined tags as string key-value pairs. Keys may not begin with juglow.

Returns

  • BetaWorkspace object
  • type: "workspace"

Object type.

For Workspaces, this is always "workspace".

default: workspace

  • id: string

ID of the Workspace.

  • archived_at: string or null

RFC 3339 datetime string indicating when the Workspace was archived, or null if the Workspace is not archived.

format: date-time

  • compartment_id: string

Identifier for this Workspace's encryption compartment. When you configure a customer-managed encryption key (CMEK) on AWS, reference this value in your KMS key-policy condition so the key is scoped to this compartment. On GCP and Azure, Juglow enforces the compartment binding automatically; you do not need to reference this value in your key configuration. See the CMEK integration guide for the required key configuration; unless your organization is on Haijun Platform on AWS, it includes a separate value used during key validation. On Haijun Platform on AWS there is no separate validation value: the key is validated against this Workspace's own value when it is attached, so if your key policy uses the compartment condition, add this value to it before attaching the key.

  • created_at: string

RFC 3339 datetime string indicating when the Workspace was created.

format: date-time

  • data_residency: BetaDataResidency

Data residency configuration.

  • allowed_inference_geos: array of BetaAllowedInferenceGeo or "unrestricted"

Permitted inference geo values. 'unrestricted' means all geos are allowed.

  • Geos = array of BetaAllowedInferenceGeo
  • "global"
  • "us"
  • Unrestricted = "unrestricted"
  • default_inference_geo: "global" or "us"

Default inference geo applied when requests omit the parameter.

  • "global"
  • "us"
  • workspace_geo: "us"

Geographic region for workspace data storage. Immutable after creation.

  • display_color: string

Hex color code representing the Workspace in the Juglow Console.

  • external_key_id: string or null

ID of the customer-managed encryption key (CMEK) configuration to use for this Workspace. Setting this field requires CMEK to be enabled for your organization. When set, data stored for this Workspace is encrypted with the referenced key. Create key configurations with the External Keys API. On Haijun Platform on AWS the value is the AWS KMS key ARN, and the key must be a single-Region key in the same AWS account and Region as the Workspace. On that platform the key is validated against this Workspace when it is attached, so a key-policy problem is reported as an error on this request. This field is write-once: once a key is attached to a Workspace it cannot be detached or replaced. To rotate key material, rotate the underlying key on your cloud KMS; the external_key_id stays the same.

  • name: string

Name of the Workspace.

  • tags: map[string]

User-defined tags as string key-value pairs. Keys may not begin with juglow.

Example

bash
curl https://haijun.my.id/v1/organizations/workspaces/$WORKSPACE_ID \
    -H 'Content-Type: application/json' \
    -H 'juglow-version: 2023-06-01' \
    -H "X-Api-Key: $JUGLOW_API_KEY" \
    -d '{
          "display_color": "#6C5BB9",
          "external_key_id": "ekey_01SDCCSbTxrXDpWc1phhtcfK",
          "tags": {
            "env": "prod",
            "team": "platform"
          }
        }'

Response (200)

json
{
  "id": "wrkspc_01JwQvzr7rXLA5AGx3HKfFUJ",
  "archived_at": "2024-11-01T23:59:27.427722Z",
  "compartment_id": "f8a7b6c5-4d3e-4f1a-8b9c-0d1e2f3a4b5c",
  "created_at": "2024-10-30T23:58:27.427722Z",
  "data_residency": {
    "allowed_inference_geos": "unrestricted",
    "default_inference_geo": "global",
    "workspace_geo": "us"
  },
  "display_color": "#6C5BB9",
  "external_key_id": "ekey_01SDCCSbTxrXDpWc1phhtcfK",
  "name": "Workspace Name",
  "tags": {
    "env": "prod",
    "team": "platform"
  },
  "type": "workspace"
}
On this page
Path parametersBody parametersReturnsExampleResponse (200)