Upstash Documentation

ACL GENPASS

Generate a cryptographically strong random password.
2 min read

Use ACL GENPASS to generate a random, hex-encoded password suitable for a new ACL user.

The optional bits argument controls the strength of the generated password, rounded up to the nearest multiple of 8, and defaults to 256 bits when omitted. This only generates the password string; it does not create or update a user. To actually authenticate an ACL user over the REST API, generate credentials with ACL GENTOKEN instead, since a plain password from GENPASS cannot be passed to ACL SETUSER.

Syntax#

Arguments#

ArgumentRequiredRepeatableDescription
bitsNoNoPassword strength in bits, from 1 to 4096. Defaults to 256 and is rounded up to a multiple of 8.

Important points#

  • The returned password is not stored anywhere; it is only generated and returned.
  • This value cannot be added to a user with ACL SETUSER ... >password. Use ACL GENTOKEN to create credentials that SETUSER will accept.

Response#

The reply reports the result of the operation. Error replies have the same shape in RESP2 and RESP3 and are surfaced as exceptions by the SDKs below.

ProtocolReply
RESP2Bulk string
RESP3Bulk string
Note

Client libraries often decode bulk strings, maps, sets, and numeric strings into language-native values. The table describes the Redis wire reply.

Examples#

TCP examples use the TLS REDIS_URL from the Upstash console. REST examples use UPSTASH_REDIS_REST_URL and UPSTASH_REDIS_REST_TOKEN.

Redis CLI
@upstash/redis
Note

This command is not supported yet in @upstash/redis.

upstash_redis
Note

This command is not supported yet in upstash_redis.

ioredis
node-redis
redis-py
go-redis
jedis
redis-rs