1ctl valkey
1ctl valkey manages private Valkey 9.1.1 services rendered from the
platform-pinned official chart 0.11.0. The alias is 1ctl vk.
1ctl valkeyAliases
Section titled “Aliases”vk
| Flag | Type | Required | Default | Description |
|---|---|---|---|---|
--help, -h |
boolean | No | — | Show help |
Subcommands
Section titled “Subcommands”| Command | Description |
|---|---|
create |
Create a private managed Valkey service |
list |
List managed Valkey services |
get |
Show managed Valkey service details |
status |
Show live managed Valkey status |
credentials |
Show private Valkey connection credentials |
update |
Update mutable managed Valkey settings |
users |
Manage preset-based Valkey ACL users |
rotate-credentials |
Rotate the protected default user’s password |
metrics |
Show current managed Valkey metrics |
logs |
Show recent managed Valkey logs |
redeploy |
Reconcile the managed Valkey service |
restart |
Roll the managed Valkey workload |
delete |
Destroy a managed Valkey service |
ACL users and rotation
Section titled “ACL users and rotation”1ctl valkey users create sessions cache-api \ --preset read_write \ --key-pattern 'cache:*' \ --channel-pattern 'events:*'
1ctl valkey users list sessions1ctl valkey users rotate-password sessions cache-api --yes1ctl valkey rotate-credentials sessions --yes1ctl valkey users delete sessions cache-api --yesGenerated passwords are returned once. Store them in application secret
configuration, never in source control or satusky.toml.
Connectivity
Section titled “Connectivity”Managed Valkey exposes private ClusterIP DNS on port 6379. Application
workloads must be able to reach the service inside the organization namespace.
There is no public endpoint or managed TLS endpoint.
See Managed Valkey for an end-to-end operational workflow.