Search K
Appearance
Appearance
You can review and update your AI Security license for self-hosted deployments. You can find the license key through the API or keys in your local deployment.
You can review your AI Security license for self-hosted deployments through the API or by checking your configuration file.
Use the GET /backend/v1/license endpoint to view the current license status and expiration date. This endpoint is unauthenticated and available for on-premises deployments. Replace <AI_SECURITY_HOSTNAME> with the hostname of your AI Security deployment.
Request:
curl -X GET "https://<AI_SECURITY_HOSTNAME>/backend/v1/license"Response:
{
"license": {
"status": "Active",
"expiry": "2026-10-23T00:00:00+00:00",
"hash": "af9e7613339b1a1dedefc5ca721f90947788979ca3c4d37664db7d5ca19195c2"
}
}The status field indicates whether the license is active, the expiry field shows the expiration date, and the hash is a unique representation of each license, used for verification.
You can update your AI Security license for self-hosted deployments through the API or kubectl.
You can use the PATCH /license API endpoint to update the license key. This method provides immediate validation.
You can also update the license by exporting the custom resource to a YAML file, updating the license key, and reapplying the changes. Alternatively, you can edit the custom resource directly in your terminal.
Export the custom resource to a YAML file:
kubectl get securityoperators.ai.security.f5.com cai-deployment -n f5-ai-sec -o yaml > cai-deployment.yamlThis command exports the current configuration to cai-deployment.yaml in your working directory.
Open cai-deployment.yaml in a text editor.
Locate CAI_MODERATOR_DEFAULT_LICENSE.
Replace the existing license key.
Make sure you include only the license key. Do not include quotes or special characters.
Save the file.
Apply the updated configuration:
kubectl apply -f cai-deployment.yamlKubernetes applies the updated Custom Resource to the cluster.
Continue to Redeploy the pods.
Edit the Custom Resource directly in your terminal.
Open the Custom Resource in edit mode:
kubectl edit securityoperators.ai.security.f5.com cai-deployment -n f5-ai-secLocate the CAI_MODERATOR_DEFAULT_LICENSE parameter.
Replace the existing license key value with your new license key.
Make sure you include only the license key itself. Do not include quotes or special characters.
Save and close the editor.
Continue to Redeploy the pods.
After you update the license key, restart the cai-moderator pods.
kubectl rollout restart deployment -n cai-moderator cai-moderatorThis command triggers a rolling restart of the cai-moderator deployment.
After you update the license, verify that the change was applied successfully.
Use the GET /backend/v1/license endpoint to confirm the license status and expiration date have been updated:
curl -X GET "https://<AI_SECURITY_HOSTNAME>/backend/v1/license"The response should show the updated license information with the new expiration date.
If you encounter errors, check the pod logs:
kubectl logs -n cai-moderator deployment/cai-moderatorFor more information, see: