Updated on 2026-07-22 GMT+08:00

Changing the Login Password of an IAM User

Function

This API is used to change the login password of an IAM user.

Authorization Information

Each account root user has all the permissions required to call all APIs, but IAM users must be assigned the following required identity policy-based permissions. For details about the required permissions, see Permissions Policies and Supported Actions.

Action

Access Level

Resource Type (*: required)

Condition Key

Alias

Dependencies

iam:users:changePasswordV5

Write

user *

  • g:ResourceTag/<tag-key>

  • iam:ResourceIsRootUser

-

-

URI

POST /v5/caller-password

Request Parameters

Table 1 Request body parameters

Parameter

Mandatory

Type

Description

new_password

Yes

String

Definition:

New password of an IAM user.

Constraints:

The value can contain 8 to 32 characters.

Range:

N/A

Default Value:

N/A

old_password

Yes

String

Definition:

Old password of an IAM user.

Constraints:

The value can contain 8 to 32 characters.

Range:

N/A

Default Value:

N/A

Response Parameters

Status code: 200

Successful

Status code: 400

Table 2 Response body parameters

Parameter

Type

Description

error_code

String

Definition :

Error code. For details, see Error Code.

Range:

The format is PAP5.XXXX, for example, PAP5.0012.

error_msg

String

Definition :

Error message. For details, see Error Message.

Range:

N/A.

request_id

String

Definition:

Unique identifier of an API request, which is used to locate API calling exceptions.

Range:

N/A

Status code: 403

Table 3 Response body parameters

Parameter

Type

Description

error_code

String

Definition :

Error code. For details, see Error Code.

Range:

The format is PAP5.XXXX, for example, PAP5.0012.

error_msg

String

Definition :

Error message. For details, see Error Message.

Range:

N/A.

request_id

String

Definition:

Unique identifier of an API request, which is used to locate API calling exceptions.

Range:

N/A

encoded_authorization_message

String

Definition :

Encrypted details returned when the authentication fails, which are used to locate authentication problems. The STS5 decryption API can be used for decryption. For details, see API link.

Range:

N/A.

Status code: 404

Table 4 Response body parameters

Parameter

Type

Description

error_code

String

Definition :

Error code. For details, see Error Code.

Range:

The format is PAP5.XXXX, for example, PAP5.0012.

error_msg

String

Definition :

Error message. For details, see Error Message.

Range:

N/A.

request_id

String

Definition:

Unique identifier of an API request, which is used to locate API calling exceptions.

Range:

N/A

Example Requests

Changing the login password of an IAM user. The old password is Password1, and the new password is Password2.

POST https://{endpoint}/v5/caller-password

{
  "new_password" : "Password2",
  "old_password" : "Password1"
}

Example Responses

None

Status Codes

Status Code

Description

200

Successful

400

Bad request

403

Forbidden

404

Not found

Error Codes

See Error Codes.