Setup Infisical Connection in Infisical
- Infisical UI
- API
1
Navigate to the remote Infisical instance
Open the remote Infisical instance (the one you want to sync secrets to) and navigate to Organization > Access Control > Machine Identities.

2
Create a Machine Identity
Create a new Machine Identity. Give it a descriptive name (e.g., 
infisical-sync-identity).
3
Configure Universal Auth
Select Universal Auth as the authentication method and create the identity.

4
Copy the Client ID and create a Client Secret
Copy the Client ID. Then click Create Client Secret and copy the generated secret. Store both values in a secure location — the secret will not be shown again.

5
Add the Machine Identity to the target project
Navigate to the project on the remote instance that you want to sync secrets to. Under Project Settings > Access Control > Machine Identities, add the Machine Identity you created and grant it a role with write permission on secrets (e.g. Member or a custom role with secret write access).

6
Navigate to App Connections in Infisical
Switch back to your source Infisical instance. Navigate to Organization > App Connections and click Add Connection.

7
Select the Infisical Connection option
Choose the Infisical option from the connection list.

8
Fill in the connection form
Complete the connection form with the following details:
-
Instance URL: The base URL of the remote Infisical instance (e.g.,
https://infisical.example.com). - Machine Identity Client ID: The Client ID copied in a previous step.
-
Machine Identity Client Secret: The Client Secret copied in a previous step.
9
Connection Created
Your Infisical Connection is now available for use in Secret Syncs.
