Log in with the break-glass token
const url = 'https://example.com/auth/token-login';const options = { method: 'POST', headers: {'Content-Type': 'application/json'}, body: '{"token":"example"}'};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request POST \ --url https://example.com/auth/token-login \ --header 'Content-Type: application/json' \ --data '{ "token": "example" }'Starts a UI session as administrator with BL_ADMIN_TOKEN. Only when the service has that token configured, which is meant for development.
Authorizations
Section titled “Authorizations”- None
Request Bodyrequired
Section titled “Request Bodyrequired”object
The value of BL_ADMIN_TOKEN.
Example generated
{ "token": "example"}Responses
Section titled “Responses”Logged in; the session cookie is set.
Who is calling: a user of the identity provider, an API key, or the break-glass token.
object
The subject at the identity provider, or the id of the API key.
viewer, operator and/or admin.
How the caller authenticated: oidc, api_key, token or setup.
What the credential may be used for: management, gateway, setup.
cli for a user working through bl (decisions #62); the audit log
says so. The same person in the UI has None.
Example generated
{ "subject": "example", "name": "example", "email": "example", "roles": [ "example" ], "auth": "example", "scopes": [ "example" ], "via": "example"}Wrong token.
The body of every failed call to a management API.
object
object
Stable, machine-readable: invalid_request, unauthenticated,
forbidden, not_found, conflict, upstream_unavailable,
unavailable, internal, or a more specific code of the operation.
For people; may change between versions.
Example
{ "error": { "code": "not_found", "message": "unknown negotiation" }}Token login is disabled.
The body of every failed call to a management API.
object
object
Stable, machine-readable: invalid_request, unauthenticated,
forbidden, not_found, conflict, upstream_unavailable,
unavailable, internal, or a more specific code of the operation.
For people; may change between versions.
Example
{ "error": { "code": "not_found", "message": "unknown negotiation" }}