Ga naar inhoud

Log in with the break-glass token

POST
/auth/token-login
curl --request POST \
--url https://example.com/auth/token-login \
--header 'Content-Type: application/json' \
--data '{ "token": "example" }'

Starts a UI session as administrator with BL_ADMIN_TOKEN. Only when the service has that token configured, which is meant for development.

  • None
Media typeapplication/json
object
token
required

The value of BL_ADMIN_TOKEN.

string

Example generated

{
"token": "example"
}

Logged in; the session cookie is set.

Media typeapplication/json

Who is calling: a user of the identity provider, an API key, or the break-glass token.

object
subject
required

The subject at the identity provider, or the id of the API key.

string
name
required
string
email
string | null
roles
required

viewer, operator and/or admin.

Array<string>
auth
required

How the caller authenticated: oidc, api_key, token or setup.

string
scopes

What the credential may be used for: management, gateway, setup.

Array<string>
via

cli for a user working through bl (decisions #62); the audit log says so. The same person in the UI has None.

string | null

Example generated

{
"subject": "example",
"name": "example",
"email": "example",
"roles": [
"example"
],
"auth": "example",
"scopes": [
"example"
],
"via": "example"
}

Wrong token.

Media typeapplication/json

The body of every failed call to a management API.

object
error
required
object
code
required

Stable, machine-readable: invalid_request, unauthenticated, forbidden, not_found, conflict, upstream_unavailable, unavailable, internal, or a more specific code of the operation.

string
message
required

For people; may change between versions.

string

Example

{
"error": {
"code": "not_found",
"message": "unknown negotiation"
}
}

Token login is disabled.

Media typeapplication/json

The body of every failed call to a management API.

object
error
required
object
code
required

Stable, machine-readable: invalid_request, unauthenticated, forbidden, not_found, conflict, upstream_unavailable, unavailable, internal, or a more specific code of the operation.

string
message
required

For people; may change between versions.

string

Example

{
"error": {
"code": "not_found",
"message": "unknown negotiation"
}
}