Back to Influxdb

chronoctl token

content/chronograf/v1/tools/chronoctl/token.md

latest1.3 KB
Original Source

The token command reads a private token file, generates and signs the nonce, and then returns an expiring token to be used in the Authorization header. For example:

sh
Authorization: CHRONOGRAF-SHA256 <returned-expiring-token>

Usage

chronoctl token [flags]

Flags

FlagDescriptionEnv. Variable
-h--helpOutput command help
--chronograf-urlChronograf's URL (default is http://localhost:8888)CHRONOGRAF_URL
-k--skip-verifySkip TLS certification verification
--priv-key-filePrivate key file location for superadmin token authenticationPRIV_KEY_FILE

Examples

The following example uses the RSA key used when started the Chronograf server and returns an expiring token that can be used to gain superadmin access to Chronograf.

{{% note %}} The private key must correspond to the public key used when starting the Chronograf server. {{% /note %}}

sh
chronoctl token --priv-key-file /path/to/chronograf-rsa