ArchitectureSecurity model
ferry login
ferry login gets an API token for one terminal. You approve the request in the dashboard.
ferry login asks the server for a login request. It prints a page and a code.
1 / 4
ferry login gets an API token for the terminal where you run it. The proof is your session in the dashboard.
What you see
Terminal
$ ferry login --server http://127.0.0.1:7878To connect this terminal, open this page and sign in: http://127.0.0.1:7878/cli-login?id=d54ce0ee…Approve the request there if it shows this code: MRDB-M7EEWaiting for the approval... (Ctrl-C to cancel)Logged in to http://127.0.0.1:7878 (Ferry 0.1.0)Saved to /home/you/.config/ferry/config.jsonCompare the code before you approve
Approve a request only if the page shows the code of your terminal and your user@host. If not, deny the request.
The rules
- A request expires after 10 minutes.
- The token is in the list of Server → Account. You can revoke it like the other API tokens.
ferry loginsaves the server and the token in the config file.
| File | Mode |
|---|---|
~/.config/ferry/config.json, or $XDG_CONFIG_HOME/ferry/config.json | 0600, in a 0700 directory |