FerryDocs
ArchitectureSecurity model

Endpoints with no authentication

Each API request needs a session or a token. A few endpoints that show nothing secret need none.

Edit on GitHub
Any callerno proof/api/v1/…401/healthznothing secret

A request to /api/v1 with no session and no token gets the answer 401.

1 / 3

is the rule. The in these two tables are the exceptions.

Open because they show nothing secret

EndpointNote
/healthzTells that the server is alive.
/api/openapi.jsonThe .
/api/docs. It asks for an API token to send requests.
The static files of the dashboardThe dashboard asks you to sign in before it shows data.

Open because the caller has no proof yet

EndpointWho calls it
/api/v1/auth: status, setup, login, logoutA browser, before it signs in
/api/v1/auth: the two calls of ferry loginA terminal, to start a login and to get its token

On this page