FerryDocs
ArchitectureSecurity model

The server token

The server token is an API token that ferryd makes for scripts on the server itself.

Edit on GitHub
cattokenapi_tokenmode 0600Scripton the serverferrydmakes the token

At its first start, ferryd makes the server token. It writes the token to the file api_token.

1 / 4
On the server
FERRY_TOKEN="$(cat /var/lib/ferry/api_token)" ferry services

ferryd has a token of its own: the . It is for scripts on the server itself. It has the same access as the other API tokens.

What is different

Server tokenOther tokens
Where it is<data-dir>/api_token, mode 0600The dashboard shows it one time
In the list of the dashboardNoYes
Revoke in the dashboardNoYes

ferryd never prints the server token.

Replace the server token

Use one of these two procedures:

  • Restart ferryd with a new --api-token.
  • Stop ferryd. Delete <data-dir>/api_token. Start ferryd again: it makes a new token.

Then give the new token to each program that used the old token.

On this page