stack es security create-service-token cli command
Auth required
Idempotent
Scope: global
elastic stack es security create-service-token \
--namespace <namespace> \
--service <service> \
[options]
Create a service account token.
Behaviour flags:
--dry-run — validate all inputs and exit without performing any action
--namespacestringrequired- The name of the namespace, which is a top-level grouping of service accounts.
--servicestringrequired- The name of the service.
--refreshenum-
If
true(the default) then refresh the affected shards to make this operation visible to search, ifwait_forthen wait for a refresh to make this operation visible to search, iffalsethen do nothing with refreshes.Values: true, false, wait_for
--namestring- The name for the service account token.
If omitted, a random name will be generated. Token names must be at least one and no more than 256 characters.
They can contain alphanumeric characters (a-z, A-Z, 0-9), dashes (
-), and underscores (_), but cannot begin with an underscore. NOTE: Token names must be unique in the context of the associated service account. They must also be globally unique with their fully qualified names, which are comprised of the service account principal and token name, such as<namespace>/<service>/<token-name>. --[no-]error-trace- When set to
trueElasticsearch will include the full stack trace of errors when they occur. --filter-pathstring-
Comma-separated list of filters in dot notation which reduce the response returned by Elasticsearch.
Repeatable: pass
--filter-pathmultiple times to supply more than one value --[no-]human- When set to
truewill return statistics in a format suitable for humans. For example"exists_time": "1h"for humans and"exists_time_in_millis": 3600000for computers. When disabled the human readable values will be omitted. This makes sense for responses being consumed only by machines. --[no-]pretty- If set to
truethe returned JSON will be "pretty-formatted". Only use this option for debugging only. --input-filestring- path to a JSON file to use as command input
--[no-]dry-run- validate all inputs and exit without performing any action (preview changes without applying them)
--[no-]json-
output as JSON