This is the reference documentation for Morio's Management API. It is auto-generated from this API's OpenAPI v3 specification.
List CA certificates
Returns the root and intermediate certificates of the Morio CA, along with the root certificate's fingerprint.
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
{- "root_fingerprint": "50a3270a0988610145659cfb190121d1fcfd50141b953a783f354d840ad3bf9e",
- "root_certificate": "-----BEGIN CERTIFICATE-----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\r\noUyCyR375Emn80zazBRiKvAey+gT1bPD\r\n-----END CERTIFICATE-----\r\n",
- "intermediate_certificate": "-----BEGIN CERTIFICATE-----\r\nMIIGfDCCBGSgAwIBAgIBATANBgkqhkiG9w0BAQsFADCBnzELMAkGA1UEBhMCQkUx\r\nETAPBgNVBAgTCEJydXNzZWxzMREwDwYDVQQHEwhCcnVzc2VsczEZMBcGA1UEChMQ\r\nRW5naW5lZXJpbmcgVGVhbTEkMCIGA1UECxMbTW9yaW8gU3RhbmRhbG9uZSBTd2Fy\r\nbSBUZXN0MSkwJwYDVQQDEyBNb3JpbyBSb290IENlcnRpZmljYXRlIEF1dGhvcml0\r\neTAeFw0yNDA3MjgxMzE4NDFaFw0yOTA3MjgxMzE4NDFaMIGnMQswCQYDVQQGEwJC\r\nRTERMA8GA1UECBMIQnJ1c3NlbHMxETAPBgNVBAcTCEJydXNzZWxzMRkwFwYDVQQK\r\nExBFbmdpbmVlcmluZyBUZWFtMSQwIgYDVQQLExtNb3JpbyBTdGFuZGFsb25lIFN3\r\nYXJtIFRlc3QxMTAvBgNVBAMTKE1vcmlvIEludGVybWVkaWF0ZSBDZXJ0aWZpY2F0\r\nZSBBdXRob3JpdHkwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDEbgzx\r\n0dF680J70HM+CwPDQM7owZf/nQnvHkxelrNOE1JE845kMbO+LC07WX8C1anizDJQ\r\npHiMzMWuCdziqUUSl19aAUfrP53ei3IvIC3R9mXusKLnrTEXauC7er1h2vsoz9F5\r\nmULW7Lsf/mdKu6MsXalJyDpWLBtZz3zznzoTd/rwKnFUnauy/rkTuwDqzRho1/89\r\n50sNdUgSQ14srXGxQmXyAeH9PZk3c40mLHmSYqJhP1H6O0t/snXbfO4s+5UDaTiF\r\n+3ANjeeJDUeDtXxg2hGiCPssrWeCGr331Jy4XU3nwaTGH7EmLep4IjE1+7qcOSl3\r\nkOWex7CmY991/PZSneHE0w4YAmudZTfHl7lA2RpVxFMkbIcbx7lMll/zfrvqax6W\r\nx7TIuqYoPwofr8hwxiKbxVCqW0UudxRrJXZLMlTavXIxVfEOmR7frfl/CmiyybwG\r\nzLqAsILof8azYWjqR+hwUKrj/UR05fiQfJmC8WGfGXWqM/YKUpIheG+FWs6jKHkm\r\nNcmANp+w6ucTbV++1vdhj8vLmjELFf9JRptSZxMQpUA2gVfF2Hbn+jyDQyhFSElk\r\n2K0KKQRHqMYRquRVZCHWZnaLyESh5bQGpt0q3+ZqlEfSM57h8eCmmd+ia1aVDeWU\r\nGlpe3mJPtNef9HBojkytvXqcQOOw0RDI6JBnuQIDAQABo4G4MIG1MAwGA1UdEwQF\r\nMAMBAf8wCwYDVR0PBAQDAgL0MDsGA1UdJQQ0MDIGCCsGAQUFBwMBBggrBgEFBQcD\r\nAgYIKwYBBQUHAwMGCCsGAQUFBwMEBggrBgEFBQcDCDARBglghkgBhvhCAQEEBAMC\r\nAPcwHQYDVR0OBBYEFEsCJ5RVHIcE/FvBFDTkvIvvFK81MCkGA1UdEQQiMCCCHnBv\r\nYy1tb3Jpby1ub2RlMS5jZXJ0LmV1cm9wYS5ldTANBgkqhkiG9w0BAQsFAAOCAgEA\r\nTN9kHQBILMqCQSpYINywlmnchGTsqzvisE9p3IzqDWNMuQybwAt6/3LetE1SomYc\r\nYmh2fS8MmAHs+xr7ZfldTSVBUMXj+R2p176d3AmToR4PQ2qFdLGT+JoMOk9qsMG6\r\nNyozmLKvT1TIAt2pwjGSfX0GLSy2RS+mUpxUHpaDKLozTk1YJZJnAzX9l6SJz+m/\r\n77XpmTxMTKCQY0WsKLtohlDAs9lrm9MAJir7XKbMyiHE0L4OiW1pgozxvPxeTBUz\r\ngEXz4laHvrbN/rRwzqdlZ1XFzgjuOT1Tfkn8fzbjqZVqs0muyTqsftkKUyi3rgY8\r\nH1RKqt4r+h86XSXTR3/M3Z7IZYQ9ts0qDhPyrya9S9V7ZPO7GWKcMIA2JhjAn5/0\r\nvcvrXFoE6bnXagxT6p+lUJqUycecpDgN4TFcRCTB/rvC7H6Qi7v7z3OU2kjYQp7n\r\nQjiAYmeXwoqB27hlBjKOpS3dgX34/HjhYJJ6JSZ5r89ZhSgQraIvNpf8HamrKtTz\r\nVsipAq4Ol2rkMwuiIRZGfE3eFppO4aWGs6nIwwrI00ttO241a8MVv95ruPFoULLS\r\nZJ3dD2kDgEZ3F9pDlJyty0T4PPNkwu35ysldWPXce9zy/7AFmxujMnd4bB+0tO0t\r\nDmghEeLnxtbFVX9qGQYM4a07Y7s7jFuIlXeZqMDxHgU=\r\n-----END CERTIFICATE-----\r\n"
}
Get public key
Returns Morio's internal public key. This can be used to validate Morio's JWTs
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
{- "pubkey": "-----BEGIN PUBLIC KEY-----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\n2zVgK4iWU+nnSlpFGcwAxVUCAwEAAQ==\n-----END PUBLIC KEY-----\n"
}
Get public key.pem
Returns Morio's internal public key as a PEM file. This can be used to validate Morio's JWTs
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
-----BEGIN PUBLIC KEY----- MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA2w8z3zdnU8oAWYD8UfQ9 Ar3xVlEo2PIC4ZNZ7AYsXitFJ8NNdHvXqO5VIC3R2LHIsdn9wPkaaI5sAEcGNzeL 2AD4QzDCWIIYWfLLS1MTVVd9hW1HzHZxzvng4WJV3vuULCvYh+9bcy0xoKzq9OzE jETDSFpsTEl3VGHE/J2XN/bh4I6qYvrze2ZAMtYfu1Xd7lk6tXooQO8WGaVdH/5/ R3HCoiFBTGJAa1VLlFp7Zuc2P4Gi7lbI1VAANCmN38olkyP2yrqPAtaFzAHZdmUZ P+1BkJ7OQ2Z0uNKrpMiZZaweuaFGnmf1N3YsAJNwNvVksKWJJMilpNZbWQsm2QQj U5i/MKSngXx7yyzATAxwH/JZrXYamNEdWFxFUdNaAleO3cSXQVxhqzcCb7JthlhG n1DVvuM2kPGJJr8iSylXpX2Sge1Z9dnnrWpK+7/+mVTgYH+dlqZEHf7NC8cw7D/M SN9phe5P6gCOppTqDNFi/3QsgdQ8w9kKhvD2d77I1pzTvjXqHxrFnZ/Je/8iOpa8 HnlRWso2II0Wn6BNOxNK5K/4TRFcOdVS+RbWaQ/+xuvX3/8GMeuOybwydqtIUXWs ropJOuQ/yET5BtYVnalr4V9BfKmALfcYenIrk9sWLe3f+FG34kGF1egaWy2c4HFV 2zVgK4iWU+nnSlpFGcwAxVUCAwEAAQ== -----END PUBLIC KEY-----
List downloads
Returns a list of files in the download folder that can be downloaded from the API
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
[- "/downloads/certs",
- "/downloads/certs/root.pem",
- "/downloads/certs/intermediate.pem",
- "/downloads/certs/db.pem",
- "/downloads/certs/console.pem",
- "/downloads/certs/broker.pem"
]
List identity providers
Returns information about the available identity providers (IDPs). Useful for frontend integration.
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
{- "idps": {
- "apikey": {
- "id": "apikey",
- "provider": "apikey",
- "label": "API Key",
- "about": false
}, - "mrt": {
- "id": "mrt",
- "provider": "mrt",
- "about": false
}, - "local": {
- "id": "local",
- "provider": "local",
- "label": "Morio Account",
- "about": false
}, - "ad": {
- "id": "ad",
- "provider": "ldap",
- "label": "Active Directory",
- "about": "Morio Tokyo branch on-prem Active Directory"
}
}, - "ui": {
- "visibility": {
- "mrt": "icon",
- "local": "icon",
- "apikey": "icon"
}, - "order": [
- "ad",
- "local",
- "apikey",
- "mrt"
]
}
}
List JWKS
Returns information to verify the JSON Web Tokens (JWT) were issued by this Morio deployment. Useful for integration with exteral services. See RFC 7517
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
{- "keys": [
- {
- "kty": "RSA",
- "kid": "YEKFMAkSJihz6zIBs6a-gQ9iEOxuljm_A3Xg6mkiAPY",
- "n": "yriNzCVnGQ56dyOVhoPn4J2xlq4_SW6YEoq2FAM1uXtY2FNg1nAtytdY7SKzyuSF1U5sOQ77RmACiXIX-tkuTTPl_kNZQ4udH-c2w01_So9uj9rjDSwvtilHOn4y-l9qYyqBM93jBnjWGFTBNpmDHO4ctVorI6zK1mE7ILDTEpz1lPiZUz22feLOSuCQfnGNJsoU5msSJCiOVtfi37yFQ-ZAQtcJGBe11xRkvjegQJv9UB67tnD3DkRt7FnNDWHJmIcPOyySHJ7CH_ajRZj6_S0BVdlTWNiarKGzTlRCpQCqVFaiu8g6H8ANSoWypIazoOA-iJ3n8VSgvxiVAX1vVzG_Z44Vd8JpEpOWeC36qfX2LNKg0KvUEgbdMt6NB4RUsXVgdIGT02h_RRVmTY5FZCcWtA6pqlJ9sd27f5t0IWAMLJLpUq6WjOVTidUxon7xVGLot26DP3S7KnVS1FHZFsUQn5uQ2kNbzWyr6gha3YbvYk1Ss6bRu9Zzv4mKXaXn-rASvuSHZClPo0k4wEfQ7kWRJgwNe9hbZRh_MGl4VbGhg0TbaPwqYucmffecjrhNEAPsjt5R7_Ukc4lg8y4miPn6QPsGBfNgiGfhdWLy_FXA-Nn2DJqsDJcieNJp0rOUDGRJSj64s8Y1dpOi14ZjErz3x9OZBHk1Nw1NAQ3Z96U",
- "e": "AQAB"
}
]
}
Get info on rate limits
Returns information on your current rate limits. The API is rate-limited per IP address, this endpoint lets you see how many requests you have made within the rate limiting window, and how long before it will reset.
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
{- "ip": "10.13.22.6",
- "hits": 6,
- "reset_time": "2024-09-12T09:37:49.723Z",
- "reset_seconds": 899
}
Get status
Returns information about how Morio is doing. Useful for monitoring.
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
{- "info": {
- "about": "Morio Management API",
- "name": "@morio/api",
- "production": false,
- "version": "0.2.0"
}, - "state": {
- "ephemeral": false,
- "uptime": 37,
- "start_time": 1722232994724,
- "reload_count": 1,
- "config_resolved": true,
- "settings_serial": 1722172709838
}, - "core": {
- "info": {
- "about": "Morio Core",
- "name": "@morio/core",
- "production": false,
- "version": "0.2.0"
}, - "status": {
- "cluster": {
- "code": 0,
- "color": "green",
- "time": 1722233017641,
- "updated": 1722233017641,
- "leader_serial": 1,
- "leading": true,
- "msg": "Everything is ok"
}, - "nodes": {
- "morio-node1.tokyo.morio.it": {
- "api": 0,
- "broker": 0,
- "db": 0,
- "ca": 0,
- "proxy": 0,
- "ui": 0,
- "console": 0
}
}
}, - "nodes": {
- "39b0b5fd-6648-41f8-b3b9-df96c5d11579": {
- "fqdn": "morio-node1.tokyo.morio.it",
- "hostname": "poc-morio-node1",
- "ip": "10.123.12.15",
- "serial": 1,
- "uuid": "39b0b5fd-6648-41f8-b3b9-df96c5d11579",
- "settings": 1722172709838
}
}, - "node": {
- "uptime": 46633,
- "cluster": "8602906f-5437-4cce-b150-7c3387da36fa",
- "node": "39b0b5fd-6648-41f8-b3b9-df96c5d11579",
- "node_serial": 1,
- "ephemeral": false,
- "reconfigure_count": 1,
- "config_resolved": true,
- "settings_serial": 1722172709838
}
}
}
API Healthcheck
Returns status code 204 if the API is up. No response body or data is returned. Useful for a quick healhcheck.
Authorizations:
Responses
Response samples
- 401
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Validate settings
Will validate settings so you can deploy them with confidence.
Authorizations:
Request Body schema: application/jsonrequired
The Morio settings you want to validate
object | |
object | |
connector | object |
object | |
object | |
object | |
object or string | |
object |
Responses
Request samples
- Payload
{- "name": "Morio Standalone Example",
- "broker_nodes": [
- "morio-node1.tokyo.morio.it"
], - "tokens": {
- "flags": {
- "HEADLESS_MORIO": false,
- "DISABLE_ROOT_TOKEN": false
}, - "secrets": {
- "AD_PASSWORD": "aa;S009)) _S asd0AS"
}
}, - "iam": {
- "providers": {
- "apikey": {
- "provider": "apikey",
- "id": "apikey",
- "label": "API Key"
}, - "mrt": { },
- "local": {
- "provider": "local",
- "id": "local",
- "label": "Morio Account"
}, - "ad": {
- "provider": "ldap",
- "id": "ad",
- "about": "Morio Tokyo branch on-prem Active Directory",
- "server": {
- "url": "ldaps://dc1.tokyo.morio.it",
- "bindDN": "CN=morio-ldap,OU=Users,DC=tokyo,DC=morio,DC=it",
- "bindCredentials": "{{{ AD_PASSWORD }}}",
- "searchBase": "OU=Users-EU,DC=tokyo,DC=morio,DC=it",
- "searchFilter": "(&(objectClass=user)(samaccountname={{username}}))"
}, - "username_field": "samaccountname",
- "label": "Active Directory",
- "rbac": {
- "user": {
- "attribute": "samaccountname",
- "regex": "."
}, - "root": {
- "attribute": "samaccountname",
- "regex": "^(?:joostdecock|sorchanidhubhghaill)$"
}
}, - "verify_certificate": true
}
}
}, - "ui": {
- "visibility": {
- "mrt": "icon",
- "local": "icon",
- "apikey": "icon"
}, - "order": [
- "ad",
- "local",
- "apikey",
- "mrt"
]
}
}
Response samples
- 200
- 400
- 401
- 429
- 500
{- "valid": true,
- "deployable": false,
- "errors": [ ],
- "warnings": [
- "Node 1 runs Morio, but is not in ephemeral mode, its settings would be overwritten"
], - "info": [
- "Settings passed schema validation",
- "Validating node 1: morio-node1.tokyo.morio.it",
- "Node 1 resolves to: 10.123.12.15",
- "Node 1 is reachable over HTTPS"
], - "validated_settings": {
- "name": "Morio Standalone Example",
- "broker_nodes": [
- "morio-node1.tokyo.morio.it"
], - "tokens": {
- "flags": {
- "HEADLESS_MORIO": false,
- "DISABLE_ROOT_TOKEN": false
}, - "secrets": {
- "AD_PASSWORD": "aa;S009)) _S asd0AS"
}
}, - "iam": {
- "providers": {
- "apikey": {
- "provider": "apikey",
- "id": "apikey",
- "label": "API Key"
}, - "mrt": { },
- "local": {
- "provider": "local",
- "id": "local",
- "label": "Morio Account"
}, - "ad": {
- "provider": "ldap",
- "id": "ad",
- "about": "Morio Tokyo branch on-prem Active Directory",
- "server": {
- "url": "ldaps://dc1.tokyo.morio.it",
- "bindDN": "CN=morio-ldap,OU=Users,DC=tokyo,DC=morio,DC=it",
- "bindCredentials": "{{{ AD_PASSWORD }}}",
- "searchBase": "OU=Users-EU,DC=tokyo,DC=morio,DC=it",
- "searchFilter": "(&(objectClass=user)(samaccountname={{username}}))"
}, - "username_field": "samaccountname",
- "label": "Active Directory",
- "rbac": {
- "user": {
- "attribute": "samaccountname",
- "regex": "."
}, - "root": {
- "attribute": "samaccountname",
- "regex": "^(?:joostdecock|sorchanidhubhghaill)$"
}
}, - "verify_certificate": true
}
}
}, - "ui": {
- "visibility": {
- "mrt": "icon",
- "local": "icon",
- "apikey": "icon"
}, - "order": [
- "ad",
- "local",
- "apikey",
- "mrt"
]
}
}
}
Validate preseed settings
Will validate preseed settings so you can deploy them with confidence.
Authorizations:
Request Body schema: application/jsonrequired
The Morio preseed settings you want to validate
url | string |
git | object |
object or object or object or string | |
(Array of objects or objects or objects or strings) or string | |
object |
Responses
Request samples
- Payload
{- "base": {
- "github": {
- "owner": "morio",
- "repo": "preseed",
- "file_path": "settings/standalone.yaml",
- "ref": "main",
- "token": "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"
}
}, - "overlays": [
- "settings/overlays/idp-ad.yaml",
- "settings/overlays/idp-apikey.yaml",
- "settings/overlays/idp-local.yaml",
- "settings/overlays/idp-mrt.yaml"
]
}
Response samples
- 200
- 400
- 401
- 429
- 500
{- "valid": true,
- "deployable": false,
- "errors": [ ],
- "warnings": [
- "Node 1 runs Morio, but is not in ephemeral mode, its settings would be overwritten"
], - "info": [
- "Settings passed schema validation",
- "Validating node 1: morio-node1.tokyo.morio.it",
- "Node 1 resolves to: 10.123.12.15",
- "Node 1 is reachable over HTTPS"
], - "validated_settings": {
- "name": "Morio Standalone Example",
- "broker_nodes": [
- "morio-node1.tokyo.morio.it"
], - "tokens": {
- "flags": {
- "HEADLESS_MORIO": false,
- "DISABLE_ROOT_TOKEN": false
}, - "secrets": {
- "AD_PASSWORD": "aa;S009)) _S asd0AS"
}
}, - "iam": {
- "providers": {
- "apikey": {
- "provider": "apikey",
- "id": "apikey",
- "label": "API Key"
}, - "mrt": { },
- "local": {
- "provider": "local",
- "id": "local",
- "label": "Morio Account"
}, - "ad": {
- "provider": "ldap",
- "id": "ad",
- "about": "Morio Tokyo branch on-prem Active Directory",
- "server": {
- "url": "ldaps://dc1.tokyo.morio.it",
- "bindDN": "CN=morio-ldap,OU=Users,DC=tokyo,DC=morio,DC=it",
- "bindCredentials": "{{{ AD_PASSWORD }}}",
- "searchBase": "OU=Users-EU,DC=tokyo,DC=morio,DC=it",
- "searchFilter": "(&(objectClass=user)(samaccountname={{username}}))"
}, - "username_field": "samaccountname",
- "label": "Active Directory",
- "rbac": {
- "user": {
- "attribute": "samaccountname",
- "regex": "."
}, - "root": {
- "attribute": "samaccountname",
- "regex": "^(?:joostdecock|sorchanidhubhghaill)$"
}
}, - "verify_certificate": true
}
}
}, - "ui": {
- "visibility": {
- "mrt": "icon",
- "local": "icon",
- "apikey": "icon"
}, - "order": [
- "ad",
- "local",
- "apikey",
- "mrt"
]
}
}
}
Set up Morio
This will handle the initial setup of Morio. Or rather, it will ask Morio Core to do so after validation.
This endpoint does not require authentication. However, it is only available in ephemeral Mode. In other words, once Morio is set up, this endpoint becomes unavailable.
Authorizations:
Request Body schema: application/jsonrequired
The Morio settings to use for the initial setup
object | |
object | |
connector | object |
object | |
object | |
object | |
object or string | |
object |
Responses
Request samples
- Payload
{- "name": "Morio Standalone Example",
- "broker_nodes": [
- "morio-node1.tokyo.morio.it"
], - "tokens": {
- "flags": {
- "HEADLESS_MORIO": false,
- "DISABLE_ROOT_TOKEN": false
}, - "secrets": {
- "AD_PASSWORD": "aa;S009)) _S asd0AS"
}
}, - "iam": {
- "providers": {
- "apikey": {
- "provider": "apikey",
- "id": "apikey",
- "label": "API Key"
}, - "mrt": { },
- "local": {
- "provider": "local",
- "id": "local",
- "label": "Morio Account"
}, - "ad": {
- "provider": "ldap",
- "id": "ad",
- "about": "Morio Tokyo branch on-prem Active Directory",
- "server": {
- "url": "ldaps://dc1.tokyo.morio.it",
- "bindDN": "CN=morio-ldap,OU=Users,DC=tokyo,DC=morio,DC=it",
- "bindCredentials": "{{{ AD_PASSWORD }}}",
- "searchBase": "OU=Users-EU,DC=tokyo,DC=morio,DC=it",
- "searchFilter": "(&(objectClass=user)(samaccountname={{username}}))"
}, - "username_field": "samaccountname",
- "label": "Active Directory",
- "rbac": {
- "user": {
- "attribute": "samaccountname",
- "regex": "."
}, - "root": {
- "attribute": "samaccountname",
- "regex": "^(?:joostdecock|sorchanidhubhghaill)$"
}
}, - "verify_certificate": true
}
}
}, - "ui": {
- "visibility": {
- "mrt": "icon",
- "local": "icon",
- "apikey": "icon"
}, - "order": [
- "ad",
- "local",
- "apikey",
- "mrt"
]
}
}
Response samples
- 200
- 400
- 401
- 409
- 429
- 500
{- "result": "success",
- "uuids": {
- "node": "40361cd8-a149-4675-bd46-11a2b48acd04",
- "cluster": "26e66c95-c342-49fc-8e3a-f5ca69b392ba"
}, - "root_token": {
- "about": "This is the Morio root token. You can use it to authenticate before any authentication providers have been set up. Store it in a safe space, as it will never be shown again.",
- "value": "mrt.7297ef89ed8c855ffc6786e0377bb7bf5e0137dcbc367494aebd39782747ab43"
}
}
Preseed Morio
This will handle the initial setup of Morio via preseeded settings. Or rather, it will ask Morio Core to do so after validation.
This endpoint does not require authentication. However, it is only available in ephemeral Mode. In other words, once Morio is set up, this endpoint becomes unavailable.
Authorizations:
Request Body schema: application/jsonrequired
The Morio preseed settings to use for the initial setup
url | string |
git | object |
object or object or object or string | |
(Array of objects or objects or objects or strings) or string | |
object |
Responses
Request samples
- Payload
{- "github": {
- "owner": "morio",
- "repo": "preseed",
- "file_path": "settings/standalone.yaml",
- "ref": "main",
- "token": "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"
}
}
Response samples
- 200
- 400
- 401
- 409
- 429
- 500
{- "result": "success",
- "uuids": {
- "node": "40361cd8-a149-4675-bd46-11a2b48acd04",
- "cluster": "26e66c95-c342-49fc-8e3a-f5ca69b392ba"
}, - "root_token": {
- "about": "This is the Morio root token. You can use it to authenticate before any authentication providers have been set up. Store it in a safe space, as it will never be shown again.",
- "value": "mrt.7297ef89ed8c855ffc6786e0377bb7bf5e0137dcbc367494aebd39782747ab43"
}
}
List local accounts
Returns the list of accounts. Needs at least the manager
role.
- When using the endpoint with the
manager
role, the list will include all accounts created by the current user. - When using the endpoint with a higher role (
operator
,engineer
, or evenroot
), the list will include all accounts.
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
[- {
- "id": "local.testaccount1722178139692",
- "about": "This account was created as part of a test",
- "status": "active",
- "role": "user",
- "created_by": "local.test_user",
- "created_at": "1722178140015",
- "updated_by": null,
- "updated_at": null,
- "last_login": null,
- "provider": "local",
- "username": "testaccount1722178139692"
}
]
Create local account
Creates a local Morio account. The account needs to be activated via the invite code/url.
Authorizations:
Request Body schema: application/jsonrequired
The Morio settings you want to validate
about | string [ 2 .. 255 ] characters A description or nmemonic note for the acount |
provider required | string [ 2 .. 255 ] characters The ID of the identity provider to use for this account |
role required | string Enum: "user" "manager" "operator" "engineer" "root" The requested role to assign after authentication. Must be one of: user, manager, operator, engineer, root. Although root can only be assigned by the MRT identity provider. |
username required | string [ 2 .. 255 ] characters The username of the account |
overwrite | boolean Whether to overwrite the account, if one has a sufficiently high role |
Responses
Request samples
- Payload
{- "username": "testAccount1722234021332",
- "about": "This account was created as part of a test",
- "provider": "local",
- "role": "user"
}
Response samples
- 200
- 400
- 401
- 409
- 429
- 500
{- "username": "testAccount1722068362387",
- "about": "This account was created as part of a test",
- "provider": "local",
- "role": "user",
- "invite": "e7d7b6427378f9ddde77775160ac91dda8eea6c5ef0491c8",
}
Activate local account
Activates an account based on its invite code.
Note that for local Morio accounts, the account will still need to activate MFA before it can be used. That is because MFA is manadatory for local Morio accounts.
So for a local Morio account, this endpoint will return the secret to setup MFA, as well as (an SVG of) the QR-code to do so.
Authorizations:
Request Body schema: application/jsonrequired
The invite code, as well as username and (identity) provider
invite required | string = 48 characters The account invite code |
provider required | string [ 2 .. 255 ] characters The ID of the identity provider to use for this account |
username required | string [ 2 .. 255 ] characters The username of the account |
Responses
Request samples
- Payload
{- "username": "testAccount1722234284869",
- "invite": "251bdac3a4ffadaef194cdc18b97be9a0f9951ce65a10ae1",
- "provider": "local"
}
Response samples
- 200
- 400
- 401
- 403
- 404
- 429
- 500
{- "secret": "AULGYK3RINCS62ZM",
- "otpauth": "otpauth://totp/Morio%2FMorio%20Standalone%20Swarm%20Test:testAccount1722180213478?secret=AULGYK3RINCS62ZM&period=30&digits=6&algorithm=SHA1&issuer=Morio%2FMorio%20Standalone%20Swarm%20Test",
- "qrcode": "<svg class=\"qrcode\" width=\"100%\" height=\"100%\" xmlns=\"http://www.w3.org/2000/svg\" viewBox=\"0 0 65 65\" shape-rendering=\"crispEdges\"><path fill=\"none\" d=\"M0 0h65v65H0z\"/><path stroke=\"currentColor\" d=\"M4 4.5h7m1 0h2m3 0h1m5 0h1m1 0h2m1 0h5m1 0h6m1 0h2m1 0h1m1 0h2m2 0h2m2 0h7M4 5.5h1m5 0h1m1 0h2m1 0h1m1 0h1m1 0h1m2 0h1m1 0h3m5 0h5m2 0h2m1 0h1m2 0h1m1 0h1m3 0h1m2 0h1m5 0h1M4 6.5h1m1 0h3m1 0h1m1 0h3m1 0h4m2 0h1m1 0h4m3 0h1m1 0h3m3 0h2m1 0h2m2 0h6m2 0h1m1 0h3m1 0h1M4 7.5h1m1 0h3m1 0h1m3 0h3m7 0h1m5 0h6m4 0h2m1 0h1m2 0h1m1 0h1m2 0h1m2 0h1m1 0h3m1 0h1M4 8.5h1m1 0h3m1 0h1m1 0h1m1 0h1m1 0h1m3 0h1m1 0h1m2 0h2m1 0h7m4 0h2m1 0h1m2 0h2m1 0h2m1 0h1m2 0h1m1 0h3m1 0h1M4 9.5h1m5 0h1m2 0h5m1 0h4m2 0h1m1 0h1m1 0h2m3 0h3m1 0h1m1 0h1m1 0h2m1 0h2m3 0h1m3 0h1m5 0h1M4 10.5h7m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h1m1 0h7M13 11.5h2m1 0h1m2 0h1m1 0h1m1 0h1m2 0h1m1 0h3m3 0h3m2 0h1m1 0h2m2 0h8M4 12.5h1m2 0h6m1 0h4m1 0h2m3 0h1m4 0h7m2 0h3m1 0h1m1 0h2m1 0h1m5 0h1m2 0h1m1 0h3M7 13.5h2m3 0h1m4 0h1m2 0h1m1 0h2m2 0h4m3 0h2m3 0h2m1 0h2m5 0h1m1 0h1m1 0h1m1 0h4m1 0h1M4 14.5h1m2 0h2m1 0h1m3 0h1m4 0h1m1 0h2m1 0h2m1 0h1m2 0h1m1 0h1m1 0h3m7 0h2m2 0h3m1 0h1m1 0h3m1 0h1m1 0h1M5 15.5h3m5 0h1m2 0h1m1 0h2m2 0h1m2 0h2m3 0h1m1 0h1m3 0h1m1 0h5m7 0h1m2 0h2m1 0h3m1 0h1M7 16.5h2m1 0h2m1 0h3m1 0h1m1 0h1m1 0h2m1 0h3m1 0h3m2 0h1m1 0h3m4 0h1m1 0h2m2 0h6m1 0h3m1 0h2M5 17.5h1m2 0h2m2 0h1m1 0h1m2 0h2m1 0h3m2 0h1m2 0h3m1 0h1m3 0h2m3 0h3m1 0h1m1 0h1m1 0h1m2 0h1m1 0h1m1 0h2m1 0h1M4 18.5h1m3 0h1m1 0h1m1 0h6m4 0h2m2 0h3m5 0h1m1 0h2m1 0h1m1 0h4m1 0h1m1 0h1m1 0h4m3 0h2M4 19.5h1m2 0h2m2 0h6m1 0h1m1 0h1m4 0h1m2 0h1m1 0h1m1 0h1m2 0h2m1 0h1m2 0h2m2 0h1m2 0h4m1 0h3m2 0h1m1 0h1M4 20.5h2m1 0h1m2 0h1m1 0h5m2 0h4m2 0h1m1 0h4m1 0h2m1 0h3m4 0h1m10 0h2m2 0h4M4 21.5h2m2 0h2m1 0h1m1 0h2m3 0h6m1 0h1m3 0h1m1 0h2m1 0h1m3 0h1m1 0h1m1 0h3m1 0h1m1 0h1m1 0h4m1 0h2m1 0h1M6 22.5h1m3 0h2m1 0h2m2 0h2m3 0h1m5 0h3m2 0h1m1 0h4m2 0h1m1 0h1m1 0h3m2 0h2m3 0h3m2 0h1M6 23.5h1m4 0h1m2 0h4m3 0h1m2 0h1m2 0h1m2 0h1m3 0h1m2 0h1m7 0h2m2 0h2m1 0h5m1 0h2M4 24.5h1m2 0h1m1 0h2m4 0h3m2 0h3m1 0h1m1 0h1m2 0h2m2 0h3m1 0h6m3 0h2m1 0h1m3 0h2m1 0h1m1 0h1M5 25.5h4m2 0h1m2 0h3m3 0h1m1 0h1m3 0h2m1 0h1m4 0h1m2 0h1m3 0h1m3 0h2m1 0h3m1 0h6m2 0h1M8 26.5h3m1 0h1m5 0h1m1 0h1m1 0h3m1 0h1m1 0h2m4 0h1m1 0h2m2 0h1m1 0h1m1 0h2m1 0h5m3 0h1M4 27.5h3m2 0h1m2 0h4m4 0h1m2 0h1m1 0h1m3 0h1m2 0h4m1 0h1m3 0h1m3 0h1m1 0h2m2 0h1m1 0h2m3 0h1m1 0h1M4 28.5h2m2 0h1m1 0h2m1 0h2m3 0h3m1 0h1m2 0h2m4 0h2m2 0h2m1 0h1m1 0h1m1 0h4m2 0h2m1 0h3m1 0h2M5 29.5h1m1 0h3m1 0h1m1 0h2m2 0h1m3 0h2m1 0h5m4 0h2m1 0h1m4 0h3m1 0h4m1 0h5m3 0h1M5 30.5h8m1 0h2m1 0h1m1 0h1m2 0h1m1 0h1m1 0h2m1 0h7m1 0h1m1 0h1m2 0h1m6 0h2m1 0h5m1 0h2M6 31.5h1m1 0h1m3 0h1m1 0h3m1 0h1m3 0h2m2 0h1m1 0h1m1 0h1m3 0h1m1 0h2m4 0h1m5 0h2m1 0h2m3 0h3m1 0h1M4 32.5h1m1 0h1m1 0h1m1 0h1m1 0h1m3 0h4m2 0h3m1 0h2m2 0h1m1 0h1m1 0h5m1 0h2m1 0h2m1 0h1m3 0h1m1 0h1m1 0h1m1 0h1m1 0h3M4 33.5h1m2 0h2m3 0h6m1 0h5m2 0h1m1 0h1m1 0h1m3 0h1m1 0h2m2 0h2m2 0h2m2 0h5m3 0h5M4 34.5h1m1 0h1m1 0h5m1 0h1m2 0h1m4 0h2m1 0h2m3 0h5m1 0h3m2 0h1m3 0h1m5 0h10M4 35.5h1m7 0h4m1 0h4m1 0h1m1 0h4m2 0h1m2 0h1m1 0h1m2 0h3m5 0h2m1 0h1m3 0h4m1 0h1m1 0h1M4 36.5h2m3 0h8m2 0h1m2 0h3m1 0h1m1 0h4m4 0h1m1 0h1m1 0h1m3 0h12M4 37.5h2m2 0h1m2 0h4m2 0h2m2 0h1m1 0h1m2 0h2m2 0h4m2 0h6m2 0h1m1 0h1m1 0h3m3 0h4m2 0h1M6 38.5h3m1 0h2m1 0h1m3 0h1m1 0h1m1 0h2m4 0h1m1 0h2m2 0h1m1 0h1m1 0h4m5 0h2m1 0h4m1 0h3m1 0h3M7 39.5h1m1 0h1m1 0h1m5 0h4m1 0h4m3 0h1m2 0h3m1 0h2m1 0h1m1 0h1m5 0h3m1 0h1m2 0h1m2 0h1M4 40.5h2m2 0h1m1 0h1m2 0h1m1 0h2m1 0h1m1 0h2m2 0h2m1 0h1m4 0h1m2 0h1m2 0h2m1 0h1m2 0h1m1 0h1m1 0h5m3 0h2m1 0h2M4 41.5h4m1 0h1m2 0h2m2 0h1m7 0h2m1 0h1m2 0h1m5 0h1m2 0h2m1 0h1m1 0h5m5 0h1m4 0h1M5 42.5h1m3 0h3m1 0h3m1 0h1m2 0h1m3 0h1m2 0h4m1 0h3m1 0h2m3 0h1m1 0h2m3 0h1m1 0h1m2 0h4m2 0h2M4 43.5h1m2 0h3m1 0h2m3 0h1m1 0h4m5 0h1m2 0h1m1 0h1m2 0h1m1 0h1m4 0h6m1 0h1m1 0h2m4 0h2m1 0h1M4 44.5h2m1 0h4m1 0h1m2 0h1m1 0h1m1 0h2m2 0h2m2 0h1m2 0h3m3 0h2m1 0h1m1 0h3m2 0h6m1 0h5m1 0h2M5 45.5h1m1 0h1m3 0h2m3 0h1m6 0h1m6 0h1m1 0h2m1 0h1m7 0h2m1 0h6m3 0h2m1 0h1m1 0h1M4 46.5h1m4 0h3m2 0h4m6 0h1m1 0h3m2 0h3m2 0h3m1 0h1m1 0h3m2 0h3m1 0h1m2 0h1m2 0h4M4 47.5h2m1 0h3m1 0h3m2 0h3m2 0h5m1 0h1m1 0h4m1 0h5m2 0h2m2 0h2m2 0h5m1 0h1m1 0h2m1 0h1M4 48.5h1m4 0h2m3 0h2m3 0h2m1 0h3m6 0h1m1 0h1m2 0h1m1 0h5m1 0h1m1 0h1m2 0h2m1 0h1m1 0h2m1 0h1m2 0h1M4 49.5h5m2 0h1m2 0h3m2 0h1m4 0h1m1 0h3m8 0h1m1 0h4m2 0h1m1 0h1m4 0h5m1 0h2M4 50.5h1m1 0h1m2 0h4m4 0h1m1 0h2m2 0h2m3 0h2m2 0h1m2 0h1m1 0h2m1 0h1m1 0h1m1 0h4m1 0h2m1 0h1m1 0h2m3 0h2M4 51.5h5m3 0h2m3 0h1m4 0h1m1 0h1m1 0h1m1 0h2m1 0h4m1 0h1m1 0h5m1 0h1m3 0h3m1 0h1m1 0h1m1 0h1m1 0h2M10 52.5h1m3 0h3m1 0h2m2 0h3m2 0h1m2 0h6m2 0h1m1 0h1m2 0h2m1 0h1m1 0h3m1 0h5m3 0h1M12 53.5h3m1 0h1m2 0h1m1 0h1m2 0h2m1 0h4m3 0h3m5 0h1m1 0h2m1 0h1m1 0h1m2 0h1m3 0h1m1 0h2M4 54.5h7m1 0h3m1 0h2m4 0h1m3 0h1m1 0h1m1 0h1m1 0h1m1 0h1m3 0h3m1 0h1m5 0h2m2 0h1m1 0h1m1 0h1m1 0h2M4 55.5h1m5 0h1m1 0h2m1 0h3m1 0h1m5 0h1m1 0h1m1 0h2m3 0h1m2 0h1m2 0h2m1 0h1m1 0h1m3 0h4m3 0h5M4 56.5h1m1 0h3m1 0h1m1 0h4m1 0h2m2 0h1m2 0h1m1 0h1m1 0h1m1 0h5m1 0h1m1 0h1m3 0h1m2 0h1m5 0h6m2 0h2M4 57.5h1m1 0h3m1 0h1m1 0h1m2 0h1m1 0h1m1 0h2m1 0h2m2 0h3m3 0h1m1 0h2m2 0h2m2 0h2m4 0h4m1 0h2m3 0h1M4 58.5h1m1 0h3m1 0h1m2 0h3m1 0h1m1 0h1m1 0h1m6 0h1m2 0h4m2 0h1m3 0h6m4 0h3m5 0h2M4 59.5h1m5 0h1m3 0h4m3 0h1m1 0h3m2 0h1m1 0h1m2 0h4m1 0h1m1 0h2m1 0h3m1 0h2m4 0h2m1 0h1m2 0h2M4 60.5h7m1 0h4m1 0h3m2 0h1m3 0h1m1 0h3m1 0h1m2 0h1m3 0h1m1 0h1m2 0h2m1 0h1m2 0h3\"/></svg>\n"
}
Activate local account MFA
Activates MFA on a local Morio account, and provides scratch codes as fallback.
Three scratch codes will be provided that can each be used once as a fallback for the TOTP token, in case the device generating the token is unavailable.
Authorizations:
Request Body schema: application/jsonrequired
The invite code, as well as username and (identity) provider
invite required | string = 48 characters The account invite code |
provider required | string [ 2 .. 255 ] characters The ID of the identity provider to use for this account |
token required | string [ 3 .. 12 ] characters The TOTP token (one-time password) |
password required | string [ 3 .. 1024 ] characters The account's password |
username required | string [ 2 .. 255 ] characters The username of the account |
Responses
Request samples
- Payload
{- "username": "testAccount1722234633560",
- "invite": "055319ca21a36ac7b7a008694bb48cf6b882242a5f78b97d",
- "provider": "local",
- "token": "171589",
- "password": "kAsflASD8900)()lmn#LE$Q0-"
}
Response samples
- 200
- 400
- 401
- 403
- 404
- 429
- 500
{- "scratch_codes": [
- "06858bad92373bfd4746b6128c5ab769f7b12a652101eeec1741e4dc7432fe99",
- "d21da1e5e7cf70b1044f11e06a39135fab248f7f4d849d964c81a7e9e72d498f",
- "7c68b780d1c77d17d292780acc44564e374262c58193daf867c6011cce4a9bab"
]
}
List API keys
Returns the list of API keys.
- When using the endpoint with the
user
role, the list will include all API keys created by the current user. - When using the endpoint with the
manager
role, the list will include all API keys belonging to accounts created by the current user. - When using the endpoint with a higher role (
operator
,engineer
, or evenroot
), the list will include all API keys.
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
[- {
- "id": "68b04077-e103-4b8e-9e5f-7b5daff57b96",
- "name": "testKey2024-07-28T16:07:30.612Z",
- "status": "active",
- "role": "user",
- "created_by": "local.test_user",
- "created_at": "2024-07-28T16:07:30.848Z",
- "updated_by": null,
- "updated_at": null,
- "last_login": null,
- "key": "68b04077-e103-4b8e-9e5f-7b5daff57b96"
}
]
Create API key
Creates a Morio API key. The role of the API key can not be higher than the role of the user creating the API key.
Authorizations:
Request Body schema: application/jsonrequired
The API key settings
name required | string >= 2 characters A name for the API key |
expires required | number <float> [ 1 .. 730 ] Number of days before the API key expires |
role required | string Enum: "user" "manager" "operator" "engineer" "root" The role to assign to the API key |
Responses
Request samples
- Payload
{ }
Response samples
- 200
- 400
- 401
- 403
- 429
- 500
{ }
Rotate API key
Updates an existing API key.
Authorizations:
path Parameters
id required | string <uuid> The API key ID (a UUID) |
Responses
Response samples
- 200
- 400
- 401
- 403
- 429
- 500
{- "id": "600d03a3-573b-4f64-b127-96f0157cb6b0",
- "name": "testKey2024-07-29T06:47:57.472Z",
- "status": "active",
- "role": "user",
- "created_by": "local.test_user",
- "created_at": "2024-07-29T06:47:57.679Z",
- "expires_at": "2024-07-30T06:47:57.679Z",
- "updated_by": "local.test_user",
- "updated_at": "2024-07-29T06:47:57.872Z",
- "secret": "90a28457c6bc7c5b5b40aa94730bf12b1f0bb726bfc015652147598ca781d3f7b61551716ffa8839cbad41e20ea76ffa",
- "last_login": null,
- "key": "600d03a3-573b-4f64-b127-96f0157cb6b0"
}
Enable API key
Updates an existing API key.
Authorizations:
path Parameters
id required | string <uuid> The API key ID (a UUID) |
Responses
Response samples
- 200
- 400
- 401
- 403
- 429
- 500
{- "id": "600d03a3-573b-4f64-b127-96f0157cb6b0",
- "name": "testKey2024-07-29T06:47:57.472Z",
- "status": "active",
- "role": "user",
- "created_by": "local.test_user",
- "created_at": "2024-07-29T06:47:57.679Z",
- "expires_at": "2024-07-30T06:47:57.679Z",
- "updated_by": "local.test_user",
- "updated_at": "2024-07-29T06:47:58.048Z",
- "last_login": "2024-07-29T06:47:57.985Z",
- "key": "600d03a3-573b-4f64-b127-96f0157cb6b0"
}
Disable API key
Updates an existing API key.
Authorizations:
path Parameters
id required | string <uuid> The API key ID (a UUID) |
Responses
Response samples
- 200
- 400
- 401
- 403
- 429
- 500
{- "id": "600d03a3-573b-4f64-b127-96f0157cb6b0",
- "name": "testKey2024-07-29T06:47:57.472Z",
- "status": "disabled",
- "role": "user",
- "created_by": "local.test_user",
- "created_at": "2024-07-29T06:47:57.679Z",
- "expires_at": "2024-07-30T06:47:57.679Z",
- "updated_by": "local.test_user",
- "updated_at": "2024-07-29T06:47:58.020Z",
- "last_login": "2024-07-29T06:47:57.985Z",
- "key": "600d03a3-573b-4f64-b127-96f0157cb6b0"
}
Delete API key
Removes a Morio API key.
Authorizations:
path Parameters
id required | string <uuid> The API key ID (a UUID) |
Responses
Response samples
- 400
- 401
- 403
- 429
- 500
{- "status": 400,
- "title": "This request violates the data schema",
- "detail": "The request data failed validation against the Morio data schema. This means the request is invalid."
}
List identity providers
Returns information about the available identity providers (IDPs). Useful for frontend integration.
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
{- "idps": {
- "apikey": {
- "id": "apikey",
- "provider": "apikey",
- "label": "API Key",
- "about": false
}, - "mrt": {
- "id": "mrt",
- "provider": "mrt",
- "about": false
}, - "local": {
- "id": "local",
- "provider": "local",
- "label": "Morio Account",
- "about": false
}, - "ad": {
- "id": "ad",
- "provider": "ldap",
- "label": "Active Directory",
- "about": "Morio Tokyo branch on-prem Active Directory"
}
}, - "ui": {
- "visibility": {
- "mrt": "icon",
- "local": "icon",
- "apikey": "icon"
}, - "order": [
- "ad",
- "local",
- "apikey",
- "mrt"
]
}
}
List JWKS
Returns information to verify the JSON Web Tokens (JWT) were issued by this Morio deployment. Useful for integration with exteral services. See RFC 7517
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
{- "keys": [
- {
- "kty": "RSA",
- "kid": "YEKFMAkSJihz6zIBs6a-gQ9iEOxuljm_A3Xg6mkiAPY",
- "n": "yriNzCVnGQ56dyOVhoPn4J2xlq4_SW6YEoq2FAM1uXtY2FNg1nAtytdY7SKzyuSF1U5sOQ77RmACiXIX-tkuTTPl_kNZQ4udH-c2w01_So9uj9rjDSwvtilHOn4y-l9qYyqBM93jBnjWGFTBNpmDHO4ctVorI6zK1mE7ILDTEpz1lPiZUz22feLOSuCQfnGNJsoU5msSJCiOVtfi37yFQ-ZAQtcJGBe11xRkvjegQJv9UB67tnD3DkRt7FnNDWHJmIcPOyySHJ7CH_ajRZj6_S0BVdlTWNiarKGzTlRCpQCqVFaiu8g6H8ANSoWypIazoOA-iJ3n8VSgvxiVAX1vVzG_Z44Vd8JpEpOWeC36qfX2LNKg0KvUEgbdMt6NB4RUsXVgdIGT02h_RRVmTY5FZCcWtA6pqlJ9sd27f5t0IWAMLJLpUq6WjOVTidUxon7xVGLot26DP3S7KnVS1FHZFsUQn5uQ2kNbzWyr6gha3YbvYk1Ss6bRu9Zzv4mKXaXn-rASvuSHZClPo0k4wEfQ7kWRJgwNe9hbZRh_MGl4VbGhg0TbaPwqYucmffecjrhNEAPsjt5R7_Ukc4lg8y4miPn6QPsGBfNgiGfhdWLy_FXA-Nn2DJqsDJcieNJp0rOUDGRJSj64s8Y1dpOi14ZjErz3x9OZBHk1Nw1NAQ3Z96U",
- "e": "AQAB"
}
]
}
Authenticate
Generates a JSON Web Token that can be used for subsequential API access.
Authorizations:
Request Body schema: application/jsonrequired
The Morio settings you want to validate
provider required | string [ 2 .. 255 ] characters Value: "apikey" ID of the Morio identity provider. Must always be 'apikey' for authentication with an API key |
required | object Holds data that is specific to the identity provider |
Responses
Request samples
- Payload
{- "provider": "apikey",
- "data": {
- "api_key": "724098e3-930a-4c93-9fac-9a55decfb735",
- "api_key_secret": "c0502771315e8239462adcccab7b6867e6d2742e3675c7aacac369f43a8f27b836292009b6badb7bc7a293b10e3275d2"
}
}
Response samples
- 200
- 400
- 401
- 403
- 409
- 429
- 500
{- "jwt": "eyJhbGciOiJSUzI1NiIsInR5cCI6IkpXVCJ9.eyJ1c2VyIjoiYXBpa2V5LjVlNTg1OGRiLWVlZjItNGM1YS05OGFhLTFlZDczM2FjODhhZSIsInJvbGUiOiJ1c2VyIiwicHJvdmlkZXIiOiJhcGlrZXkiLCJub2RlIjoiMzliMGI1ZmQtNjY0OC00MWY4LWIzYjktZGY5NmM1ZDExNTc5IiwiY2x1c3RlciI6Ijg2MDI5MDZmLTU0MzctNGNjZS1iMTUwLTdjMzM4N2RhMzZmYSIsImlhdCI6MTcyMjIzNjk5NiwibmJmIjoxNzIyMjM2OTk2LCJleHAiOjE3MjIyNTEzOTYsImF1ZCI6Im1vcmlvIiwiaXNzIjoibW9yaW8iLCJzdWIiOiJtb3JpbyJ9.LLx3wjEvAi4FdggXrkxdNTps3G50r4vhBcQF2FPEaJz9sYCxlewFKarPpmWvBu5JbkjpiZ7Nzv8rFGtNQBGt96Y4eZkPuqQ4nr6DaMp7UgoDcLqsV-2jlmLStHsHk3Bbd2Sm1eyMQvsdBeebd2fz4EGgziYd2uW4rvSGHSeTAGOymoWXilAI5nrOpiWczcIVnIfyhgdtSNwFc7MowiBGJGv0xELJQrWST3QZx_G6VNLYwJkPXaBna2dfC2UQ5nsr4RVRjaGzIVfmWfnHp7fZo-xjV_-QciXZUJcROoWjCdroDt_BDjZdWe8j8-VsyCyXAJ9cnsntFgknFRH2CYZb5jYlH2_gBSk-PIYSsTbAOjmPK0AxiUHJnRonMgP5Fdc1dF_GowAdlsBxyKffSN3z6tZbH3DvELmtT27O8tnZYnEKAFgAod4f_fXphiIcssEt-kAbhs7HsJp4rDI5l3Ur-HkxvjOuzPeNmishqjgqWHwFwH4fU34Hkdk9Fp7KIWRXbT_sV2bzuj7GwVlndnCGsCXU99vwwVBMTh-Yw61FxDcC0tHbHp72A9tAKtUfBaR8L0gbnnRbik5Z_dnN6kx_rgVA5D7rNCfj5j4vn4cyeCklywH51ApQtTr_EMddOJTxulOnktSbCwpvioPY5hjgQMHsH8vbh4__ja2aIXt89lc",
- "data": {
- "user": "apikey.5e5858db-eef2-4c5a-98aa-1ed733ac88ae",
- "role": "user",
- "provider": "apikey"
}
}
Renew JWT
This will return a new JSON Web Token that can replace the current token. This will only work if the current token is not expired yet.
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
{- "jwt": "eyJhbGciOiJSUzI1NiIsInR5cCI6IkpXVCJ9.eyJ1c2VyIjoibG9jYWwudGVzdEFjY291bnQxNzIyMTg2NzE0OTU0Iiwicm9sZSI6InVzZXIiLCJhdmFpbGFibGVfcm9sZXMiOltdLCJwcm92aWRlciI6ImxvY2FsIiwiaWF0IjoxNzIyMTg2NzE2LCJuYmYiOjE3MjIxODY3MTYsImV4cCI6MTcyMjIwMTExNiwiYXVkIjoibW9yaW8iLCJpc3MiOiJtb3JpbyIsInN1YiI6Im1vcmlvIn0.CR28Y2xIBtDPOGZSpfSnee7qkRBBG470g4BgcpknJee-VEePvJuorS0NZC43Ta1-4Vx2684K7RgPZNsgW-SAN5yF8PdFe5-y9XtgEn3N3ZmXUCogJoRBQxjGC4UaK6Nrse4dJcqpnxhvUv1yPBcTbS0ycPvMynUd0szkG92u6jyPoDuLFErmDlEgCDlDsPPig81N9zg3Bb0fP44Acc0RpBGybgijYBbPsVZBRSolAr6bBtwuoqcD3Q2pMrkovKduZ1Uob1Cgu8sdmB9DwWETKflEzkcafR96Upej7t1OIiM4AdlznURJvOo2CKffK4GNOsdltQysDF3_aEmRjIY9qJxygQ_sHmPf3-t3MuRvd8zcr9lupN4QRvXCjyUMSg_i25Zq-psnP_aNb0rf6qNCBigNPdsR6QR0V_SotKPNFV9OpkuC44f39-h0IV3ZTYuPoy0WVIRLCQCkTA_1nRnXAOXTjc7wRlLFJ00olYSOQudauuP_JJ8Xpfy_2up_24Mqn__x4ulbPjQpjjirNtEgHJwpzKEES-2E0FFsJEs5V9w-LOtrc7Xyn7HQ2hyuWYHvnTePa2qxpmcowiFC3jdkE1sxF8HU5v46a5xV6no7QAPN7E5wzVj5pE7zSWRRU4m06NjYgVARqa755XrpY-TvYifk9XDboS1ZHYSM0oZJ-jI"
}
Who am I?
This will return info about the currently authenticated account
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
{- "value": {
- "user": "apikey.724098e3-930a-4c93-9fac-9a55decfb735",
- "role": "user",
- "provider": "apikey",
- "node": "39b0b5fd-6648-41f8-b3b9-df96c5d11579",
- "cluster": "8602906f-5437-4cce-b150-7c3387da36fa",
- "iat": 1722187044,
- "nbf": 1722187044,
- "exp": 1722201444,
- "aud": "morio",
- "iss": "morio",
- "sub": "morio"
}
}
Build .deb package
This will trigger the build of a .deb client package.
Note that this will start an ephemeral container to start the build. This API endpoint will not wait for the build to complete before retuning.
Authorizations:
Request Body schema: application/jsonrequired
The configuration for building the .deb
client package
Package required | string |
Source required | string |
Section required | string Value: "utils" |
Priority required | string Value: "required,important,standard,optional,extra" |
Architecture required | string |
Essential required | string Value: "no" |
Depends required | Array of any |
Installed-Size required | number <float> |
Maintainer required | string |
Changed-By required | string |
Uploaders required | Array of any |
Homepage required | string |
Description required | string |
DetailedDescription required | string |
Vcs-Git required | string |
Version required | string |
Revision required | number <float> |
Responses
Request samples
- Payload
{- "Package": "morio-client",
- "Source": "morio-client",
- "Section": "utils",
- "Priority": "optional",
- "Architecture": "amd64",
- "Essential": "no",
- "Depends": [
- [
- "auditbeat",
- ">= 8.12"
], - [
- "filebeat",
- ">= 8.12"
], - [
- "metricbeat",
- ">= 8.12"
]
], - "Installed-Size": 5000,
- "Maintainer": "CERT-EU <services@cert.europa.eu>",
- "Changed-By": "Joost De Cock <joost.decock@cert.europa.eu>",
- "Uploaders": [
- "Joost De Cock <joost.decock@cert.europa.eu>"
], - "Description": "The Morio client collects and ships observability data to a Morio instance.",
- "DetailedDescription": "Deploy this Morio client (based on Elastic Beats) on your endpoints,\nand collect their data on one or more centralized Morio instances\nfor analysis, further processing, downstream routing & filtering,\nor event-driven automation.",
- "Vcs-Git": "https://github.com/certeu/morio -b main [clients/linux]",
- "Version": "0.2.0",
- "Revision": 1
}
Response samples
- 200
- 400
- 401
- 429
- 500
{- "result": "ok",
- "status": "building",
- "settings": {
- "Package": "morio-client",
- "Source": "morio-client",
- "Section": "utils",
- "Priority": "optional",
- "Architecture": "amd64",
- "Essential": "no",
- "Installed-Size": 5000,
- "Maintainer": "CERT-EU <services@cert.europa.eu>",
- "Changed-By": "Joost De Cock <joost.decock@cert.europa.eu>",
- "Description": "The Morio client collects and ships observability data to a Morio instance.\n Deploy this Morio client (based on Elastic Beats) on your endpoints,\n and collect their data on one or more centralized Morio instances\n for analysis, further processing, downstream routing & filtering,\n or event-driven automation.",
- "Vcs-Git": "https://github.com/certeu/morio -b main [clients/linux]",
- "Version": "0.2.0-1"
}
}
Get .deb package defaults
This will return the default values to create a new .deb client package.
Note that configuration of a .deb
package needs to be correct or the package will not function.
You can adapt these defaults (that's why we provide them), but should consult the Debian documnentation on packaging.
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
{- "Package": "morio-client",
- "Source": "morio-client",
- "Section": "utils",
- "Priority": "optional",
- "Architecture": "amd64",
- "Essential": "no",
- "Depends": [
- [
- "auditbeat",
- ">= 8.12"
], - [
- "filebeat",
- ">= 8.12"
], - [
- "metricbeat",
- ">= 8.12"
]
], - "Installed-Size": 5000,
- "Maintainer": "CERT-EU <services@cert.europa.eu>",
- "Changed-By": "Joost De Cock <joost.decock@cert.europa.eu>",
- "Uploaders": [
- "Joost De Cock <joost.decock@cert.europa.eu>"
], - "Description": "The Morio client collects and ships observability data to a Morio instance.",
- "DetailedDescription": "Deploy this Morio client (based on Elastic Beats) on your endpoints,\nand collect their data on one or more centralized Morio instances\nfor analysis, further processing, downstream routing & filtering,\nor event-driven automation.",
- "Vcs-Git": "https://github.com/certeu/morio -b main [clients/linux]",
- "Version": "0.2.0",
- "Revision": 1
}
List CA certificates
Returns the root and intermediate certificates of the Morio CA, along with the root certificate's fingerprint.
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
{- "root_fingerprint": "50a3270a0988610145659cfb190121d1fcfd50141b953a783f354d840ad3bf9e",
- "root_certificate": "-----BEGIN CERTIFICATE-----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\r\noUyCyR375Emn80zazBRiKvAey+gT1bPD\r\n-----END CERTIFICATE-----\r\n",
- "intermediate_certificate": "-----BEGIN CERTIFICATE-----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\r\nDmghEeLnxtbFVX9qGQYM4a07Y7s7jFuIlXeZqMDxHgU=\r\n-----END CERTIFICATE-----\r\n"
}
Get public key
Returns Morio's internal public key. This can be used to validate Morio's JWTs
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
{- "pubkey": "-----BEGIN PUBLIC KEY-----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\n2zVgK4iWU+nnSlpFGcwAxVUCAwEAAQ==\n-----END PUBLIC KEY-----\n"
}
Get public key.pem
Returns Morio's internal public key as a PEM file. This can be used to validate Morio's JWTs
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
- 503
-----BEGIN PUBLIC KEY----- MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA2w8z3zdnU8oAWYD8UfQ9 Ar3xVlEo2PIC4ZNZ7AYsXitFJ8NNdHvXqO5VIC3R2LHIsdn9wPkaaI5sAEcGNzeL 2AD4QzDCWIIYWfLLS1MTVVd9hW1HzHZxzvng4WJV3vuULCvYh+9bcy0xoKzq9OzE jETDSFpsTEl3VGHE/J2XN/bh4I6qYvrze2ZAMtYfu1Xd7lk6tXooQO8WGaVdH/5/ R3HCoiFBTGJAa1VLlFp7Zuc2P4Gi7lbI1VAANCmN38olkyP2yrqPAtaFzAHZdmUZ P+1BkJ7OQ2Z0uNKrpMiZZaweuaFGnmf1N3YsAJNwNvVksKWJJMilpNZbWQsm2QQj U5i/MKSngXx7yyzATAxwH/JZrXYamNEdWFxFUdNaAleO3cSXQVxhqzcCb7JthlhG n1DVvuM2kPGJJr8iSylXpX2Sge1Z9dnnrWpK+7/+mVTgYH+dlqZEHf7NC8cw7D/M SN9phe5P6gCOppTqDNFi/3QsgdQ8w9kKhvD2d77I1pzTvjXqHxrFnZ/Je/8iOpa8 HnlRWso2II0Wn6BNOxNK5K/4TRFcOdVS+RbWaQ/+xuvX3/8GMeuOybwydqtIUXWs ropJOuQ/yET5BtYVnalr4V9BfKmALfcYenIrk9sWLe3f+FG34kGF1egaWy2c4HFV 2zVgK4iWU+nnSlpFGcwAxVUCAwEAAQ== -----END PUBLIC KEY-----
Generate X.509 certificate
Generates an X.509 certificate, issued by Morio's internal Certificate Authority
Authorizations:
Request Body schema: application/jsonrequired
The Morio settings you want to validate
object | |||||||||||||||
|
Responses
Request samples
- Payload
{- "certificate": {
- "cn": "A Morio Certificate",
- "c": "BE",
- "st": "Brussels",
- "l": "Brussels",
- "o": "CertsRus",
- "ou": "NotThatCrypto",
- "san": [
- "morio-name1.brussels.morio.it",
- "morio-name2.brussels.morio.it",
- "morio-name3.brussels.morio.it"
]
}
}
Response samples
- 200
- 400
- 401
- 429
- 500
{- "certificate": {
- "crt": "-----BEGIN CERTIFICATE-----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\nQ0qAthZjtW6wcj7ohuhq49szIug44A==\n-----END CERTIFICATE-----\n",
- "ca": "-----BEGIN CERTIFICATE-----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\n-----END CERTIFICATE-----\n",
- "certChain": [
- "-----BEGIN CERTIFICATE-----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\nQ0qAthZjtW6wcj7ohuhq49szIug44A==\n-----END CERTIFICATE-----\n",
- "-----BEGIN CERTIFICATE-----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\n-----END CERTIFICATE-----\n"
], - "tlsOptions": {
- "cipherSuites": [
- "TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256",
- "TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256"
], - "minVersion": 1.2,
- "maxVersion": 1.3,
- "renegotiation": false
}
}, - "key": "-----BEGIN RSA PRIVATE KEY-----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\r\nCY9RafOlspqXqxQIEtz7rSS7Ezn46G158LvXGI+/1qHPxlejU/7uswc=\r\n-----END RSA PRIVATE KEY-----\r\n"
}
Decrypt data
Decrypts data with Morio's internal key pair
Authorizations:
Request Body schema: application/jsonrequired
The data you want to decrypt
iv required | string |
ct required | string |
Responses
Request samples
- Payload
{- "iv": "f098ed647cae1e2ddfc53240c786c3ab",
- "ct": "43a24de68ca4e8625692e3b3dc8e586d5e146531d49a70c727bac838d57bcda0"
}
Response samples
- 200
- 400
- 401
- 429
- 500
{- "data": "This is secret"
}
Encrypt data
Encrypts data with Morio's internal key pair
Authorizations:
Request Body schema: application/jsonrequired
The data you want to encrypt
data required | string |
Responses
Request samples
- Payload
{- "data": "This is secret"
}
Response samples
- 200
- 400
- 401
- 429
- 500
{- "iv": "f098ed647cae1e2ddfc53240c786c3ab",
- "ct": "43a24de68ca4e8625692e3b3dc8e586d5e146531d49a70c727bac838d57bcda0"
}
List containers
This is a proxy endpoint for the Docker API on the host system that returns list of all containers available on the host system.
To only get the running containers, use the /docker/containers
endpoint instead.
Authorizations:
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
List running containers
This is a proxy endpoint for the Docker API on the host system that returns the list of containers currently running on the hoste sytem.
To get all containers, use the /docker/allcontainers
endpoint instead.
Authorizations:
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Get storage metrics
This is a proxy endpoint for the Docker API on the host system that returns information on the used and available storage on the host sytem.
This endpoint is named after the the df
command on Linux.
Authorizations:
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
List images
This is a proxy endpoint for the Docker API on the host system that returns the list of Docker images available on the host system.
Authorizations:
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Get Docker info
This is a proxy endpoint for the Docker API on the host system that returns general information about the Docker daemon on the host system.
Authorizations:
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
List networks
This is a proxy endpoint for the Docker API on the host system that returns a list of Docker networks on the host system.
Authorizations:
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Get Docker version
This is a proxy endpoint for the Docker API on the host system that returns information on the version of Docker that is running on the host system.
Authorizations:
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Inspect container
This is a proxy endpoint for the Docker API on the host system that returns information on the container with the ID passed as a parameter in the URL.
This endpoint is equivalent to running the inspect
command on a container in the Docker CLI.
Note that Docker accepts an ID or (unambigious) name as input.
Authorizations:
path Parameters
id required | string The ID (or name) of the relevant docker object |
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Get logs
This is a proxy endpoint for the Docker API on the host system that returns logs from the container with the ID passed as a parameter in the URL.
This endpoint is equivalent to running the logs
command on a container in the Docker CLI.
Note that Docker accepts an ID or (unambigious) name as input.
Authorizations:
path Parameters
id required | string The ID (or name) of the relevant docker object |
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Get usage stats
This is a proxy endpoint for the Docker API on the host system that returns stats based on resource usage from the container with the ID passed as a parameter in the URL.
These stats come from a container'se inspect
command in the Docker CLI.
Note that Docker accepts an ID or (unambigious) name as input.
Authorizations:
path Parameters
id required | string The ID (or name) of the relevant docker object |
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Inspect image
This is a proxy endpoint for the Docker API on the host system that returns information on the image with the ID passed as a parameter in the URL.
This endpoint is equivalent to running the inspect
command on an image in the Docker CLI.
Note that Docker accepts an ID or (unambigious) name as input.
Authorizations:
path Parameters
id required | string The ID (or name) of the relevant docker object |
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Inspect network
This is a proxy endpoint for the Docker API on the host system that returns information on the network with the ID passed as a parameter in the URL.
This endpoint is equivalent to running the inspect
command on a network in the Docker CLI.
Note that Docker accepts an ID or (unambigious) name as input.
Authorizations:
path Parameters
id required | string The ID (or name) of the relevant docker object |
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Kill container
This changes, or attempts to change, the container state by issuing a kill
command.
Authorizations:
path Parameters
id required | string The ID (or name) of the relevant docker object |
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Pause container
This changes, or attempts to change, the container state by issuing a pause
command.
Authorizations:
path Parameters
id required | string The ID (or name) of the relevant docker object |
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Restart container
This changes, or attempts to change, the container state by issuing a restart
command.
Authorizations:
path Parameters
id required | string The ID (or name) of the relevant docker object |
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Start container
This changes, or attempts to change, the container state by issuing a start
command.
Authorizations:
path Parameters
id required | string The ID (or name) of the relevant docker object |
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Stop container
This changes, or attempts to change, the container state by issuing a stop
command.
Authorizations:
path Parameters
id required | string The ID (or name) of the relevant docker object |
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Unpause container
This changes, or attempts to change, the container state by issuing a unpause
command.
Authorizations:
path Parameters
id required | string The ID (or name) of the relevant docker object |
Responses
Response samples
- 401
- 409
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Export key data
Exports Morio's cryptographic key data.
This endpoint is only accessible to the root user.
Authorizations:
Responses
Response samples
- 200
- 400
- 401
- 429
- 500
{- "keys": {
- "data": "{\"iv\":\"51c5f343bf74a26d483f9da100969ae6\",\"ct\":\"\"}",
- "key": "-----BEGIN ENCRYPTED PRIVATE KEY-----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\nso/l+UzAkIDPTzRHzuSJUpu92cMtTLxLqPgpPOStWTJI\n-----END ENCRYPTED PRIVATE KEY-----\n",
- "seal": {
- "hash": "655806c8f1a6dd94f3f7d42cf82520df9e39a5f7a140bc45e3c453552479264fc98b2d3aaa6b22246d7fcf23fea98a71eaadcaa82630bc30647d127c009817c5",
- "salt": "6db1932f0babfdb5e91a3737ca83647b556575dbb9506e18325a7c5dd989037b"
}
}
}
Validate settings
Will validate settings so you can deploy them with confidence.
Authorizations:
Request Body schema: application/jsonrequired
The Morio settings you want to validate
object | |
object | |
connector | object |
object | |
object | |
object | |
object or string | |
object |
Responses
Request samples
- Payload
{- "name": "Morio Standalone Example",
- "broker_nodes": [
- "morio-node1.tokyo.morio.it"
], - "tokens": {
- "flags": {
- "HEADLESS_MORIO": false,
- "DISABLE_ROOT_TOKEN": false
}, - "secrets": {
- "AD_PASSWORD": "aa;S009)) _S asd0AS"
}
}, - "iam": {
- "providers": {
- "apikey": {
- "provider": "apikey",
- "id": "apikey",
- "label": "API Key"
}, - "mrt": { },
- "local": {
- "provider": "local",
- "id": "local",
- "label": "Morio Account"
}, - "ad": {
- "provider": "ldap",
- "id": "ad",
- "about": "Morio Tokyo branch on-prem Active Directory",
- "server": {
- "url": "ldaps://dc1.tokyo.morio.it",
- "bindDN": "CN=morio-ldap,OU=Users,DC=tokyo,DC=morio,DC=it",
- "bindCredentials": "{{{ AD_PASSWORD }}}",
- "searchBase": "OU=Users-EU,DC=tokyo,DC=morio,DC=it",
- "searchFilter": "(&(objectClass=user)(samaccountname={{username}}))"
}, - "username_field": "samaccountname",
- "label": "Active Directory",
- "rbac": {
- "user": {
- "attribute": "samaccountname",
- "regex": "."
}, - "root": {
- "attribute": "samaccountname",
- "regex": "^(?:joostdecock|sorchanidhubhghaill)$"
}
}, - "verify_certificate": true
}
}
}, - "ui": {
- "visibility": {
- "mrt": "icon",
- "local": "icon",
- "apikey": "icon"
}, - "order": [
- "ad",
- "local",
- "apikey",
- "mrt"
]
}
}
Response samples
- 200
- 400
- 401
- 429
- 500
{- "valid": true,
- "deployable": false,
- "errors": [ ],
- "warnings": [
- "Node 1 runs Morio, but is not in ephemeral mode, its settings would be overwritten"
], - "info": [
- "Settings passed schema validation",
- "Validating node 1: morio-node1.tokyo.morio.it",
- "Node 1 resolves to: 10.123.12.15",
- "Node 1 is reachable over HTTPS"
], - "validated_settings": {
- "name": "Morio Standalone Example",
- "broker_nodes": [
- "morio-node1.tokyo.morio.it"
], - "tokens": {
- "flags": {
- "HEADLESS_MORIO": false,
- "DISABLE_ROOT_TOKEN": false
}, - "secrets": {
- "AD_PASSWORD": "aa;S009)) _S asd0AS"
}
}, - "iam": {
- "providers": {
- "apikey": {
- "provider": "apikey",
- "id": "apikey",
- "label": "API Key"
}, - "mrt": { },
- "local": {
- "provider": "local",
- "id": "local",
- "label": "Morio Account"
}, - "ad": {
- "provider": "ldap",
- "id": "ad",
- "about": "Morio Tokyo branch on-prem Active Directory",
- "server": {
- "url": "ldaps://dc1.tokyo.morio.it",
- "bindDN": "CN=morio-ldap,OU=Users,DC=tokyo,DC=morio,DC=it",
- "bindCredentials": "{{{ AD_PASSWORD }}}",
- "searchBase": "OU=Users-EU,DC=tokyo,DC=morio,DC=it",
- "searchFilter": "(&(objectClass=user)(samaccountname={{username}}))"
}, - "username_field": "samaccountname",
- "label": "Active Directory",
- "rbac": {
- "user": {
- "attribute": "samaccountname",
- "regex": "."
}, - "root": {
- "attribute": "samaccountname",
- "regex": "^(?:joostdecock|sorchanidhubhghaill)$"
}
}, - "verify_certificate": true
}
}
}, - "ui": {
- "visibility": {
- "mrt": "icon",
- "local": "icon",
- "apikey": "icon"
}, - "order": [
- "ad",
- "local",
- "apikey",
- "mrt"
]
}
}
}
Validate preseed settings
Will validate preseed settings so you can deploy them with confidence.
Authorizations:
Request Body schema: application/jsonrequired
The Morio preseed settings you want to validate
url | string |
git | object |
object or object or object or string | |
(Array of objects or objects or objects or strings) or string | |
object |
Responses
Request samples
- Payload
{- "base": {
- "github": {
- "owner": "morio",
- "repo": "preseed",
- "file_path": "settings/standalone.yaml",
- "ref": "main",
- "token": "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"
}
}, - "overlays": [
- "settings/overlays/idp-ad.yaml",
- "settings/overlays/idp-apikey.yaml",
- "settings/overlays/idp-local.yaml",
- "settings/overlays/idp-mrt.yaml"
]
}
Response samples
- 200
- 400
- 401
- 429
- 500
{- "valid": true,
- "deployable": false,
- "errors": [ ],
- "warnings": [
- "Node 1 runs Morio, but is not in ephemeral mode, its settings would be overwritten"
], - "info": [
- "Settings passed schema validation",
- "Validating node 1: morio-node1.tokyo.morio.it",
- "Node 1 resolves to: 10.123.12.15",
- "Node 1 is reachable over HTTPS"
], - "validated_settings": {
- "name": "Morio Standalone Example",
- "broker_nodes": [
- "morio-node1.tokyo.morio.it"
], - "tokens": {
- "flags": {
- "HEADLESS_MORIO": false,
- "DISABLE_ROOT_TOKEN": false
}, - "secrets": {
- "AD_PASSWORD": "aa;S009)) _S asd0AS"
}
}, - "iam": {
- "providers": {
- "apikey": {
- "provider": "apikey",
- "id": "apikey",
- "label": "API Key"
}, - "mrt": { },
- "local": {
- "provider": "local",
- "id": "local",
- "label": "Morio Account"
}, - "ad": {
- "provider": "ldap",
- "id": "ad",
- "about": "Morio Tokyo branch on-prem Active Directory",
- "server": {
- "url": "ldaps://dc1.tokyo.morio.it",
- "bindDN": "CN=morio-ldap,OU=Users,DC=tokyo,DC=morio,DC=it",
- "bindCredentials": "{{{ AD_PASSWORD }}}",
- "searchBase": "OU=Users-EU,DC=tokyo,DC=morio,DC=it",
- "searchFilter": "(&(objectClass=user)(samaccountname={{username}}))"
}, - "username_field": "samaccountname",
- "label": "Active Directory",
- "rbac": {
- "user": {
- "attribute": "samaccountname",
- "regex": "."
}, - "root": {
- "attribute": "samaccountname",
- "regex": "^(?:joostdecock|sorchanidhubhghaill)$"
}
}, - "verify_certificate": true
}
}
}, - "ui": {
- "visibility": {
- "mrt": "icon",
- "local": "icon",
- "apikey": "icon"
}, - "order": [
- "ad",
- "local",
- "apikey",
- "mrt"
]
}
}
}
Set up Morio
This will handle the initial setup of Morio. Or rather, it will ask Morio Core to do so after validation.
This endpoint does not require authentication. However, it is only available in ephemeral Mode. In other words, once Morio is set up, this endpoint becomes unavailable.
Authorizations:
Request Body schema: application/jsonrequired
The Morio settings to use for the initial setup
object | |
object | |
connector | object |
object | |
object | |
object | |
object or string | |
object |
Responses
Request samples
- Payload
{- "name": "Morio Standalone Example",
- "broker_nodes": [
- "morio-node1.tokyo.morio.it"
], - "tokens": {
- "flags": {
- "HEADLESS_MORIO": false,
- "DISABLE_ROOT_TOKEN": false
}, - "secrets": {
- "AD_PASSWORD": "aa;S009)) _S asd0AS"
}
}, - "iam": {
- "providers": {
- "apikey": {
- "provider": "apikey",
- "id": "apikey",
- "label": "API Key"
}, - "mrt": { },
- "local": {
- "provider": "local",
- "id": "local",
- "label": "Morio Account"
}, - "ad": {
- "provider": "ldap",
- "id": "ad",
- "about": "Morio Tokyo branch on-prem Active Directory",
- "server": {
- "url": "ldaps://dc1.tokyo.morio.it",
- "bindDN": "CN=morio-ldap,OU=Users,DC=tokyo,DC=morio,DC=it",
- "bindCredentials": "{{{ AD_PASSWORD }}}",
- "searchBase": "OU=Users-EU,DC=tokyo,DC=morio,DC=it",
- "searchFilter": "(&(objectClass=user)(samaccountname={{username}}))"
}, - "username_field": "samaccountname",
- "label": "Active Directory",
- "rbac": {
- "user": {
- "attribute": "samaccountname",
- "regex": "."
}, - "root": {
- "attribute": "samaccountname",
- "regex": "^(?:joostdecock|sorchanidhubhghaill)$"
}
}, - "verify_certificate": true
}
}
}, - "ui": {
- "visibility": {
- "mrt": "icon",
- "local": "icon",
- "apikey": "icon"
}, - "order": [
- "ad",
- "local",
- "apikey",
- "mrt"
]
}
}
Response samples
- 200
- 400
- 401
- 409
- 429
- 500
{- "result": "success",
- "uuids": {
- "node": "40361cd8-a149-4675-bd46-11a2b48acd04",
- "cluster": "26e66c95-c342-49fc-8e3a-f5ca69b392ba"
}, - "root_token": {
- "about": "This is the Morio root token. You can use it to authenticate before any authentication providers have been set up. Store it in a safe space, as it will never be shown again.",
- "value": "mrt.7297ef89ed8c855ffc6786e0377bb7bf5e0137dcbc367494aebd39782747ab43"
}
}
Preseed Morio
This will handle the initial setup of Morio via preseeded settings. Or rather, it will ask Morio Core to do so after validation.
This endpoint does not require authentication. However, it is only available in ephemeral Mode. In other words, once Morio is set up, this endpoint becomes unavailable.
Authorizations:
Request Body schema: application/jsonrequired
The Morio preseed settings to use for the initial setup
url | string |
git | object |
object or object or object or string | |
(Array of objects or objects or objects or strings) or string | |
object |
Responses
Request samples
- Payload
{- "github": {
- "owner": "morio",
- "repo": "preseed",
- "file_path": "settings/standalone.yaml",
- "ref": "main",
- "token": "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"
}
}
Response samples
- 200
- 400
- 401
- 409
- 429
- 500
{- "result": "success",
- "uuids": {
- "node": "40361cd8-a149-4675-bd46-11a2b48acd04",
- "cluster": "26e66c95-c342-49fc-8e3a-f5ca69b392ba"
}, - "root_token": {
- "about": "This is the Morio root token. You can use it to authenticate before any authentication providers have been set up. Store it in a safe space, as it will never be shown again.",
- "value": "mrt.7297ef89ed8c855ffc6786e0377bb7bf5e0137dcbc367494aebd39782747ab43"
}
}
Get settings
Returns the current settings.
Note that Morio will encrypt all secrets and remove them from the settings. So this endpoint returns data that is safe to backup.
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
{- "cluster": {
- "name": "Morio Unit Tests",
- "broker_nodes": [
- "unit.test.morio.it"
]
}, - "tokens": {
- "flags": {
- "HEADLESS_MORIO": false,
- "DISABLE_ROOT_TOKEN": false
}, - "secrets": {
- "TEST_SECRET_1": "{\"iv\":\"4b16f0efa70cdcad568441143b0ebbea\",\"ct\":\"28262a424d8b3378b2ac78c7074deeec\"}",
- "TEST_SECRET_2": "{\"iv\":\"bc0fb68aa6f37cc4eda8fca6a50d7448\",\"ct\":\"cc786dfb1c5fe6dd4ad389855a206d57\"}",
- "LDAP_BIND_SECRET": "{\"iv\":\"8b185698a44410657ce84ba6a35b82ce\",\"ct\":\"7ed3e4c461455f3a4a8b44f834935b6b\"}"
}
}, - "iam": {
- "providers": {
- "apikey": {
- "provider": "apikey",
- "id": "apikey",
- "label": "API Key"
}, - "mrt": { },
- "local": {
- "provider": "local",
- "id": "mrt",
- "label": "Morio Account"
}, - "ldap": {
- "provider": "ldap",
- "verify_certificate": false,
- "id": "ldap",
- "label": "LDAP",
- "about": "Test LDAP server",
- "server": {
- "url": "ldap://ldap:10389",
- "bindDN": "uid=admin,ou=system",
- "bindCredentials": "{{{ LDAP_BIND_SECRET }}}",
- "searchBase": "ou=Users,dc=ldap,dc=unit,dc=test,dc=morio,dc=it",
- "searchFilter": "(&(objectclass=person)(uid={{username}}))"
}, - "username_field": "uid",
- "rbac": {
- "manager": {
- "attribute": "employeetype",
- "regex": "^manager$"
}, - "operator": {
- "attribute": "employeetype",
- "regex": "^admin$"
}
}
}
}
}
}
Apply settings
This will take a full set of new Morio settings and, after validation, pass them to core to be applied.
Note that this endpoint requires you to post the full settings, so when making updates, make sure to leave nothing behind.
Authorizations:
Request Body schema: application/jsonrequired
The new Morio settings
object | |
object | |
connector | object |
object | |
object | |
object | |
object or string | |
object |
Responses
Request samples
- Payload
{- "name": "Morio Standalone Example",
- "broker_nodes": [
- "morio-node1.tokyo.morio.it"
], - "tokens": {
- "flags": {
- "HEADLESS_MORIO": false,
- "DISABLE_ROOT_TOKEN": false
}, - "secrets": {
- "AD_PASSWORD": "aa;S009)) _S asd0AS"
}
}, - "iam": {
- "providers": {
- "apikey": {
- "provider": "apikey",
- "id": "apikey",
- "label": "API Key"
}, - "mrt": { },
- "local": {
- "provider": "local",
- "id": "local",
- "label": "Morio Account"
}, - "ad": {
- "provider": "ldap",
- "id": "ad",
- "about": "Morio Tokyo branch on-prem Active Directory",
- "server": {
- "url": "ldaps://dc1.tokyo.morio.it",
- "bindDN": "CN=morio-ldap,OU=Users,DC=tokyo,DC=morio,DC=it",
- "bindCredentials": "{{{ AD_PASSWORD }}}",
- "searchBase": "OU=Users-EU,DC=tokyo,DC=morio,DC=it",
- "searchFilter": "(&(objectClass=user)(samaccountname={{username}}))"
}, - "username_field": "samaccountname",
- "label": "Active Directory",
- "rbac": {
- "user": {
- "attribute": "samaccountname",
- "regex": "."
}, - "root": {
- "attribute": "samaccountname",
- "regex": "^(?:joostdecock|sorchanidhubhghaill)$"
}
}, - "verify_certificate": true
}
}
}, - "ui": {
- "visibility": {
- "mrt": "icon",
- "local": "icon",
- "apikey": "icon"
}, - "order": [
- "ad",
- "local",
- "apikey",
- "mrt"
]
}
}
Response samples
- 400
- 401
- 429
- 500
{- "status": 400,
- "title": "This request violates the data schema",
- "detail": "The request data failed validation against the Morio data schema. This means the request is invalid."
}
Response samples
- 200
- 401
- 429
- 500
{- "MORIO_API_JWT_EXPIRY": "12h",
- "MORIO_API_LOG_LEVEL": "trace",
- "MORIO_API_PORT": 3000,
- "MORIO_API_PREFIX": "/-/api",
- "MORIO_BROKER_ADMIN_API_PORT": 9644,
- "MORIO_BROKER_KAFKA_API_EXTERNAL_PORT": 9092,
- "MORIO_BROKER_KAFKA_API_INTERNAL_PORT": 19092,
- "MORIO_BROKER_LOG_LEVEL": "warn",
- "MORIO_BROKER_REST_API_PORT": 8082,
- "MORIO_BROKER_TOPICS": [
- "_redpanda.audit_log",
- "audit",
- "checks",
- "events",
- "logs",
- "metrics",
- "notifications",
- "cron.hourly",
- "cron.daily",
- "cron.weekly",
- "cron.monthly"
], - "MORIO_BROKER_UID": 101,
- "MORIO_CA_CERTIFICATE_LIFETIME_DFLT": "750h",
- "MORIO_CA_CERTIFICATE_LIFETIME_MAX": "17544h",
- "MORIO_CA_CERTIFICATE_LIFETIME_MIN": "5m",
- "MORIO_CA_PORT": 9000,
- "MORIO_CA_UID": 1000,
- "MORIO_CONFIG_ROOT": "/home/jdecock/git/morio/data/config",
- "MORIO_CONNECTOR_UID": 1000,
- "MORIO_CONSOLE_PORT": 8080,
- "MORIO_CONSOLE_PREFIX": "console",
- "MORIO_CORE_CLUSTER_HEARTBEAT_INTERVAL": 30,
- "MORIO_CORE_CLUSTER_HEARTBEAT_MAX_RTT": 150,
- "MORIO_CORE_CLUSTER_STATE_CACHE_TTL": 20,
- "MORIO_CORE_CONFIG_FOLDER": "/etc/morio",
- "MORIO_CORE_CRON_DAILY": 24,
- "MORIO_CORE_CRON_HOURLY": 1,
- "MORIO_CORE_CRON_MONTHLY": 720,
- "MORIO_CORE_CRON_WEEKLY": 720,
- "MORIO_CORE_LOG_LEVEL": "debug",
- "MORIO_CORE_PORT": 3007,
- "MORIO_CORE_PREFIX": "/-/core",
- "MORIO_CORE_SERVICE_CERTIFICATE_RENEWAL_DAYS": 135,
- "MORIO_CORE_UUID_FINGERPRINT_LENGTH": 6,
- "MORIO_DATA_ROOT": "/home/jdecock/git/morio/data/data",
- "MORIO_DB_HTTP_PORT": 4001,
- "MORIO_DB_RAFT_PORT": 4002,
- "MORIO_DOCKER_SOCKET": "/var/run/docker.sock",
- "MORIO_DOWNLOADS_FOLDER": "downloads",
- "MORIO_INTERMEDIATE_CA_COMMON_NAME": "Morio Intermediate Certificate Authority",
- "MORIO_INTERMEDIATE_CA_VALID_YEARS": 5,
- "MORIO_LOGS_ROOT": "/home/jdecock/git/morio/data/logs",
- "MORIO_NETWORK": "morionet",
- "MORIO_NETWORK_MTU": 1500,
- "MORIO_NETWORK_SUBNET": "192.168.144.32/28",
- "MORIO_PROXY_ACCESS_LOG_FILEPATH": "/var/log/morio/traefik.access.log",
- "MORIO_PROXY_LOG_FILEPATH": "/var/log/morio/traefik.log",
- "MORIO_PROXY_LOG_FORMAT": "json",
- "MORIO_PROXY_LOG_LEVEL": "DEBUG",
- "MORIO_REPOS_FOLDER": "repos",
- "MORIO_ROOT_CA_COMMON_NAME": "Morio Root Certificate Authority",
- "MORIO_ROOT_CA_VALID_YEARS": 20,
- "MORIO_UI_PORT": 3010,
- "MORIO_UI_TIMEOUT_URL_CHECK": 1500,
- "MORIO_UNIT_TEST_HOST": "unit.test.morio.it",
- "MORIO_VERSION": "0.2.0",
- "MORIO_X509_C": "BE",
- "MORIO_X509_CN": "Morio",
- "MORIO_X509_L": "Brussels",
- "MORIO_X509_O": "CERT-EU",
- "MORIO_X509_OU": "Engineering Team",
- "MORIO_X509_ST": "Brussels",
- "NODE_ENV": "development"
}
Reload the API
This will cause the API to re-initialize itself, including reaching out the Morio Core to re-load the settings.
This is an internal route that is exposed to allow for troubleshooting. You probably don't want to use this.
Authorizations:
Responses
Response samples
- 401
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Reseed Morio
This will trigger reseeding of the settings, followed by a (soft) restart of Morio
Authorizations:
Responses
Response samples
- 401
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Restart Morio
This will cause a soft restart of core, re-bootstrapping itself based on the settings on disk.
Authorizations:
Responses
Response samples
- 401
- 429
- 500
{- "status": 401,
- "title": "Authentication required",
- "detail": "The request was not properly authenticated."
}
Write key
Writes a value to key
key in the KV store.
Values will be serialized as JSON, so you can write strucutured data.
This endpoint will use the remainder of the URL path after /kv/keys/
as the key. Examples:
- For
/kv/keys/example
the key isexample
- For
/kv/keys/example/of/a/nested/key
the key isexample/of/a/nested/key
- For
/kv/keys/example/of/a/nested/key?with=query=params
the key isexample/of/a/nested/key
- For
/kv/keys/example/of/a/nested/key#with-anchor-data
the key isexample/of/a/nested/key
While you can use any approach to structure the keyspace, using a pseudo-directory structure like is often beneficial to keep access policies intuitive.
The prefix kv/keys/morio/internal/
is reserved for internal Morio use.
You can read these keys, but attempting to write to a key with this prefix
via the API wil result in a schema violation.
Authorizations:
path Parameters
key required | string The key in the KV store |
Request Body schema: application/jsonrequired
The value to write
boolean or Array of any or number or string or object | |
Any of boolean |
Responses
Request samples
- Payload
{- "value": "My value"
}
Response samples
- 400
- 401
- 403
- 429
- 500
{- "status": 400,
- "title": "This request violates the data schema",
- "detail": "The request data failed validation against the Morio data schema. This means the request is invalid."
}
Delete key
Removes the key key
from the KV store.
Authorizations:
path Parameters
key required | string The key in the KV store |
Responses
Response samples
- 400
- 401
- 403
- 404
- 429
- 500
{- "status": 400,
- "title": "This request violates the data schema",
- "detail": "The request data failed validation against the Morio data schema. This means the request is invalid."
}
Dump KV data
Returns all keys and values in the KV store
Authorizations:
Responses
Response samples
- 200
- 401
- 429
- 500
{- "my key": "My value",
- "some other key": "some other value",
- "better_name": 12,
- "PIPELINE_RESULT": {
- "status": "success",
- "duration": 123
}
}