Files
VERSE ebde9ba68f refactor(commands): separate commands and its core into two folders (#32)
- I think it would be better if one for commands only, one for the spec
handling core logic so people won't be confused by the core logic inside
the commands folder (cleaner I guess)
- Regen docs
2026-07-05 11:27:30 +07:00

85 lines
6.4 KiB
Go

package ops
import (
"github.com/versenilvis/iris/spec"
)
func init() {
spec.Register(&spec.Spec{
Name: "vault",
Description: "Display help",
Subcommands: []spec.Subcommand{
{Name: "read", Description: "Reads data from Vault at the given path"},
{Name: "write", Description: "Writes data from Vault at the given path"},
{Name: "delete", Description: "Deletes secrets and configuration from Vault at the given path"},
{Name: "list", Description: "Lists data from Vault at the given path"},
{Name: "login", Description: "Authenticates users or machines to Vault using the provided arguments"},
{Name: "PATH", Description: "Disable the audit device enabled at this path"},
{Name: "enable", Description: "Enables an audit device at a given path"},
{Name: "enable-versioning", Description: "This command turns on versioning for the backend at the provided path"},
{Name: "lookup", Description: "Lookup the lease information of a secret"},
{Name: "lock", Description: "Lock the current namespace, and all descendants"},
{Name: "unlock", Description: "Unlock the current namespace, and all descendants, with unlock key"},
{Name: "members", Description: "Provides the details of all the nodes in the cluster"},
{Name: "autopilot", Description: "Raft auto pilot"},
{Name: "get-config", Description: "Returns the configuration of the autopilot subsystem under integrated storage"},
{Name: "set-config", Description: "Modify the configuration of the autopilot subsystem under integrated storage"},
{Name: "join", Description: "Joins a node to the Raft cluster"},
{Name: "list-peers", Description: "Returns the Raft peer set"},
{Name: "remove-peer", Description: "Removes a node from the Raft cluster"},
{Name: "snapshot", Description: "Restores and saves snapshots from the Raft cluster"},
{Name: "restore", Description: "Installs the provided snapshot, returning the cluster to the state defined in it"},
{Name: "snapshot_file", Description: "Save snapshot to this file"},
{Name: "save", Description: "Saves a snapshot of the current state of the Raft cluster into a file"},
{Name: "usage", Description: "List the client counts for the default reporting period"},
{Name: "type", Description: "Plugin type"},
{Name: "name", Description: "Plugin name"},
{Name: "print", Description: "This command groups subcommands for interacting with Vault's runtime values"},
{Name: "ssh", Description: "Establishes an SSH connection with the target machine"},
{Name: "version-history", Description: "Prints the version history of the target Vault server"},
},
Options: []spec.Option{
{Name: "--help", Description: "Display help"},
{Name: "-address", Description: "Key to unlock a namespace API lock. The default is (not set)"},
{Name: "-wrap-ttl", Description: "Exit the vault server if the vault core is shutdown. The default is false"},
{Name: "-log-format", Description: "Log format. Supported values are 'standard' and 'json'. The default is (not set)"},
{Name: "-log-level", Description: "Toggles whether to compress output package The default is true"},
{Name: "-duration", Description: "Duration to run the command. The default is 2m0s"},
{Name: "-interval", Description: "The polling interval at which to collect metrics data. The default is 10s"},
{Name: "-output", Description: "Specifies the output path for the debug package"},
{Name: "-target", Description: "Human-friendly description for the purpose of this audit device"},
{Name: "-local", Description: "Specifies the version numbers"},
{Name: "-cas-required", Description: "Dump all information collected by Diagnose"},
{Name: "-format", Description: "The output format"},
{Name: "-skip", Description: "Skip the health checks named as arguments"},
{Name: "-cancel", Description: "OTP code to use with '-decode' or '-init'"},
{Name: "-pgp-key", Description: "Reset the migration lock. No migration will occur. The default is false"},
{Name: "-start", Description: "Only copy keys lexicographically at or after this value"},
{Name: "-auto-join-port", Description: "CA cert to use when verifying the Raft leader certificate"},
{Name: "-leader-client-cert", Description: "Client cert to use when authenticating with the Raft leader"},
{Name: "-leader-client-key", Description: "Client key to use when authenticating with the Raft leader"},
{Name: "-non-voter", Description: "Continuously retry joining the Raft cluster upon failures. The default is false"},
{Name: "-dr-token", Description: "DR operation token used to authorize this request (if a DR secondary node)"},
{Name: "-cleanup-dead-servers", Description: "Clean up dead servers"},
{Name: "-last-contact-threshold", Description: "Last contact threshold"},
{Name: "-max-trailing-logs", Description: "Max trailing logs"},
{Name: "-min-quorum", Description: "Min quorum"},
{Name: "-server-stabilization-time", Description: "Server stabilization time"},
{Name: "-backup-retries", Description: "Discard any previously entered keys to the unseal process. The default is false"},
{Name: "-end-time", Description: "End of report period. Defaults to end of last month"},
{Name: "-start-time", Description: "Start of report period. Defaults to 'default_reporting_period' before end time"},
{Name: "-args", Description: "SHA256 of the plugin binary. This is required for all plugins"},
{Name: "-mounts", Description: "Array or comma-separated string mount paths of the plugin backends to reload"},
{Name: "-plugin", Description: "The name of the plugin to reload, as registered in the plugin catalog"},
{Name: "-scope", Description: "The scope of the reload, omitted for local, 'global', for replicated reloads"},
{Name: "-allowed-managed-keys", Description: "Human-friendly description for the purpose of this engine"},
{Name: "-external-entropy-access", Description: "Determines the visibility of the mount in the UI-specific listing endpoint"},
{Name: "-details", Description: "Name of the authentication mode (ca, dynamic, otp)"},
{Name: "-mount-point", Description: "Mount point to the SSH secrets engine. The default is ssh/"},
{Name: "-no-exec", Description: "Name of the role to use to generate the key"},
{Name: "-strict-host-key-checking", Description: "Allow the token to be renewed up to it's maximum TTL. The default is true"},
{Name: "-role", Description: "The type of token to create. Can be 'service' or 'batch'. The default is service"},
},
})
}