# Command-Line Help for `swarmctl` This document contains the help content for the `swarmctl` command-line program. **Command Overview:** * [`swarmctl`↴](#swarmctl) * [`swarmctl user`↴](#swarmctl-user) * [`swarmctl user add`↴](#swarmctl-user-add) * [`swarmctl user update`↴](#swarmctl-user-update) ## `swarmctl` swarm-level operator CLI **Usage:** `swarmctl [OPTIONS] ` ###### **Subcommands:** * `user` — Manage subjects in the swarm's SSO provider ###### **Options:** * `--authelia-bin ` — authelia binary used to hash passwords. The argon2 parameters must match the verifier's, so this has to be the *configured* package rather than whatever is on `PATH` * `--users-file ` — Host-side path of authelia's users database — i.e. the path inside the container, prefixed with the container's root * `--machine ` — Machine name of the authelia container, for `systemctl -M` * `--unit ` — authelia's systemd unit inside that container * `--store ` — Canonical user store ## `swarmctl user` Manage subjects in the swarm's SSO provider **Usage:** `swarmctl user ` ###### **Subcommands:** * `add` — Add a user, generating a password for them * `update` — Change an existing user's attributes ## `swarmctl user add` Add a user, generating a password for them **Usage:** `swarmctl user add [OPTIONS] ` ###### **Arguments:** * `` — Login name. Conservative ASCII only — it is a YAML map key and reaches access-control rules and logs ###### **Options:** * `--display-name ` — Name shown in the SSO UI. Defaults to the username * `--email
` * `--group ` — Repeatable ## `swarmctl user update` Change an existing user's attributes. Every flag is optional and they compose, so one call can set several things at once. Deliberately does **not** touch the password: regenerating a credential is a different intent from editing an attribute, and folded together an attribute edit can invalidate a login by accident. **Usage:** `swarmctl user update [OPTIONS] ` ###### **Arguments:** * `` — Login name of an existing user ###### **Options:** * `--display-name ` — Name shown in the SSO UI * `--email
` * `--add-group ` — Repeatable. Adding a group the user is already in is not an error * `--remove-group ` — Repeatable. Fails if the user is not in the group — a revocation that reports success without revoking is the failure nobody re-checks
This document was generated automatically by clap-markdown.