mirror of
https://github.com/openclaw/openclaw.git
synced 2026-04-05 22:32:12 +00:00
2.9 KiB
2.9 KiB
summary, read_when, title
| summary | read_when | title | ||
|---|---|---|---|---|
| CLI reference for `openclaw daemon` (legacy alias for gateway service management) |
|
daemon |
openclaw daemon
Legacy alias for Gateway service management commands.
openclaw daemon ... maps to the same service control surface as openclaw gateway ... service commands.
Usage
openclaw daemon status
openclaw daemon install
openclaw daemon start
openclaw daemon stop
openclaw daemon restart
openclaw daemon uninstall
Subcommands
status: show service install state and probe Gateway healthinstall: install service (launchd/systemd/schtasks)uninstall: remove servicestart: start servicestop: stop servicerestart: restart service
Common options
status:--url,--token,--password,--timeout,--no-probe,--require-rpc,--deep,--jsoninstall:--port,--runtime <node|bun>,--token,--force,--json- lifecycle (
uninstall|start|stop|restart):--json
Notes:
statusresolves configured auth SecretRefs for probe auth when possible.- If a required auth SecretRef is unresolved in this command path,
daemon status --jsonreportsrpc.authWarningwhen probe connectivity/auth fails; pass--token/--passwordexplicitly or resolve the secret source first. - If the probe succeeds, unresolved auth-ref warnings are suppressed to avoid false positives.
status --deepadds a best-effort system-level service scan. When it finds other gateway-like services, human output prints cleanup hints and warns that one gateway per machine is still the normal recommendation.- On Linux systemd installs,
statustoken-drift checks include bothEnvironment=andEnvironmentFile=unit sources. - Drift checks resolve
gateway.auth.tokenSecretRefs using merged runtime env (service command env first, then process env fallback). - If token auth is not effectively active (explicit
gateway.auth.modeofpassword/none/trusted-proxy, or mode unset where password can win and no token candidate can win), token-drift checks skip config token resolution. - When token auth requires a token and
gateway.auth.tokenis SecretRef-managed,installvalidates that the SecretRef is resolvable but does not persist the resolved token into service environment metadata. - If token auth requires a token and the configured token SecretRef is unresolved, install fails closed.
- If both
gateway.auth.tokenandgateway.auth.passwordare configured andgateway.auth.modeis unset, install is blocked until mode is set explicitly. - If you intentionally run multiple gateways on one host, isolate ports, config/state, and workspaces; see /gateway#multiple-gateways-same-host.
Prefer
Use openclaw gateway for current docs and examples.