CLI v1.10.0 – Edera

CLI v1.10.0

Using the CLI

Control the Edera Protect daemon.

protect [OPTIONS] <COMMAND>

Subcommands:

zone

Manage the zones on Edera Protect.

protect zone <COMMAND>

Subcommands:

attach

Attach to the zone console.

protect zone attach <ZONE>

Arguments:

list

List zone information.

protect zone list [OPTIONS] [ZONE]

Arguments:

Options:

resolve

Resolve a zone name to matching zone ids.

protect zone resolve [OPTIONS] <NAME>

Arguments:

Options:

launch

Launch a new zone.

protect zone launch [OPTIONS]

Options:

destroy

Destroy a zone.

protect zone destroy [OPTIONS] [ZONE_IDENTIFIER]

Arguments:

Options:

suspend

Suspend a running zone.

protect zone suspend <ZONE>

Arguments:

resume

Resume a suspended zone.

protect zone resume <ZONE>

Arguments:

fork

Fork a running zone into a new memory-shared child zone.

protect zone fork [OPTIONS] <ZONE>

Arguments:

Options:

exec

Execute a command inside the zone.

protect zone exec [OPTIONS] <ZONE> [COMMAND]...

Arguments:

Options:

forget

Clears the tombstone record for destroyed zones. Tombstones are the in-memory record retained after a zone is destroyed so post-mortem tooling (protect zone logs, debug reports) can still inspect them. They expire automatically after the daemon’s linger window; this command evicts them sooner – most importantly so a new zone can reuse a destroyed zone’s name without ambiguity. Forgetting a tombstone is low-risk: the live zone is already gone, so the only consequence of being wrong is losing post-mortem visibility into the destroyed zone. That’s why a bare protect zone forget (no arguments) forgets every tombstone – it’s the most common operation (“tidy up”) and has no failure mode worth gating behind a flag.

protect zone forget [OPTIONS] [ZONE]

Arguments:

Options:

logs

View the logs of a zone.

protect zone logs [OPTIONS] <ZONE>

Arguments:

Options:

metrics

Read metrics from the zone.

protect zone metrics [OPTIONS] <ZONE>

Arguments:

Options:

top

Dashboard for running zones.

protect zone top

watch

Watch for zone changes.

protect zone watch [OPTIONS]

Options:

update-resources

Update the available resources to a zone.

protect zone update-resources [OPTIONS] <ZONE>

Arguments:

Options:

configure-network

Configure the network of an external network backend zone.

protect zone configure-network [OPTIONS] <ZONE>

Arguments:

Options:

kernel-events

Manage kernel events from zones.

protect zone kernel-events <COMMAND>

Subcommands:

kernel-events stream

Stream kernel events from a zone.

protect zone kernel-events stream [OPTIONS] <ZONE>

Arguments:

Options:

kernel-events list-syscalls

List all available syscalls.

protect zone kernel-events list-syscalls

workload

Manage the workloads on Edera Protect.

protect workload <COMMAND>

Subcommands:

launch

Launch a new workload.

protect workload launch [OPTIONS] --zone <ZONE> <OCI> [COMMAND]...

Arguments:

Options:

exec

Execute a command inside the workload.

protect workload exec [OPTIONS] <WORKLOAD> [COMMAND]...

Arguments:

Options:

attach

Attach to a workload console.

protect workload attach <WORKLOAD>

Arguments:

resolve

Resolve a workload name to matching workload ids.

protect workload resolve [OPTIONS] <NAME>

Arguments:

Options:

start

Start a workload.

protect workload start <WORKLOAD>

Arguments:

stop

Stop a workload.

protect workload stop <WORKLOAD> [TIMEOUT]

Arguments:

destroy

Destroy a workload.

protect workload destroy [OPTIONS] [WORKLOAD_IDENTIFIER]

Arguments:

Options:

list

List workload information.

protect workload list [OPTIONS] [WORKLOAD]

Arguments:

Options:

watch

Watch for workload changes.

protect workload watch [OPTIONS]

Options:

image

Manage the images on Edera Protect.

protect image <COMMAND>

Subcommands:

pull

Pull an image into the cache.

protect image pull [OPTIONS] <IMAGE>

Arguments:

Options:

import

Import an image into the cache.

protect image import [OPTIONS] --digest <DIGEST> --image <IMAGE>

Options:

remove

Remove an image from the cache.

protect image remove [OPTIONS] <DIGEST>

Arguments:

Options:

list

List cached images.

protect image list [OPTIONS]

Options:

network

Manage the network on Edera Protect.

protect network <COMMAND>

Subcommands:

reservation

Manage network reservations.

protect network reservation <COMMAND>

Subcommands:

reservation create

Create network reservation.

protect network reservation create

reservation destroy

Destroy network reservation.

protect network reservation destroy <RESERVATION>

Arguments:

reservation list

List network reservation information.

protect network reservation list [OPTIONS]

Options:

device

Manage the devices on Edera Protect.

protect device <COMMAND>

Subcommands:

list

List device information.

protect device list [OPTIONS]

Options:

host

Manage the host of Edera Protect.

protect host <COMMAND>

Subcommands:

cpu-topology

Display information about the host CPU topology.

protect host cpu-topology [OPTIONS]

Options:

status

Get information about the host.

protect host status [OPTIONS]

Options:

control-snoop

Snoop on the Control API.

protect host control-snoop [OPTIONS]

Options:

idm-snoop

Snoop on the IDM bus.

protect host idm-snoop [OPTIONS]

Options:

hv-console

Display hypervisor console output.

protect host hv-console

hv-debug-info

Read hypervisor debug information.

protect host hv-debug-info

completion

Output shell completion code for the specified shell.

protect completion <SHELL>

Arguments:

Last updated on 2026-06-24

We use analytics to understand how people use our docs. No personal data is collected.