generated: '2026-09-05' method: searched source: https://docs.128technology.com/docs/cli_reference docs: https://docs.128technology.com/docs/concepts_pcli name: PCLI full_name: SSR Process Command Line Interface description: >- The PCLI is the first-party command line for the Session Smart Router and Session Smart Conductor. It is not a client you install on a workstation against a hosted API — it ships inside the SSR software image and is reached over SSH or the serial console of the router or conductor itself. It is the primary administrative surface: the Common Criteria evaluated configuration requires that all post-installation configuration be done here rather than in the GUI. install: - method: bundled description: >- Included in the SSR software image (image-based ISO from 6.3.0 onward). There is no separate package, tap, npm or pip install. source: https://docs.128technology.com/docs/intro_installation_univ-iso access: - transport: ssh port: 22 note: >- OpenSSH; password or public-key authentication. In a Common Criteria deployment SSH management must be bound to non-forwarding interfaces only. - transport: serial-console note: Used for local administration and troubleshooting. command_count: 320 command_reference: https://docs.128technology.com/docs/cli_reference stats_reference: https://docs.128technology.com/docs/cli_stats_reference groups: - group: show command_count: 192 description: >- The read surface. Operational state, statistics and configuration inspection across every subsystem — sessions, flows, peers, BGP, OSPF, alarms, events, interfaces, waypoints, LTE, IDP, DHCP, certificates, system software and health. - group: configure command_count: 1 description: >- Enters configuration mode, from which the YANG-modeled configuration tree is edited. The per-node configuration command surface is documented separately in the Configuration Command Guide. reference: https://docs.128technology.com/docs/config_command_guide - group: commit command_count: 1 description: Applies staged configuration changes to the running configuration. - group: create command_count: 10 description: >- Creates capture filters, certificate requests and self-signed webserver certificates, autogenerated config, secure-conductor-onboarding tokens, session captures, SSH authorized-keys and known-hosts entries, and users. - group: delete command_count: 15 description: >- Removes capture filters, webserver certificates, exported config, flows, session captures, sessions, SSH key entries, system software, users and user tokens. - group: set command_count: 12 description: Sets runtime and session-scoped operational values. - group: clear command_count: 11 description: >- Clears app-id caches and stats, application-policy hit counts, ARP, BGP, PIM/PIMv6 mroutes and command history. - group: request command_count: 9 description: >- Software lifecycle operations — download, upgrade, downgrade, revert, health-check — plus IDP restart and signature queries. Gated by the `provisioning` RBAC capability. - group: send command_count: 17 description: Sends operational messages and triggers to routers and assets. - group: import command_count: 4 description: Imports certificates, configuration, ISO images and RPMs. - group: export command_count: 1 description: Exports the configuration. - group: restore command_count: 5 description: >- Restores factory-default config, running config, the prompt, system factory-default and users factory-default. - group: search command_count: 6 description: Searches the configuration and operational data. - group: initialize command_count: 2 description: >- `initialize conductor` and `initialize conductor-managed` — provisions a freshly installed device into its role. Replaced the retired `initialize128t` command from 6.3.0 onward. key_flows: - name: Discover which API a PCLI command uses description: >- The `trace` command shows the API calls a given PCLI command makes. The provider's own API documentation names this as the way to work out which REST/GraphQL data is available for a use case — a substitute for the absent published OpenAPI. commands: [trace] source: https://docs.128technology.com/docs/intro_rest_graphql_apis - name: Onboard a router to a conductor commands: [initialize conductor-managed, create secure-conductor-onboarding token, adopt] source: https://docs.128technology.com/docs/onboard_ssr_to_conductor - name: Upgrade software commands: [import iso, request system software download, request system software upgrade, request system software health-check, request system software revert] source: https://docs.128technology.com/docs/upgrade_router - name: Configure and commit commands: [configure, compare config, validate, commit, export config] source: https://docs.128technology.com/docs/config_basics related_clis: - name: monitoring-agent-cli description: >- Manages the SSR Monitoring Agent — list and view sample input configurations, generate configuration, test an input, run an input once, and stop services. source: https://docs.128technology.com/docs/concepts_monitoring - name: initializer CLI reference: https://docs.128technology.com/docs/initializer_cli_reference - name: installer CLI reference: https://docs.128technology.com/docs/installer_cli_reference