---
title: Manage admin tokens
description: Manage admin tokens in your InfluxDB 3 Enterprise instance. An admin token grants access to all actions (CLI commands and API endpoints) for the server.
url: https://docs.influxdata.com/influxdb3/enterprise/admin/tokens/admin/
estimated_tokens: 945
product: InfluxDB 3 Enterprise
version: enterprise
publisher: InfluxData
canonical: https://docs.influxdata.com/influxdb3/enterprise/admin/tokens/admin/
date: '2025-06-26T16:35:31-05:00'
lastmod: '2025-06-26T16:35:31-05:00'
---

Manage InfluxDB 3 Enterprise admin tokens to authorize server actions, `influxdb3` CLI commands, and HTTP API endpoints for your InfluxDB 3 Enterprise instance.
Administrative (*admin*) tokens provide full system access and management capabilities for your InfluxDB 3 Enterprise instance.

Admin tokens can create, edit, and delete other admin tokens, as well as manage [resource tokens](/influxdb3/enterprise/admin/tokens/resource/).

InfluxDB 3 Enterprise supports two types of admin tokens:

* **Operator token**: A system-generated administrative token with the name `_admin`.

  * Cannot be edited or deleted
  * Never expires
  * Cannot be recreated if lost (future functionality)
  * Can be regenerated using the CLI

* **Named admin token**: User-defined administrative tokens with full admin permissions.

  * Can be created, edited, and deleted
  * Support expiration dates
  * Cannot modify or remove the operator token

An InfluxDB 3 Enterprise instance can have one operator token and unlimited named admin tokens.

## [Create an admin token](/influxdb3/enterprise/admin/tokens/admin/create/)

Use the [`influxdb3 create token --admin` command](/influxdb3/enterprise/reference/cli/influxdb3/create/token/) or the HTTP API [`/api/v3/configure/token/admin`](/influxdb3/enterprise/api/authentication/#operation/PostCreateAdminToken) endpoint to create an operator or named [admin token](/influxdb3/enterprise/admin/tokens/admin/) for your InfluxDB 3 Enterprise instance. An admin token grants access to all actions on the server.

##### CLI

```bash
influxdb3 create token --admin --name TOKEN_NAME
```

#### HTTP API

```bash
curl -X POST "http://localhost:8181/api/v3/configure/token/admin" \
  --header 'Authorization: Bearer ADMIN_TOKEN' \
  --json '{
            "name": "TOKEN_NAME"
          }'
```

[Read more ](/influxdb3/enterprise/admin/tokens/admin/create/)

## [List admin tokens](/influxdb3/enterprise/admin/tokens/admin/list/)

Use the `influxdb3` CLI or the `/api/v3` HTTP API to list admin tokens for your InfluxDB 3 Enterprise instance. Use the `influxdb3 show tokens` command to list all tokens or use SQL to query token metadata directly from the `system.tokens` table.

##### CLI

```bash
influxdb3 show tokens
```

##### HTTP API

```bash
curl -G \
"http://localhost:8181/api/v3/query_sql" \
--data-urlencode "db=_internal" \
--data-urlencode "q=SELECT * FROM system.tokens WHERE permissions = '*:*:*'" \
--header 'Accept: application/json' \
--header "Authorization: Bearer AUTH_TOKEN"
```

[Read more ](/influxdb3/enterprise/admin/tokens/admin/list/)

## [Regenerate an operator admin token](/influxdb3/enterprise/admin/tokens/admin/regenerate/)

Use the [`influxdb3 create token --admin` command](/influxdb3/enterprise/reference/cli/influxdb3/create/token/) or the [HTTP API](/influxdb3/enterprise/api/v3/) to regenerate an [operator token](/influxdb3/enterprise/admin/tokens/admin/) for your InfluxDB 3 Enterprise instance. Regenerating an admin token deactivates the previous token.

##### CLI

```bash
influxdb3 create token --admin \
  --token OPERATOR_TOKEN \
  --regenerate
```

#### HTTP API

```bash
curl -X POST "http://localhost:8181/api/v3/configure/token/admin/regenerate" \
  --header 'Authorization: Bearer OPERATOR_TOKEN'
```

[Read more ](/influxdb3/enterprise/admin/tokens/admin/regenerate/)

## [Use a preconfigured admin token](/influxdb3/enterprise/admin/tokens/admin/preconfigured/)

Start InfluxDB 3 Enterprise with a preconfigured “offline” admin token file. If no admin tokens already exist, InfluxDB automatically creates an admin token using the provided admin token file.

#### Related

* [Manage tokens with InfluxDB 3 Explorer](/influxdb3/explorer/manage-tokens/)

[tokens](/influxdb3/enterprise/tags/tokens/)
