- Create a service account.
-
Create authentication keys for the service account:
- Authorized keys to authenticate in the Nebius AI Cloud CLI or Terraform provider.
- Access keys to authenticate in services with AWS-compatible APIs, such as Object Storage.
adminrole within your tenant; for example, the defaultadminsgroup. You can check this in the Administration → IAM section of the web console. - Configure the interface that will use the created keys:
Service accounts
How to authenticate as a service account
When a service account interacts with a resource in Nebius AI Cloud, IAM checks if it has access rights to perform the operation. Authenticated service accounts are given permissions based on their group memberships.
To authenticate in a service as a service account: