Skip to main content

Name

nebius iam

Commands

nebius iam access-key

[deprecated: supported until 2026-09-01] Please use the ‘iam v2 access-key’ command instead. All existing keys remain accessible through the new command.

Access keys management [deprecated].

nebius iam access-permit

nebius iam auth-public-key

nebius iam federated-credentials

[PUBLIC PREVIEW]
The federated credentials feature is currently fully available with Nebius Managed Kubernetes issuers.
Custom external credentials providers are available only for early adopters.
Contact the support team to check whether this feature is available for your tenant.
Alternatively, you can use them in conjunction with local JWK set storage without limitations.

nebius iam federation

nebius iam federation-certificate

nebius iam get-access-token

Get access token for the current profile

nebius iam group

nebius iam group-membership

nebius iam invitation

nebius iam profile

nebius iam project

nebius iam service-account

nebius iam session-management

nebius iam static-key

nebius iam tenant

nebius iam tenant-user-account

nebius iam tenant-user-account-with-attributes

nebius iam token-exchange

nebius iam v2

nebius iam whoami

An alias of “nebius iam profile get” — Returns the current user’s profile.

Global Options

-h, --help (bool)

Show this message.

-p, --profile (string)

Set a profile for interacting with the cloud.

--format (string)

Output format. Supported values: yaml|json|jsonpath|table|text.

-f, --file (string)

Input file. For ‘update’ commands automatically set —full=true.

-c, --config (string)

Provide path to config file.

--debug (bool)

Enable debug logs.

-I, --impersonate-service-account-id (string)

Impersonate into the service account and use its token for a command.

--color (bool)

Enable colored output.

--no-browser (bool)

Do not open browser automatically on auth.

--insecure (bool)

Disable transport security.

--auth-timeout (duration: 2h30m10s)

Set the timeout for the request including authentication process, default is 15m0s.

--per-retry-timeout (duration: 2h30m10s)

Set the timeout for each retry attempt, default is 20s.

--retries (uint)

Set the number of retry attempts, 1 is disable retries, default is 3.

--timeout (duration: 2h30m10s)

Set the timeout for the main request, default is 1m0s.

--no-check-update (bool)

Suppress check for updates.

--no-progress (bool)

Suppress progress indicators and spinners.

Auto generated on 20-Jul-2026