Add user
Users can be added by the Account Owner or users with the iam.admin role.
You can add a control panel user or add a service user for programmatic access; more details are in the instruction User Types.
If there are any problems when adding a user, create a ticket.
Add control panel user
You can add control panel users, who will authenticate in the control panel using one of the following methods:
-
by login and password;
-
or by SSO, if you use federations.
If you enabled automatic user creation when creating a federation on the Selectel side and you have group mapping configured, users will be created automatically upon initial SSO authentication — in this case, you do not need to add them manually.
Login and password
SSO
-
In the control panel, click IAM on the top menu.
-
Go to the Control Panel Users section.
-
Click Add control panel user.
-
In the User details block:
4.1. If the Login method field is available, select Control panel.
4.2. In the Email field, enter an email address.
4.3. Optional: enter a user description.
-
In the Access settings block:
5.1. Configure the permission by selecting:
- access scope. If you selected the Projects access scope, select the required projects; ;
- role. To add users with the
memberrole, the account balance must be at least 200 ₽.
5.2. Optional: to assign an additional permission to the user, click Add permission and repeat step 5.1.
5.3. Optional: select a group for the user.
-
Click Add user.
The user will be added to the list on the Control Panel Users page with the status
Not activated. An email with a link for registration by invitation will be sent to their email address. The account is activated after the email is confirmed and registration is completed.
Add a service user
-
In the control panel, in the top menu, click IAM.
-
Go to the Service users section.
-
Click Add service user.
-
In the Service user details block:
4.1. Enter a username. It will be used for authorization.
4.2. Введите пароль для пользователя or сгенерируйте его. После создания пользователя посмотреть пароль нельзя — можно только изменить его. Пароль должен быть не короче 20 символов and включать минимум 2:
- one uppercase and one lowercase Latin letter (
A-Z,a-z); - one digit (
0-9); - one special character from the ASCII Printable 7-Bit Special Characters list:
!"#$%&'()*+,-./:;<=>?@[]^_{|}~.
4.3. Optional: enter a description for the user.
- one uppercase and one lowercase Latin letter (
-
In the Account access block:
5.1. Configure permissions by selecting:
- access scope. If you selected the Projects access scope, select the required projects;
- role. To add users with the
memberrole, your account balance must be at least 100 ₽.
5.2. Optional: to assign an additional permission to the user, click Add permission and repeat step 5.1.
5.3. Optional: select a group for the user.
-
Click Add user. They will be added to the list on the Service users page. The account will be active immediately.
View service user identifier
- In the control panel, click IAM on the top menu.
- Go to the Service users section.
- In the service user's row, view the value of the UID field.