Skip to main content

Reference

Permission groups, authentication options, and API key settings.

IAM — Reference

Built-in permission groups

GroupPermissions
Regular UserStandard platform access — create and manage own resources
Full AdminFull platform administration — users, billing, all settings
Cluster AdminManage clusters — create, update, delete, monitor
Jobs AdminManage jobs and scripts — create, submit, cancel
Licenses AdminManage license servers — add, configure, monitor
Notebook AdminManage Workbench notebook sessions
Organization AdminManage organization settings, billing, and members
Team AdminManage teams — create, add/remove members, configure access

Authentication methods

MethodUse case
Google OAuthDefault sign-in — no configuration needed
GitHub OAuthDefault sign-in — no configuration needed
OIDC SSOCorporate identity provider (Azure AD, Okta, Keycloak)
SAML SSOEnterprise identity provider with SAML support
API keyProgrammatic access — generate from user profile

API key settings

SettingDescription
Key nameA label to identify the key's purpose
ExpirationOptional expiry date. Keys without an expiration date never rotate automatically
PermissionsAPI keys inherit the user's permission groups. No separate API key scopes
Ask AI
Ask a question about Vantage Compute...