Tetap teratur dengan koleksi
Simpan dan kategorikan konten berdasarkan preferensi Anda.
NAMA
gdcloud iam service-accounts keys create - Membuat file JSON kredensial default aplikasi yang berisi kunci pribadi untuk akun layanan.
SINOPSIS
gdcloud iam service-accounts keys create FILE_NAME [flags]
DESKRIPSI
Buat pasangan kunci publik/pribadi untuk akun layanan project dan masukkan kunci pribadi ke dalam file JSON. File tersebut dapat digunakan untuk menukar token STS dari AIS.
CONTOH
To create an application default credentials JSON file "/tmp/my-key.json" for service account "psa-test" in project "iam-test" using cacert file "/tmp/ca.crt", run:
gdcloud iam service-accounts keys create /tmp/my-key.json --iam-account=psa-test --project=iam-test --ca-cert-path=/tmp/ca.crt
FLAG WAJIB
--iam-account string Project's service account to create the key for. The flag is required to run the command.
FLAG OPSIONAL
--ca-cert-path string CA cert path to verify the authentication endpoint. If omitted, then the system cert chain will be used.
FLAG GDCLOUD WIDE
Flag ini tersedia untuk semua perintah: --configuration, --format, --help, --project, --quiet.
[[["Mudah dipahami","easyToUnderstand","thumb-up"],["Memecahkan masalah saya","solvedMyProblem","thumb-up"],["Lainnya","otherUp","thumb-up"]],[["Sulit dipahami","hardToUnderstand","thumb-down"],["Informasi atau kode contoh salah","incorrectInformationOrSampleCode","thumb-down"],["Informasi/contoh yang saya butuhkan tidak ada","missingTheInformationSamplesINeed","thumb-down"],["Masalah terjemahan","translationIssue","thumb-down"],["Lainnya","otherDown","thumb-down"]],["Terakhir diperbarui pada 2025-09-04 UTC."],[[["\u003cp\u003eThe \u003ccode\u003egdcloud iam service-accounts keys create\u003c/code\u003e command generates a private key for a service account and saves it in a JSON file.\u003c/p\u003e\n"],["\u003cp\u003eThis JSON file can be used to obtain an STS token from AIS.\u003c/p\u003e\n"],["\u003cp\u003eThe \u003ccode\u003e--iam-account\u003c/code\u003e flag is required and specifies the service account for which to create the key.\u003c/p\u003e\n"],["\u003cp\u003eThe \u003ccode\u003e--ca-cert-path\u003c/code\u003e flag is optional and allows you to specify a custom CA certificate for authentication.\u003c/p\u003e\n"],["\u003cp\u003eThe command requires a file path where the key will be stored as the first argument after \u003ccode\u003ecreate\u003c/code\u003e.\u003c/p\u003e\n"]]],[],null,["# gdcloud iam service-accounts keys create\n\nNAME\n----\n\ngdcloud iam service-accounts keys create - Create an application default credentials JSON file which contains a private key for a service account.\n\nSYNOPSIS\n--------\n\n gdcloud iam service-accounts keys create FILE_NAME [flags]\n\nDESCRIPTION\n-----------\n\nCreate a pair of public/private keys for a project's service account and put the private key into a JSON file. The file can be used to exchange for an STS token from AIS.\n\n### EXAMPLES\n\n\n To create an application default credentials JSON file \"/tmp/my-key.json\" for service account \"psa-test\" in project \"iam-test\" using cacert file \"/tmp/ca.crt\", run:\n\n gdcloud iam service-accounts keys create /tmp/my-key.json --iam-account=psa-test --project=iam-test --ca-cert-path=/tmp/ca.crt\n\n### REQUIRED FLAGS\n\n --iam-account string Project's service account to create the key for. The flag is required to run the command.\n\n### OPTIONAL FLAGS\n\n --ca-cert-path string CA cert path to verify the authentication endpoint. If omitted, then the system cert chain will be used.\n\n### GDCLOUD WIDE FLAGS\n\nThese flags are available to all commands: `--configuration`, `--format`, `--help`, `--project`, `--quiet`.\n\nFor more information, see the [gdcloud CLI reference overview](/distributed-cloud/hosted/docs/latest/gdch/resources/gdcloud-reference/gdcloud) page."]]