IAM Service Account Credentials API

Creates short-lived credentials for impersonating IAM service accounts.

Service: iamcredentials.googleapis.com

We recommend that you call this service using Google-provided client libraries. If your application needs to call this service using your own libraries, you should use the following information when making the API requests.

Discovery document

A Discovery Document is a machine-readable specification for describing and consuming REST APIs. It is used to build client libraries, IDE plugins, and other tools that interact with Google APIs. One service may provide multiple discovery documents. This service provides the following discovery document:

Service endpoint

A service endpoint is a base URL that specifies the network address of an API service. One service may have multiple service endpoints. This service has the following service endpoint and all URIs below are relative to this service endpoint:

  • https://iamcredentials.googleapis.com

REST Resource: v1.projects.serviceAccounts

generateAccessToken POST /v1/{name=projects/*/serviceAccounts/*}:generateAccessToken
Generates an OAuth 2.0 access token for a service account.
generateIdToken POST /v1/{name=projects/*/serviceAccounts/*}:generateIdToken
Generates an OpenID Connect ID token for a service account.
signBlob POST /v1/{name=projects/*/serviceAccounts/*}:signBlob
Signs a blob using a service account's system-managed private key.
signJwt POST /v1/{name=projects/*/serviceAccounts/*}:signJwt
Signs a JWT using a service account's system-managed private key.