Yandex Cloud
Search
Contact UsTry it for free
  • Customer Stories
  • Documentation
  • Blog
  • All Services
  • System Status
  • Marketplace
    • Featured
    • Infrastructure & Network
    • Data Platform
    • AI for business
    • Security
    • DevOps tools
    • Serverless
    • Monitoring & Resources
  • All Solutions
    • By industry
    • By use case
    • Economics and Pricing
    • Security
    • Technical Support
    • Start testing with double trial credits
    • Cloud credits to scale your IT product
    • Gateway to Russia
    • Cloud for Startups
    • Center for Technologies and Society
    • Yandex Cloud Partner program
    • Price calculator
    • Pricing plans
  • Customer Stories
  • Documentation
  • Blog
© 2026 Direct Cursus Technology L.L.C.
Yandex Identity Hub
  • Access management
  • Pricing policy
    • Overview
  • Terraform reference
  • Audit Trails events
  • Release notes
  • Yandex Identity Hub Sync Agent release notes
  1. CLI reference
  2. Overview

yc organization-manager

Written by
Yandex Cloud
Updated at January 27, 2026

Manage Yandex Organization Manager resources

Command UsageCommand Usage

Syntax:

yc organization-manager <group>

Command TreeCommand Tree

  • yc organization-manager federation — Manage federations

  • yc organization-manager group — Manage groups in organizations

    • yc organization-manager group add-access-binding — Add access binding for the specified group

    • yc organization-manager group add-members — Add members to the specified group

    • yc organization-manager group create — Create a group

    • yc organization-manager group delete — Delete the specified group

    • yc organization-manager group get — Show information about the specified group

    • yc organization-manager group list — List groups

    • yc organization-manager group list-access-bindings — List access bindings for the specified group

    • yc organization-manager group list-effective — List groups that the subject belongs to within a specific organization.

    • yc organization-manager group list-members — List members of the specified group

    • yc organization-manager group list-operations — List operations for the specified group

    • yc organization-manager group remove-access-binding — Remove access binding for the specified group

    • yc organization-manager group remove-members — Remove members from the specified group

    • yc organization-manager group set-access-bindings — Set access bindings for the specified group and delete all existing access bindings if there were any

    • yc organization-manager group update — Update the specified group

  • yc organization-manager idp — Manage Identity Provider

  • yc organization-manager mfa-enforcement — Manage MFA enforcements in organizations

    • yc organization-manager mfa-enforcement activate — Activate the specified mfa enforcement

    • yc organization-manager mfa-enforcement create — Create mfa enforcement

    • yc organization-manager mfa-enforcement deactivate — Deactivate the specified mfa enforcement

    • yc organization-manager mfa-enforcement delete — Delete the specified mfa enforcement

    • yc organization-manager mfa-enforcement get — Show information about the specified mfa enforcement

    • yc organization-manager mfa-enforcement list — List mfa enforcements

    • yc organization-manager mfa-enforcement list-audience — List audience for the specified mfa enforcement

    • yc organization-manager mfa-enforcement update — Update the specified mfa enforcement

    • yc organization-manager mfa-enforcement update-audience — Update audience for the specified mfa enforcement

  • yc organization-manager organization — Manage organizations

    • yc organization-manager organization add-access-binding — Add access binding for the specified organization

    • yc organization-manager organization add-labels — Add labels to specified organization

    • yc organization-manager organization bind-access-policy — Bind access policy to the specified organization

    • yc organization-manager organization get — Show information about the specified organization

    • yc organization-manager organization leave — Remove user accounts from the specified organization. Operation is performed by the account that wants to leave.

    • yc organization-manager organization list — List organizations

    • yc organization-manager organization list-access-bindings — List access bindings for the specified organization

    • yc organization-manager organization list-access-policy-bindings — List access policy bindings for the specified organization

    • yc organization-manager organization list-operations — List operations for the specified organization

    • yc organization-manager organization remove-access-binding — Remove access binding for the specified organization

    • yc organization-manager organization remove-labels — Remove labels from specified organization

    • yc organization-manager organization set-access-bindings — Set access bindings for the specified organization and delete all existing access bindings if there were any

    • yc organization-manager organization unbind-access-policy — Unbind access policy from the specified organization

    • yc organization-manager organization update — Update the specified organization

  • yc organization-manager oslogin — Setting up OS Login

    • yc organization-manager oslogin get-settings — Show information about OS Login settings for the specified organization.

    • yc organization-manager oslogin update-settings — Update OS Login settings for the specified organization.

  • yc organization-manager user — Manage users in organizations

    • yc organization-manager user list — List user accounts of the specified organization

    • yc organization-manager user remove — Remove user accounts from the specified organization

Global FlagsGlobal Flags

Flag

Description

--profile

string

Set the custom configuration file.

--debug

Debug logging.

--debug-grpc

Debug gRPC logging. Very verbose, used for debugging connection problems.

--no-user-output

Disable printing user intended output to stderr.

--retry

int

Enable gRPC retries. By default, retries are enabled with maximum 5 attempts.
Pass 0 to disable retries. Pass any negative value for infinite retries.
Even infinite retries are capped with 2 minutes timeout.

--cloud-id

string

Set the ID of the cloud to use.

--folder-id

string

Set the ID of the folder to use.

--folder-name

string

Set the name of the folder to use (will be resolved to id).

--endpoint

string

Set the Cloud API endpoint (host:port).

--token

string

Set the OAuth token to use.

--impersonate-service-account-id

string

Set the ID of the service account to impersonate.

--no-browser

Disable opening browser for authentication.

--format

string

Set the output format: text (default), yaml, json, json-rest.

--jq

string

Query to select values from the response using jq syntax

-h, --help

Display help for the command.

Was the article helpful?

Previous
Pricing policy
Next
Overview
© 2026 Direct Cursus Technology L.L.C.