Yandex Cloud
Search
Contact UsGet started
  • Blog
  • Pricing
  • Documentation
  • All Services
  • System Status
    • Featured
    • Infrastructure & Network
    • Data Platform
    • Containers
    • Developer tools
    • Serverless
    • Security
    • Monitoring & Resources
    • ML & AI
    • Business tools
  • All Solutions
    • By industry
    • By use case
    • Economics and Pricing
    • Security
    • Technical Support
    • Customer Stories
    • Cloud credits to scale your IT product
    • Gateway to Russia
    • Cloud for Startups
    • Education and Science
    • Yandex Cloud Partner program
  • Blog
  • Pricing
  • Documentation
© 2025 Direct Cursus Technology L.L.C.
Yandex Object Storage
    • All tutorials
      • Creating a bucket
      • Deleting a bucket
      • Limiting the maximum size of a bucket
      • Encrypting a bucket
      • Managing object lifecycles
      • Managing CORS configurations
      • Configuring access permissions using IAM
      • Editing a bucket's ACL
      • Managing access policies
      • Configuring public access to a bucket
      • Accessing a bucket using Security Token Service
      • Accessing a bucket using a service connection from VPC
      • Managing bucket versioning
      • Enabling logging
      • Managing object locks
      • Managing bucket labels
      • Getting bucket information and statistics
      • Viewing bucket metrics
  • Terraform reference
  • Monitoring metrics
  • Audit Trails events
  • Bucket logs
  • Release notes
  • FAQ
  1. Step-by-step tutorials
  2. Buckets
  3. Configuring access permissions using IAM

Configuring access permissions for a bucket using Identity and Access Management

Written by
Yandex Cloud
Improved by
Tania L.
Updated at March 19, 2025

Object Storage incorporates several access management mechanisms. To learn how these mechanisms interact, see Access management methods in Object Storage: Overview.

To configure access to a bucket using Identity and Access Management, assign a user, user group, or service account a role for that bucket:

Management console
  1. In the management console, select Object Storage from the list of services.
  2. Click the name of the bucket you want to grant access to.
  3. In the left-hand menu, select Security.
  4. Navigate to the Access bindings tab.
  5. Click Assign roles.
  6. Select a user from the list or use the user search option.
  7. Click Add role.
  8. Select a role for the user.
  9. Click Save.

You can also assign a role for a bucket in Identity and Access Management.

Was the article helpful?

Previous
Managing CORS configurations
Next
Editing a bucket's ACL
© 2025 Direct Cursus Technology L.L.C.