Yandex Cloud
Search
Contact UsTry it for free
  • Customer Stories
  • Documentation
  • Blog
  • All Services
  • System Status
  • Marketplace
    • Featured
    • Infrastructure & Network
    • Data Platform
    • AI for business
    • Security
    • DevOps tools
    • Serverless
    • Monitoring & Resources
  • All Solutions
    • By industry
    • By use case
    • Economics and Pricing
    • Security
    • Technical Support
    • Start testing with double trial credits
    • Cloud credits to scale your IT product
    • Gateway to Russia
    • Cloud for Startups
    • Center for Technologies and Society
    • Yandex Cloud Partner program
    • Price calculator
    • Pricing plans
  • Customer Stories
  • Documentation
  • Blog
© 2026 Direct Cursus Technology L.L.C.
Terraform in Yandex Cloud
  • Getting started
  • Solution library
    • Overview
    • Release notes
          • organizationmanager_group
          • organizationmanager_group_iam_member
          • organizationmanager_group_mapping
          • organizationmanager_group_mapping_item
          • organizationmanager_group_membership
          • organizationmanager_idp_application_oauth_application
          • organizationmanager_idp_application_oauth_application_assignment
          • organizationmanager_idp_application_saml_application
          • organizationmanager_idp_application_saml_application_assignment
          • organizationmanager_idp_application_saml_signature_certificate
          • organizationmanager_idp_user
          • organizationmanager_idp_userpool
          • organizationmanager_idp_userpool_domain
          • organizationmanager_mfa_enforcement
          • organizationmanager_mfa_enforcement_audience
          • organizationmanager_organization_iam_binding
          • organizationmanager_organization_iam_member
          • organizationmanager_os_login_settings
          • organizationmanager_saml_federation
          • organizationmanager_user_ssh_key

In this article:

  • Example usage
  • Arguments & Attributes Reference
  • Import
  1. Terraform reference
  2. Resources
  3. Identity Hub
  4. Resources
  5. organizationmanager_saml_federation

yandex_organizationmanager_saml_federation (Resource)

Written by
Yandex Cloud
Updated at February 9, 2026
  • Example usage
  • Arguments & Attributes Reference
  • Import

Allows management of a single SAML Federation within an existing Yandex Cloud Organization.

Example usageExample usage

//
// Create a new OrganizationManager SAML Federation.
//
resource "yandex_organizationmanager_saml_federation" "saml_fed" {
  name            = "my-federation"
  description     = "My new SAML federation"
  organization_id = "sdf4*********3fr"
  sso_url         = "https://my-sso.url"
  issuer          = "my-issuer"
  sso_binding     = "POST"
}

Arguments & Attributes ReferenceArguments & Attributes Reference

  • auto_create_account_on_login (Bool). Add new users automatically on successful authentication. The user will get the resource-manager.clouds.member role automatically, but you need to grant other roles to them. If the value is false, users who aren't added to the cloud can't log in, even if they have authenticated on your server.
  • case_insensitive_name_ids (Bool). Use case-insensitive name IDs.
  • cookie_max_age (String). The lifetime of a Browser cookie in seconds. If the cookie is still valid, the management console authenticates the user immediately and redirects them to the home page. The default value is 8h.
  • created_at (Read-Only) (String). The creation timestamp of the resource.
  • description (String). The resource description.
  • id (String).
  • issuer (Required)(String). The ID of the IdP server to be used for authentication. The IdP server also responds to IAM with this ID after the user authenticates.
  • labels (Map Of String). A set of key/value label pairs which assigned to resource.
  • name (Required)(String). The resource name.
  • organization_id (Required)(String). The organization to attach this SAML Federation to.
  • sso_binding (Required)(String). Single sign-on endpoint binding type. Most Identity Providers support the POST binding type. SAML Binding is a mapping of a SAML protocol message onto standard messaging formats and/or communications protocols.
  • sso_url (Required)(String). Single sign-on (SSO) endpoint URL. Specify the link to the IdP login page here.
  • security_settings [Block]. Federation security settings.
    • encrypted_assertions (Bool). Enable encrypted assertions.
    • force_authn (Bool). Force authentication on session expiration

ImportImport

The resource can be imported by using their resource ID. For getting it you can use Yandex Cloud Web Console or Yandex Cloud CLI.

# terraform import yandex_organizationmanager_saml_federation.<resource Name> <resource Id>
terraform import yandex_organizationmanager_saml_federation.saml_fed ...

Was the article helpful?

Previous
organizationmanager_os_login_settings
Next
organizationmanager_user_ssh_key
© 2026 Direct Cursus Technology L.L.C.