Yandex Cloud
Поиск
Связаться с экспертомПопробовать бесплатно
  • Кейсы
  • Документация
  • Блог
  • Все сервисы
  • Статус работы сервисов
  • Marketplace
    • Доступны в регионе
    • Инфраструктура и сеть
    • Платформа данных
    • Искусственный интеллект
    • Безопасность
    • Инструменты DevOps
    • Бессерверные вычисления
    • Управление ресурсами
  • Все решения
    • По отраслям
    • По типу задач
    • Экономика платформы
    • Безопасность
    • Техническая поддержка
    • Каталог партнёров
    • Обучение и сертификация
    • Облако для стартапов
    • Облако для крупного бизнеса
    • Центр технологий для общества
    • Партнёрская программа
    • Поддержка IT-бизнеса
    • Облако для фрилансеров
    • Обучение и сертификация
    • Блог
    • Документация
    • Мероприятия и вебинары
    • Контакты, чаты и сообщества
    • Идеи
    • Калькулятор цен
    • Тарифы
    • Акции и free tier
  • Кейсы
  • Документация
  • Блог
Создавайте контент и получайте гранты!Готовы написать своё руководство? Участвуйте в контент-программе и получайте гранты на работу с облачными сервисами!
Подробнее о программе
Проект Яндекса
© 2026 ТОО «Облачные Сервисы Казахстан»
Yandex Cloud Registry
KZ
  • Начало работы
  • Управление доступом
  • Правила тарификации
    • Overview
    • configure-docker
    • tools
      • Overview
      • configure-docker
        • Overview
        • add-access-binding
        • add-ip-permissions
        • create
        • delete
        • force-delete
        • get
        • list
        • list-access-bindings
        • list-artifacts
        • list-ip-permissions
        • remove-access-binding
        • remove-ip-permissions
        • set-access-bindings
        • set-ip-permissions
        • update
      • tools
  • Справочник Terraform
  • Аудитные логи Audit Trails
  1. Справочник CLI (англ.)
  2. v1
  3. registry
  4. set-access-bindings

yc cloud-registry v1 registry set-access-bindings

Статья создана
Yandex Cloud
Обновлена 1 июля 2026 г.
Открыть в Markdown

Sets access bindings for the specified registry.

Command UsageCommand Usage

Syntax:

yc cloud-registry v1 registry set-access-bindings <RESOURCE-ID>

FlagsFlags

Flag

Description

--id

string

ID of the resource for which access bindings are being set. To get the resource ID, use a corresponding List request.

--access-bindings

shorthand/json

Access bindings to be set. For more information, see documentation.

Description
  • role-id (string)
    ID of the [yandex.cloud.iam.v1.Role] that is assigned to the [subject].
  • subject (structure)
    Identity for which access binding is being created. It can represent an account with a unique ID or several accounts with a system identifier.
  • id (string)
    ID of the subject. It can contain one of the following values:oauth * 'allAuthenticatedUsers': A special public group that represents anyone who is authenticated. It can be used only if the [type] is 'system'. * 'allUsers': A special public group that represents anyone. No authentication is required. For example, you don't need to specify the IAM token in an API query. It can be used only if the [type] is 'system'. * 'group:organization:<id>:users': A special system group that represents all members of organization with given <id>. It can be used only if the [type] is 'system'. * 'group:federation:<id>:users': A special system group that represents all users of federation with given <id>. It can be used only if the [type] is 'system'. * '<cloud generated id>': An identifier that represents a user account. It can be used only if the [type] is 'userAccount', 'federatedUser' or 'serviceAccount'.
  • type (string)
    Type of the subject. It can contain one of the following values: * 'userAccount': An account on Yandex or Yandex Connect, added to Yandex Cloud. * 'serviceAccount': A service account. This type represents the [yandex.cloud.iam.v1.ServiceAccount] resource. * 'federatedUser': A federated account. This type represents a user from an identity federation, like Active Directory. * 'system': System group. This type represents several accounts with a common system identifier. For more information, see documentation.
Shorthand Syntax
[
  {
    role-id = string,
    subject = {
      id = string,
      type = string
    }
  }, ...
]
JSON Syntax
[
  {
    "role-id": "string",
    "subject": {
      "id": "string",
      "type": "string"
    }
  }, ...
]

--async

Display information about the operation in progress, without waiting for the operation to complete.

-r, --request-file

string

Path to a request file.

--example-json

Generates a JSON template of the request.

-e, --example-yaml

Generates a YAML template of the request.

The template can be customized and used as input for the command.

Usage example:

  1. Generate template:
    yc cloud-registry v1 registry set-access-bindings --example-json > request.json
    or
    yc cloud-registry v1 registry set-access-bindings --example-yaml > request.yaml

  2. Edit the template file

  3. Run with template:
    yc cloud-registry v1 registry set-access-bindings -r request.json
    or
    yc cloud-registry v1 registry set-access-bindings -r request.yaml

Global FlagsGlobal Flags

Flag

Description

--profile

string

Set the custom profile.

--region

string

Set the region.

--debug

Debug logging.

--debug-grpc

Debug gRPC logging. Very verbose, used for debugging connection problems.

--no-user-output

Disable printing user intended output to stderr.

--pager

string

Set the custom pager.

--no-pager

Do not pipe help output through a pager.

--format

string

Set the output format: text, yaml, json, table, summary || summary[name, instance.id, instance.disks[0].size].

--retry

int

Enable gRPC retries. By default, retries are enabled with maximum 5 attempts.
Pass 0 to disable retries. Pass any negative value for infinite retries.
Even infinite retries are capped with 2 minutes timeout.

--timeout

string

Set the timeout.

--token

string

Set the IAM token to use.

--impersonate-service-account-id

string

Set the ID of the service account to impersonate.

--no-browser

Disable opening browser for authentication.

--query

string

Query to select values from the response using jq syntax

--print-metadata

Print operation metadata along with result.

--syntax

string

Choose syntax option.

--cli-auto-prompt

string[="on"]

Enable interactive auto-prompt mode. Values: on, partial, off. Bare --cli-auto-prompt is equivalent to --cli-auto-prompt=on.

--no-cli-auto-prompt

Disable interactive auto-prompt mode (overrides --cli-auto-prompt, env and profile).

-h, --help

Display help for the command.

Была ли статья полезна?

Предыдущая
remove-ip-permissions
Следующая
set-ip-permissions
Создавайте контент и получайте гранты!Готовы написать своё руководство? Участвуйте в контент-программе и получайте гранты на работу с облачными сервисами!
Подробнее о программе
Проект Яндекса
© 2026 ТОО «Облачные Сервисы Казахстан»