Skip to main content

November 20, 2025 - SUNK User Provisioning (SUP)

Automatic provisioning of POSIX and Slurm identities in SUNK clusters

Release SUNK

Overview

SUNK User Provisioning (SUP) automatically creates and manages POSIX users, groups, SSH keys, and Slurm users and accounts in your SUNK clusters. SUP provisions CoreWeave IAM data into SUNK, whether that data was federated from an IdP through Automated User Provisioning or manually created directly in the CoreWeave console.

Features

Automatic identity provisioning

SUP eliminates manual user management in SUNK clusters by automatically creating the necessary identities as soon as a user is added to CoreWeave IAM or to an upstream IdP.

  • POSIX users and groups: Automatically created from CoreWeave IAM data
  • SSH key management: Multiple SSH keys per user synced from User Settings
  • Slurm users and accounts: Automatically provisioned for job submission and management
  • Login access: Users can immediately SSH into Login Nodes and Individual Login Pods

Use with Automated User Provisioning

SUP works with any source of CoreWeave IAM data. You can either use it independently or in combination with Automated User Provisioning (AUP):

  • With AUP: Create an end-to-end federated identity pipeline from your identity provider (IdP), such as Okta or Microsoft Entra, to SUNK clusters.
  • Without AUP: Manually manage users in the Cloud Console and let SUP handle SUNK provisioning directly from CoreWeave IAM.

Learn more about Automated User Provisioning.

Multiple SSH keys support

SUP now supports multiple SSH keys per user through SCIM ingestion. Users can add additional SSH keys in User Settings without losing existing SSH access, making key rotation and multi-device access more manageable.

Learn more: