| Authorization area | Description |
|---|---|
| The AI Object Storage S3-compatible API, which is governed by organization and bucket access policies | Controls access to data in CoreWeave AI Object Storage. |
| CoreWeave Kubernetes Service (CKS) authorization within clusters | Access and roles for Kubernetes resources managed by CKS. |
| SUNK cluster access, managed through SUNK User Provisioning (SUP) | SUP provisions CoreWeave IAM user and group data into POSIX identities in the cluster. IAM Access Policies do not directly govern SUNK cluster access. |
Next steps
- Learn about IAM Access Policies.
- Create an IAM Access Policy.