Create a Amazon MSK cluster that uses IAM access control
This section explains how you can use the Amazon Web Services Management Console, the API, or the Amazon CLI to create a Amazon MSK cluster that uses IAM access control. For information about how to turn on IAM access control for an existing cluster, see Update security settings of a Amazon MSK cluster.
Use the Amazon Web Services Management Console to create a cluster that uses IAM access control
Open the Amazon MSK console at https://console.aws.amazon.com/msk/
. -
Choose Create cluster.
-
Choose Create cluster with custom settings.
-
In the Authentication section, choose IAM access control.
-
Complete the rest of the workflow for creating a cluster.
Use the API or the Amazon CLI to create a cluster that uses IAM access control
To create a cluster with IAM access control enabled, use the CreateCluster
API or the create-cluster CLI command, and pass the following JSON for the ClientAuthentication
parameter:"ClientAuthentication": { "Sasl": { "Iam": { "Enabled": true } }
.