OptionalnodeRequired when services is set. The node these credentials apply to.
OptionalservicesServices to scope credentials to (e.g., ["s3"], ["kvs"], ["s3", "kvs"]).
When set, nodeId is required and the returned credentials contain only the
listed service permissions for that single node.
Options for the assumeRole method.