Can you clarify the question?
- What is "service account"?
- How have you (or do you propose) to block "interactive login to service common account"?
Depending on what you are asking, the solution may be to use "command=" in the service account's authorized_keys file on the copy destination systems.