

The following diagram illustrates the architecture of a native IdP for Amazon Redshift: External user group memberships are natively mirrored with Amazon Redshift roles and users.External users can securely access Amazon Redshift without manually creating new user names or roles using their existing corporate directory credentials.You can manage users and groups from a centralized IdP.Enables your users to be automatically signed in to Amazon Redshift with their Azure AD accounts.Using an Amazon Redshift native IdP has the following benefits: You don’t need to create separate Amazon Redshift database users, AWS Identity and Access Management (IAM) roles, or IAM policies with this setup. Azure AD manages the users and provides federated access to Amazon Redshift. In this post, we focus on Microsoft Azure AD as the IdP and provide step-by-step guidance to connect SQL clients like SQL Workbench/J and DBeaver with Amazon Redshift using a native IdP process. Additionally, Redshift Native IdP can be integrated with dynamic data masking (DDM) making sensitive data protection becomes more streamlined and efficient, further enhancing the security measures within the Amazon Redshift data warehouse. This authentication method simplifies administration tasks while providing the necessary tools to implement fine-grained row-level security in Amazon Redshift. This process is very easy to set up, provides a secure and smoother customer experience for managing identities and groups at a centralized external IdP, and integrates natively with Amazon Redshift.īy leveraging Amazon Redshift native IdP authentication, users can establish a robust and secure end-to-end experience within the platform.

The new Amazon Redshift native identity provider authentication simplifies administration by sharing identity and group membership information to Amazon Redshift from a third-party identity provider (IdP) service, such as Microsoft Azure Active Directory (Azure AD), and enabling Amazon Redshift to natively process third-party tokens, identities, and group permissions. Tens of thousands of customers rely on Amazon Redshift to analyze exabytes of data and run complex analytical queries. June 2023: This post was reviewed and updated for accuracy.Īmazon Redshift accelerates your time to insights with fast, easy, and secure cloud data warehousing at scale.
