Home icon

Amazon Redshift simplifies access to secure logging with federated permissions

News



Amazon Redshift simplifies access to secure logging with a new DEBUG permission for federated permissions and fine-grained access control.

  • DEBUG permission lets data owners grant specific identities access to unredacted secure logging records
  • Secure logging redacts sensitive values in system tables when queries access FGAC-protected data
  • Superusers and database owners can grant DEBUG to IAM users, roles, or Identity Center users/groups
  • Authorized administrators get full log visibility for troubleshooting without disabling secure logging
  • Unredacted records persist when exporting Redshift system table data to Amazon S3 Tables
  • Available in all AWS Regions where Amazon Redshift is supported

The DEBUG permission provides precise, auditable control over log visibility while maintaining security and compliance requirements.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

Nov 24
2025
Amazon Redshift now supports federated permissions across multi-warehouse architectures
Jan 5
2026
Simplify multi-warehouse data governance with Amazon Redshift federated permissions
Aug 31
2026
Amazon Redshift now supports AWS IAM Identity Center authentication with enhanced VPC routing
Nov 18
2024
Amazon Redshift to enhance security by changing default behavior

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.