Home icon

Multi-Region identity-based access to Amazon Redshift and S3 Tables

Big Data Blog



This article demonstrates how to set up multi-Region identity-based access to Amazon Redshift and S3 Tables using IAM Identity Center Multi-Region, Lake Formation, and S3 Access Grants for centralized user management across AWS regions.

  • Enable IAM Identity Center Multi-Region by creating a multi-Region AWS KMS key and replicating it to additional regions
  • Configure Amazon S3 Tables integration with Lake Formation for fine-grained table and column-level access control
  • Use Trusted Identity Propagation (TIP) to pass user identity and group memberships through AWS services
  • Implement two data access patterns: SELECT queries through Lake Formation and UNLOAD/COPY through S3 Access Grants
  • Grant Lake Formation permissions to IAM Identity Center groups for identity-based access without additional IAM role configurations
  • Verify access control and authorization through AWS CloudTrail events for both S3 Access Grants and Lake Formation

Organizations can now manage users centrally while enabling consistent identity-based access to analytics workloads across multiple AWS regions without additional user provisioning.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

May 14
2026
Optimize Amazon S3 Tables queries with Amazon Redshift
May 16
2025
Simplify enterprise data access using the Amazon Redshift integration with Amazon S3 Access Grants
Jun 19
2025
Build a multi-Region analytics solution with Amazon Redshift, Amazon S3, and Amazon QuickSight
Nov 6
2024
Amazon S3 Access Grants now integrate with Amazon Redshift

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.