Connections > Amazon Athena connection properties > Connect to Amazon Athena
  

Connect to Amazon Athena

Let's configure the Amazon Athena connection properties to connect to Amazon Athena.

Before you begin

Before you get started, you'll need to get information from your Amazon Athena account based on the authentication type that you want to configure.
To configure permanent IAM credentials authentication, get the access key and secret key.
To configure EC2 instance profile authentication, set up an EC2 instance and attach the EC2 role to the EC2 instance.
Depending on the authentication method you choose, attach the appropriate policies to the IAM user or EC2 role.
Check out Prepare for authentication to learn more about the authentication prerequisites.

Connection details

The following table describes the basic connection properties:
Property
Description
Connection Name
Name of the connection.
Each connection name must be unique within the organization. Connection names can contain alphanumeric characters, spaces, and the following special characters: _ . + -,
Maximum length is 255 characters.
Description
Description of the connection. Maximum length is 4000 characters.
Type
Amazon Athena
Use Secret Vault
Stores sensitive credentials for this connection in the secrets manager that is configured for your organization.
This property appears only if secrets manager is set up for your organization.
This property is not supported by Data Ingestion and Replication.
When you enable the secret vault in the connection, you can select which credentials that the Secure Agent retrieves from the secrets manager. If you don't enable this option, the credentials are stored in the repository or on a local Secure Agent, depending on how your organization is configured.
For information about how to configure and use a secrets manager, see Secrets manager configuration.
Runtime Environment
The name of the runtime environment where you want to run tasks.
Select a Secure Agent, Hosted Agent, or serverless runtime environment.

Authentication types

You can configure permanent IAM credentials and EC2 instance profile authentication types to access Amazon Athena.

Advanced settings

The following table describes the advanced connection properties:
Property
Description
Customer Master Key ID
The customer master key ID generated by AWS Key Management Service (AWS KMS) or the ARN of your custom key for cross-account access when you stage data in Amazon S3.
The customer master key serves to encrypt your data at the destination before they are saved in Amazon S3.You can either enter the customer-generated customer master key ID or the default customer master key ID.
Ensure that you generate the customer master key for the same region where your Amazon S3 bucket resides.
For more information about using customer master keys with Amazon Athena, see Encryption in the AWS documentation.

Related links