Amazon SageMaker notebooks now support trusted identity propagation
Share
Services
Amazon SageMaker Notebooks now support Trusted Identity Propagation (TIP) with Amazon Athena, Amazon Redshift, and Amazon EMR Serverless, enabling per-user access control for data analytics. When connected to a TIP-enabled compute in a TIP-enabled Project, each notebook user's IAM Identity Center identity flows through to AWS Lake Formation, ensuring they see only the tables, columns, and rows their permissions allow, without sharing a single broad execution role. With TIP, enterprises get per-user data boundaries enforced based on who is running the query, full audit attribution with CloudTrail recording which user accessed data, and reduced admin friction since identity propagates automatically through the existing compute connection with no extra login, token, or role management required. To get started, use a notebook in a TIP enabled Project with the supported engines. This feature is available in [all AWS Regions where Amazon SageMaker Unified Studio is available](https://docs.aws.amazon.com/sagemaker-unified-studio/latest/adminguide/supported-regions.html). To learn more, see [Trusted identity propagation](https://docs.aws.amazon.com/sagemaker-unified-studio/latest/adminguide/trusted-identity-propagation.html) in the Amazon SageMaker Unified Studio Administrator Guide and [Notebooks](https://docs.aws.amazon.com/sagemaker-unified-studio/latest/userguide/notebooks.html) in the Amazon SageMaker Unified Studio User Guide.
What else is happening at Amazon Web Services?
Read update
Services
Share
Amazon CloudWatch pipelines adds GeoIP, RDS, and XML processors
about 14 hours ago
Services
Share
Amazon OpenSearch Ingestion is now available in GovCloud Regions
about 17 hours ago
Services
Share
AWS Lambda MicroVMs is now available in 5 additional AWS regions
about 18 hours ago
Services
Share