A company using a lake house architecture in Amazon Redshift wants users to sign in to the Redshift query editor with a third-party identity provider (IdP). As a data engineer, what is the first step to configure this authentication method?
Choose an answer
Tap an option to check your answer.
Correct answer: Register the third-party IdP as an identity provider from within Amazon Redshift..
Why this is the answer
The first step to configure a third-party Identity Provider (IdP) for Amazon Redshift query editor authentication is to register the IdP directly within Amazon Redshift. Redshift supports federated authentication through SAML 2.0 or OpenID Connect (OIDC), allowing it to integrate with various enterprise IdPs. This registration establishes the trust relationship between Redshift and your IdP. The option to register the IdP in the configuration settings of the Redshift cluster is too vague and doesn't accurately reflect the specific Redshift console or API actions. Registering the IdP with AWS Secrets Manager or AWS Certificate Manager (ACM) is incorrect because these services are not designed for direct IdP integration with Redshift for user authentication; Secrets Manager is for managing secrets, and ACM is for SSL/TLS certificates.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed