Skip to main content

snapshot_copy_grants

Creates, updates, deletes, gets or lists a snapshot_copy_grants resource.

Overview

Namesnapshot_copy_grants
TypeResource
Idaws.redshift.snapshot_copy_grants

Fields

The following fields are returned by SELECT queries:

NameDatatypeDescription
kms_key_idstringThe unique identifier of the encrypted symmetric key in Amazon Web Services KMS to which Amazon Redshift is granted permission.
snapshot_copy_grant_namestringThe name of the snapshot copy grant.
tagsstringA list of tag instances.

Methods

The following methods are available for this resource:

NameAccessible byRequired ParamsOptional ParamsDescription
describe_snapshot_copy_grantsselectregionSnapshotCopyGrantName, MaxRecords, Marker, TagKeys, TagValuesReturns a list of snapshot copy grants owned by the Amazon Web Services account in the destination region. For more information about managing snapshot copy grants, go to Amazon Redshift Database Encryption in the Amazon Redshift Cluster Management Guide.
create_snapshot_copy_grantinsertSnapshotCopyGrantName, regionKmsKeyId, TagsCreates a snapshot copy grant that permits Amazon Redshift to use an encrypted symmetric key from Key Management Service (KMS) to encrypt copied snapshots in a destination region. For more information about managing snapshot copy grants, go to Amazon Redshift Database Encryption in the Amazon Redshift Cluster Management Guide.
delete_snapshot_copy_grantdeleteSnapshotCopyGrantName, regionDeletes the specified snapshot copy grant.

Parameters

Parameters can be passed in the WHERE clause of a query. Check the Methods section to see which parameters are required or optional for each operation.

NameDatatypeDescription
SnapshotCopyGrantNamestringThe name of the snapshot copy grant to delete.
regionstringAWS region (default: us-east-1)
KmsKeyIdstringThe unique identifier of the encrypted symmetric key to which to grant Amazon Redshift permission. If no key is specified, the default key is used.
MarkerstringAn optional parameter that specifies the starting point to return a set of response records. When the results of a DescribeSnapshotCopyGrant request exceed the value specified in MaxRecords, Amazon Web Services returns a value in the Marker field of the response. You can retrieve the next set of response records by providing the returned marker value in the Marker parameter and retrying the request. Constraints: You can specify either the SnapshotCopyGrantName parameter or the Marker parameter, but not both.
MaxRecordsintegerThe maximum number of response records to return in each call. If the number of remaining response records exceeds the specified MaxRecords value, a value is returned in a marker field of the response. You can retrieve the next set of records by retrying the command with the returned marker value. Default: 100 Constraints: minimum 20, maximum 100.
SnapshotCopyGrantNamestringThe name of the snapshot copy grant.
TagKeysarrayA tag key or keys for which you want to return all matching resources that are associated with the specified key or keys. For example, suppose that you have resources tagged with keys called owner and environment. If you specify both of these tag keys in the request, Amazon Redshift returns a response with all resources that have either or both of these tag keys associated with them.
TagValuesarrayA tag value or values for which you want to return all matching resources that are associated with the specified value or values. For example, suppose that you have resources tagged with values called admin and test. If you specify both of these tag values in the request, Amazon Redshift returns a response with all resources that have either or both of these tag values associated with them.
TagsarrayA list of tag instances.

SELECT examples

Returns a list of snapshot copy grants owned by the Amazon Web Services account in the destination region. For more information about managing snapshot copy grants, go to Amazon Redshift Database Encryption in the Amazon Redshift Cluster Management Guide.

SELECT
kms_key_id,
snapshot_copy_grant_name,
tags
FROM aws.redshift.snapshot_copy_grants
WHERE region = '{{ region }}' -- required
AND SnapshotCopyGrantName = '{{ SnapshotCopyGrantName }}'
AND MaxRecords = '{{ MaxRecords }}'
AND Marker = '{{ Marker }}'
AND TagKeys = '{{ TagKeys }}'
AND TagValues = '{{ TagValues }}'
;

INSERT examples

Creates a snapshot copy grant that permits Amazon Redshift to use an encrypted symmetric key from Key Management Service (KMS) to encrypt copied snapshots in a destination region. For more information about managing snapshot copy grants, go to Amazon Redshift Database Encryption in the Amazon Redshift Cluster Management Guide.

INSERT INTO aws.redshift.snapshot_copy_grants (
SnapshotCopyGrantName,
region,
KmsKeyId,
Tags
)
SELECT
'{{ SnapshotCopyGrantName }}',
'{{ region }}',
'{{ KmsKeyId }}',
'{{ Tags }}'
RETURNING
kms_key_id,
snapshot_copy_grant_name,
tags
;

DELETE examples

Deletes the specified snapshot copy grant.

DELETE FROM aws.redshift.snapshot_copy_grants
WHERE SnapshotCopyGrantName = '{{ SnapshotCopyGrantName }}' --required
AND region = '{{ region }}' --required
;