Connect Studio JupyterLab notebooks to Amazon S3 Access Grants with trusted identity propagation enabled
You can use Amazon S3 Access Grants to flexibly grant identity-based fine-grain access control to Amazon S3 locations. These grant Amazon S3 buckets access directly to your corporate users and groups. The following pages provides information and instructions on how to use Amazon S3 Access Grants with trusted identity propagation for SageMaker AI.
Prerequisites
To connect Studio to Lake Formation and Athena with trusted identity propagation enabled, ensure you have completed the following prerequisites:
-
Follow the getting started with Amazon S3 Access Grants to set up Amazon S3 Access Grants for your bucket. See scaling data access with Amazon S3 Access Grants
for more information. Note
Standard Amazon S3 APIs do not automatically work with Amazon S3 Access Grants. You must explicitly use Amazon S3 Access Grants APIs. See Managing access with Amazon S3 Access Grants for more information.