> ## Documentation Index
> Fetch the complete documentation index at: https://docs.cloud.cdata.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Amazon Athena

export const title_5 = "Amazon Athena";

export const title_4 = "Amazon Athena";

export const title_3 = "Amazon Athena";

export const title_2 = "Amazon Athena";

export const title_1 = "Amazon Athena";

export const title_0 = "Amazon Athena";

## Setup Guide

Follow these steps to connect Amazon Athena to your Connect AI account:

<Steps>
  <Step>
    Open the **Sources** page of the Connect AI navigation menu.
  </Step>

  <Step>
    Click **+ Add Connection** in the upper-right corner.
  </Step>

  <Step>
    Type *Amazon Athena* into the search field, then click the data source name.
  </Step>

  <Step>
    On the **Basic Settings** tab of the new connection, enter a connection name or keep the default name.
  </Step>

  <Step>
    Enter the **S3 Staging Directory** that Amazon Athena uses to store the results of a query.
  </Step>

  <Step>
    Enter the Amazon Athena **Data Source**.
  </Step>

  <Step>
    Select the Authentication method, then proceed to the relevant section and follow those instructions.
  </Step>
</Steps>

## Authentication Methods

<Tabs>
  <Tab title="ADFS">
    <Steps>
      <Step>
        Enter the ADFS **User** Id.
      </Step>

      <Step>
        Add the **Password** for that account.
      </Step>

      <Step>
        Enter the **SSO Login URL** to the URL used by the SSO provider.
      </Step>

      <Step>
        Select the **AWS Region** that hosts your AWS account.
      </Step>

      <Step>
        Enter the Amazon Athena **Database**. If this is blank, the default database set is used instead.
      </Step>

      <Step>
        In Amazon Athena, add the Connect AI static IP addresses to your connection whitelist.
      </Step>

      <Step>
        At the top of the Connect AI **Add {title_0} Connection** page, click **Save & Test**.

        * If the connection test succeeds, a **Connection successfully saved** message appears, indicating that your connection has been created. The **Status** on the **Edit Connection** page also changes to **Authenticated**. View the data model of your successful connection in the right pane of the **Edit Connection** page, in the **Data Model** tab.
        * If the connection test fails, ensure that you entered your login information correctly with no stray spaces or other characters. Connect AI displays error messages under the required fields with missing data. Some data sources require that you sign in directly to the source website. If you did not, an error message appears under the **Sign in** button. Correct the errors and try again.
        * Unsuccessful connections are saved as drafts and have a **Status** of **Not Authenticated**. You can return to the connection and authenticate it later.
      </Step>
    </Steps>
  </Tab>

  <Tab title="AWSRootKeys">
    <Steps>
      <Step>
        Enter the **AWS Access Key** associated with the AWS root account.
      </Step>

      <Step>
        Enter the **AWS Secret Key** associated with the AWS root account.
      </Step>

      <Step>
        Select the **AWS Region** that hosts your AWS account.
      </Step>

      <Step>
        Enter the Amazon Athena **Database**. If this is blank, the default database set is used instead.
      </Step>

      <Step>
        In Amazon Athena, add the Connect AI static IP addresses to your connection whitelist.
      </Step>

      <Step>
        At the top of the Connect AI **Add {title_1} Connection** page, click **Save & Test**.

        * If the connection test succeeds, a **Connection successfully saved** message appears, indicating that your connection has been created. The **Status** on the **Edit Connection** page also changes to **Authenticated**. View the data model of your successful connection in the right pane of the **Edit Connection** page, in the **Data Model** tab.
        * If the connection test fails, ensure that you entered your login information correctly with no stray spaces or other characters. Connect AI displays error messages under the required fields with missing data. Some data sources require that you sign in directly to the source website. If you did not, an error message appears under the **Sign in** button. Correct the errors and try again.
        * Unsuccessful connections are saved as drafts and have a **Status** of **Not Authenticated**. You can return to the connection and authenticate it later.
      </Step>
    </Steps>
  </Tab>

  <Tab title="AWSIAMRoles">
    <Steps>
      <Step>
        Enter the **AWS Access Key** associated with the AWS root account.
      </Step>

      <Step>
        Enter the **AWS Secret Key** associated with the AWS root account.
      </Step>

      <Step>
        Enter the **AWS Role ARN** for the authenticating User Id.
      </Step>

      <Step>
        (Optional) Enter the **AWS External Id** only if emulating a different role.
      </Step>

      <Step>
        Select the **AWS Region** that hosts your AWS account.
      </Step>

      <Step>
        Enter the Amazon Athena **Database**. If this is blank, the default database set is used instead.
      </Step>

      <Step>
        In Amazon Athena, add the Connect AI static IP addresses to your connection whitelist.
      </Step>

      <Step>
        At the top of the Connect AI **Add {title_2} Connection** page, click **Save & Test**.

        * If the connection test succeeds, a **Connection successfully saved** message appears, indicating that your connection has been created. The **Status** on the **Edit Connection** page also changes to **Authenticated**. View the data model of your successful connection in the right pane of the **Edit Connection** page, in the **Data Model** tab.
        * If the connection test fails, ensure that you entered your login information correctly with no stray spaces or other characters. Connect AI displays error messages under the required fields with missing data. Some data sources require that you sign in directly to the source website. If you did not, an error message appears under the **Sign in** button. Correct the errors and try again.
        * Unsuccessful connections are saved as drafts and have a **Status** of **Not Authenticated**. You can return to the connection and authenticate it later.
      </Step>
    </Steps>
  </Tab>

  <Tab title="Okta">
    <Steps>
      <Step>
        In **User** enter the Amazon Athena username for authentication.
      </Step>

      <Step>
        In **Password** enter the user password.
      </Step>

      <Step>
        Enter the **SSO Login URL**.
      </Step>

      <Step>
        Enter all relevant **SSO Properties**, with the format 'ssoproperty1=value1;ssoproperty2=value2;ssoproperty3=value3;'. Make sure to separate all property-value pairs with semicolons.
      </Step>

      <Step>
        Select the **AWS Region** that hosts your AWS account.
      </Step>

      <Step>
        Enter the Amazon Athena **Database**. If this is blank, the default database set is used instead.
      </Step>

      <Step>
        In Amazon Athena, add the Connect AI static IP addresses to your connection whitelist.
      </Step>

      <Step>
        At the top of the Connect AI **Add {title_3} Connection** page, click **Save & Test**.

        * If the connection test succeeds, a **Connection successfully saved** message appears, indicating that your connection has been created. The **Status** on the **Edit Connection** page also changes to **Authenticated**. View the data model of your successful connection in the right pane of the **Edit Connection** page, in the **Data Model** tab.
        * If the connection test fails, ensure that you entered your login information correctly with no stray spaces or other characters. Connect AI displays error messages under the required fields with missing data. Some data sources require that you sign in directly to the source website. If you did not, an error message appears under the **Sign in** button. Correct the errors and try again.
        * Unsuccessful connections are saved as drafts and have a **Status** of **Not Authenticated**. You can return to the connection and authenticate it later.
      </Step>
    </Steps>
  </Tab>

  <Tab title="PingFederate">
    <Steps>
      <Step>
        In **User** enter the Amazon Athena username for authentication.
      </Step>

      <Step>
        In **Password** enter the user password.
      </Step>

      <Step>
        Enter the **SSO Login URL**.
      </Step>

      <Step>
        Enter the **SSO Properties**, with the format 'ssoproperty1=value1;ssoproperty2=value2;ssoproperty3=value3;'. Make sure to separate all property-value pairs with semicolons.
      </Step>

      <Step>
        Add the **SSO Exchange URL**.
      </Step>

      <Step>
        (Optional) Enter the **AWS Role ARN** only if you have multiple Identity Providers in your AWS account.
      </Step>

      <Step>
        Select the **AWS Region** that hosts your AWS account.
      </Step>

      <Step>
        Enter the Amazon Athena **Database**. If this is blank, the default database set is used instead.
      </Step>

      <Step>
        In Amazon Athena, add the Connect AI static IP addresses to your connection whitelist.
      </Step>

      <Step>
        At the top of the Connect AI **Add {title_4} Connection** page, click **Save & Test**.

        * If the connection test succeeds, a **Connection successfully saved** message appears, indicating that your connection has been created. The **Status** on the **Edit Connection** page also changes to **Authenticated**. View the data model of your successful connection in the right pane of the **Edit Connection** page, in the **Data Model** tab.
        * If the connection test fails, ensure that you entered your login information correctly with no stray spaces or other characters. Connect AI displays error messages under the required fields with missing data. Some data sources require that you sign in directly to the source website. If you did not, an error message appears under the **Sign in** button. Correct the errors and try again.
        * Unsuccessful connections are saved as drafts and have a **Status** of **Not Authenticated**. You can return to the connection and authenticate it later.
      </Step>
    </Steps>
  </Tab>

  <Tab title="AzureAD">
    <Steps>
      <Step>
        Enter the **SSO Properties**, with the format 'ssoproperty1=value1;ssoproperty2=value2;ssoproperty3=value3;'. Make sure to separate all property-value pairs with semicolons.
      </Step>

      <Step>
        Enter the **OAuth Client Id** assigned when you registered your Amazon Athena account for OAuth.
      </Step>

      <Step>
        Enter the **OAuth Client Secret** for your Amazon Athena account for OAuth.
      </Step>

      <Step>
        Select the **AWS Region** that hosts your AWS account.
      </Step>

      <Step>
        Enter the Amazon Athena **Database**. If this is blank, the default database set is used instead.
      </Step>

      <Step>
        Click **Sign in** to connect securely through OAuth. This action opens the Amazon Athena sign-in page in a new tab.
      </Step>

      <Step>
        Log in to your Amazon Athena account and provide the requested permissions (if applicable).
      </Step>

      <Step>
        In Amazon Athena, add the Connect AI static IP addresses to your connection whitelist.
      </Step>

      <Step>
        At the top of the Connect AI **Add {title_5} Connection** page, click **Save & Test**.

        * If the connection test succeeds, a **Connection successfully saved** message appears, indicating that your connection has been created. The **Status** on the **Edit Connection** page also changes to **Authenticated**. View the data model of your successful connection in the right pane of the **Edit Connection** page, in the **Data Model** tab.
        * If the connection test fails, ensure that you entered your login information correctly with no stray spaces or other characters. Connect AI displays error messages under the required fields with missing data. Some data sources require that you sign in directly to the source website. If you did not, an error message appears under the **Sign in** button. Correct the errors and try again.
        * Unsuccessful connections are saved as drafts and have a **Status** of **Not Authenticated**. You can return to the connection and authenticate it later.
      </Step>
    </Steps>
  </Tab>
</Tabs>

## More Information

For more information about interactions between Connect AI and Amazon Athena, see [this information page](https://cdn.cdata.com/help/FKM/cloud/default.htm#default).
