> ## Documentation Index
> Fetch the complete documentation index at: https://docs.cloud.cdata.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Amazon DynamoDB

export const title_4 = "Amazon DynamoDB";

export const title_3 = "Amazon DynamoDB";

export const title_2 = "Amazon DynamoDB";

export const title_1 = "Amazon DynamoDB";

export const title_0 = "Amazon DynamoDB";

## Prerequisites

#### Whitelist CData IPs

To establish a connection to Amazon DynamoDB, you need to allow access to Amazon DynamoDB via CData’s IP. When hosting Amazon DynamoDB behind a firewall, you must safelist these IP addresses in your firewall.

* Range: `52.224.0.160` to `52.224.0.175` and `4.154.117.160` to `4.154.117.175`.
* CIDR notation: `52.224.0.160/28` and `4.154.117.160/28`

#### Ensure Amazon DynamoDB Is Publicly Accessible

Provide a public facing IP/domain to connect to this data source. The following private IP ranges do not work:

* `10.0.0.0` to `10.255.255.255`
* `172.16.0.0` to `172.31.255.255`
* `192.168.0.0` to `192.168.255.255`
* `127.0.0.1` (aka ‘localhost’)

## Setup Guide

Follow these steps to connect Amazon DynamoDB to your Connect AI account:

<Steps>
  <Step>
    Open the **Sources** page of the Connect AI navigation menu.
  </Step>

  <Step>
    Click **+ Add Connection** in the upper-right corner.
  </Step>

  <Step>
    Type *Amazon DynamoDB* into the search field, then click the data source name.
  </Step>

  <Step>
    On the **Basic Settings** tab of the new connection, enter a connection name or keep the default name.
  </Step>

  <Step>
    Select the Authentication method, then proceed to the relevant section and follow those instructions.
  </Step>
</Steps>

## Authentication Methods

<Tabs>
  <Tab title="ADFS">
    <Steps>
      <Step>
        Enter the ADFS **User** Id.
      </Step>

      <Step>
        Add the **Password** for that account.
      </Step>

      <Step>
        Enter the **SSO Login URL** to the URL use by the SSO provider.
      </Step>

      <Step>
        Select the **AWS Region** that hosts your AWS account.
      </Step>

      <Step>
        In Amazon DynamoDB, add the Connect AI static IP addresses to your connection whitelist.
      </Step>

      <Step>
        At the top of the Connect AI **Add {title_0} Connection** page, click **Save & Test**.

        * If the connection test succeeds, a **Connection successfully saved** message appears, indicating that your connection has been created. The **Status** on the **Edit Connection** page also changes to **Authenticated**. View the data model of your successful connection in the right pane of the **Edit Connection** page, in the **Data Model** tab.
        * If the connection test fails, ensure that you entered your login information correctly with no stray spaces or other characters. Connect AI displays error messages under the required fields with missing data. Some data sources require that you sign in directly to the source website. If you did not, an error message appears under the **Sign in** button. Correct the errors and try again.
        * Unsuccessful connections are saved as drafts and have a **Status** of **Not Authenticated**. You can return to the connection and authenticate it later.
      </Step>
    </Steps>
  </Tab>

  <Tab title="AWSRootKeys">
    <Steps>
      <Step>
        Enter the **AWS Access Key** associated with the AWS root account.
      </Step>

      <Step>
        Enter the **AWS Secret Key** associated with the AWS root account.
      </Step>

      <Step>
        Select the **AWS Region** that hosts your AWS account.
      </Step>

      <Step>
        In Amazon DynamoDB, add the Connect AI static IP addresses to your connection whitelist.
      </Step>

      <Step>
        At the top of the Connect AI **Add {title_1} Connection** page, click **Save & Test**.

        * If the connection test succeeds, a **Connection successfully saved** message appears, indicating that your connection has been created. The **Status** on the **Edit Connection** page also changes to **Authenticated**. View the data model of your successful connection in the right pane of the **Edit Connection** page, in the **Data Model** tab.
        * If the connection test fails, ensure that you entered your login information correctly with no stray spaces or other characters. Connect AI displays error messages under the required fields with missing data. Some data sources require that you sign in directly to the source website. If you did not, an error message appears under the **Sign in** button. Correct the errors and try again.
        * Unsuccessful connections are saved as drafts and have a **Status** of **Not Authenticated**. You can return to the connection and authenticate it later.
      </Step>
    </Steps>
  </Tab>

  <Tab title="AWSIAMRoles">
    <Steps>
      <Step>
        Enter the **AWS Access Key** associated with the AWS root account.
      </Step>

      <Step>
        Enter the **AWS Secret Key** associated with the AWS root account.
      </Step>

      <Step>
        Enter the **AWS Role ARN** for the authenticating User Id.
      </Step>

      <Step>
        (Optional) Enter the **AWS External Id** only if emulating a different role.
      </Step>

      <Step>
        Select the **AWS Region** that hosts your AWS account.
      </Step>

      <Step>
        In Amazon DynamoDB, add the Connect AI static IP addresses to your connection whitelist.
      </Step>

      <Step>
        At the top of the Connect AI **Add {title_2} Connection** page, click **Save & Test**.

        * If the connection test succeeds, a **Connection successfully saved** message appears, indicating that your connection has been created. The **Status** on the **Edit Connection** page also changes to **Authenticated**. View the data model of your successful connection in the right pane of the **Edit Connection** page, in the **Data Model** tab.
        * If the connection test fails, ensure that you entered your login information correctly with no stray spaces or other characters. Connect AI displays error messages under the required fields with missing data. Some data sources require that you sign in directly to the source website. If you did not, an error message appears under the **Sign in** button. Correct the errors and try again.
        * Unsuccessful connections are saved as drafts and have a **Status** of **Not Authenticated**. You can return to the connection and authenticate it later.
      </Step>
    </Steps>
  </Tab>

  <Tab title="Okta">
    <Steps>
      <Step>
        In **User** enter the Amazon DynamoDB username for authentication.
      </Step>

      <Step>
        In **Password** enter the user password.
      </Step>

      <Step>
        Enter the **SSO Login URL**.
      </Step>

      <Step>
        Enter all relevant **SSO Properties**, with the format ‘ssoproperty1=value1;ssoproperty2=value2;ssoproperty3=value3;’. Make sure to separate all property-value pairs with semicolons.
      </Step>

      <Step>
        Select the **AWS Region** that hosts your AWS account.
      </Step>

      <Step>
        In Amazon DynamoDB, add the Connect AI static IP addresses to your connection whitelist.
      </Step>

      <Step>
        At the top of the Connect AI **Add {title_3} Connection** page, click **Save & Test**.

        * If the connection test succeeds, a **Connection successfully saved** message appears, indicating that your connection has been created. The **Status** on the **Edit Connection** page also changes to **Authenticated**. View the data model of your successful connection in the right pane of the **Edit Connection** page, in the **Data Model** tab.
        * If the connection test fails, ensure that you entered your login information correctly with no stray spaces or other characters. Connect AI displays error messages under the required fields with missing data. Some data sources require that you sign in directly to the source website. If you did not, an error message appears under the **Sign in** button. Correct the errors and try again.
        * Unsuccessful connections are saved as drafts and have a **Status** of **Not Authenticated**. You can return to the connection and authenticate it later.
      </Step>
    </Steps>
  </Tab>

  <Tab title="PingFederate">
    <Steps>
      <Step>
        In **User** enter the Amazon DynamoDB username for authentication.
      </Step>

      <Step>
        In **Password** enter the user password.
      </Step>

      <Step>
        Enter the **SSO Login URL**.
      </Step>

      <Step>
        Enter the **SSO Properties**, with the format ‘ssoproperty1=value1;ssoproperty2=value2;ssoproperty3=value3;’. Make sure to separate all property-value pairs with semicolons.
      </Step>

      <Step>
        Add the **SSO Exchange URL**.
      </Step>

      <Step>
        (Optional) Enter the **AWS Role ARN** only if you have multiple Identity Providers in your AWS account.
      </Step>

      <Step>
        Select the **AWS Region** that hosts your AWS account.
      </Step>

      <Step>
        In Amazon DynamoDB, add the Connect AI static IP addresses to your connection whitelist.
      </Step>

      <Step>
        At the top of the Connect AI **Add {title_4} Connection** page, click **Save & Test**.

        * If the connection test succeeds, a **Connection successfully saved** message appears, indicating that your connection has been created. The **Status** on the **Edit Connection** page also changes to **Authenticated**. View the data model of your successful connection in the right pane of the **Edit Connection** page, in the **Data Model** tab.
        * If the connection test fails, ensure that you entered your login information correctly with no stray spaces or other characters. Connect AI displays error messages under the required fields with missing data. Some data sources require that you sign in directly to the source website. If you did not, an error message appears under the **Sign in** button. Correct the errors and try again.
        * Unsuccessful connections are saved as drafts and have a **Status** of **Not Authenticated**. You can return to the connection and authenticate it later.
      </Step>
    </Steps>
  </Tab>
</Tabs>

## More Information

For more information about interactions between Connect AI and Amazon DynamoDB, see [this information page](https://cdn.cdata.com/help/DDM/cloud/default.htm#default).
