Redshift Serverless

2026/08/19 - Redshift Serverless - 7 updated api methods

Changes  Amazon Redshift Enhanced System Table Retention that allows customers to store their system table data directly in S3 Tables in customer's account instead of Redshift Managed Storage

CreateNamespace (updated) Link ¶
Changes (response)
{'namespace': {'s3TablePublishStatus': {'enabledAll': 'boolean',
                                        'lastIngestionTimes': {'string': 'string'},
                                        's3TableGranularity': 'namespace | '
                                                              'account',
                                        's3TableNamespace': 'string',
                                        's3Tables': ['string']}}}

Creates a namespace in Amazon Redshift Serverless.

See also: AWS API Documentation

Request Syntax

client.create_namespace(
    adminPasswordSecretKmsKeyId='string',
    adminUserPassword='string',
    adminUsername='string',
    dbName='string',
    defaultIamRoleArn='string',
    iamRoles=[
        'string',
    ],
    kmsKeyId='string',
    logExports=[
        'useractivitylog'|'userlog'|'connectionlog',
    ],
    manageAdminPassword=True|False,
    namespaceName='string',
    redshiftIdcApplicationArn='string',
    tags=[
        {
            'key': 'string',
            'value': 'string'
        },
    ]
)
type adminPasswordSecretKmsKeyId:

string

param adminPasswordSecretKmsKeyId:

The ID of the Key Management Service (KMS) key used to encrypt and store the namespace's admin credentials secret. You can only use this parameter if manageAdminPassword is true.

type adminUserPassword:

string

param adminUserPassword:

The password of the administrator for the first database created in the namespace.

You can't use adminUserPassword if manageAdminPassword is true.

type adminUsername:

string

param adminUsername:

The username of the administrator for the first database created in the namespace.

type dbName:

string

param dbName:

The name of the first database created in the namespace.

type defaultIamRoleArn:

string

param defaultIamRoleArn:

The Amazon Resource Name (ARN) of the IAM role to set as a default in the namespace.

type iamRoles:

list

param iamRoles:

A list of IAM roles to associate with the namespace.

  • (string) --

type kmsKeyId:

string

param kmsKeyId:

The ID of the Amazon Web Services Key Management Service key used to encrypt your data.

type logExports:

list

param logExports:

The types of logs the namespace can export. Available export types are userlog, connectionlog, and useractivitylog.

  • (string) --

type manageAdminPassword:

boolean

param manageAdminPassword:

If true, Amazon Redshift uses Secrets Manager to manage the namespace's admin credentials. You can't use adminUserPassword if manageAdminPassword is true. If manageAdminPassword is false or not set, Amazon Redshift uses adminUserPassword for the admin user account's password.

type namespaceName:

string

param namespaceName:

[REQUIRED]

The name of the namespace.

type redshiftIdcApplicationArn:

string

param redshiftIdcApplicationArn:

The ARN for the Redshift application that integrates with IAM Identity Center.

type tags:

list

param tags:

A list of tag instances.

  • (dict) --

    A map of key-value pairs.

    • key (string) -- [REQUIRED]

      The key to use in the tag.

    • value (string) -- [REQUIRED]

      The value of the tag.

rtype:

dict

returns:

Response Syntax

{
    'namespace': {
        'adminPasswordSecretArn': 'string',
        'adminPasswordSecretKmsKeyId': 'string',
        'adminUsername': 'string',
        'catalogArn': 'string',
        'creationDate': datetime(2015, 1, 1),
        'dbName': 'string',
        'defaultIamRoleArn': 'string',
        'iamRoles': [
            'string',
        ],
        'kmsKeyId': 'string',
        'lakehouseRegistrationStatus': 'string',
        'logExports': [
            'useractivitylog'|'userlog'|'connectionlog',
        ],
        'namespaceArn': 'string',
        'namespaceId': 'string',
        'namespaceName': 'string',
        's3TablePublishStatus': {
            'enabledAll': True|False,
            'lastIngestionTimes': {
                'string': 'string'
            },
            's3TableGranularity': 'namespace'|'account',
            's3TableNamespace': 'string',
            's3Tables': [
                'string',
            ]
        },
        'status': 'AVAILABLE'|'MODIFYING'|'DELETING'
    }
}

Response Structure

  • (dict) --

    • namespace (dict) --

      The created namespace object.

      • adminPasswordSecretArn (string) --

        The Amazon Resource Name (ARN) for the namespace's admin user credentials secret.

      • adminPasswordSecretKmsKeyId (string) --

        The ID of the Key Management Service (KMS) key used to encrypt and store the namespace's admin credentials secret.

      • adminUsername (string) --

        The username of the administrator for the first database created in the namespace.

      • catalogArn (string) --

        The Amazon Resource Name (ARN) of the Glue Data Catalog associated with the namespace enabled with Amazon Redshift federated permissions.

      • creationDate (datetime) --

        The date of when the namespace was created.

      • dbName (string) --

        The name of the first database created in the namespace.

      • defaultIamRoleArn (string) --

        The Amazon Resource Name (ARN) of the IAM role to set as a default in the namespace.

      • iamRoles (list) --

        A list of IAM roles to associate with the namespace.

        • (string) --

      • kmsKeyId (string) --

        The ID of the Amazon Web Services Key Management Service key used to encrypt your data.

      • lakehouseRegistrationStatus (string) --

        The status of the lakehouse registration for the namespace. Indicates whether the namespace is successfully registered with Amazon Redshift federated permissions.

      • logExports (list) --

        The types of logs the namespace can export. Available export types are User log, Connection log, and User activity log.

        • (string) --

      • namespaceArn (string) --

        The Amazon Resource Name (ARN) associated with a namespace.

      • namespaceId (string) --

        The unique identifier of a namespace.

      • namespaceName (string) --

        The name of the namespace. Must be between 3-64 alphanumeric characters in lowercase, and it cannot be a reserved word. A list of reserved words can be found in Reserved Words in the Amazon Redshift Database Developer Guide.

      • s3TablePublishStatus (dict) --

        The current Amazon S3 Tables log-publishing status for the namespace. Not returned when S3 Tables publishing has never been configured for the namespace.

        • enabledAll (boolean) --

          true when the namespace is enrolled in every current and future system table rather than an explicit list of tables.

        • lastIngestionTimes (dict) --

          A map of system table name to the time that table last received data, as an ISO-8601 timestamp. A table that has not yet been ingested is absent from the map. Use it to judge data freshness.

          • (string) --

            • (string) --

        • s3TableGranularity (string) --

          The scope currently in effect. Values are namespace or account.

        • s3TableNamespace (string) --

          The identifier of the namespace in the S3 table bucket that holds the published tables.

        • s3Tables (list) --

          The system tables currently being published.

          • (string) --

            A system-table view name to publish to S3 Tables (e.g. "sys_query_history"), or the keyword "all" to publish every current and future system table.

      • status (string) --

        The status of the namespace.

DeleteNamespace (updated) Link ¶
Changes (response)
{'namespace': {'s3TablePublishStatus': {'enabledAll': 'boolean',
                                        'lastIngestionTimes': {'string': 'string'},
                                        's3TableGranularity': 'namespace | '
                                                              'account',
                                        's3TableNamespace': 'string',
                                        's3Tables': ['string']}}}

Deletes a namespace from Amazon Redshift Serverless. Before you delete the namespace, you can create a final snapshot that has all of the data within the namespace.

See also: AWS API Documentation

Request Syntax

client.delete_namespace(
    finalSnapshotName='string',
    finalSnapshotRetentionPeriod=123,
    namespaceName='string'
)
type finalSnapshotName:

string

param finalSnapshotName:

The name of the snapshot to be created before the namespace is deleted.

type finalSnapshotRetentionPeriod:

integer

param finalSnapshotRetentionPeriod:

How long to retain the final snapshot.

type namespaceName:

string

param namespaceName:

[REQUIRED]

The name of the namespace to delete.

rtype:

dict

returns:

Response Syntax

{
    'namespace': {
        'adminPasswordSecretArn': 'string',
        'adminPasswordSecretKmsKeyId': 'string',
        'adminUsername': 'string',
        'catalogArn': 'string',
        'creationDate': datetime(2015, 1, 1),
        'dbName': 'string',
        'defaultIamRoleArn': 'string',
        'iamRoles': [
            'string',
        ],
        'kmsKeyId': 'string',
        'lakehouseRegistrationStatus': 'string',
        'logExports': [
            'useractivitylog'|'userlog'|'connectionlog',
        ],
        'namespaceArn': 'string',
        'namespaceId': 'string',
        'namespaceName': 'string',
        's3TablePublishStatus': {
            'enabledAll': True|False,
            'lastIngestionTimes': {
                'string': 'string'
            },
            's3TableGranularity': 'namespace'|'account',
            's3TableNamespace': 'string',
            's3Tables': [
                'string',
            ]
        },
        'status': 'AVAILABLE'|'MODIFYING'|'DELETING'
    }
}

Response Structure

  • (dict) --

    • namespace (dict) --

      The deleted namespace object.

      • adminPasswordSecretArn (string) --

        The Amazon Resource Name (ARN) for the namespace's admin user credentials secret.

      • adminPasswordSecretKmsKeyId (string) --

        The ID of the Key Management Service (KMS) key used to encrypt and store the namespace's admin credentials secret.

      • adminUsername (string) --

        The username of the administrator for the first database created in the namespace.

      • catalogArn (string) --

        The Amazon Resource Name (ARN) of the Glue Data Catalog associated with the namespace enabled with Amazon Redshift federated permissions.

      • creationDate (datetime) --

        The date of when the namespace was created.

      • dbName (string) --

        The name of the first database created in the namespace.

      • defaultIamRoleArn (string) --

        The Amazon Resource Name (ARN) of the IAM role to set as a default in the namespace.

      • iamRoles (list) --

        A list of IAM roles to associate with the namespace.

        • (string) --

      • kmsKeyId (string) --

        The ID of the Amazon Web Services Key Management Service key used to encrypt your data.

      • lakehouseRegistrationStatus (string) --

        The status of the lakehouse registration for the namespace. Indicates whether the namespace is successfully registered with Amazon Redshift federated permissions.

      • logExports (list) --

        The types of logs the namespace can export. Available export types are User log, Connection log, and User activity log.

        • (string) --

      • namespaceArn (string) --

        The Amazon Resource Name (ARN) associated with a namespace.

      • namespaceId (string) --

        The unique identifier of a namespace.

      • namespaceName (string) --

        The name of the namespace. Must be between 3-64 alphanumeric characters in lowercase, and it cannot be a reserved word. A list of reserved words can be found in Reserved Words in the Amazon Redshift Database Developer Guide.

      • s3TablePublishStatus (dict) --

        The current Amazon S3 Tables log-publishing status for the namespace. Not returned when S3 Tables publishing has never been configured for the namespace.

        • enabledAll (boolean) --

          true when the namespace is enrolled in every current and future system table rather than an explicit list of tables.

        • lastIngestionTimes (dict) --

          A map of system table name to the time that table last received data, as an ISO-8601 timestamp. A table that has not yet been ingested is absent from the map. Use it to judge data freshness.

          • (string) --

            • (string) --

        • s3TableGranularity (string) --

          The scope currently in effect. Values are namespace or account.

        • s3TableNamespace (string) --

          The identifier of the namespace in the S3 table bucket that holds the published tables.

        • s3Tables (list) --

          The system tables currently being published.

          • (string) --

            A system-table view name to publish to S3 Tables (e.g. "sys_query_history"), or the keyword "all" to publish every current and future system table.

      • status (string) --

        The status of the namespace.

GetNamespace (updated) Link ¶
Changes (response)
{'namespace': {'s3TablePublishStatus': {'enabledAll': 'boolean',
                                        'lastIngestionTimes': {'string': 'string'},
                                        's3TableGranularity': 'namespace | '
                                                              'account',
                                        's3TableNamespace': 'string',
                                        's3Tables': ['string']}}}

Returns information about a namespace in Amazon Redshift Serverless.

See also: AWS API Documentation

Request Syntax

client.get_namespace(
    namespaceName='string'
)
type namespaceName:

string

param namespaceName:

[REQUIRED]

The name of the namespace to retrieve information for.

rtype:

dict

returns:

Response Syntax

{
    'namespace': {
        'adminPasswordSecretArn': 'string',
        'adminPasswordSecretKmsKeyId': 'string',
        'adminUsername': 'string',
        'catalogArn': 'string',
        'creationDate': datetime(2015, 1, 1),
        'dbName': 'string',
        'defaultIamRoleArn': 'string',
        'iamRoles': [
            'string',
        ],
        'kmsKeyId': 'string',
        'lakehouseRegistrationStatus': 'string',
        'logExports': [
            'useractivitylog'|'userlog'|'connectionlog',
        ],
        'namespaceArn': 'string',
        'namespaceId': 'string',
        'namespaceName': 'string',
        's3TablePublishStatus': {
            'enabledAll': True|False,
            'lastIngestionTimes': {
                'string': 'string'
            },
            's3TableGranularity': 'namespace'|'account',
            's3TableNamespace': 'string',
            's3Tables': [
                'string',
            ]
        },
        'status': 'AVAILABLE'|'MODIFYING'|'DELETING'
    }
}

Response Structure

  • (dict) --

    • namespace (dict) --

      The returned namespace object.

      • adminPasswordSecretArn (string) --

        The Amazon Resource Name (ARN) for the namespace's admin user credentials secret.

      • adminPasswordSecretKmsKeyId (string) --

        The ID of the Key Management Service (KMS) key used to encrypt and store the namespace's admin credentials secret.

      • adminUsername (string) --

        The username of the administrator for the first database created in the namespace.

      • catalogArn (string) --

        The Amazon Resource Name (ARN) of the Glue Data Catalog associated with the namespace enabled with Amazon Redshift federated permissions.

      • creationDate (datetime) --

        The date of when the namespace was created.

      • dbName (string) --

        The name of the first database created in the namespace.

      • defaultIamRoleArn (string) --

        The Amazon Resource Name (ARN) of the IAM role to set as a default in the namespace.

      • iamRoles (list) --

        A list of IAM roles to associate with the namespace.

        • (string) --

      • kmsKeyId (string) --

        The ID of the Amazon Web Services Key Management Service key used to encrypt your data.

      • lakehouseRegistrationStatus (string) --

        The status of the lakehouse registration for the namespace. Indicates whether the namespace is successfully registered with Amazon Redshift federated permissions.

      • logExports (list) --

        The types of logs the namespace can export. Available export types are User log, Connection log, and User activity log.

        • (string) --

      • namespaceArn (string) --

        The Amazon Resource Name (ARN) associated with a namespace.

      • namespaceId (string) --

        The unique identifier of a namespace.

      • namespaceName (string) --

        The name of the namespace. Must be between 3-64 alphanumeric characters in lowercase, and it cannot be a reserved word. A list of reserved words can be found in Reserved Words in the Amazon Redshift Database Developer Guide.

      • s3TablePublishStatus (dict) --

        The current Amazon S3 Tables log-publishing status for the namespace. Not returned when S3 Tables publishing has never been configured for the namespace.

        • enabledAll (boolean) --

          true when the namespace is enrolled in every current and future system table rather than an explicit list of tables.

        • lastIngestionTimes (dict) --

          A map of system table name to the time that table last received data, as an ISO-8601 timestamp. A table that has not yet been ingested is absent from the map. Use it to judge data freshness.

          • (string) --

            • (string) --

        • s3TableGranularity (string) --

          The scope currently in effect. Values are namespace or account.

        • s3TableNamespace (string) --

          The identifier of the namespace in the S3 table bucket that holds the published tables.

        • s3Tables (list) --

          The system tables currently being published.

          • (string) --

            A system-table view name to publish to S3 Tables (e.g. "sys_query_history"), or the keyword "all" to publish every current and future system table.

      • status (string) --

        The status of the namespace.

ListNamespaces (updated) Link ¶
Changes (response)
{'namespaces': {'s3TablePublishStatus': {'enabledAll': 'boolean',
                                         'lastIngestionTimes': {'string': 'string'},
                                         's3TableGranularity': 'namespace | '
                                                               'account',
                                         's3TableNamespace': 'string',
                                         's3Tables': ['string']}}}

Returns information about a list of specified namespaces.

See also: AWS API Documentation

Request Syntax

client.list_namespaces(
    maxResults=123,
    nextToken='string'
)
type maxResults:

integer

param maxResults:

An optional parameter that specifies the maximum number of results to return. You can use nextToken to display the next page of results.

type nextToken:

string

param nextToken:

If your initial ListNamespaces operation returns a nextToken, you can include the returned nextToken in following ListNamespaces operations, which returns results in the next page.

rtype:

dict

returns:

Response Syntax

{
    'namespaces': [
        {
            'adminPasswordSecretArn': 'string',
            'adminPasswordSecretKmsKeyId': 'string',
            'adminUsername': 'string',
            'catalogArn': 'string',
            'creationDate': datetime(2015, 1, 1),
            'dbName': 'string',
            'defaultIamRoleArn': 'string',
            'iamRoles': [
                'string',
            ],
            'kmsKeyId': 'string',
            'lakehouseRegistrationStatus': 'string',
            'logExports': [
                'useractivitylog'|'userlog'|'connectionlog',
            ],
            'namespaceArn': 'string',
            'namespaceId': 'string',
            'namespaceName': 'string',
            's3TablePublishStatus': {
                'enabledAll': True|False,
                'lastIngestionTimes': {
                    'string': 'string'
                },
                's3TableGranularity': 'namespace'|'account',
                's3TableNamespace': 'string',
                's3Tables': [
                    'string',
                ]
            },
            'status': 'AVAILABLE'|'MODIFYING'|'DELETING'
        },
    ],
    'nextToken': 'string'
}

Response Structure

  • (dict) --

    • namespaces (list) --

      The list of returned namespaces.

      • (dict) --

        A collection of database objects and users.

        • adminPasswordSecretArn (string) --

          The Amazon Resource Name (ARN) for the namespace's admin user credentials secret.

        • adminPasswordSecretKmsKeyId (string) --

          The ID of the Key Management Service (KMS) key used to encrypt and store the namespace's admin credentials secret.

        • adminUsername (string) --

          The username of the administrator for the first database created in the namespace.

        • catalogArn (string) --

          The Amazon Resource Name (ARN) of the Glue Data Catalog associated with the namespace enabled with Amazon Redshift federated permissions.

        • creationDate (datetime) --

          The date of when the namespace was created.

        • dbName (string) --

          The name of the first database created in the namespace.

        • defaultIamRoleArn (string) --

          The Amazon Resource Name (ARN) of the IAM role to set as a default in the namespace.

        • iamRoles (list) --

          A list of IAM roles to associate with the namespace.

          • (string) --

        • kmsKeyId (string) --

          The ID of the Amazon Web Services Key Management Service key used to encrypt your data.

        • lakehouseRegistrationStatus (string) --

          The status of the lakehouse registration for the namespace. Indicates whether the namespace is successfully registered with Amazon Redshift federated permissions.

        • logExports (list) --

          The types of logs the namespace can export. Available export types are User log, Connection log, and User activity log.

          • (string) --

        • namespaceArn (string) --

          The Amazon Resource Name (ARN) associated with a namespace.

        • namespaceId (string) --

          The unique identifier of a namespace.

        • namespaceName (string) --

          The name of the namespace. Must be between 3-64 alphanumeric characters in lowercase, and it cannot be a reserved word. A list of reserved words can be found in Reserved Words in the Amazon Redshift Database Developer Guide.

        • s3TablePublishStatus (dict) --

          The current Amazon S3 Tables log-publishing status for the namespace. Not returned when S3 Tables publishing has never been configured for the namespace.

          • enabledAll (boolean) --

            true when the namespace is enrolled in every current and future system table rather than an explicit list of tables.

          • lastIngestionTimes (dict) --

            A map of system table name to the time that table last received data, as an ISO-8601 timestamp. A table that has not yet been ingested is absent from the map. Use it to judge data freshness.

            • (string) --

              • (string) --

          • s3TableGranularity (string) --

            The scope currently in effect. Values are namespace or account.

          • s3TableNamespace (string) --

            The identifier of the namespace in the S3 table bucket that holds the published tables.

          • s3Tables (list) --

            The system tables currently being published.

            • (string) --

              A system-table view name to publish to S3 Tables (e.g. "sys_query_history"), or the keyword "all" to publish every current and future system table.

        • status (string) --

          The status of the namespace.

    • nextToken (string) --

      When nextToken is returned, there are more results available. The value of nextToken is a unique pagination token for each page. Make the call again using the returned token to retrieve the next page.

RestoreFromRecoveryPoint (updated) Link ¶
Changes (response)
{'namespace': {'s3TablePublishStatus': {'enabledAll': 'boolean',
                                        'lastIngestionTimes': {'string': 'string'},
                                        's3TableGranularity': 'namespace | '
                                                              'account',
                                        's3TableNamespace': 'string',
                                        's3Tables': ['string']}}}

Restore the data from a recovery point.

See also: AWS API Documentation

Request Syntax

client.restore_from_recovery_point(
    maintainIntegration=True|False,
    namespaceName='string',
    recoveryPointId='string',
    workgroupName='string'
)
type maintainIntegration:

boolean

param maintainIntegration:

If true, maintain existing data sharing, zero-ETL and S3 event integrations when restoring. Otherwise, integrations will not be maintained after the restore operation. Integrations are only maintained when restored to the same serverless namespace.

Default: true

type namespaceName:

string

param namespaceName:

[REQUIRED]

The name of the namespace to restore data into.

type recoveryPointId:

string

param recoveryPointId:

[REQUIRED]

The unique identifier of the recovery point to restore from.

type workgroupName:

string

param workgroupName:

[REQUIRED]

The name of the workgroup used to restore data.

rtype:

dict

returns:

Response Syntax

{
    'namespace': {
        'adminPasswordSecretArn': 'string',
        'adminPasswordSecretKmsKeyId': 'string',
        'adminUsername': 'string',
        'catalogArn': 'string',
        'creationDate': datetime(2015, 1, 1),
        'dbName': 'string',
        'defaultIamRoleArn': 'string',
        'iamRoles': [
            'string',
        ],
        'kmsKeyId': 'string',
        'lakehouseRegistrationStatus': 'string',
        'logExports': [
            'useractivitylog'|'userlog'|'connectionlog',
        ],
        'namespaceArn': 'string',
        'namespaceId': 'string',
        'namespaceName': 'string',
        's3TablePublishStatus': {
            'enabledAll': True|False,
            'lastIngestionTimes': {
                'string': 'string'
            },
            's3TableGranularity': 'namespace'|'account',
            's3TableNamespace': 'string',
            's3Tables': [
                'string',
            ]
        },
        'status': 'AVAILABLE'|'MODIFYING'|'DELETING'
    },
    'recoveryPointId': 'string'
}

Response Structure

  • (dict) --

    • namespace (dict) --

      The namespace that data was restored into.

      • adminPasswordSecretArn (string) --

        The Amazon Resource Name (ARN) for the namespace's admin user credentials secret.

      • adminPasswordSecretKmsKeyId (string) --

        The ID of the Key Management Service (KMS) key used to encrypt and store the namespace's admin credentials secret.

      • adminUsername (string) --

        The username of the administrator for the first database created in the namespace.

      • catalogArn (string) --

        The Amazon Resource Name (ARN) of the Glue Data Catalog associated with the namespace enabled with Amazon Redshift federated permissions.

      • creationDate (datetime) --

        The date of when the namespace was created.

      • dbName (string) --

        The name of the first database created in the namespace.

      • defaultIamRoleArn (string) --

        The Amazon Resource Name (ARN) of the IAM role to set as a default in the namespace.

      • iamRoles (list) --

        A list of IAM roles to associate with the namespace.

        • (string) --

      • kmsKeyId (string) --

        The ID of the Amazon Web Services Key Management Service key used to encrypt your data.

      • lakehouseRegistrationStatus (string) --

        The status of the lakehouse registration for the namespace. Indicates whether the namespace is successfully registered with Amazon Redshift federated permissions.

      • logExports (list) --

        The types of logs the namespace can export. Available export types are User log, Connection log, and User activity log.

        • (string) --

      • namespaceArn (string) --

        The Amazon Resource Name (ARN) associated with a namespace.

      • namespaceId (string) --

        The unique identifier of a namespace.

      • namespaceName (string) --

        The name of the namespace. Must be between 3-64 alphanumeric characters in lowercase, and it cannot be a reserved word. A list of reserved words can be found in Reserved Words in the Amazon Redshift Database Developer Guide.

      • s3TablePublishStatus (dict) --

        The current Amazon S3 Tables log-publishing status for the namespace. Not returned when S3 Tables publishing has never been configured for the namespace.

        • enabledAll (boolean) --

          true when the namespace is enrolled in every current and future system table rather than an explicit list of tables.

        • lastIngestionTimes (dict) --

          A map of system table name to the time that table last received data, as an ISO-8601 timestamp. A table that has not yet been ingested is absent from the map. Use it to judge data freshness.

          • (string) --

            • (string) --

        • s3TableGranularity (string) --

          The scope currently in effect. Values are namespace or account.

        • s3TableNamespace (string) --

          The identifier of the namespace in the S3 table bucket that holds the published tables.

        • s3Tables (list) --

          The system tables currently being published.

          • (string) --

            A system-table view name to publish to S3 Tables (e.g. "sys_query_history"), or the keyword "all" to publish every current and future system table.

      • status (string) --

        The status of the namespace.

    • recoveryPointId (string) --

      The unique identifier of the recovery point used for the restore.

RestoreFromSnapshot (updated) Link ¶
Changes (response)
{'namespace': {'s3TablePublishStatus': {'enabledAll': 'boolean',
                                        'lastIngestionTimes': {'string': 'string'},
                                        's3TableGranularity': 'namespace | '
                                                              'account',
                                        's3TableNamespace': 'string',
                                        's3Tables': ['string']}}}

Restores a namespace from a snapshot.

See also: AWS API Documentation

Request Syntax

client.restore_from_snapshot(
    adminPasswordSecretKmsKeyId='string',
    maintainIntegration=True|False,
    manageAdminPassword=True|False,
    namespaceName='string',
    ownerAccount='string',
    snapshotArn='string',
    snapshotName='string',
    workgroupName='string'
)
type adminPasswordSecretKmsKeyId:

string

param adminPasswordSecretKmsKeyId:

The ID of the Key Management Service (KMS) key used to encrypt and store the namespace's admin credentials secret.

type maintainIntegration:

boolean

param maintainIntegration:

If true, maintain existing data sharing, zero-ETL and S3 event integrations when restoring. Otherwise, integrations will not be maintained after the restore operation. Integrations are only maintained when restored to the same serverless namespace.

Default: true

type manageAdminPassword:

boolean

param manageAdminPassword:

If true, Amazon Redshift uses Secrets Manager to manage the restored snapshot's admin credentials. If MmanageAdminPassword is false or not set, Amazon Redshift uses the admin credentials that the namespace or cluster had at the time the snapshot was taken.

type namespaceName:

string

param namespaceName:

[REQUIRED]

The name of the namespace to restore the snapshot to.

type ownerAccount:

string

param ownerAccount:

The Amazon Web Services account that owns the snapshot.

type snapshotArn:

string

param snapshotArn:

The Amazon Resource Name (ARN) of the snapshot to restore from. Required if restoring from a provisioned cluster to Amazon Redshift Serverless. Must not be specified at the same time as snapshotName.

The format of the ARN is arn:aws:redshift:<region>:<account_id>:snapshot:<cluster_identifier>/<snapshot_identifier>.

type snapshotName:

string

param snapshotName:

The name of the snapshot to restore from. Must not be specified at the same time as snapshotArn.

type workgroupName:

string

param workgroupName:

[REQUIRED]

The name of the workgroup used to restore the snapshot.

rtype:

dict

returns:

Response Syntax

{
    'namespace': {
        'adminPasswordSecretArn': 'string',
        'adminPasswordSecretKmsKeyId': 'string',
        'adminUsername': 'string',
        'catalogArn': 'string',
        'creationDate': datetime(2015, 1, 1),
        'dbName': 'string',
        'defaultIamRoleArn': 'string',
        'iamRoles': [
            'string',
        ],
        'kmsKeyId': 'string',
        'lakehouseRegistrationStatus': 'string',
        'logExports': [
            'useractivitylog'|'userlog'|'connectionlog',
        ],
        'namespaceArn': 'string',
        'namespaceId': 'string',
        'namespaceName': 'string',
        's3TablePublishStatus': {
            'enabledAll': True|False,
            'lastIngestionTimes': {
                'string': 'string'
            },
            's3TableGranularity': 'namespace'|'account',
            's3TableNamespace': 'string',
            's3Tables': [
                'string',
            ]
        },
        'status': 'AVAILABLE'|'MODIFYING'|'DELETING'
    },
    'ownerAccount': 'string',
    'snapshotName': 'string'
}

Response Structure

  • (dict) --

    • namespace (dict) --

      A collection of database objects and users.

      • adminPasswordSecretArn (string) --

        The Amazon Resource Name (ARN) for the namespace's admin user credentials secret.

      • adminPasswordSecretKmsKeyId (string) --

        The ID of the Key Management Service (KMS) key used to encrypt and store the namespace's admin credentials secret.

      • adminUsername (string) --

        The username of the administrator for the first database created in the namespace.

      • catalogArn (string) --

        The Amazon Resource Name (ARN) of the Glue Data Catalog associated with the namespace enabled with Amazon Redshift federated permissions.

      • creationDate (datetime) --

        The date of when the namespace was created.

      • dbName (string) --

        The name of the first database created in the namespace.

      • defaultIamRoleArn (string) --

        The Amazon Resource Name (ARN) of the IAM role to set as a default in the namespace.

      • iamRoles (list) --

        A list of IAM roles to associate with the namespace.

        • (string) --

      • kmsKeyId (string) --

        The ID of the Amazon Web Services Key Management Service key used to encrypt your data.

      • lakehouseRegistrationStatus (string) --

        The status of the lakehouse registration for the namespace. Indicates whether the namespace is successfully registered with Amazon Redshift federated permissions.

      • logExports (list) --

        The types of logs the namespace can export. Available export types are User log, Connection log, and User activity log.

        • (string) --

      • namespaceArn (string) --

        The Amazon Resource Name (ARN) associated with a namespace.

      • namespaceId (string) --

        The unique identifier of a namespace.

      • namespaceName (string) --

        The name of the namespace. Must be between 3-64 alphanumeric characters in lowercase, and it cannot be a reserved word. A list of reserved words can be found in Reserved Words in the Amazon Redshift Database Developer Guide.

      • s3TablePublishStatus (dict) --

        The current Amazon S3 Tables log-publishing status for the namespace. Not returned when S3 Tables publishing has never been configured for the namespace.

        • enabledAll (boolean) --

          true when the namespace is enrolled in every current and future system table rather than an explicit list of tables.

        • lastIngestionTimes (dict) --

          A map of system table name to the time that table last received data, as an ISO-8601 timestamp. A table that has not yet been ingested is absent from the map. Use it to judge data freshness.

          • (string) --

            • (string) --

        • s3TableGranularity (string) --

          The scope currently in effect. Values are namespace or account.

        • s3TableNamespace (string) --

          The identifier of the namespace in the S3 table bucket that holds the published tables.

        • s3Tables (list) --

          The system tables currently being published.

          • (string) --

            A system-table view name to publish to S3 Tables (e.g. "sys_query_history"), or the keyword "all" to publish every current and future system table.

      • status (string) --

        The status of the namespace.

    • ownerAccount (string) --

      The owner Amazon Web Services; account of the snapshot that was restored.

    • snapshotName (string) --

      The name of the snapshot used to restore the namespace.

UpdateNamespace (updated) Link ¶
Changes (request, response)
Request
{'logDestinationType': 's3table | cloudwatch',
 's3TableAction': 'Enable | Disable',
 's3TableGranularity': 'namespace | account',
 's3TableKmsKeyId': 'string',
 's3TableNames': ['string']}
Response
{'namespace': {'s3TablePublishStatus': {'enabledAll': 'boolean',
                                        'lastIngestionTimes': {'string': 'string'},
                                        's3TableGranularity': 'namespace | '
                                                              'account',
                                        's3TableNamespace': 'string',
                                        's3Tables': ['string']}}}

Updates a namespace with the specified settings. Unless required, you can't update multiple parameters in one request. For example, you must specify both adminUsername and adminUserPassword to update either field, but you can't update both kmsKeyId and logExports in a single request.

Similarly, an S3 Tables log-publishing update (a request where logDestinationType is s3table) cannot be combined with any other namespace configuration change and must be submitted as its own request.

See also: AWS API Documentation

Request Syntax

client.update_namespace(
    adminPasswordSecretKmsKeyId='string',
    adminUserPassword='string',
    adminUsername='string',
    defaultIamRoleArn='string',
    iamRoles=[
        'string',
    ],
    kmsKeyId='string',
    logDestinationType='s3table'|'cloudwatch',
    logExports=[
        'useractivitylog'|'userlog'|'connectionlog',
    ],
    manageAdminPassword=True|False,
    namespaceName='string',
    s3TableAction='Enable'|'Disable',
    s3TableGranularity='namespace'|'account',
    s3TableKmsKeyId='string',
    s3TableNames=[
        'string',
    ]
)
type adminPasswordSecretKmsKeyId:

string

param adminPasswordSecretKmsKeyId:

The ID of the Key Management Service (KMS) key used to encrypt and store the namespace's admin credentials secret. You can only use this parameter if manageAdminPassword is true.

type adminUserPassword:

string

param adminUserPassword:

The password of the administrator for the first database created in the namespace. This parameter must be updated together with adminUsername.

You can't use adminUserPassword if manageAdminPassword is true.

If your admin user account is locked, this operation also unlocks your account and resets the failed-login counter. This option is available only when account lockout security is enabled for the namespace.

type adminUsername:

string

param adminUsername:

The username of the administrator for the first database created in the namespace. This parameter must be updated together with adminUserPassword.

type defaultIamRoleArn:

string

param defaultIamRoleArn:

The Amazon Resource Name (ARN) of the IAM role to set as a default in the namespace. This parameter must be updated together with iamRoles.

type iamRoles:

list

param iamRoles:

A list of IAM roles to associate with the namespace. This parameter must be updated together with defaultIamRoleArn.

  • (string) --

type kmsKeyId:

string

param kmsKeyId:

The ID of the Amazon Web Services Key Management Service key used to encrypt your data.

type logDestinationType:

string

param logDestinationType:

The destination for the log data. Valid values are s3table and cloudwatch.

Set this to s3table to manage Amazon S3 Tables system-table publishing for the namespace.

type logExports:

list

param logExports:

The types of logs the namespace can export. The export types are userlog, connectionlog, and useractivitylog.

  • (string) --

type manageAdminPassword:

boolean

param manageAdminPassword:

If true, Amazon Redshift uses Secrets Manager to manage the namespace's admin credentials. You can't use adminUserPassword if manageAdminPassword is true. If manageAdminPassword is false or not set, Amazon Redshift uses adminUserPassword for the admin user account's password.

type namespaceName:

string

param namespaceName:

[REQUIRED]

The name of the namespace to update. You can't update the name of a namespace once it is created.

type s3TableAction:

string

param s3TableAction:

Whether to enable or disable Amazon S3 Tables publishing. Valid values are Enable and Disable, matched case-insensitively.

When omitted, defaults to Enable. Valid only when logDestinationType is s3table.

type s3TableGranularity:

string

param s3TableGranularity:

The scope of the Amazon S3 Tables destination. Valid values are namespace and account, matched case-insensitively. namespace scopes the published tables to this namespace; account scopes them to the Amazon Web Services account.

Required when enabling. Omitting this parameter or passing a blank value fails with ValidationException. Valid only when logDestinationType is s3table.

type s3TableKmsKeyId:

string

param s3TableKmsKeyId:

The identifier of the Key Management Service key used to encrypt the published Amazon S3 Tables data. When omitted, the data is encrypted with SSE-S3 (Amazon S3 managed keys).

Valid only when logDestinationType is s3table.

type s3TableNames:

list

param s3TableNames:

The system tables to publish (on enable) or to stop publishing (on disable). Each value is either a system table view name that begins with sys_ or the keyword all.

Omitting this parameter, passing an empty list, or including all each select every current and future system table. Each name must be 1-128 characters, and the list can contain up to 256 names.

Valid only when logDestinationType is s3table.

  • (string) --

    A system-table view name to publish to S3 Tables (e.g. "sys_query_history"), or the keyword "all" to publish every current and future system table.

rtype:

dict

returns:

Response Syntax

{
    'namespace': {
        'adminPasswordSecretArn': 'string',
        'adminPasswordSecretKmsKeyId': 'string',
        'adminUsername': 'string',
        'catalogArn': 'string',
        'creationDate': datetime(2015, 1, 1),
        'dbName': 'string',
        'defaultIamRoleArn': 'string',
        'iamRoles': [
            'string',
        ],
        'kmsKeyId': 'string',
        'lakehouseRegistrationStatus': 'string',
        'logExports': [
            'useractivitylog'|'userlog'|'connectionlog',
        ],
        'namespaceArn': 'string',
        'namespaceId': 'string',
        'namespaceName': 'string',
        's3TablePublishStatus': {
            'enabledAll': True|False,
            'lastIngestionTimes': {
                'string': 'string'
            },
            's3TableGranularity': 'namespace'|'account',
            's3TableNamespace': 'string',
            's3Tables': [
                'string',
            ]
        },
        'status': 'AVAILABLE'|'MODIFYING'|'DELETING'
    }
}

Response Structure

  • (dict) --

    • namespace (dict) --

      A list of tag instances.

      • adminPasswordSecretArn (string) --

        The Amazon Resource Name (ARN) for the namespace's admin user credentials secret.

      • adminPasswordSecretKmsKeyId (string) --

        The ID of the Key Management Service (KMS) key used to encrypt and store the namespace's admin credentials secret.

      • adminUsername (string) --

        The username of the administrator for the first database created in the namespace.

      • catalogArn (string) --

        The Amazon Resource Name (ARN) of the Glue Data Catalog associated with the namespace enabled with Amazon Redshift federated permissions.

      • creationDate (datetime) --

        The date of when the namespace was created.

      • dbName (string) --

        The name of the first database created in the namespace.

      • defaultIamRoleArn (string) --

        The Amazon Resource Name (ARN) of the IAM role to set as a default in the namespace.

      • iamRoles (list) --

        A list of IAM roles to associate with the namespace.

        • (string) --

      • kmsKeyId (string) --

        The ID of the Amazon Web Services Key Management Service key used to encrypt your data.

      • lakehouseRegistrationStatus (string) --

        The status of the lakehouse registration for the namespace. Indicates whether the namespace is successfully registered with Amazon Redshift federated permissions.

      • logExports (list) --

        The types of logs the namespace can export. Available export types are User log, Connection log, and User activity log.

        • (string) --

      • namespaceArn (string) --

        The Amazon Resource Name (ARN) associated with a namespace.

      • namespaceId (string) --

        The unique identifier of a namespace.

      • namespaceName (string) --

        The name of the namespace. Must be between 3-64 alphanumeric characters in lowercase, and it cannot be a reserved word. A list of reserved words can be found in Reserved Words in the Amazon Redshift Database Developer Guide.

      • s3TablePublishStatus (dict) --

        The current Amazon S3 Tables log-publishing status for the namespace. Not returned when S3 Tables publishing has never been configured for the namespace.

        • enabledAll (boolean) --

          true when the namespace is enrolled in every current and future system table rather than an explicit list of tables.

        • lastIngestionTimes (dict) --

          A map of system table name to the time that table last received data, as an ISO-8601 timestamp. A table that has not yet been ingested is absent from the map. Use it to judge data freshness.

          • (string) --

            • (string) --

        • s3TableGranularity (string) --

          The scope currently in effect. Values are namespace or account.

        • s3TableNamespace (string) --

          The identifier of the namespace in the S3 table bucket that holds the published tables.

        • s3Tables (list) --

          The system tables currently being published.

          • (string) --

            A system-table view name to publish to S3 Tables (e.g. "sys_query_history"), or the keyword "all" to publish every current and future system table.

      • status (string) --

        The status of the namespace.