|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
이 게시물은 SalesForce의 Sid Wray, Jade Koskela 및 Ravi Bhattiprolu와 공동으로 작성되었습니다. Amazon Redshift와 Tableau는 데이터 분석을 강화합니다. Amazon Redshift는 대규모 쿼리를 신속하게 처리하는 클라우드 데이터 웨어하우스입니다. 고급 쿼리 최적화는 Tableau에 결과를 제공합니다. Tableau의 광범위한 기능과 기업 연결성은 분석가가 전사적으로 데이터 통찰력을 효율적으로 준비, 탐색 및 공유하는 데 도움이 됩니다.

Amazon Redshift and Tableau are powerful tools for data analysis. Amazon Redshift is a cloud data warehouse that can process complex queries at scale and with speed. Its advanced query optimization serves results to Tableau. Tableau’s extensive capabilities and enterprise connectivity help analysts efficiently prepare, explore, and share data insights company-wide.
Amazon Redshift와 Tableau는 데이터 분석을 위한 강력한 도구입니다. Amazon Redshift는 대규모 쿼리를 신속하게 처리할 수 있는 클라우드 데이터 웨어하우스입니다. 고급 쿼리 최적화는 Tableau에 결과를 제공합니다. Tableau의 광범위한 기능과 기업 연결성은 분석가가 전사적으로 데이터 통찰력을 효율적으로 준비, 탐색 및 공유하는 데 도움이 됩니다.
Customers can integrate Amazon Redshift with Tableau using single sign-on (SSO) capabilities enabled by AWS IAM Identity Center integration with trusted identity propagation. This allows you to seamlessly implement authentication with third-party identity providers (IdP) and authorization with Redshift. It positions Amazon Redshift as an AWS managed application, allowing you to take full advantage of the trusted identity propagation feature.
고객은 신뢰할 수 있는 ID 전파와 AWS IAM Identity Center 통합을 통해 지원되는 Single Sign-On(SSO) 기능을 사용하여 Amazon Redshift를 Tableau와 통합할 수 있습니다. 이를 통해 타사 ID 공급자(IdP)를 통한 인증과 Redshift를 통한 승인을 원활하게 구현할 수 있습니다. Amazon Redshift를 AWS 관리형 애플리케이션으로 지정하여 신뢰할 수 있는 자격 증명 전파 기능을 최대한 활용할 수 있습니다.
Amazon Web Services (AWS) collaborated with Tableau to enable SSO support for accessing Amazon Redshift from Tableau. Both Tableau Desktop 2023.3.9 and Tableau Server 2023.3.9 releases support trusted identity propagation with IAM Identity Center. This SSO integration is available for Tableau Desktop, Tableau Server, and Tableau Prep.
Amazon Web Services(AWS)는 Tableau와 협력하여 Tableau에서 Amazon Redshift에 액세스하기 위한 SSO 지원을 활성화했습니다. Tableau Desktop 2023.3.9 및 Tableau Server 2023.3.9 릴리스는 모두 IAM ID 센터를 통해 신뢰할 수 있는 ID 전파를 지원합니다. 이 SSO 통합은 Tableau Desktop, Tableau Server 및 Tableau Prep에서 사용할 수 있습니다.
This blog post provides a step-by-step guide to integrating IAM Identity Center with Microsoft Entra ID as the IdP and configuring Amazon Redshift as an AWS managed application. Additionally, you’ll learn how to set up the Amazon Redshift driver in Tableau, enabling SSO directly within Tableau Desktop.
이 블로그 게시물은 IAM Identity Center를 Microsoft Entra ID와 IdP로 통합하고 Amazon Redshift를 AWS 관리형 애플리케이션으로 구성하는 방법에 대한 단계별 가이드를 제공합니다. 또한 Tableau Desktop에서 직접 SSO를 활성화하여 Amazon Redshift 드라이버를 설정하는 방법도 알아봅니다.
Solution overview
솔루션 개요
The following diagram illustrates the architecture of the Tableau SSO integration with Amazon Redshift, IAM Identity Center, and Microsoft Entra ID.
다음 다이어그램은 Tableau SSO와 Amazon Redshift, IAM ID 센터 및 Microsoft Entra ID의 통합 아키텍처를 보여줍니다.
Figure 1: Solution overview for Tableau integration with Amazon Redshift using IAM Identity Center and Microsoft Entra ID
그림 1: IAM Identity Center 및 Microsoft Entra ID를 사용하여 Amazon Redshift와 Tableau를 통합하기 위한 솔루션 개요
The solution depicted in Figure 1 includes the following steps:
그림 1에 설명된 솔루션에는 다음 단계가 포함됩니다.
Prerequisites
전제 조건
Before you begin implementing the solution, you must have the following in place:
솔루션 구현을 시작하기 전에 다음을 준비해야 합니다.
Walkthrough
연습
In this walkthrough, you will use the following steps to build the solution:
이 연습에서는 다음 단계를 사용하여 솔루션을 빌드합니다.
Set up the Microsoft Entra ID OIDC application
Microsoft Entra ID OIDC 애플리케이션 설정
To create your Microsoft Entra application and service principal, follow these steps:
Microsoft Entra 애플리케이션 및 서비스 주체를 생성하려면 다음 단계를 따르세요.
For more information about setting up the Microsoft Entra app, see Register a Microsoft Entra app and create a service principal.
Microsoft Entra 앱 설정에 대한 자세한 내용은 Microsoft Entra 앱 등록 및 서비스 주체 만들기를 참조하세요.
Collect Microsoft Entra ID information
Microsoft Entra ID 정보 수집
To configure your IdP with IAM Identity Center and Amazon Redshift, collect the following parameters from Microsoft Entra ID. If you don’t have these parameters, contact your Microsoft Entra ID admin.
IAM Identity Center 및 Amazon Redshift로 IdP를 구성하려면 Microsoft Entra ID에서 다음 매개변수를 수집합니다. 이러한 매개변수가 없으면 Microsoft Entra ID 관리자에게 문의하세요.
Figure 2: Overview section of OIDC application
그림 2: OIDC 애플리케이션의 개요 섹션
Figure 3: Application scope
그림 3: 애플리케이션 범위
Set up a trusted token issuer in IAM Identity Center
IAM Identity Center에서 신뢰할 수 있는 토큰 발급자 설정
At this point, you have finished configurations in the Entra ID console; now you’re ready to add Entra ID as a TTI. You will start by adding a TTI so you can exchange tokens. In this step, you will create a TTI in the centralized management account. To create a TTI, follow these steps:
이제 Entra ID 콘솔의 구성이 완료되었습니다. 이제 Entra ID를 TTI로 추가할 준비가 되었습니다. 토큰을 교환할 수 있도록 TTI를 추가하는 것부터 시작합니다. 이 단계에서는 중앙 집중식 관리 계정에서 TTI를 생성합니다. TTI를 생성하려면 다음 단계를 따르세요.
Figure 4 that follows shows the set up for TTI.
다음 그림 4는 TTI 설정을 보여줍니다.
Figure 4: Create a trusted token issuer
그림 4: 신뢰할 수 있는 토큰 발급자 생성
Set up client connections and trusted token issuers
클라이언트 연결 및 신뢰할 수 있는 토큰 발급자 설정
A third-party application (such as Tableau) that isn’t managed by AWS exchanges the external token (JSON Web Token (JWT) for an IAM Identity Center token before calling AWS services.
AWS에서 관리하지 않는 타사 애플리케이션(예: Tableau)은 AWS 서비스를 호출하기 전에 외부 토큰(JSON 웹 토큰(JWT)을 IAM Identity Center 토큰으로 교환합니다.
The JWT must contain a subject (sub) claim, an audience (aud) claim, an issuer (iss), a user attribute claim, and a JWT ID (JTI) claim. The audience is a value that represents the AWS service that the application will use, and the audience claim value must match the value that’s configured in the Redshift application that exchanges the token.
JWT에는 제목(sub) 클레임, 대상(aud) 클레임, 발급자(iss), 사용자 속성 클레임, JWT ID(JTI) 클레임이 포함되어야 합니다. 대상은 애플리케이션이 사용할 AWS 서비스를 나타내는 값이며, 대상 클레임 값은 토큰을 교환하는 Redshift 애플리케이션에 구성된 값과 일치해야 합니다.
In this section, you will specify the audience claim in the Redshift application, which you will get from Microsoft Entra ID. You will configure the Redshift application in the member account where the Redshift cluster or serverless instance is.
이 섹션에서는 Microsoft Entra ID에서 얻을 수 있는 Redshift 애플리케이션의 대상 클레임을 지정합니다. Redshift 클러스터 또는 서버리스 인스턴스가 있는 멤버 계정에서 Redshift 애플리케이션을 구성합니다.
Figure 5: Redshift IAM Identity Center connection
그림 5: Redshift IAM ID 센터 연결
Figure 6: Adding an audience claim for the TTI
그림 6: TTI에 대한 청중 클레임 추가
Your IAM Identity Center, Amazon Redshift, and Microsoft Entra ID configuration is complete. Next, you need to configure Tableau.
IAM 자격 증명 센터, Amazon Redshift 및 Microsoft Entra ID 구성이 완료되었습니다. 다음으로 Tableau를 구성해야 합니다.
Set up the Tableau OAuth config files for Microsoft Entra ID
Microsoft Entra ID에 대한 Tableau OAuth 구성 파일 설정
To integrate Tableau with Amazon Redshift using IAM Identity Center, you need to use a custom XML. In this step, you use the following XML and replace the values starting with the $ sign and highlighted in bold. The rest of the values can be kept as they are, or you can modify them based on your use case. For detailed information on each of the elements in the XML file, see the Tableau documentation on GitHub.
IAM Identity Center를 사용하여 Tableau를 Amazon Redshift와 통합하려면 사용자 지정 XML을 사용해야 합니다. 이 단계에서는 다음 XML을 사용하고 $ 기호로 시작하고 굵게 강조 표시된 값을 바꿉니다. 나머지 값은 그대로 유지하거나 사용 사례에 따라 수정할 수 있습니다. XML 파일의 각 요소에 대한 자세한 내용은 GitHub의 Tableau 설명서를 참조하십시오.
Note: The XML file will be used for all the Tableau products including Tableau Desktop, Server, and Cloud. You can use the following XML or you can refer to Tableau’s github.
참고: XML 파일은 Tableau Desktop, Server 및 Cloud를 포함한 모든 Tableau 제품에 사용됩니다. 다음 XML을 사용하거나 Tableau의 github을 참조할 수 있습니다.
The following is an example XML file:
다음은 XML 파일의 예입니다.
Install the Tableau OAuth config file for Tableau Desktop
Tableau Desktop용 Tableau OAuth 구성 파일 설치
After the configuration XML file is created, it must be copied to a location to be used by Amazon Redshift Connector from Tableau Desktop. Save the file from the previous step as .xml and save it under Documents\My Tableau Repository\
구성 XML 파일이 생성된 후 Tableau Desktop의 Amazon Redshift 커넥터에서 사용할 위치에 복사해야 합니다. 이전 단계의 파일을 .xml로 저장하고 Documents\My Tableau Repository\에 저장합니다.
부인 성명:info@kdj.com
제공된 정보는 거래 조언이 아닙니다. kdj.com은 이 기사에 제공된 정보를 기반으로 이루어진 투자에 대해 어떠한 책임도 지지 않습니다. 암호화폐는 변동성이 매우 높으므로 철저한 조사 후 신중하게 투자하는 것이 좋습니다!
본 웹사이트에 사용된 내용이 귀하의 저작권을 침해한다고 판단되는 경우, 즉시 당사(info@kdj.com)로 연락주시면 즉시 삭제하도록 하겠습니다.

































