# AWS PrivateLink for Redshift

AWS PrivateLink provides private connectivity from the Immuta SaaS platform to Redshift clusters hosted on AWS. It ensures that all traffic to the configured endpoints only traverses private networks.

This feature is supported in most regions across Immuta's global segments (NA, EU, and AP); contact your Immuta representative if you have questions about availability.

<figure><img src="https://1751699907-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FlWBda5Pt4s8apEhzXGl7%2Fuploads%2Fgit-blob-8de798e2909a671acd97805ca0f4c78034ad0393%2Fredshift-pl-interface.png?alt=media" alt=""><figcaption></figcaption></figure>

## Requirements

* You have an Immuta SaaS tenant.
* You have set up an [AWS PrivateLink Service](https://docs.aws.amazon.com/vpc/latest/privatelink/privatelink-share-your-services.html) for your Redshift Cluster endpoints.
  * When creating the service, make sure that the **Require Acceptance** option is checked (this does not allow anyone to connect, all connections will be blocked until the Immuta service principal is added).

## Configure Redshift with AWS PrivateLink

1. Open a support ticket with [Immuta Support](https://support.immuta.com) with the following information:
   * AWS region
   * AWS subnet availability zones IDs (e.g. `use1-az3`; these are **not** the account-specific identifiers like `us-east-1a` or `eu-west-2c`)
   * VPC endpoint service ID (e.g., `vpce-0a02f54c1d339e98a`)
   * Ports used
2. [Authorize the service principal](https://docs.aws.amazon.com/vpc/latest/privatelink/configure-endpoint-service.html#add-remove-permissions) provided by your representative so that Immuta can complete the VPC endpoint configuration.
3. [Configure the Redshift integration](https://documentation.immuta.com/saas/configuration/integrations/redshift/amazon-redshift-view-based-integration/configure-an-amazon-redshift-spectrum-integration).
4. [Register your tables as Immuta data sources](https://documentation.immuta.com/saas/configuration/integrations/data-and-integrations/registering-metadata/register-data-sources/redshift-tutorial).
