<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Redshift Target - Invalid role ARN in Qlik Replicate</title>
    <link>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1926532#M2575</link>
    <description>&lt;P&gt;Hi Simon,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I suggest opening a support case to further troubleshoot this issue&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Lyka&lt;/P&gt;</description>
    <pubDate>Wed, 04 May 2022 20:50:35 GMT</pubDate>
    <dc:creator>lyka</dc:creator>
    <dc:date>2022-05-04T20:50:35Z</dc:date>
    <item>
      <title>Redshift Target - Invalid role ARN</title>
      <link>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1925725#M2566</link>
      <description>&lt;P&gt;My Redshift endpoint passed the 'test connection' process.&lt;/P&gt;
&lt;P&gt;However, upon execution gives the error below. (Invalid role)&lt;/P&gt;
&lt;P&gt;I can see that my S3 Staging is being populated, so that part is ok.&lt;BR /&gt;Assume is an issue with the COPY action.&lt;/P&gt;
&lt;P&gt;The Redshift user has 'ALL' on the target schema.&lt;BR /&gt;The Redshift cluster role has * on the S3 location.&lt;/P&gt;
&lt;P&gt;Any ideas ?&lt;BR /&gt;I'm quite curious about the error saying 'invalid' role arn, rather than 'access denied' ?&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Failed to copy data of file I:\Attunity\Replicate\data\tasks\myTask\cloud\1\LOAD00000002.csv to database&lt;BR /&gt;Failed to load schema.table from S3, file name: LOAD00000002.csv&lt;BR /&gt;RetCode: SQL_ERROR SqlState: XX000 NativeError: 30 Message: [Amazon][Amazon Redshift] (30) Error occurred while trying to execute a query: [SQLState XX000] ERROR: Invalid role ARN: arn:aws:iam::xxxxxxxxxx:instance-profile/xxxxxxxxx_profile&lt;BR /&gt;DETAIL:&lt;BR /&gt;-----------------------------------------------&lt;BR /&gt;error: Invalid role ARN: arn:aws:iam::account:instance-profile/xxxxx_profile&lt;BR /&gt;code: 30000&lt;BR /&gt;context:&lt;BR /&gt;query: 3922559&lt;BR /&gt;location: xen_aws_credentials_mgr.cpp:402&lt;BR /&gt;process: padbmaster [pid=25289]&lt;BR /&gt;-----------------------------------------------&lt;/P&gt;
&lt;P&gt;Failed to copy data of file I:\Attunity\Replicate\data\tasks\myTask\cloud\1\LOAD00000002.csv to database&lt;BR /&gt;Failed to load xxxxxx.xxxxx from S3, file name: LOAD00000002.csv&lt;BR /&gt;RetCode: SQL_ERROR SqlState: XX000 NativeError: 30 Message: [Amazon][Amazon Redshift] (30) Error occurred while trying to execute a query: [SQLState XX000] ERROR: Invalid role ARN: arn:aws:iam::xxxxxxxxxx:instance-profile/xxxxxxxxxx_profile&lt;BR /&gt;DETAIL: &lt;BR /&gt;-----------------------------------------------&lt;BR /&gt;error: Invalid role ARN: arn:aws:iam::account:instance-profile/xxxxxxxx_&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="QR.png" style="width: 999px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/78534i59150EBBD53E67CD/image-size/large?v=v2&amp;amp;px=999" role="button" title="QR.png" alt="QR.png" /&gt;&lt;/span&gt;profile&lt;BR /&gt;code: 30000&lt;BR /&gt;context: &lt;BR /&gt;query: 3922559&lt;BR /&gt;location: xen_aws_credentials_mgr.cpp:402&lt;BR /&gt;process: padbmaster [pid=25289]&lt;BR /&gt;-----------------------------------------------&lt;/P&gt;</description>
      <pubDate>Tue, 03 May 2022 14:27:22 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1925725#M2566</guid>
      <dc:creator>simonB2020</dc:creator>
      <dc:date>2022-05-03T14:27:22Z</dc:date>
    </item>
    <item>
      <title>Re: Redshift Target - Invalid role ARN</title>
      <link>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1925733#M2567</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/144432"&gt;@simonB2020&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What version of Replicate are you using?&lt;/P&gt;
&lt;P&gt;Have you followed all prerequisites listed here: &lt;A href="https://help.qlik.com/en-US/replicate/May2021/Content/Replicate/Main/Amazon%20Redshift/prereq_redshift.htm" target="_blank"&gt;https://help.qlik.com/en-US/replicate/May2021/Content/Replicate/Main/Amazon%20Redshift/prereq_redshift.htm&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Below is an article with same error. They resolved by recreating the role.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://thewerner.medium.com/aws-cloud-formation-role-arn-aws-iam-xxx-is-invalid-or-cannot-be-assumed-14c17e1098e2" target="_blank"&gt;https://thewerner.medium.com/aws-cloud-formation-role-arn-aws-iam-xxx-is-invalid-or-cannot-be-assumed-14c17e1098e2&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Kelly&lt;/P&gt;</description>
      <pubDate>Tue, 03 May 2022 14:47:07 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1925733#M2567</guid>
      <dc:creator>KellyHobson</dc:creator>
      <dc:date>2022-05-03T14:47:07Z</dc:date>
    </item>
    <item>
      <title>Re: Redshift Target - Invalid role ARN</title>
      <link>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1925746#M2568</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;SPAN&gt;simonB2020,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Im going to add to what Kelly has already specified in her comment.&lt;/P&gt;
&lt;P&gt;When searchhing for the key word "ARN" with amazon redshift i found this article also:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.aws.amazon.com/redshift/latest/mgmt/copy-unload-iam-role.html" target="_blank"&gt;Authorizing COPY, UNLOAD, CREATE EXTERNAL FUNCTION, and CREATE EXTERNAL SCHEMA operations using IAM roles - Amazon Redshift&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 03 May 2022 15:14:44 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1925746#M2568</guid>
      <dc:creator>Shai_E</dc:creator>
      <dc:date>2022-05-03T15:14:44Z</dc:date>
    </item>
    <item>
      <title>Re: Redshift Target - Invalid role ARN</title>
      <link>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1925789#M2569</link>
      <description>&lt;P&gt;I think we are at the probem.&lt;/P&gt;
&lt;P&gt;I think for me, just a little clarification of what is going on under the covers of Replicate ...&lt;/P&gt;
&lt;P&gt;When we execute a COPY command, we have to provide a role&lt;/P&gt;
&lt;P&gt;copy mytable&lt;BR /&gt;from 's3://bucket/prefix/'&lt;BR /&gt;iam_role 'arn:aws:iam::myRole'&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;In my case, it looks like Replicate is using the "IAM Role ARN" specified in my S3 connection configuration ?&lt;/P&gt;
&lt;P&gt;(that role being used for Replicate to write to S3, &lt;EM&gt;and&lt;/EM&gt; to perform the COPY from Redshift)&lt;/P&gt;
&lt;P&gt;And if I uses Key/secret in my S3 config, then Replicate would use the default role attached to it's EC2 instance ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 03 May 2022 16:22:49 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1925789#M2569</guid>
      <dc:creator>simonB2020</dc:creator>
      <dc:date>2022-05-03T16:22:49Z</dc:date>
    </item>
    <item>
      <title>Re: Redshift Target - Invalid role ARN</title>
      <link>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1925827#M2570</link>
      <description>&lt;P&gt;Even more confused now.&lt;/P&gt;
&lt;P&gt;Looking in Redshift logs (STL_QUERY), I can see:&lt;BR /&gt;"COPY ANALYZE mytable" is being called by the DB User specified in my "Amazon Redshift Target" config in Replicate.&lt;/P&gt;
&lt;P&gt;Hence wondering how the "IAM Role ARN" specified in my "Amazon S3 Staging" configuration is coming back in the error message for the COPY action ?&lt;/P&gt;
&lt;P&gt;Can anyone explain the relationship there ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 03 May 2022 17:40:51 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1925827#M2570</guid>
      <dc:creator>simonB2020</dc:creator>
      <dc:date>2022-05-03T17:40:51Z</dc:date>
    </item>
    <item>
      <title>Re: Redshift Target - Invalid role ARN</title>
      <link>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1926532#M2575</link>
      <description>&lt;P&gt;Hi Simon,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I suggest opening a support case to further troubleshoot this issue&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Lyka&lt;/P&gt;</description>
      <pubDate>Wed, 04 May 2022 20:50:35 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-Replicate/Redshift-Target-Invalid-role-ARN/m-p/1926532#M2575</guid>
      <dc:creator>lyka</dc:creator>
      <dc:date>2022-05-04T20:50:35Z</dc:date>
    </item>
  </channel>
</rss>

