<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Stitch - Data Loading Fails When Using SSH Tunnel to Amazon Redshift Destination in Stitch</title>
    <link>https://community.qlik.com/t5/Stitch/Stitch-Data-Loading-Fails-When-Using-SSH-Tunnel-to-Amazon/m-p/2507205#M85</link>
    <description>&lt;P&gt;We are experiencing an issue when loading data into &lt;STRONG&gt;Amazon Redshift&lt;/STRONG&gt; as the &lt;STRONG&gt;destination in Stitch&lt;/STRONG&gt;, specifically when using an &lt;STRONG&gt;SSH tunnel&lt;/STRONG&gt; for connection security.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Issue Details:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;The only change&lt;/STRONG&gt; we made is switching the &lt;STRONG&gt;destination connection from a publicly accessible Redshift instance&lt;/STRONG&gt; to an instance accessed via &lt;STRONG&gt;SSH tunnel&lt;/STRONG&gt;.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Without the SSH tunnel&lt;/STRONG&gt;:
&lt;UL&gt;
&lt;LI&gt;Test connection: &lt;span class="lia-unicode-emoji" title=":white_heavy_check_mark:"&gt;✅&lt;/span&gt; Successful&lt;/LI&gt;
&lt;LI&gt;Data loading: &lt;span class="lia-unicode-emoji" title=":white_heavy_check_mark:"&gt;✅&lt;/span&gt; Successful&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;However, this is a security risk&lt;/STRONG&gt; as we need the database to not be publicly accessible.&lt;/LI&gt;
&lt;/UL&gt;
&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;With the SSH tunnel&lt;/STRONG&gt;:
&lt;UL&gt;
&lt;LI&gt;Test connection: &lt;span class="lia-unicode-emoji" title=":white_heavy_check_mark:"&gt;✅&lt;/span&gt; Successful&lt;/LI&gt;
&lt;LI&gt;Data loading: &lt;span class="lia-unicode-emoji" title=":cross_mark:"&gt;❌&lt;/span&gt; &lt;STRONG&gt;Fails with an S3CurlException error&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;The error message indicates a timeout when attempting to load data into S3 before writing to Redshift.&lt;/LI&gt;
&lt;/UL&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;Error Message:&lt;/STRONG&gt;&lt;CODE&gt;&lt;/CODE&gt;&lt;/P&gt;
&lt;PRE class="st-v2-text-editor__pre-wrap st-v2-margin-bottom--0"&gt;ERROR: Problem reading manifest file - S3CurlException: Failed to connect to s3.eu-central-1.amazonaws.com port 443 after 50001 ms: Timeout was reached, CurlError 28, multiCurlError 0, CanRetry 1, UserError 0
  Detail: 
  -----------------------------------------------
  error:  Problem reading manifest file - S3CurlException: Failed to connect to s3.eu-central-1.amazonaws.com port 443 after 50001 ms: Timeout was reached, CurlError 28, multiCurlError 0, CanRetry 1, UserError 0
  code:      9001
  context:   s3://com-stitchdata-prod-loaders-staging-eu-central-1/ip-10-5-172-173-28081-8ae1151e-6107-4c74-abee-56aa3d18f04f/clients/208203/manifest_8776950644449573834.json
  query:     35136095
  location:  s3_utility.cpp:387
  process:   padbmaster [pid=1073922562]
  -----------------------------------------------&lt;CODE&gt;&lt;/CODE&gt;&lt;/PRE&gt;
&lt;P&gt;&lt;STRONG&gt;Additional Context:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;The connection to &lt;STRONG&gt;S3 appears to be failing only when the SSH tunnel is enabled&lt;/STRONG&gt;, even though the test connection succeeds.&lt;/LI&gt;
&lt;LI&gt;The issue does &lt;STRONG&gt;not&lt;/STRONG&gt; occur when Redshift is publicly accessible.&lt;/LI&gt;
&lt;LI&gt;We need to resolve this urgently, as keeping the database publicly accessible is &lt;STRONG&gt;not an acceptable security posture&lt;/STRONG&gt;.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H3&gt;&lt;STRONG&gt;Questions for Support:&lt;/STRONG&gt;&lt;/H3&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;STRONG&gt;Why does data loading to Redshift fail when using an SSH tunnel while the test connection still succeeds?&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Are there additional configurations required for Stitch to properly load data when using an SSH tunnel?&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Could there be a network routing issue with the SSH tunnel preventing access to AWS S3?&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Are there specific firewall rules, allowlists, or additional settings required for SSH tunnel-based connections to work with Stitch?&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;H3&gt;&lt;STRONG&gt;Request for Resolution:&lt;/STRONG&gt;&lt;/H3&gt;
&lt;P&gt;We need guidance on how to configure Stitch properly to &lt;STRONG&gt;support SSH tunnel connections while ensuring data loading works as expected&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Appreciate any assistance from the Qlik support team!&lt;/STRONG&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 25 Feb 2025 08:18:12 GMT</pubDate>
    <dc:creator>jhteam</dc:creator>
    <dc:date>2025-02-25T08:18:12Z</dc:date>
    <item>
      <title>Stitch - Data Loading Fails When Using SSH Tunnel to Amazon Redshift Destination</title>
      <link>https://community.qlik.com/t5/Stitch/Stitch-Data-Loading-Fails-When-Using-SSH-Tunnel-to-Amazon/m-p/2507205#M85</link>
      <description>&lt;P&gt;We are experiencing an issue when loading data into &lt;STRONG&gt;Amazon Redshift&lt;/STRONG&gt; as the &lt;STRONG&gt;destination in Stitch&lt;/STRONG&gt;, specifically when using an &lt;STRONG&gt;SSH tunnel&lt;/STRONG&gt; for connection security.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Issue Details:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;The only change&lt;/STRONG&gt; we made is switching the &lt;STRONG&gt;destination connection from a publicly accessible Redshift instance&lt;/STRONG&gt; to an instance accessed via &lt;STRONG&gt;SSH tunnel&lt;/STRONG&gt;.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Without the SSH tunnel&lt;/STRONG&gt;:
&lt;UL&gt;
&lt;LI&gt;Test connection: &lt;span class="lia-unicode-emoji" title=":white_heavy_check_mark:"&gt;✅&lt;/span&gt; Successful&lt;/LI&gt;
&lt;LI&gt;Data loading: &lt;span class="lia-unicode-emoji" title=":white_heavy_check_mark:"&gt;✅&lt;/span&gt; Successful&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;However, this is a security risk&lt;/STRONG&gt; as we need the database to not be publicly accessible.&lt;/LI&gt;
&lt;/UL&gt;
&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;With the SSH tunnel&lt;/STRONG&gt;:
&lt;UL&gt;
&lt;LI&gt;Test connection: &lt;span class="lia-unicode-emoji" title=":white_heavy_check_mark:"&gt;✅&lt;/span&gt; Successful&lt;/LI&gt;
&lt;LI&gt;Data loading: &lt;span class="lia-unicode-emoji" title=":cross_mark:"&gt;❌&lt;/span&gt; &lt;STRONG&gt;Fails with an S3CurlException error&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;The error message indicates a timeout when attempting to load data into S3 before writing to Redshift.&lt;/LI&gt;
&lt;/UL&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;Error Message:&lt;/STRONG&gt;&lt;CODE&gt;&lt;/CODE&gt;&lt;/P&gt;
&lt;PRE class="st-v2-text-editor__pre-wrap st-v2-margin-bottom--0"&gt;ERROR: Problem reading manifest file - S3CurlException: Failed to connect to s3.eu-central-1.amazonaws.com port 443 after 50001 ms: Timeout was reached, CurlError 28, multiCurlError 0, CanRetry 1, UserError 0
  Detail: 
  -----------------------------------------------
  error:  Problem reading manifest file - S3CurlException: Failed to connect to s3.eu-central-1.amazonaws.com port 443 after 50001 ms: Timeout was reached, CurlError 28, multiCurlError 0, CanRetry 1, UserError 0
  code:      9001
  context:   s3://com-stitchdata-prod-loaders-staging-eu-central-1/ip-10-5-172-173-28081-8ae1151e-6107-4c74-abee-56aa3d18f04f/clients/208203/manifest_8776950644449573834.json
  query:     35136095
  location:  s3_utility.cpp:387
  process:   padbmaster [pid=1073922562]
  -----------------------------------------------&lt;CODE&gt;&lt;/CODE&gt;&lt;/PRE&gt;
&lt;P&gt;&lt;STRONG&gt;Additional Context:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;The connection to &lt;STRONG&gt;S3 appears to be failing only when the SSH tunnel is enabled&lt;/STRONG&gt;, even though the test connection succeeds.&lt;/LI&gt;
&lt;LI&gt;The issue does &lt;STRONG&gt;not&lt;/STRONG&gt; occur when Redshift is publicly accessible.&lt;/LI&gt;
&lt;LI&gt;We need to resolve this urgently, as keeping the database publicly accessible is &lt;STRONG&gt;not an acceptable security posture&lt;/STRONG&gt;.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H3&gt;&lt;STRONG&gt;Questions for Support:&lt;/STRONG&gt;&lt;/H3&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;STRONG&gt;Why does data loading to Redshift fail when using an SSH tunnel while the test connection still succeeds?&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Are there additional configurations required for Stitch to properly load data when using an SSH tunnel?&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Could there be a network routing issue with the SSH tunnel preventing access to AWS S3?&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Are there specific firewall rules, allowlists, or additional settings required for SSH tunnel-based connections to work with Stitch?&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;H3&gt;&lt;STRONG&gt;Request for Resolution:&lt;/STRONG&gt;&lt;/H3&gt;
&lt;P&gt;We need guidance on how to configure Stitch properly to &lt;STRONG&gt;support SSH tunnel connections while ensuring data loading works as expected&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Appreciate any assistance from the Qlik support team!&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Feb 2025 08:18:12 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Stitch/Stitch-Data-Loading-Fails-When-Using-SSH-Tunnel-to-Amazon/m-p/2507205#M85</guid>
      <dc:creator>jhteam</dc:creator>
      <dc:date>2025-02-25T08:18:12Z</dc:date>
    </item>
  </channel>
</rss>

