After creating the connection, you can add third-party applications for the IAM Identity Center integration to integrate with Lake Formation, and get access to Amazon S3 data on behalf of the users. You can also remove existing applications from the IAM Identity Center integration. You can add or remove applications using Lake Formation console, AWS CLI, and using UpdateLakeFormationIdentityCenterConfiguration operation.
Note
After creating IAM Identity Center integration, you can't update the instance ARN
.
To update an existing IAM Identity Center connection with Lake Formation
Sign in to the AWS Management Console, and open the Lake Formation console at https://console.aws.amazon.com/lakeformation/
. In the left navigation pane, select IAM Identity Center integration.
Select Add on the IAM Identity Center integration page.
-
Enter one or more valid AWS account IDs, organization IDs, and/or organizational unit IDs to allow external accounts to access the Data Catalog resources.
On the Add applications screen, enter the application IDs of the third-party applications that you want to integrate with Lake Formation.
Select Add.