snowflake.StorageIntegration
Import
$ pulumi import snowflake:index/storageIntegration:StorageIntegration example name
Create StorageIntegration Resource
Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.
Constructor syntax
new StorageIntegration(name: string, args: StorageIntegrationArgs, opts?: CustomResourceOptions);@overload
def StorageIntegration(resource_name: str,
                       args: StorageIntegrationArgs,
                       opts: Optional[ResourceOptions] = None)
@overload
def StorageIntegration(resource_name: str,
                       opts: Optional[ResourceOptions] = None,
                       storage_allowed_locations: Optional[Sequence[str]] = None,
                       storage_provider: Optional[str] = None,
                       azure_tenant_id: Optional[str] = None,
                       comment: Optional[str] = None,
                       enabled: Optional[bool] = None,
                       name: Optional[str] = None,
                       storage_aws_external_id: Optional[str] = None,
                       storage_aws_object_acl: Optional[str] = None,
                       storage_aws_role_arn: Optional[str] = None,
                       storage_blocked_locations: Optional[Sequence[str]] = None,
                       type: Optional[str] = None,
                       use_privatelink_endpoint: Optional[str] = None)func NewStorageIntegration(ctx *Context, name string, args StorageIntegrationArgs, opts ...ResourceOption) (*StorageIntegration, error)public StorageIntegration(string name, StorageIntegrationArgs args, CustomResourceOptions? opts = null)
public StorageIntegration(String name, StorageIntegrationArgs args)
public StorageIntegration(String name, StorageIntegrationArgs args, CustomResourceOptions options)
type: snowflake:StorageIntegration
properties: # The arguments to resource properties.
options: # Bag of options to control resource's behavior.
Parameters
- name string
- The unique name of the resource.
- args StorageIntegrationArgs
- The arguments to resource properties.
- opts CustomResourceOptions
- Bag of options to control resource's behavior.
- resource_name str
- The unique name of the resource.
- args StorageIntegrationArgs
- The arguments to resource properties.
- opts ResourceOptions
- Bag of options to control resource's behavior.
- ctx Context
- Context object for the current deployment.
- name string
- The unique name of the resource.
- args StorageIntegrationArgs
- The arguments to resource properties.
- opts ResourceOption
- Bag of options to control resource's behavior.
- name string
- The unique name of the resource.
- args StorageIntegrationArgs
- The arguments to resource properties.
- opts CustomResourceOptions
- Bag of options to control resource's behavior.
- name String
- The unique name of the resource.
- args StorageIntegrationArgs
- The arguments to resource properties.
- options CustomResourceOptions
- Bag of options to control resource's behavior.
Constructor example
The following reference example uses placeholder values for all input properties.
var storageIntegrationResource = new Snowflake.StorageIntegration("storageIntegrationResource", new()
{
    StorageAllowedLocations = new[]
    {
        "string",
    },
    StorageProvider = "string",
    AzureTenantId = "string",
    Comment = "string",
    Enabled = false,
    Name = "string",
    StorageAwsExternalId = "string",
    StorageAwsObjectAcl = "string",
    StorageAwsRoleArn = "string",
    StorageBlockedLocations = new[]
    {
        "string",
    },
    Type = "string",
    UsePrivatelinkEndpoint = "string",
});
example, err := snowflake.NewStorageIntegration(ctx, "storageIntegrationResource", &snowflake.StorageIntegrationArgs{
	StorageAllowedLocations: pulumi.StringArray{
		pulumi.String("string"),
	},
	StorageProvider:      pulumi.String("string"),
	AzureTenantId:        pulumi.String("string"),
	Comment:              pulumi.String("string"),
	Enabled:              pulumi.Bool(false),
	Name:                 pulumi.String("string"),
	StorageAwsExternalId: pulumi.String("string"),
	StorageAwsObjectAcl:  pulumi.String("string"),
	StorageAwsRoleArn:    pulumi.String("string"),
	StorageBlockedLocations: pulumi.StringArray{
		pulumi.String("string"),
	},
	Type:                   pulumi.String("string"),
	UsePrivatelinkEndpoint: pulumi.String("string"),
})
var storageIntegrationResource = new StorageIntegration("storageIntegrationResource", StorageIntegrationArgs.builder()
    .storageAllowedLocations("string")
    .storageProvider("string")
    .azureTenantId("string")
    .comment("string")
    .enabled(false)
    .name("string")
    .storageAwsExternalId("string")
    .storageAwsObjectAcl("string")
    .storageAwsRoleArn("string")
    .storageBlockedLocations("string")
    .type("string")
    .usePrivatelinkEndpoint("string")
    .build());
storage_integration_resource = snowflake.StorageIntegration("storageIntegrationResource",
    storage_allowed_locations=["string"],
    storage_provider="string",
    azure_tenant_id="string",
    comment="string",
    enabled=False,
    name="string",
    storage_aws_external_id="string",
    storage_aws_object_acl="string",
    storage_aws_role_arn="string",
    storage_blocked_locations=["string"],
    type="string",
    use_privatelink_endpoint="string")
const storageIntegrationResource = new snowflake.StorageIntegration("storageIntegrationResource", {
    storageAllowedLocations: ["string"],
    storageProvider: "string",
    azureTenantId: "string",
    comment: "string",
    enabled: false,
    name: "string",
    storageAwsExternalId: "string",
    storageAwsObjectAcl: "string",
    storageAwsRoleArn: "string",
    storageBlockedLocations: ["string"],
    type: "string",
    usePrivatelinkEndpoint: "string",
});
type: snowflake:StorageIntegration
properties:
    azureTenantId: string
    comment: string
    enabled: false
    name: string
    storageAllowedLocations:
        - string
    storageAwsExternalId: string
    storageAwsObjectAcl: string
    storageAwsRoleArn: string
    storageBlockedLocations:
        - string
    storageProvider: string
    type: string
    usePrivatelinkEndpoint: string
StorageIntegration Resource Properties
To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.
Inputs
In Python, inputs that are objects can be passed either as argument classes or as dictionary literals.
The StorageIntegration resource accepts the following input properties:
- StorageAllowed List<string>Locations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- StorageProvider string
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- AzureTenant stringId 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- Comment string
- (Default: ``) Specifies a comment for the storage integration.
- Enabled bool
- (Default: true)
- Name string
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- StorageAws stringExternal Id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- StorageAws stringObject Acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- StorageAws stringRole Arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- StorageBlocked List<string>Locations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- Type string
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- UsePrivatelink stringEndpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
- StorageAllowed []stringLocations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- StorageProvider string
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- AzureTenant stringId 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- Comment string
- (Default: ``) Specifies a comment for the storage integration.
- Enabled bool
- (Default: true)
- Name string
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- StorageAws stringExternal Id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- StorageAws stringObject Acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- StorageAws stringRole Arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- StorageBlocked []stringLocations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- Type string
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- UsePrivatelink stringEndpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
- storageAllowed List<String>Locations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- storageProvider String
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- azureTenant StringId 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- comment String
- (Default: ``) Specifies a comment for the storage integration.
- enabled Boolean
- (Default: true)
- name String
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- storageAws StringExternal Id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- storageAws StringObject Acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- storageAws StringRole Arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- storageBlocked List<String>Locations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- type String
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- usePrivatelink StringEndpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
- storageAllowed string[]Locations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- storageProvider string
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- azureTenant stringId 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- comment string
- (Default: ``) Specifies a comment for the storage integration.
- enabled boolean
- (Default: true)
- name string
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- storageAws stringExternal Id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- storageAws stringObject Acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- storageAws stringRole Arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- storageBlocked string[]Locations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- type string
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- usePrivatelink stringEndpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
- storage_allowed_ Sequence[str]locations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- storage_provider str
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- azure_tenant_ strid 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- comment str
- (Default: ``) Specifies a comment for the storage integration.
- enabled bool
- (Default: true)
- name str
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- storage_aws_ strexternal_ id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- storage_aws_ strobject_ acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- storage_aws_ strrole_ arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- storage_blocked_ Sequence[str]locations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- type str
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- use_privatelink_ strendpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
- storageAllowed List<String>Locations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- storageProvider String
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- azureTenant StringId 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- comment String
- (Default: ``) Specifies a comment for the storage integration.
- enabled Boolean
- (Default: true)
- name String
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- storageAws StringExternal Id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- storageAws StringObject Acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- storageAws StringRole Arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- storageBlocked List<String>Locations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- type String
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- usePrivatelink StringEndpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
Outputs
All input properties are implicitly available as output properties. Additionally, the StorageIntegration resource produces the following output properties:
- AzureConsent stringUrl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- AzureMulti stringTenant App Name 
- This is the name of the Snowflake client application created for your account.
- CreatedOn string
- Date and time when the storage integration was created.
- DescribeOutputs List<StorageIntegration Describe Output> 
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- FullyQualified stringName 
- Fully qualified name of the resource. For more information, see object name resolution.
- Id string
- The provider-assigned unique ID for this managed resource.
- StorageAws stringIam User Arn 
- The Snowflake user that will attempt to assume the AWS role.
- StorageGcp stringService Account 
- This is the name of the Snowflake Google Service Account created for your account.
- AzureConsent stringUrl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- AzureMulti stringTenant App Name 
- This is the name of the Snowflake client application created for your account.
- CreatedOn string
- Date and time when the storage integration was created.
- DescribeOutputs []StorageIntegration Describe Output 
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- FullyQualified stringName 
- Fully qualified name of the resource. For more information, see object name resolution.
- Id string
- The provider-assigned unique ID for this managed resource.
- StorageAws stringIam User Arn 
- The Snowflake user that will attempt to assume the AWS role.
- StorageGcp stringService Account 
- This is the name of the Snowflake Google Service Account created for your account.
- azureConsent StringUrl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- azureMulti StringTenant App Name 
- This is the name of the Snowflake client application created for your account.
- createdOn String
- Date and time when the storage integration was created.
- describeOutputs List<StorageIntegration Describe Output> 
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- fullyQualified StringName 
- Fully qualified name of the resource. For more information, see object name resolution.
- id String
- The provider-assigned unique ID for this managed resource.
- storageAws StringIam User Arn 
- The Snowflake user that will attempt to assume the AWS role.
- storageGcp StringService Account 
- This is the name of the Snowflake Google Service Account created for your account.
- azureConsent stringUrl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- azureMulti stringTenant App Name 
- This is the name of the Snowflake client application created for your account.
- createdOn string
- Date and time when the storage integration was created.
- describeOutputs StorageIntegration Describe Output[] 
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- fullyQualified stringName 
- Fully qualified name of the resource. For more information, see object name resolution.
- id string
- The provider-assigned unique ID for this managed resource.
- storageAws stringIam User Arn 
- The Snowflake user that will attempt to assume the AWS role.
- storageGcp stringService Account 
- This is the name of the Snowflake Google Service Account created for your account.
- azure_consent_ strurl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- azure_multi_ strtenant_ app_ name 
- This is the name of the Snowflake client application created for your account.
- created_on str
- Date and time when the storage integration was created.
- describe_outputs Sequence[StorageIntegration Describe Output] 
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- fully_qualified_ strname 
- Fully qualified name of the resource. For more information, see object name resolution.
- id str
- The provider-assigned unique ID for this managed resource.
- storage_aws_ striam_ user_ arn 
- The Snowflake user that will attempt to assume the AWS role.
- storage_gcp_ strservice_ account 
- This is the name of the Snowflake Google Service Account created for your account.
- azureConsent StringUrl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- azureMulti StringTenant App Name 
- This is the name of the Snowflake client application created for your account.
- createdOn String
- Date and time when the storage integration was created.
- describeOutputs List<Property Map>
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- fullyQualified StringName 
- Fully qualified name of the resource. For more information, see object name resolution.
- id String
- The provider-assigned unique ID for this managed resource.
- storageAws StringIam User Arn 
- The Snowflake user that will attempt to assume the AWS role.
- storageGcp StringService Account 
- This is the name of the Snowflake Google Service Account created for your account.
Look up Existing StorageIntegration Resource
Get an existing StorageIntegration resource’s state with the given name, ID, and optional extra properties used to qualify the lookup.
public static get(name: string, id: Input<ID>, state?: StorageIntegrationState, opts?: CustomResourceOptions): StorageIntegration@staticmethod
def get(resource_name: str,
        id: str,
        opts: Optional[ResourceOptions] = None,
        azure_consent_url: Optional[str] = None,
        azure_multi_tenant_app_name: Optional[str] = None,
        azure_tenant_id: Optional[str] = None,
        comment: Optional[str] = None,
        created_on: Optional[str] = None,
        describe_outputs: Optional[Sequence[StorageIntegrationDescribeOutputArgs]] = None,
        enabled: Optional[bool] = None,
        fully_qualified_name: Optional[str] = None,
        name: Optional[str] = None,
        storage_allowed_locations: Optional[Sequence[str]] = None,
        storage_aws_external_id: Optional[str] = None,
        storage_aws_iam_user_arn: Optional[str] = None,
        storage_aws_object_acl: Optional[str] = None,
        storage_aws_role_arn: Optional[str] = None,
        storage_blocked_locations: Optional[Sequence[str]] = None,
        storage_gcp_service_account: Optional[str] = None,
        storage_provider: Optional[str] = None,
        type: Optional[str] = None,
        use_privatelink_endpoint: Optional[str] = None) -> StorageIntegrationfunc GetStorageIntegration(ctx *Context, name string, id IDInput, state *StorageIntegrationState, opts ...ResourceOption) (*StorageIntegration, error)public static StorageIntegration Get(string name, Input<string> id, StorageIntegrationState? state, CustomResourceOptions? opts = null)public static StorageIntegration get(String name, Output<String> id, StorageIntegrationState state, CustomResourceOptions options)resources:  _:    type: snowflake:StorageIntegration    get:      id: ${id}- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- resource_name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- name
- The unique name of the resulting resource.
- id
- The unique provider ID of the resource to lookup.
- state
- Any extra arguments used during the lookup.
- opts
- A bag of options that control this resource's behavior.
- AzureConsent stringUrl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- AzureMulti stringTenant App Name 
- This is the name of the Snowflake client application created for your account.
- AzureTenant stringId 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- Comment string
- (Default: ``) Specifies a comment for the storage integration.
- CreatedOn string
- Date and time when the storage integration was created.
- DescribeOutputs List<StorageIntegration Describe Output> 
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- Enabled bool
- (Default: true)
- FullyQualified stringName 
- Fully qualified name of the resource. For more information, see object name resolution.
- Name string
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- StorageAllowed List<string>Locations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- StorageAws stringExternal Id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- StorageAws stringIam User Arn 
- The Snowflake user that will attempt to assume the AWS role.
- StorageAws stringObject Acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- StorageAws stringRole Arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- StorageBlocked List<string>Locations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- StorageGcp stringService Account 
- This is the name of the Snowflake Google Service Account created for your account.
- StorageProvider string
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- Type string
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- UsePrivatelink stringEndpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
- AzureConsent stringUrl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- AzureMulti stringTenant App Name 
- This is the name of the Snowflake client application created for your account.
- AzureTenant stringId 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- Comment string
- (Default: ``) Specifies a comment for the storage integration.
- CreatedOn string
- Date and time when the storage integration was created.
- DescribeOutputs []StorageIntegration Describe Output Args 
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- Enabled bool
- (Default: true)
- FullyQualified stringName 
- Fully qualified name of the resource. For more information, see object name resolution.
- Name string
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- StorageAllowed []stringLocations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- StorageAws stringExternal Id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- StorageAws stringIam User Arn 
- The Snowflake user that will attempt to assume the AWS role.
- StorageAws stringObject Acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- StorageAws stringRole Arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- StorageBlocked []stringLocations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- StorageGcp stringService Account 
- This is the name of the Snowflake Google Service Account created for your account.
- StorageProvider string
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- Type string
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- UsePrivatelink stringEndpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
- azureConsent StringUrl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- azureMulti StringTenant App Name 
- This is the name of the Snowflake client application created for your account.
- azureTenant StringId 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- comment String
- (Default: ``) Specifies a comment for the storage integration.
- createdOn String
- Date and time when the storage integration was created.
- describeOutputs List<StorageIntegration Describe Output> 
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- enabled Boolean
- (Default: true)
- fullyQualified StringName 
- Fully qualified name of the resource. For more information, see object name resolution.
- name String
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- storageAllowed List<String>Locations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- storageAws StringExternal Id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- storageAws StringIam User Arn 
- The Snowflake user that will attempt to assume the AWS role.
- storageAws StringObject Acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- storageAws StringRole Arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- storageBlocked List<String>Locations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- storageGcp StringService Account 
- This is the name of the Snowflake Google Service Account created for your account.
- storageProvider String
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- type String
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- usePrivatelink StringEndpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
- azureConsent stringUrl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- azureMulti stringTenant App Name 
- This is the name of the Snowflake client application created for your account.
- azureTenant stringId 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- comment string
- (Default: ``) Specifies a comment for the storage integration.
- createdOn string
- Date and time when the storage integration was created.
- describeOutputs StorageIntegration Describe Output[] 
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- enabled boolean
- (Default: true)
- fullyQualified stringName 
- Fully qualified name of the resource. For more information, see object name resolution.
- name string
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- storageAllowed string[]Locations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- storageAws stringExternal Id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- storageAws stringIam User Arn 
- The Snowflake user that will attempt to assume the AWS role.
- storageAws stringObject Acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- storageAws stringRole Arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- storageBlocked string[]Locations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- storageGcp stringService Account 
- This is the name of the Snowflake Google Service Account created for your account.
- storageProvider string
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- type string
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- usePrivatelink stringEndpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
- azure_consent_ strurl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- azure_multi_ strtenant_ app_ name 
- This is the name of the Snowflake client application created for your account.
- azure_tenant_ strid 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- comment str
- (Default: ``) Specifies a comment for the storage integration.
- created_on str
- Date and time when the storage integration was created.
- describe_outputs Sequence[StorageIntegration Describe Output Args] 
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- enabled bool
- (Default: true)
- fully_qualified_ strname 
- Fully qualified name of the resource. For more information, see object name resolution.
- name str
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- storage_allowed_ Sequence[str]locations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- storage_aws_ strexternal_ id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- storage_aws_ striam_ user_ arn 
- The Snowflake user that will attempt to assume the AWS role.
- storage_aws_ strobject_ acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- storage_aws_ strrole_ arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- storage_blocked_ Sequence[str]locations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- storage_gcp_ strservice_ account 
- This is the name of the Snowflake Google Service Account created for your account.
- storage_provider str
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- type str
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- use_privatelink_ strendpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
- azureConsent StringUrl 
- The consent URL that is used to create an Azure Snowflake service principle inside your tenant.
- azureMulti StringTenant App Name 
- This is the name of the Snowflake client application created for your account.
- azureTenant StringId 
- (Default: ``) Specifies the ID for your Office 365 tenant that the allowed and blocked storage accounts belong to.
- comment String
- (Default: ``) Specifies a comment for the storage integration.
- createdOn String
- Date and time when the storage integration was created.
- describeOutputs List<Property Map>
- Outputs the result of DESCRIBE STORAGE INTEGRATIONfor the given storage integration.
- enabled Boolean
- (Default: true)
- fullyQualified StringName 
- Fully qualified name of the resource. For more information, see object name resolution.
- name String
- String that specifies the identifier (i.e. name) for the integration; must be unique in your account.
- storageAllowed List<String>Locations 
- Explicitly limits external stages that use the integration to reference one or more storage locations.
- storageAws StringExternal Id 
- Optionally specifies an external ID that Snowflake uses to establish a trust relationship with AWS.
- storageAws StringIam User Arn 
- The Snowflake user that will attempt to assume the AWS role.
- storageAws StringObject Acl 
- "bucket-owner-full-control" Enables support for AWS access control lists (ACLs) to grant the bucket owner full control.
- storageAws StringRole Arn 
- (Default: ``) Specifies the Amazon Resource Name (ARN) of the AWS identity and access management (IAM) role that grants privileges on the S3 bucket containing your data files.
- storageBlocked List<String>Locations 
- Explicitly prohibits external stages that use the integration from referencing one or more storage locations.
- storageGcp StringService Account 
- This is the name of the Snowflake Google Service Account created for your account.
- storageProvider String
- Specifies the storage provider for the integration. Valid options are: S3|S3GOV|S3CHINA|GCS|AZURE
- type String
- (Default: EXTERNAL_STAGE) Specifies the type of the storage integration.
- usePrivatelink StringEndpoint 
- (Default: fallback to Snowflake default - uses special value that cannot be set in the configuration manually (default)) Specifies whether to use outbound private connectivity to harden the security posture. Supported for AWS S3 and Azure storage providers. Available options are: "true" or "false". When the value is not set in the configuration the provider will put "default" there which means to use the Snowflake default for this value.
Supporting Types
StorageIntegrationDescribeOutput, StorageIntegrationDescribeOutputArgs        
- AzureConsent List<StorageUrls Integration Describe Output Azure Consent Url> 
- AzureMulti List<StorageTenant App Names Integration Describe Output Azure Multi Tenant App Name> 
- Comments
List<StorageIntegration Describe Output Comment> 
- Enableds
List<StorageIntegration Describe Output Enabled> 
- StorageAllowed List<StorageLocations Integration Describe Output Storage Allowed Location> 
- StorageAws List<StorageExternal Ids Integration Describe Output Storage Aws External Id> 
- StorageAws List<StorageIam User Arns Integration Describe Output Storage Aws Iam User Arn> 
- StorageAws List<StorageObject Acls Integration Describe Output Storage Aws Object Acl> 
- StorageAws List<StorageRole Arns Integration Describe Output Storage Aws Role Arn> 
- StorageBlocked List<StorageLocations Integration Describe Output Storage Blocked Location> 
- StorageGcp List<StorageService Accounts Integration Describe Output Storage Gcp Service Account> 
- StorageProviders List<StorageIntegration Describe Output Storage Provider> 
- UsePrivatelink List<StorageEndpoints Integration Describe Output Use Privatelink Endpoint> 
- AzureConsent []StorageUrls Integration Describe Output Azure Consent Url 
- AzureMulti []StorageTenant App Names Integration Describe Output Azure Multi Tenant App Name 
- Comments
[]StorageIntegration Describe Output Comment 
- Enableds
[]StorageIntegration Describe Output Enabled 
- StorageAllowed []StorageLocations Integration Describe Output Storage Allowed Location 
- StorageAws []StorageExternal Ids Integration Describe Output Storage Aws External Id 
- StorageAws []StorageIam User Arns Integration Describe Output Storage Aws Iam User Arn 
- StorageAws []StorageObject Acls Integration Describe Output Storage Aws Object Acl 
- StorageAws []StorageRole Arns Integration Describe Output Storage Aws Role Arn 
- StorageBlocked []StorageLocations Integration Describe Output Storage Blocked Location 
- StorageGcp []StorageService Accounts Integration Describe Output Storage Gcp Service Account 
- StorageProviders []StorageIntegration Describe Output Storage Provider 
- UsePrivatelink []StorageEndpoints Integration Describe Output Use Privatelink Endpoint 
- azureConsent List<StorageUrls Integration Describe Output Azure Consent Url> 
- azureMulti List<StorageTenant App Names Integration Describe Output Azure Multi Tenant App Name> 
- comments
List<StorageIntegration Describe Output Comment> 
- enableds
List<StorageIntegration Describe Output Enabled> 
- storageAllowed List<StorageLocations Integration Describe Output Storage Allowed Location> 
- storageAws List<StorageExternal Ids Integration Describe Output Storage Aws External Id> 
- storageAws List<StorageIam User Arns Integration Describe Output Storage Aws Iam User Arn> 
- storageAws List<StorageObject Acls Integration Describe Output Storage Aws Object Acl> 
- storageAws List<StorageRole Arns Integration Describe Output Storage Aws Role Arn> 
- storageBlocked List<StorageLocations Integration Describe Output Storage Blocked Location> 
- storageGcp List<StorageService Accounts Integration Describe Output Storage Gcp Service Account> 
- storageProviders List<StorageIntegration Describe Output Storage Provider> 
- usePrivatelink List<StorageEndpoints Integration Describe Output Use Privatelink Endpoint> 
- azureConsent StorageUrls Integration Describe Output Azure Consent Url[] 
- azureMulti StorageTenant App Names Integration Describe Output Azure Multi Tenant App Name[] 
- comments
StorageIntegration Describe Output Comment[] 
- enableds
StorageIntegration Describe Output Enabled[] 
- storageAllowed StorageLocations Integration Describe Output Storage Allowed Location[] 
- storageAws StorageExternal Ids Integration Describe Output Storage Aws External Id[] 
- storageAws StorageIam User Arns Integration Describe Output Storage Aws Iam User Arn[] 
- storageAws StorageObject Acls Integration Describe Output Storage Aws Object Acl[] 
- storageAws StorageRole Arns Integration Describe Output Storage Aws Role Arn[] 
- storageBlocked StorageLocations Integration Describe Output Storage Blocked Location[] 
- storageGcp StorageService Accounts Integration Describe Output Storage Gcp Service Account[] 
- storageProviders StorageIntegration Describe Output Storage Provider[] 
- usePrivatelink StorageEndpoints Integration Describe Output Use Privatelink Endpoint[] 
- azure_consent_ Sequence[Storageurls Integration Describe Output Azure Consent Url] 
- azure_multi_ Sequence[Storagetenant_ app_ names Integration Describe Output Azure Multi Tenant App Name] 
- comments
Sequence[StorageIntegration Describe Output Comment] 
- enableds
Sequence[StorageIntegration Describe Output Enabled] 
- storage_allowed_ Sequence[Storagelocations Integration Describe Output Storage Allowed Location] 
- storage_aws_ Sequence[Storageexternal_ ids Integration Describe Output Storage Aws External Id] 
- storage_aws_ Sequence[Storageiam_ user_ arns Integration Describe Output Storage Aws Iam User Arn] 
- storage_aws_ Sequence[Storageobject_ acls Integration Describe Output Storage Aws Object Acl] 
- storage_aws_ Sequence[Storagerole_ arns Integration Describe Output Storage Aws Role Arn] 
- storage_blocked_ Sequence[Storagelocations Integration Describe Output Storage Blocked Location] 
- storage_gcp_ Sequence[Storageservice_ accounts Integration Describe Output Storage Gcp Service Account] 
- storage_providers Sequence[StorageIntegration Describe Output Storage Provider] 
- use_privatelink_ Sequence[Storageendpoints Integration Describe Output Use Privatelink Endpoint] 
- azureConsent List<Property Map>Urls 
- azureMulti List<Property Map>Tenant App Names 
- comments List<Property Map>
- enableds List<Property Map>
- storageAllowed List<Property Map>Locations 
- storageAws List<Property Map>External Ids 
- storageAws List<Property Map>Iam User Arns 
- storageAws List<Property Map>Object Acls 
- storageAws List<Property Map>Role Arns 
- storageBlocked List<Property Map>Locations 
- storageGcp List<Property Map>Service Accounts 
- storageProviders List<Property Map>
- usePrivatelink List<Property Map>Endpoints 
StorageIntegrationDescribeOutputAzureConsentUrl, StorageIntegrationDescribeOutputAzureConsentUrlArgs              
StorageIntegrationDescribeOutputAzureMultiTenantAppName, StorageIntegrationDescribeOutputAzureMultiTenantAppNameArgs                  
StorageIntegrationDescribeOutputComment, StorageIntegrationDescribeOutputCommentArgs          
StorageIntegrationDescribeOutputEnabled, StorageIntegrationDescribeOutputEnabledArgs          
StorageIntegrationDescribeOutputStorageAllowedLocation, StorageIntegrationDescribeOutputStorageAllowedLocationArgs              
StorageIntegrationDescribeOutputStorageAwsExternalId, StorageIntegrationDescribeOutputStorageAwsExternalIdArgs                
StorageIntegrationDescribeOutputStorageAwsIamUserArn, StorageIntegrationDescribeOutputStorageAwsIamUserArnArgs                  
StorageIntegrationDescribeOutputStorageAwsObjectAcl, StorageIntegrationDescribeOutputStorageAwsObjectAclArgs                
StorageIntegrationDescribeOutputStorageAwsRoleArn, StorageIntegrationDescribeOutputStorageAwsRoleArnArgs                
StorageIntegrationDescribeOutputStorageBlockedLocation, StorageIntegrationDescribeOutputStorageBlockedLocationArgs              
StorageIntegrationDescribeOutputStorageGcpServiceAccount, StorageIntegrationDescribeOutputStorageGcpServiceAccountArgs                
StorageIntegrationDescribeOutputStorageProvider, StorageIntegrationDescribeOutputStorageProviderArgs            
StorageIntegrationDescribeOutputUsePrivatelinkEndpoint, StorageIntegrationDescribeOutputUsePrivatelinkEndpointArgs              
Package Details
- Repository
- Snowflake pulumi/pulumi-snowflake
- License
- Apache-2.0
- Notes
- This Pulumi package is based on the snowflakeTerraform Provider.
