COPY from Amazon S3
To load data from files located in one or more S3 buckets, use the FROM clause to indicate how COPY locates the files in Amazon S3. You can provide the object path to the data files as part of the FROM clause, or you can provide the location of a manifest file that contains a list of Amazon S3 object paths. COPY from Amazon S3 uses an HTTPS connection. Ensure that the S3 IP ranges are added to your allow list. To learn more about the required S3 IP ranges, see Network isolation.
Important
If the Amazon S3 buckets that hold the data files don't reside in the same AWS Region as your cluster, you must use the REGION parameter to specify the Region in which the data is located.
Syntax
FROM { 's3://objectpath' | 's3://manifest_file' } authorization | MANIFEST | ENCRYPTED | REGION [AS] 'aws-region' | optional-parameters
Examples
The following example uses an object path to load data from Amazon S3.
copy customer from 's3://amzn-s3-demo-bucket/customer' iam_role 'arn:aws:iam::0123456789012:role/MyRedshiftRole';
The following example uses a manifest file to load data from Amazon S3.
copy customer from 's3://amzn-s3-demo-bucket/cust.manifest' iam_role 'arn:aws:iam::0123456789012:role/MyRedshiftRole' manifest;
Parameters
- FROM
-
The source of the data to be loaded. For more information about the encoding of the Amazon S3 file, see Data conversion parameters.
- 's3://copy_from_s3_objectpath'
-
Specifies the path to the Amazon S3 objects that contain the data—for example,
's3://amzn-s3-demo-bucket/custdata.txt'
. The s3://copy_from_s3_objectpath parameter can reference a single file or a set of objects or folders that have the same key prefix. For example, the namecustdata.txt
is a key prefix that refers to a number of physical files:custdata.txt
,custdata.txt.1
,custdata.txt.2
,custdata.txt.bak
,and so on. The key prefix can also reference a number of folders. For example,'s3://amzn-s3-demo-bucket/custfolder'
refers to the folderscustfolder
,custfolder_1
,custfolder_2
, and so on. If a key prefix references multiple folders, all of the files in the folders are loaded. If a key prefix matches a file as well as a folder, such ascustfolder.log
, COPY attempts to load the file also. If a key prefix might result in COPY attempting to load unwanted files, use a manifest file. For more information, see copy_from_s3_manifest_file, following.Important
If the S3 bucket that holds the data files doesn't reside in the same AWS Region as your cluster, you must use the REGION parameter to specify the Region in which the data is located.
For more information, see Loading data from Amazon S3.
- 's3://copy_from_s3_manifest_file'
-
Specifies the Amazon S3 object key for a manifest file that lists the data files to be loaded. The 's3://copy_from_s3_manifest_file' argument must explicitly reference a single file—for example,
's3://amzn-s3-demo-bucket/manifest.txt'
. It can't reference a key prefix.The manifest is a text file in JSON format that lists the URL of each file that is to be loaded from Amazon S3. The URL includes the bucket name and full object path for the file. The files that are specified in the manifest can be in different buckets, but all the buckets must be in the same AWS Region as the Amazon Redshift cluster. If a file is listed twice, the file is loaded twice. The following example shows the JSON for a manifest that loads three files.
{ "entries": [ {"url":"s3://amzn-s3-demo-bucket1/custdata.1","mandatory":true}, {"url":"s3://amzn-s3-demo-bucket1/custdata.2","mandatory":true}, {"url":"s3://amzn-s3-demo-bucket2/custdata.1","mandatory":false} ] }
The double quotation mark characters are required, and must be simple quotation marks (0x22), not slanted or "smart" quotation marks. Each entry in the manifest can optionally include a
mandatory
flag. Ifmandatory
is set totrue
, COPY terminates if it doesn't find the file for that entry; otherwise, COPY will continue. The default value formandatory
isfalse
.When loading from data files in ORC or Parquet format, a
meta
field is required, as shown in the following example.{ "entries":[ { "url":"s3://amzn-s3-demo-bucket1/orc/2013-10-04-custdata", "mandatory":true, "meta":{ "content_length":99 } }, { "url":"s3://amzn-s3-demo-bucket2/orc/2013-10-05-custdata", "mandatory":true, "meta":{ "content_length":99 } } ] }
The manifest file must not be encrypted or compressed, even if the ENCRYPTED, GZIP, LZOP, BZIP2, or ZSTD options are specified. COPY returns an error if the specified manifest file isn't found or the manifest file isn't properly formed.
If a manifest file is used, the MANIFEST parameter must be specified with the COPY command. If the MANIFEST parameter isn't specified, COPY assumes that the file specified with FROM is a data file.
For more information, see Loading data from Amazon S3.
- authorization
-
The COPY command needs authorization to access data in another AWS resource, including in Amazon S3, Amazon EMR, Amazon DynamoDB, and Amazon EC2. You can provide that authorization by referencing an AWS Identity and Access Management (IAM) role that is attached to your cluster (role-based access control) or by providing the access credentials for a user (key-based access control). For increased security and flexibility, we recommend using IAM role-based access control. For more information, see Authorization parameters.
- MANIFEST
-
Specifies that a manifest is used to identify the data files to be loaded from Amazon S3. If the MANIFEST parameter is used, COPY loads data from the files listed in the manifest referenced by 's3://copy_from_s3_manifest_file'. If the manifest file isn't found, or isn't properly formed, COPY fails. For more information, see Using a manifest to specify data files.
- ENCRYPTED
-
A clause that specifies that the input files on Amazon S3 are encrypted using client-side encryption with customer managed keys. For more information, see Loading encrypted data files from Amazon S3. Don't specify ENCRYPTED if the input files are encrypted using Amazon S3 server-side encryption (SSE-KMS or SSE-S3). COPY reads server-side encrypted files automatically.
If you specify the ENCRYPTED parameter, you must also specify the MASTER_SYMMETRIC_KEY parameter or include the
master_symmetric_key
value in the CREDENTIALS string.If the encrypted files are in compressed format, add the GZIP, LZOP, BZIP2, or ZSTD parameter.
Manifest files and JSONPaths files must not be encrypted, even if the ENCRYPTED option is specified.
- MASTER_SYMMETRIC_KEY 'root_key'
-
The root symmetric key that was used to encrypt data files on Amazon S3. If MASTER_SYMMETRIC_KEY is specified, the ENCRYPTED parameter must also be specified. MASTER_SYMMETRIC_KEY can't be used with the CREDENTIALS parameter. For more information, see Loading encrypted data files from Amazon S3.
If the encrypted files are in compressed format, add the GZIP, LZOP, BZIP2, or ZSTD parameter.
- REGION [AS] 'aws-region'
-
Specifies the AWS Region where the source data is located. REGION is required for COPY from an Amazon S3 bucket or an DynamoDB table when the AWS resource that contains the data isn't in the same Region as the Amazon Redshift cluster.
The value for aws_region must match a Region listed in the Amazon Redshift regions and endpoints table.
If the REGION parameter is specified, all resources, including a manifest file or multiple Amazon S3 buckets, must be located in the specified Region.
Note
Transferring data across Regions incurs additional charges against the Amazon S3 bucket or the DynamoDB table that contains the data. For more information about pricing, see Data Transfer OUT From Amazon S3 To Another AWS Region on the Amazon S3 Pricing
page and Data Transfer OUT on the Amazon DynamoDB Pricing page. By default, COPY assumes that the data is located in the same Region as the Amazon Redshift cluster.
Optional parameters
You can optionally specify the following parameters with COPY from Amazon S3:
Unsupported parameters
You can't use the following parameters with COPY from Amazon S3:
-
SSH
-
READRATIO