Create a storage integration
Configure a storage integration that uses a customer-owned cloud storage bucket.
Usage notes
- To perform this operation, you must use API credentials owned by a user assigned the Admin account type.
- To read or update storage integrations for a tenant organization, use impersonation to obtain a token for that tenant, then call this endpoint with that token.
Authentication
AuthorizationBearer
OAuth authentication of the form <token>.
Request
The request body.
AWS S3 storage integration.
OR
Google Cloud Storage storage integration.
OR
Azure Blob Storage storage integration.
Response
The response body.
provider
Cloud storage provider for the storage integration.
Allowed values:
storageIntegrationId
Unique identifier of the storage integration.
allowedLocation
Cloud storage URI Sigma writes to for the storage integration.
name
Display name of the storage integration.
kmsKeyName
KMS key Sigma uses to encrypt objects written to the bucket. Relevant only when provider is s3.
storageAwsRoleArn
AWS IAM role ARN Sigma assumes to access the bucket. Relevant only when provider is s3.
externalId
External ID Sigma includes in the AWS role trust policy request. Relevant only when provider is s3.
tenantId
Azure AD tenant ID that owns the storage account. Relevant only when provider is azure.

