Setup an Unlimited Database on an EC2 Cluster using IAM Role

The following steps should be used only if you are using a regular AWS EC2 based cluster.

  1. On the AWS EC2 console, find your instance. Right-click, go to Security then Modify IAM Role.

  2. Change the IAM role to AmazonS3FullAccess.

  3. Do this for each node in your cluster.

  4. Connect to the MA and execute:

    CREATE DATABASE <dbname>
    INTO S3 '<bucket_name>/<path_in_bucket>'
    CONFIG '{"region":<region>}'
    CREDENTIALS '{}';
  5. If it does not work, it should give you the IP of the problematic node, recheck that node to ensure the IAM role is set correctly.

  6. If you get an error about delete protection in your bucket, turn off delete protection in your bucket.

Last modified: September 29, 2023

Was this article helpful?

Verification instructions

Note: You must install cosign to verify the authenticity of the SingleStore file.

Use the following steps to verify the authenticity of singlestoredb-server, singlestoredb-toolbox, singlestoredb-studio, and singlestore-client SingleStore files that have been downloaded.

You may perform the following steps on any computer that can run cosign, such as the main deployment host of the cluster.

  1. (Optional) Run the following command to view the associated signature files.

    curl undefined
  2. Download the signature file from the SingleStore release server.

    • Option 1: Click the Download Signature button next to the SingleStore file.

    • Option 2: Copy and paste the following URL into the address bar of your browser and save the signature file.

    • Option 3: Run the following command to download the signature file.

      curl -O undefined
  3. After the signature file has been downloaded, run the following command to verify the authenticity of the SingleStore file.

    echo -n undefined |
    cosign verify-blob --certificate-oidc-issuer https://oidc.eks.us-east-1.amazonaws.com/id/CCDCDBA1379A5596AB5B2E46DCA385BC \
    --certificate-identity https://kubernetes.io/namespaces/freya-production/serviceaccounts/job-worker \
    --bundle undefined \
    --new-bundle-format -
    Verified OK