Google Spanner

The Google Spanner connector is a Palantir-provided driver for Google Spanner.

To create a new Google Spanner source, follow the standard setup flow for Palantir-provided drivers, then use the sections below for Google Spanner-specific configuration and networking. For the complete property reference, see the official Google Spanner driver documentation ↗.

Beta

The Google Spanner connector is in the beta phase of development and may not be available on your enrollment. Functionality may change during active development.

Supported capabilities

CapabilityStatus
Exploration🟡 Beta
Batch syncs🟡 Beta
Incremental🟡 Beta
OAuth 2.0 authentication🟡 Beta
Table exports🟡 Beta

Configuration

The properties below are mandatory or recommended.

PropertyRequired?DescriptionDefault
DatabaseDialectMandatoryThe dialect type of the connected database.GoogleStandardSQL
AuthSchemeRecommendedThe type of authentication to use when connecting to Google Spanner.OAuthJWT
DatabaseRecommendedThe name of the Google Spanner database to connect to.
InitiateOAuthRecommendedSpecifies the process for obtaining or refreshing the OAuth access token, which maintains user access while an authenticated, authorized user is working.GETANDREFRESH
InstanceIdRecommendedThe id of the Google Spanner instance to which you are connecting.
OAuthClientIdRecommendedSpecifies the client Id that was assigned when the custom OAuth application was created. (Also known as the consumer key.) This ID registers the custom application with the OAuth authorization server.
OAuthClientSecretRecommendedSpecifies the client secret that was assigned when the custom OAuth application was created. (Also known as the consumer secret). This secret registers the custom application with the OAuth authorization server.
OAuthJWTCertRecommendedThe JWT Certificate store.
OAuthJWTCertTypeRecommendedThe type of key store containing the JWT Certificate.GOOGLEJSONBLOB
OAuthJWTSubjectRecommendedThe user subject for which the application is requesting delegated access.
ProjectIdRecommendedThe id of the project where your Google Spanner instance resides.

Networking

The table below lists the domains that the source must be able to access to run.

For each domain, add a corresponding egress policy. If the source is hosted on-premises and not directly reachable from Foundry, use an agent proxy egress policy instead. The agent host itself must also be able to reach the listed domains. See using an agent as a proxy for details.

DomainRequired
accounts.google.comAlways. Required for OAuth
spanner.googleapis.comAlways. There is a hidden property Server that can override this with a different URL.
googleapis.comAlways

OAuth 2.0 authentication

This connector supports OAuth 2.0 authentication. Follow the OAuth 2.0 guidance for Palantir-provided drivers to configure and authorize the connection.

Table exports

This connector supports table exports. Learn how to set up a table export.