<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Azure Databricks Control Plane connectivity issue after migrating to vWAN in Administration &amp; Architecture</title>
    <link>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/135797#M4264</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.databricks.com/t5/user/viewprofilepage/user-id/193025"&gt;@nodeb&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;Could you share the solution then with community?&lt;/P&gt;</description>
    <pubDate>Thu, 23 Oct 2025 07:00:13 GMT</pubDate>
    <dc:creator>szymon_dybczak</dc:creator>
    <dc:date>2025-10-23T07:00:13Z</dc:date>
    <item>
      <title>Azure Databricks Control Plane connectivity issue after migrating to vWAN</title>
      <link>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/135461#M4244</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;&lt;P&gt;Recently, I received a client request to migrate our Azure Databricks environment from a &lt;STRONG&gt;Hub-and-Spoke architecture&lt;/STRONG&gt; to a &lt;STRONG&gt;vWAN Hub architecture with an NVA&lt;/STRONG&gt; (Network Virtual Appliance).&lt;/P&gt;&lt;P&gt;Here’s a quick overview of the setup:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;The Databricks workspace is &lt;STRONG&gt;VNet-injected&lt;/STRONG&gt;.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Private Endpoints are configured for all required services.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Two subnets are in use: &lt;STRONG&gt;Public Host&lt;/STRONG&gt; and &lt;STRONG&gt;Private Host&lt;/STRONG&gt;.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;The &lt;STRONG&gt;routing intent&lt;/STRONG&gt; on the vWAN hub is configured to send all traffic through the NVA.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Storage accounts and DNS resolution (Private Link) work correctly — verified through a VM on the same VNet.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;The issue affects &lt;STRONG&gt;only the Databricks Control Plane&lt;/STRONG&gt;, which cannot communicate with the cluster/compute plane.&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;Error Message:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Failed to add 1 worker to the compute. Will attempt retry: true.&lt;BR /&gt;Reason: Control Plane Request Failure Due To Misconfig&lt;/P&gt;&lt;P&gt;CONTROL_PLANE_REQUEST_FAILURE:&lt;BR /&gt;Network health check reported that instance is unable to reach Databricks Control Plane.&lt;BR /&gt;Please check that instances have connectivity to the Databricks Control Plane.&lt;BR /&gt;Instance bootstrap inferred timeout reason: NetworkHealthCheck_CP_Failed&lt;/P&gt;&lt;P&gt;Failure message (Base64 encoded):&lt;BR /&gt;dW5yZWFjaGFibGUgY3VybDogKDI4KSBSZXNvbHZpbmcgdGltZWQgb3V0IGFmdGVyIDEwMDAwIG1pbGxpc2Vjb25kcw==&lt;/P&gt;&lt;P&gt;VM extension code: ProvisioningState/succeeded&lt;BR /&gt;InstanceId: 3fc5930e53d94adb80120a420bae2724&lt;BR /&gt;WorkerEnv: workerenv-85992446950252&lt;BR /&gt;NetworkHealthCheck finished with exit code 125.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Troubleshooting done so far:&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;Verified NSG rules on both host subnets (allowing outbound 443).&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Confirmed Private Endpoints are resolving correctly.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Checked that routing intent is sending outbound traffic via NVA as expected.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Validated that the same setup works in our previous Hub-and-Spoke model.&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;It seems that when using &lt;STRONG&gt;secured vWAN hubs with routing intent&lt;/STRONG&gt;, the &lt;STRONG&gt;control plane traffic&lt;/STRONG&gt; might not be reaching Databricks public endpoints.&lt;/P&gt;&lt;P&gt;Has anyone experienced similar issues or found a way to route &lt;STRONG&gt;control plane traffic&lt;/STRONG&gt; properly through vWAN (or bypass it when needed)?&lt;/P&gt;&lt;P&gt;Any guidance or best practices for Databricks + vWAN + NVA setups would be appreciated.&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;</description>
      <pubDate>Mon, 20 Oct 2025 23:13:21 GMT</pubDate>
      <guid>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/135461#M4244</guid>
      <dc:creator>nodeb</dc:creator>
      <dc:date>2025-10-20T23:13:21Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Databricks Control Plane connectivity issue after migrating to vWAN</title>
      <link>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/135775#M4258</link>
      <description>&lt;P&gt;The problem is fixed.&lt;/P&gt;</description>
      <pubDate>Wed, 22 Oct 2025 22:09:13 GMT</pubDate>
      <guid>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/135775#M4258</guid>
      <dc:creator>nodeb</dc:creator>
      <dc:date>2025-10-22T22:09:13Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Databricks Control Plane connectivity issue after migrating to vWAN</title>
      <link>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/135797#M4264</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.databricks.com/t5/user/viewprofilepage/user-id/193025"&gt;@nodeb&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;Could you share the solution then with community?&lt;/P&gt;</description>
      <pubDate>Thu, 23 Oct 2025 07:00:13 GMT</pubDate>
      <guid>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/135797#M4264</guid>
      <dc:creator>szymon_dybczak</dc:creator>
      <dc:date>2025-10-23T07:00:13Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Databricks Control Plane connectivity issue after migrating to vWAN</title>
      <link>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/136391#M4290</link>
      <description>&lt;P&gt;Hello.&lt;BR /&gt;&lt;BR /&gt;The issue was related to connectivity between the public/private hosts and the DNS resolver. In the old environment, our firewall policy did not allow communication with the DNS resolver, which caused the traffic to be blocked. In the previous setup, DNS traffic bypassed the firewall and therefore did not require a specific firewall policy.&lt;BR /&gt;During this issue, I studied Azure Databricks architecture in depth. If anyone needs assistance or guidance on similar problems, feel free to reach out to me.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Oct 2025 12:23:42 GMT</pubDate>
      <guid>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/136391#M4290</guid>
      <dc:creator>nodeb</dc:creator>
      <dc:date>2025-10-28T12:23:42Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Databricks Control Plane connectivity issue after migrating to vWAN</title>
      <link>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/136399#M4291</link>
      <description>&lt;P&gt;&lt;a href="https://community.databricks.com/t5/user/viewprofilepage/user-id/193025"&gt;@nodeb&lt;/a&gt;&amp;nbsp;Can you please mark your reply as solution. It will help other users find the resolution fast.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Oct 2025 12:48:09 GMT</pubDate>
      <guid>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/136399#M4291</guid>
      <dc:creator>nayan_wylde</dc:creator>
      <dc:date>2025-10-28T12:48:09Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Databricks Control Plane connectivity issue after migrating to vWAN</title>
      <link>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/149698#M4942</link>
      <description>&lt;P&gt;HI I am facing this issue since so many days ....can we connect on gneet if you can help me to resolve this isuue ...i do not have any idea how to resolve this and have no idea how or where to connect with you...my email id is &lt;A href="mailto:hshekhar2009@gmail.com" target="_blank"&gt;hshekhar2009@gmail.com&lt;/A&gt;&amp;nbsp;. please help me out with this i can connect any time according to ur availablity...&lt;/P&gt;</description>
      <pubDate>Tue, 03 Mar 2026 13:41:09 GMT</pubDate>
      <guid>https://community.databricks.com/t5/administration-architecture/azure-databricks-control-plane-connectivity-issue-after/m-p/149698#M4942</guid>
      <dc:creator>hshekhar</dc:creator>
      <dc:date>2026-03-03T13:41:09Z</dc:date>
    </item>
  </channel>
</rss>

