<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Need Guidance on Key Rotation Process for Storage Customer-Managed Keys in Databricks Workspace in Get Started Discussions</title>
    <link>https://community.databricks.com/t5/get-started-discussions/need-guidance-on-key-rotation-process-for-storage-customer/m-p/64864#M6917</link>
    <description>&lt;P&gt;Maybe you can use&amp;nbsp;azure key vault to store&amp;nbsp;&lt;SPAN&gt;customer-managed keys&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/databricks/security/secrets/secret-scopes#--create-an-azure-key-vault-backed-secret-scope" target="_self"&gt;https://learn.microsoft.com/en-us/azure/databricks/security/secrets/secret-scopes#--create-an-azure-key-vault-backed-secret-scope&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 28 Mar 2024 02:57:49 GMT</pubDate>
    <dc:creator>feiyun0112</dc:creator>
    <dc:date>2024-03-28T02:57:49Z</dc:date>
    <item>
      <title>Need Guidance on Key Rotation Process for Storage Customer-Managed Keys in Databricks Workspace</title>
      <link>https://community.databricks.com/t5/get-started-discussions/need-guidance-on-key-rotation-process-for-storage-customer/m-p/64863#M6916</link>
      <description>&lt;P&gt;Problem Statement: We are currently utilizing customer-managed keys for Databricks compute encryption at the workspace level. As part of our key rotation strategy, we find ourselves needing to bring down the entire compute/clusters to update storage encryption keys. However, we encounter errors when attempting to update storage encryption keys without shutting down the compute.&lt;/P&gt;&lt;P&gt;Our workspace is shared by multiple application teams, each with automated jobs triggering compute/clusters to start. The process of stopping all workflows/jobs manually is time-consuming. Is there a way to temporarily pass access at workspace level and allow only Databricks admins to facilitate this key rotation process&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any guidance or best practices on handling key rotations in a shared workspace environment would be greatly appreciated.&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Mar 2024 02:19:40 GMT</pubDate>
      <guid>https://community.databricks.com/t5/get-started-discussions/need-guidance-on-key-rotation-process-for-storage-customer/m-p/64863#M6916</guid>
      <dc:creator>Gopi9</dc:creator>
      <dc:date>2024-03-28T02:19:40Z</dc:date>
    </item>
    <item>
      <title>Re: Need Guidance on Key Rotation Process for Storage Customer-Managed Keys in Databricks Workspace</title>
      <link>https://community.databricks.com/t5/get-started-discussions/need-guidance-on-key-rotation-process-for-storage-customer/m-p/64864#M6917</link>
      <description>&lt;P&gt;Maybe you can use&amp;nbsp;azure key vault to store&amp;nbsp;&lt;SPAN&gt;customer-managed keys&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/databricks/security/secrets/secret-scopes#--create-an-azure-key-vault-backed-secret-scope" target="_self"&gt;https://learn.microsoft.com/en-us/azure/databricks/security/secrets/secret-scopes#--create-an-azure-key-vault-backed-secret-scope&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Mar 2024 02:57:49 GMT</pubDate>
      <guid>https://community.databricks.com/t5/get-started-discussions/need-guidance-on-key-rotation-process-for-storage-customer/m-p/64864#M6917</guid>
      <dc:creator>feiyun0112</dc:creator>
      <dc:date>2024-03-28T02:57:49Z</dc:date>
    </item>
    <item>
      <title>Re: Need Guidance on Key Rotation Process for Storage Customer-Managed Keys in Databricks Workspace</title>
      <link>https://community.databricks.com/t5/get-started-discussions/need-guidance-on-key-rotation-process-for-storage-customer/m-p/64865#M6918</link>
      <description>&lt;P&gt;&lt;a href="https://community.databricks.com/t5/user/viewprofilepage/user-id/99027"&gt;@feiyun0112&lt;/a&gt;&amp;nbsp; Thanks for the reply. the question is how do I stop access temporarily to Databricks workspace for all users except Databricks ADMIN AD group? our workspaces sync with Azure EntraID via SCIM.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Mar 2024 03:02:12 GMT</pubDate>
      <guid>https://community.databricks.com/t5/get-started-discussions/need-guidance-on-key-rotation-process-for-storage-customer/m-p/64865#M6918</guid>
      <dc:creator>Gopi9</dc:creator>
      <dc:date>2024-03-28T03:02:12Z</dc:date>
    </item>
  </channel>
</rss>

