<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic DLT Online Table with VNnet Enable on Blob Storage Get 403 Issue in Get Started Discussions</title>
    <link>https://community.databricks.com/t5/get-started-discussions/dlt-online-table-with-vnnet-enable-on-blob-storage-get-403-issue/m-p/79309#M7841</link>
    <description>&lt;P&gt;I am trying to create an online table in a Unity catalog. However, I get a GET, 403 error.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;DataPlaneException: Failed to start the DLT service on cluster . Please check the stack trace below or driver logs for more details.
com.databricks.pipelines.execution.service.UCContextInitializationException: Failed to initialize the UCContext
com.databricks.pipelines.common.CustomException: [DLT ERROR CODE: EXECUTION_SERVICE_STARTUP_FAILURE.STORAGE_PERMISSION_ISSUE] Operation failed: "This request is not authorized to perform this operation.", 403, GET&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;This error only happens when I set my ADLS Gen 2 Networking Public network access settings to Enabled from selected virtual networks and IP addresses.&lt;/LI&gt;&lt;LI&gt;The online table gets created When I Enable it from all networks.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;I have the correct access control using the unity-catalog-access-connector with Storage Blob Data Contributor.&lt;/P&gt;&lt;P&gt;My Databricks workspace is set up in a VNet with two subnets: the private and the public. These two subnets are white-listed in the network settings of my ADSL Gen2 in the Virtual Networks section of the Networking settings.&lt;/P&gt;&lt;P&gt;Yet, the only way I can set up the DLT Online Table is by setting my Blob storage to Enable it form all networks. How do I do this without Enabling it to all networks?&lt;/P&gt;</description>
    <pubDate>Thu, 18 Jul 2024 23:24:05 GMT</pubDate>
    <dc:creator>samlexrod</dc:creator>
    <dc:date>2024-07-18T23:24:05Z</dc:date>
    <item>
      <title>DLT Online Table with VNnet Enable on Blob Storage Get 403 Issue</title>
      <link>https://community.databricks.com/t5/get-started-discussions/dlt-online-table-with-vnnet-enable-on-blob-storage-get-403-issue/m-p/79309#M7841</link>
      <description>&lt;P&gt;I am trying to create an online table in a Unity catalog. However, I get a GET, 403 error.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;DataPlaneException: Failed to start the DLT service on cluster . Please check the stack trace below or driver logs for more details.
com.databricks.pipelines.execution.service.UCContextInitializationException: Failed to initialize the UCContext
com.databricks.pipelines.common.CustomException: [DLT ERROR CODE: EXECUTION_SERVICE_STARTUP_FAILURE.STORAGE_PERMISSION_ISSUE] Operation failed: "This request is not authorized to perform this operation.", 403, GET&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;This error only happens when I set my ADLS Gen 2 Networking Public network access settings to Enabled from selected virtual networks and IP addresses.&lt;/LI&gt;&lt;LI&gt;The online table gets created When I Enable it from all networks.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;I have the correct access control using the unity-catalog-access-connector with Storage Blob Data Contributor.&lt;/P&gt;&lt;P&gt;My Databricks workspace is set up in a VNet with two subnets: the private and the public. These two subnets are white-listed in the network settings of my ADSL Gen2 in the Virtual Networks section of the Networking settings.&lt;/P&gt;&lt;P&gt;Yet, the only way I can set up the DLT Online Table is by setting my Blob storage to Enable it form all networks. How do I do this without Enabling it to all networks?&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jul 2024 23:24:05 GMT</pubDate>
      <guid>https://community.databricks.com/t5/get-started-discussions/dlt-online-table-with-vnnet-enable-on-blob-storage-get-403-issue/m-p/79309#M7841</guid>
      <dc:creator>samlexrod</dc:creator>
      <dc:date>2024-07-18T23:24:05Z</dc:date>
    </item>
    <item>
      <title>Re: DLT Online Table with VNnet Enable on Blob Storage Get 403 Issue</title>
      <link>https://community.databricks.com/t5/get-started-discussions/dlt-online-table-with-vnnet-enable-on-blob-storage-get-403-issue/m-p/79481#M7843</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.databricks.com/t5/user/viewprofilepage/user-id/9"&gt;@Retired_mod&lt;/a&gt;,&amp;nbsp;Thank you for the fast response.&lt;/P&gt;&lt;P&gt;I believe I have whitelisted the network correctly. I managed to create the metastore and assign to the workspace. I also have the ability to create tables in the ADLS Gen2 unitycatalog container assigned to the metastore. The only thing that does not work is creating the online table.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Here is a screenshot of the VNet whitelisting. Perhaps the creation of the online table is not using the unity connector to access the resource. I have included a screenshot of the IAM role assigned to the blob storage.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2024-07-19 at 1.25.47 PM.png" style="width: 999px;"&gt;&lt;img src="https://community.databricks.com/t5/image/serverpage/image-id/9711i060D270CB6BAA106/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Screenshot 2024-07-19 at 1.25.47 PM.png" alt="Screenshot 2024-07-19 at 1.25.47 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2024-07-19 at 1.39.45 PM.png" style="width: 999px;"&gt;&lt;img src="https://community.databricks.com/t5/image/serverpage/image-id/9712i438451FBFD80EF6B/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Screenshot 2024-07-19 at 1.39.45 PM.png" alt="Screenshot 2024-07-19 at 1.39.45 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jul 2024 17:41:15 GMT</pubDate>
      <guid>https://community.databricks.com/t5/get-started-discussions/dlt-online-table-with-vnnet-enable-on-blob-storage-get-403-issue/m-p/79481#M7843</guid>
      <dc:creator>samlexrod</dc:creator>
      <dc:date>2024-07-19T17:41:15Z</dc:date>
    </item>
    <item>
      <title>Re: DLT Online Table with VNnet Enable on Blob Storage Get 403 Issue</title>
      <link>https://community.databricks.com/t5/get-started-discussions/dlt-online-table-with-vnnet-enable-on-blob-storage-get-403-issue/m-p/79498#M7844</link>
      <description>&lt;P&gt;I figured it out. It was because of the&amp;nbsp;&lt;SPAN class=""&gt;Network Connectivity Configurations. I did not have one setup with a private endpoint connection to the ADLS Gen2.&amp;nbsp; I followed the instructions here:&amp;nbsp;&lt;A href="https://learn.microsoft.com/en-us/azure/databricks/security/network/serverless-network-security/serverless-private-link" target="_blank" rel="noopener"&gt;https://learn.microsoft.com/en-us/azure/databricks/security/network/serverless-network-security/serverless-private-link&lt;/A&gt;&amp;nbsp;and it is now working with the VNet integrated.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;Thank you&amp;nbsp;&lt;a href="https://community.databricks.com/t5/user/viewprofilepage/user-id/9"&gt;@Retired_mod&lt;/a&gt;&amp;nbsp;for your time.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Fri, 19 Jul 2024 19:39:18 GMT</pubDate>
      <guid>https://community.databricks.com/t5/get-started-discussions/dlt-online-table-with-vnnet-enable-on-blob-storage-get-403-issue/m-p/79498#M7844</guid>
      <dc:creator>samlexrod</dc:creator>
      <dc:date>2024-07-19T19:39:18Z</dc:date>
    </item>
  </channel>
</rss>

