04-12-2022 09:13 AM
During an interactive notebook session, I want a user to be able to retrieve a secret specific to that user. I haven't decided on storage mechanisms, but I'm open to storage mechanisms that can scalably authorize access to a single user and that I can write the secret from an external service. I have looked into the following:
I'm thinking workspace object access control is a good option. Can anyone tell me if admin users automatically have access to all objects in a workspace? Is there anything I may have missed that would compromise this solution? Are any of my assumptions incorrect? Are there viable alternatives I'm missing?
08-05-2022 11:29 AM
I ended up using Databricks Secrets as the storage mechanism after learning from my account rep that the limit is soft and we can request a higher scope limit. In this case, each user gets a dedicated scope and no other users have access.
04-13-2022 11:50 AM
Hi @Mark Miller ,
By default, all users can create and modify workspace objects—including folders, notebooks, experiments, and models—unless an administrator enables workspace access control.
With workspace access control, individual permissions determine a user’s abilities.
This article describes how to enable workspace access control and prevent users from seeing workspace objects they do not have access to.
For information about assigning permissions and configuring workspace object access control, see Workspace object access control.
04-26-2022 03:50 AM
Hi @Mark Miller , Just a friendly follow-up. Do you still need help, or does my response help you to find the solution? Please let us know.
08-05-2022 11:29 AM
I ended up using Databricks Secrets as the storage mechanism after learning from my account rep that the limit is soft and we can request a higher scope limit. In this case, each user gets a dedicated scope and no other users have access.
Join our fast-growing data practitioner and expert community of 80K+ members, ready to discover, help and collaborate together while making meaningful connections.
Click here to register and join today!
Engage in exciting technical discussions, join a group with your peers and meet our Featured Members.