cancel
Showing results for 
Search instead for 
Did you mean: 
Administration & Architecture
Explore discussions on Databricks administration, deployment strategies, and architectural best practices. Connect with administrators and architects to optimize your Databricks environment for performance, scalability, and security.
cancel
Showing results for 
Search instead for 
Did you mean: 

Forum Posts

connieyang
by Databricks Employee
  • 10 Views
  • 0 replies
  • 0 kudos

Participate in a Databricks user study!

Hi Databricks Community, I'm Connie from the Databricks UX research team!We are conducting a user study to understand how admins identify, investigate, and resolve governance issues in their Databricks environments. We'd love to connect with individ...

  • 10 Views
  • 0 replies
  • 0 kudos
APJESK
by Contributor
  • 302 Views
  • 4 replies
  • 2 kudos

Enterprise-level Unity Catalog governance

Hi everyoneI'm currently designing an enterprise-level Unity Catalog governance model for Databricks and would like to learn from others who have implemented it in production.I'm trying to understand what personas are actually required at each level,...

  • 302 Views
  • 4 replies
  • 2 kudos
Latest Reply
emma_s
Databricks Employee
  • 2 kudos

@APJESK, the existing replies from @balajij8 and @binlogreader cover the practical patterns well, in answer to your questions. But generally your design looks good with a few tweaks.   1. Single Terraform SP as Metastore Admin for provisioning - yes,...

  • 2 kudos
3 More Replies
RamenBhar
by New Contributor III
  • 226 Views
  • 4 replies
  • 1 kudos

Can I connect Fabric Data Agent With Databricks Genie One as external connection

HiI have a fabric semantic model. I have created a fabric data agent (published) on top of the semantic model. Now i have created a unity catalog connection along with service. Is MCP connection is true. I can use this connection in AI playground or ...

RamenBhar_0-1785158729196.png
  • 226 Views
  • 4 replies
  • 1 kudos
Latest Reply
Lu_Wang_ENB_DBX
Databricks Employee
  • 1 kudos

Detail: Databricks shipped a June 11, 2026 fix for an issue that prevented custom MCP servers from being used in Genie One.Genie One custom/external connections are still Beta and are controlled from the workspace Previews page. What to check Worksp...

  • 1 kudos
3 More Replies
alpines
by New Contributor
  • 155 Views
  • 1 replies
  • 1 kudos

Deactive Admin user

Hi Community,I have a Databricks account and workspaces that were previously setup by a user who is no longer with our company and I am attempting to remove admin access and deactive the user account. However as an Account admin user myself, when I a...

  • 155 Views
  • 1 replies
  • 1 kudos
Latest Reply
szymon_dybczak
Esteemed Contributor III
  • 1 kudos

Hi @alpines ,This error typically occurs when attempting to remove the 'account owner.' The account owner is the user who originally set up the Databricks account. This entitlement is attached to a user so that there is always at least one account ad...

  • 1 kudos
abhishek2k11
by New Contributor III
  • 1873 Views
  • 13 replies
  • 2 kudos

No workspace in Free Edition

Hi, I have been using free edition from some time using my this mail id. But from last 3-4 days I can’t see any workspace. when ever I am logging in I am getting two accounts name and In no workspace is available. When I tried creating another accoun...

  • 1873 Views
  • 13 replies
  • 2 kudos
Latest Reply
masonreed11
New Contributor II
  • 2 kudos

It sounds like you're signing into the wrong Atlassian account. Try logging in with the account that originally owned the workspace or a different sign-in method (Google, Microsoft, email). If the unused account is blocking you due to the free plan l...

  • 2 kudos
12 More Replies
LeandroVeiga10
by New Contributor
  • 151 Views
  • 2 replies
  • 0 kudos

Databricks Free Edition – No Workspace Available

Hello Databricks Community,I recently created a Databricks Free Edition account. Although my account is active and I can sign in successfully, no workspace is available. The account console displays the following message: â€œYou are not a member of any...

  • 151 Views
  • 2 replies
  • 0 kudos
Latest Reply
balajij8
Esteemed Contributor
  • 0 kudos

Hi LeandroVeiga10, This issue is affecting the Free Edition in certain areas. Create a new Free Edition account and select the Singapore region instead of the US or your default region during sign-up. You should be able to complete your studies and w...

  • 0 kudos
1 More Replies
zzepo
by New Contributor II
  • 439 Views
  • 3 replies
  • 1 kudos

Resolved! NCC private endpoint cannot be added

hi,Trying to set up serverless compute and can't create a private endpoint because "Private access endpoint service {endpoint name} is not supported because {endpoint name} is not supported for account {account name}". Following this thread but stuck...

  • 439 Views
  • 3 replies
  • 1 kudos
Latest Reply
binlogreader
New Contributor II
  • 1 kudos

On AWS, all private connectivity from serverless compute runs through a network connectivity configuration. The NCC is an account-level object that holds private endpoint rules, and attaching it to a workspace is what routes serverless traffic throug...

  • 1 kudos
2 More Replies
dk_negrana
by New Contributor
  • 231 Views
  • 2 replies
  • 0 kudos

Databricks Cost for additional Workspace in Azure

I am planning to create an additional workpace in Databricks. I just want to know if there is any additional cost in terms of billing. thanks in advance for the reponse.

  • 231 Views
  • 2 replies
  • 0 kudos
Latest Reply
ajaygshah
New Contributor III
  • 0 kudos

There is no charge to create workspaces. Please go ahead and create one. While you create one, pay close attention to the networking tab. By default, it creates a virtual network and the associated costs for it, you will have to bear. You can simply ...

  • 0 kudos
1 More Replies
eshwari
by New Contributor III
  • 300 Views
  • 2 replies
  • 0 kudos

Group manage permission using terraform

I am creating groups in databricks using terraform. The service principal used to create these groups automatically get Manage permission on respective groups, but I want to assign this manage permission on all groups to one specific admin group. I c...

  • 300 Views
  • 2 replies
  • 0 kudos
Latest Reply
binlogreader
New Contributor II
  • 0 kudos

Group manager is not a permission in `databricks_permissions`, it is an account-level role, and the resource that assigns those roles is `databricks_access_control_rule_set`.If you want your admin group to manage every group in the account, including...

  • 0 kudos
1 More Replies
jkraat
by New Contributor II
  • 270 Views
  • 3 replies
  • 0 kudos

Setup Before Trainning

I have a training tomorrow, and I am missing notebooks that they send to be able to follow the training. Does anyone have them to share them? I already reached out to Databricks twice and see no hope.

  • 270 Views
  • 3 replies
  • 0 kudos
Latest Reply
balajij8
Esteemed Contributor
  • 0 kudos

The notebooks are usually available within the Academy portal, and you can download them there. The instructors dedicate the first 15 minutes to environment setup and troubleshooting. If you encounter issues, notify the instructor in the meeting chat...

  • 0 kudos
2 More Replies
eshwari
by New Contributor III
  • 263 Views
  • 2 replies
  • 1 kudos

Workload Identity Federation on ADO for account level provider

I am using Workload Identity Federation for ADO pipelines to authenticate to databricks.I followed https://docs.databricks.com/aws/en/dev-tools/auth/provider-azure-devopsIt works with workspace url but doesn't work with account level url.I get error:...

  • 263 Views
  • 2 replies
  • 1 kudos
Latest Reply
zubisid19
New Contributor II
  • 1 kudos

You are using:Azure-style host: https://accounts.azuredatabricks.netAzure env vars: ARM_CLIENT_ID, ARM_TENANT_IDPlus DATABRICKS_CLIENT_IDThat often makes the SDK try a different OIDC flow than intended (hitting /oidc/accounts/<id>/v1/token) and faili...

  • 1 kudos
1 More Replies
antoine_laurent
by New Contributor II
  • 386 Views
  • 1 replies
  • 1 kudos

Databricks App with Proprietary packages and code

Hello Databricks community,I have built an application that has a lot of proprietary code and packages that I chose not to show for the public- I just want my service to be accessible for the people who install the application through a Streamlit fro...

  • 386 Views
  • 1 replies
  • 1 kudos
Latest Reply
GabFernandes
New Contributor III
  • 1 kudos

Hey Antoine, great questions — this is a common challenge when building commercial apps on Databricks. Let me address each area directly.The fundamental tradeoffThe core tension here is architectural: when code runs in the user's workspace, it's very...

  • 1 kudos
Janis404
by New Contributor
  • 451 Views
  • 1 replies
  • 1 kudos

No Egress for Serverless Workspace

Hello,I have a problemimport socket print(socket.gethostbyname("google.com"))[Trace ID: 00-9e5667936e24418dae4c39a9ed003a22-a43a5f2ca9b14451-00] --------------------------------------------------------------------------- gaierror ...

  • 451 Views
  • 1 replies
  • 1 kudos
Latest Reply
Louis_Frolio
Databricks Employee
  • 1 kudos

Greetings @Janis404 ,  Nice work pulling system.access.outbound_network and narrowing this to serverless. That table is where the answer lives, so let me walk through what it's telling you. Read the log rows first: access_type is DROP, which is real ...

  • 1 kudos
tesshy-amane
by New Contributor
  • 296 Views
  • 1 replies
  • 0 kudos

X-Forwarded-Access-Token occasionally return stale values from a previous session

Hi all,I'm running a Streamlit app on Databricks Apps with On-Behalf-Of User Authorization enabled. We've observed that X-Forwarded-Access-Token and X-Forwarded-Email sometimes return values that belong to a previous session(logged out other user, us...

  • 296 Views
  • 1 replies
  • 0 kudos
Latest Reply
iyashk-DB
Databricks Employee
  • 0 kudos

This almost always turns out to be st.cache_resource on the connection, not the reverse proxy reusing anything. You said you checked your st.cache_data functions and they key on username, which is the right instinct, but the leak usually hides in wha...

  • 0 kudos