cancel
Showing results forย 
Search instead forย 
Did you mean:ย 
Administration & Architecture
Explore discussions on Databricks administration, deployment strategies, and architectural best practices. Connect with administrators and architects to optimize your Databricks environment for performance, scalability, and security.
cancel
Showing results forย 
Search instead forย 
Did you mean:ย 

Error: PERMISSION_DENIED: AWS IAM role does

jkdatabricks
New Contributor

Hello, 

We are trying to setup a new workspace. However we are getting following error. 

 

Workspace failed to launch.
Error: PERMISSION_DENIED: AWS IAM role does not have READ permissions on url s3://jk-databricks-prods3/unity-catalog/742920957025975.
Please contact your account admin to update the storage credential.
PERMISSION_DENIED: Access denied.
Cause: AccessDeniedException error from cloud storage provider.
exceptionTraceId=23d62c3d-1b37-4702-8af5-603ce6d963b6.
 
Please advise how we can fix this issue. 
 
Regards
Sunil

 

4 REPLIES 4

caldempseyai
New Contributor II

Hey! 

I'm experiencing this with the latest Terraform release. Try 1.51.0 if you are deploying via TF, downgrading fixed this for me.

fundat
New Contributor III

I have the same problem. Anyone has a solution please ?

pradeep_singh
Contributor

I am assuming you are creting this manually and not using terraform .

Is s3://jk-databricks-prods3/unity-catalog/742920957025975 the external storage location for your UC Metastore . Can you check if the storage credential used by this external storage location  is setup correctly . Once you have the external storage location created you can use Test Connection option to validated it works . 

Thank You
Pradeep Singh - https://www.linkedin.com/in/dbxdev

nkaur
New Contributor II

Did this get resolved. I am getting the same error when using terraform Error: cannot create external location: AWS IAM role does not have READ permissions on url