Understanding Security and Access Control for Serverless Compute in Azure Databricks

Giorgi Mkervalishvili 0 Reputation points
2025-03-10T13:53:29.24+00:00

How does Databricks serverless compute access my resources using a system-assigned identity when, according to documentation, serverless compute is not in my subscription?

According to the Microsoft Identity Manager, the security boundary is my tenant, and I believe Azure Databricks serverless compute operates outside of my tenant.

Could you explain in technical detail how Azure Databricks serverless compute manages to access my resources? Also, if I share the Resource ID of the Access Connector (using a system-assigned identity) for Azure Databricks, can it be used by other organizations' Databricks environments to access my storage?

Microsoft Identity Manager
Microsoft Identity Manager
A family of Microsoft products that manage a user's digital identity using identity synchronization, certificate management, and user provisioning.
800 questions
0 comments No comments
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.