For AI agents: A markdown version of this page is available at https://docs.datadoghq.com/security/default_rules/def-000-xo6.md. A documentation index is available at /llms.txt.

Databricks workspaces should use private endpoints

Description

Ensure that private endpoints are configured for Azure Databricks workspaces. Private endpoints allow traffic between your virtual network and the Databricks workspace to traverse entirely over the Microsoft backbone network, eliminating exposure to the public internet.

Remediation

Configure private endpoint connections for your Azure Databricks workspace and ensure they are in an “Approved” state. See Configure Inbound Private Link.