Databricks ABAC GRANT Policies Now Cover Unity Gateway Resources (Beta)
Databricks has extended Attribute-based access control (ABAC) GRANT policies to include resource types governed by Unity Gateway. This enhancement allows dynamic granting of Unity Catalog privileges to model services, model provider services, Model Context Protocol (MCP) services, and agent services based on governed tags. Instead of managing access individually, users can now assign privileges at scale through tags. All newly supported resource types are currently available in Beta.
Features (1) ›
- ABAC GRANT policies support Unity Gateway resource types
Databricks has extended Attribute-based access control (ABAC) GRANT policies to dynamically grant Unity Catalog privileges to Unity Gateway resource types, including model services, model provider services, Model Context Protocol (MCP) services, and agent services. This allows for tag-based access management instead of individual assignments. All new resource types are available in Beta.
https://docs.databricks.com/aws/en/release-notes/unity-gateway#abac-grant-policies-now-cover-unity-gateway-resource-types-beta
Related releases
- Schema-level HTTP connections in Databricks Unity Catalog are now GA Databricks Release Notes ·
- Databricks Unity Gateway Achieves General Availability for Enterprise AI Governance Databricks Release Notes ·
- Databricks Unity Gateway Reaches General Availability for Enterprise AI Governance Databricks Release Notes ·
- Databricks Unity Catalog ABAC Policies Now Cover Unity Gateway Resources (Beta) Databricks Release Notes ·
- Unified Trace Table for AI Activity Monitoring in Databricks (Beta) Databricks Release Notes ·
- ABAC GRANT Policies for Models and Services Now Generally Available in Databricks Unity Catalog Databricks Release Notes ·