Azure / Azure/Azure-DataFactory

ADE Command Activity in pipeline will not use User Assigned Managed Identity

Aperta
#385 0 commenti 0 reazioni 0 assegnatari Vedi su GitHub
Lingua principale
PowerShell
Stelle
529
Fork
623
Metriche di merge delle PR
Nessuna PR unita negli ultimi 30g

Descrizione

I am working on an ADF pipeline that has an Azure Data Explorer Command activity as the first activity in the pipeline. We are using a User Assigned Managed Identity for authentication, so all of the permissions are tied to it. When I run the pipeline in debug mode or if I manually trigger the pipeline. it fails and throws Forbidden exceptions and displays the AppId of the System Assigned Managed Identity - which we are not using.
I checked the connection and confirmed that it is setup to use the User Assigned Managed Identity. I have tested the connection successfully. I'm not sure why the activity it is trying to authenticate with the System Assigned Managed Identity.

Guida per i contributori

Apri la guida per i contributori

Direzione di ricerca

Inizia riproducendo l'attività Azure Data Explorer Command nella pipeline ADF in modalità debug e tramite un trigger manuale, quindi verifica quale identità gestita viene utilizzata quando l'eccezione Forbidden segnala l'AppId. Confronta questo comportamento con la User Assigned Managed Identity configurata nella connessione. Il lavoro è completato quando l'attività esegue l'autenticazione con l'identità assegnata dall'utente configurata e non fallisce più con Forbidden.

Scritto dal modello di indicizzazione a partire dal testo della issue.

Valutazione

Stack tecnologico
azure
Ambito
authentication, cloud
Tipo di issue
Bug
Difficoltà
4/5
Tempo stimato
3-5 giorni
Stato di attività
Ferma
Chiarezza
Abbastanza chiara
Idoneità per principianti
25/100

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.