Organizations using Databricks with Azure PrivateLink can still use connect SELECT to their Databricks Workspace with a few extra steps. Please reach out to your SELECT account representative to start the process.
This guide walks you through enabling Azure PrivateLink between your Databricks workspace and SELECT.
Prerequisites
- Databricks workspace on Azure with the Premium plan
- Azure Contributor role (or higher) on the workspace's resource group
- Access to the Azure Portal
Step 1 — Send SELECT your workspace details
SELECT needs two pieces of information to provision the private endpoint on their side. Send both to your SELECT representative:
1. Workspace URL
Your workspace URL (for example, adb-1234567890123456.1.azuredatabricks.net).
2. Workspace Resource ID
The ARM resource ID looks like:
/subscriptions/00000000-0000-0000-0000-000000000000/resourceGroups/my-rg/providers/Microsoft.Databricks/workspaces/my-workspace
Find it in the Azure Portal under Databricks workspace → Settings blade → Properties → Id.
Step 2 — Wait for SELECT to provision the private endpoint
SELECT uses the details from Step 1 to create a private endpoint in their Azure environment, connecting to your workspace. They will contact you once the endpoint is ready — this typically takes a few minutes after their deployment.
Step 3 — Approve the private endpoint connection
Once SELECT deploys the endpoint, a pending connection request will appear in your workspace's networking settings.
In the Azure Portal:
- Open your Databricks workspace
- In the left menu, go to Networking (under Settings)
- Click the Private endpoint connections tab
- Find the connection named
select-<your-workspace-id> - Select it and click Approve
- Add a note if prompted (for example, "Approved for SELECT PrivateLink") and confirm
The connection state will change from Pending to Approved within a few seconds.
Note: If you don't see the connection, SELECT's deployment may still be in progress. Wait a few minutes and refresh the page.
Step 4 — Add your Databricks connection to SELECT
Once the connection is approved, add your Databricks workspace to SELECT using your standard workspace URL:
Use this as the Workspace URL in your SELECT connection settings. SELECT's infrastructure will route traffic to your workspace privately via the endpoint approved in Step 3.
Network policy (if applicable)
If your Databricks workspace has IP access lists restricting inbound connections, you may need to add SELECT's private IP ranges to the allowlist:
| IP range | Purpose |
|---|---|
| `10.124.0.0/28` | SELECT backend |
| `10.1.128.0/17` | The periodic job that reads your Snowflake metadata |



