メインコンテンツまでスキップ

管理対象OAuthを使用する外部サービス

Databricksは、一部のAPIツールプロバイダー向けにマネージドOAuthフローを提供しています。独自のOAuthアプリを登録したり、認証情報を管理したりする必要はありません。Databricksは、開発およびテストにはマネージドOAuthを推奨しています。本番運用のユースケースでカスタムOAuth認証情報の生成が必要な場合は、詳細についてプロバイダーのドキュメントを参照してください。

要件

Unity Catalog HTTP接続OAuth User to Machine Per User 認証タイプを使用して作成し、 OAuth Provider ドロップダウンメニューからプロバイダーを選択します。詳細なステップについては、外部サービスへの接続を作成するを参照してください。

マネージドOAuthサポートを備えたサービス

次の統合は、Databricks がバックエンドで安全に管理および保存するOAuth資格情報を使用します。

プロバイダー

構成に関する注意事項

サポートされているスコープ

説明

Google Drive API

なし

https://www.googleapis.com/auth/drive.readonly https://www.googleapis.com/auth/documents.readonly https://www.googleapis.com/auth/spreadsheets.readonly https://www.googleapis.com/auth/drive.file offline_access

Google ドキュメントや Google スプレッドシートを含む Google ドライブ ファイルへの読み取りアクセス権、およびアプリが作成または開くファイルへの書き込みアクセス権。

Gmail API

なし

https://www.googleapis.com/auth/gmail.modify offline_access

Gmailのメッセージ、スレッド、下書き、およびラベルへの読み取り/書き込みアクセス権。

Google Calendar API

なし

https://www.googleapis.com/auth/calendar.readonly https://www.googleapis.com/auth/calendar.events offline_access

Google カレンダーの予定表および空き/予定あり情報への読み取りアクセス、ならびにイベントへの読み取り/書き込みアクセス。

Microsoft 365 API

なし

https://graph.microsoft.com/Sites.Read.All https://graph.microsoft.com/User.Read https://graph.microsoft.com/Files.Read.All https://graph.microsoft.com/Chat.Read https://graph.microsoft.com/Channel.ReadBasic.All https://graph.microsoft.com/ChannelMessage.Read.All https://graph.microsoft.com/Mail.Read https://graph.microsoft.com/Mail.Read.Shared https://graph.microsoft.com/Calendars.Read https://graph.microsoft.com/Calendars.Read.Shared https://graph.microsoft.com/OnlineMeetingTranscript.Read.All https://graph.microsoft.com/OnlineMeetingAiInsight.Read.All https://graph.microsoft.com/OnlineMeetingArtifact.Read.All https://graph.microsoft.com/OnlineMeetingRecording.Read.All https://graph.microsoft.com/User.ReadBasic.All https://graph.microsoft.com/Team.ReadBasic.All https://graph.microsoft.com/Sites.ReadWrite.All https://graph.microsoft.com/ChatMessage.Send https://graph.microsoft.com/ChannelMessage.Send https://graph.microsoft.com/Mail.ReadWrite https://graph.microsoft.com/Calendars.ReadWrite offline_access openid profile email

Microsoft Graph を介した SharePoint および OneDrive ファイル、Outlook メールとカレンダー、Microsoft Teams のチャット、チャンネル、会議への読み取り/書き込みアクセス。

プロバイダー

構成に関する注意事項

サポートされているスコープ

説明

Google Drive API

なし

https://www.googleapis.com/auth/drive.readonly https://www.googleapis.com/auth/documents.readonly https://www.googleapis.com/auth/spreadsheets.readonly https://www.googleapis.com/auth/drive.file offline_access

Google ドキュメントや Google スプレッドシートを含む Google ドライブ ファイルへの読み取りアクセス権、およびアプリが作成または開くファイルへの書き込みアクセス権。

Gmail API

なし

https://www.googleapis.com/auth/gmail.modify offline_access

Gmailのメッセージ、スレッド、下書き、およびラベルへの読み取り/書き込みアクセス権。

Google Calendar API

なし

https://www.googleapis.com/auth/calendar.readonly https://www.googleapis.com/auth/calendar.events offline_access

Google カレンダーの予定表および空き/予定あり情報への読み取りアクセス、ならびにイベントへの読み取り/書き込みアクセス。

Microsoft 365 API

なし

https://graph.microsoft.com/Sites.Read.All https://graph.microsoft.com/User.Read https://graph.microsoft.com/Files.Read.All https://graph.microsoft.com/Chat.Read https://graph.microsoft.com/Channel.ReadBasic.All https://graph.microsoft.com/ChannelMessage.Read.All https://graph.microsoft.com/Mail.Read https://graph.microsoft.com/Mail.Read.Shared https://graph.microsoft.com/Calendars.Read https://graph.microsoft.com/Calendars.Read.Shared https://graph.microsoft.com/OnlineMeetingTranscript.Read.All https://graph.microsoft.com/OnlineMeetingAiInsight.Read.All https://graph.microsoft.com/OnlineMeetingArtifact.Read.All https://graph.microsoft.com/OnlineMeetingRecording.Read.All https://graph.microsoft.com/User.ReadBasic.All https://graph.microsoft.com/Team.ReadBasic.All https://graph.microsoft.com/Sites.ReadWrite.All https://graph.microsoft.com/ChatMessage.Send https://graph.microsoft.com/ChannelMessage.Send https://graph.microsoft.com/Mail.ReadWrite https://graph.microsoft.com/Calendars.ReadWrite offline_access openid profile email

Microsoft Graph を介した SharePoint および OneDrive ファイル、Outlook メールとカレンダー、Microsoft Teams のチャット、チャンネル、会議への読み取り/書き込みアクセス。

プロバイダーは、各ユーザーに初回使用時に認証するよう促します。

必要に応じて、マネージド OAuth が使用する次のリダイレクト URI を許可リストに登録します。

クラウド

リダイレクトURI

AWS

https://oregon.cloud.databricks.com/api/2.0/http/oauth/redirect

Azure

https://westus.azuredatabricks.net/api/2.0/http/oauth/redirect

GCP

https://us-central1.gcp.databricks.com/api/2.0/http/oauth/redirect

クラウド

リダイレクトURI

AWS

https://oregon.cloud.databricks.com/api/2.0/http/oauth/redirect

Azure

https://westus.azuredatabricks.net/api/2.0/http/oauth/redirect

GCP

https://us-central1.gcp.databricks.com/api/2.0/http/oauth/redirect

Glean、GitHub、Atlassian、Slack など、公開されているMCPサーバーを持つマネージドOAuthプロバイダーの場合、Databricksは、サーバーをMCPサービスとして登録するとOAuth認証情報を管理できます。マネージド OAuth プロバイダーを参照してください。