Configure authentication to 1Password

Important

This feature is in Beta. To use it, a workspace admin must turn on Lakeflow Connect for 1Password Event Logs from the Previews page. See Manage Azure Databricks previews.

Configure 1Password to enable authentication from Azure Databricks for the 1Password Event Logs connector. Use the credentials from these steps to create a Unity Catalog connection in Azure Databricks.

Prerequisites

  • Requires a 1Password account with permission to create an Events Reporting integration and issue a bearer token. See 1Password Events Reporting.
  • Requires access to the Events API for your account region. See the 1Password Events API.

Configure 1Password

1Password authenticates Events API requests with a bearer token that the connector sends in the Authorization header. The connector does not refresh the token. Issue a long-lived token, and rotate it in the Unity Catalog connection if you revoke it.

  1. Sign in to your 1Password account as an owner or administrator.
  2. In the sidebar, click Integrations.
  3. Open the Directory tab. In Events Reporting, click Other.
  4. Enter a System Name, then click Add Integration.
  5. Enter a Token Name. Set an expiration that matches your security policy. Under Events to Report, turn on all event types so the connector can ingest audit_events, item_usages, and sign_in_attempts.
  6. Click Issue Token.
  7. Copy the access token. 1Password does not show the full token again. You enter this value as the Bearer token when you create a connection in Azure Databricks.

Next steps

Create a 1Password Event Logs connection in Azure Databricks. See Create a 1Password Event Logs connection.