Configure Databricks for AI agent imports

Early Access release

To import AI agents from Databricks, create an OAuth app connection in your Databricks account console to retrieve client credentials, and then configure the Databricks integration in Okta.

After you complete these configurations, see Enable AI agent imports for an app.

Before you begin

  • You've the account admin role in Databricks.
  • You've the super admin or AI agent admin role in Okta.
  • You've integrated the Databricks app in your org. See Add app integrations.

Create an app connection in Databricks

Okta uses an OAuth app connection to authenticate requests and retrieve AI agents from Databricks API endpoints.

  1. Sign in to your Databricks account console (for example, https://accounts.cloud.databricks.com).
  2. Go to Settings > App connections.
  3. Click Add connection.
  4. In Application Name, enter a recognizable name (for example, Okta AI Agent Import).
  5. In Redirect URLs, enter the following callback URL, replacing {domain} with your Okta org's root URL:
    {domain}/oauth2/v1/sts/callback
  6. In Access scopes, add the following scopes (in addition to any default selections):
    • provisioning
    • workspace
    • supervisor-agents
    • knowledge-assistants
    • genie
  7. Optional. Select Single-use Refresh Tokens, Access token TTL (in minutes), and Refresh token TTL (in minutes) settings.
  8. Click Add. A dialog appears displaying your Client ID and Client Secret.
  9. Copy the Client ID and Client Secret and store them in a secure location.

Configure Databricks in Okta

Configure the Databricks integration in the Okta Admin Console using your credentials.

  1. In the Admin Console, go to Applications and Resources > Applications.

  2. Select your Databricks instance.
  3. Select the AI agent import tab.
  4. In Configuration, enter the following settings:
    • Client ID: The Client ID obtained from the Databricks app connection.
    • Client Secret: The Client Secret obtained from the Databricks app connection.
    • Account Console URL: The URL used to access your Databricks Account Management console:
      • https://accounts.cloud.databricks.com
      • https://accounts.gcp.databricks.com
      • https://accounts.azuredatabricks.net
    • Account ID: Your Databricks account ID. To find your account ID, sign in to the Databricks account console and select your profile icon in the top-right corner. See Account settings in the Databricks documentation.
    • Platform: Databricks supports two platform types to import AI agents:
      • Agent Bricks
      • Genie Agents
    • Workspace IDs (optional): Enter workspace IDs if you want to import agents from specific workspaces.
  5. Click Test API Credentials to verify connectivity between Okta and Databricks. When prompted, sign in with your Databricks credentials.
  6. Click Save.