Skip to content

Commit 285e126

Browse files
committed
Update network req for Purview-ADF lineage
1 parent fd9751e commit 285e126

File tree

1 file changed

+12
-4
lines changed

1 file changed

+12
-4
lines changed

articles/data-factory/how-to-access-secured-purview-account.md

Lines changed: 12 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ author: jianleishen
66
ms.service: data-factory
77
ms.topic: conceptual
88
ms.custom: [seo-lt-2019, references_regions]
9-
ms.date: 07/17/2023
9+
ms.date: 08/07/2023
1010
---
1111

1212
# Access a secured Microsoft Purview account from Azure Data Factory
@@ -15,13 +15,21 @@ This article describes how to access a secured Microsoft Purview account from Az
1515

1616
## Microsoft Purview private endpoint deployment scenarios
1717

18+
Microsoft Purview provides different options of [firewall settings](/purview/catalog-firewall). Refer to the following pipeline lineage support matrix for each Data Factory integration runtime type.
19+
20+
| Microsoft Purview firewall settings | Azure integration runtime | Azure integration runtime with managed virtual network | Self-hosted integration runtime |
21+
| ----------------------------------- | ------------------------- | ------------------------------------------------------------ | ------------------------------------------------------------ |
22+
| Enabled from all networks | Supported | Supported | Supported |
23+
| Disabled for ingestion only | Supported | Supported | Supported, ***ingestion*** private endpoints are required |
24+
| Disabled from all networks | Unsupported | Supported, ***account*** and ***ingestion*** private endpoints are required | Supported, ***account*** and ***ingestion*** private endpoints are required |
25+
1826
You can use [Azure private endpoints](../private-link/private-endpoint-overview.md) for your Microsoft Purview accounts to allow secure access from a virtual network (VNet) to the catalog over a Private Link. Microsoft Purview provides different types of private points for various access need: *account* private endpoint, *portal* private endpoint, and *ingestion* private endpoints. Learn more from [Microsoft Purview private endpoints conceptual overview](../purview/catalog-private-link.md#conceptual-overview).
1927

20-
If your Microsoft Purview account is protected by firewall and denies public access, make sure you follow below checklist to set up the private endpoints so Data Factory can successfully connect to Microsoft Purview.
28+
When private endpoints are needed, make sure you follow below instruction to set them up so Data Factory can successfully connect to Microsoft Purview. If the integration runtime cannot connect to Purview, you will see lineage status as failed on the activity run monitoring, and may experience slight longer activity execution duration because the integration runtime tries to establish the connection and wait until the default timeout is hit.
2129

22-
| Scenario | Required Microsoft Purview private endpoints |
30+
| Scenario | Required Microsoft Purview private endpoints |
2331
| ------------------------------------------------------------ | ------------------------------------------------------------ |
24-
| [Run pipeline and report lineage to Microsoft](tutorial-push-lineage-to-purview.md) | For Data Factory pipeline to push lineage to Microsoft, Microsoft Purview ***account*** and ***ingestion*** private endpoints are required. <br>- When using **Azure Integration Runtime**, follow the steps in [Managed private endpoints for Microsoft Purview](#managed-private-endpoints-for-microsoft-purview) section to create managed private endpoints in the Data Factory managed virtual network.<br>- When using **Self-hosted Integration Runtime**, follow the steps in [this section](../purview/catalog-private-link-end-to-end.md#option-2---enable-account-portal-and-ingestion-private-endpoint-on-existing-microsoft-purview-accounts) to create the *account* and *ingestion* private endpoints in your integration runtime's virtual network. |
32+
| [Run pipeline and report lineage to Microsoft](tutorial-push-lineage-to-purview.md) | For Data Factory pipeline to push lineage to Microsoft Purview: <br>- When using **Azure Integration Runtime**, follow the steps in [Managed private endpoints for Microsoft Purview](#managed-private-endpoints-for-microsoft-purview) section to create managed private endpoints in the Data Factory managed virtual network.<br>- When using **Self-hosted Integration Runtime**, follow the steps in [this section](../purview/catalog-private-link-end-to-end.md#option-2---enable-account-portal-and-ingestion-private-endpoint-on-existing-microsoft-purview-accounts) to create the ***account*** and ***ingestion*** private endpoints in your integration runtime's virtual network. |
2533
| [Discover and explore data using Microsoft on ADF UI](how-to-discover-explore-purview-data.md) | To use the search bar at the top center of Data Factory authoring UI to search for Microsoft Purview data and perform actions, you need to create Microsoft Purview ***account*** and ***portal*** private endpoints in the virtual network that you launch the Data Factory Studio. Follow the steps in [Enable *account* and *portal* private endpoint](../purview/catalog-private-link-account-portal.md#option-2---enable-account-and-portal-private-endpoint-on-existing-microsoft-purview-accounts). |
2634

2735
## Managed private endpoints for Microsoft Purview

0 commit comments

Comments
 (0)