Skip to main content

24 docs tagged with "permissions"

View all tags

Access Control

Learn how to manage user permissions and access to data assets in Atlan for security and compliance.

Deployment architecture

The Atlan Secure Agent is a Kubernetes-based application that runs within a customer's environment. It acts as a gateway between the single-tenant Atlan SaaS and external systems like Snowflake, Tableau, and other data sources. This document explains the Secure Agent's deployment architecture, key components, communication flows, and security considerations.

Grant Databricks permissions

Apply the Unity Catalog grants and workspace permissions that Context Engineering Studio needs before you can deploy to Databricks Genie.

Grant Snowflake permissions

Apply the Snowflake grants that Context Engineering Studio needs before you can deploy to Snowflake Cortex Analyst.

Install on AWS EKS

This guide provides step-by-step instructions to install the Secure Agent on an Amazon Elastic Kubernetes Service (AWS EKS) cluster.

Manage user authentication

When users log into Atlan, a user session begins. You can change the default timeouts for user sessions for all users in your organization, helping you establish secure authentication protocols in Atlan. Once you have configured the settings, these would be applicable to users logging in via both basic and SSO authentication.

Permissions for Databricks AI models

Full reference of the privileges required to crawl AI models and extract lineage from Databricks Unity Catalog, including what each privilege enables and how to grant it.

Permissions for Snowflake AI models

Full reference of the privileges required to crawl AI models and extract lineage from the Snowflake Model Registry, including what each privilege enables and why it's needed.

Roles and permissions

Explanation of Snowflake's security model and role requirements for data quality operations.

Secure Agent

The Atlan Secure Agent is a lightweight, Kubernetes-based application that enables secure metadata extraction. It connects internal systems with Atlan SaaS while keeping sensitive data protected and doesn’t require inbound connectivity. Running within an organization’s controlled environment, the Secure Agent ensures compliance with security policies and automates metadata processing.

Security

Frequently asked questions about security controls and permissions for the Atlan browser extension.

Set up on-premises Databricks lineage extraction

The Docker-based databricks-extractor offline tool has been sunset. For on-premises or network-restricted Databricks lineage extraction, use Self-Deployed Runtime, Secure Agent, or direct connectivity via private link.

Set up SAP ECC

Set up user accounts and permissions required for SAP ECC metadata extraction in Atlan.

Set up SAP S/4HANA

Set up user accounts and permissions required for SAP S/4HANA metadata extraction in Atlan.