Error while reading vault secret from ADF - Operation returned an invalid status code 'Forbidden'

Rupayan Biswas 0 Reputation points
2024-08-17T15:13:58.1733333+00:00

Hi All,

I have a setup a keyVault with RBAC User's image

The keyvault is configured to allow access from specific network. User's image

Private end point is configured as well and approved.

User's image

User's image

Have provided KeyVault secret user role to the ADF system managed identity.

User's image

When trying to access the secret I keep getting this error.

image

Any help would be helpful.

Azure Data Factory
Azure Data Factory
An Azure service for ingesting, preparing, and transforming data at scale.
10,568 questions
{count} votes

2 answers

Sort by: Most helpful
  1. Rupayan Biswas 0 Reputation points
    2024-09-04T12:13:06.9166667+00:00

    @Smaran Thoomu I finally seem to have the resolution. I had to created a VNet IR which was missing in my setup. Self hosted IR on VM wasn't enough. It works like charm now. Here are the screenshots for reference of other.

    IRsUser's image

    Managed Pvt EPs

    User's image

    KV NW settings

    User's image

    User's image

    Connection Status

    User's image


  2. Smaran Thoomu 14,870 Reputation points Microsoft Vendor
    2024-09-04T14:31:51.7933333+00:00

    @Rupayan Biswas I'm glad that you were able to resolve your issue and thank you for posting your solution so that others experiencing the same thing can easily reference this! Since the Microsoft Q&A community has a policy that "The question author cannot accept their own answer. They can only accept answers by others ", I'll repost your solution in case you'd like to accept the answer .

    Issue: Hi All,

    I have a setup a keyVault with RBAC User's image

    The keyvault is configured to allow access from specific network. User's image

    Private end point is configured as well and approved.

    User's image

    User's image

    Have provided KeyVault secret user role to the ADF system managed identity.

    User's image

    When trying to access the secret I keep getting this error.

    image

    Any help would be helpful.

    Solution: I finally seem to have the resolution. I had to created a VNet IR which was missing in my setup. Self hosted IR on VM wasn't enough. It works like charm now. Here are the screenshots for reference of other.

    IRsUser's image

    Managed Pvt EPs

    User's image

    KV NW settings

    User's image

    User's image

    Connection Status

    User's image

    If I missed anything please let me know and I'd be happy to add it to my answer, or feel free to comment below with any additional information.

    I hope this helps!

    If you have any other questions, please let me know. Thank you again for your time and patience throughout this issue.


    Please don’t forget to Accept Answer and Yes for "was this answer helpful" wherever the information provided helps you, this can be beneficial to other community members.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.