Databricks-DE-Pro Data Sharing and Federation Practice Question
A data engineer is setting up Lakehouse Federation to query an external MySQL database from Databricks. The engineer creates a connection using the MySQL connector and a foreign catalog. Users in the 'analysts' group report that they can see the foreign catalog but cannot query any tables. The engineer has granted USAGE on the connection to the 'analysts' group. Which TWO additional permissions must be granted to the 'analysts' group to allow them to query tables in the foreign catalog? (Choose two.)
⚠ Common exam trap
The trap here is assuming that USAGE on the connection is sufficient for querying foreign tables, overlooking the need for catalog and schema-level privileges.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
USE CATALOG on the foreign catalog
To query foreign tables in a foreign catalog, users need USE CATALOG on the foreign catalog and USE SCHEMA on the specific schemas. USAGE on the connection only allows the catalog to use the connection; it does not grant access to the catalog's objects. These two privileges are the minimum required for read access.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
BROWSE on the foreign catalog
Why it's wrong here
BROWSE allows users to list objects but not query them. It is useful for discovery but does not grant the ability to run SELECT statements. The users can already see the catalog, so BROWSE is not the missing permission. They need USE CATALOG and USE SCHEMA to actually query tables.
- ✗
CREATE on the foreign catalog
Why it's wrong here
CREATE allows creating new objects, not querying existing ones. It is not required for reading data from foreign tables. Granting CREATE would not help users query tables and could pose security risks. The issue is missing read access, not write or create privileges.
- ✓
USE CATALOG on the foreign catalog
Why this is correct
In Unity Catalog, to query objects within a catalog, a user must have USE CATALOG on that catalog. Even if the user has USAGE on the connection, without USE CATALOG on the foreign catalog, they cannot access any schemas or tables within it. This is a fundamental privilege for catalog-level access.
- ✓
USE SCHEMA on the schemas containing the tables
Why this is correct
To access tables within a schema, a user must have USE SCHEMA on that schema. Without it, even with USE CATALOG, the user cannot see or query tables. This is required in addition to USE CATALOG to navigate the catalog hierarchy and reach the tables.
- ✗
SELECT on the foreign catalog
Why it's wrong here
SELECT is a table-level privilege, not a catalog-level privilege. Granting SELECT on the entire catalog is not a valid Unity Catalog operation. Users need SELECT on specific tables or schemas, but the question asks for permissions to query tables generally, so USE CATALOG and USE SCHEMA are the prerequisites.
About these practice questions
This Databricks-DE-Pro question is part of Courseiva's 267-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Databricks exam blueprint
This Databricks-DE-Pro practice question is part of Courseiva's free Databricks certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the Databricks-DE-Pro exam.