Forum Discussion
Data connection rules combined with block public acces
- 6 months ago
Hi TK12345 ,
Thanks for clarifying. I can see why this might be confusing. From your description, it doesn’t seem like the Block Public Internet Access toggle is causing issues with connection rules. Since things start working again after a few hours, and it also works in a new workspace with public access still blocked, it’s likely that Fabric just needs some time to refresh or load the tenant connection policies.
This could explain why the page shows an error at first and then works later without any changes. It doesn’t appear to be a misconfiguration on your end, but more likely a backend sync delay or something related to the feature still developing.
I hope this clarifies the situation. If I’ve misunderstood any part of your situation, please let us know.
Hi TK12345 ,
Thank you for engaging with the Microsoft Fabric Community. When you enable Block Public Internet Access, Fabric restricts its ability to access external resources. Managed Private Endpoints continue to function because they remain within the private network, allowing notebooks to connect as usual.
However, connection rules and the VNet Gateway operate differently.
The error message (“Unable to retrieve the tenant’s data connection policies”)
suggests that Fabric cannot load the necessary policy details after public outbound access is blocked. This likely explains why the feature worked previously and stopped after enabling the setting.
To verify, you can temporarily disable Block Public Internet Access and see if the connection rules section loads properly. If it does, the issue is probably related to this restriction.
In this situation, you have two options
1. Use Managed Private Endpoints where possible, or permit minimal outbound access so Fabric can access and apply the connection policies for the gateway.
2. This appears to be an interaction between the network restriction and the connection rules feature, rather than a configuration error.
Regards,
Yugandhar.
- TK123456 months ago
Resolver II
First of all, thanks for the reply.
Indeed, when disable public internet access after a few hours it does work again. But in my opinion the outbound and inbound rules are made so we can block the public internet access. So I am not seeing the connection between the toggle and then the connection rules not working. So that is why I am wondering if this is a kind of bug or something. Maybe cause the feature is new...? Cause when I make a new workspace (with the blocked internet still on) I can setup the connection rule for VnetGateway as well, it is not grayed out our something......
The thing is, I cannot see the connection between Block Public Internet Access- V-yubandi-msft6 months ago
Community Support
Hi TK12345 ,
Thanks for clarifying. I can see why this might be confusing. From your description, it doesn’t seem like the Block Public Internet Access toggle is causing issues with connection rules. Since things start working again after a few hours, and it also works in a new workspace with public access still blocked, it’s likely that Fabric just needs some time to refresh or load the tenant connection policies.
This could explain why the page shows an error at first and then works later without any changes. It doesn’t appear to be a misconfiguration on your end, but more likely a backend sync delay or something related to the feature still developing.
I hope this clarifies the situation. If I’ve misunderstood any part of your situation, please let us know.