Forum Discussion
Warehouse Access Permissions
Fablic is being operated in a separate tenant.
- Main tenant (all 365 users)
- Separate tenant (Fablic operation tenant, some users)
I am the tenant administrator and can create Fabric capacity in Azure.
I have added some users as members to the tenant for Fabric operation.
I have made both myself and the member administrators of the Fabric workspace.
I created a warehouse in Fabric and am trying to use the created warehouse as a destination in a dataflow.
If I create a warehouse, I can use the created warehouse as a destination in a dataflow.
If a member does the same, the warehouse cannot be used as a destination (it does not appear in the selection).
I do not want to give the member Azure permissions.
Please tell me what the best way to operate this is.
Thank you very much.
hI yyjp
In this case you can go with Service account/connection account cocnept. so that if memebrs may tarnsfer or exit from the organisation it won't effect your operations in fabric workspace.
Hope you're clear now. Thank you!!
Did I answer your question? Mark my post as a solution!
Proud to be a Super User!
6 Replies
- suparnababu8
Super User
Hello yyjp
You no need to give the member Azure permissions and it's not required. Already you granted Memeber role to respective user in workspace. Yo need to grant the permission to Build permission on Warehouse to your users. Build will allow Users to connect, write, and use the warehouse as destination in dataflows.
Click on ... of your WH and clcick on Manage Permissions
Now, Click oN Add suer and grant build permsission to user. Pls try in this way.
Please let me know if it works for you
Thank you!!
Did I answer your question? Mark my post as a solution!
Proud to be a Super User!- yyjp
Helper I
Thank you for your reply.
I enabled "Build reports using the default semantic model."
But members who are guest-joined to my Azure tenant cannot use the warehouse as the destination.
(They can open and view the warehouse.)
I was able to do this by registering a connection account as an Azure member and using it when authenticating with Fabric,
but I'm not sure if this is the correct way to do it.- suparnababu8
Super User
Hello yyjp
Thanks for clarifying. That my previous reply is related to users from same tenent. I belive it won;t work for guest users from other tenent. they should be in your Fabric tenet to write operations. The same thing explcitly mentioend in MSFT official documenatation.
Pls read it here: Data Factory limitations overview - Microsoft Fabric | Microsoft Learn
I would recommedn you submit your idea here Fabric Ideas - Microsoft Fabric Community
Did I answer your question? Mark my post as a solution!
Proud to be a Super User!
- v-hashadapu
Community Support
Hi yyjp , Thank you for reaching out to the Microsoft Community Forum.
We find the answer shared by suparnababu8 is appropriate. Can you please confirm if the solution worked for you. It will help others with similar issues find the answer easily.
Thank you suparnababu8 for your valuable response.