Make it possible to apply a Filter or RLS (Row Level Security) on OneLake shortcuts.
For example:
We have a central workspace which holds data for the entire organization. We have a giant fact table with data for all departments in the organization.
We would like to create shortcuts from each department's workspace to the central fact table, but we would like each shortcut to only have access to that department's data.
So we need the ability to apply filter or RLS to the shortcut.
4 Comments
- esatterfieldNew Member
Agreed. Having the ability to govern what gets propagated via shortcuts would be a massive help and also work toward a better "OneCopy" approach to data in OneLake. In cases where you want certain lakehouses/workspaces to only house specific data, the only current option is to basically duplicate data into a lakehouse.
- fbcideas_migusrNew MemberStatus added:New
- 00009Regular VisitorSame here, would love to see it in order to make OneLake Security Adoption happen
- Kevin_H
Advocate I
Today, one could add OneLake Security roles on the lakehouse (assuming it's a lakehouse) in the central workspace. When a user is accessing content in the departments' workspaces, via the shortcut, their identity can "flow" to the lakehouse in the central workspace, where OneLake Security (and its RLS) would be applied. Right? Wouldn't this solve it?
_
Recent ideas
Allow NotebookUtils getSecret() to authenticate with Workspace Identity
Current behavior In Microsoft Fabric, notebookutils.credentials.getSecret() authenticates against Azure Key Vault using the identity of the user who executes the notebook. This behavior appli...tmihara1 hour agoNew MemberNew3Views0likes0CommentsSupport Synonyms in Fabric Warehouse
Microsoft SQL Server has a very powerful feature by the way of "synonyms." It allows users and DBAs to do all sorts of powerful magic such as rewiring objects under the hood (e.g. run the code agains...matthias-bi5 hours agoRegular VisitorNew1.3KViews18likes2CommentsExpose Refresh Warnings and Informational Messages via Notifications and API
When a Power BI semantic model refresh completes successfully, the status shows Completed, even when the refresh details contain warnings or informational messages that require attention. Please pro...Jashwanth_K7 hours agoMicrosoft EmployeeNew22Views6likes0CommentsInvoke Pipeline Task - Workspace Identity Authentication
Currently, the Fabric Data Factory Invoke Pipeline task uses the user's credentials who saved the pipeline to then authenticate to the Azure Data Factory to execute the ADF pipeline. When that user'...dzebrowitz11 hours agoAdvocate IPlanned1.8KViews61likes5CommentsFabric Pipeline should run as workspace identity
Currently, Microsoft Fabric pipelines run under the identity of the last user who modified them, which can cause disruptions when tenant administrators make changes to security policies, such as enab...pellitteris12 hours agoAdvocate IINew1.4KViews27likes3Comments