<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Grant permission with embedded Power BI in Developer</title>
    <link>https://community.fabric.microsoft.com/t5/Developer/Grant-permission-with-embedded-Power-BI/m-p/419156#M12502</link>
    <description>&lt;P&gt;Personally I think this should be guaranteed through the Application authentication.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;By the way, the users who have the rights to access the source code should be restricted.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Further, within Power BI Embedded, you could set up Row Level security:&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.microsoft.com/en-us/power-bi/developer/embedded-row-level-security" target="_self"&gt;Use row-level security with Power BI Embedded content&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Michael&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 17 May 2018 02:59:12 GMT</pubDate>
    <dc:creator>v-micsh-msft</dc:creator>
    <dc:date>2018-05-17T02:59:12Z</dc:date>
    <item>
      <title>Grant permission with embedded Power BI</title>
      <link>https://community.fabric.microsoft.com/t5/Developer/Grant-permission-with-embedded-Power-BI/m-p/417783#M12437</link>
      <description>&lt;P&gt;Hello to all,&lt;/P&gt;&lt;P&gt;My scenario is this:&lt;/P&gt;&lt;P&gt;I would like to share a power BI report with non-Power BI users, such as with customers or members of my organization who do not use Power BI.&lt;/P&gt;&lt;P&gt;I created a sample application, with an access token for non-Power BI users (app owns data). I followed all the documentation available online, for example this content:&amp;nbsp;&lt;A href="https://docs.microsoft.com/en-us/power-bi/developer/get-azuread-access-token" target="_blank"&gt;https://docs.microsoft.com/en-us/power-bi/developer/get-azuread-access-token&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It works! But I have a doubt.&lt;/P&gt;&lt;P&gt;Although I will implement a mechanism to allow access to the page only to authorized users, the user will have access to a web page containing javascript scripts. By displaying the source code, the user can obtain: object ID, token, report ID.&lt;BR /&gt;So if the user sent this information to another user, the last one could access the report with simple technical operations.&lt;BR /&gt;Even if I set a very short expiration time for the authentication token, there would always be this problem.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How could I make an embedded report by api really reserved for a single group of users?&lt;/P&gt;</description>
      <pubDate>Tue, 15 May 2018 13:38:56 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Developer/Grant-permission-with-embedded-Power-BI/m-p/417783#M12437</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2018-05-15T13:38:56Z</dc:date>
    </item>
    <item>
      <title>Re: Grant permission with embedded Power BI</title>
      <link>https://community.fabric.microsoft.com/t5/Developer/Grant-permission-with-embedded-Power-BI/m-p/419156#M12502</link>
      <description>&lt;P&gt;Personally I think this should be guaranteed through the Application authentication.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;By the way, the users who have the rights to access the source code should be restricted.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Further, within Power BI Embedded, you could set up Row Level security:&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.microsoft.com/en-us/power-bi/developer/embedded-row-level-security" target="_self"&gt;Use row-level security with Power BI Embedded content&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Michael&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 May 2018 02:59:12 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Developer/Grant-permission-with-embedded-Power-BI/m-p/419156#M12502</guid>
      <dc:creator>v-micsh-msft</dc:creator>
      <dc:date>2018-05-17T02:59:12Z</dc:date>
    </item>
    <item>
      <title>Re: Grant permission with embedded Power BI</title>
      <link>https://community.fabric.microsoft.com/t5/Developer/Grant-permission-with-embedded-Power-BI/m-p/421716#M12620</link>
      <description>&lt;P&gt;Thank you &lt;a href="https://community.fabric.microsoft.com/t5/user/viewprofilepage/user-id/12718"&gt;@v-micsh-msft&lt;/a&gt;!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Your answer clarified my ideas.&lt;BR /&gt;Through the application authentication it's possible to restrict access to whoever you want. In addition there are several mechanisms to prevent the reading of javascript code.&lt;BR /&gt;If all this is not enough,&amp;nbsp;I could set up row Level security: in thise case the embedded tokens can be generated with permissions limited to a specific role.&lt;BR /&gt;Thanks so much!&lt;/P&gt;</description>
      <pubDate>Mon, 21 May 2018 09:58:13 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Developer/Grant-permission-with-embedded-Power-BI/m-p/421716#M12620</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2018-05-21T09:58:13Z</dc:date>
    </item>
  </channel>
</rss>

