<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Direct Query and Row Level Security - Do Viewers need to have read access to SQL Server database? in Report Server</title>
    <link>https://community.fabric.microsoft.com/t5/Report-Server/Direct-Query-and-Row-Level-Security-Do-Viewers-need-to-have-read/m-p/2407691#M23399</link>
    <description>&lt;P&gt;It depends on how you have configured the credentials for the connection in your tabular model. If the connection is using the fixed account or impersonate service account options the that account will be used to execute the SQL queries. Your RLS restrictions will work fine with either of these options as the RLS filters are effectively translated into extra conditions on the WHERE clause for the SQL queries that are generated&lt;/P&gt;</description>
    <pubDate>Mon, 21 Mar 2022 21:31:05 GMT</pubDate>
    <dc:creator>d_gosbell</dc:creator>
    <dc:date>2022-03-21T21:31:05Z</dc:date>
    <item>
      <title>Direct Query and Row Level Security - Do Viewers need to have read access to SQL Server database?</title>
      <link>https://community.fabric.microsoft.com/t5/Report-Server/Direct-Query-and-Row-Level-Security-Do-Viewers-need-to-have-read/m-p/2405316#M23371</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;I have a question regarding the viewer authentication in PowerBI report using DirectQuery and having Row Level Security applied when it's published in a PowerBI Workspace/PowerBI Service.&lt;/P&gt;&lt;P&gt;I am trying to create a PowerBI report using Direct Query storage mode, with RLS applied using&amp;nbsp;USERPRINCIPALNAME() in a dimension table to filter the data in fact tables related to viewers, and there is an enterprise power bi data gateway with a service account authenticated to SQL Server database.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;So in this case, I wonder whether all viewers are required to have read access to the SQL Server database, so they can see the report with filtered underlying data on PowerBI workspace or not. Or the SQL Server database will use the authenticated&amp;nbsp;service account from the Enterprise Data gateway to run the queries and return the filtered data of the viewer?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Because the data in SQL Server database is restricted to give read permission to many users, I wonder if there are any solutions that allow viewers (who don't have the permission to SQL Server database but have the view permission to PowerBI Workspace) to view the PowerBI report with filtered underlying data.&lt;/P&gt;&lt;P&gt;Many thanks.&lt;/P&gt;</description>
      <pubDate>Mon, 21 Mar 2022 02:58:15 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Report-Server/Direct-Query-and-Row-Level-Security-Do-Viewers-need-to-have-read/m-p/2405316#M23371</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2022-03-21T02:58:15Z</dc:date>
    </item>
    <item>
      <title>Re: Direct Query and Row Level Security - Do Viewers need to have read access to SQL Server database?</title>
      <link>https://community.fabric.microsoft.com/t5/Report-Server/Direct-Query-and-Row-Level-Security-Do-Viewers-need-to-have-read/m-p/2407691#M23399</link>
      <description>&lt;P&gt;It depends on how you have configured the credentials for the connection in your tabular model. If the connection is using the fixed account or impersonate service account options the that account will be used to execute the SQL queries. Your RLS restrictions will work fine with either of these options as the RLS filters are effectively translated into extra conditions on the WHERE clause for the SQL queries that are generated&lt;/P&gt;</description>
      <pubDate>Mon, 21 Mar 2022 21:31:05 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Report-Server/Direct-Query-and-Row-Level-Security-Do-Viewers-need-to-have-read/m-p/2407691#M23399</guid>
      <dc:creator>d_gosbell</dc:creator>
      <dc:date>2022-03-21T21:31:05Z</dc:date>
    </item>
    <item>
      <title>Re: Direct Query and Row Level Security - Do Viewers need to have read access to SQL Server database?</title>
      <link>https://community.fabric.microsoft.com/t5/Report-Server/Direct-Query-and-Row-Level-Security-Do-Viewers-need-to-have-read/m-p/2407765#M23401</link>
      <description>&lt;P&gt;Thanks for your confirmation.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Mar 2022 22:28:03 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Report-Server/Direct-Query-and-Row-Level-Security-Do-Viewers-need-to-have-read/m-p/2407765#M23401</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2022-03-21T22:28:03Z</dc:date>
    </item>
  </channel>
</rss>

