<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: OneLake Shortcut access - Item's owner access in Data Engineering</title>
    <link>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4063040#M3297</link>
    <description>&lt;P&gt;Hi &lt;a href="javascript:void(0)" data-lia-user-mentions="" data-lia-user-uid="644992" data-lia-user-login="govindarajan_d" class="lia-mention lia-mention-user"&gt;govindarajan_d&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It is not allowed to define permissions on the shortcut itself, I define permissions at the lakehouse level.&lt;/P&gt;
&lt;P&gt;&lt;img /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Select the lakehouse that shortcut belongs to and then select manage permissions to add users to grant permissions.&lt;/P&gt;
&lt;P&gt;&lt;img /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You also have the option of recreating a lakehouse and shortcut.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best Regards,&lt;BR /&gt;Yang&lt;BR /&gt;Community Support Team&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If there is any post&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;helps&lt;/EM&gt;&lt;/STRONG&gt;, then please consider&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Accept it as the solution&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;&amp;nbsp;to help the other members find it more quickly.&lt;BR /&gt;If I misunderstand your needs or you still have problems on it, please feel free to let us know.&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Thanks a lot!&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 26 Jul 2024 07:10:27 GMT</pubDate>
    <dc:creator>Anonymous</dc:creator>
    <dc:date>2024-07-26T07:10:27Z</dc:date>
    <item>
      <title>OneLake Shortcut access - Item's owner access</title>
      <link>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4058893#M3243</link>
      <description>&lt;DIV&gt;&lt;SPAN&gt;Hi All,&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If someone creates a Lakehouse and then adds shortcut to it, I understand that the item's owner role is used for getting data from that shortcut.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;But if that user moves out of the organization, then the connection breaks right, so what is the best way to deal with creating items and shortcuts?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 24 Jul 2024 12:02:48 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4058893#M3243</guid>
      <dc:creator>govindarajan_d</dc:creator>
      <dc:date>2024-07-24T12:02:48Z</dc:date>
    </item>
    <item>
      <title>Re: OneLake Shortcut access - Item's owner access</title>
      <link>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4060053#M3253</link>
      <description>&lt;P&gt;Hi &lt;a href="javascript:void(0)" data-lia-user-mentions="" data-lia-user-uid="644992" data-lia-user-login="govindarajan_d" class="lia-mention lia-mention-user"&gt;govindarajan_d&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The owner role of a project is used to access data from OneLake shortcuts. This can indeed cause connectivity issues if the owner leaves the organization.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have some suggestions for securing and managing OneLake shortcuts:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;Multiple owners can be assigned to ensure that shortcuts have multiple owners.&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;OL start="2"&gt;
&lt;LI&gt;implement RBAC to manage permissions. oneLake data access roles are a new feature that can be used to apply role-based access control (RBAC) to data stored in OneLake. You can define security roles that grant read access to specific folders in a fabric item and assign them to users or groups.&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;More information about RBAC can be found in the official documentation below:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://learn.microsoft.com/en-us/fabric/onelake/onelake-shortcut-security#onelake-data-access-roles" target="_blank"&gt;Secure and manage OneLake shortcuts - Microsoft Fabric | Microsoft Learn&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you have any further questions please feel free to contact me.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best Regards,&lt;BR /&gt;Yang&lt;BR /&gt;Community Support Team&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If there is any post&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;helps&lt;/EM&gt;&lt;/STRONG&gt;, then please consider&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Accept it as the solution&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;&amp;nbsp;to help the other members find it more quickly.&lt;BR /&gt;If I misunderstand your needs or you still have problems on it, please feel free to let us know.&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Thanks a lot!&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 25 Jul 2024 01:51:15 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4060053#M3253</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2024-07-25T01:51:15Z</dc:date>
    </item>
    <item>
      <title>Re: OneLake Shortcut access - Item's owner access</title>
      <link>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4060797#M3263</link>
      <description>&lt;P&gt;Hi&amp;nbsp;Anonymous&lt;/a&gt;&amp;nbsp;,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1. How can multiple owners be assigned to an object? Can you please explain?&lt;/P&gt;&lt;P&gt;2. RBAC is for different purpose. I am not looking to provide access but rather the way shortcut is designed, it uses item owner's permission. RBAC wouldn't solve this problem&lt;/P&gt;</description>
      <pubDate>Thu, 25 Jul 2024 07:50:46 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4060797#M3263</guid>
      <dc:creator>govindarajan_d</dc:creator>
      <dc:date>2024-07-25T07:50:46Z</dc:date>
    </item>
    <item>
      <title>Re: OneLake Shortcut access - Item's owner access</title>
      <link>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4063040#M3297</link>
      <description>&lt;P&gt;Hi &lt;a href="javascript:void(0)" data-lia-user-mentions="" data-lia-user-uid="644992" data-lia-user-login="govindarajan_d" class="lia-mention lia-mention-user"&gt;govindarajan_d&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It is not allowed to define permissions on the shortcut itself, I define permissions at the lakehouse level.&lt;/P&gt;
&lt;P&gt;&lt;img /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Select the lakehouse that shortcut belongs to and then select manage permissions to add users to grant permissions.&lt;/P&gt;
&lt;P&gt;&lt;img /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You also have the option of recreating a lakehouse and shortcut.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best Regards,&lt;BR /&gt;Yang&lt;BR /&gt;Community Support Team&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If there is any post&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;helps&lt;/EM&gt;&lt;/STRONG&gt;, then please consider&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Accept it as the solution&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;&amp;nbsp;to help the other members find it more quickly.&lt;BR /&gt;If I misunderstand your needs or you still have problems on it, please feel free to let us know.&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Thanks a lot!&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 26 Jul 2024 07:10:27 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4063040#M3297</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2024-07-26T07:10:27Z</dc:date>
    </item>
    <item>
      <title>Re: OneLake Shortcut access - Item's owner access</title>
      <link>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4064000#M3308</link>
      <description>&lt;P&gt;Hi&amp;nbsp;Anonymous&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;In my understanding, RBAC roles do not affect how the shortcut works when it is accessed in this context. RBAC is more for providing access to particular items.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Let's say I have a Lakehouse A and I add it as a shortcut to Lakehouse B. While I can give access for shortcut to others using RBAC, the shortcut works by using the Lakehouse owner's access everytime. So if the Lakehouse owner leaves the org, the RBAC part doesn't matter here. It is going to break the connection.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;img /&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 26 Jul 2024 14:44:37 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4064000#M3308</guid>
      <dc:creator>govindarajan_d</dc:creator>
      <dc:date>2024-07-26T14:44:37Z</dc:date>
    </item>
    <item>
      <title>Re: OneLake Shortcut access - Item's owner access</title>
      <link>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4066038#M3318</link>
      <description>&lt;P&gt;Hi &lt;a href="javascript:void(0)" data-lia-user-mentions="" data-lia-user-uid="644992" data-lia-user-login="govindarajan_d" class="lia-mention lia-mention-user"&gt;govindarajan_d&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Yes, so in my latest reply I didn't discuss the RBAC part, but expanded on how to grant permissions.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you have any further questions please feel free to contact me.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best Regards,&lt;BR /&gt;Yang&lt;BR /&gt;Community Support Team&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If there is any post&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;helps&lt;/EM&gt;&lt;/STRONG&gt;, then please consider&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Accept it as the solution&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;&amp;nbsp;to help the other members find it more quickly.&lt;BR /&gt;If I misunderstand your needs or you still have problems on it, please feel free to let us know.&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Thanks a lot!&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jul 2024 02:57:37 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4066038#M3318</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2024-07-29T02:57:37Z</dc:date>
    </item>
    <item>
      <title>Re: OneLake Shortcut access - Item's owner access</title>
      <link>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4066337#M3321</link>
      <description>&lt;P&gt;Possibly related idea: &lt;A href="https://ideas.fabric.microsoft.com/ideas/idea/?ideaid=c507598c-0f44-ef11-b4ad-000d3a02b6d0" target="_blank" rel="noopener"&gt;https://ideas.fabric.microsoft.com/ideas/idea/?ideaid=c507598c-0f44-ef11-b4ad-000d3a02b6d0&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please vote / comment on the idea to highlight the need.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Edit:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I also created some ideas related to the topic. Please vote:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Here is a generic Fabric idea related to this topic: &lt;A href="https://ideas.fabric.microsoft.com/ideas/idea/?ideaid=4cb25a68-7d4d-ef11-b4ac-000d3a0e6066" target="_blank"&gt;https://ideas.fabric.microsoft.com/ideas/idea/?ideaid=4cb25a68-7d4d-ef11-b4ac-000d3a0e6066&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;And yes, why not have option for multiple owners of an item? &lt;A href="https://ideas.fabric.microsoft.com/ideas/idea/?ideaid=0acce98c-7e4d-ef11-b4ac-000d3a0e6066" target="_blank"&gt;https://ideas.fabric.microsoft.com/ideas/idea/?ideaid=0acce98c-7e4d-ef11-b4ac-000d3a0e6066&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Or just let the Workspace own the items, so it's not related to a user account.&lt;/P&gt;&lt;P&gt;&lt;A href="https://ideas.fabric.microsoft.com/ideas/idea/?ideaid=1a2d3ce6-7d4d-ef11-b4ac-000d3a0e6066" target="_blank"&gt;https://ideas.fabric.microsoft.com/ideas/idea/?ideaid=1a2d3ce6-7d4d-ef11-b4ac-000d3a0e6066&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jul 2024 08:00:05 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Data-Engineering/OneLake-Shortcut-access-Item-s-owner-access/m-p/4066337#M3321</guid>
      <dc:creator>frithjof_v</dc:creator>
      <dc:date>2024-07-29T08:00:05Z</dc:date>
    </item>
  </channel>
</rss>

