Forum Discussion
RLS at report level
Hi there
I've got a report, and I want certain people to see it.
I added a RLS group, but left it blank as in did not add any criteria because those who can access the report, can see all of it.
I then added the email addresses of the individuals who should see it to the Security area in Power BI online. I then published the app.
I then got someone who I did not add to test, and they can see the report. What am I doing wrong??
2 Replies
- Greg_DecklerCommunity Champion
Difficult to say. Check the permissions at the App level, workspace level, dashboard, report and dataset levels.
- v-yingjlCommunity Support
Hi Anonymous ,
Be aware that in the Power BI service, members of a workspace have access to datasets in the workspace. RLS doesn't restrict this data access.
For this case, please check whether the person who did not be added to test but can see the report have the access to datasets:
- In classic workspace, please check whether they are the members or viewers in workspace. If they are viewers but have not been set in RLS group, they should see nothing data in the report.
- In application workspace, please check whether they are the admins, members, contributors or viewers in workspace. Viewers are the same as which scenario in classic workspace. Other roles can see all data in reports even if they are set in RLS.
For further information about roles and RLS, you can refer the following Microsoft documents that could also help you:
- https://docs.microsoft.com/en-us/power-bi/service-admin-rls
- https://docs.microsoft.com/en-us/power-bi/service-new-workspaces#roles-in-the-new-workspaces
Best Regards,
Yingjie Li
If this post helps then please consider Accept it as the solution to help the other members find it more quickly.