Forum Discussion
Restrict Power Bi Access to Sharepoint List
Hi Anonymous ,
Thank for your response.
The user/member is definitely has to have access to the Sharepoint in order to work from the apps (PowerApps). The intention here is that I create an apps (PowerApps) for the users where they don't know anything about the Sharepoint list. In other words, they just work from the Apps.
It's just like when we are using Twitter apps but we don't know where the data source is and we don't need to update directly in Twitter's datasource.
I created filter view in the PowerApps so that user is only able to view their project only.
To put in a simple way, I have 1 sharepoint list called Project Table as a data source for the apps. It collects data for different projects.
Person A, B, C, D have view in the Apps to Project Cat (they are only able to see Project Cat).
Person C, D, E, F have view in the Apps to Project Dog, etc.
C and D have view for both Projects (Cat and Dog) in the apps, but the rest only see theirs.
Everything is saved in 1 Project Table list as data source for the apps.
In summary, the user is definitely has access to the Sharepoint in order to work from the Apps.
I don't want them to know the URL to sharepoint list (even though for those who are curious can search in our Organization sharepoint)
To mitigate, I have set specific permission to the user in Sharepoint so that they are only see blank view in the list.
If the user figure out the URL and skillful to use PowerBi, then they can get data from it and see all the Project Data (which is not allowed).
I'm wondering if there is any way to restrict data connection or view from PowerBi to Sharepoint.
Here I will give you some suggests.
1. Create specific sites with specific data sources for different users.
--> I don't think this will meet the intention of PowerApps. We have 50+ projects and growing. It will be cumbersome to create new site for each new projects, manage user permission and to update the PowerApps.
2. You may try RLS to your users and do not give them build permission, they you can restrict the data they see from your sharepoint.
--> Yes, we also created PowerBi dashboard and RLS for the users, no build permission also allowed from the Workspace. But the question is, if the user is skillfull in PowerBI and somehow figure out the Sharepoint URL, then they can pull the data by themselves via PowerBi desktop or his own workspace and able to see all project information which is not allowed.
Is there any other advice?
Regards,