Skip to main content
cancel
Showing results for 
Search instead for 
Did you mean: 

July 7 - July 17 | Round 2 of the Power BI Dataviz World Championships. Don't miss your chance! Learn more

Reply
JohnP_RI
New Member

Azure Function Connection to MS Fabric SQL endpoint results in Login Failed

Has anyone successfully connected to a Fabric SQL endpoint using user/system assigned identities or a service principal?

 

I have my service principal(s) in an azure security group and that group has permissions to the lakehouse/SQL endpoint (validated by also having a user in that group), however when connecting with any of these Service Principal types I get 18456 Login Failed.

 

If anyone has, can you please share how you did it?  (connection string format, what type of identity etc).

 

Thanks!

1 ACCEPTED SOLUTION
JohnP_RI
New Member

Figured this out:

  • In PowerBI, go to the Admin Portal 
  • Make sure you are a PowerBI administrator and can see the “Tenant Settings” section on the Admin Portal 
  • In this section, 2 things need to be turned on: 
  1. Developer Settings -> Allow service principals to create and user profiles 
  2. OneLake Settings -> Users can access data stored in OneLake with apps external to Fabric 
  • Now you can manage permissions on the workspace you want to access from your AZ Function.  When you add a user to the permissions, you can type in the name of the AZ Function rather than a user. (assuming you've already created a system generated identity)
  • Now you can use the "Azure Directory Default" authentication method in the connection string.

View solution in original post

1 REPLY 1
JohnP_RI
New Member

Figured this out:

  • In PowerBI, go to the Admin Portal 
  • Make sure you are a PowerBI administrator and can see the “Tenant Settings” section on the Admin Portal 
  • In this section, 2 things need to be turned on: 
  1. Developer Settings -> Allow service principals to create and user profiles 
  2. OneLake Settings -> Users can access data stored in OneLake with apps external to Fabric 
  • Now you can manage permissions on the workspace you want to access from your AZ Function.  When you add a user to the permissions, you can type in the name of the AZ Function rather than a user. (assuming you've already created a system generated identity)
  • Now you can use the "Azure Directory Default" authentication method in the connection string.

Helpful resources

Announcements
FabCon and SQLCon Barcelona 2026

FabCon & SQLCon – Barcelona 2026

Join us in Barcelona for FabCon and SQLCon, the Fabric, Power BI, SQL, and AI community event. Save €200 with code FABCMTY200.

60 days of Data Days Carousel

Data Days 2026

Join Data Days 2026: 60 days of free live/on-demand sessions, challenges, study groups, and certification opportunities.

Power BI DataViz World Championships carousel

Power BI DataViz World Championships - June 2026

A new Power BI DataViz World Championship is coming this June! Don't miss out on submitting your entry.