Enable Microsoft 365 Groups for Row-Level Security (RLS) in Power BI
As an Associate Director in Medical Affairs, I rely heavily on Power BI to deliver secure, role-based insights across cross-functional teams. However, the current limitation that Microsoft 365 (M365) Groups are not supported for Row-Level Security (RLS) presents a significant operational challenge.
Our organization has standardized on M365 Groups for collaboration and access control across Microsoft 365 services, including Teams, SharePoint, and Outlook. The inability to use these same groups for RLS in Power BI forces us to duplicate group structures using Azure Active Directory (AAD) Security Groups—introducing administrative overhead, increased risk of misalignment, and reduced agility.
Request: Please prioritize support for M365 Groups in Power BI RLS. This would:
- Streamline access management by aligning with existing M365 governance.
- Reduce administrative burden and potential for error.
- Improve adoption of secure, scalable BI solutions across business units.
Impact: This enhancement would significantly improve the efficiency and security of Power BI deployments in enterprise environments that are deeply integrated with M365.
2 Comments
- SELECTDBA
Advocate I
It's even worse that it allows you to add Microsoft 365 Groups in RLS and doesn't give you a warning that it won't work. We really need this to be fixed, Microsoft! Also this is a duplicate of this request from 2018: https://community.fabric.microsoft.com/t5/Fabric-Ideas/o365-groups-for-RLS/idi-p/4481493 - George1970Frequent VisitorI support this. Not being able to use M365 groups for RLS is bizarre, particularly as we can now use M365 groups for sharing a Power BI app, but NOT for RLS.
Recent ideas
Expose Refresh Warnings and Informational Messages via Notifications and API
When a Power BI semantic model refresh completes successfully, the status shows Completed, even when the refresh details contain warnings or informational messages that require attention. Please pro...Jashwanth_K5 minutes agoMicrosoft EmployeeNew0Views4likes0CommentsInvoke Pipeline Task - Workspace Identity Authentication
Currently, the Fabric Data Factory Invoke Pipeline task uses the user's credentials who saved the pipeline to then authenticate to the Azure Data Factory to execute the ADF pipeline. When that user'...dzebrowitz4 hours agoAdvocate IPlanned1.8KViews61likes5CommentsFabric Pipeline should run as workspace identity
Currently, Microsoft Fabric pipelines run under the identity of the last user who modified them, which can cause disruptions when tenant administrators make changes to security policies, such as enab...pellitteris4 hours agoAdvocate IINew1.4KViews27likes3CommentsBring Back separating Power BI artifacts on a per web page basis
Previously, the ability to have different artifacts open on different web tabs was enabled. This was beneficial if you wanted to differentiate what environments you were in, working across three diff...zoe-dean6 hours agoNew MemberNew53Views8likes0CommentsREST API Should expose credentials used in connections
When a consultant leaves a client, it's important to clean up any connections that may have the consultants credentials embedded within. I'm able to use the Fabric CLI to get the managed connections ...PeterDaniels6 hours agoAdvocate IIINew19Views7likes0Comments