Skip to main content
cancel
Showing results for 
Search instead for 
Did you mean: 

We've captured the moments from FabCon & SQLCon that everyone is talking about, and we are bringing them to the community, live and on-demand. Starts on April 14th. Register now

Enterprise Gateway - Active Directory Security Groups as Users

In the gateway data source I am forced to add each user individually to allow them to create a report off that data source. Alternately I can create custom groups in o365. We have already established security groups on our system would it be possible for these groups to be used? This is an extra layer of security for hundreds of users that has already been solved through active directory synchronization with office 365. The use case is to add a security group or multiple group to be authorized to create reports off the data source. When we add or take out personnel from the security group it will propagate up to Power BI.
Status: Completed
Comments
pgk1983
New Member
still facing same issues to add the AD groups to the users in data source . Is this solved?
pbiideas1
New Member
When adding AD group for access to a gateway connection, the AD group is found but when selecting the group receive the message... These email addresses are invalid or duplicate. The AD group does not have an associated email address. If using AD groups do they also have to be emailed enabled? Does Gateway access act differently than access in BI Workspaces?
Bob_Hornung
New Member
I'm having this same issue as well. Intellesense sees group but when I select it, I get the 'email address invalid or duplicate'.
tmarrick
Regular Visitor
Since this is getting no traction, likely due to being closed, I opened another idea with the same subject https://ideas.powerbi.com/forums/265200-power-bi-ideas/suggestions/35441353-enterprise-gateway-active-directory-security-gro
meyerforhire1
New Member
If anyone stumbles upon this, the way we got this to work was by adding an email address to the AD Security group Email field. It wasn't even a real email address in our domain. Once we did that, we were able to use our AD Security Group in the Gateway.
fbcideas_migusr
New Member
Status changed to: Completed