This time we’re going bigger than ever. Fabric, Power BI, SQL, AI and more. We're covering it all. You won't want to miss it.
Learn moreDid you hear? There's a new SQL AI Developer certification (DP-800). Start preparing now and be one of the first to get certified. Register now
In October 2025, we introduced OneLake diagnostics—a powerful capability that helps teams “answer who accessed what, when, and how” across your Fabric Lakehouse environment. OneLake diagnostics streams JSON-based activity logs into a Lakehouse you choose, enabling rich analysis, governance, and compliance workflows. A powerful capability that helps teams “answer who accessed what, when, and how” across your Fabric Lakehouse environment. OneLake diagnostics streams JSON-based activity logs into a Lakehouse you choose, enabling rich analysis, governance, and compliance workflows.
We are strengthening that foundation with the introduction of immutable diagnostic logs—a new capability that ensures diagnostic events cannot be altered or deleted for a defined retention period, giving you tamper-proof data for the entire lifecycle of your logs.
1. Use a dedicated workspace for diagnostic logs
Immutability applies to all diagnostic event files stored in the workspace. Using a dedicated workspace for your diagnostic Lakehouse isolates permissions, keeps governance clean, and prevents operational workloads from interfering with audit data.
2. Restrict workspace admin roles
Limit workspace admins to a small, trusted group responsible for configuring immutability and managing workspace level settings. This prevents any single team from generating diagnostic activity and controlling the environment that stores the logs—a key separation of duties requirement.
3. Protect against deletion of the workspace or Lakehouse
Immutability prevents file deletion, but it does not prevent someone with the right permissions from deleting the workspace or the Lakehouse itself. Keeping the admin list small reduces the risk of accidental or intentional removal. If deletion does occur, recovery is only possible for a limited period based on your tenant’s retention settings.
4. Align immutability retention with organizational policies
Choose an immutability period that fits your audit, compliance, legal, and investigation requirements. Since immutability cannot be shortened or reversed once applied, ensure the retention window reflects your true obligations.
If your team needs tamper-proof records, or operates under strict regulatory requirements, immutability gives you a new level of confidence in your operational visibility.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.