Skip to main content
cancel
Showing results for 
Search instead for 
Did you mean: 

July 28 - August 9 | Final Round of the Power BI Dataviz World Championships. This is your chance. Learn more

Reply
Anonymous
Not applicable

Dynamic Row Based Security

I have been following THIS article on how to setup row based security using passed through credentials.

 

I have two identical (duplicates) tables: Employee, and EmployeeSecurity that consist of the following columns:

  • ContactID
  • SupervisorID
  • EmployeeNumber
  • FirstName
  • MiddleName
  • LastName
  • ActiveDirectoryUserName

 

I have a relationship setup between EmployeeSecurity.SupervisorID to Employee.ContactID.

 

I currently have a Role setup on the tabulear model that contains these to tables or dimensions with read access.

The Row Filter I am using could probably use some fixing but I'm not sure where:

 

=Employee[SupervisorID]=LOOKUPVALUE(EmployeeSecurity[SupervisorID],EmployeeSecurity[ActiveDirectoryUserName],USERNAME())

 

I am trying to make it so employees can see their supervisors, and/or supervisors can see their employees.  I'm hoping someone sees either what is wrong with my DAX or maybe I'm going about settin up the relationship incorrectly.

 

This is just for functionality practice to prove Dynamic Row Based Security will work for us.

2 REPLIES 2
v-yulgu-msft
Microsoft Employee
Microsoft Employee

Hi @Anonymous,

 

According to above tutorial, your DAX filter formula should be:

 =Employee[SupervisorID]=LOOKUPVALUE(EmployeeSecurity[SupervisorID],EmployeeSecurity[ActiveDirectoryUserName],USERNAME(), EmployeeSecurity[SupervisorID], Employee[SupervisorID])

Regards,
Yuliana Gu

Community Support Team _ Yuliana Gu
If this post helps, then please consider Accept it as the solution to help the other members find it more quickly.
Anonymous
Not applicable

Thanks for the response @v-yulgu-msft.

 

I'm wondering if the problem might be a few things together.  Possibly the created relationship with filter direction and a poor understanding of the LOOKUPVALUE DAX.

 

With the changes you suggested the user received no data.  I altered the DAX to:

=Employee[ContactID]=LOOKUPVALUE(EmployeeSecurity[ContactID],EmployeeSecurity[ActiveDirectoryUserName],USERNAME(), EmployeeSecurity[SupervisorID], Employee[SupervisorID])

And now the user sees SOME data but not his/her own records.

 

Does anyone have experiance with this, and if so do you have any documentation, examples I can look at?

Helpful resources

Announcements
FabCon and SQLCon Barcelona 2026

FabCon & SQLCon – Barcelona 2026

Join us in Barcelona for FabCon and SQLCon, the Fabric, Power BI, SQL, and AI community event. Save €200 with code FABCMTY200.

Fabric Community Sticker Design Challenge Barcelona Carousel

Fabric Community Sticker Challenge - Barcelona 2026

If you love stickers, then you will definitely want to check out our community sticker challenge, Barcelona edition!

July Power BI Update Carousel

Power BI Monthly Update - July 2026

Check out the July 2026 Power BI update to learn about new features.

Power BI DataViz World Championships carousel

Power BI DataViz World Championships - June 2026

A new Power BI DataViz World Championship is coming this June! Don't miss out on submitting your entry.

Top Solution Authors