Forum Discussion

Anonymous's avatar
Anonymous
Not applicable
4 years ago
Solved

After implemented Row level Security what access require to users

After implemented row level security what access/permissions( like work space/member/viewer/contributor)  required to users see their own data . normally user  login their organization email id in power bi service .

Kindly let me know and its really helpful to me . thanks in advance .

 

 

 

Thanks,

Raghu

  • Hi, Anonymous 

    Each user/group needs to be added to the RLS roles unless they have edit permissions on the dataset.

    1. If the user is assigned as admin/contributor/member of the workspace, then he will have access to all data. RLS does not apply to them.
    2. If the user is assigned the role of "viewer" and is added to the role of rls in PowerBI Service,then he will be restricted by the rules to the data he can access
    3. Other users who have not been assigned any roles have no access to these data

     

    Best Regards,
    Community Support Team _ Eason

10 Replies

  • After applying RLS, users that are not in a defined role won't be able to render the report.

    The viewers or shared specific item are the users with the RLS filter applied.

    Admin, members or contributors will see everything in the report. Because they have edit permission they should be able to be aware of everything.

    I hope that helps,

  • Anonymous's avatar
    Anonymous
    Not applicable

    Thanks,

    I have given workspace access as viewer but the user is not able to see his own location . do I need to group all the users and provide viewer access?

    Please help me.

     

     

    Regards,

    Raghu

    • ibarrau's avatar
      ibarrau
      Icon for Super User rankSuper User

      If the user has viewer access but the report is not showing his own location (filter). It sounds like the rule for the RLS is wrong or you haven't assign the user to the correct role at Power Bi Service.

      I hope that helps,

      • Anonymous's avatar
        Anonymous
        Not applicable

        Thanks.

        i have applied roles on email - [Emails ] = USERPRINCIPALNAME() and applied proper relationship between roles tables and fact tables  even though user is not able to see his own lcoation as we have given viewer access.  please help me to apply RLS .

         

         

        Thanks,

        Raghu