Forum Discussion
Create or modify warehouse items - can do with Contributor role
- 1 year ago
Hi, Aleh_P,
With the permission "Create or modify warehouse items." one is allowed to create and modify a warehouse which is the container. This is only possible whe you are Admin or Member at workspace level.
When referring to creating or modifying warehouse items which are inside the warehouse container, you should at least have Contributor permissions at workspace level (Data warehouse security) or at the warehouse item level.
With kind regards,
Didier (Belgium)
Hi Aleh_P
This can also depend what the permissions are on the Warehouse.
For the same user what permissions do they have in the Warehouse?
Hi GilbertQ
There are no any permissions on Warehouse for this user.
I want to understand does Contributor workspace role enough to work with Warehouse reagardless documentation said you need t obe memeber or admin.
I have created brand new workspace and assign Contributor role to test user. Then go and using this test uer created warehouse and tables. I do not apply andy T-SQL and internal scecurity.
Morover I think it is not relevant to Warehouse SQL security at all, because we are talking about workspace level roles and permissions to "Create or modify warehouse items". Warehouse items in MS Fabric is Warehouse object.
In fact it looks either mistake/wrong text ("Create or modify warehouse items") in the security page or some BIG security flaw.
- GilbertQ1 year ago
Super User
Hi Aleh_P
Based on the documentation in the link below it appears that the contributor can read and write.Roles in workspaces in Microsoft Fabric - Microsoft Fabric | Microsoft Learn
If you want a user to have less permissions I would remove him from the App Workspace Roles and grant them permissions in the Warehouse ONLY.
- pallavi_r1 year ago
Super User
Hi Aleh_P ,
Contributor role is the minimum access we can provide to any user for collaborating (read and write access) to all the items inside a workspace.
https://learn.microsoft.com/en-us/fabric/data-warehouse/share-warehouse-manage-permissions
https://learn.microsoft.com/en-us/fabric/security/permission-model
Thanks,
Pallavi