Skip to main content
cancel
Showing results for 
Search instead for 
Did you mean: 

The Power BI Data Visualization World Championships is back! Get ahead of the game and start preparing now! Learn more

Reply
DebbieE
Community Champion
Community Champion

Dynamic Level Security - Confusing with the process

Im currently working on Dynamic Security.

 

It all makes sense in desktop. You go to Security - Manage roles

and against the table with your email address in it create for example [EmailAddress] = USERPRINCIPALNAME()

 

All great because you only need to set one rule up

 

However when you publish into Service, You need to go to settings - Security and then basically, individually add every email into members.

 

This is obviously very time consuming, especially when you have hundreds of users and people are leaving and joining all the time.

 

I thought dynamic security was supposed to stop you having to individually add email addresses?

1 ACCEPTED SOLUTION
v-easonf-msft
Community Support
Community Support

Hi , @DebbieE 

I  think you don't need to  to individually add email addresses .       

As mentioned in the document ,"You can add a member to the role by typing in the email address, or name, of the user, security group or distribution list you want to add. You cannot add Groups created within Power BI. You can add members external to your organization."

So it is suggest to  create an AD security group  contain the users you need and apply that in the role your created.

 

Best Regards,
Community Support Team _ Eason

View solution in original post

2 REPLIES 2
v-easonf-msft
Community Support
Community Support

Hi , @DebbieE 

I  think you don't need to  to individually add email addresses .       

As mentioned in the document ,"You can add a member to the role by typing in the email address, or name, of the user, security group or distribution list you want to add. You cannot add Groups created within Power BI. You can add members external to your organization."

So it is suggest to  create an AD security group  contain the users you need and apply that in the role your created.

 

Best Regards,
Community Support Team _ Eason

Perfect,

 

Thank you I will add that into my best practice guidance for this one.

 

One more quick thing on this. If you do add a group, can you still test as role with the individual email addresses within that group?

Testasrole.JPG

Helpful resources

Announcements
Power BI DataViz World Championships

Power BI Dataviz World Championships

The Power BI Data Visualization World Championships is back! Get ahead of the game and start preparing now!

December 2025 Power BI Update Carousel

Power BI Monthly Update - December 2025

Check out the December 2025 Power BI Holiday Recap!

FabCon Atlanta 2026 carousel

FabCon Atlanta 2026

Join us at FabCon Atlanta, March 16-20, for the ultimate Fabric, Power BI, AI and SQL community-led event. Save $200 with code FABCOMM.