Forum Discussion
Dynamic Role Based Security Users show no data
Hi DebbieE
I have worked on your previous post.
Please check my test.
1.i add "ljj" and "dale" in my "User" table and set RLS as the previous post shown
2.
i publish this report to an App worksapce where i'm the owner. i'm "ljj".
then i add "ljj" and "dale" in the "new role".
3.publish dataset and reports of this App worksapce as an App to "My organization".
note, "ljj" and "dale" are in the same organization.
(1) when my app workspace is "members can edit contents", i add "dale" as a member of my app workspace.
"dale" log in power bi service and install the app, open the RLS report in the app, he can see all data as "ljj" does.
(2)when my app workspace is "members can edit contents", "dale" isn't a member of my app workspace.
"dale" log in power bi service and install the app, open the RLS report in the app, he can see his own data.
(3)when my app workspace is "members can view contents", i add "dale" as a member of my app workspace.
"dale" log in power bi service and install the app, open the RLS report in the app, he can see his own data.
(4) "cherry" is in the same organization with "ljj" and "dale", he is not a member of my app worksapce, he isn't added in the "User" table, he isn't added in the "new role" page,
"cherry" log in power bi service and install the app, open the RLS report in the app, he can't see any data.
Best Regards
Maggie
Community Support Team _ Maggie Li
If this post helps, then please consider Accept it as the solution to help the other members find it more quickly.
Still not working Im afraid and more confused than ever.....
1.i add "ljj" and "dale" in my "User" table and set RLS as the previous post shown
As before I have 2 users in DimEmployee
2.i publish this report to an App worksapce where i'm the owner. i'm "ljj".
then i add "ljj" and "dale" in the "new role".
As Before, My report gets published to the App workspace. I go to Dataset Security and ensure all the users are added here.
3.publish dataset and reports of this App worksapce as an App to "My organization".
note, "ljj" and "dale" are in the same organization.
This is where I differ to these instructions. My Permissions were set to Specific Individuals or Group because I didn’t want to give the entire Organisation access.
I’ve changed for the time being just to do the test but I only want to Use Specific Individuals or Group
(1) when my app workspace is "members can edit contents", i add "dale" as a member of my app workspace.
"dale" log in power bi service and install the app, open the RLS report in the app, he can see all data as "ljj" does.
Here is where I’m really starting to get confused. Gone back to the App Workspace and gone to Access. I’ve added the other users to the App workspace as members (I’m already in as Admin)
But why do I need to add them in the App workspace AND in the app?
Also at this point when I test against the user. Test as role the user cant see any data as before
(2)when my app workspace is "members can edit contents", "dale" isn't a member of my app workspace.
"dale" log in power bi service and install the app, open the RLS report in the app, he can see his own data.
I don’t understand the above
(3)when my app workspace is "members can view contents", i add "dale" as a member of my app workspace.
"dale" log in power bi service and install the app, open the RLS report in the app, he can see his own data.
I don’t understand the above
(4) "cherry" is in the same organization with "ljj" and "dale", he is not a member of my app worksapce, he isn't added in the "User" table, he isn't added in the "new role" page,
"cherry" log in power bi service and install the app, open the RLS report in the app, he can't see any data.
This makes sense.
So basically the above hasn’t changed anything.
I have also been and asked my user to check for me. They donwloaded the app. But the data is restricted, even though they arein the table and have access to the app. If they go into the Workspace, go to Security against the dataset and test as user they just done see any data at all.
Im finding this very confusing. Surely if I test as user I should see what I need to see. Also Why should the users be added to the App and the App workspace? Basically, my users cant see any data
- v-juanli-msft7 years agoCommunity Support
Hi DebbieE
If the user just need to view the report, you don't need to add users as members of your App workspace.
Assume a scenario as below, i would list the correct steps.
scenario:
all users i share the App with are listed in my "User" table.
Steps:
1.Configure RLS correctly both in Power BI Desktop and Service.
2.publish the App to the specific group where your users are included.
Best Regards
Maggie
- DebbieE7 years agoCommunity Champion
If the user just need to view the report, you don't need to add users as members of your App workspace.
As I thought. I got confused at your guide but that makes sense
Assume a scenario as below, i would list the correct steps.
scenario: all users i share the App with are listed in my "User" table. (As Before)
Steps:
1.Configure RLS correctly both in Power BI Desktop and Service. (As before)
2.publish the App to the specific group where your users are included. (As before)
I have already done those steps and its just not working. Ive even tried a really basic test and it doesnt work. I think I may have hit a brick wall on this one
- v-juanli-msft7 years agoCommunity Support
Hi DebbieE
If you have a pro license, you could open a ticket here, then you will get a quickly response from MS.
https://powerbi.microsoft.com/en-us/support/
Sorry for not helping you effectively.
Best Regards
Maggie
- v-juanli-msft7 years agoCommunity Support
Hi DebbieE
Please go to Dataset->select the "dataset name"->manage permission, chheck if the users are listed there.
In my test, when i share my App to all organization, it shows in the "permission" list of my dataset called "RLS"
Best Regards
Maggie