Join us at FabCon Atlanta from March 16 - 20, 2026, for the ultimate Fabric, Power BI, AI and SQL community-led event. Save $200 with code FABCOMM.
Register now!The Power BI Data Visualization World Championships is back! Get ahead of the game and start preparing now! Learn more
Hi,
We've set dynamic RLS in one of our premium spaces, the idea is to share it with external collaborators registered in our azure aad.
The report:
The RLS is working because previously to being added to a group in security settings they cant see anything with a warning about rls being applied.
But here is the problem, once the external user is added to the RLS group with the Dax RLS filter (user = Principalusername) they can see everything in the report, as if there was no filter.
This only happens with external users, as with the users that have an internal email address they can only see the stores they are assigned to in the users table. Also, none of the users is an admin or have share permissions in the premium space.
Same dataset, RLS filter and structure but with a different outcome between internal and external accounts, any help? Thanks
Solved! Go to Solution.
Hi @J_Mug
Can you make sure that the Security Group is not part of any other RLS roles?
And also make sure that the Security Group is not part of any roles in the App Workspace?
Hi @J_Mug
Can you make sure that the Security Group is not part of any other RLS roles?
And also make sure that the Security Group is not part of any roles in the App Workspace?
It is not part of any other rls role as i create them independently, so no collisions there-
I checked and the had viewer permission in the workspace, I'll try and change that to see if it works
Thanks!
The Power BI Data Visualization World Championships is back! Get ahead of the game and start preparing now!