Forum Discussion
RLS in Paginated Reports - User cannot view
- 7 years ago
Make sure you provide Build permission to the users for the underlying dataset - https://docs.microsoft.com/en-us/power-bi/paginated-reports-embedded-data-source
- 6 years ago
FYI, we're shipping this week the changes to permissions to align paginated reports with Power BI reports for all scenarios. Customers should no longer require "Build" permission when the items are in the same workspace or deployed in an app, and can use the new viewer role same as PBI reports can. This will show up in tenants later this week or over the weekend.
Thanks!
We can also reproduce this issue as of yesterday - we have a dataset (with RLS) and a paginated report connected to that dataset all in the same workspace. Both objects are included in the app and build permission is granted through the app. Workspace members and admins cannot reproduce the issue but app consumers are getting the "error communicating with Analysis Services" error.
I assumed that the build permission to the dataset granted through the app would be sufficient for provisioning access but sounds like that may not be the case? Do we need to explicitly grant the build permission for the user group outside of the permissions granted through the app?
Was this working before, and now is failing? Or was it not working before?
Also, are you giving users build/reshare permission who access this through the app?
- jochenj5 years agoAdvocate III
no, never worked. I initially added the paginated report to the pbi app and thought user will have automatic permissions on the paginated reports dataset. Target is to only add app-users and not NOT manage dataset permissions again/duplicated
I tested it again and can reproduce the behaviour:
- If the paginated reports (which uses dataset1) is added to app --> app-users have no permissions to access the report in the app
- If i add a "dummy" pbidesktop report (which uses dataset1) to the app and "hide" this report in navigation --> user has still no access to app-paginated report
- Only if i unhide the pbidesktop report in app-navigation new app users will get automatically the needed dataset permissions set to "App(Build)" or "App,Build" based on app-permissions-setting "app users can connect to the published report datasets..."
- chrisfin5 years agoPower BI Team
If you assign access to a user in the dataset directly through the workspace, and uncheck both boxes, you'll see they get "Read" permission. If they get this through the app, they get something just labelled "App" permission when you look at the dataset. I believe this is the issue - this is a change where they got Read either through the workspace or the app, so we're looking into this and will expedite a fix if this is the specific issue.
Chris
- klinejordan5 years agoAdvocate II
Not sure if it was working before to be honest, I'm not really on the team that owns the workspace I'm just relaying information as a tenant admin.
The users do get reshare and build permission to the dataset via the app. Here's a screenshot of the dataset permissions (with some sensitive information removed)
- jochenj5 years agoAdvocate III
klinejordan the questions here is if you have the same scenario. what's included in your app? Only the paginated report? Or also a pbidesktop report which uses the same dataset as the paginated report?
- klinejordan5 years agoAdvocate II
jochenj the source dataset for the Paginated Report also has a Power BI report in the same workspace that's included with the app.
chrisfin just created a support ticket for this if that helps - 120100824004145
Thanks!