Forum Discussion

Anonymous's avatar
Anonymous
Not applicable
5 years ago
Solved

RLS (row level security ) app

Hi, 

 

I have made RLS for departments, so some users can only see specific departments.

I wonder if users who are not included/defined in the RLS, but have access/permission to the APP (only app permission not workspace access), can see all the data in the report?

I have a case that a user who is not defined in RLS gets the message visuals containing restricted data.

 




  • It depends.  It depends on how you implemented RLS. It depends on where RLS is applied in the data model, and what the rules are.

     

     

    In your case RLS seems to cover the entire data model which leads to the sub-optimal user experience for the non-RLS user.

3 Replies

  • It depends.  It depends on how you implemented RLS. It depends on where RLS is applied in the data model, and what the rules are.

     

     

    In your case RLS seems to cover the entire data model which leads to the sub-optimal user experience for the non-RLS user.

    • Anonymous's avatar
      Anonymous
      Not applicable

      Thanks for the answer: under the following assumptions, how can I test what the final experience will look like?

       

      - RLS specified in the data set

      - One or more reports in the same workspace, sharing a common dataset

      - Premium by capacity workspace

      - Published app

      - Users added to the app and not directly to the workspace

      • lbendlin's avatar
        lbendlin
        Super User

        In the workspace, select dataset security , then the ellipsis next to a role and "test as role" .

         

        Or have  a real user access the app and show you what they can see and what they cannot see.