Forum Discussion
Row level security - Access Denied - Users / AD Group already added to Security in the Service
Hi KarenL7,
Can you check to see if in the Entra Admin Center you can see the newly added users?
Till than you can have it tested as,
1) Add the Direct UPN/Email in the RLS instead adding group and test the Report by role. From Dataset
2) Please ensure you added the correct DAX for the RLS. It should something like,
[UserEmail] = USERPRINCIPALNAME()
3) Users were added in the correct group not the others.
4) The errror you are facing is on the App? If yes App has been published after the RLS were updated?
Also, if you can provide the used DAX It will help to check more.
https://learn.microsoft.com/en-us/fabric/security/service-admin-row-level-security
I hope this helps, please consider as an accepted solution if helps or give some kudos. Also, let me know your outcome from the options mentioned!
Thanks for coming back to me.
1. I can confirm that the users are accessing the report via a workspace app.
2. I have checked the group in AD - the users have been correctly added.
3. Yes the app was published before these users were added
With this last point in mind - I will check and update the app and ask them to check again, as this may be a sync issue? I may even readd the group to security to update this - before I update the app.
I cannot really check much DAX as it not my report - but I will try the other solutions first and come back
Thanks
Karen
- Lodha_Jaydeep3 months ago
Solution Sage
Hi KarenL7,
Thannks for reply, As you mentioned it's not the case as I mentioned then it might be sync issue. Can you ask them to hard refresh the browser page (Ctrl+Shift+R) and check to see if report loads.