Skip to main content
cancel
Showing results for 
Search instead for 
Did you mean: 

Enhance your career with this limited time 50% discount on Fabric and Power BI exams. Ends August 31st. Request your voucher.

Reply
steve_czv
Frequent Visitor

do I have to assign user the RLS role for dynamic security?

I implemented dynamic RLS security to allow user's access to data based on his/her user principal.  However, I found it very annoying that I need to configure the security on power bi service to assign each individual user the dynamic RLS role.  Without it, the user cannot access the report.

 

My question is, is there any way to avoid this role assignment?  I feel it is a unnecessary burden since the user's access will be determined based on his credentials already.

 

thanks

 

1 ACCEPTED SOLUTION
Anonymous
Not applicable

Hi  @steve_czv ,

You can try to create a group in the admin center to correspond to a role, put all users belonging to this role in this group, and set this group to role.

In this way, in a new report that uses dynamic RLS requirements, you can directly use group to set the role, instead of setting the user to the role one by one again.

https://docs.microsoft.com/en-us/power-bi/admin/service-admin-administering-power-bi-in-your-organiz...

vyangliumsft_0-1646702845795.png

 

Best Regards,

Liu Yang

If this post helps, then please consider Accept it as the solution to help the other members find it more quickly.

View solution in original post

3 REPLIES 3
Anonymous
Not applicable

Hi  @steve_czv ,

You can try to create a group in the admin center to correspond to a role, put all users belonging to this role in this group, and set this group to role.

In this way, in a new report that uses dynamic RLS requirements, you can directly use group to set the role, instead of setting the user to the role one by one again.

https://docs.microsoft.com/en-us/power-bi/admin/service-admin-administering-power-bi-in-your-organiz...

vyangliumsft_0-1646702845795.png

 

Best Regards,

Liu Yang

If this post helps, then please consider Accept it as the solution to help the other members find it more quickly.

blopez11
Super User
Super User

As @KNP mentions, each person or group does have to be assigned to a role.  I agree if there is only one role, then it seems redundant.  However, there are times when there are multiple roles, for example, one for admin folks who get to see everything, and others who need their data filtered

KNP
Super User
Super User

It is my understanding that you do have to assign each user (or group) to a role. I agree this is confusing and seems pointless when using UPN.

There is an idea somewhere on this issue, I'll see if I can find the link.

 

Edit (link to idea): https://ideas.powerbi.com/ideas/idea/?ideaid=27a0e121-51c0-4909-94c2-a1dc472a4a49 

Have I solved your problem?
Please click Accept as Solution so I don't keep coming back to this post, oh yeah, others may find it useful also ;).
chrome-9xf-Zagzel-B

If you found this post helpful, please give Kudos.
It gives me a sense of instant gratification and, if you give me Kudos enough times, magical unicorns will appear on your screen.
If you find my signature vaguely amusing, please give Kudos.
KIfp67uy-Sr
Proud to be a Super User!PBI-Super-User-Rank-30x30-1x

Helpful resources

Announcements
August Power BI Update Carousel

Power BI Monthly Update - August 2025

Check out the August 2025 Power BI update to learn about new features.

August 2025 community update carousel

Fabric Community Update - August 2025

Find out what's new and trending in the Fabric community.