Forum Discussion

Anonymous's avatar
Anonymous
Not applicable
9 years ago
Solved

row level security - for many users


Hi,

 

Is there a way to set up access rights for many users at once or authomatically?
Im looking for some way how to manage access rights to big dataset, based on row level security.


I have group of 100 users and 3 level hierarchy of access rights (country level > division level > team level)
So far, I have created some roles manualy (just for testing), but I need some solution applicable to larger user groups and easily managable.

 

So I'm looking for some way how to connect security to some sort of datasource, which would contain information about access rights.

 

Thank you,

Zuzana

 

  • Hi Anonymous,

     

    I got your situation and tried to describe it as Dynamic RLS (row level security) with Power BI This is just one approach to achieve what we are calling dynamic data permission, so please feel free to reference and apply.

     

    If this works for you please accept it as solution and also like to give KUDOS.

    Best regards
    Tri Nguyen

8 Replies

  • dilumd's avatar
    dilumd
    Impactful Individual

    Hi,

     

    I think you should create only 3 user groups (i.e. country level > division level > team level) in power BI desktop and then you can add multiple users under security (datasets) in power BI service.

     

    • Anonymous's avatar
      Anonymous
      Not applicable

      Can we make this user adding part dynamic?

      • GilbertQ's avatar
        GilbertQ
        Super User
        Hi there,

        Yes that can be done as long as the users are part of an Active Directory or Azure Active Directory Security Group
  • Hi Anonymous

     

    Would your users be part of an Active Directory Group?

    • Anonymous's avatar
      Anonymous
      Not applicable

      Hi GilbertQ

       

      yes, they are in active directory.  The information about country/division/team is held in internal app, so there may be posibility to get this to active directory, but I'm not sure how can PBI Service work with this..

       

      Thanks,

      Zuzana

      • GilbertQ's avatar
        GilbertQ
        Super User

        Hi Anonymous

         

        If you could get it from your External App that would be best, but it would need to map to the UPN (User Principal Name) in Azure.


        There is a connector to Active Directory in Power BI Desktop.