06-18-2018 06:46 AM
I'm trying to have RLS work with Azure AD groups. I'm using PBI with live connection to Azure SSAS tabular.
The closest pattern I've found so far is this: https://docs.microsoft.com/nb-no/power-bi/desktop-tutorial-row-level-security-onprem-ssas-tabular
I have people in my organization that should be assigned to different groups in AD so that their membership can be administrated through AD and not some table in my data warehouse. I want to use RLS on a group level, not an individual basis.
The basic example above involves calling the USERNAME() function in DAX, but what I think I need is the ability to know if the current user is a group member. I can't really find a DAX function for this, so how can this be accomplished?
06-18-2018 07:40 AM
You can use security groups assigned to roles within Power BI as per the documentation here:
However, you still need to tie roles to some DAX table rule.
Did I answer your question? Mark my post as a solution!
Proud to be a Datanaut!
06-19-2018 11:21 PM
The Live connection is a little different that almost all the actions are processed in the SSAS server. I'm afraid it could be hard to add Azure AD groups. Maybe you can create an idea here.
If this post helps, then please consider Accept it as the solution to help the other members find it more quickly.