Skip to main content
cancel
Showing results for 
Search instead for 
Did you mean: 

Earn the coveted Fabric Analytics Engineer certification. 100% off your exam for a limited time only!

Reply
xhurit
Frequent Visitor

One person in multiple roles RLS

Hi,

 

I have my dataset configured for RLS and I created 2 groups - ALL and RLS.

 

Group ALL was created for people that should see all of the data.

Group RLS has traditional function as [USERNAME] = USERPRINCIPALNAME() and works fine.

 

The problem is that I have one manager which is assigned to group ALL but he is also a member of mail alias which is assigned to group RLS. 

 

Therefore Power BI automatically determines the most strict role when he opens the dashboard and it limits the data. How can I force Power BI to choose ALL group just for this one guy?

 

Regards

1 ACCEPTED SOLUTION
v-jayw-msft
Community Support
Community Support

Hi @xhurit ,

 

Try modifying Group RLS as [USERNAME] = USERPRINCIPALNAME()&&USERPRINCIPALNAME()<>"the manager"

 

Best Regards,

Jay

 

Community Support Team _ Jay
If this post helps, then please consider Accept it as the solution
to help the other members find it.

View solution in original post

3 REPLIES 3
v-jayw-msft
Community Support
Community Support

Hi @xhurit ,

 

Try modifying Group RLS as [USERNAME] = USERPRINCIPALNAME()&&USERPRINCIPALNAME()<>"the manager"

 

Best Regards,

Jay

 

Community Support Team _ Jay
If this post helps, then please consider Accept it as the solution
to help the other members find it.
GilbertQ
Super User
Super User

Hi @xhurit 

 

Why would you want them in both if they can see everything?

 

I would just have the under in the everything group and they can then filter the data they need to see.





Did I answer your question? Mark my post as a solution!

Proud to be a Super User!







Power BI Blog

ibarrau
Super User
Super User

Hi. I don't think you can do that. That's Power Bi default behaviour.  If you can't remove him from that group and this is a unique case that won't be repeated, you can add a hardcode rule for RLS with an IF.

IF ( [USERNAME] <> uniquecase@company.com; [USERNAME] = USERPRINCIPALNAME() )

You can play with the rule. However the recommendation would be removing the person from RLS group because it should see ALL.

I hope that helps,


If this post helps, then please consider Accept it as the solution to help the other members find it more quickly.

Happy to help!

LaDataWeb Blog

Helpful resources

Announcements
April AMA free

Microsoft Fabric AMA Livestream

Join us Tuesday, April 09, 9:00 – 10:00 AM PST for a live, expert-led Q&A session on all things Microsoft Fabric!

March Fabric Community Update

Fabric Community Update - March 2024

Find out what's new and trending in the Fabric Community.

Top Solution Authors
Top Kudoed Authors