Skip to main content
cancel
Showing results for 
Search instead for 
Did you mean: 

Register now to learn Fabric in free live sessions led by the best Microsoft experts. From Apr 16 to May 9, in English and Spanish.

Reply
JasonStinnett
Regular Visitor

RLS works when I add People, errors for AD Group

Hello,

I've created up a report using RLS. The filter is set up in desktop based on USERPRINCIPALNAME(). 

 

When I go into the service and add an individual person as a member of the role, everything works correctly.

 

If I remove that individual, and instead add the AD Group that they belong to as a member, then they are able to open the report but all visuals display the following error:

 

visual-contains-restricted-data.jpg

 

My goal is to use RLS to filter data at individual user level, without having to manage users one at a time for each and every data set. I found a number of forum posts that indicate adding groups as members solves this problem.

 

Is there perhaps some issue with the Azure AD group setup? My IT admin handled this step, and I wasn't able to find much documentation.

 

Thanks!

Jason

1 ACCEPTED SOLUTION
v-lid-msft
Community Support
Community Support

Hi @JasonStinnett ,

 

Could you please check what is kind of group in Azure AD you are trying to assign with the roles of RLS? Based on this documentYou can add a member to the role by typing in the email address, or name, of the user, security group or distribution list you want to add. You cannot add Groups created within Power BI

 

Based on my test, it works fine with the Serucity group created in Azure AD.

 

7.jpg8.jpg9.jpg10.jpg11.jpg

 


Best regards,

 

Community Support Team _ Dong Li
If this post helps, then please consider Accept it as the solution to help the other members find it more quickly.

View solution in original post

4 REPLIES 4
v-lid-msft
Community Support
Community Support

Hi @JasonStinnett ,

 

Could you please check what is kind of group in Azure AD you are trying to assign with the roles of RLS? Based on this documentYou can add a member to the role by typing in the email address, or name, of the user, security group or distribution list you want to add. You cannot add Groups created within Power BI

 

Based on my test, it works fine with the Serucity group created in Azure AD.

 

7.jpg8.jpg9.jpg10.jpg11.jpg

 


Best regards,

 

Community Support Team _ Dong Li
If this post helps, then please consider Accept it as the solution to help the other members find it more quickly.

Hi Dong Li @v-lid-msft ,

Appreciate your help. It was an issue with the security group setup.

 

What is the best way to add all users to a security group?

 

It works when we add individual users to the security group, but we'd like to give everyone access without having to add users one at a time.

Thanks,
Jason

Hi @JasonStinnett ,

 

Based on this document, We can Using Azure Active Directory (Azure AD) portal to add a large number of members to a group by using a comma-separated values (CSV) file to bulk import group members.

 

1.jpg

 


Best regards,

 

Community Support Team _ Dong Li
If this post helps, then please consider Accept it as the solution to help the other members find it more quickly.

That should work, thanks again for all your help Dong Li!

Helpful resources

Announcements
Microsoft Fabric Learn Together

Microsoft Fabric Learn Together

Covering the world! 9:00-10:30 AM Sydney, 4:00-5:30 PM CET (Paris/Berlin), 7:00-8:30 PM Mexico City

PBI_APRIL_CAROUSEL1

Power BI Monthly Update - April 2024

Check out the April 2024 Power BI update to learn about new features.

April Fabric Community Update

Fabric Community Update - April 2024

Find out what's new and trending in the Fabric Community.

Top Solution Authors
Top Kudoed Authors