<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Row-Level Security Not Working in Published Databricks AI/BI Dashboard in Warehousing &amp; Analytics</title>
    <link>https://community.databricks.com/t5/warehousing-analytics/row-level-security-not-working-in-published-databricks-ai-bi/m-p/111776#M1924</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.databricks.com/t5/user/viewprofilepage/user-id/88335"&gt;@Akshay_Petkar&lt;/a&gt;&amp;nbsp;, which credential mode did you use to publish the dashboard?&lt;/P&gt;
&lt;P&gt;In order to make access control work based on the viewer's credential, "Don't embed credentials" mode should be used. If you published the dashboard with "Embed credentials", then all viewers will access underlying tables behind the dashboard using the embedded credential, which may have access privileges more than you expected.&lt;/P&gt;
&lt;P&gt;Please check this documentation page for details. &lt;A href="https://docs.databricks.com/aws/en/dashboards/#publish-a-dashboard" target="_blank"&gt;https://docs.databricks.com/aws/en/dashboards/#publish-a-dashboard&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 05 Mar 2025 03:55:41 GMT</pubDate>
    <dc:creator>koji_kawamura</dc:creator>
    <dc:date>2025-03-05T03:55:41Z</dc:date>
    <item>
      <title>Row-Level Security Not Working in Published Databricks AI/BI Dashboard</title>
      <link>https://community.databricks.com/t5/warehousing-analytics/row-level-security-not-working-in-published-databricks-ai-bi/m-p/111650#M1917</link>
      <description>&lt;P&gt;&lt;SPAN&gt;I have applied row-level security (RLS) on the &lt;STRONG&gt;department&amp;nbsp;&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;SPAN&gt;column in the table so that users can only see data related to their own department. The security policy works perfectly when I query the table in Databricks SQL.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Now, I have built a &lt;/SPAN&gt;&lt;SPAN&gt;&lt;STRONG&gt;Databricks AI BI dashboard&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;SPAN&gt; using this table and published it. However, when I provide access to users from a specific department, they are able to see all department data instead of just their own.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Interestingly, when I check the dashboard in &lt;/SPAN&gt;&lt;SPAN&gt;&lt;STRONG&gt;draft mode&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;SPAN&gt;, the RLS is applied correctly, and users only see their department’s data. But when the dashboard is &lt;/SPAN&gt;&lt;SPAN&gt;&lt;STRONG&gt;published&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;SPAN&gt;,&lt;/SPAN&gt;&lt;SPAN&gt;it seems that the row-level security is not being enforced because users are able to see all departments in the dashboard.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Has anyone faced a similar issue?&amp;nbsp; Any insights or suggestions would be highly appreciated!&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 04 Mar 2025 05:18:36 GMT</pubDate>
      <guid>https://community.databricks.com/t5/warehousing-analytics/row-level-security-not-working-in-published-databricks-ai-bi/m-p/111650#M1917</guid>
      <dc:creator>Akshay_Petkar</dc:creator>
      <dc:date>2025-03-04T05:18:36Z</dc:date>
    </item>
    <item>
      <title>Re: Row-Level Security Not Working in Published Databricks AI/BI Dashboard</title>
      <link>https://community.databricks.com/t5/warehousing-analytics/row-level-security-not-working-in-published-databricks-ai-bi/m-p/111776#M1924</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.databricks.com/t5/user/viewprofilepage/user-id/88335"&gt;@Akshay_Petkar&lt;/a&gt;&amp;nbsp;, which credential mode did you use to publish the dashboard?&lt;/P&gt;
&lt;P&gt;In order to make access control work based on the viewer's credential, "Don't embed credentials" mode should be used. If you published the dashboard with "Embed credentials", then all viewers will access underlying tables behind the dashboard using the embedded credential, which may have access privileges more than you expected.&lt;/P&gt;
&lt;P&gt;Please check this documentation page for details. &lt;A href="https://docs.databricks.com/aws/en/dashboards/#publish-a-dashboard" target="_blank"&gt;https://docs.databricks.com/aws/en/dashboards/#publish-a-dashboard&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 05 Mar 2025 03:55:41 GMT</pubDate>
      <guid>https://community.databricks.com/t5/warehousing-analytics/row-level-security-not-working-in-published-databricks-ai-bi/m-p/111776#M1924</guid>
      <dc:creator>koji_kawamura</dc:creator>
      <dc:date>2025-03-05T03:55:41Z</dc:date>
    </item>
    <item>
      <title>Re: Row-Level Security Not Working in Published Databricks AI/BI Dashboard</title>
      <link>https://community.databricks.com/t5/warehousing-analytics/row-level-security-not-working-in-published-databricks-ai-bi/m-p/111784#M1926</link>
      <description>&lt;P&gt;Forgot to attach a screenshot. You can select whether to embed a credential when you publish a dashboard like this.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="koji_kawamura_0-1741151747180.png" style="width: 400px;"&gt;&lt;img src="https://community.databricks.com/t5/image/serverpage/image-id/15234i12529FEAD374E0BF/image-size/medium?v=v2&amp;amp;px=400" role="button" title="koji_kawamura_0-1741151747180.png" alt="koji_kawamura_0-1741151747180.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 05 Mar 2025 05:16:34 GMT</pubDate>
      <guid>https://community.databricks.com/t5/warehousing-analytics/row-level-security-not-working-in-published-databricks-ai-bi/m-p/111784#M1926</guid>
      <dc:creator>koji_kawamura</dc:creator>
      <dc:date>2025-03-05T05:16:34Z</dc:date>
    </item>
  </channel>
</rss>

