locked
Roles not working with AD users RRS feed

  • Question

  • Hi

    I want to give access of SSAS cube to particular set of users only.

    For that, I have created a role, Role1 and assigned AD users, User1 & User2 in it. In DataDimension of Role1, I have written

    { (StrToMember("[Client].[Company Name].&[ABC]")) }

    Now In PerformancePoint Dashboard (or in sharepoint site), I have mentioned Role as Role1. But when I login as User1/User2 or with any other user, User3, it always displays the same data.

    The data is filtered by "ABC Company" but not by users.

    Any clue for this...


    Amit Paul Singh

    Thursday, October 20, 2011 3:09 PM

Answers

  • Resolved with implementing Kerberos Authentication.

    Amit Paul Singh

    Tuesday, February 7, 2012 11:27 AM

All replies

  • That is because PerformancePoint is sending the role to Analysis services rather than the user, so no matter which user you connect with Role1 would be passed on.

    Here is an article that would help you in what you looking for:

    PPS Data Connection Security with CustomData


    http://dailyitsolutions.blogspot.com/
    Thursday, October 20, 2011 3:33 PM
  • The article shows that users are in database. But in my case, users are in AD. It seems, I need to implement Kerberos Authentication.

    Thanks


    Amit Paul Singh
    Friday, October 21, 2011 10:21 AM
  • The article shows that users are in database. But in my case, users are in AD. It seems, I need to implement Kerberos Authentication.

    Hi Admit,

    You can enable SQL trace to check the user role to look at the permissions. For the "Existing Session" eventclass, the TextData column shows its related roles.

    thanks,
    Jerry

    Monday, October 24, 2011 9:36 AM
  • Resolved with implementing Kerberos Authentication.

    Amit Paul Singh

    Tuesday, February 7, 2012 11:27 AM