diff --git a/.openpublishing.redirection.json b/.openpublishing.redirection.json index 94630a7bbf..ec3ef4ac89 100644 --- a/.openpublishing.redirection.json +++ b/.openpublishing.redirection.json @@ -5037,7 +5037,7 @@ }, { "source_path": "powerbi-docs/admin/service-security-dlp-policies-for-power-bi.md", - "redirect_url": "/power-bi/enterprise/service-security-dlp-policies-for-power-bi", + "redirect_url": "/fabric/governance/data-loss-prevention-overview", "redirect_document_id": false }, { @@ -5443,13 +5443,28 @@ }, { "source_path": "powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi.md", - "redirect_url": "/power-bi/enterprise/service-security-dlp-policies-for-power-bi-overview", - "redirect_document_id": true + "redirect_url": "/fabric/governance/data-loss-prevention-overview", + "redirect_document_id": false }, { "source_path": "powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-override.md", - "redirect_url": "/power-bi/enterprise/service-security-dlp-policies-for-power-bi-respond", - "redirect_document_id": true + "redirect_url": "/fabric/governance/data-loss-prevention-respond", + "redirect_document_id": false + }, + { + "source_path": "powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-overview.md", + "redirect_url": "/fabric/governance/data-loss-prevention-overview", + "redirect_document_id": false + }, + { + "source_path": "powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-configure.md", + "redirect_url": "/fabric/governance/data-loss-prevention-configure", + "redirect_document_id": false + }, + { + "source_path": "powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-respond.md", + "redirect_url": "/fabric/governance/data-loss-prevention-respond", + "redirect_document_id": false }, { "source_path": "powerbi-docs/transform-model/log-analytics/install-as-engine-app.md", diff --git a/powerbi-docs/connect-data/media/service-gateway-enterprise-manage-sql/privacy-level-sql.png b/powerbi-docs/connect-data/media/service-gateway-enterprise-manage-sql/privacy-level-sql.png index 659b7b3a17..9979e45189 100644 Binary files a/powerbi-docs/connect-data/media/service-gateway-enterprise-manage-sql/privacy-level-sql.png and b/powerbi-docs/connect-data/media/service-gateway-enterprise-manage-sql/privacy-level-sql.png differ diff --git a/powerbi-docs/connect-data/media/service-gateway-enterprise-manage-ssas/replace-with-rule.png b/powerbi-docs/connect-data/media/service-gateway-enterprise-manage-ssas/replace-with-rule.png deleted file mode 100644 index a46b75497e..0000000000 Binary files a/powerbi-docs/connect-data/media/service-gateway-enterprise-manage-ssas/replace-with-rule.png and /dev/null differ diff --git a/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-bw-commoncryptolib/authenticated-users.png b/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-bw-commoncryptolib/authenticated-users.png index db88383e78..548bca6cb4 100644 Binary files a/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-bw-commoncryptolib/authenticated-users.png and b/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-bw-commoncryptolib/authenticated-users.png differ diff --git a/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-01.png b/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-01.png index 4f66d2af69..f2cf7405ee 100644 Binary files a/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-01.png and b/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-01.png differ diff --git a/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-09.png b/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-09.png deleted file mode 100644 index 31eca96acc..0000000000 Binary files a/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-09.png and /dev/null differ diff --git a/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-092.png b/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-092.png new file mode 100644 index 0000000000..f2cf7405ee Binary files /dev/null and b/powerbi-docs/connect-data/media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-092.png differ diff --git a/powerbi-docs/connect-data/service-gateway-enterprise-manage-ssas.md b/powerbi-docs/connect-data/service-gateway-enterprise-manage-ssas.md index fbbdb7c6ed..ea57740fb4 100644 --- a/powerbi-docs/connect-data/service-gateway-enterprise-manage-ssas.md +++ b/powerbi-docs/connect-data/service-gateway-enterprise-manage-ssas.md @@ -7,18 +7,19 @@ ms.reviewer: '' ms.service: powerbi ms.subservice: powerbi-gateways ms.topic: how-to -ms.date: 02/15/2023 +ms.date: 09/23/2024 ms.custom: video-removed, video-removed LocalizationGroup: Gateways +#customer intent: As a Power BI user I want to learn how to manage SQL Server Analysis services for the on-premisis gateway. --- # Manage SQL Server Analysis Services data sources -[!INCLUDE [gateway-rewrite](../includes/gateway-rewrite.md)] - After you [install an on-premises data gateway](/data-integration/gateway/service-gateway-install), you can [add data sources](service-gateway-data-sources.md#add-a-data-source) to use with the gateway. This article describes how to add a SQL Server Analysis Services (SSAS) data source to your on-premises gateway to use for scheduled refresh or for live connections. To learn more about how to set up a live connection to SSAS, watch this [Power BI Walkthrough: Analysis Services Live Connect](https://www.youtube.com/watch?v=GPf0YS-Xbyo&feature=youtu.be) video. +[!INCLUDE [gateway-rewrite](../includes/gateway-rewrite.md)] + > [!NOTE] > If you have an Analysis Services data source, you need to install the gateway on a computer joined to the same forest or domain as your Analysis Services server. @@ -89,10 +90,6 @@ To do manual UPN mapping, follow these steps: :::image type="content" source="media/service-gateway-enterprise-manage-ssas/add-new-rules.png" alt-text="Screenshot of Add new rule in the Map user names box."::: - For example: - - :::image type="content" source="media/service-gateway-enterprise-manage-ssas/replace-with-rule.png" alt-text="Screenshot of example mapping rules." ::: - > [!NOTE] > Be sure not to change users that you don't intend to change. For example, if you replace the **Original name** of `contoso.com` with a **New name** of `@contoso.local`, all user sign-ins that contain `@contoso.com` are replaced with `@contoso.local`. Also, if you replace an **Original name** of `meganb@contoso.com` with a **New name** of `meganb@contoso.local`, a sign-in of `v-meganb@contoso.com` is sent as `v-meganb@contoso.local`. diff --git a/powerbi-docs/connect-data/service-gateway-sso-kerberos-sap-bw-commoncryptolib.md b/powerbi-docs/connect-data/service-gateway-sso-kerberos-sap-bw-commoncryptolib.md index bf1e4a8157..223be9b0d1 100644 --- a/powerbi-docs/connect-data/service-gateway-sso-kerberos-sap-bw-commoncryptolib.md +++ b/powerbi-docs/connect-data/service-gateway-sso-kerberos-sap-bw-commoncryptolib.md @@ -30,15 +30,15 @@ This article describes how to configure your SAP BW data source to enable SSO fr For more information on setup steps, see [SAP Single Sign-On: Authenticate with Kerberos/SPNEGO](https://blogs.sap.com/2017/07/27/sap-single-sign-on-authenticate-with-kerberosspnego/). Your BW server should use CommonCryptoLib as its SNC Library and have an SNC name that starts with *CN=*, such as *CN=BW1*. For more information on SNC name requirements (specifically, the snc/identity/as parameter), see [SNC Parameters for Kerberos Configuration](https://help.sap.com/viewer/df185fd53bb645b1bd99284ee4e4a750/3.0/360534094511490d91b9589d20abb49a.html). -1. If you haven't already done so, install the x64-version of the [SAP .NET Connector](https://support.sap.com/en/product/connectors/msnet.html) on the computer the gateway has been installed on. - +1. If you haven't already done so, install the x64-version of the [SAP .NET Connector](https://support.sap.com/en/product/connectors/msnet.html) on the computer the gateway has been installed on. + You can check whether the component has been installed by attempting to connect to your BW server in Power BI Desktop from the gateway computer. If you can't connect by using the 2.0 implementation, the .NET Connector isn't installed or hasn't been installed to the GAC. -1. Ensure that SAP Secure Login Client (SLC) isn't running on the computer the gateway is installed on. +1. Ensure that SAP Secure Login Client (SLC) isn't running on the computer the gateway is installed on. - SLC caches Kerberos tickets in a way that can interfere with the gateway's ability to use Kerberos for SSO. + SLC caches Kerberos tickets in a way that can interfere with the gateway's ability to use Kerberos for SSO. -1. If SLC is installed, uninstall it or make sure you exit SAP Secure Login Client. Right-click the icon in the system tray and select **Log Out** and **Exit** before you attempt an SSO connection by using the gateway. +1. If SLC is installed, uninstall it or make sure you exit SAP Secure Login Client. Right-click the icon in the system tray and select **Log Out** and **Exit** before you attempt an SSO connection by using the gateway. SLC isn't supported for use on Windows Server machines. For more information, see [SAP Note 2780475](https://launchpad.support.sap.com/#/notes/2780475) (s-user required). @@ -65,11 +65,11 @@ This article describes how to configure your SAP BW data source to enable SSO fr - Choose **SAP Business Warehouse** as the **Data Source Type** if you want to create an SSO connection to a BW Application Server. - Select **Sap Business Warehouse Message Server** if you want to create an SSO connection to a BW Message Server. -1. For **SNC Library**, select either the **SNC\_LIB** or **SNC\_LIB\_64** environment variable, or **Custom**. +1. For **SNC Library**, select either the **SNC\_LIB** or **SNC\_LIB\_64** environment variable, or **Custom**. - If you select **SNC\_LIB**, you must set the value of the **SNC\_LIB\_64** environment variable on the gateway machine to the absolute path of the 64-bit copy of sapcrypto.dll on the gateway machine. For example, *C:\Users\Test\Desktop\sapcrypto.dll*. - - If you choose **Custom**, paste the absolute path to *sapcrypto.dll* into the Custom SNC Library Path field that appears on the **Manage gateways** page. + - If you choose **Custom**, paste the absolute path to *sapcrypto.dll* into the Custom SNC Library Path field that appears on the **Manage gateways** page. 1. For **SNC Partner Name**, enter the SNC Name of the BW server. Under **Advanced settings**, ensure that **Use SSO via Kerberos for DirectQuery queries** is checked. Fill in the other fields as if you were establishing a Windows Authentication connection from PBI Desktop. @@ -99,7 +99,7 @@ If you're unable to refresh the report in the Power BI service, you can use gate ### CPIC tracing -1. To enable CPIC tracing, set two environment variables: **CPIC\_TRACE** and **CPIC\_TRACE\_DIR**. +1. To enable CPIC tracing, set two environment variables: **CPIC\_TRACE** and **CPIC\_TRACE\_DIR**. The first variable sets the trace level and the second variable sets the trace file directory. The directory must be a location that members of the Authenticated Users group can write to. @@ -160,7 +160,7 @@ If you're unable to refresh the report in the Power BI service, you can use gate ccl/trace/directory=:\logs\sectrace ``` -2. Change the `ccl/trace/directory` option to a location to which members of the Authenticated Users group can write. +2. Change the `ccl/trace/directory` option to a location to which members of the Authenticated Users group can write. 3. Alternatively, create a new .ini file to change this behavior. In the same directory as sapcrypto.ini and sapcrypto.dll, create a file named sectrace.ini, with the following content. Replace the `DIRECTORY` option with a location on your machine that members of the Authenticated Users group can write to: @@ -175,8 +175,7 @@ If you're unable to refresh the report in the Power BI service, you can use gate For more information on CommonCryptoLib tracing, see [SAP Note 2491573](https://launchpad.support.sap.com/#/notes/2491573) (SAP s-user required). - -### Impersonation +### Impersonation This section describes troubleshooting symptoms and resolution steps for impersonation issues. @@ -186,7 +185,7 @@ This section describes troubleshooting symptoms and resolution steps for imperso **Validation**: Refresh or create the report and collect the *GatewayInfo[date].log*. Open the latest GatewayInfo log file and check again the following string: **About to impersonate user DOMAIN\User (IsAuthenticated: True, ImpersonationLevel: Impersonation)** to ensure that the value for **ImpersonationLevel** matches **Impersonation**. -### Delegation +### Delegation Delegation issues usually appear in the Power BI service as generic errors. To determine whether delegation is the issue, it's useful to collect the Wireshark traces and use *Kerberos* as a filter. For Kerberos errors reference, consult the [blog post](/archive/blogs/askds/kerberos-errors-in-network-captures). The rest of this section describes troubleshooting symptoms and resolution steps for delegation issues. diff --git a/powerbi-docs/connect-data/service-gateway-sso-kerberos-sap-hana.md b/powerbi-docs/connect-data/service-gateway-sso-kerberos-sap-hana.md index cd0a307bb2..5b4ad33cf8 100644 --- a/powerbi-docs/connect-data/service-gateway-sso-kerberos-sap-hana.md +++ b/powerbi-docs/connect-data/service-gateway-sso-kerberos-sap-hana.md @@ -7,17 +7,18 @@ ms.reviewer: '' ms.service: powerbi ms.subservice: powerbi-gateways ms.topic: how-to -ms.date: 02/03/2023 +ms.date: 09/23/2024 LocalizationGroup: Gateways +#customer intent: As a Power BI user I want to learn how to configure SSO for my SAP HANA server using Power BI. --- # Use Kerberos for SSO to SAP HANA +This article describes how to configure your SAP HANA data source to enable single sign-on (SSO) from the Power BI service. + > [!IMPORTANT] > Because [SAP no longer supports OpenSSL](https://help.sap.com/viewer/b3ee5778bc2e4a089d3299b82ec762a7/2.0.05/en-US/de15ffb1bb5710148386ffdfd857482a.html), Microsoft has also discontinued its support. Your existing connections continue to work but you can no longer create new connections. Use SAP Cryptographic Library (CommonCryptoLib), or sapcrypto, instead. -This article describes how to configure your SAP HANA data source to enable single sign-on (SSO) from the Power BI service. - > [!NOTE] > Before you attempt to refresh a SAP HANA-based report that uses Kerberos SSO, complete the steps in both this article and [Configure Kerberos SSO](service-gateway-sso-kerberos.md). @@ -159,7 +160,7 @@ Following the preceding steps should resolve the issue. If you still experience If you experience credentials errors, errors in the logs or traces expose errors that describe `Credentials are invalid` or similar errors. These errors might manifest differently on the data source side of the connection, such as SAP HANA. The following image shows an example error: -:::image type="content" source="media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-09.png" alt-text="Screenshot showing an invalid credentials error." lightbox="media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-09.png" ::: +:::image type="content" source="media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-092.png" alt-text="Screenshot showing an invalid credentials error." lightbox="media/service-gateway-sso-kerberos-sap-hana/sap-hana-kerberos-troubleshooting-092.png" ::: #### Symptom 1 diff --git a/powerbi-docs/enterprise/TOC.yml b/powerbi-docs/enterprise/TOC.yml index 8c7a6d25df..dd70388201 100644 --- a/powerbi-docs/enterprise/TOC.yml +++ b/powerbi-docs/enterprise/TOC.yml @@ -115,11 +115,11 @@ expanded: false items: - name: Overview of DLP policies for Power BI - href: service-security-dlp-policies-for-power-bi-overview.md + href: /fabric/governance/data-loss-prevention-overview - name: Configure a DLP policy for Power BI - href: service-security-dlp-policies-for-power-bi-configure.md + href: /fabric/governance/data-loss-prevention-configure - name: Respond to a DLP policy violation - href: service-security-dlp-policies-for-power-bi-respond.md + href: /fabric/governance/data-loss-prevention-respond - name: Security expanded: false items: diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-b-respond/power-bi-dlp-override-pane.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-b-respond/power-bi-dlp-override-pane.png deleted file mode 100644 index d50f1abf2b..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-b-respond/power-bi-dlp-override-pane.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-actions-section.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-actions-section.png deleted file mode 100644 index 651193081e..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-actions-section.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-add-conditions-content-contains.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-add-conditions-content-contains.png deleted file mode 100644 index 074e1dfc0a..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-add-conditions-content-contains.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-add-conditions.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-add-conditions.png deleted file mode 100644 index 90bf1ceb5f..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-add-conditions.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-additional-options.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-additional-options.png deleted file mode 100644 index 8581a81624..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-additional-options.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-admin-units.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-admin-units.png deleted file mode 100644 index 250edae132..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-admin-units.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-alerts-tab.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-alerts-tab.png deleted file mode 100644 index 1228b6061e..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-alerts-tab.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-custom.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-custom.png deleted file mode 100644 index a05a953172..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-custom.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-location.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-location.png deleted file mode 100644 index bb2c823280..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-location.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-workspaces.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-workspaces.png deleted file mode 100644 index 0af75f8457..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-workspaces.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-condition-group.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-condition-group.png deleted file mode 100644 index d1d07abb70..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-condition-group.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-condition-quick-summary.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-condition-quick-summary.png deleted file mode 100644 index 69e37a350b..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-condition-quick-summary.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-confidence-level-settings.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-confidence-level-settings.png deleted file mode 100644 index b9fc5531ad..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-confidence-level-settings.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-content-contains-quick-summary.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-content-contains-quick-summary.png deleted file mode 100644 index 5a1512d20a..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-content-contains-quick-summary.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-content-contains.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-content-contains.png deleted file mode 100644 index e3e3472d29..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-content-contains.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-advanced-rule.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-advanced-rule.png deleted file mode 100644 index a63d677958..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-advanced-rule.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-rule-form.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-rule-form.png deleted file mode 100644 index e695ac6b42..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-rule-form.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-rule.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-rule.png deleted file mode 100644 index e726924b5e..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-rule.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create.png deleted file mode 100644 index 77152a1fa6..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-incidence-report.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-incidence-report.png deleted file mode 100644 index 1ec559fedf..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-incidence-report.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-name-description.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-name-description.png deleted file mode 100644 index 1ca1c3aa12..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-name-description.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-policy-tip-in-dataset-details.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-policy-tip-in-dataset-details.png deleted file mode 100644 index c5596207ed..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-policy-tip-in-dataset-details.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-policy-tip-on-dataset.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-policy-tip-on-dataset.png deleted file mode 100644 index f757485c6c..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-policy-tip-on-dataset.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-sensitivity-labels-types.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-sensitivity-labels-types.png deleted file mode 100644 index 6818c0ebe5..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-sensitivity-labels-types.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-user-notification.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-user-notification.png deleted file mode 100644 index 82411285a5..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-user-notification.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-user-overrides-section.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-user-overrides-section.png deleted file mode 100644 index de7632de34..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-user-overrides-section.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-actions-section.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-actions-section.png deleted file mode 100644 index fa57b6721e..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-actions-section.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-add-conditions-content-contains.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-add-conditions-content-contains.png deleted file mode 100644 index 0c74b87d21..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-add-conditions-content-contains.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-add-conditions.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-add-conditions.png deleted file mode 100644 index cfc31164b9..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-add-conditions.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-additional-options.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-additional-options.png deleted file mode 100644 index 27ff56f2c4..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-additional-options.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-alerts-tab.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-alerts-tab.png deleted file mode 100644 index b549ebfd3a..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-alerts-tab.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-choose-custom.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-choose-custom.png deleted file mode 100644 index f3c47eaf3d..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-choose-custom.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-choose-location.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-choose-location.png deleted file mode 100644 index 8732cf696e..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-choose-location.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-choose-workspaces.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-choose-workspaces.png deleted file mode 100644 index 0af75f8457..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-choose-workspaces.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-condition-group.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-condition-group.png deleted file mode 100644 index c7f094d8fe..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-condition-group.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-confidence-level-settings.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-confidence-level-settings.png deleted file mode 100644 index b9fc5531ad..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-confidence-level-settings.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-content-contains.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-content-contains.png deleted file mode 100644 index 50f69c9c2a..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-content-contains.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create-advanced-rule.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create-advanced-rule.png deleted file mode 100644 index 96a7331163..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create-advanced-rule.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create-rule-form.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create-rule-form.png deleted file mode 100644 index 3fc2fa2507..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create-rule-form.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create-rule.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create-rule.png deleted file mode 100644 index 844c259350..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create-rule.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create.png deleted file mode 100644 index 3c7808ca69..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-create.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-exceptions-section.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-exceptions-section.png deleted file mode 100644 index 5b6d7857f6..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-exceptions-section.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-incidence-report.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-incidence-report.png deleted file mode 100644 index 0115795305..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-incidence-report.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-name-description.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-name-description.png deleted file mode 100644 index c0547564f4..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-name-description.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-policy-tip-in-dataset-details.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-policy-tip-in-dataset-details.png deleted file mode 100644 index d88e2db299..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-policy-tip-in-dataset-details.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-policy-tip-on-dataset.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-policy-tip-on-dataset.png deleted file mode 100644 index d5c7b40558..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-policy-tip-on-dataset.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-sensitivity-labels-types.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-sensitivity-labels-types.png deleted file mode 100644 index 6818c0ebe5..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-sensitivity-labels-types.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-user-notification.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-user-notification.png deleted file mode 100644 index ec7025d21d..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-user-notification.png and /dev/null differ diff --git a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-user-overrides-section.png b/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-user-overrides-section.png deleted file mode 100644 index e4048cb85e..0000000000 Binary files a/powerbi-docs/enterprise/media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-user-overrides-section.png and /dev/null differ diff --git a/powerbi-docs/enterprise/service-govus-overview.md b/powerbi-docs/enterprise/service-govus-overview.md index 0dc2ef13a8..f431423ce2 100644 --- a/powerbi-docs/enterprise/service-govus-overview.md +++ b/powerbi-docs/enterprise/service-govus-overview.md @@ -141,7 +141,7 @@ If a release is planned for an environment, we include the quarter of estimated |[Azure B2B collaboration between government and commercial cloud](service-admin-azure-ad-b2b.md)1|![Image of "Available" button.](../media/yes.png)|![Image of "Available" button.](../media/yes.png)|![Image of "Available" button.](../media/yes.png) |[Template apps](../connect-data/service-template-apps-overview.md)2|![Image of "Available" button.](../media/yes.png) |![Image of "Available" button.](../media/yes.png)| ![Image of "Available" button.](../media/yes.png)| |[Embed in SharePoint Online by using the Power BI web part](/sharepoint/dev/spfx/web-parts/overview-client-side-web-parts)|![Image of "Available" button.](../media/yes.png)|![Image of "Available" button.](../media/yes.png)|![Image of "Available" button.](../media/yes.png)| -|[Data Loss Prevention policies](./service-security-dlp-policies-for-power-bi-overview.md)|![Image of "Available" button.](../media/yes.png)|![Image of "Available" button.](../media/yes.png) |![Image of "Available" button.](../media/yes.png)| +|[Data Loss Prevention policies](/fabric/governance/data-loss-prevention-overview)|![Image of "Available" button.](../media/yes.png)|![Image of "Available" button.](../media/yes.png) |![Image of "Available" button.](../media/yes.png)| |[Data Protection (MIP labels)](./service-security-sensitivity-label-overview.md)|![Image of "Available" button.](../media/yes.png)|![Image of "Available" button.](../media/yes.png) |![Image of "Available" button.](../media/yes.png)| |[Dataflows - Direct Query](../transform-model/dataflows/dataflows-configure-consume.md) | ![Image of "Available" button.](../media/yes.png) |![Image of "Available" button.](../media/yes.png)|Not planned | |[Dataflows - SQL Compute engine optimization](../transform-model/dataflows/dataflows-premium-features.md) | ![Image of "Available" button.](../media/yes.png) |![Image of "Available" button.](../media/yes.png)|Not planned | diff --git a/powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-configure.md b/powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-configure.md deleted file mode 100644 index 28070479b6..0000000000 --- a/powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-configure.md +++ /dev/null @@ -1,179 +0,0 @@ ---- -title: Configure a DLP policy for Power BI -description: Learn how to configure a data loss prevention policy for Power BI. -author: paulinbar -ms.author: painbar -manager: kfollis -ms.service: powerbi -ms.subservice: powerbi-eim -ms.topic: conceptual -ms.custom: -ms.date: 02/16/2023 -LocalizationGroup: Data from files ---- - -# Configure a DLP policy for Power BI - -This article describes how to configure a data loss prevention (DLP) policy for Power BI. - -## Prerequisites - -Before you get started with DLP for Power BI, you should confirm your [Microsoft 365 subscription](https://www.microsoft.com/microsoft-365/compare-microsoft-365-enterprise-plans?rtc=1). The admin account that sets up the DLP rules must be assigned one of the following licenses: - -* Microsoft 365 E5 -* Microsoft 365 E5 Compliance -* Microsoft 365 E5 Information Protection & Governance - -## Configure a policy - -1. Log into the [Microsoft Purview compliance portal](https://go.microsoft.com/fwlink/p/?linkid=2077149). - -1. Expand the **Data loss prevention** solution in the navigation pane, select **Policies**, and choose **Create policy**. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create.png" alt-text="Screenshot of D L P create policy page."::: - -1. Choose the **Custom** category and then the **Custom policy** template. - - >[!NOTE] - >No other categories or templates are currently supported. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-custom.png" alt-text="Screenshot of D L P choose custom policy page."::: - - When done, select **Next**. - -1. Name the policy and provide a meaningful description. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-name-description.png" alt-text="Screenshot of D L P policy name description section."::: - - When done, select **Next**. - -1. Select **Next** when you get to the Assign admin units page. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-admin-units.png" alt-text="Screenshot of D L P policy admin units section."::: - -1. Enable Power BI as a location for the DLP policy. **Disable all other locations**. Currently, DLP policies for Power BI must specify Power BI as the sole location. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-location.png" alt-text="Screenshot of D L P choose location page."::: - - By default the policy will apply to all workspaces. Alternatively, you can specify particular workspaces to include in the policy as well as workspaces to exclude from the policy. - >[!NOTE] - > DLP actions are supported only for workspaces hosted in Premium capacities. - - If you select **Choose workspaces** or **Exclude workspaces**, a dialog will allow you to select workspaces to be included (or excluded). - - You can search for workspaces by workspace name or by user email address. When you search by a user's email address, that user's My Workspace will be listed as *personalWorkspace - \*, and you can then select it. - - ![Screenshot of D L P choose workspaces dialog.](./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-choose-workspaces.png) - - After enabling Power BI as a DLP location for the policy and choosing which workspaces the policy will apply to, select **Next**. - -1. The **Define policy settings** page appears. Choose **Create or customize advanced DLP rules** to begin defining your policy. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-advanced-rule.png" alt-text="Screenshot of D L P create advanced rule page."::: - - When done, select **Next**. - -1. On the **Customize advanced DLP rules** page, you can either start creating a new rule or choose an existing rule to edit. Select **Create rule**. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-rule.png" alt-text="Screenshot of D L P create rule page."::: - -1. The **Create rule** page appears. On the create rule page, provide a name and description for the rule, and then configure the other sections, which are described following the image below. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-create-rule-form.png" alt-text="Screenshot of D L P create rule form."::: - -## Conditions - -In the condition section, you define the conditions under which the policy will apply to a semantic model. Conditions are created in groups. Groups make it possible to construct complex conditions. - -1. Open the conditions section. Choose **Add condition** if you want to create a simple or complex condition, or **Add group** if you want to start creating a complex condition. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-add-conditions-content-contains.png" alt-text="Screenshot of D L P add conditions content contains section."::: - - For more information about using the condition builder, see [Complex rule design](/microsoft-365/compliance/dlp-policy-design#complex-rule-design). - -1. If you chose **Add condition**, next choose **Content contains**, then **Add**, and then either **Sensitive info types** or **Sensitivity labels**. - - If you started with **Add group**, you'll eventually get to **Add condition**, after which you continue as described above. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-add-conditions.png" alt-text="Screenshot of D L P add conditions section."::: - - If you started with **Add group**, you'll eventually get to **Add condition**, after which you continue as described above. - - When you choose either **Sensitive info types** or **Sensitivity labels**, you'll be able to choose the particular sensitivity labels or sensitive info types you want to detect from a list that will appear in a sidebar. - - ![Screenshot of sensitivity-label and sensitive info types choices.](./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-sensitivity-labels-types.png) - - When you select a sensitive info type as a condition, you then need to specify how many instances of that type must be detected in order for the condition to be considered as met. You can specify from 1 to 500 instances. If you want to detect 500 or more unique instances, enter a range of '500' to 'Any'. You also can select the degree of confidence in the matching algorithm. Select the info button next to the confidence level to see the definition of each level. - - ![Screenshot of confidence level setting for sensitive info types.](./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-confidence-level-settings.png) - - You can add additional sensitivity labels or sensitive info types to the group. To the right of the group name, you can specify **Any of these** or **All of these**. This determines whether matches on all or any of the items in the group is required for the condition to hold. If you specified more than one sensitivity label, you'll only be able to choose **Any of these**, since semantic models can’t have more than one label applied. - - The image below shows a group (Default) that contains two sensitivity label conditions. The logic Any of these means that a match on any one of the sensitivity labels in the group constitutes “true” for that group. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-condition-group.png" alt-text="Screenshot of D L P conditions group section."::: - - You can use the Quick summary toggle to get the logic of the rule summarized in a sentence. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-condition-quick-summary.png" alt-text="Screenshot of D L P conditions quick summary."::: - - You can create more than one group, and you can control the logic between the groups with **AND** or **OR** logic. - - The image below shows a rule containing two groups, joined by **OR** logic. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-content-contains.png" alt-text="Screenshot of rule with two groups."::: - - Here's the same rule shown as a quick summary. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-content-contains-quick-summary.png" alt-text="Screenshot of quick summary of rule with two groups."::: - -## Actions - -Protection actions are currently unavailable for Power BI DLP policies. - -![Screenshot of D L P policy actions section.](./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-actions-section.png) - -## User notifications - -The user notifications section is where you configure your policy tip. Turn on the toggle, select the **Notify users in Office 365 service with a policy tip** and **Policy tips** checkboxes, and write your policy tip in the text box. - -:::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-user-notification.png" alt-text="Screenshot of D L P user notification section."::: - -## User overrides - -If you enabled user notifications and selected the **Notify users in Office 365 service with a policy tip** checkbox, semantic model owners (users with an Admin or Member role in the workspace where the semantic model is located) will be able to respond to violations on the **[Data loss prevention policies side pane](./service-security-dlp-policies-for-power-bi-respond.md)**, which they can display from a button on the policy tip. The options they have depend on your selections in the **User overrides** section. - -:::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-user-overrides-section.png" alt-text="Screenshot of D L P user overrides section."::: - -The options are described below. - -* **Allow overrides from M365 services. Allows users in Power BI, Exchange, SharePoint, OneDrive, and Teams to override policy restrictions** (automatically selected when you've enabled user notifications and selected the **Notify users in Office 365 service with a policy tip** checkbox): Users will be able to either report the issue as a false positive or override the policy. - -* **Require a business justification to override**: Users will be able to either report the issue as a false positive or override the policy. If they choose to override, they'll need to provide a business justification. - -* **Override the rule automatically if they report it as a false positive**: Users will be able to report the issue as a false positive and automatically override the policy, or they can just override the policy without reporting it as a false positive. - -* If you select both **Override the rule automatically if they report it as a false positive** and **Require a business justification to override**, users will be able to report the issue as a false positive and automatically override the policy, or they can just override the policy without reporting it as a false positive, but they'll have to provide a business justification. - -Overriding a policy means that from now on the policy will no longer check the semantic model for sensitive data. - -Reporting an issue as a false positive means that the data owner believes that the policy has mistakenly identified non-sensitive data as sensitive. You can use false positives to fine tune your rules. - -Any action the user takes is logged for reporting. - -## Incident reports - -Assign a severity level that will be shown in alerts generated from this policy. Enable (default) or disable email notification to admins, specify users or groups for email notification, and configure the details about when notification will occur. - -:::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-incidence-report.png" alt-text="Screenshot of D L P incident report section."::: - -## Additional options - -:::image type="content" source="./media/service-security-dlp-policies-for-power-bi-configure/power-bi-dlp-additional-options.png" alt-text="Screenshot of D L P additional options section."::: - -## Related content - -* [Data loss prevention policies for Power BI](./service-security-dlp-policies-for-power-bi-overview.md). -* [Respond to DLP policy violation in Power BI](./service-security-dlp-policies-for-power-bi-respond.md). -* [Power BI implementation planning: Data loss prevention for Power BI](/power-bi/guidance/powerbi-implementation-planning-data-loss-prevention) -* [Learn about data loss prevention](/microsoft-365/compliance/dlp-learn-about-dlp) diff --git a/powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-overview.md b/powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-overview.md deleted file mode 100644 index 575eb1c0c0..0000000000 --- a/powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-overview.md +++ /dev/null @@ -1,113 +0,0 @@ ---- -title: Data loss prevention policies for Power BI overview -description: Learn about data loss prevention policies for Power BI. -author: paulinbar -ms.author: painbar -manager: kfollis -ms.service: powerbi -ms.subservice: powerbi-eim -ms.topic: conceptual -ms.custom: -ms.date: 04/20/2023 -LocalizationGroup: Data from files ---- - -# Data loss prevention policies for Power BI - -To help organizations detect and protect their sensitive data, Power BI supports [Microsoft Purview Data Loss Prevention (DLP) polices](/microsoft-365/compliance/dlp-learn-about-dlp). When a DLP policy for Power BI detects a sensitive semantic model, a policy tip can be attached to the semantic model in the Power BI service that explains the nature of the sensitive content, and an alert can be registered on the data loss prevention **Alerts** page in the Microsoft Purview compliance portal for monitoring and management by administrators. In addition, email alerts can be sent to administrators and specified users. - -This article describes how DLP in Power BI works, lists considerations and limitations as well as licensing and permissions requirements, and explains how DLP CPU usage is metered. For further information, see: - -* [Configure a DLP policy for Power BI](./service-security-dlp-policies-for-power-bi-configure.md) to see how to configure DLP policies for Power BI. -* [Respond to a DLP policy violation in Power BI](./service-security-dlp-policies-for-power-bi-respond.md) to see how to respond when a policy tip tells you your semantic model has a DLP policy violation. - -## Considerations and limitations - -* DLP policies for Power BI are defined in the [Microsoft Purview compliance portal](https://go.microsoft.com/fwlink/p/?linkid=2077149). -* DLP policies apply to workspaces. Only workspaces hosted in [Premium capacities](./service-premium-what-is.md) are supported. -* DLP semantic model evaluation workloads impact capacity. See [CPU metering for DLP policy evaluation](#cpu-metering-for-dlp-policy-evaluation) for more information. -* DLP policy templates aren't yet supported for Power BI DLP policies. When creating a DLP policy for Power BI, choose the "custom policy" option. -* Power BI DLP policy rules currently support sensitivity labels and sensitive info types as conditions. -* DLP policies for Power BI aren't supported for sample semantic models, [streaming datasets](../connect-data/service-real-time-streaming.md), or semantic models that connect to their data source via [DirectQuery](../connect-data/desktop-use-directquery.md) or [live connection](../connect-data/desktop-directquery-about.md#live-connections). This includes semantic models with mixed storage, where some of the data comes via import-mode and some comes via DirectQuery. -* [Exact data match (EDM) classifiers](/microsoft-365/compliance/sit-learn-about-exact-data-match-based-sits) and [trainable classifiers](/microsoft-365/compliance/classifier-learn-about) aren't supported by DLP for Power BI. If you select an EDM or trainable classifier in the condition of a policy, the policy will yield no results even if the semantic model does in fact contain data that satisfies the EDM or trainable classifier. Other classifiers specified in the policy will return results, if any. -* DLP policies for Power BI aren't supported in the China North region. See [How to find the default region for your organization](../admin/service-admin-where-is-my-tenant-located.md#how-to-find-the-default-region-for-your-organization) to learn how to find your organization's default data region. - -## Licensing and permissions - -### SKU/subscriptions licensing - -Before you get started with DLP for Power BI, you should confirm your [Microsoft 365 subscription](https://www.microsoft.com/microsoft-365/compare-microsoft-365-enterprise-plans?rtc=1). The admin account that sets up the DLP rules must be assigned one of the following licenses: - -* Microsoft 365 E5 -* Microsoft 365 E5 Compliance -* Microsoft 365 E5 Information Protection & Governance - -### Permissions - -Data from DLP for Power BI can be viewed in [Activity explorer](/microsoft-365/compliance/data-classification-activity-explorer). There are four roles that grant permission to activity explorer; the account you use for accessing the data must be a member of any one of them. - -* Global administrator -* Compliance administrator -* Security administrator -* Compliance data administrator - -## CPU metering for DLP policy evaluation - -DLP policy evaluation uses CPU from the premium capacity associated with the workspace where the semantic model being evaluated is located. CPU consumption of the evaluation is calculated as 30% of the CPU consumed by the action that triggered the evaluation. For example, if a refresh action costs 30 milliseconds of CPU, the DLP scan will cost another 9 milliseconds. This fixed 30% additional CPU consumption for DLP evaluation helps you predict the impact of DLP policies on your overall Capacity CPU utilization, and perform capacity planning when rolling out DLP policies in your organization. - -Use the Power BI Premium Capacity Metrics App to monitor the CPU usage of your DLP policies. For more information, see [Use the Microsoft Fabric Capacity Metrics app](/fabric/enterprise/metrics-app). - ->[!NOTE] ->Users with PPU licenses do not incur the DLP policy evaluation costs described above, as these costs are covered for them up front by their PPU license. - -## How do DLP policies for Power BI work - -You define a DLP policy in the data loss prevention section of the compliance portal. In the policy, you specify the sensitivity labels and/or sensitive info types you want to detect. You also specify the actions that will happen when the policy detects a semantic model that contains sensitive data of the kind you specified. DLP policies for Power BI support two actions: - -* User notification via policy tips. -* Alerts. Alerts can be sent by email to administrators and users. Additionally, administrators can monitor and manage alerts on the **Alerts** tab in the compliance portal. - -When a semantic model is evaluated by DLP policies, if it matches the conditions specified in a DLP policy, the actions specified in the policy occur. A semantic model is evaluated against DLP policies whenever one of the following events occurs: - -* Publish -* Republish -* On-demand refresh -* Scheduled refresh - ->[!NOTE] -> DLP evaluation of the semantic model does not occur if either of the following is true: -> * The initiator of the event (publish, republish, on-demand refresh, scheduled refresh) is an account using service principal authentication. -> * The semantic model owner is a service principal. - -## What happens when a semantic model is flagged by a Power BI DLP policy - -When a DLP policy detects an issue with a semantic model: -* If "user notification" is enabled in the policy, the semantic model will be marked in the Power BI service with a shield that indicates that a DLP policy has detected an issue with the semantic model. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-policy-tip-on-dataset.png" alt-text="Screenshot of policy tip badge on semantic model in lists."::: - - Open the semantic model details page to see a policy tip that explains the policy violation and how the detected type of sensitive information should be handled. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-policy-tip-in-dataset-details.png" alt-text="Screenshot of policy tip on semantic model details page."::: - - >[!NOTE] - > If you hide the policy tip, it doesn’t get deleted. It will appear the next time you visit the page. - -* If alerts are enabled in the policy, an alert will be recorded on the data loss prevention **Alerts** page in the compliance portal, and (if configured) an email will be sent to administrators and/or specified users. The following image shows the **Alerts** page in the data loss prevention section of the compliance portal. To get to the **Alerts** page, in the compliance portal, expand the **Data loss prevention** solution and choose **Alerts**. - - :::image type="content" source="./media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-alerts-tab.png" alt-text="Screenshot of Alerts tab in the compliance portal."::: - -## Monitor and manage policy alerts - -Log into the [Microsoft Purview compliance portal](https://go.microsoft.com/fwlink/p/?linkid=2077149), expand the **Data loss prevention** solution, and choose **Alerts**. - -:::image type="content" source="./media/service-security-dlp-policies-for-power-bi-overview/power-bi-dlp-alerts-tab.png" alt-text="Screenshot of D L P Alerts tab."::: - -Select an alert to start drilling down to its details and to see management options. - -## Related content - -* [Configure a DLP policy for Power BI](./service-security-dlp-policies-for-power-bi-configure.md). -* [Respond to DLP policy violation in Power BI](./service-security-dlp-policies-for-power-bi-respond.md). -* [Power BI implementation planning: Data loss prevention for Power BI](/power-bi/guidance/powerbi-implementation-planning-data-loss-prevention) -* [Learn about data loss prevention](/microsoft-365/compliance/dlp-learn-about-dlp) diff --git a/powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-respond.md b/powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-respond.md deleted file mode 100644 index 72591ca5c9..0000000000 --- a/powerbi-docs/enterprise/service-security-dlp-policies-for-power-bi-respond.md +++ /dev/null @@ -1,45 +0,0 @@ ---- -title: Respond to a DLP policy violation in Power BI -description: Learn how to respond to a DLP policy violation in Power BI. -author: paulinbar -ms.author: painbar -manager: kfollis -ms.service: powerbi -ms.subservice: powerbi-eim -ms.topic: conceptual -ms.custom: -ms.date: 04/20/2023 -LocalizationGroup: Data from files ---- - -# Respond to a DLP policy violation in Power BI - -When a semantic model you own violates a DLP policy, you may see a violation warning icon on the semantic model in the data hub or workspace list view. If you go to the semantic model details page, you'll see a DLP policy tip banner that informs you about the violation. To view and respond to the policy violation, select the **View** button on the policy tip. The **View** button opens a side pain that displays the details of your semantic model's DLP policy violations and provides option for responding to them. This article describes the information you see on the side pane and the actions you can take regarding the violations. - -## View a semantic model's DLP violations - -The data loss prevention side pane lists the name of the semantic model and all the DLP policy issues detected by a content scan of that semantic model. You can select the semantic model's name if you want to view the semantic model's details page. - -Each DLP policy issue is shown on a card. The card shows you the policy tip, indicates what kind of sensitive data was detected, and offers actions you can take if you believe the data was falsely identified. - -![Screenshot of D L P policies side pane](./media/service-security-dlp-policies-for-power-b-respond/power-bi-dlp-override-pane.png) - -## Take action on the violation - -The action or combination of actions you see may vary depending on the policy configuration. The possible actions are described below. - -* **Report an issue**: Report the issue as a false positive (that is, report that the policy has mistakenly identified non-sensitive data as sensitive). -* **Override**: Override the policy. Overriding a policy means that this policy will no longer check this semantic model for sensitive data. Depending on the policy configuration, you may be required to provide a justification for the override. -* **Report and override**: Report the issue as a false positive and override the policy. - ->[!NOTE] -> Any action you take will be recorded in the audit log where it can be reviewed by security admins. -> -> The purpose of the policy tip is to flag sensitive information found in your semantic model. If you own this data and determine that it shouldn't be in the semantic model, when you remove the data from the semantic model and then refresh or republish the semantic model, the policy will be triggered again and the policy tip will be removed, since the sensitive data will no longer be found. - -## Related content - -* [Data loss prevention policies for Power BI](./service-security-dlp-policies-for-power-bi-overview.md). -* [Configure a DLP policy for Power BI](./service-security-dlp-policies-for-power-bi-configure.md). -* [Power BI implementation planning: Data loss prevention for Power BI](/power-bi/guidance/powerbi-implementation-planning-data-loss-prevention) -* [Learn about data loss prevention](/microsoft-365/compliance/dlp-learn-about-dlp) \ No newline at end of file diff --git a/powerbi-docs/enterprise/service-security-sensitivity-label-overview.md b/powerbi-docs/enterprise/service-security-sensitivity-label-overview.md index 859c79e944..ca4eb4a5ea 100644 --- a/powerbi-docs/enterprise/service-security-sensitivity-label-overview.md +++ b/powerbi-docs/enterprise/service-security-sensitivity-label-overview.md @@ -117,7 +117,7 @@ Downstream inheritance is a critical link in Power BI's end-to-end information p ## Data loss prevention (DLP) policies -Power BI leverages Microsoft 365 data loss prevention to enable central security teams to use data loss prevention policies to enforce their organization's DLP policies in Power BI. See [Data loss prevention policies for Power BI](service-security-dlp-policies-for-power-bi-overview.md) for detail. +Power BI leverages Microsoft 365 data loss prevention to enable central security teams to use data loss prevention policies to enforce their organization's DLP policies in Power BI. See [Data loss prevention policies for Fabric and Power BI](/fabric/governance/data-loss-prevention-overview) for detail. ## Default label policy diff --git a/powerbi-docs/fundamentals/desktop-latest-update-archive.md b/powerbi-docs/fundamentals/desktop-latest-update-archive.md index 6210e37e44..8eb6d6a0d2 100644 --- a/powerbi-docs/fundamentals/desktop-latest-update-archive.md +++ b/powerbi-docs/fundamentals/desktop-latest-update-archive.md @@ -1930,7 +1930,7 @@ The following updates are new to Power BI Desktop this month: ### Reporting * Conditional formatting for data labels [[video]](https://youtu.be/Wiznd0dn29k?t=63) [[blog]](https://powerbi.microsoft.com/blog/power-bi-august-2022-feature-summary/#post-20399-_Toc110518263) * New *Select sensitivity label* dialog [[video]](https://youtu.be/Wiznd0dn29k?t=449) [[blog]](https://powerbi.microsoft.com/blog/power-bi-august-2022-feature-summary/#post-20399-_Toc110518264) [[article]](../enterprise/service-security-apply-data-sensitivity-labels.md) -* Data loss prevention policy update [[video]](https://youtu.be/Wiznd0dn29k?t=475) [[blog]](https://powerbi.microsoft.com/blog/power-bi-august-2022-feature-summary/#post-20399-_Toc110518265) [[article]](../enterprise/service-security-dlp-policies-for-power-bi-overview.md) +* Data loss prevention policy update [[video]](https://youtu.be/Wiznd0dn29k?t=475) [[blog]](https://powerbi.microsoft.com/blog/power-bi-august-2022-feature-summary/#post-20399-_Toc110518265) [[article]](/fabric/governance/data-loss-prevention-overview) * Metric visual (preview) [[video]](https://youtu.be/Wiznd0dn29k?t=557) [[blog]](https://powerbi.microsoft.com/blog/power-bi-august-2022-feature-summary/#post-20399-_Toc110518266) [[article]](../visuals/power-bi-visualization-scorecard-visual.md) * Mobile formatting now supports text box visuals [[video]](https://youtu.be/Wiznd0dn29k?t=768) [[blog]](https://powerbi.microsoft.com/blog/power-bi-august-2022-feature-summary/#post-20399-_Toc110518267) [[article]](../create-reports/power-bi-create-mobile-optimized-report-mobile-layout-view.md) diff --git a/powerbi-docs/guidance/whitepaper-powerbi-security.md b/powerbi-docs/guidance/whitepaper-powerbi-security.md index ce5d6d659c..9da588d5e1 100644 --- a/powerbi-docs/guidance/whitepaper-powerbi-security.md +++ b/powerbi-docs/guidance/whitepaper-powerbi-security.md @@ -391,7 +391,7 @@ When DLP policies for Power BI are set up: * If you are a semantic model owner, you can report an issue with a policy if you conclude that a sensitive info type has been falsely identified. * Automatic risk mitigations, such as alerts to the security admin, can be invoked. -For more information, see [Data loss prevention policies for Power BI](../enterprise/service-security-dlp-policies-for-power-bi-overview.md). +For more information, see [Data loss prevention policies for Fabric Power BI](/fabric/governance/data-loss-prevention-overview). ## Microsoft Defender for Cloud Apps for Power BI diff --git a/powerbi-docs/report-server/changelog.md b/powerbi-docs/report-server/changelog.md index f3f3dcd8ef..686e130056 100644 --- a/powerbi-docs/report-server/changelog.md +++ b/powerbi-docs/report-server/changelog.md @@ -16,6 +16,25 @@ This change log is for Power BI Report Server and lists new items along with bug See [What's new in Power BI Report Server](whats-new.md) for more information about new features. For information about Report Builder versions, see the [Power BI Report Builder change log](../paginated-reports/paginated-reports-change-log.md). +## September 2024 + +### Power BI Report Server +- *Version: 1.21.9032.4573 (build 15.0.1116.121), Released: September 26, 2024* + - Features + - Custom Visual API shipped with release - version v5.10.0 + - Changed default SupportedHyperlinkSchemes advanced server property value to disallow javascript + - Changed default TrustedFileFormat advanced server property value to disallow pdf content viewing + - Bug fixes + - Fixed issue with RsPortal log getting filled with 401 errors + - Fixed issue with folders containing certain characters + - Fixed issue with history snapshot page + - Fixed issue with managing shared data sources + - Fixed issue with ribbon charts in Power BI Reports + +### Power BI Desktop (optimized for Power BI Report Server) +- *Version: 2.129.2203.0 (September 2024), Released: September 26, 2024* + - Support for September 2024 Power BI Report Server. + ## May 2024 ### Power BI Report Server diff --git a/powerbi-docs/transform-model/datamarts/datamarts-discovery.md b/powerbi-docs/transform-model/datamarts/datamarts-discovery.md index 9e2add1621..d2bf346be0 100644 --- a/powerbi-docs/transform-model/datamarts/datamarts-discovery.md +++ b/powerbi-docs/transform-model/datamarts/datamarts-discovery.md @@ -1,13 +1,14 @@ --- title: Discover data with Power BI datamarts (preview) -description: Discover data using Power BI datamarts. +description: Learn how to discover and utilize data using Power BI datamarts, including creating reports and exploring datamart details and lineage. +#customer intent: As a Power BI user, I want to discover and use data from datamarts so that I can create insightful reports and analyses. author: davidiseminger ms.author: davidi ms.reviewer: '' ms.service: powerbi ms.subservice: pbi-dataflows -ms.topic: how-to -ms.date: 11/10/2023 +ms.topic: concept-article +ms.date: 09/24/2024 LocalizationGroup: Data from files --- @@ -15,21 +16,19 @@ LocalizationGroup: Data from files You can discover data through the data hub, and create reusable and autogenerated semantic models to create reports in various ways in Power BI. This article describes the various ways you can discover datamarts. - ## Discover datamarts in the data hub -You can see datamarts and their associated autogenerated semantic model in the data hub, which makes it easy to find, explore, and use the data. +You can see datamarts and their associated autogenerated semantic model in the data hub, which makes it easy to find, explore, and use the data. -In the data hub, when you select a datamart, you're taken to its information page where you can see the datamart’s metadata, supported actions, lineage, and impact analysis along with related reports on that datamart. +In the data hub, when you select a datamart, you're taken to its information page where you can see the datamart’s metadata, supported actions, lineage, and impact analysis along with related reports on that datamart. The autogenerated semantic model from a datamart behaves the same as other semantic models in Power BI. For more information, see [data discovery using the data hub](../../connect-data/service-data-hub.md) +## Datamart details and related reports -### Datamart details and related reports - -For more information about a datamart, to explore reports, to view lineage, or to create a new report based on the semantic model, select a datamart from the recommended datamarts or from datamarts in the data list. +For more information about a datamart, to explore reports, to view lineage, or to create a new report based on the semantic model, select a datamart from the recommended datamarts or from datamarts in the data list. -A page displays the information about the datamart, provides a button to create a new report, share datamart, pull data into Excel or view lineage. Related reports for the selected datamart are also displayed, if any exist. You can also navigate to the datamart editor, its settings, or manage permissions. +A page displays the information about the datamart, provides a button to create a new report, share datamart, pull data into Excel or view lineage. Related reports for the selected datamart are also displayed, if any exist. You can also navigate to the datamart editor, its settings, or manage permissions. The page also shows the workspace where the datamart is located, its endorsement status, its last refresh time, and any sensitivity settings that have been applied. It also displays the datamart's SQL endpoint connection string and the datamart's description. @@ -37,18 +36,16 @@ The following image shows the datamarts information page. :::image type="content" source="media/datamarts-discovery/datamarts-discovery-01.png" alt-text="Screenshot of datamarts information page." lightbox="media/datamarts-discovery/datamarts-discovery-01.png"::: -You can view the lineage of the datamart by selecting **Lineage > Open lineage** from the ribbon menu. The window that appears displays the end-to-end lineage view describing the flow of data from the data source to the datamart, the underlying autogenerated semantic model, and all downstream items such as reports, dashboards, or apps. +You can view the lineage of the datamart by selecting **Lineage > Open lineage** from the ribbon menu. The window that appears displays the end-to-end lineage view describing the flow of data from the data source to the datamart, the underlying autogenerated semantic model, and all downstream items such as reports, dashboards, or apps. -The following image shows the lineage of a datamart. +The following image shows the lineage of a datamart. :::image type="content" source="media/datamarts-discovery/datamarts-discovery-02.png" alt-text="Screenshot of datamart lineage view." lightbox="media/datamarts-discovery/datamarts-discovery-02.png"::: To view any dependent items of the selected datamart, select the **Impact analysis** menu, which is displayed along the right side of the screen. - :::image type="content" source="media/datamarts-discovery/datamarts-discovery-03.png" alt-text="Screenshot of datamart impact analysis pane."::: - ### Data hub in Power BI Desktop The data hub in Power BI Desktop lets you discover datamarts and semantic models. Once the datamart filter is selected, the list shows the datamarts to which you have access. @@ -61,13 +58,12 @@ The data hub appears in a window within Power BI Desktop, as the following scree :::image type="content" source="media/datamarts-discovery/datamarts-discovery-05.png" alt-text="Screenshot of selecting datamarts displayed in the Power BI Desktop data hub." lightbox="media/datamarts-discovery/datamarts-discovery-05.png"::: - Selecting a datamart from the list enables the **Connect** button in the window. Selecting **Connect** with a datamart selected loads the datamart's underlying and autogenerated semantic model, from which you can begin to build reports. By selecting **Connect to SQL endpoint**, you're making a live connection to datamart’s SQL connection string to read data and build reports. :::image type="content" source="media/datamarts-discovery/datamarts-discovery-06.png" alt-text="Screenshot of being connected to the underlying semantic model from a datamart selected from the Power BI Desktop data hub." lightbox="media/datamarts-discovery/datamarts-discovery-06.png"::: - ## Related content + This article provided information about creating reports using datamarts. The following articles provide more information about datamarts and Power BI: @@ -80,8 +76,7 @@ The following articles provide more information about datamarts and Power BI: * [Access control in datamarts](datamarts-access-control.md) * [Datamart administration](datamarts-administration.md) - For more information about dataflows and transforming data, see the following articles: + * [Introduction to dataflows and self-service data prep](../dataflows/dataflows-introduction-self-service.md) * [Tutorial: Shape and combine data in Power BI Desktop](../../connect-data/desktop-shape-and-combine-data.md) -