Secure your model with a model role

Model roles provide defined levels of access to the cube for specified category of users. Model roles are managed using the roles list on the model's tab.

Create a model role

  1. Open an existing model.

  2. On the model screen, expand the Roles section.

  3. Collapse the design panel.

  4. Click + Role to reveal New Role tab and MEMBERS subtab.

  5. Add a role name in the New Role text box, replacing default text.

  6. Add a role name in the New Role text box, replacing default text.

  7. Apply role member settings:

    1. Full access - To allow full access to the model role click the All check box at the top of the Role Members sub-tab. (This option applies to any user that can connect to SSAS.)

    2. Defined groups and users - Select provider type from New Member drop-down list then select all groups and users as defined within your business environment, including in Active Directory.

  8. Type the user name into the Enter user name or group name text box to reveal options.

  9. Click Refresh to populate the Users with access list.

  10. Repeat step 5 through step 7 until all users or groups appear in the Role Members list.

  11. Click PERMISSIONS sub-tab and configure model role permissions.

    1. Allow Schema is used to specify modules or pipelines within the model role.

    2. Limit Data is used to farther limit the available data based on a particular dimensions, members and named sets .

  12. Select Publish Roles in the Design Panel to publish changes.

  13. Click Show Current Role in Design Panel.

  14. Click ShowAll to redisplay dimensions and measure groups.

  15. Click Save> Close.