Secure your model with a model role
Model roles provide defined levels of access to the cube for specified category of users. Model roles are managed using the roles list on the model's tab.
Create a model role
- Open an existing model.
- On the model screen, expand the Roles section.
- Collapse the design panel.
- Click + Role to reveal New Role tab and MEMBERS subtab.
- Add a role name in the New Role text box, replacing the default text.
- Add a role description in the Description text box, replacing the default text.
- Apply role member settings:
- Full access - To allow full access to the model role click the All check box at the top of the Role Members sub-tab. (This option applies to any user that can connect to SSAS.)
- Defined groups and users - Select provider type from New Member drop-down list then select all groups and users as defined within your business environment, including in Active Directory.
- Type the user name into the Enter user name or group name text box to reveal options.
- Click Refresh to populate the Users with access list.
- Repeat step 5 through step 7 until all users or groups appear in the Role Members list.
- Click PERMISSIONS sub-tab and configure model role permissions.
- Allow Schema is used to specify modules or pipelines within the model role.
- Limit Data is used to farther limit the available data based on a particular dimensions, members and named sets .
- Select Publish Roles in the Design Panel to publish changes.
- Click Show Current Role in Design Panel.
- Click ShowAll to redisplay dimensions and measure groups.
- Click Save > Close.