Setting the Rights on Dimensions to Many Users
In Microsoft Analysis Services there is a possibility to set the rights on dimension members for the roles of Analysis Services. Do not forget that each BAT user has a corresponding role [batidentifier] _user_login in the cube.
In Analysis Services 2008 and above the rights are set on the attributes of the dimension.
The paragraph Cube Access Rights ran about how to set unlimited rights to the users on a set of cubes with the help of a wizard, and also showed how the user can set the rights to a cube with the help of this dialog:
For every attribute of dimension we can select both a set of allowed and a set of denied members:
As a result, John will see data only for Australia and Canada.
The same action can be done for a role:
All users who belong to this role will have access rights to both countries.
If there are many users and you need to quickly set rights on dimensions, you will have to use other wizards for this purpose. Let’s show it on example.
Let’s consider the cube “Adventure Works” in the database “Adventure Works DW”. This cube uses the dimension “Geography” with an attribute “Country”.
Suppose we have managers, and we want to quickly set access rights for seeing sails in different countries to them. For this purpose it is necessary to do some actions.


