web
You’re offline. This is a read only version of the page.
close
Skip to main content

Announcements

News and Announcements icon
Community site session details

Community site session details

Session Id :
Power Platform Community / Forums / Power Apps / Dataverse security set...
Power Apps
Answered

Dataverse security setup - Business Units/Teams

(1) ShareShare
ReportReport
Posted on by 18
Hi guys,
 
I need to setup a security model and I would appreciate some input and advice.
 
Here is my business case. I have a Model-Driven application with a custom table called "Affiliates" next to 20 other tables. We identified following user groups for our application:
  • Administrators
  • Corporate Team
  • Directors
  • Management
  • Employees
Each user group will have a different combination of permissions on the various tables, so a security role for each user group seems required.

In the "Affiliates" table we have records which can only be visible for people belonging to the following groups: Administrators, Corporate Team, Directors. This means that these records should not be visible to users who are part of Management or Employees. Other records should be visible to all users.
 
What would be the easiest way to achieve this?
 
Thanks!
Categories:
I have the same question (0)
  • Verified answer
    KeithAtherton Profile Picture
    3,707 Most Valuable Professional on at
    Hey. You could try the following model:
    • Create security roles for each group, e.g. Administrators Role, Corporate Team Role, etc
    • Configure each security role as required, e.g.:
      • Administrators Role: Affiliates table has Read = Organisation, etc
      • Management Role: Affiliates table has Read = None, etc
  • Suggested answer
    SaiRT14 Profile Picture
    1,990 Super User 2025 Season 1 on at
     
    setup a security model in a Model-Driven app that accommodates user groups with different permissions while enforcing record-level visibility for specific groups on the "Affiliates" table
     
    Role Create Read Write Delete Append Append To Notes
    Administrators ✓ ✓ ✓ ✓ ✓ ✓ Full access
    Corporate Team ✓ ✓ ✓ ✗ ✓ ✓ Limited delete rights
    Directors ✗ ✓ ✓ ✗ ✓ ✓ Read & update only
    Management ✗ Limited ✗ ✗ ✗ ✗ Cannot see restricted data
    Employees ✗ Limited ✗ ✗ ✗ ✗ Cannot see restricted data
     
     
    Define Security Roles for User Groups, Set Up Ownership for "Affiliates" Table, Leverage Business Units and Use Team-Based Security.
     
    let me know if you need more details. 
  • Jurbe48 Profile Picture
    18 on at
     
    Thanks for your answer, this is indeed what I want to do. I already created the security roles on the Affiliates table. However I'm struggling with the business units/teams setup.
     
    There is a parent child hierarchy in the user groups eg: Directors can see everything from Management and employees but nothing from Corporate and Admin.
     
    To give you an example on the desired setup:
    • Record A in the "Affiliate" table can be visible to all user groups
    • Record B in the "Affiliate' table can only be visible to Admins, Corporate Team and Directors
    • Record C in the "Affiliate" table can be visible to all user groups
    • ...
     
    I hope this gives a better idea on what I try to achieve? How with the business units/team based security look like?

Under review

Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.

Helpful resources

Quick Links

Introducing the 2026 Season 1 community Super Users

Congratulations to our 2026 Super Users!

Kudos to our 2025 Community Spotlight Honorees

Congratulations to our 2025 community superstars!

Congratulations to the March Top 10 Community Leaders!

These are the community rock stars!

Leaderboard > Power Apps

#1
11manish Profile Picture

11manish 530

#2
WarrenBelz Profile Picture

WarrenBelz 459 Most Valuable Professional

#3
Haque Profile Picture

Haque 314

Last 30 days Overall leaderboard