> For the complete documentation index, see [llms.txt](https://uidata.gitbook.io/datacentral-knowledge-center/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://uidata.gitbook.io/datacentral-knowledge-center/product-guides/item-management.md).

# Item Management

Oversee Power BI Items and maintain security for your Tenant

* [x] Connect to Power BI Workspaces
* [x] Add a Power BI Items to your tenant

{% hint style="info" %}
**Important:** your personal 'My Workspace' can not be added to your tenant
{% endhint %}

* **Accessible Workspaces:** Gain visibility into workspaces accessible through your Azure AD account in the Power BI Service or those accessible via your configured [Power BI Service Principal](/datacentral-knowledge-center/deployments/power-bi-service-principal.md).
* **Role Assignment for Access Control:** Assign roles to reports to manage and control access levels, determining which roles have access to specific reports, see [Role Management](/datacentral-knowledge-center/product-guides/user-and-role-management.md#creating-roles) for more details.

***

### Workspaces and your tenant

The accessibility of workspaces within your tenant is contingent upon the Tenant configurations, which dictate whether workspaces are embedded using your Azure AD account or a Power BI Service Principal. To ensure correct functionality, both the Azure AD account and the Service Principal must hold a minimum 'Member' role within their respective workspaces in Power BI.

To add a workspace to your tenant, navigate to '*Administration -> Power BI Items*' and click on '*Manage Workspaces*'.

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2Fg6a3BHVWnj3ox5ioBNKI%2Fimage.png?alt=media&amp;token=1aa1560b-0d22-4c23-bacb-80ac0025cc80" alt=""><figcaption><p>Add workspace</p></figcaption></figure>

To add a report from a workspace, click '*Add New Item*,' then select your workspace and the report you wish to embed.

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FCqQRosh7ar2zq2f1aGZj%2Fimage.png?alt=media&amp;token=02deb0a8-eae7-4e21-83d8-c729be5a2244" alt=""><figcaption></figcaption></figure>

Once workspaces and reports have been added, your users can embed reports if:

<img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FzflvacjMHn651w22biwb%2Fazure_internaluser_logo_color.svg?alt=media&amp;token=ec9c5a91-37b1-43b3-9e75-b866d0c0150a" alt="" data-size="line"> **Azure AD embedding:**&#x20;

* Azure AD users need to be at least '*Viewer*' within corresponding workspace in Power BI Service (same for external Azure AD users)
* Through Service Principal as fallback options if they don't have access to corresponding workspace.

**Power BI Service Principal embedding:**

* As fallback option when <img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FzflvacjMHn651w22biwb%2Fazure_internaluser_logo_color.svg?alt=media&amp;token=ec9c5a91-37b1-43b3-9e75-b866d0c0150a" alt="" data-size="line"> Azure AD lacks access to the specific workspace
* <img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FIaT9SjI9mqkHE6OuGEvY%2Fuserpass_logo_color.svg?alt=media&amp;token=6cb40bd4-8017-4842-9b51-08a38505d02c" alt="" data-size="line"> User Pass and <img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FBobjOCqTQlxUQg3QQaXC%2Fmobileid_logo_color.svg?alt=media&amp;token=39cc0f9d-c3b3-4beb-a3ed-9b3e31553cdc" alt="" data-size="line"> Mobile ID users require the Service Principal to embed reports

{% hint style="info" %}
If workspace is on a dedicated capacity ![](https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2F9PyR0FK0dl8O7Twk7vOP%2Fpowerbi_dedicatedcapacity.svg?alt=media\&token=a96bda9b-954b-4de0-8ed9-e0011b404a94)

* Azure AD users can embed without Power BI Pro License and not receive a banner
* Service Principal can embed for User Pass and Mobile ID users and not receive a banner
  {% endhint %}

Diagram showing workspaces with and without capacity, and how reports are embedded into a tenant depending on the user type:

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FfTs1HS4Mf2OIWrUUeaji%2Fimage.png?alt=media&amp;token=8e5845ae-59da-4a04-a765-e2d65a06e518" alt=""><figcaption></figcaption></figure>

***

### Additional Data

When embedding a report in DataCentral, you will need to click on '*Additional Data*' depending on the reports data model. Here are two possible scenarios.

1. The Power BI report is embedding a Paginated Report (.rdl) within it as a visual. Then, include the GUID for the Paginated Report in the '*Additional Data*' section, and type is '*Report*'.

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2F12LfHlhHp2SJnrVQQWu9%2Fimage.png?alt=media&amp;token=0534538b-98ab-4fae-abc5-0731d167314c" alt=""><figcaption><p>Paginated Report within a Power BI Report</p></figcaption></figure>

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FNqSzu6b10WNkOoIaUGz2%2Fimage.png?alt=media&amp;token=49701da0-47c4-4441-a86d-40e3d19a502c" alt=""><figcaption><p>Diagram view of lineage</p></figcaption></figure>

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2F0SdB865Y7kT4rxU2RwHf%2Fimage.png?alt=media&amp;token=ac0715ec-a5e0-4bfa-a607-9086be5a98c1" alt=""><figcaption><p>Additional Data for embedding Paginated Report</p></figcaption></figure>

2. The paginated report (.rdl) has dependencies on a semantic model that has Row-Level Security. Then, the GUID for the semantic model must be included in the  '*Additional Data'*, type is '*dataset'*, and '*Has RLS'* option checked.

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FREJybEaz267LGLp08hXF%2Fimage.png?alt=media&amp;token=2bd61458-c497-40d2-b918-2d764409210f" alt=""><figcaption><p>Paginated Report with RLS</p></figcaption></figure>

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FGWzGlkN6hMTQqHlYnujo%2Fimage.png?alt=media&amp;token=7a46da64-fb07-49c0-9de2-ff2ff200a01d" alt=""><figcaption><p>Paginated Report on a RLS semantic model</p></figcaption></figure>

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FtOdW2VdzszMaQ3l4Xa0K%2Fimage.png?alt=media&amp;token=3ba2f53d-e5af-4e19-9fd7-991c49dd5c21" alt=""><figcaption><p>Additional Data for embedding Paginated Report</p></figcaption></figure>

***

### Pin Tenant Home Page

To set a default report on your tenant's home page, either click '*Go to reports*' on the Home page or navigate to '*Administration -> Power BI Reports*'.

If permitted, your users can subsequently pin their own home page.

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2F6XpPFSu4nEfxtBFrEPwc%2Fimage.png?alt=media&amp;token=d41a0b84-f272-4334-96bc-0c594f1312a3" alt=""><figcaption><p>Tenant Home Page</p></figcaption></figure>

Locate the report intended for embedding on the tenant's home page and click on it.

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FkphEJ2KPyazniVQqGIVy%2Fimage.png?alt=media&amp;token=889758e9-ddb7-4b32-83ae-5118a36763c5" alt=""><figcaption><p>Pin to Home</p></figcaption></figure>

Ensure that your AAD users have access or that your Service Principal has access to the workspace where the report is embedded from.

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FbOcbMWJRa8XNVGxaaNil%2Fimage.png?alt=media&amp;token=77daecc6-02ac-4be2-a1ab-9babfb2c8353" alt=""><figcaption><p>Tenant overview</p></figcaption></figure>

If permitted, your users can overwrite the default home page by pinning a report of their choice.

<figure><img src="https://1952150759-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FfEoiVXBZDmtsCCNsaMab%2Fuploads%2FtGxAE2Lk7J5jAiXetk6I%2Fimage.png?alt=media&amp;token=84103358-d384-4f77-9ca9-79d89381e72e" alt=""><figcaption><p>Report of choice</p></figcaption></figure>
