Home icon
Enable complex row-level security in embedded dashboards for non-provisioned users in Amazon QuickSight with OR-based tags

Blog



This article explains how to implement complex row-level security (RLS) in Amazon QuickSight embedded dashboards for non-provisioned users using OR-based tags.

  • QuickSight Enterprise now supports OR conditions combined with AND in RLS tags
  • Enables complex multi-tenant access patterns without provisioning users in QuickSight
  • Anonymous embedding allows data customization via RLS tags at runtime
  • Implementation requires creating tag keys on datasets and setting SessionTags via API
  • OR of AND logic allows rules like (Hospital=X AND Region=Y) OR (Payor=Z AND State=W)
  • Use case demonstrates healthcare SaaS application securing data by hospital, region, payor, and state
  • Eliminates need for separate user management in QuickSight

This feature enables ISVs to provide sophisticated, role-based analytics to application users at scale without infrastructure overhead or QuickSight user provisioning.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.