Admins in Fabric flip these toggles to enable or disable features across an organisation, either globally, just for chosen security groups, or excluding certain groups. Recent releases moved them to OneLake catalog > Govern > Configurations.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Tenant settings in context, with comparison tables and the common traps.
Terms in this definition
- Document Intelligence add-on capabilities
Extra Document Intelligence options switched on with the features query parameter: barcodes, formulas, keyValuePairs, languages, ocrHighResolution, queryFields and styleFont.
- OneLake catalog
The hub in Fabric for finding, exploring and governing the items you have access to, split into Explore and Govern tabs. Tenant settings can now be reached from OneLake catalog > Govern too.
- Govern
The part of the Cloud Adoption Framework concerned with keeping cloud use under control by setting guardrails made of policies, procedures and tools. It runs continuously across the estate alongside Secure and Manage.
Related terms
- Azure Maps visual
The map visual based on Azure Maps, offering layers such as bubbles, heat maps, 3D columns, filled areas, markers, paths and reference shapes. It has to be switched on by an admin in tenant settings and takes over from the Bing map and filled map, both due for deprecation.
- Capacity administrator
Assigned when a Fabric capacity is created, this role applies to that one capacity only. Its holders can alter settings, attach workspaces, add contributors and override any tenant settings delegated to the capacity; it is not the same as the Fabric administrator role.
- Delegated tenant settings
Selected Fabric tenant settings that the tenant-level admin hands down so that domain, capacity or workspace admins may choose differently within their own area, by ticking Override tenant admin selection. Delegation for any one setting happens through domains or through capacities, but never via both routes.
- DirectQuery for Power BI semantic models
Lets an author whose report is live-connected to a published semantic model choose Make changes to this model, turning that link into a local composite model to which their own tables and columns can be added. Tenant settings have to allow it.
- Domain
A way of grouping workspaces by area of the business, in support of a data mesh approach. Items take on their workspace's domain, letting you filter the OneLake catalog by it, and certain tenant settings can be passed to domain admins; domains have no effect on access permissions.
- Export data
An option on a visual for downloading its data to Excel or .csv, either as summarised data or, for users with Build permission, as underlying data. What is permitted depends on report and tenant settings, and tenant settings win where they conflict.
- Semantic model discoverability
Provided discovery tenant settings allow it, people lacking access can spot promoted or certified semantic models through OneLake catalog search and ask for Build permission. This grants nothing by itself; it is not a security control.
- Service principals can call Fabric public APIs
A setting in the developer section of the Fabric tenant settings. It allows service principals belonging to chosen security groups to use Fabric's public APIs, which is required if, say, one needs to query an API for GraphQL.