Returns the UPN of the person signed in, such as user@example.com, and is commonly used in the filters of dynamic row-level security roles.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains USERPRINCIPALNAME in context, with comparison tables and the common traps.
Terms in this definition
- UPN
User principal name, the user@domain sign-in name of a user. Only domain suffixes verified in the tenant can be used.
- Chat message roles
Labels on chat messages: instructions go under system, the person's input under user, the model's previous answers under assistant, and results returned by a called tool under tool (or function).
- RLS
Row-level security: filtering the data each person can see down to permitted rows. Power BI models apply it through DAX rules on roles, which bind just Viewers and anyone holding Read or Build; Fabric Warehouse instead uses a T-SQL policy that calls a predicate function.
Related terms
- Bulk operations
Entra admin centre tasks run from a CSV template you download first: creating member users, inviting guests, deleting users (only the UserPrincipalName column) and exporting the user list.
- Expression Context
A setting on calculated columns. Standard, the default, stores Import column values at refresh time, whereas User Context leaves the column unstored and works out user-dependent functions like USERPRINCIPALNAME or USERCULTURE when queried.
- IdFix
A Microsoft utility that detects and corrects problems in on-premises AD attributes, such as duplicates and invalid characters in
proxyAddressesoruserPrincipalName, ahead of directory synchronisation. - Soft match
If matching on sourceAnchor fails and the cloud account lacks an immutableId, Microsoft Entra Connect tries to join an on-premises user to an existing cloud one using their primary SMTP address or userPrincipalName.
- Username binding policy
Decides how certificate-based authentication locates the account, by matching a chosen certificate field with a chosen user attribute. Out of the box, Principal Name is checked against userPrincipalName.