Default Permissions for Shared Fabric Warehouses
You have a Fabric tenant that contains a workspace named Workspace1 and a user named User1. Workspace1 contains a warehouse named DW1. You share DW1 with User1 and assign User1 the default permissions for DW1. What can User1 do?
Community Votes
100% of anonymous learners picked answer C. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
The core concept is the distinction between workspace-level permissions and data warehouse sharing defaults; the trap is assuming 'default' means full read/write or dataset integration capabilities.
This question tests the default permissions assigned when sharing a Microsoft Fabric data warehouse. It establishes that default sharing grants read access via the SQL analytics endpoint but not dataset usage or direct file access.
Users often select option A because they confuse warehouse sharing with dataset sharing in Power BI, where read access might imply report building capabilities in certain contexts.
Community Discussion (3 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Why the Answer Is Correct
When you share a data warehouse in Microsoft Fabric with a user and do not explicitly assign additional permissions, the recipient receives the default "Read" permission. According to Microsoft documentation, this specific permission level allows the recipient to connect to the warehouse using the Azure SQL Analytics endpoint (T-SQL). It does not grant permission to build reports on the associated semantic model or dataset directly.Why the Other Options Are Wrong
Option A is incorrect because building reports requires access to the underlying dataset/semantic model, which is not automatically granted by sharing the warehouse itself. Option D is incorrect because OneLake files are protected by storage isolation; users cannot directly access Parquet files unless they have explicit OneLake storage permissions. Option B is partially true in spirit (reading data) but technically imprecise because the mechanism is the SQL endpoint, whereas "reading tables" might imply other interfaces like Notebooks or Dataflows Gen2, which require different permissions.Community Comment Notes
The community consensus strongly supports C. As noted by Azure_2023, the official docs confirm that default sharing results in "Read" permission which only allows connection via the SQL analytics endpoint. Another commenter, Pegooli, reinforces that shared recipients get read access specifically for the SQL Endpoint.Official Reference
Exam Strategy
Always distinguish between sharing a 'Warehouse' (data layer) and sharing a 'Dataset' (BI layer). For warehouses, default sharing is strictly for T-SQL connectivity via the SQL endpoint.
Frequently Asked Questions
Does default warehouse sharing allow report building?
No. Default sharing grants SQL endpoint access. Report building requires access to the linked semantic model/dataset.
Can users edit data in a shared warehouse by default?
No. The default permission is 'Read'. Write/Edit permissions must be explicitly assigned.
Related Analysis
Practice All DP-600 Questions
Access 115 questions with complete answers and detailed explanations.
View Full DP-600 Practice Test →