A part of the .NET Framework that provides a unified programming model for building line-of-business desktop applications on Windows.
Thank you for reaching out. The Block Public Internet Access setting can be locked and enforced at a higher security or governance level, which prevents Power BI tenant admins from modifying it. Common reasons include:
- Microsoft Defender for Cloud/ Tenant security baseline
- The setting may be enforced by an organization-wide security policy.
- Azure Policy or Management Group enforcement
- If your Power BI tenant is governed by Azure policies, this setting may be locked at the subscription or management group level.
- Tenant created under a restricted Microsoft 365 environment
- Some tenants (especially enterprise or regulated tenants) have public access permanently restricted by design.
- Publish to web disabled at tenant level
- When public sharing is restricted, the related internet access control is automatically locked.
Required check and actions
- Confirm required admin role
Ensure you are signed in with one of the following roles:- Global Administrator
- Power BI Service Administrator
- Check publish to web setting Go to :
PowerBI service -> Admin portal -> Tenant settings -> Publish to web- Ensure Publish to web is enabled for the required users or security groups.
- if this setting is also greyed out, it confirms higher-level enforcement.
- Verify Microsoft Defender/ Security Defaults Ask you Global Admin/ security admin to review:
if a policy enforces blocking public access, it must be modified or exclude.Microsoft 365 Defender -> Cloud Apps / Security Policies - Check Azure Policy enforcement If you organization uses Azure governance:
- Review Azure Policy assignments
- Check Management Groups or Subscriptions linked to Power BI Only Azure or Tenant-level admins can modify these.
Please let us know if you require any further assistance we’re happy to help. If you found this information useful, kindly mark this as "Accept Answer".