Microsoft Fabric Updates Blog

Auditing for Fabric SQL database (Preview)

Auditing for Fabric SQL database, is a powerful feature designed to help organizations strengthen security, ensure compliance, and gain deep operational insights into their data environments.

Why Auditing Matters

Auditing is a cornerstone of data governance. With Fabric SQL Database auditing, you can now easily track and log database activities—answering critical questions like who accessed what data, when, and how. This supports compliance requirements (such as HIPAA and SOX), enables robust threat detection, and provides a foundation for forensic investigations.

Key Highlights

  • Flexible Configuration: Choose from default ‘audit everything’, preconfigured scenarios (like permission changes, login attempts, data reads/writes, schema changes), or define custom action groups and predicate filters for advanced needs.
  • Seamless Access: Audit logs are stored in OneLake, making them easily accessible via T-SQL or OneLake Explorer.
  • Role-Based Access Control: Configuration and log access are governed by both Fabric workspace roles and SQL-level permissions, ensuring only authorized users can view or manage audit data.
  • Retention Settings: Customize how long audit logs are retained to meet your organization’s policy.

How It Works

Audit logs are written to a secure, read-only folder in OneLake and can be queried using the sys.fn_get_audit_file_v2 T-SQL function. Workspace and artifact IDs are used as identifiers, ensuring logs remain consistent even if databases move across logical servers. Access controls at both the workspace and SQL database level ensure only the right people can configure or view audit logs.

select event_time,action_id ,statement ,file_name,application_name from sys.fn_get_audit_file_v2
('https://onelake.blob.fabric.microsoft.com/<<workspace id>>/<<artifact id>>
/Audit/sqldbauditlogs/',default,default,default,default)

Example Use Cases

  • Compliance Monitoring: Validate a full audit trail for regulatory requirements.
  • Security Investigations: Track specific events like permission changes or failed login attempts.
  • Operational Insights: Focus on specific operations (e.g., DML only) or test retention policies.
  • Role-Based Access: Verify audit visibility across different user roles.

Getting Started

You can configure auditing directly from the Manage SQL Auditing blade in the Fabric Portal. Choose your preferred scenario, set retention, and (optionally) define custom filters—all through a simple, intuitive interface.

 

To learn more, and guidance getting started, refer to the Auditing for Fabric SQL database documentation.

 

Postagens relacionadas em blogs

Auditing for Fabric SQL database (Preview)

fevereiro 12, 2026 de Anna Hoffman

Since SQL database in Microsoft Fabric became generally available in November, customer adoption has grown rapidly. Organizations are using it to simplify their data estates, eliminate ETL pipelines, and get their operational data ready for analytics and AI—without managing infrastructure. It’s a fully managed, SaaS-native transactional database built for what comes next. If you’ve been … Continue reading “SQL database in Fabric: Built for SaaS, Ready for AI”

janeiro 28, 2026 de Katie Murray

If you’ve been trying to keep up with everything shipping in Microsoft Fabric, this January 2026 round-up is for you—covering the biggest updates across the platform, from new AI-powered catalog experiences and OneLake governance improvements to enhancements in Data Engineering, Data Warehouse, Real-Time Intelligence, and Data Factory. If you haven’t already, make sure FabCon Atlanta … Continue reading “Fabric January 2026 Feature Summary”