Re: Informix security
Posted in 1999
Terry Sikkema wrote:
> We use MS-Access 97 as a front end to the Informix Online Dynamic Server
> V.7.23 running on RS/6000 and AIX V4.3.
> We link the tables via ODBC. When we create the links, we have to
> supply a valid user-id/password, or the link fails. To complicate
> matters, we have automated the startup of the Access 97 database by
> supplying the password in an autoexec macro - otherwise the first time
> the tables are accessed in any way, ODBC asks for a password. All users
> are using the same password, but most of them don't even know it. By
> linking tables, we have found that some tables can be updated through
> the Access front end, and some cannot. I know the security on the
> Access links are the same for both types of tables, yet users can update
> one table, but not the other. The dbschema for Informix looks the same
> for both tables also. Why is this allowed?
>
> We would like it so that NONE of the informix tables can be updated
> through ODBC/Access 97. We have another software application that is
> writted for the database that does allow updates. What is the suggested
> informix security configuration for this setup?
I don't know, what informix suggests, but try creating different users for
the different tasks.
They need to be known to the system; disable their shell....
e.g.
useradd ifmx_master
useradd ifmx_guest
dont forget passwords ;)
then change permissions for the database tables..
revoke all on my_table from public;
grant all on my_table to ifmx_master;
grant connect on my_table to ifmx_master;
grant select on my_table to ifmx_guest;
and so on
Bye
Frank