Smart procedure
Posted in 2013
Topics: Platform-Specific Issues
I am wanting to restrict updating/inserting of certain types of records in a table to only one AIX group. What would be the best way to do this? If there was a way to find out the groups that a user belonged to in a procedure then I could use that data to restrict it. If that's not possible would it be better to use an external mechanism like C to do this? Thanks for your input.
If you are using O/S to manage your users could you possibly create a couple of external tables on the /etc/passwd and /etc/group table? Have not tried this and not sure I would do it, but it is an interesting possible solution. -----Original Message----- From: ids-bounces@iiug.org [mailto:ids-bounces@iiug.org] On Behalf Of JOHN CALLICOTTE Sent: Thursday, February 28, 2013 3:18 PM To: ids@iiug.org Subject: Smart procedure [29627] I am wanting to restrict updating/inserting of certain types of records in a table to only one AIX group. What would be the best way to do this? If there was a way to find out the groups that a user belonged to in a procedure then I could use that data to restrict it. If that's not possible would it be better to use an external mechanism like C to do this? Thanks for your input. ******************************************************************************* Forum Note: Use "Reply" to post a response in the discussion forum.
Yeah, I'm thinking of using a table which has the list of users that have permission, and then bang on that in the procedure. Thanks!
I'm going to assume that you do not have PUBLIC privileges on any production tables, so why not just restrict access to those tables that are sensitive using user or role privileges to prevent updates, inserts, deletes from unauthorized users. You could create a ROLE that corresponds to the AIX group and when you create a user from that AIX group make the corresponding role those users' default and only role. Art Art S. Kagel Advanced DataTools (www.advancedatatools.com) Blog: http://informix-myview.blogspot.com/ Disclaimer: Please keep in mind that my own opinions are my own opinions and do not reflect on my employer, Advanced DataTools, the IIUG, nor any other organization with which I am associated either explicitly, implicitly, or by inference. Neither do those opinions reflect those of other individuals affiliated with any entity with which I am affiliated nor those of the entities themselves. On Thu, Feb 28, 2013 at 3:17 PM, JOHN CALLICOTTE <john.callicotte@ottawa.edu > wrote: > I am wanting to restrict updating/inserting of certain types of records in > a > table to only one AIX group. What would be the best way to do this? If > there > was a way to find out the groups that a user belonged to in a procedure > then I > could use that data to restrict it. If that's not possible would it be > better > to use an external mechanism like C to do this? > > Thanks for your input. > > > > ******************************************************************************* > Forum Note: Use "Reply" to post a response in the discussion forum. > > --f46d04016b49ec1c2604d6d17cb6