Re: Informix security
Posted in 1998
Clem Akins wrote: > > John asks: > >Anyone out there setting permissions at the user level? I'd like to > >implement basic security on our system at the table level. DB > >Privileges would be an option, but HP is not on the port list for 4gl, > >only RDS (which we don't use). I'm not sure about BMC or Platinum; I've > >heard that those software packages can be a resource hog. > > > >Any options? What options? > > Have you read the chapter entitled "Granting and Limiting Access to Your > Database" in the "Informix Guide to SQL-Tutorial"? It explains in great > detail setting table-level permissions for each user. > Read it. While it woould work under normal circumstances . . . We have a test system and a production system. 4GL developers have command-line access to both systems, although rarely on the production system. My understanding of roles is that the role would be embedded into the 4gl program, thus preventing certain table access. The problem is that the same people who would add the role to the 4gl would also have access to the role name. All that is needed would be a DBACCESS session and . . . > The topic is covered by a chapter of the "OnLine System Administration" > course as well, which is well worth the cost (IMHO.) Taking such a > class can save you endless hours of frustration and "learning curve." > Been there, done that. Good class. > This process is easily automated, but don't do it without researching > the archives of the IIUG at http://www.iiug.org . You'll find several > scripts there for setting and displaying permissions. > I'll need to check it out again. I didn't see anything the first time. > I would be surprised to find that Informix did not port to HP the product > that you seek. Perhaps you should check again to verify that. (Informix > ports almost *everything* to HP as a first-tier archictecture.) > Too bad it wasn't an Informix product. DB Privileges is a 3rd party 4gl program. Would have made my life easier . . . .<sigh> John Carlson Informix DBA WH Smith, Inc.