Re: HELP!!! UNIX groups and Informix roles driving me nuts!!!
Posted in 1998
On Tue, 28 Jul 1998 10:11:52 +1200, in article <35BCFB28.6AAC6241@taranaki.ac.nz>, Judy Mace <jmace@taranaki.ac.nz> wrote: >Yes, we do have this problem and have been told by Informix in Sydney >that the only way around this problem is to revoke all from public and >give each user select, connect etc permission to each table. Another >problem is that if you don't own the specific table you can't change the >premissions, so you have to log in as each owner. I would appreciate it >if someone out could advise me how to get around this situation. First situation: Make all tables owned by ONE user. Make a user such as prod for production and dev for development. Create all tables as that user. If tables already exist, rename them to old_tablename and create new tables. Move the data with insert into tablename select * from ood_tablename. Drop the old tables and re-create indexes, sp's etc. Set up roles for regular users among others. Grant each user to a role. Remove public access. As for Judy's question, she still needs to grant the role to the user but there's no reason it can't be automated and there's no reason she can't make the group name the same as the role name. >Judy. >edi_man@my-dejanews.com wrote: > >> We are running Informix 7.24 and are trying to create groups (or >> roles) in >> Informix which will filter the DB permissions to UNIX users whose UNIX >> group >> is the same as the Informix role. I need to know a couple of things: >> 1. Is >> there a difference between roles and groups in Informix? 2. Is what >> we are >> attempting even possible? We have a DB with at least 50 tables and >> should be >> able to split the DB access level permissions among 4 different >> groups, but >> it's not working. For example, I am a member of the group admin, >> which >> should have select,insert,update,delete on all tables. However, when >> I log >> in with the application, these permissions do not filter through based >> on my >> group membership. PLEASE HELP ME!!!! >> >> -----== Posted via Deja News, The Leader in Internet Discussion >> ==----- >> http://www.dejanews.com/rg_mkgrp.xp Create Your Own Free Member >> Forum > > -- for i in databasix primenet ; do ; gburnore@$i ; done --------------------------------------------------------------------------- How you look depends on where you go. --------------------------------------------------------------------------- Gary L. Burnore | '۳'''''''ۺ''''''''''۳ | '۳'''''''ۺ''''''''''۳ DOH! | '۳'''''''ۺ''''''''''۳ | '۳ 3 4 1 4 2 '' 6 9 0 6 9 '۳ spamgard(tm): zamboni | Official Proof of Purchase ===========================================================================