Urgent: Newbie:Password for informix user
Posted in 2000
Topics: Security, Permissions & Auditing, Platform-Specific Issues
Dear all, I am using Informix Online Dynamic Server 7.23 on hp-ux 10.20. I would like to know the answer to the following queries. i) By default, Informix allows OS users to access the informix database thru 'ISQL' even though that user is not part of the informix database. How does this Os level authentication is done by Informix ? Is it possible to change this default behaviuor ? ii) Is there any way to create the user in the informix and set the password for them to enforce security ? If so, how can i do it ? iii) How can i see the list of users in the database ? any kind of early reply is highly appreciated. regards bala
Balasubramanian M <sbala@hclinsys.com> a écrit dans le message
news:8bhp5p$63a$1@news.xmission.com...
>
>
> Dear all,
>
> I am using Informix Online Dynamic Server 7.23 on hp-ux 10.20.
> I would like to know the answer to the following queries.
>
> i) By default, Informix allows OS users to access the informix
database
> thru 'ISQL' even though that user is not part of the informix
database.
> How does this Os level authentication is done by Informix ?
> Is it possible to change this default behaviuor ?
Yes, you can change the default, and if you've got the manuals handy
you could start by looking at GRANT and REVOKE. From the sound of it,
REVOKE CONNECT FROM PUBLIC would be a good starting point for you. Youcan set permissions on tables (and fragments of tables, or on columns
individually or by using roles) as well.
>
> ii) Is there any way to create the user in the informix and set the
> password for them to enforce security ? If so, how can i do it ?
This depends exactly how secure you want to be, and how the users are
connecting to the database. Users are visible in the sysusers table
once you have specifically GRANTed them permissions on the database,
but if they have command-line access to HP-UX then they can run
dbaccess or isql and get straight into the db unless you use the
permissions on the programs in the OS to stop them.
>
> iii) How can i see the list of users in the database ?
If you use (say) dbaccess <yourdbname> and do GRANT CONNECT TO
<username> you can then see this user using SELECT * FROM sysusers.
This table lists names users, and the type of access they have to the
database (the username should be the same one that you see in
/etc/passwd). The manual (available online from
<www.informix.com/answers>) tells you about the different levels of
access, and what you can do with permissions in general.
--
Andrew Pearson: "exactly what the web needs less of" (david bowie)
In article <8bhp5p$63a$1@news.xmission.com>,
Balasubramanian M <sbala@hclinsys.com> wrote:
>
>
> Dear all,
>
> I am using Informix Online Dynamic Server 7.23 on hp-ux 10.20.
> I would like to know the answer to the following queries.
>
> i) By default, Informix allows OS users to access the informix
database
> thru 'ISQL' even though that user is not part of the informix
database.
> How does this Os level authentication is done by Informix ?
> Is it possible to change this default behaviuor ?
>
> ii) Is there any way to create the user in the informix and set the
> password for them to enforce security ? If so, how can i do it ?
>
> iii) How can i see the list of users in the database ?
>
> any kind of early reply is highly appreciated.
>
> regards
> bala
>
>
Perhaps your Database has priveleges to user "public". you must revoke
("REVOKE") this privileges at Database and table level and
grant("GRANT") privileges to each user to Database an tables.
you can see the list of users in database for each table with
select * from systabauth
Sent via Deja.com http://www.deja.com/
Before you buy.