Role Documentation
Answered: amber (solid confidence) — Art Kagel gives a specific, correct answer (create a custom role, grant CONNECT not RESOURCE/DBA) and Richard Snoke adds a Redbook reference with a worked example; never explicitly confirmed by the asker.
Advisory only.
Posted in 2011
Topics: Security, Permissions & Auditing
IDS 11.50 FC7W1GE RHEL 5 Hi folks!!! Does anybody know where can I find a documentation about roles? I need to grant select on SMI tables of a application databases and select, insert, delete and update where tabid > 99. I've found resource role to do this, but with this role, an user is able to create,drop and modify objects, and I cannot permit that. Can anybody help me? Best Regards, Alberto.
See the Guide to SQL Syntax manual for details on Roles. You will have to create your own role for this and grant access to the role to the appropriate users and make this role the default role for those users. These users' connection level privilege should be GRANT CONNECT not GRANT RESOURCE or GRANT DBA Art Art S. Kagel Advanced DataTools (www.advancedatatools.com) IIUG Board of Directors (art@iiug.org) Blog: http://informix-myview.blogspot.com/ Disclaimer: Please keep in mind that my own opinions are my own opinions and do not reflect on my employer, Advanced DataTools, the IIUG, nor any other organization with which I am associated either explicitly, implicitly, or by inference. Neither do those opinions reflect those of other individuals affiliated with any entity with which I am affiliated nor those of the entities themselves. On Mon, Mar 14, 2011 at 11:26 AM, ALBERTO ROMEU PESSONIO FILHO < arfilho@orizonbrasil.com.br> wrote: > IDS 11.50 FC7W1GE > RHEL 5 > > Hi folks!!! > > Does anybody know where can I find a documentation about roles? > I need to grant select on SMI tables of a application databases and select, > insert, delete and update where tabid > 99. > I've found resource role to do this, but with this role, an user is able to > create,drop and modify objects, and I cannot permit that. > > Can anybody help me? > > Best Regards, > Alberto. > > > > ******************************************************************************* > Forum Note: Use "Reply" to post a response in the discussion forum. > > --20cf307f3816b1d4e8049e735979
Hi, In additon to the product manuals, see the redbook at http://www.redbooks.ibm.com/abstracts/sg247465.html?Open. Section 5.2.1 in that book gives a full example of using roles. Cheers, Dick Snoke IBM ChannelWorks dsnoke@us.ibm.com (404) 487-1595 From: "ALBERTO ROMEU PESSONIO FILHO" <arfilho@orizonbrasil.com.br> To: ids@iiug.org Date: 03/14/11 11:27 AM Subject: Role Documentation [23070] Sent by: ids-bounces@iiug.org IDS 11.50 FC7W1GE RHEL 5 Hi folks!!! Does anybody know where can I find a documentation about roles? I need to grant select on SMI tables of a application databases and select, insert, delete and update where tabid > 99. I've found resource role to do this, but with this role, an user is able to create,drop and modify objects, and I cannot permit that. Can anybody help me? Best Regards, Alberto. ******************************************************************************* Forum Note: Use "Reply" to post a response in the discussion forum.