RE: user access
Posted in 2000
Mourad,
If *anybody* can do whatever he or she wants, then it sounds like there are
"public" privileges on your databases, tables, SP's, etc. I'd recommend
that you *at least* REVOKE the database CONNECT privilege for "public", and
then GRANT CONNECT for only those users that have business in the database.
Then it won't matter if a non-authorized user can get to dbaccess or not, if
they can't do anything on the database.
BTW, check out the environment variable NODEFDAC in the documentation, for
overriding the default granting of public access to new objects.
HTH,
Paul Mosser
-----Original Message-----
From: Michael Krzepkowski [mailto:michaelk@sqlcanada.com]
Sent: Wednesday, March 22, 2000 10:43 AM
To: informix-list@iiug.org
Subject: Re: user access
Hi!
Look for REVOKE command in SQL.
Michael
mourad wrote:
> Hi,
>
> I wonder how can I restrict the access to databases
> in IDS 7.3.
> Right now anybody having an account in our system can
> use dbaccess and do whatever he or she wants!
>
> -Mourad
>
> * Sent from AltaVista http://www.altavista.com Where you can also find
related Web Pages, Images, Audios, Videos, News, and Shopping. Smart is
Beautiful