Re: ODBC & Client Access
Posted in 1996
Ray Riley <weho-isd@ci.west-hollywood.ca.us> writes: > Does anybody have an answer for ODBC client security? > > Once you open up ODBC to users, how do you keep them from modifying tables without the > benefit of applications enforcing the database integrity? > > Ideally, I should be able to monitor who connects via ODBC and control access to the > databases and tables without having to get involved with lots of messy grants and > revokes. I've read on this Newsgroup somebody mentioning a product/technique called > "Roles," but I haven't been able to find any reference to it elsewhere, but it is > supposed to help manage grants etc. Has anyone heard of, or have any info on this? <snip> Check out OpenLink's ODBC drivers. They implement ODBC with a server-side request broker that uses a security "rule book". You can enable access and various levels of read/write privledges by user, application, client host name/IP address, etc. I think you can find OpenLink at http://www.openlink.uk.co. I think they have a US Web site as well, but I'm not sure of the URL. You can also find them on CompuServe (GO OPENLINK). HTH Irwin Goldstein Objective Software Systems, Inc.