permissions problem in IDS 7.31
Posted in 2003
Topics: Security, Permissions & Auditing, Versions, Editions & End-of-Life
Hello all,
Is it possible to 'revoke...as <user>'
similar to 'grant...as <user>'? I have
a table that has a grant statement on
it (from dbschema -p) as follows:
grant select on "<user1>".<table>
to "public" as "<user1>";
user1 does not exist and I am having
difficulty removing public select access
from the table.
Thanks.
Yousuf
Yousuf wrote:
> Hello all,
>
> Is it possible to 'revoke...as <user>'
> similar to 'grant...as <user>'?
No.
> I have
> a table that has a grant statement on
> it (from dbschema -p) as follows:
>
> grant select on "<user1>".<table>
> to "public" as "<user1>";
>
> user1 does not exist and I am having
> difficulty removing public select access
> from the table.
What problem? You should be able to grant and revoke for non-existent
users if you are logged in as informix. If it is the only table with
that name in the database, then omit the username part as in:
REVOKE SELECT ON <table> FROM ...
Cheers,
--
Mark.
+----------------------------------------------------------+-----------+
| Mark D. Stock mailto:mdstock@MydasSolutions.com |//////// /|
| Mydas Solutions Ltd http://MydasSolutions.com |///// / //|
| +-----------------------------------+//// / ///|
| |We value your comments, which have |/// / ////|
| |been recorded and automatically |// / /////|
| |emailed back to us for our records.|/ ////////|
+----------------------+-----------------------------------+-----------+
Yes in IDS 9.30; no in IDS 7.31.
It is not in IDS 7.31.UD5 version, but it is in IDS 9.30.UC3.
Maybe an upgrade is in order?
--
Jonathan Leffler (jleffler@us.ibm.com)
STSM, Informix Database Engineering, IBM Data Management Solutions
4100 Bohannon Drive, Menlo Park, CA 94025
Tel: +1 650-926-6921 Tie-Line: 630-6921
"I don't suffer from insanity; I enjoy every minute of it!"
|---------+---------------------------->
| | "Mark D. Stock" |
| | <mdstock@mydassol|
| | utions.com> |
| | Sent by: |
| | forum.subscriber@|
| | iiug.org |
| | |
| | |
| | 02/12/2003 04:24 |
| | AM |
| | |
|---------+---------------------------->
>-------------------------------------------------------------------------------
--------------------------------------------------------------|
| |
| To: ids@iiug.org |
| cc: |
| Subject: Re: permissions problem in IDS 7.31 [338] |
| |
| |
>-------------------------------------------------------------------------------
--------------------------------------------------------------|
Yousuf wrote:
> Hello all,
>
> Is it possible to 'revoke...as <user>'
> similar to 'grant...as <user>'?
No.
> I have
> a table that has a grant statement on
> it (from dbschema -p) as follows:
>
> grant select on "<user1>".<table>
> to "public" as "<user1>";
>
> user1 does not exist and I am having
> difficulty removing public select access
> from the table.
What problem? You should be able to grant and revoke for non-existent
users if you are logged in as informix. If it is the only table with
that name in the database, then omit the username part as in:
REVOKE SELECT ON <table> FROM ...
Cheers,
--
Mark.
+----------------------------------------------------------+-----------+
| Mark D. Stock mailto:mdstock@MydasSolutions.com |//////// /|
| Mydas Solutions Ltd http://MydasSolutions.com |///// / //|
| +-----------------------------------+//// / ///|
| |We value your comments, which have |/// / ////|
| |been recorded and automatically |// / /////|
| |emailed back to us for our records.|/ ////////|
+----------------------+-----------------------------------+-----------+