oracle中存储过程可见权限,Oracle数据库存储过程与权限
在執(zhí)行存儲過程時,我們可能會遇到權(quán)限問題 ● 定義者權(quán)限存儲過程 ● 調(diào)用者權(quán)限存儲過程 在數(shù)據(jù)庫中創(chuàng)建存儲過程時,定義者權(quán)限是缺省模式 當(dāng)指定AUTHID CURRENT_USER關(guān)鍵字后,便是調(diào)用者權(quán)限存儲過程 他倆之間最根本的差異在于role能否在存儲過程中生效
在執(zhí)行存儲過程時,我們可能會遇到權(quán)限問題
● 定義者權(quán)限存儲過程
● 調(diào)用者權(quán)限存儲過程
在數(shù)據(jù)庫中創(chuàng)建存儲過程時,,定義者權(quán)限是缺省模式
當(dāng)指定AUTHID CURRENT_USER關(guān)鍵字后,便是調(diào)用者權(quán)限存儲過程
他倆之間最根本的差異在于role能否在存儲過程中生效
㈠ 定義者權(quán)限存儲過程問題
定義者權(quán)限存儲過程role無效,必須要有顯式授權(quán)
即便是擁有dba role,還是不能訪問不同用戶的表
sys@EMREP> grant connect,resource to u1 identified by u1;
Grant succeeded.
sys@EMREP> grant dba to u2 identified by u2;
Grant succeeded.
sys@EMREP> conn u1/u1
Connected.
u1@EMREP> create table t as select * from user_objects;
Table created.
sys@EMREP> conn u2/u2
Connected.
u2@EMREP> create or replace procedure p_test
2 as
3 begin
4 delete from u1.t;
5 commit;
6 end;
7 /
Warning: Procedure created with compilation errors.
u2@EMREP> show error;
Errors for PROCEDURE P_TEST:
LINE/COL ERROR
-------- -----------------------------------------------------------------
4/3
PL/SQL: SQL Statement ignored
4/18
PL/SQL: ORA-00942: table or view does not exist
u2@EMREP> conn u1/u1
Connected.
u1@EMREP> grant all on t to u2;
Grant succeeded.
u1@EMREP> conn u2/u2
Connected.
u2@EMREP> create or replace procedure p_test
2 as
3 begin
4 delete from u1.t;
5 commit;
6 end;
7 /
Procedure created.
㈡ 調(diào)用者權(quán)限存儲過程問題
調(diào)用者權(quán)限存儲過程role編譯不可見,但運(yùn)行時可見
用動態(tài)SQL避免直接授權(quán),而將權(quán)限的檢查延后至運(yùn)行時
u2@EMREP> conn u1/u1
Connected.
u1@EMREP> revoke all on t from u2;
Revoke succeeded.
u1@EMREP> conn u2/u2
Connected.
u2@EMREP> create or replace procedure p_test
2 authid current_user
3 as
4 begin
5 delete from u1.t;
6 commit;
7 end;
8 /
Warning: Procedure created with compilation errors.
u2@EMREP> show error;
Errors for PROCEDURE P_TEST:
LINE/COL ERROR
-------- -----------------------------------------------------------------
5/3
PL/SQL: SQL Statement ignored
5/18
PL/SQL: ORA-00942: table or view does not exist
u2@EMREP> create or replace procedure p_test
2 authid current_user
3 as
4 begin
5 execute immediate
6 'delete from u1.t';
7 commit;
8 end;
9 /
Procedure created.
u2@EMREP> exec p_test;
PL/SQL procedure successfully completed.
u2@EMREP> select count(*) from u1.t;
COUNT(*)
----------
0
本條技術(shù)文章來源于互聯(lián)網(wǎng),如果無意侵犯您的權(quán)益請點(diǎn)擊此處反饋版權(quán)投訴
本文系統(tǒng)來源:php中文網(wǎng)
總結(jié)
以上是生活随笔為你收集整理的oracle中存储过程可见权限,Oracle数据库存储过程与权限的全部內(nèi)容,希望文章能夠幫你解決所遇到的問題。
- 上一篇: java ftp上传超时_有关java的
- 下一篇: mysql 实例启动利用binlog恢复