Changing Administrative Rights on an Underlying Role of a Standalone Role

Changes a member's (grantee's) ability to manage an underlying role of a standalone role.

Prerequisites
Database Version Role-Based Standalone Role Privileges
SAP Sybase IQ 15.3 and 15.4 Not supported.
SAP Sybase IQ 16.0 Enable the Manage Roles option – you must have one of:
  • Administrative rights over the role (role administrator)
  • MANAGE ROLES system privilege if the role has a global role administrator

Add an underlying system role – you must have the MANAGE ROLES system privilege.

Add an underlying user-defined or compatibility role – you must have one of:
  • Administrative rights over the underlying role (role administrator)
  • MANAGE ROLES system privilege if the underlying role has a global role administrator
Task
  1. In the Perspective Resources view, select the resource, and select Resource > Administration Console.
  2. In the left pane, expand IQ Servers > Security > Role-Based, and then select Standalone Roles.
  3. Select a standalone role from the right pane and either:
    • Click the arrow to the right of the name and select Manage Roles, or
    • From the Administration Console menu bar, select Resource > Manage Roles.
    A list of underlying roles currently granted to the standalone role appears.
  4. Highlight a role to be modified. Click in the Grant Option column, click the arrow, and select the administrative rights to be granted.
    Note: Administrative rights cannot be modified on underlying roles which are system roles.
    Grant Option Description
    Role only (default) Grantee can use the underlying system privileges of the role only.
    Administrative only Grantee can grant and revoke the selected role to other users and roles, but cannot use its underlying system privileges.
    Administrative and role Grantee can grant and revoke the selected role to other users and roles and use its underlying system privileges.
  5. Do one of:
    • Click OK to update any changes to the database and exit the properties view.
    • Click Apply to update any changes to the database, but remain in the properties view.
    • Click Cancel to cancel any changes not updated to the database and exit the properties view.
Related concepts
Manage Standalone Role Administrators
Manage Global Role Administrators of a Standalone Role
Security Implications of the Managing Grantees and Managing Roles Options
Related tasks
Creating a Standalone Role
Deleting a Standalone Role
Adding a Grantee to a Standalone Role
Changing a Grantee's Administrative Rights on a Standalone Role
Removing a Grantee from a Standalone Role
Adding a Role to a Standalone Role
Removing a Role from a Standalone Role
Adding a System Privilege to a Standalone Role
Changing Administrative Rights on a Privilege Granted to a Standalone Role
Removing a System Privilege from a Standalone Role
Generating Standalone Role DDL Commands
Viewing or Modifying Role-Based Standalone Role Properties
Authenticating a Login Account for a Managed Resource
Related reference
Role-Based Standalone Role Privilege Summary