Removing the Global Role Administrator from a User-Extended Role

Remove the global role administrator from an existing user-extended role.

Prerequisites
Database Version Global Role Administrator Privileges
SAP Sybase IQ 15.3 and 15.4 Not supported.
SAP Sybase IQ 16.0 You must have one of:
  • Administrative rights over the role being managed
  • MANAGE ROLES system privilege
Task

If revoking membership in a role would result in a failure to meet the minimum number of role administrators for the selected role, an error message appears, and the removal fails.

To remove the global role administrator, you must remove the MANAGE ROLES system privilege from the list of grantees (Manage Grantees) of the role. Since MANAGE ROLES is a system privilege, it may also appear on the list of granted system privileges (Manage System Privilege) for the role. Removing the MANAGE ROLES system privilege from the granted system privileges list does not remove the global role administrator from the role.

  1. In the Perspective Resources view, select the resource, and select Resource > Administration Console.
  2. In the left pane, expand IQ Servers > Security > Role-Based, and then select User-Extended Roles.
  3. Select a role from the right pane and either:
    • Click the arrow to the right of the name and select Manage Grantee, or
    • From the Administration Console menu bar, select Resource > Manage Grantee.
    Note: The Manage Grantee option is unavailable if you do not have rights to manage the role.
  4. Select MANAGE ROLES and click Revoke.
    Note:
    • The Revoke button is unavailable if you do not have administrative rights to the selected system privilege.
  5. Do one of:
    • Click OK to update any changes to the database and exit the properties view.
    • Click Apply to update any changes to the database, but remain in the properties view.
    • Click Cancel to cancel any changes not updated to the database and exit the properties view.
Related concepts
DBA User Unable to Manage a User-Extended Role
Related tasks
Adding the Global Role Administrator to a User-Extended Role
Authenticating a Login Account for a Managed Resource