Add a role as an underlying role of a standalone role. Members of the standalone role
inherit all system privileges and roles of the underlying role, but do not become members of
the underlying role. Members of the underlying role do not become members of the standalone
role.
Prerequisites
Database Version |
Role-Based Standalone Role Privileges |
SAP Sybase IQ 15.3 and 15.4 |
Not supported. |
SAP Sybase IQ
16.0 |
To enable the Manage Roles option requires one of:- Administrative rights over the role (role administrator).
- MANAGE ROLES system privilege if the role has a global role administrator.
To then add an underlying system role requires MANAGE ROLES
system privilege.
To then add an underlying user-defined or
compatibility role requires one of: - Administrative rights over the underlying role (role
administrator).
- MANAGE ROLES system privilege if the underlying role has a
global role administrator.
|
- The
SAP Sybase IQ resource is authenticated and running.
- The selected resource supports role-based
security
Task- In the Perspective Resources view, select the resource and
select .
- In the left pane, select .
- Select a standalone role from the right pane and either:
- Click the arrow to the right of the name and select Manage
Roles, or
- From the Administration Console menu bar, select .
Warning! When adding an underlying role to a role, be sure you select the correct menu option.
Each option has different inheritance outcomes. To review the differences, see
Security Implications of the Managing Grantees and Managing Roles
Options.
A list of underlying roles currently granted to the standalone role
appears.
- Click Grant.
- Select one or more underlying roles to grant.
Tip: Use Shift-click or
Control-click to select multiple roles.
- Click OK.
Newly granted underlying roles appear with Role only rights
(no administrative rights).
- (Optional) (For compatibility and user-defined roles only) To modify the
administrative rights of an underlying role, highlight a role. Click in the Grant Options column, click the arrow,
and select the administrative rights to be granted.
Grant Option |
Description |
Role only |
(default) Grantee can use the underlying system privileges of the
role only. |
Administrative only |
Grantee can grant and revoke the selected role to other users and
roles, but cannot use its underlying system privileges. |
Administrative and role |
Grantee can grant and revoke the selected role to other users and
roles and use its underlying system privileges. |
- Click OK.