notes/user.sql
2018-11-08 22:38:11 -05:00

37 lines
1.2 KiB
SQL

DROP USER IF EXISTS salesreader;
CREATE ROLE salesreader WITH
LOGIN
NOSUPERUSER
NOCREATEDB
NOCREATEROLE
INHERIT
NOREPLICATION
CONNECTION LIMIT -1
ENCRYPTED PASSWORD 'md5b66677418e59ca921c20ff40534685a7';
--------------------grant--------------------------------------------------
GRANT USAGE ON SCHEMA rlarp TO salesreader;
GRANT SELECT /*, UPDATE, INSERT, DELETE*/ ON ALL TABLES IN SCHEMA rlarp TO salesreader;
GRANT USAGE ON ALL SEQUENCES IN SCHEMA rlarp TO salesreader;
ALTER DEFAULT PRIVILEGES IN SCHEMA rlarp GRANT SELECT/*, UPDATE, INSERT, DELETE*/ ON TABLES TO salesreader;
ALTER DEFAULT PRIVILEGES IN SCHEMA rlarp GRANT USAGE ON SEQUENCES TO salesreader;
---------------------------revoke---------------------------------------
REVOKE USAGE ON SCHEMA tps FROM salesreader;
REVOKE USAGE ON SCHEMA rlarp FROM salesreader;
REVOKE SELECT /*, UPDATE, INSERT, DELETE*/ ON ALL TABLES IN SCHEMA rlarp FROM salesreader;
REVOKE USAGE ON ALL SEQUENCES IN SCHEMA rlarp FROM salesreader;
ALTER DEFAULT PRIVILEGES IN SCHEMA rlarp REVOKE SELECT/*, UPDATE, INSERT, DELETE*/ ON TABLES FROM salesreader;
ALTER DEFAULT PRIVILEGES IN SCHEMA rlarp REVOKE USAGE ON SEQUENCES FROM salesreader;