Re: DROP Statement

From: Sue Hoegemeier (Sue_H@nomail.please)
Date: 07/17/02


From: Sue Hoegemeier <Sue_H@nomail.please>
Date: Wed, 17 Jul 2002 07:17:23 -0600


Some of the create permissions are transferrable but alter
permissions are not. The list of create statement
permissions you can grant can be found in the books online
topic:
Managing Permissions
For a user to create the objects as being owned by dbo, the
user needs to be the database owner, a member of sysadmins
or a member of db_ddladmin. Membership in these roles would
allow dropping objects. For user who are not members of
these groups, the database owner, sysadmins, db_ddladmins
and db_securityadmins can change the object ownership using
sp_changeobjectowner.

-Sue

On Wed, 17 Jul 2002 12:06:20 +0100, "Rich"
<richbrownesq@hotmail.com> wrote:

>Hi,
>
>Is it possible to allow permissions to the CREATE and ALTER statements but
>not DROP. I can use the db_ddladmin role but this allows the user to DROP
>objects. Ideally i want the user to be able to create objects as dbo too.
>
>Thanks
>Rich
>



Relevant Pages

  • Re: Changing groups
    ... pleaderb, sue, frank, ed are members of group projectb ... Everyone is a member of group user. ... depending on the file's permissions they can read and write the ... I do this all the time, using Samba. ...
    (Debian-User)
  • Re: How to remove a user from a mail group (Tried to search...)
    ... If you're using Distribution Groups, these cannot show up in any ACLs ... If it is a Security Group, you'll need to figure out the what different ... resources the group could have permissions on. ... I go to "member of" tab. ...
    (microsoft.public.exchange.admin)
  • Re: How to use a Group Distribution list inorder to send and received messages
    ... In the Permissions list, locate Send As, and then click to select the ... permission of the user account that is a member of one of administrative ... groups will be reset to match the ACL of the AdminSDHolder thread. ... Directory domain controller that holds the primary domain controller ...
    (microsoft.public.exchange.admin)
  • Re: How to use a Group Distribution list inorder to send and received messages
    ... In the Permissions list, locate Send As, and then click to select the ... permission of the user account that is a member of one of administrative ... groups will be reset to match the ACL of the AdminSDHolder thread. ... Directory domain controller that holds the primary domain controller ...
    (microsoft.public.exchange.admin)
  • Re: Delegate permission to full control OU (GPO):getting access is denied. Server Operator can do it
    ... must have allow permissions to both for that action. ... >> Yes, the permissions below are checked for MyAdmin, but he is still ... >> I created a copy account named TestMyadmin (domain user only and member ... >> ControlOU group, which has full-control over that OU) and the problem ...
    (microsoft.public.win2000.active_directory)