Re: Add domain user?
From: Jeff Duncan (jduncan_at_gtefcu.org)
Date: Thu, 6 May 2004 14:51:57 -0400
SA will overrule. The user will be SA.
-- Jeff Duncan MCDBA, MCSE+I "js" <js@email@example.com> wrote in message news:edWLIh5MEHA.1644@TK2MSFTNGP09.phx.gbl... > Thanks Jasper. > > Another question about this one: if a particular role of which the user is > a > member has been denied a specific object permission (such as SELECT), the > user is unable to exercise that permission. The most restrictive > permission > (DENY) takes precedence. > > What will happen in this case: MYDN\Test is belonging to local > administrator > group and System Admin Server Role. And I set "db_denydatawriter" to this > user in Northwind database. Can this user exec the "Updte ." statement in > Northwind's table? > > > > Please advice.... > > > > "Jasper Smith" <firstname.lastname@example.org> wrote in message > news:OSzDVD5MEHA.email@example.com... >> By default, a new AD user will have no access to a specific SQL Server >> unless they are added to a windows group that has access to SQL Server or >> their domain account is explicitly added as a login. >> >> -- >> HTH >> >> Jasper Smith (SQL Server MVP) >> >> I support PASS - the definitive, global >> community for SQL Server professionals - >> http://www.sqlpass.org >> >> >> "js" <js@firstname.lastname@example.org> wrote in message >> news:uB%23HnU3MEHA.3712@TK2MSFTNGP10.phx.gbl... >> > Hi, >> > By default, when add a domain user in the Domain Controller, is it >> > this >> new >> > user can access the sql data? >> > public role only? Thanks... >> > >> > >> >> > >