[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

SF.net SVN: ledger-smb:[2693] trunk/sql/modules/Roles.sql



Revision: 2693
          http://ledger-smb.svn.sourceforge.net/ledger-smb/?rev=2693&view=rev
Author:   jfkw
Date:     2009-06-17 16:29:32 +0000 (Wed, 17 Jun 2009)

Log Message:
-----------
Roles.sql: add GRANTs enabling admin access.

Add GRANT SELECT ON user_listable, salutation TO public.

Add GRANT EXECUTE ON FUNCTION user__get_all_users TO public.

The above missing grants prevented a user from accessing the admin.pl interface.

Modified Paths:
--------------
    trunk/sql/modules/Roles.sql

Modified: trunk/sql/modules/Roles.sql
===================================================================
--- trunk/sql/modules/Roles.sql	2009-06-16 22:10:20 UTC (rev 2692)
+++ trunk/sql/modules/Roles.sql	2009-06-17 16:29:32 UTC (rev 2693)
@@ -1416,6 +1416,7 @@
 GRANT ALL ON session_session_id_seq TO PUBLIC;
 GRANT SELECT ON users TO public;
 GRANT ALL ON user_preference TO public;
+GRANT SELECT ON user_listable TO public;
 GRANT SELECT ON custom_table_catalog TO PUBLIC;
 GRANT SELECT ON custom_field_catalog TO PUBLIC;
 grant select on menu_node, menu_attribute, menu_acl to public;
@@ -1434,6 +1435,10 @@
 GRANT SELECT ON translation TO public;
 GRANT SELECT ON pricegroup TO public;
 GRANT SELECT ON partstax TO public;
+GRANT SELECT ON salutation TO public;
+
+GRANT EXECUTE ON FUNCTION user__get_all_users() TO public;
+
 --TODO, lock recurring, pending_job, payment_queue down more
 -- Roles with no db permissions:
 CREATE ROLE "lsmb_<?lsmb dbname ?>__draft_edit" WITH INHERIT NOLOGIN;


This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site.