暂无图片
暂无图片
暂无图片
暂无图片
暂无图片

openGauss每日一练(5)|数据库用户管理

原创 少年中国强56。 2021-12-07
579

学习openGauss创建用户、修改用户属性、更改用户权限和删除用户、
连接opengauss
root@modb:~# su - omm
omm@modb:~$ gsql -r
gsql ((openGauss 2.0.0 build 78689da9) compiled at 2021-03-31 21:03:52 commit 0 last mr )
Non-SSL connection (SSL connection is recommended when requiring high-security)
Type “help” for help.
1.创建用户
–以下两种设置密码方法等效
omm=# CREATE USER jim PASSWORD ‘abcd@123’;
NOTICE: The encrypted password contains MD5 ciphertext, which is not secure.
CREATE ROLE
omm=# CREATE USER kim IDENTIFIED BY ‘abcd@456’;
NOTICE: The encrypted password contains MD5 ciphertext, which is not secure.
CREATE ROLE
–用户dim具有创建数据库权限
omm=# CREATE USER dim CREATEDB PASSWORD ‘abcd@789’;
NOTICE: The encrypted password contains MD5 ciphertext, which is not secure.
CREATE ROLE

–查看用户
omm=# \du
List of roles
Role name | Attributes | Member of
-----------±-----------------------------------------------------------------------------------------------------------------±----------
dim | Create DB | {}
gaussdb | Sysadmin | {}
jim | | {}
kim | | {}
omm | Sysadmin, Create role, Create DB, Replication, Administer audit, Monitoradmin, Operatoradmin, Policyadmin, UseFT | {}
2.修改用户属性
–修改密码
omm=# ALTER USER jim IDENTIFIED BY ‘Abcd@123’ REPLACE ‘abcd@123’;
NOTICE: The encrypted password contains MD5 ciphertext, which is not secure.
ALTER ROLE
–为用户jim增加CREATEROLE权限
omm=# ALTER USER jim CREATEROLE;
ALTER ROLE
-查看用户
omm=# \du
List of roles
Role name | Attributes | Member of
-----------±-----------------------------------------------------------------------------------------------------------------±----------
dim | Create DB | {}
gaussdb | Sysadmin | {}
jim | Create role | {}
kim | | {}
omm | Sysadmin, Create role, Create DB, Replication, Administer audit, Monitoradmin, Operatoradmin, Policyadmin, UseFT | {}
3.授权
–将用户jim的权限授权给用户kim
omm=# GRANT jim to kim;
omm=# GRANT ROLE
–将sysadmin权限授权给用户dim
omm=# GRANT ALL PRIVILEGES TO dim;
ALTER ROLE
–重命名用户dim
omm=# alter user dim rename to tim;
NOTICE: MD5 password cleared because of role rename
ALTER ROLE
–查看用户
omm=# \du
List of roles
Role name | Attributes | Member of
-----------±-----------------------------------------------------------------------------------------------------------------±----------
gaussdb | Sysadmin | {}
jim | Create role | {}
kim | | {jim}
omm | Sysadmin, Create role, Create DB, Replication, Administer audit, Monitoradmin, Operatoradmin, Policyadmin, UseFT | {}
tim | Create DB, Sysadmin | {}
4.回收权限
–撤消kim的权限
omm=# REVOKE jim FROM kim;
REVOKE ROLE
–撤消用户dim的sysadmin权限
omm=# revoke all privilege from tim;
ALTER ROLE
–查看用户
omm=# \du
List of roles
Role name | Attributes | Member of
-----------±-----------------------------------------------------------------------------------------------------------------±----------
gaussdb | Sysadmin | {} omm | Sysadmin, Create role, Create DB, Replication, Administer audit, Monitoradmin, Operatoradmin, Policyadmin, UseFT | {}
tim | Create DB | {}

omm=#
jim | Create role | {}
kim | | {}
5.删除用户
omm=# drop user tim;
DROP ROLE
omm=# ^C
omm=# drop user jim;
DROP ROLE
omm=# drop user kim;
DROP ROLE
omm=#

每日一练(5)opengauss数据在线
课程作业

root@modb:~#
root@modb:~# su - omm
omm@modb:~$ gsql -r
gsql ((openGauss 2.0.0 build 78689da9) compiled at 2021-03-31 21:03:52 commit 0 last mr )
Non-SSL connection (SSL connection is recommended when requiring high-security)
Type “help” for help.
1.创建用户user1、user2和user3,user1具有CREATEROLE 权限,user2具有CREATEDB权限,要求使用两种不同的方法设置密码
CREATE USER user1 PASSWORD ‘abcd@123’;
CREATE USER user2 PASSWORD ‘abcd@456’;
CREATE USER user3 PASSWORD ‘abcd@789’;
omm=# CREATE USER user1 PASSWORD ‘abcd@123’;
NOTICE: The encrypted password contains MD5 ciphertext, which is not secure.
omm=# CREATE ROLE
CREATE USER user2 PASSWORD ‘abcd@456’;
NOTICE: The encrypted password contains MD5 ciphertext, which is not secure.
CREATE ROLE
omm=# CREATE USER user3 PASSWORD ‘abcd@789’;
NOTICE: The encrypted password contains MD5 ciphertext, which is not secure.
CREATE ROLE
user1具有CREATEROLE 权限,user2具有CREATEDB权限,
omm=# ALTER USER user1 CREATEROLE;
ALTER ROLE
omm=# ALTER USER user3 CREATEDB;
ALTER ROLE
omm=# \du
List of roles
Role name | Attributes | Member of
omm=# -----------±-----------------------------------------------------------------------------------------------------------------±----------
gaussdb | Sysadmin | {}
omm | Sysadmin, Create role, Create DB, Replication, Administer audit, Monitoradmin, Operatoradmin, Policyadmin, UseFT | {}
user1 | Create role | {}
user2 | | {}
user3 | Create DB | {}

2.修改用户user1的密码

ALTER USER user1 IDENTIFIED BY ‘Abcd@123’ REPLACE ‘abcd@123’;
omm=# ALTER USER user1 IDENTIFIED BY ‘Abcd@123’ REPLACE ‘abcd@123’;
NOTICE: The encrypted password contains MD5 ciphertext, which is not secure.
ALTER ROLE
omm=# \du
List of roles
Role name | Attributes | Member of
omm=# -----------±-----------------------------------------------------------------------------------------------------------------±----------
gaussdb | Sysadmin | {}
omm | Sysadmin, Create role, Create DB, Replication, Administer audit, Monitoradmin, Operatoradmin, Policyadmin, UseFT | {}
user1 | Create role | {}
user2 | | {}
user3 | Create DB | {}
3.重命名用户user2
alter user user2 rename to user20;
alter user user2 rename to user20;
NOTICE: MD5 password cleared because of role rename
ALTER ROLE
4.将用户user1的权限授权给用户user3,再回收用户user3的权限
GRANT user1 to user3;
omm=# GRANT user1 to user3;
GRANT ROLE
omm=# \du
List of roles
Role name | Attributes | Member of
-----------±-----------------------------------------------------------------------------------------------------------------±----------
gaussdb | Sysadmin | {}
omm | Sysadmin, Create role, Create DB, Replication, Administer audit, Monitoradmin, Operatoradmin, Policyadmin, UseFT | {}
user1 | Create role | {}
user20 | | {}
user3 | Create DB | {user1}
REVOKE user3 FROM user1;
omm=# REVOKE user3 FROM user1;
WARNING: role “user1” is not a member of role “user3”
REVOKE ROLE

5.删除所有创建用户,过程中使用\du或\du+查看用户信息

drop user user1;drop user user20;drop user user
omm=# drop user user1;drop user user20;drop user user3;
DROP ROLE
DROP ROLE
omm=# DROP ROLE

omm=# \du
List of roles
Role name | Attributes | Member of
-----------±-----------------------------------------------------------------------------------------------------------------±----------
gaussdb | Sysadmin | {}
omm | Sysadmin, Create role, Create DB, Replication, Administer audit, Monitoradmin, Operatoradmin, Policyadmin, UseFT | {}

omm=#

最后修改时间:2021-12-27 15:06:44
「喜欢这篇文章,您的关注和赞赏是给作者最好的鼓励」
关注作者
【版权声明】本文为墨天轮用户原创内容,转载时必须标注文章的来源(墨天轮),文章链接,文章作者等基本信息,否则作者和墨天轮有权追究责任。如果您发现墨天轮中有涉嫌抄袭或者侵权的内容,欢迎发送邮件至:contact@modb.pro进行举报,并提供相关证据,一经查实,墨天轮将立刻删除相关内容。

评论