permissions - How to create a read-only server role on SQL Server 2012? -
i granting "view database" permission when creating new server role, realized permission allows user view system databases.
i trying create server role read-only , can read database.
is there way create user-defined server role read user databases? or have through user mapping per user?
so, no answer, can't assign database level permissions server level roles, can't add server role database role, find frustrating i've tried same thing you.
the way ended doing not using server role @ all, did following:
- created ad group each server wanted read access for
- created login on server group
- assigned login db_datareader role on model database
- assigned login db_datareader role on pre-existing databases
- added windows users ad group
this way, can assign (or train servicedesk folks assign) users need read access databases on server ad group, plus, role set in model database, have access newly created databases on server too.
Comments
Post a Comment