RE: Select Any Table : Pros and Cons.

  • From: DENNIS WILLIAMS <DWILLIAMS@xxxxxxxxxxxxx>
  • To: "'oracle-l@xxxxxxxxxxxxx'" <oracle-l@xxxxxxxxxxxxx>
  • Date: Sat, 15 May 2004 16:37:53 -0500

Nik
  I don't see where anyone has responded yet, but the list has been acting
flaky lately.

In general, beware of granting privileges named "ANY". I would strongly
favor creating a role, granting select on all needed tables to that role,
then granting the role to the developers. I'm guessing that today this
database does not contain any information that is private from any
developers. But you never know about tomorrow. You may incorporate a new
schema and forget the developers have this privilege. I haven't tested this,
but I'm guessing if this database has any links to other databases, a clever
developer might be able to see enough information to figure out how to get
to that other system. Just strikes me as poor practice.

Dennis Williams
DBA
Lifetouch, Inc.
dwilliams@xxxxxxxxxxxxx 

-----Original Message-----
From: oracle-l-bounce@xxxxxxxxxxxxx
[mailto:oracle-l-bounce@xxxxxxxxxxxxx]On Behalf Of H elp_me
Sent: Friday, May 14, 2004 2:39 PM
To: oracle-l@xxxxxxxxxxxxx
Subject: Select Any Table : Pros and Cons.


 Hello,   Can someone list me the pros and cons of SELECT ANY TABLE
priviligeto Developers in Test and Production Databases.   Thanks in
Advance.  Nik  
----------------------------------------------------------------------------
Best Restaurant Giveaway Ever! Vote for your favorites for a chance to win
$1million![1] 

--- Links ---
   1 http://g.msn.com/8HMAENUS/2746??PS=47575
----------------------------------------------------------------
Please see the official ORACLE-L FAQ: http://www.orafaq.com
----------------------------------------------------------------
To unsubscribe send email to:  oracle-l-request@xxxxxxxxxxxxx
put 'unsubscribe' in the subject line.
--
Archives are at //www.freelists.org/archives/oracle-l/
FAQ is at //www.freelists.org/help/fom-serve/cache/1.html
-----------------------------------------------------------------
----------------------------------------------------------------
Please see the official ORACLE-L FAQ: http://www.orafaq.com
----------------------------------------------------------------
To unsubscribe send email to:  oracle-l-request@xxxxxxxxxxxxx
put 'unsubscribe' in the subject line.
--
Archives are at //www.freelists.org/archives/oracle-l/
FAQ is at //www.freelists.org/help/fom-serve/cache/1.html
-----------------------------------------------------------------

Other related posts: