SYSOPER身份用户的权限限制

本文介绍了Oracle数据库中SYSOPER角色的特点,包括其权限限制与扩展。SYSOPER能够进行数据库的启动和关闭操作,但默认无法查询数据字典。通过授权SELECT ANY DICTIONARY和SELECT ANY TABLE权限给PUBLIC角色,SYSOPER可以查询数据字典。

摘要生成于 C知道 ,由 DeepSeek-R1 满血版支持, 前往体验 >

导读:

   站内相关文章|Related Articles 缺省的SYSOPER可以起停数据库,但是不能查询数据字典。

  

$ sqlplus "/ as sysdba"

SQL*Plus: Release 10.1.0.2.0 - Production on Fri Mar 25 17:20:49 2005

Copyright (c) 1982, 2004, Oracle. All rights reserved.

Connected to:

Oracle Database 10g Enterprise Edition Release 10.1.0.2.0 - 64bit Production

With the Partitioning, OLAP and Data Mining options

SYS AS SYSDBA on 25-MAR-05 >CREATE USER operator IDENTIFIED BY operator;

User created.

授予dba,sysoper角色。

SYS AS SYSDBA on 25-MAR-05 >grant dba,sysoper to operator;

Grant succeeded.



  以普通用户方式登录可以查询,因为具有DBA角色:

  

SYS AS SYSDBA on 25-MAR-05 >connect operator/operator

Connected.

OPERATOR on 25-MAR-05 >show user

USER is "OPERATOR"

OPERATOR on 25-MAR-05 >select count(*) from dba_users;

COUNT(*)

----------

12



  以SYSOPER身份登录,实际上用户身份切换为PUBLIC,不能查询数据字典:

  

OPERATOR on 25-MAR-05 >connect operator/operator as sysoper;

Connected.

PUBLIC AS SYSOPER on 25-MAR-05 >select count(*) from dba_users;

select count(*) from dba_users

*

ERROR at line 1:

ORA-00942: table or view does not exist

PUBLIC AS SYSOPER on 25-MAR-05 >show user

USER is "PUBLIC"



  但是此时有权启动数据库:

  

PUBLIC AS SYSOPER on 25-MAR-05 >shutdown immediate;

Database closed.

Database dismounted.

ORACLE instance shut down.

PUBLIC AS SYSOPER on 25-MAR-05 >startup

ORACLE instance started.

Database mounted.

Database opened.



  可以单独授予SELECT ANY DICTIONARY,SELECT ANY TABLE权限给PUBLIC角色,这样sysoper身份登录用户同时就获得查询字典及表权限。

  

PUBLIC AS SYSOPER on 25-MAR-05 >connect / as sysdba

Connected.

SYS AS SYSDBA on 25-MAR-05 >grant SELECT ANY DICTIONARY,SELECT ANY TABLE to public;

Grant succeeded.

SYS AS SYSDBA on 25-MAR-05 >connect operator/operator

Connected.

OPERATOR on 25-MAR-05 >connect operator/operator as sysoper

Connected.

PUBLIC AS SYSOPER on 25-MAR-05 >select count(*) from dba_users;

COUNT(*)

----------

12



本文转自

http://www.eygle.com/archives/2005/03/sysopereioaaeei.html
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值