Dear readers of our blog, we'd like to recommend you to visit the main page of our website, where you can learn about our product SQLS*Plus and its advantages.
 
SQLS*Plus - best SQL Server command line reporting and automation tool! SQLS*Plus is several orders of magnitude better than SQL Server sqlcmd and osql command line tools.
 

REQUEST COMPLIMENTARY SQLS*PLUS LICENCE

Enteros UpBeat offers a patented database performance management SaaS platform. It proactively identifies root causes of complex revenue-impacting database performance issues across a growing number of RDBMS, NoSQL, and deep/machine learning database platforms. We support Oracle, SQL Server, IBM DB2, MongoDB, Casandra, MySQL, Amazon Aurora, and other database systems.

PostgreSQL Grant and Revoke privileges

9 September 2020

PostgreSQL Grant

You can grant GRANT and REVOKE rights for different database objects in PostgreSQL. We will see how to grant and revoke table privileges in PostgreSQL.

Grant privileges for a table

You can give users different privileges for tables. These permissions can be any combination of SELECT, INSERT, UPDATE or DELETE, INDEX, CREATE, ALTER, DROP, GRANT OPTION, or ALL.

Syntax to provide table privileges in PostgreSQL

GRANT privileges ON object TO user;
privileges

Privileges to appoint. This can be any of the following values:

 

PrivilegesDescription
SELECTAbility to execute SELECT operators for a table.
INSERTAbility to execute INSERT operators for a table.
UPDATEAbility to execute UPDATE operators for a table.
DELETEAbility to execute DELETE operators for a table.
TRUNCATEAbility to execute TRUNCATE operators on a table.
REFERENCESAbility to create external keys (requires privileges for both parent and child tables).
TRIGGERAbility to create triggers for a table.
CREATEAbility to perform CREATE TABLE operators.
ALLProvides all privileges.

 

  • object – The name of the database object for which you grant privileges. In case you grant privileges for a table, this will be the name of the table.
  • user – The name of the user to whom these privileges will be granted.

Some examples to understand how to grant table privileges in PostgreSQL

For example, if you want to grant SELECT, INSERT, UPDATE, and DELETE privileges to a table named products for a user named trizor, you must run the following GRANT statement:

GRANT SELECT, INSERT, UPDATE, DELETE ON products TO trizor;

You can also use the keyword ALL to specify that you want to grant all privileges to a user named trizor. For example:

GRANT ALL ON products TO trizor;

If you want to grant all users only SELECT access to the products table, you can grant PUBLIC privileges. For example:

GRANT SELECT ON products TO PUBLIC;

Recall the privileges for the table

Once you grant the privileges, you may need to cancel some or all of these privileges. To do this you can run the revoke command. You can revoke any combination of SELECT, INSERT, UPDATE, DELETE, TRUNCATE, REFERENCES, TRIGGER, CREATE, or ALL.

The syntax for revoking table privileges in PostgreSQL

REVOKE privileges ON object FROM user;
privileges

Privileges for review. This can be any of the following values:

PrivilegesDescription
SELECTAbility to execute SELECT operators for a table.
INSERTAbility to execute INSERT operators for a table.
UPDATEAbility to execute UPDATE operators for a table.
DELETEAbility to execute DELETE operators for a table.
TRUNCATEAbility to execute TRUNCATE operators on a table.
REFERENCESAbility to create external keys (requires privileges for both parent and child tables).
TRIGGERAbility to create triggers for a table.
CREATEAbility to perform CREATE TABLE operators.
ALLProvides all privileges

 

  • object – The name of the database object for which you are revoking the privileges. In the case of revocation of privileges for a table, this will be the name of the table.
  • user – The name of the user for whom the privileges are to be revoked.

Examples of how to revoke privileges for a table in PostgreSQL

For example, if you want to revoke the DELETE and UPDATE privileges for a table named products for a user named trizor, you must run the following REVOKE statement:

REVOKE DELETE, UPDATE ON products FROM trizor;

If you want to revoke all table privileges for a user named trizor, you can use the ALL keyword as follows:

REVOKE ALL ON products FROM trizor;

If you granted SELECT * (i.e. all users) privileges in the products table and wanted to revoke those privileges, you can use the following REVOKE statement:

REVOKE SELECT ON products FROM PUBLIC;

PostgreSQL DBA: Grant and Revoke Privileges in PostgreSQL

 
Tags: , , , ,

MORE NEWS

 

Preamble​​NoSql is not a replacement for SQL databases but is a valid alternative for many situations where standard SQL is not the best approach for...

Preamble​​MongoDB Conditional operators specify a condition to which the value of the document field shall correspond.Comparison Query Operators $eq...

5 Database management trends impacting database administrationIn the realm of database management systems, moreover half (52%) of your competitors feel...

The data type is defined as the type of data that any column or variable can store in MS SQL Server. What is the data type? When you create any table or...

Preamble​​MS SQL Server is a client-server architecture. MS SQL Server process starts with the client application sending a query.SQL Server accepts,...

First the basics: what is the master/slave?One database server (“master”) responds and can do anything. A lot of other database servers store copies of all...

Preamble​​Atom Hopper (based on Apache Abdera) for those who may not know is an open-source project sponsored by Rackspace. Today we will figure out how to...

Preamble​​MongoDB recently introduced its new aggregation structure. This structure provides a simpler solution for calculating aggregated values rather...

FlexibilityOne of the most advertised features of MongoDB is its flexibility.  Flexibility, however, is a double-edged sword. More flexibility means more...

Preamble​​SQLShell is a cross-platform command-line tool for SQL, similar to psql for PostgreSQL or MySQL command-line tool for MySQL.Why use it?If you...

Preamble​​Writing an application on top of the framework on top of the driver on top of the database is a bit like a game on the phone: you say “insert...

Preamble​​Oracle Coherence is a distributed cache that is functionally comparable with Memcached. In addition to the basic function of the API cache, it...

Preamble​​IBM pureXML, a proprietary XML database built on a relational mechanism (designed for puns) that offers both relational ( SQL / XML ) and...

  What is PostgreSQL array? In PostgreSQL we can define a column as an array of valid data types. The data type can be built-in, custom or enumerated....

Preamble​​If you are a Linux sysadmin or developer, there comes a time when you need to manage an Oracle database that can work in your environment.In this...

Preamble​​Starting with Microsoft SQL Server 2008, by default, the group of local administrators is no longer added to SQL Server administrators during the...