- Oracle Database 12c Security Cookbook
- Zoran Pavlovi? Maja Veselica
- 331字
- 2021-07-02 16:43:16
Creating a common role
Common roles are roles created in the root container and they exist in all containers. These roles can have a different set of privileges in different containers and they can be granted to either common or local users or roles.
Getting ready
To complete this recipe, you'll need an existing common user who has create role
privilege granted commonly.
How to do it...
- Connect to the root container as a common user who has
create role
privilege granted commonly (for example,c##zoran
or system user):SQL> connect c##zoran@cdb1
- Create a common role (for example,
c##role1
):SQL> create role c##role1 container=all;
How it works...
When you create a common role, that role exists in all containers in that database (including a root container and existing and future pluggable databases).

Figure 12
c##zoran@CDB1> select * from dba_roles where role='C##ROLE1'; ROLE PASSWORD AUTHENTICAT COM O ---------------- -------- ----------- --- - C##ROLE1 NO NONE YES N c##zoran@CDB1> connect c##zoran/oracle@pdb1 Connected. c##zoran@PDB1> select * from dba_roles where role='C##ROLE1'; ROLE PASSWORD AUTHENTICAT COM O ---------------- -------- ----------- --- - C##ROLE1 NO NONE YES N c##zoran@PDB1> connect c##zoran/oracle@pdb2 Connected. c##zoran@PDB2> select * from dba_roles where role='C##ROLE1'; ROLE PASSWORD AUTHENTICAT COM O ---------------- -------- ----------- --- - C##ROLE1 NO NONE YES N
There's more...
You can also create common roles by using Oracle Enterprise Manager Cloud Control (OEM) 12c.
You should connect to the root (CDB$ROOT
) as a common user who has create role
privilege granted commonly (for example, c##zoran
or system user). From the Administration menu, select Security (drop-down menu) and then Roles (see Figure 13):

Figure 13
On the Roles page, click on the Create button and the Create Role page appears (Figure 14):

Figure 14
On the Create Role page, you name the role on the General tab (for example, c##role2
). Also, you may grant other roles and privileges to c##role2
(using the tabs Roles, System Privileges, and Object Privileges). After choosing the options and granting privileges to the role, click on the OK button to create it.
- Spring Cloud Alibaba核心技術與實戰案例
- Go語言高效編程:原理、可觀測性與優化
- C和C++安全編碼(原書第2版)
- Podman實戰
- C語言程序設計
- Microsoft System Center Orchestrator 2012 R2 Essentials
- jQuery開發基礎教程
- Java 9模塊化開發:核心原則與實踐
- Python時間序列預測
- Linux Device Drivers Development
- Android系統原理及開發要點詳解
- RocketMQ實戰與原理解析
- Instant Apache Camel Messaging System
- Using Yocto Project with BeagleBone Black
- Getting Started with Web Components