Skip to main content

Azure SQL logins roles permissions

 --for sql logins

SELECT * FROM sys.sql_logins;

SELECT * FROM sys.sysusers;

SELECT * FROM sys.database_principals 

--- to connect master sql logins to the users in the user databases --- run this in user database

select l.name as [login name],u.name as [user name] from sysusers u inner join sys.sql_logins l on u.sid=l.sid



-- For AAD logins:

SELECT * FROM sys.server_principals 

SELECT * FROM sys.database_principals 


-- To retrive role and it's granted members:

SELECT    roles.principal_id                            AS RolePrincipalID

  ,    roles.name                                    AS RolePrincipalName

  ,    database_role_members.member_principal_id    AS MemberPrincipalID

  ,    members.name                                AS MemberPrincipalName

FROM sys.database_role_members AS database_role_members  

JOIN sys.database_principals AS roles  

  ON database_role_members.role_principal_id = roles.principal_id  

JOIN sys.database_principals AS members  

  ON database_role_members.member_principal_id = members.principal_id

  order by 2;  

GO


-- display role and members

--select * FROM sys.database_role_members

--select * FROM sys.database_principals order by name

SELECT DP1.principal_id                            AS DBRolePrincipalID,

DP1.name AS DatabaseRoleName,   

DRM.member_principal_id    AS MemberDBPrincipalID,

    isnull (DP2.name, 'No members') AS DatabaseUserName   

FROM sys.database_role_members AS DRM  

RIGHT OUTER JOIN sys.database_principals AS DP1  

    ON DRM.role_principal_id = DP1.principal_id  

LEFT OUTER JOIN sys.database_principals AS DP2  

    ON DRM.member_principal_id = DP2.principal_id  

WHERE DP1.type = 'R'

ORDER BY DP1.name;  


-- retrive database object level permissions granted

--select * from sys.database_permissions


SELECT DISTINCT pr.principal_id, pr.name AS [UserName], pr.type_desc AS [User_or_Role], pr.authentication_type_desc AS [Auth_Type], pe.state_desc,

    pe.permission_name, pe.class_desc, o.[name] AS 'Object' 

    FROM sys.database_principals AS pr 

    JOIN sys.database_permissions AS pe ON pe.grantee_principal_id = pr.principal_id

    LEFT JOIN sys.objects AS o on (o.object_id = pe.major_id)

order by 3,2

Comments

Popular posts from this blog

Opatch apply/lsinventory error: oneoff is corrupted or does not exist

I am applying the quarterly patch for 19c RDBMS, I tried using napply but failed, but somehow it corrupted the inventory though nothing applied. further apply and lsinventory command ran into error like this: $ ./OPatch/opatch lsinventory Oracle Interim Patch Installer version 12.2.0.1.21 Copyright (c) 2020, Oracle Corporation.  All rights reserved. Oracle Home       : /u02/app/oracle/19.0.0 Central Inventory : /u01/app/oraInventory    from           : /u02/app/oracle/19.0.0/oraInst.loc OPatch version    : 12.2.0.1.21 OUI version       : 12.2.0.7.0 Log file location : /u02/app/oracle/19.0.0/cfgtoollogs/opatch/opatch2020-09-08_13-35-59PM_1.log Lsinventory Output file location : /u02/app/oracle/19.0.0/cfgtoollogs/opatch/lsinv/lsinventory2020-09-08_13-35-59PM.txt -------------------------------------------------------------------------------- Inventory load failed... OPatch cannot load inventory ...

oracle dba_hist_sysmetric_summary

found this blog is helpful to get CPU and IO statistics on oracle database. http://shob-dbadmin.blogspot.ca/2012/12/how-to-find-total-io-of-database.html courtesy to  Shomil Bansal , below are hist writing, not mine. How to find total IO of the database instance Total IO of database instance is sum of the physical reads, physical writes and redo writes. There are several views to find these values. v$sysmetric  - Reports metric values for only the most current time sample 60 secs. v$sysmetric_summary  - Reports metric values for time sample of 1 hour. v$sysmetric_history  - Reports metric values every 60 sec from the time instance is up. Better way to analyse IO using this view to take deltas between two time periods. dba_hist_sysmetric_history  - All the above views are refreshed when the instance is restarted. This view, part of AWR, stores the historical stats. I have used this view for my report. Query: ====== set lines 350...

ORA_RMAN_SGA_TARGET

assume that we lost all the files of oracle database but we do have rman backup, when trying to bring up a dummy database before restore start, I get this error. RMAN> startup nomount force; WARNING: cannot translate ORA_RMAN_SGA_TARGET value startup failed: ORA-01078: failure in processing system parameters ORA-01565: error in identifying file '+DATA/PROD/spfilePROD.ora' ORA-17503: ksfdopn:2 Failed to open file +DATA/PROD/spfilePROD.ora ORA-15056: additional error message ORA-17503: ksfdopn:DGOpenFile05 Failed to open file +DATA/prod/spfileprod.ora ORA-17503: ksfdopn:2 Failed to open file +DATA/prod/spfileprod.ora ORA-15173: entry 'spfileprod.ora' does not exist in directory 'prod' ORA-06512: at line 4 starting Oracle instance without parameter file for retrival of spfile RMAN-00571: =========================================================== RMAN-00569: =============== ERROR MESSAGE STACK FOLLOWS =============== RMAN-00571: =================================...