Showing posts with label therei. Show all posts
Showing posts with label therei. Show all posts

Thursday, March 22, 2012

detecting group of logins

Hello there
I have some applications that talks with sql server.
On some of them i have problem of access denied.
In all of them they are use windows authentication.
and on sql server there are many logins. Is there a way to know when user is
entered from which login he used to access inside? and in case of failure is
there a way to know what login the user tried to access?Roy,
I am afraid I do not fully understand your problem, but let me try.
From your title, I guess that your users are using their domain logins
(mydomain\mylogin) to login to the serve, but that you are not granting
database rights to individual logins, but to domain groups
(mydomain\mySQLgroup1, etc).
Is that correct?
If so, each individual when he logs in, he is authenticated as himself
(mydomain\mylogin), but he inherits the rights granted to all group logins
(mydomain\mySQLgroup1, etc) of which his login is a member. So, he is not
running as one of those group logins at all, but always runs as his personal
login.
To determine how the personal login gets (or fails to get) rights to an
object you will have to examine the rights granted to the group logins of
which he is a member. You can then use sp_helprotect to examine rights
within a database and sp_helplogins to determine what database roles a login
(either personal or group) has been granted.
A subtle way that a login will fail is when it is a member of a group login
that has a default database definition that the group does not actually have
rights to. Then the attempt to login can fail trying to access the default
database at login time. (If a login is a member of many group logins and
those group logins have different default databases, then you cannot predict
which default database will be applied at login time.)
If the default database problem is what is affecting you, then change that
definition.
RLF
"Roy Goldhammer" <roy@.hotmail.com> wrote in message
news:OE$fRG4eHHA.4364@.TK2MSFTNGP06.phx.gbl...
> Hello there
> I have some applications that talks with sql server.
> On some of them i have problem of access denied.
> In all of them they are use windows authentication.
> and on sql server there are many logins. Is there a way to know when user
> is entered from which login he used to access inside? and in case of
> failure is there a way to know what login the user tried to access?
>

Monday, March 19, 2012

Detaching replicated database

Hello there
I have database that i marked it before as publisher. Since then it showed
with hand near to it. And then i can't detach it.
I remove the publisher and it didn't help
What should i do for detach it now?
any help would be useful
Whell Paul
How can i get this book?
"Paul Ibison" <Paul.Ibison@.Pygmalion.Com> wrote in message
news:27bd01c4af70$fd679b00$a301280a@.phx.gbl...
> I'm not too sure what stage the system is in - you
> mention you have removed the publisher - does this mean
> that you have disabled publishing, or removed the
> publication. I think it must be the latter. In this case
> try resetting the replication flags on the database in
> question. EG if it was Pubs:
> exec sp_dboption 'pubs','published',false
> exec sp_dboption 'pubs','merge publish',false
> After that you should be able to detack.
> HTH,
> Paul Ibison (SQL MVP)
> (recommended sql server 2000 replication book:
> http://www.nwsu.com/0974973602p.html)
>
|||Oded,
I've been lucky enough to have a sort of advanced
preview, but to register for it when it comes out
publically (imminently AFAIK) have a look at this
address: http://www.nwsu.com/0974973602reg.html.
Apparently it will eventually be available on Amazon
etc. - Hilary will be able to give you more info (if he
doesn't see this thread then post a separate one in this
newsgroup FAO Hilary Cotter).
Regards,
Paul Ibison (SQL Server MVP)