mirror of
https://github.com/MariaDB/server.git
synced 2025-07-29 05:21:33 +03:00
Fix privilege checking for sequence
MDEV-13732 User with SELECT privilege can ALTER sequence
This commit is contained in:
63
mysql-test/suite/sql_sequence/grant.test
Normal file
63
mysql-test/suite/sql_sequence/grant.test
Normal file
@ -0,0 +1,63 @@
|
||||
#
|
||||
# Test some grants with sequences
|
||||
# Note that replication.test also does some grant testing
|
||||
#
|
||||
|
||||
SET @@SQL_MODE = REPLACE(@@SQL_MODE, 'NO_AUTO_CREATE_USER', '');
|
||||
create database mysqltest_1;
|
||||
use mysqltest_1;
|
||||
grant all on mysqltest_1.* to 'normal'@'%';
|
||||
grant select on mysqltest_1.* to 'read_only'@'%';
|
||||
grant select,insert on mysqltest_1.* to 'read_write'@'%';
|
||||
grant select,insert,alter on mysqltest_1.* to 'alter'@'%';
|
||||
grant alter on mysqltest_1.* to only_alter@'%';
|
||||
|
||||
connect(normal,localhost,normal,,mysqltest_1);
|
||||
connect(read_only,localhost,read_only,,mysqltest_1);
|
||||
connect(read_write,localhost,read_write,,mysqltest_1);
|
||||
connect(alter,localhost,alter,,mysqltest_1);
|
||||
connect(only_alter, localhost, only_alter,,mysqltest_1);
|
||||
|
||||
connection normal;
|
||||
create sequence s1;
|
||||
select next value for s1;
|
||||
alter sequence s1 restart= 11;
|
||||
select * from s1;
|
||||
|
||||
connection read_only;
|
||||
--error ER_TABLEACCESS_DENIED_ERROR
|
||||
select next value for s1;
|
||||
--error ER_TABLEACCESS_DENIED_ERROR
|
||||
alter sequence s1 restart= 11;
|
||||
select * from s1;
|
||||
|
||||
connection read_write;
|
||||
select next value for s1;
|
||||
--error ER_TABLEACCESS_DENIED_ERROR
|
||||
alter sequence s1 restart= 11;
|
||||
select * from s1;
|
||||
|
||||
connection alter;
|
||||
select next value for s1;
|
||||
alter sequence s1 restart= 11;
|
||||
select * from s1;
|
||||
|
||||
connection only_alter;
|
||||
--error ER_TABLEACCESS_DENIED_ERROR
|
||||
select next value for s1;
|
||||
alter sequence s1 restart= 11;
|
||||
--error ER_TABLEACCESS_DENIED_ERROR
|
||||
select * from s1;
|
||||
|
||||
#
|
||||
# Cleanup
|
||||
#
|
||||
|
||||
connection default;
|
||||
drop database mysqltest_1;
|
||||
drop user 'normal'@'%';
|
||||
drop user 'read_only'@'%';
|
||||
drop user 'read_write'@'%';
|
||||
drop user 'alter'@'%';
|
||||
drop user 'only_alter'@'%';
|
||||
|
Reference in New Issue
Block a user