16.10 - Session Constraint Values for Directory Users - Teradata Database

Teradata Database Security Administration

prodname
Teradata Database
vrm_release
16.10
created_date
June 2017
category
Administration
Security
featnum
B035-1100-161K
  • A directory user who is mapped to a permanent Teradata Database user inherits the permanent user privileges and constraint assignments.
  • A directory user who is not mapped to a permanent database user, but who uses Sign-On As to log on as a permanent user, inherits the user privileges and constraint assignments.
  • Directory users who are mapped to multiple constraint value sources (users or profiles) must use the user=user_name or profile=profile_name option in the logon string to specify the source for default constraint values and OVERRIDE privileges.
  • Directory users can use the SET SESSION CONSTRAINT option to access any mapped or inherited constraint assignments.
  • For directory users with no mappings and only PUBLIC or EXTUSER privileges, the session constraint value is NULL, and the user cannot access row level security tables.