843
Chapter 33: Authorizing Securables
33
Securables Permissions
The database user can be granted granular permission to specifi c securable objects
using the Securables page of the Database Role Properties form, as shown in
Figure 33-1.
FIGURE 33-1
The Securables page is used to grant specifi c permission to individual objects.
The permissions that can be granted depend on the type of object. Even databases and
servers are included as a securable object, which presents several database-specifi c
permissions.
Here is why servers need to be a securable themselves. Having server control is effectively
the same as being a member of sysadmin. But if you’re auditing only for membership in the
sysadmin role and you’re not auditing for server-level permissions, you’ll never catch when
c33.indd 843c33.indd 843 7/31/2012 10:01:24 AM7/31/2012 10:01:24 AM
http://www.it-ebooks.info