MYSQL的帳號管理和受權

用戶帳號:'user'@'host'mysql

建立格式:CREATE USER 'username'@'host' [IDENTIFIED BY 'password']sql

mysql> create user 'test'@'%';ide

Query OK, 0 rows affected (0.00 sec)spa

mysql> SELECT User,Host,Password FROM user;orm

+------+-----------+-------------------------------------------+ip

| User | Host      | Password                                  |ssl

+------+-----------+-------------------------------------------+ci

| root | localhost | *9F69E47E519D9CA02116BF5796684F7D0D45F8FA |it

| test | %         |                                           |io

+------+-----------+-------------------------------------------+

刪除用戶:DROP USER 'username'@'host';

mysql> DROP USER 'test'@'%';

Query OK, 0 rows affected (0.00 sec)

受權權限:GRANT priv_type,... ON [object_type] db_name.tb_name TO 'user'@'host' [IDENTIFIED BY 'password'] [WITH GRANT OPTION];

                若是用戶不存在GRANT直接建立

mysql> HELP GRANT;

Name: 'GRANT'

Description:

Syntax:

GRANT

    priv_type [(column_list)]

      [, priv_type [(column_list)]] ...

    ON [object_type] priv_level

    TO user_specification [, user_specification] ...

    [REQUIRE {NONE | ssl_option [[AND] ssl_option] ...}]

    [WITH with_option ...]

object_type:

    TABLE

  | FUNCTION

  | PROCEDURE

priv_level:

    *

  | *.* 全部庫的全部表

  | db_name.* 指定庫的全部表

  | db_name.tbl_name 指定庫的指定表

  | tbl_name

  | db_name.routine_name 指定庫的存儲例程

user_specification:

    user [IDENTIFIED BY [PASSWORD] 'password']

ssl_option:

    SSL

  | X509

  | CIPHER 'cipher'

  | ISSUER 'issuer'

  | SUBJECT 'subject'

with_option:

    GRANT OPTION

  | MAX_QUERIES_PER_HOUR count

  | MAX_UPDATES_PER_HOUR count

  | MAX_CONNECTIONS_PER_HOUR count

  | MAX_USER_CONNECTIONS count

查看指定用戶受權:SHOW GRANTS FOR 'user'@'host';

mysql> SHOW GRANTS FOR 'root'@'localhost';

+----------------------------------------------------------------------------------------------------------------------------------------+

| Grants for root@localhost                                                                                                              

+----------------------------------------------------------------------------------------------------------------------------------------+

| GRANT ALL PRIVILEGES ON *.* TO 'root'@'localhost' IDENTIFIED BY PASSWORD '*9F69E47E519D9CA02116BF5796684F7D0D45F8FA' WITH GRANT OPTION |

+----------------------------------------------------------------------------------------------------------------------------------------+

查看當前用戶受權:SHOW GRANTS FOR CURRENT_USER;

回收受權:REVOKE priv_type, ... ON db_name.tb_name FROM 'user'@'host';

mysql> HELP REVOKE;

Name: 'REVOKE'

Description:

Syntax:

REVOKE

    priv_type [(column_list)]

      [, priv_type [(column_list)]] ...

    ON [object_type] priv_level

    FROM user [, user] ...

REVOKE ALL PRIVILEGES, GRANT OPTION

    FROM user [, user] ...

相關文章
相關標籤/搜索