Skip to content

Instantly share code, notes, and snippets.

@tmp27017
Forked from oinopion/read-access.sql
Created May 11, 2018 12:28
Show Gist options
  • Select an option

  • Save tmp27017/e3c4f431a11f78e8247dbe04ae10d207 to your computer and use it in GitHub Desktop.

Select an option

Save tmp27017/e3c4f431a11f78e8247dbe04ae10d207 to your computer and use it in GitHub Desktop.

Revisions

  1. @oinopion oinopion created this gist Oct 5, 2016.
    13 changes: 13 additions & 0 deletions read-access.sql
    Original file line number Diff line number Diff line change
    @@ -0,0 +1,13 @@
    -- Create a group
    CREATE ROLE readaccess;

    -- Grant access to existing tables
    GRANT USAGE ON SCHEMA public TO readaccess;
    GRANT SELECT ON ALL TABLES IN SCHEMA public TO readaccess;

    -- Grant access to future tables
    ALTER DEFAULT PRIVILEGES IN SCHEMA public GRANT SELECT ON TABLES TO readaccess;

    -- Create a final user with password
    CREATE USER tomek WITH PASSWORD 'secret';
    GRANT readaccess TO tomek;