.NET Tutorials, Forums, Interview Questions And Answers
Welcome :Guest
Sign In
Win Surprise Gifts!!!

Top 5 Contributors of the Month
Gaurav Pal
Post New Web Links

Restrict user with sys admin role to execute a query

Posted By:      Posted Date: October 08, 2010    Points: 0   Category :Sql Server

Hi All


I want to restrict  a user with sys admin server role to execute a query. or is there any possibility to drop the query before it get executed (after parsing). I know i can do this using SSMS SET NOEXEC ON | OFF in Query Analyzer.

But how can i implement this when ever sysadmin user executes a particular query.


Mohd Sufian www.sqlship.wordpress.com Please mark the post as Answered if it helped.

View Complete Post

More Related Resource Links

ScaffoldTable(false) if user is not in the admin role.


Hi guys,

I my dynamic data application, I made ScaffoldTable(false) on some of the table in a seperate partial classes. I am using linq to sql classes for my tables and Also I am using sql membership on my application.

what I want to do is that I need to make the following table's ScaffoldTable as false, if the user is not in the admin role. How can I do that ?


using System;
using System.Collections.Generic;
using System.ComponentModel;
using System.ComponentModel.DataAnnotations;
using System.Data;
using System.Configuration;
using System.Data.Linq;
using System.Data.Linq.Mapping;
using System.Linq;
using System.Xml.Linq;
using System.Linq.Expressions;
using System.Reflection;

/// <summary>
/// Summary description for CategoriesPhoto
/// </summary>

public partial class CategoriesPhoto
public class CategoriesPhotoMetaData


MDX Query runs endless if the User is not a member of the Domain Admin Group


Please, before you say "its not possible" read my post. Myself, i couldnt believe it, until i saw the behaviour with my own eyes.
Environment: SSAS 2005, tested with a MDX Query executed in the SQL Server Management Studio.

We deliver a CUBE (SSAS 2005) that we have build for our Billing System (SQL 2005). Nothing tricky on the cube definition. The cube is installed on several customer systems, runs without a problem. On our in-house test server it runs with no problem. I can execute the same MDX Query connected as a User who is a Member of the Domain Admins and with a User who is a "simple" Domain User. The same query performance, the same Resultset, experienced in-house and by many of our customer.

But on the system of one of our customer i have a really strange behaviour. If i connect on the SQL Management Studio with a User that is in the Domain Admin Role (let's call it user "A") the same MDX Query that we use in-house runs without a problem. But on the customer system i cant execute the MDX Query with a User that is not a Member of the Domain Admin Role (let's call this user "B").
The simple Domain User "B" starts the SQL Management Studio and connects to the Analysis Services Instance. No error. In the SQL Management Studio, on the left pane it has the same metadata, dimensions and members

BULK ADMIN Role - Query


Hi All,

I'm in position to provide "bulkadmin" role to a user and not sure about the permission the server role grant to the user.

Please let me know what are all the permission the "bulkadmin" server role grant to the role.





Thanks & Regards, Karthikeyan

How Restrict and Allow user to Pages of Website.


i have 4 pages of website

2 pages are authorized to used by USER and 2 pages are restricted for user

admin can authorized to go all 4 pages


i need coding for Login window from which Admin/User Login



Question about user used to execute code from app_code


 Hello. I would like to know something about code execution  in App_Code folder.

Under wich user executed code from app_code.

I'm using impersonate in web.config

Need help with setting up SQL Server 2008 for role/user management


I've posted my problem in a few other categories.  Sorry for that.  I didn't see the security category until now.

I'm trying to use ASP.NET's built-in role/user management for a couple ASP.NET MVC 2 sites.  I'm using the MVCMusicStore as my guide.  I click on the Configuration Tool as the tutorial suggests, which launches the site administration page.  Unfortunately when I click on the security tab, I get an error that it cannot connect to the data store.  Attempting to test the AspNetSqlProvider gives me a similar error.

I've run the aspnet_regsql program as the error message suggested, and I have a role/user management database ready to go on the server.  The proper tables are constructed, and all that.  The configuration tool still doesn't see the data store.

As a test, I ran the MVCMusicStore demo in the debugger.  Its role/user management functionality worked.  I was able to add myself as a customer, and add/remove items from my cart with no errors or exceptions.  However, when I attempted to access its security tab in the configuration tool, I received the same error as I get for my own project.  How is it possible that role/user management works, but the configuration tool cannot change its settings?

Any suggestions on how I can get the configuration t

How can i restrict the user to login only from the system which he registered from the Computer.

Hi,I am Kartheek. ASP.Net Web developer. I got one requirement regarding security.In my website, if one user registered from a computer, we have to allow  that user to be able to access the site from that computer only. If he try to login from another system even in LAN, we have to deny the access.Please help me with this. Thanks in advance,Kartheek Challagundla.kartheekchk86@gmail.com

How to determine if current SQL User is admin or owner?

I wish to determine, from my C# application, if the current user has admin or owner rights to the database they are connected to. I beleive I have all the information required: Servername Database name Windows/Database auth username (If database auth) password (if database auth) I'm trying to find a way that using the smo objects (smo.user), but as of yet I cant quite work it out: - How to get the appropriate user - How to determine if that user is an admin/owner. Any tips would be appreciated. If I have posted to the wrong forum, let me know - I couldnt find one that was obviously more appropriate. Thanks.

Storing and displaying user input (encoding query)

Hello,I've just been reading up a little on security regarding user input and how to handle html and scripts.My question is, what if I build my own CMS?Isn't it inevitable that I'll want to store html code, possibly scripts, and almost certainly apostrophes and special characters, and then display them again.What's the best way to do this, since I wont want to display the encoded html, but the html itself.Would it be to encode everything then when I want to actually display the html, decode it, but everywhere else, keep it encoded?I'm just trying to think of all the scenario's that I could come across when I accept user input where I don't know what they could be typing in.What if I WANT the user to be able to display html?Is it possible to decode only some tags but leave all other tags encoded? 

Any way to execute a workflow when a caml query returns zero items?

Lets say I have a list with a status column and I want to execute a workflow when all items in the list have a status of complete. I basically want to execute a workflow when the caml query looking for non-complete statuses returns zero rows. Can I do this with SPD or are there any 3rd party tools for this? I'm thinking of writing one if there are not.

How to check if a given user is local admin or not

Hi, How to check if a user (may be domain user also) is part of local administrators group or not? Note I am NOT talking about checking of current logged in user. I should send the username & passowrd of any user (may or may not be domain user) & that should flag me whether that user is local admin or not. Please help.

How to let a non admin business user run a replication snapshot job?

According to the msdn library, I would have to give the non admin user (User1) SQLAgentUserRole privileges. But it also says that it has to be a local job and not a multi server job. Is the snapshot agent job a local or multi server job? Considering the snapshot agent is a local job and i make USER1 the owner of that job. He should be able to run the job rite? I need to give USER1 the ability to run sp_start_job to start the snapshot agent ONLY! (and not any other jobs). So what are the steps to do this? I also read that the only way to achieve this is by creating a proxy account? Is there an article somewhere that best describes this?  

asp.net,c#,user role and rights,menu

hi friendsi want to develope general code or module or structure of web application wich handle multiple user ,their role and right, and according to their rights and role menu will be display.so i can integreate it in any website. kindly provide me solution for asp.net 3.5,C# working environment, and sqlserver 2005 environment.what is the structure for database? i want only one database not asp.net database. can i make login control type assembly(dll)?how?Thanking you 

Need to set "ValidateRequest" on the basis of user role

I am trying to implement a code which will switch Validation request on the page on the basis of user role. If accessed by power user, it should allow html entries in textboxes otherwise restrict. I want to implement something like below..I would really appreciate if proper idea/code is shared. if (Page.IsPostBack == false) { if (Session["userrole"].toString()="admin" { SetValidateRequest(false); // Sample Function to set validation } else { SetValidateRequest(true); // Sample Function to set validation } }  

infopath 2003 user role error

hi, i'm trying to create a user role for my form in infopath 2003. but when i add a user and click on the icon next to the texbox it gives me this error: The program cannot open the required dialog box beacause no locoation can be found

user mapping to a database and role membership to that database

When assigning a 'user mapped Login' to a database and role membership to that database, is it redundent to check/enable db_datareader, db_datawriter as well as db_owner or will check/enable db_owner become all that is necessary to provide role membership to the database?

user role on sharepoint custom list

hi, can i set up a user role for a custom list form in sharepoint services 3 i want to use the "submit new absence" form. but i need to modify the form in a way that when a user open the form it fills the user his name or login name in the fields. and that the approver or "assigned to field" also is filled with the approvers name. i think i need to use a query for that, but how can i apply it to the fields of the absence list form
ASP.NetWindows Application  .NET Framework  C#  VB.Net  ADO.Net  
Sql Server  SharePoint  Silverlight  Others  All   

Hall of Fame    Twitter   Terms of Service    Privacy Policy    Contact Us    Archives   Tell A Friend