Search for users with the CREATE SESSION privilege.

Hello

Can someone tell me a way to find all users in the database which are CREATE SESSION privilege - directly or through certain roles?

I thought that the following query-, but I think that it is still not a complete list.

Select b.username, b.password from dba_sys_privs a, b dba_users
where a.PRIVILEGE like "CREATE SESSION".
and a.GRANTEE = b.username
Union
Select distinct b.username, b.password from dba_role_privs a, b dba_users
where GRANTED_ROLE a. in (select dba_sys_privs dealer where the PRIVILEGE as "CREATE SESSION")
and a.GRANTEE = b.username
order by 1;

Any input would be appreciated.

Thank you
HJ

HJ,
As you say since ROLES can mount cascade and CREATE SESSIOn privilege can be granted through roles, you must use the RECURSIVE technique to browse the hierarchy.
There are several scripts available on the net. The one I use often is from the following link.

http://www.adp-GmbH.ch/ora/Misc/recursively_list_privilege.html

I hope this helps.
VR,
Sudhakar B.

Published by: Sudhakar_B on July 9, 2010 12:39

Tags: Database

Similar Questions

  • ORA-01035: ORACLE only available for users with the RESTRICTED SESSION privilege

    Whenever I have to connect as user sys as sysdba, I can connect at ease.

    But every time that I try with a user (one for monitoring tool). I get a message, database is in restricted mode.

    SQL > connect patrol05/patrol $05

    ERROR:
    ORA-01035: ORACLE only available for users with the RESTRICTED SESSION privilege

    WARNING: You are more connected to ORACLE.

    Your database was opened with restricted session.
    As sysdba, run the following command to session restrcited dissable the option:

    alter system disable restricted session;
    

    Best regards
    Norbert

  • Task assignments auto exclusive Oracle BPM for users with the same roles

    Hi all

    We have a problem with the task in BPM assignment, lets say, we have a task which cannot be attributed to users with role X when the configuration of the task is set to auto request all users with the role of X may have the task in their task list, but we want it to be exclusive that an assignee if you have it No one can visit his profile at the task, then if we set config off auto claim with assignees must choose to claim the task but we do not want this, we want the tasks assigned automatically just to a transferee (for example at random)... can someone help us please?
    Best regards
    Hadi F

    Hi Hadi,

    You can choose "Automatic entitlement to a single task" and the reason for the transfer

    You can also create a business rule to assign them to a user.

  • Search for user with 'space exceeded quota' erorr

    Hello

    In the application I use, I get error: ORA-01536: space quota exceeded for tablespace 'USERS '.

    Now, I know that I have to fix on the user who is the owner of the table, I'm alters records in but I can't well
    appropriate user.

    Those who already owns the table has quota unlimited on tablespace 'USERS', but I still get the same error.

    I suspect that application to access a table that has not created / owned by the current user.

    I wish I had a newspaper eror or something that could tell me which is the problematic user.

    Thank you very much for your help!

    For more information, see this thread
    ORA-01536: space quota exceeded for tablespace 'USERS '.

  • Search for users with unity Inbox subscribers

    I've updated and I my license sayas, 2 unity Inbox subscribers. I have assuume they came from the initial installation of ActiveVoice. How can I find to remove these options if I don't have to reset the service every 4 hours

    The class of Service (COS) features licensed is where you enable/disconnect this. You can run this SQL query to see what users are allowed:

    SELECT vw_Subscriber.Alias

    OF vw_Subscriber vw_Cos INNER JOIN

    ON vw_Subscriber.CosObjectId = vw_Cos.CosObjectId

    WHERE vw_Cos.AccessVmi = '1'

    But to find out what COS are licensed you must run this query:

    SELECT vw_COs.Alias

    OF vw_Cos

    WHERE vw_Cos.AccessVmi = '1'

    You can manually turn it off in the SA.

    Thank you

    Keith

  • Create a schema of the user with the same name and tables within this scheme

    I am a newbie with Oracle.
    I installed my first Oracle 10 g database in my life.
    I need to create a user and a new schema with the same name.
    Subsequently, I need to create tables in this schema using the * isqlPlus.
    I got to create the user via the Oracle Enterprise Manager Console.
    I tried to create a schema through the same tool, but I have not found a possibility to do using GUI.
    Is it possible to do so through Oracle Enterprise Manager Console?
    What are the permissions the user must have access isqlPlus to create the tables in the schema?

    Thank you!!!

    Felipe

    A schema is just a collection of objects belonged to a particular user. If you do not need to create a separate schema: the schema is created automatically when you create the user.

    To connect to the database, a user must CREATE SESSION privilege. To create a table, the user has the CREATE TABLE privilege and should be given a quota on any tablespace will be created in the table. If you don't care management quota or limit the storage space that a user can create tables, you can grant the user the UNLIMITED TABLESPACE privilege. If you care the management of quota, you must run commands like

    ALTER USER <>
      QUOTA <>
      ON <>
    

    for each tablespace for the user to be able to use.

    Justin

  • Limiting the administrator tab to the user with the role by default OIM 11 g R2

    Hello

    I have a question, if we create a user in OIM 11 g R2 without any admin role, then connect on screen Self Service (identity) with the newly created user, we can see that the Administration tab is visible to the user.

    Is that mean that user a admin role assigned to him in some admin activities do this by default.

    Please let me know how to control this behavior and do not display the Administration tab the user until and unless it is to have an admin of roles assigned.

    Help, please.

    See this article on measures to hide the Admin tab for users with the role for all THE USERS.

    http://venkatanunna.blogspot.com/2013/01/removing-Admin-tab-for-general-users-in.html

  • IOM: authorization to search for users

    Hello
    What are the permissions that I give to a group, so that members have the ability to search for users in the menu 'users-> Manage?

    Background: I assigned to the menu item group 'Users-> Manage', but each search returns nothing, so I guess it's a permission problem.

    Thank you.

    Give "Read" access for the Group on the particular organazation.

    Sign in as XELSYSADM
    Manage the Organization--> research of the orgzanization
    Select "Administrative groups" in the drop down--> affect the Group and give 'Read' access

  • Unable to search for users while creating the new political

    I installed LiveCycle ES2 Rights Management and Extesión for Micorsoft office.

    I can create a policy with the 'x' user who have rights to the "Document Publisher".

    Once the document is secured using Micorsoft word I can open the same document in passing the credentials of the user for the user 'x '.

    However when the political establishment I'm not able to search for users to add multiple users to the list.

    The button 'Add' search user interface when creating political is always disabled. Also, I am not able to do the 'advanced search '.

    Using IE8 on Windows XP 32-bit. Server is installed on Windows Server 2008 64 bit.

    You must add 'domain' that contains the users you want to search (add to a policy) 'Users and visible groups' configuration for the strategy game that contains the policy.

    Login to the LiveCycle user interface and select Services > LiveCycle Rights Management ES2 > policies > strategy name > Visible to users and groups

    Concerning

    Steve

  • Create a local user with the vSphere Client

    Hello

    I want to create a new user with the permission of readonly. In the vmware documation salon, they say I have to go to the tab local users and groups, but there is no tab with that name.

    And sorry for my English I'm not a native speaker.

    Hi and welcome to communities,

    This tab is visible only when you connect to the ESXi directly with the vSphere Client. You won't see when you connect to a vCenter server.

  • OIM 11 g: search query for users with a particular resource

    I have a custom resource that has a search on this query to find a list of users. It works very well. I can find the user by username, email or name and first name.

    Existing query:

    Lookup column name: = usr_login
    Column names: usr_key
    Legends of the column: key, username, Email, name and first name
    The width of the columns: 10, 100, 100, 100
    Search query: select usr_key, usr_login, usr_full_name, usr_email usr

    What I want to do is limit the scope of the search query to find only provisioned users with a specific resource. I want to choose users have the MS Exchange resource assigned to them.

    Can someone help me with the creation of the search query that allows you to search for users who have a particular resource put into service? This table contains a list of the resources allocated to a user?

    Thank you.

    use under request

    SELECT USR. USR_KEY, USR. USR_LOGIN, USR. USR_FIRST_NAME, USR. USR_LAST_NAME, OBJ. OBJ_NAME, OST. THE USR, OUEDRAOGO, OST, OBJ OST_STATUS
    Where USR. USR_KEY = OUEDRAOGO. USR_KEY
    AND OUÉDRAOGO. OST_KEY = OST. OST_KEY
    AND OST. OBJ_KEY = OBJ. OBJ_KEY
    AND OST. OST_STATUS IN ('Provisioned', 'Disabled', 'Enabled')
    AND higher (OBJ. OBJ_NAME) = upper ("name of your resource object")

    update status, name of the resource object, and then select the attribute accordingly

    -nayan

  • Check for multiple users with the value of the UID 0

    Hi gurus,

    The runclufvy.sh gives the warning below can I ignore this or need to fix for the installation of the 11202 RAC on RHEL 5?

    Check for multiple users with the value of the UID 0
    PRVF-4132: several users 'root, jnftsi0' with '0' the UID exists on "hwvpa6".
    PRVF-4132: several users 'root, jnftsi0' with '0' the UID exists on "hwvpa2".

    Thank you

    Hello

    The runclufvy.sh gives the warning below can I ignore this or need to fix for the installation of the 11202 RAC on RHEL 5?

    Check for multiple users with the value of the UID 0
    PRVF-4132: several users 'root, jnftsi0' with '0' the UID exists on "hwvpa6".
    PRVF-4132: several users 'root, jnftsi0' with '0' the UID exists on "hwvpa2".

    User jnftsi0 cannot be used by the Oracle Installer or start the Oracle process, because what is the root group.

    If the user jnftsi0 is used by Oracle install or start Oracle process should then be removed from the root group, otherwise you can ignore it.

    Kind regards
    Levi pereira

  • Why Firefox always opens with the last session tabs?

    When I open firefox always opens with the last session tabs? How can I solve this problem?

    You can check if you have a user.js file in the Firefox profile folder that affects the pref browser.sessionstore.resume_session_once true value.

    The user.js file is present than if you or another software has created this file and normally it wouldn't be here.
    You can check its contents with a text editor (right click: 'Open with'; do not double-click).
    The user.js file is read whenever Firefox is started and initializes the preferences to the specified value in this file, so the preferences set via user.js can be changed temporarily for the current session.

    You can remove the user.js file if you do not create this file yourself.

    You can use this button to go to the Firefox profile folder currently in use:

    Windows hides certain default file extensions.
    Among them are .html, .ini and .js, .txt, so you can see only file name without the file extension.
    You can see the type of actual file (file extension) in the properties of the file via the context menu in Windows Explorer.

  • global scope &amp; pl/sql variable in open_form with the new session

    Hello

    What will be the global scope of the Oracle variable shape & variable declared in a pl/sql pckage, if the value of these variables is updated from the form interface Oracle, if the form is opened using open_form with the new session or a session Active.

    My requirement is, I developed an application with custom user login name & password - not the Oracle username and password.
    But I need follow the user actions on forms - action insert/update / delete, for this user_name i included as one of the column in the table base and shape, initialize this field with the login user name.

    I have implemented this in the detent of the base table. But to remove them, I don't get the username which were deleted, only for the user who created this folder, because that: NEW is not in the scope according to the delete trigger. So for the delte, I created a variabe in a PL/SQL package and created two procedure to set and get the username to this variable, and form, before you delete using the set method I assign the user name of the current connection to the variable and in the trigger using the get() method get the user name from the variable , Until now it works very well, my doubt is what will be the value of the variable, if two different users delete action of in same time, if the first user name will be replaced by second or this variable will be different session, if I opened the forms using the SESSION parameter. Also can I use Oralce forms global variable instead of the PL/SQL varibale.

    I thank in advance.

    The scope of a package-db variable is per database session. So different forms-session or even different DB - inside a session of forms "will not overwrite" between them.

  • How we can search for files in the Webcenter 11.1.1.6 content?

    Hello

    I have a requirement for a client where they want to use the advanced search of the AAU to search for files (not articles).

    Version: Webcenter content 11.1.1.6

    Contribution using folder_g files

    I founded a model pre-built for searching for files. The name is COLLECTION_GET_SEARCH_FORM


    Here is an example of this model and it works

    http://euedocs.emersonprocess.co.UK/idcplg?IdcService=COLLECTION_GET_SEARCH_FORM

    When I try this service on my own content instance Webcenter, the model is loaded. But when I click on search, nothing happens.

    The drop-down lists containing ' Contains/pairing /...» "they are also not responsible.

    I did some research on the Support of Oracle and I created this article:

    Limits for fast searching of the Collaboration of records(1071778.1)

    https://support.Oracle.com/epmos/faces/UI/km/SearchDocDisplay.JSPX?returnToSrId= & srnum = & _afrLoop = 418199051953706 & type = c...

    I'm still stuck on this issue. What configurations are absent?

    Is someone can help me?

    Thank you very much.

    I contacted support. Here's the answer:

    Hello

    The feature you're looking for is something that is not currently present out-of-box.

    He used to work in the classic configuration only, the way back.

    And 11 g, classic layout no longer exists.

    This is a request for development with our development team.

    Bug 6488476 - INCLUDE "SEARCH FOLDER of HIERARCHY" AS SEARCH OPTION

    Thank you

    Fatima zahra

    Thank you SrinathMenon for your reply also.

Maybe you are looking for