DIM的Db查询

时间:2017-02-27 12:37:37

标签: identity identity-management oim identitymanager

  1. 用于检查用户帐户状态的数据库查询
  2. 用于检查用户的权利状态的数据库查询
  3. 用于检查角色和访问策略映射的数据库查询。
  4. 如果有人有这些疑问,请告诉我?

1 个答案:

答案 0 :(得分:4)

  1. 对于帐户状态

    SELECT usr.usr_login,obj.obj_name,ost.ost_status 
    FROM orc, usr, obj, oiu, ost, obi WHERE orc.orc_key = oiu.orc_key AND  oiu.usr_key = usr.usr_key AND oiu.ost_key = ost.ost_key 
    AND oiu.obi_key = obi.obi_key AND obi.obj_key = obj.obj_key AND obj.obj_name='ABC' order by usr.usr_login
    
  2. 用户的权利状态

    select usr.usr_login,ENT_LIST.ent_display_name,
    ENT_LIST.ent_value,ENT_ASSIGN.ent_status 
    from ENT_ASSIGN, usr, ENT_LIST where usr.usr_key = ent_assign.usr_key and 
    ENT_LIST.ent_list_key = ENT_ASSIGN.ent_list_key 
    and ENT_LIST.ent_value like 'ABC' order by usr.usr_login,ENT_DISPLAY_NAME;
    
  3. 角色和访问策略映射

    select pol.pol_name, poc.poc_field_value from pol, poc where poc.pol_key  = pol.pol_key AND poc.poc_field_name = 'ABC' order by pol.pol_name, poc.poc_field_value
    
  4. 检查分配给用户的角色

    select usr.usr_login, ugp.ugp_name from usg usg left outer join usr usr on (usg.usr_key = usr.usr_key) 
        left outer join ugp ugp on (ugp.ugp_key = usg.ugp_key) 
    where ugp_name ='ABC'