tencent cloud

All product documents
TencentDB for SQL Server
Account Types and Permissions
Last updated: 2024-11-27 09:39:56
Account Types and Permissions
Last updated: 2024-11-27 09:39:56
After you create a TencentDB for SQL Server instance, you can create different database accounts to allocate and manage databases based on your business needs.
TencentDB for SQL Server supports the creation of various account types, with the corresponding permissions configured for each type. This document introduces the account types and the permissions supported by the TencentDB for SQL Server instances.
Note:
TencentDB for SQL Server launched the new database account and permission logic on February 9, 2023. For the mappings between old and new account types and permissions, see Account Type and Permission Changes.

Account types and permissions for two-node (formerly High Availability/Cluster Edition) instances

Instance Architecture
Account Type
Database Permission
Role Description
Two-node (formerly High Availability/Cluster Edition)
Privileged account
Instance admin account, which has the owner permissions of all databases by default.
Server-level roles:
securityadmin
processadmin
dbcreatorDatabase-level roles:
db_owner
Standard account
Owner
Server-level roles:
securityadmin
processadmin
dbcreatorDatabase-level roles:
db_owner
Read/Write
Server-level roles:
securityadmin
processadmin
dbcreatorDatabase-level roles:
db_reader
db_writer
Read-only
Server-level roles:
securityadmin
processadmin
dbcreatorDatabase-level roles:
db_reader
Designated account
A designated account can only view and own the specified database.
A designated account can be authorized to multiple databases, but a database can be authorized to only one designated account.
Server-level roles:
securityadmin
processadmin
dbcreatorDatabase-level roles:
db_owner

Account types and permissions for single-node (formerly Basic Edition) instances

Instance Architecture
Account Type
Database Permission
Role Description
Single-node (formerly Basic Edition)
Admin account
Instance admin account, which has the highest-level sysadmin permission and the owner permissions of all databases. After the admin account is enabled, the product SLA will no longer be guaranteed.
Server-level roles:
sysadminDatabase-level roles:
db_owner
Privileged account
It has the owner permissions of all databases by default.
Server-level roles:
securityadmin
processadmin
dbcreatorDatabase-level roles:
db_owner
Standard account
Owner
Server-level roles:
securityadmin
processadmin
dbcreatorDatabase-level roles:
db_owner
Read/Write
Server-level roles:
securityadmin
processadmin
dbcreatorDatabase-level roles:
db_reader
db_writer
Read-only
Server-level roles:
securityadmin
processadmin
dbcreatorDatabase-level roles:
db_reader
Designated account
A designated account can only view and own the specified database.
A designated account can be authorized to multiple databases, but a database can be authorized to only one designated account.
Server-level roles:
securityadmin
processadmin
dbcreatorDatabase-level roles:
db_owner
Was this page helpful?
You can also Contact Sales or Submit a Ticket for help.
Yes
No

Feedback

Contact Us

Contact our sales team or business advisors to help your business.

Technical Support

Open a ticket if you're looking for further assistance. Our Ticket is 7x24 avaliable.

7x24 Phone Support
Hong Kong, China
+852 800 906 020 (Toll Free)
United States
+1 844 606 0804 (Toll Free)
United Kingdom
+44 808 196 4551 (Toll Free)
Canada
+1 888 605 7930 (Toll Free)
Australia
+61 1300 986 386 (Toll Free)
EdgeOne hotline
+852 300 80699
More local hotlines coming soon