tencent cloud

Feedback

Account Types and Permissions

Last updated: 2024-11-27 09:39:56
    After you create a TencentDB for SQL Server instance, you can create different database accounts to allocate and manage databases based on your business needs.
    TencentDB for SQL Server supports the creation of various account types, with the corresponding permissions configured for each type. This document introduces the account types and the permissions supported by the TencentDB for SQL Server instances.
    Note:
    TencentDB for SQL Server launched the new database account and permission logic on February 9, 2023. For the mappings between old and new account types and permissions, see Account Type and Permission Changes.

    Account types and permissions for two-node (formerly High Availability/Cluster Edition) instances

    Instance Architecture
    Account Type
    Database Permission
    Role Description
    Two-node (formerly High Availability/Cluster Edition)
    Privileged account
    Instance admin account, which has the owner permissions of all databases by default.
    Server-level roles:
    securityadmin
    processadmin
    dbcreatorDatabase-level roles:
    db_owner
    Standard account
    Owner
    Server-level roles:
    securityadmin
    processadmin
    dbcreatorDatabase-level roles:
    db_owner
    Read/Write
    Server-level roles:
    securityadmin
    processadmin
    dbcreatorDatabase-level roles:
    db_reader
    db_writer
    Read-only
    Server-level roles:
    securityadmin
    processadmin
    dbcreatorDatabase-level roles:
    db_reader
    Designated account
    A designated account can only view and own the specified database.
    A designated account can be authorized to multiple databases, but a database can be authorized to only one designated account.
    Server-level roles:
    securityadmin
    processadmin
    dbcreatorDatabase-level roles:
    db_owner

    Account types and permissions for single-node (formerly Basic Edition) instances

    Instance Architecture
    Account Type
    Database Permission
    Role Description
    Single-node (formerly Basic Edition)
    Admin account
    Instance admin account, which has the highest-level sysadmin permission and the owner permissions of all databases. After the admin account is enabled, the product SLA will no longer be guaranteed.
    Server-level roles:
    sysadminDatabase-level roles:
    db_owner
    Privileged account
    It has the owner permissions of all databases by default.
    Server-level roles:
    securityadmin
    processadmin
    dbcreatorDatabase-level roles:
    db_owner
    Standard account
    Owner
    Server-level roles:
    securityadmin
    processadmin
    dbcreatorDatabase-level roles:
    db_owner
    Read/Write
    Server-level roles:
    securityadmin
    processadmin
    dbcreatorDatabase-level roles:
    db_reader
    db_writer
    Read-only
    Server-level roles:
    securityadmin
    processadmin
    dbcreatorDatabase-level roles:
    db_reader
    Designated account
    A designated account can only view and own the specified database.
    A designated account can be authorized to multiple databases, but a database can be authorized to only one designated account.
    Server-level roles:
    securityadmin
    processadmin
    dbcreatorDatabase-level roles:
    db_owner
    Contact Us

    Contact our sales team or business advisors to help your business.

    Technical Support

    Open a ticket if you're looking for further assistance. Our Ticket is 7x24 avaliable.

    7x24 Phone Support