2005-03-29 15:50:16 -08:00
# Grant tests not performed with embedded server
-- source include/not_embedded.inc
2009-02-02 22:20:25 +01:00
# Save the initial number of concurrent sessions
--source include/count_sessions.inc
2004-07-08 18:54:07 +05:00
SET NAMES binary;
2003-07-22 22:00:51 +02:00
#
# GRANT tests that require several connections
# (usually it's GRANT, reconnect as another user, try something)
#
2004-10-20 16:04:43 +04:00
# prepare playground before tests
--disable_warnings
drop database if exists mysqltest;
2005-03-27 15:46:06 +02:00
drop database if exists mysqltest_1;
2004-10-20 16:04:43 +04:00
--enable_warnings
delete from mysql.user where user like 'mysqltest\_%';
delete from mysql.db where user like 'mysqltest\_%';
delete from mysql.tables_priv where user like 'mysqltest\_%';
delete from mysql.columns_priv where user like 'mysqltest\_%';
flush privileges;
2005-03-18 13:32:28 +02:00
grant all privileges on `my\_1`.* to mysqltest_1@localhost with grant option;
2005-03-22 15:54:18 +01:00
grant create user on *.* to mysqltest_1@localhost;
2005-03-18 13:32:28 +02:00
create user mysqltest_2@localhost;
connect (user_a,localhost,mysqltest_1,,);
connection user_a;
grant select on `my\_1`.* to mysqltest_2@localhost;
2009-02-02 22:20:25 +01:00
--error ER_PASSWORD_NOT_ALLOWED
2005-03-18 13:32:28 +02:00
grant select on `my\_1`.* to mysqltest_2@localhost identified by 'pass';
disconnect user_a;
connection default;
grant update on mysql.* to mysqltest_1@localhost;
connect (user_b,localhost,mysqltest_1,,);
connection user_b;
grant select on `my\_1`.* to mysqltest_2@localhost identified by 'pass';
grant select on `my\_1`.* to mysqltest_3@localhost;
disconnect user_b;
connection default;
grant insert on mysql.* to mysqltest_1@localhost;
connect (user_c,localhost,mysqltest_1,,);
connection user_c;
grant select on `my\_1`.* to mysqltest_3@localhost;
grant select on `my\_1`.* to mysqltest_4@localhost identified by 'pass';
disconnect user_c;
connection default;
delete from mysql.user where user like 'mysqltest\_%';
delete from mysql.db where user like 'mysqltest\_%';
delete from mysql.tables_priv where user like 'mysqltest\_%';
delete from mysql.columns_priv where user like 'mysqltest\_%';
flush privileges;
2003-07-22 22:00:51 +02:00
#
# wild_compare fun
#
grant all privileges on `my\_%`.* to mysqltest_1@localhost with grant option;
2005-03-22 15:54:18 +01:00
grant create user on *.* to mysqltest_1@localhost;
2003-07-22 22:00:51 +02:00
connect (user1,localhost,mysqltest_1,,);
connection user1;
select current_user();
2003-07-22 22:21:23 +02:00
grant all privileges on `my\_1`.* to mysqltest_2@localhost with grant option;
2009-02-02 22:20:25 +01:00
--error ER_DBACCESS_DENIED_ERROR
2003-07-22 22:21:23 +02:00
grant all privileges on `my_%`.* to mysqltest_3@localhost with grant option;
2005-03-18 13:32:28 +02:00
2004-11-02 17:45:26 +03:00
#
# NO_AUTO_CREATE_USER mode
#
set @@sql_mode='NO_AUTO_CREATE_USER';
select @@sql_mode;
2005-03-23 19:18:25 +01:00
#
# GRANT without IDENTIFIED BY does not create new users
#
2009-02-02 22:20:25 +01:00
--error ER_PASSWORD_NO_MATCH
2004-11-02 17:45:26 +03:00
grant select on `my\_1`.* to mysqltest_4@localhost with grant option;
grant select on `my\_1`.* to mysqltest_4@localhost identified by 'mypass'
with grant option;
2003-07-22 22:00:51 +02:00
disconnect user1;
2003-07-28 16:58:51 +02:00
connection default;
2003-07-22 22:21:23 +02:00
show grants for mysqltest_1@localhost;
show grants for mysqltest_2@localhost;
2009-02-02 22:20:25 +01:00
--error ER_NONEXISTING_GRANT
2003-07-22 22:21:23 +02:00
show grants for mysqltest_3@localhost;
2003-07-22 22:00:51 +02:00
delete from mysql.user where user like 'mysqltest\_%';
delete from mysql.db where user like 'mysqltest\_%';
flush privileges;
2005-03-27 15:46:06 +02:00
#
# wild_compare part two - acl_cache
#
create database mysqltest_1;
grant all privileges on `mysqltest\_1`.* to mysqltest_1@localhost with grant option;
connect (user2,localhost,mysqltest_1,,);
connection user2;
select current_user();
show databases;
2009-02-02 22:20:25 +01:00
--error ER_DBACCESS_DENIED_ERROR
2005-03-27 15:46:06 +02:00
grant all privileges on `mysqltest_1`.* to mysqltest_1@localhost with grant option;
disconnect user2;
connection default;
show grants for mysqltest_1@localhost;
delete from mysql.user where user like 'mysqltest\_%';
delete from mysql.db where user like 'mysqltest\_%';
drop database mysqltest_1;
flush privileges;
2004-10-20 16:04:43 +04:00
#
2009-02-02 22:20:25 +01:00
# Bug#6173 One can circumvent missing UPDATE privilege if he has SELECT and
# INSERT privilege for table with primary key
2004-10-20 16:04:43 +04:00
#
create database mysqltest;
grant INSERT, SELECT on mysqltest.* to mysqltest_1@localhost;
flush privileges;
use mysqltest;
create table t1 (id int primary key, data varchar(255));
2004-12-31 11:52:14 +01:00
connect (mrbad, localhost, mysqltest_1,,mysqltest);
2004-10-20 16:04:43 +04:00
connection mrbad;
show grants for current_user();
insert into t1 values (1, 'I can''t change it!');
2009-02-02 22:20:25 +01:00
--error ER_TABLEACCESS_DENIED_ERROR
2004-10-20 16:04:43 +04:00
update t1 set data='I can change it!' where id = 1;
# This should not be allowed since it too require UPDATE privilege.
2009-02-02 22:20:25 +01:00
--error ER_TABLEACCESS_DENIED_ERROR
2004-10-20 16:04:43 +04:00
insert into t1 values (1, 'XXX') on duplicate key update data= 'I can change it!';
select * from t1;
2004-12-31 11:52:14 +01:00
disconnect mrbad;
2004-10-20 16:04:43 +04:00
connection default;
drop table t1;
delete from mysql.user where user like 'mysqltest\_%';
delete from mysql.db where user like 'mysqltest\_%';
flush privileges;
2004-12-31 17:59:43 +01:00
#
#
create table t1 (a int, b int);
grant select (a) on t1 to mysqltest_1@localhost with grant option;
connect (mrugly, localhost, mysqltest_1,,mysqltest);
connection mrugly;
2009-02-02 22:20:25 +01:00
--error ER_COLUMNACCESS_DENIED_ERROR
2004-12-31 17:59:43 +01:00
grant select (a,b) on t1 to mysqltest_2@localhost;
2009-02-02 22:20:25 +01:00
--error ER_TABLEACCESS_DENIED_ERROR
2004-12-31 17:59:43 +01:00
grant select on t1 to mysqltest_3@localhost;
disconnect mrugly;
connection default;
drop table t1;
delete from mysql.user where user like 'mysqltest\_%';
delete from mysql.db where user like 'mysqltest\_%';
delete from mysql.tables_priv where user like 'mysqltest\_%';
delete from mysql.columns_priv where user like 'mysqltest\_%';
flush privileges;
drop database mysqltest;
use test;
2004-11-25 21:55:49 +01:00
2005-12-28 09:31:40 +01:00
#
2009-02-02 22:20:25 +01:00
# Bug#15775 "drop user" command does not refresh acl_check_hosts
2005-12-28 09:31:40 +01:00
#
# Create some test users
2005-12-28 14:43:50 +01:00
create user mysqltest_1@host1;
create user mysqltest_2@host2;
create user mysqltest_3@host3;
create user mysqltest_4@host4;
create user mysqltest_5@host5;
create user mysqltest_6@host6;
create user mysqltest_7@host7;
2005-12-28 09:31:40 +01:00
flush privileges;
# Drop one user
drop user mysqltest_3@host3;
# This connect failed before fix since the acl_check_hosts list was corrupted by the "drop user"
connect (con8,127.0.0.1,root,,test,$MASTER_MYPORT,);
disconnect con8;
connection default;
# Clean up - Drop all of the remaining users at once
drop user mysqltest_1@host1, mysqltest_2@host2, mysqltest_4@host4,
mysqltest_5@host5, mysqltest_6@host6, mysqltest_7@host7;
# Check that it's still possible to connect
connect (con9,127.0.0.1,root,,test,$MASTER_MYPORT,);
disconnect con9;
connection default;
2004-11-25 21:55:49 +01:00
#
2009-02-02 22:20:25 +01:00
# Bug#16180 Setting SQL_LOG_OFF without SUPER privilege is silently ignored
2006-08-09 22:23:41 -04:00
#
create database mysqltest_1;
grant select, insert, update on `mysqltest\_1`.* to mysqltest_1@localhost;
connect (con10,localhost,mysqltest_1,,);
connection con10;
2009-02-02 22:20:25 +01:00
--error ER_SPECIFIC_ACCESS_DENIED_ERROR
2006-08-09 22:23:41 -04:00
set sql_log_off = 1;
2009-02-02 22:20:25 +01:00
--error ER_SPECIFIC_ACCESS_DENIED_ERROR
2006-08-09 22:23:41 -04:00
set sql_log_bin = 0;
disconnect con10;
connection default;
delete from mysql.user where user like 'mysqltest\_1';
delete from mysql.db where user like 'mysqltest\_1';
drop database mysqltest_1;
flush privileges;
# End of 4.1 tests
2004-11-25 21:55:49 +01:00
# Create and drop user
#
set sql_mode='maxdb';
--disable_warnings
drop table if exists t1, t2;
--enable_warnings
create table t1(c1 int);
create table t2(c1 int, c2 int);
#
# Three forms of CREATE USER
create user 'mysqltest_1';
2009-02-02 22:20:25 +01:00
--error ER_CANNOT_USER
2004-11-25 21:55:49 +01:00
create user 'mysqltest_1';
create user 'mysqltest_2' identified by 'Mysqltest-2';
create user 'mysqltest_3' identified by password 'fffffffffffffffffffffffffffffffffffffffff';
grant select on *.* to 'mysqltest_2';
grant insert on test.* to 'mysqltest_2';
grant update on test.t1 to 'mysqltest_2';
grant update (c2) on test.t2 to 'mysqltest_2';
select host,user,password from mysql.user where user like 'mysqltest_%' order by host,user,password;
select host,db,user from mysql.db where user like 'mysqltest_%' order by host,db,user;
select host,db,user,table_name from mysql.tables_priv where user like 'mysqltest_%' order by host,db,user,table_name;
select host,db,user,table_name,column_name from mysql.columns_priv where user like 'mysqltest_%' order by host,db,user,table_name,column_name;
show grants for 'mysqltest_1';
show grants for 'mysqltest_2';
#
# Drop
drop user 'mysqltest_1';
select host,user,password from mysql.user where user like 'mysqltest_%' order by host,user,password;
select host,db,user from mysql.db where user like 'mysqltest_%' order by host,db,user;
select host,db,user,table_name from mysql.tables_priv where user like 'mysqltest_%' order by host,db,user,table_name;
select host,db,user,table_name,column_name from mysql.columns_priv where user like 'mysqltest_%' order by host,db,user,table_name,column_name;
2009-02-02 22:20:25 +01:00
--error ER_NONEXISTING_GRANT
2004-11-25 21:55:49 +01:00
show grants for 'mysqltest_1';
#
# Rename
rename user 'mysqltest_2' to 'mysqltest_1';
select host,user,password from mysql.user where user like 'mysqltest_%' order by host,user,password;
select host,db,user from mysql.db where user like 'mysqltest_%' order by host,db,user;
select host,db,user,table_name from mysql.tables_priv where user like 'mysqltest_%' order by host,db,user,table_name;
select host,db,user,table_name,column_name from mysql.columns_priv where user like 'mysqltest_%' order by host,db,user,table_name,column_name;
show grants for 'mysqltest_1';
drop user 'mysqltest_1', 'mysqltest_3';
2009-02-02 22:20:25 +01:00
--error ER_CANNOT_USER
2004-11-26 11:18:20 +01:00
drop user 'mysqltest_1';
2004-11-25 21:55:49 +01:00
#
# Cleanup
drop table t1, t2;
#
# Add a stray record
insert into mysql.db set user='mysqltest_1', db='%', host='%';
flush privileges;
2009-02-02 22:20:25 +01:00
--error ER_NONEXISTING_GRANT
2004-11-25 21:55:49 +01:00
show grants for 'mysqltest_1';
2009-02-02 22:20:25 +01:00
--error ER_REVOKE_GRANTS
2004-11-25 21:55:49 +01:00
revoke all privileges, grant option from 'mysqltest_1';
drop user 'mysqltest_1';
select host,db,user from mysql.db where user = 'mysqltest_1' order by host,db,user;
#
# Add a stray record
insert into mysql.tables_priv set host='%', db='test', user='mysqltest_1', table_name='t1';
flush privileges;
2009-02-02 22:20:25 +01:00
--error ER_NONEXISTING_GRANT
2004-11-25 21:55:49 +01:00
show grants for 'mysqltest_1';
drop user 'mysqltest_1';
select host,db,user,table_name from mysql.tables_priv where user = 'mysqltest_1' order by host,db,user,table_name;
#
# Add a stray record
insert into mysql.columns_priv set host='%', db='test', user='mysqltest_1', table_name='t1', column_name='c1';
flush privileges;
2009-02-02 22:20:25 +01:00
--error ER_NONEXISTING_GRANT
2004-11-25 21:55:49 +01:00
show grants for 'mysqltest_1';
drop user 'mysqltest_1';
select host,db,user,table_name,column_name from mysql.columns_priv where user = 'mysqltest_1' order by host,db,user,table_name,column_name;
#
# Handle multi user lists
create user 'mysqltest_1', 'mysqltest_2', 'mysqltest_3';
drop user 'mysqltest_1', 'mysqltest_2', 'mysqltest_3';
create user 'mysqltest_1', 'mysqltest_2' identified by 'Mysqltest-2', 'mysqltest_3' identified by password 'fffffffffffffffffffffffffffffffffffffffff';
rename user 'mysqltest_1' to 'mysqltest_1a', 'mysqltest_2' TO 'mysqltest_2a', 'mysqltest_3' TO 'mysqltest_3a';
2009-02-02 22:20:25 +01:00
--error ER_CANNOT_USER
2004-11-25 21:55:49 +01:00
drop user 'mysqltest_1', 'mysqltest_2', 'mysqltest_3';
drop user 'mysqltest_1a', 'mysqltest_2a', 'mysqltest_3a';
#
# Let one of multiple users fail
create user 'mysqltest_1', 'mysqltest_2', 'mysqltest_3';
2009-02-02 22:20:25 +01:00
--error ER_CANNOT_USER
2004-11-25 21:55:49 +01:00
create user 'mysqltest_1a', 'mysqltest_2', 'mysqltest_3a';
2009-02-02 22:20:25 +01:00
--error ER_CANNOT_USER
2004-11-25 21:55:49 +01:00
rename user 'mysqltest_1a' to 'mysqltest_1b', 'mysqltest_2a' TO 'mysqltest_2b', 'mysqltest_3a' TO 'mysqltest_3b';
drop user 'mysqltest_1', 'mysqltest_2', 'mysqltest_3';
2009-02-02 22:20:25 +01:00
--error ER_CANNOT_USER
2004-11-25 21:55:49 +01:00
drop user 'mysqltest_1b', 'mysqltest_2b', 'mysqltest_3b';
#
# Obsolete syntax has been dropped
create user 'mysqltest_2' identified by 'Mysqltest-2';
2009-02-02 22:20:25 +01:00
--error ER_PARSE_ERROR
2004-11-25 21:55:49 +01:00
drop user 'mysqltest_2' identified by 'Mysqltest-2';
2006-01-26 17:54:34 +01:00
drop user 'mysqltest_2';
2004-11-25 21:55:49 +01:00
#
# Strange user names
create user '%@b'@'b';
show grants for '%@b'@'b';
grant select on mysql.* to '%@b'@'b';
show grants for '%@b'@'b';
rename user '%@b'@'b' to '%@a'@'a';
2009-02-02 22:20:25 +01:00
--error ER_NONEXISTING_GRANT
2004-11-25 21:55:49 +01:00
show grants for '%@b'@'b';
show grants for '%@a'@'a';
drop user '%@a'@'a';
#
2005-03-22 15:54:18 +01:00
# CREATE USER privilege is enough
#
2004-11-25 21:55:49 +01:00
create user mysqltest_2@localhost;
2005-03-22 15:54:18 +01:00
grant create user on *.* to mysqltest_2@localhost;
2005-03-30 00:24:58 +02:00
connect (user3,localhost,mysqltest_2,,);
connection user3;
2009-02-02 22:20:25 +01:00
--error ER_TABLEACCESS_DENIED_ERROR
2004-11-26 11:18:20 +01:00
select host,user,password from mysql.user where user like 'mysqltest_%' order by host,user,password;
2004-11-25 21:55:49 +01:00
create user mysqltest_A@'%';
rename user mysqltest_A@'%' to mysqltest_B@'%';
drop user mysqltest_B@'%';
2005-03-30 00:24:58 +02:00
disconnect user3;
2004-11-25 21:55:49 +01:00
connection default;
drop user mysqltest_2@localhost;
#
2005-03-22 15:54:18 +01:00
# INSERT/UPDATE/DELETE is ok too
2004-11-25 21:55:49 +01:00
create user mysqltest_3@localhost;
2005-03-22 15:54:18 +01:00
grant INSERT,DELETE,UPDATE on mysql.* to mysqltest_3@localhost;
2005-03-30 00:24:58 +02:00
connect (user4,localhost,mysqltest_3,,);
connection user4;
2005-03-22 15:54:18 +01:00
show grants;
2009-02-02 22:20:25 +01:00
--error ER_TABLEACCESS_DENIED_ERROR
2004-11-26 11:18:20 +01:00
select host,user,password from mysql.user where user like 'mysqltest_%' order by host,user,password;
2004-11-25 21:55:49 +01:00
insert into mysql.user set host='%', user='mysqltest_B';
create user mysqltest_A@'%';
rename user mysqltest_B@'%' to mysqltest_C@'%';
2005-03-22 15:54:18 +01:00
drop user mysqltest_C@'%';
2006-01-26 17:54:34 +01:00
drop user mysqltest_A@'%';
2005-03-30 00:24:58 +02:00
disconnect user4;
2004-11-25 21:55:49 +01:00
connection default;
drop user mysqltest_3@localhost;
#
2009-02-02 22:20:25 +01:00
# Bug#3309 Test IP addresses with netmask
2005-03-03 17:44:28 -08:00
set @@sql_mode='';
2005-03-02 16:30:24 -08:00
create database mysqltest_1;
create table mysqltest_1.t1 (i int);
insert into mysqltest_1.t1 values (1),(2),(3);
GRANT ALL ON mysqltest_1.t1 TO mysqltest_1@'127.0.0.0/255.0.0.0';
connect (n1,127.0.0.1,mysqltest_1,,mysqltest_1,$MASTER_MYPORT,$MASTER_MYSOCK);
connection n1;
show grants for current_user();
select * from t1;
disconnect n1;
connection default;
REVOKE ALL ON mysqltest_1.t1 FROM mysqltest_1@'127.0.0.0/255.0.0.0';
2005-08-22 15:48:50 -07:00
delete from mysql.user where user like 'mysqltest\_1';
flush privileges;
2005-03-02 16:30:24 -08:00
drop table mysqltest_1.t1;
2005-08-22 15:48:50 -07:00
#
2009-02-02 22:20:25 +01:00
# Bug#12302 Hostname resolution preventing password changes
# 'SET PASSWORD = ...' didn't work if connecting hostname !=
2005-08-22 15:48:50 -07:00
# hostname the current user is authenticated as. Note that a test for this
# was also added to the test above.
#
grant all on mysqltest_1.* to mysqltest_1@'127.0.0.1';
connect (b12302,127.0.0.1,mysqltest_1,,mysqltest_1,$MASTER_MYPORT,);
connection b12302;
select current_user();
set password = password('changed');
disconnect b12302;
connection default;
select host, length(password) from mysql.user where user like 'mysqltest\_1';
revoke all on mysqltest_1.* from mysqltest_1@'127.0.0.1';
delete from mysql.user where user like 'mysqltest\_1';
flush privileges;
grant all on mysqltest_1.* to mysqltest_1@'127.0.0.0/255.0.0.0';
connect (b12302_2,127.0.0.1,mysqltest_1,,mysqltest_1,$MASTER_MYPORT,);
connection b12302_2;
select current_user();
set password = password('changed');
disconnect b12302_2;
connection default;
select host, length(password) from mysql.user where user like 'mysqltest\_1';
revoke all on mysqltest_1.* from mysqltest_1@'127.0.0.0/255.0.0.0';
delete from mysql.user where user like 'mysqltest\_1';
flush privileges;
2005-03-02 16:30:24 -08:00
drop database mysqltest_1;
2005-07-28 03:22:47 +03:00
2007-02-26 11:49:24 +01:00
--source include/add_anonymous_users.inc
2005-08-22 15:48:50 -07:00
# But anonymous users can't change their password
connect (n5,localhost,test,,test,$MASTER_MYPORT,$MASTER_MYSOCK);
connection n5;
2009-02-02 22:20:25 +01:00
--error ER_DBACCESS_DENIED_ERROR
2005-08-22 15:48:50 -07:00
set password = password("changed");
disconnect n5;
connection default;
2007-02-26 11:49:24 +01:00
--source include/delete_anonymous_users.inc
2005-09-01 16:52:59 +04:00
2009-02-02 22:20:25 +01:00
# Bug#12423 "Deadlock when doing FLUSH PRIVILEGES and GRANT in
2005-09-01 16:52:59 +04:00
# multi-threaded environment". We should be able to execute FLUSH
# PRIVILEGES and SET PASSWORD simultaneously with other account
# management commands (such as GRANT and REVOKE) without causing
# deadlocks. To achieve this we should ensure that all account
# management commands take table and internal locks in the same order.
connect (con2root,localhost,root,,);
connect (con3root,localhost,root,,);
# Check that we can execute FLUSH PRIVILEGES and GRANT simultaneously
# This will check that locks are taken in proper order during both
# user/db-level and table/column-level privileges reloading.
connection default;
lock table mysql.user write;
connection con2root;
send flush privileges;
connection con3root;
send grant all on *.* to 'mysqltest_1'@'localhost';
connection default;
unlock tables;
connection con2root;
reap;
connection con3root;
reap;
# Check for simultaneous SET PASSWORD and REVOKE.
connection default;
lock table mysql.user write;
connection con2root;
send set password for 'mysqltest_1'@'localhost' = password('');
connection con3root;
send revoke all on *.* from 'mysqltest_1'@'localhost';
connection default;
unlock tables;
connection con2root;
reap;
connection con3root;
reap;
connection default;
# Clean-up
drop user 'mysqltest_1'@'localhost';
disconnect con2root;
disconnect con3root;
2005-07-28 03:22:47 +03:00
# End of 4.1 tests
2006-02-27 16:41:58 +01:00
#
# Bug#17279 user with no global privs and with create
# priv in db can create databases
#
create database TESTDB;
create table t2(a int);
create temporary table t1 as select * from mysql.user;
delete from mysql.user where host='localhost';
2006-02-28 13:54:32 +01:00
INSERT INTO mysql.user (host, user, password) VALUES
('%','mysqltest_1',password('password'));
INSERT INTO mysql.db (host, db, user, select_priv) VALUES
('%','TESTDB','mysqltest_1','Y');
2006-02-27 16:41:58 +01:00
FLUSH PRIVILEGES;
connect (con1,localhost,mysqltest_1,password,TESTDB);
# The user mysqltest_1 should only be allowed access to
# database TESTDB, not TEStdb
2009-02-02 22:20:25 +01:00
# On system with "lowercase names" we get error "ER_DB_CREATE_EXISTS: Can't create db..."
--error ER_DBACCESS_DENIED_ERROR, ER_DB_CREATE_EXISTS
2006-02-27 16:41:58 +01:00
create database TEStdb;
# Clean-up
connection default;
2009-02-02 22:20:25 +01:00
disconnect con1;
2006-02-27 16:41:58 +01:00
delete from mysql.user;
delete from mysql.db where host='%' and user='mysqltest_1' and db='TESTDB';
insert into mysql.user select * from t1;
drop table t1, t2;
drop database TESTDB;
flush privileges;
2006-04-18 10:46:17 +02:00
#
2009-02-02 22:20:25 +01:00
# Bug#13310 incorrect user parsing by SP
2006-04-18 10:46:17 +02:00
#
2008-07-10 18:09:39 +02:00
SET @old_log_bin_trust_function_creators= @@global.log_bin_trust_function_creators;
2006-11-17 21:30:28 +01:00
SET GLOBAL log_bin_trust_function_creators = 1;
2009-02-02 22:20:25 +01:00
GRANT ALL PRIVILEGES ON test.* TO `a@`@localhost;
GRANT EXECUTE ON * TO `a@`@localhost;
2006-04-18 10:46:17 +02:00
connect (bug13310,localhost,'a@',,test);
connection bug13310;
2009-02-02 22:20:25 +01:00
CREATE TABLE t2 (s1 INT);
INSERT INTO t2 VALUES (1);
2006-04-18 10:46:17 +02:00
--disable_warnings
2009-02-02 22:20:25 +01:00
DROP FUNCTION IF EXISTS f2;
2006-04-18 10:46:17 +02:00
--enable_warnings
delimiter //;
2009-02-02 22:20:25 +01:00
CREATE FUNCTION f2 () RETURNS INT
BEGIN DECLARE v INT; SELECT s1 FROM t2 INTO v; RETURN v; END//
2006-04-18 10:46:17 +02:00
delimiter ;//
2009-02-02 22:20:25 +01:00
SELECT f2();
2006-04-18 10:46:17 +02:00
2009-02-02 22:20:25 +01:00
DROP FUNCTION f2;
DROP TABLE t2;
2006-04-18 10:46:17 +02:00
disconnect bug13310;
connection default;
REVOKE ALL PRIVILEGES, GRANT OPTION FROM `a@`@localhost;
2009-02-02 22:20:25 +01:00
DROP USER `a@`@localhost;
2006-11-17 21:30:28 +01:00
2008-07-10 18:09:39 +02:00
SET @@global.log_bin_trust_function_creators= @old_log_bin_trust_function_creators;
2007-05-23 15:26:16 +04:00
#
2009-02-02 22:20:25 +01:00
# Bug#25578 CREATE TABLE LIKE does not require any privileges on source table
2007-05-23 15:26:16 +04:00
#
--disable_warnings
drop database if exists mysqltest_1;
drop database if exists mysqltest_2;
--enable_warnings
--error 0,ER_CANNOT_USER
drop user mysqltest_u1@localhost;
create database mysqltest_1;
create database mysqltest_2;
grant all on mysqltest_1.* to mysqltest_u1@localhost;
use mysqltest_2;
create table t1 (i int);
# Connect as user with all rights on mysqltest_1 but with no rights on mysqltest_2.
connect (user1,localhost,mysqltest_u1,,mysqltest_1);
connection user1;
# As expected error is emitted
2009-02-02 22:20:25 +01:00
--error ER_TABLEACCESS_DENIED_ERROR
2007-05-23 15:26:16 +04:00
show create table mysqltest_2.t1;
# This should emit error as well
--error ER_TABLEACCESS_DENIED_ERROR
create table t1 like mysqltest_2.t1;
# Now let us check that SELECT privilege on the source is enough
connection default;
grant select on mysqltest_2.t1 to mysqltest_u1@localhost;
connection user1;
show create table mysqltest_2.t1;
create table t1 like mysqltest_2.t1;
# Clean-up
connection default;
2009-02-02 22:20:25 +01:00
disconnect user1;
2007-05-23 15:26:16 +04:00
use test;
drop database mysqltest_1;
drop database mysqltest_2;
drop user mysqltest_u1@localhost;
2007-05-23 15:22:13 +04:00
2009-02-02 22:20:25 +01:00
2007-06-08 14:42:08 +05:00
#
# Bug#18660 Can't grant any privileges on single table in database
2009-02-02 22:20:25 +01:00
# with underscore char
2007-06-08 14:42:08 +05:00
#
grant all on `mysqltest\_%`.* to mysqltest_1@localhost with grant option;
grant usage on *.* to mysqltest_2@localhost;
connect (con18600_1,localhost,mysqltest_1,,);
create database mysqltest_1;
use mysqltest_1;
create table t1 (f1 int);
grant create on `mysqltest\_1`.* to mysqltest_2@localhost;
grant select on mysqltest_1.t1 to mysqltest_2@localhost;
connect (con3,localhost,mysqltest_2,,);
connection con3;
2009-02-02 22:20:25 +01:00
--error ER_DBACCESS_DENIED_ERROR
2007-06-08 14:42:08 +05:00
create database mysqltest_3;
use mysqltest_1;
create table t2(f1 int);
select * from t1;
connection default;
drop database mysqltest_1;
2009-02-02 22:20:25 +01:00
connection default;
disconnect con3;
disconnect con18600_1;
2007-06-08 14:42:08 +05:00
revoke all privileges, grant option from mysqltest_1@localhost;
revoke all privileges, grant option from mysqltest_2@localhost;
drop user mysqltest_1@localhost;
drop user mysqltest_2@localhost;
2007-09-27 12:15:19 +03:00
#
2009-02-02 22:20:25 +01:00
# Bug#30468 column level privileges not respected when joining tables
2007-09-27 12:15:19 +03:00
#
CREATE DATABASE db1;
USE db1;
CREATE TABLE t1 (a INT, b INT);
INSERT INTO t1 VALUES (1,1),(2,2);
CREATE TABLE t2 (b INT, c INT);
INSERT INTO t2 VALUES (1,100),(2,200);
2009-02-02 22:20:25 +01:00
GRANT SELECT ON t1 TO mysqltest1@localhost;
2007-09-27 12:15:19 +03:00
GRANT SELECT (b) ON t2 TO mysqltest1@localhost;
connect (conn1,localhost,mysqltest1,,);
connection conn1;
USE db1;
--error ER_COLUMNACCESS_DENIED_ERROR
SELECT c FROM t2;
2008-09-03 16:45:40 +02:00
--error ER_TABLEACCESS_DENIED_ERROR
2007-09-27 12:15:19 +03:00
SELECT * FROM t2;
--error ER_COLUMNACCESS_DENIED_ERROR
SELECT * FROM t1 JOIN t2 USING (b);
connection default;
disconnect conn1;
2009-02-02 22:20:25 +01:00
USE test;
2007-09-27 12:15:19 +03:00
DROP TABLE db1.t1, db1.t2;
DROP USER mysqltest1@localhost;
DROP DATABASE db1;
2007-05-23 15:22:13 +04:00
--echo End of 5.0 tests
2009-02-02 22:20:25 +01:00
# Wait till we reached the initial number of concurrent sessions
--source include/wait_until_count_sessions.inc