ÕªÒª:
±¾ÎĽ«Í¨¹ýÒ»¸öʵ¼ÊʾÀýչʾÈçºÎÀûÓà IBM DB2 for Linux, UNIX, and Windows
µÄ¿ÉÐÅÉÏÏÂÎÄÌØÐÔÀ´±£»¤Êý¾Ý¿âÃâÊÜδ¾ÊÚȨµÄ·ÃÎÊ£¬»òÕß¾ÊÚȨµÄÊý¾Ý¿âÓû§µÄ²»µ±Ê¹Óá£
ÎÊÌâ˵Ã÷
°²È«¹ÜÀíÔ±ÒªÇó½öÔÊÐíÀ´×ÔÒ»×éÌØ¶¨µÄ IP µØÖ·µÄ×îÖÕÓû§Á¬½ÓÊý¾Ý¿â¡£±¾ÎĽ«Õ¹Ê¾ÈçºÎÀûÓÃÊý¾Ý¿â½ÇÉ«ºÍ¿ÉÐÅÉÏÏÂÎÄÀ´½â¾öÕâ¸öÎÊÌâ¡£³öÓÚÑÝʾµÄÄ¿µÄ£¬ÎÒÃǼÙÉ谲ȫ¹ÜÀíԱϣÍû±£Ö¤Óû§
Einstein ½öÄÜͨ¹ý IP µØÖ· 9.26.120.62 Á¬½Óµ½Êý¾Ý¿â¡£
Êý¾Ý¿â½ÇÉ«
½ÇÉ« ¾ÍÊÇÒ»ÖÖÊý¾Ý¿â¶ÔÏó£¬×éÖ¯ÁË¿ÉÒÔ·ÖÅ䏸Óû§¡¢·Ö×é¡¢ÌØÊâ·Ö×é PUBLIC¡¢ÆäËû½ÇÉ«»ò¿ÉÐÅÉÏÏÂÎĵÄÒ»ÖÖ»ò¶àÖÖÌØÈ¨¡£½ÇÉ«¼ò»¯ÁËÌØÈ¨µÄ¹ÜÀí£¬ÔÊÐí°²È«¹ÜÀíÔ±ÔÚÒ»¸ö½ÇÉ«ÖÐ×éÖ¯ÊÚȨºÍÌØÈ¨£¬²¢½«½ÇÉ«ÊÚÓèÐèÒªÕâЩÊÚȨºÍÌØÐÔ²ÅÄÜÍê³ÉÆä¹¤×÷µÄÓû§¡£´ËÍ⣬ÓÉÓÚ½ÇɫλÓÚ
DB2 Êý¾Ý¿âϵͳÄÚ£¬Òò´Ë²¢·ÇÓë·Ö×é¾ßÓÐÏàͬµÄÔ¼Êø¡£
¿ÉÒÔÔÚÒ»¸öÊý¾Ý¿âÄÚÊÚÓèµÄËùÓÐ DB2 ÌØÈ¨ºÍÊÚȨ¾ù¿ÉÊÚÓèÒ»¸ö½ÇÉ«¡£¾ÙÀýÀ´Ëµ£¬¿ÉΪһ¸ö½ÇÉ«ÊÚÓè¶Ôij¸ö±íµÄ
CONNECT ÊÚȨºÍ SELECT ÌØÈ¨¡£
¿ÉÐÅÉÏÏÂÎÄ
¿ÉÐÅÉÏÏÂÎÄ ÊÇÒ»ÖÖÊý¾Ý¿â¶ÔÏ󣬶¨ÒåÁËÊý¾Ý¿âÓëÒ»¸öÍⲿʵÌ壨ÀýÈçÓ¦Ó÷þÎñÆ÷£©Ö®¼äµÄÁ¬½ÓµÄÒ»ÖÖÐÅÈιØÏµ¡£
ÕâÖÖÐÅÈιØÏµ»ùÓÚÒÔÏÂÒ»×éÊôÐÔ£º
ϵͳÊÚȨ ID£º´ú±í½¨Á¢Êý¾Ý¿âÁ¬½ÓµÄÓû§
IP µØÖ·£¨»òÓòÃû£©£º´ú±í½¨Á¢ÁËÊý¾Ý¿âÁ¬½ÓµÄÖ÷»ú
Êý¾ÝÁ÷¼ÓÃÜ£º´ú±íÊý¾Ý¿â·þÎñÆ÷ÓëÊý¾Ý¿â¿Í»§¶ËÖ®¼äµÄÊý¾ÝͨÐżÓÃÜÉèÖã¨Èç¹ûÓУ©
ÔÚÓû§½¨Á¢Êý¾Ý¿âÁ¬½Óʱ£¬DB2 Êý¾Ý¿âϵͳ½«¼ì²éÁ¬½ÓÊÇ·ñÓëÊý¾Ý¿âÄڵĿÉÐÅÉÏÏÂÎĶÔÏóµÄ¶¨Ò寥Åä¡£Èç¹ûÆ¥Å䣬Ôò½«ÕâÑùµÄÊý¾Ý¿âÁ¬½Ó³ÆÎª¿ÉÐŵġ£
¿ÉÐÅÉÏÏÂÎÄÌṩÁËÒ»ÖÖ¹¦ÄÜ£¬ÈÿÉÐÅÉÏÏÂÎĵÄÓû§Äܹ»¼Ì³ÐÒ»¸öÊý¾Ý¿â½ÇÉ«¡£¾ÙÀýÀ´Ëµ£¬Ò»Ãû°²È«¹ÜÀíÔ±¿ÉÒÔÑ¡Ôñ½«Ð½×ʱíµÄ
SELECT ÌØÈ¨ÊÚÓèÒ»¸ö½ÇÉ«£¬²¢È·±£¸Ã½ÇÉ«½öͨ¹ý¿ÉÐÅÉÏÏÂÎÄ¿ÉÓá£ÕâÒ²¾ÍÊÇ˵£¬Èç¹ûÓû§ÔÚ¿ÉÐÅÉÏÏÂÎĵķ¶Î§Ö®Íâ²Ù×÷£¬ÄÇô¾ÍÎÞ·¨ÀûÓÃÕâ¸ö½ÇÉ«£¨µ±È»Ò²ÎÞ·¨»ñµÃн×ʱíµÄ
SELECT ÌØÈ¨£©¡£
½â¾ö·½°¸ÃèÊö
ÔÚ DB2 9.7 FixPak 3 ֮ǰ£¬ÔÚÊý¾Ý¿âÁ¬½Óʱ¼ì²é CONNECT
ÊÚȨʱ²»»á¿¼ÂÇͨ¹ý¿ÉÐÅÉÏÏÂÎÄ·¢ÉúµÄ½ÇÉ«¼Ì³Ð¡£Èç½ñ£¬DB2 9.7 FP3 ÒѾÏû³ýÁËÕâÑùµÄÏÞÖÆ¡£ÕâÏîÔöÇ¿µÄÒ»ÏîÖ±½ÓÓ¦ÓþÍÊÇÄܹ»ÏÞÖÆ×îÖÕÓû§Äܹ»Í¨¹ýºÎ´¦Á¬½Óµ½Êý¾Ý¿â¡£
ʾÀý
ÎÒÃÇÓÐÒ»Ãû³£¹æÓû§ Einstein£¬ÎÒÃÇÏ£Íû½öÔÊÐíËûͨ¹ý IP 9.26.120.62
(hotel46) Á¬½Óµ½Î»ÓÚ 9.26.120.64 (hotel48) µÄ T1 Êý¾Ý¿â¡£
µÚ 1 ²½£ºÔÚ 9.26.120.64 (hotel48) ´´½¨ T1
Êý¾Ý¿â
db2start db2 create database T1 |
ÑéÖ¤Êý¾Ý¿âÒÑ´´½¨£º db2 list db directory¡£

ͼ 1. ϵͳÊý¾Ý¿âĿ¼
µÚ 2 ²½£ºÅäÖà TCPIP ͨÐÅÐÒé
ÔÚ·þÎñÆ÷¶Ë 9.26.120.64 hotel48£¬ÔËÐÐÒÔÏÂÃüÁ
Çåµ¥ 1. ÅäÖÃͨÐÅÐÒéÒÔ¼° TCPIP µÄÅäÖÃ
db2set DB2COMM=TCPIP db2 update dbm cfg using SVCENAME xziskind db2stop db2start |
ÔÚ¿Í»§¶Ë 9.26.120.62 hotel46£¬ÔËÐÐÒÔÏÂÃüÁ
Çåµ¥ 2. ·ÖÀà TCPIP ½ÚµãºÍÊý¾Ý¿â
db2 catalog tcpip node NT1 remote hotel48 server xziskind db2 terminate db2 catalog database T1 at node NT1 db2 terminate |
ÑéÖ¤Óû§ Einstein ÄÜ·ñÁ¬½Óµ½ T1 Êý¾Ý¿â

ͼ 2. ´Ó 9.26.120.64 hotel48
Á¬½Ó
ͼ 3. ´Ó 9.26.120.62 hotel46
Á¬½Ó
Óû§ Einstein ¿ÉÒÔͨ¹ýÁ½¸ö IP µØÖ·Á¬½Óµ½ T1 Êý¾Ý¿â¡£
ÈÃÎÒÃÇÀ´Ñé֤һϠEinstein µÄÊÚȨ¡£Îª´Ë£¬ÎÒÃÇÒªÀûÓà AUTH_LIST_AUTHORITIES_FOR_AUTHID
±íº¯Êý¡£Õ⽫·µ»Ø¿ÉÔÚÊý¾Ý¿âÅäÖÃÎļþÄÚÕÒµ½µÄÊÚȨ ID ËùÓµÓеÄÈ«²¿ÊÚȨ£¬»òÕßͨ¹ý·Ö×é»ò½Çɫֱ½Ó»ò¼ä½ÓÊÚÓèÒ»¸öÊÚȨ
ID µÄÈ«²¿ÊÚȨ¡£
Çåµ¥ 3. Einstein ÓµÓеÄÊÚȨ
db2 SELECT AUTHORITY, D_USER, D_GROUP, D_PUBLIC, ROLE_USER, ROLE_GROUP, ROLE_PUBLIC, D_ROLE FROM TABLE (SYSPROC.AUTH_LIST_AUTHORITIES_FOR_AUTHID ('EINSTEIN', 'U') ) AS T ORDER BY AUTHORITY
AUTHORITY D_USER D_GROUP D_PUBLIC ROLE_USER ROLE_GROUP
ROLE_PUBLIC D_ROLE
------------------------- ------ ------- --------
--------- ---------- ----------- ------
ACCESSCTRL N N N N N N *
BINDADD N N Y N N N *
CONNECT N N Y N N N *
CREATETAB N N Y N N N *
CREATE_EXTERNAL_ROUTINE N N N N N N *
CREATE_NOT_FENCED_ROUTINE N N N N N N *
DATAACCESS N N N N N N *
DBADM N N N N N N *
EXPLAIN N N N N N N *
IMPLICIT_SCHEMA N N Y N N N *
LOAD N N N N N N *
QUIESCE_CONNECT N N N N N N *
SECADM N N N N N N *
SQLADM N N N N N N *
SYSADM * N * * * * *
SYSCTRL * N * * * * *
SYSMAINT * N * * * * *
SYSMON * N * * * * *
WLMADM N N N N N N *
19 record(s) selected. |
Óû§ Einstein ͨ¹ýÌØÊâ·Ö×é PUBLIC »ñµÃÁË CONNECT ÊÚȨ
µÚ 3 ²½£º³·Ïú PUBLIC µÄ CONNECT ÊÚȨ
db2 revoke connect on database from public |
ÔÙ´ÎÑéÖ¤ Einstein µÄÊÚȨ£º
Çåµ¥ 4. ÔÚ³·ÏúÁË PUBLIC µÄ CONNECT ÊÚȨ֮ºó£¬Einstein µÄÊÚȨ
db2 SELECT AUTHORITY, D_USER, D_GROUP, D_PUBLIC, ROLE_USER, ROLE_GROUP, ROLE_PUBLIC, D_ROLE FROM TABLE (SYSPROC.AUTH_LIST_AUTHORITIES_FOR_AUTHID ('EINSTEIN', 'U') ) AS T ORDER BY AUTHORITY
AUTHORITY D_USER D_GROUP D_PUBLIC ROLE_USER ROLE_GROUP
ROLE_PUBLIC D_ROLE
------------------------- ------ ------- --------
--------- ---------- ----------- ------
ACCESSCTRL N N N N N N *
BINDADD N N Y N N N *
CONNECT N N N N N N *
CREATETAB N N Y N N N *
CREATE_EXTERNAL_ROUTINE N N N N N N *
CREATE_NOT_FENCED_ROUTINE N N N N N N *
DATAACCESS N N N N N N *
DBADM N N N N N N *
EXPLAIN N N N N N N *
IMPLICIT_SCHEMA N N Y N N N *
LOAD N N N N N N *
QUIESCE_CONNECT N N N N N N *
SECADM N N N N N N *
SQLADM N N N N N N *
SYSADM * N * * * * *
SYSCTRL * N * * * * *
SYSMAINT * N * * * * *
SYSMON * N * * * * *
WLMADM N N N N N N *
19 record(s) selected. |
Óû§ Einstein ²»ÔÙÓµÓÐÀ´×ÔÈκÎÀ´Ô´µÄ CONNEC
ÏÖÔÚ³¢ÊÔÔÙ´ÎÁ¬½Ó¡£

ͼ 4. ´Ó 9.26.120.64 hotel48
Á¬½Ó
ͼ 5. ´Ó 9.26.120.62 hotel46
Á¬½Ó
Óû§ Einstein ͨ¹ýÈκΠIP µØÖ·¶¼²»ÔÙÄܹ»Á¬½Ó¡£
µÚ 4 ²½£º´´½¨½ÇÉ«ºÍ¿ÉÐÅÉÏÏÂÎÄ
×÷ΪӵÓÐ SECADM ÊÚȨµÄÓû§ÔËÐÐÒÔÏÂÃüÁ
´´½¨½ÇÉ«£ºdb2 create role connect_role
½« CONNECT ÊÚȨÊÚÓè½ÇÉ«£ºdb2 grant CONNECT on database to role
connect_role
´´½¨¿ÉÐÅÉÏÏÂÎÄ£º
db2 create trusted context connect_tc based upon connection using system authid einstein attributes(address '9.26.120.62') default role connect_role enable |

ͼ 6. ´´½¨½ÇÉ«£¬Á¬½Ó²¢´´½¨¿ÉÐÅÉÏÏÂÎÄ
µÚ 5 ²½£º²âÊÔ
ÑÏÖØÓû§ Einstein ÊÇ·ñÄܹ»Í¨¹ý IP 9.26.120.62
(hotel46) Á¬½Ó£¬µ«²»ÄÜͨ¹ý IP 9.26.120.64 (hotel48) Á¬½Ó¡£

ͼ 7. ´Ó 9.26.120.62 hotel46
Á¬½Ó
ͼ 8. ´Ó 9.26.120.64 hotel48
Á¬½Ó
½áÊøÓï
½«¿ÉÐÅÉÏÏÂÎÄ¡¢½ÇÉ«ºÍ CONNECT ÊÚȨµÄÄÜÁ¦Ïà½áºÏ£¬ÎÒÃǼ´¿É¿ØÖƳ£¹æÓû§¿É´ÓºÎ´¦Á¬½Óµ½Êý¾Ý¿â¡£Çë×¢Ò⣬ÕâÖÖ½â¾ö·½°¸²¢²»ÊÊÓÃÓÚ³¬¼¶Óû§
SYSADM¡¢SYSCTRL¡¢SYSMAINT¡¢SYSMON¡¢DBADM ºÍ SECADM¡£ÕâЩÓû§¾ßÓÐÒþʽµÄ
CONNECT ÊÚȨ¡£
|