I've removed the Admin user from the Admins group and have granted limited
permissions to the Users group. This seems to work fine. Users can't look at
the code and are limited by the permissions I assigned to the Users group.
My worry is that I've read posts that say you should not grant the Users group
any permissions to adequately secure the database. I've tried creating a new
group (Staff), adding the Admin user to the Staff group, and assigning
permissions to the staff group only. But when I load the database, I get
permission errors.
Is there a gaping hole if I leave it the way it is?
Dan L
-----------== Posted via Deja News, The Discussion Network ==----------
http://www.dejanews.com/ Search, Read, Discuss, or Start Your Own