REVOKE (Package Privileges)

This form of the REVOKE statement removes the privileges on a package.

Invocation

This statement can be embedded in an application program or issued interactively. It is an executable statement that can be dynamically prepared.

Authorization

The privileges held by the authorization ID of the statement must include at least one of the following:

Syntax

Click to skip syntax diagram
Read syntax diagramSkip visual syntax diagram                  .-PRIVILEGES-.
>>-REVOKE--+-ALL--+------------+-+--ON PACKAGE------------------>
           | .-,-----------.     |
           | V             |     |
           '---+-ALTER---+-+-----'
               '-EXECUTE-'
 
   .-,------------.        .-,----------------------.
   V              |        V                        |
>----package-name-+--FROM----+-authorization-name-+-+----------><
                             '-PUBLIC-------------'
 

Description

ALL or ALL PRIVILEGES
Revokes one or more package privileges from each authorization-name. The privileges revoked are those privileges on the identified packages that were granted to the authorization-names. Note that revoking ALL PRIVILEGES on a package is not the same as revoking the system authority of *ALL.

If you do not use ALL, you must use one or more of the keywords listed below. Each keyword revokes the privilege described.

ALTER
Revokes the privilege to use the COMMENT and LABEL statements.
EXECUTE
Revokes the privilege to execute statements in a package.
ON PACKAGE package-name
Identifies the packages from which you are revoking privileges. The package-name must identify a package that exists at the current server.
FROM
Identifies from whom the privileges are revoked.
authorization-name,...
Lists one or more authorization IDs. Do not specify the same authorization-name more than once.
PUBLIC
Revokes the specified privileges from PUBLIC.

Notes

Multiple grants: If you revoke a privilege on a package, it nullifies any grant of the privilege on that package, regardless of who granted it.

Revoking WITH GRANT OPTION: The only way to revoke the WITH GRANT OPTION is to revoke ALL.

Privilege warning: Revoking a specific privilege from a user does not necessarily prevent that user from performing an action that requires that privilege. For example, the user may still have the privilege through PUBLIC or administrative privileges.

Corresponding system authorities: When a package privilege is revoked, the corresponding system authorities are revoked. For information on the system authorities that correspond to SQL privileges see GRANT (Package Privileges).

Syntax alternatives: The following keywords are synonyms supported for compatibility to prior releases. These keywords are non-standard and should not be used:

Example

Example 1: Revoke the EXECUTE privilege on package PKGA from PUBLIC.

   REVOKE EXECUTE
     ON PACKAGE PKGA
     FROM PUBLIC

Example 2: Revoke the EXECUTE privilege on package RRSP_PKG from user FRANK and PUBLIC.

   REVOKE EXECUTE
     ON PACKAGE RRSP_PKG
     FROM FRANK, PUBLIC



[ Top of Page | Previous Page | Next Page | Contents | Index ]