問題文
A provider is designing an app that will serve two audiences from one dataset: a support team that needs the full data including logs, and business teams that should only see filtered views. They plan to use Declarative Sharing. Which option correctly identifies the two facts about application roles they need? (Select two.)
選択肢
- Application roles in a Declarative Sharing app can hold privileges on the consumer's own tables, which is how the filtered views are produced.
- Consumers can build hierarchies by assigning application roles to other application roles, in addition to assigning them to their own account roles.
- Child resources inherit the roles of their parent, so assigning a role to a schema gives it every table and view in that schema.
- Assigning a role to a table is enough on its own, because the schema that holds that table does not need to carry the same role as well.
- The consumer has to maintain each application role in their own account's security model, because the roles exist outside the app.