フリー問題

SnowPro Advanced: Security Engineer のフリー問題 3 / 20 問目

問題文

A security engineer must give a partner team read access to a single schema inside a database, and the grants must travel with the database when it is later shared or replicated. Which approach fits that requirement?

選択肢

  1. Grant select on the objects directly to the partner team's users, so that the grants live on the objects themselves and move with them.
  2. Create a database role in that database, grant it usage on the schema and select on the objects, and grant the database role to the account role the partner team uses.
  3. Attach a row access policy that admits the partner team's role, because policies are stored in the database.
  4. Create an account-level custom role, grant it usage on the schema and select on the objects, and rely on the fact that a role defined at the account level is carried along with any database that its grants happen to point at.

解答・解説を確認するには

正解と解説の確認、回答の記録には無料登録が必要です。登録すると演習モードでフリー問題に回答し、正誤と解説をその場で確認できます。