Grant user or role the specified permission on the specified object.
Parameters
Name of the user or role for which the permission is being granted. Must be an existing user or role. The default value is ‘’.
Name of object permission is being granted to. It is recommended to use a fully-qualified name when possible.
The type of object being granted to. Allowed values are:
catalog – Catalog
context – Context
credential – Credential
datasink – Data Sink
datasource – Data Source
directory – KIFS File Directory
graph – A Graph object
proc – UDF Procedure
schema – Schema
sql_proc – SQL Procedure
system – System-level access
table – Database Table
table_monitor – Table monitor
Permission being granted. Allowed values are:
admin – Full read/write and administrative access on the object.
connect – Connect access on the given data source or data sink.
create – Ability to create new objects of this type.
delete – Delete rows from tables.
execute – Ability to Execute the Procedure object.
insert – Insert access to tables.
monitor – Monitor logs and statistics.
read – Ability to read, list and use the object.
send_alert – Ability to send system alerts.
update – Update access to the table.
user_admin – Access to administer users and roles that do not have system_admin permission.
write – Access to write, change and delete objects.
Optional parameters. Allowed keys are:
columns – Apply table security to these columns, comma-separated. The default value is ‘’.
filter_expression – Filter expression to apply to this grant. Only rows that match the filter will be affected. The default value is ‘’.
with_grant_option – Allow the recipient to grant the same permission (or subset) to others. Allowed values are:
true
false
The default value is ‘false’.
The default value is an empty dict ( ).
Returns
A dict with the following entries–
Value of input parameter principal.
Value of input parameter object.
Value of input parameter object_type.
Value of input parameter permission.
Additional information.