Skip to main content
revoke_permission(principal=, object=None, object_type=None, permission=None, options=)[source]

Revoke user or role the specified permission on the specified object.

Parameters

principal (str) –

Name of the user or role for which the permission is being revoked. Must be an existing user or role. The default value is ‘’.

object (str) –

Name of object permission is being revoked from. It is recommended to use a fully-qualified name when possible.

object_type (str) –

The type of object being revoked. Allowed values are:

  • catalog – Catalog

  • context – Context

  • credential – Credential

  • datasink – Data Sink

  • datasource – Data Source

  • directory – KIFS File Directory

  • graph – A Graph object

  • proc – UDF Procedure

  • schema – Schema

  • sql_proc – SQL Procedure

  • system – System-level access

  • table – Database Table

  • table_monitor – Table monitor

permission (str) –

Permission being revoked. Allowed values are:

  • admin – Full read/write and administrative access on the object.

  • connect – Connect access on the given data source or data sink.

  • create – Ability to create new objects of this type.

  • delete – Delete rows from tables.

  • execute – Ability to Execute the Procedure object.

  • insert – Insert access to tables.

  • monitor – Monitor logs and statistics.

  • read – Ability to read, list and use the object.

  • send_alert – Ability to send system alerts.

  • update – Update access to the table.

  • user_admin – Access to administer users and roles that do not have system_admin permission.

  • write – Access to write, change and delete objects.

options (dict of str to str) –

Optional parameters. Allowed keys are:

  • columns – Revoke table security from these columns, comma-separated. The default value is ‘’.

The default value is an empty dict ( ).

Returns

A dict with the following entries–

principal (str) –

Value of input parameter principal.

object (str) –

Value of input parameter object.

object_type (str) –

Value of input parameter object_type.

permission (str) –

Value of input parameter permission.

info (dict of str to str) –

Additional information.