CREATE ROLEcommand like below. If you choose not to specify a graph in the command, the current scope will be used as the scope of the role:
example_graph. By default, these two roles do not have any privilege:
WRITE_ROLEon the global scope
CREATE ROLEcommand like below. Replace
role1with the name of the role you are creating.
role1on the global scope. By default, this role has no privileges:
SHOW PRIVILEGE ON ROLEcommand, and replace
role1, role2with the names of the roles whose privileges you want to view:
USE GLOBALto switch to your desired scope.
GRANT PRIVILEGEcommand from the GSQL shell:
role2to edit and install queries, as well as modify roles on the graph
example_graph. To see a full list of privileges and the command they allow users to run, see List of Privileges.
REVOKE PRIVILEGEcommand from the GSQL shell:
WRITE_QUERYprivilege from the role
DROP ROLEcommand from the GSQL shell:
role2. This will also revoke the roles from users who have been granted these roles.