Skip to main content

Azure SQL - Useful queries

While working with Azure SQL using SQL server management studio (SSMS), most of the feature which we used to get through SSMS GUI while connecting with OnPre/IaaS SQL-Server, is not available (e.g.: get the user's role assignment, create user/role ..)

Here are a few useful T-SQL queries:

To create a role

Create Role

IF DATABASE_PRINCIPAL_ID('<<your-role-name>>') IS NULL
BEGIN
  -- Add Role here
  CREATE ROLE [<<your-role-name>>];
END
    



To create a user

Create User if not exists [<<your-user-name>>]

IF NOT EXISTS (SELECT  [name]   
			FROM    
			sys.database_principals    
			WHERE   [name] = '<<your-user-name>>'	)
BEGIN
   CREATE USER [<>] FROM  EXTERNAL PROVIDER ;
END
  


Get user role & grant permission summary

Role & grant permission summary:


SELECT DISTINCT pr.principal_id, pr.name, pr.type_desc, 
    pr.authentication_type_desc, pe.state_desc, pe.permission_name
FROM sys.database_principals AS pr
JOIN sys.database_permissions AS pe
    ON pe.grantee_principal_id = pr.principal_id;

--Role sumamry
SELECT 
	dp_role.name as db_role_name,
	dp_member.name as db_member_name
FROM sys.database_role_members as drs	       
	LEFT JOIN sys.database_principals as dp_role
ON drs.role_principal_id = dp_role.principal_id
	LEFT JOIN sys.database_principals as dp_member
ON drs.member_principal_id = dp_member.principal_id
WHERE dp_member.name = N'<<your-user-name>>'
Order by 1



To get the object's dependencies

--Generally used sp_depends

sp_depends '<your-schema>.<our-sp-name>'
-- 1st Result: Object on which it depends
-- 2nd Result: Object which depends on this

-- Object on which this sp depnds
SELECT
        referenced_schema_name,
        referenced_entity_name,
        referenced_minor_name,
        referenced_minor_id,
        referenced_class_desc,
        is_caller_dependent,
        is_ambiguous
FROM
	sys.dm_sql_referenced_entities ('<your-schema>.<our-sp-name>',
		'OBJECT')

-- Object which depends on this sp
SELECT referencing_schema_name, 
	referencing_entity_name, 
	referencing_id, 
	referencing_class_desc, 
	is_caller_dependent  
FROM sys.dm_sql_referencing_entities ('<your-schema>.<our-sp-name>', 
		'OBJECT');  
  

Comments

Popular posts from this blog

EFCore - Collate function

Search in SQL server query is generally case insensitive (by default or based on database level collation). Suppose we have an employees table with a row having first-name column value as "My-First-Name", so if we want to do the case-sensitive search we have to explicitly use the related collate: In EF 5 (currently in Release Candidate version [RC.2.20475.6]) Collate function got introduced which helps us to use our specific collation based search.  C# with EF5 code sample: var employeeCaseSensitiveSearch = _dbContext.Employees .Where(x => EF.Functions.Collate(x.FirstName, "Latin1_General_CS_AS") == "my-first-name") .FirstOrDefault(); A related database query will be something like this: T-SQL: Case sensitive search (use specific collation e.g.: Latin1_General_CS_AS) SELECT * FROM dbo.Employees AS e WHERE e.FirstName Collate Latin1_General_CS_AS = 'my-first-name' Some of the useful CSharp function which g...

Azure SQL - User management with Active Directory Group

To manage the user's roles we use Service Account on OnPrem/IaaS servers. We can use this service account on our SQL Server and accordingly manage users' permissions for the users who are part of this service account. Suppose we have an Azure SQL and we want to manage set-of-users permission shall we create each-and-every users' user profile in Azure SQL and set the permissions accordingly. Obviously, we will not .  If we've anything like Service Account (or Group) on Azure we could create the user of this GROUP on Azure SQL and set its permission/role. Here comes the Azure Active Directory Group to help us.  In case if our organization has some scheduled tasks to sync Active Directory (service account) to Azure Active Directory (AAD group), already in place, there will be some delay when we add a user to the Service account and get reflected in the AAD Group. If we have a requirement that as soon as we add a user to our group we wan...

Git - Update submodule

Sometimes in the large project when we separate it in different repositories we need to take reference of one repository in another where some the sub-module concepts. Now if we move our submodule to a different repository or renaming its repo-path then we've to also update the repository where this sub-module is getting referenced. Let's see how to update the git submodule.  Step-1: First clone the repo Step-2: Open git UI to create a new local branch from master  Step-3: Open git bash -- Now run below command to (remove submodules & add them):  -- Remove submodule git submodule deinit YOUR_FIRST_REPO git rm YOUR_FIRST_REPO git commit -m "Removed submodule YOUR_FIRST_REPO" rm -rf .git/modules/YOUR_FIRST_REPO -- Add submodule git submodule add <<..YOUR_FIRST_REPO git URL>> Step-4: All good, let's push our changes to the master