Can someone please help me identify the minimum permissions necessary for a user to perform two specific actions: altering schema authorization to set it as 'dbo' for schemas owned by other users, and doing the same for schemas owned by the user themselves?
Loading
Nandan HegdePosted Oct 3, 2023, 1:30 PM
ALTER AUthroization does :
Requires TAKE OWNERSHIP permission on the entity. If the new owner is not the user that is executing this statement, also requires either, 1) IMPERSONATE permission on the new owner if it is a user or login; or 2) if the new owner is a role, membership in the role, or ALTER permission on the role; or 3) if the new owner is an application role, ALTER permission on the application role.
This suggests that you would have to be dbo (since no one would grant you rights to impersonate dbo) to change ownership to dbo, but testing shows that it is sufficient with membership in db_owner or CONTROL permission