IP Library Granted Patent US 11,269,825
Granted Patent B2
US 11,269,825 · App. 16/713,746 · Granted Mar 8, 2022

Privilege retention for database migration

Inventor: Reinhard Arlt (Karlsruhe, DE)
Assignee: SAP SE
G06F16/214G06F21/6227G06F2221/2141G06F2221/2145
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,269,825
App. No.
16/713,746
Granted
Mar 8, 2022
Kind
B2
Abstract

Disclosed herein are system, method, and computer program product embodiments for performing a database migration with automatic privilege retention and restoration. Embodiments provide for migrating a source database object at a source database to a target database object at a target database. The embodiments provide for binding a retention tag to database objects in order to mark the objects whose privileges are to be retained during a database migration. This approach enables privileges of database objects that are involved in a database migration to be automatically restored at target database objects after the migration.

Claims (62)

1. A computer implemented method, comprising:

binding, by one or more computing devices, an enabled retention tag to a database object and a disabled retention tag to another database object, wherein the database object and the another database object are located in a source database;

initiating a migration, by the one or more computing devices, from the source database to a target database, wherein the migration involves destroying the database object and the another database object in the source database;

determining, based on the enabled retention tag by the one or more computing devices, to retain a privilege associated with the database object and, based on the disabled retention tag by the one or more computing devices, to not retain another privilege associated with the another database object;

retaining, by the one or more computing devices, the privilege in a privilege store based on the determining;

revoking, by the one or more computing devices, the another privilege in the privilege store based on the determining;

granting, by the one or more computing devices from the privilege store, the privilege to a migrated database object at the target database.

2. The method of claim 1 , further comprising:

detecting, by the one or more computing devices, that the enabled retention tag has been removed from the migrated database object; and

removing, based on the detecting, the privilege from the privilege store.

3. The method of claim 1 , wherein the privilege is associated with a user and the method further comprising:

detecting that the user is removed from the source database or the target database; and

removing, based on the detecting, the privilege from the privilege store.

4. The method of claim 1 , wherein the privilege comprises a plurality of privileges and wherein granting the privilege comprises:

determining, based on the database object and the migrated database object, a subset of the plurality of privileges to be granted to the migrated database object; and

granting the subset of plurality of privileges to the migrated database object.

5. The method of claim 1 , further comprising:

creating the migrated database object based on a definition associated with the database object.

6. The method of claim 1 , further comprising:

configuring, by the one or more computing devices, a trigger to initiate the retaining of the privilege during the migration.

7. The method of claim 6 , wherein the trigger includes at least one of a deletion of the database object or a creation of the migrated database object.

8. A system, comprising:

a memory configured to store operations; and

one or more processors configured to perform the operations, the operations comprising:

binding an enabled retention tag to a database object and a disabled retention tag to another database object, wherein the database object and the another database object are located in a source database;

initiating a migration from the source database to a target database, wherein the migration involves destroying the database object and the another database object in the source database;

determining, based on the enabled retention tag, to retain a privilege associated with the database object and, based on the disabled retention tag by the one or more computing devices, to not retain another privilege associated with the another database object;

retaining the privilege in a privilege store based on the determining; and

granting, from the privilege store, the privilege to a migrated database object at the target database.

9. The system of claim 8 , the operations further comprising:

detecting that the enabled retention tag has been removed from the migrated database object; and

removing, based on the detecting, the privilege from the privilege store.

10. The system of claim 8 , wherein the privilege is associated with a user and the operations further comprising:

detecting that the user is removed from the source database or the target database; and

removing, based on the detecting, the privilege from the privilege store.

11. The system of claim 8 , wherein the privilege comprises a plurality of privileges and wherein granting the privilege comprises:

determining, based on the database object and the migrated database object, a subset of the plurality of privileges to be granted to the migrated database object; and

granting the subset of plurality of privileges to the migrated database object.

12. The system of claim 8 , the operations further comprising:

creating the migrated database object based on a definition associated with the database object.

13. The system of claim 8 , the operations further comprising:

configuring, by the one or more computing devices, a trigger to initiate the retaining of the privilege during the migration.

14. The system of claim 13 , wherein the trigger includes at least one of a deletion of the database object or a creation of the migrated database object.

15. A computer readable storage device having instructions stored thereon execution of which, by one or more processing devices, causes the one or more processing devices to perform operations comprising:

binding an enabled retention tag to a database object and a disabled retention tag to another database object, wherein the database object and the another database object are located in a source database;

initiating a migration from the source database to a target database, wherein the migration involves destroying the database object and the another database object in the source database;

determining, based on the enabled retention tag, to retain a privilege associated with the database object and, based on the disabled retention tag by the one or more computing devices, to not retain another privilege associated with the another database object;

retaining the privilege in a privilege store based on the determining; and

granting, from the privilege store, the privilege to a migrated database object at the target database.

16. The computer readable storage device of claim 15 , the operations further comprising:

detecting that the enabled retention tag has been removed from the migrated database object; and

removing, based on the detecting, the privilege from the privilege store.

17. The computer readable storage device of claim 15 , wherein the privilege is associated with a user and the operations further comprising:

detecting that the user is removed from the source database or the target database; and

removing, based on the detecting, the privilege from the privilege store.

18. The computer readable storage device of claim 15 , wherein the privilege comprises a plurality of privileges and wherein granting the privilege comprises:

determining, based on the database object and the migrated database object, a subset of the plurality of privileges to be granted to the migrated database object; and

granting the subset of plurality of privileges to the migrated database object.

19. The computer readable storage device of claim 15 , the operations further comprising:

creating the migrated database object based on a definition associated with the database object.

20. The computer readable storage device of claim 15 , the operations further comprising:

configuring, by the one or more computing devices, a trigger to initiate the retaining of the privilege during the migration.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 13, 2019
From: ARLT, REINHARD
To: SAP SE
Reel/Frame 051278/0139 →
Continuity (1)
Related Publication 20210182252A1 · Jun 17, 2021