Flexible Database Level Roles

Flexible database roles enable us to use roles with a custom set of permissions. We can nest flexible database roles in a manner similar to the way we nest security groups in Active Directory. These database roles simplify the management of permissions. I would never grant access on a user by user basis, I would create a group an then


Schemas enable you to organise objects (securables) into containers and thus simplify the process of assigning permissions We can create a flexible database role and then create a schema owned by that role, adding security principals to that role as necessary to grant them permissions over the objects within that schema. Objects belong to schemas, and schemas belong to security