定义
db.grantRolesToRole(rolename, roles, writeConcern)重要
mongosh 方法
This page documents a
mongoshmethod. This is not the documentation for database commands or language-specific drivers, such as Node.js.有关数据库命令,请参阅
grantRolesToRole命令。如需了解 MongoDB API 驱动程序,请参阅特定语言的 MongoDB 驱动程序文档。
The
db.grantRolesToRole()method uses the following syntax:db.grantRolesToRole( "<rolename>", [ <roles> ], { <writeConcern> } ) The
db.grantRolesToRole()method takes the following arguments:To specify a role that exists in the same database where
db.grantRolesToRole()runs, you can either specify the role with the name of the role:"readWrite" 或者,可以使用文档指定角色,如下所示:
{ role: "<role>", db: "<database>" } 要指定存在于其他数据库中的角色,请使用文档指定该角色。
兼容性
此方法可用于以下环境中托管的部署:
重要
MongoDB Atlas 集群不支持此命令。有关 Atlas 对所有命令的支持的信息,请参阅不支持的命令。
MongoDB Enterprise:基于订阅、自我管理的 MongoDB 版本
MongoDB Community:源代码可用、免费使用且可自行管理的 MongoDB 版本
行为
副本集
If run on a replica set, db.grantRolesToRole() is executed using "majority" write concern by default.
范围
一个角色可以从其数据库中的其他角色继承特权。在 admin 数据库上创建的角色可以从任何数据库中的角色继承特权。
必需的访问权限
例子
The following db.grantRolesToRole() operation updates the productsReaderWriter role in the products database to inherit the privileges of productsReader role:
use products db.grantRolesToRole( "productsReaderWriter", [ "productsReader" ], { w: "majority" , wtimeout: 5000 } )