This topic has not yet been rated - Rate this topic

SqlClientPermission Class

Enables the .NET Framework Data Provider for SQL Server to help make sure that a user has a security level sufficient to access a data source.

System.Object
  System.Security.CodeAccessPermission
    System.Data.Common.DBDataPermission
      System.Data.SqlClient.SqlClientPermission

Namespace:  System.Data.SqlClient
Assembly:  System.Data (in System.Data.dll)
[SerializableAttribute]
public sealed class SqlClientPermission : DBDataPermission

The SqlClientPermission type exposes the following members.

  Name Description
Public method SqlClientPermission() Obsolete. Initializes a new instance of the SqlClientPermission class.
Public method SqlClientPermission(PermissionState) Initializes a new instance of the SqlClientPermission class.
Public method SqlClientPermission(PermissionState, Boolean) Obsolete. Initializes a new instance of the SqlClientPermission class.
Top
  Name Description
Public property AllowBlankPassword Gets a value indicating whether a blank password is allowed. (Inherited from DBDataPermission.)
Top
  Name Description
Public method Add Adds a new connection string and a set of restricted keywords to the SqlClientPermission object. (Overrides DBDataPermission.Add(String, String, KeyRestrictionBehavior).)
Public method Assert Declares that the calling code can access the resource protected by a permission demand through the code that calls this method, even if callers higher in the stack have not been granted permission to access the resource. Using Assert can create security issues. (Inherited from CodeAccessPermission.)
Protected method Clear Removes all permissions that were previous added using the Add method. (Inherited from DBDataPermission.)
Public method Copy Returns the SqlClientPermission as an IPermission. (Overrides DBDataPermission.Copy().)
Protected method CreateInstance Creates a new instance of the DBDataPermission class. (Inherited from DBDataPermission.)
Public method Demand Forces a SecurityException at run time if all callers higher in the call stack have not been granted the permission specified by the current instance. (Inherited from CodeAccessPermission.)
Public method Deny Obsolete. Prevents callers higher in the call stack from using the code that calls this method to access the resource specified by the current instance. (Inherited from CodeAccessPermission.)
Public method Equals Determines whether the specified CodeAccessPermission object is equal to the current CodeAccessPermission. (Inherited from CodeAccessPermission.)
Protected method Finalize Allows an object to try to free resources and perform other cleanup operations before it is reclaimed by garbage collection. (Inherited from Object.)
Public method FromXml Reconstructs a security object with a specified state from an XML encoding. (Inherited from DBDataPermission.)
Public method GetHashCode Gets a hash code for the CodeAccessPermission object that is suitable for use in hashing algorithms and data structures such as a hash table. (Inherited from CodeAccessPermission.)
Public method GetType Gets the Type of the current instance. (Inherited from Object.)
Public method Intersect Returns a new permission object representing the intersection of the current permission object and the specified permission object. (Inherited from DBDataPermission.)
Public method IsSubsetOf Returns a value indicating whether the current permission object is a subset of the specified permission object. (Inherited from DBDataPermission.)
Public method IsUnrestricted Returns a value indicating whether the permission can be represented as unrestricted without any knowledge of the permission semantics. (Inherited from DBDataPermission.)
Protected method MemberwiseClone Creates a shallow copy of the current Object. (Inherited from Object.)
Public method PermitOnly Prevents callers higher in the call stack from using the code that calls this method to access all resources except for the resource specified by the current instance. (Inherited from CodeAccessPermission.)
Public method ToString Creates and returns a string representation of the current permission object. (Inherited from CodeAccessPermission.)
Public method ToXml Creates an XML encoding of the security object and its current state. (Inherited from DBDataPermission.)
Public method Union Returns a new permission object that is the union of the current and specified permission objects. (Inherited from DBDataPermission.)
Top

The IsUnrestricted property takes precedence over the AllowBlankPassword property. Therefore, if you set AllowBlankPassword to false, you must also set IsUnrestricted to false to prevent a user from making a connection using a blank password.

Note Note

When using code access security permissions for ADO.NET, the correct pattern is to start with the most restrictive case (no permissions at all) and then add the specific permissions that are needed for the particular task that the code needs to perform. The opposite pattern, starting with all permissions and then denying a specific permission, is not secure, because there are many ways of expressing the same connection string. For example, if you start with all permissions and then attempt to deny the use of the connection string "server=someserver", the string "server=someserver.mycompany.com" would still be allowed. By always starting by granting no permissions at all, you reduce the chances that there are holes in the permission set.

.NET Framework

Supported in: 4, 3.5, 3.0, 2.0, 1.1, 1.0

.NET Framework Client Profile

Supported in: 4, 3.5 SP1

Windows 7, Windows Vista SP1 or later, Windows XP SP3, Windows XP SP2 x64 Edition, Windows Server 2008 (Server Core not supported), Windows Server 2008 R2 (Server Core supported with SP1 or later), Windows Server 2003 SP2

The .NET Framework does not support all versions of every platform. For a list of the supported versions, see .NET Framework System Requirements.
Any public static (Shared in Visual Basic) members of this type are thread safe. Any instance members are not guaranteed to be thread safe.
Did you find this helpful?
(1500 characters remaining)
Community Content Add
Annotations FAQ