tencent cloud

Bastion Host

Product Introduction
Overview
Strengths
Scenarios
Differences between SaaS BH Standard Edition and Pro Edition
Purchase Guide
Billing Overview
Purchase Method
Upgrade Subscription Plan
Upgrade Bandwidth
Upgrade Extension Pack
Renewal
Payment Overdue
Refund
Getting Started
First Login of Admin
Admin Manual
First Login of Ops Engineer
Ops Engineer Manual
Operation Guide
Admin Guide
Operations Guide
Practical Tutorial
Blocking High-risk Commands
File Transfer Control
Tracing Security Incidents
Cross-VPC Asset Management
Access Bastion Host O&M Page Via Intranet Domain
Troubleshooting
Windows Resource Login Connection Timeout
Windows Resource Login Prompting Wait Active
Linux Resource Login via Mac Prompting No Matching Host Key Type Found
Windows Resource is Inaccessible for Mac Users
iTerm Client Displaying Unrecognizable Characters to Mac Users During Ops
Unable to Invoke Local XShell or SecureCRT
Ops Members Cannot Receive SMS Verification Code
Ops Members Cannot Load the Account When Logging in to Resources
Linux Resource Login Prompting Host Unreachable
Linux Resource Login Failure Prompting Password Error
FAQs
Usage
Consultation
BH Policy
Privacy Policy
Data Processing And Security Agreement

Rules

PDF
Focus Mode
Font Size
Last updated: 2025-04-18 10:58:50

Overview

You can implement greater granularity of control over database access with the rules.
Note
Currently, only MySQL databases are supported.

Directions

1. Log in to the BH console.
2. In the left sidebar, choose Permission Mgmt > Database Access Control.
3. On the Database Access Control page, click the Rules tab.
4. On the Rule Management page, click Create rule.
5. In the Create rule window, configure the relevant parameters and click OK to set the rule.

Parameter Name
Parameter Description
Rule name
1�60 characters; It should start with a letter, Chinese character, or number; only letters, Chinese characters, digits, '-', and '_' are allowed.
Asset type
Only relational databases are supported.
Rule description
Supports 0�100 characters.
Client IP
Supports IPv4 addresses and CIDR.
Database name
The name of the database subject to access control.
Table name
The name of the table subject to access control.
Command
Block/allow applies only to the selected commands in the list. If no command is selected, the rule applies to all commands in the list.
Execution time
The rule effective time or SQL statement execution time. Options include unlimited, Every day, or a specified.
Access rule
Block/Pass.

Help and Support

Was this page helpful?

Help us improve! Rate your documentation experience in 5 mins.

Feedback