Does anybody know what rights are inherent to these Database roles within SQL.
I have a customer that wants a very detailed explanation of what rights the service accounts need post install of ICM. Part of the reason that they are asking for this is that they want to take away SQL Admin rights to the install account and any local admins after the install is complete.
The explanation that I have so far is that the service accounts get added to the <facility>_<Instance>_Service AD security group and that group gets the public and GeoTelAdmin roles to the ICM databases. In looking through my lab system I can see that this role has select privileges to the database, but nothing else. I guess I was expecting to see more privileges like insert delete and update.