Online Documentation for SQL Manager for DB2
Creating/editing group
Use the Property tab of Group Editor to create/edit a group and specify its definition.
    
  
These options allow you to define common database privileges that can be granted to any user from the group. Select/deselect the options to grant/revoke the corresponding privileges.
Grant...
    
 Database administrator authority
  
Grants database administrator authority and all other database authorities except for security administrator authority to the group.
    
 Authority to access the database
  
Enable this option to allow the group to connect to the database.
    
 Authority to create database tables
  
Enable this option to allow the group to create tables in the database. The group also gains the CONTROL privilege on the tables he creates.
    
 Authority to implicitly create schemas
  
Enable this option to automatically create a schema when a user from the group creates a table specifying a not existing schema.
    
 Authority to create packages
  
Enable this option to allow the group user to create packages in the database. The group also gains the CONTROL privilege on the packages he creates.
    
 Authority to register routines which are executed in the database manager
  
Enable this option to allow the group to register routines that execute in the database manager's process. Care must be taken that routines so registered will not have adverse side effects.
    
 Authority to use the LOAD utility
  
Enable this option to allow the group to use LOAD utility.
    
 Authority to register external routines
  
Enable the option to allow the group to register external routines. Care must be taken that routines so registered will not have adverse side effects.
    
 Authority to access the database while it is quiesced
  
Enable this option to allow the group to access the database while it is in quiesced mode.
    
 Authority to grant and revoke all object level privileges and some of DB level privileges
  
Enable the option to grant the group access control authority. This authority can't be granted to PUBLIC. Server version 9.7 required.
    
 Authority to access data
  
Enable this option to allow the group to select, insert, update, delete, and load data, to execute any package or routine (except audit routines). This authority can't be granted to PUBLIC. Server version 9.7 required.
    
 Authority to explain statements
  
This authority allows the group to explain, prepare, and describe dynamic and static SQL statements without requiring access to data. Server version 9.7 required.
    
 Authority to manage SQL statement execution
  
Enable the option to allow the group to create, drop, flush, and set event monitors; to explain, prepare, and describe dynamic and static SQL statements without requiring access to data; to flush optimization profile and package cache; to execute the runstats utility.
    
 Security administrator authority
  
Enable the option to grant the group the security administrator authority. Server version 9.5 required.
    
 Authority to manage workloads
  
Enable this option to allow the group to manage workloads. Server version 9.7 required.
