# Revised: Creating ROLE with OPTIONS is not supported

**URL:** <https://forum.scylladb.com/t/revised-creating-role-with-options-is-not-supported/4688>\
**Category:** ScyllaDB\
**Tags:** error-message, authentication, authorization\
**Created:** [April 7, 2025, 8:34am UTC](https://forum.scylladb.com/t/revised-creating-role-with-options-is-not-supported/4688 "2025-04-07T08:34:12Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![Jaymark\_Caton](https://sea2.discourse-cdn.com/flex016/user_avatar/forum.scylladb.com/jaymark_caton/32/1619_2.png) [@Jaymark\_Caton](https://forum.scylladb.com/u/Jaymark_Caton)\
**Post date:** [April 7, 2025, 8:34am UTC](https://forum.scylladb.com/t/revised-creating-role-with-options-is-not-supported/4688/1 "2025-04-07T08:34:12Z")

</div>

_Installation details_  
#ScyllaDB version: Scylla Enterprise 2024.2.6  
#Cluster size: 3 nodes (i4i.large)  
#os (RHEL/CentOS/Ubuntu/AWS AMI):

When I execute this query to create a role, it returns an error stating OPTIONS option is not supported

```sql
CREATE ROLE IF NOT EXISTS test_expiry WITH PASSWORD = 'password' AND LOGIN = true AND OPTIONS = { 'expires_in': 86400 };

```

Am I doing it wrong?  
I was just referring to the official documentation

---

<div class="post-metadata">

**Author:** ![Gabriel](https://sea2.discourse-cdn.com/flex016/user_avatar/forum.scylladb.com/gabriel/32/60_2.png) [@Gabriel](https://forum.scylladb.com/u/Gabriel)\
**Post date:** [April 18, 2025, 7:29am UTC](https://forum.scylladb.com/t/revised-creating-role-with-options-is-not-supported/4688/2 "2025-04-18T07:29:04Z")

</div>

Hi,

The OPTIONS option is indeed not supported.

based on your example, omitting the OPTIONS portion:

```auto
scylla@cqlsh> list roles;

 role | super | login | options
-------------+-------+-------+---------
 scylla | True | True | {}
 test_expiry | False | True | {}

(2 rows)

```

Which may lead to conclusion that OPTIONS is indeed supported; however the below shows there is no column to store those options

```auto
scylla@cqlsh> select * from system.roles;

 role | can_login | is_superuser | member_of | salted_hash
-------------+-----------+--------------+-----------+------------------------------------------------------------------------------------------------------------
 scylla | True | True | null | $6$Ra9.AnDvolu1JY4G$DGJu3i7MeypQePpRxNbmycmEJoVmbfKorr7Wqpw6qLOJR/E4VfQr8b4YEz67.DBNfyDWAUBKX6psTmdR.Nu4m.
 test_expiry | True | False | null | $6$XTvMtLXiD2xunnD8$KZ3LliYaNQkGRT/t.f6Hx0kl.qn0/bFOSSj7RjhIUEZ6FrwBmBg/RLVcv1bcbW52HeEmO9ksv6vWPwxqx89u1.

(2 rows)

```

cc @tzach

---

<div class="post-metadata">

**Author:** ![Marcin\_Maliszkiewicz](https://sea2.discourse-cdn.com/flex016/user_avatar/forum.scylladb.com/marcin_maliszkiewicz/32/37_2.png) [@Marcin\_Maliszkiewicz](https://forum.scylladb.com/u/Marcin_Maliszkiewicz)\
**Post date:** [May 7, 2025, 9:03am UTC](https://forum.scylladb.com/t/revised-creating-role-with-options-is-not-supported/4688/3 "2025-05-07T09:03:55Z")

</div>

Hello,  
we support OPTIONS as a syntax but not all authenticators support them. The only one which does is SaslauthdAuthenticator for the rest there is simply nothing to set via OPTIONS.
