I've looked around a lot but haven't been able to find a way to do this. I'd like to be able to prevent (REVOKE) MySQL / Mariadb users to modify system variables for their session. Is there really no way to do this? For instance I have set the 'max_statement_time' to 300s globally but any user can go in and change it to 1000s (for their session). I'd like to know if this is preventable.
From the MySQL documentation:
"setting session runtime values normally requires no special privileges and can be done by any user to affect the current session."
Thanks.