All of your users have the same rights number. You will not be able to differentiate between them for access permissions... they can all do the same thing.
Is it safe to assume your users have to log into your database? There is a users table storing their usernames and passwords?