53.71. pg_hba_file_rules

В представлении pg_hba_file_rules показывается сводное содержимое файла конфигурации аутентификации клиентов, pg_hba.conf. Для каждой непустой и незакомментированной строки в этом файле данное представление содержит одну строку с отметкой, показывающей, может ли это правило быть успешно применено.

Это представление может быть полезно для проверки, будут ли работать планируемые изменения в файле конфигурации аутентификации, или для диагностики возникшей проблемы. Заметьте, что в этом представлении отражается текущее содержимое файла, а не то, что было загружено сервером в последний раз.

По умолчанию представление pg_hba_file_rules доступно только суперпользователям и только для чтения.

Таблица 53.72. Столбцы pg_hba_file_rules

ИмяТипОписание
line_numberintegerНомер строки этого правила в pg_hba.conf
typetextТип подключения
databasetext[]Список имён баз данных, к которым применяется это правило
user_nametext[]Список имён пользователей и групп, к которым применяется это правило
addresstextИмя или IP-адрес узла либо одно из значений: all, samehost или samenet, либо NULL для локальных подключений
netmasktextМаска IP-адреса либо NULL, если это неприменимо
auth_methodtextМетод аутентификации
optionstext[]Параметры, задаваемые для метода аутентификации (если они есть)
errortextСообщение об ошибке, говорящее, почему эта строка не может быть обработана, либо NULL

Обычно строка, отражающая некорректную запись, будет содержать значения только в полях line_number и error.

Чтобы узнать больше о конфигурации аутентификации клиентов, обратитесь к Главе 20.

53.71. pg_hba_file_rules

The view pg_hba_file_rules provides a summary of the contents of the client authentication configuration file, pg_hba.conf. A row appears in this view for each non-empty, non-comment line in the file, with annotations indicating whether the rule could be applied successfully.

This view can be helpful for checking whether planned changes in the authentication configuration file will work, or for diagnosing a previous failure. Note that this view reports on the current contents of the file, not on what was last loaded by the server.

By default, the pg_hba_file_rules view can be read only by superusers.

Table 53.72. pg_hba_file_rules Columns

NameTypeDescription
line_numberinteger Line number of this rule in pg_hba.conf
typetextType of connection
databasetext[]List of database name(s) to which this rule applies
user_nametext[]List of user and group name(s) to which this rule applies
addresstext Host name or IP address, or one of all, samehost, or samenet, or null for local connections
netmasktextIP address mask, or null if not applicable
auth_methodtextAuthentication method
optionstext[]Options specified for authentication method, if any
errortext If not null, an error message indicating why this line could not be processed

Usually, a row reflecting an incorrect entry will have values for only the line_number and error fields.

See Chapter 20 for more information about client authentication configuration.

FAQ