Re: root/administartor user check option.

Поиск
Список
Период
Сортировка
От Gevik Babakhani
Тема Re: root/administartor user check option.
Дата
Msg-id 1153829498.1238.17.camel@voyager.truesoftware.net
обсуждение исходный текст
Ответ на root/administartor user check option.  (Gevik Babakhani <pgdev@xs4all.nl>)
Ответы Re: root/administartor user check option.  (Andrew Dunstan <andrew@dunslane.net>)
Re: root/administartor user check option.  (Alvaro Herrera <alvherre@commandprompt.com>)
Список pgsql-hackers
> Removing or disabling the test without removing some of the dangerous 
> capabilities would be a major security hole. For example: postgres can 
> deliver to any authenticated user the contents of any text file on the 
> system that the database user can read. Do you want the responsibility 
> of allowing that for any file the administrator can read? No, I thought 
> not. Neither do we.

True. This means that one just cannot "copy over" PG files and run the
database without creating additional users and services. 

Just looking at how much windows standalone apps are being developed
which potentially could use an "embedded" or "light" version of PG,  I
still think the option should be considered. Perhaps in a more
restricted or striped-down version of PG. (PG Light or something). 





В списке pgsql-hackers по дате отправления:

Предыдущее
От: "jkzhao"
Дата:
Сообщение: column-level privilege
Следующее
От: Tom Lane
Дата:
Сообщение: Re: root/administartor user check option.