Re: [PATCHES] Merge pg_shadow && pg_group -- UNTESTED
| От | Peter Eisentraut |
|---|---|
| Тема | Re: [PATCHES] Merge pg_shadow && pg_group -- UNTESTED |
| Дата | |
| Msg-id | 200501241724.59924.peter_e@gmx.net обсуждение |
| Ответ на | Re: [PATCHES] Merge pg_shadow && pg_group -- UNTESTED (Stephen Frost <sfrost@snowman.net>) |
| Ответы |
Re: [PATCHES] Merge pg_shadow && pg_group -- UNTESTED
|
| Список | pgsql-hackers |
Stephen Frost wrote: > The other difference would seem to be that "user identifiers" can't > be granted to users whereas "role identifiers" can be. Following > this, "rolmembers" must be NULL if rolcanlogin is true, no? That > breaks if roles can log in though. Or should we just allow granting > of "user identifiers" to other users- but if we do should the user be > permitted to do that? If he has admin option on his own role, sure. But I suppose by default we wouldn't. One use case I see is if someone goes on vacation he can temporarily grant the privileges held by his user account to others without actually giving out the login data. -- Peter Eisentraut http://developer.postgresql.org/~petere/
В списке pgsql-hackers по дате отправления: