Re: [PATCHES] Merge pg_shadow && pg_group -- UNTESTED

Поиск
Список
Период
Сортировка
От Peter Eisentraut
Тема Re: [PATCHES] Merge pg_shadow && pg_group -- UNTESTED
Дата
Msg-id 200501241724.59924.peter_e@gmx.net
обсуждение исходный текст
Ответ на Re: [PATCHES] Merge pg_shadow && pg_group -- UNTESTED  (Stephen Frost <sfrost@snowman.net>)
Ответы Re: [PATCHES] Merge pg_shadow && pg_group -- UNTESTED  (Stephen Frost <sfrost@snowman.net>)
Список pgsql-hackers
Stephen Frost wrote:
> The other difference would seem to be that "user identifiers" can't
> be granted to users whereas "role identifiers" can be.  Following
> this, "rolmembers" must be NULL if rolcanlogin is true, no?  That
> breaks if roles can log in though.  Or should we just allow granting
> of "user identifiers" to other users- but if we do should the user be
> permitted to do that?

If he has admin option on his own role, sure.  But I suppose by default 
we wouldn't.

One use case I see is if someone goes on vacation he can temporarily 
grant the privileges held by his user account to others without 
actually giving out the login data.

-- 
Peter Eisentraut
http://developer.postgresql.org/~petere/


В списке pgsql-hackers по дате отправления:

Предыдущее
От: David Fetter
Дата:
Сообщение: Re: Shortcut for defining triggers
Следующее
От: Peter Eisentraut
Дата:
Сообщение: Re: Extending System Views: proposal for 8.1/8.2