Re: Design Considerations for New Authentication Methods

Поиск
Список
Период
Сортировка
От Andrew Sullivan
Тема Re: Design Considerations for New Authentication Methods
Дата
Msg-id 20061102215216.GA29474@phlogiston.dyndns.org
обсуждение исходный текст
Ответ на Re: Design Considerations for New Authentication Methods  ("Henry B. Hotz" <hotz@jpl.nasa.gov>)
Ответы Re: Design Considerations for New Authentication Methods
Список pgsql-hackers
On Thu, Nov 02, 2006 at 01:10:14PM -0800, Henry B. Hotz wrote:
> standard protocols and libraries that support real security:  SASL  
> and GSSAPI in particular.  You may for various reasons decide that  

[. . .]

> Part of establishing a secure connection is establishing that the end  
> points are the intended ones and there is no Man In the Middle.   
> Establishing the end points means the server has identified the user  
> within the name space of the security mechanism.

For what it's worth, I heartily support this effort.  For most cases,
it probably isn't necessary, but I can think of several applications
for SASL/GSSAPI where something weaker will simply not do; in the
absence of the proposed functionality, I simply wouldn't be able to
use Postgres for those applications.

A

-- 
Andrew Sullivan  | ajs@crankycanuck.ca
In the future this spectacle of the middle classes shocking the avant-
garde will probably become the textbook definition of Postmodernism.                --Brad Holland


В списке pgsql-hackers по дате отправления:

Предыдущее
От: Tom Lane
Дата:
Сообщение: Re: [PATCHES] WAL logging freezing
Следующее
От: Martijn van Oosterhout
Дата:
Сообщение: Re: Design Considerations for New Authentication Methods