Re: Successor of MD5 authentication, let's use SCRAM

Поиск
Список
Период
Сортировка
От Stephen Frost
Тема Re: Successor of MD5 authentication, let's use SCRAM
Дата
Msg-id 20121012232537.GZ29165@tamriel.snowman.net
обсуждение исходный текст
Ответ на Re: Successor of MD5 authentication, let's use SCRAM  (Josh Berkus <josh@agliodbs.com>)
Ответы Re: Successor of MD5 authentication, let's use SCRAM
Re: Successor of MD5 authentication, let's use SCRAM
Список pgsql-hackers
* Josh Berkus (josh@agliodbs.com) wrote:
> Problem is, the fact that setting up SSL correctly is hard is outside of
> our control.

Agreed, though the packagers do make it easier..

> Unless we can give people a "run these three commands on each server and
> you're now SSL authenticating" script, we can continue to expect the
> majority of users not to use SSL.  And I don't think that level of
> simplicity is even theoretically possible.

The Debian-based packages do quite a bit to ease this pain.  Do the
other distributions do anything to set up SSL certificates, etc on
install?  Perhaps they could be convinced to?
Thanks,
    Stephen

В списке pgsql-hackers по дате отправления:

Предыдущее
От: Josh Berkus
Дата:
Сообщение: Re: Successor of MD5 authentication, let's use SCRAM
Следующее
От: Josh Berkus
Дата:
Сообщение: Potential autovacuum optimization: new tables