Re: Invoking user of the function with SECURITY DEFINER

Поиск
Список
Период
Сортировка
От raf
Тема Re: Invoking user of the function with SECURITY DEFINER
Дата
Msg-id 20181124205414.awjyy2gqhuy46wrb@raf.org
обсуждение исходный текст
Ответ на Re: Invoking user of the function with SECURITY DEFINER  (Laurenz Albe <laurenz.albe@cybertec.at>)
Ответы Re: Invoking user of the function with SECURITY DEFINER  (Madan Kumar <madankumar1993@gmail.com>)
Список pgsql-general
Laurenz Albe wrote:

> Madan Kumar wrote:
> > How to get the user who is invoking the function with SECURITY DEFINER? 
> > When we define the function to be SECURITY DEFINER, it will execute in the
> > context of the user who created it. Let's say I've given execute permission
> > for this function to other users and wish to know who is executing it.
> > Is there a way to find that out?
> > I tried CURRENT_USER and SESSION_USER but they return the function owner
> > since they execute in that context. So is there any way to figure out the
> > user who is invoking the function?
> 
> It works for me:
> 
> As user "postgres":
> 
> CREATE OR REPLACE FUNCTION tellme() RETURNS text LANGUAGE plpgsql
>    SECURITY DEFINER AS 'BEGIN RETURN session_user; END;';
> 
> As user "laurenz":
> 
> SELECT tellme();
>  tellme  
> ---------
>  laurenz
> (1 row)
> 
> Yours,
> Laurenz Albe

session_user has always worked for me.

cheers,
raf



В списке pgsql-general по дате отправления:

Предыдущее
От: Glenn Schultz
Дата:
Сообщение: Re: table value function help
Следующее
От: Madan Kumar
Дата:
Сообщение: Re: Invoking user of the function with SECURITY DEFINER