Re: Information of pg_stat_ssl visible to all users

Поиск
Список
Период
Сортировка
От Tom Lane
Тема Re: Information of pg_stat_ssl visible to all users
Дата
Msg-id 26947.1436288278@sss.pgh.pa.us
обсуждение исходный текст
Ответ на Re: Information of pg_stat_ssl visible to all users  (Andres Freund <andres@anarazel.de>)
Ответы Re: Information of pg_stat_ssl visible to all users  (Bruce Momjian <bruce@momjian.us>)
Список pgsql-hackers
Andres Freund <andres@anarazel.de> writes:
> On 2015-07-07 12:03:36 -0400, Peter Eisentraut wrote:
>> I think the DN is analogous to the remote user name, which we don't
>> expose for any of the other authentication methods.

> Huh?

Peter's exactly right: there is no other case where you can tell what
some other connection's actual OS username is.  You might *guess* that
it's the same as their database username, but you don't know that,
assuming you don't know how they authenticated.

I'm not sure how security-critical this info really is, though.
        regards, tom lane



В списке pgsql-hackers по дате отправления:

Предыдущее
От: Josh Berkus
Дата:
Сообщение: Re: 9.5 alpha: some small comments on BRIN and btree_gin
Следующее
От: Fujii Masao
Дата:
Сообщение: Re: [PATCH] correct the initdb.log path for pg_regress