Re: user-based query white list

Поиск
Список
Период
Сортировка
От Andrew Dunstan
Тема Re: user-based query white list
Дата
Msg-id 493AEB05.2000208@dunslane.net
обсуждение исходный текст
Ответ на Re: user-based query white list  (Andrew Chernow <ac@esilo.com>)
Список pgsql-hackers

Andrew Chernow wrote:
>
> I don't think view-based security solves my problem.  I need to limit 
> a user to 20 fixed queries, for example.  That means the user cannot 
> execute "SELECT NOW()" or "SELECT 'hello world'".  The user can only 
> execute a pre-defined list of queries.
>

Put your queries in security definer functions and put those in a schema 
that is the only one your user has access to. That should just about do 
the trick, although s/he might still be able to do "select 'foo';"

cheers

andrew


В списке pgsql-hackers по дате отправления:

Предыдущее
От: James Mansion
Дата:
Сообщение: Re: Mostly Harmless: Welcoming our C++ friends
Следующее
От: Bruce Momjian
Дата:
Сообщение: Re: Updates of SE-PostgreSQL 8.4devel patches (r1268)