Re: PostgreSQL Trusted Startup

Поиск
Список
Период
Сортировка
От Craig Ringer
Тема Re: PostgreSQL Trusted Startup
Дата
Msg-id 4D1146A4.2080003@postnewspapers.com.au
обсуждение исходный текст
Ответ на Re: PostgreSQL Trusted Startup  (Kenneth Buckler <kenneth.buckler@gmail.com>)
Список pgsql-general
> We live in a world where compliance is king.  Nevermind if compliance
> doesn't actually make the system more secure.

Er .. re my previous post, I don't mean "lie to RH and claim to want to
buy RHEL to get free support". I mean that you should consider going to
management and getting approval for professional support and integration
work from a specialist, because you're going to need it.

Alternately you could do the dodgy Trusted GRUB + signed kernel + signed
initrd with scripted GnuPG verification hack. It'd be a lot better than
nothing if your target server has a TPM you can enable and use for
Trusted GRUB.

--
Craig Ringer

В списке pgsql-general по дате отправления:

Предыдущее
От: Craig Ringer
Дата:
Сообщение: Re: PostgreSQL Trusted Startup
Следующее
От: Matthias Müller
Дата:
Сообщение: Re: Understanding PG9.0 streaming replication feature