Re: Adding line to pg_hba.conf for a specific group makes superuser authentication fail in 9.0?
От
Kevin Grittner
Тема
Re: Adding line to pg_hba.conf for a specific group
makes superuser authentication fail in 9.0?
Дата
Msg-id
4E3030CA020000250003F82D@gw.wicourts.gov
Ответ на
Re: Adding line to pg_hba.conf for a specific group makes superuser authentication fail in 9.0? (Glyn Astill)
Список
Дерево обсуждения
Adding line to pg_hba.conf for a specific group makes superuser authentication fail in 9.0? Glyn Astill <glynastill@yahoo.co.uk>
Re: Adding line to pg_hba.conf for a specific group makes superuser authentication fail in 9.0? Tom Lane <tgl@sss.pgh.pa.us>
Re: Adding line to pg_hba.conf for a specific group makes superuser authentication fail in 9.0? Glyn Astill <glynastill@yahoo.co.uk>
Re: Adding line to pg_hba.conf for a specific group
makes superuser authentication fail in 9.0? "Kevin Grittner" <Kevin.Grittner@wicourts.gov>
Re: Adding line to pg_hba.conf for a specific group makes superuser authentication fail in 9.0? Glyn Astill <glynastill@yahoo.co.uk>
Re: Adding line to pg_hba.conf for a specific group
makes superuser authentication fail in 9.0? "Kevin Grittner" <Kevin.Grittner@wicourts.gov>
Glyn Astill wrote: > Maybe the docs should be embellished to also say "since a > superuser is automatically considered a member of any group, it > should be taken into account that names with a + mark will affect > all superusers (although this was not the case prior to 9.0)" or > something along those lines. That seems like a good idea to me. I can't help but think that someone, somewhere is going to create a "suspended" role to assign to logins which they want temporarily disabled, put that at the top of pg_hba.conf, and not be amused by the results. When I dig out from under some other issues, I'll put together a docs patch to propose something like the above, if nobody beats me to it. -Kevin
В списке pgsql-admin по дате отправления
От: Glyn Astill
Дата: