Re: Increasing security in a shared environment ...

Поиск
Список
Период
Сортировка
От Dave Page
Тема Re: Increasing security in a shared environment ...
Дата
Msg-id 50000.80.177.99.193.1080583873.squirrel@ssl.vale-housing.co.uk
обсуждение исходный текст
Ответ на Re: Increasing security in a shared environment ...  (Euler Taveira de Oliveira <euler@ufgnet.ufg.br>)
Ответы Re: Increasing security in a shared environment ...  ("Marc G. Fournier" <scrappy@postgresql.org>)
Список pgsql-hackers
It's rumoured that Euler Taveira de Oliveira once said:
> Hi Christopher,
>
>> > "The \l command should only list databases that the current user is
>> > authorized for, the \du command should only list users authorized
>> > for the current database (and perhaps only superusers should get
>> > even that much information), etc.  Perhaps it is possible to set PG
>> > to do this, but that should probably be the default."
>> >
> Seem reasonable. Why not prevent normal users to dig on the pg_catalog?
> What is the impact of it?

Because they can't use tools like pgAdmin or phpPgAdmin unless they can at
least read all the catalogs.
Regards, Dave




В списке pgsql-hackers по дате отправления:

Предыдущее
От: "Marc G. Fournier"
Дата:
Сообщение: Re: Increasing security in a shared environment ...
Следующее
От: Tom Lane
Дата:
Сообщение: Re: Increasing security in a shared environment ...