Re: Re: Encrypting pg_shadow passwords

Поиск
Список
Период
Сортировка
От Tom Lane
Тема Re: Re: Encrypting pg_shadow passwords
Дата
Msg-id 8312.993654458@sss.pgh.pa.us
обсуждение исходный текст
Ответ на Re: Encrypting pg_shadow passwords  (fche@redhat.com (Frank Ch. Eigler))
Ответы Re: Re: Encrypting pg_shadow passwords  ("Frank Ch. Eigler" <fche@redhat.com>)
Список pgsql-hackers
fche@redhat.com (Frank Ch. Eigler) writes:
> tgl wrote:
> : What this discussion seems to come down to is whether we should take a
> : backward step in one area of security (security against wire-sniffing)
> : to take a forward step in another (not storing plaintext passwords).

> It seems to me that the two issues are orthogonal.

In the abstract yes, but not when you have a constraint that you can't
change the protocol or the client-side code.  Remember we are talking
about a backwards-compatibility mode.
        regards, tom lane


В списке pgsql-hackers по дате отправления:

Предыдущее
От: Jan Wieck
Дата:
Сообщение: Re: functions returning records
Следующее
От: Peter Eisentraut
Дата:
Сообщение: Re: Re: 7.2 items