Re: Password Security Standarts on PostgreSQL

Поиск
Список
Период
Сортировка
От Albe Laurenz
Тема Re: Password Security Standarts on PostgreSQL
Дата
Msg-id A737B7A37273E048B164557ADEF4A58B057BB935@ntex2010a.host.magwien.gv.at
обсуждение исходный текст
Ответ на Password Security Standarts on PostgreSQL  (MURAT KOÇ <m.koc21@gmail.com>)
Ответы Re: Password Security Standarts on PostgreSQL
Список pgsql-general
MURAT KOÇ wrote:
> In Oracle, it could be created a user profile called "PROFILE" and this profile could have below
> specifications:
> 
> PASSWORD_LIFE_TIME     (that describes when password will expire)
> FAILED_LOGIN_ATTEMPTS (specifies number of failed login attempts before locking user account)
> PASSWORD_LOCK_TIME   (specified time after user account is locked because of failed login attempts
> exceeded)
> PASSWORD_VERIFY_FUNCTION  (this allows setting a strong password verify function - min characters,
> password complexity)
> 
> Has PostgreSQL got any capability like this except LDAP, kerberos or PAM authentication ?

There's the "passwordcheck" contrib:
http://www.postgresql.org/docs/current/static/passwordcheck.html
It does the same thing as Oracle's PASSWORD_VERIFY_FUNCTION.
You can write your own password checking function.
This way you can also force a certain password expiry date
(PostgreSQL does not have a password life time).

Yours,
Laurenz Albe

В списке pgsql-general по дате отправления:

Предыдущее
От: Sandeep Thakkar
Дата:
Сообщение: Re: EDB installer should check for valid %COMSPEC%
Следующее
От: Victor Yegorov
Дата:
Сообщение: Re: Password Security Standarts on PostgreSQL