Re: Disallow SET command in a postgresql server

Поиск
Список
Период
Сортировка
От Fabio Rueda Carrascosa
Тема Re: Disallow SET command in a postgresql server
Дата
Msg-id CAA3M-faZeDx0drj2vWDz4irKJpPRLw6y+qZPgNEpfuxqQnd8Ng@mail.gmail.com
обсуждение исходный текст
Ответ на Re: Disallow SET command in a postgresql server  (Tom Lane <tgl@sss.pgh.pa.us>)
Ответы Re: Disallow SET command in a postgresql server
Re: Disallow SET command in a postgresql server
Список pgsql-general
My grant/revoke architecture is fine, you mean about costly cpu/ram queries?


2013/4/9 Tom Lane <tgl@sss.pgh.pa.us>
Fabio Rueda Carrascosa <avances123@gmail.com> writes:
> Im planning to publish my postgresql server to a few untrusted clients.
> I dont want them to modify any runtime setting, like work_mem or something
> risky to my server. In general I assume the pg_catalog schema is public but
> I don't want to allow updating pg_settings at all.

If you're allowing untrustworthy users to execute arbitrary SQL,
preventing them from using SET would not make very much difference
in how much trouble they can cause.  You're wasting your time worrying
about this.

                        regards, tom lane

В списке pgsql-general по дате отправления:

Предыдущее
От: Tom Lane
Дата:
Сообщение: Re: Disallow SET command in a postgresql server
Следующее
От: Alvaro Herrera
Дата:
Сообщение: Re: Disallow SET command in a postgresql server