Re: password_encryption default

Поиск
Список
Период
Сортировка
От Magnus Hagander
Тема Re: password_encryption default
Дата
Msg-id CABUevEzWvXq76oA=cA5huLHTs2s5xNJE-+YOq0ZCBtmcJ_unxg@mail.gmail.com
обсуждение исходный текст
Ответ на Re: password_encryption default  (Peter Eisentraut <peter.eisentraut@2ndquadrant.com>)
Ответы Re: password_encryption default  (Michael Paquier <michael@paquier.xyz>)
Список pgsql-hackers
On Wed, May 27, 2020 at 8:29 AM Peter Eisentraut <peter.eisentraut@2ndquadrant.com> wrote:
On 2020-05-27 08:00, Michael Paquier wrote:
> On Tue, May 26, 2020 at 10:25:25AM +0200, Peter Eisentraut wrote:
>> Yeah, I was too enthusiastic about removing that.  Here is a better patch.
>
> +        as an MD5 hash.  (<literal>on</literal> is also accepted, as an alias
> +        for <literal>md5</literal>.)  The default is
> +        <literal>scram-sha-256</literal>.
> Shouldn't password_encryption = on/true/1/yes be an equivalent of
> scram-sha-256 as the default gets changed?

I think these are mostly legacy options anyway, so if we wanted to make
a change, we should remove them.

Seems like the better choice yeah. Since we're changing the default anyway, maybe now is the time to do that? Or if not, maybe have it log an explicit deprecation warning when it loads a config with it? 

--

В списке pgsql-hackers по дате отправления:

Предыдущее
От: Ashutosh Bapat
Дата:
Сообщение: Re: Getting ERROR with FOR UPDATE/SHARE for partitioned table.
Следующее
От: Michael Paquier
Дата:
Сообщение: Re: password_encryption default