Re: Proper use of Groups and Users (Roles).

Поиск
Список
Период
Сортировка
Искать
От
Vincent Veyron
Тема
Re: Proper use of Groups and Users (Roles).
Дата
Msg-id
20160216113934.5fe0a70544b4bd8c6bb372a9@wanadoo.fr
Ответ на
Список
Дерево обсуждения
Proper use of Groups and Users (Roles). Melvin Davidson <melvin6925@gmail.com>
Re: Proper use of Groups and Users (Roles). Vincent Veyron <vv.lists@wanadoo.fr>
ERROR: cannot convert relation containing dropped columns to view Nicklas Avén <nicklas.aven@jordogskog.no>
Re: ERROR: cannot convert relation containing dropped columns to view Tom Lane <tgl@sss.pgh.pa.us>
Re: ERROR: cannot convert relation containing dropped columns to view Tom Lane <tgl@sss.pgh.pa.us>
Re: ERROR: cannot convert relation containing dropped columns to view Nicklas Aven <nicklas.aven@jordogskog.no>
Re: Proper use of Groups and Users (Roles). Melvin Davidson <melvin6925@gmail.com>
Re: Proper use of Groups and Users (Roles). Vincent Veyron <vv.lists@wanadoo.fr>
On Mon, 15 Feb 2016 12:06:28 -0500
Melvin Davidson  wrote:

> I wrote a short article to explain the proper use of Group and Userss in the database. 

Hi Melvin,

Thanks for the explanation, it makes things easy to understand.

One question :

> Although GRANT ALL, at first appears to simplify granting permissions, it is actually a very bad practice that is often misused. That is because doing so would also allow groups and ordinary users the following additional privileges: TRUNCATE, REFERENCES & TRIGGER. 

If a user has DELETE rights on a table, I don't see how granting him TRUNCATE makes that much of a difference? Same could be said of the other two, it's not like they are going to cause more damage than the previous rights.




-- 
					Bien à vous, Vincent Veyron

https://marica.fr/
Gestion des contentieux, des dossiers de sinistres assurance et des contrats pour le service juridique

В списке pgsql-general по дате отправления
От: Chris Travers
Дата:
От: Daniel Pocock
Дата:
FAQ