Re: [RFC] sepgsql: prohibit users to relabel objects

Поиск
Список
Период
Сортировка
От Denis Kirjanov
Тема Re: [RFC] sepgsql: prohibit users to relabel objects
Дата
Msg-id 857759077.307154.1430381630482.JavaMail.zimbra@itsirius.su
обсуждение исходный текст
Ответ на [RFC] sepgsql: prohibit users to relabel objects  (Denis Kirjanov <kda@linux-powerpc.org>)
Ответы Re: [RFC] sepgsql: prohibit users to relabel objects  (Robert Haas <robertmhaas@gmail.com>)
Список pgsql-hackers
Oh, I wasn't aware of that. 
Any hints where to look at?

Thanks!

PS: sorry for top posting.

----- Original Message -----
From: "Robert Haas" <robertmhaas@gmail.com>
To: "Denis Kirjanov" <kda@linux-powerpc.org>
Cc: pgsql-hackers@postgresql.org, "Alexey Zhuchkov" <alexey@itsirius.su>, "Denis Kirjanov" <kda@itsirius.su>
Sent: Wednesday, April 29, 2015 9:01:36 PM
Subject: Re: [HACKERS] [RFC] sepgsql: prohibit users to relabel objects

On Wed, Apr 29, 2015 at 9:15 AM, Denis Kirjanov <kda@linux-powerpc.org> wrote:
> Enforce access control on security labels defined by admin
> and prohibit users to relabel the objects

Really?  Why?  I would think it's the policy's job to restrict relabel
operations.

-- 
Robert Haas
EnterpriseDB: http://www.enterprisedb.com
The Enterprise PostgreSQL Company



В списке pgsql-hackers по дате отправления:

Предыдущее
От: Etsuro Fujita
Дата:
Сообщение: Re: Minor improvement to config.sgml
Следующее
От: Etsuro Fujita
Дата:
Сообщение: Re: Missing importing option of postgres_fdw