Re: Increasing security in a shared environment ...
От | Euler Taveira de Oliveira |
---|---|
Тема | Re: Increasing security in a shared environment ... |
Дата | |
Msg-id | 20040329140804.377fee13.euler@ufgnet.ufg.br обсуждение исходный текст |
Ответ на | Re: Increasing security in a shared environment ... (Christopher Kings-Lynne <chriskl@familyhealth.com.au>) |
Ответы |
Re: Increasing security in a shared environment ...
|
Список | pgsql-hackers |
Hi Christopher, > > "The \l command should only list databases that the current user is > > authorized for, the \du command should only list users authorized for the > > current database (and perhaps only superusers should get even that much > > information), etc. Perhaps it is possible to set PG to do this, but that > > should probably be the default." > > Seem reasonable. Why not prevent normal users to dig on the pg_catalog? What is the impact of it? > Well, you can just go SELECT * FROM pg_database; so fixing \l won't do > anything. > > I too would like to see more security in this respect, but it will be > difficult if not impossible to implement methinks... > Why is it "impossible"? -- Euler Taveira de Oliveira euler (at) ufgnet.ufg.br Desenvolvedor Web e Administrador de Sistemas UFGNet - Universidade Federal de Goiás
В списке pgsql-hackers по дате отправления: