Re: How to revoke privileged from PostgreSQL's superuser
От | Scott Ribe |
---|---|
Тема | Re: How to revoke privileged from PostgreSQL's superuser |
Дата | |
Msg-id | 25586049-C24B-4231-8179-714683AA4536@elevated-dev.com обсуждение исходный текст |
Ответ на | Re: How to revoke privileged from PostgreSQL's superuser (Bruce Momjian <bruce@momjian.us>) |
Ответы |
Re: How to revoke privileged from PostgreSQL's superuser
|
Список | pgsql-admin |
> On Aug 15, 2018, at 2:57 PM, Bruce Momjian <bruce@momjian.us> wrote: > > On Wed, Aug 15, 2018 at 01:52:43PM -0700, Evan Rempel wrote: >> There are just a ton of configuration elements that the DBAs need to decide on and implement that require >> configuration of components that are outside of the database proper. >> >> It was a worthwhile discussion. One needs to trust the data stewards. > > Agreed. I just wish it had a more positive outcome. ;-) Well, it probably elucidated the issues enough that an expert in SELinux could configure a server such that DBAs could notdisable logging. Of course, you still have to trust somebody with that configuration, but it is possible to separate responsibilitiesif you work hard enough at it.
В списке pgsql-admin по дате отправления: