Re: PLPythonu for production server
От | Adrian Klaver |
---|---|
Тема | Re: PLPythonu for production server |
Дата | |
Msg-id | 56D89212.10609@aklaver.com обсуждение исходный текст |
Ответ на | PLPythonu for production server (Rémi Cura <remi.cura@gmail.com>) |
Ответы |
Re: PLPythonu for production server
|
Список | pgsql-general |
On 03/03/2016 10:09 AM, Rémi Cura wrote: > Hey List, > > would it be considered safe to use plpythonu for a production database? > What would be the limitations/ dangers? They are explained here: http://www.postgresql.org/docs/9.5/interactive/plpython.html "PL/Python is only available as an "untrusted" language, meaning it does not offer any way of restricting what users can do in it and is therefore named plpythonu. A trusted variant plpython might become available in the future if a secure execution mechanism is developed in Python. The writer of a function in untrusted PL/Python must take care that the function cannot be used to do anything unwanted, since it will be able to do anything that could be done by a user logged in as the database administrator. Only superusers can create functions in untrusted languages such as plpythonu." > > Thanks, > Cheers, > Rémi-C -- Adrian Klaver adrian.klaver@aklaver.com
В списке pgsql-general по дате отправления: