Re: Additional role attributes && superuser review
От | Craig Ringer |
---|---|
Тема | Re: Additional role attributes && superuser review |
Дата | |
Msg-id | CAMsr+YEqgvT8K0DDsAVa8QGagkvtf7JdXiWAb3PZMQqpY93RaA@mail.gmail.com обсуждение исходный текст |
Ответ на | Re: Additional role attributes && superuser review (Stephen Frost <sfrost@snowman.net>) |
Ответы |
Re: Additional role attributes && superuser review
|
Список | pgsql-hackers |
On 29 January 2016 at 22:41, Stephen Frost <sfrost@snowman.net> wrote:
Michael,
* Michael Paquier (michael.paquier@gmail.com) wrote:
> On Fri, Jan 29, 2016 at 6:37 AM, Stephen Frost <sfrost@snowman.net> wrote:
> > * Robert Haas (robertmhaas@gmail.com) wrote:
> >> On Thu, Jan 28, 2016 at 11:04 AM, Stephen Frost <sfrost@snowman.net>
> wrote:
> >> > Personally, I don't have any particular issue having both, but the
> >> > desire was stated that it would be better to have the regular
> >> > GRANT EXECUTE ON catalog_func() working before we consider having
> >> > default roles for same. That moves the goal posts awful far though, if
> >> > we're to stick with that and consider how we might extend the GRANT
> >> > system in the future.
> >>
> >> I don't think it moves the goal posts all that far. Convincing
> >> pg_dump to dump grants on system functions shouldn't be a crazy large
> >> patch.
> >
> > I wasn't clear as to what I was referring to here. I've already written
> > a patch to pg_dump to support grants on system objects and agree that
> > it's at least reasonable.
>
> Is it already posted somewhere? I don't recall seeing it. Robert and Noah
> have a point that this would be useful for users who would like to dump
> GRANT/REVOKE rights on system functions & all, using a new option in
> pg_dumpall, say --with-system-acl or --with-system-privileges.
Multiple versions were posted on this thread. I don't fault you for not
finding it, this thread is a bit long in the tooth. The one I'm
currently working from is
It strikes me that this thread would possibly benefit from a wiki page outlining the permissions, overall concepts, etc, as it's getting awfully hard to follow.
В списке pgsql-hackers по дате отправления: