Re: Proposal: Support custom authentication methods using hooks
От | Bruce Momjian |
---|---|
Тема | Re: Proposal: Support custom authentication methods using hooks |
Дата | |
Msg-id | Yh+JutkNjHNIw7WT@momjian.us обсуждение исходный текст |
Ответ на | Re: Proposal: Support custom authentication methods using hooks (Stephen Frost <sfrost@snowman.net>) |
Ответы |
Re: Proposal: Support custom authentication methods using hooks
|
Список | pgsql-hackers |
On Wed, Mar 2, 2022 at 10:09:31AM -0500, Stephen Frost wrote: > I'm not sure that it's quite so simple. Perhaps we should also drop > LDAP and I don't really think PAM was ever terribly good for us to have, > but at least PAM and RADIUS could possibly be used with OTP solutions > (and maybe LDAP? Not sure, don't think I've seen that but perhaps..), > rendering sniffing of what's transmitted less valuable. We don't > support that for 'password' itself or for 'md5' in any serious way > though. I thought all the plain-password methods were already using SSL (hopefully with certificate authentication) and they were therefore safe. Why would we remove something like LDAP if that is what the site is already using? -- Bruce Momjian <bruce@momjian.us> https://momjian.us EDB https://enterprisedb.com If only the physical world exists, free will is an illusion.
В списке pgsql-hackers по дате отправления: