Re: Allow superuser to grant passwordless connection rights onpostgres_fdw
От | Andrew Dunstan |
---|---|
Тема | Re: Allow superuser to grant passwordless connection rights onpostgres_fdw |
Дата | |
Msg-id | c068b31f-9880-0a0c-13b1-ff07467b25d9@2ndQuadrant.com обсуждение исходный текст |
Ответ на | Re: Allow superuser to grant passwordless connection rights on postgres_fdw (Robert Haas <robertmhaas@gmail.com>) |
Ответы |
Re: Allow superuser to grant passwordless connection rights onpostgres_fdw
|
Список | pgsql-hackers |
On 11/1/19 12:58 PM, Robert Haas wrote: > On Thu, Oct 31, 2019 at 4:58 PM Andrew Dunstan > <andrew.dunstan@2ndquadrant.com> wrote: >> This patch allows the superuser to grant passwordless connection rights >> in postgres_fdw user mappings. > This is clearly something that we need, as the current code seems > woefully ignorant of the fact that passwords are not the only > authentication method supported by PostgreSQL, nor even the most > secure. > > But, I do wonder a bit if we ought to think harder about the overall > authentication model for FDW. Like, maybe we'd take a different view > of how to solve this particular piece of the problem if we were > thinking about how FDWs could do LDAP authentication, SSL > authentication, credentials forwarding... > I'm certainly open to alternatives. cheers andrew -- Andrew Dunstan https://www.2ndQuadrant.com PostgreSQL Development, 24x7 Support, Remote DBA, Training & Services
В списке pgsql-hackers по дате отправления: