Re: Security choices...

Поиск
Список
Период
Сортировка
От Philip Warner
Тема Re: Security choices...
Дата
Msg-id 3.0.5.32.20000805101617.01d94100@mail.rhyme.com.au
обсуждение исходный текст
Ответ на Security choices...  (Philip Warner <pjw@rhyme.com.au>)
Список pgsql-hackers
At 23:59 4/08/00 +0200, Peter Eisentraut wrote:
>Philip Warner writes:
>
>> Is there any reason that a security model does not exist for psql that
>> allows Unix user 'fred' to log in as PG user 'fred' with no password etc,
>> but any user trying to log on as someone other than themselves has to
>> provide a password?
>
>Short of someone sitting down and making it happen I don't see any. You'd
>only need to implement some sort of fall-through in `pg_hba.conf', which
>in my estimate can't be exceedingly hard.
>

I'd prefer not to overrule pg_hba.conf; I was thinking along the lines of
adding another security type which falls back to password auth. if it cant
get the username, or if the client process is not a valid user.


----------------------------------------------------------------
Philip Warner                    |     __---_____
Albatross Consulting Pty. Ltd.   |----/       -  \
(A.C.N. 008 659 498)             |          /(@)   ______---_
Tel: (+61) 0500 83 82 81         |                 _________  \
Fax: (+61) 0500 83 82 82         |                 ___________ |
Http://www.rhyme.com.au          |                /           \|                                |    --________--
PGP key available upon request,  |  /
and from pgp5.ai.mit.edu:11371   |/


В списке pgsql-hackers по дате отправления:

Предыдущее
От: Philip Warner
Дата:
Сообщение: Re: Security choices...
Следующее
От: Philip Warner
Дата:
Сообщение: Re: pg_dump and ANSI types (TODO item)