Re: protecting prosrc (was Re: [GENERAL] USAGE on schema allowed by - Mailing list pgsql-hackers

From Christopher Kings-Lynne
Subject Re: protecting prosrc (was Re: [GENERAL] USAGE on schema allowed by
Date
Msg-id 01a201c29a48$31e77390$6500a8c0@internal
Whole thread Raw
In response to Re: protecting prosrc (was Re: [GENERAL] USAGE on schema allowed by  (Robert Treat <xzilla@users.sourceforge.net>)
Responses Re: protecting prosrc (was Re: [GENERAL] USAGE on schema
List pgsql-hackers
> > It wouldn't be terribly difficult to encrypt prosrc with 3des (or maybe
aes)
> > using the owner's passwd from pg_shadow. We would need a new bool column
in
> > pg_proc (proisencrypted?) and some logic in fmgr.c.
> >
> > Is there sufficient interest to justify the effort?
> >
>
> I think this would be a good idea, though there becomes a question of
> what type of performance hit comes into play when doing this. I suppose
> if you have an option whether to encrypt it or not that would help.  One
> other thing is that it needs to be "decryptable" by owners and
> superusers.

Surely a more generic column privileges implementation would be better?

Chris



pgsql-hackers by date:

Previous
From: "Christopher Kings-Lynne"
Date:
Subject: Re: ALTER .. ADD PRIMARY KEY
Next
From: Joe Conway
Date:
Subject: Re: protecting prosrc (was Re: [GENERAL] USAGE on schema