Re: Thoughts on the location of configuration files - Mailing list pgsql-hackers

From Bruce Momjian
Subject Re: Thoughts on the location of configuration files
Date
Msg-id 200112240335.fBO3ZwD25593@candle.pha.pa.us
Whole thread Raw
In response to Re: Thoughts on the location of configuration files  (Tom Lane <tgl@sss.pgh.pa.us>)
Responses Re: Thoughts on the location of configuration files  (Tom Lane <tgl@sss.pgh.pa.us>)
List pgsql-hackers
> Bruce Momjian <pgman@candle.pha.pa.us> writes:
> > I have an idea for the Unix socket file permissions and local 'trust'
> > permissoins as default.  Right now we allow the socket permissions to be
> > set in postgresql.conf, but that seems like the wrong place for it.
> 
> > Suppose we add an option to pg_hba.conf for 'local' connections called
> > 'singleuser' and 'singlegroup' which set enable socket permissions
> > only for the postgres super-user or his group.
> 
> That strikes me as (a) not better, and (b) not backwards compatible.
> What's the point?

Well, the problem with backward compatibility here is that now we have
pg_hba.conf to configure some part of local authentication and
postgresql.conf to configure the other part.  Seems quite confusing to
me.  If you would prefer, we could allow specification of the socket
permissions in pg_hba.conf.

Aren't the socket permissions best dealt with in pg_hba.conf?

--  Bruce Momjian                        |  http://candle.pha.pa.us pgman@candle.pha.pa.us               |  (610)
853-3000+  If your life is a hard drive,     |  830 Blythe Avenue +  Christ can be your backup.        |  Drexel Hill,
Pennsylvania19026
 


pgsql-hackers by date:

Previous
From: Jussi Mikkola
Date:
Subject: Re: 7.2 is slow?
Next
From: Tom Lane
Date:
Subject: Re: Thoughts on the location of configuration files