Increasing security in a shared environment ... - Mailing list pgsql-hackers

From Marc G. Fournier
Subject Increasing security in a shared environment ...
Date
Msg-id 20040329002443.N51637@ganymede.hub.org
Whole thread Raw
Responses Re: Increasing security in a shared environment ...  (Christopher Kings-Lynne <chriskl@familyhealth.com.au>)
List pgsql-hackers
How hard would it be to add this:

"The \l command should only list databases that the current user is
authorized for, the \du command should only list users authorized for the
current database (and perhaps only superusers should get even that much
information), etc.  Perhaps it is possible to set PG to do this, but that
should probably be the default."

This is from a PgSQL vs MySQL thread on -general ... how hard would it be
make it so that a non-superuse user can't do a \l and see everyone's
databases?  Or, when doing a \d in a database you are able to connect to,
it would only show those tables that you are authorized for?


----
Marc G. Fournier           Hub.Org Networking Services (http://www.hub.org)
Email: scrappy@hub.org           Yahoo!: yscrappy              ICQ: 7615664


pgsql-hackers by date:

Previous
From: Neil Conway
Date:
Subject: Re: Fuzzy cost comparison to eliminate redundant planning
Next
From: Christopher Kings-Lynne
Date:
Subject: Re: Increasing security in a shared environment ...