Re: Is "trust" really a good default? - Mailing list pgsql-hackers

From Peter Eisentraut
Subject Re: Is "trust" really a good default?
Date
Msg-id 200407152348.34057.peter_e@gmx.net
Whole thread Raw
In response to Re: Is "trust" really a good default?  (Tom Lane <tgl@sss.pgh.pa.us>)
Responses Re: Is "trust" really a good default?
List pgsql-hackers
Tom Lane wrote:
> I don't really see a problem with doing it that way.  People who want
> to use -W are presumably worried about the security of their local
> system, otherwise they would just fire up the postmaster and set a
> password later.

No, that is exactly what I don't agree with.  People might want to 
assign a password just so that the user has one, with the intention of 
configuring non-local password-protected access right after initdb 
finishes.  It's a convenience that you set the password when the user 
is logically created.

> There are of course some questions about how to document this
> effectively, so that it doesn't create more confusion than it avoids.

Yes, that is another thing I'm afraid of.

-- 
Peter Eisentraut
http://developer.postgresql.org/~petere/



pgsql-hackers by date:

Previous
From: Simon Riggs
Date:
Subject: Re: Point in Time Recovery
Next
From: Devrim GUNDUZ
Date:
Subject: Re: Point in Time Recovery