Re: Add default role 'pg_access_server_files' - Mailing list pgsql-hackers

From Stephen Frost
Subject Re: Add default role 'pg_access_server_files'
Date
Msg-id 20180112021414.GT2416@tamriel.snowman.net
Whole thread Raw
In response to Re: Add default role 'pg_access_server_files'  (Thomas Munro <thomas.munro@enterprisedb.com>)
List pgsql-hackers
Thomas,

* Thomas Munro (thomas.munro@enterprisedb.com) wrote:
> On Mon, Jan 1, 2018 at 8:19 AM, Stephen Frost <sfrost@snowman.net> wrote:
> > This patch adds a new default role called 'pg_access_server_files' which
> > allows an administrator to GRANT to a non-superuser role the ability to
> > access server-side files through PostgreSQL (as the user the database is
> > running as).  By itself, having this role allows a non-superuser to use
> > server-side COPY and to use file_fdw (if installed by a superuser and
> > GRANT'd USAGE on it).
>
> Not sure if you are aware of this failure?
>
> test file_fdw                 ... FAILED

Thanks, I did do a make check-world, but I tend to do them in parallel
and evidently missed this.  The patch needs to be reworked based on
discussion with Magnus anyhow, which I hope to do this weekend.
Currently trying to push other patches along. :)

Thanks!

Stephen

Attachment

pgsql-hackers by date:

Previous
From: Michael Paquier
Date:
Subject: Re: add queryEnv to ExplainOneQuery_hook
Next
From: Stephen Frost
Date:
Subject: Re: IndexTupleDSize macro seems redundant