Re: re-reading SSL certificates during server reload - Mailing list pgsql-hackers

From Tom Lane
Subject Re: re-reading SSL certificates during server reload
Date
Msg-id 25092.1409235139@sss.pgh.pa.us
Whole thread Raw
In response to Re: re-reading SSL certificates during server reload  (Magnus Hagander <magnus@hagander.net>)
Responses Re: re-reading SSL certificates during server reload
List pgsql-hackers
Magnus Hagander <magnus@hagander.net> writes:
> On Thu, Aug 28, 2014 at 4:05 PM, Tom Lane <tgl@sss.pgh.pa.us> wrote:
>> Why would they need to be BACKEND, as opposed to just PGC_SIGHUP?

> I just thought semantically - because they do not change in a running
> backend. Any running backend will continue with encryption set up
> based on the old certificate.

Hm.  Yeah, I guess there is some use in holding onto the values that were
actually used to initialize the current session, or at least there would
be if we exposed the cert contents in any fashion.
        regards, tom lane



pgsql-hackers by date:

Previous
From: Magnus Hagander
Date:
Subject: Re: re-reading SSL certificates during server reload
Next
From: Tom Lane
Date:
Subject: Re: [COMMITTERS] pgsql: Allow units to be specified in relation option setting value.