Re: privileges oddity - Mailing list pgsql-general

From Tom Lane
Subject Re: privileges oddity
Date
Msg-id 2793218.1596825900@sss.pgh.pa.us
Whole thread Raw
In response to Re: privileges oddity  (Scott Ribe <scott_ribe@elevated-dev.com>)
Responses Re: privileges oddity  (Scott Ribe <scott_ribe@elevated-dev.com>)
List pgsql-general
Scott Ribe <scott_ribe@elevated-dev.com> writes:
> On Aug 7, 2020, at 12:27 PM, Adrian Klaver <adrian.klaver@aklaver.com> wrote:
>> So what privileges does role 'confidential_read_only' have?

> read on everything

... including usage on the schema in question?

If I'm reading this correctly, you have set things up so that any
session logging in as akanzler will immediately do "SET ROLE
confidential_read_only", after which it's the privileges of that
role not akanzler that determine what happens.

            regards, tom lane



pgsql-general by date:

Previous
From: Scott Ribe
Date:
Subject: Re: privileges oddity
Next
From: Scott Ribe
Date:
Subject: Re: privileges oddity