Re: Permissions within a function - Mailing list pgsql-hackers

From Andrew Dunstan
Subject Re: Permissions within a function
Date
Msg-id 41C340F2.7000108@dunslane.net
Whole thread Raw
In response to Re: Permissions within a function  (Thomas Hallgren <thhal@mailblocks.com>)
List pgsql-hackers

Thomas Hallgren wrote:

> vamsi,
>
>> Why dont you create a view on the table and access the view rather
>> than the table. I guess this would resolve the issue.
>>
>> What ever select statement you want to have on the table you can make
>> it a select statement of the view. thus restricting the access to the
>> main table.
>>
>> Looking forward to hear from you.
>>
> I don't think a view would help much. I want to completely prevent the 
> user from viewing or changing any data stored in the table. Using a 
> view would just move the problem. Now the user must have select access 
> to the view in order to call the function and that is just as bad.
>
>

Thomas,

I'm not sure if I understand exactly what you want, but would a 
"security definer" function help?

cheers

andrew


pgsql-hackers by date:

Previous
From: Thomas Hallgren
Date:
Subject: Re: Permissions within a function
Next
From: Tom Lane
Date:
Subject: Re: Permissions within a function