Re: [PATCH] DefaultACLs - Mailing list pgsql-hackers

From Petr Jelinek
Subject Re: [PATCH] DefaultACLs
Date
Msg-id 4AC4F3DB.2030705@pjmodos.net
Whole thread Raw
In response to Re: [PATCH] DefaultACLs  (Tom Lane <tgl@sss.pgh.pa.us>)
List pgsql-hackers
Tom Lane wrote: <blockquote cite="mid:880.1254421285@sss.pgh.pa.us" type="cite"><pre wrap="">Stephen Frost <a
class="moz-txt-link-rfc2396E"href="mailto:sfrost@snowman.net"><sfrost@snowman.net></a> writes: </pre><blockquote
type="cite"><prewrap="">Erm, wait, we're going to drop the only piece of this that outside folks
 
have actually been asking for?  Specifically, having per-schema default
ACLs?   </pre></blockquote><pre wrap="">
They are per-schema for the objects belonging to the granting user.
Otherwise you have a bunch of nasty issues, including the prospect
of non-superusers being able to control the privileges granted on
objects that don't belong to them. </pre></blockquote> Also it's not really a problem since superuser or role admin can
setthese for other roles.<br /><br /><pre class="moz-signature" cols="72">-- 
 
Regards
Petr Jelinek (PJMODOS)</pre>

pgsql-hackers by date:

Previous
From: Tom Lane
Date:
Subject: Re: [PATCH] DefaultACLs
Next
From: "Kevin Grittner"
Date:
Subject: Re: FSM search modes