Re: Allow peer/ident to fall back to md5? - Mailing list pgsql-hackers

From Jim Nasby
Subject Re: Allow peer/ident to fall back to md5?
Date
Msg-id 5451179A.3030300@BlueTreble.com
Whole thread Raw
In response to Re: Allow peer/ident to fall back to md5?  (Josh Berkus <josh@agliodbs.com>)
List pgsql-hackers
On 10/29/14, 11:23 AM, Josh Berkus wrote:
> I don't see a problem with having a "continue" directive, and
> documenting that it only works with peer and ident.  Maybe someday
> (protocol bump) we can have a way to make other methods continue, and
> then nobody will need to change their files to support the new way.

Keep in mind that makes it far easier to accidentally screw up your hba.conf by putting a line in the wrong place.
Anyonethat's dealt with firewall rules (or apparently PAM) would probably be OK, but a lot of our users would end up
witha config that's not doing what they wanted.
 
-- 
Jim Nasby, Data Architect, Blue Treble Consulting
Data in Trouble? Get it in Treble! http://BlueTreble.com



pgsql-hackers by date:

Previous
From: Adam Brightwell
Date:
Subject: Re: Directory/File Access Permissions for COPY and Generic File Access Functions
Next
From: Stephen Frost
Date:
Subject: Re: Directory/File Access Permissions for COPY and Generic File Access Functions