Re: LDAP Authentication - Mailing list pgsql-general

From John R Pierce
Subject Re: LDAP Authentication
Date
Msg-id 55381B5F.6050408@hogranch.com
Whole thread Raw
In response to Re: LDAP Authentication  (Joseph Kregloh <jkregloh@sproutloud.com>)
Responses Re: LDAP Authentication
List pgsql-general
On 4/22/2015 2:57 PM, Joseph Kregloh wrote:


I see. That would still require a manual process to create the user on each server. I was planing on using some already existing scripts to create the user automatically on all servers and then LDAP would authorize depending on attributes in their LDAP profile.

but thats not how it works, so all the 'planing' in the world won't change a thing.

access rights per database are managed with GRANT, users must be CREATE USER on each server regardless of how they are authenticated.

-- 
john r pierce, recycling bits in santa cruz

pgsql-general by date:

Previous
From: Joseph Kregloh
Date:
Subject: Re: LDAP Authentication
Next
From: Adrian Klaver
Date:
Subject: Re: ERROR: could not open relation with OID