Re: [PATCH] DefaultACLs - Mailing list pgsql-hackers

From Tom Lane
Subject Re: [PATCH] DefaultACLs
Date
Msg-id 880.1254421285@sss.pgh.pa.us
Whole thread Raw
In response to Re: [PATCH] DefaultACLs  (Stephen Frost <sfrost@snowman.net>)
Responses Re: [PATCH] DefaultACLs  (Petr Jelinek <pjmodos@pjmodos.net>)
List pgsql-hackers
Stephen Frost <sfrost@snowman.net> writes:
> Erm, wait, we're going to drop the only piece of this that outside folks
> have actually been asking for?  Specifically, having per-schema default
> ACLs?

They are per-schema for the objects belonging to the granting user.
Otherwise you have a bunch of nasty issues, including the prospect
of non-superusers being able to control the privileges granted on
objects that don't belong to them.
        regards, tom lane


pgsql-hackers by date:

Previous
From: Stephen Frost
Date:
Subject: Re: [PATCH] DefaultACLs
Next
From: Petr Jelinek
Date:
Subject: Re: [PATCH] DefaultACLs