Re: Clarification on Role Access Rights to Table Indexes - Mailing list pgsql-hackers

From Robert Haas
Subject Re: Clarification on Role Access Rights to Table Indexes
Date
Msg-id CA+TgmoZG71zBpLOfCGZqGhtp=88z6=YYhi54TEsCtKr3v+UpoA@mail.gmail.com
Whole thread Raw
In response to Re: Clarification on Role Access Rights to Table Indexes  ("David G. Johnston" <david.g.johnston@gmail.com>)
Responses Re: Clarification on Role Access Rights to Table Indexes
List pgsql-hackers
On Mon, Feb 17, 2025 at 5:18 PM David G. Johnston
<david.g.johnston@gmail.com> wrote:
>> I have a very vague recollection that we concluded that SELECT
>> privilege was a reasonable check because if you have that you
>> could manually prewarm by reading the table.  That would lead
>> to the conclusion that the minimal fix is to look at the owning
>> table's privileges instead of the index's own privileges.
>
> I feel like if you can blow up the cache by loading an entire table into memory with just select privilege on the
tablewe should be ok with allowing the same person to name an index on the same table and load it into the cache too. 

+1.

--
Robert Haas
EDB: http://www.enterprisedb.com



pgsql-hackers by date:

Previous
From: Andrew Dunstan
Date:
Subject: Re: New "single" COPY format
Next
From: Tom Lane
Date:
Subject: Re: Why does exec_simple_query requires 2 snapshots