Re: who can view pg_stat_activity? - Mailing list pgsql-admin

From Don Seiler
Subject Re: who can view pg_stat_activity?
Date
Msg-id CAHJZqBDPCQ+9WahY4mpo98zXhf6UV1N1C61-D=5f5x0i4P52GQ@mail.gmail.com
Whole thread Raw
In response to Re: who can view pg_stat_activity?  (Cory Nemelka <cnemelka@gmail.com>)
Responses Re: who can view pg_stat_activity?  (Ashutosh Sharma <ashu.coek88@gmail.com>)
List pgsql-admin
On Wed, Feb 7, 2018 at 11:34 AM, Cory Nemelka <cnemelka@gmail.com> wrote:
this seems to be a security hole.  this means I can see query text for queries that aren't mine.  anyone else concerned?

--cnemelka

On Wed, Feb 7, 2018 at 10:17 AM, Shreeyansh Dba <shreeyansh2014@gmail.com> wrote:
Hi Mark Steben,

There is no superuser required to view pg_stat_activity, a normal user can also view or access.

I believe Shreeyansh is incorrect. You can view some fields as a normal user but you can't view query text (in addition to some others) unless you are superuser, or perhaps the new monitoring role in Pg10.

Don. 

--
Don Seiler
www.seiler.us

pgsql-admin by date:

Previous
From: Cory Nemelka
Date:
Subject: Re: who can view pg_stat_activity?
Next
From: Cory Nemelka
Date:
Subject: Re: who can view pg_stat_activity?