Re: Update actions (with user name) inside PostgreSQL DB - any version on postgreSQL - Mailing list pgsql-admin

From Scott Ribe
Subject Re: Update actions (with user name) inside PostgreSQL DB - any version on postgreSQL
Date
Msg-id EDD98FDF-AAC8-48A7-A6AE-C1EE365D2C0E@elevated-dev.com
Whole thread Raw
In response to Re: Update actions (with user name) inside PostgreSQL DB - any version on postgreSQL  (David Ondrejik <david.ondrejik@noaa.gov>)
Responses Re: Update actions (with user name) inside PostgreSQL DB - any version on postgreSQL
Re: Update actions (with user name) inside PostgreSQL DB - any version on postgreSQL
List pgsql-admin
On Mar 14, 2012, at 9:28 AM, David Ondrejik wrote:

> So there is some trail to track back to the original user.

Yes, but once he has root shell, the trail ends there, and impersonation of anyone is once again trivial. Also, sudo su
root,does work on some unices, and the option you don't want to advertise is, in my opinion, trivially obvious--but
I'llrespect the idea and not advertise it. 

--
Scott Ribe
scott_ribe@elevated-dev.com
http://www.elevated-dev.com/
(303) 722-0567 voice





pgsql-admin by date:

Previous
From: David Ondrejik
Date:
Subject: Re: Update actions (with user name) inside PostgreSQL DB - any version on postgreSQL
Next
From: David Ondrejik
Date:
Subject: Re: Update actions (with user name) inside PostgreSQL DB - any version on postgreSQL