Re: [HACKERS] something smells bad - Mailing list pgsql-general

From Alex Pilosov
Subject Re: [HACKERS] something smells bad
Date
Msg-id Pine.BSO.4.10.10106071244390.17529-100000@spider.pilosoft.com
Whole thread Raw
In response to Re: [HACKERS] something smells bad  (Martín Marqués <martin@bugs.unl.edu.ar>)
List pgsql-general
On Thu, 7 Jun 2001, [iso-8859-1] Mart�n Marqu�s wrote:

> On Jue 07 Jun 2001 02:27, Alex Pilosov wrote:
> > On Wed, 6 Jun 2001, [iso-8859-1] Mart�n Marqu�s wrote:
> > > OK, now I'm more then astonished!
> > > Why was I able to insert as martin then?
> > > Isn't it true (as the docs say) that when I execute a query over a view
> > > with rules, the rules (querys in the DO of the RULE) are executed with
> > > permssions of the owner of the rule (or the view? Any way, martin is
> > > owner of both) and not of the user that executed the query?
> >
> > No. With both views and rules, the actions are executed as the user who
> > executed the query. I don't know if there are plans to allow the 'execute
> > as owner' for rules, right now this option only exists for the triggers.
>
> Well, after todays tests, I have to say that rules are executed with owner
> privileges, and not users.
> This is the output:
*mutter* I was mistaken, indeed, views are executed with permissions of
owner of the view.

-alex



pgsql-general by date:

Previous
From: zilch@home.se
Date:
Subject: WAS: PostgreSQL Replication Server? IS: Zend comparison chart
Next
From: "Steve Wolfe"
Date:
Subject: Re: PostgreSQL Replication Server? IS: Zend comparison chart