Re: [GENERAL] Another access control query - Mailing list pgsql-general

From Peter Eisentraut
Subject Re: [GENERAL] Another access control query
Date
Msg-id Pine.GSO.4.02A.9910141703020.29545-100000@Ekorre.DoCS.UU.SE
Whole thread Raw
In response to Another access control query  (Mark Jewiss <Mark.Jewiss@knowledge.com>)
Responses Re: [GENERAL] Another access control query
List pgsql-general
A lot of this has come up recently. Bruce, perhaps you can add a TODO like
this:
* Completely rethink authentication.

I have some ideas (think tcpd), but I have way too many ideas and too
little time these days :(

    -Peter


On Thu, 14 Oct 1999, Mark Jewiss wrote:

> Hello,
>
> Similar to other questions I've seen posed in the last day or so,
> apologies if this exact question has been asked, I don't think it has.
>
> I want to restrict access to a set of databases to connections from a
> specfic machine and a specific user.
>
> Lines in my pg_hba.conf file are similar to this:
>
> host    db1    serverip    netmask    password
>
> Effectively what I want to do is have something like:
>
> host    db1    username1    serverip    netmask    password
> host    db2    username2    serverip    netmask    password
>
> thereby ensuring that it is not possible for user2 to connect to db1 from
> the same machine.
>
> I know I can set up the different db's so that table security only gives
> any access to the user I want, but that is fiddly. Being able to do the
> above and prevent connections to the database will resolve that issue.
>
> Any ideas?
>
> Regards,
>
> Mark.
>

--
Peter Eisentraut                  Sernanders vaeg 10:115
peter_e@gmx.net                   75262 Uppsala
http://yi.org/peter-e/            Sweden


pgsql-general by date:

Previous
From: Mark Jewiss
Date:
Subject: Another access control query
Next
From: "David Lanier"
Date:
Subject: [GENERAL] insert BLOB