Re: pg_hba.conf and crypt/password - Mailing list pgsql-general

From Peter Eisentraut
Subject Re: pg_hba.conf and crypt/password
Date
Msg-id Pine.LNX.4.30.0103311030430.1120-100000@peter.localdomain
Whole thread Raw
In response to pg_hba.conf and crypt/password  (Jim Mercer <jim@reptiles.org>)
Responses Re: pg_hba.conf and crypt/password  (Jim Mercer <jim@reptiles.org>)
List pgsql-general
Jim Mercer writes:

> i seem to recall setting this up before, but now i can't seem to
> get passwords working the way i want.
>
> i'm running 7.0.3 on FreeBSD 4.3-RC.
>
> i've set the entry in pg_hba.conf to both "crypt" and "password".
>
> i've used "ALTER USER pgsql WITH PASSWORD 'test';
>
> regardless of "crypt" or "password", psql allows entry using "test".

This is correct.

> what i want is for the pg_shadow file to contain encrypted passwords like
> /etc/passwd, and for the server to encrypt the plain text password handed
> to it and compare with the crypto-gunge in pg_shadow.

This is not possible.

> is this not what "crypt" is supposed to do?

Crypt encrypts the password on the wire, not in the storage.

--
Peter Eisentraut      peter_e@gmx.net       http://yi.org/peter-e/


pgsql-general by date:

Previous
From: "Oliver Elphick"
Date:
Subject: Re: pg_hba.conf and crypt/password
Next
From: Richard Huxton
Date:
Subject: Re: Data access permission?