Re: Kerberos delegation support in libpq and postgres_fdw - Mailing list pgsql-hackers

From Michael Paquier
Subject Re: Kerberos delegation support in libpq and postgres_fdw
Date
Msg-id Y0ZRb9J6VpzMwvUP@paquier.xyz
Whole thread Raw
In response to Re: Kerberos delegation support in libpq and postgres_fdw  (Jacob Champion <jchampion@timescale.com>)
Responses Re: Kerberos delegation support in libpq and postgres_fdw  (Stephen Frost <sfrost@snowman.net>)
List pgsql-hackers
On Mon, Sep 19, 2022 at 02:05:39PM -0700, Jacob Champion wrote:
> It's not prevented, because a password is being used. In my tests I'm
> connecting as an unprivileged user.
>
> You're claiming that the middlebox shouldn't be doing this. If this new
> default behavior were the historical behavior, then I would have agreed.
> But the cat's already out of the bag on that, right? It's safe today.
> And if it's not safe today for some other reason, please share why, and
> maybe I can work on a patch to try to prevent people from doing it.

Please note that this has been marked as returned with feedback in the
current CF, as this has remained unanswered for a bit more than three
weeks.
--
Michael

Attachment

pgsql-hackers by date:

Previous
From: Michael Paquier
Date:
Subject: Re: New Table Access Methods for Multi and Single Inserts
Next
From: Michael Paquier
Date:
Subject: Re: warn if GUC set to an invalid shared library