Re: Thoughts on pg_hba.conf rejection - Mailing list pgsql-hackers

From Robert Haas
Subject Re: Thoughts on pg_hba.conf rejection
Date
Msg-id k2n603c8f071004071007i3be115b8zb7b7c246e994f3ca@mail.gmail.com
Whole thread Raw
In response to Re: Thoughts on pg_hba.conf rejection  (Tom Lane <tgl@sss.pgh.pa.us>)
Responses Re: Thoughts on pg_hba.conf rejection  (Joshua Tolley <eggyknap@gmail.com>)
List pgsql-hackers
On Wed, Apr 7, 2010 at 10:46 AM, Tom Lane <tgl@sss.pgh.pa.us> wrote:
> Simon Riggs <simon@2ndQuadrant.com> writes:
>> When there is a specific reject rule, why does the server say
>> FATAL:  no pg_hba.conf entry
>
> It's intentional.  We try to expose the minimum amount of knowledge
> about the contents of pg_hba.conf to potential attackers.

The problem with the message is not that it's uninformative, but that
it's counterfactual.

...Robert


pgsql-hackers by date:

Previous
From: Robert Haas
Date:
Subject: Re: Win32 timezone matching
Next
From: Magnus Hagander
Date:
Subject: Re: Win32 timezone matching