Re: [HACKERS] Table permissions problem - Mailing list pgsql-hackers

From darcy@druid.net (D'Arcy J.M. Cain)
Subject Re: [HACKERS] Table permissions problem
Date
Msg-id m0z6nci-00006JC@druid.net
Whole thread Raw
In response to Re: [HACKERS] Table permissions problem  (Bruce Momjian <maillist@candle.pha.pa.us>)
Responses Re: [HACKERS] Table permissions problem  (Bruce Momjian <maillist@candle.pha.pa.us>)
List pgsql-hackers
Thus spake Bruce Momjian
> > I have since found out that it was changed so that no one, not even the
> > owner, had full privs on the tables.  I went in and changed my code
> > to grant ALL on each database to the db owner.  Everything is fine
> > except that I still can't create a view.  I still  get that "pg_rewrite:
> > Permission denied." error.  Any ideas?
> >
>
> Only superuser.  From TODO:
>
>     CREATE VIEW requires super-user priviledge
>
> This is because someone who can modify pg_rewrite can create their own
> view to modify any table.

Hmm.  That makes it difficult.  I would like to build databases from
scripts.  I guess I can build them as the super user.

Shouldn't the database owner have more privs then someone using the
database?  Is that what that TODO item is actually suggesting?

--
D'Arcy J.M. Cain <darcy@{druid|vex}.net>   |  Democracy is three wolves
http://www.druid.net/darcy/                |  and a sheep voting on
+1 416 424 2871     (DoD#0082)    (eNTP)   |  what's for dinner.

pgsql-hackers by date:

Previous
From: "Thomas G. Lockhart"
Date:
Subject: Re: [HACKERS] Re: type coersion (was OR clause status)
Next
From: Bruce Momjian
Date:
Subject: Re: [HACKERS] Table permissions problem