Basic security

From: PG Doc comments form <noreply(at)postgresql(dot)org>
To: pgsql-docs(at)lists(dot)postgresql(dot)org
Cc: midgley(dot)tom(at)gmail(dot)com
Subject: Basic security
Date: 2018-02-24 15:59:54
Message-ID: 151948799430.1463.1674902368730219470@wrigleys.postgresql.org
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-docs

The following documentation comment has been logged on the website:

Page: https://www.postgresql.org/docs/8.3/static/auth-pg-hba-conf.html
Description:

My pg_hba.conf file gives 'cert' as an authentication method. this is not
mentioned on this page.

I think a basic pg_hba.conf to allow remote access require ssl, and to
prevent access to the postgres table would be a useful addition.
The more I see about this powerful environment the more nervous I get about
exploits based on aspects of it's multitude of features of which I am
completely unaware - what about PUBLIC for example ? ?
A basic security guide to disable dangerous defaults would be very welcome

Responses

Browse pgsql-docs by date

  From Date Subject
Next Message Pantelis Theodosiou 2018-02-24 17:22:32 Re: Basic security
Previous Message Peter Eisentraut 2018-02-24 01:04:26 Re: Images in the official documentation