| From: | PG Doc comments form <noreply(at)postgresql(dot)org> |
|---|---|
| To: | pgsql-docs(at)lists(dot)postgresql(dot)org |
| Cc: | midgley(dot)tom(at)gmail(dot)com |
| Subject: | Basic security |
| Date: | 2018-02-24 15:59:54 |
| Message-ID: | 151948799430.1463.1674902368730219470@wrigleys.postgresql.org |
| Views: | Whole Thread | Raw Message | Download mbox | Resend email |
| Thread: | |
| Lists: | pgsql-docs |
The following documentation comment has been logged on the website:
Page: https://www.postgresql.org/docs/8.3/static/auth-pg-hba-conf.html
Description:
My pg_hba.conf file gives 'cert' as an authentication method. this is not
mentioned on this page.
I think a basic pg_hba.conf to allow remote access require ssl, and to
prevent access to the postgres table would be a useful addition.
The more I see about this powerful environment the more nervous I get about
exploits based on aspects of it's multitude of features of which I am
completely unaware - what about PUBLIC for example ? ?
A basic security guide to disable dangerous defaults would be very welcome
| From | Date | Subject | |
|---|---|---|---|
| Next Message | Pantelis Theodosiou | 2018-02-24 17:22:32 | Re: Basic security |
| Previous Message | Peter Eisentraut | 2018-02-24 01:04:26 | Re: Images in the official documentation |