| From: | Garick Hamlin <ghamlin(at)isc(dot)upenn(dot)edu> |
|---|---|
| To: | Tom Lane <tgl(at)sss(dot)pgh(dot)pa(dot)us> |
| Cc: | "pgsql-hackers(at)postgresql(dot)org" <pgsql-hackers(at)postgresql(dot)org>, "pgsql-patches(at)postgresql(dot)org" <pgsql-patches(at)postgresql(dot)org> |
| Subject: | Re: Solaris ident authentication using unix domain sockets |
| Date: | 2008-07-03 18:55:33 |
| Message-ID: | 20080703185533.GA1927@isc.upenn.edu |
| Views: | Whole Thread | Raw Message | Download mbox | Resend email |
| Thread: | |
| Lists: | pgsql-hackers pgsql-patches |
On Thu, Jul 03, 2008 at 02:01:22PM -0400, Tom Lane wrote:
> Garick Hamlin <ghamlin(at)isc(dot)upenn(dot)edu> writes:
> > I have a patch that I have been using to support postgresql's
> > notion of ident authentication when using unix domain sockets on
> > Solaris. This patch basically just adds support for using
> > getupeercred() on Solaris so unix sockets and ident auth works just
> > like it does on Linux and elsewhere.
>
> Cool.
>
> > + #if defined(HAVE_GETPEERUCRED)
> > + #include <ucred.h>
> > + #endif
>
> But this is not cool. There might be systems out there that have
> getpeerucred() but not <ucred.h>, and this coding would cause a compile
> failure (even if they actually wouldn't be trying to use getpeerucred()
> because they have some other way to do it). You need an explicit
> configure probe for the header file too, I think.
Ok, I can fix that.
>
> Also, what is the rationale for putting this before the
> HAVE_STRUCT_CMSGCRED case instead of after? Again, that seems like it
> could cause unexpected behavioral changes on platforms that work fine
> now (consider possibility that getpeerucred is there but broken).
Good Point, It should be the other way.
>
> regards, tom lane
Thanks,
Garick
| From | Date | Subject | |
|---|---|---|---|
| Next Message | Marko Kreen | 2008-07-03 19:02:58 | Re: CommitFest rules |
| Previous Message | Dave Page | 2008-07-03 18:44:49 | CommitFest rules |
| From | Date | Subject | |
|---|---|---|---|
| Next Message | Tom Lane | 2008-07-03 21:04:56 | Re: Exposing keywords to clients |
| Previous Message | Tom Lane | 2008-07-03 18:01:22 | Re: Solaris ident authentication using unix domain sockets |