From: | Tom Lane <tgl(at)sss(dot)pgh(dot)pa(dot)us> |
---|---|
To: | Stephen Frost <sfrost(at)snowman(dot)net> |
Cc: | PostgreSQL-development <pgsql-hackers(at)postgresql(dot)org> |
Subject: | Re: Default permissisons from schemas |
Date: | 2007-01-23 18:37:58 |
Message-ID: | 3288.1169577478@sss.pgh.pa.us |
Views: | Raw Message | Whole Thread | Download mbox | Resend email |
Thread: | |
Lists: | pgsql-hackers |
Stephen Frost <sfrost(at)snowman(dot)net> writes:
> * Tom Lane (tgl(at)sss(dot)pgh(dot)pa(dot)us) wrote:
>> Whoa. You are going to allow people to create objects owned by someone
>> else? I don't think so ... most Unix systems have forbidden object
>> give-away for years, for very good reasons.
> Hmm. While I agree with the sentiment, Unix does provide for setgid
> such that objects inherit a specific group on creation. Using roles we
> don't get that distinction so I don't think comparing it to Unix is a
> slam-dunk. There do need to be limitations here though, certainly.
Before discussing "limitations" you should first justify why we need any
such concept at all. It was no part of the original TODO item and I
cannot see any good use for it.
regards, tom lane
From | Date | Subject | |
---|---|---|---|
Next Message | Brian Hurt | 2007-01-23 18:54:39 | Re: tripping an assert in 8.1.6 (more info) |
Previous Message | Tom Lane | 2007-01-23 18:30:57 | Re: "tupdesc reference is not owned by resource owner Portal" issue in 8.2 and -HEAD |