Re: HIPPA (was Re: Anyone know ...)

From: Kenneth Downs <ken(at)secdat(dot)com>
To: David Legault <legault(dot)david(at)gmail(dot)com>, Kenneth Downs <ken(at)secdat(dot)com>, pgsql-general(at)postgresql(dot)org
Subject: Re: HIPPA (was Re: Anyone know ...)
Date: 2007-03-10 20:21:41
Message-ID: 45F31355.1050104@secdat.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-general

Alvaro Herrera wrote:
> David Legault escribió:
>
>> That's basically what I've done with my past questions on the ROLE system in
>> place. Since roles are global, I wanted it fine grained to the DB level so I
>> had to append DB_ in front of each role name and by using current_database()
>> inside my functions, I could hide that from the exterior.
>>
>
> Hmm, there used to be a facility to restrict users to specific
> databases, enabled by db_user_namespace (not by default).
>
> It seems to still work on 8.2 ...
>
>

there is also the 'samegroup' facility in pg_hba.conf. We create a
group named after each database, and a person cannot get into a database
unless they are in that group.

In response to

Responses

Browse pgsql-general by date

  From Date Subject
Next Message Peter Eisentraut 2007-03-10 20:47:36 Re: How to enforce uniqueness when NULL values are present?
Previous Message Alvaro Herrera 2007-03-10 20:14:33 Re: HIPPA (was Re: Anyone know ...)