Re: Updates of SE-PostgreSQL 8.4devel patches (r1704)

From: Ron Mayer <rm_pg(at)cheapcomplexdevices(dot)com>
To: Tom Lane <tgl(at)sss(dot)pgh(dot)pa(dot)us>
Cc: jd(at)commandprompt(dot)com, Hannu Krosing <hannu(at)2ndQuadrant(dot)com>, Robert Haas <robertmhaas(at)gmail(dot)com>, KaiGai Kohei <kaigai(at)kaigai(dot)gr(dot)jp>, Heikki Linnakangas <heikki(dot)linnakangas(at)enterprisedb(dot)com>, KaiGai Kohei <kaigai(at)ak(dot)jp(dot)nec(dot)com>, Bruce Momjian <bruce(at)momjian(dot)us>, Joshua Brindle <method(at)manicmethod(dot)com>, Stephen Frost <sfrost(at)snowman(dot)net>, Andrew Dunstan <andrew(at)dunslane(dot)net>, Josh Berkus <josh(at)agliodbs(dot)com>, PG Hackers <pgsql-hackers(at)postgresql(dot)org>, Jaime Casanova <jcasanov(at)systemguards(dot)com(dot)ec>, Ron Mayer <rm_pg(at)cheapcomplexdevices(dot)com>
Subject: Re: Updates of SE-PostgreSQL 8.4devel patches (r1704)
Date: 2009-03-10 18:37:21
Message-ID: 49B6B361.1060707@cheapcomplexdevices.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-hackers

Tom Lane wrote:
> "Joshua D. Drake" <jd(at)commandprompt(dot)com> writes:
>> I know we are a little uncomfortable here but KaiGai-San (forgive me if
>> I type that wrong) has proven to be a contributor in his own right,
>
> Not to put too fine a point on it, but: no, he hasn't. Show me one
> significant patch he's contributed before/beside this one. The only

I thought Joshua was talking about his contribtions to F/OSS in general.
He's credited on the NSA site for SELinux kernel scalability and
locking issues:

http://www.nsa.gov/research/selinux/contrib.shtml
"Kaigai Kohei of NEC replaced the original Access Vector Cache
(AVC) locking scheme with a RCU-based approach, which solved
the major SELinux kernel scalability problem, and fixed other
locking issues in the SELinux kernel code. He later optimized
the SELinux ebitmap implementation to improve performance on
AVC misses. He also developed SE PostgreSQL, and is one of
the developers for the SE busybox project."

At first glance it seems it'd be valuable to have him as an
active member of this community.

> Frankly, what we have here is a large patch, with insanely difficult
> correctness requirements, written by a Postgres newbie.

I'm kinda hoping the discussion could turn to "what parts (no
matter how small) seem both useful safe enough for 8.4" - even
if the main use of the small parts ar just as hooks to make it
easier for SEPostgres to live as a parallel side project.

As far as I can tell, the community feels interested in the
feature set; but relatively unable to contribute since none
of the people have that much of a security background. It
seems the best way to fix that would be to get more people
with a security background more involved.

Not push them away.

In response to

Responses

Browse pgsql-hackers by date

  From Date Subject
Next Message Joshua D. Drake 2009-03-10 18:44:21 Re: Updates of SE-PostgreSQL 8.4devel patches (r1704)
Previous Message Emanuel Calvo Franco 2009-03-10 18:30:59 Re: problem inserting in GIN index