Bruce Momjian <pgman(at)candle(dot)pha(dot)pa(dot)us> writes:
> Can someone tell me where we are on this; exactly what writability do
> we have in 7.3?
The current code implements what I suggested in that note, viz:
default permissions for new databases are
owner = all rights (ie, create schema and create temp)
public = create temp right only
but template1 and template0 are set to
owner (postgres user) = all rights
public = no rights
by initdb.
Also, the "public" schema within template1 is empty but writable by
public. This is annoying, but at least it's easy to fix if you
mess up --- you can DROP SCHEMA public CASCADE and then recreate
the schema. (Or not, if you don't want to.)
regards, tom lane