Re: how to keep/lock/ hide pg_hba.conf ?

From: Jaime Casanova <jaime(at)2ndquadrant(dot)com>
To: "john(dot)cheng" <neoart(dot)hinet(at)msa(dot)hinet(dot)net>
Cc: pgsql-hackers(at)postgresql(dot)org
Subject: Re: how to keep/lock/ hide pg_hba.conf ?
Date: 2011-04-11 19:21:33
Message-ID: BANLkTinG1UAnMxe7KTQJE-w0j3BHjgyePw@mail.gmail.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-hackers

On Mon, Apr 11, 2011 at 9:35 AM, john.cheng <neoart(dot)hinet(at)msa(dot)hinet(dot)net> wrote:
> I found that,if user modified the pg_hba.conf, modified the "METHOD"field
> from md5 to "password"

if it's a client/server app the user shouldn't have access to the
server, so how could him to make the change?

Also the directory in which the pg_hba.conf is is only
visible/writable for the database cluster owner and the system
administrator, so that means you're allowing your user to connect to
the server as one of those users? or is windows uncapable of enforce
those restrictions?

--
Jaime Casanova         www.2ndQuadrant.com
Professional PostgreSQL: Soporte y capacitación de PostgreSQL

In response to

Browse pgsql-hackers by date

  From Date Subject
Next Message Peter Eisentraut 2011-04-11 19:23:07 Re: how to keep/lock/ hide pg_hba.conf ?
Previous Message Robert Haas 2011-04-11 19:16:07 Re: switch UNLOGGED to LOGGED