Re: proposal: only superuser can change customized_options

From: "Pavel Stehule" <pavel(dot)stehule(at)hotmail(dot)com>
To: tgl(at)sss(dot)pgh(dot)pa(dot)us
Cc: pgsql-hackers(at)postgresql(dot)org
Subject: Re: proposal: only superuser can change customized_options
Date: 2007-02-02 16:53:26
Message-ID: BAY20-F144D4031A42084E4B8C260F99B0@phx.gbl
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-hackers

>From: Tom Lane <tgl(at)sss(dot)pgh(dot)pa(dot)us>
>To: "Pavel Stehule" <pavel(dot)stehule(at)hotmail(dot)com>
>CC: pgsql-hackers(at)postgresql(dot)org
>Subject: Re: [HACKERS] proposal: only superuser can change
>customized_options Date: Fri, 02 Feb 2007 11:40:10 -0500
>
>"Pavel Stehule" <pavel(dot)stehule(at)hotmail(dot)com> writes:
> > I want to use custmized option for security configuration one contrib
> > library. Currently customized options are usable only for default
> > configuration, because everybody can change it. It is substitution of
>global
> > variables.
> > Decision if option is protected or not can be based on name of option.
>
>I dislike making it depend on spelling. There was discussion of this
>problem before, and we had a much saner answer: when the module that
>defines the variable gets loaded, discard any local setting if the
>correct protection level of the variable is SUSET or higher. See the
>archives.
>
> regards, tom lane

I am finding it.

Thank You

Pavel Stehule

_________________________________________________________________
Citite se osamele? Poznejte nekoho vyjmecneho diky Match.com.
http://www.msn.cz/

In response to

Responses

Browse pgsql-hackers by date

  From Date Subject
Next Message Pavel Stehule 2007-02-02 17:03:47 Re: PL/pgSQL RENAME functionality in TODOs
Previous Message Andrew Sullivan 2007-02-02 16:46:38 Re: "May", "can", "might"