Re: [HACKERS] TODO list updated

From: The Hermit Hacker <scrappy(at)hub(dot)org>
To: Bruce Momjian <pgman(at)candle(dot)pha(dot)pa(dot)us>
Cc: Peter Eisentraut <peter_e(at)gmx(dot)net>, PostgreSQL-development <pgsql-hackers(at)postgresql(dot)org>
Subject: Re: [HACKERS] TODO list updated
Date: 2000-01-13 01:54:02
Message-ID: Pine.BSF.4.21.0001122153320.46499-100000@thelab.hub.org
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-hackers

On Wed, 12 Jan 2000, Bruce Momjian wrote:

> > On Wed, 12 Jan 2000, Bruce Momjian wrote:
> >
> > > OK, now we have to decide if we are going to require this be done as
> > > part of initdb. I am inclined to say the user _has_ to be _prompted_ in
> > > a secure matter for the password as part of initdb. Have a command-line
> > > switch for the password is not secure, IMHO, though it is better than
> > > nothing.
> >
> > If we do a 'CREATE USER <user> WITH PASSWORD <pass>', its no more secure
> > then using a command line switch for password ...
>
> Why is that? ps shows command args, righ?

Point. You won me over :)

Marc G. Fournier ICQ#7615664 IRC Nick: Scrappy
Systems Administrator @ hub.org
primary: scrappy(at)hub(dot)org secondary: scrappy(at){freebsd|postgresql}.org

In response to

Responses

Browse pgsql-hackers by date

  From Date Subject
Next Message Tatsuo Ishii 2000-01-13 01:58:45 libpq+MB/putenv(), getenv() clean up
Previous Message Bruce Momjian 2000-01-13 01:52:22 Re: [HACKERS] TODO list updated