Re: Securing .pgpass File?

From: Jasen Betts <jasen(at)xnet(dot)co(dot)nz>
To: pgsql-general(at)postgresql(dot)org
Subject: Re: Securing .pgpass File?
Date: 2012-10-02 09:02:35
Message-ID: k4eajb$bp0$1@reversiblemaps.ath.cx
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-general

On 2012-10-01, Shaun Thomas <sthomas(at)optionshouse(dot)com> wrote:
> On 10/01/2012 12:19 PM, Darren Duncan wrote:
>
>> You should never put your passwords (or private keys) in source control;
>> it would be better to use the puppet/bcfg option.
>
> That was kind of my point. Puppet / Bcfg2 have the same problem. About a
> dozen people have access to our bcfg2 repo than I would want to know the
> contents of .pgpass.
>

Ccould you put a script or binary containing an encrypted .pgpass in
the repository instead? would that solve the problem?

--
⚂⚃ 100% natural

In response to

Browse pgsql-general by date

  From Date Subject
Next Message Thomas Kellerer 2012-10-02 09:10:11 Re: Can not start postgresSQL 8.4
Previous Message Boriss Redkins 2012-10-02 08:42:36 Can not start postgresSQL 8.4