[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Best practice for allowing access to a postgres db



On Fri, Jun 17, 2005 at 09:22:55AM +0200, Martin Pitt wrote:
> Hi!
> 
> Thanks to Gunnar for bringing this to my attention.
> 
[....]
> 
> An idea already came up earlier on d-devel. What about a new tool in
> postgresql-common that adds or removes a specific web application
> entry to the authentication system? It could look like
> 
>   pg_add_app --cluster 8.0/main --auth password --ip 127.0.0.1/32 yourwebappdb yourwebappuser
>   pg_remove_app --cluster 8.0/main yourwebappdb yourwebappuser
> 
> The last two parameters are mandatory, the others could get
> reasonable defaults and were optional. Of course we should discuss
> that interface a little bit further, but what do you think about the
> general idea? In any case we should avoid package specific scripts to
> alter pg_hba.conf.
I would support it.

  Uwe

-- 
  MMK GmbH, Universitaetsstr. 11, 58097 Hagen
  Uwe.Steinmann@mmk-hagen.de
  Tel: +2331 840446    Fax: +2331 843920

Attachment: signature.asc
Description: Digital signature


Reply to: