Andrew Dunstan <andrew(at)dunslane(dot)net> writes:
> It might well be useful for us to look at drafting an SELinux policy,
There already is one. However, I'm not sure that it's ever been
reviewed by anyone who's Postgres-savvy (I certainly haven't looked
at it:-(). It would be useful for that to happen.
Another thing is that we could stand to have some documentation on how
to adjust the policy for local needs --- in particular, supporting
tablespaces that're outside /var/lib/pgsql.
regards, tom lane
In response to
pgsql-hackers by date
|Next:||From: Tom Lane||Date: 2007-12-29 19:20:31|
|Subject: Re: Spoofing as the postmaster |
|Previous:||From: Joshua D. Drake||Date: 2007-12-29 18:52:12|
|Subject: Re: Spoofing as the postmaster|