Skip site navigation (1) Skip section navigation (2)

Re: function body actors (was: [PERFORM] viewing source code)

From: Andrew Sullivan <ajs(at)crankycanuck(dot)ca>
To: pgsql-hackers(at)postgresql(dot)org
Subject: Re: function body actors (was: [PERFORM] viewing source code)
Date: 2007-12-21 21:47:46
Message-ID: 20071221214746.GG3864@crankycanuck.ca (view raw or flat)
Thread:
Lists: pgsql-hackerspgsql-performance
On Fri, Dec 21, 2007 at 04:19:51PM -0500, Tom Lane wrote:
> > 2.	Protect the content of a field from _some_ users on a given system,
> 
> I would argue that (2) is reasonably well served today by setting up
> separate databases for separate users. 

I thought actually this was one of the use-cases we were hearing.  Different
people using the same database (because the same data), with rules about the
different staff being able to see this or that function body.  I can easily
imagine such a case, for instance, in a large organization with different
departments and different responsibilities.  It seems a shame that the only
answer we have there is, "Give them different databases."  

I actually think organizations that think keeping function bodies secret
like this to be a good idea are organizations that will eventually make
really stupid mistakes.  But that doesn't mean they're not under the legal
requirement to do this.  For instance, my current employer has
(externally-mandated) organizational conflict of interest rules that require
all disclosure to be done exclusively as "need to know".  Under the right
(!) legal guidance, such a requirement could easily lead to rules about
function-body disclosure.  From my point of view, such a use case is way
more compelling than function-body encryption (although I understand that
one too).

A


In response to

Responses

pgsql-performance by date

Next:From: Joshua D. DrakeDate: 2007-12-21 22:07:08
Subject: Re: function body actors (was: [PERFORM] viewing source code)
Previous:From: Tom LaneDate: 2007-12-21 21:19:51
Subject: Re: function body actors (was: [PERFORM] viewing source code)

pgsql-hackers by date

Next:From: Joshua D. DrakeDate: 2007-12-21 22:07:08
Subject: Re: function body actors (was: [PERFORM] viewing source code)
Previous:From: Tom LaneDate: 2007-12-21 21:19:51
Subject: Re: function body actors (was: [PERFORM] viewing source code)

Privacy Policy | About PostgreSQL
Copyright © 1996-2014 The PostgreSQL Global Development Group