Re: Arguable RLS security bug, EvalPlanQual() paranoia

From: Adam Brightwell <adam(dot)brightwell(at)crunchydatasolutions(dot)com>
To: Peter Geoghegan <pg(at)heroku(dot)com>
Cc: Stephen Frost <sfrost(at)snowman(dot)net>, Pg Hackers <pgsql-hackers(at)postgresql(dot)org>, Dean Rasheed <dean(dot)a(dot)rasheed(at)gmail(dot)com>
Subject: Re: Arguable RLS security bug, EvalPlanQual() paranoia
Date: 2015-09-29 21:25:54
Message-ID: CAKRt6CQBYFr1da+z12Z9Q6=FMWotzyJhuBJquaU99XOHR+3PXQ@mail.gmail.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-hackers

On Mon, Aug 3, 2015 at 6:21 PM, Peter Geoghegan <pg(at)heroku(dot)com> wrote:
> On Mon, Aug 3, 2015 at 3:07 PM, Stephen Frost <sfrost(at)snowman(dot)net> wrote:
>> Thoughts? Trying to keep it straight-forward and provide a simple
>> solution for users to be able to address the issue, if they're worried
>> about it. Perhaps this, plus an additional paragraph which goes into
>> more detail about exactly what's going on?
>
> I'm still thinking about it, but I think you have the right idea here.

I have attached a patch for review that I believe addresses the
documentation side of this issue.

Thoughts or comments?

Thanks,
Adam

--
Adam Brightwell - adam(dot)brightwell(at)crunchydatasolutions(dot)com
Database Engineer - www.crunchydatasolutions.com

Attachment Content-Type Size
transaction-isolation-rls-docs.patch application/octet-stream 1.1 KB

In response to

Responses

Browse pgsql-hackers by date

  From Date Subject
Next Message Tom Lane 2015-09-29 21:29:38 Re: Idea for improving buildfarm robustness
Previous Message Alvaro Herrera 2015-09-29 21:13:33 Re: Idea for improving buildfarm robustness