Re: How to configure client-side TLS ciphers for streaming replication?

From: Rob Sargent <robjsargent(at)gmail(dot)com>
To: Z xx <xxz030811(at)gmail(dot)com>
Cc: Laurenz Albe <laurenz(dot)albe(at)cybertec(dot)at>, pgsql-general(at)lists(dot)postgresql(dot)org
Subject: Re: How to configure client-side TLS ciphers for streaming replication?
Date: 2025-08-26 13:55:54
Message-ID: 0BE2AD55-0253-4E1F-8190-7BE91D6D0F8C@gmail.com
Views: Whole Thread | Raw Message | Download mbox | Resend email
Thread:
Lists: pgsql-general

> On Aug 26, 2025, at 5:35 AM, xx Z <xxz030811(at)gmail(dot)com> wrote:
>
> 
> Thanks for your suggestion.
> But I still want to know why we can't set "ssl_ciphers" on the client side.
> This is still considered a security issue in some cases, and PostgreSQL has mature capabilities on the master side to implement this functionality.
>
> Greetings,
> Yunfei Zhou
>

What is your attack/exposure scenario?

In response to

Responses

Browse pgsql-general by date

  From Date Subject
Next Message Tom Lane 2025-08-26 13:57:22 Re: DISABLE TRIGGER doc wrong?
Previous Message xx Z 2025-08-26 13:09:36 Re: Feature request: A method to configure client-side TLS ciphers for streaming replication