Re: pg_hba.conf view from the database?

From: Richard Huxton <dev(at)archonet(dot)com>
To: Fabien COELHO <coelho(at)cri(dot)ensmp(dot)fr>, PostgreSQL Developers <pgsql-hackers(at)postgresql(dot)org>
Subject: Re: pg_hba.conf view from the database?
Date: 2004-04-06 12:23:43
Message-ID: 200404061323.43910.dev@archonet.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-hackers

On Tuesday 06 April 2004 12:10, Fabien COELHO wrote:
>
> I'm thinking of allowing advices about incoherent or dangerous "host base
> authentification" configurations. I would like to access pg_hba.conf
> from within the database. However, I could not find any pg_catalog that
> would fit my needs.
>
> - am I missing something? I'm afraid not, but "yes" would be good news;-)

Not

> - is it a design principle that this information is not available,
> or just a lack of time and/or need up to know?
> would it make sense to add such a view?

I believe the thinking is that you want to check whether someone is allowed to
connect to the database without having to connect to the database. If someone
were to make bad connection attempts, they could easily run a denial of
service against your DB (whether intentionally or just due to an application
bug).

--
Richard Huxton
Archonet Ltd

In response to

Responses

Browse pgsql-hackers by date

  From Date Subject
Next Message Andrew Dunstan 2004-04-06 12:59:14 Re: [HACKERS] logging statement levels
Previous Message Karel Zak 2004-04-06 12:04:35 union vs. sort