Re: Proposal: Save user's original authenticated identity for logging

From: Jacob Champion <pchampion(at)vmware(dot)com>
To: "magnus(at)hagander(dot)net" <magnus(at)hagander(dot)net>
Cc: "stark(at)mit(dot)edu" <stark(at)mit(dot)edu>, "pgsql-hackers(at)postgresql(dot)org" <pgsql-hackers(at)postgresql(dot)org>, "sfrost(at)snowman(dot)net" <sfrost(at)snowman(dot)net>, "tgl(at)sss(dot)pgh(dot)pa(dot)us" <tgl(at)sss(dot)pgh(dot)pa(dot)us>
Subject: Re: Proposal: Save user's original authenticated identity for logging
Date: 2021-03-09 19:10:52
Message-ID: 679382aaff23627a2e53541322c7a3158d402394.camel@vmware.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-hackers

On Tue, 2021-03-09 at 18:03 +0000, Jacob Champion wrote:
> v4 removes the TODO and the extra allocation for peer_user. I'll hold
> off on the other two suggestions pending that conversation.

And v5 is rebased over this morning's SSL test changes.

--Jacob

Attachment Content-Type Size
v5-0001-test-kerberos-only-search-forward-in-logs.patch text/x-patch 2.5 KB
v5-0002-ssl-store-client-s-DN-in-port-peer_dn.patch text/x-patch 3.2 KB
v5-0003-Log-authenticated-identity-from-all-auth-backends.patch text/x-patch 28.8 KB

In response to

Responses

Browse pgsql-hackers by date

  From Date Subject
Next Message Tom Lane 2021-03-09 19:15:09 Procedures versus the "fastpath" API
Previous Message Daniel Gustafsson 2021-03-09 19:09:37 Re: Online checksums patch - once again