Search Postgresql Archives

Re: Restricting access to rows?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi,

Are there any plans to make CREATE USER local to a database? (as opposed
to CLUSTER scope, as it is today)

So that in such cases as Benjamin's, the ISP could satisfy customer
requests by createing and handing over the new database instance within
the managed cluster? Even with the unrestricted CREATE USER privileges?

-R

On Fri, 2006-05-26 at 07:39 +0200, Andreas Kretschmer wrote:
> Benjamin Smith <lists@xxxxxxxxxxxxxxxxxx> schrieb:
> > How can I set up a user so that Bob can update his records, without letting 
> > Bob update Jane's records? Is it possible, say with a view or some other 
> > intermediate data type? 
> 
> You can use a VIEW to select all rows for CURRENT_USER, and then create
> RULES for this view to do INSERT, UPDATE and DELETE.
> 
> A nice framework for row-level access-control is 'veil':
> http://pgfoundry.org/projects/veil
> 
> 
> HTH, Andreas
-- 
-R


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Index of Archives]     [Postgresql Jobs]     [Postgresql Admin]     [Postgresql Performance]     [Linux Clusters]     [PHP Home]     [PHP on Windows]     [Kernel Newbies]     [PHP Classes]     [PHP Books]     [PHP Databases]     [Postgresql & PHP]     [Yosemite]
  Powered by Linux