Is there any security risk in the postgresql superuser having a password? I installed a Linux distro recently and had it install Postgresql. It automatically set up the postgres account; the account was set up with no password. I could of course create a password, but it's not clear to me that's a good thing from a security standpoint.