Re: [RFC] PostgreSQL Access Control Extension (PGACE)

From: KaiGai Kohei <kaigai(at)kaigai(dot)gr(dot)jp>
To: Andrew Dunstan <andrew(at)dunslane(dot)net>
Cc: Tom Lane <tgl(at)sss(dot)pgh(dot)pa(dot)us>, Josh Berkus <josh(at)agliodbs(dot)com>, pgsql-hackers(at)postgresql(dot)org, glenn(dot)faden(at)sun(dot)com, james(dot)hughes(at)sun(dot)com
Subject: Re: [RFC] PostgreSQL Access Control Extension (PGACE)
Date: 2007-04-17 16:44:09
Message-ID: 4624F959.4060403@kaigai.gr.jp
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-hackers

>> For people who are already using SELinux or Trusted Solaris, making the
>> database dependent on that infrastructure might be seen as a plus, but
>> I'm not sure the rest of the world would be pleased.
>
> Even where SELinux is available it has had mixed reviews - I habitually
> disable it.

The relationship between your works and SE-PostgreSQL effort is similar
to the relationship between UNIX-DAC/Posix-ACL and SELinux on operating
systems.

I believe those are not conflicted efforts.

Thanks,
--
KaiGai Kohei <kaigai(at)kaigai(dot)gr(dot)jp>

In response to

Browse pgsql-hackers by date

  From Date Subject
Next Message Stefan Kaltenbrunner 2007-04-17 16:57:22 Re: Unhelpful debug tools on OS X :-(
Previous Message KaiGai Kohei 2007-04-17 16:32:35 Re: [RFC] PostgreSQL Access Control Extension (PGACE)