Re: [HACKERS] minor feature request: Secure defaults during function creation

2006-09-16 Thread Tom Lane
"Jim C. Nasby" <[EMAIL PROTECTED]> writes: > On Thu, Sep 14, 2006 at 10:24:43AM -0400, Pascal Meunier wrote: >> My request is to allow changing default permissions for function creation, a >> la "umask", or at least not give PUBLIC execute permissions by default. > Hrm... do we have any other obje

Re: [HACKERS] minor feature request: Secure defaults during function creation

2006-09-16 Thread Jim C. Nasby
On Thu, Sep 14, 2006 at 10:24:43AM -0400, Pascal Meunier wrote: > First, I asked about this on #postgresql, and I realize that this request > would be a low priority item. Yet, it would be an improvement for security > reasons. > > When creating a function using EXTERNAL SECURITY DEFINER, by defa

[HACKERS] minor feature request: Secure defaults during function creation

2006-09-16 Thread Pascal Meunier
First, I asked about this on #postgresql, and I realize that this request would be a low priority item. Yet, it would be an improvement for security reasons. When creating a function using EXTERNAL SECURITY DEFINER, by default PUBLIC has execute privileges on it. That's unexpected given that whe