public inbox for [email protected]
help / color / mirror / Atom feedFrom: David G. Johnston <[email protected]>
To: Christophe Pettus <[email protected]>
Cc: pgsql-general <[email protected]>
Subject: Re: v16 roles, SET FALSE, INHERIT FALSE, ADMIN FALSE
Date: Mon, 8 Jul 2024 12:58:06 -0700
Message-ID: <CAKFQuwaSk4Ftn52X3aup9upDkurAunTHLB1XtZb0Pkzs7TTYUA@mail.gmail.com> (raw)
In-Reply-To: <[email protected]>
References: <[email protected]>
On Mon, Jul 8, 2024 at 12:23 PM Christophe Pettus <[email protected]> wrote:
>
> This is more curiosity than anything else. In the v16 role system, is
> there actually any reason to grant membership in a role to a different
> role, but with SET FALSE, INHERIT FALSE, and ADMIN FALSE? Does the role
> granted membership gain any ability it didn't have before in that case?
>
>
That scenario is allowed but provides no useful in-server behavior. I
suppose the membership presence/absence could be given external meaning by
a DBA. Personally, I'd just add a metric on the server counting these and
alert if it is ever non-zero.
David J.
view thread (2+ messages) latest in thread
reply
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Reply to all the recipients using the --to and --cc options:
reply via email
To: [email protected]
Cc: [email protected], [email protected]
Subject: Re: v16 roles, SET FALSE, INHERIT FALSE, ADMIN FALSE
In-Reply-To: <CAKFQuwaSk4Ftn52X3aup9upDkurAunTHLB1XtZb0Pkzs7TTYUA@mail.gmail.com>
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
This inbox is served by agora; see mirroring instructions
for how to clone and mirror all data and code used for this inbox