Received: from maia.hub.org (unknown [200.46.204.183]) by mail.postgresql.org (Postfix) with ESMTP id C94CC63314A for ; Thu, 18 Jun 2009 04:21:42 -0300 (ADT) Received: from mail.postgresql.org ([200.46.204.86]) by maia.hub.org (mx1.hub.org [200.46.204.183]) (amavisd-maia, port 10024) with ESMTP id 77509-10 for ; Thu, 18 Jun 2009 04:21:40 -0300 (ADT) X-Greylist: from auto-whitelisted by SQLgrey-1.7.6 Received: from mail.gmx.net (mail.gmx.net [213.165.64.20]) by mail.postgresql.org (Postfix) with SMTP id C69B66329C0 for ; Thu, 18 Jun 2009 04:21:39 -0300 (ADT) Received: (qmail invoked by alias); 18 Jun 2009 07:21:37 -0000 Received: from fsgw.f-secure.com (EHLO fsopti579.localnet) [193.110.108.33] by mail.gmx.net (mp014) with SMTP; 18 Jun 2009 09:21:37 +0200 X-Authenticated: #495269 X-Provags-ID: V01U2FsdGVkX18JepZAlAsJ6kP8xrsMld2D1PIOfxbNE5CnlTNGWH GCUyqvbwS39h29 From: Peter Eisentraut To: pgsql-hackers@postgresql.org Subject: Re: GRANT ON ALL IN schema Date: Thu, 18 Jun 2009 10:21:36 +0300 User-Agent: KMail/1.11.2 (Linux/2.6.26-2-686; KDE/4.2.2; i686; ; ) Cc: Robert Haas , Guillaume Smet , Petr Jelinek , Tom Lane References: <4A37BF63.50008@pjmodos.net> <1d4e0c10906170925o5001f808j8e4e49b5c620c788@mail.gmail.com> <603c8f070906171027v29124841g1a73388f24a84540@mail.gmail.com> In-Reply-To: <603c8f070906171027v29124841g1a73388f24a84540@mail.gmail.com> MIME-Version: 1.0 Content-Type: Text/Plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit Content-Disposition: inline Message-Id: <200906181021.36835.peter_e@gmx.net> X-Y-GMX-Trusted: 0 X-FuHaFi: 0.6899999999999999 X-Virus-Scanned: Maia Mailguard 1.0.1 X-Spam-Status: No, hits=0 tagged_above=0 required=5 tests=none X-Spam-Level: X-Archive-Number: 200906/1103 X-Sequence-Number: 140158 On Wednesday 17 June 2009 20:27:20 Robert Haas wrote: > What to do about wildcards is a stickier wicket, and maybe we need to > decide that first, but I really don't think we should be discouraging > anyone from investigating this stuff and trying to come up with good > solutions. There will always be some people for whom a custom > PL/pgsql function that directly accesses the catalog tables is the > only workable answer, but we can make PostgreSQL a whole lot easier to > use by reducing the need to do that for simple cases. I'm all for investigating it. I just have my doubts that "grant on all tables in schema X" is a sufficiently general use case, even if you only concentrate on the simple cases.