[WIP] Document update for Logical Replication security

Started by Shinoda, Noriyoshi (PN Japan FSIP)about 8 years ago2 messageshackers
Jump to latest
#1Shinoda, Noriyoshi (PN Japan FSIP)
noriyoshi.shinoda@hpe.com

Hi, Hackers,

The attached patch adds the following information to the document on Logical Replication.
About the requirement of connection role of Logical Replication, written in 31.7 of the manual is as follows.
--
The role used for the replication connection must have the REPLICATION attribute.
--
However, the Logical Replication connection role also requires the LOGIN attribute.
And, for initial snapshots of Logical Replication, the connection role requires SELECT privilege on the replication target table, but it is not described in the manual.

Regards,

Noriyoshi Shinoda

Attachments:

logical_replication_doc.patchapplication/octet-stream; name=logical_replication_doc.patchDownload+2-1
#2Peter Eisentraut
peter_e@gmx.net
In reply to: Shinoda, Noriyoshi (PN Japan FSIP) (#1)
Re: [WIP] Document update for Logical Replication security

On 3/3/18 07:35, Shinoda, Noriyoshi wrote:

Hi, Hackers,

The attached patch adds the following information to the document on Logical Replication.
About the requirement of connection role of Logical Replication, written in 31.7 of the manual is as follows.
--
The role used for the replication connection must have the REPLICATION attribute.
--
However, the Logical Replication connection role also requires the LOGIN attribute.
And, for initial snapshots of Logical Replication, the connection role requires SELECT privilege on the replication target table, but it is not described in the manual.

Committed, thanks.

--
Peter Eisentraut http://www.2ndQuadrant.com/
PostgreSQL Development, 24x7 Support, Remote DBA, Training & Services