Martin Pitt <[EMAIL PROTECTED]> writes: > At least the certificate could be permitted to be owned/in group root. > I cannot see how this should weaken the certificate's security.
Postgres doesn't run as root, hence could not use such a certificate unless it was world-readable. Or should I infer from this that you've also patched out that safety check? regards, tom lane ---------------------------(end of broadcast)--------------------------- TIP 1: if posting/reading through Usenet, please send an appropriate subscribe-nomail command to [EMAIL PROTECTED] so that your message can get through to the mailing list cleanly