Re: [HACKERS] Catalog Security WAS: Views, views, views: Summary of Arguments

2005-05-13 Thread Andrew - Supernews
On 2005-05-13, Josh Berkus wrote: > Andrew, >> It might be safer, but that doesn't hit my target at all. I am aiming at >> a zero-knowledge user, i.e. one who cannot discover anything at all >> about the db. The idea is that even if subvert can subvert a client and >> get access to the db the amou

Re: [HACKERS] Catalog Security WAS: Views, views, views: Summary of Arguments

2005-05-13 Thread Josh Berkus
Andrew, > It might be safer, but that doesn't hit my target at all. I am aiming at > a zero-knowledge user, i.e. one who cannot discover anything at all > about the db. The idea is that even if subvert can subvert a client and > get access to the db the amount of metadata they can discover is as >