Initial commit with what I think we need
This commit is contained in:
10
src/pg/sql/90_permissions.sql
Normal file
10
src/pg/sql/90_permissions.sql
Normal file
@@ -0,0 +1,10 @@
|
||||
-- Placeholder for permission tweaks at creation time.
|
||||
-- Make sure by default there are no permissions for publicuser
|
||||
-- NOTE: this happens at extension creation time, as part of an implicit transaction.
|
||||
-- REVOKE ALL PRIVILEGES ON SCHEMA cdb_observatory FROM PUBLIC, publicuser CASCADE;
|
||||
|
||||
-- Grant permissions on the schema to publicuser (but just the schema)
|
||||
-- GRANT USAGE ON SCHEMA cdb_crankshaft TO publicuser;
|
||||
|
||||
-- Revoke execute permissions on all functions in the schema by default
|
||||
-- REVOKE EXECUTE ON ALL FUNCTIONS IN SCHEMA cdb_observatory FROM PUBLIC, publicuser;
|
||||
Reference in New Issue
Block a user