BTW, what is the best current practice to pass ->connect ()
        $password to a command-line Perl script?

        Both specifying it via a command-line argument or via an
        environment variable (DBI_PASS) is insecure, as on some systems
        this information could easily be seen by the other users on the
        same host.

        Perhaps, some variation on Net::Netrc should be used instead?

        My primary interests currently are PostgreSQL, which can use
        Kerberos, and SQLite, which uses filesystem access rights
        instead, but just for the case…

-- 
FSF associate member #7257

Attachment: pgpRWXjGdg6Pu.pgp
Description: PGP signature

Reply via email to