> The weakness of this solution is that your password might be send in the
> clear through the network as the encription ocurrs in the database. I
> suggest the encryption be enforced at the application or secure the
> connection with ssl.

Absolutely -- and understood.  I should have been more specific in my
request for comments since I was only thinking about
PostgreSQL-specific issues related to what I presented to the initial
requestor.

Thanks for your reply!

-- Gary Chambers

/* Nothing fancy and nothing Microsoft! */

-- 
Sent via pgsql-sql mailing list (pgsql-sql@postgresql.org)
To make changes to your subscription:
http://www.postgresql.org/mailpref/pgsql-sql

Reply via email to