Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Yes, but clients shouldn't be encouraged to refer to server paths. It's unnecessary exposure of details and makes it harder to move things around. Also I wonder if this requires extra permissions. I know COPY from server files requires extra permissions:

> COPY naming a file or command is only allowed to database superusers or users who are granted one of the roles pg_read_server_files, pg_write_server_files, or pg_execute_server_program, since it allows reading or writing any file or running a program that the server has privileges to access.



What do you mean by clients in this case?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: