Skip to content
体验新版
项目
组织
正在加载...
登录
切换导航
打开侧边栏
Greenplum
Gpdb
提交
f3b507c8
G
Gpdb
项目概览
Greenplum
/
Gpdb
通知
7
Star
1
Fork
0
代码
文件
提交
分支
Tags
贡献者
分支图
Diff
Issue
0
列表
看板
标记
里程碑
合并请求
0
DevOps
流水线
流水线任务
计划
Wiki
0
Wiki
分析
仓库
DevOps
项目成员
Pages
G
Gpdb
项目概览
项目概览
详情
发布
仓库
仓库
文件
提交
分支
标签
贡献者
分支图
比较
Issue
0
Issue
0
列表
看板
标记
里程碑
合并请求
0
合并请求
0
Pages
DevOps
DevOps
流水线
流水线任务
计划
分析
分析
仓库分析
DevOps
Wiki
0
Wiki
成员
成员
收起侧边栏
关闭侧边栏
动态
分支图
创建新Issue
流水线任务
提交
Issue看板
体验新版 GitCode,发现更多精彩内容 >>
提交
f3b507c8
编写于
5月 11, 2009
作者:
M
Magnus Hagander
浏览文件
操作
浏览文件
下载
电子邮件补丁
差异文件
Edit the SSL and Kerberos parts of the release notes a bit, and add
a note about the certificates chains patch just applied.
上级
d9ebc882
变更
1
隐藏空白更改
内联
并排
Showing
1 changed file
with
41 addition
and
4 deletion
+41
-4
doc/src/sgml/release-8.4.sgml
doc/src/sgml/release-8.4.sgml
+41
-4
未找到文件。
doc/src/sgml/release-8.4.sgml
浏览文件 @
f3b507c8
<!-- $PostgreSQL: pgsql/doc/src/sgml/release-8.4.sgml,v 1.
1 2009/05/02 20:17:19 tgl
Exp $ -->
<!-- $PostgreSQL: pgsql/doc/src/sgml/release-8.4.sgml,v 1.
2 2009/05/11 09:00:10 mha
Exp $ -->
<!-- See header comment in release.sgml about typical markup -->
<sect1 id="release-8-4">
...
...
@@ -714,7 +714,7 @@
</sect4>
<sect4>
<title>Authentication</title>
<title>Authentication
and security
</title>
<itemizedlist>
<listitem>
...
...
@@ -738,6 +738,19 @@
</para>
</listitem>
<listitem>
<para>
Support <acronym>SSL</> certificate chains in server certificate
file (Andrew Gierth)
</para>
<para>
Including the full certificate chain makes the client able
to verify the certificate without having all intermediate CA
certificates present in the local store, which is often the case for
commercial CAs.
</para>
</listitem>
</itemizedlist>
</sect4>
...
...
@@ -2616,6 +2629,16 @@
</para>
</listitem>
<listitem>
<para>
Make Kerberos use the same method to determine the username of the
client as all other authentication methods (Magnus)
</para>
<para>
Previously a special Kerberos-only API was used.
</para>
</listitem>
</itemizedlist>
</sect4>
...
...
@@ -2637,11 +2660,25 @@
connections. If a root certificate is not available to use for
verification, <acronym>SSL</> connections will fail. The
<literal>sslmode</> parameter is used to enable the certificate
verification.
verification and set the level.
</para>
<para>
The default is still not to do any verification, allowing connections
to SSL enabled servers without requiring a root certificate on the
client.
</para>
</listitem>
<listitem>
<para>
Support wildcard server certificates (Magnus)
</para>
<para>
The default is still not to do any verification.
If a certificate <acronym>CN</> starts with <literal>*</>, it will
be treated as a wildcard when matching the hostname, allowing the
use of the same certificate for multiple servers.
</para>
</listitem>
...
...
编辑
预览
Markdown
is supported
0%
请重试
或
添加新附件
.
添加附件
取消
You are about to add
0
people
to the discussion. Proceed with caution.
先完成此消息的编辑!
取消
想要评论请
注册
或
登录