Hacker News new | past | comments | ask | show | jobs | submit login

This is what we are targeting: http://postgrest.org/en/v7.0.0/auth.html

We are still doing a heavy assessment of whether this model can be generalised for everyone. It covers the details of both authentication and authorization - we are just building a nice/easy way to enable this for everyone (probably using the same model as Postgraphile: https://www.graphile.org/postgraphile/security/)




i have seen oracle heavily employing RLS for authorization in e-business suite. and it made things so much easier.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: