summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorMichael Paquier <michael@paquier.xyz>2022-05-30 10:50:44 +0900
committerMichael Paquier <michael@paquier.xyz>2022-05-30 10:50:44 +0900
commitbc2f04e4f26e303041c72341c0dc2b6be53b156e (patch)
treea7cb91ccb001025d5fa9cdef3d7b6de9842cd47f
parentae236bf660f54dd8bedc94d601fb3e38b8ab2341 (diff)
doc: Reword description of roles able to view track_activities's info
The information generated when track_activities is accessible to superusers, roles with the privileges of pg_read_all_stats, as well as roles one has the privileges of. The original text did not outline the last point, while the change done in ac1ae47 was unclear about the second point. Per discussion with Nathan Bossart. Discussion: https://postgr.es/m/20220521185743.GA886636@nathanxps13 Backpatch-through: 10
-rw-r--r--doc/src/sgml/config.sgml8
1 files changed, 4 insertions, 4 deletions
diff --git a/doc/src/sgml/config.sgml b/doc/src/sgml/config.sgml
index 2e11efdbfed..46df5748f27 100644
--- a/doc/src/sgml/config.sgml
+++ b/doc/src/sgml/config.sgml
@@ -6963,10 +6963,10 @@ COPY postgres_log FROM '/full/path/to/logfile.csv' WITH csv;
executing command of each session, along with the time when
that command began execution. This parameter is on by
default. Note that even when enabled, this information is not
- visible to all users, only to superusers, members of the
- <literal>pg_read_all_stats</literal> role and the user owning
- the session being reported on, so it should not represent a
- security risk.
+ visible to all users, only to superusers, roles with privileges of the
+ <literal>pg_read_all_stats</literal> role and the user owning the
+ sessions being reported on (including sessions belonging to a role they
+ have the privileges of), so it should not represent a security risk.
Only superusers can change this setting.
</para>
</listitem>