结论: pg无法直接在字段级别上做权限控制, 可通过视图实现
示例:
- 创建账号
create user popo password 'p1o1p2o2';
- 将可访问字段抽成视图
CREATE VIEW "oo"."customer_view" AS SELECT customer.id,
customer.level,
customer.status
FROM oo.customer;
- 对模式和视图授权
grant usage on schema oo to popo;
grant select on oo.customer_view to popo;
网友评论