使用Cloud-SQL-Proxy时,Google Cloud SQL共享或单个数据库用户帐户
由于Cloud-SQL-Proxy已经通过用户IAM帐户迫使单个用户身份验证使用数据库,并允许指定读取 /写入权限,因此也可能毫无意义地拥有每个用户的单个数据库帐户。
为了安全性,使用Cloud-SQL-Proxy时,每个开发人员有必要使用数据库用户,或者只有一个数据库用户就可以了,因为他们已经在可以输入数据库用户 /密码的时候已经对其进行了认证。我不是服务器开发人员或DBA,所以我认为最好问。
Since the cloud-sql-proxy already forces individual user authentication with the database through a users iam account, and allows specifying read / write permissions, it seems potentially pointless to also have an individual database accounts for each user as well.
For security, is it necessary to have a database user per dev when using cloud-sql-proxy, or is it fine to just have one database user, since they are already authenticated by the time they can enter a database user / password anyways. I'm not a server dev or a DBA, so I thought it best to ask.
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。

绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(1)
实际上,您拥有2个级别的权限
托管数据库引擎基于MySQL,PostgreSQL或SQL Server。所有这些数据库都有其旧用户身份验证。你必须处理。
In fact, you have 2 levels of permissions
The hosted database engine are based on MySQL, PostgreSQL or SQL Server. All those databases have their legacy user authentication in place. You have to deal with.