-
+
Operating System Environment
If running in FreeBSD jails by enabling
sysconf>'s
security.jail.sysvipc_allowed>, postmaster>s
running in different jails should be run by different operating system
- users. This improves security because it prevents one jail from
- interfering with shared memory or semaphores in another, and it
- allows the PostgreSQL IPC cleanup code to function properly.
+ users. This improves security because it prevents non-root users
+ from interfering with shared memory or semaphores in different jail, and it
+ allows the PostgreSQL IPC cleanup code to function properly.
(In FreeBSD 6.0 and later the IPC cleanup code doesn't properly detect
processes in other jails, preventing the running of postmasters on the
same port in different jails.)