From owner-freebsd-questions@FreeBSD.ORG Tue Aug 13 14:30:09 2013 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1 with cipher ADH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTP id 0083E23A for ; Tue, 13 Aug 2013 14:30:08 +0000 (UTC) (envelope-from ohartman@zedat.fu-berlin.de) Received: from outpost1.zedat.fu-berlin.de (outpost1.zedat.fu-berlin.de [130.133.4.66]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mx1.freebsd.org (Postfix) with ESMTPS id B3D142AA7 for ; Tue, 13 Aug 2013 14:30:08 +0000 (UTC) Received: from inpost2.zedat.fu-berlin.de ([130.133.4.69]) by outpost1.zedat.fu-berlin.de (Exim 4.80.1) for freebsd-questions@freebsd.org with esmtp (envelope-from ) id <1V9Fbq-001OId-DW>; Tue, 13 Aug 2013 16:30:06 +0200 Received: from telesto.geoinf.fu-berlin.de ([130.133.86.198] helo=telesto) by inpost2.zedat.fu-berlin.de (Exim 4.80.1) for freebsd-questions@freebsd.org with esmtpsa (envelope-from ) id <1V9Fbq-001ldc-BK>; Tue, 13 Aug 2013 16:30:06 +0200 Date: Tue, 13 Aug 2013 16:30:01 +0200 From: "O. Hartmann" To: FreeBSD Questions Subject: trouble with PostgreSQL 9.2 on FreeBSD 10.0-CURRENT: superuser can not autheticate anymore with md5 password hash set Message-ID: <20130813163001.3194750f@telesto> Organization: FU Berlin X-Mailer: Claws Mail 3.9.2 (GTK+ 2.24.19; amd64-portbld-freebsd10.0) Mime-Version: 1.0 Content-Type: multipart/signed; micalg=PGP-SHA1; boundary="Sig_/swA_4qKEDaL5ZLXHRBuq13B"; protocol="application/pgp-signature" X-Originating-IP: 130.133.86.198 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 13 Aug 2013 14:30:09 -0000 --Sig_/swA_4qKEDaL5ZLXHRBuq13B Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: quoted-printable For the past I ran PostgreSQL 9.2 servers on FreeBSD 10.0-CURRENT successfully. But by now, out of the blue, login as the database's supervisor "pgsql" remotely isn't possible any more. The appropriate lines in pg_hba.conf are: local all pgsql md5 hostssl all pgsql 0.0.0.0/0 md5 The funny thing is: when login locally without providing a password (swap md5 to trust in the "local" line) and setting the password for the role "pgsql" via ALTER ROLE pgsql ENCRYPTED PASSWORD 'FooMe"; or doing the same via pgadmin3 from remotely by also swapping md5 to trust in the line "hostssl" for global network, it seems I could alter/change the password for the supervisor pgsql. But restoring the password check by setting back "md5" leaves me locked out! By the way, this strange behaviour occurs on ALL(!) PostgreSQL 9.2 servers running on FreeBSD 10.0-CURRENT boxes. Ports databases/postgresql-XXX as well as FreeBSD is as of the latest sources and up to date. What is going wrong? Please CC me. Regards, Oliver --Sig_/swA_4qKEDaL5ZLXHRBuq13B Content-Type: application/pgp-signature; name=signature.asc Content-Disposition: attachment; filename=signature.asc -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.20 (FreeBSD) iQEcBAEBAgAGBQJSCkLuAAoJEOgBcD7A/5N8zF0H/1oOOzoRSPTm54m2kldAuoX5 zPixNOVpaJCrFEeDaQ9AkhSSoOL3mWjqKZepCUSTwuLqOcMhPPNsASuO+UwwIAxx tueA5cCM4X92O1PSUg/gGXpI9CqkzukF0KdD0Z74Cxfs+m5BNLd7i6JUjmBUDXsK aclLe4/vm8hRYhu48GE3TbBPSDsr8P1j1bzcToWy0Nyjt7lJQ0C6/7OTgU8IX893 f7CB2avSbRUJ2FgrHgswKCS6KPLv1BLkllY7L7KeoPu7o+w5LupAu7gq8gZVINXm 3Hf1yEA4OXRtNgHyWcB+qkPXnP6p5kwvuiWdV54nclG395qOaK73m+OWXYTOk2o= =XAzA -----END PGP SIGNATURE----- --Sig_/swA_4qKEDaL5ZLXHRBuq13B--