diff --git a/doc/TODO b/doc/TODO index b68774d4634..904e693cdc1 100644 --- a/doc/TODO +++ b/doc/TODO @@ -1,7 +1,7 @@ PostgreSQL TODO List ==================== Current maintainer: Bruce Momjian (bruce@momjian.us) -Last updated: Wed Aug 13 21:57:34 EDT 2008 +Last updated: Fri Aug 15 22:15:25 EDT 2008 The most recent version of this document can be viewed at http://www.postgresql.org/docs/faqs.TODO.html. @@ -98,6 +98,12 @@ Administration http://archives.postgresql.org/pgsql-hackers/2008-04/msg01875.php http://archives.postgresql.org/pgsql-hackers/2008-05/msg00000.php +* Prevent query cancel packets from being replayed by an attacker, + especially when using SSL + + http://archives.postgresql.org/pgsql-hackers/2008-08/msg00345.php + + * Configuration files o Allow pg_hba.conf to specify host names along with IP addresses diff --git a/doc/src/FAQ/TODO.html b/doc/src/FAQ/TODO.html index 0086c13a452..1ec29ee0e55 100644 --- a/doc/src/FAQ/TODO.html +++ b/doc/src/FAQ/TODO.html @@ -8,7 +8,7 @@
Current maintainer: Bruce Momjian (bruce@momjian.us)
-Last updated: Wed Aug 13 21:57:34 EDT 2008
+Last updated: Fri Aug 15 22:15:25 EDT 2008
The most recent version of this document can be viewed at
http://www.postgresql.org/docs/faqs.TODO.html.
@@ -91,6 +91,10 @@ first. There is also a developer's wiki at
http://archives.postgresql.org/pgsql-hackers/2008-04/msg01875.php http://archives.postgresql.org/pgsql-hackers/2008-05/msg00000.php +
+http://archives.postgresql.org/pgsql-hackers/2008-08/msg00345.php