Skip to content

Commit cbb69a6

Browse files
doc: Clarify passphrase command reloading on Windows
When running on Windows (or EXEC_BACKEND) the SSL configuration will be reloaded on each backend start, so the passphrase command will be reloaded along with it. This implies that passphrase command reload must be enabled on Windows for connections to work at all. Document this since it wasn't mentioned explicitly, and will there add markup for parameter value to match the rest of the docs. Backpatch to all supported versions. Author: Daniel Gustafsson <daniel@yesql.se> Reviewed-by: Chao Li <li.evan.chao@gmail.com> Reviewed-by: Álvaro Herrera <alvherre@kurilemu.de> Reviewed-by: Peter Eisentraut <peter@eisentraut.org> Discussion: https://postgr.es/m/5F301096-921A-427D-8EC1-EBAEC2A35082@yesql.se Backpatch-through: 14
1 parent 427e886 commit cbb69a6

File tree

1 file changed

+7
-1
lines changed

1 file changed

+7
-1
lines changed

doc/src/sgml/config.sgml

Lines changed: 7 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1603,14 +1603,20 @@ include_dir 'conf.d'
16031603
This parameter determines whether the passphrase command set by
16041604
<varname>ssl_passphrase_command</varname> will also be called during a
16051605
configuration reload if a key file needs a passphrase. If this
1606-
parameter is off (the default), then
1606+
parameter is <literal>off</literal> (the default), then
16071607
<varname>ssl_passphrase_command</varname> will be ignored during a
16081608
reload and the SSL configuration will not be reloaded if a passphrase
16091609
is needed. That setting is appropriate for a command that requires a
16101610
TTY for prompting, which might not be available when the server is
16111611
running. Setting this parameter to on might be appropriate if the
16121612
passphrase is obtained from a file, for example.
16131613
</para>
1614+
<para>
1615+
This parameter must be set to <literal>on</literal> when running on
1616+
<systemitem class="osname">Windows</systemitem> since all connections
1617+
will perform a configuration reload due to the different process model
1618+
of that platform.
1619+
</para>
16141620
<para>
16151621
This parameter can only be set in the <filename>postgresql.conf</filename>
16161622
file or on the server command line.

0 commit comments

Comments
 (0)