First Rule in Securing Postgres: Don’t Be Dumb

A very popular standalone NoSQL database solution came under criticism about their security posture this week. It’s not the kind of publicity a database company – or any company for that matter – relishes. Although the vulnerability seems to have been less a problem with the core database than with insecure default settings, it’s worth remembering that, no matter what database you use, properly securing the database is an essential configuration step. So, it seemed like a good time to write up a few tips on how to properly secure your PostgreSQL deployment.

