Point-in-time recovery, storage snapshots, and base backups keep the
PostgreSQL system identifier and database oid, so the instance claim added
in #1632 matches and the copy serves without adoption. Any import authority
closed after the backup point is open again on the copy. The security review
notes (products/breg/SECURITY-REVIEW-NOTES.md, Instance claim) record this
as an accepted residual and BREG-SEC-116 is scoped to logical restores.
Ask: a one-command post-restore step, for example
bregctl import-authority close --all-open --reason <text> under the
migration role, and a mandatory line in the restore runbook (#1415) that runs
it before serving.
Point-in-time recovery, storage snapshots, and base backups keep the
PostgreSQL system identifier and database oid, so the instance claim added
in #1632 matches and the copy serves without adoption. Any import authority
closed after the backup point is open again on the copy. The security review
notes (
products/breg/SECURITY-REVIEW-NOTES.md, Instance claim) record thisas an accepted residual and BREG-SEC-116 is scoped to logical restores.
Ask: a one-command post-restore step, for example
bregctl import-authority close --all-open --reason <text>under themigration role, and a mandatory line in the restore runbook (#1415) that runs
it before serving.