ID: 16155
Updated by: rlm@pricegrabber.com
Reported By: rlm@pricegrabber.com
Status: Open
Bug Type: PHP options/info functions
Operating System: RH 7.2
PHP Version: 4.1.2
New Comment:
See my earlier comments but the possibility of the combination of
track_vars=on and register_globals=off is entirely desirable. That is,
we want PHP to pick up variables from the URL, POST, cookies, etc. into
HTTP_GET_VARS etc. WITHOUT importing them into the namespace.
Previous Comments:
------------------------------------------------------------------------
[2002-07-10 14:09:36] philip@php.net
The various places are the: variables_order, register_globals, and
predefind variables manual entries.
track_vars documentation states it's always on as of 4.0.3, do you feel
this should be reworded? I'll add a reference to variables_order
there.
This bug remains open and I believe remains until a solution is found
that doesn't affect BC. Obviously some concern exists, see that
thread. There was a time when the register_globals directive didn't
even exist.
------------------------------------------------------------------------
[2002-07-10 13:46:01] rlm@pricegrabber.com
In WHICH "various places" is this misbehavior documented? And why is
it NOT documented in the one place it should be mandatory -- the
"track_vars" documentation?
http://www.php.net/manual/en/configuration.php#ini.track-vars
And finally -- since you brought it up -- why isn't track_vars
functional obsolescence documented along with that variable?
I've said it before, and in this same bug -- this behavior amounts to
poor design under the "least surprise" principle.
------------------------------------------------------------------------
[2002-07-10 13:13:10] philip@php.net
This behavior is documented in various places and is expected. When
the variables_order documentation says "PHP will completely ignore
them" it really means it. There was talk of adding additional
directives but nothing came of it (yet?). See:
http://marc.theaimsgroup.com/?l=php-dev&m=101194050211581
http://marc.theaimsgroup.com/?l=php-dev&m=101194642021528
On a related note, track_vars doesn't do anything as of PHP 4.0.3.
Also, even if variables_order lacks an E you can still use getenv() and
the E info is still shown in phpinfo(). So I guess PHP never
completely ignores E :)
------------------------------------------------------------------------
[2002-07-10 10:00:06] ftm@gtd.es
I've experienced the same problem with Win2000Pro + Apache 1.3.26 + PHP
4.2.1
Hope this can be useful... and please fix it soon ;)
Fermí.
------------------------------------------------------------------------
[2002-03-19 18:56:10] rlm@pricegrabber.com
I have confirmed this using just the /etc/php.ini file. Unless
variables_order is set for the corresponding variable, the superglobal
doesn't get set.
------------------------------------------------------------------------
The remainder of the comments for this report are too long. To view
the rest of the comments, please view the bug report online at
http://bugs.php.net/16155
--
Edit this bug report at http://bugs.php.net/?id=16155&edit=1