Bug->Req #70038 [Opn->Fbk]: peer verification needs to be a global option
Edit report at https://bugs.php.net/bug.php?id=70038&edit=1
ID: 70038
Updated by: requinix@php.net
Reported by: spam2 at rhsoft dot net
Summary: peer verification needs to be a global option
-Status: Open
+Status: Feedback
-Type: Bug
+Type: Feature/Change Request
Package: Streams related
PHP Version: 5.6.10
Block user comment: N
Private report: N
New Comment:
What part of this can't be solved with stream_context_set_default()?
Previous Comments:
------------------------------------------------------------------------
[2015-07-10 09:23:04] spam2 at rhsoft dot net
Description:
------------
it's nice that you can disable certificate-verification for file_get_contents
stream_context_create() and pass the context as param
BUT BECAUSE EVERY function in php supports the stream-wrappers this is completly inconsistent
(https://bugs.php.net/bug.php?id=68344) and not useable in real life applications which may run as
clone in testing environments
you hardly want to place stream_context_create() all over your codebase and HONESTLY if 3rd party
libraries are part of the game YOU CAN NOT DO that in many cases and so you NEED a GLOBAL
configuration parameter to disable the verification via per-directory, php.ini or inside the
application like if($config['debug_mode']) ini_set('peer_verification', 0);
it's unbelieveable that after the 5.4 disaster changing the default charset with no global
option and re-write and re-test some undret thousand LOC now ith 5.6 "default_charset" two
major releases that fallout was fixed while in the same major release the major mistake was repeated
with peer verification
------------------------------------------------------------------------
--
Edit this bug report at https://bugs.php.net/bug.php?id=70038&edit=1
Thread (6 messages)