Bug #75407 [Com]: No warning thrown for a nonexistant cipher method
Edit report at https://bugs.php.net/bug.php?id=75407&edit=1
ID: 75407
Comment by: spam2 at rhsoft dot net
Reported by: faxitnow at yahoo dot ca
Summary: No warning thrown for a nonexistant cipher method
Status: Closed
Type: Bug
Package: OpenSSL related
PHP Version: Irrelevant
Block user comment: N
Private report: N
New Comment:
[harry@rh:~]$ php -r "print_r(openssl_get_cipher_methods());" | grep -i xts
[10] => AES-128-XTS
[29] => AES-256-XTS
[111] => aes-128-xts
[134] => aes-256-xts
"the manual on the cipher methods http://php.net/manual/en/function.openssl-get-cipher-methods.php
does not show any instances of XTS anywhere" don't matter because it may also depend on
openssl - that's why openssl_get_cipher_methods() at all
hence your "PHP Version: Irrelevant" is nonsense
Previous Comments:
------------------------------------------------------------------------
[2017-10-19 13:10:53] faxitnow at yahoo dot ca
The bug report was submitted in error, and that the running of the script resulted in bad output. I
will investigate this further to try and determine why the OP, myself and the online testing also
produced the same result.
------------------------------------------------------------------------
[2017-10-19 12:50:13] faxitnow at yahoo dot ca
I expected to get a warning back but as stated in my report, I did not receive one.
------------------------------------------------------------------------
[2017-10-19 12:44:08] peehaa@php.net
What warning do you expect?
Am I missing something? The bug report expects:
> Warning: openssl_encrypt(): Unknown cipher algorithm in path/to/file.php on line X
But it is actually not unknown.
------------------------------------------------------------------------
[2017-10-19 12:27:17] faxitnow at yahoo dot ca
In response to: "Are you saying it's not listed for you and it doesn't give you an
error?".
When I var_dump'ed using var_dump(openssl_get_cipher_methods()); it does show
"AES-256-XTS" in the list but I received no warning back when running the test script as
posted. I'm on Windows 7 on 5.6.23. Yet have tested this online at http://phptester.net/ and it too produced the same results as mine.
------------------------------------------------------------------------
[2017-10-19 12:16:48] faxitnow at yahoo dot ca
Seeing the added comments/activity in the bug report, the manual on the cipher methods http://php.net/manual/en/function.openssl-get-cipher-methods.php
does not show any instances of "XTS" anywhere.
------------------------------------------------------------------------
The remainder of the comments for this report are too long. To view
the rest of the comments, please view the bug report online at
https://bugs.php.net/bug.php?id=75407
--
Edit this bug report at https://bugs.php.net/bug.php?id=75407&edit=1
Thread (8 messages)