Req #63534 [Opn->Sus]: new php.ini flag disable_remote_download

From: Date: Tue, 06 Jul 2021 16:13:09 +0000
Subject: Req #63534 [Opn->Sus]: new php.ini flag disable_remote_download
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-234834@lists.php.net to get a copy of this message
Edit report at https://bugs.php.net/bug.php?id=63534&edit=1 ID: 63534 Updated by: cmb@php.net Reported by: thbley at gmail dot com Summary: new php.ini flag disable_remote_download -Status: Open +Status: Suspended Type: Feature/Change Request Package: *Configuration Issues Operating System: any PHP Version: 5.5.0alpha1 Block user comment: N Private report: N New Comment: This is rather general, and since it is supposed to affect extensions (possibly even external extensions), this needs discussion and an RFC[1]. For the time being, I suspend this ticket. [1] <https://wiki.php.net/rfc/howto> Previous Comments: ------------------------------------------------------------------------ [2012-11-15 21:50:58] thbley at gmail dot com Description: ------------ Disable downloading content only from remote computers: disable_remote_download = On|Off (default: On?) disable_remote_download = On forbids fopen("http://www.php.net/", "r"); or fopen("http://69.147.83.199/", "r"); or the IPv6 equivalent disable_remote_download = On allows fopen("http://localhost/", "r"); or fopen("http://127.0.0.1/", "r"); or the IPv6 equivalent affects: url-fopen-wrappers, (p)fsockopen, socket_bind, curl extension, imap extension, others? ------------------------------------------------------------------------ -- Edit this bug report at https://bugs.php.net/bug.php?id=63534&edit=1

« previous php.bugs (#234834) next »