Doc #74959 [Opn->Csd]: Document openssl_x509_check_private_key() $key parameter caveat
| From: | salathe@php.net | Date: | Thu, 20 Jul 2017 21:11:40 +0000 |
| Subject: | Doc #74959 [Opn->Csd]: Document openssl_x509_check_private_key() $key parameter caveat | ||
| References: | 1 | Groups: | php.doc.bugs |
| Request: | Send a blank email to doc-bugs+get-14854@lists.php.net to get a copy of this message | ||
Edit report at https://bugs.php.net/bug.php?id=74959&edit=1
ID: 74959
Updated by: salathe@php.net
Reported by: salathe@php.net
Summary: Document openssl_x509_check_private_key() $key
parameter caveat
-Status: Open
+Status: Closed
Type: Documentation Problem
Package: Documentation problem
PHP Version: Irrelevant
-Assigned To:
+Assigned To: salathe
Block user comment: N
Private report: N
New Comment:
This bug has been fixed in the documentation's XML sources. Since the
online and downloadable versions of the documentation need some time
to get updated, we would like to ask you to be a bit patient.
Thank you for the report, and for helping us make our documentation better.
Previous Comments:
------------------------------------------------------------------------
[2017-07-20 21:10:33] salathe@php.net
Automatic comment from SVN on behalf of salathe
Revision: http://svn.php.net/viewvc/?view=revision&revision=342690
Log: add warning about key parameter of openssl_x509_check_private_key() (doc bug #74959)
------------------------------------------------------------------------
[2017-07-20 21:08:04] salathe@php.net
Description:
------------
The $key parameter does not necessarily need to be a private key for the function to return true.
The OpenSSL docs have a "BUGS" section for this function:
"The check_private_key functions don't check if k itself is indeed a private key or not.
It merely compares the public materials (e.g. exponent and modulus of an RSA key) and/or key
parameters (e.g. EC params of an EC key) of a key pair. So if you pass a public key to these
functions in k, it will return success."
- from https://www.openssl.org/docs/manmaster/man3/X509_check_private_key.html
This should be incorporated into our docs.
------------------------------------------------------------------------
--
Edit this bug report at https://bugs.php.net/bug.php?id=74959&edit=1