PHP 8.1 and OpenSSL
| From: | Christoph M. Becker | Date: | Wed, 18 Jan 2023 12:20:41 +0000 |
| Subject: | PHP 8.1 and OpenSSL | ||
| Groups: | php.internals php.internals.win | ||
| Request: | Send a blank email to internals+get-119305@lists.php.net to get a copy of this message | ||
Hi all!
While the official builds for PHP 8.2 already use OpenSSL 3.0, the PHP
8.1 builds are still using OpenSSL 1.1.1. However, OpenSSL 1.1.1 is
only supported till 2023-09-11[1], while PHP 8.1 is supported till
2024-11-25[2]. Although I don't like bumping the OpenSSL version in the
middle of PHP 8.1's lifetime, I suppose it is necessary to avoid falling
behind security support. And if we do that bump, we better do it sooner
than later.
So, if there are no unforeseen problems, I suggest to build PHP
8.1.16RC1 with OpenSSL 3.0 (PHP 8.1.15RC1 has already been built with
OpenSSL 1.1.1).
Thoughts? Objections?
[1] <https://www.openssl.org/policies/releasestrat.html>
[2] <https://www.php.net/supported-versions.php>
--
Christoph M. Becker