Re: OpenSSL and Phar
| From: | greg at chiaraquartet dot net | Date: | Sun, 22 Jun 2008 20:50:00 +0000 |
| Subject: | Re: OpenSSL and Phar | ||
| Groups: | php.internals | ||
| Request: | Send a blank email to internals+get-38522@lists.php.net to get a copy of this message | ||
Hi,
Steph, look more closely, the libraries are only used if openssl is built statically. Otherwise,
phar directly calls openssl_verify or openssl_sign.
Greg
-----Original Message-----
From: "Steph Fox" <steph@phparch.com>
Subj: OpenSSL and Phar
Date: Sun Jun 22, 2008 4:32 pm
Size: 701 bytes
To: "Greg Beaver" <greg@chiaraquartet.net>,"Marcus Boerger"
<mail@marcus-boerger.de>
cc: "internals" <internals@lists.php.net>
Hi Greg, all,
It seems we don't use the openssl extension API at all in ext/phar, just the
actual OpenSSL headers and libs. That means Phar with OpenSSL support can be
both built and run without ext/openssl being built at all, but requires
third-party libs (under Windows at least - ssleay32.dll and libeay32.dll) in
the same way that ext/openssl does.
I'm wondering if we shouldn't have a separate configuration option for
this - something like --enable-phar-ssl - rather than testing
for --with-openssl in the config line.
The chief advantage of this approach is that it doesn't matter whether
phar-ssl is built as shared or not, since the dependency is outside PHP.
Thoughts?
- Steph