Re: Discussion for RFC: Set appropriate/better defaults.
| From: | Yasuo Ohgaki | Date: | Tue, 27 Jan 2015 02:35:24 +0000 |
| Subject: | Re: Discussion for RFC: Set appropriate/better defaults. | ||
| References: | 1 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-81192@lists.php.net to get a copy of this message | ||
Hi all,
On Tue, Jan 27, 2015 at 11:06 AM, Yasuo Ohgaki <yohgaki@ohgaki.net> wrote:
> - session.hash_function=1 : Use SHA1 rather than MD5
I realized that we should remove hashing for better performance.
Since session ID is generated from crypt secure RNG (/dev/urandom by
default),
simply converting the data into text is enough. Hashing is _slow_.
Any comments?
Regards,
--
Yasuo Ohgaki
yohgaki@ohgaki.net