Re: [RFC] samesite cookie implementation
| From: | Marco Pivetta | Date: | Tue, 18 Jul 2017 14:00:07 +0000 |
| Subject: | Re: [RFC] samesite cookie implementation | ||
| References: | 1 2 3 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-99900@lists.php.net to get a copy of this message | ||
On Tue, Jul 18, 2017 at 3:50 PM, lists@rhsoft.net <lists@rhsoft.net> wrote:
> i don't share your optinion, especially talking about 'should be
> deprecated' where i get the feeling some peoples hobby is deprecate working
> things
>
> comparing cookie params with encryption is hopefully just kidding
>
It could be a "hello world" function - same stuff.
Also, yes, cookies are as security-sensitive stuff as crypto, if not often
more (since crypto is usually handled at webserver level, and direct usage
of openssl is more "rare")
Marco Pivetta
http://twitter.com/Ocramius
http://ocramius.github.com/