Newsgroups: php.internals Path: news.php.net Xref: news.php.net php.internals:33092 Return-Path: Mailing-List: contact internals-help@lists.php.net; run by ezmlm Delivered-To: mailing list internals@lists.php.net Received: (qmail 93578 invoked by uid 1010); 11 Nov 2007 21:29:19 -0000 Delivered-To: ezmlm-scan-internals@lists.php.net Delivered-To: ezmlm-internals@lists.php.net Received: (qmail 93562 invoked from network); 11 Nov 2007 21:29:19 -0000 Received: from unknown (HELO lists.php.net) (127.0.0.1) by localhost with SMTP; 11 Nov 2007 21:29:19 -0000 Authentication-Results: pb1.pair.com header.from=david.coallier@gmail.com; sender-id=pass; domainkeys=bad Authentication-Results: pb1.pair.com smtp.mail=david.coallier@gmail.com; spf=pass; sender-id=pass Received-SPF: pass (pb1.pair.com: domain gmail.com designates 64.233.162.239 as permitted sender) DomainKey-Status: bad X-DomainKeys: Ecelerity dk_validate implementing draft-delany-domainkeys-base-01 X-PHP-List-Original-Sender: david.coallier@gmail.com X-Host-Fingerprint: 64.233.162.239 nz-out-0506.google.com Received: from [64.233.162.239] ([64.233.162.239:32872] helo=nz-out-0506.google.com) by pb1.pair.com (ecelerity 2.1.1.9-wez r(12769M)) with ESMTP id D5/1A-19640-E2477374 for ; Sun, 11 Nov 2007 16:29:18 -0500 Received: by nz-out-0506.google.com with SMTP id x7so736391nzc for ; Sun, 11 Nov 2007 13:29:15 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:sender:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references:x-google-sender-auth; bh=EZcscZrKC76nLXd8SrfotNbbHuwPwSqLPWMqaL2hZMU=; b=UDuaZZjiN9njkAsJYqDVq8k39lf7dcpJi4n6svwqyQmITAE4fHBr2PGss5k/Ixqh1vVqfASwc2Ka+tPlQHUon2ofZpL+qbzV3aQxhC6OGhAb+0B6EYLMHEdB4XzE3YnbCGlfaVRZ6D9dJaZm9hBBZBjh/FvX25WszBBqyySIOCM= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:sender:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references:x-google-sender-auth; b=An+041dLfx8yDUXzPloDZ7TwpUSOmXMCbbvLgJTaimaxO4BAzyC6ZmZnrPl0vsGcFM0F05Fhi4fr32Jbo6nSTG8wAwb+5Oi32FlkKlsqKBR/rqlPg3TOkraBcDQsCmp3duPCIlEQ0sA6wKMpUBzmS4XVHnaGhXSjWBz1DD/3Ui4= Received: by 10.142.52.9 with SMTP id z9mr422025wfz.1194816555106; Sun, 11 Nov 2007 13:29:15 -0800 (PST) Received: by 10.143.41.16 with HTTP; Sun, 11 Nov 2007 13:29:15 -0800 (PST) Message-ID: Date: Sun, 11 Nov 2007 16:29:15 -0500 Sender: david.coallier@gmail.com To: "Stanislav Malyshev" Cc: "PHP Internals" In-Reply-To: <47363057.70209@zend.com> MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 7bit Content-Disposition: inline References: <47363057.70209@zend.com> X-Google-Sender-Auth: abc1479f99950a50 Subject: Re: [PHP-DEV] Question about Core inclusion From: davidc@php.net ("David Coallier") On Nov 10, 2007 5:27 PM, Stanislav Malyshev wrote: > > Hey there all, over the past few days I was thinkering over something > > that I consider could be a good addition to the core or actually to > > the php distribution. PhpSecInfo, the project by Ed Finkler. I was > > But isn't it a set of PHP scripts? If so, what would be the value of > making it an extension? There are a lot of very useful PHP scripts, > which aren't part of core PHP. Yes there are a lot of very useful packages, but I think this one could be very good but not only for the users but also php's general security image/reputation. Yes many settings can be set in a way that make PHP less safe than what it can be and helping our users getting towards a more secure application and dev process would be optimal and very cool. Simple in ext/ where one could go like --enable-security-info .... But yeah, I won't be mad if we decide it's a bit useless for the core but I think it would be a good "feature" add for PHP6 and perhaps even a bit of press coverage about php's security, but good press :P > -- > Stanislav Malyshev, Zend Software Architect > stas@zend.com http://www.zend.com/ > (408)253-8829 MSN: stas@zend.com > -- David Coallier, Founder & Software Architect, Agora Production (http://agoraproduction.com) 51.42.06.70.18