Newsgroups: php.internals Path: news.php.net Xref: news.php.net php.internals:91675 Return-Path: Mailing-List: contact internals-help@lists.php.net; run by ezmlm Delivered-To: mailing list internals@lists.php.net Received: (qmail 3595 invoked from network); 15 Mar 2016 17:14:03 -0000 Received: from unknown (HELO lists.php.net) (127.0.0.1) by localhost with SMTP; 15 Mar 2016 17:14:03 -0000 Authentication-Results: pb1.pair.com header.from=scott@paragonie.com; sender-id=pass Authentication-Results: pb1.pair.com smtp.mail=scott@paragonie.com; spf=pass; sender-id=pass Received-SPF: pass (pb1.pair.com: domain paragonie.com designates 209.85.214.172 as permitted sender) X-PHP-List-Original-Sender: scott@paragonie.com X-Host-Fingerprint: 209.85.214.172 mail-ob0-f172.google.com Received: from [209.85.214.172] ([209.85.214.172:36447] helo=mail-ob0-f172.google.com) by pb1.pair.com (ecelerity 2.1.1.9-wez r(12769M)) with ESMTP id AF/70-00207-9D248E65 for ; Tue, 15 Mar 2016 12:14:02 -0500 Received: by mail-ob0-f172.google.com with SMTP id m7so24068525obh.3 for ; Tue, 15 Mar 2016 10:14:01 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=paragonie-com.20150623.gappssmtp.com; s=20150623; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc; bh=/UZtjROnkGuBGrZkvcoDurZYKe3lI3nQ4Y5Y12AzWxY=; b=konTNnxixaBo05yudwyHIABgYg/huhzinXFvuHSiKjxz3MSLWIemmujDKTrct9a2qo wx4QQ2ky0BZdOH7CpetfzdCWjQQyZ8wABU21BOCiT8tLhXjKrQWnvZujYJmY1gU5I/Hz J2u12/XzK9b/ZGwUCpdSQKFp2DJQbjktgvyAfUPtKhr0Ogkxn8tLb4t+4eeXF4JU/dqm uUIhzbpD2jFjTw2tPsNYqIQiTrEFW3OqF7a1qlAdU2d/lTYqJX/l/x01U9VMGgbwaeH7 rE8Ihb8o+KzBJ3Uy2hczk4Aid5Zor1Wl7ALXfQLWTZTPBlVUWutjbteJEVD9sanC0Rbb VVsA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:date :message-id:subject:from:to:cc; bh=/UZtjROnkGuBGrZkvcoDurZYKe3lI3nQ4Y5Y12AzWxY=; b=QbYpxew8e5TysMnhTEfLZu1lX7sLIg/jHv2wuJd5+BxEcSw2v5rloHnW2CkYvrjeIJ tHoPoR6vUYOMkHd5uGgCirTRoaT4JqFSTbBWOB7A9mAjmc/WScl1JeaAo1QGyOL4J1Fs 57cgxeXnCuB9WJsQNbDZiEbY3Hp4rVnzT/epp9meLTWejO0HH7uc4HN8r/S/Adt95htU n6oeRxwEsb4K4NccXWyZC52kAZnVc3rOV0Xy277WIhqhEG7r+Mu+cx0PtEzyw0KEA2f4 I/Km0nAK5FWqxO7Wy/ko0qiWplLrNmKpbEuI53TXsRhO0Me65Qlz1cOBwS0EsQFnvQNn NksQ== X-Gm-Message-State: AD7BkJL9QVOEEi8ZVQGznqt+Hid7bdciZYsiub/DjuQviyJOBRWbTg6lPEILQd/SSGG27T5fsXETo3RCghG40w== MIME-Version: 1.0 X-Received: by 10.60.73.232 with SMTP id o8mr19174045oev.39.1458062039402; Tue, 15 Mar 2016 10:13:59 -0700 (PDT) Received: by 10.157.14.47 with HTTP; Tue, 15 Mar 2016 10:13:59 -0700 (PDT) In-Reply-To: References: Date: Tue, 15 Mar 2016 13:13:59 -0400 Message-ID: To: Ferenc Kovacs Cc: PHP Internals Content-Type: multipart/alternative; boundary=001a11360400eb77c3052e198583 Subject: Re: [PHP-DEV] [RFC][VOTE] Deprecate then Remove Mcrypt From: scott@paragonie.com (Scott Arciszewski) --001a11360400eb77c3052e198583 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable On Tue, Mar 15, 2016 at 1:09 PM, Ferenc Kovacs wrote: > > > On Tue, Mar 15, 2016 at 5:11 PM, Scott Arciszewski > wrote: > >> Hi PHP team, >> >> I've opened the vote on https://wiki.php.net/rfc/mcrypt-viking-funeral >> which aims to deprecate ext/mcrypt in PHP 7.1 then remove it in 7.1+1 >> (i.e. >> make it only installable via PECL). >> >> In the interim, I'll be developing a (MIT licensed) decryption-only >> userland implementation of the mcrypt ciphers so people can migrate thei= r >> code towards something better. >> >> This vote is opened on March 15th, 2016 and will close March 22th at 17:= 00 >> UTC. >> >> (Sidenote: Apologies for the brief unannounced hiatus from participating >> here.) >> >> Scott Arciszewski >> Chief Development Officer >> Paragon Initiative Enterprises >> > > hi, > > first some formalities: > please make sure to follow the process stated at > https://wiki.php.net/rfc/voting > New RFCs first should be proposed for discussion and it would require a > bit of vetting before it can be moved to the voting phase. > I can see your thread "mcrypt extermination plan" but I can't find any > mail linking to the rfc page before this one instantly moving it into > voting phase. > I would suggest cancelling the vote and waiting a bit(I would say 2 weeks= ) > for any discussion/feedback on the rfc itself. > Personally I also don't like going with the minimal one week voting perio= d > as it is too easy for somebody to miss the chance to vote because of > vacation or just a busy week. > =E2=80=8B=E2=80=8B > > I also wanted to mention that some of unsupported ciphers listed under > https://wiki.php.net/rfc/mcrypt-viking-funeral#backward_incompatible_chan= ges > can in fact be supported by openssl as it(openssl) allows the usage of > plugable engines. > -- > Ferenc Kov=C3=A1cs > @Tyr43l - http://tyrael.hu > https://wiki.php.net/rfc/mcrypt-viking-funeral?do=3Drevisions <- already be= en under discussion for a while =E2=80=8B> =E2=80=8BI also wanted to mention that some of unsupported ciphe= rs listed under https://wiki.php.net/rfc/mcrypt-viking-funeral#backward_incompatible_change= s can in fact be supported by openssl as it(openssl) allows the usage of plugable engines. Can be supported !=3D=3D is currently supported out of the box. Scott Arciszewski Chief Development Officer Paragon Initiative Enterprises =E2=80=8B --001a11360400eb77c3052e198583--