From 5d4884d294ca9b1f069fcacada98f6697f464274 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Maur=C3=ADcio=20Meneghini=20Fauth?= Date: Thu, 15 Sep 2022 13:04:22 -0300 Subject: Update setup page to generate better blowfish_secret keys MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Instead of generating a printable string, it generates a binary string and converts it to an hexadecimal string. Signed-off-by: MaurĂ­cio Meneghini Fauth --- psalm-baseline.xml | 29 ++++++++++------------------- 1 file changed, 10 insertions(+), 19 deletions(-) (limited to 'psalm-baseline.xml') diff --git a/psalm-baseline.xml b/psalm-baseline.xml index fdfa268435..be2ba27d96 100644 --- a/psalm-baseline.xml +++ b/psalm-baseline.xml @@ -12573,6 +12573,10 @@ + + $key + sodium_crypto_secretbox_keygen() + $conf['Servers'] @@ -12590,6 +12594,9 @@ $v $v + + non-empty-string + self::getServerPart($cf, $crlf, $conf['Servers']) @@ -14280,40 +14287,24 @@ - - $_SESSION['messages'] - $_SESSION['messages']['error'] + $_SESSION['messages']['error'] $_SESSION['messages']['notice'] - $_SESSION['messages']['notice'] - - $_SESSION['messages']['error'] + $_SESSION['messages']['error'] $_SESSION['messages']['notice'] - $_SESSION['messages']['notice'] - - $_SESSION[$this->sessionID]['AllowArbitraryServer'] + $_SESSION[$this->sessionID]['AllowArbitraryServer'] $_SESSION[$this->sessionID]['BZipDump'] - $_SESSION[$this->sessionID]['BZipDump'] - $_SESSION[$this->sessionID]['GZipDump'] $_SESSION[$this->sessionID]['GZipDump'] $_SESSION[$this->sessionID]['LoginCookieStore'] - $_SESSION[$this->sessionID]['LoginCookieStore'] $_SESSION[$this->sessionID]['LoginCookieValidity'] - $_SESSION[$this->sessionID]['LoginCookieValidity'] - $_SESSION[$this->sessionID]['SaveDir'] $_SESSION[$this->sessionID]['SaveDir'] $_SESSION[$this->sessionID]['Servers'] - $_SESSION[$this->sessionID]['Servers'] - $_SESSION[$this->sessionID]['Servers'] - $_SESSION[$this->sessionID]['TempDir'] $_SESSION[$this->sessionID]['TempDir'] $_SESSION[$this->sessionID]['ZipDump'] - $_SESSION[$this->sessionID]['ZipDump'] - $_SESSION[$this->sessionID]['blowfish_secret'] $_SESSION[$this->sessionID] -- cgit v1.2.3 From 5d9142674d09379a9e4394779c1e624dd2d6ece5 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Maur=C3=ADcio=20Meneghini=20Fauth?= Date: Fri, 23 Sep 2022 14:32:30 -0300 Subject: Allow longer cookie encryption keys to be used MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Signed-off-by: MaurĂ­cio Meneghini Fauth --- psalm-baseline.xml | 4 +--- 1 file changed, 1 insertion(+), 3 deletions(-) (limited to 'psalm-baseline.xml') diff --git a/psalm-baseline.xml b/psalm-baseline.xml index be2ba27d96..874757e842 100644 --- a/psalm-baseline.xml +++ b/psalm-baseline.xml @@ -9042,14 +9042,12 @@ $_SESSION['browser_access_time'][$key] - + $GLOBALS['pma_auth_server'] $_form_params['route'] $captchaSiteVerifyURL $captchaSiteVerifyURL $key - $key - $key $password $serverCookie $serverCookie -- cgit v1.2.3