Comments (4)
32 characters are 32 bytes! Why do you think it is 16 bytes?
In the documentation the function sodium_hex2bin
is used which converts the 64 hex characters to 32 bytes. But you aren't using it in your config, so there it is 64 bytes.
from phpmyadmin.
I think accepting a 64-char hex string and then phpMyAdmin converts it to binary internally is reasonable.
What do you think @williamdes?
from phpmyadmin.
I think accepting a 64-char hex string and then phpMyAdmin converts it to binary internally is reasonable. What do you think @williamdes?
I agree, let's be more flexible
from phpmyadmin.
I see that the check that produced the error is here:
phpmyadmin/src/Controllers/HomeController.php
Line 328 in b2c9cbc
The above check is called by the __invoke() function in the HomeController:
phpmyadmin/src/Controllers/HomeController.php
Line 216 in b2c9cbc
I believe that the best course of action is to add a check if the string is 64 characters long after which check if the string is hexadecimal using the ctype_xdigit() function. If this check is also true, then use the hex2bin() function to convert the string and override the original
blowfish_secret
. If any of the checks fail the blowfish_secret
should remain unchanged.
Also, the documentation should be changed to reflect the change in behaviour. Should I change that in the same PR?
@MauricioFauth What do you think?
from phpmyadmin.
Related Issues (20)
- Status > Monitor charts should look like before
- Export/Import database problem
- phpmyadmin HOT 1
- Server connection: SSL is not being used
- SSL issue on the directory when it worked before the switch to php 8.2
- Column sorting does not work when names contain dots
- Add config parameter: Enable/Disable backtick quoting HOT 2
- Drop comma from input
- TypeError: PhpMyAdmin\ConfigStorage\Relation::setHistory(): Argument #4 ($sqlquery) must be of type string, null given HOT 1
- ErrorException: foreach() argument must be of type array|object, string given
- Error in a function IN(...) and NOT IN(....) for query
- Javascript error in bootstrap.bundle.min.js - Popper__namespace.createPopper is not a function after clicking "more" option
- Phpmyadmin login error
- SQL Editor unexpected token with numeric db suffix and table name prefix
- strange character on breadcrumb on pmahomme theme HOT 3
- Edit privileges doesn't work
- better hint / autocompletion for INNER JOIN, LEFT JOIN, GROUP BY
- 6.0 snapshots build fail HOT 1
- Browse table cell has no height when value is empty string HOT 1
- Simulate query reports syntax error but the statement works HOT 1
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from phpmyadmin.