On 7-4-2010 13:16, Michal Čihař wrote:
I don't have experience with Suhosin, but it sounds a bit like AV
software (on Windows): work arounds, not solutions.

Well there are definitely good things in Suhosin, but I don't see much

In that case they should be integrated into PHP itself (IMO).

Isn't it possible to detect and disable those operations in pMA when
Suhosin is enabled?

It could be probably implemented by combination of PHP and client side
javascript code (you need to validate forms before submitting whether
they don't reach some of configured limits), but nobody invested his
time into this so far. Patches are of course welcome.

What Suhosin setting depends on length of user input? I don't see it in the FAQ.

Finally, it's possible to change the specific Suhosin settings that
phpMyAdmin has a problem with.

Can't this be done by default in Debian?

> So it's definately not needed to remove or
disable Suhosin to be able to work with phpMyAdmin.

I know, I just think this warning isn't right either.

What kind of warning would be better?

No warning, it should be 'fixed' some other way.

Michal, perhaps the phpMyAdmin FAQ item that the warning refers to can be
augumented with which parameters to change?

The documentation is now updated to mention some more sensible settings
for phpMyAdmin:

http://demo.phpmyadmin.net/trunk-config/Documentation.html#faq1_38





--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to