severity 521198 important
tags 521198 + wontfix
thanks

On Friday 07 May 2010, Olaf van der Spek wrote:
> Suhosin is now installed and enabled by default. So "1. if anybody
> installes a php security module, the documentation should be read" no
> longer applies.

php5-suhosin is actually installed cause of 3 reasons:

* installed intentionally
* installed cause recommandation by php5-common
* installed cause recommandation by syscp

So if you don't like php5-suhosin, just deinstall it!

> http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=575912
>
> It seems certain defaults are very low. Could those defaults be increased?

These are just the default settings, set by the author of suhosin (like 
documented directly in /etc/php5/conf.d/suhosin.ini). We are not planing to 
touch them. 

With kind regards, Jan.
-- 
Never write mail to <w...@spamfalle.info>, you have been warned!
-----BEGIN GEEK CODE BLOCK-----
Version: 3.12
GIT d-- s+: a C+++ UL++++ P+ L+++ E--- W+++ N+++ o++ K++ w--- O M V- PS PE Y++
PGP++ t-- 5 X R tv- b+ DI D+ G++ e++ h---- r+++ y++++ 
------END GEEK CODE BLOCK------

Attachment: signature.asc
Description: This is a digitally signed message part.

Reply via email to