Browse Source

Add todo for signed phars

Kirill chEbba Chebunin 13 years ago
parent
commit
6c4440d0e9
1 changed files with 5 additions and 0 deletions
  1. 5 0
      src/Composer/Downloader/PharDownloader.php

+ 5 - 0
src/Composer/Downloader/PharDownloader.php

@@ -29,5 +29,10 @@ class PharDownloader extends FileDownloader
         // Can throw an UnexpectedValueException
         // Can throw an UnexpectedValueException
         $archive = new \Phar($file);
         $archive = new \Phar($file);
         $archive->extractTo($path);
         $archive->extractTo($path);
+        /* TODO: handle openssl signed phars
+         * https://github.com/composer/composer/pull/33#issuecomment-2250768
+         * https://github.com/koto/phar-util
+         * http://blog.kotowicz.net/2010/08/hardening-php-how-to-securely-include.html
+         */
     }
     }
 }
 }