com php-src: Make test 002 for bug #65538 not to use https in cafile: ext/openssl/tests/bug65538_002.phpt
[email protected] (Jakub Zelenka)
| Newsgroups | php.cvs |
|---|---|
| Message-ID | <[email protected]> |
Commit: df135ffa7ab30e13fb1e4b6ece7326defaf7753c Author: Jakub Zelenka <[email protected]> Fri, 17 Mar 2017 19:07:32 +0000 Parents: 53e2c9158d4c758e1d0abbc4c1547aee48b31552 Branches: PHP-7.0 Link: http://git.php.net/?p=php-src.git;a=commitdiff;h=df135ffa7ab30e13fb1e4b6ece7326defaf7753c Log: Make test 002 for bug #65538 not to use https in cafile Bugs: https://bugs.php.net/65538 Changed paths: M ext/openssl/tests/bug65538_002.phpt Diff: diff --git a/ext/openssl/tests/bug65538_002.phpt b/ext/openssl/tests/bug65538_002.phpt index 1066e01..21a23a2 100644 --- a/ext/openssl/tests/bug65538_002.phpt +++ b/ext/openssl/tests/bug65538_002.phpt @@ -4,12 +4,19 @@ Bug #65538: SSL context "cafile" disallows URL stream wrappers <?php if (!extension_loaded('openssl')) die('skip, openssl required'); if (getenv("SKIP_ONLINE_TESTS")) die("skip online test"); +?> --FILE-- <?php $clientCtx = stream_context_create(['ssl' => [ - 'cafile' => 'http://curl.haxx.se/ca/cacert.pem' + // We don't get any ca list from php.net but it does not matter as we + // care about the fact that the external stream is not allowed. + // We can't use http://curl.haxx.se/ca/cacert.pem for this test + // as it is redirected to https which means the test would depend + // on system cafile when opening stream. + 'cafile' => 'http://www.php.net', ]]); file_get_contents('https://github.com', false, $clientCtx); +?> --EXPECTF-- Warning: remote cafile streams are disabled for security purposes in %s on line %d