Encryption key can only be string
@cicnavi 已经在做这个了。
开始于 2026年3月7日。
评估
这个 Issue 还没有评估数据。
描述
As per https://oauth2.thephpleague.com/installation/, we should take advantage of \Defuse\Crypto\Key instance as encryption key, instead of string password only, which uses key stretching to the password to reduce vulnerability to brute force attacks. This should bring performance improvements.
- 主要语言
- PHP
- 星标
- 50
- 派生
- 28
- 平均合并
- 1 分钟
- 30 天内合并 PR
- 1
环境准备
这个项目没有提供开发容器、Dockerfile 或贡献指南,环境需要你自己搭建:先看它的 README,通用步骤见我们的新手贡献指南。
从这里开始
- 先读完整个 Issue,再读项目的贡献指南。
- 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
- Fork 仓库,在一个分支上完成修改。
- 提交 Pull Request,并在描述里引用这个 Issue 编号。
simplesamlphp/simplesamlphp-module-oidc 的其他 Issue
-
难度 5/5 一周以上 新手友好度 35/100
simplesamlphp/simplesamlphp-module-oidc#360 · 1 条评论 ·
-
prepared
难度 3/5 1-2 天 新手友好度 65/100
simplesamlphp/simplesamlphp-module-oidc#358 · 2 条评论 ·
-
ECDSA (ES256) support issues in OIDC module (JWK generation and token verification)可能重新可做 @cicnavi 于 170 天前认领,目前没有进行中的 PR。 未关闭prepared
simplesamlphp/simplesamlphp-module-oidc#334 · 1 条评论 · 已指派 1 人 ·
-
ReflectionParameter::getClass() is deprecated可能重新可做 @cicnavi 于 224 天前认领,目前没有进行中的 PR。 未关闭prepared
simplesamlphp/simplesamlphp-module-oidc#327 · 2 条评论 · 已指派 1 人 ·
-
Missing support for multiple signature algorithms可能重新可做 @cicnavi 于 259 天前认领,目前没有进行中的 PR。 未关闭enhancement prepared
simplesamlphp/simplesamlphp-module-oidc#324 · 1 条评论 · 已指派 1 人 ·
查看 simplesamlphp/simplesamlphp-module-oidc 的全部 Issue
相似的 Issue
-
难度 2/5 1-3 小时 新手友好度 85/100
维护者通常 3 天内回复
-
难度 1/5 1 小时以内 新手友好度 90/100
维护者通常 1 天内回复
-
sync-en
难度 2/5 1-3 小时 新手友好度 78/100
维护者通常 1 天内回复
-
sync-en
难度 2/5 1-2 天 新手友好度 84/100
维护者通常 2 天内回复
-
feature-request needs-triage
难度 2/5 1-3 小时 新手友好度 72/100
aws/aws-sdk-php#3365 ·
维护者通常 1 天内回复