Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Replace PhpSecInfo with something more modern #27

Open
Findus23 opened this issue Dec 2, 2018 · 2 comments
Open

Replace PhpSecInfo with something more modern #27

Findus23 opened this issue Dec 2, 2018 · 2 comments

Comments

@Findus23
Copy link
Member

Findus23 commented Dec 2, 2018

As this is the most downloaded Matomo plugin and the description recommends using it

We highly recommend that all Matomo administrators enable the SecurityInfo plugin, and then view the Settings. The plugin is a tool in a multilayered security approach.

we should make sure that the recommendation it gives are up to date.
Unfortunately the development for PhpSecInfo seems to have stopped in 2007 or 2009 and while there have been some fixes to make it work with newer PHP versions, I am not sure if the recommendations are still correct and (more importantly) if not some important recommendations are missing.

But I couldn't find many alternatives. https://github.com/sektioneins/pcc seems to be newer, but it doesn't seem to have a way to get the results apart from echo.

If someone knows a better alternative, please comment here.

@ZerooCool
Copy link
Contributor

I found 4 versions for PhpSecInfo :
https://github.com/ZerooCool/phpsecinfo

@Findus23
Copy link
Member Author

Just FYI: My plugin https://plugins.matomo.org/DiagnosticsExtended should contain all important checks from this plugin in a rewritten version.

@Findus23 Findus23 mentioned this issue May 15, 2023
11 tasks
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants