sodium_memzero

(PHP 7 >= 7.2.0, PHP 8)

sodium_memzero — Écrase une chaîne avec des caractères NUL

Description

function sodium_memzero(#[\SensitiveParameter] string &$string): void

sodium_memzero() remplace par des zéros la chaîne passée par référence.

Liste de paramètres

string

Chaîne.

Valeurs de retour

Aucune valeur n'est retournée.

Found A Problem?

Learn How To Improve This Page • Submit a Pull Request • Report a Bug
+add a note

User Contributed Notes 1 note

up
1
Anonymous
3 months ago
<?php
$key = random_bytes(SODIUM_CRYPTO_SECRETBOX_KEYBYTES);
$message = "Customer financial data";
$nonce = random_bytes(SODIUM_CRYPTO_SECRETBOX_NONCEBYTES);
$ciphertext = sodium_crypto_secretbox($message, $nonce, $key);
// Key no longer needed
sodium_memzero($key);
var_dump($key); // Usually becomes an empty string
+add a note

AltStyle によって変換されたページ (->オリジナル) /