Replies: 1 comment
-
$secret is part of the global configuration. It is used throughout Joomla for cryptographic operations like generating hashes or performing authentication (for example plugins/user/token/src/Extension/Token.php or libraries/src/Application/MultiFactorAuthenticationHandler.php). That being said, you can theoretically change it. But any hash or cryptographic key generated before that will be invalidated. Furthermore the variable is generated in a way that is cryptographically secure, so you should just leave it as it is. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
What exactly does it control, and would it be safe to change it to something else?
Beta Was this translation helpful? Give feedback.
All reactions