Index: Fault.php =================================================================== RCS file: /repository/pear/SOAP/Fault.php,v retrieving revision 1.17 diff -u -F function -r1.17 Fault.php --- Fault.php 30 May 2005 22:16:37 -0000 1.17 +++ Fault.php 25 Feb 2006 18:03:55 -0000 @@ -18,17 +18,28 @@ * @author Shane Caraveo Port to PEAR and more * @author Chuck Hagenbuch Maintenance * @author Jan Schneider Maintenance - * @copyright 2003-2005 The PHP Group + * @copyright 2003-2006 The PHP Group * @license http://www.php.net/license/2_02.txt PHP License 2.02 + * @version CVS: $Id:$ * @link http://pear.php.net/package/SOAP */ -require_once('PEAR.php'); +require_once 'PEAR.php'; /** - * SOAP_Fault * PEAR::Error wrapper used to match SOAP Faults to PEAR Errors * + * SOAP_Fault transmissions normally contain a complete backtrace of the error. + * Revealing these details in a public web services is a bad idea because it + * can be used by attackers. Backtrace information can be kept out of + * SOAP_Fault responses by putting the following code in your script after + * your "require_once 'SOAP/Server.php';" line: + * + * + * $skiptrace =& PEAR::getStaticProperty('PEAR_Error', 'skiptrace'); + * $skiptrace = true; + * + * * @package SOAP * @access public * @author Shane Caraveo Port to PEAR and more @@ -54,8 +65,6 @@ function SOAP_Fault($faultstring = ' } /** - * message - * * returns a SOAP_Message class that can be sent as a server response * * @return SOAP_Message @@ -80,8 +89,6 @@ function message() } /** - * getFault - * * returns a simple native php array containing the fault data * * @return array @@ -107,8 +114,6 @@ function getFault() } /** - * getActor - * * returns the SOAP actor for the fault * * @return string @@ -120,8 +125,6 @@ function getActor() } /** - * getDetail - * * returns the fault detail * * @return string