Define random keys and salts during setup-config.php
|Reported by:||nacin||Owned by:||ryan|
Instead of simply linking to http://api.wordpress.org/secret-key/1.1/ in wp-config-sample.php, we should fetch that during setup-config.php and populate the key defines.
Defining keys after the fact generally causes cookie issues (see, for example, #12142), plus, there's no reason this shouldn't be done automatically.
I've attached a patch as an example. (In order to use http.php, we need apply_filters() and get_bloginfo(). The patch also produces a notice due to parse_url() -- again, just an example.)
This patch doesn't account for the three salts, which I think we should define as well. We should create a 1.2 version of the API and include those. (FWIW, the MU API includes salts but omits NONCE_KEY.)