4867475b652fef101348ee93c96713a47de05997
[openssl.git] / Configure
1 #! /usr/bin/env perl
2 # -*- mode: perl; -*-
3
4 ##
5 ##  Configure -- OpenSSL source tree configuration script
6 ##  If editing this file, run this command before committing
7 ##      make -f Makefile.in TABLE
8 ##
9
10 require 5.000;
11 use strict;
12 use File::Basename;
13 use File::Spec::Functions;
14
15 # see INSTALL for instructions.
16
17 my $usage="Usage: Configure [no-<cipher> ...] [enable-<cipher> ...] [experimental-<cipher> ...] [-Dxxx] [-lxxx] [-Lxxx] [-fxxx] [-Kxxx] [no-hw-xxx|no-hw] [[no-]threads] [[no-]shared] [[no-]zlib|zlib-dynamic] [no-asm] [no-dso] [sctp] [386] [--prefix=DIR] [--openssldir=OPENSSLDIR] [--with-xxx[=vvv]] [--test-sanity] [--config=FILE] os/compiler[:flags]\n";
18
19 # Options:
20 #
21 # --config      add the given configuration file, which will be read after
22 #               any "Configurations*" files that are found in the same
23 #               directory as this script.
24 # --openssldir  install OpenSSL in OPENSSLDIR (Default: DIR/ssl if the
25 #               --prefix option is given; /usr/local/ssl otherwise)
26 # --prefix      prefix for the OpenSSL include, lib and bin directories
27 #               (Default: the OPENSSLDIR directory)
28 #
29 # --install_prefix  Additional prefix for package builders (empty by
30 #               default).  This needn't be set in advance, you can
31 #               just as well use "make INSTALL_PREFIX=/whatever install".
32 #
33 # --test-sanity Make a number of sanity checks on the data in this file.
34 #               This is a debugging tool for OpenSSL developers.
35 #
36 # --cross-compile-prefix Add specified prefix to binutils components.
37 #
38 # --api         One of 0.9.8, 1.0.0 or 1.1.0.  Do not compile support for
39 #               interfaces deprecated as of the specified OpenSSL version.
40 #
41 # no-hw-xxx     do not compile support for specific crypto hardware.
42 #               Generic OpenSSL-style methods relating to this support
43 #               are always compiled but return NULL if the hardware
44 #               support isn't compiled.
45 # no-hw         do not compile support for any crypto hardware.
46 # [no-]threads  [don't] try to create a library that is suitable for
47 #               multithreaded applications (default is "threads" if we
48 #               know how to do it)
49 # [no-]shared   [don't] try to create shared libraries when supported.
50 # no-asm        do not use assembler
51 # no-dso        do not compile in any native shared-library methods. This
52 #               will ensure that all methods just return NULL.
53 # [no-]zlib     [don't] compile support for zlib compression.
54 # zlib-dynamic  Like "zlib", but the zlib library is expected to be a shared
55 #               library and will be loaded in run-time by the OpenSSL library.
56 # sctp          include SCTP support
57 # 386           generate 80386 code
58 # no-sse2       disables IA-32 SSE2 code, above option implies no-sse2
59 # no-<cipher>   build without specified algorithm (rsa, idea, rc5, ...)
60 # -<xxx> +<xxx> compiler options are passed through
61 #
62 # DEBUG_SAFESTACK use type-safe stacks to enforce type-safety on stack items
63 #               provided to stack calls. Generates unique stack functions for
64 #               each possible stack type.
65 # DES_PTR       use pointer lookup vs arrays in the DES in crypto/des/des_locl.h
66 # DES_RISC1     use different DES_ENCRYPT macro that helps reduce register
67 #               dependancies but needs to more registers, good for RISC CPU's
68 # DES_RISC2     A different RISC variant.
69 # DES_UNROLL    unroll the inner DES loop, sometimes helps, somtimes hinders.
70 # DES_INT       use 'int' instead of 'long' for DES_LONG in crypto/des/des.h
71 #               This is used on the DEC Alpha where long is 8 bytes
72 #               and int is 4
73 # BN_LLONG      use the type 'long long' in crypto/bn/bn.h
74 # MD2_CHAR      use 'char' instead of 'int' for MD2_INT in crypto/md2/md2.h
75 # MD2_LONG      use 'long' instead of 'int' for MD2_INT in crypto/md2/md2.h
76 # IDEA_SHORT    use 'short' instead of 'int' for IDEA_INT in crypto/idea/idea.h
77 # IDEA_LONG     use 'long' instead of 'int' for IDEA_INT in crypto/idea/idea.h
78 # RC2_SHORT     use 'short' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
79 # RC2_LONG      use 'long' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
80 # RC4_CHAR      use 'char' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
81 # RC4_LONG      use 'long' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
82 # RC4_INDEX     define RC4_INDEX in crypto/rc4/rc4_locl.h.  This turns on
83 #               array lookups instead of pointer use.
84 # RC4_CHUNK     enables code that handles data aligned at long (natural CPU
85 #               word) boundary.
86 # RC4_CHUNK_LL  enables code that handles data aligned at long long boundary
87 #               (intended for 64-bit CPUs running 32-bit OS).
88 # BF_PTR        use 'pointer arithmatic' for Blowfish (unsafe on Alpha).
89 # BF_PTR2       intel specific version (generic version is more efficient).
90 #
91 # Following are set automatically by this script
92 #
93 # MD5_ASM       use some extra md5 assember,
94 # SHA1_ASM      use some extra sha1 assember, must define L_ENDIAN for x86
95 # RMD160_ASM    use some extra ripemd160 assember,
96 # SHA256_ASM    sha256_block is implemented in assembler
97 # SHA512_ASM    sha512_block is implemented in assembler
98 # AES_ASM       ASE_[en|de]crypt is implemented in assembler
99
100 # Minimum warning options... any contributions to OpenSSL should at least get
101 # past these.
102
103 my $gcc_devteam_warn = "-Wall -pedantic -DPEDANTIC -Wno-long-long -Wsign-compare -Wmissing-prototypes -Wshadow -Wformat -Wtype-limits -Werror -DREF_CHECK -DDEBUG_UNUSED";
104
105 # These are used in addition to $gcc_devteam_warn when the compiler is clang.
106 # TODO(openssl-team): fix problems and investigate if (at least) the
107 # following warnings can also be enabled:
108 # -Wswitch-enum, -Wunused-macros, -Wmissing-field-initializers,
109 # -Wcast-align,
110 # -Wunreachable-code -Wunused-parameter -Wlanguage-extension-token
111 # -Wextended-offsetof
112 my $clang_devteam_warn = "-Wno-unused-parameter -Wno-missing-field-initializers -Wno-language-extension-token -Wno-extended-offsetof -Wconditional-uninitialized -Qunused-arguments -Wincompatible-pointer-types-discards-qualifiers -Wmissing-variable-declarations";
113
114 # Warn that "make depend" should be run?
115 my $warn_make_depend = 0;
116
117 # These are used in addition to $gcc_devteam_warn unless this is a mingw build.
118 # This adds backtrace information to the memory leak info.
119 my $memleak_devteam_backtrace = "-rdynamic -DCRYPTO_MDEBUG_BACKTRACE";
120
121
122 my $strict_warnings = 0;
123
124 my $x86_gcc_des="DES_PTR DES_RISC1 DES_UNROLL";
125
126 # MD2_CHAR slags pentium pros
127 my $x86_gcc_opts="RC4_INDEX MD2_INT";
128
129 #$bits1="SIXTEEN_BIT ";
130 #$bits2="THIRTY_TWO_BIT ";
131 my $bits1="THIRTY_TWO_BIT ";
132 my $bits2="SIXTY_FOUR_BIT ";
133
134 # As for $BSDthreads. Idea is to maintain "collective" set of flags,
135 # which would cover all BSD flavors. -pthread applies to them all,
136 # but is treated differently. OpenBSD expands is as -D_POSIX_THREAD
137 # -lc_r, which is sufficient. FreeBSD 4.x expands it as -lc_r,
138 # which has to be accompanied by explicit -D_THREAD_SAFE and
139 # sometimes -D_REENTRANT. FreeBSD 5.x expands it as -lc_r, which
140 # seems to be sufficient?
141 my $BSDthreads="-pthread -D_THREAD_SAFE -D_REENTRANT";
142
143 #
144 # API compability name to version number mapping.
145 #
146 my $maxapi = "1.1.0";           # API for "no-deprecated" builds
147 my $apitable = {
148     "1.1.0" => "0x10100000L",
149     "1.0.0" => "0x10000000L",
150     "0.9.8" => "0x00908000L",
151 };
152
153 # table of known configurations, read in from files
154 #
155 # The content of each entry can take one of two forms:
156 #
157 # - old style config-string, colon seperated fields with exactly the
158 #   following structure.:
159 #
160 #       $cc : $cflags : $unistd : $thread_cflag : $sys_id : $lflags : $bn_ops : $cpuid_obj : $bn_obj : $ec_obj : $des_obj : $aes_obj : $bf_obj : $md5_obj : $sha1_obj : $cast_obj : $rc4_obj : $rmd160_obj : $rc5_obj : $wp_obj : $cmll_obj : $modes_obj : $engines_obj : $perlasm_scheme : $dso_scheme : $shared_target : $shared_cflag : $shared_ldflag : $shared_extension : $ranlib : $arflags : $multilib
161 #
162 #   We use the stringtohash function - defined below - to combine with the
163 #   fields and form a proper hash table from the string.
164 #
165 # - direct transfer of old style config string to hash table, using the names
166 #   of the fields as keys:
167 #
168 #       {
169 #         cc => $cc,
170 #         cflags => $cflags,
171 #         unistd => $unistd,
172 #         thread_cflag => $thread_cflag,
173 #         sys_id => $sys_id,
174 #         lflags => $lflags,
175 #         bn_ops => $bn_ops,
176 #         cpuid_obj => $cpuid_obj,
177 #         bn_obj => $bn_obj,
178 #         ec_obj => $ec_obj,
179 #         des_obj => $des_obj,
180 #         aes_obj => $aes_obj,
181 #         bf_obj => $bf_obj,
182 #         md5_obj => $md5_obj,
183 #         sha1_obj => $sha1_obj,
184 #         cast_obj => $cast_obj,
185 #         rc4_obj => $rc4_obj,
186 #         rmd160_obj => $rmd160_obj,
187 #         rc5_obj => $rc5_obj,
188 #         wp_obj => $wp_obj,
189 #         cmll_obj => $cmll_obj,
190 #         modes_obj => $modes_obj,
191 #         engines_obj => $engines_obj,
192 #         perlasm_scheme => $perlasm_scheme,
193 #         dso_scheme => $dso_scheme,
194 #         shared_target => $shared_target,
195 #         shared_cflag => $shared_cflag,
196 #         shared_ldflag => $shared_ldflag,
197 #         shared_extension => $shared_extension,
198 #         ranlib => $ranlib,
199 #         arflags => $arflags,
200 #         multilib => $multilib
201 #       }
202 #
203 # - new style config hash table, which has additional attributes for debug
204 #   and non-debug flags to be added to the common flags, for cflags and lflags:
205 #
206 #       {
207 #         cc => $cc,
208 #         cflags => $cflags,
209 #         debug_cflags => $debug_cflags,
210 #         release_cflags => $release_cflags,
211 #         unistd => $unistd,
212 #         thread_cflag => $thread_cflag,
213 #         sys_id => $sys_id,
214 #         lflags => $lflags,
215 #         debug_lflags => $debug_lflags,
216 #         release_lflags => $release_lflags,
217 #         bn_ops => $bn_ops,
218 #         cpuid_obj => $cpuid_obj,
219 #         bn_obj => $bn_obj,
220 #         ec_obj => $ec_obj,
221 #         des_obj => $des_obj,
222 #         aes_obj => $aes_obj,
223 #         bf_obj => $bf_obj,
224 #         md5_obj => $md5_obj,
225 #         sha1_obj => $sha1_obj,
226 #         cast_obj => $cast_obj,
227 #         rc4_obj => $rc4_obj,
228 #         rmd160_obj => $rmd160_obj,
229 #         rc5_obj => $rc5_obj,
230 #         wp_obj => $wp_obj,
231 #         cmll_obj => $cmll_obj,
232 #         modes_obj => $modes_obj,
233 #         engines_obj => $engines_obj,
234 #         chacha_obj => $wp_obj,
235 #         poly1305_obj => $cmll_obj,
236 #         dso_scheme => $dso_scheme,
237 #         shared_target => $shared_target,
238 #         shared_cflag => $shared_cflag,
239 #         shared_ldflag => $shared_ldflag,
240 #         shared_extension => $shared_extension,
241 #         ranlib => $ranlib,
242 #         arflags => $arflags,
243 #         multilib => $multilib
244 #       }
245 #
246 # The configuration reader will do what it can to translate everything into
247 # new style config hash tables, including merging $target and debug-$target
248 # if they are similar enough.
249 #
250 # The configuration hashes can refer to templates in two different manners:
251 #
252 # - as part of the hash, one can have a key called 'inherit_from' that
253 #   indicate what other configuration hashes to inherit data from.
254 #   These are resolved recursively.
255 #
256 #   Inheritance works as a set of default values that can be overriden
257 #   by corresponding attribute values in the inheriting configuration.
258 #
259 #   If several configurations are given in the 'inherit_from' array, the
260 #   values of same attribute are concatenated with space separation.
261 #   With this, it's possible to have several smaller templates for
262 #   different configuration aspects that can be combined into a complete
263 #   configuration.
264 #
265 #   Example:
266 #
267 #       "foo" => {
268 #               template => 1,
269 #               haha => "haha",
270 #               hoho => "ho"
271 #       },
272 #       "bar" => {
273 #               template => 1,
274 #               hoho => "ho",
275 #               hehe => "hehe"
276 #       },
277 #       "laughter" => {
278 #               inherit_from => [ "foo", "bar" ],
279 #       }
280 #
281 #       The entry for "foo" will become as follows after processing:
282 #
283 #       "laughter" => {
284 #               haha => "haha",
285 #               hoho => "ho ho",
286 #               hehe => "hehe"
287 #       }
288 #
289 #   Note 1: any entry from the table can be used as a template.
290 #   Note 2: pure templates have the attribute 'template => 1' and cannot
291 #           be used as targets.
292 #
293 # - instead of a string, one can have a code block of the form
294 #   'sub { /* your code here */ }', where the arguments are the list of
295 #   inherited values for that key.  In fact, the concatenation of strings
296 #   is really done by using 'sub { join(" ",@_) }' on the list of inherited
297 #   values.
298 #
299 #   Example:
300 #
301 #       "foo" => {
302 #               template => 1,
303 #               haha => "ha ha",
304 #               hoho => "ho",
305 #               ignored => "This should not appear in the end result",
306 #       },
307 #       "bar" => {
308 #               template => 1,
309 #               haha => "ah",
310 #               hoho => "haho",
311 #               hehe => "hehe"
312 #       },
313 #       "laughter" => {
314 #               inherit_from => [ "foo", "bar" ],
315 #               hehe => sub { join(" ",(@_,"!!!")) },
316 #               ignored => "",
317 #       }
318 #
319 #       The entry for "foo" will become as follows after processing:
320 #
321 #       "laughter" => {
322 #               haha => "ha ha ah",
323 #               hoho => "ho haho",
324 #               hehe => "hehe !!!",
325 #               ignored => ""
326 #       }
327 #
328
329 my %table=(
330
331     # All these templates are merely a translation of the corresponding
332     # variables further up.
333     #
334     # Note: as long as someone might use old style configuration strings,
335     # or we bother supporting that, those variables need to stay
336
337     x86_asm => {
338         template        => 1,
339         cpuid_obj       => "x86cpuid.o",
340         bn_obj          => "bn-586.o co-586.o x86-mont.o x86-gf2m.o",
341         ec_obj          => "ecp_nistz256.o ecp_nistz256-x86.o",
342         des_obj         => "des-586.o crypt586.o",
343         aes_obj         => "aes-586.o vpaes-x86.o aesni-x86.o",
344         bf_obj          => "bf-586.o",
345         md5_obj         => "md5-586.o",
346         sha1_obj        => "sha1-586.o sha256-586.o sha512-586.o",
347         rc4_obj         => "rc4-586.o",
348         rmd160_obj      => "rmd-586.o",
349         rc5_obj         => "rc5-586.o",
350         wp_obj          => "wp_block.o wp-mmx.o",
351         cmll_obj        => "cmll-x86.o",
352         modes_obj       => "ghash-x86.o",
353         engines_obj     => "e_padlock-x86.o"
354     },
355     x86_elf_asm => {
356         template        => 1,
357         inherit_from    => [ "x86_asm" ],
358         perlasm_scheme  => "elf"
359     },
360     x86_64_asm => {
361         template        => 1,
362         cpuid_obj       => "x86_64cpuid.o",
363         bn_obj          => "x86_64-gcc.o x86_64-mont.o x86_64-mont5.o x86_64-gf2m.o rsaz_exp.o rsaz-x86_64.o rsaz-avx2.o",
364         ec_obj          => "ecp_nistz256.o ecp_nistz256-x86_64.o",
365         aes_obj         => "aes-x86_64.o vpaes-x86_64.o bsaes-x86_64.o aesni-x86_64.o aesni-sha1-x86_64.o aesni-sha256-x86_64.o aesni-mb-x86_64.o",
366         md5_obj         => "md5-x86_64.o",
367         sha1_obj        => "sha1-x86_64.o sha256-x86_64.o sha512-x86_64.o sha1-mb-x86_64.o sha256-mb-x86_64.o",
368         rc4_obj         => "rc4-x86_64.o rc4-md5-x86_64.o",
369         wp_obj          => "wp-x86_64.o",
370         cmll_obj        => "cmll-x86_64.o cmll_misc.o",
371         modes_obj       => "ghash-x86_64.o aesni-gcm-x86_64.o",
372         engines_obj     => "e_padlock-x86_64.o"
373     },
374     ia64_asm => {
375         template        => 1,
376         cpuid_obj       => "ia64cpuid.o",
377         bn_obj          => "bn-ia64.o ia64-mont.o",
378         aes_obj         => "aes_core.o aes_cbc.o aes-ia64.o",
379         md5_obj         => "md5-ia64.o",
380         sha1_obj        => "sha1-ia64.o sha256-ia64.o sha512-ia64.o",
381         rc4_obj         => "rc4-ia64.o rc4_skey.o",
382         modes_obj       => "ghash-ia64.o",
383         perlasm_scheme  => "void"
384     },
385     sparcv9_asm => {
386         template        => 1,
387         cpuid_obj       => "sparcv9cap.o sparccpuid.o",
388         bn_obj          => "bn-sparcv9.o sparcv9-mont.o sparcv9a-mont.o vis3-mont.o sparct4-mont.o sparcv9-gf2m.o",
389         ec_obj          => "ecp_nistz256.o ecp_nistz256-sparcv9.o",
390         des_obj         => "des_enc-sparc.o fcrypt_b.o dest4-sparcv9.o",
391         aes_obj         => "aes_core.o aes_cbc.o aes-sparcv9.o aest4-sparcv9.o",
392         md5_obj         => "md5-sparcv9.o",
393         sha1_obj        => "sha1-sparcv9.o sha256-sparcv9.o sha512-sparcv9.o",
394         cmll_obj        => "camellia.o cmll_misc.o cmll_cbc.o cmllt4-sparcv9.o",
395         modes_obj       => "ghash-sparcv9.o",
396         perlasm_scheme  => "void"
397     },
398     sparcv8_asm => {
399         template        => 1,
400         cpuid_obj       => "",
401         bn_obj          => "sparcv8.o",
402         des_obj         => "des_enc-sparc.o fcrypt_b.o",
403         perlasm_scheme  => "void"
404     },
405     alpha_asm => {
406         template        => 1,
407         cpuid_obj       => "alphacpuid.o",
408         bn_obj          => "bn_asm.o alpha-mont.o",
409         sha1_obj        => "sha1-alpha.o",
410         modes_obj       => "ghash-alpha.o",
411         perlasm_scheme  => "void"
412     },
413     mips32_asm => {
414         template        => 1,
415         bn_obj          => "bn-mips.o mips-mont.o",
416         aes_obj         => "aes_cbc.o aes-mips.o",
417         sha1_obj        => "sha1-mips.o sha256-mips.o",
418     },
419     mips64_asm => {
420         inherit_from    => [ "mips32_asm" ],
421         template        => 1,
422         sha1_obj        => sub { join(" ", @_, "sha512-mips.o") }
423     },
424     s390x_asm => {
425         template        => 1,
426         cpuid_obj       => "s390xcap.o s390xcpuid.o",
427         bn_obj          => "bn-s390x.o s390x-mont.o s390x-gf2m.o",
428         aes_obj         => "aes-s390x.o aes-ctr.o aes-xts.o",
429         sha1_obj        => "sha1-s390x.o sha256-s390x.o sha512-s390x.o",
430         rc4_obj         => "rc4-s390x.o",
431         modes_obj       => "ghash-s390x.o",
432     },
433     armv4_asm => {
434         template        => 1,
435         cpuid_obj       => "armcap.o armv4cpuid.o",
436         bn_obj          => "bn_asm.o armv4-mont.o armv4-gf2m.o",
437         ec_obj          => "ecp_nistz256.o ecp_nistz256-armv4.o",
438         aes_obj         => "aes_cbc.o aes-armv4.o bsaes-armv7.o aesv8-armx.o",
439         sha1_obj        => "sha1-armv4-large.o sha256-armv4.o sha512-armv4.o",
440         modes_obj       => "ghash-armv4.o ghashv8-armx.o",
441         perlasm_scheme  => "void"
442     },
443     aarch64_asm => {
444         template        => 1,
445         cpuid_obj       => "armcap.o arm64cpuid.o mem_clr.o",
446         ec_obj          => "ecp_nistz256.o ecp_nistz256-armv8.o",
447         bn_obj          => "bn_asm.o armv8-mont.o",
448         aes_obj         => "aes_core.o aes_cbc.o aesv8-armx.o vpaes-armv8.o",
449         sha1_obj        => "sha1-armv8.o sha256-armv8.o sha512-armv8.o",
450         modes_obj       => "ghashv8-armx.o",
451     },
452     parisc11_asm => {
453         template        => 1,
454         cpuid_obj       => "pariscid.o",
455         bn_obj          => "bn_asm.o parisc-mont.o",
456         aes_obj         => "aes_core.o aes_cbc.o aes-parisc.o",
457         sha1_obj        => "sha1-parisc.o sha256-parisc.o sha512-parisc.o",
458         rc4_obj         => "rc4-parisc.o",
459         modes_obj       => "ghash-parisc.o",
460         perlasm_scheme  => "32"
461     },
462     parisc20_64_asm => {
463         template        => 1,
464         inherit_from    => [ "parisc11_asm" ],
465         bn_obj          => sub { my $r=join(" ",@_); $r=~s/bn_asm/pa-risc2W/; $r; },
466         perlasm_scheme  => "64",
467     },
468     ppc64_asm => {
469         template        => 1,
470         cpuid_obj       => "ppccpuid.o ppccap.o",
471         bn_obj          => "bn-ppc.o ppc-mont.o ppc64-mont.o",
472         aes_obj         => "aes_core.o aes_cbc.o aes-ppc.o vpaes-ppc.o aesp8-ppc.o",
473         sha1_obj        => "sha1-ppc.o sha256-ppc.o sha512-ppc.o sha256p8-ppc.o sha512p8-ppc.o",
474         modes_obj       => "ghashp8-ppc.o",
475     },
476     ppc32_asm => {
477         inherit_from    => [ "ppc64_asm" ],
478         template        => 1
479     },
480 );
481
482 {   my $no_asm_templates=0;
483     foreach (@ARGV) { $no_asm_templates=1 if (/^\-?no\-asm$/); }
484     sub asm { $no_asm_templates?():@_; }
485 }
486
487
488 sub stringtohash {
489     my $in = shift @_;
490     if (ref($in) eq "HASH") {
491         return $in;
492     }
493     my @stringsequence = (
494         "cc",
495         "cflags",
496         "unistd",
497         "thread_cflag",
498         "sys_id",
499         "lflags",
500         "bn_ops",
501         "cpuid_obj",
502         "bn_obj",
503         "ec_obj",
504         "des_obj",
505         "aes_obj",
506         "bf_obj",
507         "md5_obj",
508         "sha1_obj",
509         "cast_obj",
510         "rc4_obj",
511         "rmd160_obj",
512         "rc5_obj",
513         "wp_obj",
514         "cmll_obj",
515         "modes_obj",
516         "engines_obj",
517         "perlasm_scheme",
518         "dso_scheme",
519         "shared_target",
520         "shared_cflag",
521         "shared_ldflag",
522         "shared_extension",
523         "ranlib",
524         "arflags",
525         "multilib",
526         );
527
528     # return a ref to a hash, that's what the outer braces are for.
529     return { map { shift @stringsequence => $_ } split /:/, $in };
530 };
531
532 # Read configuration target stanzas from a file, so that people can have
533 # local files with their own definitions
534 sub read_config {
535         my $fname = shift;
536         open(CONFFILE, "< $fname")
537                 or die "Can't open configuration file '$fname'!\n";
538         my $x = $/;
539         undef $/;
540         my $content = <CONFFILE>;
541         $/ = $x;
542         close(CONFFILE);
543         my %targets = ();
544         eval $content;
545
546         # Make sure we have debug- targets first
547         my @keys =
548             sort {
549                 my $a_nd = $a =~ m/^debug-/ ? $' :$a;
550                 my $b_nd = $b =~ m/^debug-/ ? $' :$b;
551                 my $res = 0;
552
553                 if (($a_nd == $a) == ($b_nd == $b)) {
554                     # they are both debug- or not, compare them as they are
555                     $res = $a cmp $b;
556                 } elsif ($a_nd != $a) {
557                     # $a is debug-, make it lesser
558                     $res = -1;
559                 } else {
560                     # $b is debug-, make $a greater
561                     $res = 1;
562                 }
563                 $res;
564             } keys %targets;
565
566         foreach (@keys) {
567             if (ref($targets{$_}) ne "HASH") {
568                 # Value is assumed to be a string.  Split it up to
569                 # become a hash table of parameters.  Also, try to
570                 # merge debug- variants with the non-debug target.
571
572                 # Start with converting the value from a string to a
573                 # standardised hash of fields.  Using $tohash is safe,
574                 # if the input is already a hash ref, it's just returned
575                 # back.
576                 $targets{$_} = stringtohash($targets{$_});
577
578                 # If the current target is a debug target, there might
579                 # be a corresponding non-debug target that we can merge
580                 # with.  If it isn't a debug- target, we've already done
581                 # as much merging as we can and do not need to bother
582                 # with that any more.
583                 if ($_ =~ m/^debug-/) {
584                     my $debugkey = $_;
585                     my $nondebugkey = $';
586                     my $debug = $targets{$debugkey};
587                     my $nondebug;
588
589                     if ($targets{$nondebugkey}) {
590                         $nondebug = stringtohash($targets{$nondebugkey});
591                     }
592
593                     if ($nondebug) {
594                         # There's both a debug and non-debug variant of
595                         # this target, so we should try to merge them
596                         # together.
597
598                         # First, check that the non-debug variant isn't
599                         # already built up with all it should have.
600                         if ($nondebug->{debug_cflags}
601                             || $nondebug->{release_cflags}
602                             || $nondebug->{debug_lflags}
603                             || $nondebug->{release_lflags}) {
604                             warn "there's a debug target $debugkey to be merged with a target $nondebugkey, but the latter seems to already have both nodebug and debug information.  This requires human intervention.  Skipping $debugkey...";
605                             next;
606                         }
607
608                         # Now, check similarity.
609                         # For keys they have in common, support that
610                         # cflags and lflags can differ, otherwise they
611                         # must have exactly the same values for them
612                         # to be merged into one.
613                         my $similarenough = 1;
614                         for (keys %{$debug}) {
615                             if ($nondebug->{$_} ne $debug->{$_}
616                                 && $_ !~ m/^[cl]flags$/) {
617                                 $similarenough = 0;
618                                 last;
619                             }
620                         }
621
622                         if ($similarenough) {
623                             # Here's where the magic happens, split the
624                             # options in the debug and non-debug variants
625                             # cflags and ldflags into three strings each,
626                             # one with common flags, one with extra debug
627                             # flags and one with extra non-debug flags.
628
629                             # The result ends up in %h_nondebug, which
630                             # becomes the merged variant when we're done.
631                             # for each of cflags and lflags, they are
632                             # replaced with cflags, debug_cflags,
633                             # release_cflags and similar for lflags.
634                             #
635                             # The purpose is that 'cflags' should be
636                             # used together with 'debug_cflags' or
637                             # 'release_cflags' depending on what the
638                             # user asks for.
639                             foreach (("cflags", "lflags")) {
640                                 my @list_d = split /\s+/, $debug->{$_};
641                                 my @list_nd = split /\s+/, $nondebug->{$_};
642                                 my %presence = (); # bitmap
643                                                    # 1: present in @list_d
644                                                    # 2: present in @list_nd
645                                                    # 3: present in both
646                                 map { $presence{$_} += 1; } @list_d;
647                                 map { $presence{$_} += 2; } @list_nd;
648
649                                 delete $nondebug->{$_};
650                                 # Note: we build from the original lists to
651                                 # preserve order, it might be important
652                                 $nondebug->{"debug-".$_} =
653                                     join(" ",
654                                          grep { $presence{$_} == 1 } @list_d);
655                                 $nondebug->{"nodebug-".$_} =
656                                     join(" ",
657                                          grep { $presence{$_} == 2 } @list_nd);
658                                 $nondebug->{$_} =
659                                     join(" ",
660                                          grep { $presence{$_} == 3 } @list_d);
661                             }
662
663                             $targets{$nondebugkey} = $nondebug;
664                             delete $targets{$debugkey};
665                         }
666                     }
667                 }
668             }
669         }
670
671         %table = (%table, %targets);
672
673         # Local function to resolve inheritance
674         my $resolve_inheritance;
675         $resolve_inheritance =
676             sub {
677                 my $target = shift;
678                 my @breadcrumbs = @_;
679
680                 if (grep { $_ eq $target } @breadcrumbs) {
681                     die "inherit_from loop!  target backtrace:\n  "
682                         ,$target,"\n  ",join("\n  ", @breadcrumbs),"\n";
683                 }
684
685                 # Recurse through all inheritances.  They will be resolved on
686                 # the fly, so when this operation is done, they will all just
687                 # be a bunch of attributes with string values.
688                 # What we get here, though, are keys with references to lists
689                 # of the combined values of them all.  We will deal with lists
690                 # after this stage is done.
691                 my %combined_inheritance = ();
692                 if ($table{$target}->{inherit_from}) {
693                     foreach (@{$table{$target}->{inherit_from}}) {
694                         my %inherited_config =
695                             $resolve_inheritance->($_, $target, @breadcrumbs);
696
697                         # 'template' is a marker that's considered private to
698                         # the config that had it.
699                         delete $inherited_config{template};
700
701                         map {
702                             if (!$combined_inheritance{$_}) {
703                                 $combined_inheritance{$_} = [];
704                             }
705                             push @{$combined_inheritance{$_}}, $inherited_config{$_};
706                         } keys %inherited_config;
707                     }
708                 }
709
710                 # We won't need inherit_from in this target any more, since
711                 # we've resolved all the inheritances that lead to this
712                 delete $table{$target}->{inherit_from};
713
714                 # Now is the time to deal with those lists.  Here's the place
715                 # to decide what shall be done with those lists, all based on
716                 # the values of the target we're currently dealing with.
717                 # - If a value is a coderef, it will be executed with the list
718                 #   of inherited values as arguments.
719                 # - If the corresponding key doesn't have a value at all or is
720                 #   the emoty string, the inherited value list will be run
721                 #   through the default combiner (below), and the result
722                 #   becomes this target's value.
723                 # - Otherwise, this target's value is assumed to be a string
724                 #   that will simply override the inherited list of values.
725                 my $default_combiner = sub { join(' ',@_) };
726
727                 my %all_keys =
728                     map { $_ => 1 } (keys %combined_inheritance,
729                                      keys %{$table{$target}});
730                 foreach (sort keys %all_keys) {
731
732                     # Current target doesn't have a value for the current key?
733                     # Assign it the default combiner, the rest of this loop
734                     # body will handle it just like any other coderef.
735                     if (!exists $table{$target}->{$_}) {
736                         $table{$target}->{$_} = $default_combiner;
737                     }
738
739                     my $valuetype = ref($table{$target}->{$_});
740                     if ($valuetype eq "CODE") {
741                         # CODE reference, execute it with the inherited values
742                         # as arguments.
743                         $table{$target}->{$_} =
744                             $table{$target}->{$_}->(@{$combined_inheritance{$_}});
745                     } elsif ($valuetype eq "") {
746                         # Scalar, just leave it as is.
747                     } else {
748                         # Some other type of reference that we don't handle.
749                         # Better to abort at this point.
750                         die "cannot handle reference type $valuetype,"
751                             ," found in target $target -> $_\n";
752                     }
753                 }
754
755                 # Finally done, return the result.
756                 %{$table{$target}};
757         };
758
759         # Go through all new targets and resolve inheritance and template
760         # references.
761         foreach (keys %targets) {
762             # We're ignoring the returned values here, they are only valuable
763             # to the inner recursion of this function.
764             $resolve_inheritance->($_);
765         }
766 }
767
768 my ($vol, $dir, $dummy) = File::Spec->splitpath($0);
769 my $pattern = File::Spec->catpath($vol, $dir, "Configurations/*.conf");
770 foreach (sort glob($pattern) ) {
771     &read_config($_);
772 }
773
774 my @MK1MF_Builds=qw(VC-WIN64I VC-WIN64A
775                     debug-VC-WIN64I debug-VC-WIN64A
776                     VC-NT VC-CE VC-WIN32 debug-VC-WIN32
777                     BC-32
778                     netware-clib netware-clib-bsdsock
779                     netware-libc netware-libc-bsdsock);
780
781 my $prefix="";
782 my $libdir="";
783 my $openssldir="";
784 my $exe_ext="";
785 my $install_prefix= "$ENV{'INSTALL_PREFIX'}";
786 my $cross_compile_prefix="";
787 my $fipslibdir="/usr/local/ssl/fips-2.0/lib/";
788 my $nofipscanistercheck=0;
789 my $baseaddr="0xFB00000";
790 my $no_threads=0;
791 my $threads=0;
792 my $no_shared=0; # but "no-shared" is default
793 my $zlib=1;      # but "no-zlib" is default
794 my $no_rfc3779=0;
795 my $no_asm=0;
796 my $no_dso=0;
797 my @skip=();
798 my $Makefile="Makefile";
799 my $des_locl="crypto/des/des_locl.h";
800 my $des ="include/openssl/des.h";
801 my $bn  ="include/openssl/bn.h";
802 my $md2 ="include/openssl/md2.h";
803 my $rc4 ="include/openssl/rc4.h";
804 my $rc4_locl="crypto/rc4/rc4_locl.h";
805 my $idea        ="include/openssl/idea.h";
806 my $rc2 ="include/openssl/rc2.h";
807 my $bf  ="crypto/bf/bf_locl.h";
808 my $bn_asm      ="bn_asm.o";
809 my $des_enc="des_enc.o fcrypt_b.o";
810 my $aes_enc="aes_core.o aes_cbc.o";
811 my $bf_enc      ="bf_enc.o";
812 my $cast_enc="c_enc.o";
813 my $rc4_enc="rc4_enc.o rc4_skey.o";
814 my $rc5_enc="rc5_enc.o";
815 my $cmll_enc="camellia.o cmll_misc.o cmll_cbc.o";
816 my $chacha_enc="chacha_enc.o";
817 my $processor="";
818 my $default_ranlib;
819 my $perl;
820 my $fips=0;
821
822 # Explicitelly known options that are possible to disable.  They can
823 # be regexps, and will be used like this: /^no-${option}$/
824 # For developers: keep it sorted alphabetically
825
826 my @disablables = (
827     "aes",
828     "asm",
829     "bf",
830     "camellia",
831     "capieng",
832     "cast",
833     "chacha",
834     "cmac",
835     "cms",
836     "comp",
837     "crypto-mdebug",
838     "ct",
839     "deprecated",
840     "des",
841     "dgram",
842     "dh",
843     "dsa",
844     "dso",
845     "dtls",
846     "dynamic[-_]engine",
847     "ec",
848     "ec2m",
849     "ec_nistp_64_gcc_128",
850     "engine",
851     "err",                      # Really???
852     "gost",
853     "heartbeats",
854     "hmac",
855     "hw(-.+)?",
856     "idea",
857     "jpake",
858     "locking",                  # Really???
859     "md2",
860     "md4",
861     "md5",
862     "mdc2",
863     "md[-_]ghost94",
864     "nextprotoneg",
865     "ocb",
866     "ocsp",
867     "poly1305",
868     "posix-io",
869     "psk",
870     "rc2",
871     "rc4",
872     "rc5",
873     "rdrand",
874     "rfc3779",
875     "rijndael",                 # Old AES name
876     "rmd160",
877     "rsa",
878     "scrypt",
879     "sct",
880     "sctp",
881     "seed",
882     "sha",
883     "shared",
884     "sock",
885     "srp",
886     "srtp",
887     "sse2",
888     "ssl",
889     "ssl3",
890     "ssl3-method",
891     "ssl-trace",
892     "static-engine",
893     "stdio",
894     "store",
895     "threads",
896     "tls",
897     "tls1",
898     "unit-test",
899     "whirlpool",
900     "zlib",
901     "zlib-dynamic",
902     );
903
904 # All of the following is disabled by default (RC5 was enabled before 0.9.8):
905
906 my %disabled = ( # "what"         => "comment" [or special keyword "experimental"]
907                  "ec_nistp_64_gcc_128" => "default",
908                  "jpake"          => "experimental",
909                  "md2"            => "default",
910                  "rc5"            => "default",
911                  "sctp"           => "default",
912                  "shared"         => "default",
913                  "ssl-trace"      => "default",
914                  "store"          => "experimental",
915                  "unit-test"      => "default",
916                  "zlib"           => "default",
917                  "zlib-dynamic"   => "default",
918                  "crypto-mdebug"  => "default",
919                );
920 my @experimental = ();
921
922 # This is what $depflags will look like with the above defaults
923 # (we need this to see if we should advise the user to run "make depend"):
924 my $default_depflags = " -DOPENSSL_NO_CRYPTO_MDEBUG -DOPENSSL_NO_EC_NISTP_64_GCC_128 -DOPENSSL_NO_JPAKE -DOPENSSL_NO_MD2 -DOPENSSL_NO_RC5 -DOPENSSL_NO_SCTP -DOPENSSL_NO_SSL_TRACE -DOPENSSL_NO_STORE -DOPENSSL_NO_UNIT_TEST";
925
926 # Explicit "no-..." options will be collected in %disabled along with the defaults.
927 # To remove something from %disabled, use "enable-foo" (unless it's experimental).
928 # For symmetry, "disable-foo" is a synonym for "no-foo".
929
930 # For features called "experimental" here, a more explicit "experimental-foo" is needed to enable.
931 # We will collect such requests in @experimental.
932 # To avoid accidental use of experimental features, applications will have to use -DOPENSSL_EXPERIMENTAL_FOO.
933
934
935 my $no_sse2=0;
936
937 &usage if ($#ARGV < 0);
938
939 my $flags;
940 my $depflags;
941 my $openssl_experimental_defines;
942 my $openssl_algorithm_defines;
943 my $openssl_thread_defines;
944 my $openssl_sys_defines="";
945 my $openssl_other_defines;
946 my $libs;
947 my $target;
948 my $options;
949 my $api;
950 my $make_depend=0;
951 my %withargs=();
952 my $build_prefix = "release_";
953
954 my @argvcopy=@ARGV;
955 my $argvstring="";
956 my $argv_unprocessed=1;
957
958 while($argv_unprocessed)
959         {
960         $flags="";
961         $depflags="";
962         $openssl_experimental_defines="";
963         $openssl_algorithm_defines="";
964         $openssl_thread_defines="";
965         $openssl_sys_defines="";
966         $openssl_other_defines="";
967         $libs="";
968         $target="";
969         $options="";
970
971         $argv_unprocessed=0;
972         $argvstring=join(' ',@argvcopy);
973
974 PROCESS_ARGS:
975         {
976         my %unsupported_options = ();
977         foreach (@argvcopy)
978                 {
979                 s /^-no-/no-/; # some people just can't read the instructions
980
981                 # rewrite some options in "enable-..." form
982                 s /^-?-?shared$/enable-shared/;
983                 s /^sctp$/enable-sctp/;
984                 s /^threads$/enable-threads/;
985                 s /^zlib$/enable-zlib/;
986                 s /^zlib-dynamic$/enable-zlib-dynamic/;
987
988                 if (/^(no|disable|enable|experimental)-(.+)$/)
989                         {
990                         my $word = $2;
991                         if (!grep { $word =~ /^${_}$/ } @disablables)
992                                 {
993                                 $unsupported_options{$_} = 1;
994                                 next;
995                                 }
996                         }
997                 if (/^no-(.+)$/ || /^disable-(.+)$/)
998                         {
999                         if (!($disabled{$1} eq "experimental"))
1000                                 {
1001                                 if ($1 eq "ssl")
1002                                         {
1003                                         $disabled{"ssl3"} = "option(ssl)";
1004                                         }
1005                                 elsif ($1 eq "tls")
1006                                         {
1007                                         $disabled{"tls1"} = "option(tls)"
1008                                         }
1009                                 elsif ($1 eq "ssl3-method")
1010                                         {
1011                                         $disabled{"ssl3-method"} = "option(ssl)";
1012                                         $disabled{"ssl3"} = "option(ssl)";
1013                                         }
1014                                 else
1015                                         {
1016                                         $disabled{$1} = "option";
1017                                         }
1018                                 }
1019                         }
1020                 elsif (/^enable-(.+)$/ || /^experimental-(.+)$/)
1021                         {
1022                         my $algo = $1;
1023                         if ($disabled{$algo} eq "experimental")
1024                                 {
1025                                 die "You are requesting an experimental feature; please say 'experimental-$algo' if you are sure\n"
1026                                         unless (/^experimental-/);
1027                                 push @experimental, $algo;
1028                                 }
1029                         delete $disabled{$algo};
1030
1031                         $threads = 1 if ($algo eq "threads");
1032                         }
1033                 elsif (/^--test-sanity$/)
1034                         {
1035                         exit(&test_sanity());
1036                         }
1037                 elsif (/^--strict-warnings$/)
1038                         {
1039                         $strict_warnings = 1;
1040                         }
1041                 elsif (/^--debug$/)
1042                         {
1043                         $build_prefix = "debug_";
1044                         }
1045                 elsif (/^--release$/)
1046                         {
1047                         $build_prefix = "release_";
1048                         }
1049                 elsif (/^reconfigure/ || /^reconf/)
1050                         {
1051                         if (open(IN,"<$Makefile"))
1052                                 {
1053                                 my $config_args_found=0;
1054                                 while (<IN>)
1055                                         {
1056                                         chomp;
1057                                         if (/^CONFIGURE_ARGS=(.*)/)
1058                                                 {
1059                                                 $argvstring=$1;
1060                                                 @argvcopy=split(' ',$argvstring);
1061                                                 die "Incorrect data to reconfigure, please do a normal configuration\n"
1062                                                         if (grep(/^reconf/,@argvcopy));
1063                                                 print "Reconfiguring with: $argvstring\n";
1064                                                 $argv_unprocessed=1;
1065                                                 $config_args_found=1;
1066                                                 }
1067                                         elsif (/^CROSS_COMPILE=\s*(.*)/)
1068                                                 {
1069                                                 $ENV{CROSS_COMPILE}=$1;
1070                                                 }
1071                                         elsif (/^CC=\s*(?:\$\(CROSS_COMPILE\))?(.*?)$/)
1072                                                 {
1073                                                 $ENV{CC}=$1;
1074                                                 }
1075                                         }
1076                                 close(IN);
1077                                 last PROCESS_ARGS if ($config_args_found);
1078                                 }
1079                         die "Insufficient data to reconfigure, please do a normal configuration\n";
1080                         }
1081                 elsif (/^386$/)
1082                         { $processor=386; }
1083                 elsif (/^fips$/)
1084                         {
1085                         $fips=1;
1086                         }
1087                 elsif (/^rsaref$/)
1088                         {
1089                         # No RSAref support any more since it's not needed.
1090                         # The check for the option is there so scripts aren't
1091                         # broken
1092                         }
1093                 elsif (/^nofipscanistercheck$/)
1094                         {
1095                         $fips = 1;
1096                         $nofipscanistercheck = 1;
1097                         }
1098                 elsif (/^[-+]/)
1099                         {
1100                         if (/^--prefix=(.*)$/)
1101                                 {
1102                                 $prefix=$1;
1103                                 }
1104                         elsif (/^--api=(.*)$/)
1105                                 {
1106                                 $api=$1;
1107                                 }
1108                         elsif (/^--libdir=(.*)$/)
1109                                 {
1110                                 $libdir=$1;
1111                                 }
1112                         elsif (/^--openssldir=(.*)$/)
1113                                 {
1114                                 $openssldir=$1;
1115                                 }
1116                         elsif (/^--install.prefix=(.*)$/)
1117                                 {
1118                                 $install_prefix=$1;
1119                                 }
1120                         elsif (/^--with-zlib-lib=(.*)$/)
1121                                 {
1122                                 $withargs{"zlib-lib"}=$1;
1123                                 }
1124                         elsif (/^--with-zlib-include=(.*)$/)
1125                                 {
1126                                 $withargs{"zlib-include"}="-I$1";
1127                                 }
1128                         elsif (/^--with-fipslibdir=(.*)$/)
1129                                 {
1130                                 $fipslibdir="$1/";
1131                                 }
1132                         elsif (/^--with-baseaddr=(.*)$/)
1133                                 {
1134                                 $baseaddr="$1";
1135                                 }
1136                         elsif (/^--cross-compile-prefix=(.*)$/)
1137                                 {
1138                                 $cross_compile_prefix=$1;
1139                                 }
1140                         elsif (/^--config=(.*)$/)
1141                                 {
1142                                 read_config $1;
1143                                 }
1144                         elsif (/^-[lL](.*)$/ or /^-Wl,/)
1145                                 {
1146                                 $libs.=$_." ";
1147                                 }
1148                         else    # common if (/^[-+]/), just pass down...
1149                                 {
1150                                 $_ =~ s/%([0-9a-f]{1,2})/chr(hex($1))/gei;
1151                                 $flags.=$_." ";
1152                                 }
1153                         }
1154                 elsif ($_ =~ /^([^:]+):(.+)$/)
1155                         {
1156                         eval "\$table{\$1} = \"$2\""; # allow $xxx constructs in the string
1157                         $target=$1;
1158                         }
1159                 else
1160                         {
1161                         die "target already defined - $target (offending arg: $_)\n" if ($target ne "");
1162                         $target=$_;
1163                         }
1164
1165                 unless ($_ eq $target || /^no-/ || /^disable-/)
1166                         {
1167                         # "no-..." follows later after implied disactivations
1168                         # have been derived.  (Don't take this too seroiusly,
1169                         # we really only write OPTIONS to the Makefile out of
1170                         # nostalgia.)
1171
1172                         if ($options eq "")
1173                                 { $options = $_; }
1174                         else
1175                                 { $options .= " ".$_; }
1176                         }
1177                 }
1178
1179         if (defined($api) && !exists $apitable->{$api}) {
1180                 die "***** Unsupported api compatibility level: $api\n",
1181         }
1182
1183         if (keys %unsupported_options)
1184                 {
1185                 die "***** Unsupported options: ",
1186                         join(", ", keys %unsupported_options), "\n";
1187                 }
1188         }
1189         }
1190
1191
1192 if ($processor eq "386")
1193         {
1194         $disabled{"sse2"} = "forced";
1195         }
1196
1197 if (!defined($disabled{"zlib-dynamic"}))
1198         {
1199         # "zlib-dynamic" was specifically enabled, so enable "zlib"
1200         delete $disabled{"zlib"};
1201         }
1202
1203 if (defined($disabled{"rijndael"}))
1204         {
1205         $disabled{"aes"} = "forced";
1206         }
1207 if (defined($disabled{"des"}))
1208         {
1209         $disabled{"mdc2"} = "forced";
1210         }
1211 if (defined($disabled{"ec"}))
1212         {
1213         $disabled{"ecdsa"} = "forced";
1214         $disabled{"ecdh"} = "forced";
1215         }
1216
1217 # SSL 3.0 and TLS requires MD5 and SHA and either RSA or DSA+DH
1218 if (defined($disabled{"md5"}) || defined($disabled{"sha"})
1219     || (defined($disabled{"rsa"})
1220         && (defined($disabled{"dsa"}) || defined($disabled{"dh"}))))
1221         {
1222         $disabled{"ssl3"} = "forced";
1223         $disabled{"tls1"} = "forced";
1224         }
1225
1226 if (defined($disabled{"dgram"}))
1227         {
1228         $disabled{"dtls"} = "forced";
1229         }
1230
1231 if (defined($disabled{"ec"}) || defined($disabled{"dsa"})
1232     || defined($disabled{"dh"}) || defined($disabled{"stdio"}))
1233         {
1234         $disabled{"gost"} = "forced";
1235         }
1236
1237
1238 if ($target eq "TABLE") {
1239         foreach $target (sort keys %table) {
1240                 print_table_entry($target, "TABLE");
1241         }
1242         exit 0;
1243 }
1244
1245 if ($target eq "LIST") {
1246         foreach (sort keys %table) {
1247                 print;
1248                 print "\n";
1249         }
1250         exit 0;
1251 }
1252
1253 if ($target eq "HASH") {
1254         print "%table = (\n";
1255         foreach (sort keys %table) {
1256                 print_table_entry($_, "HASH");
1257         }
1258         exit 0;
1259 }
1260
1261 if ($target =~ m/^CygWin32(-.*)$/) {
1262         $target = "Cygwin".$1;
1263 }
1264
1265 print "Configuring for $target\n";
1266
1267 # Support for legacy targets having a name starting with 'debug-'
1268 my ($d, $t) = $target =~ m/^(debug-)?(.*)$/;
1269 if ($d) {
1270     $build_prefix = "debug_";
1271
1272     # If we do not find debug-foo in the table, the target is set to foo,
1273     # but only if the foo target has a noon-empty debug_cflags or debug_lflags
1274     # attribute.
1275     if (!$table{$target} && ($table{$t}->{debug_cflags}
1276                              || $table{$t}->{debug_lflags})) {
1277         $target = $t;
1278     }
1279 }
1280
1281 &usage if (!defined($table{$target})
1282            || $table{$target}->{template}
1283            || ($build_prefix eq "debug_"
1284                && $target !~ /^debug-/
1285                && !($table{$target}->{debug_cflags}
1286                     || $table{$target}->{debug_lflags})));
1287
1288 if ($fips)
1289         {
1290         delete $disabled{"shared"} if ($disabled{"shared"} eq "default");
1291         }
1292
1293 foreach (sort (keys %disabled))
1294         {
1295         $options .= " no-$_";
1296
1297         printf "    no-%-12s %-10s", $_, "[$disabled{$_}]";
1298
1299         if (/^dso$/)
1300                 { $no_dso = 1; }
1301         elsif (/^threads$/)
1302                 { $no_threads = 1; }
1303         elsif (/^shared$/)
1304                 { $no_shared = 1; }
1305         elsif (/^zlib$/)
1306                 { $zlib = 0; }
1307         elsif (/^static-engine$/)
1308                 { }
1309         elsif (/^zlib-dynamic$/)
1310                 { }
1311         elsif (/^sse2$/)
1312                 { $no_sse2 = 1; }
1313         else
1314                 {
1315                 my ($ALGO, $algo);
1316                 ($ALGO = $algo = $_) =~ tr/[\-a-z]/[_A-Z]/;
1317
1318                 if (/^asm$/ || /^err$/ || /^hw$/ || /^hw-/)
1319                         {
1320                         $openssl_other_defines .= "#define OPENSSL_NO_$ALGO\n";
1321                         print " OPENSSL_NO_$ALGO";
1322
1323                         if (/^err$/)    { $flags .= "-DOPENSSL_NO_ERR "; }
1324                         elsif (/^asm$/) { $no_asm = 1; }
1325                         }
1326                 else
1327                         {
1328                         ($ALGO,$algo) = ("RMD160","rmd160") if ($algo eq "ripemd");
1329
1330                         $openssl_algorithm_defines .= "#define OPENSSL_NO_$ALGO\n";
1331                         print " OPENSSL_NO_$ALGO";
1332
1333                         push @skip, $algo;
1334                         # fix-up crypto/directory name(s)
1335                         $skip[$#skip]="whrlpool" if $algo eq "whirlpool";
1336                         $skip[$#skip]="ripemd" if $algo eq "rmd160";
1337
1338                         print " (skip dir)";
1339
1340                         $depflags .= " -DOPENSSL_NO_$ALGO";
1341                         }
1342                 }
1343
1344         print "\n";
1345         }
1346
1347 my $exp_cflags = "";
1348
1349 foreach (sort @experimental)
1350         {
1351         my $ALGO;
1352         ($ALGO = $_) =~ tr/[a-z]/[A-Z]/;
1353
1354         # opensslconf.h will set OPENSSL_NO_... unless OPENSSL_EXPERIMENTAL_... is defined
1355         $openssl_experimental_defines .= "#define OPENSSL_NO_$ALGO\n";
1356         $exp_cflags .= " -DOPENSSL_EXPERIMENTAL_$ALGO";
1357         }
1358
1359 my $IsMK1MF=scalar grep /^$target$/,@MK1MF_Builds;
1360
1361 $exe_ext=".exe" if ($target eq "Cygwin" || $target eq "DJGPP" || $target =~ /^mingw/);
1362 $exe_ext=".nlm" if ($target =~ /netware/);
1363 $exe_ext=".pm"  if ($target =~ /vos/);
1364 $openssldir="/usr/local/ssl" if ($openssldir eq "" and $prefix eq "");
1365 $prefix=$openssldir if $prefix eq "";
1366
1367 $default_ranlib= &which("ranlib") or $default_ranlib="true";
1368 $perl=$ENV{'PERL'} or $perl=&which("perl5") or $perl=&which("perl")
1369   or $perl="perl";
1370 my $make = $ENV{'MAKE'} || "make";
1371
1372 $cross_compile_prefix=$ENV{'CROSS_COMPILE'} if $cross_compile_prefix eq "";
1373
1374 chop $openssldir if $openssldir =~ /\/$/;
1375 chop $prefix if $prefix =~ /.\/$/;
1376
1377 $openssldir=$prefix . "/ssl" if $openssldir eq "";
1378 $openssldir=$prefix . "/" . $openssldir if $openssldir !~ /(^\/|^[a-zA-Z]:[\\\/])/;
1379
1380
1381 print "IsMK1MF=$IsMK1MF\n";
1382
1383 # Allow environment CC to override compiler...
1384 my $cc = $ENV{CC} || $table{$target}->{cc};
1385
1386 # For cflags and lflags, add the debug_ or release_ attributes
1387 # Do it in such a way that no spurious space is appended (hence the grep).
1388 my $cflags = join(" ",
1389                   grep { $_ } ($table{$target}->{cflags},
1390                                $table{$target}->{$build_prefix."cflags"}));
1391 my $lflags = join(" ",
1392                   grep { $_ } ($table{$target}->{lflags},
1393                                $table{$target}->{$build_prefix."lflags"}));
1394
1395 my $unistd = $table{$target}->{unistd};
1396 my $thread_cflag = $table{$target}->{thread_cflag};
1397 my $sys_id = $table{$target}->{sys_id};
1398 my $bn_ops = $table{$target}->{bn_ops};
1399 my $cpuid_obj = $table{$target}->{cpuid_obj};
1400 my $bn_obj = $table{$target}->{bn_obj};
1401 my $ec_obj = $table{$target}->{ec_obj};
1402 my $des_obj = $table{$target}->{des_obj};
1403 my $aes_obj = $table{$target}->{aes_obj};
1404 my $bf_obj = $table{$target}->{bf_obj};
1405 my $md5_obj = $table{$target}->{md5_obj};
1406 my $sha1_obj = $table{$target}->{sha1_obj};
1407 my $cast_obj = $table{$target}->{cast_obj};
1408 my $rc4_obj = $table{$target}->{rc4_obj};
1409 my $rmd160_obj = $table{$target}->{rmd160_obj};
1410 my $rc5_obj = $table{$target}->{rc5_obj};
1411 my $wp_obj = $table{$target}->{wp_obj};
1412 my $cmll_obj = $table{$target}->{cmll_obj};
1413 my $modes_obj = $table{$target}->{modes_obj};
1414 my $engines_obj = $table{$target}->{engines_obj};
1415 my $chacha_obj = $table{$target}->{chacha_obj};
1416 my $poly1305_obj = $table{$target}->{poly1305_obj};
1417 my $perlasm_scheme = $table{$target}->{perlasm_scheme};
1418 my $dso_scheme = $table{$target}->{dso_scheme};
1419 my $shared_target = $table{$target}->{shared_target};
1420 my $shared_cflag = $table{$target}->{shared_cflag};
1421 my $shared_ldflag = $table{$target}->{shared_ldflag};
1422 my $shared_extension = $table{$target}->{shared_extension};
1423 my $ranlib = $ENV{'RANLIB'} || $table{$target}->{ranlib};
1424 my $ar = $ENV{'AR'} || "ar";
1425 my $arflags = $table{$target}->{arflags};
1426 my $multilib = $table{$target}->{multilib};
1427
1428 # if $prefix/lib$multilib is not an existing directory, then
1429 # assume that it's not searched by linker automatically, in
1430 # which case adding $multilib suffix causes more grief than
1431 # we're ready to tolerate, so don't...
1432 $multilib="" if !-d "$prefix/lib$multilib";
1433
1434 $libdir="lib$multilib" if $libdir eq "";
1435
1436 $cflags = "$cflags$exp_cflags";
1437
1438 # '%' in $lflags is used to split flags to "pre-" and post-flags
1439 my ($prelflags,$postlflags)=split('%',$lflags);
1440 if (defined($postlflags))       { $lflags=$postlflags;  }
1441 else                            { $lflags=$prelflags; undef $prelflags; }
1442
1443 if ($target =~ /^mingw/ && `$cc --target-help 2>&1` !~ m/\-mno\-cygwin/m)
1444         {
1445         $cflags =~ s/\-mno\-cygwin\s*//;
1446         $shared_ldflag =~ s/\-mno\-cygwin\s*//;
1447         }
1448
1449 if ($target =~ /linux.*\-mips/ && !$no_asm && $flags !~ /\-m(ips|arch=)/) {
1450         # minimally required architecture flags for assembly modules
1451         $cflags="-mips2 $cflags" if ($target =~ /mips32/);
1452         $cflags="-mips3 $cflags" if ($target =~ /mips64/);
1453 }
1454
1455 my $no_shared_warn=0;
1456 my $no_user_cflags=0;
1457
1458 if ($flags ne "")       { $cflags="$flags$cflags"; }
1459 else                    { $no_user_cflags=1;       }
1460
1461 # The DSO code currently always implements all functions so that no
1462 # applications will have to worry about that from a compilation point
1463 # of view. However, the "method"s may return zero unless that platform
1464 # has support compiled in for them. Currently each method is enabled
1465 # by a define "DSO_<name>" ... we translate the "dso_scheme" config
1466 # string entry into using the following logic;
1467 my $dso_cflags;
1468 if (!$no_dso && $dso_scheme ne "")
1469         {
1470         $dso_scheme =~ tr/[a-z]/[A-Z]/;
1471         if ($dso_scheme eq "DLFCN")
1472                 {
1473                 $dso_cflags = "-DDSO_DLFCN -DHAVE_DLFCN_H";
1474                 }
1475         elsif ($dso_scheme eq "DLFCN_NO_H")
1476                 {
1477                 $dso_cflags = "-DDSO_DLFCN";
1478                 }
1479         else
1480                 {
1481                 $dso_cflags = "-DDSO_$dso_scheme";
1482                 }
1483         $cflags = "$dso_cflags $cflags";
1484         }
1485
1486 my $thread_cflags;
1487 my $thread_defines;
1488 if ($thread_cflag ne "(unknown)" && !$no_threads)
1489         {
1490         # If we know how to do it, support threads by default.
1491         $threads = 1;
1492         }
1493 if ($thread_cflag eq "(unknown)" && $threads)
1494         {
1495         # If the user asked for "threads", [s]he is also expected to
1496         # provide any system-dependent compiler options that are
1497         # necessary.
1498         if ($no_user_cflags)
1499                 {
1500                 print "You asked for multi-threading support, but didn't\n";
1501                 print "provide any system-specific compiler options\n";
1502                 exit(1);
1503                 }
1504         $thread_cflags="-DOPENSSL_THREADS $cflags" ;
1505         $thread_defines .= "#define OPENSSL_THREADS\n";
1506         }
1507 else
1508         {
1509         $thread_cflags="-DOPENSSL_THREADS $thread_cflag $cflags";
1510         $thread_defines .= "#define OPENSSL_THREADS\n";
1511 #       my $def;
1512 #       foreach $def (split ' ',$thread_cflag)
1513 #               {
1514 #               if ($def =~ s/^-D// && $def !~ /^_/)
1515 #                       {
1516 #                       $thread_defines .= "#define $def\n";
1517 #                       }
1518 #               }
1519         }
1520
1521 $lflags="$libs$lflags" if ($libs ne "");
1522
1523 if ($no_asm)
1524         {
1525         $cpuid_obj=$bn_obj=$ec_obj=
1526         $des_obj=$aes_obj=$bf_obj=$cast_obj=$rc4_obj=$rc5_obj=$cmll_obj=
1527         $modes_obj=$sha1_obj=$md5_obj=$rmd160_obj=$wp_obj=$engines_obj=
1528         $chacha_obj=$poly1305_obj="";
1529         $cflags=~s/\-D[BL]_ENDIAN//             if ($fips);
1530         $thread_cflags=~s/\-D[BL]_ENDIAN//      if ($fips);
1531         }
1532 elsif (defined($disabled{ec2m}))
1533         {
1534         $bn_obj =~ s/\w+-gf2m.o//;
1535         }
1536
1537 if (!$no_shared)
1538         {
1539         $cast_obj="";   # CAST assembler is not PIC
1540         }
1541
1542 if ($threads)
1543         {
1544         $cflags=$thread_cflags;
1545         $openssl_thread_defines .= $thread_defines;
1546         }
1547
1548 if ($zlib)
1549         {
1550         $cflags = "-DZLIB $cflags";
1551         if (defined($disabled{"zlib-dynamic"}))
1552                 {
1553                 if (defined($withargs{"zlib-lib"}))
1554                         {
1555                         $lflags = "$lflags -L" . $withargs{"zlib-lib"} . " -lz";
1556                         }
1557                 else
1558                         {
1559                         $lflags = "$lflags -lz";
1560                         }
1561                 }
1562         else
1563                 {
1564                 $cflags = "-DZLIB_SHARED $cflags";
1565                 }
1566         }
1567
1568 # With "deprecated" disable all deprecated features.
1569 if (defined($disabled{"deprecated"})) {
1570         $api = $maxapi;
1571 }
1572
1573 # You will find shlib_mark1 and shlib_mark2 explained in Makefile.in
1574 my $shared_mark = "";
1575 if ($shared_target eq "")
1576         {
1577         $no_shared_warn = 1 if !$no_shared && !$fips;
1578         $no_shared = 1;
1579         }
1580 if (!$no_shared)
1581         {
1582         if ($shared_cflag ne "")
1583                 {
1584                 $cflags = "$shared_cflag -DOPENSSL_PIC $cflags";
1585                 }
1586         }
1587
1588 if (!$IsMK1MF)
1589         {
1590         # add {no-}static-engine to options to allow mkdef.pl to work without extra arguments
1591         if ($no_shared)
1592                 {
1593                 $openssl_other_defines.="#define OPENSSL_NO_DYNAMIC_ENGINE\n";
1594                 $options.=" static-engine";
1595                 }
1596         else
1597                 {
1598                 $openssl_other_defines.="#define OPENSSL_NO_STATIC_ENGINE\n";
1599                 $options.=" no-static-engine";
1600                 }
1601         }
1602
1603 $cpuid_obj.=" uplink.o uplink-x86.o" if ($cflags =~ /\-DOPENSSL_USE_APPLINK/);
1604
1605 #
1606 # Platform fix-ups
1607 #
1608 if ($target =~ /\-icc$/)        # Intel C compiler
1609         {
1610         my $iccver=0;
1611         if (open(FD,"$cc -V 2>&1 |"))
1612                 {
1613                 while(<FD>) { $iccver=$1 if (/Version ([0-9]+)\./); }
1614                 close(FD);
1615                 }
1616         if ($iccver>=8)
1617                 {
1618                 $cflags=~s/\-KPIC/-fPIC/;
1619                 # Eliminate unnecessary dependency from libirc.a. This is
1620                 # essential for shared library support, as otherwise
1621                 # apps/openssl can end up in endless loop upon startup...
1622                 $cflags.=" -Dmemcpy=__builtin_memcpy -Dmemset=__builtin_memset";
1623                 }
1624         if ($iccver>=9)
1625                 {
1626                 $lflags.=" -i-static";
1627                 $lflags=~s/\-no_cpprt/-no-cpprt/;
1628                 }
1629         if ($iccver>=10)
1630                 {
1631                 $lflags=~s/\-i\-static/-static-intel/;
1632                 }
1633         if ($iccver>=11)
1634                 {
1635                 $cflags.=" -no-intel-extensions";       # disable Cilk
1636                 $lflags=~s/\-no\-cpprt/-no-cxxlib/;
1637                 }
1638         }
1639
1640 # Unlike other OSes (like Solaris, Linux, Tru64, IRIX) BSD run-time
1641 # linkers (tested OpenBSD, NetBSD and FreeBSD) "demand" RPATH set on
1642 # .so objects. Apparently application RPATH is not global and does
1643 # not apply to .so linked with other .so. Problem manifests itself
1644 # when libssl.so fails to load libcrypto.so. One can argue that we
1645 # should engrave this into Makefile.shared rules or into BSD-* config
1646 # lines above. Meanwhile let's try to be cautious and pass -rpath to
1647 # linker only when --prefix is not /usr.
1648 if ($target =~ /^BSD\-/)
1649         {
1650         $shared_ldflag.=" -Wl,-rpath,\$(LIBRPATH)" if ($prefix !~ m|^/usr[/]*$|);
1651         }
1652
1653 if ($sys_id ne "")
1654         {
1655         #$cflags="-DOPENSSL_SYS_$sys_id $cflags";
1656         $openssl_sys_defines="#define OPENSSL_SYS_$sys_id\n";
1657         }
1658
1659 if ($ranlib eq "")
1660         {
1661         $ranlib = $default_ranlib;
1662         }
1663
1664 #my ($bn1)=split(/\s+/,$bn_obj);
1665 #$bn1 = "" unless defined $bn1;
1666 #$bn1=$bn_asm unless ($bn1 =~ /\.o$/);
1667 #$bn_obj="$bn1";
1668
1669 $cpuid_obj="" if ($processor eq "386");
1670
1671 $bn_obj = $bn_asm unless $bn_obj ne "";
1672 # bn-586 is the only one implementing bn_*_part_words
1673 $cflags.=" -DOPENSSL_BN_ASM_PART_WORDS" if ($bn_obj =~ /bn-586/);
1674 $cflags.=" -DOPENSSL_IA32_SSE2" if (!$no_sse2 && $bn_obj =~ /86/);
1675
1676 $cflags.=" -DOPENSSL_BN_ASM_MONT" if ($bn_obj =~ /-mont/);
1677 $cflags.=" -DOPENSSL_BN_ASM_MONT5" if ($bn_obj =~ /-mont5/);
1678 $cflags.=" -DOPENSSL_BN_ASM_GF2m" if ($bn_obj =~ /-gf2m/);
1679
1680 if ($fips)
1681         {
1682         $openssl_other_defines.="#define OPENSSL_FIPS\n";
1683         }
1684
1685 $cpuid_obj="mem_clr.o"  unless ($cpuid_obj =~ /\.o$/);
1686 $des_obj=$des_enc       unless ($des_obj =~ /\.o$/);
1687 $bf_obj=$bf_enc         unless ($bf_obj =~ /\.o$/);
1688 $cast_obj=$cast_enc     unless ($cast_obj =~ /\.o$/);
1689 $rc4_obj=$rc4_enc       unless ($rc4_obj =~ /\.o$/);
1690 $rc5_obj=$rc5_enc       unless ($rc5_obj =~ /\.o$/);
1691 if ($sha1_obj =~ /\.o$/)
1692         {
1693 #       $sha1_obj=$sha1_enc;
1694         $cflags.=" -DSHA1_ASM"   if ($sha1_obj =~ /sx86/ || $sha1_obj =~ /sha1/);
1695         $cflags.=" -DSHA256_ASM" if ($sha1_obj =~ /sha256/);
1696         $cflags.=" -DSHA512_ASM" if ($sha1_obj =~ /sha512/);
1697         if ($sha1_obj =~ /sse2/)
1698             {   if ($no_sse2)
1699                 {   $sha1_obj =~ s/\S*sse2\S+//;        }
1700                 elsif ($cflags !~ /OPENSSL_IA32_SSE2/)
1701                 {   $cflags.=" -DOPENSSL_IA32_SSE2";    }
1702             }
1703         }
1704 if ($md5_obj =~ /\.o$/)
1705         {
1706 #       $md5_obj=$md5_enc;
1707         $cflags.=" -DMD5_ASM";
1708         }
1709 if ($rmd160_obj =~ /\.o$/)
1710         {
1711 #       $rmd160_obj=$rmd160_enc;
1712         $cflags.=" -DRMD160_ASM";
1713         }
1714 if ($aes_obj =~ /\.o$/)
1715         {
1716         $cflags.=" -DAES_ASM" if ($aes_obj =~ m/\baes\-/);;
1717         # aes-ctr.o is not a real file, only indication that assembler
1718         # module implements AES_ctr32_encrypt...
1719         $cflags.=" -DAES_CTR_ASM" if ($aes_obj =~ s/\s*aes\-ctr\.o//);
1720         # aes-xts.o indicates presence of AES_xts_[en|de]crypt...
1721         $cflags.=" -DAES_XTS_ASM" if ($aes_obj =~ s/\s*aes\-xts\.o//);
1722         $aes_obj =~ s/\s*(vpaes|aesni)\-x86\.o//g if ($no_sse2);
1723         $cflags.=" -DVPAES_ASM" if ($aes_obj =~ m/vpaes/);
1724         $cflags.=" -DBSAES_ASM" if ($aes_obj =~ m/bsaes/);
1725         }
1726 else    {
1727         $aes_obj=$aes_enc;
1728         }
1729 $wp_obj="" if ($wp_obj =~ /mmx/ && $processor eq "386");
1730 if ($wp_obj =~ /\.o$/ && !$disabled{"whirlpool"})
1731         {
1732         $cflags.=" -DWHIRLPOOL_ASM";
1733         }
1734 else    {
1735         $wp_obj="wp_block.o";
1736         }
1737 $cmll_obj=$cmll_enc     unless ($cmll_obj =~ /.o$/);
1738 if ($modes_obj =~ /ghash\-/)
1739         {
1740         $cflags.=" -DGHASH_ASM";
1741         }
1742 if ($ec_obj =~ /ecp_nistz256/)
1743         {
1744         $cflags.=" -DECP_NISTZ256_ASM";
1745         }
1746 $chacha_obj=$chacha_enc unless ($chacha_obj =~ /\.o$/);
1747 if ($poly1305_obj =~ /\.o$/)
1748         {
1749         $cflags.=" -DPOLY1305_ASM";
1750         }
1751
1752 # "Stringify" the C flags string.  This permits it to be made part of a string
1753 # and works as well on command lines.
1754 $cflags =~ s/([\\\"])/\\\1/g;
1755
1756 my $version = "unknown";
1757 my $version_num = "unknown";
1758 my $major = "unknown";
1759 my $minor = "unknown";
1760 my $shlib_version_number = "unknown";
1761 my $shlib_version_history = "unknown";
1762 my $shlib_major = "unknown";
1763 my $shlib_minor = "unknown";
1764
1765 open(IN,'<include/openssl/opensslv.h') || die "unable to read opensslv.h:$!\n";
1766 while (<IN>)
1767         {
1768         $version=$1 if /OPENSSL.VERSION.TEXT.*OpenSSL (\S+) /;
1769         $version_num=$1 if /OPENSSL.VERSION.NUMBER.*(0x\S+)/;
1770         $shlib_version_number=$1 if /SHLIB_VERSION_NUMBER *"([^"]+)"/;
1771         $shlib_version_history=$1 if /SHLIB_VERSION_HISTORY *"([^"]*)"/;
1772         }
1773 close(IN);
1774 if ($shlib_version_history ne "") { $shlib_version_history .= ":"; }
1775
1776 if ($version =~ /(^[0-9]*)\.([0-9\.]*)/)
1777         {
1778         $major=$1;
1779         $minor=$2;
1780         }
1781
1782 if ($shlib_version_number =~ /(^[0-9]*)\.([0-9\.]*)/)
1783         {
1784         $shlib_major=$1;
1785         $shlib_minor=$2;
1786         }
1787
1788 if (defined($api)) {
1789     my $apiflag = sprintf("-DOPENSSL_API_COMPAT=%s", $apitable->{$api});
1790     $default_depflags .= " $apiflag";
1791     $cflags .= " $apiflag";
1792 }
1793
1794 my $ecc = $cc;
1795 $ecc = "clang" if `$cc --version 2>&1` =~ /clang/;
1796
1797 if ($strict_warnings)
1798         {
1799         my $wopt;
1800         die "ERROR --strict-warnings requires gcc or clang" unless ($ecc =~ /gcc(-\d(\.\d)*)?$/ or $ecc =~ /clang$/);
1801         foreach $wopt (split /\s+/, $gcc_devteam_warn)
1802                 {
1803                 $cflags .= " $wopt" unless ($cflags =~ /(^|\s)$wopt(\s|$)/)
1804                 }
1805         if ($ecc eq "clang")
1806                 {
1807                 foreach $wopt (split /\s+/, $clang_devteam_warn)
1808                         {
1809                         $cflags .= " $wopt" unless ($cflags =~ /(^|\s)$wopt(\s|$)/)
1810                         }
1811                 }
1812         if ($target !~ /^mingw/)
1813                 {
1814                 foreach $wopt (split /\s+/, $memleak_devteam_backtrace)
1815                         {
1816                         $cflags .= " $wopt" unless ($cflags =~ /(^|\s)$wopt(\s|$)/)
1817                         }
1818                 if ($target =~ /^BSD-/)
1819                         {
1820                         $lflags .= " -lexecinfo";
1821                         }
1822                 }
1823         }
1824
1825 open(IN,"<Makefile.in") || die "unable to read Makefile.in$!\n";
1826 unlink("$Makefile.new") || die "unable to remove old $Makefile.new:$!\n" if -e "$Makefile.new";
1827 open(OUT,">$Makefile.new") || die "unable to create $Makefile.new:$!\n";
1828 print OUT "### Generated automatically from Makefile.in by Configure.\n\n";
1829 my $sdirs=0;
1830
1831 while (<IN>)
1832         {
1833         chomp;
1834         $sdirs = 1 if /^SDIRS=/;
1835         if ($sdirs) {
1836                 my $dir;
1837                 foreach $dir (@skip) {
1838                         s/(\s)$dir /$1/;
1839                         s/\s$dir$//;
1840                         }
1841                 }
1842         $sdirs = 0 unless /\\$/;
1843         s/fips // if (/^DIRS=/ && !$fips);
1844         s/engines // if (/^DIRS=/ && $disabled{"engine"});
1845         s/ccgost// if (/^ENGDIRS=/ && $disabled{"gost"});
1846         s/^VERSION=.*/VERSION=$version/;
1847         s/^MAJOR=.*/MAJOR=$major/;
1848         s/^MINOR=.*/MINOR=$minor/;
1849         s/^SHLIB_VERSION_NUMBER=.*/SHLIB_VERSION_NUMBER=$shlib_version_number/;
1850         s/^SHLIB_VERSION_HISTORY=.*/SHLIB_VERSION_HISTORY=$shlib_version_history/;
1851         s/^SHLIB_MAJOR=.*/SHLIB_MAJOR=$shlib_major/;
1852         s/^SHLIB_MINOR=.*/SHLIB_MINOR=$shlib_minor/;
1853         s/^SHLIB_EXT=.*/SHLIB_EXT=$shared_extension/;
1854         s/^INSTALLTOP=.*$/INSTALLTOP=$prefix/;
1855         s/^MULTILIB=.*$/MULTILIB=$multilib/;
1856         s/^OPENSSLDIR=.*$/OPENSSLDIR=$openssldir/;
1857         s/^LIBDIR=.*$/LIBDIR=$libdir/;
1858         s/^INSTALL_PREFIX=.*$/INSTALL_PREFIX=$install_prefix/;
1859         s/^PLATFORM=.*$/PLATFORM=$target/;
1860         s/^OPTIONS=.*$/OPTIONS=$options/;
1861         s/^CONFIGURE_ARGS=.*$/CONFIGURE_ARGS=$argvstring/;
1862         if ($cross_compile_prefix)
1863                 {
1864                 s/^CC=.*$/CROSS_COMPILE= $cross_compile_prefix\nCC= \$\(CROSS_COMPILE\)$cc/;
1865                 s/^AR=\s*/AR= \$\(CROSS_COMPILE\)/;
1866                 s/^NM=\s*/NM= \$\(CROSS_COMPILE\)/;
1867                 s/^RANLIB=\s*/RANLIB= \$\(CROSS_COMPILE\)/;
1868                 s/^MAKEDEPPROG=.*$/MAKEDEPPROG= \$\(CROSS_COMPILE\)$cc/ if $cc eq "gcc";
1869                 }
1870         else    {
1871                 s/^CC=.*$/CC= $cc/;
1872                 s/^AR=\s*ar/AR= $ar/;
1873                 s/^RANLIB=.*/RANLIB= $ranlib/;
1874                 s/^MAKEDEPPROG=.*$/MAKEDEPPROG= $cc/ if $ecc eq "gcc" || $ecc eq "clang";
1875                 }
1876         s/^CFLAG=.*$/CFLAG= $cflags/;
1877         s/^DEPFLAG=.*$/DEPFLAG=$depflags/;
1878         s/^PEX_LIBS=.*$/PEX_LIBS= $prelflags/;
1879         s/^EX_LIBS=.*$/EX_LIBS= $lflags/;
1880         s/^EXE_EXT=.*$/EXE_EXT= $exe_ext/;
1881         s/^CPUID_OBJ=.*$/CPUID_OBJ= $cpuid_obj/;
1882         s/^BN_ASM=.*$/BN_ASM= $bn_obj/;
1883         s/^EC_ASM=.*$/EC_ASM= $ec_obj/;
1884         s/^DES_ENC=.*$/DES_ENC= $des_obj/;
1885         s/^AES_ENC=.*$/AES_ENC= $aes_obj/;
1886         s/^BF_ENC=.*$/BF_ENC= $bf_obj/;
1887         s/^CAST_ENC=.*$/CAST_ENC= $cast_obj/;
1888         s/^RC4_ENC=.*$/RC4_ENC= $rc4_obj/;
1889         s/^RC5_ENC=.*$/RC5_ENC= $rc5_obj/;
1890         s/^MD5_ASM_OBJ=.*$/MD5_ASM_OBJ= $md5_obj/;
1891         s/^SHA1_ASM_OBJ=.*$/SHA1_ASM_OBJ= $sha1_obj/;
1892         s/^RMD160_ASM_OBJ=.*$/RMD160_ASM_OBJ= $rmd160_obj/;
1893         s/^WP_ASM_OBJ=.*$/WP_ASM_OBJ= $wp_obj/;
1894         s/^CMLL_ENC=.*$/CMLL_ENC= $cmll_obj/;
1895         s/^MODES_ASM_OBJ.=*$/MODES_ASM_OBJ= $modes_obj/;
1896         s/^CHACHA_ENC=.*$/CHACHA_ENC= $chacha_obj/;
1897         s/^POLY1305_ASM_OBJ=.*$/POLY1305_ASM_OBJ= $poly1305_obj/;
1898         s/^ENGINES_ASM_OBJ.=*$/ENGINES_ASM_OBJ= $engines_obj/;
1899         s/^PERLASM_SCHEME=.*$/PERLASM_SCHEME= $perlasm_scheme/;
1900         s/^PROCESSOR=.*/PROCESSOR= $processor/;
1901         s/^ARFLAGS=.*/ARFLAGS= $arflags/;
1902         s/^PERL=.*/PERL= $perl/;
1903         s/^LIBZLIB=.*/LIBZLIB=$withargs{"zlib-lib"}/;
1904         s/^ZLIB_INCLUDE=.*/ZLIB_INCLUDE=$withargs{"zlib-include"}/;
1905         s/^FIPSLIBDIR=.*/FIPSLIBDIR=$fipslibdir/;
1906         s/^FIPSCANLIB=.*/FIPSCANLIB=libcrypto/ if $fips;
1907         s/^SHARED_FIPS=.*/SHARED_FIPS=/;
1908         s/^SHLIBDIRS=.*/SHLIBDIRS= crypto ssl/;
1909         s/^BASEADDR=.*/BASEADDR=$baseaddr/;
1910         s/^SHLIB_TARGET=.*/SHLIB_TARGET=$shared_target/;
1911         s/^SHLIB_MARK=.*/SHLIB_MARK=$shared_mark/;
1912         s/^SHARED_LIBS=.*/SHARED_LIBS=\$(SHARED_CRYPTO) \$(SHARED_SSL)/ if (!$no_shared);
1913         if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
1914                 {
1915                 my $sotmp = $1;
1916                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/;
1917                 }
1918         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.dylib$/)
1919                 {
1920                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.dylib/;
1921                 }
1922         elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
1923                 {
1924                 my $sotmp = $1;
1925                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
1926                 }
1927         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.[^\.]*\.dylib$/)
1928                 {
1929                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.\$(SHLIB_MAJOR).dylib .dylib/;
1930                 }
1931         s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
1932         print OUT $_."\n";
1933         }
1934 close(IN);
1935 close(OUT);
1936 rename($Makefile,"$Makefile.orig") || die "unable to rename $Makefile\n" if -e $Makefile;
1937 rename("$Makefile.new",$Makefile) || die "unable to rename $Makefile.new\n";
1938
1939 print "CC            =$cc\n";
1940 print "CFLAG         =$cflags\n";
1941 print "EX_LIBS       =$lflags\n";
1942 print "CPUID_OBJ     =$cpuid_obj\n";
1943 print "BN_ASM        =$bn_obj\n";
1944 print "EC_ASM        =$ec_obj\n";
1945 print "DES_ENC       =$des_obj\n";
1946 print "AES_ENC       =$aes_obj\n";
1947 print "BF_ENC        =$bf_obj\n";
1948 print "CAST_ENC      =$cast_obj\n";
1949 print "RC4_ENC       =$rc4_obj\n";
1950 print "RC5_ENC       =$rc5_obj\n";
1951 print "MD5_OBJ_ASM   =$md5_obj\n";
1952 print "SHA1_OBJ_ASM  =$sha1_obj\n";
1953 print "RMD160_OBJ_ASM=$rmd160_obj\n";
1954 print "CMLL_ENC      =$cmll_obj\n";
1955 print "MODES_OBJ     =$modes_obj\n";
1956 print "ENGINES_OBJ   =$engines_obj\n";
1957 print "CHACHA_ENC    =$chacha_obj\n";
1958 print "POLY1305_OBJ  =$poly1305_obj\n";
1959 print "PROCESSOR     =$processor\n";
1960 print "RANLIB        =$ranlib\n";
1961 print "ARFLAGS       =$arflags\n";
1962 print "PERL          =$perl\n";
1963
1964 my $des_ptr=0;
1965 my $des_risc1=0;
1966 my $des_risc2=0;
1967 my $des_unroll=0;
1968 my $bn_ll=0;
1969 my $def_int=2;
1970 my $rc4_int=$def_int;
1971 my $md2_int=$def_int;
1972 my $idea_int=$def_int;
1973 my $rc2_int=$def_int;
1974 my $rc4_idx=0;
1975 my $rc4_chunk=0;
1976 my $bf_ptr=0;
1977 my @type=("char","short","int","long");
1978 my ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0);
1979 my $export_var_as_fn=0;
1980
1981 my $des_int;
1982
1983 foreach (sort split(/\s+/,$bn_ops))
1984         {
1985         $des_ptr=1 if /DES_PTR/;
1986         $des_risc1=1 if /DES_RISC1/;
1987         $des_risc2=1 if /DES_RISC2/;
1988         $des_unroll=1 if /DES_UNROLL/;
1989         $des_int=1 if /DES_INT/;
1990         $bn_ll=1 if /BN_LLONG/;
1991         $rc4_int=0 if /RC4_CHAR/;
1992         $rc4_int=3 if /RC4_LONG/;
1993         $rc4_idx=1 if /RC4_INDEX/;
1994         $rc4_chunk=1 if /RC4_CHUNK/;
1995         $rc4_chunk=2 if /RC4_CHUNK_LL/;
1996         $md2_int=0 if /MD2_CHAR/;
1997         $md2_int=3 if /MD2_LONG/;
1998         $idea_int=1 if /IDEA_SHORT/;
1999         $idea_int=3 if /IDEA_LONG/;
2000         $rc2_int=1 if /RC2_SHORT/;
2001         $rc2_int=3 if /RC2_LONG/;
2002         $bf_ptr=1 if $_ eq "BF_PTR";
2003         $bf_ptr=2 if $_ eq "BF_PTR2";
2004         ($b64l,$b64,$b32,$b16,$b8)=(0,1,0,0,0) if /SIXTY_FOUR_BIT/;
2005         ($b64l,$b64,$b32,$b16,$b8)=(1,0,0,0,0) if /SIXTY_FOUR_BIT_LONG/;
2006         ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0) if /THIRTY_TWO_BIT/;
2007         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,1,0) if /SIXTEEN_BIT/;
2008         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,0,1) if /EIGHT_BIT/;
2009         $export_var_as_fn=1 if /EXPORT_VAR_AS_FN/;
2010         }
2011
2012 open(IN,'<crypto/opensslconf.h.in') || die "unable to read crypto/opensslconf.h.in:$!\n";
2013 unlink("include/openssl/opensslconf.h.new") || die "unable to remove old include/openssl/opensslconf.h.new:$!\n" if -e "include/openssl/opensslconf.h.new";
2014 open(OUT,'>include/openssl/opensslconf.h.new') || die "unable to create include/openssl/opensslconf.h.new:$!\n";
2015 print OUT "/* opensslconf.h */\n";
2016 print OUT "/* WARNING: Generated automatically from opensslconf.h.in by Configure. */\n\n";
2017
2018 print OUT "#ifdef  __cplusplus\n";
2019 print OUT "extern \"C\" {\n";
2020 print OUT "#endif\n";
2021 print OUT "/* OpenSSL was configured with the following options: */\n";
2022
2023 my $openssl_api_defines = "";
2024 if (defined($api)) {
2025     $openssl_api_defines = sprintf "#define OPENSSL_MIN_API %s\n", $apitable->{$api};
2026 }
2027 my $openssl_algorithm_defines_trans = $openssl_algorithm_defines;
2028 $openssl_experimental_defines =~ s/^\s*#\s*define\s+OPENSSL_NO_(.*)/#ifndef OPENSSL_EXPERIMENTAL_$1\n# ifndef OPENSSL_NO_$1\n#  define OPENSSL_NO_$1\n# endif\n#endif/mg;
2029 $openssl_algorithm_defines_trans =~ s/^\s*#\s*define\s+OPENSSL_(.*)/# if defined(OPENSSL_$1) \&\& !defined($1)\n#  define $1\n# endif/mg;
2030 $openssl_algorithm_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
2031 $openssl_algorithm_defines = "   /* no ciphers excluded */\n" if $openssl_algorithm_defines eq "";
2032 $openssl_thread_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
2033 $openssl_sys_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
2034 $openssl_other_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
2035
2036 print OUT $openssl_sys_defines;
2037 print OUT "#ifndef OPENSSL_DOING_MAKEDEPEND\n\n";
2038 print OUT $openssl_experimental_defines;
2039 print OUT $openssl_api_defines;
2040 print OUT "\n";
2041 print OUT $openssl_algorithm_defines;
2042 print OUT "\n#endif /* OPENSSL_DOING_MAKEDEPEND */\n\n";
2043 print OUT $openssl_thread_defines;
2044 print OUT $openssl_other_defines,"\n";
2045
2046 print OUT "/* The OPENSSL_NO_* macros are also defined as NO_* if the application\n";
2047 print OUT "   asks for it.  This is a transient feature that is provided for those\n";
2048 print OUT "   who haven't had the time to do the appropriate changes in their\n";
2049 print OUT "   applications.  */\n";
2050 print OUT "#ifdef OPENSSL_ALGORITHM_DEFINES\n";
2051 print OUT $openssl_algorithm_defines_trans;
2052 print OUT "#endif\n\n";
2053
2054 print OUT "#define OPENSSL_CPUID_OBJ\n\n" if ($cpuid_obj ne "mem_clr.o");
2055
2056 while (<IN>)
2057         {
2058         if      (/^#define\s+OPENSSLDIR/)
2059                 {
2060                 my $foo = $openssldir;
2061                 $foo =~ s/\\/\\\\/g;
2062                 print OUT "#define OPENSSLDIR \"$foo\"\n";
2063                 }
2064         elsif   (/^#define\s+ENGINESDIR/)
2065                 {
2066                 my $foo = "$prefix/$libdir/engines";
2067                 $foo =~ s/\\/\\\\/g;
2068                 print OUT "#define ENGINESDIR \"$foo\"\n";
2069                 }
2070         elsif   (/^#((define)|(undef))\s+OPENSSL_EXPORT_VAR_AS_FUNCTION/)
2071                 { printf OUT "#undef OPENSSL_EXPORT_VAR_AS_FUNCTION\n"
2072                         if $export_var_as_fn;
2073                   printf OUT "#%s OPENSSL_EXPORT_VAR_AS_FUNCTION\n",
2074                         ($export_var_as_fn)?"define":"undef"; }
2075         elsif   (/^#define\s+OPENSSL_UNISTD/)
2076                 {
2077                 $unistd = "<unistd.h>" if $unistd eq "";
2078                 print OUT "#define OPENSSL_UNISTD $unistd\n";
2079                 }
2080         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT_LONG/)
2081                 { printf OUT "#%s SIXTY_FOUR_BIT_LONG\n",($b64l)?"define":"undef"; }
2082         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT/)
2083                 { printf OUT "#%s SIXTY_FOUR_BIT\n",($b64)?"define":"undef"; }
2084         elsif   (/^#((define)|(undef))\s+THIRTY_TWO_BIT/)
2085                 { printf OUT "#%s THIRTY_TWO_BIT\n",($b32)?"define":"undef"; }
2086         elsif   (/^#((define)|(undef))\s+SIXTEEN_BIT/)
2087                 { printf OUT "#%s SIXTEEN_BIT\n",($b16)?"define":"undef"; }
2088         elsif   (/^#((define)|(undef))\s+EIGHT_BIT/)
2089                 { printf OUT "#%s EIGHT_BIT\n",($b8)?"define":"undef"; }
2090         elsif   (/^#((define)|(undef))\s+BN_LLONG\s*$/)
2091                 { printf OUT "#%s BN_LLONG\n",($bn_ll)?"define":"undef"; }
2092         elsif   (/^\#define\s+OSSL_DES_LONG\s+.*/)
2093                 { printf OUT "#define OSSL_DES_LONG unsigned %s\n",
2094                         ($des_int)?'int':'long'; }
2095         elsif   (/^\#(define|undef)\s+DES_PTR/)
2096                 { printf OUT "#%s DES_PTR\n",($des_ptr)?'define':'undef'; }
2097         elsif   (/^\#(define|undef)\s+DES_RISC1/)
2098                 { printf OUT "#%s DES_RISC1\n",($des_risc1)?'define':'undef'; }
2099         elsif   (/^\#(define|undef)\s+DES_RISC2/)
2100                 { printf OUT "#%s DES_RISC2\n",($des_risc2)?'define':'undef'; }
2101         elsif   (/^\#(define|undef)\s+DES_UNROLL/)
2102                 { printf OUT "#%s DES_UNROLL\n",($des_unroll)?'define':'undef'; }
2103         elsif   (/^#define\s+RC4_INT\s/)
2104                 { printf OUT "#define RC4_INT unsigned %s\n",$type[$rc4_int]; }
2105         elsif   (/^#undef\s+RC4_CHUNK/)
2106                 {
2107                 printf OUT "#undef RC4_CHUNK\n" if $rc4_chunk==0;
2108                 printf OUT "#define RC4_CHUNK unsigned long\n" if $rc4_chunk==1;
2109                 printf OUT "#define RC4_CHUNK unsigned long long\n" if $rc4_chunk==2;
2110                 }
2111         elsif   (/^#((define)|(undef))\s+RC4_INDEX/)
2112                 { printf OUT "#%s RC4_INDEX\n",($rc4_idx)?"define":"undef"; }
2113         elsif (/^#(define|undef)\s+I386_ONLY/)
2114                 { printf OUT "#%s I386_ONLY\n", ($processor eq "386")?
2115                         "define":"undef"; }
2116         elsif   (/^#define\s+MD2_INT\s/)
2117                 { printf OUT "#define MD2_INT unsigned %s\n",$type[$md2_int]; }
2118         elsif   (/^#define\s+IDEA_INT\s/)
2119                 {printf OUT "#define IDEA_INT unsigned %s\n",$type[$idea_int];}
2120         elsif   (/^#define\s+RC2_INT\s/)
2121                 {printf OUT "#define RC2_INT unsigned %s\n",$type[$rc2_int];}
2122         elsif (/^#(define|undef)\s+BF_PTR/)
2123                 {
2124                 printf OUT "#undef BF_PTR\n" if $bf_ptr == 0;
2125                 printf OUT "#define BF_PTR\n" if $bf_ptr == 1;
2126                 printf OUT "#define BF_PTR2\n" if $bf_ptr == 2;
2127                 }
2128         else
2129                 { print OUT $_; }
2130         }
2131 close(IN);
2132 print OUT "#ifdef  __cplusplus\n";
2133 print OUT "}\n";
2134 print OUT "#endif\n";
2135 close(OUT);
2136 rename("include/openssl/opensslconf.h","include/openssl/opensslconf.h.bak") || die "unable to rename include/openssl/opensslconf.h\n" if -e "include/openssl/opensslconf.h";
2137 rename("include/openssl/opensslconf.h.new","include/openssl/opensslconf.h") || die "unable to rename include/openssl/opensslconf.h.new\n";
2138
2139
2140 # Fix the date
2141
2142 print "SIXTY_FOUR_BIT_LONG mode\n" if $b64l;
2143 print "SIXTY_FOUR_BIT mode\n" if $b64;
2144 print "THIRTY_TWO_BIT mode\n" if $b32;
2145 print "SIXTEEN_BIT mode\n" if $b16;
2146 print "EIGHT_BIT mode\n" if $b8;
2147 print "DES_PTR used\n" if $des_ptr;
2148 print "DES_RISC1 used\n" if $des_risc1;
2149 print "DES_RISC2 used\n" if $des_risc2;
2150 print "DES_UNROLL used\n" if $des_unroll;
2151 print "DES_INT used\n" if $des_int;
2152 print "BN_LLONG mode\n" if $bn_ll;
2153 print "RC4 uses u$type[$rc4_int]\n" if $rc4_int != $def_int;
2154 print "RC4_INDEX mode\n" if $rc4_idx;
2155 print "RC4_CHUNK is undefined\n" if $rc4_chunk==0;
2156 print "RC4_CHUNK is unsigned long\n" if $rc4_chunk==1;
2157 print "RC4_CHUNK is unsigned long long\n" if $rc4_chunk==2;
2158 print "MD2 uses u$type[$md2_int]\n" if $md2_int != $def_int;
2159 print "IDEA uses u$type[$idea_int]\n" if $idea_int != $def_int;
2160 print "RC2 uses u$type[$rc2_int]\n" if $rc2_int != $def_int;
2161 print "BF_PTR used\n" if $bf_ptr == 1;
2162 print "BF_PTR2 used\n" if $bf_ptr == 2;
2163
2164 # Copy all Makefile.in to Makefile (except top-level)
2165 use File::Find;
2166 use IO::File;
2167 find(sub {
2168         return if ($_ ne "Makefile.in" || $File::Find::dir eq ".");
2169         my $in = IO::File->new($_, "r") or
2170             die sprintf "Error reading Makefile.in in %s: !$\n",
2171                 $File::Find::dir;
2172         my $out = IO::File->new("Makefile", "w") or
2173             die sprintf "Error writing Makefile in %s: !$\n",
2174                 $File::Find::dir;
2175         print $out "# Generated from $_, do not edit\n";
2176         while (my $line = <$in>) { print $out $line }
2177         $in->close() or
2178             die sprintf "Error reading Makefile.in in %s: !$\n",
2179                 $File::Find::dir;
2180         $out->close() or
2181             die sprintf "Error writing Makefile in %s: !$\n",
2182                 $File::Find::dir;
2183     }, ".");
2184
2185 {
2186     my $perlguess = $perl =~ m@^/@ ? $perl : '/usr/local/bin/perl';
2187
2188     &dofile("tools/c_rehash",$perlguess,
2189             '^#!/'              => '#!%s',
2190             '^my \$dir;$'       => 'my $dir = "' . $openssldir . '";',
2191             '^my \$prefix;$'    => 'my $prefix = "' . $prefix . '";');
2192     &dofile("apps/CA.pl",$perl,
2193             '^#!/'              => '#!%s');
2194 }
2195 if($IsMK1MF) {
2196         open (OUT,">crypto/buildinf.h") || die "Can't open buildinf.h";
2197         printf OUT <<EOF;
2198 #ifndef MK1MF_BUILD
2199   /* auto-generated by Configure for crypto/cversion.c:
2200    * for Unix builds, crypto/Makefile.ssl generates functional definitions;
2201    * Windows builds (and other mk1mf builds) compile cversion.c with
2202    * -DMK1MF_BUILD and use definitions added to this file by util/mk1mf.pl. */
2203   #error "Windows builds (PLATFORM=$target) use mk1mf.pl-created Makefiles"
2204 #endif
2205 EOF
2206         close(OUT);
2207 } else {
2208         my $make_command = "$make PERL=\'$perl\'";
2209         my $make_targets = "";
2210         $make_targets .= " depend" if $depflags ne $default_depflags && $make_depend;
2211         (system $make_command.$make_targets) == 0 or die "make $make_targets failed"
2212                 if $make_targets ne "";
2213         if ($depflags ne $default_depflags && !$make_depend) {
2214             $warn_make_depend++;
2215         }
2216 }
2217
2218 # create the ms/version32.rc file if needed
2219 if ($IsMK1MF && ($target !~ /^netware/)) {
2220         my ($v1, $v2, $v3, $v4);
2221         if ($version_num =~ /^0x([0-9a-f]{1})([0-9a-f]{2})([0-9a-f]{2})([0-9a-f]{2})([0-9a-f]{1})L$/i) {
2222                 $v1=hex $1;
2223                 $v2=hex $2;
2224                 $v3=hex $3;
2225                 $v4=hex $4;
2226         }
2227         open (OUT,">ms/version32.rc") || die "Can't open ms/version32.rc";
2228         print OUT <<EOF;
2229 #include <winver.h>
2230
2231 LANGUAGE 0x09,0x01
2232
2233 1 VERSIONINFO
2234   FILEVERSION $v1,$v2,$v3,$v4
2235   PRODUCTVERSION $v1,$v2,$v3,$v4
2236   FILEFLAGSMASK 0x3fL
2237 #ifdef _DEBUG
2238   FILEFLAGS 0x01L
2239 #else
2240   FILEFLAGS 0x00L
2241 #endif
2242   FILEOS VOS__WINDOWS32
2243   FILETYPE VFT_DLL
2244   FILESUBTYPE 0x0L
2245 BEGIN
2246     BLOCK "StringFileInfo"
2247     BEGIN
2248         BLOCK "040904b0"
2249         BEGIN
2250             // Required:
2251             VALUE "CompanyName", "The OpenSSL Project, http://www.openssl.org/\\0"
2252             VALUE "FileDescription", "OpenSSL Shared Library\\0"
2253             VALUE "FileVersion", "$version\\0"
2254 #if defined(CRYPTO)
2255             VALUE "InternalName", "libeay32\\0"
2256             VALUE "OriginalFilename", "libeay32.dll\\0"
2257 #elif defined(SSL)
2258             VALUE "InternalName", "ssleay32\\0"
2259             VALUE "OriginalFilename", "ssleay32.dll\\0"
2260 #endif
2261             VALUE "ProductName", "The OpenSSL Toolkit\\0"
2262             VALUE "ProductVersion", "$version\\0"
2263             // Optional:
2264             //VALUE "Comments", "\\0"
2265             VALUE "LegalCopyright", "Copyright © 1998-2015 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved.\\0"
2266             //VALUE "LegalTrademarks", "\\0"
2267             //VALUE "PrivateBuild", "\\0"
2268             //VALUE "SpecialBuild", "\\0"
2269         END
2270     END
2271     BLOCK "VarFileInfo"
2272     BEGIN
2273         VALUE "Translation", 0x409, 0x4b0
2274     END
2275 END
2276 EOF
2277         close(OUT);
2278   }
2279
2280 print <<EOF;
2281
2282 Configured for $target.
2283 EOF
2284
2285 print <<\EOF if (!$no_threads && !$threads);
2286
2287 The library could not be configured for supporting multi-threaded
2288 applications as the compiler options required on this system are not known.
2289 See file INSTALL for details if you need multi-threading.
2290 EOF
2291
2292 print <<\EOF if ($no_shared_warn);
2293
2294 You gave the option 'shared', which is not supported on this platform, so
2295 we will pretend you gave the option 'no-shared'.  If you know how to implement
2296 shared libraries, please let us know (but please first make sure you have
2297 tried with a current version of OpenSSL).
2298 EOF
2299
2300 print <<EOF if ($warn_make_depend);
2301
2302 *** Because of configuration changes, you MUST do the following before
2303 *** building:
2304
2305         make depend
2306 EOF
2307
2308 exit(0);
2309
2310 sub usage
2311         {
2312         print STDERR $usage;
2313         print STDERR "\npick os/compiler from:\n";
2314         my $j=0;
2315         my $i;
2316         my $k=0;
2317         foreach $i (sort keys %table)
2318                 {
2319                 next if $i =~ /^debug/;
2320                 $k += length($i) + 1;
2321                 if ($k > 78)
2322                         {
2323                         print STDERR "\n";
2324                         $k=length($i);
2325                         }
2326                 print STDERR $i . " ";
2327                 }
2328         foreach $i (sort keys %table)
2329                 {
2330                 next if $i !~ /^debug/;
2331                 $k += length($i) + 1;
2332                 if ($k > 78)
2333                         {
2334                         print STDERR "\n";
2335                         $k=length($i);
2336                         }
2337                 print STDERR $i . " ";
2338                 }
2339         print STDERR "\n\nNOTE: If in doubt, on Unix-ish systems use './config'.\n";
2340         exit(1);
2341         }
2342
2343 sub which
2344         {
2345         my($name)=@_;
2346         my $path;
2347         foreach $path (split /:/, $ENV{PATH})
2348                 {
2349                 if (-f "$path/$name$exe_ext" and -x _)
2350                         {
2351                         return "$path/$name$exe_ext" unless ($name eq "perl" and
2352                          system("$path/$name$exe_ext -e " . '\'exit($]<5.0);\''));
2353                         }
2354                 }
2355         }
2356
2357 sub dofile
2358         {
2359         my $f; my $p; my %m; my @a; my $k; my $ff;
2360         ($f,$p,%m)=@_;
2361
2362         open(IN,"<$f.in") || open(IN,"<$f") || die "unable to open $f:$!\n";
2363         @a=<IN>;
2364         close(IN);
2365         foreach $k (keys %m)
2366                 {
2367                 grep(/$k/ && ($_=sprintf($m{$k}."\n",$p)),@a);
2368                 }
2369         open(OUT,">$f.new") || die "unable to open $f.new:$!\n";
2370         print OUT @a;
2371         close(OUT);
2372         rename($f,"$f.bak") || die "unable to rename $f\n" if -e $f;
2373         rename("$f.new",$f) || die "unable to rename $f.new\n";
2374         }
2375
2376 sub print_table_entry
2377         {
2378         my $target = shift;
2379         my $type = shift;
2380
2381         # Don't print the templates
2382         return if $table{$target}->{template};
2383
2384         if ($type eq "TABLE") {
2385             print <<EOF
2386
2387 *** $target
2388 \$cc           = $table{$target}->{cc}
2389 \$cflags       = $table{$target}->{cflags}
2390 \$debug_cflags   = $table{$target}->{debug_cflags}
2391 \$release_cflags = $table{$target}->{release_cflags}
2392 \$unistd       = $table{$target}->{unistd}
2393 \$thread_cflag = $table{$target}->{thread_cflag}
2394 \$sys_id       = $table{$target}->{sys_id}
2395 \$lflags       = $table{$target}->{lflags}
2396 \$debug_lflags   = $table{$target}->{debug_lflags}
2397 \$release_lflags = $table{$target}->{release_lflags}
2398 \$bn_ops       = $table{$target}->{bn_ops}
2399 \$cpuid_obj    = $table{$target}->{cpuid_obj}
2400 \$bn_obj       = $table{$target}->{bn_obj}
2401 \$ec_obj       = $table{$target}->{ec_obj}
2402 \$des_obj      = $table{$target}->{des_obj}
2403 \$aes_obj      = $table{$target}->{aes_obj}
2404 \$bf_obj       = $table{$target}->{bf_obj}
2405 \$md5_obj      = $table{$target}->{md5_obj}
2406 \$sha1_obj     = $table{$target}->{sha1_obj}
2407 \$cast_obj     = $table{$target}->{cast_obj}
2408 \$rc4_obj      = $table{$target}->{rc4_obj}
2409 \$rmd160_obj   = $table{$target}->{rmd160_obj}
2410 \$rc5_obj      = $table{$target}->{rc5_obj}
2411 \$wp_obj       = $table{$target}->{wp_obj}
2412 \$cmll_obj     = $table{$target}->{cmll_obj}
2413 \$modes_obj    = $table{$target}->{modes_obj}
2414 \$engines_obj  = $table{$target}->{engines_obj}
2415 \$chacha_obj   = $table{$target}->{chacha_obj}
2416 \$poly1305_obj = $table{$target}->{poly1305_obj}
2417 \$perlasm_scheme = $table{$target}->{perlasm_scheme}
2418 \$dso_scheme   = $table{$target}->{dso_scheme}
2419 \$shared_target= $table{$target}->{shared_target}
2420 \$shared_cflag = $table{$target}->{shared_cflag}
2421 \$shared_ldflag = $table{$target}->{shared_ldflag}
2422 \$shared_extension = $table{$target}->{shared_extension}
2423 \$ranlib       = $table{$target}->{ranlib}
2424 \$arflags      = $table{$target}->{arflags}
2425 \$multilib     = $table{$target}->{multilib}
2426 EOF
2427         } elsif ($type eq "HASH") {
2428             my @sequence = (
2429                 "cc",
2430                 "cflags",
2431                 "debug_cflags",
2432                 "release_cflags",
2433                 "unistd",
2434                 "thread_cflag",
2435                 "sys_id",
2436                 "lflags",
2437                 "debug_lflags",
2438                 "release_lflags",
2439                 "bn_ops",
2440                 "cpuid_obj",
2441                 "bn_obj",
2442                 "ec_obj",
2443                 "des_obj",
2444                 "aes_obj",
2445                 "bf_obj",
2446                 "md5_obj",
2447                 "sha1_obj",
2448                 "cast_obj",
2449                 "rc4_obj",
2450                 "rmd160_obj",
2451                 "rc5_obj",
2452                 "wp_obj",
2453                 "cmll_obj",
2454                 "modes_obj",
2455                 "engines_obj",
2456                 "chacha_obj",
2457                 "poly1305_obj",
2458                 "perlasm_scheme",
2459                 "dso_scheme",
2460                 "shared_target",
2461                 "shared_cflag",
2462                 "shared_ldflag",
2463                 "shared_extension",
2464                 "ranlib",
2465                 "arflags",
2466                 "multilib",
2467                 );
2468             my $largest =
2469                 length((sort { length($a) <=> length($b) } @sequence)[-1]);
2470             print "    '$target' => {\n";
2471             foreach (@sequence) {
2472                 if ($table{$target}->{$_}) {
2473                     print "      '",$_,"'"," " x ($largest - length($_))," => '",$table{$target}->{$_},"',\n";
2474                 }
2475             }
2476             print "    },\n";
2477         }
2478         }
2479
2480 sub test_sanity
2481         {
2482         my $errorcnt = 0;
2483
2484         print STDERR "=" x 70, "\n";
2485         print STDERR "=== SANITY TESTING!\n";
2486         print STDERR "=== No configuration will be done, all other arguments will be ignored!\n";
2487         print STDERR "=" x 70, "\n";
2488
2489         foreach $target (sort keys %table)
2490                 {
2491                 my $pre_dso_scheme = "perlasm_scheme";
2492                 my $dso_scheme = "dso_scheme";
2493                 my $post_dso_scheme = "shared_target";
2494
2495
2496                 if ($table{$target}->{$pre_dso_scheme} =~ /^(beos|dl|dlfcn|win32|vms)$/)
2497                         {
2498                         $errorcnt++;
2499                         print STDERR "SANITY ERROR: '$target' has the dso_scheme values\n";
2500                         print STDERR "              in the previous field\n";
2501                         }
2502                 elsif ($table{$target}->{$post_dso_scheme} =~ /^(beos|dl|dlfcn|win32|vms)$/)
2503                         {
2504                         $errorcnt++;
2505                         print STDERR "SANITY ERROR: '$target' has the dso_scheme values\n";
2506                         print STDERR "              in the following field\n";
2507                         }
2508                 elsif ($table{$target}->{$dso_scheme} !~ /^(beos|dl|dlfcn|win32|vms|)$/)
2509                         {
2510                         $errorcnt++;
2511                         print STDERR "SANITY ERROR: '$target' has the dso_scheme field = ",$table{$target}->{$dso_scheme},"\n";
2512                         print STDERR "              valid values are 'beos', 'dl', 'dlfcn', 'win32' and 'vms'\n";
2513                         }
2514                 }
2515         print STDERR "No sanity errors detected!\n" if $errorcnt == 0;
2516         return $errorcnt;
2517         }