Don't use the SSL 2.0 Client Hello format if SSL 2.0 is disabled
[openssl.git] / Configure
1 :
2 eval 'exec perl -S $0 ${1+"$@"}'
3     if $running_under_some_shell;
4 ##
5 ##  Configure -- OpenSSL source tree configuration script
6 ##
7
8 require 5.000;
9 use strict;
10
11 # see INSTALL for instructions.
12
13 my $usage="Usage: Configure [no-<cipher> ...] [enable-<cipher> ...] [-Dxxx] [-lxxx] [-Lxxx] [-fxxx] [-Kxxx] [no-hw-xxx|no-hw] [[no-]threads] [[no-]shared] [[no-]zlib|zlib-dynamic] [no-asm] [no-dso] [no-krb5] [386] [--prefix=DIR] [--openssldir=OPENSSLDIR] [--with-xxx[=vvv]] [--test-sanity] os/compiler[:flags]\n";
14
15 # Options:
16 #
17 # --openssldir  install OpenSSL in OPENSSLDIR (Default: DIR/ssl if the
18 #               --prefix option is given; /usr/local/ssl otherwise)
19 # --prefix      prefix for the OpenSSL include, lib and bin directories
20 #               (Default: the OPENSSLDIR directory)
21 #
22 # --install_prefix  Additional prefix for package builders (empty by
23 #               default).  This needn't be set in advance, you can
24 #               just as well use "make INSTALL_PREFIX=/whatever install".
25 #
26 # --with-krb5-dir  Declare where Kerberos 5 lives.  The libraries are expected
27 #               to live in the subdirectory lib/ and the header files in
28 #               include/.  A value is required.
29 # --with-krb5-lib  Declare where the Kerberos 5 libraries live.  A value is
30 #               required.
31 #               (Default: KRB5_DIR/lib)
32 # --with-krb5-include  Declare where the Kerberos 5 header files live.  A
33 #               value is required.
34 #               (Default: KRB5_DIR/include)
35 # --with-krb5-flavor  Declare what flavor of Kerberos 5 is used.  Currently
36 #               supported values are "MIT" and "Heimdal".  A value is required.
37 #
38 # --test-sanity Make a number of sanity checks on the data in this file.
39 #               This is a debugging tool for OpenSSL developers.
40 #
41 # no-hw-xxx     do not compile support for specific crypto hardware.
42 #               Generic OpenSSL-style methods relating to this support
43 #               are always compiled but return NULL if the hardware
44 #               support isn't compiled.
45 # no-hw         do not compile support for any crypto hardware.
46 # [no-]threads  [don't] try to create a library that is suitable for
47 #               multithreaded applications (default is "threads" if we
48 #               know how to do it)
49 # [no-]shared   [don't] try to create shared libraries when supported.
50 # no-asm        do not use assembler
51 # no-dso        do not compile in any native shared-library methods. This
52 #               will ensure that all methods just return NULL.
53 # no-krb5       do not compile in any KRB5 library or code.
54 # [no-]zlib     [don't] compile support for zlib compression.
55 # zlib-dynamic  Like "zlib", but the zlib library is expected to be a shared
56 #               library and will be loaded in run-time by the OpenSSL library.
57 # 386           generate 80386 code
58 # no-sse2       disables IA-32 SSE2 code, above option implies no-sse2
59 # no-<cipher>   build without specified algorithm (rsa, idea, rc5, ...)
60 # -<xxx> +<xxx> compiler options are passed through 
61 #
62 # DEBUG_SAFESTACK use type-safe stacks to enforce type-safety on stack items
63 #               provided to stack calls. Generates unique stack functions for
64 #               each possible stack type.
65 # DES_PTR       use pointer lookup vs arrays in the DES in crypto/des/des_locl.h
66 # DES_RISC1     use different DES_ENCRYPT macro that helps reduce register
67 #               dependancies but needs to more registers, good for RISC CPU's
68 # DES_RISC2     A different RISC variant.
69 # DES_UNROLL    unroll the inner DES loop, sometimes helps, somtimes hinders.
70 # DES_INT       use 'int' instead of 'long' for DES_LONG in crypto/des/des.h
71 #               This is used on the DEC Alpha where long is 8 bytes
72 #               and int is 4
73 # BN_LLONG      use the type 'long long' in crypto/bn/bn.h
74 # MD2_CHAR      use 'char' instead of 'int' for MD2_INT in crypto/md2/md2.h
75 # MD2_LONG      use 'long' instead of 'int' for MD2_INT in crypto/md2/md2.h
76 # IDEA_SHORT    use 'short' instead of 'int' for IDEA_INT in crypto/idea/idea.h
77 # IDEA_LONG     use 'long' instead of 'int' for IDEA_INT in crypto/idea/idea.h
78 # RC2_SHORT     use 'short' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
79 # RC2_LONG      use 'long' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
80 # RC4_CHAR      use 'char' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
81 # RC4_LONG      use 'long' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
82 # RC4_INDEX     define RC4_INDEX in crypto/rc4/rc4_locl.h.  This turns on
83 #               array lookups instead of pointer use.
84 # RC4_CHUNK     enables code that handles data aligned at long (natural CPU
85 #               word) boundary.
86 # RC4_CHUNK_LL  enables code that handles data aligned at long long boundary
87 #               (intended for 64-bit CPUs running 32-bit OS).
88 # BF_PTR        use 'pointer arithmatic' for Blowfish (unsafe on Alpha).
89 # BF_PTR2       intel specific version (generic version is more efficient).
90 #
91 # Following are set automatically by this script
92 #
93 # MD5_ASM       use some extra md5 assember,
94 # SHA1_ASM      use some extra sha1 assember, must define L_ENDIAN for x86
95 # RMD160_ASM    use some extra ripemd160 assember,
96 # SHA256_ASM    sha256_block is implemented in assembler
97 # SHA512_ASM    sha512_block is implemented in assembler
98 # AES_ASM       ASE_[en|de]crypt is implemented in assembler
99
100 my $x86_gcc_des="DES_PTR DES_RISC1 DES_UNROLL";
101
102 # MD2_CHAR slags pentium pros
103 my $x86_gcc_opts="RC4_INDEX MD2_INT";
104
105 # MODIFY THESE PARAMETERS IF YOU ARE GOING TO USE THE 'util/speed.sh SCRIPT
106 # Don't worry about these normally
107
108 my $tcc="cc";
109 my $tflags="-fast -Xa";
110 my $tbn_mul="";
111 my $tlib="-lnsl -lsocket";
112 #$bits1="SIXTEEN_BIT ";
113 #$bits2="THIRTY_TWO_BIT ";
114 my $bits1="THIRTY_TWO_BIT ";
115 my $bits2="SIXTY_FOUR_BIT ";
116
117 my $x86_elf_asm="x86cpuid-elf.o:bn86-elf.o co86-elf.o:dx86-elf.o yx86-elf.o:ax86-elf.o:bx86-elf.o:mx86-elf.o:sx86-elf.o s512sse2-elf.o:cx86-elf.o:rx86-elf.o:rm86-elf.o:r586-elf.o";
118 my $x86_coff_asm="x86cpuid-cof.o:bn86-cof.o co86-cof.o:dx86-cof.o yx86-cof.o:ax86-cof.o:bx86-cof.o:mx86-cof.o:sx86-cof.o s512sse2-cof.o:cx86-cof.o:rx86-cof.o:rm86-cof.o:r586-cof.o";
119 my $x86_out_asm="x86cpuid-out.o:bn86-out.o co86-out.o:dx86-out.o yx86-out.o:ax86-out.o:bx86-out.o:mx86-out.o:sx86-out.o s512sse2-out.o:cx86-out.o:rx86-out.o:rm86-out.o:r586-out.o";
120
121 my $x86_64_asm="x86_64cpuid.o:x86_64-gcc.o::::md5-x86_64.o:::rc4-x86_64.o::";
122 my $ia64_asm=":ia64.o::aes_core.o aes_cbc.o aes-ia64.o:::sha1-ia64.o sha256-ia64.o sha512-ia64.o::rc4-ia64.o::";
123
124 my $no_asm="::::::::::";
125
126 # As for $BSDthreads. Idea is to maintain "collective" set of flags,
127 # which would cover all BSD flavors. -pthread applies to them all, 
128 # but is treated differently. OpenBSD expands is as -D_POSIX_THREAD
129 # -lc_r, which is sufficient. FreeBSD 4.x expands it as -lc_r,
130 # which has to be accompanied by explicit -D_THREAD_SAFE and
131 # sometimes -D_REENTRANT. FreeBSD 5.x expands it as -lc_r, which
132 # seems to be sufficient?
133 my $BSDthreads="-pthread -D_THREAD_SAFE -D_REENTRANT";
134
135 #config-string  $cc : $cflags : $unistd : $thread_cflag : $sys_id : $lflags : $bn_ops : $cpuid_obj : $bn_obj : $des_obj : $aes_obj : $bf_obj : $md5_obj : $sha1_obj : $cast_obj : $rc4_obj : $rmd160_obj : $rc5_obj : $dso_scheme : $shared_target : $shared_cflag : $shared_ldflag : $shared_extension : $ranlib : $arflags
136
137 my %table=(
138 # File 'TABLE' (created by 'make TABLE') contains the data from this list,
139 # formatted for better readability.
140
141
142 #"b",           "${tcc}:${tflags}::${tlib}:${bits1}:${tbn_mul}::",
143 #"bl-4c-2c",    "${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR MD2_CHAR:${tbn_mul}::",
144 #"bl-4c-ri",    "${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR RC4_INDEX:${tbn_mul}::",
145 #"b2-is-ri-dp", "${tcc}:${tflags}::${tlib}:${bits2}IDEA_SHORT RC4_INDEX DES_PTR:${tbn_mul}::",
146
147 # Our development configs
148 "purify",       "purify gcc:-g -DPURIFY -Wall::(unknown)::-lsocket -lnsl::::",
149 "debug",        "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -ggdb -g2 -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror::(unknown)::-lefence::::",
150 "debug-ben",    "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown):::::bn86-elf.o co86-elf.o",
151 "debug-ben-openbsd","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
152 "debug-ben-openbsd-debug","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -g3 -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
153 "debug-ben-debug",      "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -g3 -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::::",
154 "debug-ben-strict",     "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DCONST_STRICT -O2 -Wall -Wshadow -Werror -Wpointer-arith -Wcast-qual -Wwrite-strings -pipe::(unknown)::::::",
155 "debug-rse","cc:-DTERMIOS -DL_ENDIAN -pipe -O -g -ggdb3 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
156 "debug-bodo",   "gcc:-DL_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBIO_PAIR_DEBUG -DPEDANTIC -g -march=i486 -pedantic -Wshadow -Wall::-D_REENTRANT:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
157 "debug-ulf", "gcc:-DTERMIOS -DL_ENDIAN -march=i486 -Wall -DBN_DEBUG -DBN_DEBUG_RAND -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -g -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations:::CYGWIN32:::${no_asm}:win32:cygwin-shared:::.dll",
158 "debug-steve",  "gcc:-DL_ENDIAN -DREF_CHECK -DCONF_DEBUG -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG_ALL -DPEDANTIC -g -mcpu=i486 -pedantic -Wno-long-long -Wall -Werror -Wshadow -pipe::-D_REENTRANT::-rdynamic -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared",
159 "debug-steve-linux-pseudo64",   "gcc:-DL_ENDIAN -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG_ALL -DOPENSSL_NO_ASM -g -mcpu=i486 -Wall -Werror -Wshadow -pipe::-D_REENTRANT::-rdynamic -ldl:SIXTY_FOUR_BIT:${no_asm}:dlfcn:linux-shared",
160 "debug-levitte-linux-elf","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
161 "debug-levitte-linux-noasm","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
162 "debug-levitte-linux-elf-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
163 "debug-levitte-linux-noasm-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
164 "debug-geoff","gcc:-DBN_DEBUG -DBN_DEBUG_RAND -DBN_STRICT -DPURIFY -DOPENSSL_NO_DEPRECATED -DOPENSSL_NO_ASM -DOPENSSL_NO_INLINE_ASM -DL_ENDIAN -DTERMIO -DPEDANTIC -O1 -ggdb2 -Wall -Werror -Wundef -pedantic -Wshadow -Wpointer-arith -Wbad-function-cast -Wcast-align -Wsign-compare -Wmissing-prototypes -Wmissing-declarations -Wno-long-long::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
165 "debug-linux-pentium","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -mcpu=pentium -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
166 "debug-linux-ppro","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -mcpu=pentiumpro -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
167 "debug-linux-elf","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -m486 -Wall::-D_REENTRANT::-lefence -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
168 "debug-linux-elf-noefence","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -m486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
169 "dist",         "cc:-O::(unknown)::::::",
170
171 # Basic configs that should work on any (32 and less bit) box
172 "gcc",          "gcc:-O3::(unknown):::BN_LLONG:::",
173 "cc",           "cc:-O::(unknown)::::::",
174
175 ####VOS Configurations
176 "vos-gcc","gcc:-b hppa1.1-stratus-vos -O3 -Wall -Wuninitialized -D_POSIX_C_SOURCE=200112L -D_BSD::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
177 "debug-vos-gcc","gcc:-b hppa1.1-stratus-vos -O0 -g -Wall -D_POSIX_C_SOURCE=200112L -D_BSD -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
178 "vos-vcc","vcc:-b i386-stratus-vos -O3 -D_POSIX_C_SOURCE=200112L -D_BSD::(unknown):VOS:-Wl,-map::${no_asm}:::::.so:",
179 "debug-vos-vcc","vcc:-b i386-stratus-vos -O0 -g -D_POSIX_C_SOURCE=200112L -D_BSD -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG::(unknown):VOS:-Wl,-map::${no_asm}:::::.so:",
180
181 #### Solaris x86 with GNU C setups
182 # -DOPENSSL_NO_INLINE_ASM switches off inline assembler. We have to do it
183 # here because whenever GNU C instantiates an assembler template it
184 # surrounds it with #APP #NO_APP comment pair which (at least Solaris
185 # 7_x86) /usr/ccs/bin/as fails to assemble with "Illegal mnemonic"
186 # error message.
187 "solaris-x86-gcc","gcc:-O3 -fomit-frame-pointer -m486 -Wall -DL_ENDIAN -DOPENSSL_NO_INLINE_ASM::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
188 # -shared -static-libgcc might appear controversial, but modules taken
189 # from static libgcc do not have relocations and linking them into our
190 # shared objects doesn't have any negative side-effects. On the contrary,
191 # doing so makes it possible to use gcc shared build with Sun C. Given
192 # that gcc generates faster code [thanks to inline assembler], I would
193 # actually recommend to consider using gcc shared build even with vendor
194 # compiler:-)
195 #                                               <appro@fy.chalmers.se>
196 "solaris64-x86_64-gcc","gcc:-m64 -O3 -Wall -DL_ENDIAN -DMD32_REG_T=int::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK BF_PTR2 DES_INT DES_UNROLL:${x86_64_asm}:dlfcn:solaris-shared:-fPIC:-m64 -shared -static-libgcc:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
197  
198 #### Solaris x86 with Sun C setups
199 "solaris-x86-cc","cc:-fast -O -Xa::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
200 "solaris64-x86_64-cc","cc:-fast -xarch=amd64 -xstrconst -Xa -DL_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK BF_PTR2 DES_INT DES_UNROLL:${no_asm}:dlfcn:solaris-shared:-KPIC:-xarch=amd64 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
201
202 #### SPARC Solaris with GNU C setups
203 "solaris-sparcv7-gcc","gcc:-O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
204 "solaris-sparcv8-gcc","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8.o:des_enc-sparc.o fcrypt_b.o:::::::::dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
205 # -m32 should be safe to add as long as driver recognizes -mcpu=ultrasparc
206 "solaris-sparcv9-gcc","gcc:-m32 -mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8plus.o:des_enc-sparc.o fcrypt_b.o:::md5-sparcv8plus.o::::::dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
207 "solaris64-sparcv9-gcc","gcc:-m64 -mcpu=ultrasparc -O3 -Wall -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:::des_enc-sparc.o fcrypt_b.o:::md5-sparcv9.o::::::dlfcn:solaris-shared:-fPIC:-m64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
208 ####
209 "debug-solaris-sparcv8-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -O -g -mv8 -Wall -DB_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8.o::::::::::dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
210 "debug-solaris-sparcv9-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -DPEDANTIC -O -g -mcpu=ultrasparc -pedantic -ansi -Wall -Wshadow -Wno-long-long -D__EXTENSIONS__ -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8plus.o:des_enc-sparc.o fcrypt_b.o:::md5-sparcv8plus.o::::::dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
211
212 #### SPARC Solaris with Sun C setups
213 # SC4.0 doesn't pass 'make test', upgrade to SC5.0 or SC4.2.
214 # SC4.2 is ok, better than gcc even on bn as long as you tell it -xarch=v8
215 # SC5.0 note: Compiler common patch 107357-01 or later is required!
216 "solaris-sparcv7-cc","cc:-xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
217 "solaris-sparcv8-cc","cc:-xarch=v8 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::sparcv8.o:des_enc-sparc.o fcrypt_b.o:::::::::dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
218 "solaris-sparcv9-cc","cc:-xtarget=ultra -xarch=v8plus -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR::sparcv8plus.o:des_enc-sparc.o fcrypt_b.o:::md5-sparcv8plus.o::::::dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
219 "solaris64-sparcv9-cc","cc:-xtarget=ultra -xarch=v9 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:::des_enc-sparc.o fcrypt_b.o:::md5-sparcv9.o::::::dlfcn:solaris-shared:-KPIC:-xarch=v9 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):/usr/ccs/bin/ar rs",
220 ####
221 "debug-solaris-sparcv8-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -xarch=v8 -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::sparcv8.o::::::::::dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
222 "debug-solaris-sparcv9-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -xtarget=ultra -xarch=v8plus -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR::sparcv8plus.o::::md5-sparcv8plus.o::::::dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", 
223
224 #### SunOS configs, assuming sparc for the gcc one.
225 #"sunos-cc", "cc:-O4 -DNOPROTO -DNOCONST::(unknown):SUNOS::DES_UNROLL:${no_asm}::",
226 "sunos-gcc","gcc:-O3 -mv8 -Dssize_t=int::(unknown):SUNOS::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL DES_PTR DES_RISC1:${no_asm}::",
227
228 #### IRIX 5.x configs
229 # -mips2 flag is added by ./config when appropriate.
230 "irix-gcc","gcc:-O3 -DTERMIOS -DB_ENDIAN::(unknown):::BN_LLONG MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK DES_UNROLL DES_RISC2 DES_PTR BF_PTR:${no_asm}:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
231 "irix-cc", "cc:-O2 -use_readonly_const -DTERMIOS -DB_ENDIAN::(unknown):::BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${no_asm}:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
232 #### IRIX 6.x configs
233 # Only N32 and N64 ABIs are supported. If you need O32 ABI build, invoke
234 # './Configure irix-cc -o32' manually.
235 "irix-mips3-gcc","gcc:-mabi=n32 -mmips-as -O3 -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK_LL DES_UNROLL DES_RISC2 DES_PTR BF_PTR SIXTY_FOUR_BIT::mips3.o::::::::::dlfcn:irix-shared::-mabi=n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
236 "irix-mips3-cc", "cc:-n32 -mips3 -O2 -use_readonly_const -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::DES_PTR RC4_CHAR RC4_CHUNK_LL DES_RISC2 DES_UNROLL BF_PTR SIXTY_FOUR_BIT::mips3.o::::::::::dlfcn:irix-shared::-n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
237 # N64 ABI builds.
238 "irix64-mips4-gcc","gcc:-mabi=64 -mips4 -mmips-as -O3 -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG::mips3.o::::::::::dlfcn:irix-shared::-mabi=64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
239 "irix64-mips4-cc", "cc:-64 -mips4 -O2 -use_readonly_const -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG::mips3.o::::::::::dlfcn:irix-shared::-64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
240
241 #### Unified HP-UX ANSI C configs.
242 # Special notes:
243 # - Originally we were optimizing at +O4 level. It should be noted
244 #   that the only difference between +O3 and +O4 is global inter-
245 #   procedural analysis. As it has to be performed during the link
246 #   stage the compiler leaves behind certain pseudo-code in lib*.a
247 #   which might be release or even patch level specific. Generating
248 #   the machine code for and analyzing the *whole* program appears
249 #   to be *extremely* memory demanding while the performance gain is
250 #   actually questionable. The situation is intensified by the default
251 #   HP-UX data set size limit (infamous 'maxdsiz' tunable) of 64MB
252 #   which is way too low for +O4. In other words, doesn't +O3 make
253 #   more sense?
254 # - Keep in mind that the HP compiler by default generates code
255 #   suitable for execution on the host you're currently compiling at.
256 #   If the toolkit is ment to be used on various PA-RISC processors
257 #   consider './config +DAportable'.
258 # - +DD64 is chosen in favour of +DA2.0W because it's meant to be
259 #   compatible with *future* releases.
260 # - If you run ./Configure hpux-parisc-[g]cc manually don't forget to
261 #   pass -D_REENTRANT on HP-UX 10 and later.
262 # - -DMD32_XARRAY triggers workaround for compiler bug we ran into in
263 #   32-bit message digests. (For the moment of this writing) HP C
264 #   doesn't seem to "digest" too many local variables (they make "him"
265 #   chew forever:-). For more details look-up MD32_XARRAY comment in
266 #   crypto/sha/sha_lcl.h.
267 #                                       <appro@fy.chalmers.se>
268 #
269 # Since there is mention of this in shlib/hpux10-cc.sh
270 "hpux-parisc-cc-o4","cc:-Ae +O4 +ESlit -z -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
271 "hpux-parisc-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-Wl,+s -ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
272 "hpux-parisc2-gcc","gcc:-march=2.0 -O3 -DB_ENDIAN -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL DES_RISC1::pa-risc2.o::::::::::dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
273 "hpux64-parisc2-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2W.o::::::::::dlfcn:hpux-shared:-fpic:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
274
275 # More attempts at unified 10.X and 11.X targets for HP C compiler.
276 #
277 # Chris Ruemmler <ruemmler@cup.hp.com>
278 # Kevin Steves <ks@hp.se>
279 "hpux-parisc-cc","cc:+O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
280 "hpux-parisc1_0-cc","cc:+DAportable +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
281 "hpux-parisc2-cc","cc:+DA2.0 +DS2.0 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2.o::::::::::dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
282 "hpux64-parisc2-cc","cc:+DD64 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2W.o::::::::::dlfcn:hpux-shared:+Z:+DD64 -b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
283
284 # HP/UX IA-64 targets
285 "hpux-ia64-cc","cc:-Ae +DD32 +O2 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD32 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
286 # Frank Geurts <frank.geurts@nl.abnamro.com> has patiently assisted with
287 # with debugging of the following config.
288 "hpux64-ia64-cc","cc:-Ae +DD64 +O3 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD64 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
289 # GCC builds...
290 "hpux-ia64-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT::ia64.o::aes-ia64.o:::sha256-ia64.o sha512-ia64.o::rc4-ia64.o:::dlfcn:hpux-shared:-fpic:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
291 "hpux64-ia64-gcc","gcc:-mlp64 -O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-mlp64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", 
292
293 # Legacy HPUX 9.X configs...
294 "hpux-cc",      "cc:-DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY -Ae +ESlit +O2 -z::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
295 "hpux-gcc",     "gcc:-DB_ENDIAN -DBN_DIV2W -O3::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
296
297 #### HP MPE/iX http://jazz.external.hp.com/src/openssl/
298 "MPE/iX-gcc",   "gcc:-D_ENDIAN -DBN_DIV2W -O3 -D_POSIX_SOURCE -D_SOCKET_SOURCE -I/SYSLOG/PUB::(unknown):MPE:-L/SYSLOG/PUB -lsyslog -lsocket -lcurses:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:::",
299
300 # DEC Alpha OSF/1/Tru64 targets.
301 #
302 #       "What's in a name? That which we call a rose
303 #        By any other word would smell as sweet."
304 #
305 # - William Shakespeare, "Romeo & Juliet", Act II, scene II.
306 #
307 # There's also an alternate target available (which `config' will never
308 # select) called alpha-cc-rpath.  This target builds an RPATH into the
309 # shared libraries, which is very convenient on Tru64 since binaries
310 # linked against that shared library will automatically inherit that RPATH,
311 # and hence know where to look for the openssl libraries, even if they're in
312 # an odd place.
313 #
314 # For gcc, the following gave a %50 speedup on a 164 over the 'DES_INT' version
315 #
316 "osf1-alpha-gcc", "gcc:-O3::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_RISC1:${no_asm}:dlfcn:alpha-osf1-shared:::.so",
317 "ofs1-alpha-cc",  "cc:-std1 -tune host -O4 -readonly_strings::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${no_asm}:dlfcn:alpha-osf1-shared:::.so",
318 "tru64-alpha-cc", "cc:-std1 -tune host -fast -readonly_strings::-pthread:::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${no_asm}:dlfcn:tru64-shared:::.so",
319 "alpha-cc-rpath", "cc:-std1 -tune host -fast -readonly_strings::-pthread:::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${no_asm}:dlfcn:tru64-shared-rpath:::.so",
320
321 ####
322 #### Variety of LINUX:-)
323 ####
324 # *-generic* is endian-neutral target, but ./config is free to
325 # throw in -D[BL]_ENDIAN, whichever appropriate...
326 "linux-generic32","gcc:-DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
327 "linux-ppc",    "gcc:-DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL::linux_ppc32.o::::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
328 #### IA-32 targets...
329 "linux-ia32-icc",       "icc:-DL_ENDIAN -DTERMIO -O2 -no_cpprt::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-KPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
330 "linux-elf",    "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
331 "linux-aout",   "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -m486 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}",
332 ####
333 "linux-generic64","gcc:-DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
334 # -bpowerpc64-linux is transient option, -m64 should be the one to use...
335 "linux-ppc64",  "gcc:-bpowerpc64-linux -DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL::linux_ppc64.o::::::::::dlfcn:linux-shared:-fPIC:-bpowerpc64-linux:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
336 "linux-ia64",   "gcc:-DL_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
337 "linux-ia64-ecc","ecc:-DL_ENDIAN -DTERMIO -O2 -Wall -no_cpprt::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
338 "linux-x86_64", "gcc:-m64 -DL_ENDIAN -DTERMIO -O3 -Wall -DMD32_REG_T=int::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK BF_PTR2 DES_INT DES_UNROLL:${x86_64_asm}:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
339 #### SPARC Linux setups
340 # Ray Miller <ray.miller@computing-services.oxford.ac.uk> has patiently
341 # assisted with debugging of following two configs.
342 "linux-sparcv8","gcc:-mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8.o:des_enc-sparc.o fcrypt_b.o:::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
343 # it's a real mess with -mcpu=ultrasparc option under Linux, but
344 # -Wa,-Av8plus should do the trick no matter what.
345 "linux-sparcv9","gcc:-m32 -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8plus.o:des_enc-sparc.o fcrypt_b.o:::md5-sparcv8plus.o::::::dlfcn:linux-shared:-fPIC:-m32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
346 # GCC 3.1 is a requirement
347 "linux64-sparcv9","gcc:-m64 -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:ULTRASPARC:-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::des_enc-sparc.o fcrypt_b.o:::md5-sparcv9.o::::::dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
348 #### Alpha Linux with GNU C and Compaq C setups
349 # Special notes:
350 # - linux-alpha+bwx-gcc is ment to be used from ./config only. If you
351 #   ought to run './Configure linux-alpha+bwx-gcc' manually, do
352 #   complement the command line with -mcpu=ev56, -mcpu=ev6 or whatever
353 #   which is appropriate.
354 # - If you use ccc keep in mind that -fast implies -arch host and the
355 #   compiler is free to issue instructions which gonna make elder CPU
356 #   choke. If you wish to build "blended" toolkit, add -arch generic
357 #   *after* -fast and invoke './Configure linux-alpha-ccc' manually.
358 #
359 #                                       <appro@fy.chalmers.se>
360 #
361 "linux-alpha-gcc","gcc:-O3 -DL_ENDIAN -DTERMIO::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_RISC1 DES_UNROLL:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
362 "linux-alpha+bwx-gcc","gcc:-O3 -DL_ENDIAN -DTERMIO::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
363 "linux-alpha-ccc","ccc:-fast -readonly_strings -DL_ENDIAN -DTERMIO::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${no_asm}",
364 "linux-alpha+bwx-ccc","ccc:-fast -readonly_strings -DL_ENDIAN -DTERMIO::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${no_asm}",
365
366 #### *BSD [do see comment about ${BSDthreads} above!]
367 "BSD-generic32","gcc:-DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
368 "BSD-x86",      "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
369 "BSD-x86-elf",  "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
370 "debug-BSD-x86-elf",    "gcc:-DL_ENDIAN -DTERMIOS -O3 -Wall -g::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
371 "BSD-sparcv8",  "gcc:-DB_ENDIAN -DTERMIOS -O3 -mv8 -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL::sparcv8.o:des_enc-sparc.o fcrypt_b.o:::::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
372
373 "BSD-generic64","gcc:-DTERMIOS -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
374 # -DMD32_REG_T=int doesn't actually belong in sparc64 target, it
375 # simply *happens* to work around a compiler bug in gcc 3.3.3,
376 # triggered by RIPEMD160 code.
377 "BSD-sparc64",  "gcc:-DB_ENDIAN -DTERMIOS -O3 -DMD32_REG_T=int -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC2_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC2 BF_PTR:::des_enc-sparc.o fcrypt_b.o:::md5-sparcv9.o::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
378 "BSD-ia64",     "gcc:-DL_ENDIAN -DTERMIOS -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${ia64_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
379 "BSD-x86_64",   "gcc:-DL_ENDIAN -DTERMIOS -O3 -DMD32_REG_T=int -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
380
381 "bsdi-elf-gcc",     "gcc:-DPERL5 -DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall::(unknown)::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
382
383 "nextstep",     "cc:-O -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
384 "nextstep3.3",  "cc:-O3 -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
385
386 # NCR MP-RAS UNIX ver 02.03.01
387 "ncr-scde","cc:-O6 -Xa -Hoff=BEHAVED -686 -Hwide -Hiw::(unknown)::-lsocket -lnsl -lc89:${x86_gcc_des} ${x86_gcc_opts}:::",
388
389 # QNX
390 "qnx4", "cc:-DL_ENDIAN -DTERMIO::(unknown):::${x86_gcc_des} ${x86_gcc_opts}:",
391 "qnx6", "cc:-DL_ENDIAN -DTERMIOS::(unknown)::-lsocket:${x86_gcc_des} ${x86_gcc_opts}:",
392
393 #### SCO/Caldera targets.
394 #
395 # Originally we had like unixware-*, unixware-*-pentium, unixware-*-p6, etc.
396 # Now we only have blended unixware-* as it's the only one used by ./config.
397 # If you want to optimize for particular microarchitecture, bypass ./config
398 # and './Configure unixware-7 -Kpentium_pro' or whatever appropriate.
399 # Note that not all targets include assembler support. Mostly because of
400 # lack of motivation to support out-of-date platforms with out-of-date
401 # compiler drivers and assemblers. Tim Rice <tim@multitalents.net> has
402 # patiently assisted to debug most of it.
403 #
404 # UnixWare 2.0x fails destest with -O.
405 "unixware-2.0","cc:-DFILIO_H -DNO_STRINGS_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
406 "unixware-2.1","cc:-O -DFILIO_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
407 "unixware-7","cc:-O -DFILIO_H -Kalloca::-Kthread::-lsocket -lnsl:BN_LLONG MD2_CHAR RC4_INDEX ${x86_gcc_des}:${x86_elf_asm}:dlfcn:svr5-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
408 "unixware-7-gcc","gcc:-DL_ENDIAN -DFILIO_H -O3 -fomit-frame-pointer -m486 -Wall::-D_REENTRANT::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:gnu-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
409 "OpenUNIX-8","cc:-O -DFILIO_H -Kalloca::-Kthread::-lsocket -lnsl:BN_LLONG MD2_CHAR RC4_INDEX ${x86_gcc_des}:${x86_elf_asm}:dlfcn:svr5-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
410 "OpenUNIX-8-gcc","gcc:-O -DFILIO_H -fomit-frame-pointer::-pthread::-lsocket -lnsl:BN_LLONG MD2_CHAR RC4_INDEX ${x86_gcc_des}:${x86_elf_asm}:dlfcn:svr5-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
411 "sco3-gcc",  "gcc:-O3 -fomit-frame-pointer -Dssize_t=int -DNO_SYS_UN_H::(unknown)::-lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::", # the SCO assembler doesn't seem to like our assembler files ...
412 # SCO 5 - Ben Laurie <ben@algroup.co.uk> says the -O breaks the SCO cc.
413 "sco5-cc",  "cc:-belf::(unknown)::-lsocket -lnsl:${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
414 "sco5-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
415
416 #### IBM's AIX.
417 "aix3-cc",  "cc:-O -DB_ENDIAN -qmaxmem=16384::(unknown):AIX::BN_LLONG RC4_CHAR:::",
418 "aix-gcc",  "gcc:-O -DB_ENDIAN::-D_THREAD_SAFE:AIX::BN_LLONG RC4_CHAR::aix_ppc32.o::::::::::dlfcn:",
419 # Below targets assume AIX 5. Idea is to effectively disregard $OBJECT_MODE
420 # at build time. $OBJECT_MODE is respected at ./config stage!
421 "aix-cc",   "cc:-q32 -O -DB_ENDIAN -qmaxmem=16384::-qthreaded:AIX::BN_LLONG RC4_CHAR::aix_ppc32.o::::::::::dlfcn:aix-shared::-q32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 32",
422 "aix64-cc", "cc:-q64 -O -DB_ENDIAN -qmaxmem=16384::(unknown):AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR::aix_ppc64.o::::::::::dlfcn:aix-shared::-q64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 64",
423
424 #
425 # Cray T90 and similar (SDSC)
426 # It's Big-endian, but the algorithms work properly when B_ENDIAN is NOT
427 # defined.  The T90 ints and longs are 8 bytes long, and apparently the
428 # B_ENDIAN code assumes 4 byte ints.  Fortunately, the non-B_ENDIAN and
429 # non L_ENDIAN code aligns the bytes in each word correctly.
430 #
431 # The BIT_FIELD_LIMITS define is to avoid two fatal compiler errors:
432 #'Taking the address of a bit field is not allowed. '
433 #'An expression with bit field exists as the operand of "sizeof" '
434 # (written by Wayne Schroeder <schroede@SDSC.EDU>)
435 #
436 # j90 is considered the base machine type for unicos machines,
437 # so this configuration is now called "cray-j90" ...
438 "cray-j90", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG DES_INT:::",
439
440 #
441 # Cray T3E (Research Center Juelich, beckman@acl.lanl.gov)
442 #
443 # The BIT_FIELD_LIMITS define was written for the C90 (it seems).  I added
444 # another use.  Basically, the problem is that the T3E uses some bit fields
445 # for some st_addr stuff, and then sizeof and address-of fails
446 # I could not use the ams/alpha.o option because the Cray assembler, 'cam'
447 # did not like it.
448 "cray-t3e", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT:::",
449
450 # DGUX, 88100.
451 "dgux-R3-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown):::RC4_INDEX DES_UNROLL:::",
452 "dgux-R4-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lnsl -lsocket:RC4_INDEX DES_UNROLL:::",
453 "dgux-R4-x86-gcc",      "gcc:-O3 -fomit-frame-pointer -DL_ENDIAN::(unknown)::-lnsl -lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
454
455 # Sinix/ReliantUNIX RM400
456 # NOTE: The CDS++ Compiler up to V2.0Bsomething has the IRIX_CC_BUG optimizer problem. Better use -g  */
457 "ReliantUNIX","cc:-KPIC -g -DTERMIOS -DB_ENDIAN::-Kthread:SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:BN_LLONG DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${no_asm}:dlfcn:reliantunix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
458 "SINIX","cc:-O::(unknown):SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:RC4_INDEX RC4_CHAR:::",
459 "SINIX-N","/usr/ucb/cc:-O2 -misaligned::(unknown)::-lucb:RC4_INDEX RC4_CHAR:::",
460
461 # SIEMENS BS2000/OSD: an EBCDIC-based mainframe
462 "BS2000-OSD","c89:-O -XLLML -XLLMK -XL -DB_ENDIAN -DTERMIOS -DCHARSET_EBCDIC::(unknown)::-lsocket -lnsl:THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
463
464 # OS/390 Unix an EBCDIC-based Unix system on IBM mainframe
465 # You need to compile using the c89.sh wrapper in the tools directory, because the
466 # IBM compiler does not like the -L switch after any object modules.
467 #
468 "OS390-Unix","c89.sh:-O -DB_ENDIAN -DCHARSET_EBCDIC -DNO_SYS_PARAM_H  -D_ALL_SOURCE::(unknown):::THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
469
470 # Win64 targets, WIN64I denotes IA-64 and WIN64A - AMD64
471 "VC-WIN64I","cl::::WIN64I::SIXTY_FOUR_BIT EXPORT_VAR_AS_FN:${no_asm}:win32",
472 "VC-WIN64A","cl::::WIN64A::SIXTY_FOUR_BIT EXPORT_VAR_AS_FN:${no_asm}:win32",
473
474 # Visual C targets
475 "VC-NT","cl::::WINNT::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
476 "VC-CE","cl::::WINCE::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
477 "VC-WIN32","cl::::WIN32::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
478 "VC-WIN16","cl:::(unknown):WIN16::MD2_CHAR DES_UNROLL DES_PTR RC4_INDEX THIRTY_TWO_BIT:::",
479 "VC-W31-16","cl:::(unknown):WIN16::BN_LLONG MD2_CHAR DES_UNROLL DES_PTR RC4_INDEX SIXTEEN_BIT:::",
480 "VC-W31-32","cl::::WIN16::BN_LLONG MD2_CHAR DES_UNROLL DES_PTR RC4_INDEX THIRTY_TWO_BIT:::",
481 "VC-MSDOS","cl:::(unknown):MSDOS::BN_LLONG MD2_CHAR DES_UNROLL DES_PTR RC4_INDEX SIXTEEN_BIT:::",
482
483 # Borland C++ 4.5
484 "BC-32","bcc32::::WIN32::BN_LLONG DES_PTR RC4_INDEX EXPORT_VAR_AS_FN:${no_asm}:win32",
485 "BC-16","bcc:::(unknown):WIN16::BN_LLONG DES_PTR RC4_INDEX SIXTEEN_BIT:::",
486
487 # MinGW
488 "mingw", "gcc:-mno-cygwin -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall -D_WIN32_WINNT=0x333:::MINGW32:-lwsock32 -lgdi32:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts} EXPORT_VAR_AS_FN:${x86_coff_asm}:win32:cygwin-shared:-D_WINDLL:-mno-cygwin -shared:.dll.a",
489
490 # UWIN 
491 "UWIN", "cc:-DTERMIOS -DL_ENDIAN -O -Wall:::UWIN::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
492
493 # Cygwin
494 "Cygwin-pre1.3", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall::(unknown):CYGWIN32::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
495 "Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall:::CYGWIN32::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_coff_asm}:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
496 "debug-Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -march=i486 -Wall -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -g -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror:::CYGWIN32:::${no_asm}:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
497
498 # NetWare from David Ward (dsward@novell.com) - requires MetroWerks NLM development tools
499 # netware-clib => legacy CLib c-runtime support
500 "netware-clib", "mwccnlm:::::${x86_gcc_opts}:::",
501 # netware-libc => LibC/NKS support
502 "netware-libc", "mwccnlm:::::BN_LLONG ${x86_gcc_opts}:::",
503 "netware-libc-gcc", "i586-netware-gcc:-nostdinc -I/ndk/libc/include -I/ndk/libc/include/winsock -DL_ENDIAN -DNETWARE_LIBC -DOPENSSL_SYSNAME_NETWARE -DTERMIO -O2 -Wall::::${x86_gcc_opts}:::",
504
505 # DJGPP
506 "DJGPP", "gcc:-I/dev/env/WATT_ROOT/inc -DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -Wall -DDEVRANDOM=\"/dev/urandom\\x24\":::MSDOS:-L/dev/env/WATT_ROOT/lib -lwatt:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}:",
507
508 # Ultrix from Bernhard Simon <simon@zid.tuwien.ac.at>
509 "ultrix-cc","cc:-std1 -O -Olimit 2500 -DL_ENDIAN::(unknown):::::::",
510 "ultrix-gcc","gcc:-O3 -DL_ENDIAN::(unknown):::::::",
511 # K&R C is no longer supported; you need gcc on old Ultrix installations
512 ##"ultrix","cc:-O2 -DNOPROTO -DNOCONST -DL_ENDIAN::(unknown):::::::",
513
514 ##### MacOS X (a.k.a. Rhapsody or Darwin) setup
515 "rhapsody-ppc-cc","cc:-O3 -DB_ENDIAN::(unknown):MACOSX_RHAPSODY::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}::",
516 "darwin-ppc-cc","cc:-O3 -DB_ENDIAN::-D_REENTRANT:MACOSX::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::osx_ppc32.o:::::::::::darwin-shared:-fPIC -fno-common::.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
517 "darwin-i386-cc","cc:-O3 -fomit-frame-pointer -fno-common -DB_ENDIAN::-D_REENTRANT:MACOSX::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}::darwin-shared:-fPIC::.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
518 "debug-darwin-ppc-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DB_ENDIAN -g -Wall -O::-D_REENTRANT:MACOSX::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::osx_ppc32.o:::::::::::darwin-shared:-fPIC::.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
519
520 ##### A/UX
521 "aux3-gcc","gcc:-O2 -DTERMIO::(unknown):AUX:-lbsd:RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
522
523 ##### Sony NEWS-OS 4.x
524 "newsos4-gcc","gcc:-O -DB_ENDIAN::(unknown):NEWS4:-lmld -liberty:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::",
525
526 ##### GNU Hurd
527 "hurd-x86",  "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -m486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC",
528
529 ##### OS/2 EMX
530 "OS2-EMX", "gcc::::::::",
531
532 ##### VxWorks for various targets
533 "vxworks-ppc405","ccppc:-g -msoft-float -mlongcall -DCPU=PPC405 -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
534 "vxworks-ppc750","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h \$(DEBUG_FLAG):::VXWORKS:-r:::::",
535 "vxworks-ppc750-debug","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DDEBUG -g:::VXWORKS:-r:::::",
536 "vxworks-ppc860","ccppc:-nostdinc -msoft-float -DCPU=PPC860 -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
537 "vxworks-mipsle","ccmips:-B\$(WIND_BASE)/host/\$(WIND_HOST_TYPE)/lib/gcc-lib/ -DL_ENDIAN -EL -Wl,-EL -mips2 -mno-branch-likely -G 0 -fno-builtin -msoft-float -DCPU=MIPS32 -DMIPSEL -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r::${no_asm}::::::ranlibmips:",
538
539 ##### Compaq Non-Stop Kernel (Tandem)
540 "tandem-c89","c89:-Ww -D__TANDEM -D_XOPEN_SOURCE -D_XOPEN_SOURCE_EXTENDED=1 -D_TANDEM_SOURCE -DB_ENDIAN::(unknown):::THIRTY_TWO_BIT:::",
541
542 );
543
544 my @MK1MF_Builds=qw(VC-WIN64I VC-WIN64A
545                     VC-NT VC-CE VC-WIN32
546                     VC-WIN16 VC-W31-16 VC-W31-32 VC-MSDOS
547                     BC-32 BC-16 OS2-EMX netware-clib netware-libc);
548
549 my $idx = 0;
550 my $idx_cc = $idx++;
551 my $idx_cflags = $idx++;
552 my $idx_unistd = $idx++;
553 my $idx_thread_cflag = $idx++;
554 my $idx_sys_id = $idx++;
555 my $idx_lflags = $idx++;
556 my $idx_bn_ops = $idx++;
557 my $idx_cpuid_obj = $idx++;
558 my $idx_bn_obj = $idx++;
559 my $idx_des_obj = $idx++;
560 my $idx_aes_obj = $idx++;
561 my $idx_bf_obj = $idx++;
562 my $idx_md5_obj = $idx++;
563 my $idx_sha1_obj = $idx++;
564 my $idx_cast_obj = $idx++;
565 my $idx_rc4_obj = $idx++;
566 my $idx_rmd160_obj = $idx++;
567 my $idx_rc5_obj = $idx++;
568 my $idx_dso_scheme = $idx++;
569 my $idx_shared_target = $idx++;
570 my $idx_shared_cflag = $idx++;
571 my $idx_shared_ldflag = $idx++;
572 my $idx_shared_extension = $idx++;
573 my $idx_ranlib = $idx++;
574 my $idx_arflags = $idx++;
575
576 my $prefix="";
577 my $openssldir="";
578 my $exe_ext="";
579 my $install_prefix="";
580 my $no_threads=0;
581 my $threads=0;
582 my $no_shared=0; # but "no-shared" is default
583 my $zlib=1;      # but "no-zlib" is default
584 my $no_krb5=0;   # but "no-krb5" is implied unless "--with-krb5-..." is used
585 my $no_asm=0;
586 my $no_dso=0;
587 my $no_gmp=0;
588 my @skip=();
589 my $Makefile="Makefile";
590 my $des_locl="crypto/des/des_locl.h";
591 my $des ="crypto/des/des.h";
592 my $bn  ="crypto/bn/bn.h";
593 my $md2 ="crypto/md2/md2.h";
594 my $rc4 ="crypto/rc4/rc4.h";
595 my $rc4_locl="crypto/rc4/rc4_locl.h";
596 my $idea        ="crypto/idea/idea.h";
597 my $rc2 ="crypto/rc2/rc2.h";
598 my $bf  ="crypto/bf/bf_locl.h";
599 my $bn_asm      ="bn_asm.o";
600 my $des_enc="des_enc.o fcrypt_b.o";
601 my $aes_enc="aes_core.o aes_cbc.o";
602 my $bf_enc      ="bf_enc.o";
603 my $cast_enc="c_enc.o";
604 my $rc4_enc="rc4_enc.o";
605 my $rc5_enc="rc5_enc.o";
606 my $md5_obj="";
607 my $sha1_obj="";
608 my $rmd160_obj="";
609 my $processor="";
610 my $default_ranlib;
611 my $perl;
612
613
614 # All of the following is disabled by default (RC5 was enabled before 0.9.8):
615
616 my %disabled = ( # "what"         => "comment"
617                  "gmp"            => "default",
618                  "mdc2"           => "default",
619                  "rc5"            => "default",
620                  "shared"         => "default",
621                  "zlib"           => "default",
622                  "zlib-dynamic"   => "default"
623                );
624
625 # Additional "no-..." options will be collected in %disabled.
626 # To remove something from %disabled, use e.g. "enable-rc5".
627 # For symmetry, "disable-..." is a synonym for "no-...".
628
629 # This is what $depflags will look like with the above default:
630 my $default_depflags = "-DOPENSSL_NO_GMP -DOPENSSL_NO_MDC2 -DOPENSSL_NO_RC5 ";
631
632
633 my $no_sse2=0;
634
635 &usage if ($#ARGV < 0);
636
637 my $flags;
638 my $depflags;
639 my $openssl_algorithm_defines;
640 my $openssl_thread_defines;
641 my $openssl_sys_defines="";
642 my $openssl_other_defines;
643 my $libs;
644 my $libkrb5="";
645 my $target;
646 my $options;
647 my $symlink;
648 my $make_depend=0;
649 my %withargs=();
650
651 my @argvcopy=@ARGV;
652 my $argvstring="";
653 my $argv_unprocessed=1;
654
655 while($argv_unprocessed)
656         {
657         $flags="";
658         $depflags="";
659         $openssl_algorithm_defines="";
660         $openssl_thread_defines="";
661         $openssl_sys_defines="";
662         $openssl_other_defines="";
663         $libs="";
664         $target="";
665         $options="";
666         $symlink=1;
667
668         $argv_unprocessed=0;
669         $argvstring=join(' ',@argvcopy);
670
671 PROCESS_ARGS:
672         foreach (@argvcopy)
673                 {
674                 s /^-no-/no-/; # some people just can't read the instructions
675
676                 # rewrite some options in "enable-..." form
677                 s /^-?-?shared$/enable-shared/;
678                 s /^threads$/enable-threads/;
679                 s /^zlib$/enable-zlib/;
680                 s /^zlib-dynamic$/enable-zlib-dynamic/;
681
682                 if (/^no-(.+)$/ || /^disable-(.+)$/)
683                         {
684                         if ($1 eq "ssl")
685                                 {
686                                 $disabled{"ssl2"} = "option(ssl)";
687                                 $disabled{"ssl3"} = "option(ssl)";
688                                 }
689                         elsif ($1 eq "tls")
690                                 {
691                                 $disabled{"tls1"} = "option(tls)"
692                                 }
693                         else
694                                 {
695                                 $disabled{$1} = "option";
696                                 }
697                         }                       
698                 elsif (/^enable-(.+)$/)
699                         {
700                         delete $disabled{$1};
701
702                         $threads = 1 if ($1 eq "threads");
703                         }
704                 elsif (/^--test-sanity$/)
705                         {
706                         exit(&test_sanity());
707                         }
708                 elsif (/^reconfigure/ || /^reconf/)
709                         {
710                         if (open(IN,"<$Makefile"))
711                                 {
712                                 while (<IN>)
713                                         {
714                                         chop;
715                                         if (/^CONFIGURE_ARGS=(.*)/)
716                                                 {
717                                                 $argvstring=$1;
718                                                 @argvcopy=split(' ',$argvstring);
719                                                 die "Incorrect data to reconfigure, please do a normal configuration\n"
720                                                         if (grep(/^reconf/,@argvcopy));
721                                                 print "Reconfiguring with: $argvstring\n";
722                                                 $argv_unprocessed=1;
723                                                 close(IN);
724                                                 last PROCESS_ARGS;
725                                                 }
726                                         }
727                                 close(IN);
728                                 }
729                         die "Insufficient data to reconfigure, please do a normal configuration\n";
730                         }
731                 elsif (/^386$/)
732                         { $processor=386; }
733                 elsif (/^rsaref$/)
734                         {
735                         # No RSAref support any more since it's not needed.
736                         # The check for the option is there so scripts aren't
737                         # broken
738                         }
739                 elsif (/^[-+]/)
740                         {
741                         if (/^-[lL](.*)$/)
742                                 {
743                                 $libs.=$_." ";
744                                 }
745                         elsif (/^-[^-]/ or /^\+/)
746                                 {
747                                 $flags.=$_." ";
748                                 }
749                         elsif (/^--prefix=(.*)$/)
750                                 {
751                                 $prefix=$1;
752                                 }
753                         elsif (/^--openssldir=(.*)$/)
754                                 {
755                                 $openssldir=$1;
756                                 }
757                         elsif (/^--install.prefix=(.*)$/)
758                                 {
759                                 $install_prefix=$1;
760                                 }
761                         elsif (/^--with-krb5-(dir|lib|include|flavor)=(.*)$/)
762                                 {
763                                 $withargs{"krb5-".$1}=$2;
764                                 }
765                         else
766                                 {
767                                 print STDERR $usage;
768                                 exit(1);
769                                 }
770                         }
771                 elsif ($_ =~ /^([^:]+):(.+)$/)
772                         {
773                         eval "\$table{\$1} = \"$2\""; # allow $xxx constructs in the string
774                         $target=$1;
775                         }
776                 else
777                         {
778                         die "target already defined - $target\n" if ($target ne "");
779                         $target=$_;
780                         }
781
782                 unless ($_ eq $target || /^no-/ || /^disable-/)
783                         {
784                         # "no-..." follows later after implied disactivations
785                         # have been derived.  (Don't take this too seroiusly,
786                         # we really only write OPTIONS to the Makefile out of
787                         # nostalgia.)
788
789                         if ($options eq "")
790                                 { $options = $_; }
791                         else
792                                 { $options .= " ".$_; }
793                         }
794                 }
795         }
796
797
798
799 if ($processor eq "386")
800         {
801         $disabled{"sse2"} = "forced";
802         }
803
804 if (!defined($withargs{"krb5-flavor"}) || $withargs{"krb5-flavor"} eq "")
805         {
806         $disabled{"krb5"} = "krb5-flavor not specified";
807         }
808
809 if (!defined($disabled{"zlib-dynamic"}))
810         {
811         # "zlib-dynamic" was specifically enabled, so enable "zlib"
812         delete $disabled{"zlib"};
813         }
814
815 if (defined($disabled{"rijndael"}))
816         {
817         $disabled{"aes"} = "forced";
818         }
819 if (defined($disabled{"des"}))
820         {
821         $disabled{"mdc2"} = "forced";
822         }
823 if (defined($disabled{"ec"}))
824         {
825         $disabled{"ecdsa"} = "forced";
826         $disabled{"ecdh"} = "forced";
827         }
828
829 # SSL 2.0 requires MD5 and RSA
830 if (defined($disabled{"md5"}) || defined($disabled{"rsa"}))
831         {
832         $disabled{"ssl2"} = "forced";
833         }
834
835 # SSL 3.0 and TLS requires MD5 and SHA and either RSA or DSA+DH
836 if (defined($disabled{"md5"}) || defined($disabled{"sha"})
837     || (defined($disabled{"rsa"})
838         && (defined($disabled{"dsa"}) || defined($disabled{"dh"}))))
839         {
840         $disabled{"ssl3"} = "forced";
841         $disabled{"tls1"} = "forced";
842         }
843
844
845 if ($target eq "TABLE") {
846         foreach $target (sort keys %table) {
847                 print_table_entry($target);
848         }
849         exit 0;
850 }
851
852 if ($target eq "LIST") {
853         foreach (sort keys %table) {
854                 print;
855                 print "\n";
856         }
857         exit 0;
858 }
859
860 if ($target =~ m/^CygWin32(-.*)$/) {
861         $target = "Cygwin".$1;
862 }
863
864 print "Configuring for $target\n";
865
866 &usage if (!defined($table{$target}));
867
868
869 foreach (sort (keys %disabled))
870         {
871         $options .= " no-$_";
872
873         printf "    no-%-12s %-10s", $_, "[$disabled{$_}]";
874
875         if (/^dso$/)
876                 { $no_dso = 1; }
877         elsif (/^threads$/)
878                 { $no_threads = 1; }
879         elsif (/^shared$/)
880                 { $no_shared = 1; }
881         elsif (/^zlib$/)
882                 { $zlib = 0; }
883         elsif (/^zlib-dynamic$/)
884                 { }
885         elsif (/^symlinks$/)
886                 { $symlink = 0; }
887         elsif (/^sse2$/)
888                 { $no_sse2 = 1; }
889         else
890                 {
891                 my ($ALGO, $algo);
892                 ($ALGO = $algo = $_) =~ tr/[a-z]/[A-Z]/;
893
894                 if (/^asm$/ || /^err$/ || /^hw$/ || /^hw-/)
895                         {
896                         $openssl_other_defines .= "#define OPENSSL_NO_$ALGO\n";
897                         print " OPENSSL_NO_$ALGO";
898                 
899                         if (/^err$/)
900                                 { $flags .= "-DOPENSSL_NO_ERR "; }
901                         }
902                 else
903                         {
904                         $openssl_algorithm_defines .= "#define OPENSSL_NO_$ALGO\n";
905                         print " OPENSSL_NO_$ALGO";
906
907                         if (/^krb5$/)
908                                 { $no_krb5 = 1; }
909                         else
910                                 {
911                                 push @skip, $algo;
912                                 print " (skip dir)";
913
914                                 $depflags .="-DOPENSSL_NO_$ALGO ";
915                                 }
916                         }
917                 }
918
919         print "\n";
920         }
921
922
923 my $IsMK1MF=scalar grep /^$target$/,@MK1MF_Builds;
924
925 $IsMK1MF=1 if ($target eq "mingw" && $^O ne "cygwin");
926
927 $exe_ext=".exe" if ($target eq "Cygwin" || $target eq "DJGPP" || $target eq "mingw");
928 $exe_ext=".pm"  if ($target =~ /vos/);
929 $openssldir="/usr/local/ssl" if ($openssldir eq "" and $prefix eq "");
930 $prefix=$openssldir if $prefix eq "";
931
932 $default_ranlib= &which("ranlib") or $default_ranlib="true";
933 $perl=$ENV{'PERL'} or $perl=&which("perl5") or $perl=&which("perl")
934   or $perl="perl";
935
936 chop $openssldir if $openssldir =~ /\/$/;
937 chop $prefix if $prefix =~ /\/$/;
938
939 $openssldir=$prefix . "/ssl" if $openssldir eq "";
940 $openssldir=$prefix . "/" . $openssldir if $openssldir !~ /(^\/|^[a-zA-Z]:[\\\/])/;
941
942
943 print "IsMK1MF=$IsMK1MF\n";
944
945 my @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
946 my $cc = $fields[$idx_cc];
947 my $cflags = $fields[$idx_cflags];
948 my $unistd = $fields[$idx_unistd];
949 my $thread_cflag = $fields[$idx_thread_cflag];
950 my $sys_id = $fields[$idx_sys_id];
951 my $lflags = $fields[$idx_lflags];
952 my $bn_ops = $fields[$idx_bn_ops];
953 my $cpuid_obj = $fields[$idx_cpuid_obj];
954 my $bn_obj = $fields[$idx_bn_obj];
955 my $des_obj = $fields[$idx_des_obj];
956 my $aes_obj = $fields[$idx_aes_obj];
957 my $bf_obj = $fields[$idx_bf_obj];
958 my $md5_obj = $fields[$idx_md5_obj];
959 my $sha1_obj = $fields[$idx_sha1_obj];
960 my $cast_obj = $fields[$idx_cast_obj];
961 my $rc4_obj = $fields[$idx_rc4_obj];
962 my $rmd160_obj = $fields[$idx_rmd160_obj];
963 my $rc5_obj = $fields[$idx_rc5_obj];
964 my $dso_scheme = $fields[$idx_dso_scheme];
965 my $shared_target = $fields[$idx_shared_target];
966 my $shared_cflag = $fields[$idx_shared_cflag];
967 my $shared_ldflag = $fields[$idx_shared_ldflag];
968 my $shared_extension = $fields[$idx_shared_extension];
969 my $ranlib = $fields[$idx_ranlib];
970 my $arflags = $fields[$idx_arflags];
971
972 my $no_shared_warn=0;
973 my $no_user_cflags=0;
974
975 if ($flags ne "")       { $cflags="$flags$cflags"; }
976 else                    { $no_user_cflags=1;       }
977
978 # Kerberos settings.  The flavor must be provided from outside, either through
979 # the script "config" or manually.
980 if (!$no_krb5)
981         {
982         my ($lresolv, $lpath, $lext);
983         if ($withargs{"krb5-flavor"} =~ /^[Hh]eimdal$/)
984                 {
985                 die "Sorry, Heimdal is currently not supported\n";
986                 }
987         ##### HACK to force use of Heimdal.
988         ##### WARNING: Since we don't really have adequate support for Heimdal,
989         #####          using this will break the build.  You'll have to make
990         #####          changes to the source, and if you do, please send
991         #####          patches to openssl-dev@openssl.org
992         if ($withargs{"krb5-flavor"} =~ /^force-[Hh]eimdal$/)
993                 {
994                 warn "Heimdal isn't really supported.  Your build WILL break\n";
995                 warn "If you fix the problems, please send a patch to openssl-dev\@openssl.org\n";
996                 $withargs{"krb5-dir"} = "/usr/heimdal"
997                         if $withargs{"krb5-dir"} eq "";
998                 $withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
999                         "/lib -lgssapi -lkrb5 -lcom_err"
1000                         if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1001                 $cflags="-DKRB5_HEIMDAL $cflags";
1002                 }
1003         if ($withargs{"krb5-flavor"} =~ /^[Mm][Ii][Tt]/)
1004                 {
1005                 $withargs{"krb5-dir"} = "/usr/kerberos"
1006                         if $withargs{"krb5-dir"} eq "";
1007                 $withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
1008                         "/lib -lgssapi_krb5 -lkrb5 -lcom_err -lk5crypto"
1009                         if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1010                 $cflags="-DKRB5_MIT $cflags";
1011                 $withargs{"krb5-flavor"} =~ s/^[Mm][Ii][Tt][._-]*//;
1012                 if ($withargs{"krb5-flavor"} =~ /^1[._-]*[01]/)
1013                         {
1014                         $cflags="-DKRB5_MIT_OLD11 $cflags";
1015                         }
1016                 }
1017         LRESOLV:
1018         foreach $lpath ("/lib", "/usr/lib")
1019                 {
1020                 foreach $lext ("a", "so")
1021                         {
1022                         $lresolv = "$lpath/libresolv.$lext";
1023                         last LRESOLV    if (-r "$lresolv");
1024                         $lresolv = "";
1025                         }
1026                 }
1027         $withargs{"krb5-lib"} .= " -lresolv"
1028                 if ("$lresolv" ne "");
1029         $withargs{"krb5-include"} = "-I".$withargs{"krb5-dir"}."/include"
1030                 if $withargs{"krb5-include"} eq "" &&
1031                    $withargs{"krb5-dir"} ne "";
1032         }
1033
1034 # The DSO code currently always implements all functions so that no
1035 # applications will have to worry about that from a compilation point
1036 # of view. However, the "method"s may return zero unless that platform
1037 # has support compiled in for them. Currently each method is enabled
1038 # by a define "DSO_<name>" ... we translate the "dso_scheme" config
1039 # string entry into using the following logic;
1040 my $dso_cflags;
1041 if (!$no_dso && $dso_scheme ne "")
1042         {
1043         $dso_scheme =~ tr/[a-z]/[A-Z]/;
1044         if ($dso_scheme eq "DLFCN")
1045                 {
1046                 $dso_cflags = "-DDSO_DLFCN -DHAVE_DLFCN_H";
1047                 }
1048         elsif ($dso_scheme eq "DLFCN_NO_H")
1049                 {
1050                 $dso_cflags = "-DDSO_DLFCN";
1051                 }
1052         else
1053                 {
1054                 $dso_cflags = "-DDSO_$dso_scheme";
1055                 }
1056         $cflags = "$dso_cflags $cflags";
1057         }
1058
1059 my $thread_cflags;
1060 my $thread_defines;
1061 if ($thread_cflag ne "(unknown)" && !$no_threads)
1062         {
1063         # If we know how to do it, support threads by default.
1064         $threads = 1;
1065         }
1066 if ($thread_cflag eq "(unknown)" && $threads)
1067         {
1068         # If the user asked for "threads", [s]he is also expected to
1069         # provide any system-dependent compiler options that are
1070         # necessary.
1071         if ($no_user_cflags)
1072                 {
1073                 print "You asked for multi-threading support, but didn't\n";
1074                 print "provide any system-specific compiler options\n";
1075                 exit(1);
1076                 }
1077         $thread_cflags="-DOPENSSL_THREADS $cflags" ;
1078         $thread_defines .= "#define OPENSSL_THREADS\n";
1079         }
1080 else
1081         {
1082         $thread_cflags="-DOPENSSL_THREADS $thread_cflag $cflags";
1083         $thread_defines .= "#define OPENSSL_THREADS\n";
1084 #       my $def;
1085 #       foreach $def (split ' ',$thread_cflag)
1086 #               {
1087 #               if ($def =~ s/^-D// && $def !~ /^_/)
1088 #                       {
1089 #                       $thread_defines .= "#define $def\n";
1090 #                       }
1091 #               }
1092         }       
1093
1094 $lflags="$libs$lflags" if ($libs ne "");
1095
1096 if ($no_asm)
1097         {
1098         $cpuid_obj=$bn_obj=$des_obj=$aes_obj=$bf_obj=$cast_obj=$rc4_obj=$rc5_obj="";
1099         $sha1_obj=$md5_obj=$rmd160_obj="";
1100         }
1101
1102 if (!$no_shared)
1103         {
1104         $cast_obj="";   # CAST assembler is not PIC
1105         }
1106
1107 if ($threads)
1108         {
1109         $cflags=$thread_cflags;
1110         $openssl_thread_defines .= $thread_defines;
1111         }
1112
1113 if ($zlib)
1114         {
1115         $cflags = "-DZLIB $cflags";
1116         if (defined($disabled{"zlib-dynamic"}))
1117                 {
1118                 $lflags = "$lflags -lz";
1119                 }
1120         else
1121                 {
1122                 $cflags = "-DZLIB_SHARED $cflags";
1123                 }
1124         }
1125
1126 # You will find shlib_mark1 and shlib_mark2 explained in Makefile.org
1127 my $shared_mark = "";
1128 if ($shared_target eq "")
1129         {
1130         $no_shared_warn = 1 if !$no_shared;
1131         $no_shared = 1;
1132         }
1133 if (!$no_shared)
1134         {
1135         if ($shared_cflag ne "")
1136                 {
1137                 $cflags = "$shared_cflag -DOPENSSL_PIC $cflags";
1138                 }
1139         }
1140
1141 if ($no_shared)
1142         {
1143         $openssl_other_defines.="#define OPENSSL_NO_DYNAMIC_ENGINE\n";
1144         }
1145 else
1146         {
1147         $openssl_other_defines.="#define OPENSSL_NO_STATIC_ENGINE\n";
1148         }
1149
1150 # Compiler fix-ups
1151 if ($target =~ /icc$/)
1152         {
1153         my($iccver)=`$cc -V 2>&1`;
1154         if ($iccver =~ /Version ([0-9]+)\./)    { $iccver=$1; }
1155         else                                    { $iccver=0;  }
1156         if ($iccver>=8)
1157                 {
1158                 # Eliminate unnecessary dependency from libirc.a. This is
1159                 # essential for shared library support, as otherwise
1160                 # apps/openssl can end up in endless loop upon startup...
1161                 $cflags.=" -Dmemcpy=__builtin_memcpy -Dmemset=__builtin_memset";
1162                 }
1163         }
1164
1165 if ($sys_id ne "")
1166         {
1167         #$cflags="-DOPENSSL_SYSNAME_$sys_id $cflags";
1168         $openssl_sys_defines="#define OPENSSL_SYSNAME_$sys_id\n";
1169         }
1170
1171 if ($ranlib eq "")
1172         {
1173         $ranlib = $default_ranlib;
1174         }
1175
1176 #my ($bn1)=split(/\s+/,$bn_obj);
1177 #$bn1 = "" unless defined $bn1;
1178 #$bn1=$bn_asm unless ($bn1 =~ /\.o$/);
1179 #$bn_obj="$bn1";
1180
1181 $cpuid_obj="" if ($processor eq "386");
1182
1183 $bn_obj = $bn_asm unless $bn_obj ne "";
1184 # bn86* is the only one implementing bn_*_part_words
1185 $cflags.=" -DOPENSSL_BN_ASM_PART_WORDS" if ($bn_obj =~ /bn86/);
1186 $cflags.=" -DOPENSSL_IA32_SSE2" if (!$no_sse2 && $bn_obj =~ /bn86/);
1187
1188 $des_obj=$des_enc       unless ($des_obj =~ /\.o$/);
1189 $bf_obj=$bf_enc         unless ($bf_obj =~ /\.o$/);
1190 $cast_obj=$cast_enc     unless ($cast_obj =~ /\.o$/);
1191 $rc4_obj=$rc4_enc       unless ($rc4_obj =~ /\.o$/);
1192 $rc5_obj=$rc5_enc       unless ($rc5_obj =~ /\.o$/);
1193 if ($sha1_obj =~ /\.o$/)
1194         {
1195 #       $sha1_obj=$sha1_enc;
1196         $cflags.=" -DSHA1_ASM"   if ($sha1_obj =~ /sx86/ || $sha1_obj =~ /sha1/);
1197         $cflags.=" -DSHA256_ASM" if ($sha1_obj =~ /sha256/);
1198         $cflags.=" -DSHA512_ASM" if ($sha1_obj =~ /sha512/);
1199         if ($sha1_obj =~ /x86/)
1200             {   if ($no_sse2)
1201                 {   $sha1_obj =~ s/\S*sse2\S+//;        }
1202                 elsif ($cflags !~ /OPENSSL_IA32_SSE2/)
1203                 {   $cflags.=" -DOPENSSL_IA32_SSE2";    }
1204             }
1205         }
1206 if ($md5_obj =~ /\.o$/)
1207         {
1208 #       $md5_obj=$md5_enc;
1209         $cflags.=" -DMD5_ASM";
1210         }
1211 if ($rmd160_obj =~ /\.o$/)
1212         {
1213 #       $rmd160_obj=$rmd160_enc;
1214         $cflags.=" -DRMD160_ASM";
1215         }
1216 if ($aes_obj =~ /\.o$/)
1217         {
1218         $cflags.=" -DAES_ASM";
1219         }
1220 else    {
1221         $aes_obj=$aes_enc;
1222         }
1223
1224 # "Stringify" the C flags string.  This permits it to be made part of a string
1225 # and works as well on command lines.
1226 $cflags =~ s/([\\\"])/\\\1/g;
1227
1228 my $version = "unknown";
1229 my $version_num = "unknown";
1230 my $major = "unknown";
1231 my $minor = "unknown";
1232 my $shlib_version_number = "unknown";
1233 my $shlib_version_history = "unknown";
1234 my $shlib_major = "unknown";
1235 my $shlib_minor = "unknown";
1236
1237 open(IN,'<crypto/opensslv.h') || die "unable to read opensslv.h:$!\n";
1238 while (<IN>)
1239         {
1240         $version=$1 if /OPENSSL.VERSION.TEXT.*OpenSSL (\S+) /;
1241         $version_num=$1 if /OPENSSL.VERSION.NUMBER.*0x(\S+)/;
1242         $shlib_version_number=$1 if /SHLIB_VERSION_NUMBER *"([^"]+)"/;
1243         $shlib_version_history=$1 if /SHLIB_VERSION_HISTORY *"([^"]*)"/;
1244         }
1245 close(IN);
1246 if ($shlib_version_history ne "") { $shlib_version_history .= ":"; }
1247
1248 if ($version =~ /(^[0-9]*)\.([0-9\.]*)/)
1249         {
1250         $major=$1;
1251         $minor=$2;
1252         }
1253
1254 if ($shlib_version_number =~ /(^[0-9]*)\.([0-9\.]*)/)
1255         {
1256         $shlib_major=$1;
1257         $shlib_minor=$2;
1258         }
1259
1260 open(IN,'<Makefile.org') || die "unable to read Makefile.org:$!\n";
1261 unlink("$Makefile.new") || die "unable to remove old $Makefile.new:$!\n" if -e "$Makefile.new";
1262 open(OUT,">$Makefile.new") || die "unable to create $Makefile.new:$!\n";
1263 print OUT "### Generated automatically from Makefile.org by Configure.\n\n";
1264 my $sdirs=0;
1265 while (<IN>)
1266         {
1267         chop;
1268         $sdirs = 1 if /^SDIRS=/;
1269         if ($sdirs) {
1270                 my $dir;
1271                 foreach $dir (@skip) {
1272                         s/([    ])$dir /\1/;
1273                         }
1274                 }
1275         $sdirs = 0 unless /\\$/;
1276         s/^VERSION=.*/VERSION=$version/;
1277         s/^MAJOR=.*/MAJOR=$major/;
1278         s/^MINOR=.*/MINOR=$minor/;
1279         s/^SHLIB_VERSION_NUMBER=.*/SHLIB_VERSION_NUMBER=$shlib_version_number/;
1280         s/^SHLIB_VERSION_HISTORY=.*/SHLIB_VERSION_HISTORY=$shlib_version_history/;
1281         s/^SHLIB_MAJOR=.*/SHLIB_MAJOR=$shlib_major/;
1282         s/^SHLIB_MINOR=.*/SHLIB_MINOR=$shlib_minor/;
1283         s/^SHLIB_EXT=.*/SHLIB_EXT=$shared_extension/;
1284         s/^INSTALLTOP=.*$/INSTALLTOP=$prefix/;
1285         s/^OPENSSLDIR=.*$/OPENSSLDIR=$openssldir/;
1286         s/^INSTALL_PREFIX=.*$/INSTALL_PREFIX=$install_prefix/;
1287         s/^PLATFORM=.*$/PLATFORM=$target/;
1288         s/^OPTIONS=.*$/OPTIONS=$options/;
1289         s/^CONFIGURE_ARGS=.*$/CONFIGURE_ARGS=$argvstring/;
1290         s/^CC=.*$/CC= $cc/;
1291         s/^MAKEDEPPROG=.*$/MAKEDEPPROG= $cc/ if $cc eq "gcc";
1292         s/^CFLAG=.*$/CFLAG= $cflags/;
1293         s/^DEPFLAG=.*$/DEPFLAG= $depflags/;
1294         s/^EX_LIBS=.*$/EX_LIBS= $lflags/;
1295         s/^EXE_EXT=.*$/EXE_EXT= $exe_ext/;
1296         s/^CPUID_OBJ=.*$/CPUID_OBJ= $cpuid_obj/;
1297         s/^BN_ASM=.*$/BN_ASM= $bn_obj/;
1298         s/^DES_ENC=.*$/DES_ENC= $des_obj/;
1299         s/^AES_ASM_OBJ=.*$/AES_ASM_OBJ= $aes_obj/;
1300         s/^BF_ENC=.*$/BF_ENC= $bf_obj/;
1301         s/^CAST_ENC=.*$/CAST_ENC= $cast_obj/;
1302         s/^RC4_ENC=.*$/RC4_ENC= $rc4_obj/;
1303         s/^RC5_ENC=.*$/RC5_ENC= $rc5_obj/;
1304         s/^MD5_ASM_OBJ=.*$/MD5_ASM_OBJ= $md5_obj/;
1305         s/^SHA1_ASM_OBJ=.*$/SHA1_ASM_OBJ= $sha1_obj/;
1306         s/^RMD160_ASM_OBJ=.*$/RMD160_ASM_OBJ= $rmd160_obj/;
1307         s/^PROCESSOR=.*/PROCESSOR= $processor/;
1308         s/^RANLIB=.*/RANLIB= $ranlib/;
1309         s/^ARFLAGS=.*/ARFLAGS= $arflags/;
1310         s/^PERL=.*/PERL= $perl/;
1311         s/^KRB5_INCLUDES=.*/KRB5_INCLUDES=$withargs{"krb5-include"}/;
1312         s/^LIBKRB5=.*/LIBKRB5=$withargs{"krb5-lib"}/;
1313         s/^SHLIB_TARGET=.*/SHLIB_TARGET=$shared_target/;
1314         s/^SHLIB_MARK=.*/SHLIB_MARK=$shared_mark/;
1315         s/^SHARED_LIBS=.*/SHARED_LIBS=\$(SHARED_CRYPTO) \$(SHARED_SSL)/ if (!$no_shared);
1316         if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
1317                 {
1318                 my $sotmp = $1;
1319                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/;
1320                 }
1321         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.dylib$/)
1322                 {
1323                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.dylib/;
1324                 }
1325         elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
1326                 {
1327                 my $sotmp = $1;
1328                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
1329                 }
1330         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.[^\.]*\.dylib$/)
1331                 {
1332                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.\$(SHLIB_MAJOR).dylib .dylib/;
1333                 }
1334         s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
1335         print OUT $_."\n";
1336         }
1337 close(IN);
1338 close(OUT);
1339 rename($Makefile,"$Makefile.bak") || die "unable to rename $Makefile\n" if -e $Makefile;
1340 rename("$Makefile.new",$Makefile) || die "unable to rename $Makefile.new\n";
1341
1342 print "CC            =$cc\n";
1343 print "CFLAG         =$cflags\n";
1344 print "EX_LIBS       =$lflags\n";
1345 print "CPUID_OBJ     =$cpuid_obj\n";
1346 print "BN_ASM        =$bn_obj\n";
1347 print "DES_ENC       =$des_obj\n";
1348 print "AES_ASM_OBJ   =$aes_obj\n";
1349 print "BF_ENC        =$bf_obj\n";
1350 print "CAST_ENC      =$cast_obj\n";
1351 print "RC4_ENC       =$rc4_obj\n";
1352 print "RC5_ENC       =$rc5_obj\n";
1353 print "MD5_OBJ_ASM   =$md5_obj\n";
1354 print "SHA1_OBJ_ASM  =$sha1_obj\n";
1355 print "RMD160_OBJ_ASM=$rmd160_obj\n";
1356 print "PROCESSOR     =$processor\n";
1357 print "RANLIB        =$ranlib\n";
1358 print "ARFLAGS       =$arflags\n";
1359 print "PERL          =$perl\n";
1360 print "KRB5_INCLUDES =",$withargs{"krb5-include"},"\n"
1361         if $withargs{"krb5-include"} ne "";
1362
1363 my $des_ptr=0;
1364 my $des_risc1=0;
1365 my $des_risc2=0;
1366 my $des_unroll=0;
1367 my $bn_ll=0;
1368 my $def_int=2;
1369 my $rc4_int=$def_int;
1370 my $md2_int=$def_int;
1371 my $idea_int=$def_int;
1372 my $rc2_int=$def_int;
1373 my $rc4_idx=0;
1374 my $rc4_chunk=0;
1375 my $bf_ptr=0;
1376 my @type=("char","short","int","long");
1377 my ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0);
1378 my $export_var_as_fn=0;
1379
1380 my $des_int;
1381
1382 foreach (sort split(/\s+/,$bn_ops))
1383         {
1384         $des_ptr=1 if /DES_PTR/;
1385         $des_risc1=1 if /DES_RISC1/;
1386         $des_risc2=1 if /DES_RISC2/;
1387         $des_unroll=1 if /DES_UNROLL/;
1388         $des_int=1 if /DES_INT/;
1389         $bn_ll=1 if /BN_LLONG/;
1390         $rc4_int=0 if /RC4_CHAR/;
1391         $rc4_int=3 if /RC4_LONG/;
1392         $rc4_idx=1 if /RC4_INDEX/;
1393         $rc4_chunk=1 if /RC4_CHUNK/;
1394         $rc4_chunk=2 if /RC4_CHUNK_LL/;
1395         $md2_int=0 if /MD2_CHAR/;
1396         $md2_int=3 if /MD2_LONG/;
1397         $idea_int=1 if /IDEA_SHORT/;
1398         $idea_int=3 if /IDEA_LONG/;
1399         $rc2_int=1 if /RC2_SHORT/;
1400         $rc2_int=3 if /RC2_LONG/;
1401         $bf_ptr=1 if $_ eq "BF_PTR";
1402         $bf_ptr=2 if $_ eq "BF_PTR2";
1403         ($b64l,$b64,$b32,$b16,$b8)=(0,1,0,0,0) if /SIXTY_FOUR_BIT/;
1404         ($b64l,$b64,$b32,$b16,$b8)=(1,0,0,0,0) if /SIXTY_FOUR_BIT_LONG/;
1405         ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0) if /THIRTY_TWO_BIT/;
1406         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,1,0) if /SIXTEEN_BIT/;
1407         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,0,1) if /EIGHT_BIT/;
1408         $export_var_as_fn=1 if /EXPORT_VAR_AS_FN/;
1409         }
1410
1411 open(IN,'<crypto/opensslconf.h.in') || die "unable to read crypto/opensslconf.h.in:$!\n";
1412 unlink("crypto/opensslconf.h.new") || die "unable to remove old crypto/opensslconf.h.new:$!\n" if -e "crypto/opensslconf.h.new";
1413 open(OUT,'>crypto/opensslconf.h.new') || die "unable to create crypto/opensslconf.h.new:$!\n";
1414 print OUT "/* opensslconf.h */\n";
1415 print OUT "/* WARNING: Generated automatically from opensslconf.h.in by Configure. */\n\n";
1416
1417 print OUT "/* OpenSSL was configured with the following options: */\n";
1418 my $openssl_algorithm_defines_trans = $openssl_algorithm_defines;
1419 $openssl_algorithm_defines_trans =~ s/^\s*#\s*define\s+OPENSSL_(.*)/# if defined(OPENSSL_$1) \&\& !defined($1)\n#  define $1\n# endif/mg;
1420 $openssl_algorithm_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1421 $openssl_algorithm_defines = "   /* no ciphers excluded */\n" if $openssl_algorithm_defines eq "";
1422 $openssl_thread_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1423 $openssl_sys_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1424 $openssl_other_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1425 print OUT $openssl_sys_defines;
1426 print OUT "#ifndef OPENSSL_DOING_MAKEDEPEND\n\n";
1427 print OUT $openssl_algorithm_defines;
1428 print OUT "\n#endif /* OPENSSL_DOING_MAKEDEPEND */\n";
1429 print OUT $openssl_thread_defines;
1430 print OUT $openssl_other_defines,"\n";
1431
1432 print OUT "/* The OPENSSL_NO_* macros are also defined as NO_* if the application\n";
1433 print OUT "   asks for it.  This is a transient feature that is provided for those\n";
1434 print OUT "   who haven't had the time to do the appropriate changes in their\n";
1435 print OUT "   applications.  */\n";
1436 print OUT "#ifdef OPENSSL_ALGORITHM_DEFINES\n";
1437 print OUT $openssl_algorithm_defines_trans;
1438 print OUT "#endif\n\n";
1439
1440 print OUT "#define OPENSSL_CPUID_OBJ\n\n" if ($cpuid_obj);
1441
1442 while (<IN>)
1443         {
1444         if      (/^#define\s+OPENSSLDIR/)
1445                 { print OUT "#define OPENSSLDIR \"$openssldir\"\n"; }
1446         elsif   (/^#define\s+ENGINESDIR/)
1447                 { print OUT "#define ENGINESDIR \"$prefix/lib/engines\"\n"; }
1448         elsif   (/^#((define)|(undef))\s+OPENSSL_EXPORT_VAR_AS_FUNCTION/)
1449                 { printf OUT "#undef OPENSSL_EXPORT_VAR_AS_FUNCTION\n"
1450                         if $export_var_as_fn;
1451                   printf OUT "#%s OPENSSL_EXPORT_VAR_AS_FUNCTION\n",
1452                         ($export_var_as_fn)?"define":"undef"; }
1453         elsif   (/^#define\s+OPENSSL_UNISTD/)
1454                 {
1455                 $unistd = "<unistd.h>" if $unistd eq "";
1456                 print OUT "#define OPENSSL_UNISTD $unistd\n";
1457                 }
1458         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT_LONG/)
1459                 { printf OUT "#%s SIXTY_FOUR_BIT_LONG\n",($b64l)?"define":"undef"; }
1460         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT/)
1461                 { printf OUT "#%s SIXTY_FOUR_BIT\n",($b64)?"define":"undef"; }
1462         elsif   (/^#((define)|(undef))\s+THIRTY_TWO_BIT/)
1463                 { printf OUT "#%s THIRTY_TWO_BIT\n",($b32)?"define":"undef"; }
1464         elsif   (/^#((define)|(undef))\s+SIXTEEN_BIT/)
1465                 { printf OUT "#%s SIXTEEN_BIT\n",($b16)?"define":"undef"; }
1466         elsif   (/^#((define)|(undef))\s+EIGHT_BIT/)
1467                 { printf OUT "#%s EIGHT_BIT\n",($b8)?"define":"undef"; }
1468         elsif   (/^#((define)|(undef))\s+BN_LLONG\s*$/)
1469                 { printf OUT "#%s BN_LLONG\n",($bn_ll)?"define":"undef"; }
1470         elsif   (/^\#define\s+DES_LONG\s+.*/)
1471                 { printf OUT "#define DES_LONG unsigned %s\n",
1472                         ($des_int)?'int':'long'; }
1473         elsif   (/^\#(define|undef)\s+DES_PTR/)
1474                 { printf OUT "#%s DES_PTR\n",($des_ptr)?'define':'undef'; }
1475         elsif   (/^\#(define|undef)\s+DES_RISC1/)
1476                 { printf OUT "#%s DES_RISC1\n",($des_risc1)?'define':'undef'; }
1477         elsif   (/^\#(define|undef)\s+DES_RISC2/)
1478                 { printf OUT "#%s DES_RISC2\n",($des_risc2)?'define':'undef'; }
1479         elsif   (/^\#(define|undef)\s+DES_UNROLL/)
1480                 { printf OUT "#%s DES_UNROLL\n",($des_unroll)?'define':'undef'; }
1481         elsif   (/^#define\s+RC4_INT\s/)
1482                 { printf OUT "#define RC4_INT unsigned %s\n",$type[$rc4_int]; }
1483         elsif   (/^#undef\s+RC4_CHUNK/)
1484                 {
1485                 printf OUT "#undef RC4_CHUNK\n" if $rc4_chunk==0;
1486                 printf OUT "#define RC4_CHUNK unsigned long\n" if $rc4_chunk==1;
1487                 printf OUT "#define RC4_CHUNK unsigned long long\n" if $rc4_chunk==2;
1488                 }
1489         elsif   (/^#((define)|(undef))\s+RC4_INDEX/)
1490                 { printf OUT "#%s RC4_INDEX\n",($rc4_idx)?"define":"undef"; }
1491         elsif (/^#(define|undef)\s+I386_ONLY/)
1492                 { printf OUT "#%s I386_ONLY\n", ($processor eq "386")?
1493                         "define":"undef"; }
1494         elsif   (/^#define\s+MD2_INT\s/)
1495                 { printf OUT "#define MD2_INT unsigned %s\n",$type[$md2_int]; }
1496         elsif   (/^#define\s+IDEA_INT\s/)
1497                 {printf OUT "#define IDEA_INT unsigned %s\n",$type[$idea_int];}
1498         elsif   (/^#define\s+RC2_INT\s/)
1499                 {printf OUT "#define RC2_INT unsigned %s\n",$type[$rc2_int];}
1500         elsif (/^#(define|undef)\s+BF_PTR/)
1501                 {
1502                 printf OUT "#undef BF_PTR\n" if $bf_ptr == 0;
1503                 printf OUT "#define BF_PTR\n" if $bf_ptr == 1;
1504                 printf OUT "#define BF_PTR2\n" if $bf_ptr == 2;
1505                 }
1506         else
1507                 { print OUT $_; }
1508         }
1509 close(IN);
1510 close(OUT);
1511 rename("crypto/opensslconf.h","crypto/opensslconf.h.bak") || die "unable to rename crypto/opensslconf.h\n" if -e "crypto/opensslconf.h";
1512 rename("crypto/opensslconf.h.new","crypto/opensslconf.h") || die "unable to rename crypto/opensslconf.h.new\n";
1513
1514
1515 # Fix the date
1516
1517 print "SIXTY_FOUR_BIT_LONG mode\n" if $b64l;
1518 print "SIXTY_FOUR_BIT mode\n" if $b64;
1519 print "THIRTY_TWO_BIT mode\n" if $b32;
1520 print "SIXTEEN_BIT mode\n" if $b16;
1521 print "EIGHT_BIT mode\n" if $b8;
1522 print "DES_PTR used\n" if $des_ptr;
1523 print "DES_RISC1 used\n" if $des_risc1;
1524 print "DES_RISC2 used\n" if $des_risc2;
1525 print "DES_UNROLL used\n" if $des_unroll;
1526 print "DES_INT used\n" if $des_int;
1527 print "BN_LLONG mode\n" if $bn_ll;
1528 print "RC4 uses u$type[$rc4_int]\n" if $rc4_int != $def_int;
1529 print "RC4_INDEX mode\n" if $rc4_idx;
1530 print "RC4_CHUNK is undefined\n" if $rc4_chunk==0;
1531 print "RC4_CHUNK is unsigned long\n" if $rc4_chunk==1;
1532 print "RC4_CHUNK is unsigned long long\n" if $rc4_chunk==2;
1533 print "MD2 uses u$type[$md2_int]\n" if $md2_int != $def_int;
1534 print "IDEA uses u$type[$idea_int]\n" if $idea_int != $def_int;
1535 print "RC2 uses u$type[$rc2_int]\n" if $rc2_int != $def_int;
1536 print "BF_PTR used\n" if $bf_ptr == 1; 
1537 print "BF_PTR2 used\n" if $bf_ptr == 2; 
1538
1539 if($IsMK1MF) {
1540         open (OUT,">crypto/buildinf.h") || die "Can't open buildinf.h";
1541         printf OUT <<EOF;
1542 #ifndef MK1MF_BUILD
1543   /* auto-generated by Configure for crypto/cversion.c:
1544    * for Unix builds, crypto/Makefile.ssl generates functional definitions;
1545    * Windows builds (and other mk1mf builds) compile cversion.c with
1546    * -DMK1MF_BUILD and use definitions added to this file by util/mk1mf.pl. */
1547   #error "Windows builds (PLATFORM=$target) use mk1mf.pl-created Makefiles"
1548 #endif
1549 EOF
1550         close(OUT);
1551 } else {
1552         my $make_command = "make PERL=\'$perl\'";
1553         my $make_targets = "";
1554         $make_targets .= " links" if $symlink;
1555         $make_targets .= " depend" if $depflags ne $default_depflags && $make_depend;
1556         $make_targets .= " gentests" if $symlink;
1557         (system $make_command.$make_targets) == 0 or exit $?
1558                 if $make_targets ne "";
1559         if ( $perl =~ m@^/@) {
1560             &dofile("tools/c_rehash",$perl,'^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";');
1561             &dofile("apps/CA.pl",$perl,'^#!/', '#!%s');
1562         } else {
1563             # No path for Perl known ...
1564             &dofile("tools/c_rehash",'/usr/local/bin/perl','^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";');
1565             &dofile("apps/CA.pl",'/usr/local/bin/perl','^#!/', '#!%s');
1566         }
1567         if ($depflags ne $default_depflags && !$make_depend) {
1568                 print <<EOF;
1569
1570 Since you've disabled or enabled at least one algorithm, you need to do
1571 the following before building:
1572
1573         make depend
1574 EOF
1575         }
1576 }
1577
1578 # create the ms/version32.rc file if needed
1579 if ($IsMK1MF) {
1580         my ($v1, $v2, $v3, $v4);
1581         if ($version_num =~ /(^[0-9a-f]{1})([0-9a-f]{2})([0-9a-f]{2})([0-9a-f]{2})/i) {
1582                 $v1=hex $1;
1583                 $v2=hex $2;
1584                 $v3=hex $3;
1585                 $v4=hex $4;
1586         }
1587         open (OUT,">ms/version32.rc") || die "Can't open ms/version32.rc";
1588         print OUT <<EOF;
1589 #include <winver.h>
1590
1591 LANGUAGE 0x09,0x01
1592
1593 1 VERSIONINFO
1594   FILEVERSION $v1,$v2,$v3,$v4
1595   PRODUCTVERSION $v1,$v2,$v3,$v4
1596   FILEFLAGSMASK 0x3fL
1597 #ifdef _DEBUG
1598   FILEFLAGS 0x01L
1599 #else
1600   FILEFLAGS 0x00L
1601 #endif
1602   FILEOS VOS__WINDOWS32
1603   FILETYPE VFT_DLL
1604   FILESUBTYPE 0x0L
1605 BEGIN
1606     BLOCK "StringFileInfo"
1607     BEGIN
1608         BLOCK "040904b0"
1609         BEGIN
1610             // Required:            
1611             VALUE "CompanyName", "The OpenSSL Project, http://www.openssl.org/\\0"
1612             VALUE "FileDescription", "OpenSSL Shared Library\\0"
1613             VALUE "FileVersion", "$version\\0"
1614 #if defined(CRYPTO)
1615             VALUE "InternalName", "libeay32\\0"
1616             VALUE "OriginalFilename", "libeay32.dll\\0"
1617 #elif defined(SSL)
1618             VALUE "InternalName", "ssleay32\\0"
1619             VALUE "OriginalFilename", "ssleay32.dll\\0"
1620 #endif
1621             VALUE "ProductName", "The OpenSSL Toolkit\\0"
1622             VALUE "ProductVersion", "$version\\0"
1623             // Optional:
1624             //VALUE "Comments", "\\0"
1625             VALUE "LegalCopyright", "Copyright © 1998-2005 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved.\\0"
1626             //VALUE "LegalTrademarks", "\\0"
1627             //VALUE "PrivateBuild", "\\0"
1628             //VALUE "SpecialBuild", "\\0"
1629         END
1630     END
1631     BLOCK "VarFileInfo"
1632     BEGIN
1633         VALUE "Translation", 0x409, 0x4b0
1634     END
1635 END
1636 EOF
1637         close(OUT);
1638   }
1639   
1640 print <<EOF;
1641
1642 Configured for $target.
1643 EOF
1644
1645 print <<\EOF if (!$no_threads && !$threads);
1646
1647 The library could not be configured for supporting multi-threaded
1648 applications as the compiler options required on this system are not known.
1649 See file INSTALL for details if you need multi-threading.
1650 EOF
1651
1652 print <<\EOF if ($no_shared_warn);
1653
1654 You gave the option 'shared'.  Normally, that would give you shared libraries.
1655 Unfortunately, the OpenSSL configuration doesn't include shared library support
1656 for this platform yet, so it will pretend you gave the option 'no-shared'.  If
1657 you can inform the developpers (openssl-dev\@openssl.org) how to support shared
1658 libraries on this platform, they will at least look at it and try their best
1659 (but please first make sure you have tried with a current version of OpenSSL).
1660 EOF
1661
1662 exit(0);
1663
1664 sub usage
1665         {
1666         print STDERR $usage;
1667         print STDERR "\npick os/compiler from:\n";
1668         my $j=0;
1669         my $i;
1670         my $k=0;
1671         foreach $i (sort keys %table)
1672                 {
1673                 next if $i =~ /^debug/;
1674                 $k += length($i) + 1;
1675                 if ($k > 78)
1676                         {
1677                         print STDERR "\n";
1678                         $k=length($i);
1679                         }
1680                 print STDERR $i . " ";
1681                 }
1682         foreach $i (sort keys %table)
1683                 {
1684                 next if $i !~ /^debug/;
1685                 $k += length($i) + 1;
1686                 if ($k > 78)
1687                         {
1688                         print STDERR "\n";
1689                         $k=length($i);
1690                         }
1691                 print STDERR $i . " ";
1692                 }
1693         print STDERR "\n\nNOTE: If in doubt, on Unix-ish systems use './config'.\n";
1694         exit(1);
1695         }
1696
1697 sub which
1698         {
1699         my($name)=@_;
1700         my $path;
1701         foreach $path (split /:/, $ENV{PATH})
1702                 {
1703                 if (-f "$path/$name$exe_ext" and -x _)
1704                         {
1705                         return "$path/$name$exe_ext" unless ($name eq "perl" and
1706                          system("$path/$name$exe_ext -e " . '\'exit($]<5.0);\''));
1707                         }
1708                 }
1709         }
1710
1711 sub dofile
1712         {
1713         my $f; my $p; my %m; my @a; my $k; my $ff;
1714         ($f,$p,%m)=@_;
1715
1716         open(IN,"<$f.in") || open(IN,"<$f") || die "unable to open $f:$!\n";
1717         @a=<IN>;
1718         close(IN);
1719         foreach $k (keys %m)
1720                 {
1721                 grep(/$k/ && ($_=sprintf($m{$k}."\n",$p)),@a);
1722                 }
1723         open(OUT,">$f.new") || die "unable to open $f.new:$!\n";
1724         print OUT @a;
1725         close(OUT);
1726         rename($f,"$f.bak") || die "unable to rename $f\n" if -e $f;
1727         rename("$f.new",$f) || die "unable to rename $f.new\n";
1728         }
1729
1730 sub print_table_entry
1731         {
1732         my $target = shift;
1733
1734         (my $cc,my $cflags,my $unistd,my $thread_cflag,my $sys_id,my $lflags,
1735         my $bn_ops,my $cpuid_obj,my $bn_obj,my $des_obj,my $aes_obj, my $bf_obj,
1736         my $md5_obj,my $sha1_obj,my $cast_obj,my $rc4_obj,my $rmd160_obj,
1737         my $rc5_obj,my $dso_scheme,my $shared_target,my $shared_cflag,
1738         my $shared_ldflag,my $shared_extension,my $ranlib,my $arflags)=
1739         split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
1740                         
1741         print <<EOF
1742
1743 *** $target
1744 \$cc           = $cc
1745 \$cflags       = $cflags
1746 \$unistd       = $unistd
1747 \$thread_cflag = $thread_cflag
1748 \$sys_id       = $sys_id
1749 \$lflags       = $lflags
1750 \$bn_ops       = $bn_ops
1751 \$cpuid_obj    = $cpuid_obj
1752 \$bn_obj       = $bn_obj
1753 \$des_obj      = $des_obj
1754 \$aes_obj      = $aes_obj
1755 \$bf_obj       = $bf_obj
1756 \$md5_obj      = $md5_obj
1757 \$sha1_obj     = $sha1_obj
1758 \$cast_obj     = $cast_obj
1759 \$rc4_obj      = $rc4_obj
1760 \$rmd160_obj   = $rmd160_obj
1761 \$rc5_obj      = $rc5_obj
1762 \$dso_scheme   = $dso_scheme
1763 \$shared_target= $shared_target
1764 \$shared_cflag = $shared_cflag
1765 \$shared_ldflag = $shared_ldflag
1766 \$shared_extension = $shared_extension
1767 \$ranlib       = $ranlib
1768 \$arflags      = $arflags
1769 EOF
1770         }
1771
1772 sub test_sanity
1773         {
1774         my $errorcnt = 0;
1775
1776         print STDERR "=" x 70, "\n";
1777         print STDERR "=== SANITY TESTING!\n";
1778         print STDERR "=== No configuration will be done, all other arguments will be ignored!\n";
1779         print STDERR "=" x 70, "\n";
1780
1781         foreach $target (sort keys %table)
1782                 {
1783                 @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
1784
1785                 if ($fields[$idx_dso_scheme-1] =~ /^(dl|dlfcn|win32|vms)$/)
1786                         {
1787                         $errorcnt++;
1788                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
1789                         print STDERR "              in the previous field\n";
1790                         }
1791                 elsif ($fields[$idx_dso_scheme+1] =~ /^(dl|dlfcn|win32|vms)$/)
1792                         {
1793                         $errorcnt++;
1794                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
1795                         print STDERR "              in the following field\n";
1796                         }
1797                 elsif ($fields[$idx_dso_scheme] !~ /^(dl|dlfcn|win32|vms|)$/)
1798                         {
1799                         $errorcnt++;
1800                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] field = ",$fields[$idx_dso_scheme],"\n";
1801                         print STDERR "              valid values are 'dl', 'dlfcn', 'win32' and 'vms'\n";
1802                         }
1803                 }
1804         print STDERR "No sanity errors detected!\n" if $errorcnt == 0;
1805         return $errorcnt;
1806         }