Wire DES weak_keys to read-only segment [from HEAD].
[openssl.git] / Configure
1 :
2 eval 'exec perl -S $0 ${1+"$@"}'
3     if $running_under_some_shell;
4 ##
5 ##  Configure -- OpenSSL source tree configuration script
6 ##
7
8 require 5.000;
9 use strict;
10
11 # see INSTALL for instructions.
12
13 my $usage="Usage: Configure [no-<cipher> ...] [enable-<cipher> ...] [-Dxxx] [-lxxx] [-Lxxx] [-fxxx] [-Kxxx] [no-hw-xxx|no-hw] [[no-]threads] [[no-]shared] [[no-]zlib|zlib-dynamic] [no-asm] [no-dso] [no-krb5] [386] [--prefix=DIR] [--openssldir=OPENSSLDIR] [--with-xxx[=vvv]] [--test-sanity] os/compiler[:flags]\n";
14
15 # Options:
16 #
17 # --openssldir  install OpenSSL in OPENSSLDIR (Default: DIR/ssl if the
18 #               --prefix option is given; /usr/local/ssl otherwise)
19 # --prefix      prefix for the OpenSSL include, lib and bin directories
20 #               (Default: the OPENSSLDIR directory)
21 #
22 # --install_prefix  Additional prefix for package builders (empty by
23 #               default).  This needn't be set in advance, you can
24 #               just as well use "make INSTALL_PREFIX=/whatever install".
25 #
26 # --with-krb5-dir  Declare where Kerberos 5 lives.  The libraries are expected
27 #               to live in the subdirectory lib/ and the header files in
28 #               include/.  A value is required.
29 # --with-krb5-lib  Declare where the Kerberos 5 libraries live.  A value is
30 #               required.
31 #               (Default: KRB5_DIR/lib)
32 # --with-krb5-include  Declare where the Kerberos 5 header files live.  A
33 #               value is required.
34 #               (Default: KRB5_DIR/include)
35 # --with-krb5-flavor  Declare what flavor of Kerberos 5 is used.  Currently
36 #               supported values are "MIT" and "Heimdal".  A value is required.
37 #
38 # --test-sanity Make a number of sanity checks on the data in this file.
39 #               This is a debugging tool for OpenSSL developers.
40 #
41 # no-hw-xxx     do not compile support for specific crypto hardware.
42 #               Generic OpenSSL-style methods relating to this support
43 #               are always compiled but return NULL if the hardware
44 #               support isn't compiled.
45 # no-hw         do not compile support for any crypto hardware.
46 # [no-]threads  [don't] try to create a library that is suitable for
47 #               multithreaded applications (default is "threads" if we
48 #               know how to do it)
49 # [no-]shared   [don't] try to create shared libraries when supported.
50 # no-asm        do not use assembler
51 # no-dso        do not compile in any native shared-library methods. This
52 #               will ensure that all methods just return NULL.
53 # no-krb5       do not compile in any KRB5 library or code.
54 # [no-]zlib     [don't] compile support for zlib compression.
55 # zlib-dynamic  Like "zlib", but the zlib library is expected to be a shared
56 #               library and will be loaded in run-time by the OpenSSL library.
57 # 386           generate 80386 code
58 # no-sse2       disables IA-32 SSE2 code, above option implies no-sse2
59 # no-<cipher>   build without specified algorithm (rsa, idea, rc5, ...)
60 # -<xxx> +<xxx> compiler options are passed through 
61 #
62 # DEBUG_SAFESTACK use type-safe stacks to enforce type-safety on stack items
63 #               provided to stack calls. Generates unique stack functions for
64 #               each possible stack type.
65 # DES_PTR       use pointer lookup vs arrays in the DES in crypto/des/des_locl.h
66 # DES_RISC1     use different DES_ENCRYPT macro that helps reduce register
67 #               dependancies but needs to more registers, good for RISC CPU's
68 # DES_RISC2     A different RISC variant.
69 # DES_UNROLL    unroll the inner DES loop, sometimes helps, somtimes hinders.
70 # DES_INT       use 'int' instead of 'long' for DES_LONG in crypto/des/des.h
71 #               This is used on the DEC Alpha where long is 8 bytes
72 #               and int is 4
73 # BN_LLONG      use the type 'long long' in crypto/bn/bn.h
74 # MD2_CHAR      use 'char' instead of 'int' for MD2_INT in crypto/md2/md2.h
75 # MD2_LONG      use 'long' instead of 'int' for MD2_INT in crypto/md2/md2.h
76 # IDEA_SHORT    use 'short' instead of 'int' for IDEA_INT in crypto/idea/idea.h
77 # IDEA_LONG     use 'long' instead of 'int' for IDEA_INT in crypto/idea/idea.h
78 # RC2_SHORT     use 'short' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
79 # RC2_LONG      use 'long' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
80 # RC4_CHAR      use 'char' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
81 # RC4_LONG      use 'long' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
82 # RC4_INDEX     define RC4_INDEX in crypto/rc4/rc4_locl.h.  This turns on
83 #               array lookups instead of pointer use.
84 # RC4_CHUNK     enables code that handles data aligned at long (natural CPU
85 #               word) boundary.
86 # RC4_CHUNK_LL  enables code that handles data aligned at long long boundary
87 #               (intended for 64-bit CPUs running 32-bit OS).
88 # BF_PTR        use 'pointer arithmatic' for Blowfish (unsafe on Alpha).
89 # BF_PTR2       intel specific version (generic version is more efficient).
90 #
91 # Following are set automatically by this script
92 #
93 # MD5_ASM       use some extra md5 assember,
94 # SHA1_ASM      use some extra sha1 assember, must define L_ENDIAN for x86
95 # RMD160_ASM    use some extra ripemd160 assember,
96 # SHA256_ASM    sha256_block is implemented in assembler
97 # SHA512_ASM    sha512_block is implemented in assembler
98 # AES_ASM       ASE_[en|de]crypt is implemented in assembler
99
100 my $x86_gcc_des="DES_PTR DES_RISC1 DES_UNROLL";
101
102 # MD2_CHAR slags pentium pros
103 my $x86_gcc_opts="RC4_INDEX MD2_INT";
104
105 # MODIFY THESE PARAMETERS IF YOU ARE GOING TO USE THE 'util/speed.sh SCRIPT
106 # Don't worry about these normally
107
108 my $tcc="cc";
109 my $tflags="-fast -Xa";
110 my $tbn_mul="";
111 my $tlib="-lnsl -lsocket";
112 #$bits1="SIXTEEN_BIT ";
113 #$bits2="THIRTY_TWO_BIT ";
114 my $bits1="THIRTY_TWO_BIT ";
115 my $bits2="SIXTY_FOUR_BIT ";
116
117 my $x86_elf_asm="x86cpuid-elf.o:bn86-elf.o co86-elf.o:dx86-elf.o yx86-elf.o:ax86-elf.o:bx86-elf.o:mx86-elf.o:sx86-elf.o s512sse2-elf.o:cx86-elf.o:rx86-elf.o:rm86-elf.o:r586-elf.o";
118 my $x86_coff_asm="x86cpuid-cof.o:bn86-cof.o co86-cof.o:dx86-cof.o yx86-cof.o:ax86-cof.o:bx86-cof.o:mx86-cof.o:sx86-cof.o s512sse2-cof.o:cx86-cof.o:rx86-cof.o:rm86-cof.o:r586-cof.o";
119 my $x86_out_asm="x86cpuid-out.o:bn86-out.o co86-out.o:dx86-out.o yx86-out.o:ax86-out.o:bx86-out.o:mx86-out.o:sx86-out.o s512sse2-out.o:cx86-out.o:rx86-out.o:rm86-out.o:r586-out.o";
120
121 my $x86_64_asm="x86_64cpuid.o:x86_64-gcc.o::::md5-x86_64.o:::rc4-x86_64.o::";
122 my $ia64_asm=":bn-ia64.o::aes_core.o aes_cbc.o aes-ia64.o:::sha1-ia64.o sha256-ia64.o sha512-ia64.o::rc4-ia64.o::";
123
124 my $no_asm="::::::::::";
125
126 # As for $BSDthreads. Idea is to maintain "collective" set of flags,
127 # which would cover all BSD flavors. -pthread applies to them all, 
128 # but is treated differently. OpenBSD expands is as -D_POSIX_THREAD
129 # -lc_r, which is sufficient. FreeBSD 4.x expands it as -lc_r,
130 # which has to be accompanied by explicit -D_THREAD_SAFE and
131 # sometimes -D_REENTRANT. FreeBSD 5.x expands it as -lc_r, which
132 # seems to be sufficient?
133 my $BSDthreads="-pthread -D_THREAD_SAFE -D_REENTRANT";
134
135 #config-string  $cc : $cflags : $unistd : $thread_cflag : $sys_id : $lflags : $bn_ops : $cpuid_obj : $bn_obj : $des_obj : $aes_obj : $bf_obj : $md5_obj : $sha1_obj : $cast_obj : $rc4_obj : $rmd160_obj : $rc5_obj : $dso_scheme : $shared_target : $shared_cflag : $shared_ldflag : $shared_extension : $ranlib : $arflags
136
137 my %table=(
138 # File 'TABLE' (created by 'make TABLE') contains the data from this list,
139 # formatted for better readability.
140
141
142 #"b",           "${tcc}:${tflags}::${tlib}:${bits1}:${tbn_mul}::",
143 #"bl-4c-2c",    "${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR MD2_CHAR:${tbn_mul}::",
144 #"bl-4c-ri",    "${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR RC4_INDEX:${tbn_mul}::",
145 #"b2-is-ri-dp", "${tcc}:${tflags}::${tlib}:${bits2}IDEA_SHORT RC4_INDEX DES_PTR:${tbn_mul}::",
146
147 # Our development configs
148 "purify",       "purify gcc:-g -DPURIFY -Wall::(unknown)::-lsocket -lnsl::::",
149 "debug",        "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -ggdb -g2 -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror::(unknown)::-lefence::::",
150 "debug-ben",    "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown):::::bn86-elf.o co86-elf.o",
151 "debug-ben-openbsd","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
152 "debug-ben-openbsd-debug","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -g3 -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
153 "debug-ben-debug",      "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -g3 -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::::",
154 "debug-ben-strict",     "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DCONST_STRICT -O2 -Wall -Wshadow -Werror -Wpointer-arith -Wcast-qual -Wwrite-strings -pipe::(unknown)::::::",
155 "debug-rse","cc:-DTERMIOS -DL_ENDIAN -pipe -O -g -ggdb3 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
156 "debug-bodo",   "gcc:-DL_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBIO_PAIR_DEBUG -DPEDANTIC -g -march=i486 -pedantic -Wshadow -Wall::-D_REENTRANT:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
157 "debug-ulf", "gcc:-DTERMIOS -DL_ENDIAN -march=i486 -Wall -DBN_DEBUG -DBN_DEBUG_RAND -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -g -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations:::CYGWIN32:::${no_asm}:win32:cygwin-shared:::.dll",
158 "debug-steve",  "gcc:-DL_ENDIAN -DREF_CHECK -DCONF_DEBUG -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG_ALL -DPEDANTIC -m32 -g -pedantic -Wno-long-long -Wall -Werror -Wshadow -pipe::-D_REENTRANT::-rdynamic -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared",
159 "debug-steve-linux-pseudo64",   "gcc:-DL_ENDIAN -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG_ALL -DOPENSSL_NO_ASM -g -mcpu=i486 -Wall -Werror -Wshadow -pipe::-D_REENTRANT::-rdynamic -ldl:SIXTY_FOUR_BIT:${no_asm}:dlfcn:linux-shared",
160 "debug-levitte-linux-elf","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
161 "debug-levitte-linux-noasm","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
162 "debug-levitte-linux-elf-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
163 "debug-levitte-linux-noasm-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
164 "debug-geoff","gcc:-DBN_DEBUG -DBN_DEBUG_RAND -DBN_STRICT -DPURIFY -DOPENSSL_NO_DEPRECATED -DOPENSSL_NO_ASM -DOPENSSL_NO_INLINE_ASM -DL_ENDIAN -DTERMIO -DPEDANTIC -O1 -ggdb2 -Wall -Werror -Wundef -pedantic -Wshadow -Wpointer-arith -Wbad-function-cast -Wcast-align -Wsign-compare -Wmissing-prototypes -Wmissing-declarations -Wno-long-long::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
165 "debug-linux-pentium","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -mcpu=pentium -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
166 "debug-linux-ppro","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -mcpu=pentiumpro -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
167 "debug-linux-elf","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -march=i486 -Wall::-D_REENTRANT::-lefence -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
168 "debug-linux-elf-noefence","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
169 "dist",         "cc:-O::(unknown)::::::",
170
171 # Basic configs that should work on any (32 and less bit) box
172 "gcc",          "gcc:-O3::(unknown):::BN_LLONG:::",
173 "cc",           "cc:-O::(unknown)::::::",
174
175 ####VOS Configurations
176 "vos-gcc","gcc:-O3 -Wall -D_POSIX_C_SOURCE=200112L -D_BSD -DB_ENDIAN::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
177 "debug-vos-gcc","gcc:-O0 -g -Wall -D_POSIX_C_SOURCE=200112L -D_BSD -DB_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
178
179 #### Solaris x86 with GNU C setups
180 # -DOPENSSL_NO_INLINE_ASM switches off inline assembler. We have to do it
181 # here because whenever GNU C instantiates an assembler template it
182 # surrounds it with #APP #NO_APP comment pair which (at least Solaris
183 # 7_x86) /usr/ccs/bin/as fails to assemble with "Illegal mnemonic"
184 # error message.
185 "solaris-x86-gcc","gcc:-O3 -fomit-frame-pointer -march=pentium -Wall -DL_ENDIAN -DOPENSSL_NO_INLINE_ASM::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
186 # -shared -static-libgcc might appear controversial, but modules taken
187 # from static libgcc do not have relocations and linking them into our
188 # shared objects doesn't have any negative side-effects. On the contrary,
189 # doing so makes it possible to use gcc shared build with Sun C. Given
190 # that gcc generates faster code [thanks to inline assembler], I would
191 # actually recommend to consider using gcc shared build even with vendor
192 # compiler:-)
193 #                                               <appro@fy.chalmers.se>
194 "solaris64-x86_64-gcc","gcc:-m64 -O3 -Wall -DL_ENDIAN -DMD32_REG_T=int::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK BF_PTR2 DES_INT DES_UNROLL:${x86_64_asm}:dlfcn:solaris-shared:-fPIC:-m64 -shared -static-libgcc:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
195  
196 #### Solaris x86 with Sun C setups
197 "solaris-x86-cc","cc:-fast -O -Xa::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
198 "solaris64-x86_64-cc","cc:-fast -xarch=amd64 -xstrconst -Xa -DL_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK BF_PTR2 DES_INT DES_UNROLL:${x86_64_asm}:dlfcn:solaris-shared:-KPIC:-xarch=amd64 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
199
200 #### SPARC Solaris with GNU C setups
201 "solaris-sparcv7-gcc","gcc:-O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
202 "solaris-sparcv8-gcc","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8.o:des_enc-sparc.o fcrypt_b.o:::::::::dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
203 # -m32 should be safe to add as long as driver recognizes -mcpu=ultrasparc
204 "solaris-sparcv9-gcc","gcc:-m32 -mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8plus.o:des_enc-sparc.o fcrypt_b.o:::md5-sparcv8plus.o::::::dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
205 "solaris64-sparcv9-gcc","gcc:-m64 -mcpu=ultrasparc -O3 -Wall -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:::des_enc-sparc.o fcrypt_b.o:::md5-sparcv9.o::::::dlfcn:solaris-shared:-fPIC:-m64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
206 ####
207 "debug-solaris-sparcv8-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG_ALL -O -g -mv8 -Wall -DB_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8.o::::::::::dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
208 "debug-solaris-sparcv9-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG_ALL -DPEDANTIC -O -g -mcpu=ultrasparc -pedantic -ansi -Wall -Wshadow -Wno-long-long -D__EXTENSIONS__ -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8plus.o:des_enc-sparc.o fcrypt_b.o:::md5-sparcv8plus.o::::::dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
209
210 #### SPARC Solaris with Sun C setups
211 # SC4.0 doesn't pass 'make test', upgrade to SC5.0 or SC4.2.
212 # SC4.2 is ok, better than gcc even on bn as long as you tell it -xarch=v8
213 # SC5.0 note: Compiler common patch 107357-01 or later is required!
214 "solaris-sparcv7-cc","cc:-xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
215 "solaris-sparcv8-cc","cc:-xarch=v8 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::sparcv8.o:des_enc-sparc.o fcrypt_b.o:::::::::dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
216 "solaris-sparcv9-cc","cc:-xtarget=ultra -xarch=v8plus -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR::sparcv8plus.o:des_enc-sparc.o fcrypt_b.o:::md5-sparcv8plus.o::::::dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
217 "solaris64-sparcv9-cc","cc:-xtarget=ultra -xarch=v9 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:::des_enc-sparc.o fcrypt_b.o:::md5-sparcv9.o::::::dlfcn:solaris-shared:-KPIC:-xarch=v9 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):/usr/ccs/bin/ar rs",
218 ####
219 "debug-solaris-sparcv8-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG_ALL -xarch=v8 -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::sparcv8.o::::::::::dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
220 "debug-solaris-sparcv9-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG_ALL -xtarget=ultra -xarch=v8plus -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR::sparcv8plus.o::::md5-sparcv8plus.o::::::dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", 
221
222 #### SunOS configs, assuming sparc for the gcc one.
223 #"sunos-cc", "cc:-O4 -DNOPROTO -DNOCONST::(unknown):SUNOS::DES_UNROLL:${no_asm}::",
224 "sunos-gcc","gcc:-O3 -mv8 -Dssize_t=int::(unknown):SUNOS::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL DES_PTR DES_RISC1:${no_asm}::",
225
226 #### IRIX 5.x configs
227 # -mips2 flag is added by ./config when appropriate.
228 "irix-gcc","gcc:-O3 -DTERMIOS -DB_ENDIAN::(unknown):::BN_LLONG MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK DES_UNROLL DES_RISC2 DES_PTR BF_PTR:${no_asm}:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
229 "irix-cc", "cc:-O2 -use_readonly_const -DTERMIOS -DB_ENDIAN::(unknown):::BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${no_asm}:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
230 #### IRIX 6.x configs
231 # Only N32 and N64 ABIs are supported. If you need O32 ABI build, invoke
232 # './Configure irix-cc -o32' manually.
233 "irix-mips3-gcc","gcc:-mabi=n32 -O3 -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK_LL DES_UNROLL DES_RISC2 DES_PTR BF_PTR SIXTY_FOUR_BIT::bn-mips3.o::::::::::dlfcn:irix-shared::-mabi=n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
234 "irix-mips3-cc", "cc:-n32 -mips3 -O2 -use_readonly_const -G0 -rdata_shared -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::DES_PTR RC4_CHAR RC4_CHUNK_LL DES_RISC2 DES_UNROLL BF_PTR SIXTY_FOUR_BIT::bn-mips3.o::::::::::dlfcn:irix-shared::-n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
235 # N64 ABI builds.
236 "irix64-mips4-gcc","gcc:-mabi=64 -mips4 -O3 -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG::bn-mips3.o::::::::::dlfcn:irix-shared::-mabi=64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
237 "irix64-mips4-cc", "cc:-64 -mips4 -O2 -use_readonly_const -G0 -rdata_shared -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG::bn-mips3.o::::::::::dlfcn:irix-shared::-64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
238
239 #### Unified HP-UX ANSI C configs.
240 # Special notes:
241 # - Originally we were optimizing at +O4 level. It should be noted
242 #   that the only difference between +O3 and +O4 is global inter-
243 #   procedural analysis. As it has to be performed during the link
244 #   stage the compiler leaves behind certain pseudo-code in lib*.a
245 #   which might be release or even patch level specific. Generating
246 #   the machine code for and analyzing the *whole* program appears
247 #   to be *extremely* memory demanding while the performance gain is
248 #   actually questionable. The situation is intensified by the default
249 #   HP-UX data set size limit (infamous 'maxdsiz' tunable) of 64MB
250 #   which is way too low for +O4. In other words, doesn't +O3 make
251 #   more sense?
252 # - Keep in mind that the HP compiler by default generates code
253 #   suitable for execution on the host you're currently compiling at.
254 #   If the toolkit is ment to be used on various PA-RISC processors
255 #   consider './config +DAportable'.
256 # - +DD64 is chosen in favour of +DA2.0W because it's meant to be
257 #   compatible with *future* releases.
258 # - If you run ./Configure hpux-parisc-[g]cc manually don't forget to
259 #   pass -D_REENTRANT on HP-UX 10 and later.
260 # - -DMD32_XARRAY triggers workaround for compiler bug we ran into in
261 #   32-bit message digests. (For the moment of this writing) HP C
262 #   doesn't seem to "digest" too many local variables (they make "him"
263 #   chew forever:-). For more details look-up MD32_XARRAY comment in
264 #   crypto/sha/sha_lcl.h.
265 #                                       <appro@fy.chalmers.se>
266 #
267 # Since there is mention of this in shlib/hpux10-cc.sh
268 "hpux-parisc-cc-o4","cc:-Ae +O4 +ESlit -z -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
269 "hpux-parisc-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-Wl,+s -ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
270 "hpux-parisc2-gcc","gcc:-march=2.0 -O3 -DB_ENDIAN -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL DES_RISC1::pa-risc2.o::::::::::dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
271 "hpux64-parisc2-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2W.o::::::::::dlfcn:hpux-shared:-fpic:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
272
273 # More attempts at unified 10.X and 11.X targets for HP C compiler.
274 #
275 # Chris Ruemmler <ruemmler@cup.hp.com>
276 # Kevin Steves <ks@hp.se>
277 "hpux-parisc-cc","cc:+O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
278 "hpux-parisc1_0-cc","cc:+DAportable +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
279 "hpux-parisc2-cc","cc:+DA2.0 +DS2.0 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2.o::::::::::dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
280 "hpux64-parisc2-cc","cc:+DD64 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2W.o::::::::::dlfcn:hpux-shared:+Z:+DD64 -b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
281
282 # HP/UX IA-64 targets
283 "hpux-ia64-cc","cc:-Ae +DD32 +O2 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD32 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
284 # Frank Geurts <frank.geurts@nl.abnamro.com> has patiently assisted with
285 # with debugging of the following config.
286 "hpux64-ia64-cc","cc:-Ae +DD64 +O3 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD64 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
287 # GCC builds...
288 "hpux-ia64-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
289 "hpux64-ia64-gcc","gcc:-mlp64 -O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-mlp64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", 
290
291 # Legacy HPUX 9.X configs...
292 "hpux-cc",      "cc:-DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY -Ae +ESlit +O2 -z::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
293 "hpux-gcc",     "gcc:-DB_ENDIAN -DBN_DIV2W -O3::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
294
295 #### HP MPE/iX http://jazz.external.hp.com/src/openssl/
296 "MPE/iX-gcc",   "gcc:-D_ENDIAN -DBN_DIV2W -O3 -D_POSIX_SOURCE -D_SOCKET_SOURCE -I/SYSLOG/PUB::(unknown):MPE:-L/SYSLOG/PUB -lsyslog -lsocket -lcurses:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:::",
297
298 # DEC Alpha OSF/1/Tru64 targets.
299 #
300 #       "What's in a name? That which we call a rose
301 #        By any other word would smell as sweet."
302 #
303 # - William Shakespeare, "Romeo & Juliet", Act II, scene II.
304 #
305 # For gcc, the following gave a %50 speedup on a 164 over the 'DES_INT' version
306 #
307 "osf1-alpha-gcc", "gcc:-O3::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_RISC1:${no_asm}:dlfcn:alpha-osf1-shared:::.so",
308 "osf1-alpha-cc",  "cc:-std1 -tune host -O4 -readonly_strings::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${no_asm}:dlfcn:alpha-osf1-shared:::.so",
309 "tru64-alpha-cc", "cc:-std1 -tune host -fast -readonly_strings::-pthread:::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${no_asm}:dlfcn:alpha-osf1-shared::-msym:.so",
310
311 ####
312 #### Variety of LINUX:-)
313 ####
314 # *-generic* is endian-neutral target, but ./config is free to
315 # throw in -D[BL]_ENDIAN, whichever appropriate...
316 "linux-generic32","gcc:-DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
317 "linux-ppc",    "gcc:-DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL::linux_ppc32.o::::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
318 #### IA-32 targets...
319 "linux-ia32-icc",       "icc:-DL_ENDIAN -DTERMIO -O2 -no_cpprt::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-KPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
320 "linux-elf",    "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
321 "linux-aout",   "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -march=i486 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}",
322 ####
323 "linux-generic64","gcc:-DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
324 "linux-ppc64",  "gcc:-m64 -DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL::linux_ppc64.o::::::::::dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
325 "linux-ia64",   "gcc:-DL_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
326 "linux-ia64-ecc","ecc:-DL_ENDIAN -DTERMIO -O2 -Wall -no_cpprt::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
327 "linux-ia64-icc","icc:-DL_ENDIAN -DTERMIO -O2 -Wall -no_cpprt::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
328 "linux-x86_64", "gcc:-m64 -DL_ENDIAN -DTERMIO -O3 -Wall -DMD32_REG_T=int::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK BF_PTR2 DES_INT DES_UNROLL:${x86_64_asm}:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
329 #### SPARC Linux setups
330 # Ray Miller <ray.miller@computing-services.oxford.ac.uk> has patiently
331 # assisted with debugging of following two configs.
332 "linux-sparcv8","gcc:-mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8.o:des_enc-sparc.o fcrypt_b.o:::::::::dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
333 # it's a real mess with -mcpu=ultrasparc option under Linux, but
334 # -Wa,-Av8plus should do the trick no matter what.
335 "linux-sparcv9","gcc:-m32 -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::sparcv8plus.o:des_enc-sparc.o fcrypt_b.o:::md5-sparcv8plus.o::::::dlfcn:linux-shared:-fPIC:-m32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
336 # GCC 3.1 is a requirement
337 "linux64-sparcv9","gcc:-m64 -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:ULTRASPARC:-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::::::md5-sparcv9.o::::::dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
338 #### Alpha Linux with GNU C and Compaq C setups
339 # Special notes:
340 # - linux-alpha+bwx-gcc is ment to be used from ./config only. If you
341 #   ought to run './Configure linux-alpha+bwx-gcc' manually, do
342 #   complement the command line with -mcpu=ev56, -mcpu=ev6 or whatever
343 #   which is appropriate.
344 # - If you use ccc keep in mind that -fast implies -arch host and the
345 #   compiler is free to issue instructions which gonna make elder CPU
346 #   choke. If you wish to build "blended" toolkit, add -arch generic
347 #   *after* -fast and invoke './Configure linux-alpha-ccc' manually.
348 #
349 #                                       <appro@fy.chalmers.se>
350 #
351 "linux-alpha-gcc","gcc:-O3 -DL_ENDIAN -DTERMIO::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_RISC1 DES_UNROLL:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
352 "linux-alpha+bwx-gcc","gcc:-O3 -DL_ENDIAN -DTERMIO::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
353 "linux-alpha-ccc","ccc:-fast -readonly_strings -DL_ENDIAN -DTERMIO::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${no_asm}",
354 "linux-alpha+bwx-ccc","ccc:-fast -readonly_strings -DL_ENDIAN -DTERMIO::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${no_asm}",
355
356 #### *BSD [do see comment about ${BSDthreads} above!]
357 "BSD-generic32","gcc:-DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
358 "BSD-x86",      "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
359 "BSD-x86-elf",  "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
360 "debug-BSD-x86-elf",    "gcc:-DL_ENDIAN -DTERMIOS -O3 -Wall -g::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
361 "BSD-sparcv8",  "gcc:-DB_ENDIAN -DTERMIOS -O3 -mv8 -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL::sparcv8.o:des_enc-sparc.o fcrypt_b.o:::::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
362
363 "BSD-generic64","gcc:-DTERMIOS -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
364 # -DMD32_REG_T=int doesn't actually belong in sparc64 target, it
365 # simply *happens* to work around a compiler bug in gcc 3.3.3,
366 # triggered by RIPEMD160 code.
367 "BSD-sparc64",  "gcc:-DB_ENDIAN -DTERMIOS -O3 -DMD32_REG_T=int -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC2_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC2 BF_PTR:::des_enc-sparc.o fcrypt_b.o:::md5-sparcv9.o::::::dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
368 "BSD-ia64",     "gcc:-DL_ENDIAN -DTERMIOS -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${ia64_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
369 "BSD-x86_64",   "gcc:-DL_ENDIAN -DTERMIOS -O3 -DMD32_REG_T=int -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
370
371 "bsdi-elf-gcc",     "gcc:-DPERL5 -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall::(unknown)::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
372
373 "nextstep",     "cc:-O -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
374 "nextstep3.3",  "cc:-O3 -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
375
376 # NCR MP-RAS UNIX ver 02.03.01
377 "ncr-scde","cc:-O6 -Xa -Hoff=BEHAVED -686 -Hwide -Hiw::(unknown)::-lsocket -lnsl -lc89:${x86_gcc_des} ${x86_gcc_opts}:::",
378
379 # QNX
380 "qnx4", "cc:-DL_ENDIAN -DTERMIO::(unknown):::${x86_gcc_des} ${x86_gcc_opts}:",
381 "qnx6", "cc:-DL_ENDIAN -DTERMIOS::(unknown)::-lsocket:${x86_gcc_des} ${x86_gcc_opts}:",
382
383 #### SCO/Caldera targets.
384 #
385 # Originally we had like unixware-*, unixware-*-pentium, unixware-*-p6, etc.
386 # Now we only have blended unixware-* as it's the only one used by ./config.
387 # If you want to optimize for particular microarchitecture, bypass ./config
388 # and './Configure unixware-7 -Kpentium_pro' or whatever appropriate.
389 # Note that not all targets include assembler support. Mostly because of
390 # lack of motivation to support out-of-date platforms with out-of-date
391 # compiler drivers and assemblers. Tim Rice <tim@multitalents.net> has
392 # patiently assisted to debug most of it.
393 #
394 # UnixWare 2.0x fails destest with -O.
395 "unixware-2.0","cc:-DFILIO_H -DNO_STRINGS_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
396 "unixware-2.1","cc:-O -DFILIO_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
397 "unixware-7","cc:-O -DFILIO_H -Kalloca::-Kthread::-lsocket -lnsl:BN_LLONG MD2_CHAR RC4_INDEX ${x86_gcc_des}:${x86_elf_asm}:dlfcn:svr5-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
398 "unixware-7-gcc","gcc:-DL_ENDIAN -DFILIO_H -O3 -fomit-frame-pointer -march=pentium -Wall::-D_REENTRANT::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:gnu-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
399 # SCO 5 - Ben Laurie <ben@algroup.co.uk> says the -O breaks the SCO cc.
400 "sco5-cc",  "cc:-belf::(unknown)::-lsocket -lnsl:${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
401 "sco5-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
402
403 #### IBM's AIX.
404 "aix3-cc",  "cc:-O -DB_ENDIAN -qmaxmem=16384::(unknown):AIX::BN_LLONG RC4_CHAR:::",
405 "aix-gcc",  "gcc:-O -DB_ENDIAN::-D_THREAD_SAFE:AIX::BN_LLONG RC4_CHAR::aix_ppc32.o::::::::::dlfcn:aix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 32",
406 "aix64-gcc","gcc:-maix64 -O -DB_ENDIAN::-D_THREAD_SAFE:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR::aix_ppc64.o::::::::::dlfcn:aix-shared::-maix64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X64",
407 # Below targets assume AIX 5. Idea is to effectively disregard $OBJECT_MODE
408 # at build time. $OBJECT_MODE is respected at ./config stage!
409 "aix-cc",   "cc:-q32 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded:AIX::BN_LLONG RC4_CHAR::aix_ppc32.o::::::::::dlfcn:aix-shared::-q32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 32",
410 "aix64-cc", "cc:-q64 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR::aix_ppc64.o::::::::::dlfcn:aix-shared::-q64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 64",
411
412 #
413 # Cray T90 and similar (SDSC)
414 # It's Big-endian, but the algorithms work properly when B_ENDIAN is NOT
415 # defined.  The T90 ints and longs are 8 bytes long, and apparently the
416 # B_ENDIAN code assumes 4 byte ints.  Fortunately, the non-B_ENDIAN and
417 # non L_ENDIAN code aligns the bytes in each word correctly.
418 #
419 # The BIT_FIELD_LIMITS define is to avoid two fatal compiler errors:
420 #'Taking the address of a bit field is not allowed. '
421 #'An expression with bit field exists as the operand of "sizeof" '
422 # (written by Wayne Schroeder <schroede@SDSC.EDU>)
423 #
424 # j90 is considered the base machine type for unicos machines,
425 # so this configuration is now called "cray-j90" ...
426 "cray-j90", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG DES_INT:::",
427
428 #
429 # Cray T3E (Research Center Juelich, beckman@acl.lanl.gov)
430 #
431 # The BIT_FIELD_LIMITS define was written for the C90 (it seems).  I added
432 # another use.  Basically, the problem is that the T3E uses some bit fields
433 # for some st_addr stuff, and then sizeof and address-of fails
434 # I could not use the ams/alpha.o option because the Cray assembler, 'cam'
435 # did not like it.
436 "cray-t3e", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT:::",
437
438 # DGUX, 88100.
439 "dgux-R3-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown):::RC4_INDEX DES_UNROLL:::",
440 "dgux-R4-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lnsl -lsocket:RC4_INDEX DES_UNROLL:::",
441 "dgux-R4-x86-gcc",      "gcc:-O3 -fomit-frame-pointer -DL_ENDIAN::(unknown)::-lnsl -lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
442
443 # Sinix/ReliantUNIX RM400
444 # NOTE: The CDS++ Compiler up to V2.0Bsomething has the IRIX_CC_BUG optimizer problem. Better use -g  */
445 "ReliantUNIX","cc:-KPIC -g -DTERMIOS -DB_ENDIAN::-Kthread:SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:BN_LLONG DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${no_asm}:dlfcn:reliantunix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
446 "SINIX","cc:-O::(unknown):SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:RC4_INDEX RC4_CHAR:::",
447 "SINIX-N","/usr/ucb/cc:-O2 -misaligned::(unknown)::-lucb:RC4_INDEX RC4_CHAR:::",
448
449 # SIEMENS BS2000/OSD: an EBCDIC-based mainframe
450 "BS2000-OSD","c89:-O -XLLML -XLLMK -XL -DB_ENDIAN -DTERMIOS -DCHARSET_EBCDIC::(unknown)::-lsocket -lnsl:THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
451
452 # OS/390 Unix an EBCDIC-based Unix system on IBM mainframe
453 # You need to compile using the c89.sh wrapper in the tools directory, because the
454 # IBM compiler does not like the -L switch after any object modules.
455 #
456 "OS390-Unix","c89.sh:-O -DB_ENDIAN -DCHARSET_EBCDIC -DNO_SYS_PARAM_H  -D_ALL_SOURCE::(unknown):::THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
457
458 # Win64 targets, WIN64I denotes IA-64 and WIN64A - AMD64
459 "VC-WIN64I","cl::::WIN64I::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:${no_asm}:win32",
460 "VC-WIN64A","cl::::WIN64A::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:${no_asm}:win32",
461
462 # Visual C targets
463 "VC-NT","cl::::WINNT::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
464 "VC-CE","cl::::WINCE::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
465 "VC-WIN32","cl::::WIN32::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
466
467 # Borland C++ 4.5
468 "BC-32","bcc32::::WIN32::BN_LLONG DES_PTR RC4_INDEX EXPORT_VAR_AS_FN:${no_asm}:win32",
469
470 # MinGW
471 "mingw", "gcc:-mno-cygwin -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall -D_WIN32_WINNT=0x333:::MINGW32:-lwsock32 -lgdi32:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts} EXPORT_VAR_AS_FN:${x86_coff_asm}:win32:cygwin-shared:-D_WINDLL -DOPENSSL_USE_APPLINK:-mno-cygwin -shared:.dll.a",
472
473 # UWIN 
474 "UWIN", "cc:-DTERMIOS -DL_ENDIAN -O -Wall:::UWIN::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
475
476 # Cygwin
477 "Cygwin-pre1.3", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall::(unknown):CYGWIN32::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
478 "Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall:::CYGWIN32::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_coff_asm}:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
479 "debug-Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -march=i486 -Wall -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -g -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror:::CYGWIN32:::${no_asm}:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
480
481 # NetWare from David Ward (dsward@novell.com) - requires MetroWerks NLM development tools
482 # netware-clib => legacy CLib c-runtime support
483 "netware-clib", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
484 # netware-libc => LibC/NKS support
485 # NetWare defaults socket bio to WinSock sockets. However, the LibC build can be
486 # configured to use BSD sockets instead.
487 "netware-libc", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
488 "netware-libc-bsdsock", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
489 "netware-libc-gcc", "i586-netware-gcc:-nostdinc -I/ndk/libc/include -I/ndk/libc/include/winsock -DL_ENDIAN -DNETWARE_LIBC -DOPENSSL_SYSNAME_NETWARE -DTERMIO -O2 -Wall:::::BN_LLONG ${x86_gcc_opts}::",
490
491 # DJGPP
492 "DJGPP", "gcc:-I/dev/env/WATT_ROOT/inc -DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -Wall:::MSDOS:-L/dev/env/WATT_ROOT/lib -lwatt:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}:",
493
494 # Ultrix from Bernhard Simon <simon@zid.tuwien.ac.at>
495 "ultrix-cc","cc:-std1 -O -Olimit 2500 -DL_ENDIAN::(unknown):::::::",
496 "ultrix-gcc","gcc:-O3 -DL_ENDIAN::(unknown):::BN_LLONG::::",
497 # K&R C is no longer supported; you need gcc on old Ultrix installations
498 ##"ultrix","cc:-O2 -DNOPROTO -DNOCONST -DL_ENDIAN::(unknown):::::::",
499
500 ##### MacOS X (a.k.a. Rhapsody or Darwin) setup
501 "rhapsody-ppc-cc","cc:-O3 -DB_ENDIAN::(unknown):MACOSX_RHAPSODY::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}::",
502 "darwin-ppc-cc","cc:-arch ppc -O3 -DB_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::osx_ppc32.o::::::::::dlfcn:darwin-shared:-fPIC -fno-common:-arch ppc -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
503 "darwin64-ppc-cc","cc:-arch ppc64 -O3 -DB_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:ppccpuid_osx64.o:osx_ppc64.o osx_ppc64-mont.o:::::sha1-ppc_osx64.o sha256-ppc_osx64.o sha512-ppc_osx64.o:::::::dlfcn:darwin-shared:-fPIC -fno-common:-arch ppc64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
504 "darwin-i386-cc","cc:-arch i386 -O3 -fomit-frame-pointer -fno-common::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:darwin-shared:-fPIC -fno-common:-arch i386 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
505 "darwin64-x86_64-cc","cc:-arch x86_64 -O3 -fomit-frame-pointer -DL_ENDIAN -DMD32_REG_T=int -Wall::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK BF_PTR2 DES_INT DES_UNROLL:${no_asm}:dlfcn:darwin-shared:-fPIC -fno-common:-arch x86_64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
506 "debug-darwin-ppc-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DB_ENDIAN -g -Wall -O::-D_REENTRANT:MACOSX::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR::osx_ppc32.o::::::::::dlfcn:darwin-shared:-fPIC -fno-common:-dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
507
508 ##### A/UX
509 "aux3-gcc","gcc:-O2 -DTERMIO::(unknown):AUX:-lbsd:RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
510
511 ##### Sony NEWS-OS 4.x
512 "newsos4-gcc","gcc:-O -DB_ENDIAN::(unknown):NEWS4:-lmld -liberty:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::",
513
514 ##### GNU Hurd
515 "hurd-x86",  "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC",
516
517 ##### OS/2 EMX
518 "OS2-EMX", "gcc::::::::",
519
520 ##### VxWorks for various targets
521 "vxworks-ppc405","ccppc:-g -msoft-float -mlongcall -DCPU=PPC405 -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
522 "vxworks-ppc750","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h \$(DEBUG_FLAG):::VXWORKS:-r:::::",
523 "vxworks-ppc750-debug","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DDEBUG -g:::VXWORKS:-r:::::",
524 "vxworks-ppc860","ccppc:-nostdinc -msoft-float -DCPU=PPC860 -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
525 "vxworks-mipsle","ccmips:-B\$(WIND_BASE)/host/\$(WIND_HOST_TYPE)/lib/gcc-lib/ -DL_ENDIAN -EL -Wl,-EL -mips2 -mno-branch-likely -G 0 -fno-builtin -msoft-float -DCPU=MIPS32 -DMIPSEL -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r::${no_asm}::::::ranlibmips:",
526
527 ##### Compaq Non-Stop Kernel (Tandem)
528 "tandem-c89","c89:-Ww -D__TANDEM -D_XOPEN_SOURCE -D_XOPEN_SOURCE_EXTENDED=1 -D_TANDEM_SOURCE -DB_ENDIAN::(unknown):::THIRTY_TWO_BIT:::",
529
530 );
531
532 my @MK1MF_Builds=qw(VC-WIN64I VC-WIN64A
533                     VC-NT VC-CE VC-WIN32
534                     BC-32 OS2-EMX netware-clib netware-libc netware-libc-bsdsock);
535
536 my $idx = 0;
537 my $idx_cc = $idx++;
538 my $idx_cflags = $idx++;
539 my $idx_unistd = $idx++;
540 my $idx_thread_cflag = $idx++;
541 my $idx_sys_id = $idx++;
542 my $idx_lflags = $idx++;
543 my $idx_bn_ops = $idx++;
544 my $idx_cpuid_obj = $idx++;
545 my $idx_bn_obj = $idx++;
546 my $idx_des_obj = $idx++;
547 my $idx_aes_obj = $idx++;
548 my $idx_bf_obj = $idx++;
549 my $idx_md5_obj = $idx++;
550 my $idx_sha1_obj = $idx++;
551 my $idx_cast_obj = $idx++;
552 my $idx_rc4_obj = $idx++;
553 my $idx_rmd160_obj = $idx++;
554 my $idx_rc5_obj = $idx++;
555 my $idx_dso_scheme = $idx++;
556 my $idx_shared_target = $idx++;
557 my $idx_shared_cflag = $idx++;
558 my $idx_shared_ldflag = $idx++;
559 my $idx_shared_extension = $idx++;
560 my $idx_ranlib = $idx++;
561 my $idx_arflags = $idx++;
562
563 my $prefix="";
564 my $openssldir="";
565 my $exe_ext="";
566 my $install_prefix="";
567 my $no_threads=0;
568 my $threads=0;
569 my $no_shared=0; # but "no-shared" is default
570 my $zlib=1;      # but "no-zlib" is default
571 my $no_krb5=0;   # but "no-krb5" is implied unless "--with-krb5-..." is used
572 my $no_rfc3779=1; # but "no-rfc3779" is default
573 my $no_asm=0;
574 my $no_dso=0;
575 my $no_gmp=0;
576 my @skip=();
577 my $Makefile="Makefile";
578 my $des_locl="crypto/des/des_locl.h";
579 my $des ="crypto/des/des.h";
580 my $bn  ="crypto/bn/bn.h";
581 my $md2 ="crypto/md2/md2.h";
582 my $rc4 ="crypto/rc4/rc4.h";
583 my $rc4_locl="crypto/rc4/rc4_locl.h";
584 my $idea        ="crypto/idea/idea.h";
585 my $rc2 ="crypto/rc2/rc2.h";
586 my $bf  ="crypto/bf/bf_locl.h";
587 my $bn_asm      ="bn_asm.o";
588 my $des_enc="des_enc.o fcrypt_b.o";
589 my $aes_enc="aes_core.o aes_cbc.o";
590 my $bf_enc      ="bf_enc.o";
591 my $cast_enc="c_enc.o";
592 my $rc4_enc="rc4_enc.o";
593 my $rc5_enc="rc5_enc.o";
594 my $md5_obj="";
595 my $sha1_obj="";
596 my $rmd160_obj="";
597 my $processor="";
598 my $default_ranlib;
599 my $perl;
600
601
602 # All of the following is disabled by default (RC5 was enabled before 0.9.8):
603
604 my %disabled = ( # "what"         => "comment"
605                  "camellia"       => "default",
606                  "gmp"            => "default",
607                  "mdc2"           => "default",
608                  "rc5"            => "default",
609                  "rfc3779"        => "default",
610                  "seed"           => "default",
611                  "shared"         => "default",
612                  "tlsext"         => "default",
613                  "zlib"           => "default",
614                  "zlib-dynamic"   => "default"
615                );
616
617 # Additional "no-..." options will be collected in %disabled.
618 # To remove something from %disabled, use e.g. "enable-rc5".
619 # For symmetry, "disable-..." is a synonym for "no-...".
620
621 # This is what $depflags will look like with the above default:
622 my $default_depflags = "-DOPENSSL_NO_CAMELLIA -DOPENSSL_NO_GMP -DOPENSSL_NO_MDC2 -DOPENSSL_NO_RC5 -DOPENSSL_NO_RFC3779 -DOPENSSL_NO_SEED -DOPENSSL_NO_TLSEXT ";
623
624
625 my $no_sse2=0;
626
627 &usage if ($#ARGV < 0);
628
629 my $flags;
630 my $depflags;
631 my $openssl_algorithm_defines;
632 my $openssl_thread_defines;
633 my $openssl_sys_defines="";
634 my $openssl_other_defines;
635 my $libs;
636 my $libkrb5="";
637 my $target;
638 my $options;
639 my $symlink;
640 my $make_depend=0;
641 my %withargs=();
642
643 my @argvcopy=@ARGV;
644 my $argvstring="";
645 my $argv_unprocessed=1;
646
647 while($argv_unprocessed)
648         {
649         $flags="";
650         $depflags="";
651         $openssl_algorithm_defines="";
652         $openssl_thread_defines="";
653         $openssl_sys_defines="";
654         $openssl_other_defines="";
655         $libs="";
656         $target="";
657         $options="";
658         $symlink=1;
659
660         $argv_unprocessed=0;
661         $argvstring=join(' ',@argvcopy);
662
663 PROCESS_ARGS:
664         foreach (@argvcopy)
665                 {
666                 s /^-no-/no-/; # some people just can't read the instructions
667
668                 # rewrite some options in "enable-..." form
669                 s /^-?-?shared$/enable-shared/;
670                 s /^threads$/enable-threads/;
671                 s /^zlib$/enable-zlib/;
672                 s /^zlib-dynamic$/enable-zlib-dynamic/;
673
674                 if (/^no-(.+)$/ || /^disable-(.+)$/)
675                         {
676                         if ($1 eq "ssl")
677                                 {
678                                 $disabled{"ssl2"} = "option(ssl)";
679                                 $disabled{"ssl3"} = "option(ssl)";
680                                 }
681                         elsif ($1 eq "tls")
682                                 {
683                                 $disabled{"tls1"} = "option(tls)"
684                                 }
685                         else
686                                 {
687                                 $disabled{$1} = "option";
688                                 }
689                         }                       
690                 elsif (/^enable-(.+)$/)
691                         {
692                         delete $disabled{$1};
693
694                         $threads = 1 if ($1 eq "threads");
695                         }
696                 elsif (/^--test-sanity$/)
697                         {
698                         exit(&test_sanity());
699                         }
700                 elsif (/^reconfigure/ || /^reconf/)
701                         {
702                         if (open(IN,"<$Makefile"))
703                                 {
704                                 while (<IN>)
705                                         {
706                                         chomp;
707                                         if (/^CONFIGURE_ARGS=(.*)/)
708                                                 {
709                                                 $argvstring=$1;
710                                                 @argvcopy=split(' ',$argvstring);
711                                                 die "Incorrect data to reconfigure, please do a normal configuration\n"
712                                                         if (grep(/^reconf/,@argvcopy));
713                                                 print "Reconfiguring with: $argvstring\n";
714                                                 $argv_unprocessed=1;
715                                                 close(IN);
716                                                 last PROCESS_ARGS;
717                                                 }
718                                         }
719                                 close(IN);
720                                 }
721                         die "Insufficient data to reconfigure, please do a normal configuration\n";
722                         }
723                 elsif (/^386$/)
724                         { $processor=386; }
725                 elsif (/^rsaref$/)
726                         {
727                         # No RSAref support any more since it's not needed.
728                         # The check for the option is there so scripts aren't
729                         # broken
730                         }
731                 elsif (/^[-+]/)
732                         {
733                         if (/^-[lL](.*)$/)
734                                 {
735                                 $libs.=$_." ";
736                                 }
737                         elsif (/^-[^-]/ or /^\+/)
738                                 {
739                                 $flags.=$_." ";
740                                 }
741                         elsif (/^--prefix=(.*)$/)
742                                 {
743                                 $prefix=$1;
744                                 }
745                         elsif (/^--openssldir=(.*)$/)
746                                 {
747                                 $openssldir=$1;
748                                 }
749                         elsif (/^--install.prefix=(.*)$/)
750                                 {
751                                 $install_prefix=$1;
752                                 }
753                         elsif (/^--with-krb5-(dir|lib|include|flavor)=(.*)$/)
754                                 {
755                                 $withargs{"krb5-".$1}=$2;
756                                 }
757                         elsif (/^--with-zlib-lib=(.*)$/)
758                                 {
759                                 $withargs{"zlib-lib"}=$1;
760                                 }
761                         elsif (/^--with-zlib-include=(.*)$/)
762                                 {
763                                 $withargs{"zlib-include"}="-I$1";
764                                 }
765                         else
766                                 {
767                                 print STDERR $usage;
768                                 exit(1);
769                                 }
770                         }
771                 elsif ($_ =~ /^([^:]+):(.+)$/)
772                         {
773                         eval "\$table{\$1} = \"$2\""; # allow $xxx constructs in the string
774                         $target=$1;
775                         }
776                 else
777                         {
778                         die "target already defined - $target (offending arg: $_)\n" if ($target ne "");
779                         $target=$_;
780                         }
781
782                 unless ($_ eq $target || /^no-/ || /^disable-/)
783                         {
784                         # "no-..." follows later after implied disactivations
785                         # have been derived.  (Don't take this too seroiusly,
786                         # we really only write OPTIONS to the Makefile out of
787                         # nostalgia.)
788
789                         if ($options eq "")
790                                 { $options = $_; }
791                         else
792                                 { $options .= " ".$_; }
793                         }
794                 }
795         }
796
797
798
799 if ($processor eq "386")
800         {
801         $disabled{"sse2"} = "forced";
802         }
803
804 if (!defined($withargs{"krb5-flavor"}) || $withargs{"krb5-flavor"} eq "")
805         {
806         $disabled{"krb5"} = "krb5-flavor not specified";
807         }
808
809 if (!defined($disabled{"zlib-dynamic"}))
810         {
811         # "zlib-dynamic" was specifically enabled, so enable "zlib"
812         delete $disabled{"zlib"};
813         }
814
815 if (defined($disabled{"rijndael"}))
816         {
817         $disabled{"aes"} = "forced";
818         }
819 if (defined($disabled{"des"}))
820         {
821         $disabled{"mdc2"} = "forced";
822         }
823 if (defined($disabled{"ec"}))
824         {
825         $disabled{"ecdsa"} = "forced";
826         $disabled{"ecdh"} = "forced";
827         }
828
829 # SSL 2.0 requires MD5 and RSA
830 if (defined($disabled{"md5"}) || defined($disabled{"rsa"}))
831         {
832         $disabled{"ssl2"} = "forced";
833         }
834
835 # SSL 3.0 and TLS requires MD5 and SHA and either RSA or DSA+DH
836 if (defined($disabled{"md5"}) || defined($disabled{"sha"})
837     || (defined($disabled{"rsa"})
838         && (defined($disabled{"dsa"}) || defined($disabled{"dh"}))))
839         {
840         $disabled{"ssl3"} = "forced";
841         $disabled{"tls1"} = "forced";
842         }
843
844 if (defined($disabled{"tls1"}))
845         {
846         $disabled{"tlsext"} = "forced";
847         }
848
849 if ($target eq "TABLE") {
850         foreach $target (sort keys %table) {
851                 print_table_entry($target);
852         }
853         exit 0;
854 }
855
856 if ($target eq "LIST") {
857         foreach (sort keys %table) {
858                 print;
859                 print "\n";
860         }
861         exit 0;
862 }
863
864 if ($target =~ m/^CygWin32(-.*)$/) {
865         $target = "Cygwin".$1;
866 }
867
868 print "Configuring for $target\n";
869
870 &usage if (!defined($table{$target}));
871
872
873 foreach (sort (keys %disabled))
874         {
875         $options .= " no-$_";
876
877         printf "    no-%-12s %-10s", $_, "[$disabled{$_}]";
878
879         if (/^dso$/)
880                 { $no_dso = 1; }
881         elsif (/^threads$/)
882                 { $no_threads = 1; }
883         elsif (/^shared$/)
884                 { $no_shared = 1; }
885         elsif (/^zlib$/)
886                 { $zlib = 0; }
887         elsif (/^static-engine$/)
888                 { }
889         elsif (/^zlib-dynamic$/)
890                 { }
891         elsif (/^symlinks$/)
892                 { $symlink = 0; }
893         elsif (/^sse2$/)
894                 { $no_sse2 = 1; }
895         else
896                 {
897                 my ($ALGO, $algo);
898                 ($ALGO = $algo = $_) =~ tr/[a-z]/[A-Z]/;
899
900                 if (/^asm$/ || /^err$/ || /^hw$/ || /^hw-/)
901                         {
902                         $openssl_other_defines .= "#define OPENSSL_NO_$ALGO\n";
903                         print " OPENSSL_NO_$ALGO";
904                 
905                         if (/^err$/)    { $flags .= "-DOPENSSL_NO_ERR "; }
906                         elsif (/^asm$/) { $no_asm = 1; }
907                         }
908                 else
909                         {
910                         $openssl_algorithm_defines .= "#define OPENSSL_NO_$ALGO\n";
911                         print " OPENSSL_NO_$ALGO";
912
913                         if (/^krb5$/)
914                                 { $no_krb5 = 1; }
915                         else
916                                 {
917                                 push @skip, $algo;
918                                 print " (skip dir)";
919
920                                 $depflags .="-DOPENSSL_NO_$ALGO ";
921                                 }
922                         }
923                 }
924
925         print "\n";
926         }
927
928
929 my $IsMK1MF=scalar grep /^$target$/,@MK1MF_Builds;
930
931 $IsMK1MF=1 if ($target eq "mingw" && $^O ne "cygwin" && !is_msys());
932
933 $exe_ext=".exe" if ($target eq "Cygwin" || $target eq "DJGPP" || $target eq "mingw");
934 $exe_ext=".pm"  if ($target =~ /vos/);
935 $openssldir="/usr/local/ssl" if ($openssldir eq "" and $prefix eq "");
936 $prefix=$openssldir if $prefix eq "";
937
938 $default_ranlib= &which("ranlib") or $default_ranlib="true";
939 $perl=$ENV{'PERL'} or $perl=&which("perl5") or $perl=&which("perl")
940   or $perl="perl";
941
942 chop $openssldir if $openssldir =~ /\/$/;
943 chop $prefix if $prefix =~ /\/$/;
944
945 $openssldir=$prefix . "/ssl" if $openssldir eq "";
946 $openssldir=$prefix . "/" . $openssldir if $openssldir !~ /(^\/|^[a-zA-Z]:[\\\/])/;
947
948
949 print "IsMK1MF=$IsMK1MF\n";
950
951 my @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
952 my $cc = $fields[$idx_cc];
953 my $cflags = $fields[$idx_cflags];
954 my $unistd = $fields[$idx_unistd];
955 my $thread_cflag = $fields[$idx_thread_cflag];
956 my $sys_id = $fields[$idx_sys_id];
957 my $lflags = $fields[$idx_lflags];
958 my $bn_ops = $fields[$idx_bn_ops];
959 my $cpuid_obj = $fields[$idx_cpuid_obj];
960 my $bn_obj = $fields[$idx_bn_obj];
961 my $des_obj = $fields[$idx_des_obj];
962 my $aes_obj = $fields[$idx_aes_obj];
963 my $bf_obj = $fields[$idx_bf_obj];
964 my $md5_obj = $fields[$idx_md5_obj];
965 my $sha1_obj = $fields[$idx_sha1_obj];
966 my $cast_obj = $fields[$idx_cast_obj];
967 my $rc4_obj = $fields[$idx_rc4_obj];
968 my $rmd160_obj = $fields[$idx_rmd160_obj];
969 my $rc5_obj = $fields[$idx_rc5_obj];
970 my $dso_scheme = $fields[$idx_dso_scheme];
971 my $shared_target = $fields[$idx_shared_target];
972 my $shared_cflag = $fields[$idx_shared_cflag];
973 my $shared_ldflag = $fields[$idx_shared_ldflag];
974 my $shared_extension = $fields[$idx_shared_extension];
975 my $ranlib = $fields[$idx_ranlib];
976 my $arflags = $fields[$idx_arflags];
977
978 # '%' in $lflags is used to split flags to "pre-" and post-flags
979 my ($prelflags,$postlflags)=split('%',$lflags);
980 if (defined($postlflags))       { $lflags=$postlflags;  }
981 else                            { $lflags=$prelflags; undef $prelflags; }
982
983 my $no_shared_warn=0;
984 my $no_user_cflags=0;
985
986 if ($flags ne "")       { $cflags="$flags$cflags"; }
987 else                    { $no_user_cflags=1;       }
988
989 # Kerberos settings.  The flavor must be provided from outside, either through
990 # the script "config" or manually.
991 if (!$no_krb5)
992         {
993         my ($lresolv, $lpath, $lext);
994         if ($withargs{"krb5-flavor"} =~ /^[Hh]eimdal$/)
995                 {
996                 die "Sorry, Heimdal is currently not supported\n";
997                 }
998         ##### HACK to force use of Heimdal.
999         ##### WARNING: Since we don't really have adequate support for Heimdal,
1000         #####          using this will break the build.  You'll have to make
1001         #####          changes to the source, and if you do, please send
1002         #####          patches to openssl-dev@openssl.org
1003         if ($withargs{"krb5-flavor"} =~ /^force-[Hh]eimdal$/)
1004                 {
1005                 warn "Heimdal isn't really supported.  Your build WILL break\n";
1006                 warn "If you fix the problems, please send a patch to openssl-dev\@openssl.org\n";
1007                 $withargs{"krb5-dir"} = "/usr/heimdal"
1008                         if $withargs{"krb5-dir"} eq "";
1009                 $withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
1010                         "/lib -lgssapi -lkrb5 -lcom_err"
1011                         if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1012                 $cflags="-DKRB5_HEIMDAL $cflags";
1013                 }
1014         if ($withargs{"krb5-flavor"} =~ /^[Mm][Ii][Tt]/)
1015                 {
1016                 $withargs{"krb5-dir"} = "/usr/kerberos"
1017                         if $withargs{"krb5-dir"} eq "";
1018                 $withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
1019                         "/lib -lgssapi_krb5 -lkrb5 -lcom_err -lk5crypto"
1020                         if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1021                 $cflags="-DKRB5_MIT $cflags";
1022                 $withargs{"krb5-flavor"} =~ s/^[Mm][Ii][Tt][._-]*//;
1023                 if ($withargs{"krb5-flavor"} =~ /^1[._-]*[01]/)
1024                         {
1025                         $cflags="-DKRB5_MIT_OLD11 $cflags";
1026                         }
1027                 }
1028         LRESOLV:
1029         foreach $lpath ("/lib", "/usr/lib")
1030                 {
1031                 foreach $lext ("a", "so")
1032                         {
1033                         $lresolv = "$lpath/libresolv.$lext";
1034                         last LRESOLV    if (-r "$lresolv");
1035                         $lresolv = "";
1036                         }
1037                 }
1038         $withargs{"krb5-lib"} .= " -lresolv"
1039                 if ("$lresolv" ne "");
1040         $withargs{"krb5-include"} = "-I".$withargs{"krb5-dir"}."/include"
1041                 if $withargs{"krb5-include"} eq "" &&
1042                    $withargs{"krb5-dir"} ne "";
1043         }
1044
1045 # The DSO code currently always implements all functions so that no
1046 # applications will have to worry about that from a compilation point
1047 # of view. However, the "method"s may return zero unless that platform
1048 # has support compiled in for them. Currently each method is enabled
1049 # by a define "DSO_<name>" ... we translate the "dso_scheme" config
1050 # string entry into using the following logic;
1051 my $dso_cflags;
1052 if (!$no_dso && $dso_scheme ne "")
1053         {
1054         $dso_scheme =~ tr/[a-z]/[A-Z]/;
1055         if ($dso_scheme eq "DLFCN")
1056                 {
1057                 $dso_cflags = "-DDSO_DLFCN -DHAVE_DLFCN_H";
1058                 }
1059         elsif ($dso_scheme eq "DLFCN_NO_H")
1060                 {
1061                 $dso_cflags = "-DDSO_DLFCN";
1062                 }
1063         else
1064                 {
1065                 $dso_cflags = "-DDSO_$dso_scheme";
1066                 }
1067         $cflags = "$dso_cflags $cflags";
1068         }
1069
1070 my $thread_cflags;
1071 my $thread_defines;
1072 if ($thread_cflag ne "(unknown)" && !$no_threads)
1073         {
1074         # If we know how to do it, support threads by default.
1075         $threads = 1;
1076         }
1077 if ($thread_cflag eq "(unknown)" && $threads)
1078         {
1079         # If the user asked for "threads", [s]he is also expected to
1080         # provide any system-dependent compiler options that are
1081         # necessary.
1082         if ($no_user_cflags)
1083                 {
1084                 print "You asked for multi-threading support, but didn't\n";
1085                 print "provide any system-specific compiler options\n";
1086                 exit(1);
1087                 }
1088         $thread_cflags="-DOPENSSL_THREADS $cflags" ;
1089         $thread_defines .= "#define OPENSSL_THREADS\n";
1090         }
1091 else
1092         {
1093         $thread_cflags="-DOPENSSL_THREADS $thread_cflag $cflags";
1094         $thread_defines .= "#define OPENSSL_THREADS\n";
1095 #       my $def;
1096 #       foreach $def (split ' ',$thread_cflag)
1097 #               {
1098 #               if ($def =~ s/^-D// && $def !~ /^_/)
1099 #                       {
1100 #                       $thread_defines .= "#define $def\n";
1101 #                       }
1102 #               }
1103         }       
1104
1105 $lflags="$libs$lflags" if ($libs ne "");
1106
1107 if ($no_asm)
1108         {
1109         $cpuid_obj=$bn_obj=$des_obj=$aes_obj=$bf_obj=$cast_obj=$rc4_obj=$rc5_obj="";
1110         $sha1_obj=$md5_obj=$rmd160_obj="";
1111         }
1112
1113 if (!$no_shared)
1114         {
1115         $cast_obj="";   # CAST assembler is not PIC
1116         }
1117
1118 if ($threads)
1119         {
1120         $cflags=$thread_cflags;
1121         $openssl_thread_defines .= $thread_defines;
1122         }
1123
1124 if ($zlib)
1125         {
1126         $cflags = "-DZLIB $cflags";
1127         if (defined($disabled{"zlib-dynamic"}))
1128                 {
1129                 $lflags = "$lflags -lz";
1130                 }
1131         else
1132                 {
1133                 $cflags = "-DZLIB_SHARED $cflags";
1134                 }
1135         }
1136
1137 # You will find shlib_mark1 and shlib_mark2 explained in Makefile.org
1138 my $shared_mark = "";
1139 if ($shared_target eq "")
1140         {
1141         $no_shared_warn = 1 if !$no_shared;
1142         $no_shared = 1;
1143         }
1144 if (!$no_shared)
1145         {
1146         if ($shared_cflag ne "")
1147                 {
1148                 $cflags = "$shared_cflag -DOPENSSL_PIC $cflags";
1149                 }
1150         }
1151
1152 if (!$IsMK1MF)
1153         {
1154         if ($no_shared)
1155                 {
1156                 $openssl_other_defines.="#define OPENSSL_NO_DYNAMIC_ENGINE\n";
1157                 }
1158         else
1159                 {
1160                 $openssl_other_defines.="#define OPENSSL_NO_STATIC_ENGINE\n";
1161                 }
1162         }
1163
1164 $cpuid_obj.=" uplink.o uplink-cof.o" if ($cflags =~ /\-DOPENSSL_USE_APPLINK/);
1165
1166 #
1167 # Platform fix-ups
1168 #
1169 if ($target =~ /\-icc$/)        # Intel C compiler
1170         {
1171         my $iccver=0;
1172         if (open(FD,"$cc -V 2>&1 |"))
1173                 {
1174                 while(<FD>) { $iccver=$1 if (/Version ([0-9]+)\./); }
1175                 close(FD);
1176                 }
1177         if ($iccver>=8)
1178                 {
1179                 # Eliminate unnecessary dependency from libirc.a. This is
1180                 # essential for shared library support, as otherwise
1181                 # apps/openssl can end up in endless loop upon startup...
1182                 $cflags.=" -Dmemcpy=__builtin_memcpy -Dmemset=__builtin_memset";
1183                 }
1184         if ($iccver>=9)
1185                 {
1186                 $cflags.=" -i-static";
1187                 $cflags=~s/\-no_cpprt/-no-cpprt/;
1188                 }
1189         if ($iccver>=10)
1190                 {
1191                 $cflags=~s/\-i\-static/-static-intel/;
1192                 }
1193         }
1194
1195 # Unlike other OSes (like Solaris, Linux, Tru64, IRIX) BSD run-time
1196 # linkers (tested OpenBSD, NetBSD and FreeBSD) "demand" RPATH set on
1197 # .so objects. Apparently application RPATH is not global and does
1198 # not apply to .so linked with other .so. Problem manifests itself
1199 # when libssl.so fails to load libcrypto.so. One can argue that we
1200 # should engrave this into Makefile.shared rules or into BSD-* config
1201 # lines above. Meanwhile let's try to be cautious and pass -rpath to
1202 # linker only when --prefix is not /usr.
1203 if ($target =~ /^BSD\-/)
1204         {
1205         $shared_ldflag.=" -Wl,-rpath,\$(LIBRPATH)" if ($prefix !~ m|^/usr[/]*$|);
1206         }
1207
1208 if ($sys_id ne "")
1209         {
1210         #$cflags="-DOPENSSL_SYSNAME_$sys_id $cflags";
1211         $openssl_sys_defines="#define OPENSSL_SYSNAME_$sys_id\n";
1212         }
1213
1214 if ($ranlib eq "")
1215         {
1216         $ranlib = $default_ranlib;
1217         }
1218
1219 #my ($bn1)=split(/\s+/,$bn_obj);
1220 #$bn1 = "" unless defined $bn1;
1221 #$bn1=$bn_asm unless ($bn1 =~ /\.o$/);
1222 #$bn_obj="$bn1";
1223
1224 $cpuid_obj="" if ($processor eq "386");
1225
1226 $bn_obj = $bn_asm unless $bn_obj ne "";
1227 # bn86* is the only one implementing bn_*_part_words
1228 $cflags.=" -DOPENSSL_BN_ASM_PART_WORDS" if ($bn_obj =~ /bn86/);
1229 $cflags.=" -DOPENSSL_IA32_SSE2" if (!$no_sse2 && $bn_obj =~ /bn86/);
1230
1231 $des_obj=$des_enc       unless ($des_obj =~ /\.o$/);
1232 $bf_obj=$bf_enc         unless ($bf_obj =~ /\.o$/);
1233 $cast_obj=$cast_enc     unless ($cast_obj =~ /\.o$/);
1234 $rc4_obj=$rc4_enc       unless ($rc4_obj =~ /\.o$/);
1235 $rc5_obj=$rc5_enc       unless ($rc5_obj =~ /\.o$/);
1236 if ($sha1_obj =~ /\.o$/)
1237         {
1238 #       $sha1_obj=$sha1_enc;
1239         $cflags.=" -DSHA1_ASM"   if ($sha1_obj =~ /sx86/ || $sha1_obj =~ /sha1/);
1240         $cflags.=" -DSHA256_ASM" if ($sha1_obj =~ /sha256/);
1241         $cflags.=" -DSHA512_ASM" if ($sha1_obj =~ /sha512/);
1242         if ($sha1_obj =~ /sse2/)
1243             {   if ($no_sse2)
1244                 {   $sha1_obj =~ s/\S*sse2\S+//;        }
1245                 elsif ($cflags !~ /OPENSSL_IA32_SSE2/)
1246                 {   $cflags.=" -DOPENSSL_IA32_SSE2";    }
1247             }
1248         }
1249 if ($md5_obj =~ /\.o$/)
1250         {
1251 #       $md5_obj=$md5_enc;
1252         $cflags.=" -DMD5_ASM";
1253         }
1254 if ($rmd160_obj =~ /\.o$/)
1255         {
1256 #       $rmd160_obj=$rmd160_enc;
1257         $cflags.=" -DRMD160_ASM";
1258         }
1259 if ($aes_obj =~ /\.o$/)
1260         {
1261         $cflags.=" -DAES_ASM";
1262         }
1263 else    {
1264         $aes_obj=$aes_enc;
1265         }
1266
1267 # "Stringify" the C flags string.  This permits it to be made part of a string
1268 # and works as well on command lines.
1269 $cflags =~ s/([\\\"])/\\\1/g;
1270
1271 my $version = "unknown";
1272 my $version_num = "unknown";
1273 my $major = "unknown";
1274 my $minor = "unknown";
1275 my $shlib_version_number = "unknown";
1276 my $shlib_version_history = "unknown";
1277 my $shlib_major = "unknown";
1278 my $shlib_minor = "unknown";
1279
1280 open(IN,'<crypto/opensslv.h') || die "unable to read opensslv.h:$!\n";
1281 while (<IN>)
1282         {
1283         $version=$1 if /OPENSSL.VERSION.TEXT.*OpenSSL (\S+) /;
1284         $version_num=$1 if /OPENSSL.VERSION.NUMBER.*0x(\S+)/;
1285         $shlib_version_number=$1 if /SHLIB_VERSION_NUMBER *"([^"]+)"/;
1286         $shlib_version_history=$1 if /SHLIB_VERSION_HISTORY *"([^"]*)"/;
1287         }
1288 close(IN);
1289 if ($shlib_version_history ne "") { $shlib_version_history .= ":"; }
1290
1291 if ($version =~ /(^[0-9]*)\.([0-9\.]*)/)
1292         {
1293         $major=$1;
1294         $minor=$2;
1295         }
1296
1297 if ($shlib_version_number =~ /(^[0-9]*)\.([0-9\.]*)/)
1298         {
1299         $shlib_major=$1;
1300         $shlib_minor=$2;
1301         }
1302
1303 open(IN,'<Makefile.org') || die "unable to read Makefile.org:$!\n";
1304 unlink("$Makefile.new") || die "unable to remove old $Makefile.new:$!\n" if -e "$Makefile.new";
1305 open(OUT,">$Makefile.new") || die "unable to create $Makefile.new:$!\n";
1306 print OUT "### Generated automatically from Makefile.org by Configure.\n\n";
1307 my $sdirs=0;
1308 while (<IN>)
1309         {
1310         chomp;
1311         $sdirs = 1 if /^SDIRS=/;
1312         if ($sdirs) {
1313                 my $dir;
1314                 foreach $dir (@skip) {
1315                         s/([    ])$dir /\1/;
1316                         }
1317                 }
1318         $sdirs = 0 unless /\\$/;
1319         s/^VERSION=.*/VERSION=$version/;
1320         s/^MAJOR=.*/MAJOR=$major/;
1321         s/^MINOR=.*/MINOR=$minor/;
1322         s/^SHLIB_VERSION_NUMBER=.*/SHLIB_VERSION_NUMBER=$shlib_version_number/;
1323         s/^SHLIB_VERSION_HISTORY=.*/SHLIB_VERSION_HISTORY=$shlib_version_history/;
1324         s/^SHLIB_MAJOR=.*/SHLIB_MAJOR=$shlib_major/;
1325         s/^SHLIB_MINOR=.*/SHLIB_MINOR=$shlib_minor/;
1326         s/^SHLIB_EXT=.*/SHLIB_EXT=$shared_extension/;
1327         s/^INSTALLTOP=.*$/INSTALLTOP=$prefix/;
1328         s/^OPENSSLDIR=.*$/OPENSSLDIR=$openssldir/;
1329         s/^INSTALL_PREFIX=.*$/INSTALL_PREFIX=$install_prefix/;
1330         s/^PLATFORM=.*$/PLATFORM=$target/;
1331         s/^OPTIONS=.*$/OPTIONS=$options/;
1332         s/^CONFIGURE_ARGS=.*$/CONFIGURE_ARGS=$argvstring/;
1333         s/^CC=.*$/CC= $cc/;
1334         s/^MAKEDEPPROG=.*$/MAKEDEPPROG= $cc/ if $cc eq "gcc";
1335         s/^CFLAG=.*$/CFLAG= $cflags/;
1336         s/^DEPFLAG=.*$/DEPFLAG= $depflags/;
1337         s/^PEX_LIBS=.*$/PEX_LIBS= $prelflags/;
1338         s/^EX_LIBS=.*$/EX_LIBS= $lflags/;
1339         s/^EXE_EXT=.*$/EXE_EXT= $exe_ext/;
1340         s/^CPUID_OBJ=.*$/CPUID_OBJ= $cpuid_obj/;
1341         s/^BN_ASM=.*$/BN_ASM= $bn_obj/;
1342         s/^DES_ENC=.*$/DES_ENC= $des_obj/;
1343         s/^AES_ASM_OBJ=.*$/AES_ASM_OBJ= $aes_obj/;
1344         s/^BF_ENC=.*$/BF_ENC= $bf_obj/;
1345         s/^CAST_ENC=.*$/CAST_ENC= $cast_obj/;
1346         s/^RC4_ENC=.*$/RC4_ENC= $rc4_obj/;
1347         s/^RC5_ENC=.*$/RC5_ENC= $rc5_obj/;
1348         s/^MD5_ASM_OBJ=.*$/MD5_ASM_OBJ= $md5_obj/;
1349         s/^SHA1_ASM_OBJ=.*$/SHA1_ASM_OBJ= $sha1_obj/;
1350         s/^RMD160_ASM_OBJ=.*$/RMD160_ASM_OBJ= $rmd160_obj/;
1351         s/^PROCESSOR=.*/PROCESSOR= $processor/;
1352         s/^RANLIB=.*/RANLIB= $ranlib/;
1353         s/^ARFLAGS=.*/ARFLAGS= $arflags/;
1354         s/^PERL=.*/PERL= $perl/;
1355         s/^KRB5_INCLUDES=.*/KRB5_INCLUDES=$withargs{"krb5-include"}/;
1356         s/^LIBKRB5=.*/LIBKRB5=$withargs{"krb5-lib"}/;
1357         s/^LIBZLIB=.*/LIBZLIB=$withargs{"zlib-lib"}/;
1358         s/^ZLIB_INCLUDE=.*/ZLIB_INCLUDE=$withargs{"zlib-include"}/;
1359         s/^SHLIB_TARGET=.*/SHLIB_TARGET=$shared_target/;
1360         s/^SHLIB_MARK=.*/SHLIB_MARK=$shared_mark/;
1361         s/^SHARED_LIBS=.*/SHARED_LIBS=\$(SHARED_CRYPTO) \$(SHARED_SSL)/ if (!$no_shared);
1362         if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
1363                 {
1364                 my $sotmp = $1;
1365                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/;
1366                 }
1367         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.dylib$/)
1368                 {
1369                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.dylib/;
1370                 }
1371         elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
1372                 {
1373                 my $sotmp = $1;
1374                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
1375                 }
1376         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.[^\.]*\.dylib$/)
1377                 {
1378                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.\$(SHLIB_MAJOR).dylib .dylib/;
1379                 }
1380         s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
1381         print OUT $_."\n";
1382         }
1383 close(IN);
1384 close(OUT);
1385 rename($Makefile,"$Makefile.bak") || die "unable to rename $Makefile\n" if -e $Makefile;
1386 rename("$Makefile.new",$Makefile) || die "unable to rename $Makefile.new\n";
1387
1388 print "CC            =$cc\n";
1389 print "CFLAG         =$cflags\n";
1390 print "EX_LIBS       =$lflags\n";
1391 print "CPUID_OBJ     =$cpuid_obj\n";
1392 print "BN_ASM        =$bn_obj\n";
1393 print "DES_ENC       =$des_obj\n";
1394 print "AES_ASM_OBJ   =$aes_obj\n";
1395 print "BF_ENC        =$bf_obj\n";
1396 print "CAST_ENC      =$cast_obj\n";
1397 print "RC4_ENC       =$rc4_obj\n";
1398 print "RC5_ENC       =$rc5_obj\n";
1399 print "MD5_OBJ_ASM   =$md5_obj\n";
1400 print "SHA1_OBJ_ASM  =$sha1_obj\n";
1401 print "RMD160_OBJ_ASM=$rmd160_obj\n";
1402 print "PROCESSOR     =$processor\n";
1403 print "RANLIB        =$ranlib\n";
1404 print "ARFLAGS       =$arflags\n";
1405 print "PERL          =$perl\n";
1406 print "KRB5_INCLUDES =",$withargs{"krb5-include"},"\n"
1407         if $withargs{"krb5-include"} ne "";
1408
1409 my $des_ptr=0;
1410 my $des_risc1=0;
1411 my $des_risc2=0;
1412 my $des_unroll=0;
1413 my $bn_ll=0;
1414 my $def_int=2;
1415 my $rc4_int=$def_int;
1416 my $md2_int=$def_int;
1417 my $idea_int=$def_int;
1418 my $rc2_int=$def_int;
1419 my $rc4_idx=0;
1420 my $rc4_chunk=0;
1421 my $bf_ptr=0;
1422 my @type=("char","short","int","long");
1423 my ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0);
1424 my $export_var_as_fn=0;
1425
1426 my $des_int;
1427
1428 foreach (sort split(/\s+/,$bn_ops))
1429         {
1430         $des_ptr=1 if /DES_PTR/;
1431         $des_risc1=1 if /DES_RISC1/;
1432         $des_risc2=1 if /DES_RISC2/;
1433         $des_unroll=1 if /DES_UNROLL/;
1434         $des_int=1 if /DES_INT/;
1435         $bn_ll=1 if /BN_LLONG/;
1436         $rc4_int=0 if /RC4_CHAR/;
1437         $rc4_int=3 if /RC4_LONG/;
1438         $rc4_idx=1 if /RC4_INDEX/;
1439         $rc4_chunk=1 if /RC4_CHUNK/;
1440         $rc4_chunk=2 if /RC4_CHUNK_LL/;
1441         $md2_int=0 if /MD2_CHAR/;
1442         $md2_int=3 if /MD2_LONG/;
1443         $idea_int=1 if /IDEA_SHORT/;
1444         $idea_int=3 if /IDEA_LONG/;
1445         $rc2_int=1 if /RC2_SHORT/;
1446         $rc2_int=3 if /RC2_LONG/;
1447         $bf_ptr=1 if $_ eq "BF_PTR";
1448         $bf_ptr=2 if $_ eq "BF_PTR2";
1449         ($b64l,$b64,$b32,$b16,$b8)=(0,1,0,0,0) if /SIXTY_FOUR_BIT/;
1450         ($b64l,$b64,$b32,$b16,$b8)=(1,0,0,0,0) if /SIXTY_FOUR_BIT_LONG/;
1451         ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0) if /THIRTY_TWO_BIT/;
1452         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,1,0) if /SIXTEEN_BIT/;
1453         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,0,1) if /EIGHT_BIT/;
1454         $export_var_as_fn=1 if /EXPORT_VAR_AS_FN/;
1455         }
1456
1457 open(IN,'<crypto/opensslconf.h.in') || die "unable to read crypto/opensslconf.h.in:$!\n";
1458 unlink("crypto/opensslconf.h.new") || die "unable to remove old crypto/opensslconf.h.new:$!\n" if -e "crypto/opensslconf.h.new";
1459 open(OUT,'>crypto/opensslconf.h.new') || die "unable to create crypto/opensslconf.h.new:$!\n";
1460 print OUT "/* opensslconf.h */\n";
1461 print OUT "/* WARNING: Generated automatically from opensslconf.h.in by Configure. */\n\n";
1462
1463 print OUT "/* OpenSSL was configured with the following options: */\n";
1464 my $openssl_algorithm_defines_trans = $openssl_algorithm_defines;
1465 $openssl_algorithm_defines_trans =~ s/^\s*#\s*define\s+OPENSSL_(.*)/# if defined(OPENSSL_$1) \&\& !defined($1)\n#  define $1\n# endif/mg;
1466 $openssl_algorithm_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1467 $openssl_algorithm_defines = "   /* no ciphers excluded */\n" if $openssl_algorithm_defines eq "";
1468 $openssl_thread_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1469 $openssl_sys_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1470 $openssl_other_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1471 print OUT $openssl_sys_defines;
1472 print OUT "#ifndef OPENSSL_DOING_MAKEDEPEND\n\n";
1473 print OUT $openssl_algorithm_defines;
1474 print OUT "\n#endif /* OPENSSL_DOING_MAKEDEPEND */\n";
1475 print OUT $openssl_thread_defines;
1476 print OUT $openssl_other_defines,"\n";
1477
1478 print OUT "/* The OPENSSL_NO_* macros are also defined as NO_* if the application\n";
1479 print OUT "   asks for it.  This is a transient feature that is provided for those\n";
1480 print OUT "   who haven't had the time to do the appropriate changes in their\n";
1481 print OUT "   applications.  */\n";
1482 print OUT "#ifdef OPENSSL_ALGORITHM_DEFINES\n";
1483 print OUT $openssl_algorithm_defines_trans;
1484 print OUT "#endif\n\n";
1485
1486 print OUT "#define OPENSSL_CPUID_OBJ\n\n" if ($cpuid_obj);
1487
1488 while (<IN>)
1489         {
1490         if      (/^#define\s+OPENSSLDIR/)
1491                 { print OUT "#define OPENSSLDIR \"$openssldir\"\n"; }
1492         elsif   (/^#define\s+ENGINESDIR/)
1493                 { print OUT "#define ENGINESDIR \"$prefix/lib/engines\"\n"; }
1494         elsif   (/^#((define)|(undef))\s+OPENSSL_EXPORT_VAR_AS_FUNCTION/)
1495                 { printf OUT "#undef OPENSSL_EXPORT_VAR_AS_FUNCTION\n"
1496                         if $export_var_as_fn;
1497                   printf OUT "#%s OPENSSL_EXPORT_VAR_AS_FUNCTION\n",
1498                         ($export_var_as_fn)?"define":"undef"; }
1499         elsif   (/^#define\s+OPENSSL_UNISTD/)
1500                 {
1501                 $unistd = "<unistd.h>" if $unistd eq "";
1502                 print OUT "#define OPENSSL_UNISTD $unistd\n";
1503                 }
1504         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT_LONG/)
1505                 { printf OUT "#%s SIXTY_FOUR_BIT_LONG\n",($b64l)?"define":"undef"; }
1506         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT/)
1507                 { printf OUT "#%s SIXTY_FOUR_BIT\n",($b64)?"define":"undef"; }
1508         elsif   (/^#((define)|(undef))\s+THIRTY_TWO_BIT/)
1509                 { printf OUT "#%s THIRTY_TWO_BIT\n",($b32)?"define":"undef"; }
1510         elsif   (/^#((define)|(undef))\s+SIXTEEN_BIT/)
1511                 { printf OUT "#%s SIXTEEN_BIT\n",($b16)?"define":"undef"; }
1512         elsif   (/^#((define)|(undef))\s+EIGHT_BIT/)
1513                 { printf OUT "#%s EIGHT_BIT\n",($b8)?"define":"undef"; }
1514         elsif   (/^#((define)|(undef))\s+BN_LLONG\s*$/)
1515                 { printf OUT "#%s BN_LLONG\n",($bn_ll)?"define":"undef"; }
1516         elsif   (/^\#define\s+DES_LONG\s+.*/)
1517                 { printf OUT "#define DES_LONG unsigned %s\n",
1518                         ($des_int)?'int':'long'; }
1519         elsif   (/^\#(define|undef)\s+DES_PTR/)
1520                 { printf OUT "#%s DES_PTR\n",($des_ptr)?'define':'undef'; }
1521         elsif   (/^\#(define|undef)\s+DES_RISC1/)
1522                 { printf OUT "#%s DES_RISC1\n",($des_risc1)?'define':'undef'; }
1523         elsif   (/^\#(define|undef)\s+DES_RISC2/)
1524                 { printf OUT "#%s DES_RISC2\n",($des_risc2)?'define':'undef'; }
1525         elsif   (/^\#(define|undef)\s+DES_UNROLL/)
1526                 { printf OUT "#%s DES_UNROLL\n",($des_unroll)?'define':'undef'; }
1527         elsif   (/^#define\s+RC4_INT\s/)
1528                 { printf OUT "#define RC4_INT unsigned %s\n",$type[$rc4_int]; }
1529         elsif   (/^#undef\s+RC4_CHUNK/)
1530                 {
1531                 printf OUT "#undef RC4_CHUNK\n" if $rc4_chunk==0;
1532                 printf OUT "#define RC4_CHUNK unsigned long\n" if $rc4_chunk==1;
1533                 printf OUT "#define RC4_CHUNK unsigned long long\n" if $rc4_chunk==2;
1534                 }
1535         elsif   (/^#((define)|(undef))\s+RC4_INDEX/)
1536                 { printf OUT "#%s RC4_INDEX\n",($rc4_idx)?"define":"undef"; }
1537         elsif (/^#(define|undef)\s+I386_ONLY/)
1538                 { printf OUT "#%s I386_ONLY\n", ($processor eq "386")?
1539                         "define":"undef"; }
1540         elsif   (/^#define\s+MD2_INT\s/)
1541                 { printf OUT "#define MD2_INT unsigned %s\n",$type[$md2_int]; }
1542         elsif   (/^#define\s+IDEA_INT\s/)
1543                 {printf OUT "#define IDEA_INT unsigned %s\n",$type[$idea_int];}
1544         elsif   (/^#define\s+RC2_INT\s/)
1545                 {printf OUT "#define RC2_INT unsigned %s\n",$type[$rc2_int];}
1546         elsif (/^#(define|undef)\s+BF_PTR/)
1547                 {
1548                 printf OUT "#undef BF_PTR\n" if $bf_ptr == 0;
1549                 printf OUT "#define BF_PTR\n" if $bf_ptr == 1;
1550                 printf OUT "#define BF_PTR2\n" if $bf_ptr == 2;
1551                 }
1552         else
1553                 { print OUT $_; }
1554         }
1555 close(IN);
1556 close(OUT);
1557 rename("crypto/opensslconf.h","crypto/opensslconf.h.bak") || die "unable to rename crypto/opensslconf.h\n" if -e "crypto/opensslconf.h";
1558 rename("crypto/opensslconf.h.new","crypto/opensslconf.h") || die "unable to rename crypto/opensslconf.h.new\n";
1559
1560
1561 # Fix the date
1562
1563 print "SIXTY_FOUR_BIT_LONG mode\n" if $b64l;
1564 print "SIXTY_FOUR_BIT mode\n" if $b64;
1565 print "THIRTY_TWO_BIT mode\n" if $b32;
1566 print "SIXTEEN_BIT mode\n" if $b16;
1567 print "EIGHT_BIT mode\n" if $b8;
1568 print "DES_PTR used\n" if $des_ptr;
1569 print "DES_RISC1 used\n" if $des_risc1;
1570 print "DES_RISC2 used\n" if $des_risc2;
1571 print "DES_UNROLL used\n" if $des_unroll;
1572 print "DES_INT used\n" if $des_int;
1573 print "BN_LLONG mode\n" if $bn_ll;
1574 print "RC4 uses u$type[$rc4_int]\n" if $rc4_int != $def_int;
1575 print "RC4_INDEX mode\n" if $rc4_idx;
1576 print "RC4_CHUNK is undefined\n" if $rc4_chunk==0;
1577 print "RC4_CHUNK is unsigned long\n" if $rc4_chunk==1;
1578 print "RC4_CHUNK is unsigned long long\n" if $rc4_chunk==2;
1579 print "MD2 uses u$type[$md2_int]\n" if $md2_int != $def_int;
1580 print "IDEA uses u$type[$idea_int]\n" if $idea_int != $def_int;
1581 print "RC2 uses u$type[$rc2_int]\n" if $rc2_int != $def_int;
1582 print "BF_PTR used\n" if $bf_ptr == 1; 
1583 print "BF_PTR2 used\n" if $bf_ptr == 2; 
1584
1585 if($IsMK1MF) {
1586         open (OUT,">crypto/buildinf.h") || die "Can't open buildinf.h";
1587         printf OUT <<EOF;
1588 #ifndef MK1MF_BUILD
1589   /* auto-generated by Configure for crypto/cversion.c:
1590    * for Unix builds, crypto/Makefile.ssl generates functional definitions;
1591    * Windows builds (and other mk1mf builds) compile cversion.c with
1592    * -DMK1MF_BUILD and use definitions added to this file by util/mk1mf.pl. */
1593   #error "Windows builds (PLATFORM=$target) use mk1mf.pl-created Makefiles"
1594 #endif
1595 EOF
1596         close(OUT);
1597 } else {
1598         my $make_command = "make PERL=\'$perl\'";
1599         my $make_targets = "";
1600         $make_targets .= " links" if $symlink;
1601         $make_targets .= " depend" if $depflags ne $default_depflags && $make_depend;
1602         $make_targets .= " gentests" if $symlink;
1603         (system $make_command.$make_targets) == 0 or exit $?
1604                 if $make_targets ne "";
1605         if ( $perl =~ m@^/@) {
1606             &dofile("tools/c_rehash",$perl,'^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";');
1607             &dofile("apps/CA.pl",$perl,'^#!/', '#!%s');
1608         } else {
1609             # No path for Perl known ...
1610             &dofile("tools/c_rehash",'/usr/local/bin/perl','^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";');
1611             &dofile("apps/CA.pl",'/usr/local/bin/perl','^#!/', '#!%s');
1612         }
1613         if ($depflags ne $default_depflags && !$make_depend) {
1614                 print <<EOF;
1615
1616 Since you've disabled or enabled at least one algorithm, you need to do
1617 the following before building:
1618
1619         make depend
1620 EOF
1621         }
1622 }
1623
1624 # create the ms/version32.rc file if needed
1625 if ($IsMK1MF) {
1626         my ($v1, $v2, $v3, $v4);
1627         if ($version_num =~ /(^[0-9a-f]{1})([0-9a-f]{2})([0-9a-f]{2})([0-9a-f]{2})/i) {
1628                 $v1=hex $1;
1629                 $v2=hex $2;
1630                 $v3=hex $3;
1631                 $v4=hex $4;
1632         }
1633         open (OUT,">ms/version32.rc") || die "Can't open ms/version32.rc";
1634         print OUT <<EOF;
1635 #include <winver.h>
1636
1637 LANGUAGE 0x09,0x01
1638
1639 1 VERSIONINFO
1640   FILEVERSION $v1,$v2,$v3,$v4
1641   PRODUCTVERSION $v1,$v2,$v3,$v4
1642   FILEFLAGSMASK 0x3fL
1643 #ifdef _DEBUG
1644   FILEFLAGS 0x01L
1645 #else
1646   FILEFLAGS 0x00L
1647 #endif
1648   FILEOS VOS__WINDOWS32
1649   FILETYPE VFT_DLL
1650   FILESUBTYPE 0x0L
1651 BEGIN
1652     BLOCK "StringFileInfo"
1653     BEGIN
1654         BLOCK "040904b0"
1655         BEGIN
1656             // Required:            
1657             VALUE "CompanyName", "The OpenSSL Project, http://www.openssl.org/\\0"
1658             VALUE "FileDescription", "OpenSSL Shared Library\\0"
1659             VALUE "FileVersion", "$version\\0"
1660 #if defined(CRYPTO)
1661             VALUE "InternalName", "libeay32\\0"
1662             VALUE "OriginalFilename", "libeay32.dll\\0"
1663 #elif defined(SSL)
1664             VALUE "InternalName", "ssleay32\\0"
1665             VALUE "OriginalFilename", "ssleay32.dll\\0"
1666 #endif
1667             VALUE "ProductName", "The OpenSSL Toolkit\\0"
1668             VALUE "ProductVersion", "$version\\0"
1669             // Optional:
1670             //VALUE "Comments", "\\0"
1671             VALUE "LegalCopyright", "Copyright © 1998-2005 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved.\\0"
1672             //VALUE "LegalTrademarks", "\\0"
1673             //VALUE "PrivateBuild", "\\0"
1674             //VALUE "SpecialBuild", "\\0"
1675         END
1676     END
1677     BLOCK "VarFileInfo"
1678     BEGIN
1679         VALUE "Translation", 0x409, 0x4b0
1680     END
1681 END
1682 EOF
1683         close(OUT);
1684   }
1685   
1686 print <<EOF;
1687
1688 Configured for $target.
1689 EOF
1690
1691 print <<\EOF if (!$no_threads && !$threads);
1692
1693 The library could not be configured for supporting multi-threaded
1694 applications as the compiler options required on this system are not known.
1695 See file INSTALL for details if you need multi-threading.
1696 EOF
1697
1698 print <<\EOF if ($no_shared_warn);
1699
1700 You gave the option 'shared'.  Normally, that would give you shared libraries.
1701 Unfortunately, the OpenSSL configuration doesn't include shared library support
1702 for this platform yet, so it will pretend you gave the option 'no-shared'.  If
1703 you can inform the developpers (openssl-dev\@openssl.org) how to support shared
1704 libraries on this platform, they will at least look at it and try their best
1705 (but please first make sure you have tried with a current version of OpenSSL).
1706 EOF
1707
1708 exit(0);
1709
1710 sub usage
1711         {
1712         print STDERR $usage;
1713         print STDERR "\npick os/compiler from:\n";
1714         my $j=0;
1715         my $i;
1716         my $k=0;
1717         foreach $i (sort keys %table)
1718                 {
1719                 next if $i =~ /^debug/;
1720                 $k += length($i) + 1;
1721                 if ($k > 78)
1722                         {
1723                         print STDERR "\n";
1724                         $k=length($i);
1725                         }
1726                 print STDERR $i . " ";
1727                 }
1728         foreach $i (sort keys %table)
1729                 {
1730                 next if $i !~ /^debug/;
1731                 $k += length($i) + 1;
1732                 if ($k > 78)
1733                         {
1734                         print STDERR "\n";
1735                         $k=length($i);
1736                         }
1737                 print STDERR $i . " ";
1738                 }
1739         print STDERR "\n\nNOTE: If in doubt, on Unix-ish systems use './config'.\n";
1740         exit(1);
1741         }
1742
1743 sub which
1744         {
1745         my($name)=@_;
1746         my $path;
1747         foreach $path (split /:/, $ENV{PATH})
1748                 {
1749                 if (-f "$path/$name$exe_ext" and -x _)
1750                         {
1751                         return "$path/$name$exe_ext" unless ($name eq "perl" and
1752                          system("$path/$name$exe_ext -e " . '\'exit($]<5.0);\''));
1753                         }
1754                 }
1755         }
1756
1757 sub dofile
1758         {
1759         my $f; my $p; my %m; my @a; my $k; my $ff;
1760         ($f,$p,%m)=@_;
1761
1762         open(IN,"<$f.in") || open(IN,"<$f") || die "unable to open $f:$!\n";
1763         @a=<IN>;
1764         close(IN);
1765         foreach $k (keys %m)
1766                 {
1767                 grep(/$k/ && ($_=sprintf($m{$k}."\n",$p)),@a);
1768                 }
1769         open(OUT,">$f.new") || die "unable to open $f.new:$!\n";
1770         print OUT @a;
1771         close(OUT);
1772         rename($f,"$f.bak") || die "unable to rename $f\n" if -e $f;
1773         rename("$f.new",$f) || die "unable to rename $f.new\n";
1774         }
1775
1776 sub print_table_entry
1777         {
1778         my $target = shift;
1779
1780         (my $cc,my $cflags,my $unistd,my $thread_cflag,my $sys_id,my $lflags,
1781         my $bn_ops,my $cpuid_obj,my $bn_obj,my $des_obj,my $aes_obj, my $bf_obj,
1782         my $md5_obj,my $sha1_obj,my $cast_obj,my $rc4_obj,my $rmd160_obj,
1783         my $rc5_obj,my $dso_scheme,my $shared_target,my $shared_cflag,
1784         my $shared_ldflag,my $shared_extension,my $ranlib,my $arflags)=
1785         split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
1786                         
1787         print <<EOF
1788
1789 *** $target
1790 \$cc           = $cc
1791 \$cflags       = $cflags
1792 \$unistd       = $unistd
1793 \$thread_cflag = $thread_cflag
1794 \$sys_id       = $sys_id
1795 \$lflags       = $lflags
1796 \$bn_ops       = $bn_ops
1797 \$cpuid_obj    = $cpuid_obj
1798 \$bn_obj       = $bn_obj
1799 \$des_obj      = $des_obj
1800 \$aes_obj      = $aes_obj
1801 \$bf_obj       = $bf_obj
1802 \$md5_obj      = $md5_obj
1803 \$sha1_obj     = $sha1_obj
1804 \$cast_obj     = $cast_obj
1805 \$rc4_obj      = $rc4_obj
1806 \$rmd160_obj   = $rmd160_obj
1807 \$rc5_obj      = $rc5_obj
1808 \$dso_scheme   = $dso_scheme
1809 \$shared_target= $shared_target
1810 \$shared_cflag = $shared_cflag
1811 \$shared_ldflag = $shared_ldflag
1812 \$shared_extension = $shared_extension
1813 \$ranlib       = $ranlib
1814 \$arflags      = $arflags
1815 EOF
1816         }
1817
1818 sub test_sanity
1819         {
1820         my $errorcnt = 0;
1821
1822         print STDERR "=" x 70, "\n";
1823         print STDERR "=== SANITY TESTING!\n";
1824         print STDERR "=== No configuration will be done, all other arguments will be ignored!\n";
1825         print STDERR "=" x 70, "\n";
1826
1827         foreach $target (sort keys %table)
1828                 {
1829                 @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
1830
1831                 if ($fields[$idx_dso_scheme-1] =~ /^(dl|dlfcn|win32|vms)$/)
1832                         {
1833                         $errorcnt++;
1834                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
1835                         print STDERR "              in the previous field\n";
1836                         }
1837                 elsif ($fields[$idx_dso_scheme+1] =~ /^(dl|dlfcn|win32|vms)$/)
1838                         {
1839                         $errorcnt++;
1840                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
1841                         print STDERR "              in the following field\n";
1842                         }
1843                 elsif ($fields[$idx_dso_scheme] !~ /^(dl|dlfcn|win32|vms|)$/)
1844                         {
1845                         $errorcnt++;
1846                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] field = ",$fields[$idx_dso_scheme],"\n";
1847                         print STDERR "              valid values are 'dl', 'dlfcn', 'win32' and 'vms'\n";
1848                         }
1849                 }
1850         print STDERR "No sanity errors detected!\n" if $errorcnt == 0;
1851         return $errorcnt;
1852         }
1853
1854 # Attempt to detect MSYS environment
1855
1856 sub is_msys
1857         {
1858         return 1 if (exists $ENV{"TERM"} && $ENV{"TERM"} eq "msys");
1859         return 0;
1860         }