Configure: Improve incremental build time
[openssl.git] / Configure
1 :
2 eval 'exec perl -S $0 ${1+"$@"}'
3     if $running_under_some_shell;
4 ##
5 ##  Configure -- OpenSSL source tree configuration script
6 ##
7
8 require 5.000;
9 use strict;
10 use File::Compare;
11
12 # see INSTALL for instructions.
13
14 my $usage="Usage: Configure [no-<cipher> ...] [enable-<cipher> ...] [experimental-<cipher> ...] [-Dxxx] [-lxxx] [-Lxxx] [-fxxx] [-Kxxx] [no-hw-xxx|no-hw] [[no-]threads] [[no-]shared] [[no-]zlib|zlib-dynamic] [no-asm] [no-dso] [no-krb5] [sctp] [386] [--prefix=DIR] [--openssldir=OPENSSLDIR] [--with-xxx[=vvv]] [--test-sanity] os/compiler[:flags]\n";
15
16 # Options:
17 #
18 # --openssldir  install OpenSSL in OPENSSLDIR (Default: DIR/ssl if the
19 #               --prefix option is given; /usr/local/ssl otherwise)
20 # --prefix      prefix for the OpenSSL include, lib and bin directories
21 #               (Default: the OPENSSLDIR directory)
22 #
23 # --install_prefix  Additional prefix for package builders (empty by
24 #               default).  This needn't be set in advance, you can
25 #               just as well use "make INSTALL_PREFIX=/whatever install".
26 #
27 # --with-krb5-dir  Declare where Kerberos 5 lives.  The libraries are expected
28 #               to live in the subdirectory lib/ and the header files in
29 #               include/.  A value is required.
30 # --with-krb5-lib  Declare where the Kerberos 5 libraries live.  A value is
31 #               required.
32 #               (Default: KRB5_DIR/lib)
33 # --with-krb5-include  Declare where the Kerberos 5 header files live.  A
34 #               value is required.
35 #               (Default: KRB5_DIR/include)
36 # --with-krb5-flavor  Declare what flavor of Kerberos 5 is used.  Currently
37 #               supported values are "MIT" and "Heimdal".  A value is required.
38 #
39 # --test-sanity Make a number of sanity checks on the data in this file.
40 #               This is a debugging tool for OpenSSL developers.
41 #
42 # --cross-compile-prefix Add specified prefix to binutils components.
43 #
44 # no-hw-xxx     do not compile support for specific crypto hardware.
45 #               Generic OpenSSL-style methods relating to this support
46 #               are always compiled but return NULL if the hardware
47 #               support isn't compiled.
48 # no-hw         do not compile support for any crypto hardware.
49 # [no-]threads  [don't] try to create a library that is suitable for
50 #               multithreaded applications (default is "threads" if we
51 #               know how to do it)
52 # [no-]shared   [don't] try to create shared libraries when supported.
53 # no-asm        do not use assembler
54 # no-dso        do not compile in any native shared-library methods. This
55 #               will ensure that all methods just return NULL.
56 # no-krb5       do not compile in any KRB5 library or code.
57 # [no-]zlib     [don't] compile support for zlib compression.
58 # zlib-dynamic  Like "zlib", but the zlib library is expected to be a shared
59 #               library and will be loaded in run-time by the OpenSSL library.
60 # sctp          include SCTP support
61 # 386           generate 80386 code
62 # enable-weak-ssl-ciphers
63 #               Enable EXPORT and LOW SSLv3 ciphers that are disabled by
64 #               default.  Note, weak SSLv2 ciphers are unconditionally
65 #               disabled.
66 # no-sse2       disables IA-32 SSE2 code, above option implies no-sse2
67 # no-<cipher>   build without specified algorithm (rsa, idea, rc5, ...)
68 # -<xxx> +<xxx> compiler options are passed through 
69 #
70 # DEBUG_SAFESTACK use type-safe stacks to enforce type-safety on stack items
71 #               provided to stack calls. Generates unique stack functions for
72 #               each possible stack type.
73 # DES_PTR       use pointer lookup vs arrays in the DES in crypto/des/des_locl.h
74 # DES_RISC1     use different DES_ENCRYPT macro that helps reduce register
75 #               dependancies but needs to more registers, good for RISC CPU's
76 # DES_RISC2     A different RISC variant.
77 # DES_UNROLL    unroll the inner DES loop, sometimes helps, somtimes hinders.
78 # DES_INT       use 'int' instead of 'long' for DES_LONG in crypto/des/des.h
79 #               This is used on the DEC Alpha where long is 8 bytes
80 #               and int is 4
81 # BN_LLONG      use the type 'long long' in crypto/bn/bn.h
82 # MD2_CHAR      use 'char' instead of 'int' for MD2_INT in crypto/md2/md2.h
83 # MD2_LONG      use 'long' instead of 'int' for MD2_INT in crypto/md2/md2.h
84 # IDEA_SHORT    use 'short' instead of 'int' for IDEA_INT in crypto/idea/idea.h
85 # IDEA_LONG     use 'long' instead of 'int' for IDEA_INT in crypto/idea/idea.h
86 # RC2_SHORT     use 'short' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
87 # RC2_LONG      use 'long' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
88 # RC4_CHAR      use 'char' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
89 # RC4_LONG      use 'long' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
90 # RC4_INDEX     define RC4_INDEX in crypto/rc4/rc4_locl.h.  This turns on
91 #               array lookups instead of pointer use.
92 # RC4_CHUNK     enables code that handles data aligned at long (natural CPU
93 #               word) boundary.
94 # RC4_CHUNK_LL  enables code that handles data aligned at long long boundary
95 #               (intended for 64-bit CPUs running 32-bit OS).
96 # BF_PTR        use 'pointer arithmatic' for Blowfish (unsafe on Alpha).
97 # BF_PTR2       intel specific version (generic version is more efficient).
98 #
99 # Following are set automatically by this script
100 #
101 # MD5_ASM       use some extra md5 assember,
102 # SHA1_ASM      use some extra sha1 assember, must define L_ENDIAN for x86
103 # RMD160_ASM    use some extra ripemd160 assember,
104 # SHA256_ASM    sha256_block is implemented in assembler
105 # SHA512_ASM    sha512_block is implemented in assembler
106 # AES_ASM       ASE_[en|de]crypt is implemented in assembler
107
108 # Minimum warning options... any contributions to OpenSSL should at least get
109 # past these. 
110
111 my $gcc_devteam_warn = "-Wall -pedantic -DPEDANTIC -Wno-long-long -Wsign-compare -Wmissing-prototypes -Wshadow -Wformat -Werror -DCRYPTO_MDEBUG_ALL -DCRYPTO_MDEBUG_ABORT -DREF_CHECK -DOPENSSL_NO_DEPRECATED";
112
113 # TODO(openssl-team): fix problems and investigate if (at least) the following
114 # warnings can also be enabled:
115 # -Wconditional-uninitialized, -Wswitch-enum, -Wunused-macros,
116 # -Wmissing-field-initializers, -Wmissing-variable-declarations,
117 # -Wincompatible-pointer-types-discards-qualifiers, -Wcast-align,
118 # -Wunreachable-code -Wunused-parameter -Wlanguage-extension-token
119 # -Wextended-offsetof
120 my $clang_disabled_warnings = "-Wno-unused-parameter -Wno-missing-field-initializers -Wno-language-extension-token  -Wno-extended-offsetof";
121
122 # These are used in addition to $gcc_devteam_warn when the compiler is clang.
123 # TODO(openssl-team): fix problems and investigate if (at least) the
124 # following warnings can also be enabled: -Wconditional-uninitialized,
125 # -Wswitch-enum, -Wunused-macros, -Wmissing-field-initializers,
126 # -Wmissing-variable-declarations,
127 # -Wincompatible-pointer-types-discards-qualifiers, -Wcast-align,
128 # -Wunreachable-code -Wunused-parameter -Wlanguage-extension-token
129 # -Wextended-offsetof
130 my $clang_devteam_warn = "-Wno-unused-parameter -Wno-missing-field-initializers -Wno-language-extension-token -Wno-extended-offsetof -Qunused-arguments";
131
132 # Warn that "make depend" should be run?
133 my $warn_make_depend = 0;
134
135 my $strict_warnings = 0;
136
137 my $x86_gcc_des="DES_PTR DES_RISC1 DES_UNROLL";
138
139 # MD2_CHAR slags pentium pros
140 my $x86_gcc_opts="RC4_INDEX MD2_INT";
141
142 # MODIFY THESE PARAMETERS IF YOU ARE GOING TO USE THE 'util/speed.sh SCRIPT
143 # Don't worry about these normally
144
145 my $tcc="cc";
146 my $tflags="-fast -Xa";
147 my $tbn_mul="";
148 my $tlib="-lnsl -lsocket";
149 #$bits1="SIXTEEN_BIT ";
150 #$bits2="THIRTY_TWO_BIT ";
151 my $bits1="THIRTY_TWO_BIT ";
152 my $bits2="SIXTY_FOUR_BIT ";
153
154 my $x86_asm="x86cpuid.o:bn-586.o co-586.o x86-mont.o x86-gf2m.o::des-586.o crypt586.o:aes-586.o vpaes-x86.o aesni-x86.o:bf-586.o:md5-586.o:sha1-586.o sha256-586.o sha512-586.o:cast-586.o:rc4-586.o:rmd-586.o:rc5-586.o:wp_block.o wp-mmx.o:cmll-x86.o:ghash-x86.o:";
155
156 my $x86_elf_asm="$x86_asm:elf";
157
158 my $x86_64_asm="x86_64cpuid.o:x86_64-gcc.o x86_64-mont.o x86_64-mont5.o x86_64-gf2m.o rsaz_exp.o rsaz-x86_64.o rsaz-avx2.o:ecp_nistz256.o ecp_nistz256-x86_64.o::aes-x86_64.o vpaes-x86_64.o bsaes-x86_64.o aesni-x86_64.o aesni-sha1-x86_64.o aesni-sha256-x86_64.o aesni-mb-x86_64.o::md5-x86_64.o:sha1-x86_64.o sha256-x86_64.o sha512-x86_64.o sha1-mb-x86_64.o sha256-mb-x86_64.o::rc4-x86_64.o rc4-md5-x86_64.o:::wp-x86_64.o:cmll-x86_64.o cmll_misc.o:ghash-x86_64.o aesni-gcm-x86_64.o:";
159 my $ia64_asm="ia64cpuid.o:bn-ia64.o ia64-mont.o:::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o::rc4-ia64.o rc4_skey.o:::::ghash-ia64.o::void";
160 my $sparcv9_asm="sparcv9cap.o sparccpuid.o:bn-sparcv9.o sparcv9-mont.o sparcv9a-mont.o vis3-mont.o sparct4-mont.o sparcv9-gf2m.o::des_enc-sparc.o fcrypt_b.o dest4-sparcv9.o:aes_core.o aes_cbc.o aes-sparcv9.o aest4-sparcv9.o::md5-sparcv9.o:sha1-sparcv9.o sha256-sparcv9.o sha512-sparcv9.o::::::camellia.o cmll_misc.o cmll_cbc.o cmllt4-sparcv9.o:ghash-sparcv9.o::void";
161 my $sparcv8_asm=":sparcv8.o::des_enc-sparc.o fcrypt_b.o:::::::::::::void";
162 my $alpha_asm="alphacpuid.o:bn_asm.o alpha-mont.o::::::sha1-alpha.o:::::::ghash-alpha.o::void";
163 my $mips64_asm=":bn-mips.o mips-mont.o:::aes_cbc.o aes-mips.o:::sha1-mips.o sha256-mips.o sha512-mips.o::::::::";
164 my $mips32_asm=$mips64_asm; $mips32_asm =~ s/\s*sha512\-mips\.o//;
165 my $s390x_asm="s390xcap.o s390xcpuid.o:bn-s390x.o s390x-mont.o s390x-gf2m.o:::aes-s390x.o aes-ctr.o aes-xts.o:::sha1-s390x.o sha256-s390x.o sha512-s390x.o::rc4-s390x.o:::::ghash-s390x.o:";
166 my $armv4_asm="armcap.o armv4cpuid.o:bn_asm.o armv4-mont.o armv4-gf2m.o:::aes_cbc.o aes-armv4.o bsaes-armv7.o aesv8-armx.o:::sha1-armv4-large.o sha256-armv4.o sha512-armv4.o:::::::ghash-armv4.o ghashv8-armx.o::void";
167 my $aarch64_asm="armcap.o arm64cpuid.o mem_clr.o::::aes_core.o aes_cbc.o aesv8-armx.o:::sha1-armv8.o sha256-armv8.o sha512-armv8.o:::::::ghashv8-armx.o:";
168 my $parisc11_asm="pariscid.o:bn_asm.o parisc-mont.o:::aes_core.o aes_cbc.o aes-parisc.o:::sha1-parisc.o sha256-parisc.o sha512-parisc.o::rc4-parisc.o:::::ghash-parisc.o::32";
169 my $parisc20_asm="pariscid.o:pa-risc2W.o parisc-mont.o:::aes_core.o aes_cbc.o aes-parisc.o:::sha1-parisc.o sha256-parisc.o sha512-parisc.o::rc4-parisc.o:::::ghash-parisc.o::64";
170 my $ppc64_asm="ppccpuid.o ppccap.o:bn-ppc.o ppc-mont.o ppc64-mont.o:::aes_core.o aes_cbc.o aes-ppc.o vpaes-ppc.o aesp8-ppc.o:::sha1-ppc.o sha256-ppc.o sha512-ppc.o sha256p8-ppc.o sha512p8-ppc.o:::::::ghashp8-ppc.o:";
171 my $ppc32_asm=$ppc64_asm;
172 my $no_asm="::::::::::::::::void";
173
174 # As for $BSDthreads. Idea is to maintain "collective" set of flags,
175 # which would cover all BSD flavors. -pthread applies to them all, 
176 # but is treated differently. OpenBSD expands is as -D_POSIX_THREAD
177 # -lc_r, which is sufficient. FreeBSD 4.x expands it as -lc_r,
178 # which has to be accompanied by explicit -D_THREAD_SAFE and
179 # sometimes -D_REENTRANT. FreeBSD 5.x expands it as -lc_r, which
180 # seems to be sufficient?
181 my $BSDthreads="-pthread -D_THREAD_SAFE -D_REENTRANT";
182
183 #config-string  $cc : $cflags : $unistd : $thread_cflag : $sys_id : $lflags : $bn_ops : $cpuid_obj : $bn_obj : $ec_obj : $des_obj : $aes_obj : $bf_obj : $md5_obj : $sha1_obj : $cast_obj : $rc4_obj : $rmd160_obj : $rc5_obj : $wp_obj : $cmll_obj : $modes_obj : $engines_obj : $dso_scheme : $shared_target : $shared_cflag : $shared_ldflag : $shared_extension : $ranlib : $arflags : $multilib
184
185 my %table=(
186 # File 'TABLE' (created by 'make TABLE') contains the data from this list,
187 # formatted for better readability.
188
189
190 #"b",           "${tcc}:${tflags}::${tlib}:${bits1}:${tbn_mul}::",
191 #"bl-4c-2c",    "${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR MD2_CHAR:${tbn_mul}::",
192 #"bl-4c-ri",    "${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR RC4_INDEX:${tbn_mul}::",
193 #"b2-is-ri-dp", "${tcc}:${tflags}::${tlib}:${bits2}IDEA_SHORT RC4_INDEX DES_PTR:${tbn_mul}::",
194
195 # Our development configs
196 "purify",       "purify gcc:-g -DPURIFY -Wall::(unknown)::-lsocket -lnsl::::",
197 "debug",        "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -ggdb -g2 -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror::(unknown)::-lefence::::",
198 "debug-ben",    "gcc:$gcc_devteam_warn -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DDEBUG_SAFESTACK -O2 -pipe::(unknown):::::",
199 "debug-ben-openbsd","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
200 "debug-ben-openbsd-debug","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -g3 -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
201 "debug-ben-debug",      "gcc44:$gcc_devteam_warn -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -DDEBUG_UNUSED -g3 -O2 -pipe::(unknown)::::::",
202 "debug-ben-debug-64",   "gcc:$gcc_devteam_warn -Wno-error=overlength-strings -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -DDEBUG_UNUSED -g3 -O3 -pipe::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
203 "debug-ben-macos",      "cc:$gcc_devteam_warn -arch i386 -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -DDEBUG_UNUSED -DOPENSSL_THREADS -D_REENTRANT -DDSO_DLFCN -DHAVE_DLFCN_H -O3 -DL_ENDIAN -g3 -pipe::(unknown)::-Wl,-search_paths_first::::",
204 "debug-ben-macos-gcc46",        "gcc-mp-4.6:$gcc_devteam_warn -Wconversion -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -DDEBUG_UNUSED -DOPENSSL_THREADS -D_REENTRANT -DDSO_DLFCN -DHAVE_DLFCN_H -O3 -DL_ENDIAN -g3 -pipe::(unknown)::::::",
205 "debug-ben-darwin64","cc:$gcc_devteam_warn -g -Wno-language-extension-token -Wno-extended-offsetof -arch x86_64 -O3 -DL_ENDIAN -Wall::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:".eval{my $asm=$x86_64_asm;$asm=~s/rc4\-[^:]+//;$asm}.":macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch x86_64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
206 "debug-ben-debug-64-clang",     "clang:$gcc_devteam_warn -Wno-error=overlength-strings -Wno-error=extended-offsetof -Qunused-arguments -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -DDEBUG_UNUSED -g3 -O3 -pipe::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
207 "debug-ben-no-opt",     "gcc: -Wall -Wmissing-prototypes -Wstrict-prototypes -Wmissing-declarations -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG -Werror -DL_ENDIAN -DTERMIOS -Wall -g3::(unknown)::::::",
208 "debug-ben-strict",     "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DCONST_STRICT -O2 -Wall -Wshadow -Werror -Wpointer-arith -Wcast-qual -Wwrite-strings -pipe::(unknown)::::::",
209 "debug-rse","cc:-DTERMIOS -DL_ENDIAN -pipe -O -g -ggdb3 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
210 "debug-bodo",   "gcc:$gcc_devteam_warn -Wno-error=overlength-strings -DBN_DEBUG -DBN_DEBUG_RAND -DCONF_DEBUG -DBIO_PAIR_DEBUG -m64 -DL_ENDIAN -DTERMIO -g -DMD32_REG_T=int::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
211 "debug-steve64", "gcc:$gcc_devteam_warn -m64 -DL_ENDIAN -DTERMIO -DCONF_DEBUG -DDEBUG_SAFESTACK -Wno-overlength-strings -g::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
212 "debug-steve32", "gcc:$gcc_devteam_warn -m32 -DL_ENDIAN -DCONF_DEBUG -DDEBUG_SAFESTACK -Wno-overlength-strings -g -pipe::-D_REENTRANT::-rdynamic -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC:-m32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
213 "debug-steve-opt", "gcc:$gcc_devteam_warn -m64 -O3 -DL_ENDIAN -DTERMIO -DCONF_DEBUG -DDEBUG_SAFESTACK -g::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
214 "debug-levitte-linux-elf","gcc:-DLEVITTE_DEBUG -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -ggdb -g3 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
215 "debug-levitte-linux-noasm","gcc:-DLEVITTE_DEBUG -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -ggdb -g3 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
216 "debug-levitte-linux-elf-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DPEDANTIC -ggdb -g3 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
217 "debug-levitte-linux-noasm-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DPEDANTIC -ggdb -g3 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
218 "debug-geoff32","gcc:-DBN_DEBUG -DBN_DEBUG_RAND -DBN_STRICT -DPURIFY -DOPENSSL_NO_DEPRECATED -DOPENSSL_NO_ASM -DOPENSSL_NO_INLINE_ASM -DL_ENDIAN -DTERMIO -DPEDANTIC -O1 -ggdb2 -Wall -Werror -Wundef -pedantic -Wshadow -Wpointer-arith -Wbad-function-cast -Wcast-align -Wsign-compare -Wmissing-prototypes -Wmissing-declarations -Wno-long-long::-D_REENTRANT::-ldl:BN_LLONG:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
219 "debug-geoff64","gcc:-DBN_DEBUG -DBN_DEBUG_RAND -DBN_STRICT -DPURIFY -DOPENSSL_NO_DEPRECATED -DOPENSSL_NO_ASM -DOPENSSL_NO_INLINE_ASM -DL_ENDIAN -DTERMIO -DPEDANTIC -O1 -ggdb2 -Wall -Werror -Wundef -pedantic -Wshadow -Wpointer-arith -Wbad-function-cast -Wcast-align -Wsign-compare -Wmissing-prototypes -Wmissing-declarations -Wno-long-long::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
220 "debug-linux-pentium","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -g -mcpu=pentium -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
221 "debug-linux-ppro","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -g -mcpu=pentiumpro -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
222 "debug-linux-elf","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -g -march=i486 -Wall::-D_REENTRANT::-lefence -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
223 "debug-linux-elf-noefence","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -g -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
224 "debug-linux-ia32-aes", "gcc:-DAES_EXPERIMENTAL -DL_ENDIAN -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:x86cpuid.o:bn-586.o co-586.o x86-mont.o::des-586.o crypt586.o:aes_x86core.o aes_cbc.o aesni-x86.o:bf-586.o:md5-586.o:sha1-586.o sha256-586.o sha512-586.o:cast-586.o:rc4-586.o:rmd-586.o:rc5-586.o:wp_block.o wp-mmx.o::ghash-x86.o::elf:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
225 "debug-linux-generic32","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -g -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
226 "debug-linux-generic64","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DTERMIO -g -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
227 "debug-linux-x86_64","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -m64 -DL_ENDIAN -g -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
228 "dist",         "cc:-O::(unknown)::::::",
229
230 # Basic configs that should work on any (32 and less bit) box
231 "gcc",          "gcc:-O3::(unknown):::BN_LLONG:::",
232 "cc",           "cc:-O::(unknown)::::::",
233
234 ####VOS Configurations
235 "vos-gcc","gcc:-O3 -Wall -DOPENSSL_SYSNAME_VOS -D_POSIX_C_SOURCE=200112L -D_BSD -D_VOS_EXTENDED_NAMES -DB_ENDIAN::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
236 "debug-vos-gcc","gcc:-O0 -g -Wall -DOPENSSL_SYSNAME_VOS -D_POSIX_C_SOURCE=200112L -D_BSD -D_VOS_EXTENDED_NAMES -DB_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
237
238 #### Solaris x86 with GNU C setups
239 # -DOPENSSL_NO_INLINE_ASM switches off inline assembler. We have to do it
240 # here because whenever GNU C instantiates an assembler template it
241 # surrounds it with #APP #NO_APP comment pair which (at least Solaris
242 # 7_x86) /usr/ccs/bin/as fails to assemble with "Illegal mnemonic"
243 # error message.
244 "solaris-x86-gcc","gcc:-O3 -fomit-frame-pointer -march=pentium -Wall -DL_ENDIAN -DOPENSSL_NO_INLINE_ASM::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
245 # -shared -static-libgcc might appear controversial, but modules taken
246 # from static libgcc do not have relocations and linking them into our
247 # shared objects doesn't have any negative side-effects. On the contrary,
248 # doing so makes it possible to use gcc shared build with Sun C. Given
249 # that gcc generates faster code [thanks to inline assembler], I would
250 # actually recommend to consider using gcc shared build even with vendor
251 # compiler:-)
252 #                                               <appro@fy.chalmers.se>
253 "solaris64-x86_64-gcc","gcc:-m64 -O3 -Wall -DL_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:solaris-shared:-fPIC:-m64 -shared -static-libgcc:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
254  
255 #### Solaris x86 with Sun C setups
256 "solaris-x86-cc","cc:-fast -xarch=generic -O -Xa::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
257 "solaris64-x86_64-cc","cc:-fast -xarch=amd64 -xstrconst -Xa -DL_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:solaris-shared:-KPIC:-xarch=amd64 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
258
259 #### SPARC Solaris with GNU C setups
260 "solaris-sparcv7-gcc","gcc:-O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
261 "solaris-sparcv8-gcc","gcc:-mcpu=v8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
262 # -m32 should be safe to add as long as driver recognizes -mcpu=ultrasparc
263 "solaris-sparcv9-gcc","gcc:-m32 -mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
264 "solaris64-sparcv9-gcc","gcc:-m64 -mcpu=ultrasparc -O3 -Wall -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-m64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
265 ####
266 "debug-solaris-sparcv8-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -O -g -mcpu=v8 -Wall -DB_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
267 "debug-solaris-sparcv9-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -DPEDANTIC -O -g -mcpu=ultrasparc -pedantic -ansi -Wall -Wshadow -Wno-long-long -D__EXTENSIONS__ -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
268
269 #### SPARC Solaris with Sun C setups
270 # SC4.0 doesn't pass 'make test', upgrade to SC5.0 or SC4.2.
271 # SC4.2 is ok, better than gcc even on bn as long as you tell it -xarch=v8
272 # SC5.0 note: Compiler common patch 107357-01 or later is required!
273 "solaris-sparcv7-cc","cc:-xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
274 "solaris-sparcv8-cc","cc:-xarch=v8 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
275 "solaris-sparcv9-cc","cc:-xtarget=ultra -xarch=v8plus -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
276 "solaris64-sparcv9-cc","cc:-xtarget=ultra -xarch=v9 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-xarch=v9 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
277 ####
278 "debug-solaris-sparcv8-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -xarch=v8 -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
279 "debug-solaris-sparcv9-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -xtarget=ultra -xarch=v8plus -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", 
280
281 #### SunOS configs, assuming sparc for the gcc one.
282 #"sunos-cc", "cc:-O4 -DNOPROTO -DNOCONST::(unknown):SUNOS::DES_UNROLL:${no_asm}::",
283 "sunos-gcc","gcc:-O3 -mcpu=v8 -Dssize_t=int::(unknown):SUNOS::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL DES_PTR DES_RISC1:${no_asm}::",
284
285 #### IRIX 5.x configs
286 # -mips2 flag is added by ./config when appropriate.
287 "irix-gcc","gcc:-O3 -DB_ENDIAN::(unknown):::BN_LLONG MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK DES_UNROLL DES_RISC2 DES_PTR BF_PTR:${mips32_asm}:o32:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
288 "irix-cc", "cc:-O2 -use_readonly_const -DB_ENDIAN::(unknown):::BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${mips32_asm}:o32:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
289 #### IRIX 6.x configs
290 # Only N32 and N64 ABIs are supported. If you need O32 ABI build, invoke
291 # './Configure irix-cc -o32' manually.
292 "irix-mips3-gcc","gcc:-mabi=n32 -O3 -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK_LL DES_UNROLL DES_RISC2 DES_PTR BF_PTR SIXTY_FOUR_BIT:${mips64_asm}:n32:dlfcn:irix-shared::-mabi=n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::32",
293 "irix-mips3-cc", "cc:-n32 -mips3 -O2 -use_readonly_const -G0 -rdata_shared -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::DES_PTR RC4_CHAR RC4_CHUNK_LL DES_RISC2 DES_UNROLL BF_PTR SIXTY_FOUR_BIT:${mips64_asm}:n32:dlfcn:irix-shared::-n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::32",
294 # N64 ABI builds.
295 "irix64-mips4-gcc","gcc:-mabi=64 -mips4 -O3 -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG:${mips64_asm}:64:dlfcn:irix-shared::-mabi=64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
296 "irix64-mips4-cc", "cc:-64 -mips4 -O2 -use_readonly_const -G0 -rdata_shared -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG:${mips64_asm}:64:dlfcn:irix-shared::-64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
297
298 #### Unified HP-UX ANSI C configs.
299 # Special notes:
300 # - Originally we were optimizing at +O4 level. It should be noted
301 #   that the only difference between +O3 and +O4 is global inter-
302 #   procedural analysis. As it has to be performed during the link
303 #   stage the compiler leaves behind certain pseudo-code in lib*.a
304 #   which might be release or even patch level specific. Generating
305 #   the machine code for and analyzing the *whole* program appears
306 #   to be *extremely* memory demanding while the performance gain is
307 #   actually questionable. The situation is intensified by the default
308 #   HP-UX data set size limit (infamous 'maxdsiz' tunable) of 64MB
309 #   which is way too low for +O4. In other words, doesn't +O3 make
310 #   more sense?
311 # - Keep in mind that the HP compiler by default generates code
312 #   suitable for execution on the host you're currently compiling at.
313 #   If the toolkit is ment to be used on various PA-RISC processors
314 #   consider './config +DAportable'.
315 # - +DD64 is chosen in favour of +DA2.0W because it's meant to be
316 #   compatible with *future* releases.
317 # - If you run ./Configure hpux-parisc-[g]cc manually don't forget to
318 #   pass -D_REENTRANT on HP-UX 10 and later.
319 # - -DMD32_XARRAY triggers workaround for compiler bug we ran into in
320 #   32-bit message digests. (For the moment of this writing) HP C
321 #   doesn't seem to "digest" too many local variables (they make "him"
322 #   chew forever:-). For more details look-up MD32_XARRAY comment in
323 #   crypto/sha/sha_lcl.h.
324 #                                       <appro@fy.chalmers.se>
325 #
326 # Since there is mention of this in shlib/hpux10-cc.sh
327 "hpux-parisc-cc-o4","cc:-Ae +O4 +ESlit -z -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
328 "hpux-parisc-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-Wl,+s -ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
329 "hpux-parisc1_1-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-Wl,+s -ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${parisc11_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa1.1",
330 "hpux-parisc2-gcc","gcc:-march=2.0 -O3 -DB_ENDIAN -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL DES_RISC1:".eval{my $asm=$parisc20_asm;$asm=~s/2W\./2\./;$asm=~s/:64/:32/;$asm}.":dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_32",
331 "hpux64-parisc2-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2W.o:::::::::::::::void:dlfcn:hpux-shared:-fpic:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_64",
332
333 # More attempts at unified 10.X and 11.X targets for HP C compiler.
334 #
335 # Chris Ruemmler <ruemmler@cup.hp.com>
336 # Kevin Steves <ks@hp.se>
337 "hpux-parisc-cc","cc:+O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
338 "hpux-parisc1_1-cc","cc:+DA1.1 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${parisc11_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa1.1",
339 "hpux-parisc2-cc","cc:+DA2.0 +DS2.0 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:".eval{my $asm=$parisc20_asm;$asm=~s/2W\./2\./;$asm=~s/:64/:32/;$asm}.":dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_32",
340 "hpux64-parisc2-cc","cc:+DD64 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${parisc20_asm}:dlfcn:hpux-shared:+Z:+DD64 -b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_64",
341
342 # HP/UX IA-64 targets
343 "hpux-ia64-cc","cc:-Ae +DD32 +O2 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD32 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux32",
344 # Frank Geurts <frank.geurts@nl.abnamro.com> has patiently assisted with
345 # with debugging of the following config.
346 "hpux64-ia64-cc","cc:-Ae +DD64 +O3 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD64 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux64",
347 # GCC builds...
348 "hpux-ia64-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux32",
349 "hpux64-ia64-gcc","gcc:-mlp64 -O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-mlp64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux64", 
350
351 # Legacy HPUX 9.X configs...
352 "hpux-cc",      "cc:-DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY -Ae +ESlit +O2 -z::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
353 "hpux-gcc",     "gcc:-DB_ENDIAN -DBN_DIV2W -O3::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
354
355 #### HP MPE/iX http://jazz.external.hp.com/src/openssl/
356 "MPE/iX-gcc",   "gcc:-D_ENDIAN -DBN_DIV2W -O3 -D_POSIX_SOURCE -D_SOCKET_SOURCE -I/SYSLOG/PUB::(unknown):MPE:-L/SYSLOG/PUB -lsyslog -lsocket -lcurses:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:::",
357
358 # DEC Alpha OSF/1/Tru64 targets.
359 #
360 #       "What's in a name? That which we call a rose
361 #        By any other word would smell as sweet."
362 #
363 # - William Shakespeare, "Romeo & Juliet", Act II, scene II.
364 #
365 # For gcc, the following gave a %50 speedup on a 164 over the 'DES_INT' version
366 #
367 "osf1-alpha-gcc", "gcc:-O3::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_RISC1:${alpha_asm}:dlfcn:alpha-osf1-shared:::.so",
368 "osf1-alpha-cc",  "cc:-std1 -tune host -O4 -readonly_strings::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${alpha_asm}:dlfcn:alpha-osf1-shared:::.so",
369 "tru64-alpha-cc", "cc:-std1 -tune host -fast -readonly_strings::-pthread:::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${alpha_asm}:dlfcn:alpha-osf1-shared::-msym:.so",
370
371 ####
372 #### Variety of LINUX:-)
373 ####
374 # *-generic* is endian-neutral target, but ./config is free to
375 # throw in -D[BL]_ENDIAN, whichever appropriate...
376 "linux-generic32","gcc:-O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
377 "linux-ppc",    "gcc:-DB_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${ppc32_asm}:linux32:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
378
379 #######################################################################
380 # Note that -march is not among compiler options in below linux-armv4
381 # target line. Not specifying one is intentional to give you choice to:
382 #
383 # a) rely on your compiler default by not specifying one;
384 # b) specify your target platform explicitly for optimal performance,
385 #    e.g. -march=armv6 or -march=armv7-a;
386 # c) build "universal" binary that targets *range* of platforms by
387 #    specifying minimum and maximum supported architecture;
388 #
389 # As for c) option. It actually makes no sense to specify maximum to be
390 # less than ARMv7, because it's the least requirement for run-time
391 # switch between platform-specific code paths. And without run-time
392 # switch performance would be equivalent to one for minimum. Secondly,
393 # there are some natural limitations that you'd have to accept and
394 # respect. Most notably you can *not* build "universal" binary for
395 # big-endian platform. This is because ARMv7 processor always picks
396 # instructions in little-endian order. Another similar limitation is
397 # that -mthumb can't "cross" -march=armv6t2 boundary, because that's
398 # where it became Thumb-2. Well, this limitation is a bit artificial,
399 # because it's not really impossible, but it's deemed too tricky to
400 # support. And of course you have to be sure that your binutils are
401 # actually up to the task of handling maximum target platform. With all
402 # this in mind here is an example of how to configure "universal" build:
403 #
404 #       ./Configure linux-armv4 -march=armv6 -D__ARM_MAX_ARCH__=8
405 #
406 "linux-armv4",  "gcc: -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${armv4_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
407 "linux-aarch64","gcc: -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${aarch64_asm}:linux64:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
408 # Configure script adds minimally required -march for assembly support,
409 # if no -march was specified at command line. mips32 and mips64 below
410 # refer to contemporary MIPS Architecture specifications, MIPS32 and
411 # MIPS64, rather than to kernel bitness.
412 "linux-mips32", "gcc:-mabi=32 -O3 -Wall -DBN_DIV3W::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${mips32_asm}:o32:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
413 "linux-mips64",   "gcc:-mabi=n32 -O3 -Wall -DBN_DIV3W::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${mips64_asm}:n32:dlfcn:linux-shared:-fPIC:-mabi=n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::32",
414 "linux64-mips64",   "gcc:-mabi=64 -O3 -Wall -DBN_DIV3W::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${mips64_asm}:64:dlfcn:linux-shared:-fPIC:-mabi=64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
415 #### IA-32 targets...
416 "linux-ia32-icc",       "icc:-DL_ENDIAN -O2::-D_REENTRANT::-ldl -no_cpprt:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-KPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
417 "linux-elf",    "gcc:-DL_ENDIAN -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
418 "linux-aout",   "gcc:-DL_ENDIAN -O3 -fomit-frame-pointer -march=i486 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out",
419 ####
420 "linux-generic64","gcc:-O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
421 "linux-ppc64",  "gcc:-m64 -DB_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${ppc64_asm}:linux64:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
422 "linux-ppc64le","gcc:-m64 -DL_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:$ppc64_asm:linux64le:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::",
423 "linux-ia64",   "gcc:-DL_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_INT:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
424 "linux-ia64-icc","icc:-DL_ENDIAN -O2 -Wall::-D_REENTRANT::-ldl -no_cpprt:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_RISC1 DES_INT:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
425 "linux-x86_64", "gcc:-m64 -DL_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
426 "linux-x86_64-clang",   "clang: -m64 -DL_ENDIAN -O3 -Wall -Wextra $clang_disabled_warnings -Qunused-arguments::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
427 "debug-linux-x86_64-clang",     "clang: -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -m64 -DL_ENDIAN -g -Wall -Wextra $clang_disabled_warnings -Qunused-arguments::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
428 "linux-x86_64-icc", "icc:-DL_ENDIAN -O2::-D_REENTRANT::-ldl -no_cpprt:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
429 "linux-x32",    "gcc:-mx32 -DL_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-mx32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::x32",
430 "linux64-s390x",        "gcc:-m64 -DB_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:${s390x_asm}:64:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
431 #### So called "highgprs" target for z/Architecture CPUs
432 # "Highgprs" is kernel feature first implemented in Linux 2.6.32, see
433 # /proc/cpuinfo. The idea is to preserve most significant bits of
434 # general purpose registers not only upon 32-bit process context
435 # switch, but even on asynchronous signal delivery to such process.
436 # This makes it possible to deploy 64-bit instructions even in legacy
437 # application context and achieve better [or should we say adequate]
438 # performance. The build is binary compatible with linux-generic32,
439 # and the idea is to be able to install the resulting libcrypto.so
440 # alongside generic one, e.g. as /lib/highgprs/libcrypto.so.x.y, for
441 # ldconfig and run-time linker to autodiscover. Unfortunately it
442 # doesn't work just yet, because of couple of bugs in glibc
443 # sysdeps/s390/dl-procinfo.c affecting ldconfig and ld.so.1...
444 "linux32-s390x",        "gcc:-m31 -Wa,-mzarch -DB_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:".eval{my $asm=$s390x_asm;$asm=~s/bn\-s390x\.o/bn_asm.o/;$asm}.":31:dlfcn:linux-shared:-fPIC:-m31:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/highgprs",
445 #### SPARC Linux setups
446 # Ray Miller <ray.miller@computing-services.oxford.ac.uk> has patiently
447 # assisted with debugging of following two configs.
448 "linux-sparcv8","gcc:-mcpu=v8 -DB_ENDIAN -O3 -fomit-frame-pointer -Wall -DBN_DIV2W::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
449 # it's a real mess with -mcpu=ultrasparc option under Linux, but
450 # -Wa,-Av8plus should do the trick no matter what.
451 "linux-sparcv9","gcc:-m32 -mcpu=ultrasparc -DB_ENDIAN -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:linux-shared:-fPIC:-m32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
452 # GCC 3.1 is a requirement
453 "linux64-sparcv9","gcc:-m64 -mcpu=ultrasparc -DB_ENDIAN -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:ULTRASPARC:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
454 #### Alpha Linux with GNU C and Compaq C setups
455 # Special notes:
456 # - linux-alpha+bwx-gcc is ment to be used from ./config only. If you
457 #   ought to run './Configure linux-alpha+bwx-gcc' manually, do
458 #   complement the command line with -mcpu=ev56, -mcpu=ev6 or whatever
459 #   which is appropriate.
460 # - If you use ccc keep in mind that -fast implies -arch host and the
461 #   compiler is free to issue instructions which gonna make elder CPU
462 #   choke. If you wish to build "blended" toolkit, add -arch generic
463 #   *after* -fast and invoke './Configure linux-alpha-ccc' manually.
464 #
465 #                                       <appro@fy.chalmers.se>
466 #
467 "linux-alpha-gcc","gcc:-O3 -DL_ENDIAN::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_RISC1 DES_UNROLL:${alpha_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
468 "linux-alpha+bwx-gcc","gcc:-O3 -DL_ENDIAN::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${alpha_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
469 "linux-alpha-ccc","ccc:-fast -readonly_strings -DL_ENDIAN::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${alpha_asm}",
470 "linux-alpha+bwx-ccc","ccc:-fast -readonly_strings -DL_ENDIAN::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${alpha_asm}",
471
472 # Android: linux-* but without pointers to headers and libs.
473 "android","gcc:-mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
474 "android-x86","gcc:-mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:".eval{my $asm=${x86_elf_asm};$asm=~s/:elf/:android/;$asm}.":dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
475 "android-armv7","gcc:-march=armv7-a -mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${armv4_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
476 "android-mips","gcc:-mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${mips32_asm}:o32:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
477
478 #### *BSD [do see comment about ${BSDthreads} above!]
479 "BSD-generic32","gcc:-O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
480 "BSD-x86",      "gcc:-DL_ENDIAN -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
481 "BSD-x86-elf",  "gcc:-DL_ENDIAN -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
482 "debug-BSD-x86-elf",    "gcc:-DL_ENDIAN -O3 -Wall -g::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
483 "BSD-sparcv8",  "gcc:-DB_ENDIAN -O3 -mcpu=v8 -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${sparcv8_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
484
485 "BSD-generic64","gcc:-O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
486 # -DMD32_REG_T=int doesn't actually belong in sparc64 target, it
487 # simply *happens* to work around a compiler bug in gcc 3.3.3,
488 # triggered by RIPEMD160 code.
489 "BSD-sparc64",  "gcc:-DB_ENDIAN -O3 -DMD32_REG_T=int -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC2 BF_PTR:${sparcv9_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
490 "BSD-ia64",     "gcc:-DL_ENDIAN -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_INT:${ia64_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
491 "BSD-x86_64",   "cc:-DL_ENDIAN -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
492
493 "bsdi-elf-gcc",     "gcc:-DPERL5 -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall::(unknown)::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
494
495 "nextstep",     "cc:-O -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
496 "nextstep3.3",  "cc:-O3 -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
497
498 # NCR MP-RAS UNIX ver 02.03.01
499 "ncr-scde","cc:-O6 -Xa -Hoff=BEHAVED -686 -Hwide -Hiw::(unknown)::-lsocket -lnsl -lc89:${x86_gcc_des} ${x86_gcc_opts}:::",
500
501 # QNX
502 "qnx4", "cc:-DL_ENDIAN -DTERMIO::(unknown):::${x86_gcc_des} ${x86_gcc_opts}:",
503 "QNX6",       "gcc:::::-lsocket::${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
504 "QNX6-i386",  "gcc:-DL_ENDIAN -O2 -Wall::::-lsocket:${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
505
506 # BeOS
507 "beos-x86-r5",   "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -mcpu=pentium -Wall::-D_REENTRANT:BEOS:-lbe -lnet:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:beos:beos-shared:-fPIC -DPIC:-shared:.so",
508 "beos-x86-bone", "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -mcpu=pentium -Wall::-D_REENTRANT:BEOS:-lbe -lbind -lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:beos:beos-shared:-fPIC:-shared:.so",
509
510 #### SCO/Caldera targets.
511 #
512 # Originally we had like unixware-*, unixware-*-pentium, unixware-*-p6, etc.
513 # Now we only have blended unixware-* as it's the only one used by ./config.
514 # If you want to optimize for particular microarchitecture, bypass ./config
515 # and './Configure unixware-7 -Kpentium_pro' or whatever appropriate.
516 # Note that not all targets include assembler support. Mostly because of
517 # lack of motivation to support out-of-date platforms with out-of-date
518 # compiler drivers and assemblers. Tim Rice <tim@multitalents.net> has
519 # patiently assisted to debug most of it.
520 #
521 # UnixWare 2.0x fails destest with -O.
522 "unixware-2.0","cc:-DFILIO_H -DNO_STRINGS_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
523 "unixware-2.1","cc:-O -DFILIO_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
524 "unixware-7","cc:-O -DFILIO_H -Kalloca::-Kthread::-lsocket -lnsl:BN_LLONG MD2_CHAR RC4_INDEX ${x86_gcc_des}:${x86_elf_asm}-1:dlfcn:svr5-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
525 "unixware-7-gcc","gcc:-DL_ENDIAN -DFILIO_H -O3 -fomit-frame-pointer -march=pentium -Wall::-D_REENTRANT::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}-1:dlfcn:gnu-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
526 # SCO 5 - Ben Laurie <ben@algroup.co.uk> says the -O breaks the SCO cc.
527 "sco5-cc",  "cc:-belf::(unknown)::-lsocket -lnsl:${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}-1:dlfcn:svr3-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
528 "sco5-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}-1:dlfcn:svr3-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
529
530 #### IBM's AIX.
531 "aix3-cc",  "cc:-O -DB_ENDIAN -qmaxmem=16384::(unknown):AIX::BN_LLONG RC4_CHAR:::",
532 "aix-gcc",  "gcc:-O -DB_ENDIAN::-pthread:AIX::BN_LLONG RC4_CHAR:${ppc32_asm}:aix32:dlfcn:aix-shared::-shared -Wl,-G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X32",
533 "aix64-gcc","gcc:-maix64 -O -DB_ENDIAN::-pthread:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR:${ppc64_asm}:aix64:dlfcn:aix-shared::-maix64 -shared -Wl,-G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X64",
534 # Below targets assume AIX 5. Idea is to effectively disregard $OBJECT_MODE
535 # at build time. $OBJECT_MODE is respected at ./config stage!
536 "aix-cc",   "cc:-q32 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded -D_THREAD_SAFE:AIX::BN_LLONG RC4_CHAR:${ppc32_asm}:aix32:dlfcn:aix-shared::-q32 -G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 32",
537 "aix64-cc", "cc:-q64 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded -D_THREAD_SAFE:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR:${ppc64_asm}:aix64:dlfcn:aix-shared::-q64 -G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 64",
538
539 #
540 # Cray T90 and similar (SDSC)
541 # It's Big-endian, but the algorithms work properly when B_ENDIAN is NOT
542 # defined.  The T90 ints and longs are 8 bytes long, and apparently the
543 # B_ENDIAN code assumes 4 byte ints.  Fortunately, the non-B_ENDIAN and
544 # non L_ENDIAN code aligns the bytes in each word correctly.
545 #
546 # The BIT_FIELD_LIMITS define is to avoid two fatal compiler errors:
547 #'Taking the address of a bit field is not allowed. '
548 #'An expression with bit field exists as the operand of "sizeof" '
549 # (written by Wayne Schroeder <schroede@SDSC.EDU>)
550 #
551 # j90 is considered the base machine type for unicos machines,
552 # so this configuration is now called "cray-j90" ...
553 "cray-j90", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG DES_INT:::",
554
555 #
556 # Cray T3E (Research Center Juelich, beckman@acl.lanl.gov)
557 #
558 # The BIT_FIELD_LIMITS define was written for the C90 (it seems).  I added
559 # another use.  Basically, the problem is that the T3E uses some bit fields
560 # for some st_addr stuff, and then sizeof and address-of fails
561 # I could not use the ams/alpha.o option because the Cray assembler, 'cam'
562 # did not like it.
563 "cray-t3e", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT:::",
564
565 # DGUX, 88100.
566 "dgux-R3-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown):::RC4_INDEX DES_UNROLL:::",
567 "dgux-R4-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lnsl -lsocket:RC4_INDEX DES_UNROLL:::",
568 "dgux-R4-x86-gcc",      "gcc:-O3 -fomit-frame-pointer -DL_ENDIAN::(unknown)::-lnsl -lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
569
570 # Sinix/ReliantUNIX RM400
571 # NOTE: The CDS++ Compiler up to V2.0Bsomething has the IRIX_CC_BUG optimizer problem. Better use -g  */
572 "ReliantUNIX","cc:-KPIC -g -DTERMIOS -DB_ENDIAN::-Kthread:SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:BN_LLONG DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${no_asm}:dlfcn:reliantunix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
573 "SINIX","cc:-O::(unknown):SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:RC4_INDEX RC4_CHAR:::",
574 "SINIX-N","/usr/ucb/cc:-O2 -misaligned::(unknown)::-lucb:RC4_INDEX RC4_CHAR:::",
575
576 # SIEMENS BS2000/OSD: an EBCDIC-based mainframe
577 "BS2000-OSD","c89:-O -XLLML -XLLMK -XL -DB_ENDIAN -DCHARSET_EBCDIC::(unknown)::-lsocket -lnsl:THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
578
579 # OS/390 Unix an EBCDIC-based Unix system on IBM mainframe
580 # You need to compile using the c89.sh wrapper in the tools directory, because the
581 # IBM compiler does not like the -L switch after any object modules.
582 #
583 "OS390-Unix","c89.sh:-O -DB_ENDIAN -DCHARSET_EBCDIC -DNO_SYS_PARAM_H  -D_ALL_SOURCE::(unknown):::THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
584
585 # Visual C targets
586 #
587 # Win64 targets, WIN64I denotes IA-64 and WIN64A - AMD64
588 "VC-WIN64I","cl:-W3 -Gs0 -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64I::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:ia64cpuid.o:ia64.o ia64-mont.o:::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o:::::::ghash-ia64.o::ias:win32",
589 "VC-WIN64A","cl:-W3 -Gs0 -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64A::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:".eval{my $asm=$x86_64_asm;$asm=~s/x86_64-gcc\.o/bn_asm.o/;$asm}.":auto:win32",
590 "debug-VC-WIN64I","cl:-W3 -Gs0 -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64I::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:ia64cpuid.o:ia64.o:::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o:::::::ghash-ia64.o::ias:win32",
591 "debug-VC-WIN64A","cl:-W3 -Gs0 -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64A::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:".eval{my $asm=$x86_64_asm;$asm=~s/x86_64-gcc\.o/bn_asm.o/;$asm}.":auto:win32",
592 # x86 Win32 target defaults to ANSI API, if you want UNICODE, complement
593 # 'perl Configure VC-WIN32' with '-DUNICODE -D_UNICODE'
594 "VC-WIN32","cl:-W3 -Gs0 -GF -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -D_CRT_SECURE_NO_DEPRECATE:::WIN32::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${x86_asm}:win32n:win32",
595 # Unified CE target
596 "debug-VC-WIN32","cl:-W3 -Gs0 -GF -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -D_CRT_SECURE_NO_DEPRECATE:::WIN32::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${x86_asm}:win32n:win32",
597 "VC-CE","cl::::WINCE::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
598
599 # Borland C++ 4.5
600 "BC-32","bcc32::::WIN32::BN_LLONG DES_PTR RC4_INDEX EXPORT_VAR_AS_FN:${no_asm}:win32",
601
602 # MinGW
603 "mingw", "gcc:-mno-cygwin -DL_ENDIAN -DWIN32_LEAN_AND_MEAN -fomit-frame-pointer -O3 -march=i486 -Wall::-D_MT:MINGW32:-lws2_32 -lgdi32 -lcrypt32:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts} EXPORT_VAR_AS_FN:${x86_asm}:coff:win32:cygwin-shared:-D_WINDLL -DOPENSSL_USE_APPLINK:-mno-cygwin:.dll.a",
604 # As for OPENSSL_USE_APPLINK. Applink makes it possible to use .dll
605 # compiled with one compiler with application compiled with another
606 # compiler. It's possible to engage Applink support in mingw64 build,
607 # but it's not done, because till mingw64 supports structured exception
608 # handling, one can't seriously consider its binaries for using with
609 # non-mingw64 run-time environment. And as mingw64 is always consistent
610 # with itself, Applink is never engaged and can as well be omitted.
611 "mingw64", "gcc:-mno-cygwin -DL_ENDIAN -O3 -Wall -DWIN32_LEAN_AND_MEAN -DUNICODE -D_UNICODE::-D_MT:MINGW64:-lws2_32 -lgdi32 -lcrypt32:SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:${x86_64_asm}:mingw64:win32:cygwin-shared:-D_WINDLL:-mno-cygwin:.dll.a",
612
613 # UWIN 
614 "UWIN", "cc:-DTERMIOS -DL_ENDIAN -O -Wall:::UWIN::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
615
616 # Cygwin
617 "Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall:::CYGWIN::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:coff:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
618 "Cygwin-x86_64", "gcc:-DTERMIOS -DL_ENDIAN -O3 -Wall:::CYGWIN::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:mingw64:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
619
620 # NetWare from David Ward (dsward@novell.com)
621 # requires either MetroWerks NLM development tools, or gcc / nlmconv
622 # NetWare defaults socket bio to WinSock sockets. However,
623 # the builds can be configured to use BSD sockets instead.
624 # netware-clib => legacy CLib c-runtime support
625 "netware-clib", "mwccnlm::::::${x86_gcc_opts}::",
626 "netware-clib-bsdsock", "mwccnlm::::::${x86_gcc_opts}::",
627 "netware-clib-gcc", "i586-netware-gcc:-nostdinc -I/ndk/nwsdk/include/nlm -I/ndk/ws295sdk/include -DL_ENDIAN -DNETWARE_CLIB -DOPENSSL_SYSNAME_NETWARE -O2 -Wall:::::${x86_gcc_opts}::",
628 "netware-clib-bsdsock-gcc", "i586-netware-gcc:-nostdinc -I/ndk/nwsdk/include/nlm -DNETWARE_BSDSOCK -DNETDB_USE_INTERNET -DL_ENDIAN -DNETWARE_CLIB -DOPENSSL_SYSNAME_NETWARE -O2 -Wall:::::${x86_gcc_opts}::",
629 # netware-libc => LibC/NKS support
630 "netware-libc", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
631 "netware-libc-bsdsock", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
632 "netware-libc-gcc", "i586-netware-gcc:-nostdinc -I/ndk/libc/include -I/ndk/libc/include/winsock -DL_ENDIAN -DNETWARE_LIBC -DOPENSSL_SYSNAME_NETWARE -DTERMIO -O2 -Wall:::::BN_LLONG ${x86_gcc_opts}::",
633 "netware-libc-bsdsock-gcc", "i586-netware-gcc:-nostdinc -I/ndk/libc/include -DNETWARE_BSDSOCK -DL_ENDIAN -DNETWARE_LIBC -DOPENSSL_SYSNAME_NETWARE -DTERMIO -O2 -Wall:::::BN_LLONG ${x86_gcc_opts}::",
634
635 # DJGPP
636 "DJGPP", "gcc:-I/dev/env/WATT_ROOT/inc -DTERMIO -DL_ENDIAN -fomit-frame-pointer -O2 -Wall:::MSDOS:-L/dev/env/WATT_ROOT/lib -lwatt:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out:",
637
638 # Ultrix from Bernhard Simon <simon@zid.tuwien.ac.at>
639 "ultrix-cc","cc:-std1 -O -Olimit 2500 -DL_ENDIAN::(unknown):::::::",
640 "ultrix-gcc","gcc:-O3 -DL_ENDIAN::(unknown):::BN_LLONG::::",
641 # K&R C is no longer supported; you need gcc on old Ultrix installations
642 ##"ultrix","cc:-O2 -DNOPROTO -DNOCONST -DL_ENDIAN::(unknown):::::::",
643
644 ##### MacOS X (a.k.a. Rhapsody or Darwin) setup
645 "rhapsody-ppc-cc","cc:-O3 -DB_ENDIAN::(unknown):MACOSX_RHAPSODY::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}::",
646 "darwin-ppc-cc","cc:-arch ppc -O3 -DB_ENDIAN -Wa,-force_cpusubtype_ALL::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc32_asm}:osx32:dlfcn:darwin-shared:-fPIC -fno-common:-arch ppc -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
647 "darwin64-ppc-cc","cc:-arch ppc64 -O3 -DB_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc64_asm}:osx64:dlfcn:darwin-shared:-fPIC -fno-common:-arch ppc64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
648 "darwin-i386-cc","cc:-arch i386 -O3 -fomit-frame-pointer -DL_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_INT RC4_CHUNK DES_UNROLL BF_PTR:".eval{my $asm=$x86_asm;$asm=~s/cast\-586\.o//;$asm}.":macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch i386 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
649 "debug-darwin-i386-cc","cc:-arch i386 -g3 -DL_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_INT RC4_CHUNK DES_UNROLL BF_PTR:${x86_asm}:macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch i386 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
650 "darwin64-x86_64-cc","cc:-arch x86_64 -O3 -DL_ENDIAN -Wall::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:".eval{my $asm=$x86_64_asm;$asm=~s/rc4\-[^:]+//;$asm}.":macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch x86_64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
651 "debug-darwin64-x86_64-cc","cc:-arch x86_64 -ggdb -g2 -O0 -DL_ENDIAN -Wall::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:".eval{my $asm=$x86_64_asm;$asm=~s/rc4\-[^:]+//;$asm}.":macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch x86_64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
652 "debug-darwin-ppc-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DB_ENDIAN -g -Wall -O::-D_REENTRANT:MACOSX::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc32_asm}:osx32:dlfcn:darwin-shared:-fPIC:-dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
653 # iPhoneOS/iOS
654 "iphoneos-cross","llvm-gcc:-O3 -isysroot \$(CROSS_TOP)/SDKs/\$(CROSS_SDK) -fomit-frame-pointer -fno-common::-D_REENTRANT:iOS:-Wl,-search_paths_first%:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:darwin-shared:-fPIC -fno-common:-dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
655
656 ##### A/UX
657 "aux3-gcc","gcc:-O2 -DTERMIO::(unknown):AUX:-lbsd:RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
658
659 ##### Sony NEWS-OS 4.x
660 "newsos4-gcc","gcc:-O -DB_ENDIAN::(unknown):NEWS4:-lmld -liberty:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::",
661
662 ##### GNU Hurd
663 "hurd-x86",  "gcc:-DL_ENDIAN -O3 -fomit-frame-pointer -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC",
664
665 ##### OS/2 EMX
666 "OS2-EMX", "gcc::::::::",
667
668 ##### VxWorks for various targets
669 "vxworks-ppc60x","ccppc:-D_REENTRANT -mrtp -mhard-float -mstrict-align -fno-implicit-fp -DPPC32_fp60x -O2 -fstrength-reduce -fno-builtin -fno-strict-aliasing -Wall -DCPU=PPC32 -DTOOL_FAMILY=gnu -DTOOL=gnu -I\$(WIND_BASE)/target/usr/h -I\$(WIND_BASE)/target/usr/h/wrn/coreip:::VXWORKS:-Wl,--defsym,__wrs_rtp_base=0xe0000000 -L \$(WIND_BASE)/target/usr/lib/ppc/PPC32/common:::::",
670 "vxworks-ppcgen","ccppc:-D_REENTRANT -mrtp -msoft-float -mstrict-align -O1 -fno-builtin -fno-strict-aliasing -Wall -DCPU=PPC32 -DTOOL_FAMILY=gnu -DTOOL=gnu -I\$(WIND_BASE)/target/usr/h -I\$(WIND_BASE)/target/usr/h/wrn/coreip:::VXWORKS:-Wl,--defsym,__wrs_rtp_base=0xe0000000 -L \$(WIND_BASE)/target/usr/lib/ppc/PPC32/sfcommon:::::",
671 "vxworks-ppc405","ccppc:-g -msoft-float -mlongcall -DCPU=PPC405 -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
672 "vxworks-ppc750","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h \$(DEBUG_FLAG):::VXWORKS:-r:::::",
673 "vxworks-ppc750-debug","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DDEBUG -g:::VXWORKS:-r:::::",
674 "vxworks-ppc860","ccppc:-nostdinc -msoft-float -DCPU=PPC860 -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
675 "vxworks-simlinux","ccpentium:-B\$(WIND_BASE)/host/\$(WIND_HOST_TYPE)/lib/gcc-lib/ -D_VSB_CONFIG_FILE=\"\$(WIND_BASE)/target/lib/h/config/vsbConfig.h\" -DL_ENDIAN -DCPU=SIMLINUX -DTOOL_FAMILY=gnu -DTOOL=gnu -fno-builtin -fno-defer-pop -DNO_STRINGS_H -I\$(WIND_BASE)/target/h -I\$(WIND_BASE)/target/h/wrn/coreip -DOPENSSL_NO_HW_PADLOCK:::VXWORKS:-r::${no_asm}::::::ranlibpentium:",
676 "vxworks-mips","ccmips:-mrtp -mips2 -O -G 0 -B\$(WIND_BASE)/host/\$(WIND_HOST_TYPE)/lib/gcc-lib/ -D_VSB_CONFIG_FILE=\"\$(WIND_BASE)/target/lib/h/config/vsbConfig.h\" -DCPU=MIPS32 -msoft-float -mno-branch-likely -DTOOL_FAMILY=gnu -DTOOL=gnu -fno-builtin -fno-defer-pop -DNO_STRINGS_H -I\$(WIND_BASE)/target/usr/h -I\$(WIND_BASE)/target/h/wrn/coreip::-D_REENTRANT:VXWORKS:-Wl,--defsym,__wrs_rtp_base=0xe0000000 -L \$(WIND_BASE)/target/usr/lib/mips/MIPSI32/sfcommon::${mips32_asm}:o32::::::ranlibmips:",
677
678 ##### Compaq Non-Stop Kernel (Tandem)
679 "tandem-c89","c89:-Ww -D__TANDEM -D_XOPEN_SOURCE -D_XOPEN_SOURCE_EXTENDED=1 -D_TANDEM_SOURCE -DB_ENDIAN::(unknown):::THIRTY_TWO_BIT:::",
680
681 # uClinux
682 "uClinux-dist","$ENV{'CC'}:\$(CFLAGS)::-D_REENTRANT::\$(LDFLAGS) \$(LDLIBS):BN_LLONG:${no_asm}:$ENV{'LIBSSL_dlfcn'}:linux-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):$ENV{'RANLIB'}::",
683 "uClinux-dist64","$ENV{'CC'}:\$(CFLAGS)::-D_REENTRANT::\$(LDFLAGS) \$(LDLIBS):SIXTY_FOUR_BIT_LONG:${no_asm}:$ENV{'LIBSSL_dlfcn'}:linux-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):$ENV{'RANLIB'}::",
684
685 );
686
687 my @MK1MF_Builds=qw(VC-WIN64I VC-WIN64A
688                     debug-VC-WIN64I debug-VC-WIN64A
689                     VC-NT VC-CE VC-WIN32 debug-VC-WIN32
690                     BC-32 
691                     netware-clib netware-clib-bsdsock
692                     netware-libc netware-libc-bsdsock);
693
694 my $idx = 0;
695 my $idx_cc = $idx++;
696 my $idx_cflags = $idx++;
697 my $idx_unistd = $idx++;
698 my $idx_thread_cflag = $idx++;
699 my $idx_sys_id = $idx++;
700 my $idx_lflags = $idx++;
701 my $idx_bn_ops = $idx++;
702 my $idx_cpuid_obj = $idx++;
703 my $idx_bn_obj = $idx++;
704 my $idx_ec_obj = $idx++;
705 my $idx_des_obj = $idx++;
706 my $idx_aes_obj = $idx++;
707 my $idx_bf_obj = $idx++;
708 my $idx_md5_obj = $idx++;
709 my $idx_sha1_obj = $idx++;
710 my $idx_cast_obj = $idx++;
711 my $idx_rc4_obj = $idx++;
712 my $idx_rmd160_obj = $idx++;
713 my $idx_rc5_obj = $idx++;
714 my $idx_wp_obj = $idx++;
715 my $idx_cmll_obj = $idx++;
716 my $idx_modes_obj = $idx++;
717 my $idx_engines_obj = $idx++;
718 my $idx_perlasm_scheme = $idx++;
719 my $idx_dso_scheme = $idx++;
720 my $idx_shared_target = $idx++;
721 my $idx_shared_cflag = $idx++;
722 my $idx_shared_ldflag = $idx++;
723 my $idx_shared_extension = $idx++;
724 my $idx_ranlib = $idx++;
725 my $idx_arflags = $idx++;
726 my $idx_multilib = $idx++;
727
728 my $prefix="";
729 my $libdir="";
730 my $openssldir="";
731 my $exe_ext="";
732 my $install_prefix= "$ENV{'INSTALL_PREFIX'}";
733 my $cross_compile_prefix="";
734 my $fipsdir="/usr/local/ssl/fips-2.0";
735 my $fipslibdir="";
736 my $baseaddr="0xFB00000";
737 my $no_threads=0;
738 my $threads=0;
739 my $no_shared=0; # but "no-shared" is default
740 my $zlib=1;      # but "no-zlib" is default
741 my $no_krb5=0;   # but "no-krb5" is implied unless "--with-krb5-..." is used
742 my $no_rfc3779=1; # but "no-rfc3779" is default
743 my $no_asm=0;
744 my $no_dso=0;
745 my $no_gmp=0;
746 my @skip=();
747 my $Makefile="Makefile";
748 my $des_locl="crypto/des/des_locl.h";
749 my $des ="crypto/des/des.h";
750 my $bn  ="crypto/bn/bn.h";
751 my $md2 ="crypto/md2/md2.h";
752 my $rc4 ="crypto/rc4/rc4.h";
753 my $rc4_locl="crypto/rc4/rc4_locl.h";
754 my $idea        ="crypto/idea/idea.h";
755 my $rc2 ="crypto/rc2/rc2.h";
756 my $bf  ="crypto/bf/bf_locl.h";
757 my $bn_asm      ="bn_asm.o";
758 my $des_enc="des_enc.o fcrypt_b.o";
759 my $aes_enc="aes_core.o aes_cbc.o";
760 my $bf_enc      ="bf_enc.o";
761 my $cast_enc="c_enc.o";
762 my $rc4_enc="rc4_enc.o rc4_skey.o";
763 my $rc5_enc="rc5_enc.o";
764 my $md5_obj="";
765 my $sha1_obj="";
766 my $rmd160_obj="";
767 my $cmll_enc="camellia.o cmll_misc.o cmll_cbc.o";
768 my $processor="";
769 my $default_ranlib;
770 my $perl;
771 my $fips=0;
772
773 if (exists $ENV{FIPSDIR})
774         {
775         $fipsdir = $ENV{FIPSDIR};
776         $fipsdir =~ s/\/$//;
777         }
778
779 # All of the following is disabled by default (RC5 was enabled before 0.9.8):
780
781 my %disabled = ( # "what"         => "comment" [or special keyword "experimental"]
782                  "ec_nistp_64_gcc_128" => "default",
783                  "gmp"            => "default",
784                  "jpake"          => "experimental",
785                  "libunbound"     => "experimental",
786                  "md2"            => "default",
787                  "rc5"            => "default",
788                  "rfc3779"        => "default",
789                  "sctp"           => "default",
790                  "shared"         => "default",
791                  "ssl-trace"      => "default",
792                  "ssl2"           => "default",
793                  "store"          => "experimental",
794                  "unit-test"      => "default",
795                  "weak-ssl-ciphers" => "default",
796                  "zlib"           => "default",
797                  "zlib-dynamic"   => "default"
798                );
799 my @experimental = ();
800
801 # This is what $depflags will look like with the above defaults
802 # (we need this to see if we should advise the user to run "make depend"):
803 my $default_depflags = " -DOPENSSL_NO_EC_NISTP_64_GCC_128 -DOPENSSL_NO_GMP -DOPENSSL_NO_JPAKE -DOPENSSL_NO_LIBUNBOUND -DOPENSSL_NO_MD2 -DOPENSSL_NO_RC5 -DOPENSSL_NO_RFC3779 -DOPENSSL_NO_SCTP -DOPENSSL_NO_SSL_TRACE -DOPENSSL_NO_SSL2 -DOPENSSL_NO_STORE -DOPENSSL_NO_UNIT_TEST -DOPENSSL_NO_WEAK_SSL_CIPHERS";
804
805 # Explicit "no-..." options will be collected in %disabled along with the defaults.
806 # To remove something from %disabled, use "enable-foo" (unless it's experimental).
807 # For symmetry, "disable-foo" is a synonym for "no-foo".
808
809 # For features called "experimental" here, a more explicit "experimental-foo" is needed to enable.
810 # We will collect such requests in @experimental.
811 # To avoid accidental use of experimental features, applications will have to use -DOPENSSL_EXPERIMENTAL_FOO.
812
813
814 my $no_sse2=0;
815
816 &usage if ($#ARGV < 0);
817
818 my $flags;
819 my $depflags;
820 my $openssl_experimental_defines;
821 my $openssl_algorithm_defines;
822 my $openssl_thread_defines;
823 my $openssl_sys_defines="";
824 my $openssl_other_defines;
825 my $libs;
826 my $libkrb5="";
827 my $target;
828 my $options;
829 my $symlink;
830 my $make_depend=0;
831 my %withargs=();
832
833 my @argvcopy=@ARGV;
834 my $argvstring="";
835 my $argv_unprocessed=1;
836
837 while($argv_unprocessed)
838         {
839         $flags="";
840         $depflags="";
841         $openssl_experimental_defines="";
842         $openssl_algorithm_defines="";
843         $openssl_thread_defines="";
844         $openssl_sys_defines="";
845         $openssl_other_defines="";
846         $libs="";
847         $target="";
848         $options="";
849         $symlink=1;
850
851         $argv_unprocessed=0;
852         $argvstring=join(' ',@argvcopy);
853
854 PROCESS_ARGS:
855         foreach (@argvcopy)
856                 {
857                 s /^-no-/no-/; # some people just can't read the instructions
858
859                 # rewrite some options in "enable-..." form
860                 s /^-?-?shared$/enable-shared/;
861                 s /^sctp$/enable-sctp/;
862                 s /^threads$/enable-threads/;
863                 s /^zlib$/enable-zlib/;
864                 s /^zlib-dynamic$/enable-zlib-dynamic/;
865
866                 if (/^no-(.+)$/ || /^disable-(.+)$/)
867                         {
868                         if (!($disabled{$1} eq "experimental"))
869                                 {
870                                 if ($1 eq "ssl")
871                                         {
872                                         $disabled{"ssl2"} = "option(ssl)";
873                                         $disabled{"ssl3"} = "option(ssl)";
874                                         }
875                                 elsif ($1 eq "tls")
876                                         {
877                                         $disabled{"tls1"} = "option(tls)"
878                                         }
879                                 elsif ($1 eq "ssl3-method")
880                                         {
881                                         $disabled{"ssl3-method"} = "option(ssl)";
882                                         $disabled{"ssl3"} = "option(ssl)";
883                                         }
884                                 else
885                                         {
886                                         $disabled{$1} = "option";
887                                         }
888                                 }                       
889                         }
890                 elsif (/^enable-(.+)$/ || /^experimental-(.+)$/)
891                         {
892                         my $algo = $1;
893                         if ($disabled{$algo} eq "experimental")
894                                 {
895                                 die "You are requesting an experimental feature; please say 'experimental-$algo' if you are sure\n"
896                                         unless (/^experimental-/);
897                                 push @experimental, $algo;
898                                 }
899                         delete $disabled{$algo};
900
901                         $threads = 1 if ($algo eq "threads");
902                         }
903                 elsif (/^--test-sanity$/)
904                         {
905                         exit(&test_sanity());
906                         }
907                 elsif (/^--strict-warnings/)
908                         {
909                         $strict_warnings = 1;
910                         }
911                 elsif (/^reconfigure/ || /^reconf/)
912                         {
913                         if (open(IN,"<$Makefile"))
914                                 {
915                                 while (<IN>)
916                                         {
917                                         chomp;
918                                         if (/^CONFIGURE_ARGS=(.*)/)
919                                                 {
920                                                 $argvstring=$1;
921                                                 @argvcopy=split(' ',$argvstring);
922                                                 die "Incorrect data to reconfigure, please do a normal configuration\n"
923                                                         if (grep(/^reconf/,@argvcopy));
924                                                 print "Reconfiguring with: $argvstring\n";
925                                                 $argv_unprocessed=1;
926                                                 close(IN);
927                                                 last PROCESS_ARGS;
928                                                 }
929                                         }
930                                 close(IN);
931                                 }
932                         die "Insufficient data to reconfigure, please do a normal configuration\n";
933                         }
934                 elsif (/^386$/)
935                         { $processor=386; }
936                 elsif (/^fips$/)
937                         {
938                         $fips=1;
939                         }
940                 elsif (/^rsaref$/)
941                         {
942                         # No RSAref support any more since it's not needed.
943                         # The check for the option is there so scripts aren't
944                         # broken
945                         }
946                 elsif (/^[-+]/)
947                         {
948                         if (/^--prefix=(.*)$/)
949                                 {
950                                 $prefix=$1;
951                                 }
952                         elsif (/^--libdir=(.*)$/)
953                                 {
954                                 $libdir=$1;
955                                 }
956                         elsif (/^--openssldir=(.*)$/)
957                                 {
958                                 $openssldir=$1;
959                                 }
960                         elsif (/^--install.prefix=(.*)$/)
961                                 {
962                                 $install_prefix=$1;
963                                 }
964                         elsif (/^--with-krb5-(dir|lib|include|flavor)=(.*)$/)
965                                 {
966                                 $withargs{"krb5-".$1}=$2;
967                                 }
968                         elsif (/^--with-zlib-lib=(.*)$/)
969                                 {
970                                 $withargs{"zlib-lib"}=$1;
971                                 }
972                         elsif (/^--with-zlib-include=(.*)$/)
973                                 {
974                                 $withargs{"zlib-include"}="-I$1";
975                                 }
976                         elsif (/^--with-fipsdir=(.*)$/)
977                                 {
978                                 $fipsdir="$1";
979                                 }
980                         elsif (/^--with-fipslibdir=(.*)$/)
981                                 {
982                                 $fipslibdir="$1";
983                                 }
984                         elsif (/^--with-baseaddr=(.*)$/)
985                                 {
986                                 $baseaddr="$1";
987                                 }
988                         elsif (/^--cross-compile-prefix=(.*)$/)
989                                 {
990                                 $cross_compile_prefix=$1;
991                                 }
992                         elsif (/^-[lL](.*)$/ or /^-Wl,/)
993                                 {
994                                 $libs.=$_." ";
995                                 }
996                         else    # common if (/^[-+]/), just pass down...
997                                 {
998                                 $_ =~ s/%([0-9a-f]{1,2})/chr(hex($1))/gei;
999                                 $flags.=$_." ";
1000                                 }
1001                         }
1002                 elsif ($_ =~ /^([^:]+):(.+)$/)
1003                         {
1004                         eval "\$table{\$1} = \"$2\""; # allow $xxx constructs in the string
1005                         $target=$1;
1006                         }
1007                 else
1008                         {
1009                         die "target already defined - $target (offending arg: $_)\n" if ($target ne "");
1010                         $target=$_;
1011                         }
1012
1013                 unless ($_ eq $target || /^no-/ || /^disable-/)
1014                         {
1015                         # "no-..." follows later after implied disactivations
1016                         # have been derived.  (Don't take this too seroiusly,
1017                         # we really only write OPTIONS to the Makefile out of
1018                         # nostalgia.)
1019
1020                         if ($options eq "")
1021                                 { $options = $_; }
1022                         else
1023                                 { $options .= " ".$_; }
1024                         }
1025                 }
1026         }
1027
1028
1029
1030 if ($processor eq "386")
1031         {
1032         $disabled{"sse2"} = "forced";
1033         }
1034
1035 if (!defined($withargs{"krb5-flavor"}) || $withargs{"krb5-flavor"} eq "")
1036         {
1037         $disabled{"krb5"} = "krb5-flavor not specified";
1038         }
1039
1040 if (!defined($disabled{"zlib-dynamic"}))
1041         {
1042         # "zlib-dynamic" was specifically enabled, so enable "zlib"
1043         delete $disabled{"zlib"};
1044         }
1045
1046 if (defined($disabled{"rijndael"}))
1047         {
1048         $disabled{"aes"} = "forced";
1049         }
1050 if (defined($disabled{"des"}))
1051         {
1052         $disabled{"mdc2"} = "forced";
1053         }
1054 if (defined($disabled{"ec"}))
1055         {
1056         $disabled{"ecdsa"} = "forced";
1057         $disabled{"ecdh"} = "forced";
1058         }
1059
1060 # SSL 2.0 requires MD5 and RSA
1061 if (defined($disabled{"md5"}) || defined($disabled{"rsa"}))
1062         {
1063         $disabled{"ssl2"} = "forced";
1064         }
1065
1066 if ($fips && $fipslibdir eq "")
1067         {
1068         $fipslibdir = $fipsdir . "/lib/";
1069         }
1070
1071 # RSAX ENGINE sets default non-FIPS RSA method.
1072 if ($fips)
1073         {
1074         $disabled{"rsax"} = "forced";
1075         }
1076
1077 # SSL 3.0 and TLS requires MD5 and SHA and either RSA or DSA+DH
1078 if (defined($disabled{"md5"}) || defined($disabled{"sha"})
1079     || (defined($disabled{"rsa"})
1080         && (defined($disabled{"dsa"}) || defined($disabled{"dh"}))))
1081         {
1082         $disabled{"ssl3"} = "forced";
1083         $disabled{"tls1"} = "forced";
1084         }
1085
1086 if (defined($disabled{"ec"}) || defined($disabled{"dsa"})
1087     || defined($disabled{"dh"}))
1088         {
1089         $disabled{"gost"} = "forced";
1090         }
1091
1092 # SRP and HEARTBEATS require TLSEXT
1093 if (defined($disabled{"tlsext"}))
1094         {
1095         $disabled{"srp"} = "forced";
1096         $disabled{"heartbeats"} = "forced";
1097         }
1098
1099 if ($target eq "TABLE") {
1100         foreach $target (sort keys %table) {
1101                 print_table_entry($target);
1102         }
1103         exit 0;
1104 }
1105
1106 if ($target eq "LIST") {
1107         foreach (sort keys %table) {
1108                 print;
1109                 print "\n";
1110         }
1111         exit 0;
1112 }
1113
1114 if ($target =~ m/^CygWin32(-.*)$/) {
1115         $target = "Cygwin".$1;
1116 }
1117
1118 print "Configuring for $target\n";
1119
1120 &usage if (!defined($table{$target}));
1121
1122
1123 foreach (sort (keys %disabled))
1124         {
1125         $options .= " no-$_";
1126
1127         printf "    no-%-12s %-10s", $_, "[$disabled{$_}]";
1128
1129         if (/^dso$/)
1130                 { $no_dso = 1; }
1131         elsif (/^threads$/)
1132                 { $no_threads = 1; }
1133         elsif (/^shared$/)
1134                 { $no_shared = 1; }
1135         elsif (/^zlib$/)
1136                 { $zlib = 0; }
1137         elsif (/^static-engine$/)
1138                 { }
1139         elsif (/^zlib-dynamic$/)
1140                 { }
1141         elsif (/^symlinks$/)
1142                 { $symlink = 0; }
1143         elsif (/^sse2$/)
1144                 { $no_sse2 = 1; }
1145         else
1146                 {
1147                 my ($ALGO, $algo);
1148                 ($ALGO = $algo = $_) =~ tr/[\-a-z]/[_A-Z]/;
1149
1150                 if (/^asm$/ || /^err$/ || /^hw$/ || /^hw-/)
1151                         {
1152                         $openssl_other_defines .= "#define OPENSSL_NO_$ALGO\n";
1153                         print " OPENSSL_NO_$ALGO";
1154                 
1155                         if (/^err$/)    { $flags .= "-DOPENSSL_NO_ERR "; }
1156                         elsif (/^asm$/) { $no_asm = 1; }
1157                         }
1158                 else
1159                         {
1160                         $openssl_algorithm_defines .= "#define OPENSSL_NO_$ALGO\n";
1161                         print " OPENSSL_NO_$ALGO";
1162
1163                         if (/^krb5$/)
1164                                 { $no_krb5 = 1; }
1165                         else
1166                                 {
1167                                 push @skip, $algo;
1168                                 # fix-up crypto/directory name(s)
1169                                 @skip[$#skip]="whrlpool" if $algo eq "whirlpool";
1170                                 print " (skip dir)";
1171
1172                                 $depflags .= " -DOPENSSL_NO_$ALGO";
1173                                 }
1174                         }
1175                 }
1176
1177         print "\n";
1178         }
1179
1180 my $exp_cflags = "";
1181 foreach (sort @experimental)
1182         {
1183         my $ALGO;
1184         ($ALGO = $_) =~ tr/[a-z]/[A-Z]/;
1185
1186         # opensslconf.h will set OPENSSL_NO_... unless OPENSSL_EXPERIMENTAL_... is defined
1187         $openssl_experimental_defines .= "#define OPENSSL_NO_$ALGO\n";
1188         $exp_cflags .= " -DOPENSSL_EXPERIMENTAL_$ALGO";
1189         }
1190
1191 my $IsMK1MF=scalar grep /^$target$/,@MK1MF_Builds;
1192
1193 $exe_ext=".exe" if ($target eq "Cygwin" || $target eq "DJGPP" || $target =~ /^mingw/);
1194 $exe_ext=".nlm" if ($target =~ /netware/);
1195 $exe_ext=".pm"  if ($target =~ /vos/);
1196 $openssldir="/usr/local/ssl" if ($openssldir eq "" and $prefix eq "");
1197 $prefix=$openssldir if $prefix eq "";
1198
1199 $default_ranlib= &which("ranlib") or $default_ranlib="true";
1200 $perl=$ENV{'PERL'} or $perl=&which("perl5") or $perl=&which("perl")
1201   or $perl="perl";
1202 my $make = $ENV{'MAKE'} || "make";
1203
1204 $cross_compile_prefix=$ENV{'CROSS_COMPILE'} if $cross_compile_prefix eq "";
1205
1206 chop $openssldir if $openssldir =~ /\/$/;
1207 chop $prefix if $prefix =~ /.\/$/;
1208
1209 $openssldir=$prefix . "/ssl" if $openssldir eq "";
1210 $openssldir=$prefix . "/" . $openssldir if $openssldir !~ /(^\/|^[a-zA-Z]:[\\\/])/;
1211
1212
1213 print "IsMK1MF=$IsMK1MF\n";
1214
1215 my @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
1216 my $cc = $fields[$idx_cc];
1217 # Allow environment CC to override compiler...
1218 if($ENV{CC}) {
1219     $cc = $ENV{CC};
1220 }
1221
1222 my $cflags = $fields[$idx_cflags];
1223 my $unistd = $fields[$idx_unistd];
1224 my $thread_cflag = $fields[$idx_thread_cflag];
1225 my $sys_id = $fields[$idx_sys_id];
1226 my $lflags = $fields[$idx_lflags];
1227 my $bn_ops = $fields[$idx_bn_ops];
1228 my $cpuid_obj = $fields[$idx_cpuid_obj];
1229 my $bn_obj = $fields[$idx_bn_obj];
1230 my $ec_obj = $fields[$idx_ec_obj];
1231 my $des_obj = $fields[$idx_des_obj];
1232 my $aes_obj = $fields[$idx_aes_obj];
1233 my $bf_obj = $fields[$idx_bf_obj];
1234 my $md5_obj = $fields[$idx_md5_obj];
1235 my $sha1_obj = $fields[$idx_sha1_obj];
1236 my $cast_obj = $fields[$idx_cast_obj];
1237 my $rc4_obj = $fields[$idx_rc4_obj];
1238 my $rmd160_obj = $fields[$idx_rmd160_obj];
1239 my $rc5_obj = $fields[$idx_rc5_obj];
1240 my $wp_obj = $fields[$idx_wp_obj];
1241 my $cmll_obj = $fields[$idx_cmll_obj];
1242 my $modes_obj = $fields[$idx_modes_obj];
1243 my $engines_obj = $fields[$idx_engines_obj];
1244 my $perlasm_scheme = $fields[$idx_perlasm_scheme];
1245 my $dso_scheme = $fields[$idx_dso_scheme];
1246 my $shared_target = $fields[$idx_shared_target];
1247 my $shared_cflag = $fields[$idx_shared_cflag];
1248 my $shared_ldflag = $fields[$idx_shared_ldflag];
1249 my $shared_extension = $fields[$idx_shared_extension];
1250 my $ranlib = $ENV{'RANLIB'} || $fields[$idx_ranlib];
1251 my $ar = $ENV{'AR'} || "ar";
1252 my $arflags = $fields[$idx_arflags];
1253 my $windres = $ENV{'RC'} || $ENV{'WINDRES'} || "windres";
1254 my $multilib = $fields[$idx_multilib];
1255
1256 # if $prefix/lib$multilib is not an existing directory, then
1257 # assume that it's not searched by linker automatically, in
1258 # which case adding $multilib suffix causes more grief than
1259 # we're ready to tolerate, so don't...
1260 $multilib="" if !-d "$prefix/lib$multilib";
1261
1262 $libdir="lib$multilib" if $libdir eq "";
1263
1264 $cflags = "$cflags$exp_cflags";
1265
1266 # '%' in $lflags is used to split flags to "pre-" and post-flags
1267 my ($prelflags,$postlflags)=split('%',$lflags);
1268 if (defined($postlflags))       { $lflags=$postlflags;  }
1269 else                            { $lflags=$prelflags; undef $prelflags; }
1270
1271 if ($target =~ /^mingw/ && `$cc --target-help 2>&1` !~ m/\-mno\-cygwin/m)
1272         {
1273         $cflags =~ s/\-mno\-cygwin\s*//;
1274         $shared_ldflag =~ s/\-mno\-cygwin\s*//;
1275         }
1276
1277 if ($target =~ /linux.*\-mips/ && !$no_asm && $flags !~ /\-m(ips|arch=)/) {
1278         # minimally required architecture flags for assembly modules
1279         $cflags="-mips2 $cflags" if ($target =~ /mips32/);
1280         $cflags="-mips3 $cflags" if ($target =~ /mips64/);
1281 }
1282
1283 my $no_shared_warn=0;
1284 my $no_user_cflags=0;
1285
1286 if ($flags ne "")       { $cflags="$flags$cflags"; }
1287 else                    { $no_user_cflags=1;       }
1288
1289 # Kerberos settings.  The flavor must be provided from outside, either through
1290 # the script "config" or manually.
1291 if (!$no_krb5)
1292         {
1293         my ($lresolv, $lpath, $lext);
1294         if ($withargs{"krb5-flavor"} =~ /^[Hh]eimdal$/)
1295                 {
1296                 die "Sorry, Heimdal is currently not supported\n";
1297                 }
1298         ##### HACK to force use of Heimdal.
1299         ##### WARNING: Since we don't really have adequate support for Heimdal,
1300         #####          using this will break the build.  You'll have to make
1301         #####          changes to the source, and if you do, please send
1302         #####          patches to openssl-dev@openssl.org
1303         if ($withargs{"krb5-flavor"} =~ /^force-[Hh]eimdal$/)
1304                 {
1305                 warn "Heimdal isn't really supported.  Your build WILL break\n";
1306                 warn "If you fix the problems, please send a patch to openssl-dev\@openssl.org\n";
1307                 $withargs{"krb5-dir"} = "/usr/heimdal"
1308                         if $withargs{"krb5-dir"} eq "";
1309                 $withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
1310                         "/lib -lgssapi -lkrb5 -lcom_err"
1311                         if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1312                 $cflags="-DKRB5_HEIMDAL $cflags";
1313                 }
1314         if ($withargs{"krb5-flavor"} =~ /^[Mm][Ii][Tt]/)
1315                 {
1316                 $withargs{"krb5-dir"} = "/usr/kerberos"
1317                         if $withargs{"krb5-dir"} eq "";
1318                 $withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
1319                         "/lib -lgssapi_krb5 -lkrb5 -lcom_err -lk5crypto"
1320                         if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1321                 $cflags="-DKRB5_MIT $cflags";
1322                 $withargs{"krb5-flavor"} =~ s/^[Mm][Ii][Tt][._-]*//;
1323                 if ($withargs{"krb5-flavor"} =~ /^1[._-]*[01]/)
1324                         {
1325                         $cflags="-DKRB5_MIT_OLD11 $cflags";
1326                         }
1327                 }
1328         LRESOLV:
1329         foreach $lpath ("/lib", "/usr/lib")
1330                 {
1331                 foreach $lext ("a", "so")
1332                         {
1333                         $lresolv = "$lpath/libresolv.$lext";
1334                         last LRESOLV    if (-r "$lresolv");
1335                         $lresolv = "";
1336                         }
1337                 }
1338         $withargs{"krb5-lib"} .= " -lresolv"
1339                 if ("$lresolv" ne "");
1340         $withargs{"krb5-include"} = "-I".$withargs{"krb5-dir"}."/include"
1341                 if $withargs{"krb5-include"} eq "" &&
1342                    $withargs{"krb5-dir"} ne "";
1343         }
1344
1345 # The DSO code currently always implements all functions so that no
1346 # applications will have to worry about that from a compilation point
1347 # of view. However, the "method"s may return zero unless that platform
1348 # has support compiled in for them. Currently each method is enabled
1349 # by a define "DSO_<name>" ... we translate the "dso_scheme" config
1350 # string entry into using the following logic;
1351 my $dso_cflags;
1352 if (!$no_dso && $dso_scheme ne "")
1353         {
1354         $dso_scheme =~ tr/[a-z]/[A-Z]/;
1355         if ($dso_scheme eq "DLFCN")
1356                 {
1357                 $dso_cflags = "-DDSO_DLFCN -DHAVE_DLFCN_H";
1358                 }
1359         elsif ($dso_scheme eq "DLFCN_NO_H")
1360                 {
1361                 $dso_cflags = "-DDSO_DLFCN";
1362                 }
1363         else
1364                 {
1365                 $dso_cflags = "-DDSO_$dso_scheme";
1366                 }
1367         $cflags = "$dso_cflags $cflags";
1368         }
1369
1370 my $thread_cflags;
1371 my $thread_defines;
1372 if ($thread_cflag ne "(unknown)" && !$no_threads)
1373         {
1374         # If we know how to do it, support threads by default.
1375         $threads = 1;
1376         }
1377 if ($thread_cflag eq "(unknown)" && $threads)
1378         {
1379         # If the user asked for "threads", [s]he is also expected to
1380         # provide any system-dependent compiler options that are
1381         # necessary.
1382         if ($no_user_cflags)
1383                 {
1384                 print "You asked for multi-threading support, but didn't\n";
1385                 print "provide any system-specific compiler options\n";
1386                 exit(1);
1387                 }
1388         $thread_cflags="-DOPENSSL_THREADS $cflags" ;
1389         $thread_defines .= "#define OPENSSL_THREADS\n";
1390         }
1391 else
1392         {
1393         $thread_cflags="-DOPENSSL_THREADS $thread_cflag $cflags";
1394         $thread_defines .= "#define OPENSSL_THREADS\n";
1395 #       my $def;
1396 #       foreach $def (split ' ',$thread_cflag)
1397 #               {
1398 #               if ($def =~ s/^-D// && $def !~ /^_/)
1399 #                       {
1400 #                       $thread_defines .= "#define $def\n";
1401 #                       }
1402 #               }
1403         }       
1404
1405 $lflags="$libs$lflags" if ($libs ne "");
1406
1407 if ($no_asm)
1408         {
1409         $cpuid_obj=$bn_obj=$ec_obj=
1410         $des_obj=$aes_obj=$bf_obj=$cast_obj=$rc4_obj=$rc5_obj=$cmll_obj=
1411         $modes_obj=$sha1_obj=$md5_obj=$rmd160_obj=$wp_obj=$engines_obj="";
1412         }
1413
1414 if (!$no_shared)
1415         {
1416         $cast_obj="";   # CAST assembler is not PIC
1417         }
1418
1419 if ($threads)
1420         {
1421         $cflags=$thread_cflags;
1422         $openssl_thread_defines .= $thread_defines;
1423         }
1424
1425 if ($zlib)
1426         {
1427         $cflags = "-DZLIB $cflags";
1428         if (defined($disabled{"zlib-dynamic"}))
1429                 {
1430                 if (defined($withargs{"zlib-lib"}))
1431                         {
1432                         $lflags = "$lflags -L" . $withargs{"zlib-lib"} . " -lz";
1433                         }
1434                 else
1435                         {
1436                         $lflags = "$lflags -lz";
1437                         }
1438                 }
1439         else
1440                 {
1441                 $cflags = "-DZLIB_SHARED $cflags";
1442                 }
1443         }
1444
1445 # You will find shlib_mark1 and shlib_mark2 explained in Makefile.org
1446 my $shared_mark = "";
1447 if ($shared_target eq "")
1448         {
1449         $no_shared_warn = 1 if !$no_shared;
1450         $no_shared = 1;
1451         }
1452 if (!$no_shared)
1453         {
1454         if ($shared_cflag ne "")
1455                 {
1456                 $cflags = "$shared_cflag -DOPENSSL_PIC $cflags";
1457                 }
1458         }
1459
1460 if (!$IsMK1MF)
1461         {
1462         # add {no-}static-engine to options to allow mkdef.pl to work without extra arguments
1463         if ($no_shared)
1464                 {
1465                 $openssl_other_defines.="#define OPENSSL_NO_DYNAMIC_ENGINE\n";
1466                 $options.=" static-engine";
1467                 }
1468         else
1469                 {
1470                 $openssl_other_defines.="#define OPENSSL_NO_STATIC_ENGINE\n";
1471                 $options.=" no-static-engine";
1472                 }
1473         }
1474
1475 $cpuid_obj.=" uplink.o uplink-x86.o" if ($cflags =~ /\-DOPENSSL_USE_APPLINK/);
1476
1477 #
1478 # Platform fix-ups
1479 #
1480 if ($target =~ /\-icc$/)        # Intel C compiler
1481         {
1482         my $iccver=0;
1483         if (open(FD,"$cc -V 2>&1 |"))
1484                 {
1485                 while(<FD>) { $iccver=$1 if (/Version ([0-9]+)\./); }
1486                 close(FD);
1487                 }
1488         if ($iccver>=8)
1489                 {
1490                 $cflags=~s/\-KPIC/-fPIC/;
1491                 # Eliminate unnecessary dependency from libirc.a. This is
1492                 # essential for shared library support, as otherwise
1493                 # apps/openssl can end up in endless loop upon startup...
1494                 $cflags.=" -Dmemcpy=__builtin_memcpy -Dmemset=__builtin_memset";
1495                 }
1496         if ($iccver>=9)
1497                 {
1498                 $lflags.=" -i-static";
1499                 $lflags=~s/\-no_cpprt/-no-cpprt/;
1500                 }
1501         if ($iccver>=10)
1502                 {
1503                 $lflags=~s/\-i\-static/-static-intel/;
1504                 }
1505         if ($iccver>=11)
1506                 {
1507                 $cflags.=" -no-intel-extensions";       # disable Cilk
1508                 $lflags=~s/\-no\-cpprt/-no-cxxlib/;
1509                 }
1510         }
1511
1512 # Unlike other OSes (like Solaris, Linux, Tru64, IRIX) BSD run-time
1513 # linkers (tested OpenBSD, NetBSD and FreeBSD) "demand" RPATH set on
1514 # .so objects. Apparently application RPATH is not global and does
1515 # not apply to .so linked with other .so. Problem manifests itself
1516 # when libssl.so fails to load libcrypto.so. One can argue that we
1517 # should engrave this into Makefile.shared rules or into BSD-* config
1518 # lines above. Meanwhile let's try to be cautious and pass -rpath to
1519 # linker only when --prefix is not /usr.
1520 if ($target =~ /^BSD\-/)
1521         {
1522         $shared_ldflag.=" -Wl,-rpath,\$\$(LIBRPATH)" if ($prefix !~ m|^/usr[/]*$|);
1523         }
1524
1525 if ($sys_id ne "")
1526         {
1527         #$cflags="-DOPENSSL_SYSNAME_$sys_id $cflags";
1528         $openssl_sys_defines="#define OPENSSL_SYSNAME_$sys_id\n";
1529         }
1530
1531 if ($ranlib eq "")
1532         {
1533         $ranlib = $default_ranlib;
1534         }
1535
1536 #my ($bn1)=split(/\s+/,$bn_obj);
1537 #$bn1 = "" unless defined $bn1;
1538 #$bn1=$bn_asm unless ($bn1 =~ /\.o$/);
1539 #$bn_obj="$bn1";
1540
1541 $cpuid_obj="" if ($processor eq "386");
1542
1543 $bn_obj = $bn_asm unless $bn_obj ne "";
1544 # bn-586 is the only one implementing bn_*_part_words
1545 $cflags.=" -DOPENSSL_BN_ASM_PART_WORDS" if ($bn_obj =~ /bn-586/);
1546 $cflags.=" -DOPENSSL_IA32_SSE2" if (!$no_sse2 && $bn_obj =~ /86/);
1547
1548 $cflags.=" -DOPENSSL_BN_ASM_MONT" if ($bn_obj =~ /-mont/);
1549 $cflags.=" -DOPENSSL_BN_ASM_MONT5" if ($bn_obj =~ /-mont5/);
1550 $cflags.=" -DOPENSSL_BN_ASM_GF2m" if ($bn_obj =~ /-gf2m/);
1551
1552 if ($fips)
1553         {
1554         $openssl_other_defines.="#define OPENSSL_FIPS\n";
1555         $cflags .= " -I\$(FIPSDIR)/include";
1556         }
1557
1558 $cpuid_obj="mem_clr.o"  unless ($cpuid_obj =~ /\.o$/);
1559 $des_obj=$des_enc       unless ($des_obj =~ /\.o$/);
1560 $bf_obj=$bf_enc         unless ($bf_obj =~ /\.o$/);
1561 $cast_obj=$cast_enc     unless ($cast_obj =~ /\.o$/);
1562 $rc5_obj=$rc5_enc       unless ($rc5_obj =~ /\.o$/);
1563 if ($rc4_obj =~ /\.o$/)
1564         {
1565         $cflags.=" -DRC4_ASM";
1566         }
1567 else
1568         {
1569         $rc4_obj=$rc4_enc;
1570         }
1571 if ($sha1_obj =~ /\.o$/)
1572         {
1573 #       $sha1_obj=$sha1_enc;
1574         $cflags.=" -DSHA1_ASM"   if ($sha1_obj =~ /sx86/ || $sha1_obj =~ /sha1/);
1575         $cflags.=" -DSHA256_ASM" if ($sha1_obj =~ /sha256/);
1576         $cflags.=" -DSHA512_ASM" if ($sha1_obj =~ /sha512/);
1577         if ($sha1_obj =~ /sse2/)
1578             {   if ($no_sse2)
1579                 {   $sha1_obj =~ s/\S*sse2\S+//;        }
1580                 elsif ($cflags !~ /OPENSSL_IA32_SSE2/)
1581                 {   $cflags.=" -DOPENSSL_IA32_SSE2";    }
1582             }
1583         }
1584 if ($md5_obj =~ /\.o$/)
1585         {
1586 #       $md5_obj=$md5_enc;
1587         $cflags.=" -DMD5_ASM";
1588         }
1589 if ($rmd160_obj =~ /\.o$/)
1590         {
1591 #       $rmd160_obj=$rmd160_enc;
1592         $cflags.=" -DRMD160_ASM";
1593         }
1594 if ($aes_obj =~ /\.o$/)
1595         {
1596         $cflags.=" -DAES_ASM" if ($aes_obj =~ m/\baes\-/);;
1597         # aes-ctr.o is not a real file, only indication that assembler
1598         # module implements AES_ctr32_encrypt...
1599         $cflags.=" -DAES_CTR_ASM" if ($aes_obj =~ s/\s*aes\-ctr\.o//);
1600         # aes-xts.o indicates presense of AES_xts_[en|de]crypt...
1601         $cflags.=" -DAES_XTS_ASM" if ($aes_obj =~ s/\s*aes\-xts\.o//);
1602         $aes_obj =~ s/\s*(vpaes|aesni)\-x86\.o//g if ($no_sse2);
1603         $cflags.=" -DVPAES_ASM" if ($aes_obj =~ m/vpaes/);
1604         $cflags.=" -DBSAES_ASM" if ($aes_obj =~ m/bsaes/);
1605         }
1606 else    {
1607         $aes_obj=$aes_enc;
1608         }
1609 $wp_obj="" if ($wp_obj =~ /mmx/ && $processor eq "386");
1610 if ($wp_obj =~ /\.o$/ && !$disabled{"whirlpool"})
1611         {
1612         $cflags.=" -DWHIRLPOOL_ASM";
1613         }
1614 else    {
1615         $wp_obj="wp_block.o";
1616         }
1617 $cmll_obj=$cmll_enc     unless ($cmll_obj =~ /.o$/);
1618 if ($modes_obj =~ /ghash\-/)
1619         {
1620         $cflags.=" -DGHASH_ASM";
1621         }
1622 if ($ec_obj =~ /ecp_nistz256/)
1623         {
1624         $cflags.=" -DECP_NISTZ256_ASM";
1625         }
1626
1627 # "Stringify" the C flags string.  This permits it to be made part of a string
1628 # and works as well on command lines.
1629 $cflags =~ s/([\\\"])/\\\1/g;
1630
1631 my $version = "unknown";
1632 my $version_num = "unknown";
1633 my $major = "unknown";
1634 my $minor = "unknown";
1635 my $shlib_version_number = "unknown";
1636 my $shlib_version_history = "unknown";
1637 my $shlib_major = "unknown";
1638 my $shlib_minor = "unknown";
1639
1640 open(IN,'<crypto/opensslv.h') || die "unable to read opensslv.h:$!\n";
1641 while (<IN>)
1642         {
1643         $version=$1 if /OPENSSL.VERSION.TEXT.*OpenSSL (\S+) /;
1644         $version_num=$1 if /OPENSSL.VERSION.NUMBER.*0x(\S+)/;
1645         $shlib_version_number=$1 if /SHLIB_VERSION_NUMBER *"([^"]+)"/;
1646         $shlib_version_history=$1 if /SHLIB_VERSION_HISTORY *"([^"]*)"/;
1647         }
1648 close(IN);
1649 if ($shlib_version_history ne "") { $shlib_version_history .= ":"; }
1650
1651 if ($version =~ /(^[0-9]*)\.([0-9\.]*)/)
1652         {
1653         $major=$1;
1654         $minor=$2;
1655         }
1656
1657 if ($shlib_version_number =~ /(^[0-9]*)\.([0-9\.]*)/)
1658         {
1659         $shlib_major=$1;
1660         $shlib_minor=$2;
1661         }
1662
1663 my $ecc = $cc;
1664 $ecc = "clang" if `$cc --version 2>&1` =~ /clang/;
1665
1666 if ($strict_warnings)
1667         {
1668         my $wopt;
1669         die "ERROR --strict-warnings requires gcc or clang" unless ($ecc =~ /gcc$/ or $ecc =~ /clang$/);
1670         foreach $wopt (split /\s+/, $gcc_devteam_warn)
1671                 {
1672                 $cflags .= " $wopt" unless ($cflags =~ /(^|\s)$wopt(\s|$)/)
1673                 }
1674         if ($ecc eq "clang")
1675                 {
1676                 foreach $wopt (split /\s+/, $clang_devteam_warn)
1677                         {
1678                         $cflags .= " $wopt" unless ($cflags =~ /(^|\s)$wopt(\s|$)/)
1679                         }
1680                 }
1681         }
1682
1683 open(IN,'<Makefile.org') || die "unable to read Makefile.org:$!\n";
1684 unlink("$Makefile.new") || die "unable to remove old $Makefile.new:$!\n" if -e "$Makefile.new";
1685 open(OUT,">$Makefile.new") || die "unable to create $Makefile.new:$!\n";
1686 print OUT "### Generated automatically from Makefile.org by Configure.\n\n";
1687 my $sdirs=0;
1688 while (<IN>)
1689         {
1690         chomp;
1691         $sdirs = 1 if /^SDIRS=/;
1692         if ($sdirs) {
1693                 my $dir;
1694                 foreach $dir (@skip) {
1695                         s/(\s)$dir /$1/;
1696                         s/\s$dir$//;
1697                         }
1698                 }
1699         $sdirs = 0 unless /\\$/;
1700         s/engines // if (/^DIRS=/ && $disabled{"engine"});
1701         s/ccgost// if (/^ENGDIRS=/ && $disabled{"gost"});
1702         s/^VERSION=.*/VERSION=$version/;
1703         s/^MAJOR=.*/MAJOR=$major/;
1704         s/^MINOR=.*/MINOR=$minor/;
1705         s/^SHLIB_VERSION_NUMBER=.*/SHLIB_VERSION_NUMBER=$shlib_version_number/;
1706         s/^SHLIB_VERSION_HISTORY=.*/SHLIB_VERSION_HISTORY=$shlib_version_history/;
1707         s/^SHLIB_MAJOR=.*/SHLIB_MAJOR=$shlib_major/;
1708         s/^SHLIB_MINOR=.*/SHLIB_MINOR=$shlib_minor/;
1709         s/^SHLIB_EXT=.*/SHLIB_EXT=$shared_extension/;
1710         s/^INSTALLTOP=.*$/INSTALLTOP=$prefix/;
1711         s/^MULTILIB=.*$/MULTILIB=$multilib/;
1712         s/^OPENSSLDIR=.*$/OPENSSLDIR=$openssldir/;
1713         s/^LIBDIR=.*$/LIBDIR=$libdir/;
1714         s/^INSTALL_PREFIX=.*$/INSTALL_PREFIX=$install_prefix/;
1715         s/^PLATFORM=.*$/PLATFORM=$target/;
1716         s/^OPTIONS=.*$/OPTIONS=$options/;
1717         s/^CONFIGURE_ARGS=.*$/CONFIGURE_ARGS=$argvstring/;
1718         if ($cross_compile_prefix)
1719                 {
1720                 s/^CC=.*$/CROSS_COMPILE= $cross_compile_prefix\nCC= \$\(CROSS_COMPILE\)$cc/;
1721                 s/^AR=\s*/AR= \$\(CROSS_COMPILE\)/;
1722                 s/^NM=\s*/NM= \$\(CROSS_COMPILE\)/;
1723                 s/^RANLIB=\s*/RANLIB= \$\(CROSS_COMPILE\)/;
1724                 s/^RC=\s*/RC= \$\(CROSS_COMPILE\)/;
1725                 s/^MAKEDEPPROG=.*$/MAKEDEPPROG= \$\(CROSS_COMPILE\)$cc/ if $cc eq "gcc";
1726                 }
1727         else    {
1728                 s/^CC=.*$/CC= $cc/;
1729                 s/^AR=\s*ar/AR= $ar/;
1730                 s/^RANLIB=.*/RANLIB= $ranlib/;
1731                 s/^RC=.*/RC= $windres/;
1732                 s/^MAKEDEPPROG=.*$/MAKEDEPPROG= $cc/ if $cc eq "gcc";
1733                 s/^MAKEDEPPROG=.*$/MAKEDEPPROG= $cc/ if $ecc eq "gcc" || $ecc eq "clang";
1734                 }
1735         s/^CFLAG=.*$/CFLAG= $cflags/;
1736         s/^DEPFLAG=.*$/DEPFLAG=$depflags/;
1737         s/^PEX_LIBS=.*$/PEX_LIBS= $prelflags/;
1738         s/^EX_LIBS=.*$/EX_LIBS= $lflags/;
1739         s/^EXE_EXT=.*$/EXE_EXT= $exe_ext/;
1740         s/^CPUID_OBJ=.*$/CPUID_OBJ= $cpuid_obj/;
1741         s/^BN_ASM=.*$/BN_ASM= $bn_obj/;
1742         s/^EC_ASM=.*$/EC_ASM= $ec_obj/;
1743         s/^DES_ENC=.*$/DES_ENC= $des_obj/;
1744         s/^AES_ENC=.*$/AES_ENC= $aes_obj/;
1745         s/^BF_ENC=.*$/BF_ENC= $bf_obj/;
1746         s/^CAST_ENC=.*$/CAST_ENC= $cast_obj/;
1747         s/^RC4_ENC=.*$/RC4_ENC= $rc4_obj/;
1748         s/^RC5_ENC=.*$/RC5_ENC= $rc5_obj/;
1749         s/^MD5_ASM_OBJ=.*$/MD5_ASM_OBJ= $md5_obj/;
1750         s/^SHA1_ASM_OBJ=.*$/SHA1_ASM_OBJ= $sha1_obj/;
1751         s/^RMD160_ASM_OBJ=.*$/RMD160_ASM_OBJ= $rmd160_obj/;
1752         s/^WP_ASM_OBJ=.*$/WP_ASM_OBJ= $wp_obj/;
1753         s/^CMLL_ENC=.*$/CMLL_ENC= $cmll_obj/;
1754         s/^MODES_ASM_OBJ.=*$/MODES_ASM_OBJ= $modes_obj/;
1755         s/^ENGINES_ASM_OBJ.=*$/ENGINES_ASM_OBJ= $engines_obj/;
1756         s/^PERLASM_SCHEME=.*$/PERLASM_SCHEME= $perlasm_scheme/;
1757         s/^PROCESSOR=.*/PROCESSOR= $processor/;
1758         s/^ARFLAGS=.*/ARFLAGS= $arflags/;
1759         s/^PERL=.*/PERL= $perl/;
1760         s/^KRB5_INCLUDES=.*/KRB5_INCLUDES=$withargs{"krb5-include"}/;
1761         s/^LIBKRB5=.*/LIBKRB5=$withargs{"krb5-lib"}/;
1762         s/^LIBZLIB=.*/LIBZLIB=$withargs{"zlib-lib"}/;
1763         s/^ZLIB_INCLUDE=.*/ZLIB_INCLUDE=$withargs{"zlib-include"}/;
1764
1765         s/^FIPSDIR=.*/FIPSDIR=$fipsdir/;
1766         s/^FIPSLIBDIR=.*/FIPSLIBDIR=$fipslibdir/;
1767         s/^FIPSCANLIB=.*/FIPSCANLIB=libcrypto/ if $fips;
1768         s/^BASEADDR=.*/BASEADDR=$baseaddr/;
1769
1770         s/^SHLIB_TARGET=.*/SHLIB_TARGET=$shared_target/;
1771         s/^SHLIB_MARK=.*/SHLIB_MARK=$shared_mark/;
1772         s/^SHARED_LIBS=.*/SHARED_LIBS=\$(SHARED_CRYPTO) \$(SHARED_SSL)/ if (!$no_shared);
1773         if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
1774                 {
1775                 my $sotmp = $1;
1776                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/;
1777                 }
1778         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.dylib$/)
1779                 {
1780                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.dylib/;
1781                 }
1782         elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
1783                 {
1784                 my $sotmp = $1;
1785                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
1786                 }
1787         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.[^\.]*\.dylib$/)
1788                 {
1789                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.\$(SHLIB_MAJOR).dylib .dylib/;
1790                 }
1791         s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
1792         print OUT $_."\n";
1793         }
1794 close(IN);
1795 close(OUT);
1796 if ((compare($Makefile, "$Makefile.new"))
1797         or file_newer('Configure', $Makefile)
1798         or file_newer('config', $Makefile)
1799         or file_newer('Makefile.org', $Makefile))
1800         {
1801         rename($Makefile,"$Makefile.bak") || die "unable to rename $Makefile\n" if -e $Makefile;
1802         rename("$Makefile.new",$Makefile) || die "unable to rename $Makefile.new\n";
1803         }
1804 else
1805         { unlink("$Makefile.new"); }
1806
1807 print "CC            =$cc\n";
1808 print "CFLAG         =$cflags\n";
1809 print "EX_LIBS       =$lflags\n";
1810 print "CPUID_OBJ     =$cpuid_obj\n";
1811 print "BN_ASM        =$bn_obj\n";
1812 print "EC_ASM        =$ec_obj\n";
1813 print "DES_ENC       =$des_obj\n";
1814 print "AES_ENC       =$aes_obj\n";
1815 print "BF_ENC        =$bf_obj\n";
1816 print "CAST_ENC      =$cast_obj\n";
1817 print "RC4_ENC       =$rc4_obj\n";
1818 print "RC5_ENC       =$rc5_obj\n";
1819 print "MD5_OBJ_ASM   =$md5_obj\n";
1820 print "SHA1_OBJ_ASM  =$sha1_obj\n";
1821 print "RMD160_OBJ_ASM=$rmd160_obj\n";
1822 print "CMLL_ENC      =$cmll_obj\n";
1823 print "MODES_OBJ     =$modes_obj\n";
1824 print "ENGINES_OBJ   =$engines_obj\n";
1825 print "PROCESSOR     =$processor\n";
1826 print "RANLIB        =$ranlib\n";
1827 print "ARFLAGS       =$arflags\n";
1828 print "PERL          =$perl\n";
1829 print "KRB5_INCLUDES =",$withargs{"krb5-include"},"\n"
1830         if $withargs{"krb5-include"} ne "";
1831
1832 my $des_ptr=0;
1833 my $des_risc1=0;
1834 my $des_risc2=0;
1835 my $des_unroll=0;
1836 my $bn_ll=0;
1837 my $def_int=2;
1838 my $rc4_int=$def_int;
1839 my $md2_int=$def_int;
1840 my $idea_int=$def_int;
1841 my $rc2_int=$def_int;
1842 my $rc4_idx=0;
1843 my $rc4_chunk=0;
1844 my $bf_ptr=0;
1845 my @type=("char","short","int","long");
1846 my ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0);
1847 my $export_var_as_fn=0;
1848
1849 my $des_int;
1850
1851 foreach (sort split(/\s+/,$bn_ops))
1852         {
1853         $des_ptr=1 if /DES_PTR/;
1854         $des_risc1=1 if /DES_RISC1/;
1855         $des_risc2=1 if /DES_RISC2/;
1856         $des_unroll=1 if /DES_UNROLL/;
1857         $des_int=1 if /DES_INT/;
1858         $bn_ll=1 if /BN_LLONG/;
1859         $rc4_int=0 if /RC4_CHAR/;
1860         $rc4_int=3 if /RC4_LONG/;
1861         $rc4_idx=1 if /RC4_INDEX/;
1862         $rc4_chunk=1 if /RC4_CHUNK/;
1863         $rc4_chunk=2 if /RC4_CHUNK_LL/;
1864         $md2_int=0 if /MD2_CHAR/;
1865         $md2_int=3 if /MD2_LONG/;
1866         $idea_int=1 if /IDEA_SHORT/;
1867         $idea_int=3 if /IDEA_LONG/;
1868         $rc2_int=1 if /RC2_SHORT/;
1869         $rc2_int=3 if /RC2_LONG/;
1870         $bf_ptr=1 if $_ eq "BF_PTR";
1871         $bf_ptr=2 if $_ eq "BF_PTR2";
1872         ($b64l,$b64,$b32,$b16,$b8)=(0,1,0,0,0) if /SIXTY_FOUR_BIT/;
1873         ($b64l,$b64,$b32,$b16,$b8)=(1,0,0,0,0) if /SIXTY_FOUR_BIT_LONG/;
1874         ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0) if /THIRTY_TWO_BIT/;
1875         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,1,0) if /SIXTEEN_BIT/;
1876         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,0,1) if /EIGHT_BIT/;
1877         $export_var_as_fn=1 if /EXPORT_VAR_AS_FN/;
1878         }
1879
1880 open(IN,'<crypto/opensslconf.h.in') || die "unable to read crypto/opensslconf.h.in:$!\n";
1881 unlink("crypto/opensslconf.h.new") || die "unable to remove old crypto/opensslconf.h.new:$!\n" if -e "crypto/opensslconf.h.new";
1882 open(OUT,'>crypto/opensslconf.h.new') || die "unable to create crypto/opensslconf.h.new:$!\n";
1883 print OUT "/* opensslconf.h */\n";
1884 print OUT "/* WARNING: Generated automatically from opensslconf.h.in by Configure. */\n\n";
1885
1886 print OUT "#ifdef  __cplusplus\n";
1887 print OUT "extern \"C\" {\n";
1888 print OUT "#endif\n";
1889 print OUT "/* OpenSSL was configured with the following options: */\n";
1890 my $openssl_algorithm_defines_trans = $openssl_algorithm_defines;
1891 $openssl_experimental_defines =~ s/^\s*#\s*define\s+OPENSSL_NO_(.*)/#ifndef OPENSSL_EXPERIMENTAL_$1\n# ifndef OPENSSL_NO_$1\n#  define OPENSSL_NO_$1\n# endif\n#endif/mg;
1892 $openssl_algorithm_defines_trans =~ s/^\s*#\s*define\s+OPENSSL_(.*)/# if defined(OPENSSL_$1) \&\& !defined($1)\n#  define $1\n# endif/mg;
1893 $openssl_algorithm_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1894 $openssl_algorithm_defines = "   /* no ciphers excluded */\n" if $openssl_algorithm_defines eq "";
1895 $openssl_thread_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1896 $openssl_sys_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1897 $openssl_other_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1898 print OUT $openssl_sys_defines;
1899 print OUT "#ifndef OPENSSL_DOING_MAKEDEPEND\n\n";
1900 print OUT $openssl_experimental_defines;
1901 print OUT "\n";
1902 print OUT $openssl_algorithm_defines;
1903 print OUT "\n#endif /* OPENSSL_DOING_MAKEDEPEND */\n\n";
1904 print OUT $openssl_thread_defines;
1905 print OUT $openssl_other_defines,"\n";
1906
1907 print OUT "/* The OPENSSL_NO_* macros are also defined as NO_* if the application\n";
1908 print OUT "   asks for it.  This is a transient feature that is provided for those\n";
1909 print OUT "   who haven't had the time to do the appropriate changes in their\n";
1910 print OUT "   applications.  */\n";
1911 print OUT "#ifdef OPENSSL_ALGORITHM_DEFINES\n";
1912 print OUT $openssl_algorithm_defines_trans;
1913 print OUT "#endif\n\n";
1914
1915 print OUT "#define OPENSSL_CPUID_OBJ\n\n" if ($cpuid_obj ne "mem_clr.o");
1916
1917 while (<IN>)
1918         {
1919         if      (/^#define\s+OPENSSLDIR/)
1920                 {
1921                 my $foo = $openssldir;
1922                 $foo =~ s/\\/\\\\/g;
1923                 print OUT "#define OPENSSLDIR \"$foo\"\n";
1924                 }
1925         elsif   (/^#define\s+ENGINESDIR/)
1926                 {
1927                 my $foo = "$prefix/$libdir/engines";
1928                 $foo =~ s/\\/\\\\/g;
1929                 print OUT "#define ENGINESDIR \"$foo\"\n";
1930                 }
1931         elsif   (/^#((define)|(undef))\s+OPENSSL_EXPORT_VAR_AS_FUNCTION/)
1932                 { printf OUT "#undef OPENSSL_EXPORT_VAR_AS_FUNCTION\n"
1933                         if $export_var_as_fn;
1934                   printf OUT "#%s OPENSSL_EXPORT_VAR_AS_FUNCTION\n",
1935                         ($export_var_as_fn)?"define":"undef"; }
1936         elsif   (/^#define\s+OPENSSL_UNISTD/)
1937                 {
1938                 $unistd = "<unistd.h>" if $unistd eq "";
1939                 print OUT "#define OPENSSL_UNISTD $unistd\n";
1940                 }
1941         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT_LONG/)
1942                 { printf OUT "#%s SIXTY_FOUR_BIT_LONG\n",($b64l)?"define":"undef"; }
1943         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT/)
1944                 { printf OUT "#%s SIXTY_FOUR_BIT\n",($b64)?"define":"undef"; }
1945         elsif   (/^#((define)|(undef))\s+THIRTY_TWO_BIT/)
1946                 { printf OUT "#%s THIRTY_TWO_BIT\n",($b32)?"define":"undef"; }
1947         elsif   (/^#((define)|(undef))\s+SIXTEEN_BIT/)
1948                 { printf OUT "#%s SIXTEEN_BIT\n",($b16)?"define":"undef"; }
1949         elsif   (/^#((define)|(undef))\s+EIGHT_BIT/)
1950                 { printf OUT "#%s EIGHT_BIT\n",($b8)?"define":"undef"; }
1951         elsif   (/^#((define)|(undef))\s+BN_LLONG\s*$/)
1952                 { printf OUT "#%s BN_LLONG\n",($bn_ll)?"define":"undef"; }
1953         elsif   (/^\#define\s+DES_LONG\s+.*/)
1954                 { printf OUT "#define DES_LONG unsigned %s\n",
1955                         ($des_int)?'int':'long'; }
1956         elsif   (/^\#(define|undef)\s+DES_PTR/)
1957                 { printf OUT "#%s DES_PTR\n",($des_ptr)?'define':'undef'; }
1958         elsif   (/^\#(define|undef)\s+DES_RISC1/)
1959                 { printf OUT "#%s DES_RISC1\n",($des_risc1)?'define':'undef'; }
1960         elsif   (/^\#(define|undef)\s+DES_RISC2/)
1961                 { printf OUT "#%s DES_RISC2\n",($des_risc2)?'define':'undef'; }
1962         elsif   (/^\#(define|undef)\s+DES_UNROLL/)
1963                 { printf OUT "#%s DES_UNROLL\n",($des_unroll)?'define':'undef'; }
1964         elsif   (/^#define\s+RC4_INT\s/)
1965                 { printf OUT "#define RC4_INT unsigned %s\n",$type[$rc4_int]; }
1966         elsif   (/^#undef\s+RC4_CHUNK/)
1967                 {
1968                 printf OUT "#undef RC4_CHUNK\n" if $rc4_chunk==0;
1969                 printf OUT "#define RC4_CHUNK unsigned long\n" if $rc4_chunk==1;
1970                 printf OUT "#define RC4_CHUNK unsigned long long\n" if $rc4_chunk==2;
1971                 }
1972         elsif   (/^#((define)|(undef))\s+RC4_INDEX/)
1973                 { printf OUT "#%s RC4_INDEX\n",($rc4_idx)?"define":"undef"; }
1974         elsif (/^#(define|undef)\s+I386_ONLY/)
1975                 { printf OUT "#%s I386_ONLY\n", ($processor eq "386")?
1976                         "define":"undef"; }
1977         elsif   (/^#define\s+MD2_INT\s/)
1978                 { printf OUT "#define MD2_INT unsigned %s\n",$type[$md2_int]; }
1979         elsif   (/^#define\s+IDEA_INT\s/)
1980                 {printf OUT "#define IDEA_INT unsigned %s\n",$type[$idea_int];}
1981         elsif   (/^#define\s+RC2_INT\s/)
1982                 {printf OUT "#define RC2_INT unsigned %s\n",$type[$rc2_int];}
1983         elsif (/^#(define|undef)\s+BF_PTR/)
1984                 {
1985                 printf OUT "#undef BF_PTR\n" if $bf_ptr == 0;
1986                 printf OUT "#define BF_PTR\n" if $bf_ptr == 1;
1987                 printf OUT "#define BF_PTR2\n" if $bf_ptr == 2;
1988                 }
1989         else
1990                 { print OUT $_; }
1991         }
1992 close(IN);
1993 print OUT "#ifdef  __cplusplus\n";
1994 print OUT "}\n";
1995 print OUT "#endif\n";
1996 close(OUT);
1997 if (compare("crypto/opensslconf.h.new","crypto/opensslconf.h"))
1998         {
1999         rename("crypto/opensslconf.h","crypto/opensslconf.h.bak") || die "unable to rename crypto/opensslconf.h\n" if -e "crypto/opensslconf.h";
2000         rename("crypto/opensslconf.h.new","crypto/opensslconf.h") || die "unable to rename crypto/opensslconf.h.new\n";
2001         }
2002 else
2003         { unlink("crypto/opensslconf.h.new"); }
2004
2005 # Fix the date
2006
2007 print "SIXTY_FOUR_BIT_LONG mode\n" if $b64l;
2008 print "SIXTY_FOUR_BIT mode\n" if $b64;
2009 print "THIRTY_TWO_BIT mode\n" if $b32;
2010 print "SIXTEEN_BIT mode\n" if $b16;
2011 print "EIGHT_BIT mode\n" if $b8;
2012 print "DES_PTR used\n" if $des_ptr;
2013 print "DES_RISC1 used\n" if $des_risc1;
2014 print "DES_RISC2 used\n" if $des_risc2;
2015 print "DES_UNROLL used\n" if $des_unroll;
2016 print "DES_INT used\n" if $des_int;
2017 print "BN_LLONG mode\n" if $bn_ll;
2018 print "RC4 uses u$type[$rc4_int]\n" if $rc4_int != $def_int;
2019 print "RC4_INDEX mode\n" if $rc4_idx;
2020 print "RC4_CHUNK is undefined\n" if $rc4_chunk==0;
2021 print "RC4_CHUNK is unsigned long\n" if $rc4_chunk==1;
2022 print "RC4_CHUNK is unsigned long long\n" if $rc4_chunk==2;
2023 print "MD2 uses u$type[$md2_int]\n" if $md2_int != $def_int;
2024 print "IDEA uses u$type[$idea_int]\n" if $idea_int != $def_int;
2025 print "RC2 uses u$type[$rc2_int]\n" if $rc2_int != $def_int;
2026 print "BF_PTR used\n" if $bf_ptr == 1; 
2027 print "BF_PTR2 used\n" if $bf_ptr == 2; 
2028
2029 if($IsMK1MF) {
2030         open (OUT,">crypto/buildinf.h") || die "Can't open buildinf.h";
2031         printf OUT <<EOF;
2032 #ifndef MK1MF_BUILD
2033   /* auto-generated by Configure for crypto/cversion.c:
2034    * for Unix builds, crypto/Makefile.ssl generates functional definitions;
2035    * Windows builds (and other mk1mf builds) compile cversion.c with
2036    * -DMK1MF_BUILD and use definitions added to this file by util/mk1mf.pl. */
2037   #error "Windows builds (PLATFORM=$target) use mk1mf.pl-created Makefiles"
2038 #endif
2039 EOF
2040         close(OUT);
2041 } else {
2042         my $make_command = "$make PERL=\'$perl\'";
2043         my $make_targets = "";
2044         $make_targets .= " links" if $symlink;
2045         $make_targets .= " depend" if $depflags ne $default_depflags && $make_depend;
2046         $make_targets .= " gentests" if $symlink;
2047         (system $make_command.$make_targets) == 0 or exit $?
2048                 if $make_targets ne "";
2049         if ( $perl =~ m@^/@) {
2050             &dofile("tools/c_rehash",$perl,'^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";', '^my \$prefix;$', 'my $prefix = "' . $prefix . '";');
2051             &dofile("apps/CA.pl",$perl,'^#!/', '#!%s');
2052         } else {
2053             # No path for Perl known ...
2054             &dofile("tools/c_rehash",'/usr/local/bin/perl','^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";',  '^my \$prefix;$', 'my $prefix = "' . $prefix . '";');
2055             &dofile("apps/CA.pl",'/usr/local/bin/perl','^#!/', '#!%s');
2056         }
2057         if ($depflags ne $default_depflags && !$make_depend) {
2058             $warn_make_depend++;
2059         }
2060 }
2061
2062 # create the ms/version32.rc file if needed
2063 if ($IsMK1MF && ($target !~ /^netware/)) {
2064         my ($v1, $v2, $v3, $v4);
2065         if ($version_num =~ /(^[0-9a-f]{1})([0-9a-f]{2})([0-9a-f]{2})([0-9a-f]{2})/i) {
2066                 $v1=hex $1;
2067                 $v2=hex $2;
2068                 $v3=hex $3;
2069                 $v4=hex $4;
2070         }
2071         open (OUT,">ms/version32.rc") || die "Can't open ms/version32.rc";
2072         print OUT <<EOF;
2073 #include <winver.h>
2074
2075 LANGUAGE 0x09,0x01
2076
2077 1 VERSIONINFO
2078   FILEVERSION $v1,$v2,$v3,$v4
2079   PRODUCTVERSION $v1,$v2,$v3,$v4
2080   FILEFLAGSMASK 0x3fL
2081 #ifdef _DEBUG
2082   FILEFLAGS 0x01L
2083 #else
2084   FILEFLAGS 0x00L
2085 #endif
2086   FILEOS VOS__WINDOWS32
2087   FILETYPE VFT_DLL
2088   FILESUBTYPE 0x0L
2089 BEGIN
2090     BLOCK "StringFileInfo"
2091     BEGIN
2092         BLOCK "040904b0"
2093         BEGIN
2094             // Required:            
2095             VALUE "CompanyName", "The OpenSSL Project, http://www.openssl.org/\\0"
2096             VALUE "FileDescription", "OpenSSL Shared Library\\0"
2097             VALUE "FileVersion", "$version\\0"
2098 #if defined(CRYPTO)
2099             VALUE "InternalName", "libeay32\\0"
2100             VALUE "OriginalFilename", "libeay32.dll\\0"
2101 #elif defined(SSL)
2102             VALUE "InternalName", "ssleay32\\0"
2103             VALUE "OriginalFilename", "ssleay32.dll\\0"
2104 #endif
2105             VALUE "ProductName", "The OpenSSL Toolkit\\0"
2106             VALUE "ProductVersion", "$version\\0"
2107             // Optional:
2108             //VALUE "Comments", "\\0"
2109             VALUE "LegalCopyright", "Copyright  © 1998-2005 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved.\\0"
2110             //VALUE "LegalTrademarks", "\\0"
2111             //VALUE "PrivateBuild", "\\0"
2112             //VALUE "SpecialBuild", "\\0"
2113         END
2114     END
2115     BLOCK "VarFileInfo"
2116     BEGIN
2117         VALUE "Translation", 0x409, 0x4b0
2118     END
2119 END
2120 EOF
2121         close(OUT);
2122   }
2123   
2124 print <<EOF;
2125
2126 Configured for $target.
2127 EOF
2128
2129 print <<\EOF if (!$no_threads && !$threads);
2130
2131 The library could not be configured for supporting multi-threaded
2132 applications as the compiler options required on this system are not known.
2133 See file INSTALL for details if you need multi-threading.
2134 EOF
2135
2136 print <<\EOF if ($no_shared_warn);
2137
2138 You gave the option 'shared', which is not supported on this platform, so
2139 we will pretend you gave the option 'no-shared'.  If you know how to implement
2140 shared libraries, please let us know (but please first make sure you have
2141 tried with a current version of OpenSSL).
2142 EOF
2143
2144 print <<EOF if ($warn_make_depend);
2145
2146 *** Because of configuration changes, you MUST do the following before
2147 *** building:
2148
2149         make depend
2150 EOF
2151
2152 exit(0);
2153
2154 sub usage
2155         {
2156         print STDERR $usage;
2157         print STDERR "\npick os/compiler from:\n";
2158         my $j=0;
2159         my $i;
2160         my $k=0;
2161         foreach $i (sort keys %table)
2162                 {
2163                 next if $i =~ /^debug/;
2164                 $k += length($i) + 1;
2165                 if ($k > 78)
2166                         {
2167                         print STDERR "\n";
2168                         $k=length($i);
2169                         }
2170                 print STDERR $i . " ";
2171                 }
2172         foreach $i (sort keys %table)
2173                 {
2174                 next if $i !~ /^debug/;
2175                 $k += length($i) + 1;
2176                 if ($k > 78)
2177                         {
2178                         print STDERR "\n";
2179                         $k=length($i);
2180                         }
2181                 print STDERR $i . " ";
2182                 }
2183         print STDERR "\n\nNOTE: If in doubt, on Unix-ish systems use './config'.\n";
2184         exit(1);
2185         }
2186
2187 sub which
2188         {
2189         my($name)=@_;
2190         my $path;
2191         foreach $path (split /:/, $ENV{PATH})
2192                 {
2193                 if (-f "$path/$name$exe_ext" and -x _)
2194                         {
2195                         return "$path/$name$exe_ext" unless ($name eq "perl" and
2196                          system("$path/$name$exe_ext -e " . '\'exit($]<5.0);\''));
2197                         }
2198                 }
2199         }
2200
2201 sub dofile
2202         {
2203         my $f; my $p; my %m; my @a; my $k; my $ff;
2204         ($f,$p,%m)=@_;
2205
2206         open(IN,"<$f.in") || open(IN,"<$f") || die "unable to open $f:$!\n";
2207         @a=<IN>;
2208         close(IN);
2209         foreach $k (keys %m)
2210                 {
2211                 grep(/$k/ && ($_=sprintf($m{$k}."\n",$p)),@a);
2212                 }
2213         open(OUT,">$f.new") || die "unable to open $f.new:$!\n";
2214         print OUT @a;
2215         close(OUT);
2216         rename($f,"$f.bak") || die "unable to rename $f\n" if -e $f;
2217         rename("$f.new",$f) || die "unable to rename $f.new\n";
2218         }
2219
2220 sub print_table_entry
2221         {
2222         my $target = shift;
2223
2224         my ($cc, $cflags, $unistd, $thread_cflag, $sys_id, $lflags,
2225             $bn_ops, $cpuid_obj, $bn_obj, $ec_obj, $des_obj, $aes_obj, $bf_obj,
2226             $md5_obj, $sha1_obj, $cast_obj, $rc4_obj, $rmd160_obj,
2227             $rc5_obj, $wp_obj, $cmll_obj, $modes_obj, $engines_obj,
2228             $perlasm_scheme, $dso_scheme, $shared_target, $shared_cflag,
2229             $shared_ldflag, $shared_extension, $ranlib, $arflags, $multilib)=
2230         split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
2231                         
2232         print <<EOF
2233
2234 *** $target
2235 \$cc           = $cc
2236 \$cflags       = $cflags
2237 \$unistd       = $unistd
2238 \$thread_cflag = $thread_cflag
2239 \$sys_id       = $sys_id
2240 \$lflags       = $lflags
2241 \$bn_ops       = $bn_ops
2242 \$cpuid_obj    = $cpuid_obj
2243 \$bn_obj       = $bn_obj
2244 \$ec_obj       = $ec_obj
2245 \$des_obj      = $des_obj
2246 \$aes_obj      = $aes_obj
2247 \$bf_obj       = $bf_obj
2248 \$md5_obj      = $md5_obj
2249 \$sha1_obj     = $sha1_obj
2250 \$cast_obj     = $cast_obj
2251 \$rc4_obj      = $rc4_obj
2252 \$rmd160_obj   = $rmd160_obj
2253 \$rc5_obj      = $rc5_obj
2254 \$wp_obj       = $wp_obj
2255 \$cmll_obj     = $cmll_obj
2256 \$modes_obj    = $modes_obj
2257 \$engines_obj  = $engines_obj
2258 \$perlasm_scheme = $perlasm_scheme
2259 \$dso_scheme   = $dso_scheme
2260 \$shared_target= $shared_target
2261 \$shared_cflag = $shared_cflag
2262 \$shared_ldflag = $shared_ldflag
2263 \$shared_extension = $shared_extension
2264 \$ranlib       = $ranlib
2265 \$arflags      = $arflags
2266 \$multilib     = $multilib
2267 EOF
2268         }
2269
2270 sub test_sanity
2271         {
2272         my $errorcnt = 0;
2273
2274         print STDERR "=" x 70, "\n";
2275         print STDERR "=== SANITY TESTING!\n";
2276         print STDERR "=== No configuration will be done, all other arguments will be ignored!\n";
2277         print STDERR "=" x 70, "\n";
2278
2279         foreach $target (sort keys %table)
2280                 {
2281                 @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
2282
2283                 if ($fields[$idx_dso_scheme-1] =~ /^(beos|dl|dlfcn|win32|vms)$/)
2284                         {
2285                         $errorcnt++;
2286                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
2287                         print STDERR "              in the previous field\n";
2288                         }
2289                 elsif ($fields[$idx_dso_scheme+1] =~ /^(beos|dl|dlfcn|win32|vms)$/)
2290                         {
2291                         $errorcnt++;
2292                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
2293                         print STDERR "              in the following field\n";
2294                         }
2295                 elsif ($fields[$idx_dso_scheme] !~ /^(beos|dl|dlfcn|win32|vms|)$/)
2296                         {
2297                         $errorcnt++;
2298                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] field = ",$fields[$idx_dso_scheme],"\n";
2299                         print STDERR "              valid values are 'beos', 'dl', 'dlfcn', 'win32' and 'vms'\n";
2300                         }
2301                 }
2302         print STDERR "No sanity errors detected!\n" if $errorcnt == 0;
2303         return $errorcnt;
2304         }
2305
2306 sub file_newer
2307         {
2308         my ($file1, $file2) = @_;
2309         return (stat($file1))[9] > (stat($file2))[9]
2310         }