ARM assembler pack: profiler-assisted optimizations and NEON support.
[openssl.git] / Configure
1 :
2 eval 'exec perl -S $0 ${1+"$@"}'
3     if $running_under_some_shell;
4 ##
5 ##  Configure -- OpenSSL source tree configuration script
6 ##
7
8 require 5.000;
9 use strict;
10
11 # see INSTALL for instructions.
12
13 my $usage="Usage: Configure [no-<cipher> ...] [enable-<cipher> ...] [experimental-<cipher> ...] [-Dxxx] [-lxxx] [-Lxxx] [-fxxx] [-Kxxx] [no-hw-xxx|no-hw] [[no-]threads] [[no-]shared] [[no-]zlib|zlib-dynamic] [no-asm] [no-dso] [no-krb5] [386] [--prefix=DIR] [--openssldir=OPENSSLDIR] [--with-xxx[=vvv]] [--test-sanity] os/compiler[:flags]\n";
14
15 # Options:
16 #
17 # --openssldir  install OpenSSL in OPENSSLDIR (Default: DIR/ssl if the
18 #               --prefix option is given; /usr/local/ssl otherwise)
19 # --prefix      prefix for the OpenSSL include, lib and bin directories
20 #               (Default: the OPENSSLDIR directory)
21 #
22 # --install_prefix  Additional prefix for package builders (empty by
23 #               default).  This needn't be set in advance, you can
24 #               just as well use "make INSTALL_PREFIX=/whatever install".
25 #
26 # --with-krb5-dir  Declare where Kerberos 5 lives.  The libraries are expected
27 #               to live in the subdirectory lib/ and the header files in
28 #               include/.  A value is required.
29 # --with-krb5-lib  Declare where the Kerberos 5 libraries live.  A value is
30 #               required.
31 #               (Default: KRB5_DIR/lib)
32 # --with-krb5-include  Declare where the Kerberos 5 header files live.  A
33 #               value is required.
34 #               (Default: KRB5_DIR/include)
35 # --with-krb5-flavor  Declare what flavor of Kerberos 5 is used.  Currently
36 #               supported values are "MIT" and "Heimdal".  A value is required.
37 #
38 # --test-sanity Make a number of sanity checks on the data in this file.
39 #               This is a debugging tool for OpenSSL developers.
40 #
41 # --cross-compile-prefix Add specified prefix to binutils components.
42 #
43 # no-hw-xxx     do not compile support for specific crypto hardware.
44 #               Generic OpenSSL-style methods relating to this support
45 #               are always compiled but return NULL if the hardware
46 #               support isn't compiled.
47 # no-hw         do not compile support for any crypto hardware.
48 # [no-]threads  [don't] try to create a library that is suitable for
49 #               multithreaded applications (default is "threads" if we
50 #               know how to do it)
51 # [no-]shared   [don't] try to create shared libraries when supported.
52 # no-asm        do not use assembler
53 # no-dso        do not compile in any native shared-library methods. This
54 #               will ensure that all methods just return NULL.
55 # no-krb5       do not compile in any KRB5 library or code.
56 # [no-]zlib     [don't] compile support for zlib compression.
57 # zlib-dynamic  Like "zlib", but the zlib library is expected to be a shared
58 #               library and will be loaded in run-time by the OpenSSL library.
59 # 386           generate 80386 code
60 # no-sse2       disables IA-32 SSE2 code, above option implies no-sse2
61 # no-<cipher>   build without specified algorithm (rsa, idea, rc5, ...)
62 # -<xxx> +<xxx> compiler options are passed through 
63 #
64 # DEBUG_SAFESTACK use type-safe stacks to enforce type-safety on stack items
65 #               provided to stack calls. Generates unique stack functions for
66 #               each possible stack type.
67 # DES_PTR       use pointer lookup vs arrays in the DES in crypto/des/des_locl.h
68 # DES_RISC1     use different DES_ENCRYPT macro that helps reduce register
69 #               dependancies but needs to more registers, good for RISC CPU's
70 # DES_RISC2     A different RISC variant.
71 # DES_UNROLL    unroll the inner DES loop, sometimes helps, somtimes hinders.
72 # DES_INT       use 'int' instead of 'long' for DES_LONG in crypto/des/des.h
73 #               This is used on the DEC Alpha where long is 8 bytes
74 #               and int is 4
75 # BN_LLONG      use the type 'long long' in crypto/bn/bn.h
76 # MD2_CHAR      use 'char' instead of 'int' for MD2_INT in crypto/md2/md2.h
77 # MD2_LONG      use 'long' instead of 'int' for MD2_INT in crypto/md2/md2.h
78 # IDEA_SHORT    use 'short' instead of 'int' for IDEA_INT in crypto/idea/idea.h
79 # IDEA_LONG     use 'long' instead of 'int' for IDEA_INT in crypto/idea/idea.h
80 # RC2_SHORT     use 'short' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
81 # RC2_LONG      use 'long' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
82 # RC4_CHAR      use 'char' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
83 # RC4_LONG      use 'long' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
84 # RC4_INDEX     define RC4_INDEX in crypto/rc4/rc4_locl.h.  This turns on
85 #               array lookups instead of pointer use.
86 # RC4_CHUNK     enables code that handles data aligned at long (natural CPU
87 #               word) boundary.
88 # RC4_CHUNK_LL  enables code that handles data aligned at long long boundary
89 #               (intended for 64-bit CPUs running 32-bit OS).
90 # BF_PTR        use 'pointer arithmatic' for Blowfish (unsafe on Alpha).
91 # BF_PTR2       intel specific version (generic version is more efficient).
92 #
93 # Following are set automatically by this script
94 #
95 # MD5_ASM       use some extra md5 assember,
96 # SHA1_ASM      use some extra sha1 assember, must define L_ENDIAN for x86
97 # RMD160_ASM    use some extra ripemd160 assember,
98 # SHA256_ASM    sha256_block is implemented in assembler
99 # SHA512_ASM    sha512_block is implemented in assembler
100 # AES_ASM       ASE_[en|de]crypt is implemented in assembler
101
102 # Minimum warning options... any contributions to OpenSSL should at least get
103 # past these. 
104
105 my $gcc_devteam_warn = "-Wall -pedantic -DPEDANTIC -Wno-long-long -Wsign-compare -Wmissing-prototypes -Wshadow -Wformat -Werror -DCRYPTO_MDEBUG_ALL -DCRYPTO_MDEBUG_ABORT -DREF_CHECK -DOPENSSL_NO_DEPRECATED";
106
107 my $strict_warnings = 0;
108
109 my $x86_gcc_des="DES_PTR DES_RISC1 DES_UNROLL";
110
111 # MD2_CHAR slags pentium pros
112 my $x86_gcc_opts="RC4_INDEX MD2_INT";
113
114 # MODIFY THESE PARAMETERS IF YOU ARE GOING TO USE THE 'util/speed.sh SCRIPT
115 # Don't worry about these normally
116
117 my $tcc="cc";
118 my $tflags="-fast -Xa";
119 my $tbn_mul="";
120 my $tlib="-lnsl -lsocket";
121 #$bits1="SIXTEEN_BIT ";
122 #$bits2="THIRTY_TWO_BIT ";
123 my $bits1="THIRTY_TWO_BIT ";
124 my $bits2="SIXTY_FOUR_BIT ";
125
126 my $x86_asm="x86cpuid.o:bn-586.o co-586.o x86-mont.o:des-586.o crypt586.o:aes-586.o aesni-x86.o:bf-586.o:md5-586.o:sha1-586.o sha256-586.o sha512-586.o:cast-586.o:rc4-586.o:rmd-586.o:rc5-586.o:wp_block.o wp-mmx.o:cmll-x86.o:ghash-x86.o";
127
128 my $x86_elf_asm="$x86_asm:elf";
129
130 my $x86_64_asm="x86_64cpuid.o:x86_64-gcc.o x86_64-mont.o::aes-x86_64.o aesni-x86_64.o::md5-x86_64.o:sha1-x86_64.o sha256-x86_64.o sha512-x86_64.o::rc4-x86_64.o:::wp-x86_64.o:cmll-x86_64.o cmll_misc.o:ghash-x86_64.o";
131 my $ia64_asm="ia64cpuid.o:bn-ia64.o ia64-mont.o::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o::rc4-ia64.o rc4_skey.o:::::ghash-ia64.o:void";
132 my $sparcv9_asm="sparcv9cap.o sparccpuid.o:bn-sparcv9.o sparcv9-mont.o sparcv9a-mont.o:des_enc-sparc.o fcrypt_b.o:aes_core.o aes_cbc.o aes-sparcv9.o:::sha1-sparcv9.o sha256-sparcv9.o sha512-sparcv9.o:::::::ghash-sparcv9.o:void";
133 my $sparcv8_asm=":sparcv8.o:des_enc-sparc.o fcrypt_b.o::::::::::::void";
134 my $alpha_asm="alphacpuid.o:bn_asm.o alpha-mont.o:::::sha1-alpha.o:::::::ghash-alpha.o:void";
135 my $mips32_asm=":bn-mips.o::aes_cbc.o aes-mips.o:::sha1-mips.o sha256-mips.o:::::::";
136 my $mips64_asm=":bn-mips.o mips-mont.o::aes_cbc.o aes-mips.o:::sha1-mips.o sha256-mips.o sha512-mips.o:::::::";
137 my $s390x_asm="s390xcap.o s390xcpuid.o:bn-s390x.o s390x-mont.o::aes_ctr.o aes-s390x.o:::sha1-s390x.o sha256-s390x.o sha512-s390x.o::rc4-s390x.o:::::ghash-s390x.o";
138 my $armv4_asm=":bn_asm.o armv4-mont.o::aes_cbc.o aes-armv4.o:::sha1-armv4-large.o sha256-armv4.o sha512-armv4.o:::::::ghash-armv4.o:void";
139 my $parisc11_asm="pariscid.o:bn_asm.o parisc-mont.o::aes_core.o aes_cbc.o aes-parisc.o:::sha1-parisc.o sha256-parisc.o sha512-parisc.o::rc4-parisc.o:::::ghash-parisc.o:32";
140 my $parisc20_asm="pariscid.o:pa-risc2W.o parisc-mont.o::aes_core.o aes_cbc.o aes-parisc.o:::sha1-parisc.o sha256-parisc.o sha512-parisc.o::rc4-parisc.o:::::ghash-parisc.o:64";
141 my $ppc32_asm="ppccpuid.o ppccap.o:bn-ppc.o ppc-mont.o ppc64-mont.o::aes_core.o aes_cbc.o aes-ppc.o:::sha1-ppc.o sha256-ppc.o:::::::";
142 my $ppc64_asm="ppccpuid.o ppccap.o:bn-ppc.o ppc-mont.o ppc64-mont.o::aes_core.o aes_cbc.o aes-ppc.o:::sha1-ppc.o sha256-ppc.o sha512-ppc.o:::::::";
143 my $no_asm="::::::::::::::void";
144
145 # As for $BSDthreads. Idea is to maintain "collective" set of flags,
146 # which would cover all BSD flavors. -pthread applies to them all, 
147 # but is treated differently. OpenBSD expands is as -D_POSIX_THREAD
148 # -lc_r, which is sufficient. FreeBSD 4.x expands it as -lc_r,
149 # which has to be accompanied by explicit -D_THREAD_SAFE and
150 # sometimes -D_REENTRANT. FreeBSD 5.x expands it as -lc_r, which
151 # seems to be sufficient?
152 my $BSDthreads="-pthread -D_THREAD_SAFE -D_REENTRANT";
153
154 #config-string  $cc : $cflags : $unistd : $thread_cflag : $sys_id : $lflags : $bn_ops : $cpuid_obj : $bn_obj : $des_obj : $aes_obj : $bf_obj : $md5_obj : $sha1_obj : $cast_obj : $rc4_obj : $rmd160_obj : $rc5_obj : $wp_obj : $cmll_obj : $modes_obj : $dso_scheme : $shared_target : $shared_cflag : $shared_ldflag : $shared_extension : $ranlib : $arflags : $multilib
155
156 my %table=(
157 # File 'TABLE' (created by 'make TABLE') contains the data from this list,
158 # formatted for better readability.
159
160
161 #"b",           "${tcc}:${tflags}::${tlib}:${bits1}:${tbn_mul}::",
162 #"bl-4c-2c",    "${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR MD2_CHAR:${tbn_mul}::",
163 #"bl-4c-ri",    "${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR RC4_INDEX:${tbn_mul}::",
164 #"b2-is-ri-dp", "${tcc}:${tflags}::${tlib}:${bits2}IDEA_SHORT RC4_INDEX DES_PTR:${tbn_mul}::",
165
166 # Our development configs
167 "purify",       "purify gcc:-g -DPURIFY -Wall::(unknown)::-lsocket -lnsl::::",
168 "debug",        "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -ggdb -g2 -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror::(unknown)::-lefence::::",
169 "debug-ben",    "gcc:$gcc_devteam_warn -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DDEBUG_SAFESTACK -O2 -pipe::(unknown):::::",
170 "debug-ben-openbsd","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
171 "debug-ben-openbsd-debug","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -g3 -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
172 "debug-ben-debug",      "gcc:$gcc_devteam_warn -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -g3 -O2 -pipe::(unknown)::::::",
173 "debug-ben-no-opt",     "gcc: -Wall -Wmissing-prototypes -Wstrict-prototypes -Wmissing-declarations -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG -Werror -DL_ENDIAN -DTERMIOS -Wall -g3::(unknown)::::::",
174 "debug-ben-strict",     "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DCONST_STRICT -O2 -Wall -Wshadow -Werror -Wpointer-arith -Wcast-qual -Wwrite-strings -pipe::(unknown)::::::",
175 "debug-rse","cc:-DTERMIOS -DL_ENDIAN -pipe -O -g -ggdb3 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
176 "debug-bodo",   "gcc:-DL_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBIO_PAIR_DEBUG -DPEDANTIC -g -march=i486 -pedantic -Wshadow -Wall -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion::-D_REENTRANT:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
177 "debug-ulf", "gcc:-DTERMIOS -DL_ENDIAN -march=i486 -Wall -DBN_DEBUG -DBN_DEBUG_RAND -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -g -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations:::CYGWIN32:::${no_asm}:win32:cygwin-shared:::.dll",
178 "debug-steve64", "gcc:$gcc_devteam_warn -m64 -DL_ENDIAN -DTERMIO -DCONF_DEBUG -DDEBUG_SAFESTACK -g::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
179 "debug-steve32", "gcc:$gcc_devteam_warn -m32 -DL_ENDIAN -DCONF_DEBUG -DDEBUG_SAFESTACK -g -pipe::-D_REENTRANT::-rdynamic -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC:-m32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
180 "debug-steve-opt", "gcc:$gcc_devteam_warn -m64 -O3 -DL_ENDIAN -DTERMIO -DCONF_DEBUG -DDEBUG_SAFESTACK -g::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
181 "debug-levitte-linux-elf","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
182 "debug-levitte-linux-noasm","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
183 "debug-levitte-linux-elf-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
184 "debug-levitte-linux-noasm-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
185 "debug-geoff32","gcc:-DBN_DEBUG -DBN_DEBUG_RAND -DBN_STRICT -DPURIFY -DOPENSSL_NO_DEPRECATED -DOPENSSL_NO_ASM -DOPENSSL_NO_INLINE_ASM -DL_ENDIAN -DTERMIO -DPEDANTIC -O1 -ggdb2 -Wall -Werror -Wundef -pedantic -Wshadow -Wpointer-arith -Wbad-function-cast -Wcast-align -Wsign-compare -Wmissing-prototypes -Wmissing-declarations -Wno-long-long::-D_REENTRANT::-ldl:BN_LLONG:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
186 "debug-geoff64","gcc:-DBN_DEBUG -DBN_DEBUG_RAND -DBN_STRICT -DPURIFY -DOPENSSL_NO_DEPRECATED -DOPENSSL_NO_ASM -DOPENSSL_NO_INLINE_ASM -DL_ENDIAN -DTERMIO -DPEDANTIC -O1 -ggdb2 -Wall -Werror -Wundef -pedantic -Wshadow -Wpointer-arith -Wbad-function-cast -Wcast-align -Wsign-compare -Wmissing-prototypes -Wmissing-declarations -Wno-long-long::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
187 "debug-linux-pentium","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -mcpu=pentium -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
188 "debug-linux-ppro","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -mcpu=pentiumpro -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
189 "debug-linux-elf","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -march=i486 -Wall::-D_REENTRANT::-lefence -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
190 "debug-linux-elf-noefence","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
191 "debug-linux-ia32-aes", "gcc:-DAES_EXPERIMENTAL -DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:x86cpuid.o:bn-586.o co-586.o x86-mont.o:des-586.o crypt586.o:aes_x86core.o aes_cbc.o aesni-x86.o:bf-586.o:md5-586.o:sha1-586.o sha256-586.o sha512-586.o:cast-586.o:rc4-586.o:rmd-586.o:rc5-586.o:wp_block.o wp-mmx.o::ghash-x86.o:elf:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
192 "debug-linux-generic32","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DTERMIO -g -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
193 "debug-linux-generic64","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DTERMIO -g -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
194 "debug-linux-x86_64","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -m64 -DL_ENDIAN -DTERMIO -g -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
195 "dist",         "cc:-O::(unknown)::::::",
196
197 # Basic configs that should work on any (32 and less bit) box
198 "gcc",          "gcc:-O3::(unknown):::BN_LLONG:::",
199 "cc",           "cc:-O::(unknown)::::::",
200
201 ####VOS Configurations
202 "vos-gcc","gcc:-O3 -Wall -D_POSIX_C_SOURCE=200112L -D_BSD -D_VOS_EXTENDED_NAMES -DB_ENDIAN::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
203 "debug-vos-gcc","gcc:-O0 -g -Wall -D_POSIX_C_SOURCE=200112L -D_BSD -D_VOS_EXTENDED_NAMES -DB_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
204
205 #### Solaris x86 with GNU C setups
206 # -DOPENSSL_NO_INLINE_ASM switches off inline assembler. We have to do it
207 # here because whenever GNU C instantiates an assembler template it
208 # surrounds it with #APP #NO_APP comment pair which (at least Solaris
209 # 7_x86) /usr/ccs/bin/as fails to assemble with "Illegal mnemonic"
210 # error message.
211 "solaris-x86-gcc","gcc:-O3 -fomit-frame-pointer -march=pentium -Wall -DL_ENDIAN -DOPENSSL_NO_INLINE_ASM::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
212 # -shared -static-libgcc might appear controversial, but modules taken
213 # from static libgcc do not have relocations and linking them into our
214 # shared objects doesn't have any negative side-effects. On the contrary,
215 # doing so makes it possible to use gcc shared build with Sun C. Given
216 # that gcc generates faster code [thanks to inline assembler], I would
217 # actually recommend to consider using gcc shared build even with vendor
218 # compiler:-)
219 #                                               <appro@fy.chalmers.se>
220 "solaris64-x86_64-gcc","gcc:-m64 -O3 -Wall -DL_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:solaris-shared:-fPIC:-m64 -shared -static-libgcc:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
221  
222 #### Solaris x86 with Sun C setups
223 "solaris-x86-cc","cc:-fast -O -Xa::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
224 "solaris64-x86_64-cc","cc:-fast -xarch=amd64 -xstrconst -Xa -DL_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:solaris-shared:-KPIC:-xarch=amd64 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
225
226 #### SPARC Solaris with GNU C setups
227 "solaris-sparcv7-gcc","gcc:-O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
228 "solaris-sparcv8-gcc","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
229 # -m32 should be safe to add as long as driver recognizes -mcpu=ultrasparc
230 "solaris-sparcv9-gcc","gcc:-m32 -mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
231 "solaris64-sparcv9-gcc","gcc:-m64 -mcpu=ultrasparc -O3 -Wall -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-m64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
232 ####
233 "debug-solaris-sparcv8-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -O -g -mv8 -Wall -DB_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
234 "debug-solaris-sparcv9-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -DPEDANTIC -O -g -mcpu=ultrasparc -pedantic -ansi -Wall -Wshadow -Wno-long-long -D__EXTENSIONS__ -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
235
236 #### SPARC Solaris with Sun C setups
237 # SC4.0 doesn't pass 'make test', upgrade to SC5.0 or SC4.2.
238 # SC4.2 is ok, better than gcc even on bn as long as you tell it -xarch=v8
239 # SC5.0 note: Compiler common patch 107357-01 or later is required!
240 "solaris-sparcv7-cc","cc:-xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
241 "solaris-sparcv8-cc","cc:-xarch=v8 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
242 "solaris-sparcv9-cc","cc:-xtarget=ultra -xarch=v8plus -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
243 "solaris64-sparcv9-cc","cc:-xtarget=ultra -xarch=v9 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-xarch=v9 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):/usr/ccs/bin/ar rs::/64",
244 ####
245 "debug-solaris-sparcv8-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -xarch=v8 -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
246 "debug-solaris-sparcv9-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -xtarget=ultra -xarch=v8plus -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", 
247
248 #### SunOS configs, assuming sparc for the gcc one.
249 #"sunos-cc", "cc:-O4 -DNOPROTO -DNOCONST::(unknown):SUNOS::DES_UNROLL:${no_asm}::",
250 "sunos-gcc","gcc:-O3 -mv8 -Dssize_t=int::(unknown):SUNOS::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL DES_PTR DES_RISC1:${no_asm}::",
251
252 #### IRIX 5.x configs
253 # -mips2 flag is added by ./config when appropriate.
254 "irix-gcc","gcc:-O3 -DTERMIOS -DB_ENDIAN::(unknown):::BN_LLONG MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK DES_UNROLL DES_RISC2 DES_PTR BF_PTR:${mips32_asm}:o32:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
255 "irix-cc", "cc:-O2 -use_readonly_const -DTERMIOS -DB_ENDIAN::(unknown):::BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${mips32_asm}:o32:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
256 #### IRIX 6.x configs
257 # Only N32 and N64 ABIs are supported. If you need O32 ABI build, invoke
258 # './Configure irix-cc -o32' manually.
259 "irix-mips3-gcc","gcc:-mabi=n32 -O3 -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK_LL DES_UNROLL DES_RISC2 DES_PTR BF_PTR SIXTY_FOUR_BIT:${mips64_asm}:n32:dlfcn:irix-shared::-mabi=n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::32",
260 "irix-mips3-cc", "cc:-n32 -mips3 -O2 -use_readonly_const -G0 -rdata_shared -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::DES_PTR RC4_CHAR RC4_CHUNK_LL DES_RISC2 DES_UNROLL BF_PTR SIXTY_FOUR_BIT:${mips64_asm}:n32:dlfcn:irix-shared::-n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::32",
261 # N64 ABI builds.
262 "irix64-mips4-gcc","gcc:-mabi=64 -mips4 -O3 -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG:${mips64_asm}:64:dlfcn:irix-shared::-mabi=64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
263 "irix64-mips4-cc", "cc:-64 -mips4 -O2 -use_readonly_const -G0 -rdata_shared -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG:${mips64_asm}:64:dlfcn:irix-shared::-64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
264
265 #### Unified HP-UX ANSI C configs.
266 # Special notes:
267 # - Originally we were optimizing at +O4 level. It should be noted
268 #   that the only difference between +O3 and +O4 is global inter-
269 #   procedural analysis. As it has to be performed during the link
270 #   stage the compiler leaves behind certain pseudo-code in lib*.a
271 #   which might be release or even patch level specific. Generating
272 #   the machine code for and analyzing the *whole* program appears
273 #   to be *extremely* memory demanding while the performance gain is
274 #   actually questionable. The situation is intensified by the default
275 #   HP-UX data set size limit (infamous 'maxdsiz' tunable) of 64MB
276 #   which is way too low for +O4. In other words, doesn't +O3 make
277 #   more sense?
278 # - Keep in mind that the HP compiler by default generates code
279 #   suitable for execution on the host you're currently compiling at.
280 #   If the toolkit is ment to be used on various PA-RISC processors
281 #   consider './config +DAportable'.
282 # - +DD64 is chosen in favour of +DA2.0W because it's meant to be
283 #   compatible with *future* releases.
284 # - If you run ./Configure hpux-parisc-[g]cc manually don't forget to
285 #   pass -D_REENTRANT on HP-UX 10 and later.
286 # - -DMD32_XARRAY triggers workaround for compiler bug we ran into in
287 #   32-bit message digests. (For the moment of this writing) HP C
288 #   doesn't seem to "digest" too many local variables (they make "him"
289 #   chew forever:-). For more details look-up MD32_XARRAY comment in
290 #   crypto/sha/sha_lcl.h.
291 #                                       <appro@fy.chalmers.se>
292 #
293 # Since there is mention of this in shlib/hpux10-cc.sh
294 "hpux-parisc-cc-o4","cc:-Ae +O4 +ESlit -z -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
295 "hpux-parisc-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-Wl,+s -ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
296 "hpux-parisc1_1-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-Wl,+s -ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${parisc11_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
297 "hpux-parisc2-gcc","gcc:-march=2.0 -O3 -DB_ENDIAN -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL DES_RISC1::pa-risc2.o:::::::::::::void:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
298 "hpux64-parisc2-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2W.o:::::::::::::void:dlfcn:hpux-shared:-fpic:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_64",
299
300 # More attempts at unified 10.X and 11.X targets for HP C compiler.
301 #
302 # Chris Ruemmler <ruemmler@cup.hp.com>
303 # Kevin Steves <ks@hp.se>
304 "hpux-parisc-cc","cc:+O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
305 "hpux-parisc1_1-cc","cc:+DA1.1 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${parisc11_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa1.1",
306 "hpux-parisc2-cc","cc:+DA2.0 +DS2.0 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2.o:::::::::::::void:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
307 "hpux64-parisc2-cc","cc:+DD64 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${parisc20_asm}:dlfcn:hpux-shared:+Z:+DD64 -b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_64",
308
309 # HP/UX IA-64 targets
310 "hpux-ia64-cc","cc:-Ae +DD32 +O2 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD32 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux32",
311 # Frank Geurts <frank.geurts@nl.abnamro.com> has patiently assisted with
312 # with debugging of the following config.
313 "hpux64-ia64-cc","cc:-Ae +DD64 +O3 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD64 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux64",
314 # GCC builds...
315 "hpux-ia64-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux32",
316 "hpux64-ia64-gcc","gcc:-mlp64 -O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-mlp64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux64", 
317
318 # Legacy HPUX 9.X configs...
319 "hpux-cc",      "cc:-DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY -Ae +ESlit +O2 -z::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
320 "hpux-gcc",     "gcc:-DB_ENDIAN -DBN_DIV2W -O3::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
321
322 #### HP MPE/iX http://jazz.external.hp.com/src/openssl/
323 "MPE/iX-gcc",   "gcc:-D_ENDIAN -DBN_DIV2W -O3 -D_POSIX_SOURCE -D_SOCKET_SOURCE -I/SYSLOG/PUB::(unknown):MPE:-L/SYSLOG/PUB -lsyslog -lsocket -lcurses:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:::",
324
325 # DEC Alpha OSF/1/Tru64 targets.
326 #
327 #       "What's in a name? That which we call a rose
328 #        By any other word would smell as sweet."
329 #
330 # - William Shakespeare, "Romeo & Juliet", Act II, scene II.
331 #
332 # For gcc, the following gave a %50 speedup on a 164 over the 'DES_INT' version
333 #
334 "osf1-alpha-gcc", "gcc:-O3::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_RISC1:${alpha_asm}:dlfcn:alpha-osf1-shared:::.so",
335 "osf1-alpha-cc",  "cc:-std1 -tune host -O4 -readonly_strings::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${alpha_asm}:dlfcn:alpha-osf1-shared:::.so",
336 "tru64-alpha-cc", "cc:-std1 -tune host -fast -readonly_strings::-pthread:::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${alpha_asm}:dlfcn:alpha-osf1-shared::-msym:.so",
337
338 ####
339 #### Variety of LINUX:-)
340 ####
341 # *-generic* is endian-neutral target, but ./config is free to
342 # throw in -D[BL]_ENDIAN, whichever appropriate...
343 "linux-generic32","gcc:-DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
344 "linux-ppc",    "gcc:-DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${ppc32_asm}:linux32:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
345 # It's believed that majority of ARM toolchains predefine appropriate -march.
346 # If you compiler does not, do complement config command line with one!
347 "linux-armv4",  "gcc:-DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${armv4_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
348 #### IA-32 targets...
349 "linux-ia32-icc",       "icc:-DL_ENDIAN -DTERMIO -O2 -no_cpprt::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-KPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
350 "linux-elf",    "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
351 "linux-aout",   "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -march=i486 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out",
352 ####
353 "linux-generic64","gcc:-DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
354 "linux-ppc64",  "gcc:-m64 -DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${ppc64_asm}:linux64:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
355 "linux-ia64",   "gcc:-DL_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_INT:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
356 "linux-ia64-ecc","ecc:-DL_ENDIAN -DTERMIO -O2 -Wall -no_cpprt::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
357 "linux-ia64-icc","icc:-DL_ENDIAN -DTERMIO -O2 -Wall -no_cpprt::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_RISC1 DES_INT:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
358 "linux-x86_64", "gcc:-m64 -DL_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
359 "linux64-s390x",        "gcc:-m64 -DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:${s390x_asm}:64:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
360 #### So called "highgprs" target for z/Architecture CPUs
361 # "Highgprs" is kernel feature first implemented in Linux 2.6.32, see
362 # /proc/cpuinfo. The idea is to preserve most significant bits of
363 # general purpose registers not only upon 32-bit process context
364 # switch, but even on asynchronous signal delivery to such process.
365 # This makes it possible to deploy 64-bit instructions even in legacy
366 # application context and achieve better [or should we say adequate]
367 # performance. The build is binary compatible with linux-generic32,
368 # and the idea is to be able to install the resulting libcrypto.so
369 # alongside generic one, e.g. as /lib/highgprs/libcrypto.so.x.y, for
370 # ldconfig and run-time linker to autodiscover. Unfortunately it
371 # doesn't work just yet, because of couple of bugs in glibc
372 # sysdep/s390/dl-procinfo.c affecting ldconfig and ld.so.1...
373 "linux32-s390x",        "gcc:-m31 -Wa,-mzarch -DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:s390xcap.o s390xcpuid.o:bn_asm.o s390x-mont.o::aes_ctr.o aes-s390x.o:::sha1-s390x.o sha256-s390x.o sha512-s390x.o::rc4-s390x.o:::::ghash-s390x.o:31:dlfcn:linux-shared:-fPIC:-m31:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/highgprs",
374 #### SPARC Linux setups
375 # Ray Miller <ray.miller@computing-services.oxford.ac.uk> has patiently
376 # assisted with debugging of following two configs.
377 "linux-sparcv8","gcc:-mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
378 # it's a real mess with -mcpu=ultrasparc option under Linux, but
379 # -Wa,-Av8plus should do the trick no matter what.
380 "linux-sparcv9","gcc:-m32 -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:linux-shared:-fPIC:-m32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
381 # GCC 3.1 is a requirement
382 "linux64-sparcv9","gcc:-m64 -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:ULTRASPARC:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
383 #### Alpha Linux with GNU C and Compaq C setups
384 # Special notes:
385 # - linux-alpha+bwx-gcc is ment to be used from ./config only. If you
386 #   ought to run './Configure linux-alpha+bwx-gcc' manually, do
387 #   complement the command line with -mcpu=ev56, -mcpu=ev6 or whatever
388 #   which is appropriate.
389 # - If you use ccc keep in mind that -fast implies -arch host and the
390 #   compiler is free to issue instructions which gonna make elder CPU
391 #   choke. If you wish to build "blended" toolkit, add -arch generic
392 #   *after* -fast and invoke './Configure linux-alpha-ccc' manually.
393 #
394 #                                       <appro@fy.chalmers.se>
395 #
396 "linux-alpha-gcc","gcc:-O3 -DL_ENDIAN -DTERMIO::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_RISC1 DES_UNROLL:${alpha_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
397 "linux-alpha+bwx-gcc","gcc:-O3 -DL_ENDIAN -DTERMIO::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${alpha_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
398 "linux-alpha-ccc","ccc:-fast -readonly_strings -DL_ENDIAN -DTERMIO::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${alpha_asm}",
399 "linux-alpha+bwx-ccc","ccc:-fast -readonly_strings -DL_ENDIAN -DTERMIO::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${alpha_asm}",
400
401 # Android: linux-* but without -DTERMIO and pointers to headers and libs.
402 "android","gcc:-mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
403 "android-armv7","gcc:-march=armv7-a -mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${armv4_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
404
405 #### *BSD [do see comment about ${BSDthreads} above!]
406 "BSD-generic32","gcc:-DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
407 "BSD-x86",      "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
408 "BSD-x86-elf",  "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
409 "debug-BSD-x86-elf",    "gcc:-DL_ENDIAN -DTERMIOS -O3 -Wall -g::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
410 "BSD-sparcv8",  "gcc:-DB_ENDIAN -DTERMIOS -O3 -mv8 -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${sparcv8_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
411
412 "BSD-generic64","gcc:-DTERMIOS -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
413 # -DMD32_REG_T=int doesn't actually belong in sparc64 target, it
414 # simply *happens* to work around a compiler bug in gcc 3.3.3,
415 # triggered by RIPEMD160 code.
416 "BSD-sparc64",  "gcc:-DB_ENDIAN -DTERMIOS -O3 -DMD32_REG_T=int -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC2 BF_PTR:${sparcv9_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
417 "BSD-ia64",     "gcc:-DL_ENDIAN -DTERMIOS -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_INT:${ia64_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
418 "BSD-x86_64",   "gcc:-DL_ENDIAN -DTERMIOS -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
419
420 "bsdi-elf-gcc",     "gcc:-DPERL5 -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall::(unknown)::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
421
422 "nextstep",     "cc:-O -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
423 "nextstep3.3",  "cc:-O3 -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
424
425 # NCR MP-RAS UNIX ver 02.03.01
426 "ncr-scde","cc:-O6 -Xa -Hoff=BEHAVED -686 -Hwide -Hiw::(unknown)::-lsocket -lnsl -lc89:${x86_gcc_des} ${x86_gcc_opts}:::",
427
428 # QNX
429 "qnx4", "cc:-DL_ENDIAN -DTERMIO::(unknown):::${x86_gcc_des} ${x86_gcc_opts}:",
430 "QNX6",       "gcc:-DTERMIOS::::-lsocket::${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
431 "QNX6-i386",  "gcc:-DL_ENDIAN -DTERMIOS -O2 -Wall::::-lsocket:${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
432
433 # BeOS
434 "beos-x86-r5",   "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -mcpu=pentium -Wall::-D_REENTRANT:BEOS:-lbe -lnet:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:beos:beos-shared:-fPIC -DPIC:-shared:.so",
435 "beos-x86-bone", "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -mcpu=pentium -Wall::-D_REENTRANT:BEOS:-lbe -lbind -lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:beos:beos-shared:-fPIC:-shared:.so",
436
437 #### SCO/Caldera targets.
438 #
439 # Originally we had like unixware-*, unixware-*-pentium, unixware-*-p6, etc.
440 # Now we only have blended unixware-* as it's the only one used by ./config.
441 # If you want to optimize for particular microarchitecture, bypass ./config
442 # and './Configure unixware-7 -Kpentium_pro' or whatever appropriate.
443 # Note that not all targets include assembler support. Mostly because of
444 # lack of motivation to support out-of-date platforms with out-of-date
445 # compiler drivers and assemblers. Tim Rice <tim@multitalents.net> has
446 # patiently assisted to debug most of it.
447 #
448 # UnixWare 2.0x fails destest with -O.
449 "unixware-2.0","cc:-DFILIO_H -DNO_STRINGS_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
450 "unixware-2.1","cc:-O -DFILIO_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
451 "unixware-7","cc:-O -DFILIO_H -Kalloca::-Kthread::-lsocket -lnsl:BN_LLONG MD2_CHAR RC4_INDEX ${x86_gcc_des}:${x86_elf_asm}:dlfcn:svr5-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
452 "unixware-7-gcc","gcc:-DL_ENDIAN -DFILIO_H -O3 -fomit-frame-pointer -march=pentium -Wall::-D_REENTRANT::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:gnu-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
453 # SCO 5 - Ben Laurie <ben@algroup.co.uk> says the -O breaks the SCO cc.
454 "sco5-cc",  "cc:-belf::(unknown)::-lsocket -lnsl:${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
455 "sco5-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
456
457 #### IBM's AIX.
458 "aix3-cc",  "cc:-O -DB_ENDIAN -qmaxmem=16384::(unknown):AIX::BN_LLONG RC4_CHAR:::",
459 "aix-gcc",  "gcc:-O -DB_ENDIAN::-pthread:AIX::BN_LLONG RC4_CHAR:${ppc32_asm}:aix32:dlfcn:aix-shared::-shared -Wl,-G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X32",
460 "aix64-gcc","gcc:-maix64 -O -DB_ENDIAN::-pthread:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR:${ppc64_asm}:aix64:dlfcn:aix-shared::-maix64 -shared -Wl,-G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X64",
461 # Below targets assume AIX 5. Idea is to effectively disregard $OBJECT_MODE
462 # at build time. $OBJECT_MODE is respected at ./config stage!
463 "aix-cc",   "cc:-q32 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded:AIX::BN_LLONG RC4_CHAR:${ppc32_asm}:aix32:dlfcn:aix-shared::-q32 -G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 32",
464 "aix64-cc", "cc:-q64 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR:${ppc64_asm}:aix64:dlfcn:aix-shared::-q64 -G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 64",
465
466 #
467 # Cray T90 and similar (SDSC)
468 # It's Big-endian, but the algorithms work properly when B_ENDIAN is NOT
469 # defined.  The T90 ints and longs are 8 bytes long, and apparently the
470 # B_ENDIAN code assumes 4 byte ints.  Fortunately, the non-B_ENDIAN and
471 # non L_ENDIAN code aligns the bytes in each word correctly.
472 #
473 # The BIT_FIELD_LIMITS define is to avoid two fatal compiler errors:
474 #'Taking the address of a bit field is not allowed. '
475 #'An expression with bit field exists as the operand of "sizeof" '
476 # (written by Wayne Schroeder <schroede@SDSC.EDU>)
477 #
478 # j90 is considered the base machine type for unicos machines,
479 # so this configuration is now called "cray-j90" ...
480 "cray-j90", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG DES_INT:::",
481
482 #
483 # Cray T3E (Research Center Juelich, beckman@acl.lanl.gov)
484 #
485 # The BIT_FIELD_LIMITS define was written for the C90 (it seems).  I added
486 # another use.  Basically, the problem is that the T3E uses some bit fields
487 # for some st_addr stuff, and then sizeof and address-of fails
488 # I could not use the ams/alpha.o option because the Cray assembler, 'cam'
489 # did not like it.
490 "cray-t3e", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT:::",
491
492 # DGUX, 88100.
493 "dgux-R3-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown):::RC4_INDEX DES_UNROLL:::",
494 "dgux-R4-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lnsl -lsocket:RC4_INDEX DES_UNROLL:::",
495 "dgux-R4-x86-gcc",      "gcc:-O3 -fomit-frame-pointer -DL_ENDIAN::(unknown)::-lnsl -lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
496
497 # Sinix/ReliantUNIX RM400
498 # NOTE: The CDS++ Compiler up to V2.0Bsomething has the IRIX_CC_BUG optimizer problem. Better use -g  */
499 "ReliantUNIX","cc:-KPIC -g -DTERMIOS -DB_ENDIAN::-Kthread:SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:BN_LLONG DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${no_asm}:dlfcn:reliantunix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
500 "SINIX","cc:-O::(unknown):SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:RC4_INDEX RC4_CHAR:::",
501 "SINIX-N","/usr/ucb/cc:-O2 -misaligned::(unknown)::-lucb:RC4_INDEX RC4_CHAR:::",
502
503 # SIEMENS BS2000/OSD: an EBCDIC-based mainframe
504 "BS2000-OSD","c89:-O -XLLML -XLLMK -XL -DB_ENDIAN -DTERMIOS -DCHARSET_EBCDIC::(unknown)::-lsocket -lnsl:THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
505
506 # OS/390 Unix an EBCDIC-based Unix system on IBM mainframe
507 # You need to compile using the c89.sh wrapper in the tools directory, because the
508 # IBM compiler does not like the -L switch after any object modules.
509 #
510 "OS390-Unix","c89.sh:-O -DB_ENDIAN -DCHARSET_EBCDIC -DNO_SYS_PARAM_H  -D_ALL_SOURCE::(unknown):::THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
511
512 # Visual C targets
513 #
514 # Win64 targets, WIN64I denotes IA-64 and WIN64A - AMD64
515 "VC-WIN64I","cl:-W3 -Gs0 -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64I::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:ia64cpuid.o:ia64.o ia64-mont.o::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o:::::::ghash-ia64.o:ias:win32",
516 "VC-WIN64A","cl:-W3 -Gs0 -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64A::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:x86_64cpuid.o:bn_asm.o x86_64-mont.o::aes-x86_64.o aesni-x86_64.o::md5-x86_64.o:sha1-x86_64.o sha256-x86_64.o sha512-x86_64.o::rc4-x86_64.o:::wp-x86_64.o:cmll-x86_64.o cmll_misc.o:ghash-x86_64.o:auto:win32",
517 "debug-VC-WIN64I","cl:-W3 -Gs0 -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64I::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:ia64cpuid.o:ia64.o::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o:::::::ghash-ia64.o:ias:win32",
518 "debug-VC-WIN64A","cl:-W3 -Gs0 -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64A::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:x86_64cpuid.o:bn_asm.o x86_64-mont.o::aes-x86_64.o::md5-x86_64.o:sha1-x86_64.o sha256-x86_64.o sha512-x86_64.o::rc4-x86_64.o:::wp-x86_64.o:cmll-x86_64.o cmll_misc.o:ghash-x86_64.o:auto:win32",
519 # x86 Win32 target defaults to ANSI API, if you want UNICODE, complement
520 # 'perl Configure VC-WIN32' with '-DUNICODE -D_UNICODE'
521 "VC-WIN32","cl:-W3 -WX -Gs0 -GF -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -D_CRT_SECURE_NO_DEPRECATE:::WIN32::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${x86_asm}:win32n:win32",
522 # Unified CE target
523 "debug-VC-WIN32","cl:-W3 -WX -Gs0 -GF -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -D_CRT_SECURE_NO_DEPRECATE:::WIN32::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${x86_asm}:win32n:win32",
524 "VC-CE","cl::::WINCE::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
525
526 # Borland C++ 4.5
527 "BC-32","bcc32::::WIN32::BN_LLONG DES_PTR RC4_INDEX EXPORT_VAR_AS_FN:${no_asm}:win32",
528
529 # MinGW
530 "mingw", "gcc:-mno-cygwin -DL_ENDIAN -DWIN32_LEAN_AND_MEAN -fomit-frame-pointer -O3 -march=i486 -Wall::-D_MT:MINGW32:-lws2_32 -lgdi32 -lcrypt32:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts} EXPORT_VAR_AS_FN:${x86_asm}:coff:win32:cygwin-shared:-D_WINDLL -DOPENSSL_USE_APPLINK:-mno-cygwin:.dll.a",
531 # As for OPENSSL_USE_APPLINK. Applink makes it possible to use .dll
532 # compiled with one compiler with application compiled with another
533 # compiler. It's possible to engage Applink support in mingw64 build,
534 # but it's not done, because till mingw64 supports structured exception
535 # handling, one can't seriously consider its binaries for using with
536 # non-mingw64 run-time environment. And as mingw64 is always consistent
537 # with itself, Applink is never engaged and can as well be omitted.
538 "mingw64", "gcc:-mno-cygwin -DL_ENDIAN -O3 -Wall -DWIN32_LEAN_AND_MEAN -DUNICODE -D_UNICODE::-D_MT:MINGW64:-lws2_32 -lgdi32 -lcrypt32:SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:${x86_64_asm}:mingw64:win32:cygwin-shared:-D_WINDLL:-mno-cygwin:.dll.a",
539
540 # UWIN 
541 "UWIN", "cc:-DTERMIOS -DL_ENDIAN -O -Wall:::UWIN::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
542
543 # Cygwin
544 "Cygwin-pre1.3", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall::(unknown):CYGWIN32::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
545 "Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall:::CYGWIN32::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:coff:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
546 "debug-Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -march=i486 -Wall -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -g -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror:::CYGWIN32:::${no_asm}:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
547
548 # NetWare from David Ward (dsward@novell.com)
549 # requires either MetroWerks NLM development tools, or gcc / nlmconv
550 # NetWare defaults socket bio to WinSock sockets. However,
551 # the builds can be configured to use BSD sockets instead.
552 # netware-clib => legacy CLib c-runtime support
553 "netware-clib", "mwccnlm::::::${x86_gcc_opts}::",
554 "netware-clib-bsdsock", "mwccnlm::::::${x86_gcc_opts}::",
555 "netware-clib-gcc", "i586-netware-gcc:-nostdinc -I/ndk/nwsdk/include/nlm -I/ndk/ws295sdk/include -DL_ENDIAN -DNETWARE_CLIB -DOPENSSL_SYSNAME_NETWARE -O2 -Wall:::::${x86_gcc_opts}::",
556 "netware-clib-bsdsock-gcc", "i586-netware-gcc:-nostdinc -I/ndk/nwsdk/include/nlm -DNETWARE_BSDSOCK -DNETDB_USE_INTERNET -DL_ENDIAN -DNETWARE_CLIB -DOPENSSL_SYSNAME_NETWARE -O2 -Wall:::::${x86_gcc_opts}::",
557 # netware-libc => LibC/NKS support
558 "netware-libc", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
559 "netware-libc-bsdsock", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
560 "netware-libc-gcc", "i586-netware-gcc:-nostdinc -I/ndk/libc/include -I/ndk/libc/include/winsock -DL_ENDIAN -DNETWARE_LIBC -DOPENSSL_SYSNAME_NETWARE -DTERMIO -O2 -Wall:::::BN_LLONG ${x86_gcc_opts}::",
561 "netware-libc-bsdsock-gcc", "i586-netware-gcc:-nostdinc -I/ndk/libc/include -DNETWARE_BSDSOCK -DL_ENDIAN -DNETWARE_LIBC -DOPENSSL_SYSNAME_NETWARE -DTERMIO -O2 -Wall:::::BN_LLONG ${x86_gcc_opts}::",
562
563 # DJGPP
564 "DJGPP", "gcc:-I/dev/env/WATT_ROOT/inc -DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -Wall:::MSDOS:-L/dev/env/WATT_ROOT/lib -lwatt:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out:",
565
566 # Ultrix from Bernhard Simon <simon@zid.tuwien.ac.at>
567 "ultrix-cc","cc:-std1 -O -Olimit 2500 -DL_ENDIAN::(unknown):::::::",
568 "ultrix-gcc","gcc:-O3 -DL_ENDIAN::(unknown):::BN_LLONG::::",
569 # K&R C is no longer supported; you need gcc on old Ultrix installations
570 ##"ultrix","cc:-O2 -DNOPROTO -DNOCONST -DL_ENDIAN::(unknown):::::::",
571
572 ##### MacOS X (a.k.a. Rhapsody or Darwin) setup
573 "rhapsody-ppc-cc","cc:-O3 -DB_ENDIAN::(unknown):MACOSX_RHAPSODY::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}::",
574 "darwin-ppc-cc","cc:-arch ppc -O3 -DB_ENDIAN -Wa,-force_cpusubtype_ALL::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc32_asm}:osx32:dlfcn:darwin-shared:-fPIC -fno-common:-arch ppc -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
575 "darwin64-ppc-cc","cc:-arch ppc64 -O3 -DB_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc64_asm}:osx64:dlfcn:darwin-shared:-fPIC -fno-common:-arch ppc64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
576 "darwin-i386-cc","cc:-arch i386 -O3 -fomit-frame-pointer -DL_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_INT RC4_CHUNK DES_UNROLL BF_PTR:${x86_asm}:macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch i386 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
577 "debug-darwin-i386-cc","cc:-arch i386 -g3 -DL_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_INT RC4_CHUNK DES_UNROLL BF_PTR:${x86_asm}:macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch i386 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
578 "darwin64-x86_64-cc","cc:-arch x86_64 -O3 -DL_ENDIAN -Wall::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch x86_64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
579 "debug-darwin-ppc-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DB_ENDIAN -g -Wall -O::-D_REENTRANT:MACOSX::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc32_asm}:osx32:dlfcn:darwin-shared:-fPIC:-dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
580
581 ##### A/UX
582 "aux3-gcc","gcc:-O2 -DTERMIO::(unknown):AUX:-lbsd:RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
583
584 ##### Sony NEWS-OS 4.x
585 "newsos4-gcc","gcc:-O -DB_ENDIAN::(unknown):NEWS4:-lmld -liberty:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::",
586
587 ##### GNU Hurd
588 "hurd-x86",  "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC",
589
590 ##### OS/2 EMX
591 "OS2-EMX", "gcc::::::::",
592
593 ##### VxWorks for various targets
594 "vxworks-ppc405","ccppc:-g -msoft-float -mlongcall -DCPU=PPC405 -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
595 "vxworks-ppc750","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h \$(DEBUG_FLAG):::VXWORKS:-r:::::",
596 "vxworks-ppc750-debug","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DDEBUG -g:::VXWORKS:-r:::::",
597 "vxworks-ppc860","ccppc:-nostdinc -msoft-float -DCPU=PPC860 -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
598 "vxworks-mipsle","ccmips:-B\$(WIND_BASE)/host/\$(WIND_HOST_TYPE)/lib/gcc-lib/ -DL_ENDIAN -EL -Wl,-EL -mips2 -mno-branch-likely -G 0 -fno-builtin -msoft-float -DCPU=MIPS32 -DMIPSEL -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r::${no_asm}::::::ranlibmips:",
599
600 ##### Compaq Non-Stop Kernel (Tandem)
601 "tandem-c89","c89:-Ww -D__TANDEM -D_XOPEN_SOURCE -D_XOPEN_SOURCE_EXTENDED=1 -D_TANDEM_SOURCE -DB_ENDIAN::(unknown):::THIRTY_TWO_BIT:::",
602
603 # uClinux
604 "uClinux-dist","$ENV{'CC'}:\$(CFLAGS)::-D_REENTRANT::\$(LDFLAGS) \$(LDLIBS):BN_LLONG:${no_asm}:$ENV{'LIBSSL_dlfcn'}:linux-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):$ENV{'RANLIB'}::",
605 "uClinux-dist64","$ENV{'CC'}:\$(CFLAGS)::-D_REENTRANT::\$(LDFLAGS) \$(LDLIBS):SIXTY_FOUR_BIT_LONG:${no_asm}:$ENV{'LIBSSL_dlfcn'}:linux-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):$ENV{'RANLIB'}::",
606
607 );
608
609 my @MK1MF_Builds=qw(VC-WIN64I VC-WIN64A
610                     debug-VC-WIN64I debug-VC-WIN64A
611                     VC-NT VC-CE VC-WIN32 debug-VC-WIN32
612                     BC-32 
613                     netware-clib netware-clib-bsdsock
614                     netware-libc netware-libc-bsdsock);
615
616 my $idx = 0;
617 my $idx_cc = $idx++;
618 my $idx_cflags = $idx++;
619 my $idx_unistd = $idx++;
620 my $idx_thread_cflag = $idx++;
621 my $idx_sys_id = $idx++;
622 my $idx_lflags = $idx++;
623 my $idx_bn_ops = $idx++;
624 my $idx_cpuid_obj = $idx++;
625 my $idx_bn_obj = $idx++;
626 my $idx_des_obj = $idx++;
627 my $idx_aes_obj = $idx++;
628 my $idx_bf_obj = $idx++;
629 my $idx_md5_obj = $idx++;
630 my $idx_sha1_obj = $idx++;
631 my $idx_cast_obj = $idx++;
632 my $idx_rc4_obj = $idx++;
633 my $idx_rmd160_obj = $idx++;
634 my $idx_rc5_obj = $idx++;
635 my $idx_wp_obj = $idx++;
636 my $idx_cmll_obj = $idx++;
637 my $idx_modes_obj = $idx++;
638 my $idx_perlasm_scheme = $idx++;
639 my $idx_dso_scheme = $idx++;
640 my $idx_shared_target = $idx++;
641 my $idx_shared_cflag = $idx++;
642 my $idx_shared_ldflag = $idx++;
643 my $idx_shared_extension = $idx++;
644 my $idx_ranlib = $idx++;
645 my $idx_arflags = $idx++;
646 my $idx_multilib = $idx++;
647
648 my $prefix="";
649 my $libdir="";
650 my $openssldir="";
651 my $exe_ext="";
652 my $install_prefix= "$ENV{'INSTALL_PREFIX'}";
653 my $cross_compile_prefix="";
654 my $fipslibdir="/usr/local/ssl/fips-2.0/lib/";
655 my $nofipscanistercheck=0;
656 my $fipsdso=0;
657 my $fipscanisterinternal="n";
658 my $fipscanisteronly = 0;
659 my $baseaddr="0xFB00000";
660 my $no_threads=0;
661 my $threads=0;
662 my $no_shared=0; # but "no-shared" is default
663 my $zlib=1;      # but "no-zlib" is default
664 my $no_krb5=0;   # but "no-krb5" is implied unless "--with-krb5-..." is used
665 my $no_rfc3779=1; # but "no-rfc3779" is default
666 my $no_asm=0;
667 my $no_dso=0;
668 my $no_gmp=0;
669 my @skip=();
670 my $Makefile="Makefile";
671 my $des_locl="crypto/des/des_locl.h";
672 my $des ="crypto/des/des.h";
673 my $bn  ="crypto/bn/bn.h";
674 my $md2 ="crypto/md2/md2.h";
675 my $rc4 ="crypto/rc4/rc4.h";
676 my $rc4_locl="crypto/rc4/rc4_locl.h";
677 my $idea        ="crypto/idea/idea.h";
678 my $rc2 ="crypto/rc2/rc2.h";
679 my $bf  ="crypto/bf/bf_locl.h";
680 my $bn_asm      ="bn_asm.o";
681 my $des_enc="des_enc.o fcrypt_b.o";
682 my $aes_enc="aes_core.o aes_cbc.o";
683 my $bf_enc      ="bf_enc.o";
684 my $cast_enc="c_enc.o";
685 my $rc4_enc="rc4_enc.o rc4_skey.o";
686 my $rc5_enc="rc5_enc.o";
687 my $md5_obj="";
688 my $sha1_obj="";
689 my $rmd160_obj="";
690 my $cmll_enc="camellia.o cmll_misc.o cmll_cbc.o";
691 my $processor="";
692 my $default_ranlib;
693 my $perl;
694 my $fips=0;
695
696
697 # All of the following is disabled by default (RC5 was enabled before 0.9.8):
698
699 my %disabled = ( # "what"         => "comment" [or special keyword "experimental"]
700                  "ec-nistp224-64-gcc-128" => "default",
701                  "gmp"            => "default",
702                  "jpake"          => "experimental",
703                  "md2"            => "default",
704                  "rc5"            => "default",
705                  "rfc3779"        => "default",
706                  "shared"         => "default",
707                  "store"          => "experimental",
708                  "zlib"           => "default",
709                  "zlib-dynamic"   => "default"
710                );
711 my @experimental = ();
712
713 # This is what $depflags will look like with the above defaults
714 # (we need this to see if we should advise the user to run "make depend"):
715 my $default_depflags = " -DOPENSSL_NO_GMP -DOPENSSL_NO_JPAKE -DOPENSSL_NO_MD2 -DOPENSSL_NO_RC5 -DOPENSSL_NO_RFC3779 -DOPENSSL_NO_STORE";
716
717 # Explicit "no-..." options will be collected in %disabled along with the defaults.
718 # To remove something from %disabled, use "enable-foo" (unless it's experimental).
719 # For symmetry, "disable-foo" is a synonym for "no-foo".
720
721 # For features called "experimental" here, a more explicit "experimental-foo" is needed to enable.
722 # We will collect such requests in @experimental.
723 # To avoid accidental use of experimental features, applications will have to use -DOPENSSL_EXPERIMENTAL_FOO.
724
725
726 my $no_sse2=0;
727
728 &usage if ($#ARGV < 0);
729
730 my $flags;
731 my $depflags;
732 my $openssl_experimental_defines;
733 my $openssl_algorithm_defines;
734 my $openssl_thread_defines;
735 my $openssl_sys_defines="";
736 my $openssl_other_defines;
737 my $libs;
738 my $libkrb5="";
739 my $target;
740 my $options;
741 my $symlink;
742 my $make_depend=0;
743 my %withargs=();
744
745 my @argvcopy=@ARGV;
746 my $argvstring="";
747 my $argv_unprocessed=1;
748
749 while($argv_unprocessed)
750         {
751         $flags="";
752         $depflags="";
753         $openssl_experimental_defines="";
754         $openssl_algorithm_defines="";
755         $openssl_thread_defines="";
756         $openssl_sys_defines="";
757         $openssl_other_defines="";
758         $libs="";
759         $target="";
760         $options="";
761         $symlink=1;
762
763         $argv_unprocessed=0;
764         $argvstring=join(' ',@argvcopy);
765
766 PROCESS_ARGS:
767         foreach (@argvcopy)
768                 {
769                 s /^-no-/no-/; # some people just can't read the instructions
770
771                 # rewrite some options in "enable-..." form
772                 s /^-?-?shared$/enable-shared/;
773                 s /^threads$/enable-threads/;
774                 s /^zlib$/enable-zlib/;
775                 s /^zlib-dynamic$/enable-zlib-dynamic/;
776
777                 if (/^no-(.+)$/ || /^disable-(.+)$/)
778                         {
779                         if (!($disabled{$1} eq "experimental"))
780                                 {
781                                 if ($1 eq "ssl")
782                                         {
783                                         $disabled{"ssl2"} = "option(ssl)";
784                                         $disabled{"ssl3"} = "option(ssl)";
785                                         }
786                                 elsif ($1 eq "tls")
787                                         {
788                                         $disabled{"tls1"} = "option(tls)"
789                                         }
790                                 else
791                                         {
792                                         $disabled{$1} = "option";
793                                         }
794                                 }                       
795                         }
796                 elsif (/^enable-(.+)$/ || /^experimental-(.+)$/)
797                         {
798                         my $algo = $1;
799                         if ($disabled{$algo} eq "experimental")
800                                 {
801                                 die "You are requesting an experimental feature; please say 'experimental-$algo' if you are sure\n"
802                                         unless (/^experimental-/);
803                                 push @experimental, $algo;
804                                 }
805                         delete $disabled{$algo};
806
807                         $threads = 1 if ($algo eq "threads");
808                         }
809                 elsif (/^--test-sanity$/)
810                         {
811                         exit(&test_sanity());
812                         }
813                 elsif (/^--strict-warnings/)
814                         {
815                         $strict_warnings = 1;
816                         }
817                 elsif (/^reconfigure/ || /^reconf/)
818                         {
819                         if (open(IN,"<$Makefile"))
820                                 {
821                                 while (<IN>)
822                                         {
823                                         chomp;
824                                         if (/^CONFIGURE_ARGS=(.*)/)
825                                                 {
826                                                 $argvstring=$1;
827                                                 @argvcopy=split(' ',$argvstring);
828                                                 die "Incorrect data to reconfigure, please do a normal configuration\n"
829                                                         if (grep(/^reconf/,@argvcopy));
830                                                 print "Reconfiguring with: $argvstring\n";
831                                                 $argv_unprocessed=1;
832                                                 close(IN);
833                                                 last PROCESS_ARGS;
834                                                 }
835                                         }
836                                 close(IN);
837                                 }
838                         die "Insufficient data to reconfigure, please do a normal configuration\n";
839                         }
840                 elsif (/^386$/)
841                         { $processor=386; }
842                 elsif (/^fips$/)
843                         {
844                         $fips=1;
845                         }
846                 elsif (/^rsaref$/)
847                         {
848                         # No RSAref support any more since it's not needed.
849                         # The check for the option is there so scripts aren't
850                         # broken
851                         }
852                 elsif (/^nofipscanistercheck$/)
853                         {
854                         $fips = 1;
855                         $nofipscanistercheck = 1;
856                         }
857                 elsif (/^fipscanisteronly$/)
858                         {
859                         $fips = 1;
860                         $nofipscanistercheck = 1;
861                         $fipslibdir="";
862                         $fipscanisterinternal="y";
863                         $fipscanisteronly = 1;
864                         }
865                 elsif (/^fipscanisterbuild$/)
866                         {
867                         $fips = 1;
868                         $nofipscanistercheck = 1;
869                         $fipslibdir="";
870                         $fipscanisterinternal="y";
871                         }
872                 elsif (/^fipsdso$/)
873                         {
874                         $fips = 1;
875                         $nofipscanistercheck = 1;
876                         $fipslibdir="";
877                         $fipscanisterinternal="y";
878                         $fipsdso = 1;
879                         }
880                 elsif (/^[-+]/)
881                         {
882                         if (/^-[lL](.*)$/ or /^-Wl,/)
883                                 {
884                                 $libs.=$_." ";
885                                 }
886                         elsif (/^-[^-]/ or /^\+/)
887                                 {
888                                 $flags.=$_." ";
889                                 }
890                         elsif (/^--prefix=(.*)$/)
891                                 {
892                                 $prefix=$1;
893                                 }
894                         elsif (/^--libdir=(.*)$/)
895                                 {
896                                 $libdir=$1;
897                                 }
898                         elsif (/^--openssldir=(.*)$/)
899                                 {
900                                 $openssldir=$1;
901                                 }
902                         elsif (/^--install.prefix=(.*)$/)
903                                 {
904                                 $install_prefix=$1;
905                                 }
906                         elsif (/^--with-krb5-(dir|lib|include|flavor)=(.*)$/)
907                                 {
908                                 $withargs{"krb5-".$1}=$2;
909                                 }
910                         elsif (/^--with-zlib-lib=(.*)$/)
911                                 {
912                                 $withargs{"zlib-lib"}=$1;
913                                 }
914                         elsif (/^--with-zlib-include=(.*)$/)
915                                 {
916                                 $withargs{"zlib-include"}="-I$1";
917                                 }
918                         elsif (/^--with-fipslibdir=(.*)$/)
919                                 {
920                                 $fipslibdir="$1/";
921                                 }
922                         elsif (/^--with-baseaddr=(.*)$/)
923                                 {
924                                 $baseaddr="$1";
925                                 }
926                         elsif (/^--cross-compile-prefix=(.*)$/)
927                                 {
928                                 $cross_compile_prefix=$1;
929                                 }
930                         else
931                                 {
932                                 print STDERR $usage;
933                                 exit(1);
934                                 }
935                         }
936                 elsif ($_ =~ /^([^:]+):(.+)$/)
937                         {
938                         eval "\$table{\$1} = \"$2\""; # allow $xxx constructs in the string
939                         $target=$1;
940                         }
941                 else
942                         {
943                         die "target already defined - $target (offending arg: $_)\n" if ($target ne "");
944                         $target=$_;
945                         }
946
947                 unless ($_ eq $target || /^no-/ || /^disable-/)
948                         {
949                         # "no-..." follows later after implied disactivations
950                         # have been derived.  (Don't take this too seroiusly,
951                         # we really only write OPTIONS to the Makefile out of
952                         # nostalgia.)
953
954                         if ($options eq "")
955                                 { $options = $_; }
956                         else
957                                 { $options .= " ".$_; }
958                         }
959                 }
960         }
961
962
963
964 if ($processor eq "386")
965         {
966         $disabled{"sse2"} = "forced";
967         }
968
969 if (!defined($withargs{"krb5-flavor"}) || $withargs{"krb5-flavor"} eq "")
970         {
971         $disabled{"krb5"} = "krb5-flavor not specified";
972         }
973
974 if (!defined($disabled{"zlib-dynamic"}))
975         {
976         # "zlib-dynamic" was specifically enabled, so enable "zlib"
977         delete $disabled{"zlib"};
978         }
979
980 if (defined($disabled{"rijndael"}))
981         {
982         $disabled{"aes"} = "forced";
983         }
984 if (defined($disabled{"des"}))
985         {
986         $disabled{"mdc2"} = "forced";
987         }
988 if (defined($disabled{"ec"}))
989         {
990         $disabled{"ecdsa"} = "forced";
991         $disabled{"ecdh"} = "forced";
992         }
993
994 # SSL 2.0 requires MD5 and RSA
995 if (defined($disabled{"md5"}) || defined($disabled{"rsa"}))
996         {
997         $disabled{"ssl2"} = "forced";
998         }
999
1000 # SSL 3.0 and TLS requires MD5 and SHA and either RSA or DSA+DH
1001 if (defined($disabled{"md5"}) || defined($disabled{"sha"})
1002     || (defined($disabled{"rsa"})
1003         && (defined($disabled{"dsa"}) || defined($disabled{"dh"}))))
1004         {
1005         $disabled{"ssl3"} = "forced";
1006         $disabled{"tls1"} = "forced";
1007         }
1008
1009 if (defined($disabled{"tls1"}))
1010         {
1011         $disabled{"tlsext"} = "forced";
1012         }
1013
1014 if (defined($disabled{"ec"}) || defined($disabled{"dsa"})
1015     || defined($disabled{"dh"}))
1016         {
1017         $disabled{"gost"} = "forced";
1018         }
1019
1020 # SRP requires TLSEXT
1021 if (defined($disabled{"tlsext"}))
1022         {
1023         $disabled{"srp"} = "forced";
1024         }
1025
1026 if ($target eq "TABLE") {
1027         foreach $target (sort keys %table) {
1028                 print_table_entry($target);
1029         }
1030         exit 0;
1031 }
1032
1033 if ($target eq "LIST") {
1034         foreach (sort keys %table) {
1035                 print;
1036                 print "\n";
1037         }
1038         exit 0;
1039 }
1040
1041 if ($target =~ m/^CygWin32(-.*)$/) {
1042         $target = "Cygwin".$1;
1043 }
1044
1045 print "Configuring for $target\n";
1046
1047 &usage if (!defined($table{$target}));
1048
1049 if ($fips)
1050         {
1051         delete $disabled{"shared"} if ($disabled{"shared"} eq "default");
1052         }
1053
1054 foreach (sort (keys %disabled))
1055         {
1056         $options .= " no-$_";
1057
1058         printf "    no-%-12s %-10s", $_, "[$disabled{$_}]";
1059
1060         if (/^dso$/)
1061                 { $no_dso = 1; }
1062         elsif (/^threads$/)
1063                 { $no_threads = 1; }
1064         elsif (/^shared$/)
1065                 { $no_shared = 1; }
1066         elsif (/^zlib$/)
1067                 { $zlib = 0; }
1068         elsif (/^static-engine$/)
1069                 { }
1070         elsif (/^zlib-dynamic$/)
1071                 { }
1072         elsif (/^symlinks$/)
1073                 { $symlink = 0; }
1074         elsif (/^sse2$/)
1075                 { $no_sse2 = 1; }
1076         else
1077                 {
1078                 my ($ALGO, $algo);
1079                 ($ALGO = $algo = $_) =~ tr/[\-a-z]/[_A-Z]/;
1080
1081                 if (/^asm$/ || /^err$/ || /^hw$/ || /^hw-/)
1082                         {
1083                         $openssl_other_defines .= "#define OPENSSL_NO_$ALGO\n";
1084                         print " OPENSSL_NO_$ALGO";
1085                 
1086                         if (/^err$/)    { $flags .= "-DOPENSSL_NO_ERR "; }
1087                         elsif (/^asm$/) { $no_asm = 1; }
1088                         }
1089                 else
1090                         {
1091                         $openssl_algorithm_defines .= "#define OPENSSL_NO_$ALGO\n";
1092                         print " OPENSSL_NO_$ALGO";
1093
1094                         if (/^krb5$/)
1095                                 { $no_krb5 = 1; }
1096                         else
1097                                 {
1098                                 push @skip, $algo;
1099                                 print " (skip dir)";
1100
1101                                 $depflags .= " -DOPENSSL_NO_$ALGO";
1102                                 }
1103                         }
1104                 }
1105
1106         print "\n";
1107         }
1108
1109 my $exp_cflags = "";
1110 foreach (sort @experimental)
1111         {
1112         my $ALGO;
1113         ($ALGO = $_) =~ tr/[a-z]/[A-Z]/;
1114
1115         # opensslconf.h will set OPENSSL_NO_... unless OPENSSL_EXPERIMENTAL_... is defined
1116         $openssl_experimental_defines .= "#define OPENSSL_NO_$ALGO\n";
1117         $exp_cflags .= " -DOPENSSL_EXPERIMENTAL_$ALGO";
1118         }
1119
1120 my $IsMK1MF=scalar grep /^$target$/,@MK1MF_Builds;
1121
1122 $exe_ext=".exe" if ($target eq "Cygwin" || $target eq "DJGPP" || $target =~ /^mingw/);
1123 $exe_ext=".nlm" if ($target =~ /netware/);
1124 $exe_ext=".pm"  if ($target =~ /vos/);
1125 if ($openssldir eq "" and $prefix eq "")
1126         {
1127         if ($fips)
1128                 {
1129                 $openssldir="/usr/local/ssl/fips-2.0";
1130                 }
1131         else
1132                 {
1133                 $openssldir="/usr/local/ssl";
1134                 }
1135         }
1136 $prefix=$openssldir if $prefix eq "";
1137
1138 $default_ranlib= &which("ranlib") or $default_ranlib="true";
1139 $perl=$ENV{'PERL'} or $perl=&which("perl5") or $perl=&which("perl")
1140   or $perl="perl";
1141 my $make = $ENV{'MAKE'} || "make";
1142
1143 $cross_compile_prefix=$ENV{'CROSS_COMPILE'} if $cross_compile_prefix eq "";
1144
1145 chop $openssldir if $openssldir =~ /\/$/;
1146 chop $prefix if $prefix =~ /.\/$/;
1147
1148 $openssldir=$prefix . "/ssl" if $openssldir eq "";
1149 $openssldir=$prefix . "/" . $openssldir if $openssldir !~ /(^\/|^[a-zA-Z]:[\\\/])/;
1150
1151
1152 print "IsMK1MF=$IsMK1MF\n";
1153
1154 my @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
1155 my $cc = $fields[$idx_cc];
1156 # Allow environment CC to override compiler...
1157 if($ENV{CC}) {
1158     $cc = $ENV{CC};
1159 }
1160 my $cflags = $fields[$idx_cflags];
1161 my $unistd = $fields[$idx_unistd];
1162 my $thread_cflag = $fields[$idx_thread_cflag];
1163 my $sys_id = $fields[$idx_sys_id];
1164 my $lflags = $fields[$idx_lflags];
1165 my $bn_ops = $fields[$idx_bn_ops];
1166 my $cpuid_obj = $fields[$idx_cpuid_obj];
1167 my $bn_obj = $fields[$idx_bn_obj];
1168 my $des_obj = $fields[$idx_des_obj];
1169 my $aes_obj = $fields[$idx_aes_obj];
1170 my $bf_obj = $fields[$idx_bf_obj];
1171 my $md5_obj = $fields[$idx_md5_obj];
1172 my $sha1_obj = $fields[$idx_sha1_obj];
1173 my $cast_obj = $fields[$idx_cast_obj];
1174 my $rc4_obj = $fields[$idx_rc4_obj];
1175 my $rmd160_obj = $fields[$idx_rmd160_obj];
1176 my $rc5_obj = $fields[$idx_rc5_obj];
1177 my $wp_obj = $fields[$idx_wp_obj];
1178 my $cmll_obj = $fields[$idx_cmll_obj];
1179 my $modes_obj = $fields[$idx_modes_obj];
1180 my $perlasm_scheme = $fields[$idx_perlasm_scheme];
1181 my $dso_scheme = $fields[$idx_dso_scheme];
1182 my $shared_target = $fields[$idx_shared_target];
1183 my $shared_cflag = $fields[$idx_shared_cflag];
1184 my $shared_ldflag = $fields[$idx_shared_ldflag];
1185 my $shared_extension = $fields[$idx_shared_extension];
1186 my $ranlib = $ENV{'RANLIB'} || $fields[$idx_ranlib];
1187 my $ar = $ENV{'AR'} || "ar";
1188 my $arflags = $fields[$idx_arflags];
1189 my $multilib = $fields[$idx_multilib];
1190
1191 # if $prefix/lib$multilib is not an existing directory, then
1192 # assume that it's not searched by linker automatically, in
1193 # which case adding $multilib suffix causes more grief than
1194 # we're ready to tolerate, so don't...
1195 $multilib="" if !-d "$prefix/lib$multilib";
1196
1197 $libdir="lib$multilib" if $libdir eq "";
1198
1199 $cflags = "$cflags$exp_cflags";
1200
1201 # '%' in $lflags is used to split flags to "pre-" and post-flags
1202 my ($prelflags,$postlflags)=split('%',$lflags);
1203 if (defined($postlflags))       { $lflags=$postlflags;  }
1204 else                            { $lflags=$prelflags; undef $prelflags; }
1205
1206 if ($target =~ /^mingw/ && `$cc --target-help 2>&1` !~ m/\-mno\-cygwin/m)
1207         {
1208         $cflags =~ s/\-mno\-cygwin\s*//;
1209         $shared_ldflag =~ s/\-mno\-cygwin\s*//;
1210         }
1211
1212 my $no_shared_warn=0;
1213 my $no_user_cflags=0;
1214
1215 if ($flags ne "")       { $cflags="$flags$cflags"; }
1216 else                    { $no_user_cflags=1;       }
1217
1218 # Kerberos settings.  The flavor must be provided from outside, either through
1219 # the script "config" or manually.
1220 if (!$no_krb5)
1221         {
1222         my ($lresolv, $lpath, $lext);
1223         if ($withargs{"krb5-flavor"} =~ /^[Hh]eimdal$/)
1224                 {
1225                 die "Sorry, Heimdal is currently not supported\n";
1226                 }
1227         ##### HACK to force use of Heimdal.
1228         ##### WARNING: Since we don't really have adequate support for Heimdal,
1229         #####          using this will break the build.  You'll have to make
1230         #####          changes to the source, and if you do, please send
1231         #####          patches to openssl-dev@openssl.org
1232         if ($withargs{"krb5-flavor"} =~ /^force-[Hh]eimdal$/)
1233                 {
1234                 warn "Heimdal isn't really supported.  Your build WILL break\n";
1235                 warn "If you fix the problems, please send a patch to openssl-dev\@openssl.org\n";
1236                 $withargs{"krb5-dir"} = "/usr/heimdal"
1237                         if $withargs{"krb5-dir"} eq "";
1238                 $withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
1239                         "/lib -lgssapi -lkrb5 -lcom_err"
1240                         if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1241                 $cflags="-DKRB5_HEIMDAL $cflags";
1242                 }
1243         if ($withargs{"krb5-flavor"} =~ /^[Mm][Ii][Tt]/)
1244                 {
1245                 $withargs{"krb5-dir"} = "/usr/kerberos"
1246                         if $withargs{"krb5-dir"} eq "";
1247                 $withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
1248                         "/lib -lgssapi_krb5 -lkrb5 -lcom_err -lk5crypto"
1249                         if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1250                 $cflags="-DKRB5_MIT $cflags";
1251                 $withargs{"krb5-flavor"} =~ s/^[Mm][Ii][Tt][._-]*//;
1252                 if ($withargs{"krb5-flavor"} =~ /^1[._-]*[01]/)
1253                         {
1254                         $cflags="-DKRB5_MIT_OLD11 $cflags";
1255                         }
1256                 }
1257         LRESOLV:
1258         foreach $lpath ("/lib", "/usr/lib")
1259                 {
1260                 foreach $lext ("a", "so")
1261                         {
1262                         $lresolv = "$lpath/libresolv.$lext";
1263                         last LRESOLV    if (-r "$lresolv");
1264                         $lresolv = "";
1265                         }
1266                 }
1267         $withargs{"krb5-lib"} .= " -lresolv"
1268                 if ("$lresolv" ne "");
1269         $withargs{"krb5-include"} = "-I".$withargs{"krb5-dir"}."/include"
1270                 if $withargs{"krb5-include"} eq "" &&
1271                    $withargs{"krb5-dir"} ne "";
1272         }
1273
1274 # The DSO code currently always implements all functions so that no
1275 # applications will have to worry about that from a compilation point
1276 # of view. However, the "method"s may return zero unless that platform
1277 # has support compiled in for them. Currently each method is enabled
1278 # by a define "DSO_<name>" ... we translate the "dso_scheme" config
1279 # string entry into using the following logic;
1280 my $dso_cflags;
1281 if (!$no_dso && $dso_scheme ne "")
1282         {
1283         $dso_scheme =~ tr/[a-z]/[A-Z]/;
1284         if ($dso_scheme eq "DLFCN")
1285                 {
1286                 $dso_cflags = "-DDSO_DLFCN -DHAVE_DLFCN_H";
1287                 }
1288         elsif ($dso_scheme eq "DLFCN_NO_H")
1289                 {
1290                 $dso_cflags = "-DDSO_DLFCN";
1291                 }
1292         else
1293                 {
1294                 $dso_cflags = "-DDSO_$dso_scheme";
1295                 }
1296         $cflags = "$dso_cflags $cflags";
1297         }
1298
1299 my $thread_cflags;
1300 my $thread_defines;
1301 if ($thread_cflag ne "(unknown)" && !$no_threads)
1302         {
1303         # If we know how to do it, support threads by default.
1304         $threads = 1;
1305         }
1306 if ($thread_cflag eq "(unknown)" && $threads)
1307         {
1308         # If the user asked for "threads", [s]he is also expected to
1309         # provide any system-dependent compiler options that are
1310         # necessary.
1311         if ($no_user_cflags)
1312                 {
1313                 print "You asked for multi-threading support, but didn't\n";
1314                 print "provide any system-specific compiler options\n";
1315                 exit(1);
1316                 }
1317         $thread_cflags="-DOPENSSL_THREADS $cflags" ;
1318         $thread_defines .= "#define OPENSSL_THREADS\n";
1319         }
1320 else
1321         {
1322         $thread_cflags="-DOPENSSL_THREADS $thread_cflag $cflags";
1323         $thread_defines .= "#define OPENSSL_THREADS\n";
1324 #       my $def;
1325 #       foreach $def (split ' ',$thread_cflag)
1326 #               {
1327 #               if ($def =~ s/^-D// && $def !~ /^_/)
1328 #                       {
1329 #                       $thread_defines .= "#define $def\n";
1330 #                       }
1331 #               }
1332         }       
1333
1334 $lflags="$libs$lflags" if ($libs ne "");
1335
1336 if ($no_asm)
1337         {
1338         $cpuid_obj=$bn_obj=
1339         $des_obj=$aes_obj=$bf_obj=$cast_obj=$rc4_obj=$rc5_obj=$cmll_obj=
1340         $modes_obj=$sha1_obj=$md5_obj=$rmd160_obj=$wp_obj="";
1341         $cflags=~s/\-D[BL]_ENDIAN//             if ($fips);
1342         $thread_cflags=~s/\-D[BL]_ENDIAN//      if ($fips);
1343         }
1344
1345 if (!$no_shared)
1346         {
1347         $cast_obj="";   # CAST assembler is not PIC
1348         }
1349
1350 if ($threads)
1351         {
1352         $cflags=$thread_cflags;
1353         $openssl_thread_defines .= $thread_defines;
1354         }
1355
1356 if ($zlib)
1357         {
1358         $cflags = "-DZLIB $cflags";
1359         if (defined($disabled{"zlib-dynamic"}))
1360                 {
1361                 if (defined($withargs{"zlib-lib"}))
1362                         {
1363                         $lflags = "$lflags -L" . $withargs{"zlib-lib"} . " -lz";
1364                         }
1365                 else
1366                         {
1367                         $lflags = "$lflags -lz";
1368                         }
1369                 }
1370         else
1371                 {
1372                 $cflags = "-DZLIB_SHARED $cflags";
1373                 }
1374         }
1375
1376 # You will find shlib_mark1 and shlib_mark2 explained in Makefile.org
1377 my $shared_mark = "";
1378 if ($shared_target eq "")
1379         {
1380         $no_shared_warn = 1 if !$no_shared && !$fips;
1381         $no_shared = 1;
1382         }
1383 if (!$no_shared)
1384         {
1385         if ($shared_cflag ne "")
1386                 {
1387                 $cflags = "$shared_cflag -DOPENSSL_PIC $cflags";
1388                 }
1389         }
1390
1391 if (!$IsMK1MF)
1392         {
1393         # add {no-}static-engine to options to allow mkdef.pl to work without extra arguments
1394         if ($no_shared)
1395                 {
1396                 $openssl_other_defines.="#define OPENSSL_NO_DYNAMIC_ENGINE\n";
1397                 $options.=" static-engine";
1398                 }
1399         else
1400                 {
1401                 $openssl_other_defines.="#define OPENSSL_NO_STATIC_ENGINE\n";
1402                 $options.=" no-static-engine";
1403                 }
1404         }
1405
1406 $cpuid_obj.=" uplink.o uplink-x86.o" if ($cflags =~ /\-DOPENSSL_USE_APPLINK/);
1407
1408 #
1409 # Platform fix-ups
1410 #
1411 if ($target =~ /\-icc$/)        # Intel C compiler
1412         {
1413         my $iccver=0;
1414         if (open(FD,"$cc -V 2>&1 |"))
1415                 {
1416                 while(<FD>) { $iccver=$1 if (/Version ([0-9]+)\./); }
1417                 close(FD);
1418                 }
1419         if ($iccver>=8)
1420                 {
1421                 # Eliminate unnecessary dependency from libirc.a. This is
1422                 # essential for shared library support, as otherwise
1423                 # apps/openssl can end up in endless loop upon startup...
1424                 $cflags.=" -Dmemcpy=__builtin_memcpy -Dmemset=__builtin_memset";
1425                 }
1426         if ($iccver>=9)
1427                 {
1428                 $cflags.=" -i-static";
1429                 $cflags=~s/\-no_cpprt/-no-cpprt/;
1430                 }
1431         if ($iccver>=10)
1432                 {
1433                 $cflags=~s/\-i\-static/-static-intel/;
1434                 }
1435         }
1436
1437 # Unlike other OSes (like Solaris, Linux, Tru64, IRIX) BSD run-time
1438 # linkers (tested OpenBSD, NetBSD and FreeBSD) "demand" RPATH set on
1439 # .so objects. Apparently application RPATH is not global and does
1440 # not apply to .so linked with other .so. Problem manifests itself
1441 # when libssl.so fails to load libcrypto.so. One can argue that we
1442 # should engrave this into Makefile.shared rules or into BSD-* config
1443 # lines above. Meanwhile let's try to be cautious and pass -rpath to
1444 # linker only when --prefix is not /usr.
1445 if ($target =~ /^BSD\-/)
1446         {
1447         $shared_ldflag.=" -Wl,-rpath,\$(LIBRPATH)" if ($prefix !~ m|^/usr[/]*$|);
1448         }
1449
1450 if ($sys_id ne "")
1451         {
1452         #$cflags="-DOPENSSL_SYSNAME_$sys_id $cflags";
1453         $openssl_sys_defines="#define OPENSSL_SYSNAME_$sys_id\n";
1454         }
1455
1456 if ($ranlib eq "")
1457         {
1458         $ranlib = $default_ranlib;
1459         }
1460
1461 #my ($bn1)=split(/\s+/,$bn_obj);
1462 #$bn1 = "" unless defined $bn1;
1463 #$bn1=$bn_asm unless ($bn1 =~ /\.o$/);
1464 #$bn_obj="$bn1";
1465
1466 $cpuid_obj="" if ($processor eq "386");
1467
1468 $bn_obj = $bn_asm unless $bn_obj ne "";
1469 # bn-586 is the only one implementing bn_*_part_words
1470 $cflags.=" -DOPENSSL_BN_ASM_PART_WORDS" if ($bn_obj =~ /bn-586/);
1471 $cflags.=" -DOPENSSL_IA32_SSE2" if (!$no_sse2 && $bn_obj =~ /86/);
1472
1473 $cflags.=" -DOPENSSL_BN_ASM_MONT" if ($bn_obj =~ /-mont/);
1474
1475 if ($fips)
1476         {
1477         $openssl_other_defines.="#define OPENSSL_FIPS\n";
1478         if ($fipscanisterinternal eq "y")
1479                 {
1480                 $openssl_other_defines.="#define OPENSSL_FIPSCANISTER\n";
1481                 }
1482         }
1483
1484 $cpuid_obj="mem_clr.o"  unless ($cpuid_obj =~ /\.o$/);
1485 $des_obj=$des_enc       unless ($des_obj =~ /\.o$/);
1486 $bf_obj=$bf_enc         unless ($bf_obj =~ /\.o$/);
1487 $cast_obj=$cast_enc     unless ($cast_obj =~ /\.o$/);
1488 $rc4_obj=$rc4_enc       unless ($rc4_obj =~ /\.o$/);
1489 $rc5_obj=$rc5_enc       unless ($rc5_obj =~ /\.o$/);
1490 if ($sha1_obj =~ /\.o$/)
1491         {
1492 #       $sha1_obj=$sha1_enc;
1493         $cflags.=" -DSHA1_ASM"   if ($sha1_obj =~ /sx86/ || $sha1_obj =~ /sha1/);
1494         $cflags.=" -DSHA256_ASM" if ($sha1_obj =~ /sha256/);
1495         $cflags.=" -DSHA512_ASM" if ($sha1_obj =~ /sha512/);
1496         if ($sha1_obj =~ /sse2/)
1497             {   if ($no_sse2)
1498                 {   $sha1_obj =~ s/\S*sse2\S+//;        }
1499                 elsif ($cflags !~ /OPENSSL_IA32_SSE2/)
1500                 {   $cflags.=" -DOPENSSL_IA32_SSE2";    }
1501             }
1502         }
1503 if ($md5_obj =~ /\.o$/)
1504         {
1505 #       $md5_obj=$md5_enc;
1506         $cflags.=" -DMD5_ASM";
1507         }
1508 if ($rmd160_obj =~ /\.o$/)
1509         {
1510 #       $rmd160_obj=$rmd160_enc;
1511         $cflags.=" -DRMD160_ASM";
1512         }
1513 if ($aes_obj =~ /\.o$/)
1514         {
1515         $cflags.=" -DAES_ASM";
1516         # aes_ctr.o is not a real file, only indication that assembler
1517         # module implements AES_ctr32_encrypt...
1518         $cflags.=" -DAES_CTR_ASM" if ($aes_obj =~ s/\s*aes_ctr\.o//);
1519         $aes_obj =~ s/\s*aesni\-x86\.o// if ($no_sse2);
1520         }
1521 else    {
1522         $aes_obj=$aes_enc;
1523         }
1524 $wp_obj="" if ($wp_obj =~ /mmx/ && $processor eq "386");
1525 if ($wp_obj =~ /\.o$/)
1526         {
1527         $cflags.=" -DWHIRLPOOL_ASM";
1528         }
1529 else    {
1530         $wp_obj="wp_block.o";
1531         }
1532 $cmll_obj=$cmll_enc     unless ($cmll_obj =~ /.o$/);
1533 if ($modes_obj =~ /ghash/)
1534         {
1535         $cflags.=" -DGHASH_ASM";
1536         }
1537
1538 # "Stringify" the C flags string.  This permits it to be made part of a string
1539 # and works as well on command lines.
1540 $cflags =~ s/([\\\"])/\\\1/g;
1541
1542 my $version = "unknown";
1543 my $version_num = "unknown";
1544 my $major = "unknown";
1545 my $minor = "unknown";
1546 my $shlib_version_number = "unknown";
1547 my $shlib_version_history = "unknown";
1548 my $shlib_major = "unknown";
1549 my $shlib_minor = "unknown";
1550
1551 open(IN,'<crypto/opensslv.h') || die "unable to read opensslv.h:$!\n";
1552 while (<IN>)
1553         {
1554         $version=$1 if /OPENSSL.VERSION.TEXT.*OpenSSL (\S+) /;
1555         $version_num=$1 if /OPENSSL.VERSION.NUMBER.*0x(\S+)/;
1556         $shlib_version_number=$1 if /SHLIB_VERSION_NUMBER *"([^"]+)"/;
1557         $shlib_version_history=$1 if /SHLIB_VERSION_HISTORY *"([^"]*)"/;
1558         }
1559 close(IN);
1560 if ($shlib_version_history ne "") { $shlib_version_history .= ":"; }
1561
1562 if ($version =~ /(^[0-9]*)\.([0-9\.]*)/)
1563         {
1564         $major=$1;
1565         $minor=$2;
1566         }
1567
1568 if ($shlib_version_number =~ /(^[0-9]*)\.([0-9\.]*)/)
1569         {
1570         $shlib_major=$1;
1571         $shlib_minor=$2;
1572         }
1573
1574 if ($strict_warnings)
1575         {
1576         my $wopt;
1577         die "ERROR --strict-warnings requires gcc" unless ($cc =~ /gcc$/);
1578         foreach $wopt (split /\s+/, $gcc_devteam_warn)
1579                 {
1580                 $cflags .= " $wopt" unless ($cflags =~ /$wopt/)
1581                 }
1582         }
1583
1584 my $mforg = $fipscanisteronly ? "Makefile.fips" : "Makefile.org";
1585
1586 open(IN,"<$mforg") || die "unable to read $mforg:$!\n";
1587 unlink("$Makefile.new") || die "unable to remove old $Makefile.new:$!\n" if -e "$Makefile.new";
1588 open(OUT,">$Makefile.new") || die "unable to create $Makefile.new:$!\n";
1589 print OUT "### Generated automatically from $mforg by Configure.\n\n";
1590 my $sdirs=0;
1591 while (<IN>)
1592         {
1593         chomp;
1594         $sdirs = 1 if /^SDIRS=/;
1595         if ($sdirs) {
1596                 my $dir;
1597                 foreach $dir (@skip) {
1598                         s/(\s)$dir /$1/;
1599                         s/\s$dir$//;
1600                         }
1601                 }
1602         $sdirs = 0 unless /\\$/;
1603         s/fips // if (/^DIRS=/ && !$fips);
1604         s/engines // if (/^DIRS=/ && $disabled{"engine"});
1605         s/ccgost// if (/^ENGDIRS=/ && $disabled{"gost"});
1606         s/^VERSION=.*/VERSION=$version/;
1607         s/^MAJOR=.*/MAJOR=$major/;
1608         s/^MINOR=.*/MINOR=$minor/;
1609         s/^SHLIB_VERSION_NUMBER=.*/SHLIB_VERSION_NUMBER=$shlib_version_number/;
1610         s/^SHLIB_VERSION_HISTORY=.*/SHLIB_VERSION_HISTORY=$shlib_version_history/;
1611         s/^SHLIB_MAJOR=.*/SHLIB_MAJOR=$shlib_major/;
1612         s/^SHLIB_MINOR=.*/SHLIB_MINOR=$shlib_minor/;
1613         s/^SHLIB_EXT=.*/SHLIB_EXT=$shared_extension/;
1614         s/^INSTALLTOP=.*$/INSTALLTOP=$prefix/;
1615         s/^MULTILIB=.*$/MULTILIB=$multilib/;
1616         s/^OPENSSLDIR=.*$/OPENSSLDIR=$openssldir/;
1617         s/^LIBDIR=.*$/LIBDIR=$libdir/;
1618         s/^INSTALL_PREFIX=.*$/INSTALL_PREFIX=$install_prefix/;
1619         s/^PLATFORM=.*$/PLATFORM=$target/;
1620         s/^OPTIONS=.*$/OPTIONS=$options/;
1621         s/^CONFIGURE_ARGS=.*$/CONFIGURE_ARGS=$argvstring/;
1622         if ($cross_compile_prefix)
1623                 {
1624                 s/^CC=.*$/CROSS_COMPILE= $cross_compile_prefix\nCC= \$\(CROSS_COMPILE\)$cc/;
1625                 s/^AR=\s*/AR= \$\(CROSS_COMPILE\)/;
1626                 s/^NM=\s*/NM= \$\(CROSS_COMPILE\)/;
1627                 s/^RANLIB=\s*/RANLIB= \$\(CROSS_COMPILE\)/;
1628                 s/^MAKEDEPPROG=.*$/MAKEDEPPROG= \$\(CROSS_COMPILE\)$cc/ if $cc eq "gcc";
1629                 }
1630         else    {
1631                 s/^CC=.*$/CC= $cc/;
1632                 s/^AR=\s*ar/AR= $ar/;
1633                 s/^RANLIB=.*/RANLIB= $ranlib/;
1634                 s/^MAKEDEPPROG=.*$/MAKEDEPPROG= $cc/ if $cc eq "gcc";
1635                 }
1636         s/^CFLAG=.*$/CFLAG= $cflags/;
1637         s/^DEPFLAG=.*$/DEPFLAG=$depflags/;
1638         s/^PEX_LIBS=.*$/PEX_LIBS= $prelflags/;
1639         s/^EX_LIBS=.*$/EX_LIBS= $lflags/;
1640         s/^EXE_EXT=.*$/EXE_EXT= $exe_ext/;
1641         s/^CPUID_OBJ=.*$/CPUID_OBJ= $cpuid_obj/;
1642         s/^BN_ASM=.*$/BN_ASM= $bn_obj/;
1643         s/^DES_ENC=.*$/DES_ENC= $des_obj/;
1644         s/^AES_ENC=.*$/AES_ENC= $aes_obj/;
1645         s/^BF_ENC=.*$/BF_ENC= $bf_obj/;
1646         s/^CAST_ENC=.*$/CAST_ENC= $cast_obj/;
1647         s/^RC4_ENC=.*$/RC4_ENC= $rc4_obj/;
1648         s/^RC5_ENC=.*$/RC5_ENC= $rc5_obj/;
1649         s/^MD5_ASM_OBJ=.*$/MD5_ASM_OBJ= $md5_obj/;
1650         s/^SHA1_ASM_OBJ=.*$/SHA1_ASM_OBJ= $sha1_obj/;
1651         s/^RMD160_ASM_OBJ=.*$/RMD160_ASM_OBJ= $rmd160_obj/;
1652         s/^WP_ASM_OBJ=.*$/WP_ASM_OBJ= $wp_obj/;
1653         s/^CMLL_ENC=.*$/CMLL_ENC= $cmll_obj/;
1654         s/^MODES_ASM_OBJ.=*$/MODES_ASM_OBJ= $modes_obj/;
1655         s/^PERLASM_SCHEME=.*$/PERLASM_SCHEME= $perlasm_scheme/;
1656         s/^PROCESSOR=.*/PROCESSOR= $processor/;
1657         s/^ARFLAGS=.*/ARFLAGS= $arflags/;
1658         s/^PERL=.*/PERL= $perl/;
1659         s/^KRB5_INCLUDES=.*/KRB5_INCLUDES=$withargs{"krb5-include"}/;
1660         s/^LIBKRB5=.*/LIBKRB5=$withargs{"krb5-lib"}/;
1661         s/^LIBZLIB=.*/LIBZLIB=$withargs{"zlib-lib"}/;
1662         s/^ZLIB_INCLUDE=.*/ZLIB_INCLUDE=$withargs{"zlib-include"}/;
1663         s/^FIPSLIBDIR=.*/FIPSLIBDIR=$fipslibdir/;
1664         if ($fipsdso)
1665                 {
1666                 s/^FIPSCANLIB=.*/FIPSCANLIB=libfips/;
1667                 s/^SHARED_FIPS=.*/SHARED_FIPS=libfips\$(SHLIB_EXT)/;
1668                 s/^SHLIBDIRS=.*/SHLIBDIRS= crypto ssl fips/;
1669                 }
1670         else
1671                 {
1672                 s/^FIPSCANLIB=.*/FIPSCANLIB=libcrypto/ if $fips;
1673                 s/^SHARED_FIPS=.*/SHARED_FIPS=/;
1674                 s/^SHLIBDIRS=.*/SHLIBDIRS= crypto ssl/;
1675                 }
1676         s/^FIPSCANISTERINTERNAL=.*/FIPSCANISTERINTERNAL=$fipscanisterinternal/;
1677         s/^BASEADDR=.*/BASEADDR=$baseaddr/;
1678         s/^SHLIB_TARGET=.*/SHLIB_TARGET=$shared_target/;
1679         s/^SHLIB_MARK=.*/SHLIB_MARK=$shared_mark/;
1680         s/^SHARED_LIBS=.*/SHARED_LIBS=\$(SHARED_CRYPTO) \$(SHARED_SSL)/ if (!$no_shared);
1681         if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
1682                 {
1683                 my $sotmp = $1;
1684                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/;
1685                 }
1686         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.dylib$/)
1687                 {
1688                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.dylib/;
1689                 }
1690         elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
1691                 {
1692                 my $sotmp = $1;
1693                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
1694                 }
1695         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.[^\.]*\.dylib$/)
1696                 {
1697                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.\$(SHLIB_MAJOR).dylib .dylib/;
1698                 }
1699         s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
1700         print OUT $_."\n";
1701         }
1702 close(IN);
1703 close(OUT);
1704 rename($Makefile,"$Makefile.bak") || die "unable to rename $Makefile\n" if -e $Makefile;
1705 rename("$Makefile.new",$Makefile) || die "unable to rename $Makefile.new\n";
1706
1707 print "CC            =$cc\n";
1708 print "CFLAG         =$cflags\n";
1709 print "EX_LIBS       =$lflags\n";
1710 print "CPUID_OBJ     =$cpuid_obj\n";
1711 print "BN_ASM        =$bn_obj\n";
1712 print "DES_ENC       =$des_obj\n";
1713 print "AES_ENC       =$aes_obj\n";
1714 print "BF_ENC        =$bf_obj\n";
1715 print "CAST_ENC      =$cast_obj\n";
1716 print "RC4_ENC       =$rc4_obj\n";
1717 print "RC5_ENC       =$rc5_obj\n";
1718 print "MD5_OBJ_ASM   =$md5_obj\n";
1719 print "SHA1_OBJ_ASM  =$sha1_obj\n";
1720 print "RMD160_OBJ_ASM=$rmd160_obj\n";
1721 print "CMLL_ENC      =$cmll_obj\n";
1722 print "MODES_OBJ     =$modes_obj\n";
1723 print "PROCESSOR     =$processor\n";
1724 print "RANLIB        =$ranlib\n";
1725 print "ARFLAGS       =$arflags\n";
1726 print "PERL          =$perl\n";
1727 print "KRB5_INCLUDES =",$withargs{"krb5-include"},"\n"
1728         if $withargs{"krb5-include"} ne "";
1729
1730 my $des_ptr=0;
1731 my $des_risc1=0;
1732 my $des_risc2=0;
1733 my $des_unroll=0;
1734 my $bn_ll=0;
1735 my $def_int=2;
1736 my $rc4_int=$def_int;
1737 my $md2_int=$def_int;
1738 my $idea_int=$def_int;
1739 my $rc2_int=$def_int;
1740 my $rc4_idx=0;
1741 my $rc4_chunk=0;
1742 my $bf_ptr=0;
1743 my @type=("char","short","int","long");
1744 my ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0);
1745 my $export_var_as_fn=0;
1746
1747 my $des_int;
1748
1749 foreach (sort split(/\s+/,$bn_ops))
1750         {
1751         $des_ptr=1 if /DES_PTR/;
1752         $des_risc1=1 if /DES_RISC1/;
1753         $des_risc2=1 if /DES_RISC2/;
1754         $des_unroll=1 if /DES_UNROLL/;
1755         $des_int=1 if /DES_INT/;
1756         $bn_ll=1 if /BN_LLONG/;
1757         $rc4_int=0 if /RC4_CHAR/;
1758         $rc4_int=3 if /RC4_LONG/;
1759         $rc4_idx=1 if /RC4_INDEX/;
1760         $rc4_chunk=1 if /RC4_CHUNK/;
1761         $rc4_chunk=2 if /RC4_CHUNK_LL/;
1762         $md2_int=0 if /MD2_CHAR/;
1763         $md2_int=3 if /MD2_LONG/;
1764         $idea_int=1 if /IDEA_SHORT/;
1765         $idea_int=3 if /IDEA_LONG/;
1766         $rc2_int=1 if /RC2_SHORT/;
1767         $rc2_int=3 if /RC2_LONG/;
1768         $bf_ptr=1 if $_ eq "BF_PTR";
1769         $bf_ptr=2 if $_ eq "BF_PTR2";
1770         ($b64l,$b64,$b32,$b16,$b8)=(0,1,0,0,0) if /SIXTY_FOUR_BIT/;
1771         ($b64l,$b64,$b32,$b16,$b8)=(1,0,0,0,0) if /SIXTY_FOUR_BIT_LONG/;
1772         ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0) if /THIRTY_TWO_BIT/;
1773         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,1,0) if /SIXTEEN_BIT/;
1774         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,0,1) if /EIGHT_BIT/;
1775         $export_var_as_fn=1 if /EXPORT_VAR_AS_FN/;
1776         }
1777
1778 open(IN,'<crypto/opensslconf.h.in') || die "unable to read crypto/opensslconf.h.in:$!\n";
1779 unlink("crypto/opensslconf.h.new") || die "unable to remove old crypto/opensslconf.h.new:$!\n" if -e "crypto/opensslconf.h.new";
1780 open(OUT,'>crypto/opensslconf.h.new') || die "unable to create crypto/opensslconf.h.new:$!\n";
1781 print OUT "/* opensslconf.h */\n";
1782 print OUT "/* WARNING: Generated automatically from opensslconf.h.in by Configure. */\n\n";
1783
1784 print OUT "/* OpenSSL was configured with the following options: */\n";
1785 my $openssl_algorithm_defines_trans = $openssl_algorithm_defines;
1786 $openssl_experimental_defines =~ s/^\s*#\s*define\s+OPENSSL_NO_(.*)/#ifndef OPENSSL_EXPERIMENTAL_$1\n# ifndef OPENSSL_NO_$1\n#  define OPENSSL_NO_$1\n# endif\n#endif/mg;
1787 $openssl_algorithm_defines_trans =~ s/^\s*#\s*define\s+OPENSSL_(.*)/# if defined(OPENSSL_$1) \&\& !defined($1)\n#  define $1\n# endif/mg;
1788 $openssl_algorithm_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1789 $openssl_algorithm_defines = "   /* no ciphers excluded */\n" if $openssl_algorithm_defines eq "";
1790 $openssl_thread_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1791 $openssl_sys_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1792 $openssl_other_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1793 print OUT $openssl_sys_defines;
1794 print OUT "#ifndef OPENSSL_DOING_MAKEDEPEND\n\n";
1795 print OUT $openssl_experimental_defines;
1796 print OUT "\n";
1797 print OUT $openssl_algorithm_defines;
1798 print OUT "\n#endif /* OPENSSL_DOING_MAKEDEPEND */\n\n";
1799 print OUT $openssl_thread_defines;
1800 print OUT $openssl_other_defines,"\n";
1801
1802 print OUT "/* The OPENSSL_NO_* macros are also defined as NO_* if the application\n";
1803 print OUT "   asks for it.  This is a transient feature that is provided for those\n";
1804 print OUT "   who haven't had the time to do the appropriate changes in their\n";
1805 print OUT "   applications.  */\n";
1806 print OUT "#ifdef OPENSSL_ALGORITHM_DEFINES\n";
1807 print OUT $openssl_algorithm_defines_trans;
1808 print OUT "#endif\n\n";
1809
1810 print OUT "#define OPENSSL_CPUID_OBJ\n\n" if ($cpuid_obj ne "mem_clr.o");
1811
1812 while (<IN>)
1813         {
1814         if      (/^#define\s+OPENSSLDIR/)
1815                 {
1816                 my $foo = $openssldir;
1817                 $foo =~ s/\\/\\\\/g;
1818                 print OUT "#define OPENSSLDIR \"$foo\"\n";
1819                 }
1820         elsif   (/^#define\s+ENGINESDIR/)
1821                 {
1822                 my $foo = "$prefix/$libdir/engines";
1823                 $foo =~ s/\\/\\\\/g;
1824                 print OUT "#define ENGINESDIR \"$foo\"\n";
1825                 }
1826         elsif   (/^#((define)|(undef))\s+OPENSSL_EXPORT_VAR_AS_FUNCTION/)
1827                 { printf OUT "#undef OPENSSL_EXPORT_VAR_AS_FUNCTION\n"
1828                         if $export_var_as_fn;
1829                   printf OUT "#%s OPENSSL_EXPORT_VAR_AS_FUNCTION\n",
1830                         ($export_var_as_fn)?"define":"undef"; }
1831         elsif   (/^#define\s+OPENSSL_UNISTD/)
1832                 {
1833                 $unistd = "<unistd.h>" if $unistd eq "";
1834                 print OUT "#define OPENSSL_UNISTD $unistd\n";
1835                 }
1836         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT_LONG/)
1837                 { printf OUT "#%s SIXTY_FOUR_BIT_LONG\n",($b64l)?"define":"undef"; }
1838         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT/)
1839                 { printf OUT "#%s SIXTY_FOUR_BIT\n",($b64)?"define":"undef"; }
1840         elsif   (/^#((define)|(undef))\s+THIRTY_TWO_BIT/)
1841                 { printf OUT "#%s THIRTY_TWO_BIT\n",($b32)?"define":"undef"; }
1842         elsif   (/^#((define)|(undef))\s+SIXTEEN_BIT/)
1843                 { printf OUT "#%s SIXTEEN_BIT\n",($b16)?"define":"undef"; }
1844         elsif   (/^#((define)|(undef))\s+EIGHT_BIT/)
1845                 { printf OUT "#%s EIGHT_BIT\n",($b8)?"define":"undef"; }
1846         elsif   (/^#((define)|(undef))\s+BN_LLONG\s*$/)
1847                 { printf OUT "#%s BN_LLONG\n",($bn_ll)?"define":"undef"; }
1848         elsif   (/^\#define\s+DES_LONG\s+.*/)
1849                 { printf OUT "#define DES_LONG unsigned %s\n",
1850                         ($des_int)?'int':'long'; }
1851         elsif   (/^\#(define|undef)\s+DES_PTR/)
1852                 { printf OUT "#%s DES_PTR\n",($des_ptr)?'define':'undef'; }
1853         elsif   (/^\#(define|undef)\s+DES_RISC1/)
1854                 { printf OUT "#%s DES_RISC1\n",($des_risc1)?'define':'undef'; }
1855         elsif   (/^\#(define|undef)\s+DES_RISC2/)
1856                 { printf OUT "#%s DES_RISC2\n",($des_risc2)?'define':'undef'; }
1857         elsif   (/^\#(define|undef)\s+DES_UNROLL/)
1858                 { printf OUT "#%s DES_UNROLL\n",($des_unroll)?'define':'undef'; }
1859         elsif   (/^#define\s+RC4_INT\s/)
1860                 { printf OUT "#define RC4_INT unsigned %s\n",$type[$rc4_int]; }
1861         elsif   (/^#undef\s+RC4_CHUNK/)
1862                 {
1863                 printf OUT "#undef RC4_CHUNK\n" if $rc4_chunk==0;
1864                 printf OUT "#define RC4_CHUNK unsigned long\n" if $rc4_chunk==1;
1865                 printf OUT "#define RC4_CHUNK unsigned long long\n" if $rc4_chunk==2;
1866                 }
1867         elsif   (/^#((define)|(undef))\s+RC4_INDEX/)
1868                 { printf OUT "#%s RC4_INDEX\n",($rc4_idx)?"define":"undef"; }
1869         elsif (/^#(define|undef)\s+I386_ONLY/)
1870                 { printf OUT "#%s I386_ONLY\n", ($processor eq "386")?
1871                         "define":"undef"; }
1872         elsif   (/^#define\s+MD2_INT\s/)
1873                 { printf OUT "#define MD2_INT unsigned %s\n",$type[$md2_int]; }
1874         elsif   (/^#define\s+IDEA_INT\s/)
1875                 {printf OUT "#define IDEA_INT unsigned %s\n",$type[$idea_int];}
1876         elsif   (/^#define\s+RC2_INT\s/)
1877                 {printf OUT "#define RC2_INT unsigned %s\n",$type[$rc2_int];}
1878         elsif (/^#(define|undef)\s+BF_PTR/)
1879                 {
1880                 printf OUT "#undef BF_PTR\n" if $bf_ptr == 0;
1881                 printf OUT "#define BF_PTR\n" if $bf_ptr == 1;
1882                 printf OUT "#define BF_PTR2\n" if $bf_ptr == 2;
1883                 }
1884         else
1885                 { print OUT $_; }
1886         }
1887 close(IN);
1888 close(OUT);
1889 rename("crypto/opensslconf.h","crypto/opensslconf.h.bak") || die "unable to rename crypto/opensslconf.h\n" if -e "crypto/opensslconf.h";
1890 rename("crypto/opensslconf.h.new","crypto/opensslconf.h") || die "unable to rename crypto/opensslconf.h.new\n";
1891
1892
1893 # Fix the date
1894
1895 print "SIXTY_FOUR_BIT_LONG mode\n" if $b64l;
1896 print "SIXTY_FOUR_BIT mode\n" if $b64;
1897 print "THIRTY_TWO_BIT mode\n" if $b32;
1898 print "SIXTEEN_BIT mode\n" if $b16;
1899 print "EIGHT_BIT mode\n" if $b8;
1900 print "DES_PTR used\n" if $des_ptr;
1901 print "DES_RISC1 used\n" if $des_risc1;
1902 print "DES_RISC2 used\n" if $des_risc2;
1903 print "DES_UNROLL used\n" if $des_unroll;
1904 print "DES_INT used\n" if $des_int;
1905 print "BN_LLONG mode\n" if $bn_ll;
1906 print "RC4 uses u$type[$rc4_int]\n" if $rc4_int != $def_int;
1907 print "RC4_INDEX mode\n" if $rc4_idx;
1908 print "RC4_CHUNK is undefined\n" if $rc4_chunk==0;
1909 print "RC4_CHUNK is unsigned long\n" if $rc4_chunk==1;
1910 print "RC4_CHUNK is unsigned long long\n" if $rc4_chunk==2;
1911 print "MD2 uses u$type[$md2_int]\n" if $md2_int != $def_int;
1912 print "IDEA uses u$type[$idea_int]\n" if $idea_int != $def_int;
1913 print "RC2 uses u$type[$rc2_int]\n" if $rc2_int != $def_int;
1914 print "BF_PTR used\n" if $bf_ptr == 1; 
1915 print "BF_PTR2 used\n" if $bf_ptr == 2; 
1916
1917 if($IsMK1MF) {
1918         open (OUT,">crypto/buildinf.h") || die "Can't open buildinf.h";
1919         printf OUT <<EOF;
1920 #ifndef MK1MF_BUILD
1921   /* auto-generated by Configure for crypto/cversion.c:
1922    * for Unix builds, crypto/Makefile.ssl generates functional definitions;
1923    * Windows builds (and other mk1mf builds) compile cversion.c with
1924    * -DMK1MF_BUILD and use definitions added to this file by util/mk1mf.pl. */
1925   #error "Windows builds (PLATFORM=$target) use mk1mf.pl-created Makefiles"
1926 #endif
1927 EOF
1928         close(OUT);
1929 } else {
1930         my $make_command = "$make PERL=\'$perl\'";
1931         my $make_targets = "";
1932         $make_targets .= " links" if $symlink;
1933         $make_targets .= " depend" if $depflags ne $default_depflags && $make_depend;
1934         $make_targets .= " gentests" if $symlink;
1935         (system $make_command.$make_targets) == 0 or exit $?
1936                 if $make_targets ne "";
1937         if ( $fipscanisteronly )
1938                 {}
1939         elsif ( $perl =~ m@^/@) {
1940             &dofile("tools/c_rehash",$perl,'^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";', '^my \$prefix;$', 'my $prefix = "' . $prefix . '";');
1941             &dofile("apps/CA.pl",$perl,'^#!/', '#!%s');
1942         } else {
1943             # No path for Perl known ...
1944             &dofile("tools/c_rehash",'/usr/local/bin/perl','^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";',  '^my \$prefix;$', 'my $prefix = "' . $prefix . '";');
1945             &dofile("apps/CA.pl",'/usr/local/bin/perl','^#!/', '#!%s');
1946         }
1947         if ($depflags ne $default_depflags && !$make_depend) {
1948                 print <<EOF;
1949
1950 Since you've disabled or enabled at least one algorithm, you need to do
1951 the following before building:
1952
1953         make depend
1954 EOF
1955         }
1956 }
1957
1958 # create the ms/version32.rc file if needed
1959 if ($IsMK1MF && ($target !~ /^netware/)) {
1960         my ($v1, $v2, $v3, $v4);
1961         if ($version_num =~ /(^[0-9a-f]{1})([0-9a-f]{2})([0-9a-f]{2})([0-9a-f]{2})/i) {
1962                 $v1=hex $1;
1963                 $v2=hex $2;
1964                 $v3=hex $3;
1965                 $v4=hex $4;
1966         }
1967         open (OUT,">ms/version32.rc") || die "Can't open ms/version32.rc";
1968         print OUT <<EOF;
1969 #include <winver.h>
1970
1971 LANGUAGE 0x09,0x01
1972
1973 1 VERSIONINFO
1974   FILEVERSION $v1,$v2,$v3,$v4
1975   PRODUCTVERSION $v1,$v2,$v3,$v4
1976   FILEFLAGSMASK 0x3fL
1977 #ifdef _DEBUG
1978   FILEFLAGS 0x01L
1979 #else
1980   FILEFLAGS 0x00L
1981 #endif
1982   FILEOS VOS__WINDOWS32
1983   FILETYPE VFT_DLL
1984   FILESUBTYPE 0x0L
1985 BEGIN
1986     BLOCK "StringFileInfo"
1987     BEGIN
1988         BLOCK "040904b0"
1989         BEGIN
1990 #if defined(FIPS)
1991             VALUE "Comments", "WARNING: TEST VERSION ONLY ***NOT*** FIPS 140-2 VALIDATED.\\0"
1992 #endif
1993             // Required:            
1994             VALUE "CompanyName", "The OpenSSL Project, http://www.openssl.org/\\0"
1995 #if defined(FIPS)
1996             VALUE "FileDescription", "TEST UNVALIDATED FIPS140-2 DLL\\0"
1997 #else
1998             VALUE "FileDescription", "OpenSSL Shared Library\\0"
1999 #endif
2000             VALUE "FileVersion", "$version\\0"
2001 #if defined(CRYPTO)
2002             VALUE "InternalName", "libeay32\\0"
2003             VALUE "OriginalFilename", "libeay32.dll\\0"
2004 #elif defined(SSL)
2005             VALUE "InternalName", "ssleay32\\0"
2006             VALUE "OriginalFilename", "ssleay32.dll\\0"
2007 #elif defined(FIPS)
2008             VALUE "InternalName", "libosslfips\\0"
2009             VALUE "OriginalFilename", "libosslfips.dll\\0"
2010 #endif
2011             VALUE "ProductName", "The OpenSSL Toolkit\\0"
2012             VALUE "ProductVersion", "$version\\0"
2013             // Optional:
2014             //VALUE "Comments", "\\0"
2015             VALUE "LegalCopyright", "Copyright © 1998-2005 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved.\\0"
2016             //VALUE "LegalTrademarks", "\\0"
2017             //VALUE "PrivateBuild", "\\0"
2018             //VALUE "SpecialBuild", "\\0"
2019         END
2020     END
2021     BLOCK "VarFileInfo"
2022     BEGIN
2023         VALUE "Translation", 0x409, 0x4b0
2024     END
2025 END
2026 EOF
2027         close(OUT);
2028   }
2029   
2030 print <<EOF;
2031
2032 Configured for $target.
2033 EOF
2034
2035 print <<\EOF if (!$no_threads && !$threads);
2036
2037 The library could not be configured for supporting multi-threaded
2038 applications as the compiler options required on this system are not known.
2039 See file INSTALL for details if you need multi-threading.
2040 EOF
2041
2042 print <<\EOF if ($no_shared_warn);
2043
2044 You gave the option 'shared'.  Normally, that would give you shared libraries.
2045 Unfortunately, the OpenSSL configuration doesn't include shared library support
2046 for this platform yet, so it will pretend you gave the option 'no-shared'.  If
2047 you can inform the developpers (openssl-dev\@openssl.org) how to support shared
2048 libraries on this platform, they will at least look at it and try their best
2049 (but please first make sure you have tried with a current version of OpenSSL).
2050 EOF
2051
2052 print <<\EOF if ($fipscanisterinternal eq "y");
2053
2054 WARNING: OpenSSL has been configured using unsupported option(s) to internally
2055 generate a fipscanister.o object module for TESTING PURPOSES ONLY; that
2056 compiled module is NOT FIPS 140-2 validated and CANNOT be used to replace the
2057 OpenSSL FIPS Object Module as identified by the CMVP
2058 (http://csrc.nist.gov/cryptval/) in any application requiring the use of FIPS
2059 140-2 validated software. 
2060
2061 This is an OpenSSL 1.1.0 test version.
2062
2063 See the file README.FIPS for details of how to build a test library.
2064
2065 EOF
2066
2067 exit(0);
2068
2069 sub usage
2070         {
2071         print STDERR $usage;
2072         print STDERR "\npick os/compiler from:\n";
2073         my $j=0;
2074         my $i;
2075         my $k=0;
2076         foreach $i (sort keys %table)
2077                 {
2078                 next if $i =~ /^debug/;
2079                 $k += length($i) + 1;
2080                 if ($k > 78)
2081                         {
2082                         print STDERR "\n";
2083                         $k=length($i);
2084                         }
2085                 print STDERR $i . " ";
2086                 }
2087         foreach $i (sort keys %table)
2088                 {
2089                 next if $i !~ /^debug/;
2090                 $k += length($i) + 1;
2091                 if ($k > 78)
2092                         {
2093                         print STDERR "\n";
2094                         $k=length($i);
2095                         }
2096                 print STDERR $i . " ";
2097                 }
2098         print STDERR "\n\nNOTE: If in doubt, on Unix-ish systems use './config'.\n";
2099         exit(1);
2100         }
2101
2102 sub which
2103         {
2104         my($name)=@_;
2105         my $path;
2106         foreach $path (split /:/, $ENV{PATH})
2107                 {
2108                 if (-f "$path/$name$exe_ext" and -x _)
2109                         {
2110                         return "$path/$name$exe_ext" unless ($name eq "perl" and
2111                          system("$path/$name$exe_ext -e " . '\'exit($]<5.0);\''));
2112                         }
2113                 }
2114         }
2115
2116 sub dofile
2117         {
2118         my $f; my $p; my %m; my @a; my $k; my $ff;
2119         ($f,$p,%m)=@_;
2120
2121         open(IN,"<$f.in") || open(IN,"<$f") || die "unable to open $f:$!\n";
2122         @a=<IN>;
2123         close(IN);
2124         foreach $k (keys %m)
2125                 {
2126                 grep(/$k/ && ($_=sprintf($m{$k}."\n",$p)),@a);
2127                 }
2128         open(OUT,">$f.new") || die "unable to open $f.new:$!\n";
2129         print OUT @a;
2130         close(OUT);
2131         rename($f,"$f.bak") || die "unable to rename $f\n" if -e $f;
2132         rename("$f.new",$f) || die "unable to rename $f.new\n";
2133         }
2134
2135 sub print_table_entry
2136         {
2137         my $target = shift;
2138
2139         (my $cc,my $cflags,my $unistd,my $thread_cflag,my $sys_id,my $lflags,
2140         my $bn_ops,my $cpuid_obj,my $bn_obj,my $des_obj,my $aes_obj, my $bf_obj,
2141         my $md5_obj,my $sha1_obj,my $cast_obj,my $rc4_obj,my $rmd160_obj,
2142         my $rc5_obj,my $wp_obj,my $cmll_obj,my $modes_obj,my $perlasm_scheme,my $dso_scheme,my $shared_target,my $shared_cflag,
2143         my $shared_ldflag,my $shared_extension,my $ranlib,my $arflags,my $multilib)=
2144         split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
2145                         
2146         print <<EOF
2147
2148 *** $target
2149 \$cc           = $cc
2150 \$cflags       = $cflags
2151 \$unistd       = $unistd
2152 \$thread_cflag = $thread_cflag
2153 \$sys_id       = $sys_id
2154 \$lflags       = $lflags
2155 \$bn_ops       = $bn_ops
2156 \$cpuid_obj    = $cpuid_obj
2157 \$bn_obj       = $bn_obj
2158 \$des_obj      = $des_obj
2159 \$aes_obj      = $aes_obj
2160 \$bf_obj       = $bf_obj
2161 \$md5_obj      = $md5_obj
2162 \$sha1_obj     = $sha1_obj
2163 \$cast_obj     = $cast_obj
2164 \$rc4_obj      = $rc4_obj
2165 \$rmd160_obj   = $rmd160_obj
2166 \$rc5_obj      = $rc5_obj
2167 \$wp_obj       = $wp_obj
2168 \$cmll_obj     = $cmll_obj
2169 \$modes_obj    = $modes_obj
2170 \$perlasm_scheme = $perlasm_scheme
2171 \$dso_scheme   = $dso_scheme
2172 \$shared_target= $shared_target
2173 \$shared_cflag = $shared_cflag
2174 \$shared_ldflag = $shared_ldflag
2175 \$shared_extension = $shared_extension
2176 \$ranlib       = $ranlib
2177 \$arflags      = $arflags
2178 \$multilib     = $multilib
2179 EOF
2180         }
2181
2182 sub test_sanity
2183         {
2184         my $errorcnt = 0;
2185
2186         print STDERR "=" x 70, "\n";
2187         print STDERR "=== SANITY TESTING!\n";
2188         print STDERR "=== No configuration will be done, all other arguments will be ignored!\n";
2189         print STDERR "=" x 70, "\n";
2190
2191         foreach $target (sort keys %table)
2192                 {
2193                 @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
2194
2195                 if ($fields[$idx_dso_scheme-1] =~ /^(beos|dl|dlfcn|win32|vms)$/)
2196                         {
2197                         $errorcnt++;
2198                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
2199                         print STDERR "              in the previous field\n";
2200                         }
2201                 elsif ($fields[$idx_dso_scheme+1] =~ /^(beos|dl|dlfcn|win32|vms)$/)
2202                         {
2203                         $errorcnt++;
2204                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
2205                         print STDERR "              in the following field\n";
2206                         }
2207                 elsif ($fields[$idx_dso_scheme] !~ /^(beos|dl|dlfcn|win32|vms|)$/)
2208                         {
2209                         $errorcnt++;
2210                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] field = ",$fields[$idx_dso_scheme],"\n";
2211                         print STDERR "              valid values are 'beos', 'dl', 'dlfcn', 'win32' and 'vms'\n";
2212                         }
2213                 }
2214         print STDERR "No sanity errors detected!\n" if $errorcnt == 0;
2215         return $errorcnt;
2216         }