Add CAPI engine error files.
[oweals/openssl.git] / Configure
1 :
2 eval 'exec perl -S $0 ${1+"$@"}'
3     if $running_under_some_shell;
4 ##
5 ##  Configure -- OpenSSL source tree configuration script
6 ##
7
8 require 5.000;
9 eval 'use strict;';
10
11 print STDERR "Warning: perl module strict not found.\n" if ($@);
12
13 # see INSTALL for instructions.
14
15 my $usage="Usage: Configure [no-<cipher> ...] [enable-<cipher> ...] [-Dxxx] [-lxxx] [-Lxxx] [-fxxx] [-Kxxx] [no-hw-xxx|no-hw] [[no-]threads] [[no-]shared] [[no-]zlib|zlib-dynamic] [no-asm] [no-dso] [no-krb5] [386] [--prefix=DIR] [--openssldir=OPENSSLDIR] [--with-xxx[=vvv]] [--test-sanity] os/compiler[:flags]\n";
16
17 # Options:
18 #
19 # --openssldir  install OpenSSL in OPENSSLDIR (Default: DIR/ssl if the
20 #               --prefix option is given; /usr/local/ssl otherwise)
21 # --prefix      prefix for the OpenSSL include, lib and bin directories
22 #               (Default: the OPENSSLDIR directory)
23 #
24 # --install_prefix  Additional prefix for package builders (empty by
25 #               default).  This needn't be set in advance, you can
26 #               just as well use "make INSTALL_PREFIX=/whatever install".
27 #
28 # --with-krb5-dir  Declare where Kerberos 5 lives.  The libraries are expected
29 #               to live in the subdirectory lib/ and the header files in
30 #               include/.  A value is required.
31 # --with-krb5-lib  Declare where the Kerberos 5 libraries live.  A value is
32 #               required.
33 #               (Default: KRB5_DIR/lib)
34 # --with-krb5-include  Declare where the Kerberos 5 header files live.  A
35 #               value is required.
36 #               (Default: KRB5_DIR/include)
37 # --with-krb5-flavor  Declare what flavor of Kerberos 5 is used.  Currently
38 #               supported values are "MIT" and "Heimdal".  A value is required.
39 #
40 # --test-sanity Make a number of sanity checks on the data in this file.
41 #               This is a debugging tool for OpenSSL developers.
42 #
43 # no-hw-xxx     do not compile support for specific crypto hardware.
44 #               Generic OpenSSL-style methods relating to this support
45 #               are always compiled but return NULL if the hardware
46 #               support isn't compiled.
47 # no-hw         do not compile support for any crypto hardware.
48 # [no-]threads  [don't] try to create a library that is suitable for
49 #               multithreaded applications (default is "threads" if we
50 #               know how to do it)
51 # [no-]shared   [don't] try to create shared libraries when supported.
52 # no-asm        do not use assembler
53 # no-dso        do not compile in any native shared-library methods. This
54 #               will ensure that all methods just return NULL.
55 # no-krb5       do not compile in any KRB5 library or code.
56 # [no-]zlib     [don't] compile support for zlib compression.
57 # zlib-dynamic  Like "zlib", but the zlib library is expected to be a shared
58 #               library and will be loaded in run-time by the OpenSSL library.
59 # 386           generate 80386 code
60 # no-sse2       disables IA-32 SSE2 code, above option implies no-sse2
61 # no-<cipher>   build without specified algorithm (rsa, idea, rc5, ...)
62 # -<xxx> +<xxx> compiler options are passed through 
63 #
64 # DEBUG_SAFESTACK use type-safe stacks to enforce type-safety on stack items
65 #               provided to stack calls. Generates unique stack functions for
66 #               each possible stack type.
67 # DES_PTR       use pointer lookup vs arrays in the DES in crypto/des/des_locl.h
68 # DES_RISC1     use different DES_ENCRYPT macro that helps reduce register
69 #               dependancies but needs to more registers, good for RISC CPU's
70 # DES_RISC2     A different RISC variant.
71 # DES_UNROLL    unroll the inner DES loop, sometimes helps, somtimes hinders.
72 # DES_INT       use 'int' instead of 'long' for DES_LONG in crypto/des/des.h
73 #               This is used on the DEC Alpha where long is 8 bytes
74 #               and int is 4
75 # BN_LLONG      use the type 'long long' in crypto/bn/bn.h
76 # MD2_CHAR      use 'char' instead of 'int' for MD2_INT in crypto/md2/md2.h
77 # MD2_LONG      use 'long' instead of 'int' for MD2_INT in crypto/md2/md2.h
78 # IDEA_SHORT    use 'short' instead of 'int' for IDEA_INT in crypto/idea/idea.h
79 # IDEA_LONG     use 'long' instead of 'int' for IDEA_INT in crypto/idea/idea.h
80 # RC2_SHORT     use 'short' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
81 # RC2_LONG      use 'long' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
82 # RC4_CHAR      use 'char' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
83 # RC4_LONG      use 'long' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
84 # RC4_INDEX     define RC4_INDEX in crypto/rc4/rc4_locl.h.  This turns on
85 #               array lookups instead of pointer use.
86 # RC4_CHUNK     enables code that handles data aligned at long (natural CPU
87 #               word) boundary.
88 # RC4_CHUNK_LL  enables code that handles data aligned at long long boundary
89 #               (intended for 64-bit CPUs running 32-bit OS).
90 # BF_PTR        use 'pointer arithmatic' for Blowfish (unsafe on Alpha).
91 # BF_PTR2       intel specific version (generic version is more efficient).
92 #
93 # Following are set automatically by this script
94 #
95 # MD5_ASM       use some extra md5 assember,
96 # SHA1_ASM      use some extra sha1 assember, must define L_ENDIAN for x86
97 # RMD160_ASM    use some extra ripemd160 assember,
98 # SHA256_ASM    sha256_block is implemented in assembler
99 # SHA512_ASM    sha512_block is implemented in assembler
100 # AES_ASM       ASE_[en|de]crypt is implemented in assembler
101
102 my $x86_gcc_des="DES_PTR DES_RISC1 DES_UNROLL";
103
104 # MD2_CHAR slags pentium pros
105 my $x86_gcc_opts="RC4_INDEX MD2_INT";
106
107 # MODIFY THESE PARAMETERS IF YOU ARE GOING TO USE THE 'util/speed.sh SCRIPT
108 # Don't worry about these normally
109
110 my $tcc="cc";
111 my $tflags="-fast -Xa";
112 my $tbn_mul="";
113 my $tlib="-lnsl -lsocket";
114 #$bits1="SIXTEEN_BIT ";
115 #$bits2="THIRTY_TWO_BIT ";
116 my $bits1="THIRTY_TWO_BIT ";
117 my $bits2="SIXTY_FOUR_BIT ";
118
119 my $x86_elf_asm="x86cpuid-elf.o:bn86-elf.o co86-elf.o mo86-elf.o:dx86-elf.o yx86-elf.o:ax86-elf.o:bx86-elf.o:mx86-elf.o:sx86-elf.o s512sse2-elf.o:cx86-elf.o:rx86-elf.o:rm86-elf.o:r586-elf.o";
120 my $x86_coff_asm="x86cpuid-cof.o:bn86-cof.o co86-cof.o mo86-cof.o:dx86-cof.o yx86-cof.o:ax86-cof.o:bx86-cof.o:mx86-cof.o:sx86-cof.o s512sse2-cof.o:cx86-cof.o:rx86-cof.o:rm86-cof.o:r586-cof.o";
121 my $x86_out_asm="x86cpuid-out.o:bn86-out.o co86-out.o mo86-out.o:dx86-out.o yx86-out.o:ax86-out.o:bx86-out.o:mx86-out.o:sx86-out.o s512sse2-out.o:cx86-out.o:rx86-out.o:rm86-out.o:r586-out.o";
122
123 my $x86_64_asm="x86_64cpuid.o:x86_64-gcc.o x86_64-mont.o::aes-x86_64.o::md5-x86_64.o:sha1-x86_64.o sha256-x86_64.o sha512-x86_64.o::rc4-x86_64.o::";
124
125 my $no_asm="::::::::::";
126
127 my $ia64_asm=$no_asm;
128 my $s390x_asm=$no_asm;
129
130 # As for $BSDthreads. Idea is to maintain "collective" set of flags,
131 # which would cover all BSD flavors. -pthread applies to them all, 
132 # but is treated differently. OpenBSD expands is as -D_POSIX_THREAD
133 # -lc_r, which is sufficient. FreeBSD 4.x expands it as -lc_r,
134 # which has to be accompanied by explicit -D_THREAD_SAFE and
135 # sometimes -D_REENTRANT. FreeBSD 5.x expands it as -lc_r, which
136 # seems to be sufficient?
137 my $BSDthreads="-pthread -D_THREAD_SAFE -D_REENTRANT";
138
139 #config-string  $cc : $cflags : $unistd : $thread_cflag : $sys_id : $lflags : $bn_ops : $cpuid_obj : $bn_obj : $des_obj : $aes_obj : $bf_obj : $md5_obj : $sha1_obj : $cast_obj : $rc4_obj : $rmd160_obj : $rc5_obj : $dso_scheme : $shared_target : $shared_cflag : $shared_ldflag : $shared_extension : $ranlib : $arflags
140
141 my %table=(
142 # File 'TABLE' (created by 'make TABLE') contains the data from this list,
143 # formatted for better readability.
144
145
146 #"b",           "${tcc}:${tflags}::${tlib}:${bits1}:${tbn_mul}::",
147 #"bl-4c-2c",    "${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR MD2_CHAR:${tbn_mul}::",
148 #"bl-4c-ri",    "${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR RC4_INDEX:${tbn_mul}::",
149 #"b2-is-ri-dp", "${tcc}:${tflags}::${tlib}:${bits2}IDEA_SHORT RC4_INDEX DES_PTR:${tbn_mul}::",
150
151 # Our development configs
152 "purify",       "purify gcc:-g -DPURIFY -Wall::(unknown)::-lsocket -lnsl::::",
153 "debug",        "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -ggdb -g2 -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror::(unknown)::-lefence::::",
154 "debug-ben",    "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown):::::bn86-elf.o co86-elf.o",
155 "debug-ben-openbsd","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
156 "debug-ben-openbsd-debug","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -g3 -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
157 "debug-ben-debug",      "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -g3 -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::::",
158 "debug-ben-strict",     "gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DCONST_STRICT -O2 -Wall -Wshadow -Werror -Wpointer-arith -Wcast-qual -Wwrite-strings -pipe::(unknown)::::::",
159 "debug-rse","cc:-DTERMIOS -DL_ENDIAN -pipe -O -g -ggdb3 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
160 "debug-bodo",   "gcc:-DL_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBIO_PAIR_DEBUG -DPEDANTIC -g -march=i486 -pedantic -Wshadow -Wall::-D_REENTRANT:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
161 "debug-ulf", "gcc:-DTERMIOS -DL_ENDIAN -march=i486 -Wall -DBN_DEBUG -DBN_DEBUG_RAND -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -g -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations:::CYGWIN32:::${no_asm}:win32:cygwin-shared:::.dll",
162 "debug-steve",  "gcc:-DL_ENDIAN -DREF_CHECK -DCONF_DEBUG -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG_ALL -DPEDANTIC -g -m32 -pedantic -Wno-long-long -Wall -Werror -Wshadow -pipe::-D_REENTRANT::-rdynamic -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared",
163 "debug-steve-opt",      "gcc:-DL_ENDIAN -DREF_CHECK -DCONF_DEBUG -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG_ALL -DPEDANTIC -g -O3 -m32 -pedantic -Wno-long-long -Wall -Werror -Wshadow -pipe::-D_REENTRANT::-rdynamic -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared",
164 "debug-levitte-linux-elf","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
165 "debug-levitte-linux-noasm","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
166 "debug-levitte-linux-elf-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
167 "debug-levitte-linux-noasm-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
168 "debug-geoff","gcc:-DBN_DEBUG -DBN_DEBUG_RAND -DBN_STRICT -DPURIFY -DOPENSSL_NO_DEPRECATED -DOPENSSL_NO_ASM -DOPENSSL_NO_INLINE_ASM -DL_ENDIAN -DTERMIO -DPEDANTIC -O1 -ggdb2 -Wall -Werror -Wundef -pedantic -Wshadow -Wpointer-arith -Wbad-function-cast -Wcast-align -Wsign-compare -Wmissing-prototypes -Wmissing-declarations -Wno-long-long::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
169 "debug-linux-pentium","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -mcpu=pentium -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
170 "debug-linux-ppro","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -mcpu=pentiumpro -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
171 "debug-linux-elf","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -march=i486 -Wall::-D_REENTRANT::-lefence -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
172 "debug-linux-elf-noefence","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
173 "dist",         "cc:-O::(unknown)::::::",
174
175 # Basic configs that should work on any (32 and less bit) box
176 "gcc",          "gcc:-O3::(unknown):::BN_LLONG:::",
177 "cc",           "cc:-O::(unknown)::::::",
178
179 ####VOS Configurations
180 "vos-gcc","gcc:-O3 -Wall -D_POSIX_C_SOURCE=200112L -D_BSD -DB_ENDIAN::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
181 "debug-vos-gcc","gcc:-O0 -g -Wall -D_POSIX_C_SOURCE=200112L -D_BSD -DB_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
182
183 #### Solaris x86 with GNU C setups
184 # -DOPENSSL_NO_INLINE_ASM switches off inline assembler. We have to do it
185 # here because whenever GNU C instantiates an assembler template it
186 # surrounds it with #APP #NO_APP comment pair which (at least Solaris
187 # 7_x86) /usr/ccs/bin/as fails to assemble with "Illegal mnemonic"
188 # error message.
189 "solaris-x86-gcc","gcc:-O3 -fomit-frame-pointer -march=pentium -Wall -DL_ENDIAN -DOPENSSL_NO_INLINE_ASM::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
190 # -shared -static-libgcc might appear controversial, but modules taken
191 # from static libgcc do not have relocations and linking them into our
192 # shared objects doesn't have any negative side-effects. On the contrary,
193 # doing so makes it possible to use gcc shared build with Sun C. Given
194 # that gcc generates faster code [thanks to inline assembler], I would
195 # actually recommend to consider using gcc shared build even with vendor
196 # compiler:-)
197 #                                               <appro@fy.chalmers.se>
198 "solaris64-x86_64-gcc","gcc:-m64 -O3 -Wall -DL_ENDIAN -DMD32_REG_T=int::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK BF_PTR2 DES_INT DES_UNROLL:${x86_64_asm}:dlfcn:solaris-shared:-fPIC:-m64 -shared -static-libgcc:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
199  
200 #### Solaris x86 with Sun C setups
201 "solaris-x86-cc","cc:-fast -O -Xa::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
202 "solaris64-x86_64-cc","cc:-fast -xarch=amd64 -xstrconst -Xa -DL_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK BF_PTR2 DES_INT DES_UNROLL:${x86_64_asm}:dlfcn:solaris-shared:-KPIC:-xarch=amd64 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
203
204 #### SPARC Solaris with GNU C setups
205 "solaris-sparcv7-gcc","gcc:-O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
206 "solaris-sparcv8-gcc","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
207 # -m32 should be safe to add as long as driver recognizes -mcpu=ultrasparc
208 "solaris-sparcv9-gcc","gcc:-m32 -mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
209 "solaris64-sparcv9-gcc","gcc:-m64 -mcpu=ultrasparc -O3 -Wall -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-m64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
210 ####
211 "debug-solaris-sparcv8-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG_ALL -O -g -mv8 -Wall -DB_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
212 "debug-solaris-sparcv9-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG_ALL -DPEDANTIC -O -g -mcpu=ultrasparc -pedantic -ansi -Wall -Wshadow -Wno-long-long -D__EXTENSIONS__ -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
213
214 #### SPARC Solaris with Sun C setups
215 # SC4.0 doesn't pass 'make test', upgrade to SC5.0 or SC4.2.
216 # SC4.2 is ok, better than gcc even on bn as long as you tell it -xarch=v8
217 # SC5.0 note: Compiler common patch 107357-01 or later is required!
218 "solaris-sparcv7-cc","cc:-xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
219 "solaris-sparcv8-cc","cc:-xarch=v8 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
220 "solaris-sparcv9-cc","cc:-xtarget=ultra -xarch=v8plus -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
221 "solaris64-sparcv9-cc","cc:-xtarget=ultra -xarch=v9 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-xarch=v9 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):/usr/ccs/bin/ar rs",
222 ####
223 "debug-solaris-sparcv8-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG_ALL -xarch=v8 -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
224 "debug-solaris-sparcv9-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG_ALL -xtarget=ultra -xarch=v8plus -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", 
225
226 #### SunOS configs, assuming sparc for the gcc one.
227 #"sunos-cc", "cc:-O4 -DNOPROTO -DNOCONST::(unknown):SUNOS::DES_UNROLL:${no_asm}::",
228 "sunos-gcc","gcc:-O3 -mv8 -Dssize_t=int::(unknown):SUNOS::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL DES_PTR DES_RISC1:${no_asm}::",
229
230 #### IRIX 5.x configs
231 # -mips2 flag is added by ./config when appropriate.
232 "irix-gcc","gcc:-O3 -DTERMIOS -DB_ENDIAN::(unknown):::BN_LLONG MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK DES_UNROLL DES_RISC2 DES_PTR BF_PTR:${no_asm}:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
233 "irix-cc", "cc:-O2 -use_readonly_const -DTERMIOS -DB_ENDIAN::(unknown):::BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${no_asm}:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
234 #### IRIX 6.x configs
235 # Only N32 and N64 ABIs are supported. If you need O32 ABI build, invoke
236 # './Configure irix-cc -o32' manually.
237 "irix-mips3-gcc","gcc:-mabi=n32 -O3 -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK_LL DES_UNROLL DES_RISC2 DES_PTR BF_PTR SIXTY_FOUR_BIT:${no_asm}:dlfcn:irix-shared::-mabi=n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
238 "irix-mips3-cc", "cc:-n32 -mips3 -O2 -use_readonly_const -G0 -rdata_shared -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::DES_PTR RC4_CHAR RC4_CHUNK_LL DES_RISC2 DES_UNROLL BF_PTR SIXTY_FOUR_BIT:${no_asm}:dlfcn:irix-shared::-n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
239 # N64 ABI builds.
240 "irix64-mips4-gcc","gcc:-mabi=64 -mips4 -O3 -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG:${no_asm}:dlfcn:irix-shared::-mabi=64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
241 "irix64-mips4-cc", "cc:-64 -mips4 -O2 -use_readonly_const -G0 -rdata_shared -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG:${no_asm}:dlfcn:irix-shared::-64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
242
243 #### Unified HP-UX ANSI C configs.
244 # Special notes:
245 # - Originally we were optimizing at +O4 level. It should be noted
246 #   that the only difference between +O3 and +O4 is global inter-
247 #   procedural analysis. As it has to be performed during the link
248 #   stage the compiler leaves behind certain pseudo-code in lib*.a
249 #   which might be release or even patch level specific. Generating
250 #   the machine code for and analyzing the *whole* program appears
251 #   to be *extremely* memory demanding while the performance gain is
252 #   actually questionable. The situation is intensified by the default
253 #   HP-UX data set size limit (infamous 'maxdsiz' tunable) of 64MB
254 #   which is way too low for +O4. In other words, doesn't +O3 make
255 #   more sense?
256 # - Keep in mind that the HP compiler by default generates code
257 #   suitable for execution on the host you're currently compiling at.
258 #   If the toolkit is ment to be used on various PA-RISC processors
259 #   consider './config +DAportable'.
260 # - +DD64 is chosen in favour of +DA2.0W because it's meant to be
261 #   compatible with *future* releases.
262 # - If you run ./Configure hpux-parisc-[g]cc manually don't forget to
263 #   pass -D_REENTRANT on HP-UX 10 and later.
264 # - -DMD32_XARRAY triggers workaround for compiler bug we ran into in
265 #   32-bit message digests. (For the moment of this writing) HP C
266 #   doesn't seem to "digest" too many local variables (they make "him"
267 #   chew forever:-). For more details look-up MD32_XARRAY comment in
268 #   crypto/sha/sha_lcl.h.
269 #                                       <appro@fy.chalmers.se>
270 #
271 # Since there is mention of this in shlib/hpux10-cc.sh
272 "hpux-parisc-cc-o4","cc:-Ae +O4 +ESlit -z -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
273 "hpux-parisc-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-Wl,+s -ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
274 "hpux-parisc2-gcc","gcc:-march=2.0 -O3 -DB_ENDIAN -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
275 "hpux64-parisc2-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dlfcn:hpux-shared:-fpic:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
276
277 # More attempts at unified 10.X and 11.X targets for HP C compiler.
278 #
279 # Chris Ruemmler <ruemmler@cup.hp.com>
280 # Kevin Steves <ks@hp.se>
281 "hpux-parisc-cc","cc:+O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
282 "hpux-parisc1_0-cc","cc:+DAportable +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
283 "hpux-parisc2-cc","cc:+DA2.0 +DS2.0 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
284 "hpux64-parisc2-cc","cc:+DD64 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dlfcn:hpux-shared:+Z:+DD64 -b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
285
286 # HP/UX IA-64 targets
287 "hpux-ia64-cc","cc:-Ae +DD32 +O2 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD32 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
288 # Frank Geurts <frank.geurts@nl.abnamro.com> has patiently assisted with
289 # with debugging of the following config.
290 "hpux64-ia64-cc","cc:-Ae +DD64 +O3 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD64 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
291 # GCC builds...
292 "hpux-ia64-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
293 "hpux64-ia64-gcc","gcc:-mlp64 -O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-mlp64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", 
294
295 # Legacy HPUX 9.X configs...
296 "hpux-cc",      "cc:-DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY -Ae +ESlit +O2 -z::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
297 "hpux-gcc",     "gcc:-DB_ENDIAN -DBN_DIV2W -O3::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
298
299 #### HP MPE/iX http://jazz.external.hp.com/src/openssl/
300 "MPE/iX-gcc",   "gcc:-D_ENDIAN -DBN_DIV2W -O3 -D_POSIX_SOURCE -D_SOCKET_SOURCE -I/SYSLOG/PUB::(unknown):MPE:-L/SYSLOG/PUB -lsyslog -lsocket -lcurses:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:::",
301
302 # DEC Alpha OSF/1/Tru64 targets.
303 #
304 #       "What's in a name? That which we call a rose
305 #        By any other word would smell as sweet."
306 #
307 # - William Shakespeare, "Romeo & Juliet", Act II, scene II.
308 #
309 # For gcc, the following gave a %50 speedup on a 164 over the 'DES_INT' version
310 #
311 "osf1-alpha-gcc", "gcc:-O3::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_RISC1:${no_asm}:dlfcn:alpha-osf1-shared:::.so",
312 "osf1-alpha-cc",  "cc:-std1 -tune host -O4 -readonly_strings::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${no_asm}:dlfcn:alpha-osf1-shared:::.so",
313 "tru64-alpha-cc", "cc:-std1 -tune host -fast -readonly_strings::-pthread:::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${no_asm}:dlfcn:alpha-osf1-shared::-msym:.so",
314
315 ####
316 #### Variety of LINUX:-)
317 ####
318 # *-generic* is endian-neutral target, but ./config is free to
319 # throw in -D[BL]_ENDIAN, whichever appropriate...
320 "linux-generic32","gcc:-DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
321 "linux-ppc",    "gcc:-DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
322 #### IA-32 targets...
323 "linux-ia32-icc",       "icc:-DL_ENDIAN -DTERMIO -O2 -no_cpprt::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-KPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
324 "linux-elf",    "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
325 "linux-aout",   "gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -march=i486 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}",
326 ####
327 "linux-generic64","gcc:-DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
328 "linux-ppc64",  "gcc:-m64 -DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${no_asm}:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
329 "linux-ia64",   "gcc:-DL_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
330 "linux-ia64-ecc","ecc:-DL_ENDIAN -DTERMIO -O2 -Wall -no_cpprt::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
331 "linux-ia64-icc","icc:-DL_ENDIAN -DTERMIO -O2 -Wall -no_cpprt::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
332 "linux-x86_64", "gcc:-m64 -DL_ENDIAN -DTERMIO -O3 -Wall -DMD32_REG_T=int::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK BF_PTR2 DES_INT DES_UNROLL:${x86_64_asm}:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
333 "linux-s390x",  "gcc:-m64 -DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:${s390x_asm}:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
334 #### SPARC Linux setups
335 # Ray Miller <ray.miller@computing-services.oxford.ac.uk> has patiently
336 # assisted with debugging of following two configs.
337 "linux-sparcv8","gcc:-mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
338 # it's a real mess with -mcpu=ultrasparc option under Linux, but
339 # -Wa,-Av8plus should do the trick no matter what.
340 "linux-sparcv9","gcc:-m32 -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC:-m32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
341 # GCC 3.1 is a requirement
342 "linux64-sparcv9","gcc:-m64 -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:ULTRASPARC:-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
343 #### Alpha Linux with GNU C and Compaq C setups
344 # Special notes:
345 # - linux-alpha+bwx-gcc is ment to be used from ./config only. If you
346 #   ought to run './Configure linux-alpha+bwx-gcc' manually, do
347 #   complement the command line with -mcpu=ev56, -mcpu=ev6 or whatever
348 #   which is appropriate.
349 # - If you use ccc keep in mind that -fast implies -arch host and the
350 #   compiler is free to issue instructions which gonna make elder CPU
351 #   choke. If you wish to build "blended" toolkit, add -arch generic
352 #   *after* -fast and invoke './Configure linux-alpha-ccc' manually.
353 #
354 #                                       <appro@fy.chalmers.se>
355 #
356 "linux-alpha-gcc","gcc:-O3 -DL_ENDIAN -DTERMIO::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_RISC1 DES_UNROLL:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
357 "linux-alpha+bwx-gcc","gcc:-O3 -DL_ENDIAN -DTERMIO::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
358 "linux-alpha-ccc","ccc:-fast -readonly_strings -DL_ENDIAN -DTERMIO::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${no_asm}",
359 "linux-alpha+bwx-ccc","ccc:-fast -readonly_strings -DL_ENDIAN -DTERMIO::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${no_asm}",
360
361 #### *BSD [do see comment about ${BSDthreads} above!]
362 "BSD-generic32","gcc:-DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
363 "BSD-x86",      "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
364 "BSD-x86-elf",  "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
365 "debug-BSD-x86-elf",    "gcc:-DL_ENDIAN -DTERMIOS -O3 -Wall -g::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
366 "BSD-sparcv8",  "gcc:-DB_ENDIAN -DTERMIOS -O3 -mv8 -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
367
368 "BSD-generic64","gcc:-DTERMIOS -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
369 # -DMD32_REG_T=int doesn't actually belong in sparc64 target, it
370 # simply *happens* to work around a compiler bug in gcc 3.3.3,
371 # triggered by RIPEMD160 code.
372 "BSD-sparc64",  "gcc:-DB_ENDIAN -DTERMIOS -O3 -DMD32_REG_T=int -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC2_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC2 BF_PTR:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
373 "BSD-ia64",     "gcc:-DL_ENDIAN -DTERMIOS -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${ia64_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
374 "BSD-x86_64",   "gcc:-DL_ENDIAN -DTERMIOS -O3 -DMD32_REG_T=int -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
375
376 "bsdi-elf-gcc",     "gcc:-DPERL5 -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall::(unknown)::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
377
378 "nextstep",     "cc:-O -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
379 "nextstep3.3",  "cc:-O3 -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
380
381 # NCR MP-RAS UNIX ver 02.03.01
382 "ncr-scde","cc:-O6 -Xa -Hoff=BEHAVED -686 -Hwide -Hiw::(unknown)::-lsocket -lnsl -lc89:${x86_gcc_des} ${x86_gcc_opts}:::",
383
384 # QNX
385 "qnx4", "cc:-DL_ENDIAN -DTERMIO::(unknown):::${x86_gcc_des} ${x86_gcc_opts}:",
386 "qnx6", "cc:-DL_ENDIAN -DTERMIOS::(unknown)::-lsocket:${x86_gcc_des} ${x86_gcc_opts}:",
387
388 #### SCO/Caldera targets.
389 #
390 # Originally we had like unixware-*, unixware-*-pentium, unixware-*-p6, etc.
391 # Now we only have blended unixware-* as it's the only one used by ./config.
392 # If you want to optimize for particular microarchitecture, bypass ./config
393 # and './Configure unixware-7 -Kpentium_pro' or whatever appropriate.
394 # Note that not all targets include assembler support. Mostly because of
395 # lack of motivation to support out-of-date platforms with out-of-date
396 # compiler drivers and assemblers. Tim Rice <tim@multitalents.net> has
397 # patiently assisted to debug most of it.
398 #
399 # UnixWare 2.0x fails destest with -O.
400 "unixware-2.0","cc:-DFILIO_H -DNO_STRINGS_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
401 "unixware-2.1","cc:-O -DFILIO_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
402 "unixware-7","cc:-O -DFILIO_H -Kalloca::-Kthread::-lsocket -lnsl:BN_LLONG MD2_CHAR RC4_INDEX ${x86_gcc_des}:${x86_elf_asm}:dlfcn:svr5-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
403 "unixware-7-gcc","gcc:-DL_ENDIAN -DFILIO_H -O3 -fomit-frame-pointer -march=pentium -Wall::-D_REENTRANT::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:gnu-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
404 # SCO 5 - Ben Laurie <ben@algroup.co.uk> says the -O breaks the SCO cc.
405 "sco5-cc",  "cc:-belf::(unknown)::-lsocket -lnsl:${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
406 "sco5-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
407
408 #### IBM's AIX.
409 "aix3-cc",  "cc:-O -DB_ENDIAN -qmaxmem=16384::(unknown):AIX::BN_LLONG RC4_CHAR:::",
410 "aix-gcc",  "gcc:-O -DB_ENDIAN::-D_THREAD_SAFE:AIX::BN_LLONG RC4_CHAR:${no_asm}:dlfcn:aix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 32",
411 "aix64-gcc","gcc:-maix64 -O -DB_ENDIAN::-D_THREAD_SAFE:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR:${no_asm}:dlfcn:aix-shared::-maix64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X64",
412 # Below targets assume AIX 5. Idea is to effectively disregard $OBJECT_MODE
413 # at build time. $OBJECT_MODE is respected at ./config stage!
414 "aix-cc",   "cc:-q32 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded:AIX::BN_LLONG RC4_CHAR:${no_asm}:dlfcn:aix-shared::-q32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 32",
415 "aix64-cc", "cc:-q64 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR:${no_asm}:dlfcn:aix-shared::-q64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 64",
416
417 #
418 # Cray T90 and similar (SDSC)
419 # It's Big-endian, but the algorithms work properly when B_ENDIAN is NOT
420 # defined.  The T90 ints and longs are 8 bytes long, and apparently the
421 # B_ENDIAN code assumes 4 byte ints.  Fortunately, the non-B_ENDIAN and
422 # non L_ENDIAN code aligns the bytes in each word correctly.
423 #
424 # The BIT_FIELD_LIMITS define is to avoid two fatal compiler errors:
425 #'Taking the address of a bit field is not allowed. '
426 #'An expression with bit field exists as the operand of "sizeof" '
427 # (written by Wayne Schroeder <schroede@SDSC.EDU>)
428 #
429 # j90 is considered the base machine type for unicos machines,
430 # so this configuration is now called "cray-j90" ...
431 "cray-j90", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG DES_INT:::",
432
433 #
434 # Cray T3E (Research Center Juelich, beckman@acl.lanl.gov)
435 #
436 # The BIT_FIELD_LIMITS define was written for the C90 (it seems).  I added
437 # another use.  Basically, the problem is that the T3E uses some bit fields
438 # for some st_addr stuff, and then sizeof and address-of fails
439 # I could not use the ams/alpha.o option because the Cray assembler, 'cam'
440 # did not like it.
441 "cray-t3e", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT:::",
442
443 # DGUX, 88100.
444 "dgux-R3-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown):::RC4_INDEX DES_UNROLL:::",
445 "dgux-R4-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lnsl -lsocket:RC4_INDEX DES_UNROLL:::",
446 "dgux-R4-x86-gcc",      "gcc:-O3 -fomit-frame-pointer -DL_ENDIAN::(unknown)::-lnsl -lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
447
448 # Sinix/ReliantUNIX RM400
449 # NOTE: The CDS++ Compiler up to V2.0Bsomething has the IRIX_CC_BUG optimizer problem. Better use -g  */
450 "ReliantUNIX","cc:-KPIC -g -DTERMIOS -DB_ENDIAN::-Kthread:SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:BN_LLONG DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${no_asm}:dlfcn:reliantunix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
451 "SINIX","cc:-O::(unknown):SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:RC4_INDEX RC4_CHAR:::",
452 "SINIX-N","/usr/ucb/cc:-O2 -misaligned::(unknown)::-lucb:RC4_INDEX RC4_CHAR:::",
453
454 # SIEMENS BS2000/OSD: an EBCDIC-based mainframe
455 "BS2000-OSD","c89:-O -XLLML -XLLMK -XL -DB_ENDIAN -DTERMIOS -DCHARSET_EBCDIC::(unknown)::-lsocket -lnsl:THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
456
457 # OS/390 Unix an EBCDIC-based Unix system on IBM mainframe
458 # You need to compile using the c89.sh wrapper in the tools directory, because the
459 # IBM compiler does not like the -L switch after any object modules.
460 #
461 "OS390-Unix","c89.sh:-O -DB_ENDIAN -DCHARSET_EBCDIC -DNO_SYS_PARAM_H  -D_ALL_SOURCE::(unknown):::THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
462
463 # Win64 targets, WIN64I denotes IA-64 and WIN64A - AMD64
464 "VC-WIN64I","cl::::WIN64I::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:${no_asm}:win32",
465 "VC-WIN64A","cl::::WIN64A::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:${no_asm}:win32",
466
467 # Visual C targets
468 "VC-NT","cl::::WINNT::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
469 "VC-CE","cl::::WINCE::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
470 "VC-WIN32","cl::::WIN32::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
471
472 # Borland C++ 4.5
473 "BC-32","bcc32::::WIN32::BN_LLONG DES_PTR RC4_INDEX EXPORT_VAR_AS_FN:${no_asm}:win32",
474
475 # MinGW
476 "mingw", "gcc:-mno-cygwin -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall -D_WIN32_WINNT=0x333:::MINGW32:-lwsock32 -lgdi32:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts} EXPORT_VAR_AS_FN:${x86_coff_asm}:win32:cygwin-shared:-D_WINDLL -DOPENSSL_USE_APPLINK:-mno-cygwin -shared:.dll.a",
477
478 # UWIN 
479 "UWIN", "cc:-DTERMIOS -DL_ENDIAN -O -Wall:::UWIN::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
480
481 # Cygwin
482 "Cygwin-pre1.3", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall::(unknown):CYGWIN32::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
483 "Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall:::CYGWIN32::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_coff_asm}:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
484 "debug-Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -march=i486 -Wall -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -g -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror:::CYGWIN32:::${no_asm}:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
485
486 # NetWare from David Ward (dsward@novell.com) - requires MetroWerks NLM development tools
487 # netware-clib => legacy CLib c-runtime support
488 "netware-clib", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
489 # netware-libc => LibC/NKS support
490 # NetWare defaults socket bio to WinSock sockets. However, the LibC build can be
491 # configured to use BSD sockets instead.
492 "netware-libc", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
493 "netware-libc-bsdsock", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
494 "netware-libc-gcc", "i586-netware-gcc:-nostdinc -I/ndk/libc/include -I/ndk/libc/include/winsock -DL_ENDIAN -DNETWARE_LIBC -DOPENSSL_SYSNAME_NETWARE -DTERMIO -O2 -Wall:::::BN_LLONG ${x86_gcc_opts}::",
495
496 # DJGPP
497 "DJGPP", "gcc:-I/dev/env/WATT_ROOT/inc -DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -Wall:::MSDOS:-L/dev/env/WATT_ROOT/lib -lwatt:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_out_asm}:",
498
499 # Ultrix from Bernhard Simon <simon@zid.tuwien.ac.at>
500 "ultrix-cc","cc:-std1 -O -Olimit 2500 -DL_ENDIAN::(unknown):::::::",
501 "ultrix-gcc","gcc:-O3 -DL_ENDIAN::(unknown):::BN_LLONG::::",
502 # K&R C is no longer supported; you need gcc on old Ultrix installations
503 ##"ultrix","cc:-O2 -DNOPROTO -DNOCONST -DL_ENDIAN::(unknown):::::::",
504
505 ##### MacOS X (a.k.a. Rhapsody or Darwin) setup
506 "rhapsody-ppc-cc","cc:-O3 -DB_ENDIAN::(unknown):MACOSX_RHAPSODY::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}::",
507 "darwin-ppc-cc","cc:-O3 -DB_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:darwin-shared:-fPIC -fno-common:-dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
508 "darwin-i386-cc","cc:-O3 -fomit-frame-pointer -fno-common::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:darwin-shared:-fPIC -fno-common:-dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
509 "debug-darwin-ppc-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DB_ENDIAN -g -Wall -O::-D_REENTRANT:MACOSX::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:darwin-shared:-fPIC -fno-common:-dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
510
511 ##### A/UX
512 "aux3-gcc","gcc:-O2 -DTERMIO::(unknown):AUX:-lbsd:RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
513
514 ##### Sony NEWS-OS 4.x
515 "newsos4-gcc","gcc:-O -DB_ENDIAN::(unknown):NEWS4:-lmld -liberty:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::",
516
517 ##### GNU Hurd
518 "hurd-x86",  "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC",
519
520 ##### OS/2 EMX
521 "OS2-EMX", "gcc::::::::",
522
523 ##### VxWorks for various targets
524 "vxworks-ppc405","ccppc:-g -msoft-float -mlongcall -DCPU=PPC405 -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
525 "vxworks-ppc750","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h \$(DEBUG_FLAG):::VXWORKS:-r:::::",
526 "vxworks-ppc750-debug","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DDEBUG -g:::VXWORKS:-r:::::",
527 "vxworks-ppc860","ccppc:-nostdinc -msoft-float -DCPU=PPC860 -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
528 "vxworks-mipsle","ccmips:-B\$(WIND_BASE)/host/\$(WIND_HOST_TYPE)/lib/gcc-lib/ -DL_ENDIAN -EL -Wl,-EL -mips2 -mno-branch-likely -G 0 -fno-builtin -msoft-float -DCPU=MIPS32 -DMIPSEL -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r::${no_asm}::::::ranlibmips:",
529
530 ##### Compaq Non-Stop Kernel (Tandem)
531 "tandem-c89","c89:-Ww -D__TANDEM -D_XOPEN_SOURCE -D_XOPEN_SOURCE_EXTENDED=1 -D_TANDEM_SOURCE -DB_ENDIAN::(unknown):::THIRTY_TWO_BIT:::",
532
533 );
534
535 my @MK1MF_Builds=qw(VC-WIN64I VC-WIN64A
536                     VC-NT VC-CE VC-WIN32
537                     BC-32 OS2-EMX netware-clib netware-libc netware-libc-bsdsock);
538
539 my $idx = 0;
540 my $idx_cc = $idx++;
541 my $idx_cflags = $idx++;
542 my $idx_unistd = $idx++;
543 my $idx_thread_cflag = $idx++;
544 my $idx_sys_id = $idx++;
545 my $idx_lflags = $idx++;
546 my $idx_bn_ops = $idx++;
547 my $idx_cpuid_obj = $idx++;
548 my $idx_bn_obj = $idx++;
549 my $idx_des_obj = $idx++;
550 my $idx_aes_obj = $idx++;
551 my $idx_bf_obj = $idx++;
552 my $idx_md5_obj = $idx++;
553 my $idx_sha1_obj = $idx++;
554 my $idx_cast_obj = $idx++;
555 my $idx_rc4_obj = $idx++;
556 my $idx_rmd160_obj = $idx++;
557 my $idx_rc5_obj = $idx++;
558 my $idx_dso_scheme = $idx++;
559 my $idx_shared_target = $idx++;
560 my $idx_shared_cflag = $idx++;
561 my $idx_shared_ldflag = $idx++;
562 my $idx_shared_extension = $idx++;
563 my $idx_ranlib = $idx++;
564 my $idx_arflags = $idx++;
565
566 my $prefix="";
567 my $openssldir="";
568 my $exe_ext="";
569 my $install_prefix="";
570 my $fipslibdir="/usr/local/ssl/fips-1.0/lib/";
571 my $nofipscanistercheck=0;
572 my $fipsdso=0;
573 my $fipscanisterinternal="n";
574 my $baseaddr="0xFB00000";
575 my $no_threads=0;
576 my $threads=0;
577 my $no_shared=0; # but "no-shared" is default
578 my $zlib=1;      # but "no-zlib" is default
579 my $no_krb5=0;   # but "no-krb5" is implied unless "--with-krb5-..." is used
580 my $no_rfc3779=1; # but "no-rfc3779" is default
581 my $no_asm=0;
582 my $no_dso=0;
583 my $no_gmp=0;
584 my @skip=();
585 my $Makefile="Makefile";
586 my $des_locl="crypto/des/des_locl.h";
587 my $des ="crypto/des/des.h";
588 my $bn  ="crypto/bn/bn.h";
589 my $md2 ="crypto/md2/md2.h";
590 my $rc4 ="crypto/rc4/rc4.h";
591 my $rc4_locl="crypto/rc4/rc4_locl.h";
592 my $idea        ="crypto/idea/idea.h";
593 my $rc2 ="crypto/rc2/rc2.h";
594 my $bf  ="crypto/bf/bf_locl.h";
595 my $bn_asm      ="bn_asm.o";
596 my $des_enc="des_enc.o fcrypt_b.o";
597 my $fips_des_enc="fips_des_enc.o";
598 my $aes_enc="aes_core.o aes_cbc.o";
599 my $bf_enc      ="bf_enc.o";
600 my $cast_enc="c_enc.o";
601 my $rc4_enc="rc4_enc.o";
602 my $rc5_enc="rc5_enc.o";
603 my $md5_obj="";
604 my $sha1_obj="";
605 my $rmd160_obj="";
606 my $processor="";
607 my $default_ranlib;
608 my $perl;
609 my $fips=0;
610
611
612 # All of the following is disabled by default (RC5 was enabled before 0.9.8):
613
614 my %disabled = ( # "what"         => "comment"
615                  "camellia"       => "default",
616                  "capieng"        => "default",
617                  "cms"            => "default",
618                  "gmp"            => "default",
619                  "mdc2"           => "default",
620                  "rc5"            => "default",
621                  "rfc3779"        => "default",
622                  "seed"           => "default",
623                  "shared"         => "default",
624                  "tlsext"         => "default",
625                  "zlib"           => "default",
626                  "zlib-dynamic"   => "default"
627                );
628
629 # Additional "no-..." options will be collected in %disabled.
630 # To remove something from %disabled, use e.g. "enable-rc5".
631 # For symmetry, "disable-..." is a synonym for "no-...".
632
633 # This is what $depflags will look like with the above default:
634 my $default_depflags = "-DOPENSSL_NO_CAMELLIA -DOPENSSL_NO_GMP -DOPENSSL_NO_MDC2 -DOPENSSL_NO_RC5 -DOPENSSL_NO_RFC3779 -DOPENSSL_NO_SEED -DOPENSSL_NO_TLSEXT ";
635
636
637 my $no_sse2=0;
638
639 &usage if ($#ARGV < 0);
640
641 my $flags;
642 my $depflags;
643 my $openssl_algorithm_defines;
644 my $openssl_thread_defines;
645 my $openssl_sys_defines="";
646 my $openssl_other_defines;
647 my $libs;
648 my $libkrb5="";
649 my $target;
650 my $options;
651 my $symlink;
652 my $make_depend=0;
653 my %withargs=();
654
655 my @argvcopy=@ARGV;
656 my $argvstring="";
657 my $argv_unprocessed=1;
658
659 while($argv_unprocessed)
660         {
661         $flags="";
662         $depflags="";
663         $openssl_algorithm_defines="";
664         $openssl_thread_defines="";
665         $openssl_sys_defines="";
666         $openssl_other_defines="";
667         $libs="";
668         $target="";
669         $options="";
670         $symlink=1;
671
672         $argv_unprocessed=0;
673         $argvstring=join(' ',@argvcopy);
674
675 PROCESS_ARGS:
676         foreach (@argvcopy)
677                 {
678                 s /^-no-/no-/; # some people just can't read the instructions
679
680                 # rewrite some options in "enable-..." form
681                 s /^-?-?shared$/enable-shared/;
682                 s /^threads$/enable-threads/;
683                 s /^zlib$/enable-zlib/;
684                 s /^zlib-dynamic$/enable-zlib-dynamic/;
685
686                 if (/^no-(.+)$/ || /^disable-(.+)$/)
687                         {
688                         if ($1 eq "ssl")
689                                 {
690                                 $disabled{"ssl2"} = "option(ssl)";
691                                 $disabled{"ssl3"} = "option(ssl)";
692                                 }
693                         elsif ($1 eq "tls")
694                                 {
695                                 $disabled{"tls1"} = "option(tls)"
696                                 }
697                         else
698                                 {
699                                 $disabled{$1} = "option";
700                                 }
701                         }                       
702                 elsif (/^enable-(.+)$/)
703                         {
704                         delete $disabled{$1};
705
706                         $threads = 1 if ($1 eq "threads");
707                         }
708                 elsif (/^--test-sanity$/)
709                         {
710                         exit(&test_sanity());
711                         }
712                 elsif (/^reconfigure/ || /^reconf/)
713                         {
714                         if (open(IN,"<$Makefile"))
715                                 {
716                                 while (<IN>)
717                                         {
718                                         chomp;
719                                         if (/^CONFIGURE_ARGS=(.*)/)
720                                                 {
721                                                 $argvstring=$1;
722                                                 @argvcopy=split(' ',$argvstring);
723                                                 die "Incorrect data to reconfigure, please do a normal configuration\n"
724                                                         if (grep(/^reconf/,@argvcopy));
725                                                 print "Reconfiguring with: $argvstring\n";
726                                                 $argv_unprocessed=1;
727                                                 close(IN);
728                                                 last PROCESS_ARGS;
729                                                 }
730                                         }
731                                 close(IN);
732                                 }
733                         die "Insufficient data to reconfigure, please do a normal configuration\n";
734                         }
735                 elsif (/^386$/)
736                         { $processor=386; }
737                 elsif (/^fips$/)
738                         {
739                         $fips=1;
740                         }
741                 elsif (/^rsaref$/)
742                         {
743                         # No RSAref support any more since it's not needed.
744                         # The check for the option is there so scripts aren't
745                         # broken
746                         }
747                 elsif (/^nofipscanistercheck$/)
748                         {
749                         $fips = 1;
750                         $nofipscanistercheck = 1;
751                         }
752                 elsif (/^fipscanisterbuild$/)
753                         {
754                         $fips = 1;
755                         $nofipscanistercheck = 1;
756                         $fipslibdir="";
757                         $fipscanisterinternal="y";
758                         }
759                 elsif (/^fipsdso$/)
760                         {
761                         $fips = 1;
762                         $nofipscanistercheck = 1;
763                         $fipslibdir="";
764                         $fipscanisterinternal="y";
765                         $fipsdso = 1;
766                         }
767                 elsif (/^[-+]/)
768                         {
769                         if (/^-[lL](.*)$/)
770                                 {
771                                 $libs.=$_." ";
772                                 }
773                         elsif (/^-[^-]/ or /^\+/)
774                                 {
775                                 $flags.=$_." ";
776                                 }
777                         elsif (/^--prefix=(.*)$/)
778                                 {
779                                 $prefix=$1;
780                                 }
781                         elsif (/^--openssldir=(.*)$/)
782                                 {
783                                 $openssldir=$1;
784                                 }
785                         elsif (/^--install.prefix=(.*)$/)
786                                 {
787                                 $install_prefix=$1;
788                                 }
789                         elsif (/^--with-krb5-(dir|lib|include|flavor)=(.*)$/)
790                                 {
791                                 $withargs{"krb5-".$1}=$2;
792                                 }
793                         elsif (/^--with-zlib-lib=(.*)$/)
794                                 {
795                                 $withargs{"zlib-lib"}=$1;
796                                 }
797                         elsif (/^--with-zlib-include=(.*)$/)
798                                 {
799                                 $withargs{"zlib-include"}="-I$1";
800                                 }
801                         elsif (/^--with-fipslibdir=(.*)$/)
802                                 {
803                                 $fipslibdir="$1/";
804                                 }
805                         elsif (/^--with-baseaddr=(.*)$/)
806                                 {
807                                 $baseaddr="$1";
808                                 }
809                         else
810                                 {
811                                 print STDERR $usage;
812                                 exit(1);
813                                 }
814                         }
815                 elsif ($_ =~ /^([^:]+):(.+)$/)
816                         {
817                         eval "\$table{\$1} = \"$2\""; # allow $xxx constructs in the string
818                         $target=$1;
819                         }
820                 else
821                         {
822                         die "target already defined - $target (offending arg: $_)\n" if ($target ne "");
823                         $target=$_;
824                         }
825
826                 unless ($_ eq $target || /^no-/ || /^disable-/)
827                         {
828                         # "no-..." follows later after implied disactivations
829                         # have been derived.  (Don't take this too seroiusly,
830                         # we really only write OPTIONS to the Makefile out of
831                         # nostalgia.)
832
833                         if ($options eq "")
834                                 { $options = $_; }
835                         else
836                                 { $options .= " ".$_; }
837                         }
838                 }
839         }
840
841
842
843 if ($processor eq "386")
844         {
845         $disabled{"sse2"} = "forced";
846         }
847
848 if (!defined($withargs{"krb5-flavor"}) || $withargs{"krb5-flavor"} eq "")
849         {
850         $disabled{"krb5"} = "krb5-flavor not specified";
851         }
852
853 if (!defined($disabled{"zlib-dynamic"}))
854         {
855         # "zlib-dynamic" was specifically enabled, so enable "zlib"
856         delete $disabled{"zlib"};
857         }
858
859 if (defined($disabled{"rijndael"}))
860         {
861         $disabled{"aes"} = "forced";
862         }
863 if (defined($disabled{"des"}))
864         {
865         $disabled{"mdc2"} = "forced";
866         }
867 if (defined($disabled{"ec"}))
868         {
869         $disabled{"ecdsa"} = "forced";
870         $disabled{"ecdh"} = "forced";
871         }
872
873 # SSL 2.0 requires MD5 and RSA
874 if (defined($disabled{"md5"}) || defined($disabled{"rsa"}))
875         {
876         $disabled{"ssl2"} = "forced";
877         }
878
879 # SSL 3.0 and TLS requires MD5 and SHA and either RSA or DSA+DH
880 if (defined($disabled{"md5"}) || defined($disabled{"sha"})
881     || (defined($disabled{"rsa"})
882         && (defined($disabled{"dsa"}) || defined($disabled{"dh"}))))
883         {
884         $disabled{"ssl3"} = "forced";
885         $disabled{"tls1"} = "forced";
886         }
887
888 if (defined($disabled{"tls1"}))
889         {
890         $disabled{"tlsext"} = "forced";
891         }
892
893 if ($target eq "TABLE") {
894         foreach $target (sort keys %table) {
895                 print_table_entry($target);
896         }
897         exit 0;
898 }
899
900 if ($target eq "LIST") {
901         foreach (sort keys %table) {
902                 print;
903                 print "\n";
904         }
905         exit 0;
906 }
907
908 if ($target =~ m/^CygWin32(-.*)$/) {
909         $target = "Cygwin".$1;
910 }
911
912 print "Configuring for $target\n";
913
914 &usage if (!defined($table{$target}));
915
916 my @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
917 my $cc = $fields[$idx_cc];
918 my $cflags = $fields[$idx_cflags];
919 my $unistd = $fields[$idx_unistd];
920 my $thread_cflag = $fields[$idx_thread_cflag];
921 my $sys_id = $fields[$idx_sys_id];
922 my $lflags = $fields[$idx_lflags];
923 my $bn_ops = $fields[$idx_bn_ops];
924 my $cpuid_obj = $fields[$idx_cpuid_obj];
925 my $bn_obj = $fields[$idx_bn_obj];
926 my $des_obj = $fields[$idx_des_obj];
927 my $aes_obj = $fields[$idx_aes_obj];
928 my $bf_obj = $fields[$idx_bf_obj];
929 my $md5_obj = $fields[$idx_md5_obj];
930 my $sha1_obj = $fields[$idx_sha1_obj];
931 my $cast_obj = $fields[$idx_cast_obj];
932 my $rc4_obj = $fields[$idx_rc4_obj];
933 my $rmd160_obj = $fields[$idx_rmd160_obj];
934 my $rc5_obj = $fields[$idx_rc5_obj];
935 my $dso_scheme = $fields[$idx_dso_scheme];
936 my $shared_target = $fields[$idx_shared_target];
937 my $shared_cflag = $fields[$idx_shared_cflag];
938 my $shared_ldflag = $fields[$idx_shared_ldflag];
939 my $shared_extension = $fields[$idx_shared_extension];
940 my $ranlib = $fields[$idx_ranlib];
941 my $arflags = $fields[$idx_arflags];
942
943 if ($fips)
944         {
945         delete $disabled{"shared"} if ($disabled{"shared"} eq "default");
946         $disabled{"asm"}="forced"
947                 if ($target !~ "VC\-.*" &&
948                     "$cpuid_obj:$bn_obj:$aes_obj:$des_obj:$sha1_obj" eq "::::");
949         }
950
951
952 foreach (sort (keys %disabled))
953         {
954         $options .= " no-$_";
955
956         printf "    no-%-12s %-10s", $_, "[$disabled{$_}]";
957
958         if (/^dso$/)
959                 { $no_dso = 1; }
960         elsif (/^threads$/)
961                 { $no_threads = 1; }
962         elsif (/^shared$/)
963                 { $no_shared = 1; }
964         elsif (/^zlib$/)
965                 { $zlib = 0; }
966         elsif (/^static-engine$/)
967                 { }
968         elsif (/^zlib-dynamic$/)
969                 { }
970         elsif (/^symlinks$/)
971                 { $symlink = 0; }
972         elsif (/^sse2$/)
973                 { $no_sse2 = 1; }
974         else
975                 {
976                 my ($ALGO, $algo);
977                 ($ALGO = $algo = $_) =~ tr/[a-z]/[A-Z]/;
978
979                 if (/^asm$/ || /^err$/ || /^hw$/ || /^hw-/)
980                         {
981                         $openssl_other_defines .= "#define OPENSSL_NO_$ALGO\n";
982                         print " OPENSSL_NO_$ALGO";
983                 
984                         if (/^err$/)    { $flags .= "-DOPENSSL_NO_ERR "; }
985                         elsif (/^asm$/) { $no_asm = 1; }
986                         }
987                 else
988                         {
989                         $openssl_algorithm_defines .= "#define OPENSSL_NO_$ALGO\n";
990                         print " OPENSSL_NO_$ALGO";
991
992                         if (/^krb5$/)
993                                 { $no_krb5 = 1; }
994                         else
995                                 {
996                                 push @skip, $algo;
997                                 print " (skip dir)";
998
999                                 $depflags .="-DOPENSSL_NO_$ALGO ";
1000                                 }
1001                         }
1002                 }
1003
1004         print "\n";
1005         }
1006
1007
1008 my $IsMK1MF=scalar grep /^$target$/,@MK1MF_Builds;
1009
1010 $IsMK1MF=1 if ($target eq "mingw" && $^O ne "cygwin" && !is_msys());
1011
1012 $no_shared = 0 if ($fipsdso && !$IsMK1MF);
1013
1014 $exe_ext=".exe" if ($target eq "Cygwin" || $target eq "DJGPP" || $target eq "mingw");
1015 $exe_ext=".pm"  if ($target =~ /vos/);
1016 if ($openssldir eq "" and $prefix eq "")
1017         {
1018         if ($fips)
1019                 {
1020                 $openssldir="/usr/local/ssl/fips";
1021                 }
1022         else
1023                 {
1024                 $openssldir="/usr/local/ssl";
1025                 }
1026         }
1027 $prefix=$openssldir if $prefix eq "";
1028
1029 $default_ranlib= &which("ranlib") or $default_ranlib="true";
1030 $perl=$ENV{'PERL'} or $perl=&which("perl5") or $perl=&which("perl")
1031   or $perl="perl";
1032
1033 chop $openssldir if $openssldir =~ /\/$/;
1034 chop $prefix if $prefix =~ /\/$/;
1035
1036 $openssldir=$prefix . "/ssl" if $openssldir eq "";
1037 $openssldir=$prefix . "/" . $openssldir if $openssldir !~ /(^\/|^[a-zA-Z]:[\\\/])/;
1038
1039
1040 print "IsMK1MF=$IsMK1MF\n";
1041
1042 # '%' in $lflags is used to split flags to "pre-" and post-flags
1043 my ($prelflags,$postlflags)=split('%',$lflags);
1044 if (defined($postlflags))       { $lflags=$postlflags;  }
1045 else                            { $lflags=$prelflags; undef $prelflags; }
1046
1047 my $no_shared_warn=0;
1048 my $no_user_cflags=0;
1049
1050 if ($flags ne "")       { $cflags="$flags$cflags"; }
1051 else                    { $no_user_cflags=1;       }
1052
1053 # Kerberos settings.  The flavor must be provided from outside, either through
1054 # the script "config" or manually.
1055 if (!$no_krb5)
1056         {
1057         my ($lresolv, $lpath, $lext);
1058         if ($withargs{"krb5-flavor"} =~ /^[Hh]eimdal$/)
1059                 {
1060                 die "Sorry, Heimdal is currently not supported\n";
1061                 }
1062         ##### HACK to force use of Heimdal.
1063         ##### WARNING: Since we don't really have adequate support for Heimdal,
1064         #####          using this will break the build.  You'll have to make
1065         #####          changes to the source, and if you do, please send
1066         #####          patches to openssl-dev@openssl.org
1067         if ($withargs{"krb5-flavor"} =~ /^force-[Hh]eimdal$/)
1068                 {
1069                 warn "Heimdal isn't really supported.  Your build WILL break\n";
1070                 warn "If you fix the problems, please send a patch to openssl-dev\@openssl.org\n";
1071                 $withargs{"krb5-dir"} = "/usr/heimdal"
1072                         if $withargs{"krb5-dir"} eq "";
1073                 $withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
1074                         "/lib -lgssapi -lkrb5 -lcom_err"
1075                         if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1076                 $cflags="-DKRB5_HEIMDAL $cflags";
1077                 }
1078         if ($withargs{"krb5-flavor"} =~ /^[Mm][Ii][Tt]/)
1079                 {
1080                 $withargs{"krb5-dir"} = "/usr/kerberos"
1081                         if $withargs{"krb5-dir"} eq "";
1082                 $withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
1083                         "/lib -lgssapi_krb5 -lkrb5 -lcom_err -lk5crypto"
1084                         if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1085                 $cflags="-DKRB5_MIT $cflags";
1086                 $withargs{"krb5-flavor"} =~ s/^[Mm][Ii][Tt][._-]*//;
1087                 if ($withargs{"krb5-flavor"} =~ /^1[._-]*[01]/)
1088                         {
1089                         $cflags="-DKRB5_MIT_OLD11 $cflags";
1090                         }
1091                 }
1092         LRESOLV:
1093         foreach $lpath ("/lib", "/usr/lib")
1094                 {
1095                 foreach $lext ("a", "so")
1096                         {
1097                         $lresolv = "$lpath/libresolv.$lext";
1098                         last LRESOLV    if (-r "$lresolv");
1099                         $lresolv = "";
1100                         }
1101                 }
1102         $withargs{"krb5-lib"} .= " -lresolv"
1103                 if ("$lresolv" ne "");
1104         $withargs{"krb5-include"} = "-I".$withargs{"krb5-dir"}."/include"
1105                 if $withargs{"krb5-include"} eq "" &&
1106                    $withargs{"krb5-dir"} ne "";
1107         }
1108
1109 # The DSO code currently always implements all functions so that no
1110 # applications will have to worry about that from a compilation point
1111 # of view. However, the "method"s may return zero unless that platform
1112 # has support compiled in for them. Currently each method is enabled
1113 # by a define "DSO_<name>" ... we translate the "dso_scheme" config
1114 # string entry into using the following logic;
1115 my $dso_cflags;
1116 if (!$no_dso && $dso_scheme ne "")
1117         {
1118         $dso_scheme =~ tr/[a-z]/[A-Z]/;
1119         if ($dso_scheme eq "DLFCN")
1120                 {
1121                 $dso_cflags = "-DDSO_DLFCN -DHAVE_DLFCN_H";
1122                 }
1123         elsif ($dso_scheme eq "DLFCN_NO_H")
1124                 {
1125                 $dso_cflags = "-DDSO_DLFCN";
1126                 }
1127         else
1128                 {
1129                 $dso_cflags = "-DDSO_$dso_scheme";
1130                 }
1131         $cflags = "$dso_cflags $cflags";
1132         }
1133
1134 my $thread_cflags;
1135 my $thread_defines;
1136 if ($thread_cflag ne "(unknown)" && !$no_threads)
1137         {
1138         # If we know how to do it, support threads by default.
1139         $threads = 1;
1140         }
1141 if ($thread_cflag eq "(unknown)" && $threads)
1142         {
1143         # If the user asked for "threads", [s]he is also expected to
1144         # provide any system-dependent compiler options that are
1145         # necessary.
1146         if ($no_user_cflags)
1147                 {
1148                 print "You asked for multi-threading support, but didn't\n";
1149                 print "provide any system-specific compiler options\n";
1150                 exit(1);
1151                 }
1152         $thread_cflags="-DOPENSSL_THREADS $cflags" ;
1153         $thread_defines .= "#define OPENSSL_THREADS\n";
1154         }
1155 else
1156         {
1157         $thread_cflags="-DOPENSSL_THREADS $thread_cflag $cflags";
1158         $thread_defines .= "#define OPENSSL_THREADS\n";
1159 #       my $def;
1160 #       foreach $def (split ' ',$thread_cflag)
1161 #               {
1162 #               if ($def =~ s/^-D// && $def !~ /^_/)
1163 #                       {
1164 #                       $thread_defines .= "#define $def\n";
1165 #                       }
1166 #               }
1167         }       
1168
1169 $lflags="$libs$lflags" if ($libs ne "");
1170
1171 if ($no_asm)
1172         {
1173         $cpuid_obj=$bn_obj=$des_obj=$aes_obj=$bf_obj=$cast_obj=$rc4_obj=$rc5_obj="";
1174         $sha1_obj=$md5_obj=$rmd160_obj="";
1175         $cflags=~s/\-D[BL]_ENDIAN//             if ($fips);
1176         $thread_cflags=~s/\-D[BL]_ENDIAN//      if ($fips);
1177         }
1178
1179 if (!$no_shared)
1180         {
1181         $cast_obj="";   # CAST assembler is not PIC
1182         }
1183
1184 if ($threads)
1185         {
1186         $cflags=$thread_cflags;
1187         $openssl_thread_defines .= $thread_defines;
1188         }
1189
1190 if ($zlib)
1191         {
1192         $cflags = "-DZLIB $cflags";
1193         if (defined($disabled{"zlib-dynamic"}))
1194                 {
1195                 $lflags = "$lflags -lz";
1196                 }
1197         else
1198                 {
1199                 $cflags = "-DZLIB_SHARED $cflags";
1200                 }
1201         }
1202
1203 # You will find shlib_mark1 and shlib_mark2 explained in Makefile.org
1204 my $shared_mark = "";
1205 if ($shared_target eq "")
1206         {
1207         $no_shared_warn = 1 if !$no_shared && !$fips;
1208         $no_shared = 1;
1209         }
1210 if (!$no_shared)
1211         {
1212         if ($shared_cflag ne "")
1213                 {
1214                 $cflags = "$shared_cflag -DOPENSSL_PIC $cflags";
1215                 }
1216         }
1217
1218 if (!$IsMK1MF)
1219         {
1220         if ($no_shared)
1221                 {
1222                 $openssl_other_defines.="#define OPENSSL_NO_DYNAMIC_ENGINE\n";
1223                 }
1224         else
1225                 {
1226                 $openssl_other_defines.="#define OPENSSL_NO_STATIC_ENGINE\n";
1227                 }
1228         }
1229
1230 $cpuid_obj.=" uplink.o uplink-cof.o" if ($cflags =~ /\-DOPENSSL_USE_APPLINK/);
1231
1232 #
1233 # Platform fix-ups
1234 #
1235 if ($target =~ /\-icc$/)        # Intel C compiler
1236         {
1237         my $iccver=0;
1238         if (open(FD,"$cc -V 2>&1 |"))
1239                 {
1240                 while(<FD>) { $iccver=$1 if (/Version ([0-9]+)\./); }
1241                 close(FD);
1242                 }
1243
1244         if ($iccver>=8)
1245                 {
1246                 # Eliminate unnecessary dependency from libirc.a. This is
1247                 # essential for shared library support, as otherwise
1248                 # apps/openssl can end up in endless loop upon startup...
1249                 $cflags.=" -Dmemcpy=__builtin_memcpy -Dmemset=__builtin_memset";
1250                 }
1251         if ($iccver>=9)
1252                 {
1253                 $cflags.=" -i-static";
1254                 $cflags=~s/\-no_cpprt/-no-cpprt/;
1255                 }
1256         if ($iccver>=10)
1257                 {
1258                 $cflags=~s/\-i\-static/-static-intel/;
1259                 }
1260         }
1261
1262 # Unlike other OSes (like Solaris, Linux, Tru64, IRIX) BSD run-time
1263 # linkers (tested OpenBSD, NetBSD and FreeBSD) "demand" RPATH set on
1264 # .so objects. Apparently application RPATH is not global and does
1265 # not apply to .so linked with other .so. Problem manifests itself
1266 # when libssl.so fails to load libcrypto.so. One can argue that we
1267 # should engrave this into Makefile.shared rules or into BSD-* config
1268 # lines above. Meanwhile let's try to be cautious and pass -rpath to
1269 # linker only when --prefix is not /usr.
1270 if ($target =~ /^BSD\-/)
1271         {
1272         $shared_ldflag.=" -Wl,-rpath,\$(LIBRPATH)" if ($prefix !~ m|^/usr[/]*$|);
1273         }
1274
1275 if ($sys_id ne "")
1276         {
1277         #$cflags="-DOPENSSL_SYSNAME_$sys_id $cflags";
1278         $openssl_sys_defines="#define OPENSSL_SYSNAME_$sys_id\n";
1279         }
1280
1281 if ($ranlib eq "")
1282         {
1283         $ranlib = $default_ranlib;
1284         }
1285
1286 #my ($bn1)=split(/\s+/,$bn_obj);
1287 #$bn1 = "" unless defined $bn1;
1288 #$bn1=$bn_asm unless ($bn1 =~ /\.o$/);
1289 #$bn_obj="$bn1";
1290
1291 $cpuid_obj="" if ($processor eq "386");
1292
1293 $bn_obj = $bn_asm unless $bn_obj ne "";
1294 # bn86* is the only one implementing bn_*_part_words
1295 $cflags.=" -DOPENSSL_BN_ASM_PART_WORDS" if ($bn_obj =~ /bn86/);
1296 $cflags.=" -DOPENSSL_IA32_SSE2" if (!$no_sse2 && $bn_obj =~ /bn86/);
1297
1298 $cflags.=" -DOPENSSL_BN_ASM_MONT" if ($bn_obj =~ /\-mont|mo86\-/);
1299
1300 if ($fips)
1301         {
1302         $openssl_other_defines.="#define OPENSSL_FIPS\n";
1303         }
1304
1305 $des_obj=$des_enc       unless ($des_obj =~ /\.o$/);
1306 $bf_obj=$bf_enc         unless ($bf_obj =~ /\.o$/);
1307 $cast_obj=$cast_enc     unless ($cast_obj =~ /\.o$/);
1308 $rc4_obj=$rc4_enc       unless ($rc4_obj =~ /\.o$/);
1309 $rc5_obj=$rc5_enc       unless ($rc5_obj =~ /\.o$/);
1310 if ($sha1_obj =~ /\.o$/)
1311         {
1312 #       $sha1_obj=$sha1_enc;
1313         $cflags.=" -DSHA1_ASM"   if ($sha1_obj =~ /sx86/ || $sha1_obj =~ /sha1/);
1314         $cflags.=" -DSHA256_ASM" if ($sha1_obj =~ /sha256/);
1315         $cflags.=" -DSHA512_ASM" if ($sha1_obj =~ /sha512/);
1316         if ($sha1_obj =~ /sse2/)
1317             {   if ($no_sse2)
1318                 {   $sha1_obj =~ s/\S*sse2\S+//;        }
1319                 elsif ($cflags !~ /OPENSSL_IA32_SSE2/)
1320                 {   $cflags.=" -DOPENSSL_IA32_SSE2";    }
1321             }
1322         }
1323 if ($md5_obj =~ /\.o$/)
1324         {
1325 #       $md5_obj=$md5_enc;
1326         $cflags.=" -DMD5_ASM";
1327         }
1328 if ($rmd160_obj =~ /\.o$/)
1329         {
1330 #       $rmd160_obj=$rmd160_enc;
1331         $cflags.=" -DRMD160_ASM";
1332         }
1333 if ($aes_obj =~ /\.o$/)
1334         {
1335         $cflags.=" -DAES_ASM";
1336         }
1337 else    {
1338         $aes_obj=$aes_enc;
1339         }
1340
1341 # "Stringify" the C flags string.  This permits it to be made part of a string
1342 # and works as well on command lines.
1343 $cflags =~ s/([\\\"])/\\\1/g;
1344
1345 my $version = "unknown";
1346 my $version_num = "unknown";
1347 my $major = "unknown";
1348 my $minor = "unknown";
1349 my $shlib_version_number = "unknown";
1350 my $shlib_version_history = "unknown";
1351 my $shlib_major = "unknown";
1352 my $shlib_minor = "unknown";
1353
1354 open(IN,'<crypto/opensslv.h') || die "unable to read opensslv.h:$!\n";
1355 while (<IN>)
1356         {
1357         $version=$1 if /OPENSSL.VERSION.TEXT.*OpenSSL (\S+) /;
1358         $version_num=$1 if /OPENSSL.VERSION.NUMBER.*0x(\S+)/;
1359         $shlib_version_number=$1 if /SHLIB_VERSION_NUMBER *"([^"]+)"/;
1360         $shlib_version_history=$1 if /SHLIB_VERSION_HISTORY *"([^"]*)"/;
1361         }
1362 close(IN);
1363 if ($shlib_version_history ne "") { $shlib_version_history .= ":"; }
1364
1365 if ($version =~ /(^[0-9]*)\.([0-9\.]*)/)
1366         {
1367         $major=$1;
1368         $minor=$2;
1369         }
1370
1371 if ($shlib_version_number =~ /(^[0-9]*)\.([0-9\.]*)/)
1372         {
1373         $shlib_major=$1;
1374         $shlib_minor=$2;
1375         }
1376
1377 open(IN,'<Makefile.org') || die "unable to read Makefile.org:$!\n";
1378 unlink("$Makefile.new") || die "unable to remove old $Makefile.new:$!\n" if -e "$Makefile.new";
1379 open(OUT,">$Makefile.new") || die "unable to create $Makefile.new:$!\n";
1380 print OUT "### Generated automatically from Makefile.org by Configure.\n\n";
1381 my $sdirs=0;
1382 while (<IN>)
1383         {
1384         chomp;
1385         $sdirs = 1 if /^SDIRS=/;
1386         if ($sdirs) {
1387                 my $dir;
1388                 foreach $dir (@skip) {
1389                         s/([    ])$dir /\1/;
1390                         }
1391                 }
1392         $sdirs = 0 unless /\\$/;
1393         s/^VERSION=.*/VERSION=$version/;
1394         s/^MAJOR=.*/MAJOR=$major/;
1395         s/^MINOR=.*/MINOR=$minor/;
1396         s/^SHLIB_VERSION_NUMBER=.*/SHLIB_VERSION_NUMBER=$shlib_version_number/;
1397         s/^SHLIB_VERSION_HISTORY=.*/SHLIB_VERSION_HISTORY=$shlib_version_history/;
1398         s/^SHLIB_MAJOR=.*/SHLIB_MAJOR=$shlib_major/;
1399         s/^SHLIB_MINOR=.*/SHLIB_MINOR=$shlib_minor/;
1400         s/^SHLIB_EXT=.*/SHLIB_EXT=$shared_extension/;
1401         s/^INSTALLTOP=.*$/INSTALLTOP=$prefix/;
1402         s/^OPENSSLDIR=.*$/OPENSSLDIR=$openssldir/;
1403         s/^INSTALL_PREFIX=.*$/INSTALL_PREFIX=$install_prefix/;
1404         s/^PLATFORM=.*$/PLATFORM=$target/;
1405         s/^OPTIONS=.*$/OPTIONS=$options/;
1406         s/^CONFIGURE_ARGS=.*$/CONFIGURE_ARGS=$argvstring/;
1407         s/^CC=.*$/CC= $cc/;
1408         s/^MAKEDEPPROG=.*$/MAKEDEPPROG= $cc/ if $cc eq "gcc";
1409         s/^CFLAG=.*$/CFLAG= $cflags/;
1410         s/^DEPFLAG=.*$/DEPFLAG= $depflags/;
1411         s/^PEX_LIBS=.*$/PEX_LIBS= $prelflags/;
1412         s/^EX_LIBS=.*$/EX_LIBS= $lflags/;
1413         s/^EXE_EXT=.*$/EXE_EXT= $exe_ext/;
1414         s/^CPUID_OBJ=.*$/CPUID_OBJ= $cpuid_obj/;
1415         s/^BN_ASM=.*$/BN_ASM= $bn_obj/;
1416         s/^DES_ENC=.*$/DES_ENC= $des_obj/;
1417         s/^AES_ASM_OBJ=.*$/AES_ASM_OBJ= $aes_obj/;
1418         s/^BF_ENC=.*$/BF_ENC= $bf_obj/;
1419         s/^CAST_ENC=.*$/CAST_ENC= $cast_obj/;
1420         s/^RC4_ENC=.*$/RC4_ENC= $rc4_obj/;
1421         s/^RC5_ENC=.*$/RC5_ENC= $rc5_obj/;
1422         s/^MD5_ASM_OBJ=.*$/MD5_ASM_OBJ= $md5_obj/;
1423         s/^SHA1_ASM_OBJ=.*$/SHA1_ASM_OBJ= $sha1_obj/;
1424         s/^RMD160_ASM_OBJ=.*$/RMD160_ASM_OBJ= $rmd160_obj/;
1425         s/^PROCESSOR=.*/PROCESSOR= $processor/;
1426         s/^RANLIB=.*/RANLIB= $ranlib/;
1427         s/^ARFLAGS=.*/ARFLAGS= $arflags/;
1428         s/^PERL=.*/PERL= $perl/;
1429         s/^KRB5_INCLUDES=.*/KRB5_INCLUDES=$withargs{"krb5-include"}/;
1430         s/^LIBKRB5=.*/LIBKRB5=$withargs{"krb5-lib"}/;
1431         s/^LIBZLIB=.*/LIBZLIB=$withargs{"zlib-lib"}/;
1432         s/^ZLIB_INCLUDE=.*/ZLIB_INCLUDE=$withargs{"zlib-include"}/;
1433         s/^FIPSLIBDIR=.*/FIPSLIBDIR=$fipslibdir/;
1434         if ($fipsdso)
1435                 {
1436                 s/^FIPSCANLIB=.*/FIPSCANLIB=libfips/;
1437                 s/^SHARED_FIPS=.*/SHARED_FIPS=libfips\$(SHLIB_EXT)/;
1438                 s/^SHLIBDIRS=.*/SHLIBDIRS= crypto ssl fips/;
1439                 }
1440         else
1441                 {
1442                 s/^FIPSCANLIB=.*/FIPSCANLIB=libcrypto/ if $fips;
1443                 s/^SHARED_FIPS=.*/SHARED_FIPS=/;
1444                 s/^SHLIBDIRS=.*/SHLIBDIRS= crypto ssl/;
1445                 }
1446         s/^FIPSCANISTERINTERNAL=.*/FIPSCANISTERINTERNAL=$fipscanisterinternal/;
1447         s/^BASEADDR=.*/BASEADDR=$baseaddr/;
1448         s/^SHLIB_TARGET=.*/SHLIB_TARGET=$shared_target/;
1449         s/^SHLIB_MARK=.*/SHLIB_MARK=$shared_mark/;
1450         s/^SHARED_LIBS=.*/SHARED_LIBS=\$(SHARED_FIPS) \$(SHARED_CRYPTO) \$(SHARED_SSL)/ if (!$no_shared);
1451         if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
1452                 {
1453                 my $sotmp = $1;
1454                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/;
1455                 }
1456         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.dylib$/)
1457                 {
1458                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.dylib/;
1459                 }
1460         elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
1461                 {
1462                 my $sotmp = $1;
1463                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
1464                 }
1465         elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.[^\.]*\.dylib$/)
1466                 {
1467                 s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.\$(SHLIB_MAJOR).dylib .dylib/;
1468                 }
1469         s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
1470         print OUT $_."\n";
1471         }
1472 close(IN);
1473 close(OUT);
1474 rename($Makefile,"$Makefile.bak") || die "unable to rename $Makefile\n" if -e $Makefile;
1475 rename("$Makefile.new",$Makefile) || die "unable to rename $Makefile.new\n";
1476
1477 print "CC            =$cc\n";
1478 print "CFLAG         =$cflags\n";
1479 print "EX_LIBS       =$lflags\n";
1480 print "CPUID_OBJ     =$cpuid_obj\n";
1481 print "BN_ASM        =$bn_obj\n";
1482 print "DES_ENC       =$des_obj\n";
1483 print "AES_ASM_OBJ   =$aes_obj\n";
1484 print "BF_ENC        =$bf_obj\n";
1485 print "CAST_ENC      =$cast_obj\n";
1486 print "RC4_ENC       =$rc4_obj\n";
1487 print "RC5_ENC       =$rc5_obj\n";
1488 print "MD5_OBJ_ASM   =$md5_obj\n";
1489 print "SHA1_OBJ_ASM  =$sha1_obj\n";
1490 print "RMD160_OBJ_ASM=$rmd160_obj\n";
1491 print "PROCESSOR     =$processor\n";
1492 print "RANLIB        =$ranlib\n";
1493 print "ARFLAGS       =$arflags\n";
1494 print "PERL          =$perl\n";
1495 print "KRB5_INCLUDES =",$withargs{"krb5-include"},"\n"
1496         if $withargs{"krb5-include"} ne "";
1497
1498 my $des_ptr=0;
1499 my $des_risc1=0;
1500 my $des_risc2=0;
1501 my $des_unroll=0;
1502 my $bn_ll=0;
1503 my $def_int=2;
1504 my $rc4_int=$def_int;
1505 my $md2_int=$def_int;
1506 my $idea_int=$def_int;
1507 my $rc2_int=$def_int;
1508 my $rc4_idx=0;
1509 my $rc4_chunk=0;
1510 my $bf_ptr=0;
1511 my @type=("char","short","int","long");
1512 my ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0);
1513 my $export_var_as_fn=0;
1514
1515 my $des_int;
1516
1517 foreach (sort split(/\s+/,$bn_ops))
1518         {
1519         $des_ptr=1 if /DES_PTR/;
1520         $des_risc1=1 if /DES_RISC1/;
1521         $des_risc2=1 if /DES_RISC2/;
1522         $des_unroll=1 if /DES_UNROLL/;
1523         $des_int=1 if /DES_INT/;
1524         $bn_ll=1 if /BN_LLONG/;
1525         $rc4_int=0 if /RC4_CHAR/;
1526         $rc4_int=3 if /RC4_LONG/;
1527         $rc4_idx=1 if /RC4_INDEX/;
1528         $rc4_chunk=1 if /RC4_CHUNK/;
1529         $rc4_chunk=2 if /RC4_CHUNK_LL/;
1530         $md2_int=0 if /MD2_CHAR/;
1531         $md2_int=3 if /MD2_LONG/;
1532         $idea_int=1 if /IDEA_SHORT/;
1533         $idea_int=3 if /IDEA_LONG/;
1534         $rc2_int=1 if /RC2_SHORT/;
1535         $rc2_int=3 if /RC2_LONG/;
1536         $bf_ptr=1 if $_ eq "BF_PTR";
1537         $bf_ptr=2 if $_ eq "BF_PTR2";
1538         ($b64l,$b64,$b32,$b16,$b8)=(0,1,0,0,0) if /SIXTY_FOUR_BIT/;
1539         ($b64l,$b64,$b32,$b16,$b8)=(1,0,0,0,0) if /SIXTY_FOUR_BIT_LONG/;
1540         ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0) if /THIRTY_TWO_BIT/;
1541         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,1,0) if /SIXTEEN_BIT/;
1542         ($b64l,$b64,$b32,$b16,$b8)=(0,0,0,0,1) if /EIGHT_BIT/;
1543         $export_var_as_fn=1 if /EXPORT_VAR_AS_FN/;
1544         }
1545
1546 open(IN,'<crypto/opensslconf.h.in') || die "unable to read crypto/opensslconf.h.in:$!\n";
1547 unlink("crypto/opensslconf.h.new") || die "unable to remove old crypto/opensslconf.h.new:$!\n" if -e "crypto/opensslconf.h.new";
1548 open(OUT,'>crypto/opensslconf.h.new') || die "unable to create crypto/opensslconf.h.new:$!\n";
1549 print OUT "/* opensslconf.h */\n";
1550 print OUT "/* WARNING: Generated automatically from opensslconf.h.in by Configure. */\n\n";
1551
1552 print OUT "/* OpenSSL was configured with the following options: */\n";
1553 my $openssl_algorithm_defines_trans = $openssl_algorithm_defines;
1554 $openssl_algorithm_defines_trans =~ s/^\s*#\s*define\s+OPENSSL_(.*)/# if defined(OPENSSL_$1) \&\& !defined($1)\n#  define $1\n# endif/mg;
1555 $openssl_algorithm_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1556 $openssl_algorithm_defines = "   /* no ciphers excluded */\n" if $openssl_algorithm_defines eq "";
1557 $openssl_thread_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1558 $openssl_sys_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1559 $openssl_other_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1560 print OUT $openssl_sys_defines;
1561 print OUT "#ifndef OPENSSL_DOING_MAKEDEPEND\n\n";
1562 print OUT $openssl_algorithm_defines;
1563 print OUT "\n#endif /* OPENSSL_DOING_MAKEDEPEND */\n";
1564 print OUT $openssl_thread_defines;
1565 print OUT $openssl_other_defines,"\n";
1566
1567 print OUT "/* The OPENSSL_NO_* macros are also defined as NO_* if the application\n";
1568 print OUT "   asks for it.  This is a transient feature that is provided for those\n";
1569 print OUT "   who haven't had the time to do the appropriate changes in their\n";
1570 print OUT "   applications.  */\n";
1571 print OUT "#ifdef OPENSSL_ALGORITHM_DEFINES\n";
1572 print OUT $openssl_algorithm_defines_trans;
1573 print OUT "#endif\n\n";
1574
1575 print OUT "#define OPENSSL_CPUID_OBJ\n\n" if ($cpuid_obj);
1576
1577 while (<IN>)
1578         {
1579         if      (/^#define\s+OPENSSLDIR/)
1580                 { print OUT "#define OPENSSLDIR \"$openssldir\"\n"; }
1581         elsif   (/^#define\s+ENGINESDIR/)
1582                 { print OUT "#define ENGINESDIR \"$prefix/lib/engines\"\n"; }
1583         elsif   (/^#((define)|(undef))\s+OPENSSL_EXPORT_VAR_AS_FUNCTION/)
1584                 { printf OUT "#undef OPENSSL_EXPORT_VAR_AS_FUNCTION\n"
1585                         if $export_var_as_fn;
1586                   printf OUT "#%s OPENSSL_EXPORT_VAR_AS_FUNCTION\n",
1587                         ($export_var_as_fn)?"define":"undef"; }
1588         elsif   (/^#define\s+OPENSSL_UNISTD/)
1589                 {
1590                 $unistd = "<unistd.h>" if $unistd eq "";
1591                 print OUT "#define OPENSSL_UNISTD $unistd\n";
1592                 }
1593         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT_LONG/)
1594                 { printf OUT "#%s SIXTY_FOUR_BIT_LONG\n",($b64l)?"define":"undef"; }
1595         elsif   (/^#((define)|(undef))\s+SIXTY_FOUR_BIT/)
1596                 { printf OUT "#%s SIXTY_FOUR_BIT\n",($b64)?"define":"undef"; }
1597         elsif   (/^#((define)|(undef))\s+THIRTY_TWO_BIT/)
1598                 { printf OUT "#%s THIRTY_TWO_BIT\n",($b32)?"define":"undef"; }
1599         elsif   (/^#((define)|(undef))\s+SIXTEEN_BIT/)
1600                 { printf OUT "#%s SIXTEEN_BIT\n",($b16)?"define":"undef"; }
1601         elsif   (/^#((define)|(undef))\s+EIGHT_BIT/)
1602                 { printf OUT "#%s EIGHT_BIT\n",($b8)?"define":"undef"; }
1603         elsif   (/^#((define)|(undef))\s+BN_LLONG\s*$/)
1604                 { printf OUT "#%s BN_LLONG\n",($bn_ll)?"define":"undef"; }
1605         elsif   (/^\#define\s+DES_LONG\s+.*/)
1606                 { printf OUT "#define DES_LONG unsigned %s\n",
1607                         ($des_int)?'int':'long'; }
1608         elsif   (/^\#(define|undef)\s+DES_PTR/)
1609                 { printf OUT "#%s DES_PTR\n",($des_ptr)?'define':'undef'; }
1610         elsif   (/^\#(define|undef)\s+DES_RISC1/)
1611                 { printf OUT "#%s DES_RISC1\n",($des_risc1)?'define':'undef'; }
1612         elsif   (/^\#(define|undef)\s+DES_RISC2/)
1613                 { printf OUT "#%s DES_RISC2\n",($des_risc2)?'define':'undef'; }
1614         elsif   (/^\#(define|undef)\s+DES_UNROLL/)
1615                 { printf OUT "#%s DES_UNROLL\n",($des_unroll)?'define':'undef'; }
1616         elsif   (/^#define\s+RC4_INT\s/)
1617                 { printf OUT "#define RC4_INT unsigned %s\n",$type[$rc4_int]; }
1618         elsif   (/^#undef\s+RC4_CHUNK/)
1619                 {
1620                 printf OUT "#undef RC4_CHUNK\n" if $rc4_chunk==0;
1621                 printf OUT "#define RC4_CHUNK unsigned long\n" if $rc4_chunk==1;
1622                 printf OUT "#define RC4_CHUNK unsigned long long\n" if $rc4_chunk==2;
1623                 }
1624         elsif   (/^#((define)|(undef))\s+RC4_INDEX/)
1625                 { printf OUT "#%s RC4_INDEX\n",($rc4_idx)?"define":"undef"; }
1626         elsif (/^#(define|undef)\s+I386_ONLY/)
1627                 { printf OUT "#%s I386_ONLY\n", ($processor eq "386")?
1628                         "define":"undef"; }
1629         elsif   (/^#define\s+MD2_INT\s/)
1630                 { printf OUT "#define MD2_INT unsigned %s\n",$type[$md2_int]; }
1631         elsif   (/^#define\s+IDEA_INT\s/)
1632                 {printf OUT "#define IDEA_INT unsigned %s\n",$type[$idea_int];}
1633         elsif   (/^#define\s+RC2_INT\s/)
1634                 {printf OUT "#define RC2_INT unsigned %s\n",$type[$rc2_int];}
1635         elsif (/^#(define|undef)\s+BF_PTR/)
1636                 {
1637                 printf OUT "#undef BF_PTR\n" if $bf_ptr == 0;
1638                 printf OUT "#define BF_PTR\n" if $bf_ptr == 1;
1639                 printf OUT "#define BF_PTR2\n" if $bf_ptr == 2;
1640                 }
1641         else
1642                 { print OUT $_; }
1643         }
1644 close(IN);
1645 close(OUT);
1646 rename("crypto/opensslconf.h","crypto/opensslconf.h.bak") || die "unable to rename crypto/opensslconf.h\n" if -e "crypto/opensslconf.h";
1647 rename("crypto/opensslconf.h.new","crypto/opensslconf.h") || die "unable to rename crypto/opensslconf.h.new\n";
1648
1649
1650 # Fix the date
1651
1652 print "SIXTY_FOUR_BIT_LONG mode\n" if $b64l;
1653 print "SIXTY_FOUR_BIT mode\n" if $b64;
1654 print "THIRTY_TWO_BIT mode\n" if $b32;
1655 print "SIXTEEN_BIT mode\n" if $b16;
1656 print "EIGHT_BIT mode\n" if $b8;
1657 print "DES_PTR used\n" if $des_ptr;
1658 print "DES_RISC1 used\n" if $des_risc1;
1659 print "DES_RISC2 used\n" if $des_risc2;
1660 print "DES_UNROLL used\n" if $des_unroll;
1661 print "DES_INT used\n" if $des_int;
1662 print "BN_LLONG mode\n" if $bn_ll;
1663 print "RC4 uses u$type[$rc4_int]\n" if $rc4_int != $def_int;
1664 print "RC4_INDEX mode\n" if $rc4_idx;
1665 print "RC4_CHUNK is undefined\n" if $rc4_chunk==0;
1666 print "RC4_CHUNK is unsigned long\n" if $rc4_chunk==1;
1667 print "RC4_CHUNK is unsigned long long\n" if $rc4_chunk==2;
1668 print "MD2 uses u$type[$md2_int]\n" if $md2_int != $def_int;
1669 print "IDEA uses u$type[$idea_int]\n" if $idea_int != $def_int;
1670 print "RC2 uses u$type[$rc2_int]\n" if $rc2_int != $def_int;
1671 print "BF_PTR used\n" if $bf_ptr == 1; 
1672 print "BF_PTR2 used\n" if $bf_ptr == 2; 
1673
1674 if($IsMK1MF) {
1675         open (OUT,">crypto/buildinf.h") || die "Can't open buildinf.h";
1676         printf OUT <<EOF;
1677 #ifndef MK1MF_BUILD
1678   /* auto-generated by Configure for crypto/cversion.c:
1679    * for Unix builds, crypto/Makefile.ssl generates functional definitions;
1680    * Windows builds (and other mk1mf builds) compile cversion.c with
1681    * -DMK1MF_BUILD and use definitions added to this file by util/mk1mf.pl. */
1682   #error "Windows builds (PLATFORM=$target) use mk1mf.pl-created Makefiles"
1683 #endif
1684 EOF
1685         close(OUT);
1686 } else {
1687         my $make_command = "make PERL=\'$perl\'";
1688         my $make_targets = "";
1689         $make_targets .= " links" if $symlink;
1690         $make_targets .= " depend" if $depflags ne $default_depflags && $make_depend;
1691         $make_targets .= " gentests" if $symlink;
1692         (system $make_command.$make_targets) == 0 or exit $?
1693                 if $make_targets ne "";
1694         if ( $perl =~ m@^/@) {
1695             &dofile("tools/c_rehash",$perl,'^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";');
1696             &dofile("apps/CA.pl",$perl,'^#!/', '#!%s');
1697         } else {
1698             # No path for Perl known ...
1699             &dofile("tools/c_rehash",'/usr/local/bin/perl','^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";');
1700             &dofile("apps/CA.pl",'/usr/local/bin/perl','^#!/', '#!%s');
1701         }
1702         if ($depflags ne $default_depflags && !$make_depend) {
1703                 print <<EOF;
1704
1705 Since you've disabled or enabled at least one algorithm, you need to do
1706 the following before building:
1707
1708         make depend
1709 EOF
1710         }
1711 }
1712
1713 # create the ms/version32.rc file if needed
1714 if ($IsMK1MF) {
1715         my ($v1, $v2, $v3, $v4);
1716         if ($version_num =~ /(^[0-9a-f]{1})([0-9a-f]{2})([0-9a-f]{2})([0-9a-f]{2})/i) {
1717                 $v1=hex $1;
1718                 $v2=hex $2;
1719                 $v3=hex $3;
1720                 $v4=hex $4;
1721         }
1722         open (OUT,">ms/version32.rc") || die "Can't open ms/version32.rc";
1723         print OUT <<EOF;
1724 #include <winver.h>
1725
1726 LANGUAGE 0x09,0x01
1727
1728 1 VERSIONINFO
1729   FILEVERSION $v1,$v2,$v3,$v4
1730   PRODUCTVERSION $v1,$v2,$v3,$v4
1731   FILEFLAGSMASK 0x3fL
1732 #ifdef _DEBUG
1733   FILEFLAGS 0x01L
1734 #else
1735   FILEFLAGS 0x00L
1736 #endif
1737   FILEOS VOS__WINDOWS32
1738   FILETYPE VFT_DLL
1739   FILESUBTYPE 0x0L
1740 BEGIN
1741     BLOCK "StringFileInfo"
1742     BEGIN
1743         BLOCK "040904b0"
1744         BEGIN
1745 #if defined(FIPS)
1746             VALUE "Comments", "WARNING: TEST VERSION ONLY ***NOT*** FIPS 140-2 VALIDATED.\\0"
1747 #endif
1748             // Required:            
1749             VALUE "CompanyName", "The OpenSSL Project, http://www.openssl.org/\\0"
1750 #if defined(FIPS)
1751             VALUE "FileDescription", "TEST UNVALIDATED FIPS140-2 DLL\\0"
1752 #else
1753             VALUE "FileDescription", "OpenSSL Shared Library\\0"
1754 #endif
1755             VALUE "FileVersion", "$version\\0"
1756 #if defined(CRYPTO)
1757             VALUE "InternalName", "libeay32\\0"
1758             VALUE "OriginalFilename", "libeay32.dll\\0"
1759 #elif defined(SSL)
1760             VALUE "InternalName", "ssleay32\\0"
1761             VALUE "OriginalFilename", "ssleay32.dll\\0"
1762 #elif defined(FIPS)
1763             VALUE "InternalName", "libosslfips\\0"
1764             VALUE "OriginalFilename", "libosslfips.dll\\0"
1765 #endif
1766             VALUE "ProductName", "The OpenSSL Toolkit\\0"
1767             VALUE "ProductVersion", "$version\\0"
1768             // Optional:
1769             //VALUE "Comments", "\\0"
1770             VALUE "LegalCopyright", "Copyright © 1998-2007 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved.\\0"
1771             //VALUE "LegalTrademarks", "\\0"
1772             //VALUE "PrivateBuild", "\\0"
1773             //VALUE "SpecialBuild", "\\0"
1774         END
1775     END
1776     BLOCK "VarFileInfo"
1777     BEGIN
1778         VALUE "Translation", 0x409, 0x4b0
1779     END
1780 END
1781 EOF
1782         close(OUT);
1783   }
1784   
1785 print <<EOF;
1786
1787 Configured for $target.
1788 EOF
1789
1790 print <<\EOF if (!$no_threads && !$threads);
1791
1792 The library could not be configured for supporting multi-threaded
1793 applications as the compiler options required on this system are not known.
1794 See file INSTALL for details if you need multi-threading.
1795 EOF
1796
1797 print <<\EOF if ($no_shared_warn);
1798
1799 You gave the option 'shared'.  Normally, that would give you shared libraries.
1800 Unfortunately, the OpenSSL configuration doesn't include shared library support
1801 for this platform yet, so it will pretend you gave the option 'no-shared'.  If
1802 you can inform the developpers (openssl-dev\@openssl.org) how to support shared
1803 libraries on this platform, they will at least look at it and try their best
1804 (but please first make sure you have tried with a current version of OpenSSL).
1805 EOF
1806
1807 print <<\EOF if ($fipscanisterinternal eq "y");
1808
1809 WARNING: OpenSSL has been configured using unsupported option(s) to internally
1810 generate a fipscanister.o object module for TESTING PURPOSES ONLY; that
1811 compiled module is NOT FIPS 140-2 validated and CANNOT be used to replace the
1812 OpenSSL FIPS Object Module as identified by the CMVP
1813 (http://csrc.nist.gov/cryptval/) in any application requiring the use of FIPS
1814 140-2 validated software. 
1815
1816 This is an OpenSSL 0.9.8-fips test version.
1817
1818 See the file README.FIPS for details of how to build a test library.
1819
1820 EOF
1821
1822 exit(0);
1823
1824 sub usage
1825         {
1826         print STDERR $usage;
1827         print STDERR "\npick os/compiler from:\n";
1828         my $j=0;
1829         my $i;
1830         my $k=0;
1831         foreach $i (sort keys %table)
1832                 {
1833                 next if $i =~ /^debug/;
1834                 $k += length($i) + 1;
1835                 if ($k > 78)
1836                         {
1837                         print STDERR "\n";
1838                         $k=length($i);
1839                         }
1840                 print STDERR $i . " ";
1841                 }
1842         foreach $i (sort keys %table)
1843                 {
1844                 next if $i !~ /^debug/;
1845                 $k += length($i) + 1;
1846                 if ($k > 78)
1847                         {
1848                         print STDERR "\n";
1849                         $k=length($i);
1850                         }
1851                 print STDERR $i . " ";
1852                 }
1853         print STDERR "\n\nNOTE: If in doubt, on Unix-ish systems use './config'.\n";
1854         exit(1);
1855         }
1856
1857 sub which
1858         {
1859         my($name)=@_;
1860         my $path;
1861         foreach $path (split /:/, $ENV{PATH})
1862                 {
1863                 if (-f "$path/$name$exe_ext" and -x _)
1864                         {
1865                         return "$path/$name$exe_ext" unless ($name eq "perl" and
1866                          system("$path/$name$exe_ext -e " . '\'exit($]<5.0);\''));
1867                         }
1868                 }
1869         }
1870
1871 sub dofile
1872         {
1873         my $f; my $p; my %m; my @a; my $k; my $ff;
1874         ($f,$p,%m)=@_;
1875
1876         open(IN,"<$f.in") || open(IN,"<$f") || die "unable to open $f:$!\n";
1877         @a=<IN>;
1878         close(IN);
1879         foreach $k (keys %m)
1880                 {
1881                 grep(/$k/ && ($_=sprintf($m{$k}."\n",$p)),@a);
1882                 }
1883         open(OUT,">$f.new") || die "unable to open $f.new:$!\n";
1884         print OUT @a;
1885         close(OUT);
1886         rename($f,"$f.bak") || die "unable to rename $f\n" if -e $f;
1887         rename("$f.new",$f) || die "unable to rename $f.new\n";
1888         }
1889
1890 sub print_table_entry
1891         {
1892         my $target = shift;
1893
1894         (my $cc,my $cflags,my $unistd,my $thread_cflag,my $sys_id,my $lflags,
1895         my $bn_ops,my $cpuid_obj,my $bn_obj,my $des_obj,my $aes_obj, my $bf_obj,
1896         my $md5_obj,my $sha1_obj,my $cast_obj,my $rc4_obj,my $rmd160_obj,
1897         my $rc5_obj,my $dso_scheme,my $shared_target,my $shared_cflag,
1898         my $shared_ldflag,my $shared_extension,my $ranlib,my $arflags)=
1899         split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
1900                         
1901         print <<EOF
1902
1903 *** $target
1904 \$cc           = $cc
1905 \$cflags       = $cflags
1906 \$unistd       = $unistd
1907 \$thread_cflag = $thread_cflag
1908 \$sys_id       = $sys_id
1909 \$lflags       = $lflags
1910 \$bn_ops       = $bn_ops
1911 \$cpuid_obj    = $cpuid_obj
1912 \$bn_obj       = $bn_obj
1913 \$des_obj      = $des_obj
1914 \$aes_obj      = $aes_obj
1915 \$bf_obj       = $bf_obj
1916 \$md5_obj      = $md5_obj
1917 \$sha1_obj     = $sha1_obj
1918 \$cast_obj     = $cast_obj
1919 \$rc4_obj      = $rc4_obj
1920 \$rmd160_obj   = $rmd160_obj
1921 \$rc5_obj      = $rc5_obj
1922 \$dso_scheme   = $dso_scheme
1923 \$shared_target= $shared_target
1924 \$shared_cflag = $shared_cflag
1925 \$shared_ldflag = $shared_ldflag
1926 \$shared_extension = $shared_extension
1927 \$ranlib       = $ranlib
1928 \$arflags      = $arflags
1929 EOF
1930         }
1931
1932 sub test_sanity
1933         {
1934         my $errorcnt = 0;
1935
1936         print STDERR "=" x 70, "\n";
1937         print STDERR "=== SANITY TESTING!\n";
1938         print STDERR "=== No configuration will be done, all other arguments will be ignored!\n";
1939         print STDERR "=" x 70, "\n";
1940
1941         foreach $target (sort keys %table)
1942                 {
1943                 @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
1944
1945                 if ($fields[$idx_dso_scheme-1] =~ /^(dl|dlfcn|win32|vms)$/)
1946                         {
1947                         $errorcnt++;
1948                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
1949                         print STDERR "              in the previous field\n";
1950                         }
1951                 elsif ($fields[$idx_dso_scheme+1] =~ /^(dl|dlfcn|win32|vms)$/)
1952                         {
1953                         $errorcnt++;
1954                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
1955                         print STDERR "              in the following field\n";
1956                         }
1957                 elsif ($fields[$idx_dso_scheme] !~ /^(dl|dlfcn|win32|vms|)$/)
1958                         {
1959                         $errorcnt++;
1960                         print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] field = ",$fields[$idx_dso_scheme],"\n";
1961                         print STDERR "              valid values are 'dl', 'dlfcn', 'win32' and 'vms'\n";
1962                         }
1963                 }
1964         print STDERR "No sanity errors detected!\n" if $errorcnt == 0;
1965         return $errorcnt;
1966         }
1967
1968 # Attempt to detect MSYS environment
1969
1970 sub is_msys
1971         {
1972         return 1 if (exists $ENV{"TERM"} && $ENV{"TERM"} eq "msys");
1973         return 0;
1974         }