xref: /freebsd/crypto/openssl/Configure (revision 1f4bcc459a76b7aa664f3fd557684cd0ba6da352)
1:
2eval 'exec perl -S $0 ${1+"$@"}'
3    if $running_under_some_shell;
4##
5##  Configure -- OpenSSL source tree configuration script
6##
7
8require 5.000;
9use strict;
10
11# see INSTALL for instructions.
12
13my $usage="Usage: Configure [no-<cipher> ...] [enable-<cipher> ...] [experimental-<cipher> ...] [-Dxxx] [-lxxx] [-Lxxx] [-fxxx] [-Kxxx] [no-hw-xxx|no-hw] [[no-]threads] [[no-]shared] [[no-]zlib|zlib-dynamic] [no-asm] [no-dso] [no-krb5] [sctp] [386] [--prefix=DIR] [--openssldir=OPENSSLDIR] [--with-xxx[=vvv]] [--test-sanity] os/compiler[:flags]\n";
14
15# Options:
16#
17# --openssldir  install OpenSSL in OPENSSLDIR (Default: DIR/ssl if the
18#               --prefix option is given; /usr/local/ssl otherwise)
19# --prefix      prefix for the OpenSSL include, lib and bin directories
20#               (Default: the OPENSSLDIR directory)
21#
22# --install_prefix  Additional prefix for package builders (empty by
23#               default).  This needn't be set in advance, you can
24#               just as well use "make INSTALL_PREFIX=/whatever install".
25#
26# --with-krb5-dir  Declare where Kerberos 5 lives.  The libraries are expected
27#		to live in the subdirectory lib/ and the header files in
28#		include/.  A value is required.
29# --with-krb5-lib  Declare where the Kerberos 5 libraries live.  A value is
30#		required.
31#		(Default: KRB5_DIR/lib)
32# --with-krb5-include  Declare where the Kerberos 5 header files live.  A
33#		value is required.
34#		(Default: KRB5_DIR/include)
35# --with-krb5-flavor  Declare what flavor of Kerberos 5 is used.  Currently
36#		supported values are "MIT" and "Heimdal".  A value is required.
37#
38# --test-sanity Make a number of sanity checks on the data in this file.
39#               This is a debugging tool for OpenSSL developers.
40#
41# --cross-compile-prefix Add specified prefix to binutils components.
42#
43# no-hw-xxx     do not compile support for specific crypto hardware.
44#               Generic OpenSSL-style methods relating to this support
45#               are always compiled but return NULL if the hardware
46#               support isn't compiled.
47# no-hw         do not compile support for any crypto hardware.
48# [no-]threads  [don't] try to create a library that is suitable for
49#               multithreaded applications (default is "threads" if we
50#               know how to do it)
51# [no-]shared	[don't] try to create shared libraries when supported.
52# no-asm        do not use assembler
53# no-dso        do not compile in any native shared-library methods. This
54#               will ensure that all methods just return NULL.
55# no-krb5       do not compile in any KRB5 library or code.
56# [no-]zlib     [don't] compile support for zlib compression.
57# zlib-dynamic	Like "zlib", but the zlib library is expected to be a shared
58#		library and will be loaded in run-time by the OpenSSL library.
59# sctp          include SCTP support
60# 386           generate 80386 code
61# no-sse2	disables IA-32 SSE2 code, above option implies no-sse2
62# no-<cipher>   build without specified algorithm (rsa, idea, rc5, ...)
63# -<xxx> +<xxx> compiler options are passed through
64#
65# DEBUG_SAFESTACK use type-safe stacks to enforce type-safety on stack items
66#		provided to stack calls. Generates unique stack functions for
67#		each possible stack type.
68# DES_PTR	use pointer lookup vs arrays in the DES in crypto/des/des_locl.h
69# DES_RISC1	use different DES_ENCRYPT macro that helps reduce register
70#		dependancies but needs to more registers, good for RISC CPU's
71# DES_RISC2	A different RISC variant.
72# DES_UNROLL	unroll the inner DES loop, sometimes helps, somtimes hinders.
73# DES_INT	use 'int' instead of 'long' for DES_LONG in crypto/des/des.h
74#		This is used on the DEC Alpha where long is 8 bytes
75#		and int is 4
76# BN_LLONG	use the type 'long long' in crypto/bn/bn.h
77# MD2_CHAR	use 'char' instead of 'int' for MD2_INT in crypto/md2/md2.h
78# MD2_LONG	use 'long' instead of 'int' for MD2_INT in crypto/md2/md2.h
79# IDEA_SHORT	use 'short' instead of 'int' for IDEA_INT in crypto/idea/idea.h
80# IDEA_LONG	use 'long' instead of 'int' for IDEA_INT in crypto/idea/idea.h
81# RC2_SHORT	use 'short' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
82# RC2_LONG	use 'long' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
83# RC4_CHAR	use 'char' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
84# RC4_LONG	use 'long' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
85# RC4_INDEX	define RC4_INDEX in crypto/rc4/rc4_locl.h.  This turns on
86#		array lookups instead of pointer use.
87# RC4_CHUNK	enables code that handles data aligned at long (natural CPU
88#		word) boundary.
89# RC4_CHUNK_LL	enables code that handles data aligned at long long boundary
90#		(intended for 64-bit CPUs running 32-bit OS).
91# BF_PTR	use 'pointer arithmatic' for Blowfish (unsafe on Alpha).
92# BF_PTR2	intel specific version (generic version is more efficient).
93#
94# Following are set automatically by this script
95#
96# MD5_ASM	use some extra md5 assember,
97# SHA1_ASM	use some extra sha1 assember, must define L_ENDIAN for x86
98# RMD160_ASM	use some extra ripemd160 assember,
99# SHA256_ASM	sha256_block is implemented in assembler
100# SHA512_ASM	sha512_block is implemented in assembler
101# AES_ASM	ASE_[en|de]crypt is implemented in assembler
102
103# Minimum warning options... any contributions to OpenSSL should at least get
104# past these.
105
106my $gcc_devteam_warn = "-Wall -pedantic -DPEDANTIC -Wno-long-long -Wsign-compare -Wmissing-prototypes -Wshadow -Wformat -Werror -DCRYPTO_MDEBUG_ALL -DCRYPTO_MDEBUG_ABORT -DREF_CHECK -DOPENSSL_NO_DEPRECATED";
107
108# TODO(openssl-team): fix problems and investigate if (at least) the following
109# warnings can also be enabled:
110# -Wconditional-uninitialized, -Wswitch-enum, -Wunused-macros,
111# -Wmissing-field-initializers, -Wmissing-variable-declarations,
112# -Wincompatible-pointer-types-discards-qualifiers, -Wcast-align,
113# -Wunreachable-code -Wunused-parameter -Wlanguage-extension-token
114# -Wextended-offsetof
115my $clang_disabled_warnings = "-Wno-unused-parameter -Wno-missing-field-initializers -Wno-language-extension-token  -Wno-extended-offsetof";
116
117# These are used in addition to $gcc_devteam_warn when the compiler is clang.
118# TODO(openssl-team): fix problems and investigate if (at least) the
119# following warnings can also be enabled: -Wconditional-uninitialized,
120# -Wswitch-enum, -Wunused-macros, -Wmissing-field-initializers,
121# -Wmissing-variable-declarations,
122# -Wincompatible-pointer-types-discards-qualifiers, -Wcast-align,
123# -Wunreachable-code -Wunused-parameter -Wlanguage-extension-token
124# -Wextended-offsetof
125my $clang_devteam_warn = "-Wno-unused-parameter -Wno-missing-field-initializers -Wno-language-extension-token -Wno-extended-offsetof -Qunused-arguments";
126
127# Warn that "make depend" should be run?
128my $warn_make_depend = 0;
129
130my $strict_warnings = 0;
131
132my $x86_gcc_des="DES_PTR DES_RISC1 DES_UNROLL";
133
134# MD2_CHAR slags pentium pros
135my $x86_gcc_opts="RC4_INDEX MD2_INT";
136
137# MODIFY THESE PARAMETERS IF YOU ARE GOING TO USE THE 'util/speed.sh SCRIPT
138# Don't worry about these normally
139
140my $tcc="cc";
141my $tflags="-fast -Xa";
142my $tbn_mul="";
143my $tlib="-lnsl -lsocket";
144#$bits1="SIXTEEN_BIT ";
145#$bits2="THIRTY_TWO_BIT ";
146my $bits1="THIRTY_TWO_BIT ";
147my $bits2="SIXTY_FOUR_BIT ";
148
149my $x86_asm="x86cpuid.o:bn-586.o co-586.o x86-mont.o x86-gf2m.o::des-586.o crypt586.o:aes-586.o vpaes-x86.o aesni-x86.o:bf-586.o:md5-586.o:sha1-586.o sha256-586.o sha512-586.o:cast-586.o:rc4-586.o:rmd-586.o:rc5-586.o:wp_block.o wp-mmx.o:cmll-x86.o:ghash-x86.o:";
150
151my $x86_elf_asm="$x86_asm:elf";
152
153my $x86_64_asm="x86_64cpuid.o:x86_64-gcc.o x86_64-mont.o x86_64-mont5.o x86_64-gf2m.o rsaz_exp.o rsaz-x86_64.o rsaz-avx2.o:ecp_nistz256.o ecp_nistz256-x86_64.o::aes-x86_64.o vpaes-x86_64.o bsaes-x86_64.o aesni-x86_64.o aesni-sha1-x86_64.o aesni-sha256-x86_64.o aesni-mb-x86_64.o::md5-x86_64.o:sha1-x86_64.o sha256-x86_64.o sha512-x86_64.o sha1-mb-x86_64.o sha256-mb-x86_64.o::rc4-x86_64.o rc4-md5-x86_64.o:::wp-x86_64.o:cmll-x86_64.o cmll_misc.o:ghash-x86_64.o aesni-gcm-x86_64.o:";
154my $ia64_asm="ia64cpuid.o:bn-ia64.o ia64-mont.o:::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o::rc4-ia64.o rc4_skey.o:::::ghash-ia64.o::void";
155my $sparcv9_asm="sparcv9cap.o sparccpuid.o:bn-sparcv9.o sparcv9-mont.o sparcv9a-mont.o vis3-mont.o sparct4-mont.o sparcv9-gf2m.o::des_enc-sparc.o fcrypt_b.o dest4-sparcv9.o:aes_core.o aes_cbc.o aes-sparcv9.o aest4-sparcv9.o::md5-sparcv9.o:sha1-sparcv9.o sha256-sparcv9.o sha512-sparcv9.o::::::camellia.o cmll_misc.o cmll_cbc.o cmllt4-sparcv9.o:ghash-sparcv9.o::void";
156my $sparcv8_asm=":sparcv8.o::des_enc-sparc.o fcrypt_b.o:::::::::::::void";
157my $alpha_asm="alphacpuid.o:bn_asm.o alpha-mont.o::::::sha1-alpha.o:::::::ghash-alpha.o::void";
158my $mips64_asm=":bn-mips.o mips-mont.o:::aes_cbc.o aes-mips.o:::sha1-mips.o sha256-mips.o sha512-mips.o::::::::";
159my $mips32_asm=$mips64_asm; $mips32_asm =~ s/\s*sha512\-mips\.o//;
160my $s390x_asm="s390xcap.o s390xcpuid.o:bn-s390x.o s390x-mont.o s390x-gf2m.o:::aes-s390x.o aes-ctr.o aes-xts.o:::sha1-s390x.o sha256-s390x.o sha512-s390x.o::rc4-s390x.o:::::ghash-s390x.o:";
161my $armv4_asm="armcap.o armv4cpuid.o:bn_asm.o armv4-mont.o armv4-gf2m.o:::aes_cbc.o aes-armv4.o bsaes-armv7.o aesv8-armx.o:::sha1-armv4-large.o sha256-armv4.o sha512-armv4.o:::::::ghash-armv4.o ghashv8-armx.o::void";
162my $aarch64_asm="armcap.o arm64cpuid.o mem_clr.o::::aes_core.o aes_cbc.o aesv8-armx.o:::sha1-armv8.o sha256-armv8.o sha512-armv8.o:::::::ghashv8-armx.o:";
163my $parisc11_asm="pariscid.o:bn_asm.o parisc-mont.o:::aes_core.o aes_cbc.o aes-parisc.o:::sha1-parisc.o sha256-parisc.o sha512-parisc.o::rc4-parisc.o:::::ghash-parisc.o::32";
164my $parisc20_asm="pariscid.o:pa-risc2W.o parisc-mont.o:::aes_core.o aes_cbc.o aes-parisc.o:::sha1-parisc.o sha256-parisc.o sha512-parisc.o::rc4-parisc.o:::::ghash-parisc.o::64";
165my $ppc64_asm="ppccpuid.o ppccap.o:bn-ppc.o ppc-mont.o ppc64-mont.o:::aes_core.o aes_cbc.o aes-ppc.o vpaes-ppc.o aesp8-ppc.o:::sha1-ppc.o sha256-ppc.o sha512-ppc.o sha256p8-ppc.o sha512p8-ppc.o:::::::ghashp8-ppc.o:";
166my $ppc32_asm=$ppc64_asm;
167my $no_asm="::::::::::::::::void";
168
169# As for $BSDthreads. Idea is to maintain "collective" set of flags,
170# which would cover all BSD flavors. -pthread applies to them all,
171# but is treated differently. OpenBSD expands is as -D_POSIX_THREAD
172# -lc_r, which is sufficient. FreeBSD 4.x expands it as -lc_r,
173# which has to be accompanied by explicit -D_THREAD_SAFE and
174# sometimes -D_REENTRANT. FreeBSD 5.x expands it as -lc_r, which
175# seems to be sufficient?
176my $BSDthreads="-pthread -D_THREAD_SAFE -D_REENTRANT";
177
178#config-string	$cc : $cflags : $unistd : $thread_cflag : $sys_id : $lflags : $bn_ops : $cpuid_obj : $bn_obj : $ec_obj : $des_obj : $aes_obj : $bf_obj : $md5_obj : $sha1_obj : $cast_obj : $rc4_obj : $rmd160_obj : $rc5_obj : $wp_obj : $cmll_obj : $modes_obj : $engines_obj : $dso_scheme : $shared_target : $shared_cflag : $shared_ldflag : $shared_extension : $ranlib : $arflags : $multilib
179
180my %table=(
181# File 'TABLE' (created by 'make TABLE') contains the data from this list,
182# formatted for better readability.
183
184
185#"b",		"${tcc}:${tflags}::${tlib}:${bits1}:${tbn_mul}::",
186#"bl-4c-2c",	"${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR MD2_CHAR:${tbn_mul}::",
187#"bl-4c-ri",	"${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR RC4_INDEX:${tbn_mul}::",
188#"b2-is-ri-dp",	"${tcc}:${tflags}::${tlib}:${bits2}IDEA_SHORT RC4_INDEX DES_PTR:${tbn_mul}::",
189
190# Our development configs
191"purify",	"purify gcc:-g -DPURIFY -Wall::(unknown)::-lsocket -lnsl::::",
192"debug",	"gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -ggdb -g2 -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror::(unknown)::-lefence::::",
193"debug-ben",	"gcc:$gcc_devteam_warn -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DDEBUG_SAFESTACK -O2 -pipe::(unknown):::::",
194"debug-ben-openbsd","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
195"debug-ben-openbsd-debug","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -g3 -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
196"debug-ben-debug",	"gcc44:$gcc_devteam_warn -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -DDEBUG_UNUSED -g3 -O2 -pipe::(unknown)::::::",
197"debug-ben-debug-64",	"gcc:$gcc_devteam_warn -Wno-error=overlength-strings -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -DDEBUG_UNUSED -g3 -O3 -pipe::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
198"debug-ben-macos",	"cc:$gcc_devteam_warn -arch i386 -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -DDEBUG_UNUSED -DOPENSSL_THREADS -D_REENTRANT -DDSO_DLFCN -DHAVE_DLFCN_H -O3 -DL_ENDIAN -g3 -pipe::(unknown)::-Wl,-search_paths_first::::",
199"debug-ben-macos-gcc46",	"gcc-mp-4.6:$gcc_devteam_warn -Wconversion -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -DDEBUG_UNUSED -DOPENSSL_THREADS -D_REENTRANT -DDSO_DLFCN -DHAVE_DLFCN_H -O3 -DL_ENDIAN -g3 -pipe::(unknown)::::::",
200"debug-ben-darwin64","cc:$gcc_devteam_warn -g -Wno-language-extension-token -Wno-extended-offsetof -arch x86_64 -O3 -DL_ENDIAN -Wall::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:".eval{my $asm=$x86_64_asm;$asm=~s/rc4\-[^:]+//;$asm}.":macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch x86_64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
201"debug-ben-debug-64-clang",	"clang:$gcc_devteam_warn -Wno-error=overlength-strings -Wno-error=extended-offsetof -Qunused-arguments -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -DDEBUG_UNUSED -g3 -O3 -pipe::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
202"debug-ben-no-opt",	"gcc: -Wall -Wmissing-prototypes -Wstrict-prototypes -Wmissing-declarations -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG -Werror -DL_ENDIAN -DTERMIOS -Wall -g3::(unknown)::::::",
203"debug-ben-strict",	"gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DCONST_STRICT -O2 -Wall -Wshadow -Werror -Wpointer-arith -Wcast-qual -Wwrite-strings -pipe::(unknown)::::::",
204"debug-rse","cc:-DTERMIOS -DL_ENDIAN -pipe -O -g -ggdb3 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
205"debug-bodo",	"gcc:$gcc_devteam_warn -Wno-error=overlength-strings -DBN_DEBUG -DBN_DEBUG_RAND -DCONF_DEBUG -DBIO_PAIR_DEBUG -m64 -DL_ENDIAN -DTERMIO -g -DMD32_REG_T=int::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
206"debug-steve64", "gcc:$gcc_devteam_warn -m64 -DL_ENDIAN -DTERMIO -DCONF_DEBUG -DDEBUG_SAFESTACK -Wno-overlength-strings -g::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
207"debug-steve32", "gcc:$gcc_devteam_warn -m32 -DL_ENDIAN -DCONF_DEBUG -DDEBUG_SAFESTACK -Wno-overlength-strings -g -pipe::-D_REENTRANT::-rdynamic -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC:-m32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
208"debug-steve-opt", "gcc:$gcc_devteam_warn -m64 -O3 -DL_ENDIAN -DTERMIO -DCONF_DEBUG -DDEBUG_SAFESTACK -g::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
209"debug-levitte-linux-elf","gcc:-DLEVITTE_DEBUG -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -ggdb -g3 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
210"debug-levitte-linux-noasm","gcc:-DLEVITTE_DEBUG -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -ggdb -g3 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
211"debug-levitte-linux-elf-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DPEDANTIC -ggdb -g3 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
212"debug-levitte-linux-noasm-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DPEDANTIC -ggdb -g3 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
213"debug-geoff32","gcc:-DBN_DEBUG -DBN_DEBUG_RAND -DBN_STRICT -DPURIFY -DOPENSSL_NO_DEPRECATED -DOPENSSL_NO_ASM -DOPENSSL_NO_INLINE_ASM -DL_ENDIAN -DTERMIO -DPEDANTIC -O1 -ggdb2 -Wall -Werror -Wundef -pedantic -Wshadow -Wpointer-arith -Wbad-function-cast -Wcast-align -Wsign-compare -Wmissing-prototypes -Wmissing-declarations -Wno-long-long::-D_REENTRANT::-ldl:BN_LLONG:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
214"debug-geoff64","gcc:-DBN_DEBUG -DBN_DEBUG_RAND -DBN_STRICT -DPURIFY -DOPENSSL_NO_DEPRECATED -DOPENSSL_NO_ASM -DOPENSSL_NO_INLINE_ASM -DL_ENDIAN -DTERMIO -DPEDANTIC -O1 -ggdb2 -Wall -Werror -Wundef -pedantic -Wshadow -Wpointer-arith -Wbad-function-cast -Wcast-align -Wsign-compare -Wmissing-prototypes -Wmissing-declarations -Wno-long-long::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
215"debug-linux-pentium","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -g -mcpu=pentium -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
216"debug-linux-ppro","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -g -mcpu=pentiumpro -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
217"debug-linux-elf","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -g -march=i486 -Wall::-D_REENTRANT::-lefence -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
218"debug-linux-elf-noefence","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -g -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
219"debug-linux-ia32-aes", "gcc:-DAES_EXPERIMENTAL -DL_ENDIAN -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:x86cpuid.o:bn-586.o co-586.o x86-mont.o::des-586.o crypt586.o:aes_x86core.o aes_cbc.o aesni-x86.o:bf-586.o:md5-586.o:sha1-586.o sha256-586.o sha512-586.o:cast-586.o:rc4-586.o:rmd-586.o:rc5-586.o:wp_block.o wp-mmx.o::ghash-x86.o::elf:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
220"debug-linux-generic32","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -g -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
221"debug-linux-generic64","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DTERMIO -g -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
222"debug-linux-x86_64","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -m64 -DL_ENDIAN -g -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
223"dist",		"cc:-O::(unknown)::::::",
224
225# Basic configs that should work on any (32 and less bit) box
226"gcc",		"gcc:-O3::(unknown):::BN_LLONG:::",
227"cc",		"cc:-O::(unknown)::::::",
228
229####VOS Configurations
230"vos-gcc","gcc:-O3 -Wall -DOPENSSL_SYSNAME_VOS -D_POSIX_C_SOURCE=200112L -D_BSD -D_VOS_EXTENDED_NAMES -DB_ENDIAN::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
231"debug-vos-gcc","gcc:-O0 -g -Wall -DOPENSSL_SYSNAME_VOS -D_POSIX_C_SOURCE=200112L -D_BSD -D_VOS_EXTENDED_NAMES -DB_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
232
233#### Solaris x86 with GNU C setups
234# -DOPENSSL_NO_INLINE_ASM switches off inline assembler. We have to do it
235# here because whenever GNU C instantiates an assembler template it
236# surrounds it with #APP #NO_APP comment pair which (at least Solaris
237# 7_x86) /usr/ccs/bin/as fails to assemble with "Illegal mnemonic"
238# error message.
239"solaris-x86-gcc","gcc:-O3 -fomit-frame-pointer -march=pentium -Wall -DL_ENDIAN -DOPENSSL_NO_INLINE_ASM::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
240# -shared -static-libgcc might appear controversial, but modules taken
241# from static libgcc do not have relocations and linking them into our
242# shared objects doesn't have any negative side-effects. On the contrary,
243# doing so makes it possible to use gcc shared build with Sun C. Given
244# that gcc generates faster code [thanks to inline assembler], I would
245# actually recommend to consider using gcc shared build even with vendor
246# compiler:-)
247#						<appro@fy.chalmers.se>
248"solaris64-x86_64-gcc","gcc:-m64 -O3 -Wall -DL_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:solaris-shared:-fPIC:-m64 -shared -static-libgcc:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
249
250#### Solaris x86 with Sun C setups
251"solaris-x86-cc","cc:-fast -xarch=generic -O -Xa::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
252"solaris64-x86_64-cc","cc:-fast -xarch=amd64 -xstrconst -Xa -DL_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:solaris-shared:-KPIC:-xarch=amd64 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
253
254#### SPARC Solaris with GNU C setups
255"solaris-sparcv7-gcc","gcc:-O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
256"solaris-sparcv8-gcc","gcc:-mcpu=v8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
257# -m32 should be safe to add as long as driver recognizes -mcpu=ultrasparc
258"solaris-sparcv9-gcc","gcc:-m32 -mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
259"solaris64-sparcv9-gcc","gcc:-m64 -mcpu=ultrasparc -O3 -Wall -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-m64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
260####
261"debug-solaris-sparcv8-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -O -g -mcpu=v8 -Wall -DB_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
262"debug-solaris-sparcv9-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -DPEDANTIC -O -g -mcpu=ultrasparc -pedantic -ansi -Wall -Wshadow -Wno-long-long -D__EXTENSIONS__ -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
263
264#### SPARC Solaris with Sun C setups
265# SC4.0 doesn't pass 'make test', upgrade to SC5.0 or SC4.2.
266# SC4.2 is ok, better than gcc even on bn as long as you tell it -xarch=v8
267# SC5.0 note: Compiler common patch 107357-01 or later is required!
268"solaris-sparcv7-cc","cc:-xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
269"solaris-sparcv8-cc","cc:-xarch=v8 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
270"solaris-sparcv9-cc","cc:-xtarget=ultra -xarch=v8plus -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
271"solaris64-sparcv9-cc","cc:-xtarget=ultra -xarch=v9 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-xarch=v9 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
272####
273"debug-solaris-sparcv8-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -xarch=v8 -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
274"debug-solaris-sparcv9-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -xtarget=ultra -xarch=v8plus -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
275
276#### SunOS configs, assuming sparc for the gcc one.
277#"sunos-cc", "cc:-O4 -DNOPROTO -DNOCONST::(unknown):SUNOS::DES_UNROLL:${no_asm}::",
278"sunos-gcc","gcc:-O3 -mcpu=v8 -Dssize_t=int::(unknown):SUNOS::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL DES_PTR DES_RISC1:${no_asm}::",
279
280#### IRIX 5.x configs
281# -mips2 flag is added by ./config when appropriate.
282"irix-gcc","gcc:-O3 -DB_ENDIAN::(unknown):::BN_LLONG MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK DES_UNROLL DES_RISC2 DES_PTR BF_PTR:${mips32_asm}:o32:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
283"irix-cc", "cc:-O2 -use_readonly_const -DB_ENDIAN::(unknown):::BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${mips32_asm}:o32:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
284#### IRIX 6.x configs
285# Only N32 and N64 ABIs are supported. If you need O32 ABI build, invoke
286# './Configure irix-cc -o32' manually.
287"irix-mips3-gcc","gcc:-mabi=n32 -O3 -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK_LL DES_UNROLL DES_RISC2 DES_PTR BF_PTR SIXTY_FOUR_BIT:${mips64_asm}:n32:dlfcn:irix-shared::-mabi=n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::32",
288"irix-mips3-cc", "cc:-n32 -mips3 -O2 -use_readonly_const -G0 -rdata_shared -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::DES_PTR RC4_CHAR RC4_CHUNK_LL DES_RISC2 DES_UNROLL BF_PTR SIXTY_FOUR_BIT:${mips64_asm}:n32:dlfcn:irix-shared::-n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::32",
289# N64 ABI builds.
290"irix64-mips4-gcc","gcc:-mabi=64 -mips4 -O3 -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG:${mips64_asm}:64:dlfcn:irix-shared::-mabi=64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
291"irix64-mips4-cc", "cc:-64 -mips4 -O2 -use_readonly_const -G0 -rdata_shared -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG:${mips64_asm}:64:dlfcn:irix-shared::-64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
292
293#### Unified HP-UX ANSI C configs.
294# Special notes:
295# - Originally we were optimizing at +O4 level. It should be noted
296#   that the only difference between +O3 and +O4 is global inter-
297#   procedural analysis. As it has to be performed during the link
298#   stage the compiler leaves behind certain pseudo-code in lib*.a
299#   which might be release or even patch level specific. Generating
300#   the machine code for and analyzing the *whole* program appears
301#   to be *extremely* memory demanding while the performance gain is
302#   actually questionable. The situation is intensified by the default
303#   HP-UX data set size limit (infamous 'maxdsiz' tunable) of 64MB
304#   which is way too low for +O4. In other words, doesn't +O3 make
305#   more sense?
306# - Keep in mind that the HP compiler by default generates code
307#   suitable for execution on the host you're currently compiling at.
308#   If the toolkit is ment to be used on various PA-RISC processors
309#   consider './config +DAportable'.
310# - +DD64 is chosen in favour of +DA2.0W because it's meant to be
311#   compatible with *future* releases.
312# - If you run ./Configure hpux-parisc-[g]cc manually don't forget to
313#   pass -D_REENTRANT on HP-UX 10 and later.
314# - -DMD32_XARRAY triggers workaround for compiler bug we ran into in
315#   32-bit message digests. (For the moment of this writing) HP C
316#   doesn't seem to "digest" too many local variables (they make "him"
317#   chew forever:-). For more details look-up MD32_XARRAY comment in
318#   crypto/sha/sha_lcl.h.
319#					<appro@fy.chalmers.se>
320#
321# Since there is mention of this in shlib/hpux10-cc.sh
322"hpux-parisc-cc-o4","cc:-Ae +O4 +ESlit -z -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
323"hpux-parisc-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-Wl,+s -ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
324"hpux-parisc1_1-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-Wl,+s -ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${parisc11_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa1.1",
325"hpux-parisc2-gcc","gcc:-march=2.0 -O3 -DB_ENDIAN -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL DES_RISC1:".eval{my $asm=$parisc20_asm;$asm=~s/2W\./2\./;$asm=~s/:64/:32/;$asm}.":dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_32",
326"hpux64-parisc2-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2W.o:::::::::::::::void:dlfcn:hpux-shared:-fpic:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_64",
327
328# More attempts at unified 10.X and 11.X targets for HP C compiler.
329#
330# Chris Ruemmler <ruemmler@cup.hp.com>
331# Kevin Steves <ks@hp.se>
332"hpux-parisc-cc","cc:+O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
333"hpux-parisc1_1-cc","cc:+DA1.1 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${parisc11_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa1.1",
334"hpux-parisc2-cc","cc:+DA2.0 +DS2.0 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:".eval{my $asm=$parisc20_asm;$asm=~s/2W\./2\./;$asm=~s/:64/:32/;$asm}.":dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_32",
335"hpux64-parisc2-cc","cc:+DD64 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${parisc20_asm}:dlfcn:hpux-shared:+Z:+DD64 -b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_64",
336
337# HP/UX IA-64 targets
338"hpux-ia64-cc","cc:-Ae +DD32 +O2 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD32 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux32",
339# Frank Geurts <frank.geurts@nl.abnamro.com> has patiently assisted with
340# with debugging of the following config.
341"hpux64-ia64-cc","cc:-Ae +DD64 +O3 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD64 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux64",
342# GCC builds...
343"hpux-ia64-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux32",
344"hpux64-ia64-gcc","gcc:-mlp64 -O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-mlp64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux64",
345
346# Legacy HPUX 9.X configs...
347"hpux-cc",	"cc:-DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY -Ae +ESlit +O2 -z::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
348"hpux-gcc",	"gcc:-DB_ENDIAN -DBN_DIV2W -O3::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
349
350#### HP MPE/iX http://jazz.external.hp.com/src/openssl/
351"MPE/iX-gcc",	"gcc:-D_ENDIAN -DBN_DIV2W -O3 -D_POSIX_SOURCE -D_SOCKET_SOURCE -I/SYSLOG/PUB::(unknown):MPE:-L/SYSLOG/PUB -lsyslog -lsocket -lcurses:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:::",
352
353# DEC Alpha OSF/1/Tru64 targets.
354#
355#	"What's in a name? That which we call a rose
356#	 By any other word would smell as sweet."
357#
358# - William Shakespeare, "Romeo & Juliet", Act II, scene II.
359#
360# For gcc, the following gave a %50 speedup on a 164 over the 'DES_INT' version
361#
362"osf1-alpha-gcc", "gcc:-O3::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_RISC1:${alpha_asm}:dlfcn:alpha-osf1-shared:::.so",
363"osf1-alpha-cc",  "cc:-std1 -tune host -O4 -readonly_strings::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${alpha_asm}:dlfcn:alpha-osf1-shared:::.so",
364"tru64-alpha-cc", "cc:-std1 -tune host -fast -readonly_strings::-pthread:::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${alpha_asm}:dlfcn:alpha-osf1-shared::-msym:.so",
365
366####
367#### Variety of LINUX:-)
368####
369# *-generic* is endian-neutral target, but ./config is free to
370# throw in -D[BL]_ENDIAN, whichever appropriate...
371"linux-generic32","gcc:-O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
372"linux-ppc",	"gcc:-DB_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${ppc32_asm}:linux32:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
373
374#######################################################################
375# Note that -march is not among compiler options in below linux-armv4
376# target line. Not specifying one is intentional to give you choice to:
377#
378# a) rely on your compiler default by not specifying one;
379# b) specify your target platform explicitly for optimal performance,
380#    e.g. -march=armv6 or -march=armv7-a;
381# c) build "universal" binary that targets *range* of platforms by
382#    specifying minimum and maximum supported architecture;
383#
384# As for c) option. It actually makes no sense to specify maximum to be
385# less than ARMv7, because it's the least requirement for run-time
386# switch between platform-specific code paths. And without run-time
387# switch performance would be equivalent to one for minimum. Secondly,
388# there are some natural limitations that you'd have to accept and
389# respect. Most notably you can *not* build "universal" binary for
390# big-endian platform. This is because ARMv7 processor always picks
391# instructions in little-endian order. Another similar limitation is
392# that -mthumb can't "cross" -march=armv6t2 boundary, because that's
393# where it became Thumb-2. Well, this limitation is a bit artificial,
394# because it's not really impossible, but it's deemed too tricky to
395# support. And of course you have to be sure that your binutils are
396# actually up to the task of handling maximum target platform. With all
397# this in mind here is an example of how to configure "universal" build:
398#
399#       ./Configure linux-armv4 -march=armv6 -D__ARM_MAX_ARCH__=8
400#
401"linux-armv4",	"gcc: -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${armv4_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
402"linux-aarch64","gcc: -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${aarch64_asm}:linux64:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
403# Configure script adds minimally required -march for assembly support,
404# if no -march was specified at command line. mips32 and mips64 below
405# refer to contemporary MIPS Architecture specifications, MIPS32 and
406# MIPS64, rather than to kernel bitness.
407"linux-mips32",	"gcc:-mabi=32 -O3 -Wall -DBN_DIV3W::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${mips32_asm}:o32:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
408"linux-mips64",   "gcc:-mabi=n32 -O3 -Wall -DBN_DIV3W::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${mips64_asm}:n32:dlfcn:linux-shared:-fPIC:-mabi=n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::32",
409"linux64-mips64",   "gcc:-mabi=64 -O3 -Wall -DBN_DIV3W::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${mips64_asm}:64:dlfcn:linux-shared:-fPIC:-mabi=64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
410#### IA-32 targets...
411"linux-ia32-icc",	"icc:-DL_ENDIAN -O2::-D_REENTRANT::-ldl -no_cpprt:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-KPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
412"linux-elf",	"gcc:-DL_ENDIAN -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
413"linux-aout",	"gcc:-DL_ENDIAN -O3 -fomit-frame-pointer -march=i486 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out",
414####
415"linux-generic64","gcc:-O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
416"linux-ppc64",	"gcc:-m64 -DB_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${ppc64_asm}:linux64:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
417"linux-ppc64le","gcc:-m64 -DL_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:$ppc64_asm:linux64le:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::",
418"linux-ia64",	"gcc:-DL_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_INT:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
419"linux-ia64-icc","icc:-DL_ENDIAN -O2 -Wall::-D_REENTRANT::-ldl -no_cpprt:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_RISC1 DES_INT:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
420"linux-x86_64",	"gcc:-m64 -DL_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
421"linux-x86_64-clang",	"clang: -m64 -DL_ENDIAN -O3 -Wall -Wextra $clang_disabled_warnings -Qunused-arguments::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
422"debug-linux-x86_64-clang",	"clang: -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -m64 -DL_ENDIAN -g -Wall -Wextra $clang_disabled_warnings -Qunused-arguments::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
423"linux-x86_64-icc", "icc:-DL_ENDIAN -O2::-D_REENTRANT::-ldl -no_cpprt:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
424"linux-x32",	"gcc:-mx32 -DL_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-mx32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::x32",
425"linux64-s390x",	"gcc:-m64 -DB_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:${s390x_asm}:64:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
426#### So called "highgprs" target for z/Architecture CPUs
427# "Highgprs" is kernel feature first implemented in Linux 2.6.32, see
428# /proc/cpuinfo. The idea is to preserve most significant bits of
429# general purpose registers not only upon 32-bit process context
430# switch, but even on asynchronous signal delivery to such process.
431# This makes it possible to deploy 64-bit instructions even in legacy
432# application context and achieve better [or should we say adequate]
433# performance. The build is binary compatible with linux-generic32,
434# and the idea is to be able to install the resulting libcrypto.so
435# alongside generic one, e.g. as /lib/highgprs/libcrypto.so.x.y, for
436# ldconfig and run-time linker to autodiscover. Unfortunately it
437# doesn't work just yet, because of couple of bugs in glibc
438# sysdeps/s390/dl-procinfo.c affecting ldconfig and ld.so.1...
439"linux32-s390x",	"gcc:-m31 -Wa,-mzarch -DB_ENDIAN -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:".eval{my $asm=$s390x_asm;$asm=~s/bn\-s390x\.o/bn_asm.o/;$asm}.":31:dlfcn:linux-shared:-fPIC:-m31:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/highgprs",
440#### SPARC Linux setups
441# Ray Miller <ray.miller@computing-services.oxford.ac.uk> has patiently
442# assisted with debugging of following two configs.
443"linux-sparcv8","gcc:-mcpu=v8 -DB_ENDIAN -O3 -fomit-frame-pointer -Wall -DBN_DIV2W::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
444# it's a real mess with -mcpu=ultrasparc option under Linux, but
445# -Wa,-Av8plus should do the trick no matter what.
446"linux-sparcv9","gcc:-m32 -mcpu=ultrasparc -DB_ENDIAN -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:linux-shared:-fPIC:-m32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
447# GCC 3.1 is a requirement
448"linux64-sparcv9","gcc:-m64 -mcpu=ultrasparc -DB_ENDIAN -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:ULTRASPARC:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
449#### Alpha Linux with GNU C and Compaq C setups
450# Special notes:
451# - linux-alpha+bwx-gcc is ment to be used from ./config only. If you
452#   ought to run './Configure linux-alpha+bwx-gcc' manually, do
453#   complement the command line with -mcpu=ev56, -mcpu=ev6 or whatever
454#   which is appropriate.
455# - If you use ccc keep in mind that -fast implies -arch host and the
456#   compiler is free to issue instructions which gonna make elder CPU
457#   choke. If you wish to build "blended" toolkit, add -arch generic
458#   *after* -fast and invoke './Configure linux-alpha-ccc' manually.
459#
460#					<appro@fy.chalmers.se>
461#
462"linux-alpha-gcc","gcc:-O3 -DL_ENDIAN::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_RISC1 DES_UNROLL:${alpha_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
463"linux-alpha+bwx-gcc","gcc:-O3 -DL_ENDIAN::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${alpha_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
464"linux-alpha-ccc","ccc:-fast -readonly_strings -DL_ENDIAN::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${alpha_asm}",
465"linux-alpha+bwx-ccc","ccc:-fast -readonly_strings -DL_ENDIAN::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${alpha_asm}",
466
467# Android: linux-* but without pointers to headers and libs.
468"android","gcc:-mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
469"android-x86","gcc:-mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:".eval{my $asm=${x86_elf_asm};$asm=~s/:elf/:android/;$asm}.":dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
470"android-armv7","gcc:-march=armv7-a -mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${armv4_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
471"android-mips","gcc:-mandroid -I\$(ANDROID_DEV)/include -B\$(ANDROID_DEV)/lib -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${mips32_asm}:o32:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
472
473#### *BSD [do see comment about ${BSDthreads} above!]
474"BSD-generic32","gcc:-O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
475"BSD-x86",	"gcc:-DL_ENDIAN -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
476"BSD-x86-elf",	"gcc:-DL_ENDIAN -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
477"debug-BSD-x86-elf",	"gcc:-DL_ENDIAN -O3 -Wall -g::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
478"BSD-sparcv8",	"gcc:-DB_ENDIAN -O3 -mcpu=v8 -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${sparcv8_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
479
480"BSD-generic64","gcc:-O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
481# -DMD32_REG_T=int doesn't actually belong in sparc64 target, it
482# simply *happens* to work around a compiler bug in gcc 3.3.3,
483# triggered by RIPEMD160 code.
484"BSD-sparc64",	"gcc:-DB_ENDIAN -O3 -DMD32_REG_T=int -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC2 BF_PTR:${sparcv9_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
485"BSD-ia64",	"gcc:-DL_ENDIAN -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_INT:${ia64_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
486"BSD-x86_64",	"cc:-DL_ENDIAN -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
487
488"bsdi-elf-gcc",     "gcc:-DPERL5 -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall::(unknown)::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
489
490"nextstep",	"cc:-O -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
491"nextstep3.3",	"cc:-O3 -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
492
493# NCR MP-RAS UNIX ver 02.03.01
494"ncr-scde","cc:-O6 -Xa -Hoff=BEHAVED -686 -Hwide -Hiw::(unknown)::-lsocket -lnsl -lc89:${x86_gcc_des} ${x86_gcc_opts}:::",
495
496# QNX
497"qnx4",	"cc:-DL_ENDIAN -DTERMIO::(unknown):::${x86_gcc_des} ${x86_gcc_opts}:",
498"QNX6",       "gcc:::::-lsocket::${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
499"QNX6-i386",  "gcc:-DL_ENDIAN -O2 -Wall::::-lsocket:${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
500
501# BeOS
502"beos-x86-r5",   "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -mcpu=pentium -Wall::-D_REENTRANT:BEOS:-lbe -lnet:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:beos:beos-shared:-fPIC -DPIC:-shared:.so",
503"beos-x86-bone", "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -mcpu=pentium -Wall::-D_REENTRANT:BEOS:-lbe -lbind -lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:beos:beos-shared:-fPIC:-shared:.so",
504
505#### SCO/Caldera targets.
506#
507# Originally we had like unixware-*, unixware-*-pentium, unixware-*-p6, etc.
508# Now we only have blended unixware-* as it's the only one used by ./config.
509# If you want to optimize for particular microarchitecture, bypass ./config
510# and './Configure unixware-7 -Kpentium_pro' or whatever appropriate.
511# Note that not all targets include assembler support. Mostly because of
512# lack of motivation to support out-of-date platforms with out-of-date
513# compiler drivers and assemblers. Tim Rice <tim@multitalents.net> has
514# patiently assisted to debug most of it.
515#
516# UnixWare 2.0x fails destest with -O.
517"unixware-2.0","cc:-DFILIO_H -DNO_STRINGS_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
518"unixware-2.1","cc:-O -DFILIO_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
519"unixware-7","cc:-O -DFILIO_H -Kalloca::-Kthread::-lsocket -lnsl:BN_LLONG MD2_CHAR RC4_INDEX ${x86_gcc_des}:${x86_elf_asm}-1:dlfcn:svr5-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
520"unixware-7-gcc","gcc:-DL_ENDIAN -DFILIO_H -O3 -fomit-frame-pointer -march=pentium -Wall::-D_REENTRANT::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}-1:dlfcn:gnu-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
521# SCO 5 - Ben Laurie <ben@algroup.co.uk> says the -O breaks the SCO cc.
522"sco5-cc",  "cc:-belf::(unknown)::-lsocket -lnsl:${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}-1:dlfcn:svr3-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
523"sco5-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}-1:dlfcn:svr3-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
524
525#### IBM's AIX.
526"aix3-cc",  "cc:-O -DB_ENDIAN -qmaxmem=16384::(unknown):AIX::BN_LLONG RC4_CHAR:::",
527"aix-gcc",  "gcc:-O -DB_ENDIAN::-pthread:AIX::BN_LLONG RC4_CHAR:${ppc32_asm}:aix32:dlfcn:aix-shared::-shared -Wl,-G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X32",
528"aix64-gcc","gcc:-maix64 -O -DB_ENDIAN::-pthread:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR:${ppc64_asm}:aix64:dlfcn:aix-shared::-maix64 -shared -Wl,-G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X64",
529# Below targets assume AIX 5. Idea is to effectively disregard $OBJECT_MODE
530# at build time. $OBJECT_MODE is respected at ./config stage!
531"aix-cc",   "cc:-q32 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded -D_THREAD_SAFE:AIX::BN_LLONG RC4_CHAR:${ppc32_asm}:aix32:dlfcn:aix-shared::-q32 -G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 32",
532"aix64-cc", "cc:-q64 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded -D_THREAD_SAFE:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR:${ppc64_asm}:aix64:dlfcn:aix-shared::-q64 -G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 64",
533
534#
535# Cray T90 and similar (SDSC)
536# It's Big-endian, but the algorithms work properly when B_ENDIAN is NOT
537# defined.  The T90 ints and longs are 8 bytes long, and apparently the
538# B_ENDIAN code assumes 4 byte ints.  Fortunately, the non-B_ENDIAN and
539# non L_ENDIAN code aligns the bytes in each word correctly.
540#
541# The BIT_FIELD_LIMITS define is to avoid two fatal compiler errors:
542#'Taking the address of a bit field is not allowed. '
543#'An expression with bit field exists as the operand of "sizeof" '
544# (written by Wayne Schroeder <schroede@SDSC.EDU>)
545#
546# j90 is considered the base machine type for unicos machines,
547# so this configuration is now called "cray-j90" ...
548"cray-j90", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG DES_INT:::",
549
550#
551# Cray T3E (Research Center Juelich, beckman@acl.lanl.gov)
552#
553# The BIT_FIELD_LIMITS define was written for the C90 (it seems).  I added
554# another use.  Basically, the problem is that the T3E uses some bit fields
555# for some st_addr stuff, and then sizeof and address-of fails
556# I could not use the ams/alpha.o option because the Cray assembler, 'cam'
557# did not like it.
558"cray-t3e", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT:::",
559
560# DGUX, 88100.
561"dgux-R3-gcc",	"gcc:-O3 -fomit-frame-pointer::(unknown):::RC4_INDEX DES_UNROLL:::",
562"dgux-R4-gcc",	"gcc:-O3 -fomit-frame-pointer::(unknown)::-lnsl -lsocket:RC4_INDEX DES_UNROLL:::",
563"dgux-R4-x86-gcc",	"gcc:-O3 -fomit-frame-pointer -DL_ENDIAN::(unknown)::-lnsl -lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
564
565# Sinix/ReliantUNIX RM400
566# NOTE: The CDS++ Compiler up to V2.0Bsomething has the IRIX_CC_BUG optimizer problem. Better use -g  */
567"ReliantUNIX","cc:-KPIC -g -DTERMIOS -DB_ENDIAN::-Kthread:SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:BN_LLONG DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${no_asm}:dlfcn:reliantunix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
568"SINIX","cc:-O::(unknown):SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:RC4_INDEX RC4_CHAR:::",
569"SINIX-N","/usr/ucb/cc:-O2 -misaligned::(unknown)::-lucb:RC4_INDEX RC4_CHAR:::",
570
571# SIEMENS BS2000/OSD: an EBCDIC-based mainframe
572"BS2000-OSD","c89:-O -XLLML -XLLMK -XL -DB_ENDIAN -DCHARSET_EBCDIC::(unknown)::-lsocket -lnsl:THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
573
574# OS/390 Unix an EBCDIC-based Unix system on IBM mainframe
575# You need to compile using the c89.sh wrapper in the tools directory, because the
576# IBM compiler does not like the -L switch after any object modules.
577#
578"OS390-Unix","c89.sh:-O -DB_ENDIAN -DCHARSET_EBCDIC -DNO_SYS_PARAM_H  -D_ALL_SOURCE::(unknown):::THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
579
580# Visual C targets
581#
582# Win64 targets, WIN64I denotes IA-64 and WIN64A - AMD64
583"VC-WIN64I","cl:-W3 -Gs0 -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64I::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:ia64cpuid.o:ia64.o ia64-mont.o:::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o:::::::ghash-ia64.o::ias:win32",
584"VC-WIN64A","cl:-W3 -Gs0 -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64A::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:".eval{my $asm=$x86_64_asm;$asm=~s/x86_64-gcc\.o/bn_asm.o/;$asm}.":auto:win32",
585"debug-VC-WIN64I","cl:-W3 -Gs0 -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64I::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:ia64cpuid.o:ia64.o:::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o:::::::ghash-ia64.o::ias:win32",
586"debug-VC-WIN64A","cl:-W3 -Gs0 -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64A::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:".eval{my $asm=$x86_64_asm;$asm=~s/x86_64-gcc\.o/bn_asm.o/;$asm}.":auto:win32",
587# x86 Win32 target defaults to ANSI API, if you want UNICODE, complement
588# 'perl Configure VC-WIN32' with '-DUNICODE -D_UNICODE'
589"VC-WIN32","cl:-W3 -Gs0 -GF -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -D_CRT_SECURE_NO_DEPRECATE:::WIN32::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${x86_asm}:win32n:win32",
590# Unified CE target
591"debug-VC-WIN32","cl:-W3 -Gs0 -GF -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -D_CRT_SECURE_NO_DEPRECATE:::WIN32::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${x86_asm}:win32n:win32",
592"VC-CE","cl::::WINCE::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
593
594# Borland C++ 4.5
595"BC-32","bcc32::::WIN32::BN_LLONG DES_PTR RC4_INDEX EXPORT_VAR_AS_FN:${no_asm}:win32",
596
597# MinGW
598"mingw", "gcc:-mno-cygwin -DL_ENDIAN -DWIN32_LEAN_AND_MEAN -fomit-frame-pointer -O3 -march=i486 -Wall::-D_MT:MINGW32:-lws2_32 -lgdi32 -lcrypt32:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts} EXPORT_VAR_AS_FN:${x86_asm}:coff:win32:cygwin-shared:-D_WINDLL -DOPENSSL_USE_APPLINK:-mno-cygwin:.dll.a",
599# As for OPENSSL_USE_APPLINK. Applink makes it possible to use .dll
600# compiled with one compiler with application compiled with another
601# compiler. It's possible to engage Applink support in mingw64 build,
602# but it's not done, because till mingw64 supports structured exception
603# handling, one can't seriously consider its binaries for using with
604# non-mingw64 run-time environment. And as mingw64 is always consistent
605# with itself, Applink is never engaged and can as well be omitted.
606"mingw64", "gcc:-mno-cygwin -DL_ENDIAN -O3 -Wall -DWIN32_LEAN_AND_MEAN -DUNICODE -D_UNICODE::-D_MT:MINGW64:-lws2_32 -lgdi32 -lcrypt32:SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:${x86_64_asm}:mingw64:win32:cygwin-shared:-D_WINDLL:-mno-cygwin:.dll.a",
607
608# UWIN
609"UWIN", "cc:-DTERMIOS -DL_ENDIAN -O -Wall:::UWIN::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
610
611# Cygwin
612"Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall:::CYGWIN::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:coff:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
613"Cygwin-x86_64", "gcc:-DTERMIOS -DL_ENDIAN -O3 -Wall:::CYGWIN::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:mingw64:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
614
615# NetWare from David Ward (dsward@novell.com)
616# requires either MetroWerks NLM development tools, or gcc / nlmconv
617# NetWare defaults socket bio to WinSock sockets. However,
618# the builds can be configured to use BSD sockets instead.
619# netware-clib => legacy CLib c-runtime support
620"netware-clib", "mwccnlm::::::${x86_gcc_opts}::",
621"netware-clib-bsdsock", "mwccnlm::::::${x86_gcc_opts}::",
622"netware-clib-gcc", "i586-netware-gcc:-nostdinc -I/ndk/nwsdk/include/nlm -I/ndk/ws295sdk/include -DL_ENDIAN -DNETWARE_CLIB -DOPENSSL_SYSNAME_NETWARE -O2 -Wall:::::${x86_gcc_opts}::",
623"netware-clib-bsdsock-gcc", "i586-netware-gcc:-nostdinc -I/ndk/nwsdk/include/nlm -DNETWARE_BSDSOCK -DNETDB_USE_INTERNET -DL_ENDIAN -DNETWARE_CLIB -DOPENSSL_SYSNAME_NETWARE -O2 -Wall:::::${x86_gcc_opts}::",
624# netware-libc => LibC/NKS support
625"netware-libc", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
626"netware-libc-bsdsock", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
627"netware-libc-gcc", "i586-netware-gcc:-nostdinc -I/ndk/libc/include -I/ndk/libc/include/winsock -DL_ENDIAN -DNETWARE_LIBC -DOPENSSL_SYSNAME_NETWARE -DTERMIO -O2 -Wall:::::BN_LLONG ${x86_gcc_opts}::",
628"netware-libc-bsdsock-gcc", "i586-netware-gcc:-nostdinc -I/ndk/libc/include -DNETWARE_BSDSOCK -DL_ENDIAN -DNETWARE_LIBC -DOPENSSL_SYSNAME_NETWARE -DTERMIO -O2 -Wall:::::BN_LLONG ${x86_gcc_opts}::",
629
630# DJGPP
631"DJGPP", "gcc:-I/dev/env/WATT_ROOT/inc -DTERMIO -DL_ENDIAN -fomit-frame-pointer -O2 -Wall:::MSDOS:-L/dev/env/WATT_ROOT/lib -lwatt:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out:",
632
633# Ultrix from Bernhard Simon <simon@zid.tuwien.ac.at>
634"ultrix-cc","cc:-std1 -O -Olimit 2500 -DL_ENDIAN::(unknown):::::::",
635"ultrix-gcc","gcc:-O3 -DL_ENDIAN::(unknown):::BN_LLONG::::",
636# K&R C is no longer supported; you need gcc on old Ultrix installations
637##"ultrix","cc:-O2 -DNOPROTO -DNOCONST -DL_ENDIAN::(unknown):::::::",
638
639##### MacOS X (a.k.a. Rhapsody or Darwin) setup
640"rhapsody-ppc-cc","cc:-O3 -DB_ENDIAN::(unknown):MACOSX_RHAPSODY::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}::",
641"darwin-ppc-cc","cc:-arch ppc -O3 -DB_ENDIAN -Wa,-force_cpusubtype_ALL::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc32_asm}:osx32:dlfcn:darwin-shared:-fPIC -fno-common:-arch ppc -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
642"darwin64-ppc-cc","cc:-arch ppc64 -O3 -DB_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc64_asm}:osx64:dlfcn:darwin-shared:-fPIC -fno-common:-arch ppc64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
643"darwin-i386-cc","cc:-arch i386 -O3 -fomit-frame-pointer -DL_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_INT RC4_CHUNK DES_UNROLL BF_PTR:".eval{my $asm=$x86_asm;$asm=~s/cast\-586\.o//;$asm}.":macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch i386 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
644"debug-darwin-i386-cc","cc:-arch i386 -g3 -DL_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_INT RC4_CHUNK DES_UNROLL BF_PTR:${x86_asm}:macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch i386 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
645"darwin64-x86_64-cc","cc:-arch x86_64 -O3 -DL_ENDIAN -Wall::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:".eval{my $asm=$x86_64_asm;$asm=~s/rc4\-[^:]+//;$asm}.":macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch x86_64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
646"debug-darwin64-x86_64-cc","cc:-arch x86_64 -ggdb -g2 -O0 -DL_ENDIAN -Wall::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:".eval{my $asm=$x86_64_asm;$asm=~s/rc4\-[^:]+//;$asm}.":macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch x86_64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
647"debug-darwin-ppc-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DB_ENDIAN -g -Wall -O::-D_REENTRANT:MACOSX::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc32_asm}:osx32:dlfcn:darwin-shared:-fPIC:-dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
648# iPhoneOS/iOS
649"iphoneos-cross","llvm-gcc:-O3 -isysroot \$(CROSS_TOP)/SDKs/\$(CROSS_SDK) -fomit-frame-pointer -fno-common::-D_REENTRANT:iOS:-Wl,-search_paths_first%:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:darwin-shared:-fPIC -fno-common:-dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
650
651##### A/UX
652"aux3-gcc","gcc:-O2 -DTERMIO::(unknown):AUX:-lbsd:RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
653
654##### Sony NEWS-OS 4.x
655"newsos4-gcc","gcc:-O -DB_ENDIAN::(unknown):NEWS4:-lmld -liberty:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::",
656
657##### GNU Hurd
658"hurd-x86",  "gcc:-DL_ENDIAN -O3 -fomit-frame-pointer -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC",
659
660##### OS/2 EMX
661"OS2-EMX", "gcc::::::::",
662
663##### VxWorks for various targets
664"vxworks-ppc60x","ccppc:-D_REENTRANT -mrtp -mhard-float -mstrict-align -fno-implicit-fp -DPPC32_fp60x -O2 -fstrength-reduce -fno-builtin -fno-strict-aliasing -Wall -DCPU=PPC32 -DTOOL_FAMILY=gnu -DTOOL=gnu -I\$(WIND_BASE)/target/usr/h -I\$(WIND_BASE)/target/usr/h/wrn/coreip:::VXWORKS:-Wl,--defsym,__wrs_rtp_base=0xe0000000 -L \$(WIND_BASE)/target/usr/lib/ppc/PPC32/common:::::",
665"vxworks-ppcgen","ccppc:-D_REENTRANT -mrtp -msoft-float -mstrict-align -O1 -fno-builtin -fno-strict-aliasing -Wall -DCPU=PPC32 -DTOOL_FAMILY=gnu -DTOOL=gnu -I\$(WIND_BASE)/target/usr/h -I\$(WIND_BASE)/target/usr/h/wrn/coreip:::VXWORKS:-Wl,--defsym,__wrs_rtp_base=0xe0000000 -L \$(WIND_BASE)/target/usr/lib/ppc/PPC32/sfcommon:::::",
666"vxworks-ppc405","ccppc:-g -msoft-float -mlongcall -DCPU=PPC405 -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
667"vxworks-ppc750","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h \$(DEBUG_FLAG):::VXWORKS:-r:::::",
668"vxworks-ppc750-debug","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DDEBUG -g:::VXWORKS:-r:::::",
669"vxworks-ppc860","ccppc:-nostdinc -msoft-float -DCPU=PPC860 -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
670"vxworks-simlinux","ccpentium:-B\$(WIND_BASE)/host/\$(WIND_HOST_TYPE)/lib/gcc-lib/ -D_VSB_CONFIG_FILE=\"\$(WIND_BASE)/target/lib/h/config/vsbConfig.h\" -DL_ENDIAN -DCPU=SIMLINUX -DTOOL_FAMILY=gnu -DTOOL=gnu -fno-builtin -fno-defer-pop -DNO_STRINGS_H -I\$(WIND_BASE)/target/h -I\$(WIND_BASE)/target/h/wrn/coreip -DOPENSSL_NO_HW_PADLOCK:::VXWORKS:-r::${no_asm}::::::ranlibpentium:",
671"vxworks-mips","ccmips:-mrtp -mips2 -O -G 0 -B\$(WIND_BASE)/host/\$(WIND_HOST_TYPE)/lib/gcc-lib/ -D_VSB_CONFIG_FILE=\"\$(WIND_BASE)/target/lib/h/config/vsbConfig.h\" -DCPU=MIPS32 -msoft-float -mno-branch-likely -DTOOL_FAMILY=gnu -DTOOL=gnu -fno-builtin -fno-defer-pop -DNO_STRINGS_H -I\$(WIND_BASE)/target/usr/h -I\$(WIND_BASE)/target/h/wrn/coreip::-D_REENTRANT:VXWORKS:-Wl,--defsym,__wrs_rtp_base=0xe0000000 -L \$(WIND_BASE)/target/usr/lib/mips/MIPSI32/sfcommon::${mips32_asm}:o32::::::ranlibmips:",
672
673##### Compaq Non-Stop Kernel (Tandem)
674"tandem-c89","c89:-Ww -D__TANDEM -D_XOPEN_SOURCE -D_XOPEN_SOURCE_EXTENDED=1 -D_TANDEM_SOURCE -DB_ENDIAN::(unknown):::THIRTY_TWO_BIT:::",
675
676# uClinux
677"uClinux-dist","$ENV{'CC'}:\$(CFLAGS)::-D_REENTRANT::\$(LDFLAGS) \$(LDLIBS):BN_LLONG:${no_asm}:$ENV{'LIBSSL_dlfcn'}:linux-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):$ENV{'RANLIB'}::",
678"uClinux-dist64","$ENV{'CC'}:\$(CFLAGS)::-D_REENTRANT::\$(LDFLAGS) \$(LDLIBS):SIXTY_FOUR_BIT_LONG:${no_asm}:$ENV{'LIBSSL_dlfcn'}:linux-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):$ENV{'RANLIB'}::",
679
680);
681
682my @MK1MF_Builds=qw(VC-WIN64I VC-WIN64A
683		    debug-VC-WIN64I debug-VC-WIN64A
684		    VC-NT VC-CE VC-WIN32 debug-VC-WIN32
685		    BC-32
686		    netware-clib netware-clib-bsdsock
687		    netware-libc netware-libc-bsdsock);
688
689my $idx = 0;
690my $idx_cc = $idx++;
691my $idx_cflags = $idx++;
692my $idx_unistd = $idx++;
693my $idx_thread_cflag = $idx++;
694my $idx_sys_id = $idx++;
695my $idx_lflags = $idx++;
696my $idx_bn_ops = $idx++;
697my $idx_cpuid_obj = $idx++;
698my $idx_bn_obj = $idx++;
699my $idx_ec_obj = $idx++;
700my $idx_des_obj = $idx++;
701my $idx_aes_obj = $idx++;
702my $idx_bf_obj = $idx++;
703my $idx_md5_obj = $idx++;
704my $idx_sha1_obj = $idx++;
705my $idx_cast_obj = $idx++;
706my $idx_rc4_obj = $idx++;
707my $idx_rmd160_obj = $idx++;
708my $idx_rc5_obj = $idx++;
709my $idx_wp_obj = $idx++;
710my $idx_cmll_obj = $idx++;
711my $idx_modes_obj = $idx++;
712my $idx_engines_obj = $idx++;
713my $idx_perlasm_scheme = $idx++;
714my $idx_dso_scheme = $idx++;
715my $idx_shared_target = $idx++;
716my $idx_shared_cflag = $idx++;
717my $idx_shared_ldflag = $idx++;
718my $idx_shared_extension = $idx++;
719my $idx_ranlib = $idx++;
720my $idx_arflags = $idx++;
721my $idx_multilib = $idx++;
722
723my $prefix="";
724my $libdir="";
725my $openssldir="";
726my $exe_ext="";
727my $install_prefix= "$ENV{'INSTALL_PREFIX'}";
728my $cross_compile_prefix="";
729my $fipsdir="/usr/local/ssl/fips-2.0";
730my $fipslibdir="";
731my $baseaddr="0xFB00000";
732my $no_threads=0;
733my $threads=0;
734my $no_shared=0; # but "no-shared" is default
735my $zlib=1;      # but "no-zlib" is default
736my $no_krb5=0;   # but "no-krb5" is implied unless "--with-krb5-..." is used
737my $no_rfc3779=1; # but "no-rfc3779" is default
738my $no_asm=0;
739my $no_dso=0;
740my $no_gmp=0;
741my @skip=();
742my $Makefile="Makefile";
743my $des_locl="crypto/des/des_locl.h";
744my $des	="crypto/des/des.h";
745my $bn	="crypto/bn/bn.h";
746my $md2	="crypto/md2/md2.h";
747my $rc4	="crypto/rc4/rc4.h";
748my $rc4_locl="crypto/rc4/rc4_locl.h";
749my $idea	="crypto/idea/idea.h";
750my $rc2	="crypto/rc2/rc2.h";
751my $bf	="crypto/bf/bf_locl.h";
752my $bn_asm	="bn_asm.o";
753my $des_enc="des_enc.o fcrypt_b.o";
754my $aes_enc="aes_core.o aes_cbc.o";
755my $bf_enc	="bf_enc.o";
756my $cast_enc="c_enc.o";
757my $rc4_enc="rc4_enc.o rc4_skey.o";
758my $rc5_enc="rc5_enc.o";
759my $md5_obj="";
760my $sha1_obj="";
761my $rmd160_obj="";
762my $cmll_enc="camellia.o cmll_misc.o cmll_cbc.o";
763my $processor="";
764my $default_ranlib;
765my $perl;
766my $fips=0;
767
768if (exists $ENV{FIPSDIR})
769	{
770	$fipsdir = $ENV{FIPSDIR};
771	$fipsdir =~ s/\/$//;
772	}
773
774# All of the following is disabled by default (RC5 was enabled before 0.9.8):
775
776my %disabled = ( # "what"         => "comment" [or special keyword "experimental"]
777		 "ec_nistp_64_gcc_128" => "default",
778		 "gmp"		  => "default",
779		 "jpake"          => "experimental",
780		 "libunbound"     => "experimental",
781		 "md2"            => "default",
782		 "rc5"            => "default",
783		 "rfc3779"	  => "default",
784		 "sctp"       => "default",
785		 "shared"         => "default",
786		 "ssl-trace"	  => "default",
787		 "store"	  => "experimental",
788		 "unit-test"	  => "default",
789		 "zlib"           => "default",
790		 "zlib-dynamic"   => "default"
791	       );
792my @experimental = ();
793
794# This is what $depflags will look like with the above defaults
795# (we need this to see if we should advise the user to run "make depend"):
796my $default_depflags = " -DOPENSSL_NO_EC_NISTP_64_GCC_128 -DOPENSSL_NO_GMP -DOPENSSL_NO_JPAKE -DOPENSSL_NO_LIBUNBOUND -DOPENSSL_NO_MD2 -DOPENSSL_NO_RC5 -DOPENSSL_NO_RFC3779 -DOPENSSL_NO_SCTP -DOPENSSL_NO_SSL_TRACE -DOPENSSL_NO_STORE -DOPENSSL_NO_UNIT_TEST";
797
798# Explicit "no-..." options will be collected in %disabled along with the defaults.
799# To remove something from %disabled, use "enable-foo" (unless it's experimental).
800# For symmetry, "disable-foo" is a synonym for "no-foo".
801
802# For features called "experimental" here, a more explicit "experimental-foo" is needed to enable.
803# We will collect such requests in @experimental.
804# To avoid accidental use of experimental features, applications will have to use -DOPENSSL_EXPERIMENTAL_FOO.
805
806
807my $no_sse2=0;
808
809&usage if ($#ARGV < 0);
810
811my $flags;
812my $depflags;
813my $openssl_experimental_defines;
814my $openssl_algorithm_defines;
815my $openssl_thread_defines;
816my $openssl_sys_defines="";
817my $openssl_other_defines;
818my $libs;
819my $libkrb5="";
820my $target;
821my $options;
822my $symlink;
823my $make_depend=0;
824my %withargs=();
825
826my @argvcopy=@ARGV;
827my $argvstring="";
828my $argv_unprocessed=1;
829
830while($argv_unprocessed)
831	{
832	$flags="";
833	$depflags="";
834	$openssl_experimental_defines="";
835	$openssl_algorithm_defines="";
836	$openssl_thread_defines="";
837	$openssl_sys_defines="";
838	$openssl_other_defines="";
839	$libs="";
840	$target="";
841	$options="";
842	$symlink=1;
843
844	$argv_unprocessed=0;
845	$argvstring=join(' ',@argvcopy);
846
847PROCESS_ARGS:
848	foreach (@argvcopy)
849		{
850		s /^-no-/no-/; # some people just can't read the instructions
851
852		# rewrite some options in "enable-..." form
853		s /^-?-?shared$/enable-shared/;
854		s /^sctp$/enable-sctp/;
855		s /^threads$/enable-threads/;
856		s /^zlib$/enable-zlib/;
857		s /^zlib-dynamic$/enable-zlib-dynamic/;
858
859		if (/^no-(.+)$/ || /^disable-(.+)$/)
860			{
861			if (!($disabled{$1} eq "experimental"))
862				{
863				if ($1 eq "ssl")
864					{
865					$disabled{"ssl2"} = "option(ssl)";
866					$disabled{"ssl3"} = "option(ssl)";
867					}
868				elsif ($1 eq "tls")
869					{
870					$disabled{"tls1"} = "option(tls)"
871					}
872				elsif ($1 eq "ssl3-method")
873					{
874					$disabled{"ssl3-method"} = "option(ssl)";
875					$disabled{"ssl3"} = "option(ssl)";
876					}
877				else
878					{
879					$disabled{$1} = "option";
880					}
881				}
882			}
883		elsif (/^enable-(.+)$/ || /^experimental-(.+)$/)
884			{
885			my $algo = $1;
886			if ($disabled{$algo} eq "experimental")
887				{
888				die "You are requesting an experimental feature; please say 'experimental-$algo' if you are sure\n"
889					unless (/^experimental-/);
890				push @experimental, $algo;
891				}
892			delete $disabled{$algo};
893
894			$threads = 1 if ($algo eq "threads");
895			}
896		elsif (/^--test-sanity$/)
897			{
898			exit(&test_sanity());
899			}
900		elsif (/^--strict-warnings/)
901			{
902			$strict_warnings = 1;
903			}
904		elsif (/^reconfigure/ || /^reconf/)
905			{
906			if (open(IN,"<$Makefile"))
907				{
908				while (<IN>)
909					{
910					chomp;
911					if (/^CONFIGURE_ARGS=(.*)/)
912						{
913						$argvstring=$1;
914						@argvcopy=split(' ',$argvstring);
915						die "Incorrect data to reconfigure, please do a normal configuration\n"
916							if (grep(/^reconf/,@argvcopy));
917						print "Reconfiguring with: $argvstring\n";
918						$argv_unprocessed=1;
919						close(IN);
920						last PROCESS_ARGS;
921						}
922					}
923				close(IN);
924				}
925			die "Insufficient data to reconfigure, please do a normal configuration\n";
926			}
927		elsif (/^386$/)
928			{ $processor=386; }
929		elsif (/^fips$/)
930			{
931			$fips=1;
932			}
933		elsif (/^rsaref$/)
934			{
935			# No RSAref support any more since it's not needed.
936			# The check for the option is there so scripts aren't
937			# broken
938			}
939		elsif (/^[-+]/)
940			{
941			if (/^--prefix=(.*)$/)
942				{
943				$prefix=$1;
944				}
945			elsif (/^--libdir=(.*)$/)
946				{
947				$libdir=$1;
948				}
949			elsif (/^--openssldir=(.*)$/)
950				{
951				$openssldir=$1;
952				}
953			elsif (/^--install.prefix=(.*)$/)
954				{
955				$install_prefix=$1;
956				}
957			elsif (/^--with-krb5-(dir|lib|include|flavor)=(.*)$/)
958				{
959				$withargs{"krb5-".$1}=$2;
960				}
961			elsif (/^--with-zlib-lib=(.*)$/)
962				{
963				$withargs{"zlib-lib"}=$1;
964				}
965			elsif (/^--with-zlib-include=(.*)$/)
966				{
967				$withargs{"zlib-include"}="-I$1";
968				}
969			elsif (/^--with-fipsdir=(.*)$/)
970				{
971				$fipsdir="$1";
972				}
973			elsif (/^--with-fipslibdir=(.*)$/)
974				{
975				$fipslibdir="$1";
976				}
977			elsif (/^--with-baseaddr=(.*)$/)
978				{
979				$baseaddr="$1";
980				}
981			elsif (/^--cross-compile-prefix=(.*)$/)
982				{
983				$cross_compile_prefix=$1;
984				}
985			elsif (/^-[lL](.*)$/ or /^-Wl,/)
986				{
987				$libs.=$_." ";
988				}
989			else	# common if (/^[-+]/), just pass down...
990				{
991				$_ =~ s/%([0-9a-f]{1,2})/chr(hex($1))/gei;
992				$flags.=$_." ";
993				}
994			}
995		elsif ($_ =~ /^([^:]+):(.+)$/)
996			{
997			eval "\$table{\$1} = \"$2\""; # allow $xxx constructs in the string
998			$target=$1;
999			}
1000		else
1001			{
1002			die "target already defined - $target (offending arg: $_)\n" if ($target ne "");
1003			$target=$_;
1004			}
1005
1006		unless ($_ eq $target || /^no-/ || /^disable-/)
1007			{
1008			# "no-..." follows later after implied disactivations
1009			# have been derived.  (Don't take this too seroiusly,
1010			# we really only write OPTIONS to the Makefile out of
1011			# nostalgia.)
1012
1013			if ($options eq "")
1014				{ $options = $_; }
1015			else
1016				{ $options .= " ".$_; }
1017			}
1018		}
1019	}
1020
1021
1022
1023if ($processor eq "386")
1024	{
1025	$disabled{"sse2"} = "forced";
1026	}
1027
1028if (!defined($withargs{"krb5-flavor"}) || $withargs{"krb5-flavor"} eq "")
1029	{
1030	$disabled{"krb5"} = "krb5-flavor not specified";
1031	}
1032
1033if (!defined($disabled{"zlib-dynamic"}))
1034	{
1035	# "zlib-dynamic" was specifically enabled, so enable "zlib"
1036	delete $disabled{"zlib"};
1037	}
1038
1039if (defined($disabled{"rijndael"}))
1040	{
1041	$disabled{"aes"} = "forced";
1042	}
1043if (defined($disabled{"des"}))
1044	{
1045	$disabled{"mdc2"} = "forced";
1046	}
1047if (defined($disabled{"ec"}))
1048	{
1049	$disabled{"ecdsa"} = "forced";
1050	$disabled{"ecdh"} = "forced";
1051	}
1052
1053# SSL 2.0 requires MD5 and RSA
1054if (defined($disabled{"md5"}) || defined($disabled{"rsa"}))
1055	{
1056	$disabled{"ssl2"} = "forced";
1057	}
1058
1059if ($fips && $fipslibdir eq "")
1060	{
1061	$fipslibdir = $fipsdir . "/lib/";
1062	}
1063
1064# RSAX ENGINE sets default non-FIPS RSA method.
1065if ($fips)
1066	{
1067	$disabled{"rsax"} = "forced";
1068	}
1069
1070# SSL 3.0 and TLS requires MD5 and SHA and either RSA or DSA+DH
1071if (defined($disabled{"md5"}) || defined($disabled{"sha"})
1072    || (defined($disabled{"rsa"})
1073        && (defined($disabled{"dsa"}) || defined($disabled{"dh"}))))
1074	{
1075	$disabled{"ssl3"} = "forced";
1076	$disabled{"tls1"} = "forced";
1077	}
1078
1079if (defined($disabled{"tls1"}))
1080	{
1081	$disabled{"tlsext"} = "forced";
1082	}
1083
1084if (defined($disabled{"ec"}) || defined($disabled{"dsa"})
1085    || defined($disabled{"dh"}))
1086	{
1087	$disabled{"gost"} = "forced";
1088	}
1089
1090# SRP and HEARTBEATS require TLSEXT
1091if (defined($disabled{"tlsext"}))
1092	{
1093	$disabled{"srp"} = "forced";
1094	$disabled{"heartbeats"} = "forced";
1095	}
1096
1097if ($target eq "TABLE") {
1098	foreach $target (sort keys %table) {
1099		print_table_entry($target);
1100	}
1101	exit 0;
1102}
1103
1104if ($target eq "LIST") {
1105	foreach (sort keys %table) {
1106		print;
1107		print "\n";
1108	}
1109	exit 0;
1110}
1111
1112if ($target =~ m/^CygWin32(-.*)$/) {
1113	$target = "Cygwin".$1;
1114}
1115
1116print "Configuring for $target\n";
1117
1118&usage if (!defined($table{$target}));
1119
1120
1121foreach (sort (keys %disabled))
1122	{
1123	$options .= " no-$_";
1124
1125	printf "    no-%-12s %-10s", $_, "[$disabled{$_}]";
1126
1127	if (/^dso$/)
1128		{ $no_dso = 1; }
1129	elsif (/^threads$/)
1130		{ $no_threads = 1; }
1131	elsif (/^shared$/)
1132		{ $no_shared = 1; }
1133	elsif (/^zlib$/)
1134		{ $zlib = 0; }
1135	elsif (/^static-engine$/)
1136		{ }
1137	elsif (/^zlib-dynamic$/)
1138		{ }
1139	elsif (/^symlinks$/)
1140		{ $symlink = 0; }
1141	elsif (/^sse2$/)
1142		{ $no_sse2 = 1; }
1143	else
1144		{
1145		my ($ALGO, $algo);
1146		($ALGO = $algo = $_) =~ tr/[\-a-z]/[_A-Z]/;
1147
1148		if (/^asm$/ || /^err$/ || /^hw$/ || /^hw-/)
1149			{
1150			$openssl_other_defines .= "#define OPENSSL_NO_$ALGO\n";
1151			print " OPENSSL_NO_$ALGO";
1152
1153			if (/^err$/)	{ $flags .= "-DOPENSSL_NO_ERR "; }
1154			elsif (/^asm$/)	{ $no_asm = 1; }
1155			}
1156		else
1157			{
1158			$openssl_algorithm_defines .= "#define OPENSSL_NO_$ALGO\n";
1159			print " OPENSSL_NO_$ALGO";
1160
1161			if (/^krb5$/)
1162				{ $no_krb5 = 1; }
1163			else
1164				{
1165				push @skip, $algo;
1166				# fix-up crypto/directory name(s)
1167				@skip[$#skip]="whrlpool" if $algo eq "whirlpool";
1168				print " (skip dir)";
1169
1170				$depflags .= " -DOPENSSL_NO_$ALGO";
1171				}
1172			}
1173		}
1174
1175	print "\n";
1176	}
1177
1178my $exp_cflags = "";
1179foreach (sort @experimental)
1180	{
1181	my $ALGO;
1182	($ALGO = $_) =~ tr/[a-z]/[A-Z]/;
1183
1184	# opensslconf.h will set OPENSSL_NO_... unless OPENSSL_EXPERIMENTAL_... is defined
1185	$openssl_experimental_defines .= "#define OPENSSL_NO_$ALGO\n";
1186	$exp_cflags .= " -DOPENSSL_EXPERIMENTAL_$ALGO";
1187	}
1188
1189my $IsMK1MF=scalar grep /^$target$/,@MK1MF_Builds;
1190
1191$exe_ext=".exe" if ($target eq "Cygwin" || $target eq "DJGPP" || $target =~ /^mingw/);
1192$exe_ext=".nlm" if ($target =~ /netware/);
1193$exe_ext=".pm"  if ($target =~ /vos/);
1194$openssldir="/usr/local/ssl" if ($openssldir eq "" and $prefix eq "");
1195$prefix=$openssldir if $prefix eq "";
1196
1197$default_ranlib= &which("ranlib") or $default_ranlib="true";
1198$perl=$ENV{'PERL'} or $perl=&which("perl5") or $perl=&which("perl")
1199  or $perl="perl";
1200my $make = $ENV{'MAKE'} || "make";
1201
1202$cross_compile_prefix=$ENV{'CROSS_COMPILE'} if $cross_compile_prefix eq "";
1203
1204chop $openssldir if $openssldir =~ /\/$/;
1205chop $prefix if $prefix =~ /.\/$/;
1206
1207$openssldir=$prefix . "/ssl" if $openssldir eq "";
1208$openssldir=$prefix . "/" . $openssldir if $openssldir !~ /(^\/|^[a-zA-Z]:[\\\/])/;
1209
1210
1211print "IsMK1MF=$IsMK1MF\n";
1212
1213my @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
1214my $cc = $fields[$idx_cc];
1215# Allow environment CC to override compiler...
1216if($ENV{CC}) {
1217    $cc = $ENV{CC};
1218}
1219
1220my $cflags = $fields[$idx_cflags];
1221my $unistd = $fields[$idx_unistd];
1222my $thread_cflag = $fields[$idx_thread_cflag];
1223my $sys_id = $fields[$idx_sys_id];
1224my $lflags = $fields[$idx_lflags];
1225my $bn_ops = $fields[$idx_bn_ops];
1226my $cpuid_obj = $fields[$idx_cpuid_obj];
1227my $bn_obj = $fields[$idx_bn_obj];
1228my $ec_obj = $fields[$idx_ec_obj];
1229my $des_obj = $fields[$idx_des_obj];
1230my $aes_obj = $fields[$idx_aes_obj];
1231my $bf_obj = $fields[$idx_bf_obj];
1232my $md5_obj = $fields[$idx_md5_obj];
1233my $sha1_obj = $fields[$idx_sha1_obj];
1234my $cast_obj = $fields[$idx_cast_obj];
1235my $rc4_obj = $fields[$idx_rc4_obj];
1236my $rmd160_obj = $fields[$idx_rmd160_obj];
1237my $rc5_obj = $fields[$idx_rc5_obj];
1238my $wp_obj = $fields[$idx_wp_obj];
1239my $cmll_obj = $fields[$idx_cmll_obj];
1240my $modes_obj = $fields[$idx_modes_obj];
1241my $engines_obj = $fields[$idx_engines_obj];
1242my $perlasm_scheme = $fields[$idx_perlasm_scheme];
1243my $dso_scheme = $fields[$idx_dso_scheme];
1244my $shared_target = $fields[$idx_shared_target];
1245my $shared_cflag = $fields[$idx_shared_cflag];
1246my $shared_ldflag = $fields[$idx_shared_ldflag];
1247my $shared_extension = $fields[$idx_shared_extension];
1248my $ranlib = $ENV{'RANLIB'} || $fields[$idx_ranlib];
1249my $ar = $ENV{'AR'} || "ar";
1250my $arflags = $fields[$idx_arflags];
1251my $multilib = $fields[$idx_multilib];
1252
1253# if $prefix/lib$multilib is not an existing directory, then
1254# assume that it's not searched by linker automatically, in
1255# which case adding $multilib suffix causes more grief than
1256# we're ready to tolerate, so don't...
1257$multilib="" if !-d "$prefix/lib$multilib";
1258
1259$libdir="lib$multilib" if $libdir eq "";
1260
1261$cflags = "$cflags$exp_cflags";
1262
1263# '%' in $lflags is used to split flags to "pre-" and post-flags
1264my ($prelflags,$postlflags)=split('%',$lflags);
1265if (defined($postlflags))	{ $lflags=$postlflags;	}
1266else				{ $lflags=$prelflags; undef $prelflags;	}
1267
1268if ($target =~ /^mingw/ && `$cc --target-help 2>&1` !~ m/\-mno\-cygwin/m)
1269	{
1270	$cflags =~ s/\-mno\-cygwin\s*//;
1271	$shared_ldflag =~ s/\-mno\-cygwin\s*//;
1272	}
1273
1274if ($target =~ /linux.*\-mips/ && !$no_asm && $flags !~ /\-m(ips|arch=)/) {
1275	# minimally required architecture flags for assembly modules
1276	$cflags="-mips2 $cflags" if ($target =~ /mips32/);
1277	$cflags="-mips3 $cflags" if ($target =~ /mips64/);
1278}
1279
1280my $no_shared_warn=0;
1281my $no_user_cflags=0;
1282
1283if ($flags ne "")	{ $cflags="$flags$cflags"; }
1284else			{ $no_user_cflags=1;       }
1285
1286# Kerberos settings.  The flavor must be provided from outside, either through
1287# the script "config" or manually.
1288if (!$no_krb5)
1289	{
1290	my ($lresolv, $lpath, $lext);
1291	if ($withargs{"krb5-flavor"} =~ /^[Hh]eimdal$/)
1292		{
1293		die "Sorry, Heimdal is currently not supported\n";
1294		}
1295	##### HACK to force use of Heimdal.
1296	##### WARNING: Since we don't really have adequate support for Heimdal,
1297	#####          using this will break the build.  You'll have to make
1298	#####          changes to the source, and if you do, please send
1299	#####          patches to openssl-dev@openssl.org
1300	if ($withargs{"krb5-flavor"} =~ /^force-[Hh]eimdal$/)
1301		{
1302		warn "Heimdal isn't really supported.  Your build WILL break\n";
1303		warn "If you fix the problems, please send a patch to openssl-dev\@openssl.org\n";
1304		$withargs{"krb5-dir"} = "/usr/heimdal"
1305			if $withargs{"krb5-dir"} eq "";
1306		$withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
1307			"/lib -lgssapi -lkrb5 -lcom_err"
1308			if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1309		$cflags="-DKRB5_HEIMDAL $cflags";
1310		}
1311	if ($withargs{"krb5-flavor"} =~ /^[Mm][Ii][Tt]/)
1312		{
1313		$withargs{"krb5-dir"} = "/usr/kerberos"
1314			if $withargs{"krb5-dir"} eq "";
1315		$withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
1316			"/lib -lgssapi_krb5 -lkrb5 -lcom_err -lk5crypto"
1317			if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
1318		$cflags="-DKRB5_MIT $cflags";
1319		$withargs{"krb5-flavor"} =~ s/^[Mm][Ii][Tt][._-]*//;
1320		if ($withargs{"krb5-flavor"} =~ /^1[._-]*[01]/)
1321			{
1322			$cflags="-DKRB5_MIT_OLD11 $cflags";
1323			}
1324		}
1325	LRESOLV:
1326	foreach $lpath ("/lib", "/usr/lib")
1327		{
1328		foreach $lext ("a", "so")
1329			{
1330			$lresolv = "$lpath/libresolv.$lext";
1331			last LRESOLV	if (-r "$lresolv");
1332			$lresolv = "";
1333			}
1334		}
1335	$withargs{"krb5-lib"} .= " -lresolv"
1336		if ("$lresolv" ne "");
1337	$withargs{"krb5-include"} = "-I".$withargs{"krb5-dir"}."/include"
1338		if $withargs{"krb5-include"} eq "" &&
1339		   $withargs{"krb5-dir"} ne "";
1340	}
1341
1342# The DSO code currently always implements all functions so that no
1343# applications will have to worry about that from a compilation point
1344# of view. However, the "method"s may return zero unless that platform
1345# has support compiled in for them. Currently each method is enabled
1346# by a define "DSO_<name>" ... we translate the "dso_scheme" config
1347# string entry into using the following logic;
1348my $dso_cflags;
1349if (!$no_dso && $dso_scheme ne "")
1350	{
1351	$dso_scheme =~ tr/[a-z]/[A-Z]/;
1352	if ($dso_scheme eq "DLFCN")
1353		{
1354		$dso_cflags = "-DDSO_DLFCN -DHAVE_DLFCN_H";
1355		}
1356	elsif ($dso_scheme eq "DLFCN_NO_H")
1357		{
1358		$dso_cflags = "-DDSO_DLFCN";
1359		}
1360	else
1361		{
1362		$dso_cflags = "-DDSO_$dso_scheme";
1363		}
1364	$cflags = "$dso_cflags $cflags";
1365	}
1366
1367my $thread_cflags;
1368my $thread_defines;
1369if ($thread_cflag ne "(unknown)" && !$no_threads)
1370	{
1371	# If we know how to do it, support threads by default.
1372	$threads = 1;
1373	}
1374if ($thread_cflag eq "(unknown)" && $threads)
1375	{
1376	# If the user asked for "threads", [s]he is also expected to
1377	# provide any system-dependent compiler options that are
1378	# necessary.
1379	if ($no_user_cflags)
1380		{
1381		print "You asked for multi-threading support, but didn't\n";
1382		print "provide any system-specific compiler options\n";
1383		exit(1);
1384		}
1385	$thread_cflags="-DOPENSSL_THREADS $cflags" ;
1386	$thread_defines .= "#define OPENSSL_THREADS\n";
1387	}
1388else
1389	{
1390	$thread_cflags="-DOPENSSL_THREADS $thread_cflag $cflags";
1391	$thread_defines .= "#define OPENSSL_THREADS\n";
1392#	my $def;
1393#	foreach $def (split ' ',$thread_cflag)
1394#		{
1395#		if ($def =~ s/^-D// && $def !~ /^_/)
1396#			{
1397#			$thread_defines .= "#define $def\n";
1398#			}
1399#		}
1400	}
1401
1402$lflags="$libs$lflags" if ($libs ne "");
1403
1404if ($no_asm)
1405	{
1406	$cpuid_obj=$bn_obj=$ec_obj=
1407	$des_obj=$aes_obj=$bf_obj=$cast_obj=$rc4_obj=$rc5_obj=$cmll_obj=
1408	$modes_obj=$sha1_obj=$md5_obj=$rmd160_obj=$wp_obj=$engines_obj="";
1409	}
1410
1411if (!$no_shared)
1412	{
1413	$cast_obj="";	# CAST assembler is not PIC
1414	}
1415
1416if ($threads)
1417	{
1418	$cflags=$thread_cflags;
1419	$openssl_thread_defines .= $thread_defines;
1420	}
1421
1422if ($zlib)
1423	{
1424	$cflags = "-DZLIB $cflags";
1425	if (defined($disabled{"zlib-dynamic"}))
1426		{
1427		if (defined($withargs{"zlib-lib"}))
1428			{
1429			$lflags = "$lflags -L" . $withargs{"zlib-lib"} . " -lz";
1430			}
1431		else
1432			{
1433			$lflags = "$lflags -lz";
1434			}
1435		}
1436	else
1437		{
1438		$cflags = "-DZLIB_SHARED $cflags";
1439		}
1440	}
1441
1442# You will find shlib_mark1 and shlib_mark2 explained in Makefile.org
1443my $shared_mark = "";
1444if ($shared_target eq "")
1445	{
1446	$no_shared_warn = 1 if !$no_shared;
1447	$no_shared = 1;
1448	}
1449if (!$no_shared)
1450	{
1451	if ($shared_cflag ne "")
1452		{
1453		$cflags = "$shared_cflag -DOPENSSL_PIC $cflags";
1454		}
1455	}
1456
1457if (!$IsMK1MF)
1458	{
1459	# add {no-}static-engine to options to allow mkdef.pl to work without extra arguments
1460	if ($no_shared)
1461		{
1462		$openssl_other_defines.="#define OPENSSL_NO_DYNAMIC_ENGINE\n";
1463		$options.=" static-engine";
1464		}
1465	else
1466		{
1467		$openssl_other_defines.="#define OPENSSL_NO_STATIC_ENGINE\n";
1468		$options.=" no-static-engine";
1469		}
1470	}
1471
1472$cpuid_obj.=" uplink.o uplink-x86.o" if ($cflags =~ /\-DOPENSSL_USE_APPLINK/);
1473
1474#
1475# Platform fix-ups
1476#
1477if ($target =~ /\-icc$/)	# Intel C compiler
1478	{
1479	my $iccver=0;
1480	if (open(FD,"$cc -V 2>&1 |"))
1481		{
1482		while(<FD>) { $iccver=$1 if (/Version ([0-9]+)\./); }
1483		close(FD);
1484		}
1485	if ($iccver>=8)
1486		{
1487		$cflags=~s/\-KPIC/-fPIC/;
1488		# Eliminate unnecessary dependency from libirc.a. This is
1489		# essential for shared library support, as otherwise
1490		# apps/openssl can end up in endless loop upon startup...
1491		$cflags.=" -Dmemcpy=__builtin_memcpy -Dmemset=__builtin_memset";
1492		}
1493	if ($iccver>=9)
1494		{
1495		$lflags.=" -i-static";
1496		$lflags=~s/\-no_cpprt/-no-cpprt/;
1497		}
1498	if ($iccver>=10)
1499		{
1500		$lflags=~s/\-i\-static/-static-intel/;
1501		}
1502	if ($iccver>=11)
1503		{
1504		$cflags.=" -no-intel-extensions";	# disable Cilk
1505		$lflags=~s/\-no\-cpprt/-no-cxxlib/;
1506		}
1507	}
1508
1509# Unlike other OSes (like Solaris, Linux, Tru64, IRIX) BSD run-time
1510# linkers (tested OpenBSD, NetBSD and FreeBSD) "demand" RPATH set on
1511# .so objects. Apparently application RPATH is not global and does
1512# not apply to .so linked with other .so. Problem manifests itself
1513# when libssl.so fails to load libcrypto.so. One can argue that we
1514# should engrave this into Makefile.shared rules or into BSD-* config
1515# lines above. Meanwhile let's try to be cautious and pass -rpath to
1516# linker only when --prefix is not /usr.
1517if ($target =~ /^BSD\-/)
1518	{
1519	$shared_ldflag.=" -Wl,-rpath,\$\$(LIBRPATH)" if ($prefix !~ m|^/usr[/]*$|);
1520	}
1521
1522if ($sys_id ne "")
1523	{
1524	#$cflags="-DOPENSSL_SYSNAME_$sys_id $cflags";
1525	$openssl_sys_defines="#define OPENSSL_SYSNAME_$sys_id\n";
1526	}
1527
1528if ($ranlib eq "")
1529	{
1530	$ranlib = $default_ranlib;
1531	}
1532
1533#my ($bn1)=split(/\s+/,$bn_obj);
1534#$bn1 = "" unless defined $bn1;
1535#$bn1=$bn_asm unless ($bn1 =~ /\.o$/);
1536#$bn_obj="$bn1";
1537
1538$cpuid_obj="" if ($processor eq "386");
1539
1540$bn_obj = $bn_asm unless $bn_obj ne "";
1541# bn-586 is the only one implementing bn_*_part_words
1542$cflags.=" -DOPENSSL_BN_ASM_PART_WORDS" if ($bn_obj =~ /bn-586/);
1543$cflags.=" -DOPENSSL_IA32_SSE2" if (!$no_sse2 && $bn_obj =~ /86/);
1544
1545$cflags.=" -DOPENSSL_BN_ASM_MONT" if ($bn_obj =~ /-mont/);
1546$cflags.=" -DOPENSSL_BN_ASM_MONT5" if ($bn_obj =~ /-mont5/);
1547$cflags.=" -DOPENSSL_BN_ASM_GF2m" if ($bn_obj =~ /-gf2m/);
1548
1549if ($fips)
1550	{
1551	$openssl_other_defines.="#define OPENSSL_FIPS\n";
1552	$cflags .= " -I\$(FIPSDIR)/include";
1553	}
1554
1555$cpuid_obj="mem_clr.o"	unless ($cpuid_obj =~ /\.o$/);
1556$des_obj=$des_enc	unless ($des_obj =~ /\.o$/);
1557$bf_obj=$bf_enc		unless ($bf_obj =~ /\.o$/);
1558$cast_obj=$cast_enc	unless ($cast_obj =~ /\.o$/);
1559$rc4_obj=$rc4_enc	unless ($rc4_obj =~ /\.o$/);
1560$rc5_obj=$rc5_enc	unless ($rc5_obj =~ /\.o$/);
1561if ($sha1_obj =~ /\.o$/)
1562	{
1563#	$sha1_obj=$sha1_enc;
1564	$cflags.=" -DSHA1_ASM"   if ($sha1_obj =~ /sx86/ || $sha1_obj =~ /sha1/);
1565	$cflags.=" -DSHA256_ASM" if ($sha1_obj =~ /sha256/);
1566	$cflags.=" -DSHA512_ASM" if ($sha1_obj =~ /sha512/);
1567	if ($sha1_obj =~ /sse2/)
1568	    {	if ($no_sse2)
1569		{   $sha1_obj =~ s/\S*sse2\S+//;        }
1570		elsif ($cflags !~ /OPENSSL_IA32_SSE2/)
1571		{   $cflags.=" -DOPENSSL_IA32_SSE2";    }
1572	    }
1573	}
1574if ($md5_obj =~ /\.o$/)
1575	{
1576#	$md5_obj=$md5_enc;
1577	$cflags.=" -DMD5_ASM";
1578	}
1579if ($rmd160_obj =~ /\.o$/)
1580	{
1581#	$rmd160_obj=$rmd160_enc;
1582	$cflags.=" -DRMD160_ASM";
1583	}
1584if ($aes_obj =~ /\.o$/)
1585	{
1586	$cflags.=" -DAES_ASM" if ($aes_obj =~ m/\baes\-/);;
1587	# aes-ctr.o is not a real file, only indication that assembler
1588	# module implements AES_ctr32_encrypt...
1589	$cflags.=" -DAES_CTR_ASM" if ($aes_obj =~ s/\s*aes\-ctr\.o//);
1590	# aes-xts.o indicates presense of AES_xts_[en|de]crypt...
1591	$cflags.=" -DAES_XTS_ASM" if ($aes_obj =~ s/\s*aes\-xts\.o//);
1592	$aes_obj =~ s/\s*(vpaes|aesni)\-x86\.o//g if ($no_sse2);
1593	$cflags.=" -DVPAES_ASM" if ($aes_obj =~ m/vpaes/);
1594	$cflags.=" -DBSAES_ASM" if ($aes_obj =~ m/bsaes/);
1595	}
1596else	{
1597	$aes_obj=$aes_enc;
1598	}
1599$wp_obj="" if ($wp_obj =~ /mmx/ && $processor eq "386");
1600if ($wp_obj =~ /\.o$/ && !$disabled{"whirlpool"})
1601	{
1602	$cflags.=" -DWHIRLPOOL_ASM";
1603	}
1604else	{
1605	$wp_obj="wp_block.o";
1606	}
1607$cmll_obj=$cmll_enc	unless ($cmll_obj =~ /.o$/);
1608if ($modes_obj =~ /ghash\-/)
1609	{
1610	$cflags.=" -DGHASH_ASM";
1611	}
1612if ($ec_obj =~ /ecp_nistz256/)
1613	{
1614	$cflags.=" -DECP_NISTZ256_ASM";
1615	}
1616
1617# "Stringify" the C flags string.  This permits it to be made part of a string
1618# and works as well on command lines.
1619$cflags =~ s/([\\\"])/\\\1/g;
1620
1621my $version = "unknown";
1622my $version_num = "unknown";
1623my $major = "unknown";
1624my $minor = "unknown";
1625my $shlib_version_number = "unknown";
1626my $shlib_version_history = "unknown";
1627my $shlib_major = "unknown";
1628my $shlib_minor = "unknown";
1629
1630open(IN,'<crypto/opensslv.h') || die "unable to read opensslv.h:$!\n";
1631while (<IN>)
1632	{
1633	$version=$1 if /OPENSSL.VERSION.TEXT.*OpenSSL (\S+) /;
1634	$version_num=$1 if /OPENSSL.VERSION.NUMBER.*0x(\S+)/;
1635	$shlib_version_number=$1 if /SHLIB_VERSION_NUMBER *"([^"]+)"/;
1636	$shlib_version_history=$1 if /SHLIB_VERSION_HISTORY *"([^"]*)"/;
1637	}
1638close(IN);
1639if ($shlib_version_history ne "") { $shlib_version_history .= ":"; }
1640
1641if ($version =~ /(^[0-9]*)\.([0-9\.]*)/)
1642	{
1643	$major=$1;
1644	$minor=$2;
1645	}
1646
1647if ($shlib_version_number =~ /(^[0-9]*)\.([0-9\.]*)/)
1648	{
1649	$shlib_major=$1;
1650	$shlib_minor=$2;
1651	}
1652
1653my $ecc = $cc;
1654$ecc = "clang" if `$cc --version 2>&1` =~ /clang/;
1655
1656if ($strict_warnings)
1657	{
1658	my $wopt;
1659	die "ERROR --strict-warnings requires gcc or clang" unless ($ecc =~ /gcc$/ or $ecc =~ /clang$/);
1660	foreach $wopt (split /\s+/, $gcc_devteam_warn)
1661		{
1662		$cflags .= " $wopt" unless ($cflags =~ /(^|\s)$wopt(\s|$)/)
1663		}
1664	if ($ecc eq "clang")
1665		{
1666		foreach $wopt (split /\s+/, $clang_devteam_warn)
1667			{
1668			$cflags .= " $wopt" unless ($cflags =~ /(^|\s)$wopt(\s|$)/)
1669			}
1670		}
1671	}
1672
1673open(IN,'<Makefile.org') || die "unable to read Makefile.org:$!\n";
1674unlink("$Makefile.new") || die "unable to remove old $Makefile.new:$!\n" if -e "$Makefile.new";
1675open(OUT,">$Makefile.new") || die "unable to create $Makefile.new:$!\n";
1676print OUT "### Generated automatically from Makefile.org by Configure.\n\n";
1677my $sdirs=0;
1678while (<IN>)
1679	{
1680	chomp;
1681	$sdirs = 1 if /^SDIRS=/;
1682	if ($sdirs) {
1683		my $dir;
1684		foreach $dir (@skip) {
1685			s/(\s)$dir /$1/;
1686			s/\s$dir$//;
1687			}
1688		}
1689	$sdirs = 0 unless /\\$/;
1690        s/engines // if (/^DIRS=/ && $disabled{"engine"});
1691	s/ccgost// if (/^ENGDIRS=/ && $disabled{"gost"});
1692	s/^VERSION=.*/VERSION=$version/;
1693	s/^MAJOR=.*/MAJOR=$major/;
1694	s/^MINOR=.*/MINOR=$minor/;
1695	s/^SHLIB_VERSION_NUMBER=.*/SHLIB_VERSION_NUMBER=$shlib_version_number/;
1696	s/^SHLIB_VERSION_HISTORY=.*/SHLIB_VERSION_HISTORY=$shlib_version_history/;
1697	s/^SHLIB_MAJOR=.*/SHLIB_MAJOR=$shlib_major/;
1698	s/^SHLIB_MINOR=.*/SHLIB_MINOR=$shlib_minor/;
1699	s/^SHLIB_EXT=.*/SHLIB_EXT=$shared_extension/;
1700	s/^INSTALLTOP=.*$/INSTALLTOP=$prefix/;
1701	s/^MULTILIB=.*$/MULTILIB=$multilib/;
1702	s/^OPENSSLDIR=.*$/OPENSSLDIR=$openssldir/;
1703	s/^LIBDIR=.*$/LIBDIR=$libdir/;
1704	s/^INSTALL_PREFIX=.*$/INSTALL_PREFIX=$install_prefix/;
1705	s/^PLATFORM=.*$/PLATFORM=$target/;
1706	s/^OPTIONS=.*$/OPTIONS=$options/;
1707	s/^CONFIGURE_ARGS=.*$/CONFIGURE_ARGS=$argvstring/;
1708	if ($cross_compile_prefix)
1709		{
1710		s/^CC=.*$/CROSS_COMPILE= $cross_compile_prefix\nCC= \$\(CROSS_COMPILE\)$cc/;
1711		s/^AR=\s*/AR= \$\(CROSS_COMPILE\)/;
1712		s/^NM=\s*/NM= \$\(CROSS_COMPILE\)/;
1713		s/^RANLIB=\s*/RANLIB= \$\(CROSS_COMPILE\)/;
1714		s/^MAKEDEPPROG=.*$/MAKEDEPPROG= \$\(CROSS_COMPILE\)$cc/ if $cc eq "gcc";
1715		}
1716	else	{
1717		s/^CC=.*$/CC= $cc/;
1718		s/^AR=\s*ar/AR= $ar/;
1719		s/^RANLIB=.*/RANLIB= $ranlib/;
1720		s/^MAKEDEPPROG=.*$/MAKEDEPPROG= $cc/ if $cc eq "gcc";
1721		s/^MAKEDEPPROG=.*$/MAKEDEPPROG= $cc/ if $ecc eq "gcc" || $ecc eq "clang";
1722		}
1723	s/^CFLAG=.*$/CFLAG= $cflags/;
1724	s/^DEPFLAG=.*$/DEPFLAG=$depflags/;
1725	s/^PEX_LIBS=.*$/PEX_LIBS= $prelflags/;
1726	s/^EX_LIBS=.*$/EX_LIBS= $lflags/;
1727	s/^EXE_EXT=.*$/EXE_EXT= $exe_ext/;
1728	s/^CPUID_OBJ=.*$/CPUID_OBJ= $cpuid_obj/;
1729	s/^BN_ASM=.*$/BN_ASM= $bn_obj/;
1730	s/^EC_ASM=.*$/EC_ASM= $ec_obj/;
1731	s/^DES_ENC=.*$/DES_ENC= $des_obj/;
1732	s/^AES_ENC=.*$/AES_ENC= $aes_obj/;
1733	s/^BF_ENC=.*$/BF_ENC= $bf_obj/;
1734	s/^CAST_ENC=.*$/CAST_ENC= $cast_obj/;
1735	s/^RC4_ENC=.*$/RC4_ENC= $rc4_obj/;
1736	s/^RC5_ENC=.*$/RC5_ENC= $rc5_obj/;
1737	s/^MD5_ASM_OBJ=.*$/MD5_ASM_OBJ= $md5_obj/;
1738	s/^SHA1_ASM_OBJ=.*$/SHA1_ASM_OBJ= $sha1_obj/;
1739	s/^RMD160_ASM_OBJ=.*$/RMD160_ASM_OBJ= $rmd160_obj/;
1740	s/^WP_ASM_OBJ=.*$/WP_ASM_OBJ= $wp_obj/;
1741	s/^CMLL_ENC=.*$/CMLL_ENC= $cmll_obj/;
1742	s/^MODES_ASM_OBJ.=*$/MODES_ASM_OBJ= $modes_obj/;
1743	s/^ENGINES_ASM_OBJ.=*$/ENGINES_ASM_OBJ= $engines_obj/;
1744	s/^PERLASM_SCHEME=.*$/PERLASM_SCHEME= $perlasm_scheme/;
1745	s/^PROCESSOR=.*/PROCESSOR= $processor/;
1746	s/^ARFLAGS=.*/ARFLAGS= $arflags/;
1747	s/^PERL=.*/PERL= $perl/;
1748	s/^KRB5_INCLUDES=.*/KRB5_INCLUDES=$withargs{"krb5-include"}/;
1749	s/^LIBKRB5=.*/LIBKRB5=$withargs{"krb5-lib"}/;
1750	s/^LIBZLIB=.*/LIBZLIB=$withargs{"zlib-lib"}/;
1751	s/^ZLIB_INCLUDE=.*/ZLIB_INCLUDE=$withargs{"zlib-include"}/;
1752
1753	s/^FIPSDIR=.*/FIPSDIR=$fipsdir/;
1754	s/^FIPSLIBDIR=.*/FIPSLIBDIR=$fipslibdir/;
1755	s/^FIPSCANLIB=.*/FIPSCANLIB=libcrypto/ if $fips;
1756	s/^BASEADDR=.*/BASEADDR=$baseaddr/;
1757
1758	s/^SHLIB_TARGET=.*/SHLIB_TARGET=$shared_target/;
1759	s/^SHLIB_MARK=.*/SHLIB_MARK=$shared_mark/;
1760	s/^SHARED_LIBS=.*/SHARED_LIBS=\$(SHARED_CRYPTO) \$(SHARED_SSL)/ if (!$no_shared);
1761	if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
1762		{
1763		my $sotmp = $1;
1764		s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/;
1765		}
1766	elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.dylib$/)
1767		{
1768		s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.dylib/;
1769		}
1770	elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
1771		{
1772		my $sotmp = $1;
1773		s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
1774		}
1775	elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.[^\.]*\.dylib$/)
1776		{
1777		s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.\$(SHLIB_MAJOR).dylib .dylib/;
1778		}
1779	s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
1780	print OUT $_."\n";
1781	}
1782close(IN);
1783close(OUT);
1784rename($Makefile,"$Makefile.bak") || die "unable to rename $Makefile\n" if -e $Makefile;
1785rename("$Makefile.new",$Makefile) || die "unable to rename $Makefile.new\n";
1786
1787print "CC            =$cc\n";
1788print "CFLAG         =$cflags\n";
1789print "EX_LIBS       =$lflags\n";
1790print "CPUID_OBJ     =$cpuid_obj\n";
1791print "BN_ASM        =$bn_obj\n";
1792print "EC_ASM        =$ec_obj\n";
1793print "DES_ENC       =$des_obj\n";
1794print "AES_ENC       =$aes_obj\n";
1795print "BF_ENC        =$bf_obj\n";
1796print "CAST_ENC      =$cast_obj\n";
1797print "RC4_ENC       =$rc4_obj\n";
1798print "RC5_ENC       =$rc5_obj\n";
1799print "MD5_OBJ_ASM   =$md5_obj\n";
1800print "SHA1_OBJ_ASM  =$sha1_obj\n";
1801print "RMD160_OBJ_ASM=$rmd160_obj\n";
1802print "CMLL_ENC      =$cmll_obj\n";
1803print "MODES_OBJ     =$modes_obj\n";
1804print "ENGINES_OBJ   =$engines_obj\n";
1805print "PROCESSOR     =$processor\n";
1806print "RANLIB        =$ranlib\n";
1807print "ARFLAGS       =$arflags\n";
1808print "PERL          =$perl\n";
1809print "KRB5_INCLUDES =",$withargs{"krb5-include"},"\n"
1810	if $withargs{"krb5-include"} ne "";
1811
1812my $des_ptr=0;
1813my $des_risc1=0;
1814my $des_risc2=0;
1815my $des_unroll=0;
1816my $bn_ll=0;
1817my $def_int=2;
1818my $rc4_int=$def_int;
1819my $md2_int=$def_int;
1820my $idea_int=$def_int;
1821my $rc2_int=$def_int;
1822my $rc4_idx=0;
1823my $rc4_chunk=0;
1824my $bf_ptr=0;
1825my @type=("char","short","int","long");
1826my ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0);
1827my $export_var_as_fn=0;
1828
1829my $des_int;
1830
1831foreach (sort split(/\s+/,$bn_ops))
1832	{
1833	$des_ptr=1 if /DES_PTR/;
1834	$des_risc1=1 if /DES_RISC1/;
1835	$des_risc2=1 if /DES_RISC2/;
1836	$des_unroll=1 if /DES_UNROLL/;
1837	$des_int=1 if /DES_INT/;
1838	$bn_ll=1 if /BN_LLONG/;
1839	$rc4_int=0 if /RC4_CHAR/;
1840	$rc4_int=3 if /RC4_LONG/;
1841	$rc4_idx=1 if /RC4_INDEX/;
1842	$rc4_chunk=1 if /RC4_CHUNK/;
1843	$rc4_chunk=2 if /RC4_CHUNK_LL/;
1844	$md2_int=0 if /MD2_CHAR/;
1845	$md2_int=3 if /MD2_LONG/;
1846	$idea_int=1 if /IDEA_SHORT/;
1847	$idea_int=3 if /IDEA_LONG/;
1848	$rc2_int=1 if /RC2_SHORT/;
1849	$rc2_int=3 if /RC2_LONG/;
1850	$bf_ptr=1 if $_ eq "BF_PTR";
1851	$bf_ptr=2 if $_ eq "BF_PTR2";
1852	($b64l,$b64,$b32,$b16,$b8)=(0,1,0,0,0) if /SIXTY_FOUR_BIT/;
1853	($b64l,$b64,$b32,$b16,$b8)=(1,0,0,0,0) if /SIXTY_FOUR_BIT_LONG/;
1854	($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0) if /THIRTY_TWO_BIT/;
1855	($b64l,$b64,$b32,$b16,$b8)=(0,0,0,1,0) if /SIXTEEN_BIT/;
1856	($b64l,$b64,$b32,$b16,$b8)=(0,0,0,0,1) if /EIGHT_BIT/;
1857	$export_var_as_fn=1 if /EXPORT_VAR_AS_FN/;
1858	}
1859
1860open(IN,'<crypto/opensslconf.h.in') || die "unable to read crypto/opensslconf.h.in:$!\n";
1861unlink("crypto/opensslconf.h.new") || die "unable to remove old crypto/opensslconf.h.new:$!\n" if -e "crypto/opensslconf.h.new";
1862open(OUT,'>crypto/opensslconf.h.new') || die "unable to create crypto/opensslconf.h.new:$!\n";
1863print OUT "/* opensslconf.h */\n";
1864print OUT "/* WARNING: Generated automatically from opensslconf.h.in by Configure. */\n\n";
1865
1866print OUT "#ifdef  __cplusplus\n";
1867print OUT "extern \"C\" {\n";
1868print OUT "#endif\n";
1869print OUT "/* OpenSSL was configured with the following options: */\n";
1870my $openssl_algorithm_defines_trans = $openssl_algorithm_defines;
1871$openssl_experimental_defines =~ s/^\s*#\s*define\s+OPENSSL_NO_(.*)/#ifndef OPENSSL_EXPERIMENTAL_$1\n# ifndef OPENSSL_NO_$1\n#  define OPENSSL_NO_$1\n# endif\n#endif/mg;
1872$openssl_algorithm_defines_trans =~ s/^\s*#\s*define\s+OPENSSL_(.*)/# if defined(OPENSSL_$1) \&\& !defined($1)\n#  define $1\n# endif/mg;
1873$openssl_algorithm_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1874$openssl_algorithm_defines = "   /* no ciphers excluded */\n" if $openssl_algorithm_defines eq "";
1875$openssl_thread_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1876$openssl_sys_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1877$openssl_other_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
1878print OUT $openssl_sys_defines;
1879print OUT "#ifndef OPENSSL_DOING_MAKEDEPEND\n\n";
1880print OUT $openssl_experimental_defines;
1881print OUT "\n";
1882print OUT $openssl_algorithm_defines;
1883print OUT "\n#endif /* OPENSSL_DOING_MAKEDEPEND */\n\n";
1884print OUT $openssl_thread_defines;
1885print OUT $openssl_other_defines,"\n";
1886
1887print OUT "/* The OPENSSL_NO_* macros are also defined as NO_* if the application\n";
1888print OUT "   asks for it.  This is a transient feature that is provided for those\n";
1889print OUT "   who haven't had the time to do the appropriate changes in their\n";
1890print OUT "   applications.  */\n";
1891print OUT "#ifdef OPENSSL_ALGORITHM_DEFINES\n";
1892print OUT $openssl_algorithm_defines_trans;
1893print OUT "#endif\n\n";
1894
1895print OUT "#define OPENSSL_CPUID_OBJ\n\n" if ($cpuid_obj ne "mem_clr.o");
1896
1897while (<IN>)
1898	{
1899	if	(/^#define\s+OPENSSLDIR/)
1900		{
1901		my $foo = $openssldir;
1902		$foo =~ s/\\/\\\\/g;
1903		print OUT "#define OPENSSLDIR \"$foo\"\n";
1904		}
1905	elsif	(/^#define\s+ENGINESDIR/)
1906		{
1907		my $foo = "$prefix/$libdir/engines";
1908		$foo =~ s/\\/\\\\/g;
1909		print OUT "#define ENGINESDIR \"$foo\"\n";
1910		}
1911	elsif	(/^#((define)|(undef))\s+OPENSSL_EXPORT_VAR_AS_FUNCTION/)
1912		{ printf OUT "#undef OPENSSL_EXPORT_VAR_AS_FUNCTION\n"
1913			if $export_var_as_fn;
1914		  printf OUT "#%s OPENSSL_EXPORT_VAR_AS_FUNCTION\n",
1915			($export_var_as_fn)?"define":"undef"; }
1916	elsif	(/^#define\s+OPENSSL_UNISTD/)
1917		{
1918		$unistd = "<unistd.h>" if $unistd eq "";
1919		print OUT "#define OPENSSL_UNISTD $unistd\n";
1920		}
1921	elsif	(/^#((define)|(undef))\s+SIXTY_FOUR_BIT_LONG/)
1922		{ printf OUT "#%s SIXTY_FOUR_BIT_LONG\n",($b64l)?"define":"undef"; }
1923	elsif	(/^#((define)|(undef))\s+SIXTY_FOUR_BIT/)
1924		{ printf OUT "#%s SIXTY_FOUR_BIT\n",($b64)?"define":"undef"; }
1925	elsif	(/^#((define)|(undef))\s+THIRTY_TWO_BIT/)
1926		{ printf OUT "#%s THIRTY_TWO_BIT\n",($b32)?"define":"undef"; }
1927	elsif	(/^#((define)|(undef))\s+SIXTEEN_BIT/)
1928		{ printf OUT "#%s SIXTEEN_BIT\n",($b16)?"define":"undef"; }
1929	elsif	(/^#((define)|(undef))\s+EIGHT_BIT/)
1930		{ printf OUT "#%s EIGHT_BIT\n",($b8)?"define":"undef"; }
1931	elsif	(/^#((define)|(undef))\s+BN_LLONG\s*$/)
1932		{ printf OUT "#%s BN_LLONG\n",($bn_ll)?"define":"undef"; }
1933	elsif	(/^\#define\s+DES_LONG\s+.*/)
1934		{ printf OUT "#define DES_LONG unsigned %s\n",
1935			($des_int)?'int':'long'; }
1936	elsif	(/^\#(define|undef)\s+DES_PTR/)
1937		{ printf OUT "#%s DES_PTR\n",($des_ptr)?'define':'undef'; }
1938	elsif	(/^\#(define|undef)\s+DES_RISC1/)
1939		{ printf OUT "#%s DES_RISC1\n",($des_risc1)?'define':'undef'; }
1940	elsif	(/^\#(define|undef)\s+DES_RISC2/)
1941		{ printf OUT "#%s DES_RISC2\n",($des_risc2)?'define':'undef'; }
1942	elsif	(/^\#(define|undef)\s+DES_UNROLL/)
1943		{ printf OUT "#%s DES_UNROLL\n",($des_unroll)?'define':'undef'; }
1944	elsif	(/^#define\s+RC4_INT\s/)
1945		{ printf OUT "#define RC4_INT unsigned %s\n",$type[$rc4_int]; }
1946	elsif	(/^#undef\s+RC4_CHUNK/)
1947		{
1948		printf OUT "#undef RC4_CHUNK\n" if $rc4_chunk==0;
1949		printf OUT "#define RC4_CHUNK unsigned long\n" if $rc4_chunk==1;
1950		printf OUT "#define RC4_CHUNK unsigned long long\n" if $rc4_chunk==2;
1951		}
1952	elsif	(/^#((define)|(undef))\s+RC4_INDEX/)
1953		{ printf OUT "#%s RC4_INDEX\n",($rc4_idx)?"define":"undef"; }
1954	elsif (/^#(define|undef)\s+I386_ONLY/)
1955		{ printf OUT "#%s I386_ONLY\n", ($processor eq "386")?
1956			"define":"undef"; }
1957	elsif	(/^#define\s+MD2_INT\s/)
1958		{ printf OUT "#define MD2_INT unsigned %s\n",$type[$md2_int]; }
1959	elsif	(/^#define\s+IDEA_INT\s/)
1960		{printf OUT "#define IDEA_INT unsigned %s\n",$type[$idea_int];}
1961	elsif	(/^#define\s+RC2_INT\s/)
1962		{printf OUT "#define RC2_INT unsigned %s\n",$type[$rc2_int];}
1963	elsif (/^#(define|undef)\s+BF_PTR/)
1964		{
1965		printf OUT "#undef BF_PTR\n" if $bf_ptr == 0;
1966		printf OUT "#define BF_PTR\n" if $bf_ptr == 1;
1967		printf OUT "#define BF_PTR2\n" if $bf_ptr == 2;
1968	        }
1969	else
1970		{ print OUT $_; }
1971	}
1972close(IN);
1973print OUT "#ifdef  __cplusplus\n";
1974print OUT "}\n";
1975print OUT "#endif\n";
1976close(OUT);
1977rename("crypto/opensslconf.h","crypto/opensslconf.h.bak") || die "unable to rename crypto/opensslconf.h\n" if -e "crypto/opensslconf.h";
1978rename("crypto/opensslconf.h.new","crypto/opensslconf.h") || die "unable to rename crypto/opensslconf.h.new\n";
1979
1980
1981# Fix the date
1982
1983print "SIXTY_FOUR_BIT_LONG mode\n" if $b64l;
1984print "SIXTY_FOUR_BIT mode\n" if $b64;
1985print "THIRTY_TWO_BIT mode\n" if $b32;
1986print "SIXTEEN_BIT mode\n" if $b16;
1987print "EIGHT_BIT mode\n" if $b8;
1988print "DES_PTR used\n" if $des_ptr;
1989print "DES_RISC1 used\n" if $des_risc1;
1990print "DES_RISC2 used\n" if $des_risc2;
1991print "DES_UNROLL used\n" if $des_unroll;
1992print "DES_INT used\n" if $des_int;
1993print "BN_LLONG mode\n" if $bn_ll;
1994print "RC4 uses u$type[$rc4_int]\n" if $rc4_int != $def_int;
1995print "RC4_INDEX mode\n" if $rc4_idx;
1996print "RC4_CHUNK is undefined\n" if $rc4_chunk==0;
1997print "RC4_CHUNK is unsigned long\n" if $rc4_chunk==1;
1998print "RC4_CHUNK is unsigned long long\n" if $rc4_chunk==2;
1999print "MD2 uses u$type[$md2_int]\n" if $md2_int != $def_int;
2000print "IDEA uses u$type[$idea_int]\n" if $idea_int != $def_int;
2001print "RC2 uses u$type[$rc2_int]\n" if $rc2_int != $def_int;
2002print "BF_PTR used\n" if $bf_ptr == 1;
2003print "BF_PTR2 used\n" if $bf_ptr == 2;
2004
2005if($IsMK1MF) {
2006	open (OUT,">crypto/buildinf.h") || die "Can't open buildinf.h";
2007	printf OUT <<EOF;
2008#ifndef MK1MF_BUILD
2009  /* auto-generated by Configure for crypto/cversion.c:
2010   * for Unix builds, crypto/Makefile.ssl generates functional definitions;
2011   * Windows builds (and other mk1mf builds) compile cversion.c with
2012   * -DMK1MF_BUILD and use definitions added to this file by util/mk1mf.pl. */
2013  #error "Windows builds (PLATFORM=$target) use mk1mf.pl-created Makefiles"
2014#endif
2015EOF
2016	close(OUT);
2017} else {
2018	my $make_command = "$make PERL=\'$perl\'";
2019	my $make_targets = "";
2020	$make_targets .= " links" if $symlink;
2021	$make_targets .= " depend" if $depflags ne $default_depflags && $make_depend;
2022	$make_targets .= " gentests" if $symlink;
2023	(system $make_command.$make_targets) == 0 or exit $?
2024		if $make_targets ne "";
2025	if ( $perl =~ m@^/@) {
2026	    &dofile("tools/c_rehash",$perl,'^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";', '^my \$prefix;$', 'my $prefix = "' . $prefix . '";');
2027	    &dofile("apps/CA.pl",$perl,'^#!/', '#!%s');
2028	} else {
2029	    # No path for Perl known ...
2030	    &dofile("tools/c_rehash",'/usr/local/bin/perl','^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";',  '^my \$prefix;$', 'my $prefix = "' . $prefix . '";');
2031	    &dofile("apps/CA.pl",'/usr/local/bin/perl','^#!/', '#!%s');
2032	}
2033	if ($depflags ne $default_depflags && !$make_depend) {
2034            $warn_make_depend++;
2035        }
2036}
2037
2038# create the ms/version32.rc file if needed
2039if ($IsMK1MF && ($target !~ /^netware/)) {
2040	my ($v1, $v2, $v3, $v4);
2041	if ($version_num =~ /(^[0-9a-f]{1})([0-9a-f]{2})([0-9a-f]{2})([0-9a-f]{2})/i) {
2042		$v1=hex $1;
2043		$v2=hex $2;
2044		$v3=hex $3;
2045		$v4=hex $4;
2046	}
2047	open (OUT,">ms/version32.rc") || die "Can't open ms/version32.rc";
2048	print OUT <<EOF;
2049#include <winver.h>
2050
2051LANGUAGE 0x09,0x01
2052
20531 VERSIONINFO
2054  FILEVERSION $v1,$v2,$v3,$v4
2055  PRODUCTVERSION $v1,$v2,$v3,$v4
2056  FILEFLAGSMASK 0x3fL
2057#ifdef _DEBUG
2058  FILEFLAGS 0x01L
2059#else
2060  FILEFLAGS 0x00L
2061#endif
2062  FILEOS VOS__WINDOWS32
2063  FILETYPE VFT_DLL
2064  FILESUBTYPE 0x0L
2065BEGIN
2066    BLOCK "StringFileInfo"
2067    BEGIN
2068	BLOCK "040904b0"
2069	BEGIN
2070	    // Required:
2071	    VALUE "CompanyName", "The OpenSSL Project, http://www.openssl.org/\\0"
2072	    VALUE "FileDescription", "OpenSSL Shared Library\\0"
2073	    VALUE "FileVersion", "$version\\0"
2074#if defined(CRYPTO)
2075	    VALUE "InternalName", "libeay32\\0"
2076	    VALUE "OriginalFilename", "libeay32.dll\\0"
2077#elif defined(SSL)
2078	    VALUE "InternalName", "ssleay32\\0"
2079	    VALUE "OriginalFilename", "ssleay32.dll\\0"
2080#endif
2081	    VALUE "ProductName", "The OpenSSL Toolkit\\0"
2082	    VALUE "ProductVersion", "$version\\0"
2083	    // Optional:
2084	    //VALUE "Comments", "\\0"
2085	    VALUE "LegalCopyright", "Copyright  � 1998-2005 The OpenSSL Project. Copyright � 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved.\\0"
2086	    //VALUE "LegalTrademarks", "\\0"
2087	    //VALUE "PrivateBuild", "\\0"
2088	    //VALUE "SpecialBuild", "\\0"
2089	END
2090    END
2091    BLOCK "VarFileInfo"
2092    BEGIN
2093        VALUE "Translation", 0x409, 0x4b0
2094    END
2095END
2096EOF
2097	close(OUT);
2098  }
2099
2100print <<EOF;
2101
2102Configured for $target.
2103EOF
2104
2105print <<\EOF if (!$no_threads && !$threads);
2106
2107The library could not be configured for supporting multi-threaded
2108applications as the compiler options required on this system are not known.
2109See file INSTALL for details if you need multi-threading.
2110EOF
2111
2112print <<\EOF if ($no_shared_warn);
2113
2114You gave the option 'shared', which is not supported on this platform, so
2115we will pretend you gave the option 'no-shared'.  If you know how to implement
2116shared libraries, please let us know (but please first make sure you have
2117tried with a current version of OpenSSL).
2118EOF
2119
2120print <<EOF if ($warn_make_depend);
2121
2122*** Because of configuration changes, you MUST do the following before
2123*** building:
2124
2125	make depend
2126EOF
2127
2128exit(0);
2129
2130sub usage
2131	{
2132	print STDERR $usage;
2133	print STDERR "\npick os/compiler from:\n";
2134	my $j=0;
2135	my $i;
2136        my $k=0;
2137	foreach $i (sort keys %table)
2138		{
2139		next if $i =~ /^debug/;
2140		$k += length($i) + 1;
2141		if ($k > 78)
2142			{
2143			print STDERR "\n";
2144			$k=length($i);
2145			}
2146		print STDERR $i . " ";
2147		}
2148	foreach $i (sort keys %table)
2149		{
2150		next if $i !~ /^debug/;
2151		$k += length($i) + 1;
2152		if ($k > 78)
2153			{
2154			print STDERR "\n";
2155			$k=length($i);
2156			}
2157		print STDERR $i . " ";
2158		}
2159	print STDERR "\n\nNOTE: If in doubt, on Unix-ish systems use './config'.\n";
2160	exit(1);
2161	}
2162
2163sub which
2164	{
2165	my($name)=@_;
2166	my $path;
2167	foreach $path (split /:/, $ENV{PATH})
2168		{
2169		if (-f "$path/$name$exe_ext" and -x _)
2170			{
2171			return "$path/$name$exe_ext" unless ($name eq "perl" and
2172			 system("$path/$name$exe_ext -e " . '\'exit($]<5.0);\''));
2173			}
2174		}
2175	}
2176
2177sub dofile
2178	{
2179	my $f; my $p; my %m; my @a; my $k; my $ff;
2180	($f,$p,%m)=@_;
2181
2182	open(IN,"<$f.in") || open(IN,"<$f") || die "unable to open $f:$!\n";
2183	@a=<IN>;
2184	close(IN);
2185	foreach $k (keys %m)
2186		{
2187		grep(/$k/ && ($_=sprintf($m{$k}."\n",$p)),@a);
2188		}
2189	open(OUT,">$f.new") || die "unable to open $f.new:$!\n";
2190	print OUT @a;
2191	close(OUT);
2192	rename($f,"$f.bak") || die "unable to rename $f\n" if -e $f;
2193	rename("$f.new",$f) || die "unable to rename $f.new\n";
2194	}
2195
2196sub print_table_entry
2197	{
2198	my $target = shift;
2199
2200	my ($cc, $cflags, $unistd, $thread_cflag, $sys_id, $lflags,
2201	    $bn_ops, $cpuid_obj, $bn_obj, $ec_obj, $des_obj, $aes_obj, $bf_obj,
2202	    $md5_obj, $sha1_obj, $cast_obj, $rc4_obj, $rmd160_obj,
2203	    $rc5_obj, $wp_obj, $cmll_obj, $modes_obj, $engines_obj,
2204	    $perlasm_scheme, $dso_scheme, $shared_target, $shared_cflag,
2205	    $shared_ldflag, $shared_extension, $ranlib, $arflags, $multilib)=
2206	split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
2207
2208	print <<EOF
2209
2210*** $target
2211\$cc           = $cc
2212\$cflags       = $cflags
2213\$unistd       = $unistd
2214\$thread_cflag = $thread_cflag
2215\$sys_id       = $sys_id
2216\$lflags       = $lflags
2217\$bn_ops       = $bn_ops
2218\$cpuid_obj    = $cpuid_obj
2219\$bn_obj       = $bn_obj
2220\$ec_obj       = $ec_obj
2221\$des_obj      = $des_obj
2222\$aes_obj      = $aes_obj
2223\$bf_obj       = $bf_obj
2224\$md5_obj      = $md5_obj
2225\$sha1_obj     = $sha1_obj
2226\$cast_obj     = $cast_obj
2227\$rc4_obj      = $rc4_obj
2228\$rmd160_obj   = $rmd160_obj
2229\$rc5_obj      = $rc5_obj
2230\$wp_obj       = $wp_obj
2231\$cmll_obj     = $cmll_obj
2232\$modes_obj    = $modes_obj
2233\$engines_obj  = $engines_obj
2234\$perlasm_scheme = $perlasm_scheme
2235\$dso_scheme   = $dso_scheme
2236\$shared_target= $shared_target
2237\$shared_cflag = $shared_cflag
2238\$shared_ldflag = $shared_ldflag
2239\$shared_extension = $shared_extension
2240\$ranlib       = $ranlib
2241\$arflags      = $arflags
2242\$multilib     = $multilib
2243EOF
2244	}
2245
2246sub test_sanity
2247	{
2248	my $errorcnt = 0;
2249
2250	print STDERR "=" x 70, "\n";
2251	print STDERR "=== SANITY TESTING!\n";
2252	print STDERR "=== No configuration will be done, all other arguments will be ignored!\n";
2253	print STDERR "=" x 70, "\n";
2254
2255	foreach $target (sort keys %table)
2256		{
2257		@fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
2258
2259		if ($fields[$idx_dso_scheme-1] =~ /^(beos|dl|dlfcn|win32|vms)$/)
2260			{
2261			$errorcnt++;
2262			print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
2263			print STDERR "              in the previous field\n";
2264			}
2265		elsif ($fields[$idx_dso_scheme+1] =~ /^(beos|dl|dlfcn|win32|vms)$/)
2266			{
2267			$errorcnt++;
2268			print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
2269			print STDERR "              in the following field\n";
2270			}
2271		elsif ($fields[$idx_dso_scheme] !~ /^(beos|dl|dlfcn|win32|vms|)$/)
2272			{
2273			$errorcnt++;
2274			print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] field = ",$fields[$idx_dso_scheme],"\n";
2275			print STDERR "              valid values are 'beos', 'dl', 'dlfcn', 'win32' and 'vms'\n";
2276			}
2277		}
2278	print STDERR "No sanity errors detected!\n" if $errorcnt == 0;
2279	return $errorcnt;
2280	}
2281