xref: /freebsd/crypto/openssl/doc/perlvars.pm (revision b077aed33b7b6aefca7b17ddb250cf521f938613)
1*b077aed3SPierre Pronchery#! /usr/bin/env perl
2*b077aed3SPierre Pronchery# Copyright 2019-2021 The OpenSSL Project Authors. All Rights Reserved.
3*b077aed3SPierre Pronchery#
4*b077aed3SPierre Pronchery# Licensed under the Apache License 2.0 (the "License").  You may not use
5*b077aed3SPierre Pronchery# this file except in compliance with the License.  You can obtain a copy
6*b077aed3SPierre Pronchery# in the file LICENSE in the source distribution or at
7*b077aed3SPierre Pronchery
8*b077aed3SPierre Pronchery# Set some Perl variables for use by util/dofile.pl when processing
9*b077aed3SPierre Pronchery# POD files (mainly man1).
10*b077aed3SPierre Pronchery
11*b077aed3SPierre Proncheryuse configdata;
12*b077aed3SPierre Pronchery
13*b077aed3SPierre Pronchery# Verify options
14*b077aed3SPierre Pronchery$OpenSSL::safe::opt_v_synopsis = ""
15*b077aed3SPierre Pronchery. "[B<-allow_proxy_certs>]\n"
16*b077aed3SPierre Pronchery. "[B<-attime> I<timestamp>]\n"
17*b077aed3SPierre Pronchery. "[B<-no_check_time>]\n"
18*b077aed3SPierre Pronchery. "[B<-check_ss_sig>]\n"
19*b077aed3SPierre Pronchery. "[B<-crl_check>]\n"
20*b077aed3SPierre Pronchery. "[B<-crl_check_all>]\n"
21*b077aed3SPierre Pronchery. "[B<-explicit_policy>]\n"
22*b077aed3SPierre Pronchery. "[B<-extended_crl>]\n"
23*b077aed3SPierre Pronchery. "[B<-ignore_critical>]\n"
24*b077aed3SPierre Pronchery. "[B<-inhibit_any>]\n"
25*b077aed3SPierre Pronchery. "[B<-inhibit_map>]\n"
26*b077aed3SPierre Pronchery. "[B<-partial_chain>]\n"
27*b077aed3SPierre Pronchery. "[B<-policy> I<arg>]\n"
28*b077aed3SPierre Pronchery. "[B<-policy_check>]\n"
29*b077aed3SPierre Pronchery. "[B<-policy_print>]\n"
30*b077aed3SPierre Pronchery. "[B<-purpose> I<purpose>]\n"
31*b077aed3SPierre Pronchery. "[B<-suiteB_128>]\n"
32*b077aed3SPierre Pronchery. "[B<-suiteB_128_only>]\n"
33*b077aed3SPierre Pronchery. "[B<-suiteB_192>]\n"
34*b077aed3SPierre Pronchery. "[B<-trusted_first>]\n"
35*b077aed3SPierre Pronchery. "[B<-no_alt_chains>]\n"
36*b077aed3SPierre Pronchery. "[B<-use_deltas>]\n"
37*b077aed3SPierre Pronchery. "[B<-auth_level> I<num>]\n"
38*b077aed3SPierre Pronchery. "[B<-verify_depth> I<num>]\n"
39*b077aed3SPierre Pronchery. "[B<-verify_email> I<email>]\n"
40*b077aed3SPierre Pronchery. "[B<-verify_hostname> I<hostname>]\n"
41*b077aed3SPierre Pronchery. "[B<-verify_ip> I<ip>]\n"
42*b077aed3SPierre Pronchery. "[B<-verify_name> I<name>]\n"
43*b077aed3SPierre Pronchery. "[B<-x509_strict>]\n"
44*b077aed3SPierre Pronchery. "[B<-issuer_checks>]";
45*b077aed3SPierre Pronchery$OpenSSL::safe::opt_v_item = ""
46*b077aed3SPierre Pronchery. "=item B<-allow_proxy_certs>, B<-attime>, B<-no_check_time>,\n"
47*b077aed3SPierre Pronchery. "B<-check_ss_sig>, B<-crl_check>, B<-crl_check_all>,\n"
48*b077aed3SPierre Pronchery. "B<-explicit_policy>, B<-extended_crl>, B<-ignore_critical>, B<-inhibit_any>,\n"
49*b077aed3SPierre Pronchery. "B<-inhibit_map>, B<-no_alt_chains>, B<-partial_chain>, B<-policy>,\n"
50*b077aed3SPierre Pronchery. "B<-policy_check>, B<-policy_print>, B<-purpose>, B<-suiteB_128>,\n"
51*b077aed3SPierre Pronchery. "B<-suiteB_128_only>, B<-suiteB_192>, B<-trusted_first>, B<-use_deltas>,\n"
52*b077aed3SPierre Pronchery. "B<-auth_level>, B<-verify_depth>, B<-verify_email>, B<-verify_hostname>,\n"
53*b077aed3SPierre Pronchery. "B<-verify_ip>, B<-verify_name>, B<-x509_strict> B<-issuer_checks>\n"
54*b077aed3SPierre Pronchery. "\n"
55*b077aed3SPierre Pronchery. "Set various options of certificate chain verification.\n"
56*b077aed3SPierre Pronchery. "See L<openssl-verification-options(1)/Verification Options> for details.";
57*b077aed3SPierre Pronchery
58*b077aed3SPierre Pronchery
59*b077aed3SPierre Pronchery# Extended validation options.
60*b077aed3SPierre Pronchery$OpenSSL::safe::opt_x_synopsis = ""
61*b077aed3SPierre Pronchery. "[B<-xkey> I<infile>]\n"
62*b077aed3SPierre Pronchery. "[B<-xcert> I<file>]\n"
63*b077aed3SPierre Pronchery. "[B<-xchain> I<file>]\n"
64*b077aed3SPierre Pronchery. "[B<-xchain_build> I<file>]\n"
65*b077aed3SPierre Pronchery. "[B<-xcertform> B<DER>|B<PEM>]>\n"
66*b077aed3SPierre Pronchery. "[B<-xkeyform> B<DER>|B<PEM>]>";
67*b077aed3SPierre Pronchery$OpenSSL::safe::opt_x_item = ""
68*b077aed3SPierre Pronchery. "=item B<-xkey> I<infile>, B<-xcert> I<file>, B<-xchain> I<file>,\n"
69*b077aed3SPierre Pronchery. "B<-xchain_build> I<file>, B<-xcertform> B<DER>|B<PEM>,\n"
70*b077aed3SPierre Pronchery. "B<-xkeyform> B<DER>|B<PEM>\n"
71*b077aed3SPierre Pronchery. "\n"
72*b077aed3SPierre Pronchery. "Set extended certificate verification options.\n"
73*b077aed3SPierre Pronchery. "See L<openssl-verification-options(1)/Extended Verification Options> for details.";
74*b077aed3SPierre Pronchery
75*b077aed3SPierre Pronchery# Name output options
76*b077aed3SPierre Pronchery$OpenSSL::safe::opt_name_synopsis = ""
77*b077aed3SPierre Pronchery. "[B<-nameopt> I<option>]";
78*b077aed3SPierre Pronchery$OpenSSL::safe::opt_name_item = ""
79*b077aed3SPierre Pronchery. "=item B<-nameopt> I<option>\n"
80*b077aed3SPierre Pronchery. "\n"
81*b077aed3SPierre Pronchery. "This specifies how the subject or issuer names are displayed.\n"
82*b077aed3SPierre Pronchery. "See L<openssl-namedisplay-options(1)> for details.";
83*b077aed3SPierre Pronchery
84*b077aed3SPierre Pronchery# Random State Options
85*b077aed3SPierre Pronchery$OpenSSL::safe::opt_r_synopsis = ""
86*b077aed3SPierre Pronchery. "[B<-rand> I<files>]\n"
87*b077aed3SPierre Pronchery. "[B<-writerand> I<file>]";
88*b077aed3SPierre Pronchery$OpenSSL::safe::opt_r_item = ""
89*b077aed3SPierre Pronchery. "=item B<-rand> I<files>, B<-writerand> I<file>\n"
90*b077aed3SPierre Pronchery. "\n"
91*b077aed3SPierre Pronchery. "See L<openssl(1)/Random State Options> for details.";
92*b077aed3SPierre Pronchery
93*b077aed3SPierre Pronchery# Provider options
94*b077aed3SPierre Pronchery$OpenSSL::safe::opt_provider_synopsis = ""
95*b077aed3SPierre Pronchery. "[B<-provider> I<name>]\n"
96*b077aed3SPierre Pronchery. "[B<-provider-path> I<path>]\n"
97*b077aed3SPierre Pronchery. "[B<-propquery> I<propq>]";
98*b077aed3SPierre Pronchery$OpenSSL::safe::opt_provider_item = ""
99*b077aed3SPierre Pronchery. "=item B<-provider> I<name>\n"
100*b077aed3SPierre Pronchery. "\n"
101*b077aed3SPierre Pronchery. "=item B<-provider-path> I<path>\n"
102*b077aed3SPierre Pronchery. "\n"
103*b077aed3SPierre Pronchery. "=item B<-propquery> I<propq>\n"
104*b077aed3SPierre Pronchery. "\n"
105*b077aed3SPierre Pronchery. "See L<openssl(1)/Provider Options>, L<provider(7)>, and L<property(7)>.";
106*b077aed3SPierre Pronchery
107*b077aed3SPierre Pronchery# Configuration option
108*b077aed3SPierre Pronchery$OpenSSL::safe::opt_config_synopsis = ""
109*b077aed3SPierre Pronchery. "[B<-config> I<configfile>]";
110*b077aed3SPierre Pronchery$OpenSSL::safe::opt_config_item = ""
111*b077aed3SPierre Pronchery. "=item B<-config> I<configfile>\n"
112*b077aed3SPierre Pronchery. "\n"
113*b077aed3SPierre Pronchery. "See L<openssl(1)/Configuration Option>.";
114*b077aed3SPierre Pronchery
115*b077aed3SPierre Pronchery# Engine option
116*b077aed3SPierre Pronchery$OpenSSL::safe::opt_engine_synopsis = "";
117*b077aed3SPierre Pronchery$OpenSSL::safe::opt_engine_item = "";
118*b077aed3SPierre Proncheryif (!$disabled{"deprecated-3.0"}) {
119*b077aed3SPierre Pronchery  $OpenSSL::safe::opt_engine_synopsis = ""
120*b077aed3SPierre Pronchery  . "[B<-engine> I<id>]\n";
121*b077aed3SPierre Pronchery  $OpenSSL::safe::opt_engine_item = ""
122*b077aed3SPierre Pronchery  . "=item B<-engine> I<id>\n"
123*b077aed3SPierre Pronchery  . "\n"
124*b077aed3SPierre Pronchery  . "See L<openssl(1)/Engine Options>.\n"
125*b077aed3SPierre Pronchery  . "This option is deprecated.";
126*b077aed3SPierre Pronchery}
127*b077aed3SPierre Pronchery
128*b077aed3SPierre Pronchery# Trusted certs options
129*b077aed3SPierre Pronchery$OpenSSL::safe::opt_trust_synopsis = ""
130*b077aed3SPierre Pronchery. "[B<-CAfile> I<file>]\n"
131*b077aed3SPierre Pronchery. "[B<-no-CAfile>]\n"
132*b077aed3SPierre Pronchery. "[B<-CApath> I<dir>]\n"
133*b077aed3SPierre Pronchery. "[B<-no-CApath>]\n"
134*b077aed3SPierre Pronchery. "[B<-CAstore> I<uri>]\n"
135*b077aed3SPierre Pronchery. "[B<-no-CAstore>]";
136*b077aed3SPierre Pronchery$OpenSSL::safe::opt_trust_item = ""
137*b077aed3SPierre Pronchery. "=item B<-CAfile> I<file>, B<-no-CAfile>, B<-CApath> I<dir>, B<-no-CApath>,\n"
138*b077aed3SPierre Pronchery. "B<-CAstore> I<uri>, B<-no-CAstore>\n"
139*b077aed3SPierre Pronchery. "\n"
140*b077aed3SPierre Pronchery. "See L<openssl-verification-options(1)/Trusted Certificate Options> for details.";
141*b077aed3SPierre Pronchery
142*b077aed3SPierre Pronchery# TLS Version Options
143*b077aed3SPierre Pronchery$OpenSSL::safe::opt_versiontls_synopsis = ""
144*b077aed3SPierre Pronchery. "[B<-no_ssl3>]\n"
145*b077aed3SPierre Pronchery. "[B<-no_tls1>]\n"
146*b077aed3SPierre Pronchery. "[B<-no_tls1_1>]\n"
147*b077aed3SPierre Pronchery. "[B<-no_tls1_2>]\n"
148*b077aed3SPierre Pronchery. "[B<-no_tls1_3>]\n"
149*b077aed3SPierre Pronchery. "[B<-ssl3>]\n"
150*b077aed3SPierre Pronchery. "[B<-tls1>]\n"
151*b077aed3SPierre Pronchery. "[B<-tls1_1>]\n"
152*b077aed3SPierre Pronchery. "[B<-tls1_2>]\n"
153*b077aed3SPierre Pronchery. "[B<-tls1_3>]";
154*b077aed3SPierre Pronchery$OpenSSL::safe::opt_versiontls_item = ""
155*b077aed3SPierre Pronchery. "=item B<-no_ssl3>, B<-no_tls1>, B<-no_tls1_1>, B<-no_tls1_2>, B<-no_tls1_3>,\n"
156*b077aed3SPierre Pronchery. "B<-ssl3>, B<-tls1>, B<-tls1_1>, B<-tls1_2>, B<-tls1_3>\n"
157*b077aed3SPierre Pronchery. "\n"
158*b077aed3SPierre Pronchery. "See L<openssl(1)/TLS Version Options>.";
159*b077aed3SPierre Pronchery
160*b077aed3SPierre Pronchery# TLS/DTLS Version Options
161*b077aed3SPierre Pronchery$OpenSSL::safe::opt_version_synopsis = ""
162*b077aed3SPierre Pronchery. "$OpenSSL::safe::opt_versiontls_synopsis\n"
163*b077aed3SPierre Pronchery. "[B<-dtls>]\n"
164*b077aed3SPierre Pronchery. "[B<-dtls1>]\n"
165*b077aed3SPierre Pronchery. "[B<-dtls1_2>]";
166*b077aed3SPierre Pronchery$OpenSSL::safe::opt_version_item = "\n"
167*b077aed3SPierre Pronchery. "$OpenSSL::safe::opt_versiontls_item\n"
168*b077aed3SPierre Pronchery. "\n"
169*b077aed3SPierre Pronchery. "=item B<-dtls>, B<-dtls1>, B<-dtls1_2>\n"
170*b077aed3SPierre Pronchery. "\n"
171*b077aed3SPierre Pronchery. "These specify the use of DTLS instead of TLS.\n"
172*b077aed3SPierre Pronchery. "See L<openssl(1)/TLS Version Options>.";
173*b077aed3SPierre Pronchery
174*b077aed3SPierre Pronchery# SSL connection options.
175*b077aed3SPierre Pronchery# TODO # options will probably be re-ordered.
176*b077aed3SPierre Pronchery$OpenSSL::safe::opt_s_synopsis = ""
177*b077aed3SPierre Pronchery. "[B<-bugs>]\n"
178*b077aed3SPierre Pronchery. "[B<-no_comp>]\n"
179*b077aed3SPierre Pronchery. "[B<-comp>]\n"
180*b077aed3SPierre Pronchery. "[B<-no_ticket>]\n"
181*b077aed3SPierre Pronchery. "[B<-serverpref>]\n"
182*b077aed3SPierre Pronchery. "[B<-client_renegotiation>]\n"
183*b077aed3SPierre Pronchery. "[B<-legacy_renegotiation>]\n"
184*b077aed3SPierre Pronchery. "[B<-no_renegotiation>]\n"
185*b077aed3SPierre Pronchery. "[B<-no_resumption_on_reneg>]\n"
186*b077aed3SPierre Pronchery. "[B<-legacy_server_connect>]\n"
187*b077aed3SPierre Pronchery. "[B<-no_legacy_server_connect>]\n"
188*b077aed3SPierre Pronchery. "[B<-no_etm>]\n"
189*b077aed3SPierre Pronchery. "[B<-allow_no_dhe_kex>]\n"
190*b077aed3SPierre Pronchery. "[B<-prioritize_chacha>]\n"
191*b077aed3SPierre Pronchery. "[B<-strict>]\n"
192*b077aed3SPierre Pronchery. "[B<-sigalgs> I<algs>]\n"
193*b077aed3SPierre Pronchery. "[B<-client_sigalgs> I<algs>]\n"
194*b077aed3SPierre Pronchery. "[B<-groups> I<groups>]\n"
195*b077aed3SPierre Pronchery. "[B<-curves> I<curves>]\n"
196*b077aed3SPierre Pronchery. "[B<-named_curve> I<curve>]\n"
197*b077aed3SPierre Pronchery. "[B<-cipher> I<ciphers>]\n"
198*b077aed3SPierre Pronchery. "[B<-ciphersuites> I<1.3ciphers>]\n"
199*b077aed3SPierre Pronchery. "[B<-min_protocol> I<minprot>]\n"
200*b077aed3SPierre Pronchery. "[B<-max_protocol> I<maxprot>]\n"
201*b077aed3SPierre Pronchery. "[B<-record_padding> I<padding>]\n"
202*b077aed3SPierre Pronchery. "[B<-debug_broken_protocol>]\n"
203*b077aed3SPierre Pronchery. "[B<-no_middlebox>]";
204*b077aed3SPierre Pronchery$OpenSSL::safe::opt_s_item = ""
205*b077aed3SPierre Pronchery. "=item B<-bugs>, B<-comp>, B<-no_comp>, B<-no_ticket>, B<-serverpref>,\n"
206*b077aed3SPierre Pronchery. "B<-client_renegotiation>,\n"
207*b077aed3SPierre Pronchery. "B<-legacy_renegotiation>, B<-no_renegotiation>,\n"
208*b077aed3SPierre Pronchery. "B<-no_resumption_on_reneg>,\n"
209*b077aed3SPierre Pronchery. "B<-legacy_server_connect>, B<-no_legacy_server_connect>, B<-no_etm>\n"
210*b077aed3SPierre Pronchery. "B<-allow_no_dhe_kex>, B<-prioritize_chacha>, B<-strict>, B<-sigalgs>\n"
211*b077aed3SPierre Pronchery. "I<algs>, B<-client_sigalgs> I<algs>, B<-groups> I<groups>, B<-curves>\n"
212*b077aed3SPierre Pronchery. "I<curves>, B<-named_curve> I<curve>, B<-cipher> I<ciphers>, B<-ciphersuites>\n"
213*b077aed3SPierre Pronchery. "I<1.3ciphers>, B<-min_protocol> I<minprot>, B<-max_protocol> I<maxprot>,\n"
214*b077aed3SPierre Pronchery. "B<-record_padding> I<padding>, B<-debug_broken_protocol>, B<-no_middlebox>\n"
215*b077aed3SPierre Pronchery. "\n"
216*b077aed3SPierre Pronchery. "See L<SSL_CONF_cmd(3)/SUPPORTED COMMAND LINE COMMANDS> for details.";
217*b077aed3SPierre Pronchery
218*b077aed3SPierre Proncherypackage OpenSSL::safe;
219*b077aed3SPierre Proncherysub output_do_not_edit_headers {
220*b077aed3SPierre Pronchery    return "\n=begin comment\n\n"
221*b077aed3SPierre Pronchery        . join("\n", @autowarntext)
222*b077aed3SPierre Pronchery        . "\n\n=end comment";
223*b077aed3SPierre Pronchery}
224*b077aed3SPierre Pronchery1;
225