1*b077aed3SPierre Pronchery#! /usr/bin/env perl 2*b077aed3SPierre Pronchery# Copyright 2019-2021 The OpenSSL Project Authors. All Rights Reserved. 3*b077aed3SPierre Pronchery# 4*b077aed3SPierre Pronchery# Licensed under the Apache License 2.0 (the "License"). You may not use 5*b077aed3SPierre Pronchery# this file except in compliance with the License. You can obtain a copy 6*b077aed3SPierre Pronchery# in the file LICENSE in the source distribution or at 7*b077aed3SPierre Pronchery 8*b077aed3SPierre Pronchery# Set some Perl variables for use by util/dofile.pl when processing 9*b077aed3SPierre Pronchery# POD files (mainly man1). 10*b077aed3SPierre Pronchery 11*b077aed3SPierre Proncheryuse configdata; 12*b077aed3SPierre Pronchery 13*b077aed3SPierre Pronchery# Verify options 14*b077aed3SPierre Pronchery$OpenSSL::safe::opt_v_synopsis = "" 15*b077aed3SPierre Pronchery. "[B<-allow_proxy_certs>]\n" 16*b077aed3SPierre Pronchery. "[B<-attime> I<timestamp>]\n" 17*b077aed3SPierre Pronchery. "[B<-no_check_time>]\n" 18*b077aed3SPierre Pronchery. "[B<-check_ss_sig>]\n" 19*b077aed3SPierre Pronchery. "[B<-crl_check>]\n" 20*b077aed3SPierre Pronchery. "[B<-crl_check_all>]\n" 21*b077aed3SPierre Pronchery. "[B<-explicit_policy>]\n" 22*b077aed3SPierre Pronchery. "[B<-extended_crl>]\n" 23*b077aed3SPierre Pronchery. "[B<-ignore_critical>]\n" 24*b077aed3SPierre Pronchery. "[B<-inhibit_any>]\n" 25*b077aed3SPierre Pronchery. "[B<-inhibit_map>]\n" 26*b077aed3SPierre Pronchery. "[B<-partial_chain>]\n" 27*b077aed3SPierre Pronchery. "[B<-policy> I<arg>]\n" 28*b077aed3SPierre Pronchery. "[B<-policy_check>]\n" 29*b077aed3SPierre Pronchery. "[B<-policy_print>]\n" 30*b077aed3SPierre Pronchery. "[B<-purpose> I<purpose>]\n" 31*b077aed3SPierre Pronchery. "[B<-suiteB_128>]\n" 32*b077aed3SPierre Pronchery. "[B<-suiteB_128_only>]\n" 33*b077aed3SPierre Pronchery. "[B<-suiteB_192>]\n" 34*b077aed3SPierre Pronchery. "[B<-trusted_first>]\n" 35*b077aed3SPierre Pronchery. "[B<-no_alt_chains>]\n" 36*b077aed3SPierre Pronchery. "[B<-use_deltas>]\n" 37*b077aed3SPierre Pronchery. "[B<-auth_level> I<num>]\n" 38*b077aed3SPierre Pronchery. "[B<-verify_depth> I<num>]\n" 39*b077aed3SPierre Pronchery. "[B<-verify_email> I<email>]\n" 40*b077aed3SPierre Pronchery. "[B<-verify_hostname> I<hostname>]\n" 41*b077aed3SPierre Pronchery. "[B<-verify_ip> I<ip>]\n" 42*b077aed3SPierre Pronchery. "[B<-verify_name> I<name>]\n" 43*b077aed3SPierre Pronchery. "[B<-x509_strict>]\n" 44*b077aed3SPierre Pronchery. "[B<-issuer_checks>]"; 45*b077aed3SPierre Pronchery$OpenSSL::safe::opt_v_item = "" 46*b077aed3SPierre Pronchery. "=item B<-allow_proxy_certs>, B<-attime>, B<-no_check_time>,\n" 47*b077aed3SPierre Pronchery. "B<-check_ss_sig>, B<-crl_check>, B<-crl_check_all>,\n" 48*b077aed3SPierre Pronchery. "B<-explicit_policy>, B<-extended_crl>, B<-ignore_critical>, B<-inhibit_any>,\n" 49*b077aed3SPierre Pronchery. "B<-inhibit_map>, B<-no_alt_chains>, B<-partial_chain>, B<-policy>,\n" 50*b077aed3SPierre Pronchery. "B<-policy_check>, B<-policy_print>, B<-purpose>, B<-suiteB_128>,\n" 51*b077aed3SPierre Pronchery. "B<-suiteB_128_only>, B<-suiteB_192>, B<-trusted_first>, B<-use_deltas>,\n" 52*b077aed3SPierre Pronchery. "B<-auth_level>, B<-verify_depth>, B<-verify_email>, B<-verify_hostname>,\n" 53*b077aed3SPierre Pronchery. "B<-verify_ip>, B<-verify_name>, B<-x509_strict> B<-issuer_checks>\n" 54*b077aed3SPierre Pronchery. "\n" 55*b077aed3SPierre Pronchery. "Set various options of certificate chain verification.\n" 56*b077aed3SPierre Pronchery. "See L<openssl-verification-options(1)/Verification Options> for details."; 57*b077aed3SPierre Pronchery 58*b077aed3SPierre Pronchery 59*b077aed3SPierre Pronchery# Extended validation options. 60*b077aed3SPierre Pronchery$OpenSSL::safe::opt_x_synopsis = "" 61*b077aed3SPierre Pronchery. "[B<-xkey> I<infile>]\n" 62*b077aed3SPierre Pronchery. "[B<-xcert> I<file>]\n" 63*b077aed3SPierre Pronchery. "[B<-xchain> I<file>]\n" 64*b077aed3SPierre Pronchery. "[B<-xchain_build> I<file>]\n" 65*b077aed3SPierre Pronchery. "[B<-xcertform> B<DER>|B<PEM>]>\n" 66*b077aed3SPierre Pronchery. "[B<-xkeyform> B<DER>|B<PEM>]>"; 67*b077aed3SPierre Pronchery$OpenSSL::safe::opt_x_item = "" 68*b077aed3SPierre Pronchery. "=item B<-xkey> I<infile>, B<-xcert> I<file>, B<-xchain> I<file>,\n" 69*b077aed3SPierre Pronchery. "B<-xchain_build> I<file>, B<-xcertform> B<DER>|B<PEM>,\n" 70*b077aed3SPierre Pronchery. "B<-xkeyform> B<DER>|B<PEM>\n" 71*b077aed3SPierre Pronchery. "\n" 72*b077aed3SPierre Pronchery. "Set extended certificate verification options.\n" 73*b077aed3SPierre Pronchery. "See L<openssl-verification-options(1)/Extended Verification Options> for details."; 74*b077aed3SPierre Pronchery 75*b077aed3SPierre Pronchery# Name output options 76*b077aed3SPierre Pronchery$OpenSSL::safe::opt_name_synopsis = "" 77*b077aed3SPierre Pronchery. "[B<-nameopt> I<option>]"; 78*b077aed3SPierre Pronchery$OpenSSL::safe::opt_name_item = "" 79*b077aed3SPierre Pronchery. "=item B<-nameopt> I<option>\n" 80*b077aed3SPierre Pronchery. "\n" 81*b077aed3SPierre Pronchery. "This specifies how the subject or issuer names are displayed.\n" 82*b077aed3SPierre Pronchery. "See L<openssl-namedisplay-options(1)> for details."; 83*b077aed3SPierre Pronchery 84*b077aed3SPierre Pronchery# Random State Options 85*b077aed3SPierre Pronchery$OpenSSL::safe::opt_r_synopsis = "" 86*b077aed3SPierre Pronchery. "[B<-rand> I<files>]\n" 87*b077aed3SPierre Pronchery. "[B<-writerand> I<file>]"; 88*b077aed3SPierre Pronchery$OpenSSL::safe::opt_r_item = "" 89*b077aed3SPierre Pronchery. "=item B<-rand> I<files>, B<-writerand> I<file>\n" 90*b077aed3SPierre Pronchery. "\n" 91*b077aed3SPierre Pronchery. "See L<openssl(1)/Random State Options> for details."; 92*b077aed3SPierre Pronchery 93*b077aed3SPierre Pronchery# Provider options 94*b077aed3SPierre Pronchery$OpenSSL::safe::opt_provider_synopsis = "" 95*b077aed3SPierre Pronchery. "[B<-provider> I<name>]\n" 96*b077aed3SPierre Pronchery. "[B<-provider-path> I<path>]\n" 97*b077aed3SPierre Pronchery. "[B<-propquery> I<propq>]"; 98*b077aed3SPierre Pronchery$OpenSSL::safe::opt_provider_item = "" 99*b077aed3SPierre Pronchery. "=item B<-provider> I<name>\n" 100*b077aed3SPierre Pronchery. "\n" 101*b077aed3SPierre Pronchery. "=item B<-provider-path> I<path>\n" 102*b077aed3SPierre Pronchery. "\n" 103*b077aed3SPierre Pronchery. "=item B<-propquery> I<propq>\n" 104*b077aed3SPierre Pronchery. "\n" 105*b077aed3SPierre Pronchery. "See L<openssl(1)/Provider Options>, L<provider(7)>, and L<property(7)>."; 106*b077aed3SPierre Pronchery 107*b077aed3SPierre Pronchery# Configuration option 108*b077aed3SPierre Pronchery$OpenSSL::safe::opt_config_synopsis = "" 109*b077aed3SPierre Pronchery. "[B<-config> I<configfile>]"; 110*b077aed3SPierre Pronchery$OpenSSL::safe::opt_config_item = "" 111*b077aed3SPierre Pronchery. "=item B<-config> I<configfile>\n" 112*b077aed3SPierre Pronchery. "\n" 113*b077aed3SPierre Pronchery. "See L<openssl(1)/Configuration Option>."; 114*b077aed3SPierre Pronchery 115*b077aed3SPierre Pronchery# Engine option 116*b077aed3SPierre Pronchery$OpenSSL::safe::opt_engine_synopsis = ""; 117*b077aed3SPierre Pronchery$OpenSSL::safe::opt_engine_item = ""; 118*b077aed3SPierre Proncheryif (!$disabled{"deprecated-3.0"}) { 119*b077aed3SPierre Pronchery $OpenSSL::safe::opt_engine_synopsis = "" 120*b077aed3SPierre Pronchery . "[B<-engine> I<id>]\n"; 121*b077aed3SPierre Pronchery $OpenSSL::safe::opt_engine_item = "" 122*b077aed3SPierre Pronchery . "=item B<-engine> I<id>\n" 123*b077aed3SPierre Pronchery . "\n" 124*b077aed3SPierre Pronchery . "See L<openssl(1)/Engine Options>.\n" 125*b077aed3SPierre Pronchery . "This option is deprecated."; 126*b077aed3SPierre Pronchery} 127*b077aed3SPierre Pronchery 128*b077aed3SPierre Pronchery# Trusted certs options 129*b077aed3SPierre Pronchery$OpenSSL::safe::opt_trust_synopsis = "" 130*b077aed3SPierre Pronchery. "[B<-CAfile> I<file>]\n" 131*b077aed3SPierre Pronchery. "[B<-no-CAfile>]\n" 132*b077aed3SPierre Pronchery. "[B<-CApath> I<dir>]\n" 133*b077aed3SPierre Pronchery. "[B<-no-CApath>]\n" 134*b077aed3SPierre Pronchery. "[B<-CAstore> I<uri>]\n" 135*b077aed3SPierre Pronchery. "[B<-no-CAstore>]"; 136*b077aed3SPierre Pronchery$OpenSSL::safe::opt_trust_item = "" 137*b077aed3SPierre Pronchery. "=item B<-CAfile> I<file>, B<-no-CAfile>, B<-CApath> I<dir>, B<-no-CApath>,\n" 138*b077aed3SPierre Pronchery. "B<-CAstore> I<uri>, B<-no-CAstore>\n" 139*b077aed3SPierre Pronchery. "\n" 140*b077aed3SPierre Pronchery. "See L<openssl-verification-options(1)/Trusted Certificate Options> for details."; 141*b077aed3SPierre Pronchery 142*b077aed3SPierre Pronchery# TLS Version Options 143*b077aed3SPierre Pronchery$OpenSSL::safe::opt_versiontls_synopsis = "" 144*b077aed3SPierre Pronchery. "[B<-no_ssl3>]\n" 145*b077aed3SPierre Pronchery. "[B<-no_tls1>]\n" 146*b077aed3SPierre Pronchery. "[B<-no_tls1_1>]\n" 147*b077aed3SPierre Pronchery. "[B<-no_tls1_2>]\n" 148*b077aed3SPierre Pronchery. "[B<-no_tls1_3>]\n" 149*b077aed3SPierre Pronchery. "[B<-ssl3>]\n" 150*b077aed3SPierre Pronchery. "[B<-tls1>]\n" 151*b077aed3SPierre Pronchery. "[B<-tls1_1>]\n" 152*b077aed3SPierre Pronchery. "[B<-tls1_2>]\n" 153*b077aed3SPierre Pronchery. "[B<-tls1_3>]"; 154*b077aed3SPierre Pronchery$OpenSSL::safe::opt_versiontls_item = "" 155*b077aed3SPierre Pronchery. "=item B<-no_ssl3>, B<-no_tls1>, B<-no_tls1_1>, B<-no_tls1_2>, B<-no_tls1_3>,\n" 156*b077aed3SPierre Pronchery. "B<-ssl3>, B<-tls1>, B<-tls1_1>, B<-tls1_2>, B<-tls1_3>\n" 157*b077aed3SPierre Pronchery. "\n" 158*b077aed3SPierre Pronchery. "See L<openssl(1)/TLS Version Options>."; 159*b077aed3SPierre Pronchery 160*b077aed3SPierre Pronchery# TLS/DTLS Version Options 161*b077aed3SPierre Pronchery$OpenSSL::safe::opt_version_synopsis = "" 162*b077aed3SPierre Pronchery. "$OpenSSL::safe::opt_versiontls_synopsis\n" 163*b077aed3SPierre Pronchery. "[B<-dtls>]\n" 164*b077aed3SPierre Pronchery. "[B<-dtls1>]\n" 165*b077aed3SPierre Pronchery. "[B<-dtls1_2>]"; 166*b077aed3SPierre Pronchery$OpenSSL::safe::opt_version_item = "\n" 167*b077aed3SPierre Pronchery. "$OpenSSL::safe::opt_versiontls_item\n" 168*b077aed3SPierre Pronchery. "\n" 169*b077aed3SPierre Pronchery. "=item B<-dtls>, B<-dtls1>, B<-dtls1_2>\n" 170*b077aed3SPierre Pronchery. "\n" 171*b077aed3SPierre Pronchery. "These specify the use of DTLS instead of TLS.\n" 172*b077aed3SPierre Pronchery. "See L<openssl(1)/TLS Version Options>."; 173*b077aed3SPierre Pronchery 174*b077aed3SPierre Pronchery# SSL connection options. 175*b077aed3SPierre Pronchery# TODO # options will probably be re-ordered. 176*b077aed3SPierre Pronchery$OpenSSL::safe::opt_s_synopsis = "" 177*b077aed3SPierre Pronchery. "[B<-bugs>]\n" 178*b077aed3SPierre Pronchery. "[B<-no_comp>]\n" 179*b077aed3SPierre Pronchery. "[B<-comp>]\n" 180*b077aed3SPierre Pronchery. "[B<-no_ticket>]\n" 181*b077aed3SPierre Pronchery. "[B<-serverpref>]\n" 182*b077aed3SPierre Pronchery. "[B<-client_renegotiation>]\n" 183*b077aed3SPierre Pronchery. "[B<-legacy_renegotiation>]\n" 184*b077aed3SPierre Pronchery. "[B<-no_renegotiation>]\n" 185*b077aed3SPierre Pronchery. "[B<-no_resumption_on_reneg>]\n" 186*b077aed3SPierre Pronchery. "[B<-legacy_server_connect>]\n" 187*b077aed3SPierre Pronchery. "[B<-no_legacy_server_connect>]\n" 188*b077aed3SPierre Pronchery. "[B<-no_etm>]\n" 189*b077aed3SPierre Pronchery. "[B<-allow_no_dhe_kex>]\n" 190*b077aed3SPierre Pronchery. "[B<-prioritize_chacha>]\n" 191*b077aed3SPierre Pronchery. "[B<-strict>]\n" 192*b077aed3SPierre Pronchery. "[B<-sigalgs> I<algs>]\n" 193*b077aed3SPierre Pronchery. "[B<-client_sigalgs> I<algs>]\n" 194*b077aed3SPierre Pronchery. "[B<-groups> I<groups>]\n" 195*b077aed3SPierre Pronchery. "[B<-curves> I<curves>]\n" 196*b077aed3SPierre Pronchery. "[B<-named_curve> I<curve>]\n" 197*b077aed3SPierre Pronchery. "[B<-cipher> I<ciphers>]\n" 198*b077aed3SPierre Pronchery. "[B<-ciphersuites> I<1.3ciphers>]\n" 199*b077aed3SPierre Pronchery. "[B<-min_protocol> I<minprot>]\n" 200*b077aed3SPierre Pronchery. "[B<-max_protocol> I<maxprot>]\n" 201*b077aed3SPierre Pronchery. "[B<-record_padding> I<padding>]\n" 202*b077aed3SPierre Pronchery. "[B<-debug_broken_protocol>]\n" 203*b077aed3SPierre Pronchery. "[B<-no_middlebox>]"; 204*b077aed3SPierre Pronchery$OpenSSL::safe::opt_s_item = "" 205*b077aed3SPierre Pronchery. "=item B<-bugs>, B<-comp>, B<-no_comp>, B<-no_ticket>, B<-serverpref>,\n" 206*b077aed3SPierre Pronchery. "B<-client_renegotiation>,\n" 207*b077aed3SPierre Pronchery. "B<-legacy_renegotiation>, B<-no_renegotiation>,\n" 208*b077aed3SPierre Pronchery. "B<-no_resumption_on_reneg>,\n" 209*b077aed3SPierre Pronchery. "B<-legacy_server_connect>, B<-no_legacy_server_connect>, B<-no_etm>\n" 210*b077aed3SPierre Pronchery. "B<-allow_no_dhe_kex>, B<-prioritize_chacha>, B<-strict>, B<-sigalgs>\n" 211*b077aed3SPierre Pronchery. "I<algs>, B<-client_sigalgs> I<algs>, B<-groups> I<groups>, B<-curves>\n" 212*b077aed3SPierre Pronchery. "I<curves>, B<-named_curve> I<curve>, B<-cipher> I<ciphers>, B<-ciphersuites>\n" 213*b077aed3SPierre Pronchery. "I<1.3ciphers>, B<-min_protocol> I<minprot>, B<-max_protocol> I<maxprot>,\n" 214*b077aed3SPierre Pronchery. "B<-record_padding> I<padding>, B<-debug_broken_protocol>, B<-no_middlebox>\n" 215*b077aed3SPierre Pronchery. "\n" 216*b077aed3SPierre Pronchery. "See L<SSL_CONF_cmd(3)/SUPPORTED COMMAND LINE COMMANDS> for details."; 217*b077aed3SPierre Pronchery 218*b077aed3SPierre Proncherypackage OpenSSL::safe; 219*b077aed3SPierre Proncherysub output_do_not_edit_headers { 220*b077aed3SPierre Pronchery return "\n=begin comment\n\n" 221*b077aed3SPierre Pronchery . join("\n", @autowarntext) 222*b077aed3SPierre Pronchery . "\n\n=end comment"; 223*b077aed3SPierre Pronchery} 224*b077aed3SPierre Pronchery1; 225