xref: /freebsd/secure/lib/libcrypto/Makefile (revision 929f5966a9fd3d050c7b604513c6fb4ac9b5d335)
1SHLIBDIR?=	/lib
2.if !defined(LIBCRYPTO_WITHOUT_SUBDIRS) && !defined(BOOTSTRAPPING)
3SUBDIR=		engines modules
4.endif
5.ifdef BOOTSTRAPPING
6CFLAGS+=	-DOPENSSL_NO_SCTP
7.endif
8
9.include <bsd.own.mk>
10.include <src.opts.mk>
11
12LIB=		crypto
13SHLIB_MAJOR=	35
14VERSION_MAP=	${.CURDIR}/Version.map
15
16NO_LINT=
17PCFILES=	libcrypto.pc
18
19.include "Makefile.man"
20.include "Makefile.inc"
21
22# $UTIL_COMMON
23SRCS=	cryptlib.c params.c params_from_text.c bsearch.c ex_data.c o_str.c
24SRCS+=	threads_pthread.c threads_win.c threads_none.c initthread.c
25SRCS+=	context.c sparse_array.c asn1_dsa.c packet.c param_build.c
26SRCS+=	param_build_set.c der_writer.c threads_lib.c params_dup.c
27SRCS+=	time.c params_idx.c
28
29SRCS+=	mem.c mem_sec.c
30SRCS+=	comp_methods.c cversion.c info.c cpt_err.c ebcdic.c uid.c o_time.c
31SRCS+=	o_dir.c o_fopen.c getenv.c o_init.c init.c trace.c provider.c
32SRCS+=	provider_child.c punycode.c passphrase.c sleep.c deterministic_nonce.c
33SRCS+=	quic_vlint.c defaults.c ssl_err.c
34
35SRCS+=	core_algorithm.c core_fetch.c core_namemap.c cpuid.c ctype.c
36SRCS+=	indicator_core.c
37SRCS+=	provider_conf.c provider_core.c provider_predefined.c
38SRCS+=	self_test_core.c
39.if defined(ASM_aarch64)
40SRCS+=	arm64cpuid.S armcap.c
41ACFLAGS.arm64cpuid.S=	-march=armv8-a+crypto
42.elif defined(ASM_amd64)
43SRCS+=	x86_64cpuid.S
44.elif defined(ASM_arm)
45SRCS+=	armv4cpuid.S armcap.c
46.elif defined(ASM_i386)
47SRCS+=	x86cpuid.S
48.elif defined(ASM_powerpc)
49SRCS+=	ppccpuid.S ppccap.c
50.elif defined(ASM_powerpc64)
51SRCS+=	ppccpuid.S ppccap.c
52.elif defined(ASM_powerpc64le)
53SRCS+=	ppccpuid.S ppccap.c
54.else
55SRCS+=	mem_clr.c
56.endif
57
58# aes
59SRCS+=	aes_cfb.c aes_ecb.c aes_ige.c aes_misc.c aes_ofb.c aes_wrap.c
60.if defined(ASM_aarch64)
61SRCS+=	aes_cbc.c aes_core.c aesv8-armx.S vpaes-armv8.S
62ACFLAGS.aesv8-armx.S=	-march=armv8-a+crypto
63.elif defined(ASM_amd64)
64SRCS+=	aes-x86_64.S aesni-mb-x86_64.S aesni-sha1-x86_64.S aesni-sha256-x86_64.S
65SRCS+=	aesni-x86_64.S aesni-xts-avx512.S bsaes-x86_64.S vpaes-x86_64.S
66.elif defined(ASM_arm)
67SRCS+=	aes_cbc.c aes-armv4.S aesv8-armx.S bsaes-armv7.S
68.elif defined(ASM_i386)
69SRCS+=	aes-586.S aesni-x86.S vpaes-x86.S
70.elif defined(ASM_powerpc)
71SRCS+=	aes_cbc.c aes_core.c aes-ppc.S vpaes-ppc.S aesp8-ppc.S
72.elif defined(ASM_powerpc64)
73SRCS+=	aes_cbc.c aes_core.c aes-ppc.S vpaes-ppc.S aesp8-ppc.S
74.elif defined(ASM_powerpc64le)
75SRCS+=	aes_cbc.c aes_core.c aes-ppc.S vpaes-ppc.S aesp8-ppc.S
76.else
77SRCS+=	aes_cbc.c aes_core.c
78.endif
79
80# asn1
81SRCS+=	a_bitstr.c a_d2i_fp.c a_digest.c a_dup.c a_gentm.c a_i2d_fp.c
82SRCS+=	a_int.c a_mbstr.c a_object.c a_octet.c a_print.c a_sign.c a_strex.c
83SRCS+=	a_strnid.c a_time.c a_type.c a_utctm.c a_utf8.c a_verify.c
84SRCS+=	ameth_lib.c asn1_err.c asn1_gen.c asn1_item_list.c asn1_lib.c
85SRCS+=	asn1_parse.c asn_mime.c asn_moid.c asn_mstbl.c asn_pack.c bio_asn1.c
86SRCS+=	bio_ndef.c d2i_param.c d2i_pr.c d2i_pu.c evp_asn1.c f_int.c f_string.c
87SRCS+=	i2d_evp.c n_pkey.c nsseq.c p5_pbe.c p5_pbev2.c p5_scrypt.c p8_pkey.c
88SRCS+=	t_bitst.c t_pkey.c t_spki.c tasn_dec.c tasn_enc.c tasn_fre.c
89SRCS+=	tasn_new.c tasn_prn.c tasn_scn.c tasn_typ.c tasn_utl.c x_algor.c
90SRCS+=	x_bignum.c x_info.c x_int64.c x_long.c x_pkey.c x_sig.c x_spki.c
91SRCS+=	x_val.c
92
93# async
94SRCS+=	async.c async_err.c async_posix.c async_wait.c
95
96# bf
97SRCS+=	bf_cfb64.c bf_ecb.c bf_ofb64.c bf_prefix.c bf_readbuff.c bf_skey.c
98.if defined(ASM_i386)
99SRCS+=	bf-586.S
100.else
101SRCS+=	bf_enc.c
102.endif
103
104# bio
105SRCS+=	bio_addr.c bio_dump.c bio_print.c bio_sock.c bio_sock2.c bf_buff.c
106SRCS+=	bf_lbuf.c bf_nbio.c bf_null.c bio_cb.c bio_err.c bio_lib.c bio_meth.c
107SRCS+=	bss_acpt.c bss_bio.c bss_conn.c bss_core.c bss_dgram.c bss_dgram_pair.c bss_fd.c
108SRCS+=	bss_file.c bss_log.c bss_mem.c bss_null.c bss_sock.c ossl_core_bio.c
109
110# bn
111SRCS+=	bn_add.c bn_blind.c bn_const.c bn_conv.c bn_ctx.c bn_depr.c bn_dh.c
112SRCS+=	bn_div.c bn_err.c bn_exp.c bn_exp2.c bn_gcd.c bn_gf2m.c bn_intern.c
113SRCS+=	bn_kron.c bn_lib.c bn_mod.c bn_mont.c bn_mpi.c bn_mul.c bn_nist.c
114SRCS+=	bn_prime.c bn_print.c bn_rand.c bn_recp.c bn_rsa_fips186_4.c bn_shift.c
115SRCS+=	bn_sqr.c bn_sqrt.c bn_srp.c bn_word.c bn_x931p.c
116.if defined(ASM_aarch64)
117SRCS+=	armv8-mont.S bn_asm.c
118.elif defined(ASM_amd64)
119SRCS+=	rsaz-2k-avx512.S rsaz-2k-avxifma.S
120SRCS+=	rsaz-3k-avx512.S rsaz-3k-avxifma.S
121SRCS+=	rsaz-4k-avx512.S rsaz-4k-avxifma.S
122SRCS+=	rsaz-avx2.S rsaz-x86_64.S rsaz_exp.c rsaz_exp_x2.c
123SRCS+=	x86_64-gcc.c x86_64-gf2m.S x86_64-mont.S x86_64-mont5.S
124.elif defined(ASM_arm)
125SRCS+=	armv4-gf2m.S armv4-mont.S bn_asm.c
126.elif defined(ASM_i386)
127SRCS+=	bn-586.S co-586.S x86-gf2m.S x86-mont.S
128.elif defined(ASM_powerpc)
129SRCS+=	bn_ppc.c bn-ppc.S ppc-mont.S
130.elif defined(ASM_powerpc64)
131SRCS+=	bn_ppc.c bn-ppc.S ppc-mont.S
132.elif defined(ASM_powerpc64le)
133SRCS+=	bn_ppc.c bn-ppc.S ppc-mont.S
134.else
135SRCS+=	bn_asm.c
136.endif
137
138# Full of strict aliasing violations that LLVM has been seen to break with
139# optimisations, which can lead to ECDSA signatures not working. See
140# https://github.com/openssl/openssl/issues/12247 for the upstream bug report.
141CFLAGS.bn_nist.c+=	-fno-strict-aliasing
142
143# buffer
144SRCS+=	buf_err.c buffer.c
145
146# camellia
147SRCS+=	cmll_cfb.c cmll_ctr.c cmll_ecb.c cmll_ofb.c
148.if defined(ASM_amd64)
149SRCS+=	cmll-x86_64.S cmll_misc.c
150.elif defined(ASM_i386)
151SRCS+=	cmll-x86.S
152.else
153SRCS+=	camellia.c cmll_cbc.c cmll_misc.c
154.endif
155
156# cast
157SRCS+=	c_cfb64.c c_ecb.c c_enc.c c_ofb64.c c_skey.c
158
159# chacha
160.if defined(ASM_aarch64)
161SRCS+=	chacha-armv8.S chacha-armv8-sve.S
162.elif defined(ASM_amd64)
163SRCS+=	chacha-x86_64.S
164.elif defined(ASM_arm)
165SRCS+=	chacha-armv4.S
166.elif defined(ASM_i386)
167SRCS+=	chacha-x86.S
168.elif defined(ASM_powerpc)
169SRCS+=	chacha_ppc.c chacha-ppc.S chachap10-ppc.S
170.elif defined(ASM_powerpc64)
171SRCS+=	chacha_ppc.c chacha-ppc.S chachap10-ppc.S
172.elif defined(ASM_powerpc64le)
173SRCS+=	chacha_ppc.c chacha-ppc.S chachap10-ppc.S
174.else
175SRCS+=	chacha_enc.c
176.endif
177
178# cmac
179SRCS+=	cmac.c
180
181# cmp
182SRCS+=	cmp_asn.c cmp_ctx.c cmp_err.c cmp_util.c
183SRCS+=	cmp_status.c cmp_hdr.c cmp_protect.c cmp_msg.c cmp_vfy.c
184SRCS+=	cmp_server.c cmp_client.c cmp_genm.c
185SRCS+=	cmp_http.c
186
187# cms
188SRCS+=	cms_asn1.c cms_att.c cms_cd.c cms_dd.c cms_dh.c cms_ec.c cms_enc.c
189SRCS+=	cms_env.c cms_err.c cms_ess.c cms_io.c cms_kari.c cms_lib.c cms_pwri.c
190SRCS+=	cms_rsa.c cms_sd.c cms_smime.c
191
192# comp
193SRCS+=	comp_lib.c comp_err.c c_brotli.c c_zstd.c c_zlib.c
194
195# conf
196SRCS+=	conf_api.c conf_def.c conf_err.c conf_lib.c conf_mall.c conf_mod.c
197SRCS+=	conf_sap.c conf_ssl.c
198
199# crmf
200SRCS+=	crmf_asn.c crmf_err.c crmf_lib.c crmf_pbm.c
201
202# ct
203SRCS+=	ct_b64.c ct_err.c ct_log.c ct_oct.c ct_policy.c ct_prn.c ct_sct.c
204SRCS+=	ct_sct_ctx.c ct_vfy.c ct_x509v3.c
205
206# des
207SRCS+=	cbc_cksm.c cbc_enc.c cfb64ede.c cfb64enc.c cfb_enc.c ecb3_enc.c
208SRCS+=	ecb_enc.c fcrypt.c ofb64ede.c ofb64enc.c ofb_enc.c pcbc_enc.c
209SRCS+=	qud_cksm.c rand_key.c set_key.c str2key.c xcbc_enc.c
210.if defined(ASM_i386)
211SRCS+=	crypt586.S des-586.S
212.else
213SRCS+=	des_enc.c fcrypt_b.c
214.endif
215
216# dh
217SRCS+=	dh_ameth.c dh_asn1.c dh_backend.c dh_check.c dh_depr.c dh_err.c dh_gen.c
218SRCS+=	dh_group_params.c dh_kdf.c dh_key.c dh_lib.c dh_meth.c dh_pmeth.c
219SRCS+=	dh_prn.c dh_rfc5114.c
220
221# dsa
222SRCS+=	dsa_ameth.c dsa_asn1.c dsa_backend.c dsa_check.c dsa_depr.c dsa_err.c
223SRCS+=	dsa_gen.c dsa_key.c dsa_lib.c dsa_meth.c dsa_ossl.c dsa_pmeth.c
224SRCS+=	dsa_prn.c dsa_sign.c dsa_vrf.c
225
226# dso
227SRCS+=	dso_dlfcn.c dso_err.c dso_lib.c
228
229# ec
230SRCS+=	curve25519.c curve448.c curve448_tables.c ec2_oct.c ec2_smpl.c
231SRCS+=	ec_ameth.c ec_asn1.c ec_backend.c ec_check.c ec_curve.c ec_cvt.c
232SRCS+=	ec_deprecated.c ec_err.c ec_key.c ec_kmeth.c ec_lib.c ec_mult.c ec_oct.c
233SRCS+=	ec_pmeth.c ec_print.c ecdh_kdf.c ecdh_ossl.c ecdsa_ossl.c ecdsa_sign.c
234SRCS+=	ecdsa_vrf.c eck_prn.c ecp_mont.c ecp_nist.c
235SRCS+=	ecp_oct.c ecp_smpl.c ecx_backend.c ecx_key.c ecx_meth.c eddsa.c
236SRCS+=	f_generic.c f_impl32.c f_impl64.c scalar.c
237# see OPENSSL_NO_EC_NISTP_64_GCC_128 in configuration.h
238.if ${MACHINE_ABI:Mlittle-endian} && ${MACHINE_ABI:Mlong64}
239SRCS+=	ecp_nistp224.c ecp_nistp256.c ecp_nistp384.c ecp_nistp521.c ecp_nistputil.c
240.else
241CFLAGS+=-DOPENSSL_NO_EC_NISTP_64_GCC_128
242.endif
243.if defined(ASM_aarch64)
244SRCS+=	ecp_nistz256-armv8.S ecp_nistz256.c
245.elif defined(ASM_amd64)
246SRCS+=	ecp_nistz256-x86_64.S ecp_nistz256.c x25519-x86_64.S
247.elif defined(ASM_arm)
248SRCS+=	ecp_nistz256-armv4.S ecp_nistz256.c
249.elif defined(ASM_i386)
250SRCS+=	ecp_nistz256-x86.S ecp_nistz256.c
251.elif defined(ASM_powerpc64)
252SRCS+=	ecp_nistp521-ppc64.S ecp_nistz256-ppc64.S ecp_nistz256.c ecp_ppc.c x25519-ppc64.S
253.elif defined(ASM_powerpc64le)
254SRCS+=	ecp_nistp521-ppc64.S ecp_nistz256-ppc64.S ecp_nistz256.c ecp_ppc.c x25519-ppc64.S
255.endif
256
257# encode_decode
258SRCS+=	decoder_err.c decoder_lib.c decoder_meth.c decoder_pkey.c
259SRCS+=	encoder_err.c encoder_lib.c encoder_meth.c encoder_pkey.c
260
261# engine
262SRCS+=	eng_all.c eng_cnf.c eng_ctrl.c eng_dyn.c eng_err.c
263SRCS+=	eng_fat.c eng_init.c eng_lib.c eng_list.c eng_openssl.c eng_pkey.c
264SRCS+=	eng_rdrand.c eng_table.c tb_asnmth.c tb_cipher.c tb_dh.c tb_digest.c
265SRCS+=	tb_dsa.c tb_eckey.c tb_pkmeth.c tb_rand.c tb_rsa.c
266
267# err
268SRCS+=	err.c err_all.c err_all_legacy.c err_blocks.c err_mark.c err_prn.c err_save.c
269
270# ess
271SRCS+=	ess_asn1.c ess_err.c ess_lib.c
272
273# evp
274SRCS+=	asymcipher.c bio_b64.c bio_enc.c bio_md.c bio_ok.c c_allc.c c_alld.c cmeth_lib.c
275SRCS+=	ctrl_params_translate.c dh_ctrl.c dh_support.c digest.c dsa_ctrl.c e_aes.c e_aes_cbc_hmac_sha1.c
276SRCS+=	e_aes_cbc_hmac_sha256.c e_aria.c e_bf.c e_camellia.c e_cast.c
277SRCS+=	e_chacha20_poly1305.c e_des.c e_des3.c e_idea.c e_null.c e_old.c
278SRCS+=	e_rc2.c e_rc4.c e_rc4_hmac_md5.c e_rc5.c e_seed.c e_sm4.c e_xcbc_d.c ec_ctrl.c ec_support.c
279SRCS+=	encode.c evp_cnf.c evp_enc.c evp_err.c evp_fetch.c evp_key.c evp_lib.c evp_pbe.c
280SRCS+=	evp_pkey.c evp_rand.c evp_utils.c exchange.c kdf_lib.c kdf_meth.c kem.c keymgmt_lib.c keymgmt_meth.c
281SRCS+=	legacy_blake2.c legacy_md4.c legacy_md5.c legacy_md5_sha1.c m_null.c
282SRCS+=	legacy_ripemd.c legacy_sha.c legacy_wp.c m_sigver.c mac_lib.c mac_meth.c names.c p5_crpt.c
283SRCS+=	p5_crpt2.c p_dec.c p_enc.c p_legacy.c p_lib.c s_lib.c p_open.c p_seal.c p_sign.c
284SRCS+=	p_verify.c pbe_scrypt.c pmeth_check.c pmeth_gn.c skeymgmt_meth.c pmeth_lib.c signature.c
285
286# ffc
287SRCS+=	ffc_backend.c ffc_dh.c ffc_key_generate.c ffc_key_validate.c
288SRCS+=	ffc_params.c ffc_params_generate.c ffc_params_validate.c
289
290# hashtable
291SRCS+=	hashtable.c hashfunc.c
292
293# hmac
294SRCS+=	hmac.c hmac_s390x.c
295
296# hpke
297SRCS+=	hpke_util.c hpke.c
298
299# http
300SRCS+=	http_client.c http_err.c http_lib.c
301
302# kdf
303SRCS+=	kdf_err.c
304
305# lhash
306SRCS+=	lh_stats.c lhash.c
307
308# md4
309SRCS+=	md4_dgst.c md4_one.c
310
311# md5
312SRCS+=	md5_dgst.c md5_one.c md5_sha1.c
313.if defined(ASM_amd64)
314SRCS+=	md5-x86_64.S
315.elif defined(ASM_i386)
316SRCS+=	md5-586.S
317.endif
318
319# ml_dsa
320SRCS+=	ml_dsa_encoders.c ml_dsa_key_compress.c ml_dsa_key.c
321SRCS+=	ml_dsa_matrix.c ml_dsa_ntt.c ml_dsa_params.c ml_dsa_sample.c
322SRCS+=	ml_dsa_sign.c
323
324# ml_kem
325SRCS+=	ml_kem.c
326
327# modes
328SRCS+=	cbc128.c ccm128.c cfb128.c ctr128.c cts128.c gcm128.c ocb128.c
329SRCS+=	ofb128.c siv128.c wrap128.c xts128.c xts128gb.c
330.if defined(ASM_aarch64)
331SRCS+=	ghashv8-armx.S aes-gcm-armv8_64.S aes-gcm-armv8-unroll8_64.S
332ACFLAGS.ghashv8-armx.S=	-march=armv8-a+crypto
333.elif defined(ASM_amd64)
334SRCS+=	aesni-gcm-x86_64.S aes-gcm-avx512.S ghash-x86_64.S
335.elif defined(ASM_arm)
336SRCS+=	ghash-armv4.S ghashv8-armx.S
337.elif defined(ASM_i386)
338SRCS+=	ghash-x86.S
339.elif defined(ASM_powerpc)
340SRCS+=	ghashp8-ppc.S
341.elif defined(ASM_powerpc64)
342SRCS+=	aes-gcm-ppc.S ghashp8-ppc.S
343.elif defined(ASM_powerpc64le)
344SRCS+=	aes-gcm-ppc.S ghashp8-ppc.S
345.endif
346
347# objects
348SRCS+=	o_names.c obj_dat.c obj_err.c obj_lib.c obj_xref.c
349
350# ocsp
351SRCS+=	ocsp_asn.c ocsp_cl.c ocsp_err.c ocsp_ext.c ocsp_http.c ocsp_lib.c
352SRCS+=	ocsp_prn.c ocsp_srv.c ocsp_vfy.c v3_ocsp.c
353
354# pem
355SRCS+=	pem_all.c pem_err.c pem_info.c pem_lib.c pem_oth.c pem_pk8.c
356SRCS+=	pem_pkey.c pem_sign.c pem_x509.c pem_xaux.c pvkfmt.c
357
358# pkcs12
359SRCS+=	p12_add.c p12_asn.c p12_attr.c p12_crpt.c p12_crt.c p12_decr.c
360SRCS+=	p12_init.c p12_key.c p12_kiss.c p12_mutl.c p12_npas.c p12_p8d.c
361SRCS+=	p12_p8e.c p12_sbag.c p12_utl.c pk12err.c
362
363# pkcs7
364SRCS+=	bio_pk7.c pk7_asn1.c pk7_attr.c pk7_doit.c pk7_lib.c pk7_mime.c
365SRCS+=	pk7_smime.c pkcs7err.c
366
367# poly1305
368SRCS+=	poly1305.c
369.if defined(ASM_aarch64)
370SRCS+=	poly1305-armv8.S
371.elif defined(ASM_amd64)
372SRCS+=	poly1305-x86_64.S
373.elif defined(ASM_arm)
374SRCS+=	poly1305-armv4.S
375.elif defined(ASM_i386)
376SRCS+=	poly1305-x86.S
377.elif defined(ASM_powerpc)
378SRCS+=	poly1305_ppc.c poly1305-ppc.S poly1305-ppcfp.S
379.elif defined(ASM_powerpc64)
380SRCS+=	poly1305_ppc.c poly1305-ppc.S poly1305-ppcfp.S
381.elif defined(ASM_powerpc64le)
382SRCS+=	poly1305_ppc.c poly1305-ppc.S poly1305-ppcfp.S
383.endif
384
385# property
386SRCS+=	defn_cache.c property.c property_err.c property_parse.c property_query.c
387SRCS+=	property_string.c
388
389# providers
390SRCS+=	baseprov.c defltprov.c nullprov.c prov_running.c
391
392# providers/common
393SRCS+=	bio_prov.c capabilities.c digest_to_nid.c provider_ctx.c provider_err.c
394SRCS+=	provider_seeding.c provider_util.c securitycheck.c
395SRCS+=	securitycheck_default.c
396
397# providers/common/der
398SRCS+=	der_rsa_gen.c der_rsa_key.c der_rsa_sig.c
399SRCS+=	der_digests_gen.c
400SRCS+=	der_ml_dsa_gen.c der_ml_dsa_key.c
401SRCS+=	der_wrap_gen.c
402SRCS+=	der_slh_dsa_gen.c der_slh_dsa_key.c
403SRCS+=	der_dsa_gen.c der_dsa_key.c der_dsa_sig.c
404SRCS+=	der_ec_gen.c der_ec_key.c der_ec_sig.c
405SRCS+=	der_ecx_gen.c der_ecx_key.c
406
407# providers/implementations/asymciphers
408SRCS+=	rsa_enc.c
409
410# providers/implementations/ciphers
411SRCS+=	ciphercommon.c ciphercommon_hw.c ciphercommon_block.c \
412	ciphercommon_gcm.c ciphercommon_gcm_hw.c \
413	ciphercommon_ccm.c ciphercommon_ccm_hw.c
414SRCS+=	cipher_aes.c cipher_aes_hw.c \
415	cipher_aes_xts.c cipher_aes_xts_hw.c \
416	cipher_aes_gcm.c cipher_aes_gcm_hw.c \
417	cipher_aes_ccm.c cipher_aes_ccm_hw.c \
418	cipher_aes_wrp.c \
419	cipher_aes_cbc_hmac_sha.c \
420	cipher_aes_cbc_hmac_sha256_hw.c cipher_aes_cbc_hmac_sha1_hw.c \
421	cipher_cts.c
422SRCS+=	cipher_aes_ocb.c cipher_aes_ocb_hw.c
423SRCS+=	cipher_aes_xts_fips.c
424SRCS+=	cipher_aes_gcm_siv.c cipher_aes_gcm_siv_hw.c \
425	cipher_aes_gcm_siv_polyval.c
426SRCS+=	cipher_aes_siv.c cipher_aes_siv_hw.c
427SRCS+=	cipher_blowfish.c cipher_blowfish_hw.c
428SRCS+=	cipher_camellia.c cipher_camellia_hw.c
429SRCS+=	cipher_cast5.c cipher_cast5_hw.c
430SRCS+=	cipher_chacha20.c cipher_chacha20_hw.c
431SRCS+=	cipher_chacha20_poly1305.c cipher_chacha20_poly1305_hw.c
432SRCS+=	cipher_des.c cipher_des_hw.c
433SRCS+=	cipher_desx.c cipher_desx_hw.c
434SRCS+=	cipher_null.c
435SRCS+=	cipher_rc4.c cipher_rc4_hw.c
436SRCS+=	cipher_rc4_hmac_md5.c cipher_rc4_hmac_md5_hw.c
437SRCS+=	cipher_seed.c cipher_seed_hw.c
438SRCS+=	cipher_tdes.c cipher_tdes_common.c cipher_tdes_hw.c
439SRCS+=	cipher_tdes_default.c cipher_tdes_default_hw.c \
440	cipher_tdes_wrap.c cipher_tdes_wrap_hw.c
441
442# providers/implementations/digests
443SRCS+=	digestcommon.c
444SRCS+=	blake2_prov.c blake2b_prov.c blake2s_prov.c
445SRCS+=	md4_prov.c
446SRCS+=	md5_prov.c md5_sha1_prov.c
447SRCS+=	null_prov.c
448SRCS+=	ripemd_prov.c
449SRCS+=	sha2_prov.c sha3_prov.c
450SRCS+=	wp_prov.c
451
452# providers/implementations/encode_decode
453SRCS+=	decode_der2key.c decode_epki2pki.c decode_msblob2key.c decode_pvk2key.c
454SRCS+=	decode_pem2der.c decode_spki2typespki.c
455SRCS+=	encode_key2any.c encode_key2blob.c encode_key2ms.c encode_key2text.c
456SRCS+=	endecoder_common.c
457SRCS+=	ml_dsa_codecs.c ml_kem_codecs.c ml_common_codecs.c
458
459# providers/implementations/exchange
460SRCS+=	dh_exch.c
461SRCS+=	ecx_exch.c ecdh_exch.c
462SRCS+=	kdf_exch.c
463
464# providers/implementations/kdfs
465SRCS+=	argon2.c hkdf.c hmacdrbg_kdf.c kbkdf.c krb5kdf.c
466SRCS+=	pbkdf1.c pbkdf2.c pbkdf2_fips.c
467SRCS+=	pkcs12kdf.c pvkkdf.c scrypt.c sskdf.c sshkdf.c tls1_prf.c x942kdf.c
468
469# providers/implementations/kem
470SRCS+=	ec_kem.c ecx_kem.c kem_util.c ml_kem_kem.c mlx_kem.c rsa_kem.c
471
472# providers/implementations/keymgmt
473SRCS+=	dh_kmgmt.c dsa_kmgmt.c ec_kmgmt.c ecx_kmgmt.c kdf_legacy_kmgmt.c
474SRCS+=	mac_legacy_kmgmt.c ml_dsa_kmgmt.c ml_kem_kmgmt.c mlx_kmgmt.c rsa_kmgmt.c
475SRCS+=	slh_dsa_kmgmt.c
476
477# providers/implementations/macs
478SRCS+=	gmac_prov.c hmac_prov.c kmac_prov.c
479SRCS+=	blake2b_mac.c blake2s_mac.c
480SRCS+=	cmac_prov.c
481SRCS+=	poly1305_prov.c
482SRCS+=	siphash_prov.c
483
484# providers/implementations/rands
485SRCS+=	drbg.c drbg_ctr.c drbg_hash.c drbg_hmac.c test_rng.c
486SRCS+=	seed_src.c
487
488# providers/implementations/rands/seeding
489SRCS+=	rand_cpu_x86.c rand_tsc.c rand_unix.c rand_win.c
490
491# providers/implementations/signature
492SRCS+=	dsa_sig.c eddsa_sig.c ecdsa_sig.c mac_legacy_sig.c ml_dsa_sig.c
493SRCS+=	rsa_sig.c slh_dsa_sig.c
494
495# providers/implementations/skeymgmt
496SRCS+=	aes_skmgmt.c generic.c
497
498# providers/implementations/storemgmt
499SRCS+=	file_store.c file_store_any2obj.c
500
501# rand
502SRCS+=	prov_seed.c rand_deprecated.c rand_egd.c rand_err.c rand_lib.c
503SRCS+=	rand_meth.c rand_pool.c rand_uniform.c randfile.c
504
505# rc2
506SRCS+=	rc2_cbc.c rc2_ecb.c rc2_skey.c rc2cfb64.c rc2ofb64.c
507
508# rc4
509.if defined(ASM_amd64)
510SRCS+=	rc4-md5-x86_64.S rc4-x86_64.S
511.elif defined(ASM_i386)
512SRCS+=	rc4-586.S
513.else
514SRCS+=	rc4_enc.c rc4_skey.c
515.endif
516
517# record/methods
518SRCS+=	ssl3_cbc.c
519SRCS+=	tls_pad.c
520
521# ripemd
522SRCS+=	rmd_dgst.c rmd_one.c
523.if defined(ASM_i386)
524SRCS+=	rmd-586.S
525.endif
526
527# rsa
528SRCS+=	rsa_ameth.c rsa_asn1.c rsa_backend.c rsa_chk.c rsa_crpt.c rsa_depr.c
529SRCS+=	rsa_err.c rsa_gen.c rsa_lib.c rsa_meth.c rsa_mp.c rsa_mp_names.c
530SRCS+=	rsa_none.c rsa_oaep.c rsa_ossl.c rsa_pk1.c rsa_pmeth.c rsa_prn.c
531SRCS+=	rsa_pss.c rsa_saos.c rsa_schemes.c rsa_sign.c rsa_sp800_56b_check.c
532SRCS+=	rsa_sp800_56b_gen.c rsa_x931.c rsa_x931g.c
533
534# seed
535SRCS+=	seed.c seed_cbc.c seed_cfb.c seed_ecb.c seed_ofb.c
536
537# sha
538SRCS+=	sha1_one.c sha1dgst.c sha256.c sha3.c sha512.c
539.if defined(ASM_aarch64)
540SRCS+=	keccak1600-armv8.S sha1-armv8.S sha256-armv8.S sha512-armv8.S
541.elif defined(ASM_amd64)
542SRCS+=	keccak1600-x86_64.S sha1-mb-x86_64.S sha1-x86_64.S
543SRCS+=	sha256-mb-x86_64.S sha256-x86_64.S sha512-x86_64.S
544.elif defined(ASM_arm)
545SRCS+=	keccak1600-armv4.S sha1-armv4-large.S sha256-armv4.S sha512-armv4.S
546.elif defined(ASM_i386)
547SRCS+=	keccak1600.c sha1-586.S sha256-586.S sha512-586.S
548.elif defined(ASM_powerpc)
549SRCS+=	keccak1600.c sha_ppc.c sha1-ppc.S sha256-ppc.S sha512-ppc.S sha256p8-ppc.S sha512p8-ppc.S
550.elif defined(ASM_powerpc64)
551SRCS+=	keccak1600-ppc64.S sha_ppc.c sha1-ppc.S sha256-ppc.S sha512-ppc.S sha256p8-ppc.S sha512p8-ppc.S
552.elif defined(ASM_powerpc64le)
553SRCS+=	keccak1600-ppc64.S sha_ppc.c sha1-ppc.S sha256-ppc.S sha512-ppc.S sha256p8-ppc.S sha512p8-ppc.S
554.else
555SRCS+=	keccak1600.c
556.endif
557
558# siphash
559SRCS+=	siphash.c
560
561# slh_dsa
562SRCS+=	slh_adrs.c slh_dsa.c slh_dsa_hash_ctx.c slh_dsa_key.c slh_fors.c slh_hash.c
563SRCS+=	slh_hypertree.c slh_params.c slh_wots.c slh_xmss.c
564
565# srp
566SRCS+=	srp_lib.c srp_vfy.c
567
568# stack
569SRCS+=	stack.c
570
571# store
572SRCS+=	store_err.c store_init.c store_lib.c store_meth.c store_register.c
573SRCS+=	store_result.c store_strings.c
574
575# thread
576SRCS+=	api.c arch.c arch/thread_win.c arch/thread_posix.c arch/thread_none.c internal.c
577
578# ts
579SRCS+=	ts_asn1.c ts_conf.c ts_err.c ts_lib.c ts_req_print.c ts_req_utils.c
580SRCS+=	ts_rsp_print.c ts_rsp_sign.c ts_rsp_utils.c ts_rsp_verify.c
581SRCS+=	ts_verify_ctx.c
582
583# txt_db
584SRCS+=	txt_db.c
585
586# ui
587SRCS+=	ui_err.c ui_lib.c ui_null.c ui_openssl.c ui_util.c
588
589# whrlpool
590SRCS+=	wp_dgst.c
591.if defined(ASM_amd64)
592SRCS+=	wp-x86_64.S
593.elif defined(ASM_i386)
594SRCS+=	wp-mmx.S wp_block.c
595.else
596SRCS+=	wp_block.c
597.endif
598
599# x509
600SRCS+=	x509_def.c x509_d2.c x509_r2x.c x509_cmp.c
601SRCS+=	x509_obj.c x509_req.c x509spki.c x509_vfy.c
602SRCS+=	x509_set.c x509cset.c x509rset.c x509_err.c
603SRCS+=	x509name.c x509_v3.c x509_ext.c x509_att.c
604SRCS+=	x509_meth.c x509_lu.c x_all.c x509_txt.c
605SRCS+=	x509_trust.c by_file.c by_dir.c by_store.c x509_vpm.c
606SRCS+=	x_crl.c t_crl.c x_req.c t_req.c x_x509.c t_x509.c
607SRCS+=	x_pubkey.c x_x509a.c x_attrib.c x_exten.c x_name.c
608SRCS+=	v3_bcons.c v3_bitst.c v3_conf.c v3_extku.c v3_ia5.c v3_utf8.c v3_lib.c
609SRCS+=	v3_prn.c v3_utl.c v3err.c v3_genn.c v3_san.c v3_skid.c v3_akid.c
610SRCS+=	v3_pku.c v3_int.c v3_enum.c v3_sxnet.c v3_cpols.c v3_crld.c v3_purp.c
611SRCS+=	v3_info.c v3_akeya.c v3_pmaps.c v3_pcons.c v3_ncons.c
612SRCS+=	v3_pcia.c v3_pci.c v3_ist.c
613SRCS+=	pcy_cache.c pcy_node.c pcy_data.c pcy_map.c pcy_tree.c pcy_lib.c
614SRCS+=	v3_asid.c v3_addr.c v3_tlsf.c v3_admis.c v3_no_rev_avail.c
615SRCS+=	v3_soa_id.c v3_no_ass.c v3_group_ac.c v3_single_use.c v3_ind_iss.c
616SRCS+=	x509_acert.c x509aset.c t_acert.c x_ietfatt.c v3_ac_tgt.c v3_sda.c
617SRCS+=	v3_usernotice.c v3_battcons.c v3_audit_id.c v3_iobo.c v3_authattid.c
618SRCS+=	v3_rolespec.c v3_attrdesc.c v3_timespec.c v3_attrmap.c v3_aaa.c
619SRCS+=	x509type.c
620
621INCS=	aes.h asn1.h asn1err.h asn1t.h async.h asyncerr.h bio.h
622INCS+=	bioerr.h blowfish.h bn.h bnerr.h buffer.h buffererr.h byteorder.h camellia.h
623INCS+=	cast.h cmac.h cmp.h cmp_util.h cmperr.h cms.h cmserr.h comp.h comperr.h conf.h conf_api.h
624INCS+=	conferr.h configuration.h conftypes.h core.h core_dispatch.h core_names.h core_object.h
625INCS+=	crmf.h crmferr.h crypto.h cryptoerr.h cryptoerr_legacy.h ct.h cterr.h
626INCS+=	decoder.h decodererr.h des.h dh.h dherr.h dsa.h
627INCS+=	dsaerr.h dtls1.h e_os2.h e_ostime.h ebcdic.h ec.h ecdh.h ecdsa.h ecerr.h encoder.h encodererr.h
628INCS+=	engine.h engineerr.h err.h ess.h esserr.h evp.h evperr.h fips_names.h fipskey.h hmac.h hpke.h http.h httperr.h idea.h indicator.h
629INCS+=	kdf.h kdferr.h lhash.h macros.h md2.h md4.h md5.h mdc2.h modes.h obj_mac.h
630INCS+=	objects.h objectserr.h ocsp.h ocsperr.h opensslconf.h opensslv.h
631INCS+=	ossl_typ.h param_build.h params.h pem.h pem2.h pemerr.h pkcs12.h pkcs12err.h pkcs7.h
632INCS+=	pkcs7err.h prov_ssl.h proverr.h provider.h quic.h rand.h randerr.h rc2.h rc4.h rc5.h ripemd.h
633INCS+=	rsa.h rsaerr.h safestack.h seed.h self_test.h sha.h srp.h srtp.h ssl.h ssl2.h
634INCS+=	ssl3.h sslerr.h sslerr_legacy.h stack.h store.h storeerr.h symhacks.h thread.h tls1.h trace.h ts.h
635INCS+=	tserr.h txt_db.h types.h ui.h uierr.h whrlpool.h x509.h x509_vfy.h x509err.h
636INCS+=	x509v3.h x509v3err.h
637
638INCSDIR=${INCLUDEDIR}/openssl
639
640LIBADD=	pthread
641
642SRCS+=	buildinf.h
643
644CLEANDIRS=	openssl
645CLEANFILES=	buildinf.h
646
647.if defined(ASM_${MACHINE_CPUARCH}) || defined(ASM_${MACHINE_ARCH})
648_cmd1=/%%NO_ASM%%/d
649.else
650_cmd1=s/%%NO_ASM%%//
651.endif
652.if ${MK_OPENSSL_KTLS} != "no"
653_cmd2=/%%NO_KTLS%%/d
654.else
655_cmd2=s/%%NO_KTLS%%//
656.endif
657
658buildinf.h: Makefile
659	( echo "/*"; \
660	echo " * WARNING: do not edit!"; \
661	echo " * Generated by ${.ALLSRC}"; \
662	echo " */"; \
663	echo "#define PLATFORM \"platform: FreeBSD-${MACHINE_ARCH}\""; \
664	echo "#define DATE \"built on: reproducible build, date unspecified\""; \
665	echo "static const char compiler_flags[] = \"compiler: ${COMPILER_TYPE}\";" ) \
666	> ${.TARGET}
667
668buildasm cleanasm:
669.for arch in aarch64 amd64 arm i386 powerpc powerpc64 powerpc64le
670	make MK_AUTO_OBJ=no -DWITHOUT_AUTO_ASM -DASM_${arch} \
671	    -f ${.CURDIR}/Makefile.asm -C ${SRCTOP}/sys/crypto/openssl/${arch} \
672	    ${.TARGET:S/build/all/:S/asm$//}
673.endfor
674
675.include <bsd.lib.mk>
676
677.if ${MACHINE} == "powerpc"
678# Work around "relocation R_PPC_GOT16 out of range" errors
679PICFLAG=	-fPIC
680.endif
681PICFLAG+=	-DOPENSSL_PIC
682
683.if defined(ASM_${MACHINE_CPUARCH})
684.PATH:	${SRCTOP}/sys/crypto/openssl/${MACHINE_CPUARCH}
685.if defined(ASM_amd64)
686.PATH:	${LCRYPTO_SRC}/crypto/bn/asm
687.endif
688.elif defined(ASM_${MACHINE_ARCH})
689.PATH:	${SRCTOP}/sys/crypto/openssl/${MACHINE_ARCH}
690.endif
691
692.PATH:	${LCRYPTO_SRC}/include/openssl \
693	${LCRYPTO_SRC}/crypto \
694	${LCRYPTO_SRC}/crypto/aes \
695	${LCRYPTO_SRC}/crypto/aria \
696	${LCRYPTO_SRC}/crypto/asn1 \
697	${LCRYPTO_SRC}/crypto/async \
698	${LCRYPTO_SRC}/crypto/async/arch \
699	${LCRYPTO_SRC}/crypto/bf \
700	${LCRYPTO_SRC}/crypto/bio \
701	${LCRYPTO_SRC}/crypto/bn \
702	${LCRYPTO_SRC}/crypto/buffer \
703	${LCRYPTO_SRC}/crypto/camellia \
704	${LCRYPTO_SRC}/crypto/cast \
705	${LCRYPTO_SRC}/crypto/chacha \
706	${LCRYPTO_SRC}/crypto/cmac \
707	${LCRYPTO_SRC}/crypto/cmp \
708	${LCRYPTO_SRC}/crypto/cms \
709	${LCRYPTO_SRC}/crypto/comp \
710	${LCRYPTO_SRC}/crypto/conf \
711	${LCRYPTO_SRC}/crypto/crmf \
712	${LCRYPTO_SRC}/crypto/ct \
713	${LCRYPTO_SRC}/crypto/des \
714	${LCRYPTO_SRC}/crypto/dh \
715	${LCRYPTO_SRC}/crypto/dsa \
716	${LCRYPTO_SRC}/crypto/dso \
717	${LCRYPTO_SRC}/crypto/ec \
718	${LCRYPTO_SRC}/crypto/ec/curve448 \
719	${LCRYPTO_SRC}/crypto/ec/curve448/arch_32 \
720	${LCRYPTO_SRC}/crypto/ec/curve448/arch_64 \
721	${LCRYPTO_SRC}/crypto/encode_decode \
722	${LCRYPTO_SRC}/crypto/engine \
723	${LCRYPTO_SRC}/crypto/err \
724	${LCRYPTO_SRC}/crypto/ess \
725	${LCRYPTO_SRC}/crypto/evp \
726	${LCRYPTO_SRC}/crypto/ffc \
727	${LCRYPTO_SRC}/crypto/hashtable \
728	${LCRYPTO_SRC}/crypto/hmac \
729	${LCRYPTO_SRC}/crypto/hpke \
730	${LCRYPTO_SRC}/crypto/http \
731	${LCRYPTO_SRC}/crypto/idea \
732	${LCRYPTO_SRC}/crypto/kdf \
733	${LCRYPTO_SRC}/crypto/lhash \
734	${LCRYPTO_SRC}/crypto/md4 \
735	${LCRYPTO_SRC}/crypto/md5 \
736	${LCRYPTO_SRC}/crypto/mdc2 \
737	${LCRYPTO_SRC}/crypto/ml_dsa \
738	${LCRYPTO_SRC}/crypto/ml_kem \
739	${LCRYPTO_SRC}/crypto/modes \
740	${LCRYPTO_SRC}/crypto/objects \
741	${LCRYPTO_SRC}/crypto/ocsp \
742	${LCRYPTO_SRC}/crypto/pem \
743	${LCRYPTO_SRC}/crypto/pkcs12 \
744	${LCRYPTO_SRC}/crypto/pkcs7 \
745	${LCRYPTO_SRC}/crypto/poly1305 \
746	${LCRYPTO_SRC}/crypto/property \
747	${LCRYPTO_SRC}/crypto/rand \
748	${LCRYPTO_SRC}/crypto/rc2 \
749	${LCRYPTO_SRC}/crypto/rc4 \
750	${LCRYPTO_SRC}/crypto/rc5 \
751	${LCRYPTO_SRC}/crypto/ripemd \
752	${LCRYPTO_SRC}/crypto/rsa \
753	${LCRYPTO_SRC}/crypto/seed \
754	${LCRYPTO_SRC}/crypto/sha \
755	${LCRYPTO_SRC}/crypto/siphash \
756	${LCRYPTO_SRC}/crypto/slh_dsa \
757	${LCRYPTO_SRC}/crypto/sm2 \
758	${LCRYPTO_SRC}/crypto/sm3 \
759	${LCRYPTO_SRC}/crypto/sm4 \
760	${LCRYPTO_SRC}/crypto/srp \
761	${LCRYPTO_SRC}/crypto/stack \
762	${LCRYPTO_SRC}/crypto/store \
763	${LCRYPTO_SRC}/crypto/thread \
764	${LCRYPTO_SRC}/crypto/ts \
765	${LCRYPTO_SRC}/crypto/txt_db \
766	${LCRYPTO_SRC}/crypto/ui \
767	${LCRYPTO_SRC}/crypto/whrlpool \
768	${LCRYPTO_SRC}/crypto/x509 \
769	${LCRYPTO_SRC}/crypto/x509v3 \
770	${LCRYPTO_SRC}/providers \
771	${LCRYPTO_SRC}/providers/common \
772	${LCRYPTO_SRC}/providers/common/der \
773	${LCRYPTO_SRC}/providers/implementations/asymciphers \
774	${LCRYPTO_SRC}/providers/implementations/ciphers \
775	${LCRYPTO_SRC}/providers/implementations/digests \
776	${LCRYPTO_SRC}/providers/implementations/encode_decode \
777	${LCRYPTO_SRC}/providers/implementations/exchange \
778	${LCRYPTO_SRC}/providers/implementations/kdfs \
779	${LCRYPTO_SRC}/providers/implementations/kem \
780	${LCRYPTO_SRC}/providers/implementations/keymgmt \
781	${LCRYPTO_SRC}/providers/implementations/macs \
782	${LCRYPTO_SRC}/providers/implementations/rands \
783	${LCRYPTO_SRC}/providers/implementations/rands/seeding \
784	${LCRYPTO_SRC}/providers/implementations/signature \
785	${LCRYPTO_SRC}/providers/implementations/skeymgmt \
786	${LCRYPTO_SRC}/providers/implementations/storemgmt \
787	${LCRYPTO_SRC}/ssl \
788	${LCRYPTO_SRC}/ssl/record \
789	${LCRYPTO_SRC}/ssl/record/methods
790