xref: /freebsd/secure/lib/libcrypto/Makefile (revision aef16fc30bb2298e65a5fcc0c503d343e428c1b2)
1SHLIBDIR?=	/lib
2.if !defined(LIBCRYPTO_WITHOUT_SUBDIRS) && !defined(BOOTSTRAPPING)
3SUBDIR=		engines modules
4.endif
5.ifdef BOOTSTRAPPING
6CFLAGS+=	-DOPENSSL_NO_SCTP
7.endif
8
9.include <bsd.own.mk>
10.include <src.opts.mk>
11
12PACKAGE=	openssl-lib
13LIB=		crypto
14SHLIB_MAJOR=	35
15VERSION_MAP=	${.CURDIR}/Version.map
16
17NO_LINT=
18PCFILES=	libcrypto.pc
19
20.include "Makefile.man"
21.include "Makefile.inc"
22
23# $UTIL_COMMON
24SRCS=	cryptlib.c params.c params_from_text.c bsearch.c ex_data.c o_str.c
25SRCS+=	threads_pthread.c threads_win.c threads_none.c initthread.c
26SRCS+=	context.c sparse_array.c asn1_dsa.c packet.c param_build.c
27SRCS+=	param_build_set.c der_writer.c threads_lib.c params_dup.c
28SRCS+=	time.c params_idx.c
29
30SRCS+=	mem.c mem_sec.c
31SRCS+=	comp_methods.c cversion.c info.c cpt_err.c ebcdic.c uid.c o_time.c
32SRCS+=	o_dir.c o_fopen.c getenv.c o_init.c init.c trace.c provider.c
33SRCS+=	provider_child.c punycode.c passphrase.c sleep.c deterministic_nonce.c
34SRCS+=	quic_vlint.c defaults.c ssl_err.c
35
36SRCS+=	core_algorithm.c core_fetch.c core_namemap.c cpuid.c ctype.c
37SRCS+=	indicator_core.c
38SRCS+=	provider_conf.c provider_core.c provider_predefined.c
39SRCS+=	self_test_core.c
40.if defined(ASM_aarch64)
41SRCS+=	arm64cpuid.S armcap.c
42ACFLAGS.arm64cpuid.S=	-march=armv8-a+crypto
43.elif defined(ASM_amd64)
44SRCS+=	x86_64cpuid.S
45.elif defined(ASM_arm)
46SRCS+=	armv4cpuid.S armcap.c
47.elif defined(ASM_i386)
48SRCS+=	x86cpuid.S
49.elif defined(ASM_powerpc)
50SRCS+=	ppccpuid.S ppccap.c
51.elif defined(ASM_powerpc64)
52SRCS+=	ppccpuid.S ppccap.c
53.elif defined(ASM_powerpc64le)
54SRCS+=	ppccpuid.S ppccap.c
55.else
56SRCS+=	mem_clr.c
57.endif
58
59# aes
60SRCS+=	aes_cfb.c aes_ecb.c aes_ige.c aes_misc.c aes_ofb.c aes_wrap.c
61.if defined(ASM_aarch64)
62SRCS+=	aes_cbc.c aes_core.c aesv8-armx.S vpaes-armv8.S
63ACFLAGS.aesv8-armx.S=	-march=armv8-a+crypto
64.elif defined(ASM_amd64)
65SRCS+=	aes-x86_64.S aesni-mb-x86_64.S aesni-sha1-x86_64.S aesni-sha256-x86_64.S
66SRCS+=	aesni-x86_64.S aesni-xts-avx512.S bsaes-x86_64.S vpaes-x86_64.S
67.elif defined(ASM_arm)
68SRCS+=	aes_cbc.c aes-armv4.S aesv8-armx.S bsaes-armv7.S
69.elif defined(ASM_i386)
70SRCS+=	aes-586.S aesni-x86.S vpaes-x86.S
71.elif defined(ASM_powerpc)
72SRCS+=	aes_cbc.c aes_core.c aes-ppc.S vpaes-ppc.S aesp8-ppc.S
73.elif defined(ASM_powerpc64)
74SRCS+=	aes_cbc.c aes_core.c aes-ppc.S vpaes-ppc.S aesp8-ppc.S
75.elif defined(ASM_powerpc64le)
76SRCS+=	aes_cbc.c aes_core.c aes-ppc.S vpaes-ppc.S aesp8-ppc.S
77.else
78SRCS+=	aes_cbc.c aes_core.c
79.endif
80
81# asn1
82SRCS+=	a_bitstr.c a_d2i_fp.c a_digest.c a_dup.c a_gentm.c a_i2d_fp.c
83SRCS+=	a_int.c a_mbstr.c a_object.c a_octet.c a_print.c a_sign.c a_strex.c
84SRCS+=	a_strnid.c a_time.c a_type.c a_utctm.c a_utf8.c a_verify.c
85SRCS+=	ameth_lib.c asn1_err.c asn1_gen.c asn1_item_list.c asn1_lib.c
86SRCS+=	asn1_parse.c asn_mime.c asn_moid.c asn_mstbl.c asn_pack.c bio_asn1.c
87SRCS+=	bio_ndef.c d2i_param.c d2i_pr.c d2i_pu.c evp_asn1.c f_int.c f_string.c
88SRCS+=	i2d_evp.c n_pkey.c nsseq.c p5_pbe.c p5_pbev2.c p5_scrypt.c p8_pkey.c
89SRCS+=	t_bitst.c t_pkey.c t_spki.c tasn_dec.c tasn_enc.c tasn_fre.c
90SRCS+=	tasn_new.c tasn_prn.c tasn_scn.c tasn_typ.c tasn_utl.c x_algor.c
91SRCS+=	x_bignum.c x_info.c x_int64.c x_long.c x_pkey.c x_sig.c x_spki.c
92SRCS+=	x_val.c
93
94# async
95SRCS+=	async.c async_err.c async_posix.c async_wait.c
96
97# bf
98SRCS+=	bf_cfb64.c bf_ecb.c bf_ofb64.c bf_prefix.c bf_readbuff.c bf_skey.c
99.if defined(ASM_i386)
100SRCS+=	bf-586.S
101.else
102SRCS+=	bf_enc.c
103.endif
104
105# bio
106SRCS+=	bio_addr.c bio_dump.c bio_print.c bio_sock.c bio_sock2.c bf_buff.c
107SRCS+=	bf_lbuf.c bf_nbio.c bf_null.c bio_cb.c bio_err.c bio_lib.c bio_meth.c
108SRCS+=	bss_acpt.c bss_bio.c bss_conn.c bss_core.c bss_dgram.c bss_dgram_pair.c bss_fd.c
109SRCS+=	bss_file.c bss_log.c bss_mem.c bss_null.c bss_sock.c ossl_core_bio.c
110
111# bn
112SRCS+=	bn_add.c bn_blind.c bn_const.c bn_conv.c bn_ctx.c bn_depr.c bn_dh.c
113SRCS+=	bn_div.c bn_err.c bn_exp.c bn_exp2.c bn_gcd.c bn_gf2m.c bn_intern.c
114SRCS+=	bn_kron.c bn_lib.c bn_mod.c bn_mont.c bn_mpi.c bn_mul.c bn_nist.c
115SRCS+=	bn_prime.c bn_print.c bn_rand.c bn_recp.c bn_rsa_fips186_4.c bn_shift.c
116SRCS+=	bn_sqr.c bn_sqrt.c bn_srp.c bn_word.c bn_x931p.c
117.if defined(ASM_aarch64)
118SRCS+=	armv8-mont.S bn_asm.c
119.elif defined(ASM_amd64)
120SRCS+=	rsaz-2k-avx512.S rsaz-2k-avxifma.S
121SRCS+=	rsaz-3k-avx512.S rsaz-3k-avxifma.S
122SRCS+=	rsaz-4k-avx512.S rsaz-4k-avxifma.S
123SRCS+=	rsaz-avx2.S rsaz-x86_64.S rsaz_exp.c rsaz_exp_x2.c
124SRCS+=	x86_64-gcc.c x86_64-gf2m.S x86_64-mont.S x86_64-mont5.S
125.elif defined(ASM_arm)
126SRCS+=	armv4-gf2m.S armv4-mont.S bn_asm.c
127.elif defined(ASM_i386)
128SRCS+=	bn-586.S co-586.S x86-gf2m.S x86-mont.S
129.elif defined(ASM_powerpc)
130SRCS+=	bn_ppc.c bn-ppc.S ppc-mont.S
131.elif defined(ASM_powerpc64)
132SRCS+=	bn_ppc.c bn-ppc.S ppc-mont.S
133.elif defined(ASM_powerpc64le)
134SRCS+=	bn_ppc.c bn-ppc.S ppc-mont.S
135.else
136SRCS+=	bn_asm.c
137.endif
138
139# Full of strict aliasing violations that LLVM has been seen to break with
140# optimisations, which can lead to ECDSA signatures not working. See
141# https://github.com/openssl/openssl/issues/12247 for the upstream bug report.
142CFLAGS.bn_nist.c+=	-fno-strict-aliasing
143
144# buffer
145SRCS+=	buf_err.c buffer.c
146
147# camellia
148SRCS+=	cmll_cfb.c cmll_ctr.c cmll_ecb.c cmll_ofb.c
149.if defined(ASM_amd64)
150SRCS+=	cmll-x86_64.S cmll_misc.c
151.elif defined(ASM_i386)
152SRCS+=	cmll-x86.S
153.else
154SRCS+=	camellia.c cmll_cbc.c cmll_misc.c
155.endif
156
157# cast
158SRCS+=	c_cfb64.c c_ecb.c c_enc.c c_ofb64.c c_skey.c
159
160# chacha
161.if defined(ASM_aarch64)
162SRCS+=	chacha-armv8.S chacha-armv8-sve.S
163.elif defined(ASM_amd64)
164SRCS+=	chacha-x86_64.S
165.elif defined(ASM_arm)
166SRCS+=	chacha-armv4.S
167.elif defined(ASM_i386)
168SRCS+=	chacha-x86.S
169.elif defined(ASM_powerpc)
170SRCS+=	chacha_ppc.c chacha-ppc.S chachap10-ppc.S
171.elif defined(ASM_powerpc64)
172SRCS+=	chacha_ppc.c chacha-ppc.S chachap10-ppc.S
173.elif defined(ASM_powerpc64le)
174SRCS+=	chacha_ppc.c chacha-ppc.S chachap10-ppc.S
175.else
176SRCS+=	chacha_enc.c
177.endif
178
179# cmac
180SRCS+=	cmac.c
181
182# cmp
183SRCS+=	cmp_asn.c cmp_ctx.c cmp_err.c cmp_util.c
184SRCS+=	cmp_status.c cmp_hdr.c cmp_protect.c cmp_msg.c cmp_vfy.c
185SRCS+=	cmp_server.c cmp_client.c cmp_genm.c
186SRCS+=	cmp_http.c
187
188# cms
189SRCS+=	cms_asn1.c cms_att.c cms_cd.c cms_dd.c cms_dh.c cms_ec.c cms_enc.c
190SRCS+=	cms_env.c cms_err.c cms_ess.c cms_io.c cms_kari.c cms_lib.c cms_pwri.c
191SRCS+=	cms_rsa.c cms_sd.c cms_smime.c
192
193# comp
194SRCS+=	comp_lib.c comp_err.c c_brotli.c c_zstd.c c_zlib.c
195
196# conf
197SRCS+=	conf_api.c conf_def.c conf_err.c conf_lib.c conf_mall.c conf_mod.c
198SRCS+=	conf_sap.c conf_ssl.c
199
200# crmf
201SRCS+=	crmf_asn.c crmf_err.c crmf_lib.c crmf_pbm.c
202
203# ct
204SRCS+=	ct_b64.c ct_err.c ct_log.c ct_oct.c ct_policy.c ct_prn.c ct_sct.c
205SRCS+=	ct_sct_ctx.c ct_vfy.c ct_x509v3.c
206
207# des
208SRCS+=	cbc_cksm.c cbc_enc.c cfb64ede.c cfb64enc.c cfb_enc.c ecb3_enc.c
209SRCS+=	ecb_enc.c fcrypt.c ofb64ede.c ofb64enc.c ofb_enc.c pcbc_enc.c
210SRCS+=	qud_cksm.c rand_key.c set_key.c str2key.c xcbc_enc.c
211.if defined(ASM_i386)
212SRCS+=	crypt586.S des-586.S
213.else
214SRCS+=	des_enc.c fcrypt_b.c
215.endif
216
217# dh
218SRCS+=	dh_ameth.c dh_asn1.c dh_backend.c dh_check.c dh_depr.c dh_err.c dh_gen.c
219SRCS+=	dh_group_params.c dh_kdf.c dh_key.c dh_lib.c dh_meth.c dh_pmeth.c
220SRCS+=	dh_prn.c dh_rfc5114.c
221
222# dsa
223SRCS+=	dsa_ameth.c dsa_asn1.c dsa_backend.c dsa_check.c dsa_depr.c dsa_err.c
224SRCS+=	dsa_gen.c dsa_key.c dsa_lib.c dsa_meth.c dsa_ossl.c dsa_pmeth.c
225SRCS+=	dsa_prn.c dsa_sign.c dsa_vrf.c
226
227# dso
228SRCS+=	dso_dlfcn.c dso_err.c dso_lib.c
229
230# ec
231SRCS+=	curve25519.c curve448.c curve448_tables.c ec2_oct.c ec2_smpl.c
232SRCS+=	ec_ameth.c ec_asn1.c ec_backend.c ec_check.c ec_curve.c ec_cvt.c
233SRCS+=	ec_deprecated.c ec_err.c ec_key.c ec_kmeth.c ec_lib.c ec_mult.c ec_oct.c
234SRCS+=	ec_pmeth.c ec_print.c ecdh_kdf.c ecdh_ossl.c ecdsa_ossl.c ecdsa_sign.c
235SRCS+=	ecdsa_vrf.c eck_prn.c ecp_mont.c ecp_nist.c
236SRCS+=	ecp_oct.c ecp_smpl.c ecx_backend.c ecx_key.c ecx_meth.c eddsa.c
237SRCS+=	f_generic.c f_impl32.c f_impl64.c scalar.c
238# see OPENSSL_NO_EC_NISTP_64_GCC_128 in configuration.h
239.if ${MACHINE_ABI:Mlittle-endian} && ${MACHINE_ABI:Mlong64}
240SRCS+=	ecp_nistp224.c ecp_nistp256.c ecp_nistp384.c ecp_nistp521.c ecp_nistputil.c
241.else
242CFLAGS+=-DOPENSSL_NO_EC_NISTP_64_GCC_128
243.endif
244.if defined(ASM_aarch64)
245SRCS+=	ecp_nistz256-armv8.S ecp_nistz256.c
246.elif defined(ASM_amd64)
247SRCS+=	ecp_nistz256-x86_64.S ecp_nistz256.c x25519-x86_64.S
248.elif defined(ASM_arm)
249SRCS+=	ecp_nistz256-armv4.S ecp_nistz256.c
250.elif defined(ASM_i386)
251SRCS+=	ecp_nistz256-x86.S ecp_nistz256.c
252.elif defined(ASM_powerpc64)
253SRCS+=	ecp_nistp521-ppc64.S ecp_nistz256-ppc64.S ecp_nistz256.c ecp_ppc.c x25519-ppc64.S
254.elif defined(ASM_powerpc64le)
255SRCS+=	ecp_nistp521-ppc64.S ecp_nistz256-ppc64.S ecp_nistz256.c ecp_ppc.c x25519-ppc64.S
256.endif
257
258# encode_decode
259SRCS+=	decoder_err.c decoder_lib.c decoder_meth.c decoder_pkey.c
260SRCS+=	encoder_err.c encoder_lib.c encoder_meth.c encoder_pkey.c
261
262# engine
263SRCS+=	eng_all.c eng_cnf.c eng_ctrl.c eng_dyn.c eng_err.c
264SRCS+=	eng_fat.c eng_init.c eng_lib.c eng_list.c eng_openssl.c eng_pkey.c
265SRCS+=	eng_rdrand.c eng_table.c tb_asnmth.c tb_cipher.c tb_dh.c tb_digest.c
266SRCS+=	tb_dsa.c tb_eckey.c tb_pkmeth.c tb_rand.c tb_rsa.c
267
268# err
269SRCS+=	err.c err_all.c err_all_legacy.c err_blocks.c err_mark.c err_prn.c err_save.c
270
271# ess
272SRCS+=	ess_asn1.c ess_err.c ess_lib.c
273
274# evp
275SRCS+=	asymcipher.c bio_b64.c bio_enc.c bio_md.c bio_ok.c c_allc.c c_alld.c cmeth_lib.c
276SRCS+=	ctrl_params_translate.c dh_ctrl.c dh_support.c digest.c dsa_ctrl.c e_aes.c e_aes_cbc_hmac_sha1.c
277SRCS+=	e_aes_cbc_hmac_sha256.c e_aria.c e_bf.c e_camellia.c e_cast.c
278SRCS+=	e_chacha20_poly1305.c e_des.c e_des3.c e_idea.c e_null.c e_old.c
279SRCS+=	e_rc2.c e_rc4.c e_rc4_hmac_md5.c e_rc5.c e_seed.c e_sm4.c e_xcbc_d.c ec_ctrl.c ec_support.c
280SRCS+=	encode.c evp_cnf.c evp_enc.c evp_err.c evp_fetch.c evp_key.c evp_lib.c evp_pbe.c
281SRCS+=	evp_pkey.c evp_rand.c evp_utils.c exchange.c kdf_lib.c kdf_meth.c kem.c keymgmt_lib.c keymgmt_meth.c
282SRCS+=	legacy_blake2.c legacy_md4.c legacy_md5.c legacy_md5_sha1.c m_null.c
283SRCS+=	legacy_ripemd.c legacy_sha.c legacy_wp.c m_sigver.c mac_lib.c mac_meth.c names.c p5_crpt.c
284SRCS+=	p5_crpt2.c p_dec.c p_enc.c p_legacy.c p_lib.c s_lib.c p_open.c p_seal.c p_sign.c
285SRCS+=	p_verify.c pbe_scrypt.c pmeth_check.c pmeth_gn.c skeymgmt_meth.c pmeth_lib.c signature.c
286
287# ffc
288SRCS+=	ffc_backend.c ffc_dh.c ffc_key_generate.c ffc_key_validate.c
289SRCS+=	ffc_params.c ffc_params_generate.c ffc_params_validate.c
290
291# hashtable
292SRCS+=	hashtable.c hashfunc.c
293
294# hmac
295SRCS+=	hmac.c hmac_s390x.c
296
297# hpke
298SRCS+=	hpke_util.c hpke.c
299
300# http
301SRCS+=	http_client.c http_err.c http_lib.c
302
303# kdf
304SRCS+=	kdf_err.c
305
306# lhash
307SRCS+=	lh_stats.c lhash.c
308
309# md4
310SRCS+=	md4_dgst.c md4_one.c
311
312# md5
313SRCS+=	md5_dgst.c md5_one.c md5_sha1.c
314.if defined(ASM_amd64)
315SRCS+=	md5-x86_64.S
316.elif defined(ASM_i386)
317SRCS+=	md5-586.S
318.endif
319
320# ml_dsa
321SRCS+=	ml_dsa_encoders.c ml_dsa_key_compress.c ml_dsa_key.c
322SRCS+=	ml_dsa_matrix.c ml_dsa_ntt.c ml_dsa_params.c ml_dsa_sample.c
323SRCS+=	ml_dsa_sign.c
324
325# ml_kem
326SRCS+=	ml_kem.c
327
328# modes
329SRCS+=	cbc128.c ccm128.c cfb128.c ctr128.c cts128.c gcm128.c ocb128.c
330SRCS+=	ofb128.c siv128.c wrap128.c xts128.c xts128gb.c
331.if defined(ASM_aarch64)
332SRCS+=	ghashv8-armx.S aes-gcm-armv8_64.S aes-gcm-armv8-unroll8_64.S
333ACFLAGS.ghashv8-armx.S=	-march=armv8-a+crypto
334.elif defined(ASM_amd64)
335SRCS+=	aesni-gcm-x86_64.S aes-gcm-avx512.S ghash-x86_64.S
336.elif defined(ASM_arm)
337SRCS+=	ghash-armv4.S ghashv8-armx.S
338.elif defined(ASM_i386)
339SRCS+=	ghash-x86.S
340.elif defined(ASM_powerpc)
341SRCS+=	ghashp8-ppc.S
342.elif defined(ASM_powerpc64)
343SRCS+=	aes-gcm-ppc.S ghashp8-ppc.S
344.elif defined(ASM_powerpc64le)
345SRCS+=	aes-gcm-ppc.S ghashp8-ppc.S
346.endif
347
348# objects
349SRCS+=	o_names.c obj_dat.c obj_err.c obj_lib.c obj_xref.c
350
351# ocsp
352SRCS+=	ocsp_asn.c ocsp_cl.c ocsp_err.c ocsp_ext.c ocsp_http.c ocsp_lib.c
353SRCS+=	ocsp_prn.c ocsp_srv.c ocsp_vfy.c v3_ocsp.c
354
355# pem
356SRCS+=	pem_all.c pem_err.c pem_info.c pem_lib.c pem_oth.c pem_pk8.c
357SRCS+=	pem_pkey.c pem_sign.c pem_x509.c pem_xaux.c pvkfmt.c
358
359# pkcs12
360SRCS+=	p12_add.c p12_asn.c p12_attr.c p12_crpt.c p12_crt.c p12_decr.c
361SRCS+=	p12_init.c p12_key.c p12_kiss.c p12_mutl.c p12_npas.c p12_p8d.c
362SRCS+=	p12_p8e.c p12_sbag.c p12_utl.c pk12err.c
363
364# pkcs7
365SRCS+=	bio_pk7.c pk7_asn1.c pk7_attr.c pk7_doit.c pk7_lib.c pk7_mime.c
366SRCS+=	pk7_smime.c pkcs7err.c
367
368# poly1305
369SRCS+=	poly1305.c
370.if defined(ASM_aarch64)
371SRCS+=	poly1305-armv8.S
372.elif defined(ASM_amd64)
373SRCS+=	poly1305-x86_64.S
374.elif defined(ASM_arm)
375SRCS+=	poly1305-armv4.S
376.elif defined(ASM_i386)
377SRCS+=	poly1305-x86.S
378.elif defined(ASM_powerpc)
379SRCS+=	poly1305_ppc.c poly1305-ppc.S poly1305-ppcfp.S
380.elif defined(ASM_powerpc64)
381SRCS+=	poly1305_ppc.c poly1305-ppc.S poly1305-ppcfp.S
382.elif defined(ASM_powerpc64le)
383SRCS+=	poly1305_ppc.c poly1305-ppc.S poly1305-ppcfp.S
384.endif
385
386# property
387SRCS+=	defn_cache.c property.c property_err.c property_parse.c property_query.c
388SRCS+=	property_string.c
389
390# providers
391SRCS+=	baseprov.c defltprov.c nullprov.c prov_running.c
392
393# providers/common
394SRCS+=	bio_prov.c capabilities.c digest_to_nid.c provider_ctx.c provider_err.c
395SRCS+=	provider_seeding.c provider_util.c securitycheck.c
396SRCS+=	securitycheck_default.c
397
398# providers/common/der
399SRCS+=	der_rsa_gen.c der_rsa_key.c der_rsa_sig.c
400SRCS+=	der_digests_gen.c
401SRCS+=	der_ml_dsa_gen.c der_ml_dsa_key.c
402SRCS+=	der_wrap_gen.c
403SRCS+=	der_slh_dsa_gen.c der_slh_dsa_key.c
404SRCS+=	der_dsa_gen.c der_dsa_key.c der_dsa_sig.c
405SRCS+=	der_ec_gen.c der_ec_key.c der_ec_sig.c
406SRCS+=	der_ecx_gen.c der_ecx_key.c
407
408# providers/implementations/asymciphers
409SRCS+=	rsa_enc.c
410
411# providers/implementations/ciphers
412SRCS+=	ciphercommon.c ciphercommon_hw.c ciphercommon_block.c \
413	ciphercommon_gcm.c ciphercommon_gcm_hw.c \
414	ciphercommon_ccm.c ciphercommon_ccm_hw.c
415SRCS+=	cipher_aes.c cipher_aes_hw.c \
416	cipher_aes_xts.c cipher_aes_xts_hw.c \
417	cipher_aes_gcm.c cipher_aes_gcm_hw.c \
418	cipher_aes_ccm.c cipher_aes_ccm_hw.c \
419	cipher_aes_wrp.c \
420	cipher_aes_cbc_hmac_sha.c \
421	cipher_aes_cbc_hmac_sha256_hw.c cipher_aes_cbc_hmac_sha1_hw.c \
422	cipher_cts.c
423SRCS+=	cipher_aes_ocb.c cipher_aes_ocb_hw.c
424SRCS+=	cipher_aes_xts_fips.c
425SRCS+=	cipher_aes_gcm_siv.c cipher_aes_gcm_siv_hw.c \
426	cipher_aes_gcm_siv_polyval.c
427SRCS+=	cipher_aes_siv.c cipher_aes_siv_hw.c
428SRCS+=	cipher_blowfish.c cipher_blowfish_hw.c
429SRCS+=	cipher_camellia.c cipher_camellia_hw.c
430SRCS+=	cipher_cast5.c cipher_cast5_hw.c
431SRCS+=	cipher_chacha20.c cipher_chacha20_hw.c
432SRCS+=	cipher_chacha20_poly1305.c cipher_chacha20_poly1305_hw.c
433SRCS+=	cipher_des.c cipher_des_hw.c
434SRCS+=	cipher_desx.c cipher_desx_hw.c
435SRCS+=	cipher_null.c
436SRCS+=	cipher_rc4.c cipher_rc4_hw.c
437SRCS+=	cipher_rc4_hmac_md5.c cipher_rc4_hmac_md5_hw.c
438SRCS+=	cipher_seed.c cipher_seed_hw.c
439SRCS+=	cipher_tdes.c cipher_tdes_common.c cipher_tdes_hw.c
440SRCS+=	cipher_tdes_default.c cipher_tdes_default_hw.c \
441	cipher_tdes_wrap.c cipher_tdes_wrap_hw.c
442
443# providers/implementations/digests
444SRCS+=	digestcommon.c
445SRCS+=	blake2_prov.c blake2b_prov.c blake2s_prov.c
446SRCS+=	md4_prov.c
447SRCS+=	md5_prov.c md5_sha1_prov.c
448SRCS+=	null_prov.c
449SRCS+=	ripemd_prov.c
450SRCS+=	sha2_prov.c sha3_prov.c
451SRCS+=	wp_prov.c
452
453# providers/implementations/encode_decode
454SRCS+=	decode_der2key.c decode_epki2pki.c decode_msblob2key.c decode_pvk2key.c
455SRCS+=	decode_pem2der.c decode_spki2typespki.c
456SRCS+=	encode_key2any.c encode_key2blob.c encode_key2ms.c encode_key2text.c
457SRCS+=	endecoder_common.c
458SRCS+=	ml_dsa_codecs.c ml_kem_codecs.c ml_common_codecs.c
459
460# providers/implementations/exchange
461SRCS+=	dh_exch.c
462SRCS+=	ecx_exch.c ecdh_exch.c
463SRCS+=	kdf_exch.c
464
465# providers/implementations/kdfs
466SRCS+=	argon2.c hkdf.c hmacdrbg_kdf.c kbkdf.c krb5kdf.c
467SRCS+=	pbkdf1.c pbkdf2.c pbkdf2_fips.c
468SRCS+=	pkcs12kdf.c pvkkdf.c scrypt.c sskdf.c sshkdf.c tls1_prf.c x942kdf.c
469
470# providers/implementations/kem
471SRCS+=	ec_kem.c ecx_kem.c kem_util.c ml_kem_kem.c mlx_kem.c rsa_kem.c
472
473# providers/implementations/keymgmt
474SRCS+=	dh_kmgmt.c dsa_kmgmt.c ec_kmgmt.c ecx_kmgmt.c kdf_legacy_kmgmt.c
475SRCS+=	mac_legacy_kmgmt.c ml_dsa_kmgmt.c ml_kem_kmgmt.c mlx_kmgmt.c rsa_kmgmt.c
476SRCS+=	slh_dsa_kmgmt.c
477
478# providers/implementations/macs
479SRCS+=	gmac_prov.c hmac_prov.c kmac_prov.c
480SRCS+=	blake2b_mac.c blake2s_mac.c
481SRCS+=	cmac_prov.c
482SRCS+=	poly1305_prov.c
483SRCS+=	siphash_prov.c
484
485# providers/implementations/rands
486SRCS+=	drbg.c drbg_ctr.c drbg_hash.c drbg_hmac.c test_rng.c
487SRCS+=	seed_src.c
488
489# providers/implementations/rands/seeding
490SRCS+=	rand_cpu_x86.c rand_tsc.c rand_unix.c rand_win.c
491
492# providers/implementations/signature
493SRCS+=	dsa_sig.c eddsa_sig.c ecdsa_sig.c mac_legacy_sig.c ml_dsa_sig.c
494SRCS+=	rsa_sig.c slh_dsa_sig.c
495
496# providers/implementations/skeymgmt
497SRCS+=	aes_skmgmt.c generic.c
498
499# providers/implementations/storemgmt
500SRCS+=	file_store.c file_store_any2obj.c
501
502# rand
503SRCS+=	prov_seed.c rand_deprecated.c rand_egd.c rand_err.c rand_lib.c
504SRCS+=	rand_meth.c rand_pool.c rand_uniform.c randfile.c
505
506# rc2
507SRCS+=	rc2_cbc.c rc2_ecb.c rc2_skey.c rc2cfb64.c rc2ofb64.c
508
509# rc4
510.if defined(ASM_amd64)
511SRCS+=	rc4-md5-x86_64.S rc4-x86_64.S
512.elif defined(ASM_i386)
513SRCS+=	rc4-586.S
514.else
515SRCS+=	rc4_enc.c rc4_skey.c
516.endif
517
518# record/methods
519SRCS+=	ssl3_cbc.c
520SRCS+=	tls_pad.c
521
522# ripemd
523SRCS+=	rmd_dgst.c rmd_one.c
524.if defined(ASM_i386)
525SRCS+=	rmd-586.S
526.endif
527
528# rsa
529SRCS+=	rsa_ameth.c rsa_asn1.c rsa_backend.c rsa_chk.c rsa_crpt.c rsa_depr.c
530SRCS+=	rsa_err.c rsa_gen.c rsa_lib.c rsa_meth.c rsa_mp.c rsa_mp_names.c
531SRCS+=	rsa_none.c rsa_oaep.c rsa_ossl.c rsa_pk1.c rsa_pmeth.c rsa_prn.c
532SRCS+=	rsa_pss.c rsa_saos.c rsa_schemes.c rsa_sign.c rsa_sp800_56b_check.c
533SRCS+=	rsa_sp800_56b_gen.c rsa_x931.c rsa_x931g.c
534
535# seed
536SRCS+=	seed.c seed_cbc.c seed_cfb.c seed_ecb.c seed_ofb.c
537
538# sha
539SRCS+=	sha1_one.c sha1dgst.c sha256.c sha3.c sha512.c
540.if defined(ASM_aarch64)
541SRCS+=	keccak1600-armv8.S sha1-armv8.S sha256-armv8.S sha512-armv8.S
542.elif defined(ASM_amd64)
543SRCS+=	keccak1600-x86_64.S sha1-mb-x86_64.S sha1-x86_64.S
544SRCS+=	sha256-mb-x86_64.S sha256-x86_64.S sha512-x86_64.S
545.elif defined(ASM_arm)
546SRCS+=	keccak1600-armv4.S sha1-armv4-large.S sha256-armv4.S sha512-armv4.S
547.elif defined(ASM_i386)
548SRCS+=	keccak1600.c sha1-586.S sha256-586.S sha512-586.S
549.elif defined(ASM_powerpc)
550SRCS+=	keccak1600.c sha_ppc.c sha1-ppc.S sha256-ppc.S sha512-ppc.S sha256p8-ppc.S sha512p8-ppc.S
551.elif defined(ASM_powerpc64)
552SRCS+=	keccak1600-ppc64.S sha_ppc.c sha1-ppc.S sha256-ppc.S sha512-ppc.S sha256p8-ppc.S sha512p8-ppc.S
553.elif defined(ASM_powerpc64le)
554SRCS+=	keccak1600-ppc64.S sha_ppc.c sha1-ppc.S sha256-ppc.S sha512-ppc.S sha256p8-ppc.S sha512p8-ppc.S
555.else
556SRCS+=	keccak1600.c
557.endif
558
559# siphash
560SRCS+=	siphash.c
561
562# slh_dsa
563SRCS+=	slh_adrs.c slh_dsa.c slh_dsa_hash_ctx.c slh_dsa_key.c slh_fors.c slh_hash.c
564SRCS+=	slh_hypertree.c slh_params.c slh_wots.c slh_xmss.c
565
566# srp
567SRCS+=	srp_lib.c srp_vfy.c
568
569# stack
570SRCS+=	stack.c
571
572# store
573SRCS+=	store_err.c store_init.c store_lib.c store_meth.c store_register.c
574SRCS+=	store_result.c store_strings.c
575
576# thread
577SRCS+=	api.c arch.c arch/thread_win.c arch/thread_posix.c arch/thread_none.c internal.c
578
579# ts
580SRCS+=	ts_asn1.c ts_conf.c ts_err.c ts_lib.c ts_req_print.c ts_req_utils.c
581SRCS+=	ts_rsp_print.c ts_rsp_sign.c ts_rsp_utils.c ts_rsp_verify.c
582SRCS+=	ts_verify_ctx.c
583
584# txt_db
585SRCS+=	txt_db.c
586
587# ui
588SRCS+=	ui_err.c ui_lib.c ui_null.c ui_openssl.c ui_util.c
589
590# whrlpool
591SRCS+=	wp_dgst.c
592.if defined(ASM_amd64)
593SRCS+=	wp-x86_64.S
594.elif defined(ASM_i386)
595SRCS+=	wp-mmx.S wp_block.c
596.else
597SRCS+=	wp_block.c
598.endif
599
600# x509
601SRCS+=	x509_def.c x509_d2.c x509_r2x.c x509_cmp.c
602SRCS+=	x509_obj.c x509_req.c x509spki.c x509_vfy.c
603SRCS+=	x509_set.c x509cset.c x509rset.c x509_err.c
604SRCS+=	x509name.c x509_v3.c x509_ext.c x509_att.c
605SRCS+=	x509_meth.c x509_lu.c x_all.c x509_txt.c
606SRCS+=	x509_trust.c by_file.c by_dir.c by_store.c x509_vpm.c
607SRCS+=	x_crl.c t_crl.c x_req.c t_req.c x_x509.c t_x509.c
608SRCS+=	x_pubkey.c x_x509a.c x_attrib.c x_exten.c x_name.c
609SRCS+=	v3_bcons.c v3_bitst.c v3_conf.c v3_extku.c v3_ia5.c v3_utf8.c v3_lib.c
610SRCS+=	v3_prn.c v3_utl.c v3err.c v3_genn.c v3_san.c v3_skid.c v3_akid.c
611SRCS+=	v3_pku.c v3_int.c v3_enum.c v3_sxnet.c v3_cpols.c v3_crld.c v3_purp.c
612SRCS+=	v3_info.c v3_akeya.c v3_pmaps.c v3_pcons.c v3_ncons.c
613SRCS+=	v3_pcia.c v3_pci.c v3_ist.c
614SRCS+=	pcy_cache.c pcy_node.c pcy_data.c pcy_map.c pcy_tree.c pcy_lib.c
615SRCS+=	v3_asid.c v3_addr.c v3_tlsf.c v3_admis.c v3_no_rev_avail.c
616SRCS+=	v3_soa_id.c v3_no_ass.c v3_group_ac.c v3_single_use.c v3_ind_iss.c
617SRCS+=	x509_acert.c x509aset.c t_acert.c x_ietfatt.c v3_ac_tgt.c v3_sda.c
618SRCS+=	v3_usernotice.c v3_battcons.c v3_audit_id.c v3_iobo.c v3_authattid.c
619SRCS+=	v3_rolespec.c v3_attrdesc.c v3_timespec.c v3_attrmap.c v3_aaa.c
620SRCS+=	x509type.c
621
622INCS=	aes.h asn1.h asn1err.h asn1t.h async.h asyncerr.h bio.h
623INCS+=	bioerr.h blowfish.h bn.h bnerr.h buffer.h buffererr.h byteorder.h camellia.h
624INCS+=	cast.h cmac.h cmp.h cmp_util.h cmperr.h cms.h cmserr.h comp.h comperr.h conf.h conf_api.h
625INCS+=	conferr.h configuration.h conftypes.h core.h core_dispatch.h core_names.h core_object.h
626INCS+=	crmf.h crmferr.h crypto.h cryptoerr.h cryptoerr_legacy.h ct.h cterr.h
627INCS+=	decoder.h decodererr.h des.h dh.h dherr.h dsa.h
628INCS+=	dsaerr.h dtls1.h e_os2.h e_ostime.h ebcdic.h ec.h ecdh.h ecdsa.h ecerr.h encoder.h encodererr.h
629INCS+=	engine.h engineerr.h err.h ess.h esserr.h evp.h evperr.h fips_names.h fipskey.h hmac.h hpke.h http.h httperr.h idea.h indicator.h
630INCS+=	kdf.h kdferr.h lhash.h macros.h md2.h md4.h md5.h mdc2.h modes.h obj_mac.h
631INCS+=	objects.h objectserr.h ocsp.h ocsperr.h opensslconf.h opensslv.h
632INCS+=	ossl_typ.h param_build.h params.h pem.h pem2.h pemerr.h pkcs12.h pkcs12err.h pkcs7.h
633INCS+=	pkcs7err.h prov_ssl.h proverr.h provider.h quic.h rand.h randerr.h rc2.h rc4.h rc5.h ripemd.h
634INCS+=	rsa.h rsaerr.h safestack.h seed.h self_test.h sha.h srp.h srtp.h ssl.h ssl2.h
635INCS+=	ssl3.h sslerr.h sslerr_legacy.h stack.h store.h storeerr.h symhacks.h thread.h tls1.h trace.h ts.h
636INCS+=	tserr.h txt_db.h types.h ui.h uierr.h whrlpool.h x509.h x509_vfy.h x509err.h
637INCS+=	x509v3.h x509v3err.h
638
639INCSDIR=${INCLUDEDIR}/openssl
640
641LIBADD=	pthread
642
643SRCS+=	buildinf.h
644
645CLEANDIRS=	openssl
646CLEANFILES=	buildinf.h
647
648.if defined(ASM_${MACHINE_CPUARCH}) || defined(ASM_${MACHINE_ARCH})
649_cmd1=/%%NO_ASM%%/d
650.else
651_cmd1=s/%%NO_ASM%%//
652.endif
653.if ${MK_OPENSSL_KTLS} != "no"
654_cmd2=/%%NO_KTLS%%/d
655.else
656_cmd2=s/%%NO_KTLS%%//
657.endif
658
659buildinf.h: Makefile
660	( echo "/*"; \
661	echo " * WARNING: do not edit!"; \
662	echo " * Generated by ${.ALLSRC}"; \
663	echo " */"; \
664	echo "#define PLATFORM \"platform: FreeBSD-${MACHINE_ARCH}\""; \
665	echo "#define DATE \"built on: reproducible build, date unspecified\""; \
666	echo "static const char compiler_flags[] = \"compiler: ${COMPILER_TYPE}\";" ) \
667	> ${.TARGET}
668
669buildasm cleanasm:
670.for arch in aarch64 amd64 arm i386 powerpc powerpc64 powerpc64le
671	make MK_AUTO_OBJ=no -DWITHOUT_AUTO_ASM -DASM_${arch} \
672	    -f ${.CURDIR}/Makefile.asm -C ${SRCTOP}/sys/crypto/openssl/${arch} \
673	    ${.TARGET:S/build/all/:S/asm$//}
674.endfor
675
676.include <bsd.lib.mk>
677
678.if ${MACHINE} == "powerpc"
679# Work around "relocation R_PPC_GOT16 out of range" errors
680PICFLAG=	-fPIC
681.endif
682PICFLAG+=	-DOPENSSL_PIC
683
684.if defined(ASM_${MACHINE_CPUARCH})
685.PATH:	${SRCTOP}/sys/crypto/openssl/${MACHINE_CPUARCH}
686.if defined(ASM_amd64)
687.PATH:	${LCRYPTO_SRC}/crypto/bn/asm
688.endif
689.elif defined(ASM_${MACHINE_ARCH})
690.PATH:	${SRCTOP}/sys/crypto/openssl/${MACHINE_ARCH}
691.endif
692
693.PATH:	${LCRYPTO_SRC}/include/openssl \
694	${LCRYPTO_SRC}/crypto \
695	${LCRYPTO_SRC}/crypto/aes \
696	${LCRYPTO_SRC}/crypto/aria \
697	${LCRYPTO_SRC}/crypto/asn1 \
698	${LCRYPTO_SRC}/crypto/async \
699	${LCRYPTO_SRC}/crypto/async/arch \
700	${LCRYPTO_SRC}/crypto/bf \
701	${LCRYPTO_SRC}/crypto/bio \
702	${LCRYPTO_SRC}/crypto/bn \
703	${LCRYPTO_SRC}/crypto/buffer \
704	${LCRYPTO_SRC}/crypto/camellia \
705	${LCRYPTO_SRC}/crypto/cast \
706	${LCRYPTO_SRC}/crypto/chacha \
707	${LCRYPTO_SRC}/crypto/cmac \
708	${LCRYPTO_SRC}/crypto/cmp \
709	${LCRYPTO_SRC}/crypto/cms \
710	${LCRYPTO_SRC}/crypto/comp \
711	${LCRYPTO_SRC}/crypto/conf \
712	${LCRYPTO_SRC}/crypto/crmf \
713	${LCRYPTO_SRC}/crypto/ct \
714	${LCRYPTO_SRC}/crypto/des \
715	${LCRYPTO_SRC}/crypto/dh \
716	${LCRYPTO_SRC}/crypto/dsa \
717	${LCRYPTO_SRC}/crypto/dso \
718	${LCRYPTO_SRC}/crypto/ec \
719	${LCRYPTO_SRC}/crypto/ec/curve448 \
720	${LCRYPTO_SRC}/crypto/ec/curve448/arch_32 \
721	${LCRYPTO_SRC}/crypto/ec/curve448/arch_64 \
722	${LCRYPTO_SRC}/crypto/encode_decode \
723	${LCRYPTO_SRC}/crypto/engine \
724	${LCRYPTO_SRC}/crypto/err \
725	${LCRYPTO_SRC}/crypto/ess \
726	${LCRYPTO_SRC}/crypto/evp \
727	${LCRYPTO_SRC}/crypto/ffc \
728	${LCRYPTO_SRC}/crypto/hashtable \
729	${LCRYPTO_SRC}/crypto/hmac \
730	${LCRYPTO_SRC}/crypto/hpke \
731	${LCRYPTO_SRC}/crypto/http \
732	${LCRYPTO_SRC}/crypto/idea \
733	${LCRYPTO_SRC}/crypto/kdf \
734	${LCRYPTO_SRC}/crypto/lhash \
735	${LCRYPTO_SRC}/crypto/md4 \
736	${LCRYPTO_SRC}/crypto/md5 \
737	${LCRYPTO_SRC}/crypto/mdc2 \
738	${LCRYPTO_SRC}/crypto/ml_dsa \
739	${LCRYPTO_SRC}/crypto/ml_kem \
740	${LCRYPTO_SRC}/crypto/modes \
741	${LCRYPTO_SRC}/crypto/objects \
742	${LCRYPTO_SRC}/crypto/ocsp \
743	${LCRYPTO_SRC}/crypto/pem \
744	${LCRYPTO_SRC}/crypto/pkcs12 \
745	${LCRYPTO_SRC}/crypto/pkcs7 \
746	${LCRYPTO_SRC}/crypto/poly1305 \
747	${LCRYPTO_SRC}/crypto/property \
748	${LCRYPTO_SRC}/crypto/rand \
749	${LCRYPTO_SRC}/crypto/rc2 \
750	${LCRYPTO_SRC}/crypto/rc4 \
751	${LCRYPTO_SRC}/crypto/rc5 \
752	${LCRYPTO_SRC}/crypto/ripemd \
753	${LCRYPTO_SRC}/crypto/rsa \
754	${LCRYPTO_SRC}/crypto/seed \
755	${LCRYPTO_SRC}/crypto/sha \
756	${LCRYPTO_SRC}/crypto/siphash \
757	${LCRYPTO_SRC}/crypto/slh_dsa \
758	${LCRYPTO_SRC}/crypto/sm2 \
759	${LCRYPTO_SRC}/crypto/sm3 \
760	${LCRYPTO_SRC}/crypto/sm4 \
761	${LCRYPTO_SRC}/crypto/srp \
762	${LCRYPTO_SRC}/crypto/stack \
763	${LCRYPTO_SRC}/crypto/store \
764	${LCRYPTO_SRC}/crypto/thread \
765	${LCRYPTO_SRC}/crypto/ts \
766	${LCRYPTO_SRC}/crypto/txt_db \
767	${LCRYPTO_SRC}/crypto/ui \
768	${LCRYPTO_SRC}/crypto/whrlpool \
769	${LCRYPTO_SRC}/crypto/x509 \
770	${LCRYPTO_SRC}/crypto/x509v3 \
771	${LCRYPTO_SRC}/providers \
772	${LCRYPTO_SRC}/providers/common \
773	${LCRYPTO_SRC}/providers/common/der \
774	${LCRYPTO_SRC}/providers/implementations/asymciphers \
775	${LCRYPTO_SRC}/providers/implementations/ciphers \
776	${LCRYPTO_SRC}/providers/implementations/digests \
777	${LCRYPTO_SRC}/providers/implementations/encode_decode \
778	${LCRYPTO_SRC}/providers/implementations/exchange \
779	${LCRYPTO_SRC}/providers/implementations/kdfs \
780	${LCRYPTO_SRC}/providers/implementations/kem \
781	${LCRYPTO_SRC}/providers/implementations/keymgmt \
782	${LCRYPTO_SRC}/providers/implementations/macs \
783	${LCRYPTO_SRC}/providers/implementations/rands \
784	${LCRYPTO_SRC}/providers/implementations/rands/seeding \
785	${LCRYPTO_SRC}/providers/implementations/signature \
786	${LCRYPTO_SRC}/providers/implementations/skeymgmt \
787	${LCRYPTO_SRC}/providers/implementations/storemgmt \
788	${LCRYPTO_SRC}/ssl \
789	${LCRYPTO_SRC}/ssl/record \
790	${LCRYPTO_SRC}/ssl/record/methods
791