]> git.ipfire.org Git - thirdparty/openssl.git/blob - Configure
Add sm4 ciphers to default provider
[thirdparty/openssl.git] / Configure
1 #! /usr/bin/env perl
2 # -*- mode: perl; -*-
3 # Copyright 2016-2018 The OpenSSL Project Authors. All Rights Reserved.
4 #
5 # Licensed under the Apache License 2.0 (the "License"). You may not use
6 # this file except in compliance with the License. You can obtain a copy
7 # in the file LICENSE in the source distribution or at
8 # https://www.openssl.org/source/license.html
9
10 ## Configure -- OpenSSL source tree configuration script
11
12 use 5.10.0;
13 use strict;
14 use Config;
15 use FindBin;
16 use lib "$FindBin::Bin/util/perl";
17 use File::Basename;
18 use File::Spec::Functions qw/:DEFAULT abs2rel rel2abs splitdir/;
19 use File::Path qw/mkpath/;
20 use OpenSSL::fallback "$FindBin::Bin/external/perl/MODULES.txt";
21 use OpenSSL::Glob;
22 use OpenSSL::Template;
23
24 # see INSTALL for instructions.
25
26 my $orig_death_handler = $SIG{__DIE__};
27 $SIG{__DIE__} = \&death_handler;
28
29 my $usage="Usage: Configure [no-<cipher> ...] [enable-<cipher> ...] [-Dxxx] [-lxxx] [-Lxxx] [-fxxx] [-Kxxx] [no-hw-xxx|no-hw] [[no-]threads] [[no-]shared] [[no-]zlib|zlib-dynamic] [no-asm] [no-egd] [sctp] [386] [--prefix=DIR] [--openssldir=OPENSSLDIR] [--with-xxx[=vvv]] [--config=FILE] os/compiler[:flags]\n";
30
31 # Options:
32 #
33 # --config add the given configuration file, which will be read after
34 # any "Configurations*" files that are found in the same
35 # directory as this script.
36 # --prefix prefix for the OpenSSL installation, which includes the
37 # directories bin, lib, include, share/man, share/doc/openssl
38 # This becomes the value of INSTALLTOP in Makefile
39 # (Default: /usr/local)
40 # --openssldir OpenSSL data area, such as openssl.cnf, certificates and keys.
41 # If it's a relative directory, it will be added on the directory
42 # given with --prefix.
43 # This becomes the value of OPENSSLDIR in Makefile and in C.
44 # (Default: PREFIX/ssl)
45 #
46 # --cross-compile-prefix Add specified prefix to binutils components.
47 #
48 # --api One of 0.9.8, 1.0.0, 1.0.1, 1.0.2, 1.1.0, 1.1.1, or 3.0.0 / 3.
49 # Do not compile support for interfaces deprecated as of the
50 # specified OpenSSL version.
51 #
52 # no-hw-xxx do not compile support for specific crypto hardware.
53 # Generic OpenSSL-style methods relating to this support
54 # are always compiled but return NULL if the hardware
55 # support isn't compiled.
56 # no-hw do not compile support for any crypto hardware.
57 # [no-]threads [don't] try to create a library that is suitable for
58 # multithreaded applications (default is "threads" if we
59 # know how to do it)
60 # [no-]shared [don't] try to create shared libraries when supported.
61 # [no-]pic [don't] try to build position independent code when supported.
62 # If disabled, it also disables shared and dynamic-engine.
63 # no-asm do not use assembler
64 # no-egd do not compile support for the entropy-gathering daemon APIs
65 # [no-]zlib [don't] compile support for zlib compression.
66 # zlib-dynamic Like "zlib", but the zlib library is expected to be a shared
67 # library and will be loaded in run-time by the OpenSSL library.
68 # sctp include SCTP support
69 # no-uplink Don't build support for UPLINK interface.
70 # enable-weak-ssl-ciphers
71 # Enable weak ciphers that are disabled by default.
72 # 386 generate 80386 code in assembly modules
73 # no-sse2 disables IA-32 SSE2 code in assembly modules, the above
74 # mentioned '386' option implies this one
75 # no-<cipher> build without specified algorithm (rsa, idea, rc5, ...)
76 # -<xxx> +<xxx> compiler options are passed through
77 # -static while -static is also a pass-through compiler option (and
78 # as such is limited to environments where it's actually
79 # meaningful), it triggers a number configuration options,
80 # namely no-pic, no-shared and no-threads. It is
81 # argued that the only reason to produce statically linked
82 # binaries (and in context it means executables linked with
83 # -static flag, and not just executables linked with static
84 # libcrypto.a) is to eliminate dependency on specific run-time,
85 # a.k.a. libc version. The mentioned config options are meant
86 # to achieve just that. Unfortunately on Linux it's impossible
87 # to eliminate the dependency completely for openssl executable
88 # because of getaddrinfo and gethostbyname calls, which can
89 # invoke dynamically loadable library facility anyway to meet
90 # the lookup requests. For this reason on Linux statically
91 # linked openssl executable has rather debugging value than
92 # production quality.
93 #
94 # BN_LLONG use the type 'long long' in crypto/bn/bn.h
95 # RC4_CHAR use 'char' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
96 # Following are set automatically by this script
97 #
98 # MD5_ASM use some extra md5 assembler,
99 # SHA1_ASM use some extra sha1 assembler, must define L_ENDIAN for x86
100 # RMD160_ASM use some extra ripemd160 assembler,
101 # SHA256_ASM sha256_block is implemented in assembler
102 # SHA512_ASM sha512_block is implemented in assembler
103 # AES_ASM AES_[en|de]crypt is implemented in assembler
104
105 # Minimum warning options... any contributions to OpenSSL should at least
106 # get past these. Note that we only use these with C compilers, not with
107 # C++ compilers.
108
109 # DEBUG_UNUSED enables __owur (warn unused result) checks.
110 # -DPEDANTIC complements -pedantic and is meant to mask code that
111 # is not strictly standard-compliant and/or implementation-specific,
112 # e.g. inline assembly, disregards to alignment requirements, such
113 # that -pedantic would complain about. Incidentally -DPEDANTIC has
114 # to be used even in sanitized builds, because sanitizer too is
115 # supposed to and does take notice of non-standard behaviour. Then
116 # -pedantic with pre-C9x compiler would also complain about 'long
117 # long' not being supported. As 64-bit algorithms are common now,
118 # it grew impossible to resolve this without sizeable additional
119 # code, so we just tell compiler to be pedantic about everything
120 # but 'long long' type.
121
122 my @gcc_devteam_warn = qw(
123 -DDEBUG_UNUSED
124 -DPEDANTIC -pedantic -Wno-long-long
125 -Wall
126 -Wextra
127 -Wno-unused-parameter
128 -Wno-missing-field-initializers
129 -Wswitch
130 -Wsign-compare
131 -Wshadow
132 -Wformat
133 -Wtype-limits
134 -Wundef
135 -Werror
136 -Wmissing-prototypes
137 -Wstrict-prototypes
138 );
139
140 # These are used in addition to $gcc_devteam_warn when the compiler is clang.
141 # TODO(openssl-team): fix problems and investigate if (at least) the
142 # following warnings can also be enabled:
143 # -Wcast-align
144 # -Wunreachable-code -- no, too ugly/compiler-specific
145 # -Wlanguage-extension-token -- no, we use asm()
146 # -Wunused-macros -- no, too tricky for BN and _XOPEN_SOURCE etc
147 # -Wextended-offsetof -- no, needed in CMS ASN1 code
148 my @clang_devteam_warn = qw(
149 -Wno-unknown-warning-option
150 -Wswitch-default
151 -Wno-parentheses-equality
152 -Wno-language-extension-token
153 -Wno-extended-offsetof
154 -Wconditional-uninitialized
155 -Wincompatible-pointer-types-discards-qualifiers
156 -Wmissing-variable-declarations
157 );
158
159 # This adds backtrace information to the memory leak info. Is only used
160 # when crypto-mdebug-backtrace is enabled.
161 my $memleak_devteam_backtrace = "-rdynamic";
162
163 my $strict_warnings = 0;
164
165 # As for $BSDthreads. Idea is to maintain "collective" set of flags,
166 # which would cover all BSD flavors. -pthread applies to them all,
167 # but is treated differently. OpenBSD expands is as -D_POSIX_THREAD
168 # -lc_r, which is sufficient. FreeBSD 4.x expands it as -lc_r,
169 # which has to be accompanied by explicit -D_THREAD_SAFE and
170 # sometimes -D_REENTRANT. FreeBSD 5.x expands it as -lc_r, which
171 # seems to be sufficient?
172 our $BSDthreads="-pthread -D_THREAD_SAFE -D_REENTRANT";
173
174 #
175 # API compatibility name to version number mapping.
176 #
177 my $maxapi = "3.0.0"; # API for "no-deprecated" builds
178 my $apitable = {
179 "3.0.0" => 3,
180 "1.1.1" => 2,
181 "1.1.0" => 2,
182 "1.0.2" => 1,
183 "1.0.1" => 1,
184 "1.0.0" => 1,
185 "0.9.8" => 0,
186 };
187
188 our %table = ();
189 our %config = ();
190 our %withargs = ();
191 our $now_printing; # set to current entry's name in print_table_entry
192 # (todo: right thing would be to encapsulate name
193 # into %target [class] and make print_table_entry
194 # a method)
195
196 # Forward declarations ###############################################
197
198 # read_config(filename)
199 #
200 # Reads a configuration file and populates %table with the contents
201 # (which the configuration file places in %targets).
202 sub read_config;
203
204 # resolve_config(target)
205 #
206 # Resolves all the late evaluations, inheritances and so on for the
207 # chosen target and any target it inherits from.
208 sub resolve_config;
209
210
211 # Information collection #############################################
212
213 # Unified build supports separate build dir
214 my $srcdir = catdir(absolutedir(dirname($0))); # catdir ensures local syntax
215 my $blddir = catdir(absolutedir(".")); # catdir ensures local syntax
216 my $dofile = abs2rel(catfile($srcdir, "util/dofile.pl"));
217
218 my $local_config_envname = 'OPENSSL_LOCAL_CONFIG_DIR';
219
220 $config{sourcedir} = abs2rel($srcdir);
221 $config{builddir} = abs2rel($blddir);
222
223 # Collect reconfiguration information if needed
224 my @argvcopy=@ARGV;
225
226 if (grep /^reconf(igure)?$/, @argvcopy) {
227 die "reconfiguring with other arguments present isn't supported"
228 if scalar @argvcopy > 1;
229 if (-f "./configdata.pm") {
230 my $file = "./configdata.pm";
231 unless (my $return = do $file) {
232 die "couldn't parse $file: $@" if $@;
233 die "couldn't do $file: $!" unless defined $return;
234 die "couldn't run $file" unless $return;
235 }
236
237 @argvcopy = defined($configdata::config{perlargv}) ?
238 @{$configdata::config{perlargv}} : ();
239 die "Incorrect data to reconfigure, please do a normal configuration\n"
240 if (grep(/^reconf/,@argvcopy));
241 $config{perlenv} = $configdata::config{perlenv} // {};
242 } else {
243 die "Insufficient data to reconfigure, please do a normal configuration\n";
244 }
245 }
246
247 $config{perlargv} = [ @argvcopy ];
248
249 # Collect version numbers
250 $config{major} = "unknown";
251 $config{minor} = "unknown";
252 $config{patch} = "unknown";
253 $config{prerelease} = "";
254 $config{build_metadata} = "";
255 $config{shlib_version} = "unknown";
256
257 collect_information(
258 collect_from_file(catfile($srcdir,'include/openssl/opensslv.h')),
259 qr/#\s+define\s+OPENSSL_VERSION_MAJOR\s+(\d+)/ =>
260 sub { $config{major} = $1; },
261 qr/#\s+define\s+OPENSSL_VERSION_MINOR\s+(\d+)/ =>
262 sub { $config{minor} = $1; },
263 qr/#\s+define\s+OPENSSL_VERSION_PATCH\s+(\d+)/ =>
264 sub { $config{patch} = $1; },
265 qr/#\s+define\s+OPENSSL_VERSION_PRE_RELEASE\s+"((?:\\.|[^"])*)"/ =>
266 sub { $config{prerelease} = $1; },
267 qr/#\s+define\s+OPENSSL_VERSION_BUILD_METADATA\s+"((?:\\.|[^"])*)"/ =>
268 sub { $config{build_metadata} = $1; },
269 qr/#\s+define\s+OPENSSL_SHLIB_VERSION\s+([\d\.]+)/ =>
270 sub { $config{shlib_version} = $1; },
271 );
272 die "erroneous version information in opensslv.h: ",
273 "$config{major}.$config{minor}.$config{patch}, $config{shlib_version}\n"
274 if ($config{major} eq "unknown"
275 || $config{minor} eq "unknown"
276 || $config{patch} eq "unknown"
277 || $config{shlib_version} eq "unknown");
278
279 $config{version} = "$config{major}.$config{minor}.$config{patch}";
280 $config{full_version} = "$config{version}$config{prerelease}$config{build_metadata}";
281
282 # Collect target configurations
283
284 my $pattern = catfile(dirname($0), "Configurations", "*.conf");
285 foreach (sort glob($pattern)) {
286 &read_config($_);
287 }
288
289 if (defined env($local_config_envname)) {
290 if ($^O eq 'VMS') {
291 # VMS environment variables are logical names,
292 # which can be used as is
293 $pattern = $local_config_envname . ':' . '*.conf';
294 } else {
295 $pattern = catfile(env($local_config_envname), '*.conf');
296 }
297
298 foreach (sort glob($pattern)) {
299 &read_config($_);
300 }
301 }
302
303 # Save away perl command information
304 $config{perl_cmd} = $^X;
305 $config{perl_version} = $Config{version};
306 $config{perl_archname} = $Config{archname};
307
308 $config{prefix}="";
309 $config{openssldir}="";
310 $config{processor}="";
311 $config{libdir}="";
312 my $auto_threads=1; # enable threads automatically? true by default
313 my $default_ranlib;
314
315 # Known TLS and DTLS protocols
316 my @tls = qw(ssl3 tls1 tls1_1 tls1_2 tls1_3);
317 my @dtls = qw(dtls1 dtls1_2);
318
319 # Explicitly known options that are possible to disable. They can
320 # be regexps, and will be used like this: /^no-${option}$/
321 # For developers: keep it sorted alphabetically
322
323 my @disablables = (
324 "ktls",
325 "afalgeng",
326 "aria",
327 "asan",
328 "asm",
329 "async",
330 "autoalginit",
331 "autoerrinit",
332 "autoload-config",
333 "bf",
334 "blake2",
335 "buildtest-c++",
336 "camellia",
337 "capieng",
338 "cast",
339 "chacha",
340 "cmac",
341 "cmp",
342 "cms",
343 "comp",
344 "crypto-mdebug",
345 "crypto-mdebug-backtrace",
346 "ct",
347 "deprecated",
348 "des",
349 "devcryptoeng",
350 "dgram",
351 "dh",
352 "dsa",
353 "dso",
354 "dtls",
355 "dynamic-engine",
356 "ec",
357 "ec2m",
358 "ecdh",
359 "ecdsa",
360 "ec_nistp_64_gcc_128",
361 "egd",
362 "engine",
363 "err",
364 "external-tests",
365 "filenames",
366 "fips",
367 "fuzz-libfuzzer",
368 "fuzz-afl",
369 "gost",
370 "idea",
371 "legacy",
372 "makedepend",
373 "md2",
374 "md4",
375 "mdc2",
376 "module",
377 "msan",
378 "multiblock",
379 "nextprotoneg",
380 "pinshared",
381 "ocb",
382 "ocsp",
383 "padlockeng",
384 "pic",
385 "poly1305",
386 "posix-io",
387 "psk",
388 "rc2",
389 "rc4",
390 "rc5",
391 "rdrand",
392 "rfc3779",
393 "rmd160",
394 "scrypt",
395 "sctp",
396 "seed",
397 "shared",
398 "siphash",
399 "siv",
400 "sm2",
401 "sm3",
402 "sm4",
403 "sock",
404 "srp",
405 "srtp",
406 "sse2",
407 "ssl",
408 "ssl-trace",
409 "static-engine",
410 "stdio",
411 "tests",
412 "threads",
413 "tls",
414 "trace",
415 "ts",
416 "ubsan",
417 "ui-console",
418 "unit-test",
419 "uplink",
420 "whirlpool",
421 "weak-ssl-ciphers",
422 "zlib",
423 "zlib-dynamic",
424 );
425 foreach my $proto ((@tls, @dtls))
426 {
427 push(@disablables, $proto);
428 push(@disablables, "$proto-method") unless $proto eq "tls1_3";
429 }
430
431 # Internal disablables, for aliasing purposes. They serve no special
432 # purpose here, but allow scripts to get to know them through configdata.pm,
433 # where these are merged with @disablables.
434 # The actual aliasing mechanism is done via %disable_cascades
435 my @disablables_int = qw(
436 crmf
437 );
438
439 my %deprecated_disablables = (
440 "ssl2" => undef,
441 "buf-freelists" => undef,
442 "hw" => "hw", # causes cascade, but no macro
443 "hw-padlock" => "padlockeng",
444 "ripemd" => "rmd160",
445 "ui" => "ui-console",
446 "heartbeats" => undef,
447 );
448
449 # All of the following are disabled by default:
450
451 our %disabled = ( # "what" => "comment"
452 "asan" => "default",
453 "buildtest-c++" => "default",
454 "crypto-mdebug" => "default",
455 "crypto-mdebug-backtrace" => "default",
456 "devcryptoeng" => "default",
457 "ec_nistp_64_gcc_128" => "default",
458 "egd" => "default",
459 "external-tests" => "default",
460 "fuzz-libfuzzer" => "default",
461 "fuzz-afl" => "default",
462 "md2" => "default",
463 "msan" => "default",
464 "rc5" => "default",
465 "sctp" => "default",
466 "ssl-trace" => "default",
467 "ssl3" => "default",
468 "ssl3-method" => "default",
469 "trace" => "default",
470 "ubsan" => "default",
471 "unit-test" => "default",
472 "weak-ssl-ciphers" => "default",
473 "zlib" => "default",
474 "zlib-dynamic" => "default",
475 "ktls" => "default",
476 );
477
478 # Note: => pair form used for aesthetics, not to truly make a hash table
479 my @disable_cascades = (
480 # "what" => [ "cascade", ... ]
481 sub { $config{processor} eq "386" }
482 => [ "sse2" ],
483 "ssl" => [ "ssl3" ],
484 "ssl3-method" => [ "ssl3" ],
485 "zlib" => [ "zlib-dynamic" ],
486 "des" => [ "mdc2" ],
487 "ec" => [ "ecdsa", "ecdh", "sm2" ],
488 sub { $disabled{"ec"} && $disabled{"dh"} }
489 => [ "tls1_3" ],
490 "dgram" => [ "dtls", "sctp" ],
491 "sock" => [ "dgram" ],
492 "dtls" => [ @dtls ],
493 sub { 0 == scalar grep { !$disabled{$_} } @dtls }
494 => [ "dtls" ],
495
496 "tls" => [ @tls ],
497 sub { 0 == scalar grep { !$disabled{$_} } @tls }
498 => [ "tls" ],
499
500 "crypto-mdebug" => [ "crypto-mdebug-backtrace" ],
501
502 # If no modules, then no dynamic engines either
503 "module" => [ "dynamic-engine" ],
504
505 # Without shared libraries, dynamic engines aren't possible.
506 # This is due to them having to link with libcrypto and register features
507 # using the ENGINE functionality, and since that relies on global tables,
508 # those *have* to be exacty the same as the ones accessed from the app,
509 # which cannot be guaranteed if shared libraries aren't present.
510 # (note that even with shared libraries, both the app and dynamic engines
511 # must be linked with the same library)
512 "shared" => [ "dynamic-engine", "uplink" ],
513 "dso" => [ "dynamic-engine", "module" ],
514 # Other modules don't necessarily have to link with libcrypto, so shared
515 # libraries do not have to be a condition to produce those.
516
517 # Without position independent code, there can be no shared libraries
518 # or modules.
519 "pic" => [ "shared", "module" ],
520
521 "module" => [ "fips", "legacy" ],
522
523 "engine" => [ grep /eng$/, @disablables ],
524 "hw" => [ "padlockeng" ],
525
526 # no-autoalginit is only useful when building non-shared
527 "autoalginit" => [ "shared", "apps" ],
528
529 "stdio" => [ "apps", "capieng", "egd" ],
530 "apps" => [ "tests" ],
531 "tests" => [ "external-tests" ],
532 "comp" => [ "zlib" ],
533 "sm3" => [ "sm2" ],
534 sub { !$disabled{"unit-test"} } => [ "heartbeats" ],
535
536 sub { !$disabled{"msan"} } => [ "asm" ],
537
538 sub { $disabled{cmac}; } => [ "siv" ],
539 "legacy" => [ "md2" ],
540
541 "cmp" => [ "crmf" ],
542 );
543
544 # Avoid protocol support holes. Also disable all versions below N, if version
545 # N is disabled while N+1 is enabled.
546 #
547 my @list = (reverse @tls);
548 while ((my $first, my $second) = (shift @list, shift @list)) {
549 last unless @list;
550 push @disable_cascades, ( sub { !$disabled{$first} && $disabled{$second} }
551 => [ @list ] );
552 unshift @list, $second;
553 }
554 my @list = (reverse @dtls);
555 while ((my $first, my $second) = (shift @list, shift @list)) {
556 last unless @list;
557 push @disable_cascades, ( sub { !$disabled{$first} && $disabled{$second} }
558 => [ @list ] );
559 unshift @list, $second;
560 }
561
562 # Explicit "no-..." options will be collected in %disabled along with the defaults.
563 # To remove something from %disabled, use "enable-foo".
564 # For symmetry, "disable-foo" is a synonym for "no-foo".
565
566 &usage if ($#ARGV < 0);
567
568 # For the "make variables" CINCLUDES and CDEFINES, we support lists with
569 # platform specific list separators. Users from those platforms should
570 # recognise those separators from how you set up the PATH to find executables.
571 # The default is the Unix like separator, :, but as an exception, we also
572 # support the space as separator.
573 my $list_separator_re =
574 { VMS => qr/(?<!\^),/,
575 MSWin32 => qr/(?<!\\);/ } -> {$^O} // qr/(?<!\\)[:\s]/;
576 # All the "make variables" we support
577 # Some get pre-populated for the sake of backward compatibility
578 # (we supported those before the change to "make variable" support.
579 my %user = (
580 AR => env('AR'),
581 ARFLAGS => [],
582 AS => undef,
583 ASFLAGS => [],
584 CC => env('CC'),
585 CFLAGS => [ env('CFLAGS') || () ],
586 CXX => env('CXX'),
587 CXXFLAGS => [ env('CXXFLAGS') || () ],
588 CPP => undef,
589 CPPFLAGS => [ env('CPPFLAGS') || () ], # -D, -I, -Wp,
590 CPPDEFINES => [], # Alternative for -D
591 CPPINCLUDES => [], # Alternative for -I
592 CROSS_COMPILE => env('CROSS_COMPILE'),
593 HASHBANGPERL=> env('HASHBANGPERL') || env('PERL'),
594 LD => undef,
595 LDFLAGS => [ env('LDFLAGS') || () ], # -L, -Wl,
596 LDLIBS => [ env('LDLIBS') || () ], # -l
597 MT => undef,
598 MTFLAGS => [],
599 PERL => env('PERL') || ($^O ne "VMS" ? $^X : "perl"),
600 RANLIB => env('RANLIB'),
601 RC => env('RC') || env('WINDRES'),
602 RCFLAGS => [ env('RCFLAGS') || () ],
603 RM => undef,
604 );
605 # Info about what "make variables" may be prefixed with the cross compiler
606 # prefix. This should NEVER mention any such variable with a list for value.
607 my @user_crossable = qw ( AR AS CC CXX CPP LD MT RANLIB RC );
608 # The same but for flags given as Configure options. These are *additional*
609 # input, as opposed to the VAR=string option that override the corresponding
610 # config target attributes
611 my %useradd = (
612 CPPDEFINES => [],
613 CPPINCLUDES => [],
614 CPPFLAGS => [],
615 CFLAGS => [],
616 CXXFLAGS => [],
617 LDFLAGS => [],
618 LDLIBS => [],
619 RCFLAGS => [],
620 );
621
622 my %user_synonyms = (
623 HASHBANGPERL=> 'PERL',
624 RC => 'WINDRES',
625 );
626
627 # Some target attributes have been renamed, this is the translation table
628 my %target_attr_translate =(
629 ar => 'AR',
630 as => 'AS',
631 cc => 'CC',
632 cxx => 'CXX',
633 cpp => 'CPP',
634 hashbangperl => 'HASHBANGPERL',
635 ld => 'LD',
636 mt => 'MT',
637 ranlib => 'RANLIB',
638 rc => 'RC',
639 rm => 'RM',
640 );
641
642 # Initialisers coming from 'config' scripts
643 $config{defines} = [ split(/$list_separator_re/, env('__CNF_CPPDEFINES')) ];
644 $config{includes} = [ split(/$list_separator_re/, env('__CNF_CPPINCLUDES')) ];
645 $config{cppflags} = [ env('__CNF_CPPFLAGS') || () ];
646 $config{cflags} = [ env('__CNF_CFLAGS') || () ];
647 $config{cxxflags} = [ env('__CNF_CXXFLAGS') || () ];
648 $config{lflags} = [ env('__CNF_LDFLAGS') || () ];
649 $config{ex_libs} = [ env('__CNF_LDLIBS') || () ];
650
651 $config{openssl_api_defines}=[];
652 $config{openssl_sys_defines}=[];
653 $config{openssl_feature_defines}=[];
654 $config{options}="";
655 $config{build_type} = "release";
656 my $target="";
657
658 my %cmdvars = (); # Stores FOO='blah' type arguments
659 my %unsupported_options = ();
660 my %deprecated_options = ();
661 # If you change this, update apps/version.c
662 my @known_seed_sources = qw(getrandom devrandom os egd none rdcpu librandom);
663 my @seed_sources = ();
664 while (@argvcopy)
665 {
666 $_ = shift @argvcopy;
667
668 # Support env variable assignments among the options
669 if (m|^(\w+)=(.+)?$|)
670 {
671 $cmdvars{$1} = $2;
672 # Every time a variable is given as a configuration argument,
673 # it acts as a reset if the variable.
674 if (exists $user{$1})
675 {
676 $user{$1} = ref $user{$1} eq "ARRAY" ? [] : undef;
677 }
678 #if (exists $useradd{$1})
679 # {
680 # $useradd{$1} = [];
681 # }
682 next;
683 }
684
685 # VMS is a case insensitive environment, and depending on settings
686 # out of our control, we may receive options uppercased. Let's
687 # downcase at least the part before any equal sign.
688 if ($^O eq "VMS")
689 {
690 s/^([^=]*)/lc($1)/e;
691 }
692
693 # some people just can't read the instructions, clang people have to...
694 s/^-no-(?!integrated-as)/no-/;
695
696 # rewrite some options in "enable-..." form
697 s /^-?-?shared$/enable-shared/;
698 s /^sctp$/enable-sctp/;
699 s /^threads$/enable-threads/;
700 s /^zlib$/enable-zlib/;
701 s /^zlib-dynamic$/enable-zlib-dynamic/;
702
703 if (/^(no|disable|enable)-(.+)$/)
704 {
705 my $word = $2;
706 if ($word !~ m|hw(?:-.+)| # special treatment for hw regexp opt
707 && !exists $deprecated_disablables{$word}
708 && !grep { $word eq $_ } @disablables)
709 {
710 $unsupported_options{$_} = 1;
711 next;
712 }
713 }
714 if (/^no-(.+)$/ || /^disable-(.+)$/)
715 {
716 foreach my $proto ((@tls, @dtls))
717 {
718 if ($1 eq "$proto-method")
719 {
720 $disabled{"$proto"} = "option($proto-method)";
721 last;
722 }
723 }
724 if ($1 eq "dtls")
725 {
726 foreach my $proto (@dtls)
727 {
728 $disabled{$proto} = "option(dtls)";
729 }
730 $disabled{"dtls"} = "option(dtls)";
731 }
732 elsif ($1 eq "ssl")
733 {
734 # Last one of its kind
735 $disabled{"ssl3"} = "option(ssl)";
736 }
737 elsif ($1 eq "tls")
738 {
739 # XXX: Tests will fail if all SSL/TLS
740 # protocols are disabled.
741 foreach my $proto (@tls)
742 {
743 $disabled{$proto} = "option(tls)";
744 }
745 }
746 elsif ($1 eq "static-engine")
747 {
748 delete $disabled{"dynamic-engine"};
749 }
750 elsif ($1 eq "dynamic-engine")
751 {
752 $disabled{"dynamic-engine"} = "option";
753 }
754 elsif (exists $deprecated_disablables{$1})
755 {
756 $deprecated_options{$_} = 1;
757 if (defined $deprecated_disablables{$1})
758 {
759 $disabled{$deprecated_disablables{$1}} = "option";
760 }
761 }
762 elsif ($1 =~ m|hw(?:-.+)|) # deprecate hw options in regexp form
763 {
764 $deprecated_options{$_} = 1;
765 }
766 else
767 {
768 $disabled{$1} = "option";
769 }
770 # No longer an automatic choice
771 $auto_threads = 0 if ($1 eq "threads");
772 }
773 elsif (/^enable-(.+)$/)
774 {
775 if ($1 eq "static-engine")
776 {
777 $disabled{"dynamic-engine"} = "option";
778 }
779 elsif ($1 eq "dynamic-engine")
780 {
781 delete $disabled{"dynamic-engine"};
782 }
783 elsif ($1 eq "zlib-dynamic")
784 {
785 delete $disabled{"zlib"};
786 }
787 my $algo = $1;
788 delete $disabled{$algo};
789
790 # No longer an automatic choice
791 $auto_threads = 0 if ($1 eq "threads");
792 }
793 elsif (/^--strict-warnings$/)
794 {
795 # Pretend that our strict flags is a C flag, and replace it
796 # with the proper flags later on
797 push @{$useradd{CFLAGS}}, '--ossl-strict-warnings';
798 $strict_warnings=1;
799 }
800 elsif (/^--debug$/)
801 {
802 $config{build_type} = "debug";
803 }
804 elsif (/^--release$/)
805 {
806 $config{build_type} = "release";
807 }
808 elsif (/^386$/)
809 { $config{processor}=386; }
810 elsif (/^fips$/)
811 {
812 die "FIPS mode not supported\n";
813 }
814 elsif (/^rsaref$/)
815 {
816 # No RSAref support any more since it's not needed.
817 # The check for the option is there so scripts aren't
818 # broken
819 }
820 elsif (/^nofipscanistercheck$/)
821 {
822 die "FIPS mode not supported\n";
823 }
824 elsif (/^[-+]/)
825 {
826 if (/^--prefix=(.*)$/)
827 {
828 $config{prefix}=$1;
829 die "Directory given with --prefix MUST be absolute\n"
830 unless file_name_is_absolute($config{prefix});
831 }
832 elsif (/^--api=(.*)$/)
833 {
834 $config{api}=$1;
835 }
836 elsif (/^--libdir=(.*)$/)
837 {
838 $config{libdir}=$1;
839 }
840 elsif (/^--openssldir=(.*)$/)
841 {
842 $config{openssldir}=$1;
843 }
844 elsif (/^--with-zlib-lib=(.*)$/)
845 {
846 $withargs{zlib_lib}=$1;
847 }
848 elsif (/^--with-zlib-include=(.*)$/)
849 {
850 $withargs{zlib_include}=$1;
851 }
852 elsif (/^--with-fuzzer-lib=(.*)$/)
853 {
854 $withargs{fuzzer_lib}=$1;
855 }
856 elsif (/^--with-fuzzer-include=(.*)$/)
857 {
858 $withargs{fuzzer_include}=$1;
859 }
860 elsif (/^--with-rand-seed=(.*)$/)
861 {
862 foreach my $x (split(m|,|, $1))
863 {
864 die "Unknown --with-rand-seed choice $x\n"
865 if ! grep { $x eq $_ } @known_seed_sources;
866 push @seed_sources, $x;
867 }
868 }
869 elsif (/^--cross-compile-prefix=(.*)$/)
870 {
871 $user{CROSS_COMPILE}=$1;
872 }
873 elsif (/^--config=(.*)$/)
874 {
875 read_config $1;
876 }
877 elsif (/^-l(.*)$/)
878 {
879 push @{$useradd{LDLIBS}}, $_;
880 }
881 elsif (/^-framework$/)
882 {
883 push @{$useradd{LDLIBS}}, $_, shift(@argvcopy);
884 }
885 elsif (/^-L(.*)$/ or /^-Wl,/)
886 {
887 push @{$useradd{LDFLAGS}}, $_;
888 }
889 elsif (/^-rpath$/ or /^-R$/)
890 # -rpath is the OSF1 rpath flag
891 # -R is the old Solaris rpath flag
892 {
893 my $rpath = shift(@argvcopy) || "";
894 $rpath .= " " if $rpath ne "";
895 push @{$useradd{LDFLAGS}}, $_, $rpath;
896 }
897 elsif (/^-static$/)
898 {
899 push @{$useradd{LDFLAGS}}, $_;
900 }
901 elsif (/^-D(.*)$/)
902 {
903 push @{$useradd{CPPDEFINES}}, $1;
904 }
905 elsif (/^-I(.*)$/)
906 {
907 push @{$useradd{CPPINCLUDES}}, $1;
908 }
909 elsif (/^-Wp,$/)
910 {
911 push @{$useradd{CPPFLAGS}}, $1;
912 }
913 else # common if (/^[-+]/), just pass down...
914 {
915 $_ =~ s/%([0-9a-f]{1,2})/chr(hex($1))/gei;
916 push @{$useradd{CFLAGS}}, $_;
917 push @{$useradd{CXXFLAGS}}, $_;
918 }
919 }
920 else
921 {
922 die "target already defined - $target (offending arg: $_)\n" if ($target ne "");
923 $target=$_;
924 }
925 unless ($_ eq $target || /^no-/ || /^disable-/)
926 {
927 # "no-..." follows later after implied deactivations
928 # have been derived. (Don't take this too seriously,
929 # we really only write OPTIONS to the Makefile out of
930 # nostalgia.)
931
932 if ($config{options} eq "")
933 { $config{options} = $_; }
934 else
935 { $config{options} .= " ".$_; }
936 }
937 }
938
939 if (defined($config{api}) && !exists $apitable->{$config{api}}) {
940 die "***** Unsupported api compatibility level: $config{api}\n",
941 }
942
943 if (keys %deprecated_options)
944 {
945 warn "***** Deprecated options: ",
946 join(", ", keys %deprecated_options), "\n";
947 }
948 if (keys %unsupported_options)
949 {
950 die "***** Unsupported options: ",
951 join(", ", keys %unsupported_options), "\n";
952 }
953
954 # If any %useradd entry has been set, we must check that the "make
955 # variables" haven't been set. We start by checking of any %useradd entry
956 # is set.
957 if (grep { scalar @$_ > 0 } values %useradd) {
958 # Hash of env / make variables names. The possible values are:
959 # 1 - "make vars"
960 # 2 - %useradd entry set
961 # 3 - both set
962 my %detected_vars =
963 map { my $v = 0;
964 $v += 1 if $cmdvars{$_};
965 $v += 2 if @{$useradd{$_}};
966 $_ => $v }
967 keys %useradd;
968
969 # If any of the corresponding "make variables" is set, we error
970 if (grep { $_ & 1 } values %detected_vars) {
971 my $names = join(', ', grep { $detected_vars{$_} > 0 }
972 sort keys %detected_vars);
973 die <<"_____";
974 ***** Mixing make variables and additional compiler/linker flags as
975 ***** configure command line option is not permitted.
976 ***** Affected make variables: $names
977 _____
978 }
979 }
980
981 # Check through all supported command line variables to see if any of them
982 # were set, and canonicalise the values we got. If no compiler or linker
983 # flag or anything else that affects %useradd was set, we also check the
984 # environment for values.
985 my $anyuseradd =
986 grep { defined $_ && (ref $_ ne 'ARRAY' || @$_) } values %useradd;
987 foreach (keys %user) {
988 my $value = $cmdvars{$_};
989 $value //= env($_) unless $anyuseradd;
990 $value //=
991 defined $user_synonyms{$_} ? $cmdvars{$user_synonyms{$_}} : undef;
992 $value //= defined $user_synonyms{$_} ? env($user_synonyms{$_}) : undef
993 unless $anyuseradd;
994
995 if (defined $value) {
996 if (ref $user{$_} eq 'ARRAY') {
997 $user{$_} = [ split /$list_separator_re/, $value ];
998 } elsif (!defined $user{$_}) {
999 $user{$_} = $value;
1000 }
1001 }
1002 }
1003
1004 if (grep { /-rpath\b/ } ($user{LDFLAGS} ? @{$user{LDFLAGS}} : ())
1005 && !$disabled{shared}
1006 && !($disabled{asan} && $disabled{msan} && $disabled{ubsan})) {
1007 die "***** Cannot simultaneously use -rpath, shared libraries, and\n",
1008 "***** any of asan, msan or ubsan\n";
1009 }
1010
1011 sub disable {
1012 my $disable_type = shift;
1013
1014 for (@_) {
1015 $disabled{$_} = $disable_type;
1016 }
1017
1018 my @tocheckfor = (@_ ? @_ : keys %disabled);
1019 while (@tocheckfor) {
1020 my %new_tocheckfor = ();
1021 my @cascade_copy = (@disable_cascades);
1022 while (@cascade_copy) {
1023 my ($test, $descendents) =
1024 (shift @cascade_copy, shift @cascade_copy);
1025 if (ref($test) eq "CODE" ? $test->() : defined($disabled{$test})) {
1026 foreach (grep { !defined($disabled{$_}) } @$descendents) {
1027 $new_tocheckfor{$_} = 1; $disabled{$_} = "cascade";
1028 }
1029 }
1030 }
1031 @tocheckfor = (keys %new_tocheckfor);
1032 }
1033 }
1034 disable(); # First cascade run
1035
1036 our $die = sub { die @_; };
1037 if ($target eq "TABLE") {
1038 local $die = sub { warn @_; };
1039 foreach (sort keys %table) {
1040 print_table_entry($_, "TABLE");
1041 }
1042 exit 0;
1043 }
1044
1045 if ($target eq "LIST") {
1046 foreach (sort keys %table) {
1047 print $_,"\n" unless $table{$_}->{template};
1048 }
1049 exit 0;
1050 }
1051
1052 if ($target eq "HASH") {
1053 local $die = sub { warn @_; };
1054 print "%table = (\n";
1055 foreach (sort keys %table) {
1056 print_table_entry($_, "HASH");
1057 }
1058 exit 0;
1059 }
1060
1061 print "Configuring OpenSSL version $config{full_version} ";
1062 print "for target $target\n";
1063
1064 if (scalar(@seed_sources) == 0) {
1065 print "Using os-specific seed configuration\n";
1066 push @seed_sources, 'os';
1067 }
1068 if (scalar(grep { $_ eq 'none' } @seed_sources) > 0) {
1069 die "Cannot seed with none and anything else" if scalar(@seed_sources) > 1;
1070 warn <<_____ if scalar(@seed_sources) == 1;
1071
1072 ============================== WARNING ===============================
1073 You have selected the --with-rand-seed=none option, which effectively
1074 disables automatic reseeding of the OpenSSL random generator.
1075 All operations depending on the random generator such as creating keys
1076 will not work unless the random generator is seeded manually by the
1077 application.
1078
1079 Please read the 'Note on random number generation' section in the
1080 INSTALL instructions and the RAND_DRBG(7) manual page for more details.
1081 ============================== WARNING ===============================
1082
1083 _____
1084 }
1085 push @{$config{openssl_feature_defines}},
1086 map { (my $x = $_) =~ tr|[\-a-z]|[_A-Z]|; "OPENSSL_RAND_SEED_$x" }
1087 @seed_sources;
1088
1089 # Backward compatibility?
1090 if ($target =~ m/^CygWin32(-.*)$/) {
1091 $target = "Cygwin".$1;
1092 }
1093
1094 # Support for legacy targets having a name starting with 'debug-'
1095 my ($d, $t) = $target =~ m/^(debug-)?(.*)$/;
1096 if ($d) {
1097 $config{build_type} = "debug";
1098
1099 # If we do not find debug-foo in the table, the target is set to foo.
1100 if (!$table{$target}) {
1101 $target = $t;
1102 }
1103 }
1104
1105 &usage if !$table{$target} || $table{$target}->{template};
1106
1107 $config{target} = $target;
1108 my %target = resolve_config($target);
1109
1110 foreach (keys %target_attr_translate) {
1111 $target{$target_attr_translate{$_}} = $target{$_}
1112 if $target{$_};
1113 delete $target{$_};
1114 }
1115
1116 %target = ( %{$table{DEFAULTS}}, %target );
1117
1118 my %conf_files = map { $_ => 1 } (@{$target{_conf_fname_int}});
1119 $config{conf_files} = [ sort keys %conf_files ];
1120
1121 # Using sub disable within these loops may prove fragile, so we run
1122 # a cascade afterwards
1123 foreach my $feature (@{$target{disable}}) {
1124 if (exists $deprecated_disablables{$feature}) {
1125 warn "***** config $target disables deprecated feature $feature\n";
1126 } elsif (!grep { $feature eq $_ } @disablables) {
1127 die "***** config $target disables unknown feature $feature\n";
1128 }
1129 $disabled{$feature} = 'config';
1130 }
1131 foreach my $feature (@{$target{enable}}) {
1132 if ("default" eq ($disabled{$feature} // "")) {
1133 if (exists $deprecated_disablables{$feature}) {
1134 warn "***** config $target enables deprecated feature $feature\n";
1135 } elsif (!grep { $feature eq $_ } @disablables) {
1136 die "***** config $target enables unknown feature $feature\n";
1137 }
1138 delete $disabled{$feature};
1139 }
1140 }
1141
1142 # If uplink_arch isn't defined, disable uplink
1143 $disabled{uplink} = 'no uplink_arch' unless (defined $target{uplink_arch});
1144 # If asm_arch isn't defined, disable asm
1145 $disabled{asm} = 'no asm_arch' unless (defined $target{asm_arch});
1146
1147 disable(); # Run a cascade now
1148
1149 $target{CXXFLAGS}//=$target{CFLAGS} if $target{CXX};
1150 $target{cxxflags}//=$target{cflags} if $target{CXX};
1151 $target{exe_extension}=".exe" if ($config{target} eq "DJGPP");
1152 $target{exe_extension}=".pm" if ($config{target} =~ /vos/);
1153
1154 # Fill %config with values from %user, and in case those are undefined or
1155 # empty, use values from %target (acting as a default).
1156 foreach (keys %user) {
1157 my $ref_type = ref $user{$_};
1158
1159 # Temporary function. Takes an intended ref type (empty string or "ARRAY")
1160 # and a value that's to be coerced into that type.
1161 my $mkvalue = sub {
1162 my $type = shift;
1163 my $value = shift;
1164 my $undef_p = shift;
1165
1166 die "Too many arguments for \$mkvalue" if @_;
1167
1168 while (ref $value eq 'CODE') {
1169 $value = $value->();
1170 }
1171
1172 if ($type eq 'ARRAY') {
1173 return undef unless defined $value;
1174 return undef if ref $value ne 'ARRAY' && !$value;
1175 return undef if ref $value eq 'ARRAY' && !@$value;
1176 return [ $value ] unless ref $value eq 'ARRAY';
1177 }
1178 return undef unless $value;
1179 return $value;
1180 };
1181
1182 $config{$_} =
1183 $mkvalue->($ref_type, $user{$_})
1184 || $mkvalue->($ref_type, $target{$_});
1185 delete $config{$_} unless defined $config{$_};
1186 }
1187
1188 # Finish up %config by appending things the user gave us on the command line
1189 # apart from "make variables"
1190 foreach (keys %useradd) {
1191 # The must all be lists, so we assert that here
1192 die "internal error: \$useradd{$_} isn't an ARRAY\n"
1193 unless ref $useradd{$_} eq 'ARRAY';
1194
1195 if (defined $config{$_}) {
1196 push @{$config{$_}}, @{$useradd{$_}};
1197 } else {
1198 $config{$_} = [ @{$useradd{$_}} ];
1199 }
1200 }
1201 # At this point, we can forget everything about %user and %useradd,
1202 # because it's now all been merged into the corresponding $config entry
1203
1204 # Allow overriding the build file name
1205 $config{build_file} = env('BUILDFILE') || $target{build_file} || "Makefile";
1206
1207 ######################################################################
1208 # Build up information for skipping certain directories depending on disabled
1209 # features, as well as setting up macros for disabled features.
1210
1211 # This is a tentative database of directories to skip. Some entries may not
1212 # correspond to anything real, but that's ok, they will simply be ignored.
1213 # The actual processing of these entries is done in the build.info lookup
1214 # loop further down.
1215 #
1216 # The key is a Unix formated path in the source tree, the value is an index
1217 # into %disabled_info, so any existing path gets added to a corresponding
1218 # 'skipped' entry in there with the list of skipped directories.
1219 my %skipdir = ();
1220 my %disabled_info = (); # For configdata.pm
1221 foreach my $what (sort keys %disabled) {
1222 # There are deprecated disablables that translate to themselves.
1223 # They cause disabling cascades, but should otherwise not regiter.
1224 next if $deprecated_disablables{$what};
1225
1226 $config{options} .= " no-$what";
1227
1228 if (!grep { $what eq $_ } ( 'buildtest-c++', 'fips', 'threads', 'shared',
1229 'module', 'pic', 'dynamic-engine', 'makedepend',
1230 'zlib-dynamic', 'zlib', 'sse2', 'legacy' )) {
1231 (my $WHAT = uc $what) =~ s|-|_|g;
1232 my $skipdir = $what;
1233
1234 # fix-up crypto/directory name(s)
1235 $skipdir = "ripemd" if $what eq "rmd160";
1236 $skipdir = "whrlpool" if $what eq "whirlpool";
1237
1238 my $macro = $disabled_info{$what}->{macro} = "OPENSSL_NO_$WHAT";
1239 push @{$config{openssl_feature_defines}}, $macro;
1240
1241 $skipdir{engines} = $what if $what eq 'engine';
1242 $skipdir{"crypto/$skipdir"} = $what
1243 unless $what eq 'async' || $what eq 'err' || $what eq 'dso';
1244 }
1245 }
1246
1247 # Make sure build_scheme is consistent.
1248 $target{build_scheme} = [ $target{build_scheme} ]
1249 if ref($target{build_scheme}) ne "ARRAY";
1250
1251 my ($builder, $builder_platform, @builder_opts) =
1252 @{$target{build_scheme}};
1253
1254 foreach my $checker (($builder_platform."-".$target{build_file}."-checker.pm",
1255 $builder_platform."-checker.pm")) {
1256 my $checker_path = catfile($srcdir, "Configurations", $checker);
1257 if (-f $checker_path) {
1258 my $fn = $ENV{CONFIGURE_CHECKER_WARN}
1259 ? sub { warn $@; } : sub { die $@; };
1260 if (! do $checker_path) {
1261 if ($@) {
1262 $fn->($@);
1263 } elsif ($!) {
1264 $fn->($!);
1265 } else {
1266 $fn->("The detected tools didn't match the platform\n");
1267 }
1268 }
1269 last;
1270 }
1271 }
1272
1273 push @{$config{defines}}, "NDEBUG" if $config{build_type} eq "release";
1274
1275 if ($target =~ /^mingw/ && `$config{CC} --target-help 2>&1` =~ m/-mno-cygwin/m)
1276 {
1277 push @{$config{cflags}}, "-mno-cygwin";
1278 push @{$config{cxxflags}}, "-mno-cygwin" if $config{CXX};
1279 push @{$config{shared_ldflag}}, "-mno-cygwin";
1280 }
1281
1282 if ($target =~ /linux.*-mips/ && !$disabled{asm}
1283 && !grep { $_ !~ /-m(ips|arch=)/ } (@{$config{CFLAGS}})) {
1284 # minimally required architecture flags for assembly modules
1285 my $value;
1286 $value = '-mips2' if ($target =~ /mips32/);
1287 $value = '-mips3' if ($target =~ /mips64/);
1288 unshift @{$config{cflags}}, $value;
1289 unshift @{$config{cxxflags}}, $value if $config{CXX};
1290 }
1291
1292 # If threads aren't disabled, check how possible they are
1293 unless ($disabled{threads}) {
1294 if ($auto_threads) {
1295 # Enabled by default, disable it forcibly if unavailable
1296 if ($target{thread_scheme} eq "(unknown)") {
1297 disable("unavailable", 'threads');
1298 }
1299 } else {
1300 # The user chose to enable threads explicitly, let's see
1301 # if there's a chance that's possible
1302 if ($target{thread_scheme} eq "(unknown)") {
1303 # If the user asked for "threads" and we don't have internal
1304 # knowledge how to do it, [s]he is expected to provide any
1305 # system-dependent compiler options that are necessary. We
1306 # can't truly check that the given options are correct, but
1307 # we expect the user to know what [s]He is doing.
1308 if (!@{$config{CFLAGS}} && !@{$config{CPPDEFINES}}) {
1309 die "You asked for multi-threading support, but didn't\n"
1310 ,"provide any system-specific compiler options\n";
1311 }
1312 }
1313 }
1314 }
1315
1316 # Find out if clang's sanitizers have been enabled with -fsanitize
1317 # flags and ensure that the corresponding %disabled elements area
1318 # removed to reflect that the sanitizers are indeed enabled.
1319 my %detected_sanitizers = ();
1320 foreach (grep /^-fsanitize=/, @{$config{CFLAGS} || []}) {
1321 (my $checks = $_) =~ s/^-fsanitize=//;
1322 foreach (split /,/, $checks) {
1323 my $d = { address => 'asan',
1324 undefined => 'ubsan',
1325 memory => 'msan' } -> {$_};
1326 next unless defined $d;
1327
1328 $detected_sanitizers{$d} = 1;
1329 if (defined $disabled{$d}) {
1330 die "***** Conflict between disabling $d and enabling $_ sanitizer"
1331 if $disabled{$d} ne "default";
1332 delete $disabled{$d};
1333 }
1334 }
1335 }
1336
1337 # If threads still aren't disabled, add a C macro to ensure the source
1338 # code knows about it. Any other flag is taken care of by the configs.
1339 unless($disabled{threads}) {
1340 push @{$config{openssl_feature_defines}}, "OPENSSL_THREADS";
1341 }
1342
1343 # With "deprecated" disable all deprecated features.
1344 if (defined($disabled{"deprecated"})) {
1345 $config{api} = $maxapi;
1346 }
1347
1348 my $no_shared_warn=0;
1349 if ($target{shared_target} eq "")
1350 {
1351 $no_shared_warn = 1
1352 if (!$disabled{shared} || !$disabled{"dynamic-engine"});
1353 disable('no-shared-target', 'pic');
1354 }
1355
1356 if ($disabled{"dynamic-engine"}) {
1357 push @{$config{openssl_feature_defines}}, "OPENSSL_NO_DYNAMIC_ENGINE";
1358 $config{dynamic_engines} = 0;
1359 } else {
1360 push @{$config{openssl_feature_defines}}, "OPENSSL_NO_STATIC_ENGINE";
1361 $config{dynamic_engines} = 1;
1362 }
1363
1364 unless ($disabled{asan} || defined $detected_sanitizers{asan}) {
1365 push @{$config{cflags}}, "-fsanitize=address";
1366 }
1367
1368 unless ($disabled{ubsan} || defined $detected_sanitizers{ubsan}) {
1369 # -DPEDANTIC or -fnosanitize=alignment may also be required on some
1370 # platforms.
1371 push @{$config{cflags}}, "-fsanitize=undefined", "-fno-sanitize-recover=all";
1372 }
1373
1374 unless ($disabled{msan} || defined $detected_sanitizers{msan}) {
1375 push @{$config{cflags}}, "-fsanitize=memory";
1376 }
1377
1378 unless ($disabled{"fuzz-libfuzzer"} && $disabled{"fuzz-afl"}
1379 && $disabled{asan} && $disabled{ubsan} && $disabled{msan}) {
1380 push @{$config{cflags}}, "-fno-omit-frame-pointer", "-g";
1381 push @{$config{cxxflags}}, "-fno-omit-frame-pointer", "-g" if $config{CXX};
1382 }
1383 #
1384 # Platform fix-ups
1385 #
1386
1387 # This saves the build files from having to check
1388 if ($disabled{pic})
1389 {
1390 foreach (qw(shared_cflag shared_cxxflag shared_cppflag
1391 shared_defines shared_includes shared_ldflag
1392 module_cflags module_cxxflags module_cppflags
1393 module_defines module_includes module_lflags))
1394 {
1395 delete $config{$_};
1396 $target{$_} = "";
1397 }
1398 }
1399 else
1400 {
1401 push @{$config{lib_defines}}, "OPENSSL_PIC";
1402 }
1403
1404 if ($target{sys_id} ne "")
1405 {
1406 push @{$config{openssl_sys_defines}}, "OPENSSL_SYS_$target{sys_id}";
1407 }
1408
1409 unless ($disabled{asm}) {
1410 }
1411
1412 my %predefined_C = compiler_predefined($config{CROSS_COMPILE}.$config{CC});
1413 my %predefined_CXX = $config{CXX}
1414 ? compiler_predefined($config{CROSS_COMPILE}.$config{CXX})
1415 : ();
1416
1417 # Check for makedepend capabilities.
1418 if (!$disabled{makedepend}) {
1419 if ($config{target} =~ /^(VC|vms)-/) {
1420 # For VC- and vms- targets, there's nothing more to do here. The
1421 # functionality is hard coded in the corresponding build files for
1422 # cl (Windows) and CC/DECC (VMS).
1423 } elsif (($predefined_C{__GNUC__} // -1) >= 3
1424 && !($predefined_C{__APPLE_CC__} && !$predefined_C{__clang__})) {
1425 # We know that GNU C version 3 and up as well as all clang
1426 # versions support dependency generation, but Xcode did not
1427 # handle $cc -M before clang support (but claims __GNUC__ = 3)
1428 $config{makedepprog} = "\$(CROSS_COMPILE)$config{CC}";
1429 } else {
1430 # In all other cases, we look for 'makedepend', and disable the
1431 # capability if not found.
1432 $config{makedepprog} = which('makedepend');
1433 disable('unavailable', 'makedepend') unless $config{makedepprog};
1434 }
1435 }
1436
1437 if (!$disabled{asm} && !$predefined_C{__MACH__} && $^O ne 'VMS') {
1438 # probe for -Wa,--noexecstack option...
1439 if ($predefined_C{__clang__}) {
1440 # clang has builtin assembler, which doesn't recognize --help,
1441 # but it apparently recognizes the option in question on all
1442 # supported platforms even when it's meaningless. In other words
1443 # probe would fail, but probed option always accepted...
1444 push @{$config{cflags}}, "-Wa,--noexecstack", "-Qunused-arguments";
1445 } else {
1446 my $cc = $config{CROSS_COMPILE}.$config{CC};
1447 open(PIPE, "$cc -Wa,--help -c -o null.$$.o -x assembler /dev/null 2>&1 |");
1448 while(<PIPE>) {
1449 if (m/--noexecstack/) {
1450 push @{$config{cflags}}, "-Wa,--noexecstack";
1451 last;
1452 }
1453 }
1454 close(PIPE);
1455 unlink("null.$$.o");
1456 }
1457 }
1458
1459 # Deal with bn_ops ###################################################
1460
1461 $config{bn_ll} =0;
1462 my $def_int="unsigned int";
1463 $config{rc4_int} =$def_int;
1464 ($config{b64l},$config{b64},$config{b32})=(0,0,1);
1465
1466 my $count = 0;
1467 foreach (sort split(/\s+/,$target{bn_ops})) {
1468 $count++ if /SIXTY_FOUR_BIT|SIXTY_FOUR_BIT_LONG|THIRTY_TWO_BIT/;
1469 $config{bn_ll}=1 if $_ eq 'BN_LLONG';
1470 $config{rc4_int}="unsigned char" if $_ eq 'RC4_CHAR';
1471 ($config{b64l},$config{b64},$config{b32})
1472 =(0,1,0) if $_ eq 'SIXTY_FOUR_BIT';
1473 ($config{b64l},$config{b64},$config{b32})
1474 =(1,0,0) if $_ eq 'SIXTY_FOUR_BIT_LONG';
1475 ($config{b64l},$config{b64},$config{b32})
1476 =(0,0,1) if $_ eq 'THIRTY_TWO_BIT';
1477 }
1478 die "Exactly one of SIXTY_FOUR_BIT|SIXTY_FOUR_BIT_LONG|THIRTY_TWO_BIT can be set in bn_ops\n"
1479 if $count > 1;
1480
1481
1482 # Hack cflags for better warnings (dev option) #######################
1483
1484 # "Stringify" the C and C++ flags string. This permits it to be made part of
1485 # a string and works as well on command lines.
1486 $config{cflags} = [ map { (my $x = $_) =~ s/([\\\"])/\\$1/g; $x }
1487 @{$config{cflags}} ];
1488 $config{cxxflags} = [ map { (my $x = $_) =~ s/([\\\"])/\\$1/g; $x }
1489 @{$config{cxxflags}} ] if $config{CXX};
1490
1491 $config{openssl_api_defines} = [
1492 "OPENSSL_MIN_API=".($apitable->{$config{api} // ""} // -1)
1493 ];
1494
1495 my @strict_warnings_collection=();
1496 if ($strict_warnings)
1497 {
1498 my $wopt;
1499 my $gccver = $predefined_C{__GNUC__} // -1;
1500
1501 warn "WARNING --strict-warnings requires gcc[>=4] or gcc-alike"
1502 unless $gccver >= 4;
1503 push @strict_warnings_collection, @gcc_devteam_warn;
1504 push @strict_warnings_collection, @clang_devteam_warn
1505 if (defined($predefined_C{__clang__}));
1506 }
1507
1508 if (grep { $_ eq '-static' } @{$config{LDFLAGS}}) {
1509 disable('static', 'pic', 'threads');
1510 }
1511
1512 $config{CFLAGS} = [ map { $_ eq '--ossl-strict-warnings'
1513 ? @strict_warnings_collection
1514 : ( $_ ) }
1515 @{$config{CFLAGS}} ];
1516
1517 unless ($disabled{"crypto-mdebug-backtrace"})
1518 {
1519 foreach my $wopt (split /\s+/, $memleak_devteam_backtrace)
1520 {
1521 push @{$config{cflags}}, $wopt
1522 unless grep { $_ eq $wopt } @{$config{cflags}};
1523 }
1524 if ($target =~ /^BSD-/)
1525 {
1526 push @{$config{ex_libs}}, "-lexecinfo";
1527 }
1528 }
1529
1530 unless ($disabled{afalgeng}) {
1531 $config{afalgeng}="";
1532 if (grep { $_ eq 'afalgeng' } @{$target{enable}}) {
1533 my $minver = 4*10000 + 1*100 + 0;
1534 if ($config{CROSS_COMPILE} eq "") {
1535 my $verstr = `uname -r`;
1536 my ($ma, $mi1, $mi2) = split("\\.", $verstr);
1537 ($mi2) = $mi2 =~ /(\d+)/;
1538 my $ver = $ma*10000 + $mi1*100 + $mi2;
1539 if ($ver < $minver) {
1540 disable('too-old-kernel', 'afalgeng');
1541 } else {
1542 push @{$config{engdirs}}, "afalg";
1543 }
1544 } else {
1545 disable('cross-compiling', 'afalgeng');
1546 }
1547 } else {
1548 disable('not-linux', 'afalgeng');
1549 }
1550 }
1551
1552 push @{$config{openssl_feature_defines}}, "OPENSSL_NO_AFALGENG" if ($disabled{afalgeng});
1553
1554 unless ($disabled{ktls}) {
1555 $config{ktls}="";
1556 if ($target =~ m/^linux/) {
1557 my $usr = "/usr/$config{cross_compile_prefix}";
1558 chop($usr);
1559 if ($config{cross_compile_prefix} eq "") {
1560 $usr = "/usr";
1561 }
1562 my $minver = (4 << 16) + (13 << 8) + 0;
1563 my @verstr = split(" ",`cat $usr/include/linux/version.h | grep LINUX_VERSION_CODE`);
1564
1565 if ($verstr[2] < $minver) {
1566 disable('too-old-kernel', 'ktls');
1567 }
1568 } else {
1569 disable('not-linux', 'ktls');
1570 }
1571 }
1572
1573 push @{$config{openssl_other_defines}}, "OPENSSL_NO_KTLS" if ($disabled{ktls});
1574
1575 # Get the extra flags used when building shared libraries and modules. We
1576 # do this late because some of them depend on %disabled.
1577
1578 # Make the flags to build DSOs the same as for shared libraries unless they
1579 # are already defined
1580 $target{module_cflags} = $target{shared_cflag} unless defined $target{module_cflags};
1581 $target{module_cxxflags} = $target{shared_cxxflag} unless defined $target{module_cxxflags};
1582 $target{module_ldflags} = $target{shared_ldflag} unless defined $target{module_ldflags};
1583 {
1584 my $shared_info_pl =
1585 catfile(dirname($0), "Configurations", "shared-info.pl");
1586 my %shared_info = read_eval_file($shared_info_pl);
1587 push @{$target{_conf_fname_int}}, $shared_info_pl;
1588 my $si = $target{shared_target};
1589 while (ref $si ne "HASH") {
1590 last if ! defined $si;
1591 if (ref $si eq "CODE") {
1592 $si = $si->();
1593 } else {
1594 $si = $shared_info{$si};
1595 }
1596 }
1597
1598 # Some of the 'shared_target' values don't have any entries in
1599 # %shared_info. That's perfectly fine, AS LONG AS the build file
1600 # template knows how to handle this. That is currently the case for
1601 # Windows and VMS.
1602 if (defined $si) {
1603 # Just as above, copy certain shared_* attributes to the corresponding
1604 # module_ attribute unless the latter is already defined
1605 $si->{module_cflags} = $si->{shared_cflag} unless defined $si->{module_cflags};
1606 $si->{module_cxxflags} = $si->{shared_cxxflag} unless defined $si->{module_cxxflags};
1607 $si->{module_ldflags} = $si->{shared_ldflag} unless defined $si->{module_ldflags};
1608 foreach (sort keys %$si) {
1609 $target{$_} = defined $target{$_}
1610 ? add($si->{$_})->($target{$_})
1611 : $si->{$_};
1612 }
1613 }
1614 }
1615
1616 # ALL MODIFICATIONS TO %disabled, %config and %target MUST BE DONE FROM HERE ON
1617
1618 # If we use the unified build, collect information from build.info files
1619 my %unified_info = ();
1620
1621 my $buildinfo_debug = defined($ENV{CONFIGURE_DEBUG_BUILDINFO});
1622 if ($builder eq "unified") {
1623 use Text::Template 1.46;
1624
1625 sub cleandir {
1626 my $base = shift;
1627 my $dir = shift;
1628 my $relativeto = shift || ".";
1629
1630 $dir = catdir($base,$dir) unless isabsolute($dir);
1631
1632 # Make sure the directories we're building in exists
1633 mkpath($dir);
1634
1635 my $res = abs2rel(absolutedir($dir), rel2abs($relativeto));
1636 #print STDERR "DEBUG[cleandir]: $dir , $base => $res\n";
1637 return $res;
1638 }
1639
1640 sub cleanfile {
1641 my $base = shift;
1642 my $file = shift;
1643 my $relativeto = shift || ".";
1644
1645 $file = catfile($base,$file) unless isabsolute($file);
1646
1647 my $d = dirname($file);
1648 my $f = basename($file);
1649
1650 # Make sure the directories we're building in exists
1651 mkpath($d);
1652
1653 my $res = abs2rel(catfile(absolutedir($d), $f), rel2abs($relativeto));
1654 #print STDERR "DEBUG[cleanfile]: $d , $f => $res\n";
1655 return $res;
1656 }
1657
1658 # Store the name of the template file we will build the build file from
1659 # in %config. This may be useful for the build file itself.
1660 my @build_file_template_names =
1661 ( $builder_platform."-".$target{build_file}.".tmpl",
1662 $target{build_file}.".tmpl" );
1663 my @build_file_templates = ();
1664
1665 # First, look in the user provided directory, if given
1666 if (defined env($local_config_envname)) {
1667 @build_file_templates =
1668 map {
1669 if ($^O eq 'VMS') {
1670 # VMS environment variables are logical names,
1671 # which can be used as is
1672 $local_config_envname . ':' . $_;
1673 } else {
1674 catfile(env($local_config_envname), $_);
1675 }
1676 }
1677 @build_file_template_names;
1678 }
1679 # Then, look in our standard directory
1680 push @build_file_templates,
1681 ( map { cleanfile($srcdir, catfile("Configurations", $_), $blddir) }
1682 @build_file_template_names );
1683
1684 my $build_file_template;
1685 for $_ (@build_file_templates) {
1686 $build_file_template = $_;
1687 last if -f $build_file_template;
1688
1689 $build_file_template = undef;
1690 }
1691 if (!defined $build_file_template) {
1692 die "*** Couldn't find any of:\n", join("\n", @build_file_templates), "\n";
1693 }
1694 $config{build_file_templates}
1695 = [ cleanfile($srcdir, catfile("Configurations", "common0.tmpl"),
1696 $blddir),
1697 $build_file_template,
1698 cleanfile($srcdir, catfile("Configurations", "common.tmpl"),
1699 $blddir) ];
1700
1701 my @build_dirs = ( [ ] ); # current directory
1702
1703 $config{build_infos} = [ ];
1704
1705 my %ordinals = ();
1706 while (@build_dirs) {
1707 my @curd = @{shift @build_dirs};
1708 my $sourced = catdir($srcdir, @curd);
1709 my $buildd = catdir($blddir, @curd);
1710
1711 my $unixdir = join('/', @curd);
1712 if (exists $skipdir{$unixdir}) {
1713 my $what = $skipdir{$unixdir};
1714 push @{$disabled_info{$what}->{skipped}}, catdir(@curd);
1715 next;
1716 }
1717
1718 mkpath($buildd);
1719
1720 my $f = 'build.info';
1721 # The basic things we're trying to build
1722 my @programs = ();
1723 my @libraries = ();
1724 my @modules = ();
1725 my @scripts = ();
1726
1727 my %attributes = ();
1728 my %sources = ();
1729 my %shared_sources = ();
1730 my %includes = ();
1731 my %defines = ();
1732 my %depends = ();
1733 my %generate = ();
1734
1735 # Support for $variablename in build.info files.
1736 # Embedded perl code is the ultimate master, still. If its output
1737 # contains a dollar sign, it had better be escaped, or it will be
1738 # taken for a variable name prefix.
1739 my %variables = ();
1740 my $variable_re = qr/\$([[:alpha:]][[:alnum:]_]*)/;
1741 my $expand_variables = sub {
1742 my $value = '';
1743 my $value_rest = shift;
1744
1745 while ($value_rest =~ /(?<!\\)${variable_re}/) {
1746 $value .= $`;
1747 $value .= $variables{$1};
1748 $value_rest = $';
1749 }
1750 return $value . $value_rest;
1751 };
1752
1753 # We want to detect configdata.pm in the source tree, so we
1754 # don't use it if the build tree is different.
1755 my $src_configdata = cleanfile($srcdir, "configdata.pm", $blddir);
1756
1757 push @{$config{build_infos}}, catfile(abs2rel($sourced, $blddir), $f);
1758 my $template =
1759 Text::Template->new(TYPE => 'FILE',
1760 SOURCE => catfile($sourced, $f),
1761 PREPEND => qq{use lib "$FindBin::Bin/util/perl";});
1762 die "Something went wrong with $sourced/$f: $!\n" unless $template;
1763 my @text =
1764 split /^/m,
1765 $template->fill_in(HASH => { config => \%config,
1766 target => \%target,
1767 disabled => \%disabled,
1768 withargs => \%withargs,
1769 builddir => abs2rel($buildd, $blddir),
1770 sourcedir => abs2rel($sourced, $blddir),
1771 buildtop => abs2rel($blddir, $blddir),
1772 sourcetop => abs2rel($srcdir, $blddir) },
1773 DELIMITERS => [ "{-", "-}" ]);
1774
1775 # The top item of this stack has the following values
1776 # -2 positive already run and we found ELSE (following ELSIF should fail)
1777 # -1 positive already run (skip until ENDIF)
1778 # 0 negatives so far (if we're at a condition, check it)
1779 # 1 last was positive (don't skip lines until next ELSE, ELSIF or ENDIF)
1780 # 2 positive ELSE (following ELSIF should fail)
1781 my @skip = ();
1782 collect_information(
1783 collect_from_array([ @text ],
1784 qr/\\$/ => sub { my $l1 = shift; my $l2 = shift;
1785 $l1 =~ s/\\$//; $l1.$l2 }),
1786 # Info we're looking for
1787 qr/^\s*IF\[((?:\\.|[^\\\]])*)\]\s*$/
1788 => sub {
1789 if (! @skip || $skip[$#skip] > 0) {
1790 push @skip, !! $expand_variables->($1);
1791 } else {
1792 push @skip, -1;
1793 }
1794 },
1795 qr/^\s*ELSIF\[((?:\\.|[^\\\]])*)\]\s*$/
1796 => sub { die "ELSIF out of scope" if ! @skip;
1797 die "ELSIF following ELSE" if abs($skip[$#skip]) == 2;
1798 $skip[$#skip] = -1 if $skip[$#skip] != 0;
1799 $skip[$#skip] = !! $expand_variables->($1)
1800 if $skip[$#skip] == 0; },
1801 qr/^\s*ELSE\s*$/
1802 => sub { die "ELSE out of scope" if ! @skip;
1803 $skip[$#skip] = -2 if $skip[$#skip] != 0;
1804 $skip[$#skip] = 2 if $skip[$#skip] == 0; },
1805 qr/^\s*ENDIF\s*$/
1806 => sub { die "ENDIF out of scope" if ! @skip;
1807 pop @skip; },
1808 qr/^\s*${variable_re}\s*=\s*(.*?)\s*$/
1809 => sub {
1810 if (!@skip || $skip[$#skip] > 0) {
1811 my $n = $1;
1812 my $v = $2;
1813 $variables{$n} = $expand_variables->($v);
1814 }
1815 },
1816 qr/^\s*SUBDIRS\s*=\s*(.*)\s*$/
1817 => sub {
1818 if (!@skip || $skip[$#skip] > 0) {
1819 foreach (tokenize($expand_variables->($1))) {
1820 push @build_dirs, [ @curd, splitdir($_, 1) ];
1821 }
1822 }
1823 },
1824 qr/^\s*PROGRAMS(?:{([\w=]+(?:\s*,\s*[\w=]+)*)})?\s*=\s*(.*)\s*$/
1825 => sub {
1826 if (!@skip || $skip[$#skip] > 0) {
1827 my @a = tokenize($1, qr|\s*,\s*|);
1828 my @p = tokenize($expand_variables->($2));
1829 push @programs, @p;
1830 foreach my $a (@a) {
1831 my $ak = $a;
1832 my $av = 1;
1833 if ($a =~ m|^(.*?)\s*=\s*(.*?)$|) {
1834 $ak = $1;
1835 $av = $2;
1836 }
1837 foreach my $p (@p) {
1838 $attributes{$p}->{$ak} = $av;
1839 }
1840 }
1841 }
1842 },
1843 qr/^\s*LIBS(?:{([\w=]+(?:\s*,\s*[\w=]+)*)})?\s*=\s*(.*)\s*$/
1844 => sub {
1845 if (!@skip || $skip[$#skip] > 0) {
1846 my @a = tokenize($1, qr|\s*,\s*|);
1847 my @l = tokenize($expand_variables->($2));
1848 push @libraries, @l;
1849 foreach my $a (@a) {
1850 my $ak = $a;
1851 my $av = 1;
1852 if ($a =~ m|^(.*?)\s*=\s*(.*?)$|) {
1853 $ak = $1;
1854 $av = $2;
1855 }
1856 foreach my $l (@l) {
1857 $attributes{$l}->{$ak} = $av;
1858 }
1859 }
1860 }
1861 },
1862 qr/^\s*MODULES(?:{([\w=]+(?:\s*,\s*[\w=]+)*)})?\s*=\s*(.*)\s*$/
1863 => sub {
1864 if (!@skip || $skip[$#skip] > 0) {
1865 my @a = tokenize($1, qr|\s*,\s*|);
1866 my @m = tokenize($expand_variables->($2));
1867 push @modules, @m;
1868 foreach my $a (@a) {
1869 my $ak = $a;
1870 my $av = 1;
1871 if ($a =~ m|^(.*?)\s*=\s*(.*?)$|) {
1872 $ak = $1;
1873 $av = $2;
1874 }
1875 foreach my $m (@m) {
1876 $attributes{$m}->{$ak} = $av;
1877 }
1878 }
1879 }
1880 },
1881 qr/^\s*SCRIPTS(?:{([\w=]+(?:\s*,\s*[\w=]+)*)})?\s*=\s*(.*)\s*$/
1882 => sub {
1883 if (!@skip || $skip[$#skip] > 0) {
1884 my @a = tokenize($1, qr|\s*,\s*|);
1885 my @s = tokenize($expand_variables->($2));
1886 push @scripts, @s;
1887 foreach my $a (@a) {
1888 my $ak = $a;
1889 my $av = 1;
1890 if ($a =~ m|^(.*?)\s*=\s*(.*?)$|) {
1891 $ak = $1;
1892 $av = $2;
1893 }
1894 foreach my $s (@s) {
1895 $attributes{$s}->{$ak} = $av;
1896 }
1897 }
1898 }
1899 },
1900
1901 qr/^\s*ORDINALS\[((?:\\.|[^\\\]])+)\]\s*=\s*(.*)\s*$/,
1902 => sub { push @{$ordinals{$1}}, tokenize($expand_variables->($2))
1903 if !@skip || $skip[$#skip] > 0 },
1904 qr/^\s*SOURCE\[((?:\\.|[^\\\]])+)\]\s*=\s*(.*)\s*$/
1905 => sub { push @{$sources{$1}}, tokenize($expand_variables->($2))
1906 if !@skip || $skip[$#skip] > 0 },
1907 qr/^\s*SHARED_SOURCE\[((?:\\.|[^\\\]])+)\]\s*=\s*(.*)\s*$/
1908 => sub { push @{$shared_sources{$1}},
1909 tokenize($expand_variables->($2))
1910 if !@skip || $skip[$#skip] > 0 },
1911 qr/^\s*INCLUDE\[((?:\\.|[^\\\]])+)\]\s*=\s*(.*)\s*$/
1912 => sub { push @{$includes{$1}}, tokenize($expand_variables->($2))
1913 if !@skip || $skip[$#skip] > 0 },
1914 qr/^\s*DEFINE\[((?:\\.|[^\\\]])*)\]\s*=\s*(.*)\s*$/
1915 => sub { push @{$defines{$1}}, tokenize($expand_variables->($2))
1916 if !@skip || $skip[$#skip] > 0 },
1917 qr/^\s*DEPEND\[((?:\\.|[^\\\]])*)\]\s*=\s*(.*)\s*$/
1918 => sub { push @{$depends{$1}}, tokenize($expand_variables->($2))
1919 if !@skip || $skip[$#skip] > 0 },
1920 qr/^\s*GENERATE\[((?:\\.|[^\\\]])+)\]\s*=\s*(.*)\s*$/
1921 => sub { push @{$generate{$1}}, $2
1922 if !@skip || $skip[$#skip] > 0 },
1923 qr/^\s*(?:#.*)?$/ => sub { },
1924 "OTHERWISE" => sub { die "Something wrong with this line:\n$_\nat $sourced/$f" },
1925 "BEFORE" => sub {
1926 if ($buildinfo_debug) {
1927 print STDERR "DEBUG: Parsing ",join(" ", @_),"\n";
1928 print STDERR "DEBUG: ... before parsing, skip stack is ",join(" ", map { int($_) } @skip),"\n";
1929 }
1930 },
1931 "AFTER" => sub {
1932 if ($buildinfo_debug) {
1933 print STDERR "DEBUG: .... after parsing, skip stack is ",join(" ", map { int($_) } @skip),"\n";
1934 }
1935 },
1936 );
1937 die "runaway IF?" if (@skip);
1938
1939 if (grep { defined $attributes{$_}->{engine} } keys %attributes
1940 and !$config{dynamic_engines}) {
1941 die <<"EOF"
1942 ENGINES can only be used if configured with 'dynamic-engine'.
1943 This is usually a fault in a build.info file.
1944 EOF
1945 }
1946
1947 foreach (keys %attributes) {
1948 my $dest = $_;
1949 my $ddest = cleanfile($buildd, $_, $blddir);
1950 foreach (keys %{$attributes{$dest} // {}}) {
1951 $unified_info{attributes}->{$ddest}->{$_} =
1952 $attributes{$dest}->{$_};
1953 }
1954 }
1955
1956 {
1957 my %infos = ( programs => [ @programs ],
1958 libraries => [ @libraries ],
1959 modules => [ @modules ],
1960 scripts => [ @scripts ] );
1961 foreach my $k (keys %infos) {
1962 foreach (@{$infos{$k}}) {
1963 my $item = cleanfile($buildd, $_, $blddir);
1964 $unified_info{$k}->{$item} = 1;
1965 }
1966 }
1967 }
1968
1969 # Check that we haven't defined any library as both shared and
1970 # explicitly static. That is forbidden.
1971 my @doubles = ();
1972 foreach (grep /\.a$/, keys %{$unified_info{libraries}}) {
1973 (my $l = $_) =~ s/\.a$//;
1974 push @doubles, $l if defined $unified_info{libraries}->{$l};
1975 }
1976 die "these libraries are both explicitly static and shared:\n ",
1977 join(" ", @doubles), "\n"
1978 if @doubles;
1979
1980 foreach (keys %sources) {
1981 my $dest = $_;
1982 my $ddest = cleanfile($buildd, $_, $blddir);
1983 foreach (@{$sources{$dest}}) {
1984 my $s = cleanfile($sourced, $_, $blddir);
1985
1986 # If it isn't in the source tree, we assume it's generated
1987 # in the build tree
1988 if ($s eq $src_configdata || ! -f $s || $generate{$_}) {
1989 $s = cleanfile($buildd, $_, $blddir);
1990 }
1991 # We recognise C++, C and asm files
1992 if ($s =~ /\.(cc|cpp|c|s|S)$/) {
1993 my $o = $_;
1994 $o =~ s/\.[csS]$/.o/; # C and assembler
1995 $o =~ s/\.(cc|cpp)$/_cc.o/; # C++
1996 $o = cleanfile($buildd, $o, $blddir);
1997 $unified_info{sources}->{$ddest}->{$o} = -1;
1998 $unified_info{sources}->{$o}->{$s} = -1;
1999 } elsif ($s =~ /\.rc$/) {
2000 # We also recognise resource files
2001 my $o = $_;
2002 $o =~ s/\.rc$/.res/; # Resource configuration
2003 my $o = cleanfile($buildd, $o, $blddir);
2004 $unified_info{sources}->{$ddest}->{$o} = -1;
2005 $unified_info{sources}->{$o}->{$s} = -1;
2006 } else {
2007 $unified_info{sources}->{$ddest}->{$s} = 1;
2008 }
2009 }
2010 }
2011
2012 foreach (keys %shared_sources) {
2013 my $dest = $_;
2014 my $ddest = cleanfile($buildd, $_, $blddir);
2015 foreach (@{$shared_sources{$dest}}) {
2016 my $s = cleanfile($sourced, $_, $blddir);
2017
2018 # If it isn't in the source tree, we assume it's generated
2019 # in the build tree
2020 if ($s eq $src_configdata || ! -f $s || $generate{$_}) {
2021 $s = cleanfile($buildd, $_, $blddir);
2022 }
2023
2024 if ($s =~ /\.(cc|cpp|c|s|S)$/) {
2025 # We recognise C++, C and asm files
2026 my $o = $_;
2027 $o =~ s/\.[csS]$/.o/; # C and assembler
2028 $o =~ s/\.(cc|cpp)$/_cc.o/; # C++
2029 $o = cleanfile($buildd, $o, $blddir);
2030 $unified_info{shared_sources}->{$ddest}->{$o} = -1;
2031 $unified_info{sources}->{$o}->{$s} = -1;
2032 } elsif ($s =~ /\.rc$/) {
2033 # We also recognise resource files
2034 my $o = $_;
2035 $o =~ s/\.rc$/.res/; # Resource configuration
2036 my $o = cleanfile($buildd, $o, $blddir);
2037 $unified_info{shared_sources}->{$ddest}->{$o} = -1;
2038 $unified_info{sources}->{$o}->{$s} = -1;
2039 } elsif ($s =~ /\.ld$/) {
2040 # We also recognise linker scripts (or corresponding)
2041 # We know they are generated files
2042 my $ld = cleanfile($buildd, $_, $blddir);
2043 $unified_info{shared_sources}->{$ddest}->{$ld} = 1;
2044 } else {
2045 die "unrecognised source file type for shared library: $s\n";
2046 }
2047 }
2048 }
2049
2050 foreach (keys %generate) {
2051 my $dest = $_;
2052 my $ddest = cleanfile($buildd, $_, $blddir);
2053 die "more than one generator for $dest: "
2054 ,join(" ", @{$generate{$_}}),"\n"
2055 if scalar @{$generate{$_}} > 1;
2056 my @generator = split /\s+/, $generate{$dest}->[0];
2057 $generator[0] = cleanfile($sourced, $generator[0], $blddir),
2058 $unified_info{generate}->{$ddest} = [ @generator ];
2059 }
2060
2061 foreach (keys %depends) {
2062 my $dest = $_;
2063 my $ddest = $dest eq "" ? "" : cleanfile($sourced, $_, $blddir);
2064
2065 # If the destination doesn't exist in source, it can only be
2066 # a generated file in the build tree.
2067 if ($ddest ne "" && ($ddest eq $src_configdata || ! -f $ddest)) {
2068 $ddest = cleanfile($buildd, $_, $blddir);
2069 }
2070 foreach (@{$depends{$dest}}) {
2071 my $d = cleanfile($sourced, $_, $blddir);
2072
2073 # If we know it's generated, or assume it is because we can't
2074 # find it in the source tree, we set file we depend on to be
2075 # in the build tree rather than the source tree, and assume
2076 # and that there are lines to build it in a BEGINRAW..ENDRAW
2077 # section or in the Makefile template.
2078 if ($d eq $src_configdata
2079 || ! -f $d
2080 || (grep { $d eq $_ }
2081 map { cleanfile($srcdir, $_, $blddir) }
2082 grep { /\.h$/ } keys %{$unified_info{generate}})) {
2083 $d = cleanfile($buildd, $_, $blddir);
2084 }
2085 # Take note if the file to depend on is being renamed
2086 # Take extra care with files ending with .a, they should
2087 # be treated without that extension, and the extension
2088 # should be added back after treatment.
2089 $d =~ /(\.a)?$/;
2090 my $e = $1 // "";
2091 $d = $`.$e;
2092 $unified_info{depends}->{$ddest}->{$d} = 1;
2093 }
2094 }
2095
2096 foreach (keys %includes) {
2097 my $dest = $_;
2098 my $ddest = cleanfile($sourced, $_, $blddir);
2099
2100 # If the destination doesn't exist in source, it can only be
2101 # a generated file in the build tree.
2102 if ($ddest eq $src_configdata || ! -f $ddest) {
2103 $ddest = cleanfile($buildd, $_, $blddir);
2104 }
2105 foreach (@{$includes{$dest}}) {
2106 my $is = cleandir($sourced, $_, $blddir);
2107 my $ib = cleandir($buildd, $_, $blddir);
2108 push @{$unified_info{includes}->{$ddest}->{source}}, $is
2109 unless grep { $_ eq $is } @{$unified_info{includes}->{$ddest}->{source}};
2110 push @{$unified_info{includes}->{$ddest}->{build}}, $ib
2111 unless grep { $_ eq $ib } @{$unified_info{includes}->{$ddest}->{build}};
2112 }
2113 }
2114
2115 foreach my $dest (keys %defines) {
2116 my $ddest;
2117
2118 if ($dest ne "") {
2119 $ddest = cleanfile($sourced, $dest, $blddir);
2120
2121 # If the destination doesn't exist in source, it can only
2122 # be a generated file in the build tree.
2123 if (! -f $ddest) {
2124 $ddest = cleanfile($buildd, $dest, $blddir);
2125 if ($unified_info{rename}->{$ddest}) {
2126 $ddest = $unified_info{rename}->{$ddest};
2127 }
2128 }
2129 }
2130 foreach my $v (@{$defines{$dest}}) {
2131 $v =~ m|^([^=]*)(=.*)?$|;
2132 die "0 length macro name not permitted\n" if $1 eq "";
2133 if ($dest ne "") {
2134 die "$1 defined more than once\n"
2135 if defined $unified_info{defines}->{$ddest}->{$1};
2136 $unified_info{defines}->{$ddest}->{$1} = $2;
2137 } else {
2138 die "$1 defined more than once\n"
2139 if grep { $v eq $_ } @{$config{defines}};
2140 push @{$config{defines}}, $v;
2141 }
2142 }
2143 }
2144 }
2145
2146 my $ordinals_text = join(', ', sort keys %ordinals);
2147 warn <<"EOF" if $ordinals_text;
2148
2149 WARNING: ORDINALS were specified for $ordinals_text
2150 They are ignored and should be replaced with a combination of GENERATE,
2151 DEPEND and SHARED_SOURCE.
2152 EOF
2153
2154
2155 # Go through the sources of all libraries and check that the same basename
2156 # doesn't appear more than once. Some static library archivers depend on
2157 # them being unique.
2158 {
2159 my $err = 0;
2160 foreach my $prod (keys %{$unified_info{libraries}}) {
2161 my @prod_sources =
2162 map { keys %{$unified_info{sources}->{$_}} }
2163 keys %{$unified_info{sources}->{$prod}};
2164 my %srccnt = ();
2165
2166 # Count how many times a given each source basename
2167 # appears for each product.
2168 foreach my $src (@prod_sources) {
2169 $srccnt{basename $src}++;
2170 }
2171
2172 foreach my $src (keys %srccnt) {
2173 if ((my $cnt = $srccnt{$src}) > 1) {
2174 print STDERR "$src appears $cnt times for the product $prod\n";
2175 $err++
2176 }
2177 }
2178 }
2179 die if $err > 0;
2180 }
2181
2182 # Massage the result
2183
2184 # If we depend on a header file or a perl module, add an inclusion of
2185 # its directory to allow smoothe inclusion
2186 foreach my $dest (keys %{$unified_info{depends}}) {
2187 next if $dest eq "";
2188 foreach my $d (keys %{$unified_info{depends}->{$dest}}) {
2189 next unless $d =~ /\.(h|pm)$/;
2190 my $i = dirname($d);
2191 my $spot =
2192 $d eq "configdata.pm" || defined($unified_info{generate}->{$d})
2193 ? 'build' : 'source';
2194 push @{$unified_info{includes}->{$dest}->{$spot}}, $i
2195 unless grep { $_ eq $i } @{$unified_info{includes}->{$dest}->{$spot}};
2196 }
2197 }
2198
2199 # Go through all intermediary files and change their names to something that
2200 # reflects what they will be built for. Note that for some source files,
2201 # this leads to duplicate object files because they are used multiple times.
2202 # the goal is to rename all object files according to this scheme:
2203 # {productname}-{midfix}-{origobjname}.[o|res]
2204 # the {midfix} is a keyword indicating the type of product, which is mostly
2205 # valuable for libraries since they come in two forms.
2206 #
2207 # This also reorganises the {sources} and {shared_sources} so that the
2208 # former only contains ALL object files that are supposed to end up in
2209 # static libraries and programs, while the latter contains ALL object files
2210 # that are supposed to end up in shared libraries and DSOs.
2211 # The main reason for having two different source structures is to allow
2212 # the same name to be used for the static and the shared variants of a
2213 # library.
2214 {
2215 # Take copies so we don't get interference from added stuff
2216 my %unified_copy = ();
2217 foreach (('sources', 'shared_sources')) {
2218 $unified_copy{$_} = { %{$unified_info{$_}} }
2219 if defined($unified_info{$_});
2220 delete $unified_info{$_};
2221 }
2222 foreach my $prodtype (('programs', 'libraries', 'modules', 'scripts')) {
2223 # $intent serves multi purposes:
2224 # - give a prefix for the new object files names
2225 # - in the case of libraries, rearrange the object files so static
2226 # libraries use the 'sources' structure exclusively, while shared
2227 # libraries use the 'shared_sources' structure exclusively.
2228 my $intent = {
2229 programs => { bin => { src => [ 'sources' ],
2230 dst => 'sources' } },
2231 libraries => { lib => { src => [ 'sources' ],
2232 dst => 'sources' },
2233 shlib => { prodselect =>
2234 sub { grep !/\.a$/, @_ },
2235 src => [ 'sources',
2236 'shared_sources' ],
2237 dst => 'shared_sources' } },
2238 modules => { dso => { src => [ 'sources' ],
2239 dst => 'sources' } },
2240 scripts => { script => { src => [ 'sources' ],
2241 dst => 'sources' } }
2242 } -> {$prodtype};
2243 foreach my $kind (keys %$intent) {
2244 next if ($intent->{$kind}->{dst} eq 'shared_sources'
2245 && $disabled{shared});
2246
2247 my @src = @{$intent->{$kind}->{src}};
2248 my $dst = $intent->{$kind}->{dst};
2249 my $prodselect = $intent->{$kind}->{prodselect} // sub { @_ };
2250 foreach my $prod ($prodselect->(keys %{$unified_info{$prodtype}})) {
2251 # %prod_sources has all applicable objects as keys, and
2252 # their corresponding sources as values
2253 my %prod_sources =
2254 map { $_ => [ keys %{$unified_copy{sources}->{$_}} ] }
2255 map { keys %{$unified_copy{$_}->{$prod}} }
2256 @src;
2257 foreach (keys %prod_sources) {
2258 # Only affect object files and resource files,
2259 # the others simply get a new value
2260 # (+1 instead of -1)
2261 if ($_ =~ /\.(o|res)$/) {
2262 (my $prodname = $prod) =~ s|\.a$||;
2263 my $newobj =
2264 catfile(dirname($_),
2265 basename($prodname)
2266 . '-' . $kind
2267 . '-' . basename($_));
2268 $unified_info{$dst}->{$prod}->{$newobj} = 1;
2269 foreach my $src (@{$prod_sources{$_}}) {
2270 $unified_info{sources}->{$newobj}->{$src} = 1;
2271 }
2272 # Adjust dependencies
2273 foreach my $deps (keys %{$unified_info{depends}->{$_}}) {
2274 $unified_info{depends}->{$_}->{$deps} = -1;
2275 $unified_info{depends}->{$newobj}->{$deps} = 1;
2276 }
2277 # Adjust includes
2278 foreach my $k (('source', 'build')) {
2279 next unless
2280 defined($unified_info{includes}->{$_}->{$k});
2281 my @incs = @{$unified_info{includes}->{$_}->{$k}};
2282 $unified_info{includes}->{$newobj}->{$k} = [ @incs ];
2283 }
2284 } else {
2285 $unified_info{$dst}->{$prod}->{$_} = 1;
2286 }
2287 }
2288 }
2289 }
2290 }
2291 }
2292
2293 # At this point, we have a number of sources with the value -1. They
2294 # aren't part of the local build and are probably meant for a different
2295 # platform, and can therefore be cleaned away. That happens when making
2296 # %unified_info more efficient below.
2297
2298 ### Make unified_info a bit more efficient
2299 # One level structures
2300 foreach (("programs", "libraries", "modules", "scripts")) {
2301 $unified_info{$_} = [ sort keys %{$unified_info{$_}} ];
2302 }
2303 # Two level structures
2304 foreach my $l1 (("sources", "shared_sources", "ldadd", "depends")) {
2305 foreach my $l2 (sort keys %{$unified_info{$l1}}) {
2306 my @items =
2307 sort
2308 grep { $unified_info{$l1}->{$l2}->{$_} > 0 }
2309 keys %{$unified_info{$l1}->{$l2}};
2310 if (@items) {
2311 $unified_info{$l1}->{$l2} = [ @items ];
2312 } else {
2313 delete $unified_info{$l1}->{$l2};
2314 }
2315 }
2316 }
2317 # Defines
2318 foreach my $dest (sort keys %{$unified_info{defines}}) {
2319 $unified_info{defines}->{$dest}
2320 = [ map { $_.$unified_info{defines}->{$dest}->{$_} }
2321 sort keys %{$unified_info{defines}->{$dest}} ];
2322 }
2323 # Includes
2324 foreach my $dest (sort keys %{$unified_info{includes}}) {
2325 if (defined($unified_info{includes}->{$dest}->{build})) {
2326 my @source_includes = ();
2327 @source_includes = ( @{$unified_info{includes}->{$dest}->{source}} )
2328 if defined($unified_info{includes}->{$dest}->{source});
2329 $unified_info{includes}->{$dest} =
2330 [ @{$unified_info{includes}->{$dest}->{build}} ];
2331 foreach my $inc (@source_includes) {
2332 push @{$unified_info{includes}->{$dest}}, $inc
2333 unless grep { $_ eq $inc } @{$unified_info{includes}->{$dest}};
2334 }
2335 } elsif (defined($unified_info{includes}->{$dest}->{source})) {
2336 $unified_info{includes}->{$dest} =
2337 [ @{$unified_info{includes}->{$dest}->{source}} ];
2338 } else {
2339 delete $unified_info{includes}->{$dest};
2340 }
2341 }
2342
2343 # For convenience collect information regarding directories where
2344 # files are generated, those generated files and the end product
2345 # they end up in where applicable. Then, add build rules for those
2346 # directories
2347 my %loopinfo = ( "lib" => [ @{$unified_info{libraries}} ],
2348 "dso" => [ @{$unified_info{modules}} ],
2349 "bin" => [ @{$unified_info{programs}} ],
2350 "script" => [ @{$unified_info{scripts}} ] );
2351 foreach my $type (keys %loopinfo) {
2352 foreach my $product (@{$loopinfo{$type}}) {
2353 my %dirs = ();
2354 my $pd = dirname($product);
2355
2356 foreach (@{$unified_info{sources}->{$product} // []},
2357 @{$unified_info{shared_sources}->{$product} // []}) {
2358 my $d = dirname($_);
2359
2360 # We don't want to create targets for source directories
2361 # when building out of source
2362 next if ($config{sourcedir} ne $config{builddir}
2363 && $d =~ m|^\Q$config{sourcedir}\E|);
2364 # We already have a "test" target, and the current directory
2365 # is just silly to make a target for
2366 next if $d eq "test" || $d eq ".";
2367
2368 $dirs{$d} = 1;
2369 push @{$unified_info{dirinfo}->{$d}->{deps}}, $_
2370 if $d ne $pd;
2371 }
2372 foreach (keys %dirs) {
2373 push @{$unified_info{dirinfo}->{$_}->{products}->{$type}},
2374 $product;
2375 }
2376 }
2377 }
2378 }
2379
2380 # For the schemes that need it, we provide the old *_obj configs
2381 # from the *_asm_obj ones
2382 foreach (grep /_(asm|aux)_src$/, keys %target) {
2383 my $src = $_;
2384 (my $obj = $_) =~ s/_(asm|aux)_src$/_obj/;
2385 $target{$obj} = $target{$src};
2386 $target{$obj} =~ s/\.[csS]\b/.o/g; # C and assembler
2387 $target{$obj} =~ s/\.(cc|cpp)\b/_cc.o/g; # C++
2388 }
2389
2390 # Write down our configuration where it fits #########################
2391
2392 my %template_vars = (
2393 config => \%config,
2394 target => \%target,
2395 disablables => \@disablables,
2396 disablables_int => \@disablables_int,
2397 disabled => \%disabled,
2398 withargs => \%withargs,
2399 unified_info => \%unified_info,
2400 tls => \@tls,
2401 dtls => \@dtls,
2402 makevars => [ sort keys %user ],
2403 disabled_info => \%disabled_info,
2404 user_crossable => \@user_crossable,
2405 );
2406 my $configdata_outname = 'configdata.pm';
2407 print "Creating $configdata_outname\n";
2408 open CONFIGDATA, ">$configdata_outname.new"
2409 or die "Trying to create $configdata_outname.new: $!";
2410 my $configdata_tmplname = cleanfile($srcdir, "configdata.pm.in", $blddir);
2411 my $configdata_tmpl =
2412 OpenSSL::Template->new(TYPE => 'FILE', SOURCE => $configdata_tmplname);
2413 $configdata_tmpl->fill_in(
2414 FILENAME => $configdata_tmplname,
2415 OUTPUT => \*CONFIGDATA,
2416 HASH => { %template_vars,
2417 autowarntext => [
2418 'WARNING: do not edit!',
2419 "Generated by Configure from $configdata_tmplname",
2420 ] }
2421 ) or die $Text::Template::ERROR;
2422 close CONFIGDATA;
2423 rename "$configdata_outname.new", $configdata_outname;
2424 if ($builder_platform eq 'unix') {
2425 my $mode = (0755 & ~umask);
2426 chmod $mode, 'configdata.pm'
2427 or warn sprintf("WARNING: Couldn't change mode for 'configdata.pm' to 0%03o: %s\n",$mode,$!);
2428 }
2429
2430 print "Running $configdata_outname\n";
2431 my $perlcmd = (quotify("maybeshell", $config{PERL}))[0];
2432 my $cmd = "$perlcmd $configdata_outname";
2433 #print STDERR "DEBUG[run_dofile]: \$cmd = $cmd\n";
2434 system($cmd);
2435 exit 1 if $? != 0;
2436
2437 $SIG{__DIE__} = $orig_death_handler;
2438
2439 print <<"EOF" if ($disabled{threads} eq "unavailable");
2440
2441 The library could not be configured for supporting multi-threaded
2442 applications as the compiler options required on this system are not known.
2443 See file INSTALL for details if you need multi-threading.
2444 EOF
2445
2446 print <<"EOF" if ($no_shared_warn);
2447
2448 The options 'shared', 'pic' and 'dynamic-engine' aren't supported on this
2449 platform, so we will pretend you gave the option 'no-pic', which also disables
2450 'shared' and 'dynamic-engine'. If you know how to implement shared libraries
2451 or position independent code, please let us know (but please first make sure
2452 you have tried with a current version of OpenSSL).
2453 EOF
2454
2455 print <<"EOF";
2456
2457 **********************************************************************
2458 *** ***
2459 *** OpenSSL has been successfully configured ***
2460 *** ***
2461 *** If you encounter a problem while building, please open an ***
2462 *** issue on GitHub <https://github.com/openssl/openssl/issues> ***
2463 *** and include the output from the following command: ***
2464 *** ***
2465 *** perl configdata.pm --dump ***
2466 *** ***
2467 *** (If you are new to OpenSSL, you might want to consult the ***
2468 *** 'Troubleshooting' section in the INSTALL file first) ***
2469 *** ***
2470 **********************************************************************
2471 EOF
2472
2473 exit(0);
2474
2475 ######################################################################
2476 #
2477 # Helpers and utility functions
2478 #
2479
2480 # Death handler, to print a helpful message in case of failure #######
2481 #
2482 sub death_handler {
2483 die @_ if $^S; # To prevent the added message in eval blocks
2484 my $build_file = $target{build_file} // "build file";
2485 my @message = ( <<"_____", @_ );
2486
2487 Failure! $build_file wasn't produced.
2488 Please read INSTALL and associated NOTES files. You may also have to look over
2489 your available compiler tool chain or change your configuration.
2490
2491 _____
2492
2493 # Dying is terminal, so it's ok to reset the signal handler here.
2494 $SIG{__DIE__} = $orig_death_handler;
2495 die @message;
2496 }
2497
2498 # Configuration file reading #########################################
2499
2500 # Note: All of the helper functions are for lazy evaluation. They all
2501 # return a CODE ref, which will return the intended value when evaluated.
2502 # Thus, whenever there's mention of a returned value, it's about that
2503 # intended value.
2504
2505 # Helper function to implement conditional value variants, with a default
2506 # plus additional values based on the value of $config{build_type}.
2507 # Arguments are given in hash table form:
2508 #
2509 # picker(default => "Basic string: ",
2510 # debug => "debug",
2511 # release => "release")
2512 #
2513 # When configuring with --debug, the resulting string will be
2514 # "Basic string: debug", and when not, it will be "Basic string: release"
2515 #
2516 # This can be used to create variants of sets of flags according to the
2517 # build type:
2518 #
2519 # cflags => picker(default => "-Wall",
2520 # debug => "-g -O0",
2521 # release => "-O3")
2522 #
2523 sub picker {
2524 my %opts = @_;
2525 return sub { add($opts{default} || (),
2526 $opts{$config{build_type}} || ())->(); }
2527 }
2528
2529 # Helper function to combine several values of different types into one.
2530 # This is useful if you want to combine a string with the result of a
2531 # lazy function, such as:
2532 #
2533 # cflags => combine("-Wall", sub { $disabled{zlib} ? () : "-DZLIB" })
2534 #
2535 sub combine {
2536 my @stuff = @_;
2537 return sub { add(@stuff)->(); }
2538 }
2539
2540 # Helper function to implement conditional values depending on the value
2541 # of $disabled{threads}. Can be used as follows:
2542 #
2543 # cflags => combine("-Wall", threads("-pthread"))
2544 #
2545 sub threads {
2546 my @flags = @_;
2547 return sub { add($disabled{threads} ? () : @flags)->(); }
2548 }
2549
2550 sub shared {
2551 my @flags = @_;
2552 return sub { add($disabled{shared} ? () : @flags)->(); }
2553 }
2554
2555 our $add_called = 0;
2556 # Helper function to implement adding values to already existing configuration
2557 # values. It handles elements that are ARRAYs, CODEs and scalars
2558 sub _add {
2559 my $separator = shift;
2560
2561 # If there's any ARRAY in the collection of values OR the separator
2562 # is undef, we will return an ARRAY of combined values, otherwise a
2563 # string of joined values with $separator as the separator.
2564 my $found_array = !defined($separator);
2565
2566 my @values =
2567 map {
2568 my $res = $_;
2569 while (ref($res) eq "CODE") {
2570 $res = $res->();
2571 }
2572 if (defined($res)) {
2573 if (ref($res) eq "ARRAY") {
2574 $found_array = 1;
2575 @$res;
2576 } else {
2577 $res;
2578 }
2579 } else {
2580 ();
2581 }
2582 } (@_);
2583
2584 $add_called = 1;
2585
2586 if ($found_array) {
2587 [ @values ];
2588 } else {
2589 join($separator, grep { defined($_) && $_ ne "" } @values);
2590 }
2591 }
2592 sub add_before {
2593 my $separator = " ";
2594 if (ref($_[$#_]) eq "HASH") {
2595 my $opts = pop;
2596 $separator = $opts->{separator};
2597 }
2598 my @x = @_;
2599 sub { _add($separator, @x, @_) };
2600 }
2601 sub add {
2602 my $separator = " ";
2603 if (ref($_[$#_]) eq "HASH") {
2604 my $opts = pop;
2605 $separator = $opts->{separator};
2606 }
2607 my @x = @_;
2608 sub { _add($separator, @_, @x) };
2609 }
2610
2611 sub read_eval_file {
2612 my $fname = shift;
2613 my $content;
2614 my @result;
2615
2616 open F, "< $fname" or die "Can't open '$fname': $!\n";
2617 {
2618 undef local $/;
2619 $content = <F>;
2620 }
2621 close F;
2622 {
2623 local $@;
2624
2625 @result = ( eval $content );
2626 warn $@ if $@;
2627 }
2628 return wantarray ? @result : $result[0];
2629 }
2630
2631 # configuration reader, evaluates the input file as a perl script and expects
2632 # it to fill %targets with target configurations. Those are then added to
2633 # %table.
2634 sub read_config {
2635 my $fname = shift;
2636 my %targets;
2637
2638 {
2639 # Protect certain tables from tampering
2640 local %table = ();
2641
2642 %targets = read_eval_file($fname);
2643 }
2644 my %preexisting = ();
2645 foreach (sort keys %targets) {
2646 $preexisting{$_} = 1 if $table{$_};
2647 }
2648 die <<"EOF",
2649 The following config targets from $fname
2650 shadow pre-existing config targets with the same name:
2651 EOF
2652 map { " $_\n" } sort keys %preexisting
2653 if %preexisting;
2654
2655
2656 # For each target, check that it's configured with a hash table.
2657 foreach (keys %targets) {
2658 if (ref($targets{$_}) ne "HASH") {
2659 if (ref($targets{$_}) eq "") {
2660 warn "Deprecated target configuration for $_, ignoring...\n";
2661 } else {
2662 warn "Misconfigured target configuration for $_ (should be a hash table), ignoring...\n";
2663 }
2664 delete $targets{$_};
2665 } else {
2666 $targets{$_}->{_conf_fname_int} = add([ $fname ]);
2667 }
2668 }
2669
2670 %table = (%table, %targets);
2671
2672 }
2673
2674 # configuration resolver. Will only resolve all the lazy evaluation
2675 # codeblocks for the chosen target and all those it inherits from,
2676 # recursively
2677 sub resolve_config {
2678 my $target = shift;
2679 my @breadcrumbs = @_;
2680
2681 # my $extra_checks = defined($ENV{CONFIGURE_EXTRA_CHECKS});
2682
2683 if (grep { $_ eq $target } @breadcrumbs) {
2684 die "inherit_from loop! target backtrace:\n "
2685 ,$target,"\n ",join("\n ", @breadcrumbs),"\n";
2686 }
2687
2688 if (!defined($table{$target})) {
2689 warn "Warning! target $target doesn't exist!\n";
2690 return ();
2691 }
2692 # Recurse through all inheritances. They will be resolved on the
2693 # fly, so when this operation is done, they will all just be a
2694 # bunch of attributes with string values.
2695 # What we get here, though, are keys with references to lists of
2696 # the combined values of them all. We will deal with lists after
2697 # this stage is done.
2698 my %combined_inheritance = ();
2699 if ($table{$target}->{inherit_from}) {
2700 my @inherit_from =
2701 map { ref($_) eq "CODE" ? $_->() : $_ } @{$table{$target}->{inherit_from}};
2702 foreach (@inherit_from) {
2703 my %inherited_config = resolve_config($_, $target, @breadcrumbs);
2704
2705 # 'template' is a marker that's considered private to
2706 # the config that had it.
2707 delete $inherited_config{template};
2708
2709 foreach (keys %inherited_config) {
2710 if (!$combined_inheritance{$_}) {
2711 $combined_inheritance{$_} = [];
2712 }
2713 push @{$combined_inheritance{$_}}, $inherited_config{$_};
2714 }
2715 }
2716 }
2717
2718 # We won't need inherit_from in this target any more, since we've
2719 # resolved all the inheritances that lead to this
2720 delete $table{$target}->{inherit_from};
2721
2722 # Now is the time to deal with those lists. Here's the place to
2723 # decide what shall be done with those lists, all based on the
2724 # values of the target we're currently dealing with.
2725 # - If a value is a coderef, it will be executed with the list of
2726 # inherited values as arguments.
2727 # - If the corresponding key doesn't have a value at all or is the
2728 # empty string, the inherited value list will be run through the
2729 # default combiner (below), and the result becomes this target's
2730 # value.
2731 # - Otherwise, this target's value is assumed to be a string that
2732 # will simply override the inherited list of values.
2733 my $default_combiner = add();
2734
2735 my %all_keys =
2736 map { $_ => 1 } (keys %combined_inheritance,
2737 keys %{$table{$target}});
2738
2739 sub process_values {
2740 my $object = shift;
2741 my $inherited = shift; # Always a [ list ]
2742 my $target = shift;
2743 my $entry = shift;
2744
2745 $add_called = 0;
2746
2747 while(ref($object) eq "CODE") {
2748 $object = $object->(@$inherited);
2749 }
2750 if (!defined($object)) {
2751 return ();
2752 }
2753 elsif (ref($object) eq "ARRAY") {
2754 local $add_called; # To make sure recursive calls don't affect it
2755 return [ map { process_values($_, $inherited, $target, $entry) }
2756 @$object ];
2757 } elsif (ref($object) eq "") {
2758 return $object;
2759 } else {
2760 die "cannot handle reference type ",ref($object)
2761 ," found in target ",$target," -> ",$entry,"\n";
2762 }
2763 }
2764
2765 foreach (sort keys %all_keys) {
2766 my $previous = $combined_inheritance{$_};
2767
2768 # Current target doesn't have a value for the current key?
2769 # Assign it the default combiner, the rest of this loop body
2770 # will handle it just like any other coderef.
2771 if (!exists $table{$target}->{$_}) {
2772 $table{$target}->{$_} = $default_combiner;
2773 }
2774
2775 $table{$target}->{$_} = process_values($table{$target}->{$_},
2776 $combined_inheritance{$_},
2777 $target, $_);
2778 unless(defined($table{$target}->{$_})) {
2779 delete $table{$target}->{$_};
2780 }
2781 # if ($extra_checks &&
2782 # $previous && !($add_called || $previous ~~ $table{$target}->{$_})) {
2783 # warn "$_ got replaced in $target\n";
2784 # }
2785 }
2786
2787 # Finally done, return the result.
2788 return %{$table{$target}};
2789 }
2790
2791 sub usage
2792 {
2793 print STDERR $usage;
2794 print STDERR "\npick os/compiler from:\n";
2795 my $j=0;
2796 my $i;
2797 my $k=0;
2798 foreach $i (sort keys %table)
2799 {
2800 next if $table{$i}->{template};
2801 next if $i =~ /^debug/;
2802 $k += length($i) + 1;
2803 if ($k > 78)
2804 {
2805 print STDERR "\n";
2806 $k=length($i);
2807 }
2808 print STDERR $i . " ";
2809 }
2810 foreach $i (sort keys %table)
2811 {
2812 next if $table{$i}->{template};
2813 next if $i !~ /^debug/;
2814 $k += length($i) + 1;
2815 if ($k > 78)
2816 {
2817 print STDERR "\n";
2818 $k=length($i);
2819 }
2820 print STDERR $i . " ";
2821 }
2822 print STDERR "\n\nNOTE: If in doubt, on Unix-ish systems use './config'.\n";
2823 exit(1);
2824 }
2825
2826 sub compiler_predefined {
2827 state %predefined;
2828 my $cc = shift;
2829
2830 return () if $^O eq 'VMS';
2831
2832 die 'compiler_predefined called without a compiler command'
2833 unless $cc;
2834
2835 if (! $predefined{$cc}) {
2836
2837 $predefined{$cc} = {};
2838
2839 # collect compiler pre-defines from gcc or gcc-alike...
2840 open(PIPE, "$cc -dM -E -x c /dev/null 2>&1 |");
2841 while (my $l = <PIPE>) {
2842 $l =~ m/^#define\s+(\w+(?:\(\w+\))?)(?:\s+(.+))?/ or last;
2843 $predefined{$cc}->{$1} = $2 // '';
2844 }
2845 close(PIPE);
2846 }
2847
2848 return %{$predefined{$cc}};
2849 }
2850
2851 sub which
2852 {
2853 my ($name)=@_;
2854
2855 if (eval { require IPC::Cmd; 1; }) {
2856 IPC::Cmd->import();
2857 return scalar IPC::Cmd::can_run($name);
2858 } else {
2859 # if there is $directories component in splitpath,
2860 # then it's not something to test with $PATH...
2861 return $name if (File::Spec->splitpath($name))[1];
2862
2863 foreach (File::Spec->path()) {
2864 my $fullpath = catfile($_, "$name$target{exe_extension}");
2865 if (-f $fullpath and -x $fullpath) {
2866 return $fullpath;
2867 }
2868 }
2869 }
2870 }
2871
2872 sub env
2873 {
2874 my $name = shift;
2875 my %opts = @_;
2876
2877 unless ($opts{cacheonly}) {
2878 # Note that if $ENV{$name} doesn't exist or is undefined,
2879 # $config{perlenv}->{$name} will be created with the value
2880 # undef. This is intentional.
2881
2882 $config{perlenv}->{$name} = $ENV{$name}
2883 if ! exists $config{perlenv}->{$name};
2884 }
2885 return $config{perlenv}->{$name};
2886 }
2887
2888 # Configuration printer ##############################################
2889
2890 sub print_table_entry
2891 {
2892 local $now_printing = shift;
2893 my %target = resolve_config($now_printing);
2894 my $type = shift;
2895
2896 # Don't print the templates
2897 return if $target{template};
2898
2899 my @sequence = (
2900 "sys_id",
2901 "cpp",
2902 "cppflags",
2903 "defines",
2904 "includes",
2905 "cc",
2906 "cflags",
2907 "ld",
2908 "lflags",
2909 "loutflag",
2910 "ex_libs",
2911 "bn_ops",
2912 "poly1035_asm_src",
2913 "thread_scheme",
2914 "perlasm_scheme",
2915 "dso_scheme",
2916 "shared_target",
2917 "shared_cflag",
2918 "shared_defines",
2919 "shared_ldflag",
2920 "shared_rcflag",
2921 "shared_extension",
2922 "dso_extension",
2923 "obj_extension",
2924 "exe_extension",
2925 "ranlib",
2926 "ar",
2927 "arflags",
2928 "aroutflag",
2929 "rc",
2930 "rcflags",
2931 "rcoutflag",
2932 "mt",
2933 "mtflags",
2934 "mtinflag",
2935 "mtoutflag",
2936 "multilib",
2937 "build_scheme",
2938 );
2939
2940 if ($type eq "TABLE") {
2941 print "\n";
2942 print "*** $now_printing\n";
2943 foreach (@sequence) {
2944 if (ref($target{$_}) eq "ARRAY") {
2945 printf "\$%-12s = %s\n", $_, join(" ", @{$target{$_}});
2946 } else {
2947 printf "\$%-12s = %s\n", $_, $target{$_};
2948 }
2949 }
2950 } elsif ($type eq "HASH") {
2951 my $largest =
2952 length((sort { length($a) <=> length($b) } @sequence)[-1]);
2953 print " '$now_printing' => {\n";
2954 foreach (@sequence) {
2955 if ($target{$_}) {
2956 if (ref($target{$_}) eq "ARRAY") {
2957 print " '",$_,"'"," " x ($largest - length($_))," => [ ",join(", ", map { "'$_'" } @{$target{$_}})," ],\n";
2958 } else {
2959 print " '",$_,"'"," " x ($largest - length($_))," => '",$target{$_},"',\n";
2960 }
2961 }
2962 }
2963 print " },\n";
2964 }
2965 }
2966
2967 # Utility routines ###################################################
2968
2969 # On VMS, if the given file is a logical name, File::Spec::Functions
2970 # will consider it an absolute path. There are cases when we want a
2971 # purely syntactic check without checking the environment.
2972 sub isabsolute {
2973 my $file = shift;
2974
2975 # On non-platforms, we just use file_name_is_absolute().
2976 return file_name_is_absolute($file) unless $^O eq "VMS";
2977
2978 # If the file spec includes a device or a directory spec,
2979 # file_name_is_absolute() is perfectly safe.
2980 return file_name_is_absolute($file) if $file =~ m|[:\[]|;
2981
2982 # Here, we know the given file spec isn't absolute
2983 return 0;
2984 }
2985
2986 # Makes a directory absolute and cleans out /../ in paths like foo/../bar
2987 # On some platforms, this uses rel2abs(), while on others, realpath() is used.
2988 # realpath() requires that at least all path components except the last is an
2989 # existing directory. On VMS, the last component of the directory spec must
2990 # exist.
2991 sub absolutedir {
2992 my $dir = shift;
2993
2994 # realpath() is quite buggy on VMS. It uses LIB$FID_TO_NAME, which
2995 # will return the volume name for the device, no matter what. Also,
2996 # it will return an incorrect directory spec if the argument is a
2997 # directory that doesn't exist.
2998 if ($^O eq "VMS") {
2999 return rel2abs($dir);
3000 }
3001
3002 # We use realpath() on Unix, since no other will properly clean out
3003 # a directory spec.
3004 use Cwd qw/realpath/;
3005
3006 return realpath($dir);
3007 }
3008
3009 sub quotify {
3010 my %processors = (
3011 perl => sub { my $x = shift;
3012 $x =~ s/([\\\$\@"])/\\$1/g;
3013 return '"'.$x.'"'; },
3014 maybeshell => sub { my $x = shift;
3015 (my $y = $x) =~ s/([\\\"])/\\$1/g;
3016 if ($x ne $y || $x =~ m|\s|) {
3017 return '"'.$y.'"';
3018 } else {
3019 return $x;
3020 }
3021 },
3022 );
3023 my $for = shift;
3024 my $processor =
3025 defined($processors{$for}) ? $processors{$for} : sub { shift; };
3026
3027 return map { $processor->($_); } @_;
3028 }
3029
3030 # collect_from_file($filename, $line_concat_cond_re, $line_concat)
3031 # $filename is a file name to read from
3032 # $line_concat_cond_re is a regexp detecting a line continuation ending
3033 # $line_concat is a CODEref that takes care of concatenating two lines
3034 sub collect_from_file {
3035 my $filename = shift;
3036 my $line_concat_cond_re = shift;
3037 my $line_concat = shift;
3038
3039 open my $fh, $filename || die "unable to read $filename: $!\n";
3040 return sub {
3041 my $saved_line = "";
3042 $_ = "";
3043 while (<$fh>) {
3044 s|\R$||;
3045 if (defined $line_concat) {
3046 $_ = $line_concat->($saved_line, $_);
3047 $saved_line = "";
3048 }
3049 if (defined $line_concat_cond_re && /$line_concat_cond_re/) {
3050 $saved_line = $_;
3051 next;
3052 }
3053 return $_;
3054 }
3055 die "$filename ending with continuation line\n" if $_;
3056 close $fh;
3057 return undef;
3058 }
3059 }
3060
3061 # collect_from_array($array, $line_concat_cond_re, $line_concat)
3062 # $array is an ARRAYref of lines
3063 # $line_concat_cond_re is a regexp detecting a line continuation ending
3064 # $line_concat is a CODEref that takes care of concatenating two lines
3065 sub collect_from_array {
3066 my $array = shift;
3067 my $line_concat_cond_re = shift;
3068 my $line_concat = shift;
3069 my @array = (@$array);
3070
3071 return sub {
3072 my $saved_line = "";
3073 $_ = "";
3074 while (defined($_ = shift @array)) {
3075 s|\R$||;
3076 if (defined $line_concat) {
3077 $_ = $line_concat->($saved_line, $_);
3078 $saved_line = "";
3079 }
3080 if (defined $line_concat_cond_re && /$line_concat_cond_re/) {
3081 $saved_line = $_;
3082 next;
3083 }
3084 return $_;
3085 }
3086 die "input text ending with continuation line\n" if $_;
3087 return undef;
3088 }
3089 }
3090
3091 # collect_information($lineiterator, $line_continue, $regexp => $CODEref, ...)
3092 # $lineiterator is a CODEref that delivers one line at a time.
3093 # All following arguments are regex/CODEref pairs, where the regexp detects a
3094 # line and the CODEref does something with the result of the regexp.
3095 sub collect_information {
3096 my $lineiterator = shift;
3097 my %collectors = @_;
3098
3099 while(defined($_ = $lineiterator->())) {
3100 s|\R$||;
3101 my $found = 0;
3102 if ($collectors{"BEFORE"}) {
3103 $collectors{"BEFORE"}->($_);
3104 }
3105 foreach my $re (keys %collectors) {
3106 if ($re !~ /^OTHERWISE|BEFORE|AFTER$/ && /$re/) {
3107 $collectors{$re}->($lineiterator);
3108 $found = 1;
3109 };
3110 }
3111 if ($collectors{"OTHERWISE"}) {
3112 $collectors{"OTHERWISE"}->($lineiterator, $_)
3113 unless $found || !defined $collectors{"OTHERWISE"};
3114 }
3115 if ($collectors{"AFTER"}) {
3116 $collectors{"AFTER"}->($_);
3117 }
3118 }
3119 }
3120
3121 # tokenize($line)
3122 # tokenize($line,$separator)
3123 # $line is a line of text to split up into tokens
3124 # $separator [optional] is a regular expression that separates the tokens,
3125 # the default being spaces. Do not use quotes of any kind as separators,
3126 # that will give undefined results.
3127 # Returns a list of tokens.
3128 #
3129 # Tokens are divided by separator (spaces by default). If the tokens include
3130 # the separators, they have to be quoted with single or double quotes.
3131 # Double quotes inside a double quoted token must be escaped. Escaping is done
3132 # with backslash.
3133 # Basically, the same quoting rules apply for " and ' as in any
3134 # Unix shell.
3135 sub tokenize {
3136 my $line = my $debug_line = shift;
3137 my $separator = shift // qr|\s+|;
3138 my @result = ();
3139
3140 if ($ENV{CONFIGURE_DEBUG_TOKENIZE}) {
3141 print STDERR "DEBUG[tokenize]: \$separator = $separator\n";
3142 }
3143
3144 while ($line =~ s|^${separator}||, $line ne "") {
3145 my $token = "";
3146 again:
3147 $line =~ m/^(.*?)(${separator}|"|'|$)/;
3148 $token .= $1;
3149 $line = $2.$';
3150
3151 if ($line =~ m/^"((?:[^"\\]+|\\.)*)"/) {
3152 $token .= $1;
3153 $line = $';
3154 goto again;
3155 } elsif ($line =~ m/^'([^']*)'/) {
3156 $token .= $1;
3157 $line = $';
3158 goto again;
3159 }
3160 push @result, $token;
3161 }
3162
3163 if ($ENV{CONFIGURE_DEBUG_TOKENIZE}) {
3164 print STDERR "DEBUG[tokenize]: Parsed '$debug_line' into:\n";
3165 print STDERR "DEBUG[tokenize]: ('", join("', '", @result), "')\n";
3166 }
3167 return @result;
3168 }