Home | History | Annotate | Line # | Download | only in dist
Configure revision 1.2
      1 :
      2 eval 'exec perl -S $0 ${1+"$@"}'
      3     if $running_under_some_shell;
      4 ##
      5 ##  Configure -- OpenSSL source tree configuration script
      6 ##
      7 
      8 require 5.000;
      9 use strict;
     10 
     11 # see INSTALL for instructions.
     12 
     13 my $usage="Usage: Configure [no-<cipher> ...] [enable-<cipher> ...] [experimental-<cipher> ...] [-Dxxx] [-lxxx] [-Lxxx] [-fxxx] [-Kxxx] [no-hw-xxx|no-hw] [[no-]threads] [[no-]shared] [[no-]zlib|zlib-dynamic] [no-asm] [no-dso] [no-krb5] [386] [--prefix=DIR] [--openssldir=OPENSSLDIR] [--with-xxx[=vvv]] [--test-sanity] os/compiler[:flags]\n";
     14 
     15 # Options:
     16 #
     17 # --openssldir  install OpenSSL in OPENSSLDIR (Default: DIR/ssl if the
     18 #               --prefix option is given; /usr/local/ssl otherwise)
     19 # --prefix      prefix for the OpenSSL include, lib and bin directories
     20 #               (Default: the OPENSSLDIR directory)
     21 #
     22 # --install_prefix  Additional prefix for package builders (empty by
     23 #               default).  This needn't be set in advance, you can
     24 #               just as well use "make INSTALL_PREFIX=/whatever install".
     25 #
     26 # --with-krb5-dir  Declare where Kerberos 5 lives.  The libraries are expected
     27 #		to live in the subdirectory lib/ and the header files in
     28 #		include/.  A value is required.
     29 # --with-krb5-lib  Declare where the Kerberos 5 libraries live.  A value is
     30 #		required.
     31 #		(Default: KRB5_DIR/lib)
     32 # --with-krb5-include  Declare where the Kerberos 5 header files live.  A
     33 #		value is required.
     34 #		(Default: KRB5_DIR/include)
     35 # --with-krb5-flavor  Declare what flavor of Kerberos 5 is used.  Currently
     36 #		supported values are "MIT" and "Heimdal".  A value is required.
     37 #
     38 # --test-sanity Make a number of sanity checks on the data in this file.
     39 #               This is a debugging tool for OpenSSL developers.
     40 #
     41 # --cross-compile-prefix Add specified prefix to binutils components.
     42 #
     43 # no-hw-xxx     do not compile support for specific crypto hardware.
     44 #               Generic OpenSSL-style methods relating to this support
     45 #               are always compiled but return NULL if the hardware
     46 #               support isn't compiled.
     47 # no-hw         do not compile support for any crypto hardware.
     48 # [no-]threads  [don't] try to create a library that is suitable for
     49 #               multithreaded applications (default is "threads" if we
     50 #               know how to do it)
     51 # [no-]shared	[don't] try to create shared libraries when supported.
     52 # no-asm        do not use assembler
     53 # no-dso        do not compile in any native shared-library methods. This
     54 #               will ensure that all methods just return NULL.
     55 # no-krb5       do not compile in any KRB5 library or code.
     56 # [no-]zlib     [don't] compile support for zlib compression.
     57 # zlib-dynamic	Like "zlib", but the zlib library is expected to be a shared
     58 #		library and will be loaded in run-time by the OpenSSL library.
     59 # 386           generate 80386 code
     60 # no-sse2	disables IA-32 SSE2 code, above option implies no-sse2
     61 # no-<cipher>   build without specified algorithm (rsa, idea, rc5, ...)
     62 # -<xxx> +<xxx> compiler options are passed through 
     63 #
     64 # DEBUG_SAFESTACK use type-safe stacks to enforce type-safety on stack items
     65 #		provided to stack calls. Generates unique stack functions for
     66 #		each possible stack type.
     67 # DES_PTR	use pointer lookup vs arrays in the DES in crypto/des/des_locl.h
     68 # DES_RISC1	use different DES_ENCRYPT macro that helps reduce register
     69 #		dependancies but needs to more registers, good for RISC CPU's
     70 # DES_RISC2	A different RISC variant.
     71 # DES_UNROLL	unroll the inner DES loop, sometimes helps, somtimes hinders.
     72 # DES_INT	use 'int' instead of 'long' for DES_LONG in crypto/des/des.h
     73 #		This is used on the DEC Alpha where long is 8 bytes
     74 #		and int is 4
     75 # BN_LLONG	use the type 'long long' in crypto/bn/bn.h
     76 # MD2_CHAR	use 'char' instead of 'int' for MD2_INT in crypto/md2/md2.h
     77 # MD2_LONG	use 'long' instead of 'int' for MD2_INT in crypto/md2/md2.h
     78 # IDEA_SHORT	use 'short' instead of 'int' for IDEA_INT in crypto/idea/idea.h
     79 # IDEA_LONG	use 'long' instead of 'int' for IDEA_INT in crypto/idea/idea.h
     80 # RC2_SHORT	use 'short' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
     81 # RC2_LONG	use 'long' instead of 'int' for RC2_INT in crypto/rc2/rc2.h
     82 # RC4_CHAR	use 'char' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
     83 # RC4_LONG	use 'long' instead of 'int' for RC4_INT in crypto/rc4/rc4.h
     84 # RC4_INDEX	define RC4_INDEX in crypto/rc4/rc4_locl.h.  This turns on
     85 #		array lookups instead of pointer use.
     86 # RC4_CHUNK	enables code that handles data aligned at long (natural CPU
     87 #		word) boundary.
     88 # RC4_CHUNK_LL	enables code that handles data aligned at long long boundary
     89 #		(intended for 64-bit CPUs running 32-bit OS).
     90 # BF_PTR	use 'pointer arithmatic' for Blowfish (unsafe on Alpha).
     91 # BF_PTR2	intel specific version (generic version is more efficient).
     92 #
     93 # Following are set automatically by this script
     94 #
     95 # MD5_ASM	use some extra md5 assember,
     96 # SHA1_ASM	use some extra sha1 assember, must define L_ENDIAN for x86
     97 # RMD160_ASM	use some extra ripemd160 assember,
     98 # SHA256_ASM	sha256_block is implemented in assembler
     99 # SHA512_ASM	sha512_block is implemented in assembler
    100 # AES_ASM	ASE_[en|de]crypt is implemented in assembler
    101 
    102 # Minimum warning options... any contributions to OpenSSL should at least get
    103 # past these. 
    104 
    105 my $gcc_devteam_warn = "-Wall -pedantic -DPEDANTIC -Wno-long-long -Wsign-compare -Wmissing-prototypes -Wshadow -Wformat -Werror -DCRYPTO_MDEBUG_ALL -DCRYPTO_MDEBUG_ABORT -DREF_CHECK -DOPENSSL_NO_DEPRECATED";
    106 
    107 my $strict_warnings = 0;
    108 
    109 my $x86_gcc_des="DES_PTR DES_RISC1 DES_UNROLL";
    110 
    111 # MD2_CHAR slags pentium pros
    112 my $x86_gcc_opts="RC4_INDEX MD2_INT";
    113 
    114 # MODIFY THESE PARAMETERS IF YOU ARE GOING TO USE THE 'util/speed.sh SCRIPT
    115 # Don't worry about these normally
    116 
    117 my $tcc="cc";
    118 my $tflags="-fast -Xa";
    119 my $tbn_mul="";
    120 my $tlib="-lnsl -lsocket";
    121 #$bits1="SIXTEEN_BIT ";
    122 #$bits2="THIRTY_TWO_BIT ";
    123 my $bits1="THIRTY_TWO_BIT ";
    124 my $bits2="SIXTY_FOUR_BIT ";
    125 
    126 my $x86_asm="x86cpuid.o:bn-586.o co-586.o x86-mont.o:des-586.o crypt586.o:aes-586.o aesni-x86.o:bf-586.o:md5-586.o:sha1-586.o sha256-586.o sha512-586.o:cast-586.o:rc4-586.o:rmd-586.o:rc5-586.o:wp_block.o wp-mmx.o:cmll-x86.o";
    127 
    128 my $x86_elf_asm="$x86_asm:elf";
    129 
    130 my $x86_64_asm="x86_64cpuid.o:x86_64-gcc.o x86_64-mont.o::aes-x86_64.o aesni-x86_64.o::md5-x86_64.o:sha1-x86_64.o sha256-x86_64.o sha512-x86_64.o::rc4-x86_64.o:::wp-x86_64.o:cmll-x86_64.o cmll_misc.o";
    131 my $ia64_asm="ia64cpuid.o:bn-ia64.o::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o::rc4-ia64.o rc4_skey.o:::::void";
    132 my $sparcv9_asm="sparcv9cap.o sparccpuid.o:bn-sparcv9.o sparcv9-mont.o sparcv9a-mont.o:des_enc-sparc.o fcrypt_b.o:aes_core.o aes_cbc.o aes-sparcv9.o:::sha1-sparcv9.o sha256-sparcv9.o sha512-sparcv9.o:::::::void";
    133 my $sparcv8_asm=":sparcv8.o:des_enc-sparc.o fcrypt_b.o:::::::::::void";
    134 my $alpha_asm="alphacpuid.o:bn_asm.o alpha-mont.o::::::::::::void";
    135 my $mips3_asm=":bn-mips3.o::::::::::::void";
    136 my $s390x_asm="s390xcap.o s390xcpuid.o:bn-s390x.o s390x-mont.o::aes-s390x.o:::sha1-s390x.o sha256-s390x.o sha512-s390x.o::rc4-s390x.o:::::void";
    137 my $armv4_asm=":bn_asm.o armv4-mont.o::aes_cbc.o aes-armv4.o:::sha1-armv4-large.o sha256-armv4.o sha512-armv4.o:::::::void";
    138 my $ppc32_asm="ppccpuid.o:bn-ppc.o::aes_core.o aes_cbc.o aes-ppc.o:::sha1-ppc.o sha256-ppc.o::::::";
    139 my $ppc64_asm="ppccpuid.o:bn-ppc.o ppc-mont.o::aes_core.o aes_cbc.o aes-ppc.o:::sha1-ppc.o sha256-ppc.o sha512-ppc.o::::::";
    140 my $no_asm=":::::::::::::void";
    141 
    142 # As for $BSDthreads. Idea is to maintain "collective" set of flags,
    143 # which would cover all BSD flavors. -pthread applies to them all, 
    144 # but is treated differently. OpenBSD expands is as -D_POSIX_THREAD
    145 # -lc_r, which is sufficient. FreeBSD 4.x expands it as -lc_r,
    146 # which has to be accompanied by explicit -D_THREAD_SAFE and
    147 # sometimes -D_REENTRANT. FreeBSD 5.x expands it as -lc_r, which
    148 # seems to be sufficient?
    149 my $BSDthreads="-pthread -D_THREAD_SAFE -D_REENTRANT";
    150 
    151 #config-string	$cc : $cflags : $unistd : $thread_cflag : $sys_id : $lflags : $bn_ops : $cpuid_obj : $bn_obj : $des_obj : $aes_obj : $bf_obj : $md5_obj : $sha1_obj : $cast_obj : $rc4_obj : $rmd160_obj : $rc5_obj : $wp_obj : $cmll_obj : $dso_scheme : $shared_target : $shared_cflag : $shared_ldflag : $shared_extension : $ranlib : $arflags : $multilib
    152 
    153 my %table=(
    154 # File 'TABLE' (created by 'make TABLE') contains the data from this list,
    155 # formatted for better readability.
    156 
    157 
    158 #"b",		"${tcc}:${tflags}::${tlib}:${bits1}:${tbn_mul}::",
    159 #"bl-4c-2c",	"${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR MD2_CHAR:${tbn_mul}::",
    160 #"bl-4c-ri",	"${tcc}:${tflags}::${tlib}:${bits1}BN_LLONG RC4_CHAR RC4_INDEX:${tbn_mul}::",
    161 #"b2-is-ri-dp",	"${tcc}:${tflags}::${tlib}:${bits2}IDEA_SHORT RC4_INDEX DES_PTR:${tbn_mul}::",
    162 
    163 # Our development configs
    164 "purify",	"purify gcc:-g -DPURIFY -Wall::(unknown)::-lsocket -lnsl::::",
    165 "debug",	"gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -ggdb -g2 -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror::(unknown)::-lefence::::",
    166 "debug-ben",	"gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DDEBUG_UNUSED -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown):::::bn86-elf.o co86-elf.o",
    167 "debug-ben-openbsd","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
    168 "debug-ben-openbsd-debug","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DOPENSSL_OPENBSD_DEV_CRYPTO -DOPENSSL_NO_ASM -g3 -O2 -pedantic -Wall -Wshadow -Werror -pipe::(unknown)::::",
    169 "debug-ben-debug",	"gcc44:$gcc_devteam_warn -DBN_DEBUG -DCONF_DEBUG -DDEBUG_SAFESTACK -DDEBUG_UNUSED -g3 -O2 -pipe::(unknown)::::::",
    170 "debug-ben-no-opt",	"gcc: -Wall -Wmissing-prototypes -Wstrict-prototypes -Wmissing-declarations -DDEBUG_SAFESTACK -DCRYPTO_MDEBUG -Werror -DL_ENDIAN -DTERMIOS -Wall -g3::(unknown)::::::",
    171 "debug-ben-strict",	"gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DCONST_STRICT -O2 -Wall -Wshadow -Werror -Wpointer-arith -Wcast-qual -Wwrite-strings -pipe::(unknown)::::::",
    172 "debug-rse","cc:-DTERMIOS -DL_ENDIAN -pipe -O -g -ggdb3 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
    173 "debug-bodo",	"gcc:-DL_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBIO_PAIR_DEBUG -DPEDANTIC -g -march=i486 -pedantic -Wshadow -Wall -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion::-D_REENTRANT:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
    174 "debug-ulf", "gcc:-DTERMIOS -DL_ENDIAN -march=i486 -Wall -DBN_DEBUG -DBN_DEBUG_RAND -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -g -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations:::CYGWIN32:::${no_asm}:win32:cygwin-shared:::.dll",
    175 "debug-steve64", "gcc:$gcc_devteam_warn -m64 -DL_ENDIAN -DTERMIO -DCONF_DEBUG -DDEBUG_SAFESTACK -g -DMD32_REG_T=int::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    176 "debug-steve32", "gcc:$gcc_devteam_warn -m32 -DL_ENDIAN -DCONF_DEBUG -DDEBUG_SAFESTACK -g -pipe::-D_REENTRANT::-rdynamic -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC:-m32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    177 "debug-steve-opt", "gcc:$gcc_devteam_warn -m64 -O3 -DL_ENDIAN -DTERMIO -DCONF_DEBUG -DDEBUG_SAFESTACK -g -DMD32_REG_T=int::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    178 "debug-levitte-linux-elf","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    179 "debug-levitte-linux-noasm","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    180 "debug-levitte-linux-elf-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    181 "debug-levitte-linux-noasm-extreme","gcc:-DLEVITTE_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_DEBUG -DBN_DEBUG_RAND -DCRYPTO_MDEBUG -DENGINE_CONF_DEBUG -DOPENSSL_NO_ASM -DL_ENDIAN -DTERMIO -D_POSIX_SOURCE -DPEDANTIC -ggdb -g3 -mcpu=i486 -pedantic -ansi -Wall -W -Wundef -Wshadow -Wcast-align -Wstrict-prototypes -Wmissing-prototypes -Wno-long-long -Wundef -Wconversion -pipe::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    182 "debug-geoff32","gcc:-DBN_DEBUG -DBN_DEBUG_RAND -DBN_STRICT -DPURIFY -DOPENSSL_NO_DEPRECATED -DOPENSSL_NO_ASM -DOPENSSL_NO_INLINE_ASM -DL_ENDIAN -DTERMIO -DPEDANTIC -DMD32_REG_T=int -O1 -ggdb2 -Wall -Werror -Wundef -pedantic -Wshadow -Wpointer-arith -Wbad-function-cast -Wcast-align -Wsign-compare -Wmissing-prototypes -Wmissing-declarations -Wno-long-long::-D_REENTRANT::-ldl:BN_LLONG:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    183 "debug-geoff64","gcc:-DBN_DEBUG -DBN_DEBUG_RAND -DBN_STRICT -DPURIFY -DOPENSSL_NO_DEPRECATED -DOPENSSL_NO_ASM -DOPENSSL_NO_INLINE_ASM -DL_ENDIAN -DTERMIO -DPEDANTIC -DMD32_REG_T=int -O1 -ggdb2 -Wall -Werror -Wundef -pedantic -Wshadow -Wpointer-arith -Wbad-function-cast -Wcast-align -Wsign-compare -Wmissing-prototypes -Wmissing-declarations -Wno-long-long::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    184 "debug-linux-pentium","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -mcpu=pentium -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
    185 "debug-linux-ppro","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -mcpu=pentiumpro -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn",
    186 "debug-linux-elf","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -march=i486 -Wall::-D_REENTRANT::-lefence -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    187 "debug-linux-elf-noefence","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DL_ENDIAN -DTERMIO -g -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    188 "debug-linux-ia32-aes", "gcc:-DAES_EXPERIMENTAL -DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:x86cpuid.o:bn-586.o co-586.o x86-mont.o:des-586.o crypt586.o:aes_x86core.o aes_cbc.o:bf-586.o:md5-586.o:sha1-586.o sha256-586.o sha512-586.o:cast-586.o:rc4-586.o:rmd-586.o:rc5-586.o:wp_block.o wp-mmx.o::elf:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    189 "debug-linux-generic32","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DTERMIO -g -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    190 "debug-linux-generic64","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DTERMIO -g -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    191 "debug-linux-x86_64",	"gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -m64 -DL_ENDIAN -DTERMIO -g -Wall -DMD32_REG_T=int::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
    192 "dist",		"cc:-O::(unknown)::::::",
    193 
    194 # Basic configs that should work on any (32 and less bit) box
    195 "gcc",		"gcc:-O3::(unknown):::BN_LLONG:::",
    196 "cc",		"cc:-O::(unknown)::::::",
    197 
    198 ####VOS Configurations
    199 "vos-gcc","gcc:-O3 -Wall -D_POSIX_C_SOURCE=200112L -D_BSD -D_VOS_EXTENDED_NAMES -DB_ENDIAN::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
    200 "debug-vos-gcc","gcc:-O0 -g -Wall -D_POSIX_C_SOURCE=200112L -D_BSD -D_VOS_EXTENDED_NAMES -DB_ENDIAN -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG::(unknown):VOS:-Wl,-map:BN_LLONG:${no_asm}:::::.so:",
    201 
    202 #### Solaris x86 with GNU C setups
    203 # -DOPENSSL_NO_INLINE_ASM switches off inline assembler. We have to do it
    204 # here because whenever GNU C instantiates an assembler template it
    205 # surrounds it with #APP #NO_APP comment pair which (at least Solaris
    206 # 7_x86) /usr/ccs/bin/as fails to assemble with "Illegal mnemonic"
    207 # error message.
    208 "solaris-x86-gcc","gcc:-O3 -fomit-frame-pointer -march=pentium -Wall -DL_ENDIAN -DOPENSSL_NO_INLINE_ASM::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    209 # -shared -static-libgcc might appear controversial, but modules taken
    210 # from static libgcc do not have relocations and linking them into our
    211 # shared objects doesn't have any negative side-effects. On the contrary,
    212 # doing so makes it possible to use gcc shared build with Sun C. Given
    213 # that gcc generates faster code [thanks to inline assembler], I would
    214 # actually recommend to consider using gcc shared build even with vendor
    215 # compiler:-)
    216 #						<appro (a] fy.chalmers.se>
    217 "solaris64-x86_64-gcc","gcc:-m64 -O3 -Wall -DL_ENDIAN -DMD32_REG_T=int::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:solaris-shared:-fPIC:-m64 -shared -static-libgcc:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
    218  
    219 #### Solaris x86 with Sun C setups
    220 "solaris-x86-cc","cc:-fast -O -Xa::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    221 "solaris64-x86_64-cc","cc:-fast -xarch=amd64 -xstrconst -Xa -DL_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:solaris-shared:-KPIC:-xarch=amd64 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
    222 
    223 #### SPARC Solaris with GNU C setups
    224 "solaris-sparcv7-gcc","gcc:-O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    225 "solaris-sparcv8-gcc","gcc:-mv8 -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    226 # -m32 should be safe to add as long as driver recognizes -mcpu=ultrasparc
    227 "solaris-sparcv9-gcc","gcc:-m32 -mcpu=ultrasparc -O3 -fomit-frame-pointer -Wall -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    228 "solaris64-sparcv9-gcc","gcc:-m64 -mcpu=ultrasparc -O3 -Wall -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-m64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/64",
    229 ####
    230 "debug-solaris-sparcv8-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -O -g -mv8 -Wall -DB_ENDIAN::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    231 "debug-solaris-sparcv9-gcc","gcc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -DPEDANTIC -O -g -mcpu=ultrasparc -pedantic -ansi -Wall -Wshadow -Wno-long-long -D__EXTENSIONS__ -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    232 
    233 #### SPARC Solaris with Sun C setups
    234 # SC4.0 doesn't pass 'make test', upgrade to SC5.0 or SC4.2.
    235 # SC4.2 is ok, better than gcc even on bn as long as you tell it -xarch=v8
    236 # SC5.0 note: Compiler common patch 107357-01 or later is required!
    237 "solaris-sparcv7-cc","cc:-xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${no_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    238 "solaris-sparcv8-cc","cc:-xarch=v8 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    239 "solaris-sparcv9-cc","cc:-xtarget=ultra -xarch=v8plus -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    240 "solaris64-sparcv9-cc","cc:-xtarget=ultra -xarch=v9 -xO5 -xstrconst -xdepend -Xa -DB_ENDIAN::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-xarch=v9 -G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):/usr/ccs/bin/ar rs::/64",
    241 ####
    242 "debug-solaris-sparcv8-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -xarch=v8 -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    243 "debug-solaris-sparcv9-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG_ALL -xtarget=ultra -xarch=v8plus -g -O -xstrconst -Xa -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-lsocket -lnsl -ldl:BN_LLONG RC4_CHAR RC4_CHUNK_LL DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:solaris-shared:-KPIC:-G -dy -z text:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)", 
    244 
    245 #### SunOS configs, assuming sparc for the gcc one.
    246 #"sunos-cc", "cc:-O4 -DNOPROTO -DNOCONST::(unknown):SUNOS::DES_UNROLL:${no_asm}::",
    247 "sunos-gcc","gcc:-O3 -mv8 -Dssize_t=int::(unknown):SUNOS::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL DES_PTR DES_RISC1:${no_asm}::",
    248 
    249 #### IRIX 5.x configs
    250 # -mips2 flag is added by ./config when appropriate.
    251 "irix-gcc","gcc:-O3 -DTERMIOS -DB_ENDIAN::(unknown):::BN_LLONG MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK DES_UNROLL DES_RISC2 DES_PTR BF_PTR:${no_asm}:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    252 "irix-cc", "cc:-O2 -use_readonly_const -DTERMIOS -DB_ENDIAN::(unknown):::BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${no_asm}:dlfcn:irix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    253 #### IRIX 6.x configs
    254 # Only N32 and N64 ABIs are supported. If you need O32 ABI build, invoke
    255 # './Configure irix-cc -o32' manually.
    256 "irix-mips3-gcc","gcc:-mabi=n32 -O3 -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::MD2_CHAR RC4_INDEX RC4_CHAR RC4_CHUNK_LL DES_UNROLL DES_RISC2 DES_PTR BF_PTR SIXTY_FOUR_BIT:${mips3_asm}:dlfcn:irix-shared::-mabi=n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::32",
    257 "irix-mips3-cc", "cc:-n32 -mips3 -O2 -use_readonly_const -G0 -rdata_shared -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::DES_PTR RC4_CHAR RC4_CHUNK_LL DES_RISC2 DES_UNROLL BF_PTR SIXTY_FOUR_BIT:${mips3_asm}:dlfcn:irix-shared::-n32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::32",
    258 # N64 ABI builds.
    259 "irix64-mips4-gcc","gcc:-mabi=64 -mips4 -O3 -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG:${mips3_asm}:dlfcn:irix-shared::-mabi=64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
    260 "irix64-mips4-cc", "cc:-64 -mips4 -O2 -use_readonly_const -G0 -rdata_shared -DTERMIOS -DB_ENDIAN -DBN_DIV3W::-D_SGI_MP_SOURCE:::RC4_CHAR RC4_CHUNK DES_RISC2 DES_UNROLL SIXTY_FOUR_BIT_LONG:${mips3_asm}:dlfcn:irix-shared::-64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
    261 
    262 #### Unified HP-UX ANSI C configs.
    263 # Special notes:
    264 # - Originally we were optimizing at +O4 level. It should be noted
    265 #   that the only difference between +O3 and +O4 is global inter-
    266 #   procedural analysis. As it has to be performed during the link
    267 #   stage the compiler leaves behind certain pseudo-code in lib*.a
    268 #   which might be release or even patch level specific. Generating
    269 #   the machine code for and analyzing the *whole* program appears
    270 #   to be *extremely* memory demanding while the performance gain is
    271 #   actually questionable. The situation is intensified by the default
    272 #   HP-UX data set size limit (infamous 'maxdsiz' tunable) of 64MB
    273 #   which is way too low for +O4. In other words, doesn't +O3 make
    274 #   more sense?
    275 # - Keep in mind that the HP compiler by default generates code
    276 #   suitable for execution on the host you're currently compiling at.
    277 #   If the toolkit is ment to be used on various PA-RISC processors
    278 #   consider './config +DAportable'.
    279 # - +DD64 is chosen in favour of +DA2.0W because it's meant to be
    280 #   compatible with *future* releases.
    281 # - If you run ./Configure hpux-parisc-[g]cc manually don't forget to
    282 #   pass -D_REENTRANT on HP-UX 10 and later.
    283 # - -DMD32_XARRAY triggers workaround for compiler bug we ran into in
    284 #   32-bit message digests. (For the moment of this writing) HP C
    285 #   doesn't seem to "digest" too many local variables (they make "him"
    286 #   chew forever:-). For more details look-up MD32_XARRAY comment in
    287 #   crypto/sha/sha_lcl.h.
    288 #					<appro (a] fy.chalmers.se>
    289 #
    290 # Since there is mention of this in shlib/hpux10-cc.sh
    291 "hpux-parisc-cc-o4","cc:-Ae +O4 +ESlit -z -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    292 "hpux-parisc-gcc","gcc:-O3 -DB_ENDIAN -DBN_DIV2W::-D_REENTRANT::-Wl,+s -ldld:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    293 "hpux-parisc2-gcc","gcc:-march=2.0 -O3 -DB_ENDIAN -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT RC4_CHAR RC4_CHUNK DES_PTR DES_UNROLL DES_RISC1::pa-risc2.o::::::::::::void:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    294 "hpux64-parisc2-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2W.o::::::::::::void:dlfcn:hpux-shared:-fpic:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_64",
    295 
    296 # More attempts at unified 10.X and 11.X targets for HP C compiler.
    297 #
    298 # Chris Ruemmler <ruemmler (a] cup.hp.com>
    299 # Kevin Steves <ks (a] hp.se>
    300 "hpux-parisc-cc","cc:+O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    301 "hpux-parisc1_0-cc","cc:+DAportable +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY::-D_REENTRANT::-Wl,+s -ldld:MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    302 "hpux-parisc2-cc","cc:+DA2.0 +DS2.0 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-Wl,+s -ldld:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2.o::::::::::::void:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    303 "hpux64-parisc2-cc","cc:+DD64 +O3 +Optrs_strongly_typed -Ae +ESlit -DB_ENDIAN -DMD32_XARRAY -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX RC4_CHAR DES_UNROLL DES_RISC1 DES_INT::pa-risc2W.o::::::::::::void:dlfcn:hpux-shared:+Z:+DD64 -b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/pa20_64",
    304 
    305 # HP/UX IA-64 targets
    306 "hpux-ia64-cc","cc:-Ae +DD32 +O2 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD32 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux32",
    307 # Frank Geurts <frank.geurts (a] nl.abnamro.com> has patiently assisted with
    308 # with debugging of the following config.
    309 "hpux64-ia64-cc","cc:-Ae +DD64 +O3 +Olit=all -z -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:+Z:+DD64 -b:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux64",
    310 # GCC builds...
    311 "hpux-ia64-gcc","gcc:-O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux32",
    312 "hpux64-ia64-gcc","gcc:-mlp64 -O3 -DB_ENDIAN -D_REENTRANT::::-ldl:SIXTY_FOUR_BIT_LONG MD2_CHAR RC4_INDEX DES_UNROLL DES_RISC1 DES_INT:${ia64_asm}:dlfcn:hpux-shared:-fpic:-mlp64 -shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::/hpux64", 
    313 
    314 # Legacy HPUX 9.X configs...
    315 "hpux-cc",	"cc:-DB_ENDIAN -DBN_DIV2W -DMD32_XARRAY -Ae +ESlit +O2 -z::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:+Z:-b:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    316 "hpux-gcc",	"gcc:-DB_ENDIAN -DBN_DIV2W -O3::(unknown)::-Wl,+s -ldld:DES_PTR DES_UNROLL DES_RISC1:${no_asm}:dl:hpux-shared:-fPIC:-shared:.sl.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    317 
    318 #### HP MPE/iX http://jazz.external.hp.com/src/openssl/
    319 "MPE/iX-gcc",	"gcc:-D_ENDIAN -DBN_DIV2W -O3 -D_POSIX_SOURCE -D_SOCKET_SOURCE -I/SYSLOG/PUB::(unknown):MPE:-L/SYSLOG/PUB -lsyslog -lsocket -lcurses:BN_LLONG DES_PTR DES_UNROLL DES_RISC1:::",
    320 
    321 # DEC Alpha OSF/1/Tru64 targets.
    322 #
    323 #	"What's in a name? That which we call a rose
    324 #	 By any other word would smell as sweet."
    325 #
    326 # - William Shakespeare, "Romeo & Juliet", Act II, scene II.
    327 #
    328 # For gcc, the following gave a %50 speedup on a 164 over the 'DES_INT' version
    329 #
    330 "osf1-alpha-gcc", "gcc:-O3::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_RISC1:${alpha_asm}:dlfcn:alpha-osf1-shared:::.so",
    331 "osf1-alpha-cc",  "cc:-std1 -tune host -O4 -readonly_strings::(unknown):::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${alpha_asm}:dlfcn:alpha-osf1-shared:::.so",
    332 "tru64-alpha-cc", "cc:-std1 -tune host -fast -readonly_strings::-pthread:::SIXTY_FOUR_BIT_LONG RC4_CHUNK:${alpha_asm}:dlfcn:alpha-osf1-shared::-msym:.so",
    333 
    334 ####
    335 #### Variety of LINUX:-)
    336 ####
    337 # *-generic* is endian-neutral target, but ./config is free to
    338 # throw in -D[BL]_ENDIAN, whichever appropriate...
    339 "linux-generic32","gcc:-DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    340 "linux-ppc",	"gcc:-DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${ppc32_asm}:linux32:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    341 # It's believed that majority of ARM toolchains predefine appropriate -march.
    342 # If you compiler does not, do complement config command line with one!
    343 "linux-armv4",	"gcc:-DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${armv4_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    344 #### IA-32 targets...
    345 "linux-ia32-icc",	"icc:-DL_ENDIAN -DTERMIO -O2 -no_cpprt::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-KPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    346 "linux-elf",	"gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    347 "linux-aout",	"gcc:-DL_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -march=i486 -Wall::(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out",
    348 ####
    349 "linux-generic64","gcc:-DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL BF_PTR:${no_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    350 "linux-ppc64",	"gcc:-m64 -DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${ppc64_asm}:linux64:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
    351 "linux-ia64",	"gcc:-DL_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_INT:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    352 "linux-ia64-ecc","ecc:-DL_ENDIAN -DTERMIO -O2 -Wall -no_cpprt::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    353 "linux-ia64-icc","icc:-DL_ENDIAN -DTERMIO -O2 -Wall -no_cpprt::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_RISC1 DES_INT:${ia64_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    354 "linux-x86_64",	"gcc:-m64 -DL_ENDIAN -DTERMIO -O3 -Wall -DMD32_REG_T=int::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
    355 "linux-s390x",	"gcc:-m64 -DB_ENDIAN -DTERMIO -O3 -Wall::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:${s390x_asm}:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
    356 #### SPARC Linux setups
    357 # Ray Miller <ray.miller (a] computing-services.oxford.ac.uk> has patiently
    358 # assisted with debugging of following two configs.
    359 "linux-sparcv8","gcc:-mv8 -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -DBN_DIV2W::-D_REENTRANT::-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv8_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    360 # it's a real mess with -mcpu=ultrasparc option under Linux, but
    361 # -Wa,-Av8plus should do the trick no matter what.
    362 "linux-sparcv9","gcc:-m32 -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall -Wa,-Av8plus -DBN_DIV2W::-D_REENTRANT:ULTRASPARC:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:linux-shared:-fPIC:-m32:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    363 # GCC 3.1 is a requirement
    364 "linux64-sparcv9","gcc:-m64 -mcpu=ultrasparc -DB_ENDIAN -DTERMIO -O3 -fomit-frame-pointer -Wall::-D_REENTRANT:ULTRASPARC:-ldl:BN_LLONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL BF_PTR:${sparcv9_asm}:dlfcn:linux-shared:-fPIC:-m64:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):::64",
    365 #### Alpha Linux with GNU C and Compaq C setups
    366 # Special notes:
    367 # - linux-alpha+bwx-gcc is ment to be used from ./config only. If you
    368 #   ought to run './Configure linux-alpha+bwx-gcc' manually, do
    369 #   complement the command line with -mcpu=ev56, -mcpu=ev6 or whatever
    370 #   which is appropriate.
    371 # - If you use ccc keep in mind that -fast implies -arch host and the
    372 #   compiler is free to issue instructions which gonna make elder CPU
    373 #   choke. If you wish to build "blended" toolkit, add -arch generic
    374 #   *after* -fast and invoke './Configure linux-alpha-ccc' manually.
    375 #
    376 #					<appro (a] fy.chalmers.se>
    377 #
    378 "linux-alpha-gcc","gcc:-O3 -DL_ENDIAN -DTERMIO::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_RISC1 DES_UNROLL:${alpha_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    379 "linux-alpha+bwx-gcc","gcc:-O3 -DL_ENDIAN -DTERMIO::-D_REENTRANT::-ldl:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_RISC1 DES_UNROLL:${alpha_asm}:dlfcn:linux-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    380 "linux-alpha-ccc","ccc:-fast -readonly_strings -DL_ENDIAN -DTERMIO::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${alpha_asm}",
    381 "linux-alpha+bwx-ccc","ccc:-fast -readonly_strings -DL_ENDIAN -DTERMIO::-D_REENTRANT:::SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC1 DES_UNROLL:${alpha_asm}",
    382 
    383 #### *BSD [do see comment about ${BSDthreads} above!]
    384 "BSD-generic32","gcc:-DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    385 "BSD-x86",	"gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    386 "BSD-x86-elf",	"gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -Wall::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    387 "debug-BSD-x86-elf",	"gcc:-DL_ENDIAN -DTERMIOS -O3 -Wall -g::${BSDthreads}:::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    388 "BSD-sparcv8",	"gcc:-DB_ENDIAN -DTERMIOS -O3 -mv8 -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_INDEX DES_INT DES_UNROLL:${sparcv8_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    389 
    390 "BSD-generic64","gcc:-DTERMIOS -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    391 # -DMD32_REG_T=int doesn't actually belong in sparc64 target, it
    392 # simply *happens* to work around a compiler bug in gcc 3.3.3,
    393 # triggered by RIPEMD160 code.
    394 "BSD-sparc64",	"gcc:-DB_ENDIAN -DTERMIOS -O3 -DMD32_REG_T=int -Wall::${BSDthreads}:::BN_LLONG RC2_CHAR RC4_CHUNK DES_INT DES_PTR DES_RISC2 BF_PTR:${sparcv9_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    395 "BSD-ia64",	"gcc:-DL_ENDIAN -DTERMIOS -O3 -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_UNROLL DES_INT:${ia64_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    396 "BSD-x86_64",	"gcc:-DL_ENDIAN -DTERMIOS -O3 -DMD32_REG_T=int -Wall::${BSDthreads}:::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:elf:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    397 
    398 "bsdi-elf-gcc",     "gcc:-DPERL5 -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall::(unknown)::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    399 
    400 "nextstep",	"cc:-O -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
    401 "nextstep3.3",	"cc:-O3 -Wall:<libc.h>:(unknown):::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:::",
    402 
    403 # NCR MP-RAS UNIX ver 02.03.01
    404 "ncr-scde","cc:-O6 -Xa -Hoff=BEHAVED -686 -Hwide -Hiw::(unknown)::-lsocket -lnsl -lc89:${x86_gcc_des} ${x86_gcc_opts}:::",
    405 
    406 # QNX
    407 "qnx4",	"cc:-DL_ENDIAN -DTERMIO::(unknown):::${x86_gcc_des} ${x86_gcc_opts}:",
    408 "QNX6",       "gcc:-DTERMIOS::::-lsocket::${no_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    409 "QNX6-i386",  "gcc:-DL_ENDIAN -DTERMIOS -O2 -Wall::::-lsocket:${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:bsd-gcc-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    410 
    411 # BeOS
    412 "beos-x86-r5",   "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -mcpu=pentium -Wall::-D_REENTRANT:BEOS:-lbe -lnet:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:beos:beos-shared:-fPIC -DPIC:-shared:.so",
    413 "beos-x86-bone", "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -mcpu=pentium -Wall::-D_REENTRANT:BEOS:-lbe -lbind -lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:beos:beos-shared:-fPIC:-shared:.so",
    414 
    415 #### SCO/Caldera targets.
    416 #
    417 # Originally we had like unixware-*, unixware-*-pentium, unixware-*-p6, etc.
    418 # Now we only have blended unixware-* as it's the only one used by ./config.
    419 # If you want to optimize for particular microarchitecture, bypass ./config
    420 # and './Configure unixware-7 -Kpentium_pro' or whatever appropriate.
    421 # Note that not all targets include assembler support. Mostly because of
    422 # lack of motivation to support out-of-date platforms with out-of-date
    423 # compiler drivers and assemblers. Tim Rice <tim (a] multitalents.net> has
    424 # patiently assisted to debug most of it.
    425 #
    426 # UnixWare 2.0x fails destest with -O.
    427 "unixware-2.0","cc:-DFILIO_H -DNO_STRINGS_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
    428 "unixware-2.1","cc:-O -DFILIO_H::-Kthread::-lsocket -lnsl -lresolv -lx:${x86_gcc_des} ${x86_gcc_opts}:::",
    429 "unixware-7","cc:-O -DFILIO_H -Kalloca::-Kthread::-lsocket -lnsl:BN_LLONG MD2_CHAR RC4_INDEX ${x86_gcc_des}:${x86_elf_asm}:dlfcn:svr5-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    430 "unixware-7-gcc","gcc:-DL_ENDIAN -DFILIO_H -O3 -fomit-frame-pointer -march=pentium -Wall::-D_REENTRANT::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:gnu-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    431 # SCO 5 - Ben Laurie <ben (a] algroup.co.uk> says the -O breaks the SCO cc.
    432 "sco5-cc",  "cc:-belf::(unknown)::-lsocket -lnsl:${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-Kpic::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    433 "sco5-gcc",  "gcc:-O3 -fomit-frame-pointer::(unknown)::-lsocket -lnsl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:svr3-shared:-fPIC::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    434 
    435 #### IBM's AIX.
    436 "aix3-cc",  "cc:-O -DB_ENDIAN -qmaxmem=16384::(unknown):AIX::BN_LLONG RC4_CHAR:::",
    437 "aix-gcc",  "gcc:-O -DB_ENDIAN::-pthread:AIX::BN_LLONG RC4_CHAR:${ppc32_asm}:aix32:dlfcn:aix-shared::-shared -Wl,-G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X32",
    438 "aix64-gcc","gcc:-maix64 -O -DB_ENDIAN::-pthread:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR:${ppc64_asm}:aix64:dlfcn:aix-shared::-maix64 -shared -Wl,-G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X64",
    439 # Below targets assume AIX 5. Idea is to effectively disregard $OBJECT_MODE
    440 # at build time. $OBJECT_MODE is respected at ./config stage!
    441 "aix-cc",   "cc:-q32 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded:AIX::BN_LLONG RC4_CHAR:${ppc32_asm}:aix32:dlfcn:aix-shared::-q32 -G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 32",
    442 "aix64-cc", "cc:-q64 -O -DB_ENDIAN -qmaxmem=16384 -qro -qroconst::-qthreaded:AIX::SIXTY_FOUR_BIT_LONG RC4_CHAR:${ppc64_asm}:aix64:dlfcn:aix-shared::-q64 -G:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)::-X 64",
    443 
    444 #
    445 # Cray T90 and similar (SDSC)
    446 # It's Big-endian, but the algorithms work properly when B_ENDIAN is NOT
    447 # defined.  The T90 ints and longs are 8 bytes long, and apparently the
    448 # B_ENDIAN code assumes 4 byte ints.  Fortunately, the non-B_ENDIAN and
    449 # non L_ENDIAN code aligns the bytes in each word correctly.
    450 #
    451 # The BIT_FIELD_LIMITS define is to avoid two fatal compiler errors:
    452 #'Taking the address of a bit field is not allowed. '
    453 #'An expression with bit field exists as the operand of "sizeof" '
    454 # (written by Wayne Schroeder <schroede (a] SDSC.EDU>)
    455 #
    456 # j90 is considered the base machine type for unicos machines,
    457 # so this configuration is now called "cray-j90" ...
    458 "cray-j90", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG DES_INT:::",
    459 
    460 #
    461 # Cray T3E (Research Center Juelich, beckman (a] acl.lanl.gov)
    462 #
    463 # The BIT_FIELD_LIMITS define was written for the C90 (it seems).  I added
    464 # another use.  Basically, the problem is that the T3E uses some bit fields
    465 # for some st_addr stuff, and then sizeof and address-of fails
    466 # I could not use the ams/alpha.o option because the Cray assembler, 'cam'
    467 # did not like it.
    468 "cray-t3e", "cc: -DBIT_FIELD_LIMITS -DTERMIOS::(unknown):CRAY::SIXTY_FOUR_BIT_LONG RC4_CHUNK DES_INT:::",
    469 
    470 # DGUX, 88100.
    471 "dgux-R3-gcc",	"gcc:-O3 -fomit-frame-pointer::(unknown):::RC4_INDEX DES_UNROLL:::",
    472 "dgux-R4-gcc",	"gcc:-O3 -fomit-frame-pointer::(unknown)::-lnsl -lsocket:RC4_INDEX DES_UNROLL:::",
    473 "dgux-R4-x86-gcc",	"gcc:-O3 -fomit-frame-pointer -DL_ENDIAN::(unknown)::-lnsl -lsocket:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}",
    474 
    475 # Sinix/ReliantUNIX RM400
    476 # NOTE: The CDS++ Compiler up to V2.0Bsomething has the IRIX_CC_BUG optimizer problem. Better use -g  */
    477 "ReliantUNIX","cc:-KPIC -g -DTERMIOS -DB_ENDIAN::-Kthread:SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:BN_LLONG DES_PTR DES_RISC2 DES_UNROLL BF_PTR:${no_asm}:dlfcn:reliantunix-shared:::.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR)",
    478 "SINIX","cc:-O::(unknown):SNI:-lsocket -lnsl -lc -L/usr/ucblib -lucb:RC4_INDEX RC4_CHAR:::",
    479 "SINIX-N","/usr/ucb/cc:-O2 -misaligned::(unknown)::-lucb:RC4_INDEX RC4_CHAR:::",
    480 
    481 # SIEMENS BS2000/OSD: an EBCDIC-based mainframe
    482 "BS2000-OSD","c89:-O -XLLML -XLLMK -XL -DB_ENDIAN -DTERMIOS -DCHARSET_EBCDIC::(unknown)::-lsocket -lnsl:THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
    483 
    484 # OS/390 Unix an EBCDIC-based Unix system on IBM mainframe
    485 # You need to compile using the c89.sh wrapper in the tools directory, because the
    486 # IBM compiler does not like the -L switch after any object modules.
    487 #
    488 "OS390-Unix","c89.sh:-O -DB_ENDIAN -DCHARSET_EBCDIC -DNO_SYS_PARAM_H  -D_ALL_SOURCE::(unknown):::THIRTY_TWO_BIT DES_PTR DES_UNROLL MD2_CHAR RC4_INDEX RC4_CHAR BF_PTR:::",
    489 
    490 # Visual C targets
    491 #
    492 # Win64 targets, WIN64I denotes IA-64 and WIN64A - AMD64
    493 "VC-WIN64I","cl:-W3 -Gs0 -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64I::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:ia64cpuid.o:ia64.o::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o:::::::ias:win32",
    494 "VC-WIN64A","cl:-W3 -Gs0 -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64A::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:x86_64cpuid.o:bn_asm.o x86_64-mont.o::aes-x86_64.o::md5-x86_64.o:sha1-x86_64.o sha256-x86_64.o sha512-x86_64.o::rc4-x86_64.o:::wp-x86_64.o:cmll-x86_64.o cmll_misc.o:auto:win32",
    495 "debug-VC-WIN64I","cl:-W3 -Gs0 -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64I::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:ia64cpuid.o:ia64.o::aes_core.o aes_cbc.o aes-ia64.o::md5-ia64.o:sha1-ia64.o sha256-ia64.o sha512-ia64.o:::::::ias:win32",
    496 "debug-VC-WIN64A","cl:-W3 -Gs0 -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -DUNICODE -D_UNICODE -D_CRT_SECURE_NO_DEPRECATE:::WIN64A::SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:x86_64cpuid.o:bn_asm.o x86_64-mont.o::aes-x86_64.o::md5-x86_64.o:sha1-x86_64.o sha256-x86_64.o sha512-x86_64.o::rc4-x86_64.o:::wp-x86_64.o:cmll-x86_64.o cmll_misc.o:auto:win32",
    497 # x86 Win32 target defaults to ANSI API, if you want UNICODE, complement
    498 # 'perl Configure VC-WIN32' with '-DUNICODE -D_UNICODE'
    499 "VC-WIN32","cl:-W3 -WX -Gs0 -GF -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -D_CRT_SECURE_NO_DEPRECATE:::WIN32::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${x86_asm}:win32n:win32",
    500 # Unified CE target
    501 "debug-VC-WIN32","cl:-W3 -WX -Gs0 -GF -Gy -Zi -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -D_CRT_SECURE_NO_DEPRECATE:::WIN32::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${x86_asm}:win32n:win32",
    502 "VC-CE","cl::::WINCE::BN_LLONG RC4_INDEX EXPORT_VAR_AS_FN ${x86_gcc_opts}:${no_asm}:win32",
    503 
    504 # Borland C++ 4.5
    505 "BC-32","bcc32::::WIN32::BN_LLONG DES_PTR RC4_INDEX EXPORT_VAR_AS_FN:${no_asm}:win32",
    506 
    507 # MinGW
    508 "mingw", "gcc:-mno-cygwin -DL_ENDIAN -DWIN32_LEAN_AND_MEAN -fomit-frame-pointer -O3 -march=i486 -Wall::-D_MT:MINGW32:-lws2_32 -lgdi32 -lcrypt32:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts} EXPORT_VAR_AS_FN:${x86_asm}:coff:win32:cygwin-shared:-D_WINDLL -DOPENSSL_USE_APPLINK:-mno-cygwin:.dll.a",
    509 # As for OPENSSL_USE_APPLINK. Applink makes it possible to use .dll
    510 # compiled with one compiler with application compiled with another
    511 # compiler. It's possible to engage Applink support in mingw64 build,
    512 # but it's not done, because till mingw64 supports structured exception
    513 # handling, one can't seriously consider its binaries for using with
    514 # non-mingw64 run-time environment. And as mingw64 is always consistent
    515 # with itself, Applink is never engaged and can as well be omitted.
    516 "mingw64", "gcc:-mno-cygwin -DL_ENDIAN -O3 -Wall -DWIN32_LEAN_AND_MEAN -DUNICODE -D_UNICODE::-D_MT:MINGW64:-lws2_32 -lgdi32 -lcrypt32:SIXTY_FOUR_BIT RC4_CHUNK_LL DES_INT EXPORT_VAR_AS_FN:${x86_64_asm}:mingw64:win32:cygwin-shared:-D_WINDLL:-mno-cygwin:.dll.a",
    517 
    518 # UWIN 
    519 "UWIN", "cc:-DTERMIOS -DL_ENDIAN -O -Wall:::UWIN::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
    520 
    521 # Cygwin
    522 "Cygwin-pre1.3", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -m486 -Wall::(unknown):CYGWIN32::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${no_asm}:win32",
    523 "Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O3 -march=i486 -Wall:::CYGWIN32::BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:coff:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
    524 "debug-Cygwin", "gcc:-DTERMIOS -DL_ENDIAN -march=i486 -Wall -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DOPENSSL_NO_ASM -g -Wformat -Wshadow -Wmissing-prototypes -Wmissing-declarations -Werror:::CYGWIN32:::${no_asm}:dlfcn:cygwin-shared:-D_WINDLL:-shared:.dll.a",
    525 
    526 # NetWare from David Ward (dsward (a] novell.com)
    527 # requires either MetroWerks NLM development tools, or gcc / nlmconv
    528 # NetWare defaults socket bio to WinSock sockets. However,
    529 # the builds can be configured to use BSD sockets instead.
    530 # netware-clib => legacy CLib c-runtime support
    531 "netware-clib", "mwccnlm::::::${x86_gcc_opts}::",
    532 "netware-clib-bsdsock", "mwccnlm::::::${x86_gcc_opts}::",
    533 "netware-clib-gcc", "i586-netware-gcc:-nostdinc -I/ndk/nwsdk/include/nlm -I/ndk/ws295sdk/include -DL_ENDIAN -DNETWARE_CLIB -DOPENSSL_SYSNAME_NETWARE -O2 -Wall:::::${x86_gcc_opts}::",
    534 "netware-clib-bsdsock-gcc", "i586-netware-gcc:-nostdinc -I/ndk/nwsdk/include/nlm -DNETWARE_BSDSOCK -DNETDB_USE_INTERNET -DL_ENDIAN -DNETWARE_CLIB -DOPENSSL_SYSNAME_NETWARE -O2 -Wall:::::${x86_gcc_opts}::",
    535 # netware-libc => LibC/NKS support
    536 "netware-libc", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
    537 "netware-libc-bsdsock", "mwccnlm::::::BN_LLONG ${x86_gcc_opts}::",
    538 "netware-libc-gcc", "i586-netware-gcc:-nostdinc -I/ndk/libc/include -I/ndk/libc/include/winsock -DL_ENDIAN -DNETWARE_LIBC -DOPENSSL_SYSNAME_NETWARE -DTERMIO -O2 -Wall:::::BN_LLONG ${x86_gcc_opts}::",
    539 "netware-libc-bsdsock-gcc", "i586-netware-gcc:-nostdinc -I/ndk/libc/include -DNETWARE_BSDSOCK -DL_ENDIAN -DNETWARE_LIBC -DOPENSSL_SYSNAME_NETWARE -DTERMIO -O2 -Wall:::::BN_LLONG ${x86_gcc_opts}::",
    540 
    541 # DJGPP
    542 "DJGPP", "gcc:-I/dev/env/WATT_ROOT/inc -DTERMIOS -DL_ENDIAN -fomit-frame-pointer -O2 -Wall:::MSDOS:-L/dev/env/WATT_ROOT/lib -lwatt:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_asm}:a.out:",
    543 
    544 # Ultrix from Bernhard Simon <simon (a] zid.tuwien.ac.at>
    545 "ultrix-cc","cc:-std1 -O -Olimit 2500 -DL_ENDIAN::(unknown):::::::",
    546 "ultrix-gcc","gcc:-O3 -DL_ENDIAN::(unknown):::BN_LLONG::::",
    547 # K&R C is no longer supported; you need gcc on old Ultrix installations
    548 ##"ultrix","cc:-O2 -DNOPROTO -DNOCONST -DL_ENDIAN::(unknown):::::::",
    549 
    550 ##### MacOS X (a.k.a. Rhapsody or Darwin) setup
    551 "rhapsody-ppc-cc","cc:-O3 -DB_ENDIAN::(unknown):MACOSX_RHAPSODY::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${no_asm}::",
    552 "darwin-ppc-cc","cc:-arch ppc -O3 -DB_ENDIAN -Wa,-force_cpusubtype_ALL::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc32_asm}:osx32:dlfcn:darwin-shared:-fPIC -fno-common:-arch ppc -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
    553 "darwin64-ppc-cc","cc:-arch ppc64 -O3 -DB_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc64_asm}:osx64:dlfcn:darwin-shared:-fPIC -fno-common:-arch ppc64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
    554 "darwin-i386-cc","cc:-arch i386 -O3 -fomit-frame-pointer -DL_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_INT RC4_CHUNK DES_UNROLL BF_PTR:${x86_asm}:macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch i386 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
    555 "debug-darwin-i386-cc","cc:-arch i386 -g3 -DL_ENDIAN::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:BN_LLONG RC4_INT RC4_CHUNK DES_UNROLL BF_PTR:${x86_asm}:macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch i386 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
    556 "darwin64-x86_64-cc","cc:-arch x86_64 -O3 -DL_ENDIAN -DMD32_REG_T=int -Wall::-D_REENTRANT:MACOSX:-Wl,-search_paths_first%:SIXTY_FOUR_BIT_LONG RC4_CHAR RC4_CHUNK DES_INT DES_UNROLL:${x86_64_asm}:macosx:dlfcn:darwin-shared:-fPIC -fno-common:-arch x86_64 -dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
    557 "debug-darwin-ppc-cc","cc:-DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DCRYPTO_MDEBUG -DB_ENDIAN -g -Wall -O::-D_REENTRANT:MACOSX::BN_LLONG RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:${ppc32_asm}:osx32:dlfcn:darwin-shared:-fPIC:-dynamiclib:.\$(SHLIB_MAJOR).\$(SHLIB_MINOR).dylib",
    558 
    559 ##### A/UX
    560 "aux3-gcc","gcc:-O2 -DTERMIO::(unknown):AUX:-lbsd:RC4_CHAR RC4_CHUNK DES_UNROLL BF_PTR:::",
    561 
    562 ##### Sony NEWS-OS 4.x
    563 "newsos4-gcc","gcc:-O -DB_ENDIAN::(unknown):NEWS4:-lmld -liberty:BN_LLONG RC4_CHAR RC4_CHUNK DES_PTR DES_RISC1 DES_UNROLL BF_PTR::::",
    564 
    565 ##### GNU Hurd
    566 "hurd-x86",  "gcc:-DL_ENDIAN -DTERMIOS -O3 -fomit-frame-pointer -march=i486 -Wall::-D_REENTRANT::-ldl:BN_LLONG ${x86_gcc_des} ${x86_gcc_opts}:${x86_elf_asm}:dlfcn:linux-shared:-fPIC",
    567 
    568 ##### OS/2 EMX
    569 "OS2-EMX", "gcc::::::::",
    570 
    571 ##### VxWorks for various targets
    572 "vxworks-ppc405","ccppc:-g -msoft-float -mlongcall -DCPU=PPC405 -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
    573 "vxworks-ppc750","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h \$(DEBUG_FLAG):::VXWORKS:-r:::::",
    574 "vxworks-ppc750-debug","ccppc:-ansi -nostdinc -DPPC750 -D_REENTRANT -fvolatile -fno-builtin -fno-for-scope -fsigned-char -Wall -msoft-float -mlongcall -DCPU=PPC604 -I\$(WIND_BASE)/target/h -DBN_DEBUG -DREF_CHECK -DCONF_DEBUG -DBN_CTX_DEBUG -DCRYPTO_MDEBUG -DPEDANTIC -DDEBUG_SAFESTACK -DDEBUG -g:::VXWORKS:-r:::::",
    575 "vxworks-ppc860","ccppc:-nostdinc -msoft-float -DCPU=PPC860 -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r:::::",
    576 "vxworks-mipsle","ccmips:-B\$(WIND_BASE)/host/\$(WIND_HOST_TYPE)/lib/gcc-lib/ -DL_ENDIAN -EL -Wl,-EL -mips2 -mno-branch-likely -G 0 -fno-builtin -msoft-float -DCPU=MIPS32 -DMIPSEL -DNO_STRINGS_H -I\$(WIND_BASE)/target/h:::VXWORKS:-r::${no_asm}::::::ranlibmips:",
    577 
    578 ##### Compaq Non-Stop Kernel (Tandem)
    579 "tandem-c89","c89:-Ww -D__TANDEM -D_XOPEN_SOURCE -D_XOPEN_SOURCE_EXTENDED=1 -D_TANDEM_SOURCE -DB_ENDIAN::(unknown):::THIRTY_TWO_BIT:::",
    580 
    581 # uClinux
    582 "uClinux-dist","$ENV{'CC'}:\$(CFLAGS)::-D_REENTRANT::\$(LDFLAGS) \$(LDLIBS):BN_LLONG:::::::::::::::$ENV{'LIBSSL_dlfcn'}:linux-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):$ENV{'RANLIB'}::",
    583 "uClinux-dist64","$ENV{'CC'}:\$(CFLAGS)::-D_REENTRANT::\$(LDFLAGS) \$(LDLIBS):SIXTY_FOUR_BIT_LONG:::::::::::::::$ENV{'LIBSSL_dlfcn'}:linux-shared:-fPIC:-shared:.so.\$(SHLIB_MAJOR).\$(SHLIB_MINOR):$ENV{'RANLIB'}::",
    584 
    585 );
    586 
    587 my @MK1MF_Builds=qw(VC-WIN64I VC-WIN64A
    588 		    debug-VC-WIN64I debug-VC-WIN64A
    589 		    VC-NT VC-CE VC-WIN32 debug-VC-WIN32
    590 		    BC-32 
    591 		    netware-clib netware-clib-bsdsock
    592 		    netware-libc netware-libc-bsdsock);
    593 
    594 my $idx = 0;
    595 my $idx_cc = $idx++;
    596 my $idx_cflags = $idx++;
    597 my $idx_unistd = $idx++;
    598 my $idx_thread_cflag = $idx++;
    599 my $idx_sys_id = $idx++;
    600 my $idx_lflags = $idx++;
    601 my $idx_bn_ops = $idx++;
    602 my $idx_cpuid_obj = $idx++;
    603 my $idx_bn_obj = $idx++;
    604 my $idx_des_obj = $idx++;
    605 my $idx_aes_obj = $idx++;
    606 my $idx_bf_obj = $idx++;
    607 my $idx_md5_obj = $idx++;
    608 my $idx_sha1_obj = $idx++;
    609 my $idx_cast_obj = $idx++;
    610 my $idx_rc4_obj = $idx++;
    611 my $idx_rmd160_obj = $idx++;
    612 my $idx_rc5_obj = $idx++;
    613 my $idx_wp_obj = $idx++;
    614 my $idx_cmll_obj = $idx++;
    615 my $idx_perlasm_scheme = $idx++;
    616 my $idx_dso_scheme = $idx++;
    617 my $idx_shared_target = $idx++;
    618 my $idx_shared_cflag = $idx++;
    619 my $idx_shared_ldflag = $idx++;
    620 my $idx_shared_extension = $idx++;
    621 my $idx_ranlib = $idx++;
    622 my $idx_arflags = $idx++;
    623 my $idx_multilib = $idx++;
    624 
    625 my $prefix="";
    626 my $libdir="";
    627 my $openssldir="";
    628 my $exe_ext="";
    629 my $install_prefix= "$ENV{'INSTALL_PREFIX'}";
    630 my $cross_compile_prefix="";
    631 my $fipsdir="/usr/local/ssl/fips-2.0/";
    632 my $fipslibdir="";
    633 my $baseaddr="0xFB00000";
    634 my $no_threads=0;
    635 my $threads=0;
    636 my $no_shared=0; # but "no-shared" is default
    637 my $zlib=1;      # but "no-zlib" is default
    638 my $no_krb5=0;   # but "no-krb5" is implied unless "--with-krb5-..." is used
    639 my $no_rfc3779=1; # but "no-rfc3779" is default
    640 my $no_asm=0;
    641 my $no_dso=0;
    642 my $no_gmp=0;
    643 my @skip=();
    644 my $Makefile="Makefile";
    645 my $des_locl="crypto/des/des_locl.h";
    646 my $des	="crypto/des/des.h";
    647 my $bn	="crypto/bn/bn.h";
    648 my $md2	="crypto/md2/md2.h";
    649 my $rc4	="crypto/rc4/rc4.h";
    650 my $rc4_locl="crypto/rc4/rc4_locl.h";
    651 my $idea	="crypto/idea/idea.h";
    652 my $rc2	="crypto/rc2/rc2.h";
    653 my $bf	="crypto/bf/bf_locl.h";
    654 my $bn_asm	="bn_asm.o";
    655 my $des_enc="des_enc.o fcrypt_b.o";
    656 my $aes_enc="aes_core.o aes_cbc.o";
    657 my $bf_enc	="bf_enc.o";
    658 my $cast_enc="c_enc.o";
    659 my $rc4_enc="rc4_enc.o rc4_skey.o";
    660 my $rc5_enc="rc5_enc.o";
    661 my $md5_obj="";
    662 my $sha1_obj="";
    663 my $rmd160_obj="";
    664 my $cmll_enc="camellia.o cmll_misc.o cmll_cbc.o";
    665 my $processor="";
    666 my $default_ranlib;
    667 my $perl;
    668 my $fips=0;
    669 
    670 
    671 # All of the following is disabled by default (RC5 was enabled before 0.9.8):
    672 
    673 my %disabled = ( # "what"         => "comment" [or special keyword "experimental"]
    674 		 "ec-nistp224-64-gcc-128" => "default",
    675 		 "gmp"		  => "default",
    676                  "jpake"          => "experimental",
    677                  "md2"            => "default",
    678                  "rc5"            => "default",
    679 		 "rfc3779"	  => "default",
    680                  "shared"         => "default",
    681 		 "store"	  => "experimental",
    682                  "zlib"           => "default",
    683                  "zlib-dynamic"   => "default"
    684                );
    685 my @experimental = ();
    686 
    687 # This is what $depflags will look like with the above defaults
    688 # (we need this to see if we should advise the user to run "make depend"):
    689 my $default_depflags = " -DOPENSSL_NO_GMP -DOPENSSL_NO_JPAKE -DOPENSSL_NO_MD2 -DOPENSSL_NO_RC5 -DOPENSSL_NO_RFC3779 -DOPENSSL_NO_STORE";
    690 
    691 # Explicit "no-..." options will be collected in %disabled along with the defaults.
    692 # To remove something from %disabled, use "enable-foo" (unless it's experimental).
    693 # For symmetry, "disable-foo" is a synonym for "no-foo".
    694 
    695 # For features called "experimental" here, a more explicit "experimental-foo" is needed to enable.
    696 # We will collect such requests in @experimental.
    697 # To avoid accidental use of experimental features, applications will have to use -DOPENSSL_EXPERIMENTAL_FOO.
    698 
    699 
    700 my $no_sse2=0;
    701 
    702 &usage if ($#ARGV < 0);
    703 
    704 my $flags;
    705 my $depflags;
    706 my $openssl_experimental_defines;
    707 my $openssl_algorithm_defines;
    708 my $openssl_thread_defines;
    709 my $openssl_sys_defines="";
    710 my $openssl_other_defines;
    711 my $libs;
    712 my $libkrb5="";
    713 my $target;
    714 my $options;
    715 my $symlink;
    716 my $make_depend=0;
    717 my %withargs=();
    718 
    719 my @argvcopy=@ARGV;
    720 my $argvstring="";
    721 my $argv_unprocessed=1;
    722 
    723 while($argv_unprocessed)
    724 	{
    725 	$flags="";
    726 	$depflags="";
    727 	$openssl_experimental_defines="";
    728 	$openssl_algorithm_defines="";
    729 	$openssl_thread_defines="";
    730 	$openssl_sys_defines="";
    731 	$openssl_other_defines="";
    732 	$libs="";
    733 	$target="";
    734 	$options="";
    735 	$symlink=1;
    736 
    737 	$argv_unprocessed=0;
    738 	$argvstring=join(' ',@argvcopy);
    739 
    740 PROCESS_ARGS:
    741 	foreach (@argvcopy)
    742 		{
    743 		s /^-no-/no-/; # some people just can't read the instructions
    744 
    745 		# rewrite some options in "enable-..." form
    746 		s /^-?-?shared$/enable-shared/;
    747 		s /^threads$/enable-threads/;
    748 		s /^zlib$/enable-zlib/;
    749 		s /^zlib-dynamic$/enable-zlib-dynamic/;
    750 
    751 		if (/^no-(.+)$/ || /^disable-(.+)$/)
    752 			{
    753 			if (!($disabled{$1} eq "experimental"))
    754 				{
    755 				if ($1 eq "ssl")
    756 					{
    757 					$disabled{"ssl2"} = "option(ssl)";
    758 					$disabled{"ssl3"} = "option(ssl)";
    759 					}
    760 				elsif ($1 eq "tls")
    761 					{
    762 					$disabled{"tls1"} = "option(tls)"
    763 					}
    764 				else
    765 					{
    766 					$disabled{$1} = "option";
    767 					}
    768 				}			
    769 			}
    770 		elsif (/^enable-(.+)$/ || /^experimental-(.+)$/)
    771 			{
    772 			my $algo = $1;
    773 			if ($disabled{$algo} eq "experimental")
    774 				{
    775 				die "You are requesting an experimental feature; please say 'experimental-$algo' if you are sure\n"
    776 					unless (/^experimental-/);
    777 				push @experimental, $algo;
    778 				}
    779 			delete $disabled{$algo};
    780 
    781 			$threads = 1 if ($algo eq "threads");
    782 			}
    783 		elsif (/^--test-sanity$/)
    784 			{
    785 			exit(&test_sanity());
    786 			}
    787 		elsif (/^--strict-warnings/)
    788 			{
    789 			$strict_warnings = 1;
    790 			}
    791 		elsif (/^reconfigure/ || /^reconf/)
    792 			{
    793 			if (open(IN,"<$Makefile"))
    794 				{
    795 				while (<IN>)
    796 					{
    797 					chomp;
    798 					if (/^CONFIGURE_ARGS=(.*)/)
    799 						{
    800 						$argvstring=$1;
    801 						@argvcopy=split(' ',$argvstring);
    802 						die "Incorrect data to reconfigure, please do a normal configuration\n"
    803 							if (grep(/^reconf/,@argvcopy));
    804 						print "Reconfiguring with: $argvstring\n";
    805 						$argv_unprocessed=1;
    806 						close(IN);
    807 						last PROCESS_ARGS;
    808 						}
    809 					}
    810 				close(IN);
    811 				}
    812 			die "Insufficient data to reconfigure, please do a normal configuration\n";
    813 			}
    814 		elsif (/^386$/)
    815 			{ $processor=386; }
    816 		elsif (/^fips$/)
    817 			{
    818 			$fips=1;
    819 		        }
    820 		elsif (/^rsaref$/)
    821 			{
    822 			# No RSAref support any more since it's not needed.
    823 			# The check for the option is there so scripts aren't
    824 			# broken
    825 			}
    826 		elsif (/^[-+]/)
    827 			{
    828 			if (/^-[lL](.*)$/ or /^-Wl,/)
    829 				{
    830 				$libs.=$_." ";
    831 				}
    832 			elsif (/^-[^-]/ or /^\+/)
    833 				{
    834 				$flags.=$_." ";
    835 				}
    836 			elsif (/^--prefix=(.*)$/)
    837 				{
    838 				$prefix=$1;
    839 				}
    840 			elsif (/^--libdir=(.*)$/)
    841 				{
    842 				$libdir=$1;
    843 				}
    844 			elsif (/^--openssldir=(.*)$/)
    845 				{
    846 				$openssldir=$1;
    847 				}
    848 			elsif (/^--install.prefix=(.*)$/)
    849 				{
    850 				$install_prefix=$1;
    851 				}
    852 			elsif (/^--with-krb5-(dir|lib|include|flavor)=(.*)$/)
    853 				{
    854 				$withargs{"krb5-".$1}=$2;
    855 				}
    856 			elsif (/^--with-zlib-lib=(.*)$/)
    857 				{
    858 				$withargs{"zlib-lib"}=$1;
    859 				}
    860 			elsif (/^--with-zlib-include=(.*)$/)
    861 				{
    862 				$withargs{"zlib-include"}="-I$1";
    863 				}
    864 			elsif (/^--with-fipsdir=(.*)$/)
    865 				{
    866 				$fipsdir="$1/";
    867 				}
    868 			elsif (/^--with-fipslibdir=(.*)$/)
    869 				{
    870 				$fipslibdir="$1/";
    871 				}
    872 			elsif (/^--with-baseaddr=(.*)$/)
    873 				{
    874 				$baseaddr="$1";
    875 				}
    876 			elsif (/^--cross-compile-prefix=(.*)$/)
    877 				{
    878 				$cross_compile_prefix=$1;
    879 				}
    880 			else
    881 				{
    882 				print STDERR $usage;
    883 				exit(1);
    884 				}
    885 			}
    886 		elsif ($_ =~ /^([^:]+):(.+)$/)
    887 			{
    888 			eval "\$table{\$1} = \"$2\""; # allow $xxx constructs in the string
    889 			$target=$1;
    890 			}
    891 		else
    892 			{
    893 			die "target already defined - $target (offending arg: $_)\n" if ($target ne "");
    894 			$target=$_;
    895 			}
    896 
    897 		unless ($_ eq $target || /^no-/ || /^disable-/)
    898 			{
    899 			# "no-..." follows later after implied disactivations
    900 			# have been derived.  (Don't take this too seroiusly,
    901 			# we really only write OPTIONS to the Makefile out of
    902 			# nostalgia.)
    903 
    904 			if ($options eq "")
    905 				{ $options = $_; }
    906 			else
    907 				{ $options .= " ".$_; }
    908 			}
    909 		}
    910 	}
    911 
    912 
    913 
    914 if ($processor eq "386")
    915 	{
    916 	$disabled{"sse2"} = "forced";
    917 	}
    918 
    919 if (!defined($withargs{"krb5-flavor"}) || $withargs{"krb5-flavor"} eq "")
    920 	{
    921 	$disabled{"krb5"} = "krb5-flavor not specified";
    922 	}
    923 
    924 if (!defined($disabled{"zlib-dynamic"}))
    925 	{
    926 	# "zlib-dynamic" was specifically enabled, so enable "zlib"
    927 	delete $disabled{"zlib"};
    928 	}
    929 
    930 if (defined($disabled{"rijndael"}))
    931 	{
    932 	$disabled{"aes"} = "forced";
    933 	}
    934 if (defined($disabled{"des"}))
    935 	{
    936 	$disabled{"mdc2"} = "forced";
    937 	}
    938 if (defined($disabled{"ec"}))
    939 	{
    940 	$disabled{"ecdsa"} = "forced";
    941 	$disabled{"ecdh"} = "forced";
    942 	}
    943 
    944 # SSL 2.0 requires MD5 and RSA
    945 if (defined($disabled{"md5"}) || defined($disabled{"rsa"}))
    946 	{
    947 	$disabled{"ssl2"} = "forced";
    948 	}
    949 
    950 if ($fips && $fipslibdir eq "")
    951 	{
    952 	$fipslibdir = $fipsdir . "lib/";
    953 	}
    954 
    955 # SSL 3.0 and TLS requires MD5 and SHA and either RSA or DSA+DH
    956 if (defined($disabled{"md5"}) || defined($disabled{"sha"})
    957     || (defined($disabled{"rsa"})
    958         && (defined($disabled{"dsa"}) || defined($disabled{"dh"}))))
    959 	{
    960 	$disabled{"ssl3"} = "forced";
    961 	$disabled{"tls1"} = "forced";
    962 	}
    963 
    964 if (defined($disabled{"tls1"}))
    965 	{
    966 	$disabled{"tlsext"} = "forced";
    967 	}
    968 
    969 if (defined($disabled{"ec"}) || defined($disabled{"dsa"})
    970     || defined($disabled{"dh"}))
    971 	{
    972 	$disabled{"gost"} = "forced";
    973 	}
    974 
    975 # SRP requires TLSEXT
    976 if (defined($disabled{"tlsext"}))
    977 	{
    978 	$disabled{"srp"} = "forced";
    979 	}
    980 
    981 if ($target eq "TABLE") {
    982 	foreach $target (sort keys %table) {
    983 		print_table_entry($target);
    984 	}
    985 	exit 0;
    986 }
    987 
    988 if ($target eq "LIST") {
    989 	foreach (sort keys %table) {
    990 		print;
    991 		print "\n";
    992 	}
    993 	exit 0;
    994 }
    995 
    996 if ($target =~ m/^CygWin32(-.*)$/) {
    997 	$target = "Cygwin".$1;
    998 }
    999 
   1000 print "Configuring for $target\n";
   1001 
   1002 &usage if (!defined($table{$target}));
   1003 
   1004 
   1005 foreach (sort (keys %disabled))
   1006 	{
   1007 	$options .= " no-$_";
   1008 
   1009 	printf "    no-%-12s %-10s", $_, "[$disabled{$_}]";
   1010 
   1011 	if (/^dso$/)
   1012 		{ $no_dso = 1; }
   1013 	elsif (/^threads$/)
   1014 		{ $no_threads = 1; }
   1015 	elsif (/^shared$/)
   1016 		{ $no_shared = 1; }
   1017 	elsif (/^zlib$/)
   1018 		{ $zlib = 0; }
   1019 	elsif (/^static-engine$/)
   1020 		{ }
   1021 	elsif (/^zlib-dynamic$/)
   1022 		{ }
   1023 	elsif (/^symlinks$/)
   1024 		{ $symlink = 0; }
   1025 	elsif (/^sse2$/)
   1026 		{ $no_sse2 = 1; }
   1027 	else
   1028 		{
   1029 		my ($ALGO, $algo);
   1030 		($ALGO = $algo = $_) =~ tr/[\-a-z]/[_A-Z]/;
   1031 
   1032 		if (/^asm$/ || /^err$/ || /^hw$/ || /^hw-/)
   1033 			{
   1034 			$openssl_other_defines .= "#define OPENSSL_NO_$ALGO\n";
   1035 			print " OPENSSL_NO_$ALGO";
   1036 		
   1037 			if (/^err$/)	{ $flags .= "-DOPENSSL_NO_ERR "; }
   1038 			elsif (/^asm$/)	{ $no_asm = 1; }
   1039 			}
   1040 		else
   1041 			{
   1042 			$openssl_algorithm_defines .= "#define OPENSSL_NO_$ALGO\n";
   1043 			print " OPENSSL_NO_$ALGO";
   1044 
   1045 			if (/^krb5$/)
   1046 				{ $no_krb5 = 1; }
   1047 			else
   1048 				{
   1049 				push @skip, $algo;
   1050 				print " (skip dir)";
   1051 
   1052 				$depflags .= " -DOPENSSL_NO_$ALGO";
   1053 				}
   1054 			}
   1055 		}
   1056 
   1057 	print "\n";
   1058 	}
   1059 
   1060 my $exp_cflags = "";
   1061 foreach (sort @experimental)
   1062 	{
   1063 	my $ALGO;
   1064 	($ALGO = $_) =~ tr/[a-z]/[A-Z]/;
   1065 
   1066 	# opensslconf.h will set OPENSSL_NO_... unless OPENSSL_EXPERIMENTAL_... is defined
   1067 	$openssl_experimental_defines .= "#define OPENSSL_NO_$ALGO\n";
   1068 	$exp_cflags .= " -DOPENSSL_EXPERIMENTAL_$ALGO";
   1069 	}
   1070 
   1071 my $IsMK1MF=scalar grep /^$target$/,@MK1MF_Builds;
   1072 
   1073 $exe_ext=".exe" if ($target eq "Cygwin" || $target eq "DJGPP" || $target =~ /^mingw/);
   1074 $exe_ext=".nlm" if ($target =~ /netware/);
   1075 $exe_ext=".pm"  if ($target =~ /vos/);
   1076 $openssldir="/usr/local/ssl" if ($openssldir eq "" and $prefix eq "");
   1077 $prefix=$openssldir if $prefix eq "";
   1078 
   1079 $default_ranlib= &which("ranlib") or $default_ranlib="true";
   1080 $perl=$ENV{'PERL'} or $perl=&which("perl5") or $perl=&which("perl")
   1081   or $perl="perl";
   1082 my $make = $ENV{'MAKE'} || "make";
   1083 
   1084 $cross_compile_prefix=$ENV{'CROSS_COMPILE'} if $cross_compile_prefix eq "";
   1085 
   1086 chop $openssldir if $openssldir =~ /\/$/;
   1087 chop $prefix if $prefix =~ /.\/$/;
   1088 
   1089 $openssldir=$prefix . "/ssl" if $openssldir eq "";
   1090 $openssldir=$prefix . "/" . $openssldir if $openssldir !~ /(^\/|^[a-zA-Z]:[\\\/])/;
   1091 
   1092 
   1093 print "IsMK1MF=$IsMK1MF\n";
   1094 
   1095 my @fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
   1096 my $cc = $fields[$idx_cc];
   1097 # Allow environment CC to override compiler...
   1098 if($ENV{CC}) {
   1099     $cc = $ENV{CC};
   1100 }
   1101 my $cflags = $fields[$idx_cflags];
   1102 my $unistd = $fields[$idx_unistd];
   1103 my $thread_cflag = $fields[$idx_thread_cflag];
   1104 my $sys_id = $fields[$idx_sys_id];
   1105 my $lflags = $fields[$idx_lflags];
   1106 my $bn_ops = $fields[$idx_bn_ops];
   1107 my $cpuid_obj = $fields[$idx_cpuid_obj];
   1108 my $bn_obj = $fields[$idx_bn_obj];
   1109 my $des_obj = $fields[$idx_des_obj];
   1110 my $aes_obj = $fields[$idx_aes_obj];
   1111 my $bf_obj = $fields[$idx_bf_obj];
   1112 my $md5_obj = $fields[$idx_md5_obj];
   1113 my $sha1_obj = $fields[$idx_sha1_obj];
   1114 my $cast_obj = $fields[$idx_cast_obj];
   1115 my $rc4_obj = $fields[$idx_rc4_obj];
   1116 my $rmd160_obj = $fields[$idx_rmd160_obj];
   1117 my $rc5_obj = $fields[$idx_rc5_obj];
   1118 my $wp_obj = $fields[$idx_wp_obj];
   1119 my $cmll_obj = $fields[$idx_cmll_obj];
   1120 my $perlasm_scheme = $fields[$idx_perlasm_scheme];
   1121 my $dso_scheme = $fields[$idx_dso_scheme];
   1122 my $shared_target = $fields[$idx_shared_target];
   1123 my $shared_cflag = $fields[$idx_shared_cflag];
   1124 my $shared_ldflag = $fields[$idx_shared_ldflag];
   1125 my $shared_extension = $fields[$idx_shared_extension];
   1126 my $ranlib = $ENV{'RANLIB'} || $fields[$idx_ranlib];
   1127 my $ar = $ENV{'AR'} || "ar";
   1128 my $arflags = $fields[$idx_arflags];
   1129 my $multilib = $fields[$idx_multilib];
   1130 
   1131 # if $prefix/lib$multilib is not an existing directory, then
   1132 # assume that it's not searched by linker automatically, in
   1133 # which case adding $multilib suffix causes more grief than
   1134 # we're ready to tolerate, so don't...
   1135 $multilib="" if !-d "$prefix/lib$multilib";
   1136 
   1137 $libdir="lib$multilib" if $libdir eq "";
   1138 
   1139 $cflags = "$cflags$exp_cflags";
   1140 
   1141 # '%' in $lflags is used to split flags to "pre-" and post-flags
   1142 my ($prelflags,$postlflags)=split('%',$lflags);
   1143 if (defined($postlflags))	{ $lflags=$postlflags;	}
   1144 else				{ $lflags=$prelflags; undef $prelflags;	}
   1145 
   1146 if ($target =~ /^mingw/ && `$cc --target-help 2>&1` !~ m/\-mno\-cygwin/m)
   1147 	{
   1148 	$cflags =~ s/\-mno\-cygwin\s*//;
   1149 	$shared_ldflag =~ s/\-mno\-cygwin\s*//;
   1150 	}
   1151 
   1152 my $no_shared_warn=0;
   1153 my $no_user_cflags=0;
   1154 
   1155 if ($flags ne "")	{ $cflags="$flags$cflags"; }
   1156 else			{ $no_user_cflags=1;       }
   1157 
   1158 # Kerberos settings.  The flavor must be provided from outside, either through
   1159 # the script "config" or manually.
   1160 if (!$no_krb5)
   1161 	{
   1162 	my ($lresolv, $lpath, $lext);
   1163 	if ($withargs{"krb5-flavor"} =~ /^[Hh]eimdal$/)
   1164 		{
   1165 		die "Sorry, Heimdal is currently not supported\n";
   1166 		}
   1167 	##### HACK to force use of Heimdal.
   1168 	##### WARNING: Since we don't really have adequate support for Heimdal,
   1169 	#####          using this will break the build.  You'll have to make
   1170 	#####          changes to the source, and if you do, please send
   1171 	#####          patches to openssl-dev (a] openssl.org
   1172 	if ($withargs{"krb5-flavor"} =~ /^force-[Hh]eimdal$/)
   1173 		{
   1174 		warn "Heimdal isn't really supported.  Your build WILL break\n";
   1175 		warn "If you fix the problems, please send a patch to openssl-dev\@openssl.org\n";
   1176 		$withargs{"krb5-dir"} = "/usr/heimdal"
   1177 			if $withargs{"krb5-dir"} eq "";
   1178 		$withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
   1179 			"/lib -lgssapi -lkrb5 -lcom_err"
   1180 			if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
   1181 		$cflags="-DKRB5_HEIMDAL $cflags";
   1182 		}
   1183 	if ($withargs{"krb5-flavor"} =~ /^[Mm][Ii][Tt]/)
   1184 		{
   1185 		$withargs{"krb5-dir"} = "/usr/kerberos"
   1186 			if $withargs{"krb5-dir"} eq "";
   1187 		$withargs{"krb5-lib"} = "-L".$withargs{"krb5-dir"}.
   1188 			"/lib -lgssapi_krb5 -lkrb5 -lcom_err -lk5crypto"
   1189 			if $withargs{"krb5-lib"} eq "" && !$IsMK1MF;
   1190 		$cflags="-DKRB5_MIT $cflags";
   1191 		$withargs{"krb5-flavor"} =~ s/^[Mm][Ii][Tt][._-]*//;
   1192 		if ($withargs{"krb5-flavor"} =~ /^1[._-]*[01]/)
   1193 			{
   1194 			$cflags="-DKRB5_MIT_OLD11 $cflags";
   1195 			}
   1196 		}
   1197 	LRESOLV:
   1198 	foreach $lpath ("/lib", "/usr/lib")
   1199 		{
   1200 		foreach $lext ("a", "so")
   1201 			{
   1202 			$lresolv = "$lpath/libresolv.$lext";
   1203 			last LRESOLV	if (-r "$lresolv");
   1204 			$lresolv = "";
   1205 			}
   1206 		}
   1207 	$withargs{"krb5-lib"} .= " -lresolv"
   1208 		if ("$lresolv" ne "");
   1209 	$withargs{"krb5-include"} = "-I".$withargs{"krb5-dir"}."/include"
   1210 		if $withargs{"krb5-include"} eq "" &&
   1211 		   $withargs{"krb5-dir"} ne "";
   1212 	}
   1213 
   1214 # The DSO code currently always implements all functions so that no
   1215 # applications will have to worry about that from a compilation point
   1216 # of view. However, the "method"s may return zero unless that platform
   1217 # has support compiled in for them. Currently each method is enabled
   1218 # by a define "DSO_<name>" ... we translate the "dso_scheme" config
   1219 # string entry into using the following logic;
   1220 my $dso_cflags;
   1221 if (!$no_dso && $dso_scheme ne "")
   1222 	{
   1223 	$dso_scheme =~ tr/[a-z]/[A-Z]/;
   1224 	if ($dso_scheme eq "DLFCN")
   1225 		{
   1226 		$dso_cflags = "-DDSO_DLFCN -DHAVE_DLFCN_H";
   1227 		}
   1228 	elsif ($dso_scheme eq "DLFCN_NO_H")
   1229 		{
   1230 		$dso_cflags = "-DDSO_DLFCN";
   1231 		}
   1232 	else
   1233 		{
   1234 		$dso_cflags = "-DDSO_$dso_scheme";
   1235 		}
   1236 	$cflags = "$dso_cflags $cflags";
   1237 	}
   1238 
   1239 my $thread_cflags;
   1240 my $thread_defines;
   1241 if ($thread_cflag ne "(unknown)" && !$no_threads)
   1242 	{
   1243 	# If we know how to do it, support threads by default.
   1244 	$threads = 1;
   1245 	}
   1246 if ($thread_cflag eq "(unknown)" && $threads)
   1247 	{
   1248 	# If the user asked for "threads", [s]he is also expected to
   1249 	# provide any system-dependent compiler options that are
   1250 	# necessary.
   1251 	if ($no_user_cflags)
   1252 		{
   1253 		print "You asked for multi-threading support, but didn't\n";
   1254 		print "provide any system-specific compiler options\n";
   1255 		exit(1);
   1256 		}
   1257 	$thread_cflags="-DOPENSSL_THREADS $cflags" ;
   1258 	$thread_defines .= "#define OPENSSL_THREADS\n";
   1259 	}
   1260 else
   1261 	{
   1262 	$thread_cflags="-DOPENSSL_THREADS $thread_cflag $cflags";
   1263 	$thread_defines .= "#define OPENSSL_THREADS\n";
   1264 #	my $def;
   1265 #	foreach $def (split ' ',$thread_cflag)
   1266 #		{
   1267 #		if ($def =~ s/^-D// && $def !~ /^_/)
   1268 #			{
   1269 #			$thread_defines .= "#define $def\n";
   1270 #			}
   1271 #		}
   1272 	}	
   1273 
   1274 $lflags="$libs$lflags" if ($libs ne "");
   1275 
   1276 if ($no_asm)
   1277 	{
   1278 	$cpuid_obj=$bn_obj=
   1279 	$des_obj=$aes_obj=$bf_obj=$cast_obj=$rc4_obj=$rc5_obj=$cmll_obj=
   1280 	$sha1_obj=$md5_obj=$rmd160_obj=$wp_obj="";
   1281 	}
   1282 
   1283 if (!$no_shared)
   1284 	{
   1285 	$cast_obj="";	# CAST assembler is not PIC
   1286 	}
   1287 
   1288 if ($threads)
   1289 	{
   1290 	$cflags=$thread_cflags;
   1291 	$openssl_thread_defines .= $thread_defines;
   1292 	}
   1293 
   1294 if ($zlib)
   1295 	{
   1296 	$cflags = "-DZLIB $cflags";
   1297 	if (defined($disabled{"zlib-dynamic"}))
   1298 		{
   1299 		if (defined($withargs{"zlib-lib"}))
   1300 			{
   1301 			$lflags = "$lflags -L" . $withargs{"zlib-lib"} . " -lz";
   1302 			}
   1303 		else
   1304 			{
   1305 			$lflags = "$lflags -lz";
   1306 			}
   1307 		}
   1308 	else
   1309 		{
   1310 		$cflags = "-DZLIB_SHARED $cflags";
   1311 		}
   1312 	}
   1313 
   1314 # You will find shlib_mark1 and shlib_mark2 explained in Makefile.org
   1315 my $shared_mark = "";
   1316 if ($shared_target eq "")
   1317 	{
   1318 	$no_shared_warn = 1 if !$no_shared;
   1319 	$no_shared = 1;
   1320 	}
   1321 if (!$no_shared)
   1322 	{
   1323 	if ($shared_cflag ne "")
   1324 		{
   1325 		$cflags = "$shared_cflag -DOPENSSL_PIC $cflags";
   1326 		}
   1327 	}
   1328 
   1329 if (!$IsMK1MF)
   1330 	{
   1331 	# add {no-}static-engine to options to allow mkdef.pl to work without extra arguments
   1332 	if ($no_shared)
   1333 		{
   1334 		$openssl_other_defines.="#define OPENSSL_NO_DYNAMIC_ENGINE\n";
   1335 		$options.=" static-engine";
   1336 		}
   1337 	else
   1338 		{
   1339 		$openssl_other_defines.="#define OPENSSL_NO_STATIC_ENGINE\n";
   1340 		$options.=" no-static-engine";
   1341 		}
   1342 	}
   1343 
   1344 $cpuid_obj.=" uplink.o uplink-cof.o" if ($cflags =~ /\-DOPENSSL_USE_APPLINK/);
   1345 
   1346 #
   1347 # Platform fix-ups
   1348 #
   1349 if ($target =~ /\-icc$/)	# Intel C compiler
   1350 	{
   1351 	my $iccver=0;
   1352 	if (open(FD,"$cc -V 2>&1 |"))
   1353 		{
   1354 		while(<FD>) { $iccver=$1 if (/Version ([0-9]+)\./); }
   1355 		close(FD);
   1356 		}
   1357 	if ($iccver>=8)
   1358 		{
   1359 		# Eliminate unnecessary dependency from libirc.a. This is
   1360 		# essential for shared library support, as otherwise
   1361 		# apps/openssl can end up in endless loop upon startup...
   1362 		$cflags.=" -Dmemcpy=__builtin_memcpy -Dmemset=__builtin_memset";
   1363 		}
   1364 	if ($iccver>=9)
   1365 		{
   1366 		$cflags.=" -i-static";
   1367 		$cflags=~s/\-no_cpprt/-no-cpprt/;
   1368 		}
   1369 	if ($iccver>=10)
   1370 		{
   1371 		$cflags=~s/\-i\-static/-static-intel/;
   1372 		}
   1373 	}
   1374 
   1375 # Unlike other OSes (like Solaris, Linux, Tru64, IRIX) BSD run-time
   1376 # linkers (tested OpenBSD, NetBSD and FreeBSD) "demand" RPATH set on
   1377 # .so objects. Apparently application RPATH is not global and does
   1378 # not apply to .so linked with other .so. Problem manifests itself
   1379 # when libssl.so fails to load libcrypto.so. One can argue that we
   1380 # should engrave this into Makefile.shared rules or into BSD-* config
   1381 # lines above. Meanwhile let's try to be cautious and pass -rpath to
   1382 # linker only when --prefix is not /usr.
   1383 if ($target =~ /^BSD\-/)
   1384 	{
   1385 	$shared_ldflag.=" -Wl,-rpath,\$(LIBRPATH)" if ($prefix !~ m|^/usr[/]*$|);
   1386 	}
   1387 
   1388 if ($sys_id ne "")
   1389 	{
   1390 	#$cflags="-DOPENSSL_SYSNAME_$sys_id $cflags";
   1391 	$openssl_sys_defines="#define OPENSSL_SYSNAME_$sys_id\n";
   1392 	}
   1393 
   1394 if ($ranlib eq "")
   1395 	{
   1396 	$ranlib = $default_ranlib;
   1397 	}
   1398 
   1399 #my ($bn1)=split(/\s+/,$bn_obj);
   1400 #$bn1 = "" unless defined $bn1;
   1401 #$bn1=$bn_asm unless ($bn1 =~ /\.o$/);
   1402 #$bn_obj="$bn1";
   1403 
   1404 $cpuid_obj="" if ($processor eq "386");
   1405 
   1406 $bn_obj = $bn_asm unless $bn_obj ne "";
   1407 # bn-586 is the only one implementing bn_*_part_words
   1408 $cflags.=" -DOPENSSL_BN_ASM_PART_WORDS" if ($bn_obj =~ /bn-586/);
   1409 $cflags.=" -DOPENSSL_IA32_SSE2" if (!$no_sse2 && $bn_obj =~ /86/);
   1410 
   1411 $cflags.=" -DOPENSSL_BN_ASM_MONT" if ($bn_obj =~ /-mont/);
   1412 
   1413 if ($fips)
   1414 	{
   1415 	$openssl_other_defines.="#define OPENSSL_FIPS\n";
   1416 	$cflags .= " -I\$(FIPSDIR)include";
   1417 	}
   1418 
   1419 $cpuid_obj="mem_clr.o"	unless ($cpuid_obj =~ /\.o$/);
   1420 $des_obj=$des_enc	unless ($des_obj =~ /\.o$/);
   1421 $bf_obj=$bf_enc		unless ($bf_obj =~ /\.o$/);
   1422 $cast_obj=$cast_enc	unless ($cast_obj =~ /\.o$/);
   1423 $rc4_obj=$rc4_enc	unless ($rc4_obj =~ /\.o$/);
   1424 $rc5_obj=$rc5_enc	unless ($rc5_obj =~ /\.o$/);
   1425 if ($sha1_obj =~ /\.o$/)
   1426 	{
   1427 #	$sha1_obj=$sha1_enc;
   1428 	$cflags.=" -DSHA1_ASM"   if ($sha1_obj =~ /sx86/ || $sha1_obj =~ /sha1/);
   1429 	$cflags.=" -DSHA256_ASM" if ($sha1_obj =~ /sha256/);
   1430 	$cflags.=" -DSHA512_ASM" if ($sha1_obj =~ /sha512/);
   1431 	if ($sha1_obj =~ /sse2/)
   1432 	    {	if ($no_sse2)
   1433 		{   $sha1_obj =~ s/\S*sse2\S+//;        }
   1434 		elsif ($cflags !~ /OPENSSL_IA32_SSE2/)
   1435 		{   $cflags.=" -DOPENSSL_IA32_SSE2";    }
   1436 	    }
   1437 	}
   1438 if ($md5_obj =~ /\.o$/)
   1439 	{
   1440 #	$md5_obj=$md5_enc;
   1441 	$cflags.=" -DMD5_ASM";
   1442 	}
   1443 if ($rmd160_obj =~ /\.o$/)
   1444 	{
   1445 #	$rmd160_obj=$rmd160_enc;
   1446 	$cflags.=" -DRMD160_ASM";
   1447 	}
   1448 if ($aes_obj =~ /\.o$/)
   1449 	{
   1450 	$cflags.=" -DAES_ASM";
   1451 	$aes_obj =~ s/\s*aesni\-x86\.o// if ($no_sse2);
   1452 	}
   1453 else	{
   1454 	$aes_obj=$aes_enc;
   1455 	}
   1456 $wp_obj="" if ($wp_obj =~ /mmx/ && $processor eq "386");
   1457 if ($wp_obj =~ /\.o$/)
   1458 	{
   1459 	$cflags.=" -DWHIRLPOOL_ASM";
   1460 	}
   1461 else	{
   1462 	$wp_obj="wp_block.o";
   1463 	}
   1464 $cmll_obj=$cmll_enc	unless ($cmll_obj =~ /.o$/);
   1465 
   1466 # "Stringify" the C flags string.  This permits it to be made part of a string
   1467 # and works as well on command lines.
   1468 $cflags =~ s/([\\\"])/\\\1/g;
   1469 
   1470 my $version = "unknown";
   1471 my $version_num = "unknown";
   1472 my $major = "unknown";
   1473 my $minor = "unknown";
   1474 my $shlib_version_number = "unknown";
   1475 my $shlib_version_history = "unknown";
   1476 my $shlib_major = "unknown";
   1477 my $shlib_minor = "unknown";
   1478 
   1479 open(IN,'<crypto/opensslv.h') || die "unable to read opensslv.h:$!\n";
   1480 while (<IN>)
   1481 	{
   1482 	$version=$1 if /OPENSSL.VERSION.TEXT.*OpenSSL (\S+) /;
   1483 	$version_num=$1 if /OPENSSL.VERSION.NUMBER.*0x(\S+)/;
   1484 	$shlib_version_number=$1 if /SHLIB_VERSION_NUMBER *"([^"]+)"/;
   1485 	$shlib_version_history=$1 if /SHLIB_VERSION_HISTORY *"([^"]*)"/;
   1486 	}
   1487 close(IN);
   1488 if ($shlib_version_history ne "") { $shlib_version_history .= ":"; }
   1489 
   1490 if ($version =~ /(^[0-9]*)\.([0-9\.]*)/)
   1491 	{
   1492 	$major=$1;
   1493 	$minor=$2;
   1494 	}
   1495 
   1496 if ($shlib_version_number =~ /(^[0-9]*)\.([0-9\.]*)/)
   1497 	{
   1498 	$shlib_major=$1;
   1499 	$shlib_minor=$2;
   1500 	}
   1501 
   1502 if ($strict_warnings)
   1503 	{
   1504 	my $wopt;
   1505 	die "ERROR --strict-warnings requires gcc" unless ($cc =~ /gcc$/);
   1506 	foreach $wopt (split /\s+/, $gcc_devteam_warn)
   1507 		{
   1508 		$cflags .= " $wopt" unless ($cflags =~ /$wopt/)
   1509 		}
   1510 	}
   1511 
   1512 open(IN,'<Makefile.org') || die "unable to read Makefile.org:$!\n";
   1513 unlink("$Makefile.new") || die "unable to remove old $Makefile.new:$!\n" if -e "$Makefile.new";
   1514 open(OUT,">$Makefile.new") || die "unable to create $Makefile.new:$!\n";
   1515 print OUT "### Generated automatically from Makefile.org by Configure.\n\n";
   1516 my $sdirs=0;
   1517 while (<IN>)
   1518 	{
   1519 	chomp;
   1520 	$sdirs = 1 if /^SDIRS=/;
   1521 	if ($sdirs) {
   1522 		my $dir;
   1523 		foreach $dir (@skip) {
   1524 			s/(\s)$dir /$1/;
   1525 			s/\s$dir$//;
   1526 			}
   1527 		}
   1528 	$sdirs = 0 unless /\\$/;
   1529         s/engines // if (/^DIRS=/ && $disabled{"engine"});
   1530 	s/ccgost// if (/^ENGDIRS=/ && $disabled{"gost"});
   1531 	s/^VERSION=.*/VERSION=$version/;
   1532 	s/^MAJOR=.*/MAJOR=$major/;
   1533 	s/^MINOR=.*/MINOR=$minor/;
   1534 	s/^SHLIB_VERSION_NUMBER=.*/SHLIB_VERSION_NUMBER=$shlib_version_number/;
   1535 	s/^SHLIB_VERSION_HISTORY=.*/SHLIB_VERSION_HISTORY=$shlib_version_history/;
   1536 	s/^SHLIB_MAJOR=.*/SHLIB_MAJOR=$shlib_major/;
   1537 	s/^SHLIB_MINOR=.*/SHLIB_MINOR=$shlib_minor/;
   1538 	s/^SHLIB_EXT=.*/SHLIB_EXT=$shared_extension/;
   1539 	s/^INSTALLTOP=.*$/INSTALLTOP=$prefix/;
   1540 	s/^MULTILIB=.*$/MULTILIB=$multilib/;
   1541 	s/^OPENSSLDIR=.*$/OPENSSLDIR=$openssldir/;
   1542 	s/^LIBDIR=.*$/LIBDIR=$libdir/;
   1543 	s/^INSTALL_PREFIX=.*$/INSTALL_PREFIX=$install_prefix/;
   1544 	s/^PLATFORM=.*$/PLATFORM=$target/;
   1545 	s/^OPTIONS=.*$/OPTIONS=$options/;
   1546 	s/^CONFIGURE_ARGS=.*$/CONFIGURE_ARGS=$argvstring/;
   1547 	if ($cross_compile_prefix)
   1548 		{
   1549 		s/^CC=.*$/CROSS_COMPILE= $cross_compile_prefix\nCC= \$\(CROSS_COMPILE\)$cc/;
   1550 		s/^AR=\s*/AR= \$\(CROSS_COMPILE\)/;
   1551 		s/^NM=\s*/NM= \$\(CROSS_COMPILE\)/;
   1552 		s/^RANLIB=\s*/RANLIB= \$\(CROSS_COMPILE\)/;
   1553 		s/^MAKEDEPPROG=.*$/MAKEDEPPROG= \$\(CROSS_COMPILE\)$cc/ if $cc eq "gcc";
   1554 		}
   1555 	else	{
   1556 		s/^CC=.*$/CC= $cc/;
   1557 		s/^AR=\s*ar/AR= $ar/;
   1558 		s/^RANLIB=.*/RANLIB= $ranlib/;
   1559 		s/^MAKEDEPPROG=.*$/MAKEDEPPROG= $cc/ if $cc eq "gcc";
   1560 		}
   1561 	s/^CFLAG=.*$/CFLAG= $cflags/;
   1562 	s/^DEPFLAG=.*$/DEPFLAG=$depflags/;
   1563 	s/^PEX_LIBS=.*$/PEX_LIBS= $prelflags/;
   1564 	s/^EX_LIBS=.*$/EX_LIBS= $lflags/;
   1565 	s/^EXE_EXT=.*$/EXE_EXT= $exe_ext/;
   1566 	s/^CPUID_OBJ=.*$/CPUID_OBJ= $cpuid_obj/;
   1567 	s/^BN_ASM=.*$/BN_ASM= $bn_obj/;
   1568 	s/^DES_ENC=.*$/DES_ENC= $des_obj/;
   1569 	s/^AES_ENC=.*$/AES_ENC= $aes_obj/;
   1570 	s/^BF_ENC=.*$/BF_ENC= $bf_obj/;
   1571 	s/^CAST_ENC=.*$/CAST_ENC= $cast_obj/;
   1572 	s/^RC4_ENC=.*$/RC4_ENC= $rc4_obj/;
   1573 	s/^RC5_ENC=.*$/RC5_ENC= $rc5_obj/;
   1574 	s/^MD5_ASM_OBJ=.*$/MD5_ASM_OBJ= $md5_obj/;
   1575 	s/^SHA1_ASM_OBJ=.*$/SHA1_ASM_OBJ= $sha1_obj/;
   1576 	s/^RMD160_ASM_OBJ=.*$/RMD160_ASM_OBJ= $rmd160_obj/;
   1577 	s/^WP_ASM_OBJ=.*$/WP_ASM_OBJ= $wp_obj/;
   1578 	s/^CMLL_ENC=.*$/CMLL_ENC= $cmll_obj/;
   1579 	s/^PERLASM_SCHEME=.*$/PERLASM_SCHEME= $perlasm_scheme/;
   1580 	s/^PROCESSOR=.*/PROCESSOR= $processor/;
   1581 	s/^ARFLAGS=.*/ARFLAGS= $arflags/;
   1582 	s/^PERL=.*/PERL= $perl/;
   1583 	s/^KRB5_INCLUDES=.*/KRB5_INCLUDES=$withargs{"krb5-include"}/;
   1584 	s/^LIBKRB5=.*/LIBKRB5=$withargs{"krb5-lib"}/;
   1585 	s/^LIBZLIB=.*/LIBZLIB=$withargs{"zlib-lib"}/;
   1586 	s/^ZLIB_INCLUDE=.*/ZLIB_INCLUDE=$withargs{"zlib-include"}/;
   1587 
   1588 	s/^FIPSDIR=.*/FIPSDIR=$fipsdir/;
   1589 	s/^FIPSLIBDIR=.*/FIPSLIBDIR=$fipslibdir/;
   1590 	s/^FIPSCANLIB=.*/FIPSCANLIB=libcrypto/ if $fips;
   1591 	s/^BASEADDR=.*/BASEADDR=$baseaddr/;
   1592 
   1593 	s/^SHLIB_TARGET=.*/SHLIB_TARGET=$shared_target/;
   1594 	s/^SHLIB_MARK=.*/SHLIB_MARK=$shared_mark/;
   1595 	s/^SHARED_LIBS=.*/SHARED_LIBS=\$(SHARED_CRYPTO) \$(SHARED_SSL)/ if (!$no_shared);
   1596 	if ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*$/)
   1597 		{
   1598 		my $sotmp = $1;
   1599 		s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp/;
   1600 		}
   1601 	elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.dylib$/)
   1602 		{
   1603 		s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.dylib/;
   1604 		}
   1605 	elsif ($shared_extension ne "" && $shared_extension =~ /^\.s([ol])\.[^\.]*\.[^\.]*$/)
   1606 		{
   1607 		my $sotmp = $1;
   1608 		s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.s$sotmp.\$(SHLIB_MAJOR) .s$sotmp/;
   1609 		}
   1610 	elsif ($shared_extension ne "" && $shared_extension =~ /^\.[^\.]*\.[^\.]*\.dylib$/)
   1611 		{
   1612 		s/^SHARED_LIBS_LINK_EXTS=.*/SHARED_LIBS_LINK_EXTS=.\$(SHLIB_MAJOR).dylib .dylib/;
   1613 		}
   1614 	s/^SHARED_LDFLAGS=.*/SHARED_LDFLAGS=$shared_ldflag/;
   1615 	print OUT $_."\n";
   1616 	}
   1617 close(IN);
   1618 close(OUT);
   1619 rename($Makefile,"$Makefile.bak") || die "unable to rename $Makefile\n" if -e $Makefile;
   1620 rename("$Makefile.new",$Makefile) || die "unable to rename $Makefile.new\n";
   1621 
   1622 print "CC            =$cc\n";
   1623 print "CFLAG         =$cflags\n";
   1624 print "EX_LIBS       =$lflags\n";
   1625 print "CPUID_OBJ     =$cpuid_obj\n";
   1626 print "BN_ASM        =$bn_obj\n";
   1627 print "DES_ENC       =$des_obj\n";
   1628 print "AES_ENC       =$aes_obj\n";
   1629 print "BF_ENC        =$bf_obj\n";
   1630 print "CAST_ENC      =$cast_obj\n";
   1631 print "RC4_ENC       =$rc4_obj\n";
   1632 print "RC5_ENC       =$rc5_obj\n";
   1633 print "MD5_OBJ_ASM   =$md5_obj\n";
   1634 print "SHA1_OBJ_ASM  =$sha1_obj\n";
   1635 print "RMD160_OBJ_ASM=$rmd160_obj\n";
   1636 print "CMLL_ENC=     =$cmll_obj\n";
   1637 print "PROCESSOR     =$processor\n";
   1638 print "RANLIB        =$ranlib\n";
   1639 print "ARFLAGS       =$arflags\n";
   1640 print "PERL          =$perl\n";
   1641 print "KRB5_INCLUDES =",$withargs{"krb5-include"},"\n"
   1642 	if $withargs{"krb5-include"} ne "";
   1643 
   1644 my $des_ptr=0;
   1645 my $des_risc1=0;
   1646 my $des_risc2=0;
   1647 my $des_unroll=0;
   1648 my $bn_ll=0;
   1649 my $def_int=2;
   1650 my $rc4_int=$def_int;
   1651 my $md2_int=$def_int;
   1652 my $idea_int=$def_int;
   1653 my $rc2_int=$def_int;
   1654 my $rc4_idx=0;
   1655 my $rc4_chunk=0;
   1656 my $bf_ptr=0;
   1657 my @type=("char","short","int","long");
   1658 my ($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0);
   1659 my $export_var_as_fn=0;
   1660 
   1661 my $des_int;
   1662 
   1663 foreach (sort split(/\s+/,$bn_ops))
   1664 	{
   1665 	$des_ptr=1 if /DES_PTR/;
   1666 	$des_risc1=1 if /DES_RISC1/;
   1667 	$des_risc2=1 if /DES_RISC2/;
   1668 	$des_unroll=1 if /DES_UNROLL/;
   1669 	$des_int=1 if /DES_INT/;
   1670 	$bn_ll=1 if /BN_LLONG/;
   1671 	$rc4_int=0 if /RC4_CHAR/;
   1672 	$rc4_int=3 if /RC4_LONG/;
   1673 	$rc4_idx=1 if /RC4_INDEX/;
   1674 	$rc4_chunk=1 if /RC4_CHUNK/;
   1675 	$rc4_chunk=2 if /RC4_CHUNK_LL/;
   1676 	$md2_int=0 if /MD2_CHAR/;
   1677 	$md2_int=3 if /MD2_LONG/;
   1678 	$idea_int=1 if /IDEA_SHORT/;
   1679 	$idea_int=3 if /IDEA_LONG/;
   1680 	$rc2_int=1 if /RC2_SHORT/;
   1681 	$rc2_int=3 if /RC2_LONG/;
   1682 	$bf_ptr=1 if $_ eq "BF_PTR";
   1683 	$bf_ptr=2 if $_ eq "BF_PTR2";
   1684 	($b64l,$b64,$b32,$b16,$b8)=(0,1,0,0,0) if /SIXTY_FOUR_BIT/;
   1685 	($b64l,$b64,$b32,$b16,$b8)=(1,0,0,0,0) if /SIXTY_FOUR_BIT_LONG/;
   1686 	($b64l,$b64,$b32,$b16,$b8)=(0,0,1,0,0) if /THIRTY_TWO_BIT/;
   1687 	($b64l,$b64,$b32,$b16,$b8)=(0,0,0,1,0) if /SIXTEEN_BIT/;
   1688 	($b64l,$b64,$b32,$b16,$b8)=(0,0,0,0,1) if /EIGHT_BIT/;
   1689 	$export_var_as_fn=1 if /EXPORT_VAR_AS_FN/;
   1690 	}
   1691 
   1692 open(IN,'<crypto/opensslconf.h.in') || die "unable to read crypto/opensslconf.h.in:$!\n";
   1693 unlink("crypto/opensslconf.h.new") || die "unable to remove old crypto/opensslconf.h.new:$!\n" if -e "crypto/opensslconf.h.new";
   1694 open(OUT,'>crypto/opensslconf.h.new') || die "unable to create crypto/opensslconf.h.new:$!\n";
   1695 print OUT "/* opensslconf.h */\n";
   1696 print OUT "/* WARNING: Generated automatically from opensslconf.h.in by Configure. */\n\n";
   1697 
   1698 print OUT "/* OpenSSL was configured with the following options: */\n";
   1699 my $openssl_algorithm_defines_trans = $openssl_algorithm_defines;
   1700 $openssl_experimental_defines =~ s/^\s*#\s*define\s+OPENSSL_NO_(.*)/#ifndef OPENSSL_EXPERIMENTAL_$1\n# ifndef OPENSSL_NO_$1\n#  define OPENSSL_NO_$1\n# endif\n#endif/mg;
   1701 $openssl_algorithm_defines_trans =~ s/^\s*#\s*define\s+OPENSSL_(.*)/# if defined(OPENSSL_$1) \&\& !defined($1)\n#  define $1\n# endif/mg;
   1702 $openssl_algorithm_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
   1703 $openssl_algorithm_defines = "   /* no ciphers excluded */\n" if $openssl_algorithm_defines eq "";
   1704 $openssl_thread_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
   1705 $openssl_sys_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
   1706 $openssl_other_defines =~ s/^\s*#\s*define\s+(.*)/#ifndef $1\n# define $1\n#endif/mg;
   1707 print OUT $openssl_sys_defines;
   1708 print OUT "#ifndef OPENSSL_DOING_MAKEDEPEND\n\n";
   1709 print OUT $openssl_experimental_defines;
   1710 print OUT "\n";
   1711 print OUT $openssl_algorithm_defines;
   1712 print OUT "\n#endif /* OPENSSL_DOING_MAKEDEPEND */\n\n";
   1713 print OUT $openssl_thread_defines;
   1714 print OUT $openssl_other_defines,"\n";
   1715 
   1716 print OUT "/* The OPENSSL_NO_* macros are also defined as NO_* if the application\n";
   1717 print OUT "   asks for it.  This is a transient feature that is provided for those\n";
   1718 print OUT "   who haven't had the time to do the appropriate changes in their\n";
   1719 print OUT "   applications.  */\n";
   1720 print OUT "#ifdef OPENSSL_ALGORITHM_DEFINES\n";
   1721 print OUT $openssl_algorithm_defines_trans;
   1722 print OUT "#endif\n\n";
   1723 
   1724 print OUT "#define OPENSSL_CPUID_OBJ\n\n" if ($cpuid_obj ne "mem_clr.o");
   1725 
   1726 while (<IN>)
   1727 	{
   1728 	if	(/^#define\s+OPENSSLDIR/)
   1729 		{
   1730 		my $foo = $openssldir;
   1731 		$foo =~ s/\\/\\\\/g;
   1732 		print OUT "#define OPENSSLDIR \"$foo\"\n";
   1733 		}
   1734 	elsif	(/^#define\s+ENGINESDIR/)
   1735 		{
   1736 		my $foo = "$prefix/$libdir/engines";
   1737 		$foo =~ s/\\/\\\\/g;
   1738 		print OUT "#define ENGINESDIR \"$foo\"\n";
   1739 		}
   1740 	elsif	(/^#((define)|(undef))\s+OPENSSL_EXPORT_VAR_AS_FUNCTION/)
   1741 		{ printf OUT "#undef OPENSSL_EXPORT_VAR_AS_FUNCTION\n"
   1742 			if $export_var_as_fn;
   1743 		  printf OUT "#%s OPENSSL_EXPORT_VAR_AS_FUNCTION\n",
   1744 			($export_var_as_fn)?"define":"undef"; }
   1745 	elsif	(/^#define\s+OPENSSL_UNISTD/)
   1746 		{
   1747 		$unistd = "<unistd.h>" if $unistd eq "";
   1748 		print OUT "#define OPENSSL_UNISTD $unistd\n";
   1749 		}
   1750 	elsif	(/^#((define)|(undef))\s+SIXTY_FOUR_BIT_LONG/)
   1751 		{ printf OUT "#%s SIXTY_FOUR_BIT_LONG\n",($b64l)?"define":"undef"; }
   1752 	elsif	(/^#((define)|(undef))\s+SIXTY_FOUR_BIT/)
   1753 		{ printf OUT "#%s SIXTY_FOUR_BIT\n",($b64)?"define":"undef"; }
   1754 	elsif	(/^#((define)|(undef))\s+THIRTY_TWO_BIT/)
   1755 		{ printf OUT "#%s THIRTY_TWO_BIT\n",($b32)?"define":"undef"; }
   1756 	elsif	(/^#((define)|(undef))\s+SIXTEEN_BIT/)
   1757 		{ printf OUT "#%s SIXTEEN_BIT\n",($b16)?"define":"undef"; }
   1758 	elsif	(/^#((define)|(undef))\s+EIGHT_BIT/)
   1759 		{ printf OUT "#%s EIGHT_BIT\n",($b8)?"define":"undef"; }
   1760 	elsif	(/^#((define)|(undef))\s+BN_LLONG\s*$/)
   1761 		{ printf OUT "#%s BN_LLONG\n",($bn_ll)?"define":"undef"; }
   1762 	elsif	(/^\#define\s+DES_LONG\s+.*/)
   1763 		{ printf OUT "#define DES_LONG unsigned %s\n",
   1764 			($des_int)?'int':'long'; }
   1765 	elsif	(/^\#(define|undef)\s+DES_PTR/)
   1766 		{ printf OUT "#%s DES_PTR\n",($des_ptr)?'define':'undef'; }
   1767 	elsif	(/^\#(define|undef)\s+DES_RISC1/)
   1768 		{ printf OUT "#%s DES_RISC1\n",($des_risc1)?'define':'undef'; }
   1769 	elsif	(/^\#(define|undef)\s+DES_RISC2/)
   1770 		{ printf OUT "#%s DES_RISC2\n",($des_risc2)?'define':'undef'; }
   1771 	elsif	(/^\#(define|undef)\s+DES_UNROLL/)
   1772 		{ printf OUT "#%s DES_UNROLL\n",($des_unroll)?'define':'undef'; }
   1773 	elsif	(/^#define\s+RC4_INT\s/)
   1774 		{ printf OUT "#define RC4_INT unsigned %s\n",$type[$rc4_int]; }
   1775 	elsif	(/^#undef\s+RC4_CHUNK/)
   1776 		{
   1777 		printf OUT "#undef RC4_CHUNK\n" if $rc4_chunk==0;
   1778 		printf OUT "#define RC4_CHUNK unsigned long\n" if $rc4_chunk==1;
   1779 		printf OUT "#define RC4_CHUNK unsigned long long\n" if $rc4_chunk==2;
   1780 		}
   1781 	elsif	(/^#((define)|(undef))\s+RC4_INDEX/)
   1782 		{ printf OUT "#%s RC4_INDEX\n",($rc4_idx)?"define":"undef"; }
   1783 	elsif (/^#(define|undef)\s+I386_ONLY/)
   1784 		{ printf OUT "#%s I386_ONLY\n", ($processor eq "386")?
   1785 			"define":"undef"; }
   1786 	elsif	(/^#define\s+MD2_INT\s/)
   1787 		{ printf OUT "#define MD2_INT unsigned %s\n",$type[$md2_int]; }
   1788 	elsif	(/^#define\s+IDEA_INT\s/)
   1789 		{printf OUT "#define IDEA_INT unsigned %s\n",$type[$idea_int];}
   1790 	elsif	(/^#define\s+RC2_INT\s/)
   1791 		{printf OUT "#define RC2_INT unsigned %s\n",$type[$rc2_int];}
   1792 	elsif (/^#(define|undef)\s+BF_PTR/)
   1793 		{
   1794 		printf OUT "#undef BF_PTR\n" if $bf_ptr == 0;
   1795 		printf OUT "#define BF_PTR\n" if $bf_ptr == 1;
   1796 		printf OUT "#define BF_PTR2\n" if $bf_ptr == 2;
   1797 	        }
   1798 	else
   1799 		{ print OUT $_; }
   1800 	}
   1801 close(IN);
   1802 close(OUT);
   1803 rename("crypto/opensslconf.h","crypto/opensslconf.h.bak") || die "unable to rename crypto/opensslconf.h\n" if -e "crypto/opensslconf.h";
   1804 rename("crypto/opensslconf.h.new","crypto/opensslconf.h") || die "unable to rename crypto/opensslconf.h.new\n";
   1805 
   1806 
   1807 # Fix the date
   1808 
   1809 print "SIXTY_FOUR_BIT_LONG mode\n" if $b64l;
   1810 print "SIXTY_FOUR_BIT mode\n" if $b64;
   1811 print "THIRTY_TWO_BIT mode\n" if $b32;
   1812 print "SIXTEEN_BIT mode\n" if $b16;
   1813 print "EIGHT_BIT mode\n" if $b8;
   1814 print "DES_PTR used\n" if $des_ptr;
   1815 print "DES_RISC1 used\n" if $des_risc1;
   1816 print "DES_RISC2 used\n" if $des_risc2;
   1817 print "DES_UNROLL used\n" if $des_unroll;
   1818 print "DES_INT used\n" if $des_int;
   1819 print "BN_LLONG mode\n" if $bn_ll;
   1820 print "RC4 uses u$type[$rc4_int]\n" if $rc4_int != $def_int;
   1821 print "RC4_INDEX mode\n" if $rc4_idx;
   1822 print "RC4_CHUNK is undefined\n" if $rc4_chunk==0;
   1823 print "RC4_CHUNK is unsigned long\n" if $rc4_chunk==1;
   1824 print "RC4_CHUNK is unsigned long long\n" if $rc4_chunk==2;
   1825 print "MD2 uses u$type[$md2_int]\n" if $md2_int != $def_int;
   1826 print "IDEA uses u$type[$idea_int]\n" if $idea_int != $def_int;
   1827 print "RC2 uses u$type[$rc2_int]\n" if $rc2_int != $def_int;
   1828 print "BF_PTR used\n" if $bf_ptr == 1; 
   1829 print "BF_PTR2 used\n" if $bf_ptr == 2; 
   1830 
   1831 if($IsMK1MF) {
   1832 	open (OUT,">crypto/buildinf.h") || die "Can't open buildinf.h";
   1833 	printf OUT <<EOF;
   1834 #ifndef MK1MF_BUILD
   1835   /* auto-generated by Configure for crypto/cversion.c:
   1836    * for Unix builds, crypto/Makefile.ssl generates functional definitions;
   1837    * Windows builds (and other mk1mf builds) compile cversion.c with
   1838    * -DMK1MF_BUILD and use definitions added to this file by util/mk1mf.pl. */
   1839   #error "Windows builds (PLATFORM=$target) use mk1mf.pl-created Makefiles"
   1840 #endif
   1841 EOF
   1842 	close(OUT);
   1843 } else {
   1844 	my $make_command = "$make PERL=\'$perl\'";
   1845 	my $make_targets = "";
   1846 	$make_targets .= " links" if $symlink;
   1847 	$make_targets .= " depend" if $depflags ne $default_depflags && $make_depend;
   1848 	$make_targets .= " gentests" if $symlink;
   1849 	(system $make_command.$make_targets) == 0 or exit $?
   1850 		if $make_targets ne "";
   1851 	if ( $perl =~ m@^/@) {
   1852 	    &dofile("tools/c_rehash",$perl,'^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";', '^my \$prefix;$', 'my $prefix = "' . $prefix . '";');
   1853 	    &dofile("apps/CA.pl",$perl,'^#!/', '#!%s');
   1854 	} else {
   1855 	    # No path for Perl known ...
   1856 	    &dofile("tools/c_rehash",'/usr/local/bin/perl','^#!/', '#!%s','^my \$dir;$', 'my $dir = "' . $openssldir . '";',  '^my \$prefix;$', 'my $prefix = "' . $prefix . '";');
   1857 	    &dofile("apps/CA.pl",'/usr/local/bin/perl','^#!/', '#!%s');
   1858 	}
   1859 	if ($depflags ne $default_depflags && !$make_depend) {
   1860 		print <<EOF;
   1861 
   1862 Since you've disabled or enabled at least one algorithm, you need to do
   1863 the following before building:
   1864 
   1865 	make depend
   1866 EOF
   1867 	}
   1868 }
   1869 
   1870 # create the ms/version32.rc file if needed
   1871 if ($IsMK1MF && ($target !~ /^netware/)) {
   1872 	my ($v1, $v2, $v3, $v4);
   1873 	if ($version_num =~ /(^[0-9a-f]{1})([0-9a-f]{2})([0-9a-f]{2})([0-9a-f]{2})/i) {
   1874 		$v1=hex $1;
   1875 		$v2=hex $2;
   1876 		$v3=hex $3;
   1877 		$v4=hex $4;
   1878 	}
   1879 	open (OUT,">ms/version32.rc") || die "Can't open ms/version32.rc";
   1880 	print OUT <<EOF;
   1881 #include <winver.h>
   1882 
   1883 LANGUAGE 0x09,0x01
   1884 
   1885 1 VERSIONINFO
   1886   FILEVERSION $v1,$v2,$v3,$v4
   1887   PRODUCTVERSION $v1,$v2,$v3,$v4
   1888   FILEFLAGSMASK 0x3fL
   1889 #ifdef _DEBUG
   1890   FILEFLAGS 0x01L
   1891 #else
   1892   FILEFLAGS 0x00L
   1893 #endif
   1894   FILEOS VOS__WINDOWS32
   1895   FILETYPE VFT_DLL
   1896   FILESUBTYPE 0x0L
   1897 BEGIN
   1898     BLOCK "StringFileInfo"
   1899     BEGIN
   1900 	BLOCK "040904b0"
   1901 	BEGIN
   1902 	    // Required:	    
   1903 	    VALUE "CompanyName", "The OpenSSL Project, http://www.openssl.org/\\0"
   1904 	    VALUE "FileDescription", "OpenSSL Shared Library\\0"
   1905 	    VALUE "FileVersion", "$version\\0"
   1906 #if defined(CRYPTO)
   1907 	    VALUE "InternalName", "libeay32\\0"
   1908 	    VALUE "OriginalFilename", "libeay32.dll\\0"
   1909 #elif defined(SSL)
   1910 	    VALUE "InternalName", "ssleay32\\0"
   1911 	    VALUE "OriginalFilename", "ssleay32.dll\\0"
   1912 #endif
   1913 	    VALUE "ProductName", "The OpenSSL Toolkit\\0"
   1914 	    VALUE "ProductVersion", "$version\\0"
   1915 	    // Optional:
   1916 	    //VALUE "Comments", "\\0"
   1917 	    VALUE "LegalCopyright", "Copyright  1998-2005 The OpenSSL Project. Copyright  1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved.\\0"
   1918 	    //VALUE "LegalTrademarks", "\\0"
   1919 	    //VALUE "PrivateBuild", "\\0"
   1920 	    //VALUE "SpecialBuild", "\\0"
   1921 	END
   1922     END
   1923     BLOCK "VarFileInfo"
   1924     BEGIN
   1925         VALUE "Translation", 0x409, 0x4b0
   1926     END
   1927 END
   1928 EOF
   1929 	close(OUT);
   1930   }
   1931   
   1932 print <<EOF;
   1933 
   1934 Configured for $target.
   1935 EOF
   1936 
   1937 print <<\EOF if (!$no_threads && !$threads);
   1938 
   1939 The library could not be configured for supporting multi-threaded
   1940 applications as the compiler options required on this system are not known.
   1941 See file INSTALL for details if you need multi-threading.
   1942 EOF
   1943 
   1944 print <<\EOF if ($no_shared_warn);
   1945 
   1946 You gave the option 'shared'.  Normally, that would give you shared libraries.
   1947 Unfortunately, the OpenSSL configuration doesn't include shared library support
   1948 for this platform yet, so it will pretend you gave the option 'no-shared'.  If
   1949 you can inform the developpers (openssl-dev\@openssl.org) how to support shared
   1950 libraries on this platform, they will at least look at it and try their best
   1951 (but please first make sure you have tried with a current version of OpenSSL).
   1952 EOF
   1953 
   1954 exit(0);
   1955 
   1956 sub usage
   1957 	{
   1958 	print STDERR $usage;
   1959 	print STDERR "\npick os/compiler from:\n";
   1960 	my $j=0;
   1961 	my $i;
   1962         my $k=0;
   1963 	foreach $i (sort keys %table)
   1964 		{
   1965 		next if $i =~ /^debug/;
   1966 		$k += length($i) + 1;
   1967 		if ($k > 78)
   1968 			{
   1969 			print STDERR "\n";
   1970 			$k=length($i);
   1971 			}
   1972 		print STDERR $i . " ";
   1973 		}
   1974 	foreach $i (sort keys %table)
   1975 		{
   1976 		next if $i !~ /^debug/;
   1977 		$k += length($i) + 1;
   1978 		if ($k > 78)
   1979 			{
   1980 			print STDERR "\n";
   1981 			$k=length($i);
   1982 			}
   1983 		print STDERR $i . " ";
   1984 		}
   1985 	print STDERR "\n\nNOTE: If in doubt, on Unix-ish systems use './config'.\n";
   1986 	exit(1);
   1987 	}
   1988 
   1989 sub which
   1990 	{
   1991 	my($name)=@_;
   1992 	my $path;
   1993 	foreach $path (split /:/, $ENV{PATH})
   1994 		{
   1995 		if (-f "$path/$name$exe_ext" and -x _)
   1996 			{
   1997 			return "$path/$name$exe_ext" unless ($name eq "perl" and
   1998 			 system("$path/$name$exe_ext -e " . '\'exit($]<5.0);\''));
   1999 			}
   2000 		}
   2001 	}
   2002 
   2003 sub dofile
   2004 	{
   2005 	my $f; my $p; my %m; my @a; my $k; my $ff;
   2006 	($f,$p,%m)=@_;
   2007 
   2008 	open(IN,"<$f.in") || open(IN,"<$f") || die "unable to open $f:$!\n";
   2009 	@a=<IN>;
   2010 	close(IN);
   2011 	foreach $k (keys %m)
   2012 		{
   2013 		grep(/$k/ && ($_=sprintf($m{$k}."\n",$p)),@a);
   2014 		}
   2015 	open(OUT,">$f.new") || die "unable to open $f.new:$!\n";
   2016 	print OUT @a;
   2017 	close(OUT);
   2018 	rename($f,"$f.bak") || die "unable to rename $f\n" if -e $f;
   2019 	rename("$f.new",$f) || die "unable to rename $f.new\n";
   2020 	}
   2021 
   2022 sub print_table_entry
   2023 	{
   2024 	my $target = shift;
   2025 
   2026 	(my $cc,my $cflags,my $unistd,my $thread_cflag,my $sys_id,my $lflags,
   2027 	my $bn_ops,my $cpuid_obj,my $bn_obj,my $des_obj,my $aes_obj, my $bf_obj,
   2028 	my $md5_obj,my $sha1_obj,my $cast_obj,my $rc4_obj,my $rmd160_obj,
   2029 	my $rc5_obj,my $wp_obj,my $cmll_obj,my $perlasm_scheme,my $dso_scheme,my $shared_target,my $shared_cflag,
   2030 	my $shared_ldflag,my $shared_extension,my $ranlib,my $arflags,my $multilib)=
   2031 	split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
   2032 			
   2033 	print <<EOF
   2034 
   2035 *** $target
   2036 \$cc           = $cc
   2037 \$cflags       = $cflags
   2038 \$unistd       = $unistd
   2039 \$thread_cflag = $thread_cflag
   2040 \$sys_id       = $sys_id
   2041 \$lflags       = $lflags
   2042 \$bn_ops       = $bn_ops
   2043 \$cpuid_obj    = $cpuid_obj
   2044 \$bn_obj       = $bn_obj
   2045 \$des_obj      = $des_obj
   2046 \$aes_obj      = $aes_obj
   2047 \$bf_obj       = $bf_obj
   2048 \$md5_obj      = $md5_obj
   2049 \$sha1_obj     = $sha1_obj
   2050 \$cast_obj     = $cast_obj
   2051 \$rc4_obj      = $rc4_obj
   2052 \$rmd160_obj   = $rmd160_obj
   2053 \$rc5_obj      = $rc5_obj
   2054 \$wp_obj       = $wp_obj
   2055 \$cmll_obj     = $cmll_obj
   2056 \$perlasm_scheme = $perlasm_scheme
   2057 \$dso_scheme   = $dso_scheme
   2058 \$shared_target= $shared_target
   2059 \$shared_cflag = $shared_cflag
   2060 \$shared_ldflag = $shared_ldflag
   2061 \$shared_extension = $shared_extension
   2062 \$ranlib       = $ranlib
   2063 \$arflags      = $arflags
   2064 \$multilib     = $multilib
   2065 EOF
   2066 	}
   2067 
   2068 sub test_sanity
   2069 	{
   2070 	my $errorcnt = 0;
   2071 
   2072 	print STDERR "=" x 70, "\n";
   2073 	print STDERR "=== SANITY TESTING!\n";
   2074 	print STDERR "=== No configuration will be done, all other arguments will be ignored!\n";
   2075 	print STDERR "=" x 70, "\n";
   2076 
   2077 	foreach $target (sort keys %table)
   2078 		{
   2079 		@fields = split(/\s*:\s*/,$table{$target} . ":" x 30 , -1);
   2080 
   2081 		if ($fields[$idx_dso_scheme-1] =~ /^(beos|dl|dlfcn|win32|vms)$/)
   2082 			{
   2083 			$errorcnt++;
   2084 			print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
   2085 			print STDERR "              in the previous field\n";
   2086 			}
   2087 		elsif ($fields[$idx_dso_scheme+1] =~ /^(beos|dl|dlfcn|win32|vms)$/)
   2088 			{
   2089 			$errorcnt++;
   2090 			print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] values\n";
   2091 			print STDERR "              in the following field\n";
   2092 			}
   2093 		elsif ($fields[$idx_dso_scheme] !~ /^(beos|dl|dlfcn|win32|vms|)$/)
   2094 			{
   2095 			$errorcnt++;
   2096 			print STDERR "SANITY ERROR: '$target' has the dso_scheme [$idx_dso_scheme] field = ",$fields[$idx_dso_scheme],"\n";
   2097 			print STDERR "              valid values are 'beos', 'dl', 'dlfcn', 'win32' and 'vms'\n";
   2098 			}
   2099 		}
   2100 	print STDERR "No sanity errors detected!\n" if $errorcnt == 0;
   2101 	return $errorcnt;
   2102 	}
   2103