ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/configure.ac
(Generate patch)

Comparing gvpe/configure.ac (file contents):
Revision 1.33 by pcg, Tue Mar 1 06:27:20 2005 UTC vs.
Revision 1.67 by root, Thu Oct 25 07:31:58 2018 UTC

1dnl Process this file with autoconf to produce a configure script. 1dnl Process this file with autoconf to produce a configure script.
2 2
3AC_PREREQ(2.59) 3AC_PREREQ(2.69)
4AC_INIT 4AC_INIT(gvpe, 3.1)
5AC_CONFIG_SRCDIR([src/vped.C]) 5AC_CONFIG_SRCDIR([src/gvpe.C])
6AC_CANONICAL_TARGET 6AC_CANONICAL_TARGET
7AM_INIT_AUTOMAKE(gvpe, 1.7) 7AM_INIT_AUTOMAKE
8AC_CONFIG_HEADERS([config.h]) 8AC_CONFIG_HEADERS([config.h])
9AM_MAINTAINER_MODE 9AM_MAINTAINER_MODE
10 10
11AH_TOP([ 11AH_TOP([
12#ifndef CONFIG_H__ 12#ifndef CONFIG_H__
38typedef int16_t s16; 38typedef int16_t s16;
39typedef int32_t s32; 39typedef int32_t s32;
40#endif 40#endif
41 41
42#endif 42#endif
43])
44 43
45dnl Include the macros from the m4/ directory 44#if HAVE_CLOCALE
46AM_ACLOCAL_INCLUDE(m4) 45# define CLOCALE <clocale>
46#else
47# define CLOCALE <locale.h>
48#endif
49])
47 50
48AM_GNU_GETTEXT([external]) 51AM_GNU_GETTEXT([external])
49AM_GNU_GETTEXT_VERSION(0.11.5) 52AM_GNU_GETTEXT_VERSION(0.11.5)
50 53
51# Enable GNU extensions. 54# Enable GNU extensions.
52# Define this here, not in acconfig's @TOP@ section, since definitions 55# Define this here, not in acconfig's @TOP@ section, since definitions
53# in the latter don't make it into the configure-time tests. 56# in the latter don't make it into the configure-time tests.
54AC_DEFINE([_GNU_SOURCE], 1, [Enable GNU extenstions]) 57AC_DEFINE([_GNU_SOURCE], 1, [Enable GNU extensions])
55 58
56# do NOT define POSIX_SOURCE, sicne this clashes with many BSDs 59# do NOT define POSIX_SOURCE, sicne this clashes with many BSDs
57dnl AC_DEFINE([_POSIX_SOURCE], 1, [Enable POSIX 1003.1 extensions]) 60dnl AC_DEFINE([_POSIX_SOURCE], 1, [Enable POSIX 1003.1 extensions])
58dnl AC_DEFINE([_XOPEN_SOURCE], 500, [Enable XOPEN extensions]) 61dnl AC_DEFINE([_XOPEN_SOURCE], 500, [Enable XOPEN extensions])
59 62
60ALL_LINGUAS="" 63ALL_LINGUAS=""
61 64
62dnl Checks for programs. 65dnl Checks for programs.
63AC_PROG_CC
64AC_PROG_CPP 66AC_PROG_CPP
65AC_PROG_CXX 67AC_PROG_CXX
66AC_PROG_GCC_TRADITIONAL 68AC_PROG_GCC_TRADITIONAL
67AC_PROG_AWK 69AC_PROG_AWK
68AC_PROG_INSTALL 70AC_PROG_INSTALL
71AC_PROG_RANLIB 73AC_PROG_RANLIB
72 74
73AC_ARG_ENABLE(iftype, 75AC_ARG_ENABLE(iftype,
74 [AS_HELP_STRING(--enable-iftype=TYPE/SUBTYPE, 76 [AS_HELP_STRING(--enable-iftype=TYPE/SUBTYPE,
75 Use kernel/net device interface TYPE/SUBTYPE. 77 Use kernel/net device interface TYPE/SUBTYPE.
76 Working combinations are: 78 Working combinations are (see doc/gvpe.osdep.5.pod):
77 "native/linux" 79 "native/linux"
78 "tincd/linux" 80 "tincd/linux"
81 "tincd/netbsd"
79 "tincd/freebsd" 82 "tincd/freebsd"
80 "tincd/openbsd" 83 "tincd/openbsd"
84 "native/darwin"
81 "tincd/darwin" 85 "tincd/darwin"
82 "native/cygwin"; 86 "native/cygwin";
83 Untested combinations are: 87 Untested combinations are:
84 "tincd/netbsd" 88 "tincd/bsd"
85 "tincd/solaris" 89 "tincd/solaris"
86 "tincd/mingw"; 90 "tincd/mingw"
91 "tincd/raw_socket"
92 "tincd/uml_socket";
87 Broken combinations are: 93 Broken combinations are:
88 "tincd/cygwin"; 94 "tincd/cygwin";
89 The default is to autodetect. 95 The default is to autodetect.
90 )], 96 )],
91 [ 97 [
108 IFTYPE=tincd 114 IFTYPE=tincd
109 IFSUBTYPE=freebsd 115 IFSUBTYPE=freebsd
110 AC_DEFINE(HAVE_FREEBSD, 1, [FreeBSD]) 116 AC_DEFINE(HAVE_FREEBSD, 1, [FreeBSD])
111 ;; 117 ;;
112 *darwin*) 118 *darwin*)
113 IFTYPE=tincd 119 IFTYPE=native
114 IFSUBTYPE=darwin 120 IFSUBTYPE=darwin
115 AC_DEFINE(HAVE_DARWIN, 1, [Darwin (MacOS/X)]) 121 AC_DEFINE(HAVE_DARWIN, 1, [Darwin (MacOS/X)])
116 ;; 122 ;;
117 *solaris*) 123 *solaris*)
118 IFTYPE=tincd 124 IFTYPE=tincd
148AC_CACHE_SAVE 154AC_CACHE_SAVE
149 155
150dnl Checks for libraries. 156dnl Checks for libraries.
151 157
152AC_LANG(C++) 158AC_LANG(C++)
153AC_CHECK_HEADERS(ext/hash_map) 159AC_CHECK_HEADERS(tr1/unordered_map ext/hash_map clocale)
154 160
155dnl Checks for header files. 161dnl Checks for header files.
156AC_CHECK_HEADERS([fcntl.h inttypes.h limits.h malloc.h stdint.h strings.h syslog.h unistd.h \ 162AC_CHECK_HEADERS([fcntl.h inttypes.h limits.h malloc.h stdint.h strings.h syslog.h unistd.h \
157 sys/file.h sys/ioctl.h sys/param.h sys/time.h netinet/in_systm.h sys/cygwin.h \ 163 sys/file.h sys/ioctl.h sys/param.h sys/time.h netinet/in_systm.h sys/cygwin.h \
158 sys/mman.h netinet/in.h]) 164 sys/mman.h netinet/in.h])
216]) 222])
217AC_CHECK_FUNC(gethostbyname, [], [ 223AC_CHECK_FUNC(gethostbyname, [], [
218 AC_CHECK_LIB(nsl, gethostbyname) 224 AC_CHECK_LIB(nsl, gethostbyname)
219]) 225])
220 226
227dnl libev support
228m4_include([libev/libev.m4])
229
221AC_LANG_POP 230AC_LANG_POP
222 231
223dnl AC_CHECK_FUNCS([freeaddrinfo gai_strerror getaddrinfo getnameinfo]) 232dnl AC_CHECK_FUNCS([freeaddrinfo gai_strerror getaddrinfo getnameinfo])
224 233
225AC_CACHE_SAVE 234AC_CACHE_SAVE
226 235
227dnl These are defined in files in m4/ 236dnl These are defined in files in m4/
228tinc_TUNTAP 237tinc_TUNTAP
229 238
230tinc_OPENSSL 239PKG_CHECK_MODULES([LIBCRYPTO], [libcrypto >= 1])
231if test "x$openssl_include" != x; then 240
232 CXXFLAGS="$CXXFLAGS -I$openssl_include" 241AC_ARG_ENABLE(threads,
242 [AS_HELP_STRING(--enable-threads,try to use threads for long-running asynchronous operations (default enabled).)],
243 [try_threads=$enableval],
244 [try_threads=yes]
245)
246
247if test "x$try_threads" = xyes; then
248 AC_CHECK_HEADER(pthread.h,[
249 LIBS="$LIBS -lpthread"
250 AC_COMPILE_IFELSE(
251 [AC_LANG_PROGRAM([#include <pthread.h>], [pthread_t id; pthread_create (&id, 0, 0, 0);])],
252 [AC_DEFINE_UNQUOTED(ENABLE_PTHREADS, 1, [POSIX thread support.])]
253 )
254 ])
233fi 255fi
234dnl tinc_ZLIB
235 256
236AC_ARG_ENABLE(static-daemon, 257AC_ARG_ENABLE(static-daemon,
237 [AS_HELP_STRING(--enable-static-daemon,enable statically linked daemon.)], 258 [AS_HELP_STRING(--enable-static-daemon,enable statically linked daemon.)],
238 [LDFLAGS_DAEMON=-static] 259 [LDFLAGS_DAEMON=-static]
239) 260)
240AC_SUBST(LDFLAGS_DAEMON) 261AC_SUBST(LDFLAGS_DAEMON)
241 262
242AC_ARG_ENABLE(rohc, 263dnl AC_ARG_ENABLE(rohc,
243 [AS_HELP_STRING(--enable-rohc,enable robust header compression (rfc3095).)], 264dnl [AS_HELP_STRING(--enable-rohc,enable robust header compression (rfc3095).)],
265dnl [
266dnl echo
267dnl echo "**********************************************************************"
268dnl echo "**********************************************************************"
269dnl echo "**** --enable-rohc is highly experimental, do not use ****************"
270dnl echo "**********************************************************************"
271dnl echo "**********************************************************************"
272dnl echo
273dnl rohc=true
274dnl AC_DEFINE_UNQUOTED(ENABLE_ROHC, 1, [ROHC support])
275dnl ]
276dnl )
277
278AM_CONDITIONAL(ROHC, test x$rohc = xtrue)
279
280dnl AC_ARG_ENABLE(bridging,
281dnl [AS_HELP_STRING(--enable-bridging,enable bridging support (default disabled).)],
282dnl AC_DEFINE_UNQUOTED(ENABLE_BRIDGING, 1, [bridging support.])
283dnl )
284
285ICMP=1
286AC_ARG_ENABLE(icmp,
287 [AS_HELP_STRING(--disable-icmp,enable icmp protocol support (default enabled).)],
288 if test "x$enableval" = xno; then
289 ICMP=0
290 fi
291)
292if test "x$ICMP" = x1; then
293 AC_DEFINE_UNQUOTED(ENABLE_ICMP, 1, [ICMP protocol support.])
294fi
295
296TCP=1
297AC_ARG_ENABLE(tcp,
298 [AS_HELP_STRING(--disable-tcp,enable tcp protocol support (default enabled).)],
299 if test "x$enableval" = xno; then
300 TCP=0
301 fi
302)
303if test "x$TCP" = x1; then
304 AC_DEFINE_UNQUOTED(ENABLE_TCP, 1, [TCP protocol support.])
305fi
306
307HTTP=1
308AC_ARG_ENABLE(http-proxy,
309 [AS_HELP_STRING(--disable-http-proxy,enable http proxy connect support (default enabled).)],
310 if test "x$enableval" = xno; then
311 HTTP=0
312 fi
313)
314if test "x$HTTP" = x1; then
315 AC_DEFINE_UNQUOTED(ENABLE_HTTP_PROXY, 1, [http proxy connect support.])
316fi
317
318AC_ARG_ENABLE(dns,
319 [AS_HELP_STRING(--enable-dns,enable dns tunnel protocol support (default disabled).)],
244 [ 320 [
245 echo 321 AC_CHECK_HEADER(gmp.h,,[AC_MSG_ERROR([gmp.h not found, required for --enable-dns])])
246 echo "**********************************************************************" 322 AC_CHECK_LIB(gmp,main,,[AC_MSG_ERROR([libgmp not found, required for --enable-dns])])
247 echo "**********************************************************************" 323
248 echo "**** --enable-rohc is highly experimental, do not use ****************" 324 AC_DEFINE_UNQUOTED(ENABLE_DNS, 1, [DNS tunnel protocol support.])
249 echo "**********************************************************************"
250 echo "**********************************************************************"
251 echo
252 rohc=true
253 AC_DEFINE_UNQUOTED(ENABLE_ROHC, 1, [ROHC support])
254 ] 325 ]
255) 326)
256 327
257AM_CONDITIONAL(ROHC, test x$rohc = xtrue) 328RSA=3072
258 329AC_ARG_ENABLE(rsa-length,
259AC_ARG_ENABLE(icmp, 330 [AS_HELP_STRING(--enable-rsa-length=BITS,[
260 [AS_HELP_STRING(--enable-icmp,enable icmp protocol support (default disabled).)], 331 use BITS rsa keys (default 3072). Allowed values are 2048-10240.])],
261 AC_DEFINE_UNQUOTED(ENABLE_ICMP, 1, [ICMP protocol support.]) 332 RSA=$enableval
262) 333)
334AC_DEFINE_UNQUOTED(RSABITS, $RSA, [Size of RSA keys.])
263 335
264AC_ARG_ENABLE(tcp,
265 [AS_HELP_STRING(--enable-tcp,enable tcp protocol support (default disabled).)],
266 AC_DEFINE_UNQUOTED(ENABLE_TCP, 1, [TCP protocol support.])
267)
268
269AC_ARG_ENABLE(dns,
270 [AS_HELP_STRING(--enable-dns,enable dns tunnel protocol support (DOES NOT WORK).)],
271 AC_DEFINE_UNQUOTED(ENABLE_DNS, 1, [DNS tunnel protocol support.])
272)
273
274AC_ARG_ENABLE(http-proxy,
275 [AS_HELP_STRING(--enable-http-proxy,enable http proxy connect support (default disabled).)],
276 AC_DEFINE_UNQUOTED(ENABLE_HTTP_PROXY, 1, [http proxy connect support.])
277)
278
279HMAC=12 336HMACSIZE=12
280AC_ARG_ENABLE(hmac-length, 337AC_ARG_ENABLE(hmac-length,
281 [AS_HELP_STRING(--enable-hmac-length=BYTES,[ 338 [AS_HELP_STRING(--enable-hmac-length=BYTES,[
282 use a hmac of length BYTES bytes (default 12). Allowed values are 4, 8, 12, 16.])], 339 use a hmac of length BYTES bytes (default 12). Allowed values are 4, 8, 12, 16.])],
283 HMAC=$enableval 340 HMACSIZE=$enableval
284) 341)
285AC_DEFINE_UNQUOTED(HMACLENGTH, $HMAC, [Size of HMAC in each packet in bytes.]) 342AC_DEFINE_UNQUOTED(HMACLENGTH, $HMACSIZE, [Size of HMAC in each packet in bytes.])
286
287RAND=8
288AC_ARG_ENABLE(rand-length,
289 [AS_HELP_STRING(--enable-rand-length=BYTES,
290 [use BYTES bytes of extra randomness (default 8). Allowed values are 0, 4, 8.])],
291 RAND=$enableval
292)
293AC_DEFINE_UNQUOTED(RAND_SIZE, $RAND, [Add this many bytes of randomness to each packet.])
294 343
295MTU=1500 344MTU=1500
296AC_ARG_ENABLE(mtu, 345AC_ARG_ENABLE(max-mtu,
297 [AS_HELP_STRING(--enable-max-mtu=BYTES,enable mtu sizes upto BYTES bytes (default 1500). Use 9100 for jumbogram support.)], 346 [AS_HELP_STRING(--enable-max-mtu=BYTES,enable mtu sizes upto BYTES bytes (default 1500). Use 9100 for jumbogram support.)],
298 MTU=$enableval 347 MTU=$enableval
299) 348)
300AC_DEFINE_UNQUOTED(MAX_MTU, $MTU + 14, [Maximum MTU supported.]) 349AC_DEFINE_UNQUOTED(MAX_MTU, ($MTU + 14), [Maximum MTU supported.])
301 350
302COMPRESS=1 351COMPRESS=1
303AC_ARG_ENABLE(compression, 352AC_ARG_ENABLE(compression,
304 [AS_HELP_STRING(--disable-compression,Disable compression support.)], 353 [AS_HELP_STRING(--disable-compression,Disable compression support.)],
305 if test "x$enableval" = xno; then 354 if test "x$enableval" = xno; then
306 COMPRESS=0 355 COMPRESS=0
307 fi 356 fi
308) 357)
309AC_DEFINE_UNQUOTED(ENABLE_COMPRESSION, $COMPRESS, [Enable compression support.]) 358AC_DEFINE_UNQUOTED(ENABLE_COMPRESSION, $COMPRESS, [Enable compression support.])
310 359
311CIPHER=bf_cbc 360CIPHER=aes_128_ctr
312AC_ARG_ENABLE(cipher, 361AC_ARG_ENABLE(cipher,
313 [AS_HELP_STRING(--enable-cipher,[ 362 [AS_HELP_STRING(--enable-cipher=CIPHER,[
314 Select the symmetric cipher (default "bf"). 363 Select the symmetric cipher (default "aes-128").
315 Must be one of "bf" (blowfish), "aes-128" (rijndael), "aes-192" or "aes-256".])], 364 Must be one of "aes-128" (rijndael), "aes-192", or "aes-256".])],
316 if test "x$enableval" = xbf ; then CIPHER=bf_cbc ; fi 365 #if test "x$enableval" = xbf ; then CIPHER=bf_ctr ; fi
317 if test "x$enableval" = xaes-128; then CIPHER=aes_128_cbc; fi 366 if test "x$enableval" = xaes-128 ; then CIPHER=aes_128_ctr ; fi
318 if test "x$enableval" = xaes-192; then CIPHER=aes_192_cbc; fi 367 if test "x$enableval" = xaes-192 ; then CIPHER=aes_192_ctr ; fi
319 if test "x$enableval" = xaes-256; then CIPHER=aes_256_cbc; fi 368 if test "x$enableval" = xaes-256 ; then CIPHER=aes_256_ctr ; fi
369 #if test "x$enableval" = xcamellia-128; then CIPHER=camellia_128_ctr; fi
370 #if test "x$enableval" = xcamellia-256; then CIPHER=camellia_256_ctr; fi
320) 371)
321AC_DEFINE_UNQUOTED(ENABLE_CIPHER, EVP_${CIPHER}, [Select the symmetric cipher to use.]) 372AC_DEFINE_UNQUOTED(ENABLE_CIPHER, EVP_${CIPHER}, [Select the symmetric cipher to use.])
322 373
323DIGEST=sha1 374HMAC=sha1
324AC_ARG_ENABLE(digest, 375AC_ARG_ENABLE(hmac-digest,
325 [AS_HELP_STRING(--enable-digest,[ 376 [AS_HELP_STRING(--enable-hmac-digest=HMAC,[
326 Select the digets algorithm to use (default "sha1"). Must be one of 377 Select the HMAC digest algorithm to use (default "sha1"). Must be one of
327 "sha1", "ripemd160", "md5" or "md4" (insecure).])], 378 "sha512", "sha256", "sha1", "ripemd160", "whirlpool".])],
379 if test "x$enableval" = xwhirlpool; then HMAC=whirlpool; fi
380 if test "x$enableval" = xsha512 ; then HMAC=sha512 ; fi
381 if test "x$enableval" = xsha256 ; then HMAC=sha256 ; fi
328 if test "x$enableval" = xsha1 ; then DIGEST=sha1 ; fi 382 if test "x$enableval" = xsha1 ; then HMAC=sha1 ; fi
329 if test "x$enableval" = xripemd160; then DIGEST=ripemd160; fi 383 if test "x$enableval" = xripemd160; then HMAC=ripemd160; fi
384)
385AC_DEFINE_UNQUOTED(ENABLE_HMAC, EVP_${HMAC}, [Select the HMAC digest algorithm to use.])
386
387AUTH=sha512
388AC_ARG_ENABLE(auth-digest,
389 [AS_HELP_STRING(--enable-auth-digest=DIGEST,[
390 Select the hmac algorithm to use (default "sha512"). Must be one of
391 "sha512", "sha256", "whirlpool".])],
392 if test "x$enableval" = xwhirlpool; then AUTH=whirlpool; fi
330 if test "x$enableval" = xmd5 ; then DIGEST=md5 ; fi 393 if test "x$enableval" = xsha512 ; then AUTH=sha512 ; fi
331 if test "x$enableval" = xmd4 ; then DIGEST=md4 ; fi 394 if test "x$enableval" = xsha256 ; then AUTH=sha256 ; fi
332) 395)
333AC_DEFINE_UNQUOTED(ENABLE_DIGEST, EVP_${DIGEST}, [Select the digest algorithm to use.]) 396AC_DEFINE_UNQUOTED(ENABLE_AUTH, EVP_${AUTH}, [Select the auth digest algorithm to use.])
334 397
335if $CXX -v --help 2>&1 | grep -q fno-rtti; then 398if $CXX -v --help 2>&1 | grep -q fno-rtti; then
336 CXXFLAGS="$CXXFLAGS -fno-rtti" 399 CXXFLAGS="$CXXFLAGS -fno-rtti"
337fi 400fi
338 401
339if $CXX -v --help 2>&1 | grep -q fexceptions; then 402#if $CXX -v --help 2>&1 | grep -q fexceptions; then
340 CXXFLAGS="$CXXFLAGS -fno-exceptions" 403# CXXFLAGS="$CXXFLAGS -fno-exceptions"
341fi 404#fi
405
406LIBS="$EXTRA_LIBS $LIBS"
342 407
343dnl if $CXX -v --help 2>&1 | grep -q ffunction-sections; then 408dnl if $CXX -v --help 2>&1 | grep -q ffunction-sections; then
344dnl CXXFLAGS="$CXXFLAGS -ffunction-sections" 409dnl CXXFLAGS="$CXXFLAGS -ffunction-sections"
345dnl fi 410dnl fi
346dnl 411dnl
347dnl if $LD -v --help 2>&1 | grep -q gc-sections; then 412dnl if $LD -v --help 2>&1 | grep -q gc-sections; then
348dnl LDFLAGS="$LDFLAGS -Wl,--gc-sections" 413dnl LDFLAGS="$LDFLAGS -Wl,--gc-sections"
349dnl fi 414dnl fi
350 415
351AC_CONFIG_COMMANDS_POST([ 416AC_SUBST(AM_CPPFLAGS)
417
418AC_CONFIG_FILES([Makefile po/Makefile.in
419src/Makefile
420doc/Makefile
421lib/Makefile
422m4/Makefile
423])
424AC_OUTPUT
352 425
353echo 426echo
354echo "***" 427echo "***"
355echo "*** Configuration Summary" 428echo "*** Configuration Summary"
356echo "***" 429echo "***"
357echo "*** Kernel Iface: $IFTYPE/$IFSUBTYPE" 430echo "*** Kernel Iface: $IFTYPE/$IFSUBTYPE"
431echo "*** RSA size: $RSA"
358echo "*** Cipher used: $CIPHER" 432echo "*** Cipher used: $CIPHER"
359echo "*** Digest used: $DIGEST" 433echo "*** Digest used: $DIGEST"
434echo "*** Authdigest: $AUTH"
360echo "*** HMAC length: $HMAC" 435echo "*** HMAC length: $HMAC"
361echo "*** RAND used: $RAND"
362echo "*** Max. MTU: $MTU" 436echo "*** Max. MTU: $MTU"
363echo "*** Compression: $COMPRESS"
364 437
365if test "x$DIGEST" = xmd4; then
366echo "***" 438echo "***"
367echo "*** WARNING: The digest you have chosen ($DIGEST) is known to be insecure" 439echo "*** Enable options:"
368fi 440grep ENABLE_ config.h | sed -e 's/^/*** /'
369 441
370if test "$HMAC" -lt 12; then 442if test "$HMACSIZE" -lt 12; then
371echo "***" 443echo "***"
372echo "*** WARNING: The hmac length you have chosen ($HMAC) is probably insecure" 444echo "*** WARNING: The hmac length you have chosen ($HMACSIZE) is quite insecure"
373fi 445fi
374 446
375if test "$RAND" -lt 8; then
376echo "***" 447echo "***"
377echo "*** WARNING: The random prefix you have chosen ($RAND) is probably insecure"
378fi
379
380echo "***"
381
382echo 448echo
383 449
384]) 450if pkg-config --exists 'libcrypto >= 1.1 libcrypto < 2.0'; then
451 cat <<EOF
452@<:@33m
453***
454*** WARNING WARNING WARNING WARNING WARNING WARNING WARNING
455***
456*** You seem to configure gvpe with OpenSSL 1.1 or newer.
457*** While this probably compiles, please note that this is not only
458*** unsupported, but also discouraged.
459***
460*** It is recommended to use either OpenSSL 1.0, as long as that is still
461*** supported, or LibreSSL (https://www.libressl.org/).
462***
463*** This is not a political issue - while porting GVPE to the newer
464*** OpenSSL 1.1 API, I encountered two incompatible API changes that were
465*** not documented, were not caught while compiling but caused security
466*** issues. When reported, the reaction of the OpenSSL developers was to
467*** update the documentation.
468***
469*** As a result, I lost all confidence in the ability and desire of
470*** OpenSSL developers to create a safe API, and would highly recommend
471*** switching to LibreSSL which explicitly avoids such braking changes.
472***
473*** WARNING WARNING WARNING WARNING WARNING WARNING WARNING
474***
475*** Again, do not use OpenSSL 1.1 and complain if stuff breaks.
476*** You have been warned, but your choice is respected.
477***
478@<:@0m
385 479
386AC_SUBST(INCLUDES) 480EOF
481fi
387 482
388AC_CONFIG_FILES([Makefile po/Makefile.in 483
389src/Makefile
390doc/Makefile
391lib/Makefile
392m4/Makefile
393])
394AC_OUTPUT

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines