forked from wolfSSL/wolfssl
cosmetic changes to OCSP Stapling options.
This commit is contained in:
92
configure.ac
92
configure.ac
@ -1469,6 +1469,50 @@ then
|
|||||||
fi
|
fi
|
||||||
|
|
||||||
|
|
||||||
|
# Certificate Status Request : a.k.a. OCSP Stapling
|
||||||
|
AC_ARG_ENABLE([ocspstapling],
|
||||||
|
[AS_HELP_STRING([--enable-ocspstapling],[Enable OCSP Stapling (default: disabled)])],
|
||||||
|
[ ENABLED_CERTIFICATE_STATUS_REQUEST=$enableval ],
|
||||||
|
[ ENABLED_CERTIFICATE_STATUS_REQUEST=no ]
|
||||||
|
)
|
||||||
|
|
||||||
|
if test "x$ENABLED_CERTIFICATE_STATUS_REQUEST" = "xyes"
|
||||||
|
then
|
||||||
|
AM_CFLAGS="$AM_CFLAGS -DHAVE_TLS_EXTENSIONS -DHAVE_CERTIFICATE_STATUS_REQUEST"
|
||||||
|
|
||||||
|
# Requires OCSP make sure on
|
||||||
|
if test "x$ENABLED_OCSP" = "xno"
|
||||||
|
then
|
||||||
|
ENABLED_OCSP="yes"
|
||||||
|
AM_CFLAGS="$AM_CFLAGS -DHAVE_OCSP"
|
||||||
|
AM_CONDITIONAL([BUILD_OCSP], [test "x$ENABLED_OCSP" = "xyes"])
|
||||||
|
fi
|
||||||
|
fi
|
||||||
|
|
||||||
|
AM_CONDITIONAL([BUILD_OCSP_STAPLING], [test "x$ENABLED_CERTIFICATE_STATUS_REQUEST" = "xyes"])
|
||||||
|
|
||||||
|
# Certificate Status Request v2 : a.k.a. OCSP stapling v2
|
||||||
|
AC_ARG_ENABLE([ocspstapling2],
|
||||||
|
[AS_HELP_STRING([--enable-ocspstapling2],[Enable OCSP Stapling v2 (default: disabled)])],
|
||||||
|
[ ENABLED_CERTIFICATE_STATUS_REQUEST_V2=$enableval ],
|
||||||
|
[ ENABLED_CERTIFICATE_STATUS_REQUEST_V2=no ]
|
||||||
|
)
|
||||||
|
|
||||||
|
if test "x$ENABLED_CERTIFICATE_STATUS_REQUEST_V2" = "xyes"
|
||||||
|
then
|
||||||
|
AM_CFLAGS="$AM_CFLAGS -DHAVE_TLS_EXTENSIONS -DHAVE_CERTIFICATE_STATUS_REQUEST_V2"
|
||||||
|
|
||||||
|
# Requires OCSP make sure on
|
||||||
|
if test "x$ENABLED_OCSP" = "xno"
|
||||||
|
then
|
||||||
|
ENABLED_OCSP="yes"
|
||||||
|
AM_CFLAGS="$AM_CFLAGS -DHAVE_OCSP"
|
||||||
|
AM_CONDITIONAL([BUILD_OCSP], [test "x$ENABLED_OCSP" = "xyes"])
|
||||||
|
fi
|
||||||
|
fi
|
||||||
|
|
||||||
|
AM_CONDITIONAL([BUILD_OCSP_STAPLING_V2], [test "x$ENABLED_CERTIFICATE_STATUS_REQUEST_V2" = "xyes"])
|
||||||
|
|
||||||
# CRL
|
# CRL
|
||||||
AC_ARG_ENABLE([crl],
|
AC_ARG_ENABLE([crl],
|
||||||
[ --enable-crl Enable CRL (default: disabled)],
|
[ --enable-crl Enable CRL (default: disabled)],
|
||||||
@ -1656,50 +1700,6 @@ then
|
|||||||
AM_CFLAGS="$AM_CFLAGS -DHAVE_TLS_EXTENSIONS -DHAVE_TRUNCATED_HMAC"
|
AM_CFLAGS="$AM_CFLAGS -DHAVE_TLS_EXTENSIONS -DHAVE_TRUNCATED_HMAC"
|
||||||
fi
|
fi
|
||||||
|
|
||||||
# Certificate Status Request : a.k.a. OCSP Stapling
|
|
||||||
AC_ARG_ENABLE([ocspstapling],
|
|
||||||
[AS_HELP_STRING([--enable-ocspstapling],[Enable OCSP Stapling (default: disabled)])],
|
|
||||||
[ ENABLED_CERTIFICATE_STATUS_REQUEST=$enableval ],
|
|
||||||
[ ENABLED_CERTIFICATE_STATUS_REQUEST=no ]
|
|
||||||
)
|
|
||||||
|
|
||||||
if test "x$ENABLED_CERTIFICATE_STATUS_REQUEST" = "xyes"
|
|
||||||
then
|
|
||||||
AM_CFLAGS="$AM_CFLAGS -DHAVE_TLS_EXTENSIONS -DHAVE_CERTIFICATE_STATUS_REQUEST"
|
|
||||||
|
|
||||||
# Requires OCSP make sure on
|
|
||||||
if test "x$ENABLED_OCSP" = "xno"
|
|
||||||
then
|
|
||||||
ENABLED_OCSP="yes"
|
|
||||||
AM_CFLAGS="$AM_CFLAGS -DHAVE_OCSP"
|
|
||||||
AM_CONDITIONAL([BUILD_OCSP], [test "x$ENABLED_OCSP" = "xyes"])
|
|
||||||
fi
|
|
||||||
fi
|
|
||||||
|
|
||||||
AM_CONDITIONAL([BUILD_OCSP_STAPLING], [test "x$ENABLED_CERTIFICATE_STATUS_REQUEST" = "xyes"])
|
|
||||||
|
|
||||||
# Certificate Status Request v2 : a.k.a. OCSP stapling v2
|
|
||||||
AC_ARG_ENABLE([ocspstapling2],
|
|
||||||
[AS_HELP_STRING([--enable-ocspstapling2],[Enable OCSP Stapling v2 (default: disabled)])],
|
|
||||||
[ ENABLED_CERTIFICATE_STATUS_REQUEST_V2=$enableval ],
|
|
||||||
[ ENABLED_CERTIFICATE_STATUS_REQUEST_V2=no ]
|
|
||||||
)
|
|
||||||
|
|
||||||
if test "x$ENABLED_CERTIFICATE_STATUS_REQUEST_V2" = "xyes"
|
|
||||||
then
|
|
||||||
AM_CFLAGS="$AM_CFLAGS -DHAVE_TLS_EXTENSIONS -DHAVE_CERTIFICATE_STATUS_REQUEST_V2"
|
|
||||||
|
|
||||||
# Requires OCSP make sure on
|
|
||||||
if test "x$ENABLED_OCSP" = "xno"
|
|
||||||
then
|
|
||||||
ENABLED_OCSP="yes"
|
|
||||||
AM_CFLAGS="$AM_CFLAGS -DHAVE_OCSP"
|
|
||||||
AM_CONDITIONAL([BUILD_OCSP], [test "x$ENABLED_OCSP" = "xyes"])
|
|
||||||
fi
|
|
||||||
fi
|
|
||||||
|
|
||||||
AM_CONDITIONAL([BUILD_OCSP_STAPLING_V2], [test "x$ENABLED_CERTIFICATE_STATUS_REQUEST_V2" = "xyes"])
|
|
||||||
|
|
||||||
# Renegotiation Indication - (FAKE Secure Renegotiation)
|
# Renegotiation Indication - (FAKE Secure Renegotiation)
|
||||||
AC_ARG_ENABLE([renegotiation-indication],
|
AC_ARG_ENABLE([renegotiation-indication],
|
||||||
[AS_HELP_STRING([--enable-renegotiation-indication],[Enable Renegotiation Indication (default: disabled)])],
|
[AS_HELP_STRING([--enable-renegotiation-indication],[Enable Renegotiation Indication (default: disabled)])],
|
||||||
@ -2750,6 +2750,8 @@ echo " * DTLS: $ENABLED_DTLS"
|
|||||||
echo " * Old TLS Versions: $ENABLED_OLD_TLS"
|
echo " * Old TLS Versions: $ENABLED_OLD_TLS"
|
||||||
echo " * SSL version 3.0: $ENABLED_SSLV3"
|
echo " * SSL version 3.0: $ENABLED_SSLV3"
|
||||||
echo " * OCSP: $ENABLED_OCSP"
|
echo " * OCSP: $ENABLED_OCSP"
|
||||||
|
echo " * OCSP Stapling: $ENABLED_CERTIFICATE_STATUS_REQUEST"
|
||||||
|
echo " * OCSP Stapling v2: $ENABLED_CERTIFICATE_STATUS_REQUEST_V2"
|
||||||
echo " * CRL: $ENABLED_CRL"
|
echo " * CRL: $ENABLED_CRL"
|
||||||
echo " * CRL-MONITOR: $ENABLED_CRL_MONITOR"
|
echo " * CRL-MONITOR: $ENABLED_CRL_MONITOR"
|
||||||
echo " * Persistent session cache: $ENABLED_SAVESESSION"
|
echo " * Persistent session cache: $ENABLED_SAVESESSION"
|
||||||
@ -2761,8 +2763,6 @@ echo " * Server Name Indication: $ENABLED_SNI"
|
|||||||
echo " * ALPN: $ENABLED_ALPN"
|
echo " * ALPN: $ENABLED_ALPN"
|
||||||
echo " * Maximum Fragment Length: $ENABLED_MAX_FRAGMENT"
|
echo " * Maximum Fragment Length: $ENABLED_MAX_FRAGMENT"
|
||||||
echo " * Truncated HMAC: $ENABLED_TRUNCATED_HMAC"
|
echo " * Truncated HMAC: $ENABLED_TRUNCATED_HMAC"
|
||||||
echo " * OCSP Stapling: $ENABLED_CERTIFICATE_STATUS_REQUEST"
|
|
||||||
echo " * OCSP Stapling v2: $ENABLED_CERTIFICATE_STATUS_REQUEST_V2"
|
|
||||||
echo " * Supported Elliptic Curves: $ENABLED_SUPPORTED_CURVES"
|
echo " * Supported Elliptic Curves: $ENABLED_SUPPORTED_CURVES"
|
||||||
echo " * Session Ticket: $ENABLED_SESSION_TICKET"
|
echo " * Session Ticket: $ENABLED_SESSION_TICKET"
|
||||||
echo " * Renegotiation Indication: $ENABLED_RENEGOTIATION_INDICATION"
|
echo " * Renegotiation Indication: $ENABLED_RENEGOTIATION_INDICATION"
|
||||||
|
Reference in New Issue
Block a user