OLD | NEW |
1 # Copyright (c) 2013 The Chromium Authors. All rights reserved. | 1 # Copyright (c) 2013 The Chromium Authors. All rights reserved. |
2 # Use of this source code is governed by a BSD-style license that can be | 2 # Use of this source code is governed by a BSD-style license that can be |
3 # found in the LICENSE file. | 3 # found in the LICENSE file. |
4 | 4 |
5 # This file declares build flags for the SSL library configuration. | 5 # This file declares build flags for the SSL library configuration. |
6 # | 6 # |
7 # TODO(brettw) this should probably be moved to src/crypto or somewhere, and | 7 # TODO(brettw) this should probably be moved to src/crypto or somewhere, and |
8 # the global build dependency on it should be removed. | 8 # the global build dependency on it should be removed. |
9 # | 9 # |
10 # PLEASE TRY TO AVOID ADDING FLAGS TO THIS FILE in cases where grit isn't | 10 # PLEASE TRY TO AVOID ADDING FLAGS TO THIS FILE in cases where grit isn't |
11 # required. See the declare_args block of BUILDCONFIG.gn for advice on how | 11 # required. See the declare_args block of BUILDCONFIG.gn for advice on how |
12 # to set up feature flags. | 12 # to set up feature flags. |
13 | 13 |
14 declare_args() { | 14 declare_args() { |
15 # Use OpenSSL instead of NSS. This is used for all platforms but iOS. (See | 15 use_openssl = true |
16 # http://crbug.com/338886). | |
17 use_openssl = !is_ios | |
18 } | 16 } |
19 | 17 |
20 # True when we're using OpenSSL for representing certificates. When targeting | 18 # True when we're using OpenSSL for representing certificates. When targeting |
21 # Android, the platform certificate library is used for certificate | 19 # Android, the platform certificate library is used for certificate |
22 # verification. On NaCl, verification isn't supported. On other targets, this | 20 # verification. On NaCl, verification isn't supported. On other targets, this |
23 # flag also enables OpenSSL for certificate verification, but this configuration | 21 # flag also enables OpenSSL for certificate verification, but this configuration |
24 # is unsupported. | 22 # is unsupported. |
25 use_openssl_certs = is_android || is_nacl | 23 use_openssl_certs = is_android || is_nacl |
26 | 24 |
27 # True if NSS is used for certificate handling. Note that this is independent | 25 # True if NSS is used for certificate handling. Note that this is independent |
28 # from use_openssl. It is possible to use OpenSSL for the crypto library, but | 26 # from use_openssl. It is possible to use OpenSSL for the crypto library, but |
29 # NSS for the platform certificate library. | 27 # NSS for the platform certificate library. |
30 use_nss_certs = is_linux | 28 use_nss_certs = is_linux |
31 | 29 |
32 # True if NSS is used for certificate verification. On non-OpenSSL iOS | 30 # True if NSS is used for certificate verification. On non-OpenSSL iOS |
33 # configurations, certificates use the operating system library, but the | 31 # configurations, certificates use the operating system library, but the |
34 # verifier uses the bundled copy of NSS. | 32 # verifier uses the bundled copy of NSS. |
35 use_nss_verifier = use_nss_certs || (is_ios && !use_openssl) | 33 use_nss_verifier = use_nss_certs || (is_ios && !use_openssl) |
OLD | NEW |