| OLD | NEW |
| 1 # Copyright (c) 2013 The Chromium Authors. All rights reserved. | 1 # Copyright (c) 2013 The Chromium Authors. All rights reserved. |
| 2 # Use of this source code is governed by a BSD-style license that can be | 2 # Use of this source code is governed by a BSD-style license that can be |
| 3 # found in the LICENSE file. | 3 # found in the LICENSE file. |
| 4 | 4 |
| 5 # This file declares build flags for the SSL library configuration. | 5 # This file declares build flags for the SSL library configuration. |
| 6 # | 6 # |
| 7 # TODO(brettw) this should probably be moved to src/crypto or somewhere, and | 7 # TODO(brettw) this should probably be moved to src/crypto or somewhere, and |
| 8 # the global build dependency on it should be removed. | 8 # the global build dependency on it should be removed. |
| 9 # | 9 # |
| 10 # PLEASE TRY TO AVOID ADDING FLAGS TO THIS FILE in cases where grit isn't | 10 # PLEASE TRY TO AVOID ADDING FLAGS TO THIS FILE in cases where grit isn't |
| 11 # required. See the declare_args block of BUILDCONFIG.gn for advice on how | 11 # required. See the declare_args block of BUILDCONFIG.gn for advice on how |
| 12 # to set up feature flags. | 12 # to set up feature flags. |
| 13 | 13 |
| 14 declare_args() { | 14 declare_args() { |
| 15 use_openssl = true | 15 use_openssl = true |
| 16 } | 16 } |
| 17 | 17 |
| 18 # True when we're using OpenSSL for representing certificates. When targeting | 18 # True when we're using OpenSSL for representing certificates. When targeting |
| 19 # Android, the platform certificate library is used for certificate | 19 # Android, the platform certificate library is used for certificate |
| 20 # verification. On NaCl, verification isn't supported. On other targets, this | 20 # verification. On NaCl, verification isn't supported. On other targets, this |
| 21 # flag also enables OpenSSL for certificate verification, but this configuration | 21 # flag also enables OpenSSL for certificate verification, but this configuration |
| 22 # is unsupported. | 22 # is unsupported. |
| 23 use_openssl_certs = is_android || is_nacl | 23 use_openssl_certs = is_android || is_nacl |
| 24 | 24 |
| 25 # True if NSS is used for certificate handling. Note that this is independent | 25 # True if NSS is used for certificate handling. It is possible to use OpenSSL |
| 26 # from use_openssl. It is possible to use OpenSSL for the crypto library, but | 26 # for the crypto library, but NSS for the platform certificate library. |
| 27 # NSS for the platform certificate library. | |
| 28 use_nss_certs = is_linux | 27 use_nss_certs = is_linux |
| 29 | |
| 30 # True if NSS is used for certificate verification. On non-OpenSSL iOS | |
| 31 # configurations, certificates use the operating system library, but the | |
| 32 # verifier uses the bundled copy of NSS. | |
| 33 use_nss_verifier = use_nss_certs || (is_ios && !use_openssl) | |
| OLD | NEW |