Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 01 May 2014 18:12:11 +0200
From:      Uwe Doering <gemini@geminix.org>
To:        Paul Hoffman <paul.hoffman@vpnc.org>
Cc:        freebsd-security@freebsd.org, "freebsd-ports@freebsd.org" <freebsd-ports@freebsd.org>
Subject:   Re: ports requiring OpenSSL not honouring OpenSSL from ports
Message-ID:  <5362725B.6010109@geminix.org>
In-Reply-To: <536267A0.9010403@geminix.org>
References:  <201404271508.s3RF8sMA014085@catnip.dyslexicfish.net> <CACdU%2Bf_Wo6VDcJkn6tmF8MTU49=rnJM7SB6XxofGZVdukSarHA@mail.gmail.com> <201404272250.s3RMo2NZ095771@catnip.dyslexicfish.net> <445CDD31-5A11-4F5E-92DE-CB11A10E9BDE@odo.in-berlin.de> <5361896C.7010703@bluerosetech.com> <53621BE0.4040704@geminix.org> <15864901-C372-43A8-A6E6-BF0AF73F2EC6@vpnc.org> <536267A0.9010403@geminix.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On 01.05.14 17:26, Uwe Doering wrote:
> On 01.05.14 16:33, Paul Hoffman wrote:
>> On May 1, 2014, at 3:03 AM, Uwe Doering <gemini@geminix.org> wrote:
>>
>>> I indeed wondered why this variable hadn't been mentioned so far. Guys,
>>> you do have "WITH_OPENSSL_PORT=yes" in your "/etc/make.conf", haven't you?
>>>
>>> Because otherwise the whole thread might be considered a false alert.
>>> The ports system does not link with the ports' OpenSSL of its own
>>> accord. Or at least not in a reliable/predictable manner. You have to
>>> explicitly tell it what you want.
>>
>> Please consider whether it is appropriate to chide people for not knowing about an *undocumented* feature of make.conf.
> 
> First of all, I certainly didn't intend to chide anyone, so I apologize
> if some of you got the impression. Having worked with FreeBSD and the
> ports system for years I was under the impression that this information
> would be readily available in the docs.
> 
> But on further research it appears to me that this is indeed pretty well
> hidden in only some mailing list and forum articles, where I probably
> learned it from in the past.
> [...]

One additional data point: "WITH_OPENSSL_PORT" is mentioned in the
FreeBSD Porter's Handbook:


http://www.freebsd.org/doc/en_US.ISO8859-1/books/porters-handbook/makefile-options.html#idp67984816

But then, it cannot be expected that mere _users_ of the ports tree read
the Porter's Handbook. And it is also not mentioned there that it is, to
my knowledge, considered good practice to have that setting in
"/etc/make.conf" in order to avoid any confusion about which port is
linked with what version of OpenSSL.

Best regards,

   Uwe
-- 
Uwe Doering
gemini@geminix.org



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?5362725B.6010109>