summary refs log tree commit diff
path: root/pkgs/tools/networking/strongswan
diff options
context:
space:
mode:
authorDrew Hess <web-github@drewhess.com>2017-10-17 01:10:42 -0700
committerJörg Thalheim <Mic92@users.noreply.github.com>2017-10-17 09:10:42 +0100
commitb59013249edd23870197b3da854a90b572733c8e (patch)
treeaea10570a8a5d6101224cbed8000d025fc56bd93 /pkgs/tools/networking/strongswan
parent9805818d2443ea663408561a82defb195b073dca (diff)
downloadnixpkgs-b59013249edd23870197b3da854a90b572733c8e.tar
nixpkgs-b59013249edd23870197b3da854a90b572733c8e.tar.gz
nixpkgs-b59013249edd23870197b3da854a90b572733c8e.tar.bz2
nixpkgs-b59013249edd23870197b3da854a90b572733c8e.tar.lz
nixpkgs-b59013249edd23870197b3da854a90b572733c8e.tar.xz
nixpkgs-b59013249edd23870197b3da854a90b572733c8e.tar.zst
nixpkgs-b59013249edd23870197b3da854a90b572733c8e.zip
strongswan: enable openssl plugin (#30494)
The NIST elliptic curve groups (ecp192 etc.) are only available if the
OpenSSL plugin is enabled, and these groups are currently the only EC
groups supported on iOS and macOS devices.
Diffstat (limited to 'pkgs/tools/networking/strongswan')
-rw-r--r--pkgs/tools/networking/strongswan/default.nix3
1 files changed, 2 insertions, 1 deletions
diff --git a/pkgs/tools/networking/strongswan/default.nix b/pkgs/tools/networking/strongswan/default.nix
index 0671b7d0089..641e1238872 100644
--- a/pkgs/tools/networking/strongswan/default.nix
+++ b/pkgs/tools/networking/strongswan/default.nix
@@ -44,6 +44,7 @@ stdenv.mkDerivation rec {
   configureFlags =
     [ "--enable-swanctl" "--enable-cmd" "--enable-systemd"
       "--enable-farp" "--enable-dhcp"
+      "--enable-openssl"
       "--enable-eap-sim" "--enable-eap-sim-file" "--enable-eap-simaka-pseudonym"
       "--enable-eap-simaka-reauth" "--enable-eap-identity" "--enable-eap-md5"
       "--enable-eap-gtc" "--enable-eap-aka" "--enable-eap-aka-3gpp2"
@@ -55,7 +56,7 @@ stdenv.mkDerivation rec {
     ++ stdenv.lib.optional (stdenv.system == "i686-linux") "--enable-padlock"
     ++ stdenv.lib.optionals enableTNC [
          "--disable-gmp" "--disable-aes" "--disable-md5" "--disable-sha1" "--disable-sha2" "--disable-fips-prf"
-         "--enable-curl" "--enable-openssl"
+         "--enable-curl"
          "--enable-eap-tnc" "--enable-eap-ttls" "--enable-eap-dynamic" "--enable-tnccs-20"
          "--enable-tnc-imc" "--enable-imc-os" "--enable-imc-attestation"
          "--enable-tnc-imv" "--enable-imv-attestation"