1
|
ALLOW_UNSUPPORTED_SYSTEM=yes
|
2
|
|
3
|
# Define pfSense repos
|
4
|
PFSENSE_REPOS= %%PRODUCT_NAME%%-repo %%PRODUCT_NAME%%-repo-devel %%PRODUCT_NAME%%-repo-245
|
5
|
|
6
|
# Generic options
|
7
|
OPTIONS_UNSET_FORCE= DOCS DOXYGEN EXAMPLES INFO MAN MANPAGES X11
|
8
|
|
9
|
# Individual ports options
|
10
|
.if ${.CURDIR:N*net/quagga*}=="" || ${.CURDIR:N*net/frr*}==""
|
11
|
CUR_ARCH!= /usr/bin/uname -p
|
12
|
. if ${CUR_ARCH} == "armv7"
|
13
|
WITH_DEBUG=yes
|
14
|
. endif
|
15
|
.endif
|
16
|
|
17
|
.if ${.CURDIR:N*net/frr*}==""
|
18
|
ETCDIR= /var/etc/frr
|
19
|
.endif
|
20
|
|
21
|
DEFAULT_VERSIONS= php=74 ssl=base
|
22
|
PHP_FD_SETSIZE= 3172
|
23
|
|
24
|
. if ${.CURDIR:N*sysutils/check_reload_status*}==""
|
25
|
WITH_DEBUG= yes
|
26
|
. endif
|
27
|
|
28
|
# Options for packages
|
29
|
|
30
|
# databases
|
31
|
databases_rrdtool_UNSET_FORCE= PYTHON_MODULE RUBY_MODULE PERL_MODULE DEJAVU GRAPH
|
32
|
|
33
|
# devel
|
34
|
devel_git_UNSET_FORCE=CVS GITWEB GUI HTMLDOCS P4 SVN CONTRIB PERL ETCSHELLS
|
35
|
|
36
|
# dns
|
37
|
dns_unbound_SET_FORCE= LIBEVENT PYTHON
|
38
|
|
39
|
dns_bind916_SET_FORCE=DLZ_FILESYSTEM FILTER_AAAA IPV6 LINKS RRL SIGCHASE SSL THREADS GSSAPI_NONE
|
40
|
dns_bind916_UNSET_FORCE=FIXED_RRSET IDN LARGE_FILE LMDB
|
41
|
|
42
|
# graphics
|
43
|
graphics_cairo_UNSET_FORCE=X11 XCB OPENGL
|
44
|
|
45
|
graphics_gd_SET_FORCE=ICONV
|
46
|
graphics_gd_UNSET_FORCE=FONTCONFIG XPM
|
47
|
|
48
|
graphics_graphviz_SET_FORCE=ICONV NLS
|
49
|
graphics_graphviz_UNSET_FORCE=DIGCOLA IPSEPCOLA PANGOCAIRO XPM
|
50
|
|
51
|
# lang
|
52
|
lang_gcc_UNSET_FORCE=JAVA
|
53
|
|
54
|
# mail
|
55
|
mail_pear-Mail_SET_FORCE= PEAR_NET_SMTP
|
56
|
|
57
|
# net
|
58
|
net_freeradius3_SET_FORCE=EXPERIMENTAL HEIMDAL LDAP MYSQL PERL PGSQL PYTHON SQLITE3
|
59
|
|
60
|
net_frr7_SET_FORCE=SNMP
|
61
|
|
62
|
net_haproxy18_SET_FORCE=OPENSSL SPCRE LUA
|
63
|
net_haproxy18_UNSET_FORCE=DPCRE
|
64
|
|
65
|
net_haproxy_SET_FORCE=OPENSSL SPCRE LUA PROMEX
|
66
|
net_haproxy_UNSET_FORCE=DPCRE
|
67
|
|
68
|
net_haproxy-devel_SET_FORCE=OPENSSL SPCRE LUA
|
69
|
net_haproxy-devel_UNSET_FORCE=DPCRE
|
70
|
|
71
|
net_libpcap_SET_FORCE=IPV6
|
72
|
net_libpcap_UNSET_FORCE=DAG
|
73
|
|
74
|
net_libzmq4_UNSET_FORCE=PGM
|
75
|
|
76
|
net_miniupnpd_SET_FORCE= PF_FILTER_RULES IPV6 CHECK_PORTINUSE
|
77
|
|
78
|
net_mtr_UNSET_FORCE=X11
|
79
|
|
80
|
net_nss_ldap_UNSET_FORCE=SASL KERBEROS
|
81
|
|
82
|
net_ntp_UNSET_FORCE= PERL_UTILS
|
83
|
|
84
|
# net-mgmt
|
85
|
net-mgmt_net-snmp_SET_FORCE=IPV6 MFD_REWRITES TLS
|
86
|
net-mgmt_net-snmp_UNSET_FORCE=AX_DISABLE_TRAP AX_SOCKONLY DOCS DUMMY JAIL MYSQL PYTHON SMUX TKMIB UNPRIVILEGED
|
87
|
|
88
|
net-mgmt_zabbix3-agent_SET_FORCE=IPV6
|
89
|
|
90
|
net-mgmt_zabbix3-proxy_SET_FORCE=IPMI IPV6 LIBXML2 SQLITE SSH
|
91
|
net-mgmt_zabbix3-proxy_UNSET_FORCE=MYSQL
|
92
|
|
93
|
net-mgmt_zabbix4-agent_SET_FORCE=IPV6
|
94
|
|
95
|
net-mgmt_zabbix4-proxy_SET_FORCE=IPMI IPV6 LIBXML2 SQLITE SSH
|
96
|
net-mgmt_zabbix4-proxy_UNSET_FORCE=MYSQL
|
97
|
|
98
|
net-mgmt_zabbix44-agent_SET_FORCE=IPV6
|
99
|
|
100
|
net-mgmt_zabbix44-proxy_SET_FORCE=IPMI IPV6 LIBXML2 SQLITE SSH
|
101
|
net-mgmt_zabbix44-proxy_UNSET_FORCE=MYSQL
|
102
|
|
103
|
net-mgmt_zabbix5-agent_SET_FORCE=IPV6
|
104
|
|
105
|
net-mgmt_zabbix5-proxy_SET_FORCE=IPMI IPV6 LIBXML2 SQLITE SSH
|
106
|
net-mgmt_zabbix5-proxy_UNSET_FORCE=MYSQL
|
107
|
|
108
|
net-mgmt_zabbix52-agent_SET_FORCE=IPV6
|
109
|
|
110
|
net-mgmt_zabbix52-proxy_SET_FORCE=IPMI IPV6 LIBXML2 SQLITE SSH
|
111
|
net-mgmt_zabbix52-proxy_UNSET_FORCE=MYSQL
|
112
|
|
113
|
# security
|
114
|
security_ca_root_nss_SET_FORCE= ETCSYMLINK
|
115
|
|
116
|
security_opensc_SET_FORCE= PCSC
|
117
|
security_opensc_UNSET_FORCE= DOCS MANPAGES
|
118
|
|
119
|
security_openvpn_SET_FORCE= X509ALTUSERNAME ASYNC_PUSH
|
120
|
security_openvpn_UNSET_FORCE= EASYRSA
|
121
|
|
122
|
shells_scponly_SET_FORCE=CHROOT SCP WILDCARDS WINSCP
|
123
|
shells_scponly_UNSET_FORCE=DEFAULT_CHDIR DOCS GFTP RSYNC SVN SVNSERVE UNISON
|
124
|
|
125
|
security_sudo_SET_FORCE=LDAP
|
126
|
|
127
|
security_snort_SET_FORCE=APPID GRE IPV6 NORMALIZER PERFPROFILE SOURCEFIRE
|
128
|
security_snort_UNSET_FORCE=BARNYARD FILEINSPECT HA PULLEDPORK
|
129
|
|
130
|
.if ${.CURDIR:N*security/snort3*}==""
|
131
|
CUR_ARCH!= /usr/bin/uname -p
|
132
|
.if ${CUR_ARCH} == "armv7" || ${CUR_ARCH} == "aarch64"
|
133
|
security_snort3_SET_FORCE=LARGEPCAP STATICDAQ
|
134
|
security_snort3_UNSET_FORCE=HYPERSCAN TSC
|
135
|
else
|
136
|
security_snort3_SET_FORCE=LARGEPCAP STATICDAQ HYPERSCAN
|
137
|
.endif
|
138
|
.endif
|
139
|
|
140
|
security_strongswan_SET_FORCE= CURL EAPDYNAMIC EAPRADIUS EAPSIMFILE \
|
141
|
IKEv1 UNBOUND XAUTH IPSECKEY PKCS11 PKI UNITY VICI VSTR SWANCTL
|
142
|
security_strongswan_UNSET_FORCE= EAPAKA3GPP2 BUILTIN LIBC SMP
|
143
|
|
144
|
security_suricata_SET_FORCE=GEOIP HTP_PORT IPFW JSON LUAJIT NSS PORTS_PCAP NETMAP HYPERSCAN REDIS
|
145
|
security_suricata4_SET_FORCE=GEOIP HTP_PORT IPFW JSON LUAJIT NSS PORTS_PCAP NETMAP HYPERSCAN REDIS
|
146
|
.if ${.CURDIR:N*security/suricata*}==""
|
147
|
CUR_ARCH!= /usr/bin/uname -p
|
148
|
NATIVE_BUILD!= /sbin/sysctl -qn kern.supported_archs | grep -q ${CUR_ARCH} && echo yes || /usr/bin/true
|
149
|
.if ${NATIVE_BUILD} != "yes"
|
150
|
security_suricata_UNSET_FORCE=LUA PRELUDE SC TESTS RUST
|
151
|
security_suricata4_UNSET_FORCE=LUA PRELUDE SC TESTS RUST
|
152
|
.else
|
153
|
security_suricata_UNSET_FORCE=LUA PRELUDE SC TESTS
|
154
|
security_suricata4_UNSET_FORCE=LUA PRELUDE SC TESTS
|
155
|
.endif
|
156
|
.endif
|
157
|
|
158
|
security_xinetd_UNSET_FORCE= XCONV
|
159
|
|
160
|
# sysutils
|
161
|
sysutils_apcupsd_SET_FORCE=APCDUMB_DRV APCSMART_DRV PCNET_DRV SNMP_DRV TCP_WRAPPERS USB
|
162
|
sysutils_apcupsd_UNSET_FORCE=CGI CLIENT_ONLY GAPCMON SNMP_DRV_OLD TEST_DRV
|
163
|
|
164
|
sysutils_flashrom_UNSET_FORCE= FTDI BUSPIRATE
|
165
|
|
166
|
sysutils_pftop_SET_FORCE=ALTQ
|
167
|
|
168
|
sysutils_syslog-ng_SET_FORCE= SYS_SSL
|
169
|
sysutils_syslog-ng_UNSET_FORCE= PORTS_SSL
|
170
|
|
171
|
# www
|
172
|
www_c-icap_SET_FORCE=LARGE_FILES
|
173
|
www_c-icap_UNSET_FORCE=IPV6
|
174
|
|
175
|
www_lightsquid_SET_FORCE=GD
|
176
|
|
177
|
www_lighttpd_SET_FORCE= NODELAY
|
178
|
|
179
|
www_nginx_SET_FORCE= LUA
|
180
|
|
181
|
www_squid_SET_FORCE=ARP_ACL AUTH_LDAP AUTH_NIS AUTH_SASL CACHE_DIGESTS DELAY_POOLS FOLLOW_XFF FS_AUFS FS_DISKD GSSAPI_MIT HTCP ICAP ICMP IDENT IPV6 KQUEUE LARGEFILE LAX_HTTP SNMP SSL SSL_CRTD TP_PF WCCP WCCPV2
|
182
|
www_squid_UNSET_FORCE=AUTH_SMB AUTH_SQL DEBUG DNS_HELPER ECAP ESI FS_ROCK GSSAPI_NONE GSSAPI_BASE GSSAPI_HEIMDAL STACKTRACES TP_IPF TP_IPFW VIA_DB
|
183
|
|
184
|
www_squidguard_SET_FORCE=DNS_BL LDAP STRIP_NTDOMAIN
|
185
|
www_squidguard_UNSET_FORCE=QUOTE_STRING
|
186
|
|
187
|
www_e2guardian_SET_FORCE=ICAP NTLM SSL_MITM
|