2021-02-05 17:12:51 +00:00
|
|
|
{ lib
|
|
|
|
, stdenv
|
2020-04-24 23:36:52 +00:00
|
|
|
, buildPythonPackage
|
|
|
|
, fetchPypi
|
|
|
|
, openssl
|
|
|
|
, cryptography
|
2022-03-30 09:31:56 +00:00
|
|
|
, pytestCheckHook
|
2020-04-24 23:36:52 +00:00
|
|
|
, pretend
|
2023-03-04 12:14:45 +00:00
|
|
|
, sphinxHook
|
|
|
|
, sphinx-rtd-theme
|
2020-04-24 23:36:52 +00:00
|
|
|
, flaky
|
|
|
|
}:
|
|
|
|
|
2022-03-30 09:31:56 +00:00
|
|
|
buildPythonPackage rec {
|
|
|
|
pname = "pyopenssl";
|
2023-08-10 07:59:29 +00:00
|
|
|
version = "23.2.0";
|
2023-03-04 12:14:45 +00:00
|
|
|
format = "setuptools";
|
2022-03-30 09:31:56 +00:00
|
|
|
|
|
|
|
src = fetchPypi {
|
|
|
|
pname = "pyOpenSSL";
|
|
|
|
inherit version;
|
2023-08-10 07:59:29 +00:00
|
|
|
hash = "sha256-J2+TH1WkUufeppxxc+mE6ypEB85BPJGKo0tV+C+bi6w=";
|
2022-03-30 09:31:56 +00:00
|
|
|
};
|
|
|
|
|
2023-03-04 12:14:45 +00:00
|
|
|
outputs = [
|
|
|
|
"out"
|
|
|
|
"dev"
|
|
|
|
"doc"
|
|
|
|
];
|
|
|
|
|
|
|
|
nativeBuildInputs = [
|
|
|
|
openssl
|
|
|
|
sphinxHook
|
|
|
|
sphinx-rtd-theme
|
2022-12-17 10:02:37 +00:00
|
|
|
];
|
|
|
|
|
2022-11-21 17:40:18 +00:00
|
|
|
postPatch = ''
|
|
|
|
# remove cryptography pin
|
2023-11-16 04:20:00 +00:00
|
|
|
sed -i "/cryptography/ s/,<[0-9]*//g" setup.py
|
2022-11-21 17:40:18 +00:00
|
|
|
'';
|
2022-03-30 09:31:56 +00:00
|
|
|
|
2023-03-04 12:14:45 +00:00
|
|
|
propagatedBuildInputs = [
|
|
|
|
cryptography
|
|
|
|
];
|
|
|
|
|
|
|
|
nativeCheckInputs = [
|
|
|
|
flaky
|
|
|
|
pretend
|
|
|
|
pytestCheckHook
|
|
|
|
];
|
2022-03-30 09:31:56 +00:00
|
|
|
|
2023-03-04 12:14:45 +00:00
|
|
|
__darwinAllowLocalNetworking = true;
|
2022-03-30 09:31:56 +00:00
|
|
|
|
|
|
|
preCheck = ''
|
|
|
|
export LANG="en_US.UTF-8"
|
|
|
|
'';
|
|
|
|
|
|
|
|
disabledTests = [
|
|
|
|
# https://github.com/pyca/pyopenssl/issues/692
|
|
|
|
# These tests, we disable always.
|
|
|
|
"test_set_default_verify_paths"
|
|
|
|
"test_fallback_default_verify_paths"
|
|
|
|
# https://github.com/pyca/pyopenssl/issues/768
|
|
|
|
"test_wantWriteError"
|
|
|
|
# https://github.com/pyca/pyopenssl/issues/1043
|
|
|
|
"test_alpn_call_failure"
|
|
|
|
] ++ lib.optionals (lib.hasPrefix "libressl" openssl.meta.name) [
|
|
|
|
# https://github.com/pyca/pyopenssl/issues/791
|
|
|
|
# These tests, we disable in the case that libressl is passed in as openssl.
|
2020-04-24 23:36:52 +00:00
|
|
|
"test_op_no_compression"
|
|
|
|
"test_npn_advertise_error"
|
|
|
|
"test_npn_select_error"
|
|
|
|
"test_npn_client_fail"
|
|
|
|
"test_npn_success"
|
|
|
|
"test_use_certificate_chain_file_unicode"
|
|
|
|
"test_use_certificate_chain_file_bytes"
|
|
|
|
"test_add_extra_chain_cert"
|
|
|
|
"test_set_session_id_fail"
|
|
|
|
"test_verify_with_revoked"
|
|
|
|
"test_set_notAfter"
|
|
|
|
"test_set_notBefore"
|
2022-03-30 09:31:56 +00:00
|
|
|
] ++ lib.optionals (lib.versionAtLeast (lib.getVersion openssl.name) "1.1") [
|
|
|
|
# these tests are extremely tightly wed to the exact output of the openssl cli tool, including exact punctuation.
|
2020-04-24 23:36:52 +00:00
|
|
|
"test_dump_certificate"
|
|
|
|
"test_dump_privatekey_text"
|
|
|
|
"test_dump_certificate_request"
|
|
|
|
"test_export_text"
|
2022-03-30 09:31:56 +00:00
|
|
|
] ++ lib.optionals stdenv.is32bit [
|
2020-12-25 13:55:36 +00:00
|
|
|
# https://github.com/pyca/pyopenssl/issues/974
|
2022-03-30 09:31:56 +00:00
|
|
|
"test_verify_with_time"
|
|
|
|
];
|
2020-04-24 23:36:52 +00:00
|
|
|
|
2022-03-30 09:31:56 +00:00
|
|
|
meta = with lib; {
|
|
|
|
description = "Python wrapper around the OpenSSL library";
|
|
|
|
homepage = "https://github.com/pyca/pyopenssl";
|
2023-03-04 12:14:45 +00:00
|
|
|
changelog = "https://github.com/pyca/pyopenssl/blob/${version}/CHANGELOG.rst";
|
2022-03-30 09:31:56 +00:00
|
|
|
license = licenses.asl20;
|
2023-08-04 22:07:22 +00:00
|
|
|
maintainers = with maintainers; [ ];
|
2020-04-24 23:36:52 +00:00
|
|
|
};
|
|
|
|
}
|