2024-06-05 15:53:02 +00:00
|
|
|
{
|
|
|
|
lib,
|
|
|
|
stdenv,
|
|
|
|
buildPythonPackage,
|
|
|
|
fetchPypi,
|
|
|
|
openssl,
|
|
|
|
setuptools,
|
|
|
|
cryptography,
|
|
|
|
pytestCheckHook,
|
|
|
|
pretend,
|
|
|
|
sphinxHook,
|
|
|
|
sphinx-rtd-theme,
|
|
|
|
pytest-rerunfailures,
|
2020-04-24 23:36:52 +00:00
|
|
|
}:
|
|
|
|
|
2022-03-30 09:31:56 +00:00
|
|
|
buildPythonPackage rec {
|
|
|
|
pname = "pyopenssl";
|
2024-05-15 15:35:15 +00:00
|
|
|
version = "24.1.0";
|
2024-04-21 15:54:59 +00:00
|
|
|
pyproject = true;
|
2022-03-30 09:31:56 +00:00
|
|
|
|
|
|
|
src = fetchPypi {
|
|
|
|
pname = "pyOpenSSL";
|
|
|
|
inherit version;
|
2024-05-15 15:35:15 +00:00
|
|
|
hash = "sha256-yr7Uv6pd+fGhbA72Sgy2Uxi1zQd6ftp9aXATHKL0Gm8=";
|
2022-03-30 09:31:56 +00:00
|
|
|
};
|
|
|
|
|
2023-03-04 12:14:45 +00:00
|
|
|
outputs = [
|
|
|
|
"out"
|
|
|
|
"dev"
|
|
|
|
"doc"
|
|
|
|
];
|
|
|
|
|
|
|
|
nativeBuildInputs = [
|
|
|
|
openssl
|
2024-04-21 15:54:59 +00:00
|
|
|
setuptools
|
2023-03-04 12:14:45 +00:00
|
|
|
sphinxHook
|
|
|
|
sphinx-rtd-theme
|
2022-12-17 10:02:37 +00:00
|
|
|
];
|
|
|
|
|
2022-11-21 17:40:18 +00:00
|
|
|
postPatch = ''
|
|
|
|
# remove cryptography pin
|
2023-11-16 04:20:00 +00:00
|
|
|
sed -i "/cryptography/ s/,<[0-9]*//g" setup.py
|
2022-11-21 17:40:18 +00:00
|
|
|
'';
|
2022-03-30 09:31:56 +00:00
|
|
|
|
2024-06-05 15:53:02 +00:00
|
|
|
propagatedBuildInputs = [ cryptography ];
|
2023-03-04 12:14:45 +00:00
|
|
|
|
|
|
|
nativeCheckInputs = [
|
|
|
|
pretend
|
2024-05-15 15:35:15 +00:00
|
|
|
pytest-rerunfailures
|
2023-03-04 12:14:45 +00:00
|
|
|
pytestCheckHook
|
|
|
|
];
|
2022-03-30 09:31:56 +00:00
|
|
|
|
2023-03-04 12:14:45 +00:00
|
|
|
__darwinAllowLocalNetworking = true;
|
2022-03-30 09:31:56 +00:00
|
|
|
|
|
|
|
preCheck = ''
|
|
|
|
export LANG="en_US.UTF-8"
|
|
|
|
'';
|
|
|
|
|
2024-06-05 15:53:02 +00:00
|
|
|
disabledTests =
|
|
|
|
[
|
|
|
|
# https://github.com/pyca/pyopenssl/issues/692
|
|
|
|
# These tests, we disable always.
|
|
|
|
"test_set_default_verify_paths"
|
|
|
|
"test_fallback_default_verify_paths"
|
|
|
|
# https://github.com/pyca/pyopenssl/issues/768
|
|
|
|
"test_wantWriteError"
|
|
|
|
# https://github.com/pyca/pyopenssl/issues/1043
|
|
|
|
"test_alpn_call_failure"
|
|
|
|
]
|
|
|
|
++ lib.optionals (lib.hasPrefix "libressl" openssl.meta.name) [
|
|
|
|
# https://github.com/pyca/pyopenssl/issues/791
|
|
|
|
# These tests, we disable in the case that libressl is passed in as openssl.
|
|
|
|
"test_op_no_compression"
|
|
|
|
"test_npn_advertise_error"
|
|
|
|
"test_npn_select_error"
|
|
|
|
"test_npn_client_fail"
|
|
|
|
"test_npn_success"
|
|
|
|
"test_use_certificate_chain_file_unicode"
|
|
|
|
"test_use_certificate_chain_file_bytes"
|
|
|
|
"test_add_extra_chain_cert"
|
|
|
|
"test_set_session_id_fail"
|
|
|
|
"test_verify_with_revoked"
|
|
|
|
"test_set_notAfter"
|
|
|
|
"test_set_notBefore"
|
|
|
|
]
|
|
|
|
++ lib.optionals (lib.versionAtLeast (lib.getVersion openssl.name) "1.1") [
|
|
|
|
# these tests are extremely tightly wed to the exact output of the openssl cli tool, including exact punctuation.
|
|
|
|
"test_dump_certificate"
|
|
|
|
"test_dump_privatekey_text"
|
|
|
|
"test_dump_certificate_request"
|
|
|
|
"test_export_text"
|
|
|
|
]
|
|
|
|
++ lib.optionals stdenv.is32bit [
|
|
|
|
# https://github.com/pyca/pyopenssl/issues/974
|
|
|
|
"test_verify_with_time"
|
|
|
|
];
|
2020-04-24 23:36:52 +00:00
|
|
|
|
2022-03-30 09:31:56 +00:00
|
|
|
meta = with lib; {
|
|
|
|
description = "Python wrapper around the OpenSSL library";
|
|
|
|
homepage = "https://github.com/pyca/pyopenssl";
|
2023-03-04 12:14:45 +00:00
|
|
|
changelog = "https://github.com/pyca/pyopenssl/blob/${version}/CHANGELOG.rst";
|
2022-03-30 09:31:56 +00:00
|
|
|
license = licenses.asl20;
|
2023-08-04 22:07:22 +00:00
|
|
|
maintainers = with maintainers; [ ];
|
2020-04-24 23:36:52 +00:00
|
|
|
};
|
|
|
|
}
|