From 08a8d6fcbb7a7c4e63f788bfb2fc1c75a93a8cad Mon Sep 17 00:00:00 2001 From: Daniel Pawlik Date: Tue, 8 Oct 2024 19:39:17 +0200 Subject: [PATCH] Improve once again openssl config; force enable /dev/crypto --- .github/workflows/bpi-r4-BE14-community.yaml | 9 ++++++--- configs/common/openssl | 8 ++++++-- 2 files changed, 12 insertions(+), 5 deletions(-) diff --git a/.github/workflows/bpi-r4-BE14-community.yaml b/.github/workflows/bpi-r4-BE14-community.yaml index 3ba1ce6..c7e9281 100644 --- a/.github/workflows/bpi-r4-BE14-community.yaml +++ b/.github/workflows/bpi-r4-BE14-community.yaml @@ -136,10 +136,13 @@ jobs: with: files: bin/targets/mediatek/filogic/* tag_name: ${{ env.RELEASE_PREFIX }}-${{ env.REMOTE_BRANCH }}-${{ env.RELEASE_DATE }} - name: OpenWRT BPI-R4 ${{ env.DEVICE_CONFIG }} + BE14 - ${{ env.REMOTE_BRANCH }} - ${{ env.RELEASE_DATE }} + name: OpenWRT BPI-R4 ${{ inputs.DEVICE_CONFIG == 'poe' && 'POE' || '' }} - ${{ env.REMOTE_BRANCH }} - ${{ env.RELEASE_DATE }} body: | - Updated prebuilt images for ${{ env.RELEASE_DATE }} with BE14, luci BE, basic 5G modem packages, that was - expected by the community members. ${{ inputs.RMADRAD_VERSION == true && 'That build contains Rmadrad patch' || 'That builds is more less stock OpenWRT version' }} + Updated prebuilt images for BPI-R4 ${{ inputs.DEVICE_CONFIG == 'poe' && 'PoE version' || '' }} with basic 5G modem packages, that was + expected by the community members. + + ${{ inputs.RMADRAD_VERSION == true && 'That build contains Rmadrad patch' || 'That builds is more less stock OpenWRT version' }} + Build Commit: ${{ needs.check_commits.outputs.latest_commit_sha }} - name: Clean up old releases diff --git a/configs/common/openssl b/configs/common/openssl index e82f079..74bf9cc 100644 --- a/configs/common/openssl +++ b/configs/common/openssl @@ -20,8 +20,12 @@ CONFIG_PACKAGE_kmod-cryptodev=y CONFIG_PACKAGE_kmod-crypto-user=y CONFIG_PACKAGE_libopenssl-devcrypto=y CONFIG_PACKAGE_openssl-util=y -CONFIG_OPENSSL_ENGINE_BUILTIN=y -CONFIG_OPENSSL_ENGINE_BUILTIN_DEVCRYPTO=y +# additional modules # CONFIG_PACKAGE_libopenssl-afalg=y # CONFIG_PACKAGE_libopenssl-gost_engine=y + +### Force enable /dev/crypto +CONFIG_OPENSSL_ENGINE_BUILTIN=y +CONFIG_OPENSSL_ENGINE_BUILTIN_DEVCRYPTO=y + #### replace mbedtls with openssl - remember to leave commented "is not set" or remove it!