nixpkgs/pkgs/servers/http/nginx/generic.nix

126 lines
3.7 KiB
Nix
Raw Normal View History

2018-12-11 01:01:30 +00:00
{ stdenv, fetchurl, fetchpatch, openssl, zlib, pcre, libxml2, libxslt
2019-11-29 12:25:24 +00:00
, nixosTests
, substituteAll, gd, geoip, perl
2018-06-27 23:30:51 +00:00
, withDebug ? false
, withStream ? true
, withMail ? false
, modules ? []
, version, sha256, ...
2015-01-21 11:38:34 +00:00
}:
with stdenv.lib;
2012-10-09 18:20:44 +00:00
let
mapModules = attrPath: flip concatMap modules
(mod:
let supports = mod.supports or (_: true);
in
if supports version then mod.${attrPath} or []
else throw "Module at ${toString mod.src} does not support nginx version ${version}!");
in
stdenv.mkDerivation {
2019-08-13 21:52:01 +00:00
pname = "nginx";
inherit version;
2016-05-06 08:34:37 +00:00
src = fetchurl {
url = "https://nginx.org/download/nginx-${version}.tar.gz";
inherit sha256;
2013-11-25 06:58:34 +00:00
};
buildInputs = [ openssl zlib pcre libxml2 libxslt gd geoip perl ]
++ mapModules "inputs";
configureFlags = [
"--with-http_ssl_module"
"--with-http_v2_module"
"--with-http_realip_module"
"--with-http_addition_module"
"--with-http_xslt_module"
"--with-http_geoip_module"
"--with-http_sub_module"
"--with-http_dav_module"
"--with-http_flv_module"
"--with-http_mp4_module"
"--with-http_gunzip_module"
"--with-http_gzip_static_module"
"--with-http_auth_request_module"
"--with-http_random_index_module"
"--with-http_secure_link_module"
"--with-http_degradation_module"
"--with-http_stub_status_module"
"--with-threads"
"--with-pcre-jit"
] ++ optionals withDebug [
2018-06-27 23:30:51 +00:00
"--with-debug"
] ++ optionals withStream [
"--with-stream"
"--with-stream_geoip_module"
"--with-stream_realip_module"
"--with-stream_ssl_module"
"--with-stream_ssl_preread_module"
] ++ optionals withMail [
"--with-mail"
"--with-mail_ssl_module"
] ++ optional (perl != null) [
"--with-http_perl_module"
"--with-perl=${perl}/bin/perl"
"--with-perl_modules_path=lib/perl5"
]
++ optional (gd != null) "--with-http_image_filter_module"
++ optional (with stdenv.hostPlatform; isLinux || isFreeBSD) "--with-file-aio"
++ map (mod: "--add-module=${mod.src}") modules;
2019-10-30 01:29:30 +00:00
NIX_CFLAGS_COMPILE = toString ([
2019-01-11 06:40:25 +00:00
"-I${libxml2.dev}/include/libxml2"
"-Wno-error=implicit-fallthrough"
2019-10-30 01:29:30 +00:00
] ++ optional stdenv.isDarwin "-Wno-error=deprecated-declarations");
2015-09-23 18:28:44 +00:00
2018-12-11 01:01:30 +00:00
configurePlatforms = [];
preConfigure = (concatMapStringsSep "\n" (mod: mod.preConfigure or "") modules);
patches = stdenv.lib.singleton (substituteAll {
src = ./nix-etag-1.15.4.patch;
preInstall = ''
export nixStoreDir="$NIX_STORE" nixStoreDirLen="''${#NIX_STORE}"
'';
}) ++ stdenv.lib.optionals (stdenv.hostPlatform != stdenv.buildPlatform) [
2018-12-11 01:01:30 +00:00
(fetchpatch {
url = "https://raw.githubusercontent.com/openwrt/packages/master/net/nginx/patches/102-sizeof_test_fix.patch";
sha256 = "0i2k30ac8d7inj9l6bl0684kjglam2f68z8lf3xggcc2i5wzhh8a";
})
(fetchpatch {
url = "https://raw.githubusercontent.com/openwrt/packages/master/net/nginx/patches/101-feature_test_fix.patch";
sha256 = "0v6890a85aqmw60pgj3mm7g8nkaphgq65dj4v9c6h58wdsrc6f0y";
})
(fetchpatch {
url = "https://raw.githubusercontent.com/openwrt/packages/master/net/nginx/patches/103-sys_nerr.patch";
sha256 = "0s497x6mkz947aw29wdy073k8dyjq8j99lax1a1mzpikzr4rxlmd";
})
] ++ mapModules "patches";
2018-12-11 01:01:30 +00:00
2017-09-12 20:38:17 +00:00
hardeningEnable = optional (!stdenv.isDarwin) "pie";
2016-02-26 16:38:26 +00:00
2018-06-27 23:31:31 +00:00
enableParallelBuilding = true;
postInstall = ''
mv $out/sbin $out/bin
'';
2019-11-29 12:25:24 +00:00
passthru = {
modules = modules;
tests.nginx = nixosTests.nginx;
};
meta = {
2012-10-09 18:20:44 +00:00
description = "A reverse proxy and lightweight webserver";
homepage = http://nginx.org;
license = licenses.bsd2;
platforms = platforms.all;
maintainers = with maintainers; [ thoughtpolice raskin fpletz globin ];
};
}