Received: from malur.postgresql.org ([217.196.149.56]) by arkaria.postgresql.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.94.2) (envelope-from ) id 1v1NoX-0082dW-HF for pgsql-hackers@arkaria.postgresql.org; Wed, 24 Sep 2025 11:37:37 +0000 Received: from localhost ([127.0.0.1] helo=malur.postgresql.org) by malur.postgresql.org with esmtp (Exim 4.94.2) (envelope-from ) id 1v1NoW-00CkoG-6k for pgsql-hackers@arkaria.postgresql.org; Wed, 24 Sep 2025 11:37:36 +0000 Received: from makus.postgresql.org ([2001:4800:3e1:1::229]) by malur.postgresql.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.94.2) (envelope-from ) id 1v1NoV-00Cko8-Tt for pgsql-hackers@lists.postgresql.org; Wed, 24 Sep 2025 11:37:35 +0000 Received: from mout-p-103.mailbox.org ([80.241.56.161]) by makus.postgresql.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.96) (envelope-from ) id 1v1NoT-002ArJ-1m for pgsql-hackers@lists.postgresql.org; Wed, 24 Sep 2025 11:37:35 +0000 Received: from smtp102.mailbox.org (smtp102.mailbox.org [10.196.197.102]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (No client certificate requested) by mout-p-103.mailbox.org (Postfix) with ESMTPS id 4cWvw40Z3kz9st9; Wed, 24 Sep 2025 13:37:24 +0200 (CEST) Date: Wed, 24 Sep 2025 13:37:23 +0200 From: Christoph Berg To: Daniel Gustafsson Cc: PostgreSQL Hackers Subject: Re: "openssl" should not be optional Message-ID: References: <52A12672-72CC-47FC-A0FA-DDFF7C23F2D2@yesql.se> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <52A12672-72CC-47FC-A0FA-DDFF7C23F2D2@yesql.se> List-Id: List-Help: List-Subscribe: List-Post: List-Owner: List-Archive: Archived-At: Precedence: bulk Re: Daniel Gustafsson > It seems a bit restrictive to require the openssl binary which is test-only, > since we allow building with ssl but without TAP support (which is where the > openssl binary is used). Ok, but then the error messages should be better. This was found because a fellow Debian developer was smart enough to spot the extra space in that " x509" error message... (And another one knew about this difference between the different build environments.) Christoph