From b11c90e1457e3a453e6c911a91a22f00dba5334a Mon Sep 17 00:00:00 2001 From: Fiona Klute Date: Sun, 7 Dec 2025 22:48:47 +0100 Subject: [PATCH] package/apache: add config option to enable mod_md mod_md allows Apache httpd to automatically provision certificates for HTTPS via the ACME protocol (e.g. from Let's Encrypt), if configured to do so. The additional dependencies are non-obvious, so add a config option instead of only enabling the module if dependencies are met. Signed-off-by: Fiona Klute Signed-off-by: Thomas Petazzoni --- package/apache/Config.in | 12 ++++++++++++ package/apache/apache.mk | 9 +++++++++ 2 files changed, 21 insertions(+) diff --git a/package/apache/Config.in b/package/apache/Config.in index 270296bce4..6b21428c2c 100644 --- a/package/apache/Config.in +++ b/package/apache/Config.in @@ -41,6 +41,18 @@ config BR2_PACKAGE_APACHE_MPM_WORKER endchoice +config BR2_PACKAGE_APACHE_MOD_MD + bool "mod_md" + select BR2_PACKAGE_JANSSON + select BR2_PACKAGE_LIBCURL + select BR2_PACKAGE_LIBCURL_FORCE_TLS + select BR2_PACKAGE_OPENSSL + help + Enable mod_md, which handles TLS certificate provisioning + via the ACME protocol, and OCSP stapling. + + https://httpd.apache.org/docs/current/mod/mod_md.html + endif comment "apache needs a toolchain w/ dynamic library, threads" diff --git a/package/apache/apache.mk b/package/apache/apache.mk index 06f964b083..3b1574cb78 100644 --- a/package/apache/apache.mk +++ b/package/apache/apache.mk @@ -91,6 +91,15 @@ else APACHE_CONF_OPTS += --disable-ssl endif +ifeq ($(BR2_PACKAGE_APACHE_MOD_MD),y) +APACHE_CONF_OPTS += --enable-md +# BR2_PACKAGE_APACHE_MOD_MD selects BR2_PACKAGE_OPENSSL, so openssl is +# added above +APACHE_DEPENDENCIES += jansson libcurl +else +APACHE_CONF_OPTS += --disable-md +endif + ifeq ($(BR2_PACKAGE_ZLIB),y) APACHE_DEPENDENCIES += zlib APACHE_CONF_OPTS += \