+local function _check_certs()
+ local _, v = NXFS.glob("/etc/ssl/certs/*.crt")
+ if ( v == 0 ) then _, v = NXFS.glob("/etc/ssl/certs/*.pem") end
+ return (v > 0)
+end
+
+has_wgetssl = (SYS.call( [[which wget-ssl >/dev/null 2>&1]] ) == 0) -- and true or nil
+has_curl = (SYS.call( [[which curl >/dev/null 2>&1]] ) == 0)
+has_curlssl = (SYS.call( [[$(which curl) -V 2>&1 | grep "Protocols:" | grep -qF "https"]] ) ~= 0)
+has_curlpxy = (SYS.call( [[grep -i "all_proxy" /usr/lib/libcurl.so* >/dev/null 2>&1]] ) == 0)
+has_fetch = (SYS.call( [[which uclient-fetch >/dev/null 2>&1]] ) == 0)
+has_fetchssl = NXFS.access("/lib/libustream-ssl.so")
+has_bbwget = (SYS.call( [[$(which wget) -V 2>&1 | grep -iqF "busybox"]] ) == 0)
+has_bindhost = (SYS.call( [[which host >/dev/null 2>&1]] ) == 0)
+ or (SYS.call( [[which khost >/dev/null 2>&1]] ) == 0)
+ or (SYS.call( [[which drill >/dev/null 2>&1]] ) == 0)
+has_hostip = (SYS.call( [[which hostip >/dev/null 2>&1]] ) == 0)
+has_nslookup = (SYS.call( [[$(which nslookup) localhost 2>&1 | grep -qF "(null)"]] ) ~= 0)
+has_ipv6 = (NXFS.access("/proc/net/ipv6_route") and NXFS.access("/usr/sbin/ip6tables"))
+has_ssl = (has_wgetssl or has_curlssl or (has_fetch and has_fetchssl))
+has_proxy = (has_wgetssl or has_curlpxy or has_fetch or has_bbwget)
+has_forceip = (has_wgetssl or has_curl or has_fetch) -- only really needed for transfer
+has_dnsserver = (has_bindhost or has_hostip or has_nslookup)
+has_bindnet = (has_wgetssl or has_curl)
+has_cacerts = _check_certs()
+