xref: /OK3568_Linux_fs/kernel/drivers/crypto/xilinx/zynqmp-aes-gcm.c (revision 4882a59341e53eb6f0b4789bf948001014eff981)
1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun  * Xilinx ZynqMP AES Driver.
4*4882a593Smuzhiyun  * Copyright (c) 2020 Xilinx Inc.
5*4882a593Smuzhiyun  */
6*4882a593Smuzhiyun 
7*4882a593Smuzhiyun #include <crypto/aes.h>
8*4882a593Smuzhiyun #include <crypto/engine.h>
9*4882a593Smuzhiyun #include <crypto/gcm.h>
10*4882a593Smuzhiyun #include <crypto/internal/aead.h>
11*4882a593Smuzhiyun #include <crypto/scatterwalk.h>
12*4882a593Smuzhiyun 
13*4882a593Smuzhiyun #include <linux/dma-mapping.h>
14*4882a593Smuzhiyun #include <linux/module.h>
15*4882a593Smuzhiyun #include <linux/of_device.h>
16*4882a593Smuzhiyun #include <linux/platform_device.h>
17*4882a593Smuzhiyun 
18*4882a593Smuzhiyun #include <linux/firmware/xlnx-zynqmp.h>
19*4882a593Smuzhiyun 
20*4882a593Smuzhiyun #define ZYNQMP_DMA_BIT_MASK	32U
21*4882a593Smuzhiyun 
22*4882a593Smuzhiyun #define ZYNQMP_AES_KEY_SIZE		AES_KEYSIZE_256
23*4882a593Smuzhiyun #define ZYNQMP_AES_AUTH_SIZE		16U
24*4882a593Smuzhiyun #define ZYNQMP_KEY_SRC_SEL_KEY_LEN	1U
25*4882a593Smuzhiyun #define ZYNQMP_AES_BLK_SIZE		1U
26*4882a593Smuzhiyun #define ZYNQMP_AES_MIN_INPUT_BLK_SIZE	4U
27*4882a593Smuzhiyun #define ZYNQMP_AES_WORD_LEN		4U
28*4882a593Smuzhiyun 
29*4882a593Smuzhiyun #define ZYNQMP_AES_GCM_TAG_MISMATCH_ERR		0x01
30*4882a593Smuzhiyun #define ZYNQMP_AES_WRONG_KEY_SRC_ERR		0x13
31*4882a593Smuzhiyun #define ZYNQMP_AES_PUF_NOT_PROGRAMMED		0xE300
32*4882a593Smuzhiyun 
33*4882a593Smuzhiyun enum zynqmp_aead_op {
34*4882a593Smuzhiyun 	ZYNQMP_AES_DECRYPT = 0,
35*4882a593Smuzhiyun 	ZYNQMP_AES_ENCRYPT
36*4882a593Smuzhiyun };
37*4882a593Smuzhiyun 
38*4882a593Smuzhiyun enum zynqmp_aead_keysrc {
39*4882a593Smuzhiyun 	ZYNQMP_AES_KUP_KEY = 0,
40*4882a593Smuzhiyun 	ZYNQMP_AES_DEV_KEY,
41*4882a593Smuzhiyun 	ZYNQMP_AES_PUF_KEY
42*4882a593Smuzhiyun };
43*4882a593Smuzhiyun 
44*4882a593Smuzhiyun struct zynqmp_aead_drv_ctx {
45*4882a593Smuzhiyun 	union {
46*4882a593Smuzhiyun 		struct aead_alg aead;
47*4882a593Smuzhiyun 	} alg;
48*4882a593Smuzhiyun 	struct device *dev;
49*4882a593Smuzhiyun 	struct crypto_engine *engine;
50*4882a593Smuzhiyun };
51*4882a593Smuzhiyun 
52*4882a593Smuzhiyun struct zynqmp_aead_hw_req {
53*4882a593Smuzhiyun 	u64 src;
54*4882a593Smuzhiyun 	u64 iv;
55*4882a593Smuzhiyun 	u64 key;
56*4882a593Smuzhiyun 	u64 dst;
57*4882a593Smuzhiyun 	u64 size;
58*4882a593Smuzhiyun 	u64 op;
59*4882a593Smuzhiyun 	u64 keysrc;
60*4882a593Smuzhiyun };
61*4882a593Smuzhiyun 
62*4882a593Smuzhiyun struct zynqmp_aead_tfm_ctx {
63*4882a593Smuzhiyun 	struct crypto_engine_ctx engine_ctx;
64*4882a593Smuzhiyun 	struct device *dev;
65*4882a593Smuzhiyun 	u8 key[ZYNQMP_AES_KEY_SIZE];
66*4882a593Smuzhiyun 	u8 *iv;
67*4882a593Smuzhiyun 	u32 keylen;
68*4882a593Smuzhiyun 	u32 authsize;
69*4882a593Smuzhiyun 	enum zynqmp_aead_keysrc keysrc;
70*4882a593Smuzhiyun 	struct crypto_aead *fbk_cipher;
71*4882a593Smuzhiyun };
72*4882a593Smuzhiyun 
73*4882a593Smuzhiyun struct zynqmp_aead_req_ctx {
74*4882a593Smuzhiyun 	enum zynqmp_aead_op op;
75*4882a593Smuzhiyun };
76*4882a593Smuzhiyun 
zynqmp_aes_aead_cipher(struct aead_request * req)77*4882a593Smuzhiyun static int zynqmp_aes_aead_cipher(struct aead_request *req)
78*4882a593Smuzhiyun {
79*4882a593Smuzhiyun 	struct crypto_aead *aead = crypto_aead_reqtfm(req);
80*4882a593Smuzhiyun 	struct zynqmp_aead_tfm_ctx *tfm_ctx = crypto_aead_ctx(aead);
81*4882a593Smuzhiyun 	struct zynqmp_aead_req_ctx *rq_ctx = aead_request_ctx(req);
82*4882a593Smuzhiyun 	struct device *dev = tfm_ctx->dev;
83*4882a593Smuzhiyun 	struct zynqmp_aead_hw_req *hwreq;
84*4882a593Smuzhiyun 	dma_addr_t dma_addr_data, dma_addr_hw_req;
85*4882a593Smuzhiyun 	unsigned int data_size;
86*4882a593Smuzhiyun 	unsigned int status;
87*4882a593Smuzhiyun 	int ret;
88*4882a593Smuzhiyun 	size_t dma_size;
89*4882a593Smuzhiyun 	char *kbuf;
90*4882a593Smuzhiyun 	int err;
91*4882a593Smuzhiyun 
92*4882a593Smuzhiyun 	if (tfm_ctx->keysrc == ZYNQMP_AES_KUP_KEY)
93*4882a593Smuzhiyun 		dma_size = req->cryptlen + ZYNQMP_AES_KEY_SIZE
94*4882a593Smuzhiyun 			   + GCM_AES_IV_SIZE;
95*4882a593Smuzhiyun 	else
96*4882a593Smuzhiyun 		dma_size = req->cryptlen + GCM_AES_IV_SIZE;
97*4882a593Smuzhiyun 
98*4882a593Smuzhiyun 	kbuf = dma_alloc_coherent(dev, dma_size, &dma_addr_data, GFP_KERNEL);
99*4882a593Smuzhiyun 	if (!kbuf)
100*4882a593Smuzhiyun 		return -ENOMEM;
101*4882a593Smuzhiyun 
102*4882a593Smuzhiyun 	hwreq = dma_alloc_coherent(dev, sizeof(struct zynqmp_aead_hw_req),
103*4882a593Smuzhiyun 				   &dma_addr_hw_req, GFP_KERNEL);
104*4882a593Smuzhiyun 	if (!hwreq) {
105*4882a593Smuzhiyun 		dma_free_coherent(dev, dma_size, kbuf, dma_addr_data);
106*4882a593Smuzhiyun 		return -ENOMEM;
107*4882a593Smuzhiyun 	}
108*4882a593Smuzhiyun 
109*4882a593Smuzhiyun 	data_size = req->cryptlen;
110*4882a593Smuzhiyun 	scatterwalk_map_and_copy(kbuf, req->src, 0, req->cryptlen, 0);
111*4882a593Smuzhiyun 	memcpy(kbuf + data_size, req->iv, GCM_AES_IV_SIZE);
112*4882a593Smuzhiyun 
113*4882a593Smuzhiyun 	hwreq->src = dma_addr_data;
114*4882a593Smuzhiyun 	hwreq->dst = dma_addr_data;
115*4882a593Smuzhiyun 	hwreq->iv = hwreq->src + data_size;
116*4882a593Smuzhiyun 	hwreq->keysrc = tfm_ctx->keysrc;
117*4882a593Smuzhiyun 	hwreq->op = rq_ctx->op;
118*4882a593Smuzhiyun 
119*4882a593Smuzhiyun 	if (hwreq->op == ZYNQMP_AES_ENCRYPT)
120*4882a593Smuzhiyun 		hwreq->size = data_size;
121*4882a593Smuzhiyun 	else
122*4882a593Smuzhiyun 		hwreq->size = data_size - ZYNQMP_AES_AUTH_SIZE;
123*4882a593Smuzhiyun 
124*4882a593Smuzhiyun 	if (hwreq->keysrc == ZYNQMP_AES_KUP_KEY) {
125*4882a593Smuzhiyun 		memcpy(kbuf + data_size + GCM_AES_IV_SIZE,
126*4882a593Smuzhiyun 		       tfm_ctx->key, ZYNQMP_AES_KEY_SIZE);
127*4882a593Smuzhiyun 
128*4882a593Smuzhiyun 		hwreq->key = hwreq->src + data_size + GCM_AES_IV_SIZE;
129*4882a593Smuzhiyun 	} else {
130*4882a593Smuzhiyun 		hwreq->key = 0;
131*4882a593Smuzhiyun 	}
132*4882a593Smuzhiyun 
133*4882a593Smuzhiyun 	ret = zynqmp_pm_aes_engine(dma_addr_hw_req, &status);
134*4882a593Smuzhiyun 
135*4882a593Smuzhiyun 	if (ret) {
136*4882a593Smuzhiyun 		dev_err(dev, "ERROR: AES PM API failed\n");
137*4882a593Smuzhiyun 		err = ret;
138*4882a593Smuzhiyun 	} else if (status) {
139*4882a593Smuzhiyun 		switch (status) {
140*4882a593Smuzhiyun 		case ZYNQMP_AES_GCM_TAG_MISMATCH_ERR:
141*4882a593Smuzhiyun 			dev_err(dev, "ERROR: Gcm Tag mismatch\n");
142*4882a593Smuzhiyun 			break;
143*4882a593Smuzhiyun 		case ZYNQMP_AES_WRONG_KEY_SRC_ERR:
144*4882a593Smuzhiyun 			dev_err(dev, "ERROR: Wrong KeySrc, enable secure mode\n");
145*4882a593Smuzhiyun 			break;
146*4882a593Smuzhiyun 		case ZYNQMP_AES_PUF_NOT_PROGRAMMED:
147*4882a593Smuzhiyun 			dev_err(dev, "ERROR: PUF is not registered\n");
148*4882a593Smuzhiyun 			break;
149*4882a593Smuzhiyun 		default:
150*4882a593Smuzhiyun 			dev_err(dev, "ERROR: Unknown error\n");
151*4882a593Smuzhiyun 			break;
152*4882a593Smuzhiyun 		}
153*4882a593Smuzhiyun 		err = -status;
154*4882a593Smuzhiyun 	} else {
155*4882a593Smuzhiyun 		if (hwreq->op == ZYNQMP_AES_ENCRYPT)
156*4882a593Smuzhiyun 			data_size = data_size + ZYNQMP_AES_AUTH_SIZE;
157*4882a593Smuzhiyun 		else
158*4882a593Smuzhiyun 			data_size = data_size - ZYNQMP_AES_AUTH_SIZE;
159*4882a593Smuzhiyun 
160*4882a593Smuzhiyun 		sg_copy_from_buffer(req->dst, sg_nents(req->dst),
161*4882a593Smuzhiyun 				    kbuf, data_size);
162*4882a593Smuzhiyun 		err = 0;
163*4882a593Smuzhiyun 	}
164*4882a593Smuzhiyun 
165*4882a593Smuzhiyun 	if (kbuf) {
166*4882a593Smuzhiyun 		memzero_explicit(kbuf, dma_size);
167*4882a593Smuzhiyun 		dma_free_coherent(dev, dma_size, kbuf, dma_addr_data);
168*4882a593Smuzhiyun 	}
169*4882a593Smuzhiyun 	if (hwreq) {
170*4882a593Smuzhiyun 		memzero_explicit(hwreq, sizeof(struct zynqmp_aead_hw_req));
171*4882a593Smuzhiyun 		dma_free_coherent(dev, sizeof(struct zynqmp_aead_hw_req),
172*4882a593Smuzhiyun 				  hwreq, dma_addr_hw_req);
173*4882a593Smuzhiyun 	}
174*4882a593Smuzhiyun 	return err;
175*4882a593Smuzhiyun }
176*4882a593Smuzhiyun 
zynqmp_fallback_check(struct zynqmp_aead_tfm_ctx * tfm_ctx,struct aead_request * req)177*4882a593Smuzhiyun static int zynqmp_fallback_check(struct zynqmp_aead_tfm_ctx *tfm_ctx,
178*4882a593Smuzhiyun 				 struct aead_request *req)
179*4882a593Smuzhiyun {
180*4882a593Smuzhiyun 	int need_fallback = 0;
181*4882a593Smuzhiyun 	struct zynqmp_aead_req_ctx *rq_ctx = aead_request_ctx(req);
182*4882a593Smuzhiyun 
183*4882a593Smuzhiyun 	if (tfm_ctx->authsize != ZYNQMP_AES_AUTH_SIZE)
184*4882a593Smuzhiyun 		need_fallback = 1;
185*4882a593Smuzhiyun 
186*4882a593Smuzhiyun 	if (tfm_ctx->keysrc == ZYNQMP_AES_KUP_KEY &&
187*4882a593Smuzhiyun 	    tfm_ctx->keylen != ZYNQMP_AES_KEY_SIZE) {
188*4882a593Smuzhiyun 		need_fallback = 1;
189*4882a593Smuzhiyun 	}
190*4882a593Smuzhiyun 	if (req->assoclen != 0 ||
191*4882a593Smuzhiyun 	    req->cryptlen < ZYNQMP_AES_MIN_INPUT_BLK_SIZE) {
192*4882a593Smuzhiyun 		need_fallback = 1;
193*4882a593Smuzhiyun 	}
194*4882a593Smuzhiyun 	if ((req->cryptlen % ZYNQMP_AES_WORD_LEN) != 0)
195*4882a593Smuzhiyun 		need_fallback = 1;
196*4882a593Smuzhiyun 
197*4882a593Smuzhiyun 	if (rq_ctx->op == ZYNQMP_AES_DECRYPT &&
198*4882a593Smuzhiyun 	    req->cryptlen <= ZYNQMP_AES_AUTH_SIZE) {
199*4882a593Smuzhiyun 		need_fallback = 1;
200*4882a593Smuzhiyun 	}
201*4882a593Smuzhiyun 	return need_fallback;
202*4882a593Smuzhiyun }
203*4882a593Smuzhiyun 
zynqmp_handle_aes_req(struct crypto_engine * engine,void * req)204*4882a593Smuzhiyun static int zynqmp_handle_aes_req(struct crypto_engine *engine,
205*4882a593Smuzhiyun 				 void *req)
206*4882a593Smuzhiyun {
207*4882a593Smuzhiyun 	struct aead_request *areq =
208*4882a593Smuzhiyun 				container_of(req, struct aead_request, base);
209*4882a593Smuzhiyun 	struct crypto_aead *aead = crypto_aead_reqtfm(req);
210*4882a593Smuzhiyun 	struct zynqmp_aead_tfm_ctx *tfm_ctx = crypto_aead_ctx(aead);
211*4882a593Smuzhiyun 	struct zynqmp_aead_req_ctx *rq_ctx = aead_request_ctx(areq);
212*4882a593Smuzhiyun 	struct aead_request *subreq = aead_request_ctx(req);
213*4882a593Smuzhiyun 	int need_fallback;
214*4882a593Smuzhiyun 	int err;
215*4882a593Smuzhiyun 
216*4882a593Smuzhiyun 	need_fallback = zynqmp_fallback_check(tfm_ctx, areq);
217*4882a593Smuzhiyun 
218*4882a593Smuzhiyun 	if (need_fallback) {
219*4882a593Smuzhiyun 		aead_request_set_tfm(subreq, tfm_ctx->fbk_cipher);
220*4882a593Smuzhiyun 
221*4882a593Smuzhiyun 		aead_request_set_callback(subreq, areq->base.flags,
222*4882a593Smuzhiyun 					  NULL, NULL);
223*4882a593Smuzhiyun 		aead_request_set_crypt(subreq, areq->src, areq->dst,
224*4882a593Smuzhiyun 				       areq->cryptlen, areq->iv);
225*4882a593Smuzhiyun 		aead_request_set_ad(subreq, areq->assoclen);
226*4882a593Smuzhiyun 		if (rq_ctx->op == ZYNQMP_AES_ENCRYPT)
227*4882a593Smuzhiyun 			err = crypto_aead_encrypt(subreq);
228*4882a593Smuzhiyun 		else
229*4882a593Smuzhiyun 			err = crypto_aead_decrypt(subreq);
230*4882a593Smuzhiyun 	} else {
231*4882a593Smuzhiyun 		err = zynqmp_aes_aead_cipher(areq);
232*4882a593Smuzhiyun 	}
233*4882a593Smuzhiyun 
234*4882a593Smuzhiyun 	crypto_finalize_aead_request(engine, areq, err);
235*4882a593Smuzhiyun 	return 0;
236*4882a593Smuzhiyun }
237*4882a593Smuzhiyun 
zynqmp_aes_aead_setkey(struct crypto_aead * aead,const u8 * key,unsigned int keylen)238*4882a593Smuzhiyun static int zynqmp_aes_aead_setkey(struct crypto_aead *aead, const u8 *key,
239*4882a593Smuzhiyun 				  unsigned int keylen)
240*4882a593Smuzhiyun {
241*4882a593Smuzhiyun 	struct crypto_tfm *tfm = crypto_aead_tfm(aead);
242*4882a593Smuzhiyun 	struct zynqmp_aead_tfm_ctx *tfm_ctx =
243*4882a593Smuzhiyun 			(struct zynqmp_aead_tfm_ctx *)crypto_tfm_ctx(tfm);
244*4882a593Smuzhiyun 	unsigned char keysrc;
245*4882a593Smuzhiyun 
246*4882a593Smuzhiyun 	if (keylen == ZYNQMP_KEY_SRC_SEL_KEY_LEN) {
247*4882a593Smuzhiyun 		keysrc = *key;
248*4882a593Smuzhiyun 		if (keysrc == ZYNQMP_AES_KUP_KEY ||
249*4882a593Smuzhiyun 		    keysrc == ZYNQMP_AES_DEV_KEY ||
250*4882a593Smuzhiyun 		    keysrc == ZYNQMP_AES_PUF_KEY) {
251*4882a593Smuzhiyun 			tfm_ctx->keysrc = (enum zynqmp_aead_keysrc)keysrc;
252*4882a593Smuzhiyun 		} else {
253*4882a593Smuzhiyun 			tfm_ctx->keylen = keylen;
254*4882a593Smuzhiyun 		}
255*4882a593Smuzhiyun 	} else {
256*4882a593Smuzhiyun 		tfm_ctx->keylen = keylen;
257*4882a593Smuzhiyun 		if (keylen == ZYNQMP_AES_KEY_SIZE) {
258*4882a593Smuzhiyun 			tfm_ctx->keysrc = ZYNQMP_AES_KUP_KEY;
259*4882a593Smuzhiyun 			memcpy(tfm_ctx->key, key, keylen);
260*4882a593Smuzhiyun 		}
261*4882a593Smuzhiyun 	}
262*4882a593Smuzhiyun 
263*4882a593Smuzhiyun 	tfm_ctx->fbk_cipher->base.crt_flags &= ~CRYPTO_TFM_REQ_MASK;
264*4882a593Smuzhiyun 	tfm_ctx->fbk_cipher->base.crt_flags |= (aead->base.crt_flags &
265*4882a593Smuzhiyun 					CRYPTO_TFM_REQ_MASK);
266*4882a593Smuzhiyun 
267*4882a593Smuzhiyun 	return crypto_aead_setkey(tfm_ctx->fbk_cipher, key, keylen);
268*4882a593Smuzhiyun }
269*4882a593Smuzhiyun 
zynqmp_aes_aead_setauthsize(struct crypto_aead * aead,unsigned int authsize)270*4882a593Smuzhiyun static int zynqmp_aes_aead_setauthsize(struct crypto_aead *aead,
271*4882a593Smuzhiyun 				       unsigned int authsize)
272*4882a593Smuzhiyun {
273*4882a593Smuzhiyun 	struct crypto_tfm *tfm = crypto_aead_tfm(aead);
274*4882a593Smuzhiyun 	struct zynqmp_aead_tfm_ctx *tfm_ctx =
275*4882a593Smuzhiyun 			(struct zynqmp_aead_tfm_ctx *)crypto_tfm_ctx(tfm);
276*4882a593Smuzhiyun 
277*4882a593Smuzhiyun 	tfm_ctx->authsize = authsize;
278*4882a593Smuzhiyun 	return crypto_aead_setauthsize(tfm_ctx->fbk_cipher, authsize);
279*4882a593Smuzhiyun }
280*4882a593Smuzhiyun 
zynqmp_aes_aead_encrypt(struct aead_request * req)281*4882a593Smuzhiyun static int zynqmp_aes_aead_encrypt(struct aead_request *req)
282*4882a593Smuzhiyun {
283*4882a593Smuzhiyun 	struct zynqmp_aead_drv_ctx *drv_ctx;
284*4882a593Smuzhiyun 	struct crypto_aead *aead = crypto_aead_reqtfm(req);
285*4882a593Smuzhiyun 	struct aead_alg *alg = crypto_aead_alg(aead);
286*4882a593Smuzhiyun 	struct zynqmp_aead_req_ctx *rq_ctx = aead_request_ctx(req);
287*4882a593Smuzhiyun 
288*4882a593Smuzhiyun 	rq_ctx->op = ZYNQMP_AES_ENCRYPT;
289*4882a593Smuzhiyun 	drv_ctx = container_of(alg, struct zynqmp_aead_drv_ctx, alg.aead);
290*4882a593Smuzhiyun 
291*4882a593Smuzhiyun 	return crypto_transfer_aead_request_to_engine(drv_ctx->engine, req);
292*4882a593Smuzhiyun }
293*4882a593Smuzhiyun 
zynqmp_aes_aead_decrypt(struct aead_request * req)294*4882a593Smuzhiyun static int zynqmp_aes_aead_decrypt(struct aead_request *req)
295*4882a593Smuzhiyun {
296*4882a593Smuzhiyun 	struct zynqmp_aead_drv_ctx *drv_ctx;
297*4882a593Smuzhiyun 	struct crypto_aead *aead = crypto_aead_reqtfm(req);
298*4882a593Smuzhiyun 	struct aead_alg *alg = crypto_aead_alg(aead);
299*4882a593Smuzhiyun 	struct zynqmp_aead_req_ctx *rq_ctx = aead_request_ctx(req);
300*4882a593Smuzhiyun 
301*4882a593Smuzhiyun 	rq_ctx->op = ZYNQMP_AES_DECRYPT;
302*4882a593Smuzhiyun 	drv_ctx = container_of(alg, struct zynqmp_aead_drv_ctx, alg.aead);
303*4882a593Smuzhiyun 
304*4882a593Smuzhiyun 	return crypto_transfer_aead_request_to_engine(drv_ctx->engine, req);
305*4882a593Smuzhiyun }
306*4882a593Smuzhiyun 
zynqmp_aes_aead_init(struct crypto_aead * aead)307*4882a593Smuzhiyun static int zynqmp_aes_aead_init(struct crypto_aead *aead)
308*4882a593Smuzhiyun {
309*4882a593Smuzhiyun 	struct crypto_tfm *tfm = crypto_aead_tfm(aead);
310*4882a593Smuzhiyun 	struct zynqmp_aead_tfm_ctx *tfm_ctx =
311*4882a593Smuzhiyun 		(struct zynqmp_aead_tfm_ctx *)crypto_tfm_ctx(tfm);
312*4882a593Smuzhiyun 	struct zynqmp_aead_drv_ctx *drv_ctx;
313*4882a593Smuzhiyun 	struct aead_alg *alg = crypto_aead_alg(aead);
314*4882a593Smuzhiyun 
315*4882a593Smuzhiyun 	drv_ctx = container_of(alg, struct zynqmp_aead_drv_ctx, alg.aead);
316*4882a593Smuzhiyun 	tfm_ctx->dev = drv_ctx->dev;
317*4882a593Smuzhiyun 
318*4882a593Smuzhiyun 	tfm_ctx->engine_ctx.op.do_one_request = zynqmp_handle_aes_req;
319*4882a593Smuzhiyun 	tfm_ctx->engine_ctx.op.prepare_request = NULL;
320*4882a593Smuzhiyun 	tfm_ctx->engine_ctx.op.unprepare_request = NULL;
321*4882a593Smuzhiyun 
322*4882a593Smuzhiyun 	tfm_ctx->fbk_cipher = crypto_alloc_aead(drv_ctx->alg.aead.base.cra_name,
323*4882a593Smuzhiyun 						0,
324*4882a593Smuzhiyun 						CRYPTO_ALG_NEED_FALLBACK);
325*4882a593Smuzhiyun 
326*4882a593Smuzhiyun 	if (IS_ERR(tfm_ctx->fbk_cipher)) {
327*4882a593Smuzhiyun 		pr_err("%s() Error: failed to allocate fallback for %s\n",
328*4882a593Smuzhiyun 		       __func__, drv_ctx->alg.aead.base.cra_name);
329*4882a593Smuzhiyun 		return PTR_ERR(tfm_ctx->fbk_cipher);
330*4882a593Smuzhiyun 	}
331*4882a593Smuzhiyun 
332*4882a593Smuzhiyun 	crypto_aead_set_reqsize(aead,
333*4882a593Smuzhiyun 				max(sizeof(struct zynqmp_aead_req_ctx),
334*4882a593Smuzhiyun 				    sizeof(struct aead_request) +
335*4882a593Smuzhiyun 				    crypto_aead_reqsize(tfm_ctx->fbk_cipher)));
336*4882a593Smuzhiyun 	return 0;
337*4882a593Smuzhiyun }
338*4882a593Smuzhiyun 
zynqmp_aes_aead_exit(struct crypto_aead * aead)339*4882a593Smuzhiyun static void zynqmp_aes_aead_exit(struct crypto_aead *aead)
340*4882a593Smuzhiyun {
341*4882a593Smuzhiyun 	struct crypto_tfm *tfm = crypto_aead_tfm(aead);
342*4882a593Smuzhiyun 	struct zynqmp_aead_tfm_ctx *tfm_ctx =
343*4882a593Smuzhiyun 			(struct zynqmp_aead_tfm_ctx *)crypto_tfm_ctx(tfm);
344*4882a593Smuzhiyun 
345*4882a593Smuzhiyun 	if (tfm_ctx->fbk_cipher) {
346*4882a593Smuzhiyun 		crypto_free_aead(tfm_ctx->fbk_cipher);
347*4882a593Smuzhiyun 		tfm_ctx->fbk_cipher = NULL;
348*4882a593Smuzhiyun 	}
349*4882a593Smuzhiyun 	memzero_explicit(tfm_ctx, sizeof(struct zynqmp_aead_tfm_ctx));
350*4882a593Smuzhiyun }
351*4882a593Smuzhiyun 
352*4882a593Smuzhiyun static struct zynqmp_aead_drv_ctx aes_drv_ctx = {
353*4882a593Smuzhiyun 	.alg.aead = {
354*4882a593Smuzhiyun 		.setkey		= zynqmp_aes_aead_setkey,
355*4882a593Smuzhiyun 		.setauthsize	= zynqmp_aes_aead_setauthsize,
356*4882a593Smuzhiyun 		.encrypt	= zynqmp_aes_aead_encrypt,
357*4882a593Smuzhiyun 		.decrypt	= zynqmp_aes_aead_decrypt,
358*4882a593Smuzhiyun 		.init		= zynqmp_aes_aead_init,
359*4882a593Smuzhiyun 		.exit		= zynqmp_aes_aead_exit,
360*4882a593Smuzhiyun 		.ivsize		= GCM_AES_IV_SIZE,
361*4882a593Smuzhiyun 		.maxauthsize	= ZYNQMP_AES_AUTH_SIZE,
362*4882a593Smuzhiyun 		.base = {
363*4882a593Smuzhiyun 		.cra_name		= "gcm(aes)",
364*4882a593Smuzhiyun 		.cra_driver_name	= "xilinx-zynqmp-aes-gcm",
365*4882a593Smuzhiyun 		.cra_priority		= 200,
366*4882a593Smuzhiyun 		.cra_flags		= CRYPTO_ALG_TYPE_AEAD |
367*4882a593Smuzhiyun 					  CRYPTO_ALG_ASYNC |
368*4882a593Smuzhiyun 					  CRYPTO_ALG_ALLOCATES_MEMORY |
369*4882a593Smuzhiyun 					  CRYPTO_ALG_KERN_DRIVER_ONLY |
370*4882a593Smuzhiyun 					  CRYPTO_ALG_NEED_FALLBACK,
371*4882a593Smuzhiyun 		.cra_blocksize		= ZYNQMP_AES_BLK_SIZE,
372*4882a593Smuzhiyun 		.cra_ctxsize		= sizeof(struct zynqmp_aead_tfm_ctx),
373*4882a593Smuzhiyun 		.cra_module		= THIS_MODULE,
374*4882a593Smuzhiyun 		}
375*4882a593Smuzhiyun 	}
376*4882a593Smuzhiyun };
377*4882a593Smuzhiyun 
zynqmp_aes_aead_probe(struct platform_device * pdev)378*4882a593Smuzhiyun static int zynqmp_aes_aead_probe(struct platform_device *pdev)
379*4882a593Smuzhiyun {
380*4882a593Smuzhiyun 	struct device *dev = &pdev->dev;
381*4882a593Smuzhiyun 	int err;
382*4882a593Smuzhiyun 
383*4882a593Smuzhiyun 	/* ZynqMP AES driver supports only one instance */
384*4882a593Smuzhiyun 	if (!aes_drv_ctx.dev)
385*4882a593Smuzhiyun 		aes_drv_ctx.dev = dev;
386*4882a593Smuzhiyun 	else
387*4882a593Smuzhiyun 		return -ENODEV;
388*4882a593Smuzhiyun 
389*4882a593Smuzhiyun 	err = dma_set_mask_and_coherent(dev, DMA_BIT_MASK(ZYNQMP_DMA_BIT_MASK));
390*4882a593Smuzhiyun 	if (err < 0) {
391*4882a593Smuzhiyun 		dev_err(dev, "No usable DMA configuration\n");
392*4882a593Smuzhiyun 		return err;
393*4882a593Smuzhiyun 	}
394*4882a593Smuzhiyun 
395*4882a593Smuzhiyun 	aes_drv_ctx.engine = crypto_engine_alloc_init(dev, 1);
396*4882a593Smuzhiyun 	if (!aes_drv_ctx.engine) {
397*4882a593Smuzhiyun 		dev_err(dev, "Cannot alloc AES engine\n");
398*4882a593Smuzhiyun 		err = -ENOMEM;
399*4882a593Smuzhiyun 		goto err_engine;
400*4882a593Smuzhiyun 	}
401*4882a593Smuzhiyun 
402*4882a593Smuzhiyun 	err = crypto_engine_start(aes_drv_ctx.engine);
403*4882a593Smuzhiyun 	if (err) {
404*4882a593Smuzhiyun 		dev_err(dev, "Cannot start AES engine\n");
405*4882a593Smuzhiyun 		goto err_engine;
406*4882a593Smuzhiyun 	}
407*4882a593Smuzhiyun 
408*4882a593Smuzhiyun 	err = crypto_register_aead(&aes_drv_ctx.alg.aead);
409*4882a593Smuzhiyun 	if (err < 0) {
410*4882a593Smuzhiyun 		dev_err(dev, "Failed to register AEAD alg.\n");
411*4882a593Smuzhiyun 		goto err_aead;
412*4882a593Smuzhiyun 	}
413*4882a593Smuzhiyun 	return 0;
414*4882a593Smuzhiyun 
415*4882a593Smuzhiyun err_aead:
416*4882a593Smuzhiyun 	crypto_unregister_aead(&aes_drv_ctx.alg.aead);
417*4882a593Smuzhiyun 
418*4882a593Smuzhiyun err_engine:
419*4882a593Smuzhiyun 	if (aes_drv_ctx.engine)
420*4882a593Smuzhiyun 		crypto_engine_exit(aes_drv_ctx.engine);
421*4882a593Smuzhiyun 
422*4882a593Smuzhiyun 	return err;
423*4882a593Smuzhiyun }
424*4882a593Smuzhiyun 
zynqmp_aes_aead_remove(struct platform_device * pdev)425*4882a593Smuzhiyun static int zynqmp_aes_aead_remove(struct platform_device *pdev)
426*4882a593Smuzhiyun {
427*4882a593Smuzhiyun 	crypto_engine_exit(aes_drv_ctx.engine);
428*4882a593Smuzhiyun 	crypto_unregister_aead(&aes_drv_ctx.alg.aead);
429*4882a593Smuzhiyun 
430*4882a593Smuzhiyun 	return 0;
431*4882a593Smuzhiyun }
432*4882a593Smuzhiyun 
433*4882a593Smuzhiyun static const struct of_device_id zynqmp_aes_dt_ids[] = {
434*4882a593Smuzhiyun 	{ .compatible = "xlnx,zynqmp-aes" },
435*4882a593Smuzhiyun 	{ /* sentinel */ }
436*4882a593Smuzhiyun };
437*4882a593Smuzhiyun MODULE_DEVICE_TABLE(of, zynqmp_aes_dt_ids);
438*4882a593Smuzhiyun 
439*4882a593Smuzhiyun static struct platform_driver zynqmp_aes_driver = {
440*4882a593Smuzhiyun 	.probe	= zynqmp_aes_aead_probe,
441*4882a593Smuzhiyun 	.remove = zynqmp_aes_aead_remove,
442*4882a593Smuzhiyun 	.driver = {
443*4882a593Smuzhiyun 		.name		= "zynqmp-aes",
444*4882a593Smuzhiyun 		.of_match_table = zynqmp_aes_dt_ids,
445*4882a593Smuzhiyun 	},
446*4882a593Smuzhiyun };
447*4882a593Smuzhiyun 
448*4882a593Smuzhiyun module_platform_driver(zynqmp_aes_driver);
449*4882a593Smuzhiyun MODULE_LICENSE("GPL");
450