1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun * Xilinx ZynqMP AES Driver.
4*4882a593Smuzhiyun * Copyright (c) 2020 Xilinx Inc.
5*4882a593Smuzhiyun */
6*4882a593Smuzhiyun
7*4882a593Smuzhiyun #include <crypto/aes.h>
8*4882a593Smuzhiyun #include <crypto/engine.h>
9*4882a593Smuzhiyun #include <crypto/gcm.h>
10*4882a593Smuzhiyun #include <crypto/internal/aead.h>
11*4882a593Smuzhiyun #include <crypto/scatterwalk.h>
12*4882a593Smuzhiyun
13*4882a593Smuzhiyun #include <linux/dma-mapping.h>
14*4882a593Smuzhiyun #include <linux/module.h>
15*4882a593Smuzhiyun #include <linux/of_device.h>
16*4882a593Smuzhiyun #include <linux/platform_device.h>
17*4882a593Smuzhiyun
18*4882a593Smuzhiyun #include <linux/firmware/xlnx-zynqmp.h>
19*4882a593Smuzhiyun
20*4882a593Smuzhiyun #define ZYNQMP_DMA_BIT_MASK 32U
21*4882a593Smuzhiyun
22*4882a593Smuzhiyun #define ZYNQMP_AES_KEY_SIZE AES_KEYSIZE_256
23*4882a593Smuzhiyun #define ZYNQMP_AES_AUTH_SIZE 16U
24*4882a593Smuzhiyun #define ZYNQMP_KEY_SRC_SEL_KEY_LEN 1U
25*4882a593Smuzhiyun #define ZYNQMP_AES_BLK_SIZE 1U
26*4882a593Smuzhiyun #define ZYNQMP_AES_MIN_INPUT_BLK_SIZE 4U
27*4882a593Smuzhiyun #define ZYNQMP_AES_WORD_LEN 4U
28*4882a593Smuzhiyun
29*4882a593Smuzhiyun #define ZYNQMP_AES_GCM_TAG_MISMATCH_ERR 0x01
30*4882a593Smuzhiyun #define ZYNQMP_AES_WRONG_KEY_SRC_ERR 0x13
31*4882a593Smuzhiyun #define ZYNQMP_AES_PUF_NOT_PROGRAMMED 0xE300
32*4882a593Smuzhiyun
33*4882a593Smuzhiyun enum zynqmp_aead_op {
34*4882a593Smuzhiyun ZYNQMP_AES_DECRYPT = 0,
35*4882a593Smuzhiyun ZYNQMP_AES_ENCRYPT
36*4882a593Smuzhiyun };
37*4882a593Smuzhiyun
38*4882a593Smuzhiyun enum zynqmp_aead_keysrc {
39*4882a593Smuzhiyun ZYNQMP_AES_KUP_KEY = 0,
40*4882a593Smuzhiyun ZYNQMP_AES_DEV_KEY,
41*4882a593Smuzhiyun ZYNQMP_AES_PUF_KEY
42*4882a593Smuzhiyun };
43*4882a593Smuzhiyun
44*4882a593Smuzhiyun struct zynqmp_aead_drv_ctx {
45*4882a593Smuzhiyun union {
46*4882a593Smuzhiyun struct aead_alg aead;
47*4882a593Smuzhiyun } alg;
48*4882a593Smuzhiyun struct device *dev;
49*4882a593Smuzhiyun struct crypto_engine *engine;
50*4882a593Smuzhiyun };
51*4882a593Smuzhiyun
52*4882a593Smuzhiyun struct zynqmp_aead_hw_req {
53*4882a593Smuzhiyun u64 src;
54*4882a593Smuzhiyun u64 iv;
55*4882a593Smuzhiyun u64 key;
56*4882a593Smuzhiyun u64 dst;
57*4882a593Smuzhiyun u64 size;
58*4882a593Smuzhiyun u64 op;
59*4882a593Smuzhiyun u64 keysrc;
60*4882a593Smuzhiyun };
61*4882a593Smuzhiyun
62*4882a593Smuzhiyun struct zynqmp_aead_tfm_ctx {
63*4882a593Smuzhiyun struct crypto_engine_ctx engine_ctx;
64*4882a593Smuzhiyun struct device *dev;
65*4882a593Smuzhiyun u8 key[ZYNQMP_AES_KEY_SIZE];
66*4882a593Smuzhiyun u8 *iv;
67*4882a593Smuzhiyun u32 keylen;
68*4882a593Smuzhiyun u32 authsize;
69*4882a593Smuzhiyun enum zynqmp_aead_keysrc keysrc;
70*4882a593Smuzhiyun struct crypto_aead *fbk_cipher;
71*4882a593Smuzhiyun };
72*4882a593Smuzhiyun
73*4882a593Smuzhiyun struct zynqmp_aead_req_ctx {
74*4882a593Smuzhiyun enum zynqmp_aead_op op;
75*4882a593Smuzhiyun };
76*4882a593Smuzhiyun
zynqmp_aes_aead_cipher(struct aead_request * req)77*4882a593Smuzhiyun static int zynqmp_aes_aead_cipher(struct aead_request *req)
78*4882a593Smuzhiyun {
79*4882a593Smuzhiyun struct crypto_aead *aead = crypto_aead_reqtfm(req);
80*4882a593Smuzhiyun struct zynqmp_aead_tfm_ctx *tfm_ctx = crypto_aead_ctx(aead);
81*4882a593Smuzhiyun struct zynqmp_aead_req_ctx *rq_ctx = aead_request_ctx(req);
82*4882a593Smuzhiyun struct device *dev = tfm_ctx->dev;
83*4882a593Smuzhiyun struct zynqmp_aead_hw_req *hwreq;
84*4882a593Smuzhiyun dma_addr_t dma_addr_data, dma_addr_hw_req;
85*4882a593Smuzhiyun unsigned int data_size;
86*4882a593Smuzhiyun unsigned int status;
87*4882a593Smuzhiyun int ret;
88*4882a593Smuzhiyun size_t dma_size;
89*4882a593Smuzhiyun char *kbuf;
90*4882a593Smuzhiyun int err;
91*4882a593Smuzhiyun
92*4882a593Smuzhiyun if (tfm_ctx->keysrc == ZYNQMP_AES_KUP_KEY)
93*4882a593Smuzhiyun dma_size = req->cryptlen + ZYNQMP_AES_KEY_SIZE
94*4882a593Smuzhiyun + GCM_AES_IV_SIZE;
95*4882a593Smuzhiyun else
96*4882a593Smuzhiyun dma_size = req->cryptlen + GCM_AES_IV_SIZE;
97*4882a593Smuzhiyun
98*4882a593Smuzhiyun kbuf = dma_alloc_coherent(dev, dma_size, &dma_addr_data, GFP_KERNEL);
99*4882a593Smuzhiyun if (!kbuf)
100*4882a593Smuzhiyun return -ENOMEM;
101*4882a593Smuzhiyun
102*4882a593Smuzhiyun hwreq = dma_alloc_coherent(dev, sizeof(struct zynqmp_aead_hw_req),
103*4882a593Smuzhiyun &dma_addr_hw_req, GFP_KERNEL);
104*4882a593Smuzhiyun if (!hwreq) {
105*4882a593Smuzhiyun dma_free_coherent(dev, dma_size, kbuf, dma_addr_data);
106*4882a593Smuzhiyun return -ENOMEM;
107*4882a593Smuzhiyun }
108*4882a593Smuzhiyun
109*4882a593Smuzhiyun data_size = req->cryptlen;
110*4882a593Smuzhiyun scatterwalk_map_and_copy(kbuf, req->src, 0, req->cryptlen, 0);
111*4882a593Smuzhiyun memcpy(kbuf + data_size, req->iv, GCM_AES_IV_SIZE);
112*4882a593Smuzhiyun
113*4882a593Smuzhiyun hwreq->src = dma_addr_data;
114*4882a593Smuzhiyun hwreq->dst = dma_addr_data;
115*4882a593Smuzhiyun hwreq->iv = hwreq->src + data_size;
116*4882a593Smuzhiyun hwreq->keysrc = tfm_ctx->keysrc;
117*4882a593Smuzhiyun hwreq->op = rq_ctx->op;
118*4882a593Smuzhiyun
119*4882a593Smuzhiyun if (hwreq->op == ZYNQMP_AES_ENCRYPT)
120*4882a593Smuzhiyun hwreq->size = data_size;
121*4882a593Smuzhiyun else
122*4882a593Smuzhiyun hwreq->size = data_size - ZYNQMP_AES_AUTH_SIZE;
123*4882a593Smuzhiyun
124*4882a593Smuzhiyun if (hwreq->keysrc == ZYNQMP_AES_KUP_KEY) {
125*4882a593Smuzhiyun memcpy(kbuf + data_size + GCM_AES_IV_SIZE,
126*4882a593Smuzhiyun tfm_ctx->key, ZYNQMP_AES_KEY_SIZE);
127*4882a593Smuzhiyun
128*4882a593Smuzhiyun hwreq->key = hwreq->src + data_size + GCM_AES_IV_SIZE;
129*4882a593Smuzhiyun } else {
130*4882a593Smuzhiyun hwreq->key = 0;
131*4882a593Smuzhiyun }
132*4882a593Smuzhiyun
133*4882a593Smuzhiyun ret = zynqmp_pm_aes_engine(dma_addr_hw_req, &status);
134*4882a593Smuzhiyun
135*4882a593Smuzhiyun if (ret) {
136*4882a593Smuzhiyun dev_err(dev, "ERROR: AES PM API failed\n");
137*4882a593Smuzhiyun err = ret;
138*4882a593Smuzhiyun } else if (status) {
139*4882a593Smuzhiyun switch (status) {
140*4882a593Smuzhiyun case ZYNQMP_AES_GCM_TAG_MISMATCH_ERR:
141*4882a593Smuzhiyun dev_err(dev, "ERROR: Gcm Tag mismatch\n");
142*4882a593Smuzhiyun break;
143*4882a593Smuzhiyun case ZYNQMP_AES_WRONG_KEY_SRC_ERR:
144*4882a593Smuzhiyun dev_err(dev, "ERROR: Wrong KeySrc, enable secure mode\n");
145*4882a593Smuzhiyun break;
146*4882a593Smuzhiyun case ZYNQMP_AES_PUF_NOT_PROGRAMMED:
147*4882a593Smuzhiyun dev_err(dev, "ERROR: PUF is not registered\n");
148*4882a593Smuzhiyun break;
149*4882a593Smuzhiyun default:
150*4882a593Smuzhiyun dev_err(dev, "ERROR: Unknown error\n");
151*4882a593Smuzhiyun break;
152*4882a593Smuzhiyun }
153*4882a593Smuzhiyun err = -status;
154*4882a593Smuzhiyun } else {
155*4882a593Smuzhiyun if (hwreq->op == ZYNQMP_AES_ENCRYPT)
156*4882a593Smuzhiyun data_size = data_size + ZYNQMP_AES_AUTH_SIZE;
157*4882a593Smuzhiyun else
158*4882a593Smuzhiyun data_size = data_size - ZYNQMP_AES_AUTH_SIZE;
159*4882a593Smuzhiyun
160*4882a593Smuzhiyun sg_copy_from_buffer(req->dst, sg_nents(req->dst),
161*4882a593Smuzhiyun kbuf, data_size);
162*4882a593Smuzhiyun err = 0;
163*4882a593Smuzhiyun }
164*4882a593Smuzhiyun
165*4882a593Smuzhiyun if (kbuf) {
166*4882a593Smuzhiyun memzero_explicit(kbuf, dma_size);
167*4882a593Smuzhiyun dma_free_coherent(dev, dma_size, kbuf, dma_addr_data);
168*4882a593Smuzhiyun }
169*4882a593Smuzhiyun if (hwreq) {
170*4882a593Smuzhiyun memzero_explicit(hwreq, sizeof(struct zynqmp_aead_hw_req));
171*4882a593Smuzhiyun dma_free_coherent(dev, sizeof(struct zynqmp_aead_hw_req),
172*4882a593Smuzhiyun hwreq, dma_addr_hw_req);
173*4882a593Smuzhiyun }
174*4882a593Smuzhiyun return err;
175*4882a593Smuzhiyun }
176*4882a593Smuzhiyun
zynqmp_fallback_check(struct zynqmp_aead_tfm_ctx * tfm_ctx,struct aead_request * req)177*4882a593Smuzhiyun static int zynqmp_fallback_check(struct zynqmp_aead_tfm_ctx *tfm_ctx,
178*4882a593Smuzhiyun struct aead_request *req)
179*4882a593Smuzhiyun {
180*4882a593Smuzhiyun int need_fallback = 0;
181*4882a593Smuzhiyun struct zynqmp_aead_req_ctx *rq_ctx = aead_request_ctx(req);
182*4882a593Smuzhiyun
183*4882a593Smuzhiyun if (tfm_ctx->authsize != ZYNQMP_AES_AUTH_SIZE)
184*4882a593Smuzhiyun need_fallback = 1;
185*4882a593Smuzhiyun
186*4882a593Smuzhiyun if (tfm_ctx->keysrc == ZYNQMP_AES_KUP_KEY &&
187*4882a593Smuzhiyun tfm_ctx->keylen != ZYNQMP_AES_KEY_SIZE) {
188*4882a593Smuzhiyun need_fallback = 1;
189*4882a593Smuzhiyun }
190*4882a593Smuzhiyun if (req->assoclen != 0 ||
191*4882a593Smuzhiyun req->cryptlen < ZYNQMP_AES_MIN_INPUT_BLK_SIZE) {
192*4882a593Smuzhiyun need_fallback = 1;
193*4882a593Smuzhiyun }
194*4882a593Smuzhiyun if ((req->cryptlen % ZYNQMP_AES_WORD_LEN) != 0)
195*4882a593Smuzhiyun need_fallback = 1;
196*4882a593Smuzhiyun
197*4882a593Smuzhiyun if (rq_ctx->op == ZYNQMP_AES_DECRYPT &&
198*4882a593Smuzhiyun req->cryptlen <= ZYNQMP_AES_AUTH_SIZE) {
199*4882a593Smuzhiyun need_fallback = 1;
200*4882a593Smuzhiyun }
201*4882a593Smuzhiyun return need_fallback;
202*4882a593Smuzhiyun }
203*4882a593Smuzhiyun
zynqmp_handle_aes_req(struct crypto_engine * engine,void * req)204*4882a593Smuzhiyun static int zynqmp_handle_aes_req(struct crypto_engine *engine,
205*4882a593Smuzhiyun void *req)
206*4882a593Smuzhiyun {
207*4882a593Smuzhiyun struct aead_request *areq =
208*4882a593Smuzhiyun container_of(req, struct aead_request, base);
209*4882a593Smuzhiyun struct crypto_aead *aead = crypto_aead_reqtfm(req);
210*4882a593Smuzhiyun struct zynqmp_aead_tfm_ctx *tfm_ctx = crypto_aead_ctx(aead);
211*4882a593Smuzhiyun struct zynqmp_aead_req_ctx *rq_ctx = aead_request_ctx(areq);
212*4882a593Smuzhiyun struct aead_request *subreq = aead_request_ctx(req);
213*4882a593Smuzhiyun int need_fallback;
214*4882a593Smuzhiyun int err;
215*4882a593Smuzhiyun
216*4882a593Smuzhiyun need_fallback = zynqmp_fallback_check(tfm_ctx, areq);
217*4882a593Smuzhiyun
218*4882a593Smuzhiyun if (need_fallback) {
219*4882a593Smuzhiyun aead_request_set_tfm(subreq, tfm_ctx->fbk_cipher);
220*4882a593Smuzhiyun
221*4882a593Smuzhiyun aead_request_set_callback(subreq, areq->base.flags,
222*4882a593Smuzhiyun NULL, NULL);
223*4882a593Smuzhiyun aead_request_set_crypt(subreq, areq->src, areq->dst,
224*4882a593Smuzhiyun areq->cryptlen, areq->iv);
225*4882a593Smuzhiyun aead_request_set_ad(subreq, areq->assoclen);
226*4882a593Smuzhiyun if (rq_ctx->op == ZYNQMP_AES_ENCRYPT)
227*4882a593Smuzhiyun err = crypto_aead_encrypt(subreq);
228*4882a593Smuzhiyun else
229*4882a593Smuzhiyun err = crypto_aead_decrypt(subreq);
230*4882a593Smuzhiyun } else {
231*4882a593Smuzhiyun err = zynqmp_aes_aead_cipher(areq);
232*4882a593Smuzhiyun }
233*4882a593Smuzhiyun
234*4882a593Smuzhiyun crypto_finalize_aead_request(engine, areq, err);
235*4882a593Smuzhiyun return 0;
236*4882a593Smuzhiyun }
237*4882a593Smuzhiyun
zynqmp_aes_aead_setkey(struct crypto_aead * aead,const u8 * key,unsigned int keylen)238*4882a593Smuzhiyun static int zynqmp_aes_aead_setkey(struct crypto_aead *aead, const u8 *key,
239*4882a593Smuzhiyun unsigned int keylen)
240*4882a593Smuzhiyun {
241*4882a593Smuzhiyun struct crypto_tfm *tfm = crypto_aead_tfm(aead);
242*4882a593Smuzhiyun struct zynqmp_aead_tfm_ctx *tfm_ctx =
243*4882a593Smuzhiyun (struct zynqmp_aead_tfm_ctx *)crypto_tfm_ctx(tfm);
244*4882a593Smuzhiyun unsigned char keysrc;
245*4882a593Smuzhiyun
246*4882a593Smuzhiyun if (keylen == ZYNQMP_KEY_SRC_SEL_KEY_LEN) {
247*4882a593Smuzhiyun keysrc = *key;
248*4882a593Smuzhiyun if (keysrc == ZYNQMP_AES_KUP_KEY ||
249*4882a593Smuzhiyun keysrc == ZYNQMP_AES_DEV_KEY ||
250*4882a593Smuzhiyun keysrc == ZYNQMP_AES_PUF_KEY) {
251*4882a593Smuzhiyun tfm_ctx->keysrc = (enum zynqmp_aead_keysrc)keysrc;
252*4882a593Smuzhiyun } else {
253*4882a593Smuzhiyun tfm_ctx->keylen = keylen;
254*4882a593Smuzhiyun }
255*4882a593Smuzhiyun } else {
256*4882a593Smuzhiyun tfm_ctx->keylen = keylen;
257*4882a593Smuzhiyun if (keylen == ZYNQMP_AES_KEY_SIZE) {
258*4882a593Smuzhiyun tfm_ctx->keysrc = ZYNQMP_AES_KUP_KEY;
259*4882a593Smuzhiyun memcpy(tfm_ctx->key, key, keylen);
260*4882a593Smuzhiyun }
261*4882a593Smuzhiyun }
262*4882a593Smuzhiyun
263*4882a593Smuzhiyun tfm_ctx->fbk_cipher->base.crt_flags &= ~CRYPTO_TFM_REQ_MASK;
264*4882a593Smuzhiyun tfm_ctx->fbk_cipher->base.crt_flags |= (aead->base.crt_flags &
265*4882a593Smuzhiyun CRYPTO_TFM_REQ_MASK);
266*4882a593Smuzhiyun
267*4882a593Smuzhiyun return crypto_aead_setkey(tfm_ctx->fbk_cipher, key, keylen);
268*4882a593Smuzhiyun }
269*4882a593Smuzhiyun
zynqmp_aes_aead_setauthsize(struct crypto_aead * aead,unsigned int authsize)270*4882a593Smuzhiyun static int zynqmp_aes_aead_setauthsize(struct crypto_aead *aead,
271*4882a593Smuzhiyun unsigned int authsize)
272*4882a593Smuzhiyun {
273*4882a593Smuzhiyun struct crypto_tfm *tfm = crypto_aead_tfm(aead);
274*4882a593Smuzhiyun struct zynqmp_aead_tfm_ctx *tfm_ctx =
275*4882a593Smuzhiyun (struct zynqmp_aead_tfm_ctx *)crypto_tfm_ctx(tfm);
276*4882a593Smuzhiyun
277*4882a593Smuzhiyun tfm_ctx->authsize = authsize;
278*4882a593Smuzhiyun return crypto_aead_setauthsize(tfm_ctx->fbk_cipher, authsize);
279*4882a593Smuzhiyun }
280*4882a593Smuzhiyun
zynqmp_aes_aead_encrypt(struct aead_request * req)281*4882a593Smuzhiyun static int zynqmp_aes_aead_encrypt(struct aead_request *req)
282*4882a593Smuzhiyun {
283*4882a593Smuzhiyun struct zynqmp_aead_drv_ctx *drv_ctx;
284*4882a593Smuzhiyun struct crypto_aead *aead = crypto_aead_reqtfm(req);
285*4882a593Smuzhiyun struct aead_alg *alg = crypto_aead_alg(aead);
286*4882a593Smuzhiyun struct zynqmp_aead_req_ctx *rq_ctx = aead_request_ctx(req);
287*4882a593Smuzhiyun
288*4882a593Smuzhiyun rq_ctx->op = ZYNQMP_AES_ENCRYPT;
289*4882a593Smuzhiyun drv_ctx = container_of(alg, struct zynqmp_aead_drv_ctx, alg.aead);
290*4882a593Smuzhiyun
291*4882a593Smuzhiyun return crypto_transfer_aead_request_to_engine(drv_ctx->engine, req);
292*4882a593Smuzhiyun }
293*4882a593Smuzhiyun
zynqmp_aes_aead_decrypt(struct aead_request * req)294*4882a593Smuzhiyun static int zynqmp_aes_aead_decrypt(struct aead_request *req)
295*4882a593Smuzhiyun {
296*4882a593Smuzhiyun struct zynqmp_aead_drv_ctx *drv_ctx;
297*4882a593Smuzhiyun struct crypto_aead *aead = crypto_aead_reqtfm(req);
298*4882a593Smuzhiyun struct aead_alg *alg = crypto_aead_alg(aead);
299*4882a593Smuzhiyun struct zynqmp_aead_req_ctx *rq_ctx = aead_request_ctx(req);
300*4882a593Smuzhiyun
301*4882a593Smuzhiyun rq_ctx->op = ZYNQMP_AES_DECRYPT;
302*4882a593Smuzhiyun drv_ctx = container_of(alg, struct zynqmp_aead_drv_ctx, alg.aead);
303*4882a593Smuzhiyun
304*4882a593Smuzhiyun return crypto_transfer_aead_request_to_engine(drv_ctx->engine, req);
305*4882a593Smuzhiyun }
306*4882a593Smuzhiyun
zynqmp_aes_aead_init(struct crypto_aead * aead)307*4882a593Smuzhiyun static int zynqmp_aes_aead_init(struct crypto_aead *aead)
308*4882a593Smuzhiyun {
309*4882a593Smuzhiyun struct crypto_tfm *tfm = crypto_aead_tfm(aead);
310*4882a593Smuzhiyun struct zynqmp_aead_tfm_ctx *tfm_ctx =
311*4882a593Smuzhiyun (struct zynqmp_aead_tfm_ctx *)crypto_tfm_ctx(tfm);
312*4882a593Smuzhiyun struct zynqmp_aead_drv_ctx *drv_ctx;
313*4882a593Smuzhiyun struct aead_alg *alg = crypto_aead_alg(aead);
314*4882a593Smuzhiyun
315*4882a593Smuzhiyun drv_ctx = container_of(alg, struct zynqmp_aead_drv_ctx, alg.aead);
316*4882a593Smuzhiyun tfm_ctx->dev = drv_ctx->dev;
317*4882a593Smuzhiyun
318*4882a593Smuzhiyun tfm_ctx->engine_ctx.op.do_one_request = zynqmp_handle_aes_req;
319*4882a593Smuzhiyun tfm_ctx->engine_ctx.op.prepare_request = NULL;
320*4882a593Smuzhiyun tfm_ctx->engine_ctx.op.unprepare_request = NULL;
321*4882a593Smuzhiyun
322*4882a593Smuzhiyun tfm_ctx->fbk_cipher = crypto_alloc_aead(drv_ctx->alg.aead.base.cra_name,
323*4882a593Smuzhiyun 0,
324*4882a593Smuzhiyun CRYPTO_ALG_NEED_FALLBACK);
325*4882a593Smuzhiyun
326*4882a593Smuzhiyun if (IS_ERR(tfm_ctx->fbk_cipher)) {
327*4882a593Smuzhiyun pr_err("%s() Error: failed to allocate fallback for %s\n",
328*4882a593Smuzhiyun __func__, drv_ctx->alg.aead.base.cra_name);
329*4882a593Smuzhiyun return PTR_ERR(tfm_ctx->fbk_cipher);
330*4882a593Smuzhiyun }
331*4882a593Smuzhiyun
332*4882a593Smuzhiyun crypto_aead_set_reqsize(aead,
333*4882a593Smuzhiyun max(sizeof(struct zynqmp_aead_req_ctx),
334*4882a593Smuzhiyun sizeof(struct aead_request) +
335*4882a593Smuzhiyun crypto_aead_reqsize(tfm_ctx->fbk_cipher)));
336*4882a593Smuzhiyun return 0;
337*4882a593Smuzhiyun }
338*4882a593Smuzhiyun
zynqmp_aes_aead_exit(struct crypto_aead * aead)339*4882a593Smuzhiyun static void zynqmp_aes_aead_exit(struct crypto_aead *aead)
340*4882a593Smuzhiyun {
341*4882a593Smuzhiyun struct crypto_tfm *tfm = crypto_aead_tfm(aead);
342*4882a593Smuzhiyun struct zynqmp_aead_tfm_ctx *tfm_ctx =
343*4882a593Smuzhiyun (struct zynqmp_aead_tfm_ctx *)crypto_tfm_ctx(tfm);
344*4882a593Smuzhiyun
345*4882a593Smuzhiyun if (tfm_ctx->fbk_cipher) {
346*4882a593Smuzhiyun crypto_free_aead(tfm_ctx->fbk_cipher);
347*4882a593Smuzhiyun tfm_ctx->fbk_cipher = NULL;
348*4882a593Smuzhiyun }
349*4882a593Smuzhiyun memzero_explicit(tfm_ctx, sizeof(struct zynqmp_aead_tfm_ctx));
350*4882a593Smuzhiyun }
351*4882a593Smuzhiyun
352*4882a593Smuzhiyun static struct zynqmp_aead_drv_ctx aes_drv_ctx = {
353*4882a593Smuzhiyun .alg.aead = {
354*4882a593Smuzhiyun .setkey = zynqmp_aes_aead_setkey,
355*4882a593Smuzhiyun .setauthsize = zynqmp_aes_aead_setauthsize,
356*4882a593Smuzhiyun .encrypt = zynqmp_aes_aead_encrypt,
357*4882a593Smuzhiyun .decrypt = zynqmp_aes_aead_decrypt,
358*4882a593Smuzhiyun .init = zynqmp_aes_aead_init,
359*4882a593Smuzhiyun .exit = zynqmp_aes_aead_exit,
360*4882a593Smuzhiyun .ivsize = GCM_AES_IV_SIZE,
361*4882a593Smuzhiyun .maxauthsize = ZYNQMP_AES_AUTH_SIZE,
362*4882a593Smuzhiyun .base = {
363*4882a593Smuzhiyun .cra_name = "gcm(aes)",
364*4882a593Smuzhiyun .cra_driver_name = "xilinx-zynqmp-aes-gcm",
365*4882a593Smuzhiyun .cra_priority = 200,
366*4882a593Smuzhiyun .cra_flags = CRYPTO_ALG_TYPE_AEAD |
367*4882a593Smuzhiyun CRYPTO_ALG_ASYNC |
368*4882a593Smuzhiyun CRYPTO_ALG_ALLOCATES_MEMORY |
369*4882a593Smuzhiyun CRYPTO_ALG_KERN_DRIVER_ONLY |
370*4882a593Smuzhiyun CRYPTO_ALG_NEED_FALLBACK,
371*4882a593Smuzhiyun .cra_blocksize = ZYNQMP_AES_BLK_SIZE,
372*4882a593Smuzhiyun .cra_ctxsize = sizeof(struct zynqmp_aead_tfm_ctx),
373*4882a593Smuzhiyun .cra_module = THIS_MODULE,
374*4882a593Smuzhiyun }
375*4882a593Smuzhiyun }
376*4882a593Smuzhiyun };
377*4882a593Smuzhiyun
zynqmp_aes_aead_probe(struct platform_device * pdev)378*4882a593Smuzhiyun static int zynqmp_aes_aead_probe(struct platform_device *pdev)
379*4882a593Smuzhiyun {
380*4882a593Smuzhiyun struct device *dev = &pdev->dev;
381*4882a593Smuzhiyun int err;
382*4882a593Smuzhiyun
383*4882a593Smuzhiyun /* ZynqMP AES driver supports only one instance */
384*4882a593Smuzhiyun if (!aes_drv_ctx.dev)
385*4882a593Smuzhiyun aes_drv_ctx.dev = dev;
386*4882a593Smuzhiyun else
387*4882a593Smuzhiyun return -ENODEV;
388*4882a593Smuzhiyun
389*4882a593Smuzhiyun err = dma_set_mask_and_coherent(dev, DMA_BIT_MASK(ZYNQMP_DMA_BIT_MASK));
390*4882a593Smuzhiyun if (err < 0) {
391*4882a593Smuzhiyun dev_err(dev, "No usable DMA configuration\n");
392*4882a593Smuzhiyun return err;
393*4882a593Smuzhiyun }
394*4882a593Smuzhiyun
395*4882a593Smuzhiyun aes_drv_ctx.engine = crypto_engine_alloc_init(dev, 1);
396*4882a593Smuzhiyun if (!aes_drv_ctx.engine) {
397*4882a593Smuzhiyun dev_err(dev, "Cannot alloc AES engine\n");
398*4882a593Smuzhiyun err = -ENOMEM;
399*4882a593Smuzhiyun goto err_engine;
400*4882a593Smuzhiyun }
401*4882a593Smuzhiyun
402*4882a593Smuzhiyun err = crypto_engine_start(aes_drv_ctx.engine);
403*4882a593Smuzhiyun if (err) {
404*4882a593Smuzhiyun dev_err(dev, "Cannot start AES engine\n");
405*4882a593Smuzhiyun goto err_engine;
406*4882a593Smuzhiyun }
407*4882a593Smuzhiyun
408*4882a593Smuzhiyun err = crypto_register_aead(&aes_drv_ctx.alg.aead);
409*4882a593Smuzhiyun if (err < 0) {
410*4882a593Smuzhiyun dev_err(dev, "Failed to register AEAD alg.\n");
411*4882a593Smuzhiyun goto err_aead;
412*4882a593Smuzhiyun }
413*4882a593Smuzhiyun return 0;
414*4882a593Smuzhiyun
415*4882a593Smuzhiyun err_aead:
416*4882a593Smuzhiyun crypto_unregister_aead(&aes_drv_ctx.alg.aead);
417*4882a593Smuzhiyun
418*4882a593Smuzhiyun err_engine:
419*4882a593Smuzhiyun if (aes_drv_ctx.engine)
420*4882a593Smuzhiyun crypto_engine_exit(aes_drv_ctx.engine);
421*4882a593Smuzhiyun
422*4882a593Smuzhiyun return err;
423*4882a593Smuzhiyun }
424*4882a593Smuzhiyun
zynqmp_aes_aead_remove(struct platform_device * pdev)425*4882a593Smuzhiyun static int zynqmp_aes_aead_remove(struct platform_device *pdev)
426*4882a593Smuzhiyun {
427*4882a593Smuzhiyun crypto_engine_exit(aes_drv_ctx.engine);
428*4882a593Smuzhiyun crypto_unregister_aead(&aes_drv_ctx.alg.aead);
429*4882a593Smuzhiyun
430*4882a593Smuzhiyun return 0;
431*4882a593Smuzhiyun }
432*4882a593Smuzhiyun
433*4882a593Smuzhiyun static const struct of_device_id zynqmp_aes_dt_ids[] = {
434*4882a593Smuzhiyun { .compatible = "xlnx,zynqmp-aes" },
435*4882a593Smuzhiyun { /* sentinel */ }
436*4882a593Smuzhiyun };
437*4882a593Smuzhiyun MODULE_DEVICE_TABLE(of, zynqmp_aes_dt_ids);
438*4882a593Smuzhiyun
439*4882a593Smuzhiyun static struct platform_driver zynqmp_aes_driver = {
440*4882a593Smuzhiyun .probe = zynqmp_aes_aead_probe,
441*4882a593Smuzhiyun .remove = zynqmp_aes_aead_remove,
442*4882a593Smuzhiyun .driver = {
443*4882a593Smuzhiyun .name = "zynqmp-aes",
444*4882a593Smuzhiyun .of_match_table = zynqmp_aes_dt_ids,
445*4882a593Smuzhiyun },
446*4882a593Smuzhiyun };
447*4882a593Smuzhiyun
448*4882a593Smuzhiyun module_platform_driver(zynqmp_aes_driver);
449*4882a593Smuzhiyun MODULE_LICENSE("GPL");
450