1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0-only
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun * Amlogic Secure Monitor driver
4*4882a593Smuzhiyun *
5*4882a593Smuzhiyun * Copyright (C) 2016 Endless Mobile, Inc.
6*4882a593Smuzhiyun * Author: Carlo Caione <carlo@endlessm.com>
7*4882a593Smuzhiyun */
8*4882a593Smuzhiyun
9*4882a593Smuzhiyun #define pr_fmt(fmt) "meson-sm: " fmt
10*4882a593Smuzhiyun
11*4882a593Smuzhiyun #include <linux/arm-smccc.h>
12*4882a593Smuzhiyun #include <linux/bug.h>
13*4882a593Smuzhiyun #include <linux/io.h>
14*4882a593Smuzhiyun #include <linux/module.h>
15*4882a593Smuzhiyun #include <linux/of.h>
16*4882a593Smuzhiyun #include <linux/of_device.h>
17*4882a593Smuzhiyun #include <linux/platform_device.h>
18*4882a593Smuzhiyun #include <linux/printk.h>
19*4882a593Smuzhiyun #include <linux/types.h>
20*4882a593Smuzhiyun #include <linux/sizes.h>
21*4882a593Smuzhiyun #include <linux/slab.h>
22*4882a593Smuzhiyun
23*4882a593Smuzhiyun #include <linux/firmware/meson/meson_sm.h>
24*4882a593Smuzhiyun
25*4882a593Smuzhiyun struct meson_sm_cmd {
26*4882a593Smuzhiyun unsigned int index;
27*4882a593Smuzhiyun u32 smc_id;
28*4882a593Smuzhiyun };
29*4882a593Smuzhiyun #define CMD(d, s) { .index = (d), .smc_id = (s), }
30*4882a593Smuzhiyun
31*4882a593Smuzhiyun struct meson_sm_chip {
32*4882a593Smuzhiyun unsigned int shmem_size;
33*4882a593Smuzhiyun u32 cmd_shmem_in_base;
34*4882a593Smuzhiyun u32 cmd_shmem_out_base;
35*4882a593Smuzhiyun struct meson_sm_cmd cmd[];
36*4882a593Smuzhiyun };
37*4882a593Smuzhiyun
38*4882a593Smuzhiyun static const struct meson_sm_chip gxbb_chip = {
39*4882a593Smuzhiyun .shmem_size = SZ_4K,
40*4882a593Smuzhiyun .cmd_shmem_in_base = 0x82000020,
41*4882a593Smuzhiyun .cmd_shmem_out_base = 0x82000021,
42*4882a593Smuzhiyun .cmd = {
43*4882a593Smuzhiyun CMD(SM_EFUSE_READ, 0x82000030),
44*4882a593Smuzhiyun CMD(SM_EFUSE_WRITE, 0x82000031),
45*4882a593Smuzhiyun CMD(SM_EFUSE_USER_MAX, 0x82000033),
46*4882a593Smuzhiyun CMD(SM_GET_CHIP_ID, 0x82000044),
47*4882a593Smuzhiyun CMD(SM_A1_PWRC_SET, 0x82000093),
48*4882a593Smuzhiyun CMD(SM_A1_PWRC_GET, 0x82000095),
49*4882a593Smuzhiyun { /* sentinel */ },
50*4882a593Smuzhiyun },
51*4882a593Smuzhiyun };
52*4882a593Smuzhiyun
53*4882a593Smuzhiyun struct meson_sm_firmware {
54*4882a593Smuzhiyun const struct meson_sm_chip *chip;
55*4882a593Smuzhiyun void __iomem *sm_shmem_in_base;
56*4882a593Smuzhiyun void __iomem *sm_shmem_out_base;
57*4882a593Smuzhiyun };
58*4882a593Smuzhiyun
meson_sm_get_cmd(const struct meson_sm_chip * chip,unsigned int cmd_index)59*4882a593Smuzhiyun static u32 meson_sm_get_cmd(const struct meson_sm_chip *chip,
60*4882a593Smuzhiyun unsigned int cmd_index)
61*4882a593Smuzhiyun {
62*4882a593Smuzhiyun const struct meson_sm_cmd *cmd = chip->cmd;
63*4882a593Smuzhiyun
64*4882a593Smuzhiyun while (cmd->smc_id && cmd->index != cmd_index)
65*4882a593Smuzhiyun cmd++;
66*4882a593Smuzhiyun
67*4882a593Smuzhiyun return cmd->smc_id;
68*4882a593Smuzhiyun }
69*4882a593Smuzhiyun
__meson_sm_call(u32 cmd,u32 arg0,u32 arg1,u32 arg2,u32 arg3,u32 arg4)70*4882a593Smuzhiyun static u32 __meson_sm_call(u32 cmd, u32 arg0, u32 arg1, u32 arg2,
71*4882a593Smuzhiyun u32 arg3, u32 arg4)
72*4882a593Smuzhiyun {
73*4882a593Smuzhiyun struct arm_smccc_res res;
74*4882a593Smuzhiyun
75*4882a593Smuzhiyun arm_smccc_smc(cmd, arg0, arg1, arg2, arg3, arg4, 0, 0, &res);
76*4882a593Smuzhiyun return res.a0;
77*4882a593Smuzhiyun }
78*4882a593Smuzhiyun
meson_sm_map_shmem(u32 cmd_shmem,unsigned int size)79*4882a593Smuzhiyun static void __iomem *meson_sm_map_shmem(u32 cmd_shmem, unsigned int size)
80*4882a593Smuzhiyun {
81*4882a593Smuzhiyun u32 sm_phy_base;
82*4882a593Smuzhiyun
83*4882a593Smuzhiyun sm_phy_base = __meson_sm_call(cmd_shmem, 0, 0, 0, 0, 0);
84*4882a593Smuzhiyun if (!sm_phy_base)
85*4882a593Smuzhiyun return 0;
86*4882a593Smuzhiyun
87*4882a593Smuzhiyun return ioremap_cache(sm_phy_base, size);
88*4882a593Smuzhiyun }
89*4882a593Smuzhiyun
90*4882a593Smuzhiyun /**
91*4882a593Smuzhiyun * meson_sm_call - generic SMC32 call to the secure-monitor
92*4882a593Smuzhiyun *
93*4882a593Smuzhiyun * @fw: Pointer to secure-monitor firmware
94*4882a593Smuzhiyun * @cmd_index: Index of the SMC32 function ID
95*4882a593Smuzhiyun * @ret: Returned value
96*4882a593Smuzhiyun * @arg0: SMC32 Argument 0
97*4882a593Smuzhiyun * @arg1: SMC32 Argument 1
98*4882a593Smuzhiyun * @arg2: SMC32 Argument 2
99*4882a593Smuzhiyun * @arg3: SMC32 Argument 3
100*4882a593Smuzhiyun * @arg4: SMC32 Argument 4
101*4882a593Smuzhiyun *
102*4882a593Smuzhiyun * Return: 0 on success, a negative value on error
103*4882a593Smuzhiyun */
meson_sm_call(struct meson_sm_firmware * fw,unsigned int cmd_index,u32 * ret,u32 arg0,u32 arg1,u32 arg2,u32 arg3,u32 arg4)104*4882a593Smuzhiyun int meson_sm_call(struct meson_sm_firmware *fw, unsigned int cmd_index,
105*4882a593Smuzhiyun u32 *ret, u32 arg0, u32 arg1, u32 arg2, u32 arg3, u32 arg4)
106*4882a593Smuzhiyun {
107*4882a593Smuzhiyun u32 cmd, lret;
108*4882a593Smuzhiyun
109*4882a593Smuzhiyun if (!fw->chip)
110*4882a593Smuzhiyun return -ENOENT;
111*4882a593Smuzhiyun
112*4882a593Smuzhiyun cmd = meson_sm_get_cmd(fw->chip, cmd_index);
113*4882a593Smuzhiyun if (!cmd)
114*4882a593Smuzhiyun return -EINVAL;
115*4882a593Smuzhiyun
116*4882a593Smuzhiyun lret = __meson_sm_call(cmd, arg0, arg1, arg2, arg3, arg4);
117*4882a593Smuzhiyun
118*4882a593Smuzhiyun if (ret)
119*4882a593Smuzhiyun *ret = lret;
120*4882a593Smuzhiyun
121*4882a593Smuzhiyun return 0;
122*4882a593Smuzhiyun }
123*4882a593Smuzhiyun EXPORT_SYMBOL(meson_sm_call);
124*4882a593Smuzhiyun
125*4882a593Smuzhiyun /**
126*4882a593Smuzhiyun * meson_sm_call_read - retrieve data from secure-monitor
127*4882a593Smuzhiyun *
128*4882a593Smuzhiyun * @fw: Pointer to secure-monitor firmware
129*4882a593Smuzhiyun * @buffer: Buffer to store the retrieved data
130*4882a593Smuzhiyun * @bsize: Size of the buffer
131*4882a593Smuzhiyun * @cmd_index: Index of the SMC32 function ID
132*4882a593Smuzhiyun * @arg0: SMC32 Argument 0
133*4882a593Smuzhiyun * @arg1: SMC32 Argument 1
134*4882a593Smuzhiyun * @arg2: SMC32 Argument 2
135*4882a593Smuzhiyun * @arg3: SMC32 Argument 3
136*4882a593Smuzhiyun * @arg4: SMC32 Argument 4
137*4882a593Smuzhiyun *
138*4882a593Smuzhiyun * Return: size of read data on success, a negative value on error
139*4882a593Smuzhiyun * When 0 is returned there is no guarantee about the amount of
140*4882a593Smuzhiyun * data read and bsize bytes are copied in buffer.
141*4882a593Smuzhiyun */
meson_sm_call_read(struct meson_sm_firmware * fw,void * buffer,unsigned int bsize,unsigned int cmd_index,u32 arg0,u32 arg1,u32 arg2,u32 arg3,u32 arg4)142*4882a593Smuzhiyun int meson_sm_call_read(struct meson_sm_firmware *fw, void *buffer,
143*4882a593Smuzhiyun unsigned int bsize, unsigned int cmd_index, u32 arg0,
144*4882a593Smuzhiyun u32 arg1, u32 arg2, u32 arg3, u32 arg4)
145*4882a593Smuzhiyun {
146*4882a593Smuzhiyun u32 size;
147*4882a593Smuzhiyun int ret;
148*4882a593Smuzhiyun
149*4882a593Smuzhiyun if (!fw->chip)
150*4882a593Smuzhiyun return -ENOENT;
151*4882a593Smuzhiyun
152*4882a593Smuzhiyun if (!fw->chip->cmd_shmem_out_base)
153*4882a593Smuzhiyun return -EINVAL;
154*4882a593Smuzhiyun
155*4882a593Smuzhiyun if (bsize > fw->chip->shmem_size)
156*4882a593Smuzhiyun return -EINVAL;
157*4882a593Smuzhiyun
158*4882a593Smuzhiyun if (meson_sm_call(fw, cmd_index, &size, arg0, arg1, arg2, arg3, arg4) < 0)
159*4882a593Smuzhiyun return -EINVAL;
160*4882a593Smuzhiyun
161*4882a593Smuzhiyun if (size > bsize)
162*4882a593Smuzhiyun return -EINVAL;
163*4882a593Smuzhiyun
164*4882a593Smuzhiyun ret = size;
165*4882a593Smuzhiyun
166*4882a593Smuzhiyun if (!size)
167*4882a593Smuzhiyun size = bsize;
168*4882a593Smuzhiyun
169*4882a593Smuzhiyun if (buffer)
170*4882a593Smuzhiyun memcpy(buffer, fw->sm_shmem_out_base, size);
171*4882a593Smuzhiyun
172*4882a593Smuzhiyun return ret;
173*4882a593Smuzhiyun }
174*4882a593Smuzhiyun EXPORT_SYMBOL(meson_sm_call_read);
175*4882a593Smuzhiyun
176*4882a593Smuzhiyun /**
177*4882a593Smuzhiyun * meson_sm_call_write - send data to secure-monitor
178*4882a593Smuzhiyun *
179*4882a593Smuzhiyun * @fw: Pointer to secure-monitor firmware
180*4882a593Smuzhiyun * @buffer: Buffer containing data to send
181*4882a593Smuzhiyun * @size: Size of the data to send
182*4882a593Smuzhiyun * @cmd_index: Index of the SMC32 function ID
183*4882a593Smuzhiyun * @arg0: SMC32 Argument 0
184*4882a593Smuzhiyun * @arg1: SMC32 Argument 1
185*4882a593Smuzhiyun * @arg2: SMC32 Argument 2
186*4882a593Smuzhiyun * @arg3: SMC32 Argument 3
187*4882a593Smuzhiyun * @arg4: SMC32 Argument 4
188*4882a593Smuzhiyun *
189*4882a593Smuzhiyun * Return: size of sent data on success, a negative value on error
190*4882a593Smuzhiyun */
meson_sm_call_write(struct meson_sm_firmware * fw,void * buffer,unsigned int size,unsigned int cmd_index,u32 arg0,u32 arg1,u32 arg2,u32 arg3,u32 arg4)191*4882a593Smuzhiyun int meson_sm_call_write(struct meson_sm_firmware *fw, void *buffer,
192*4882a593Smuzhiyun unsigned int size, unsigned int cmd_index, u32 arg0,
193*4882a593Smuzhiyun u32 arg1, u32 arg2, u32 arg3, u32 arg4)
194*4882a593Smuzhiyun {
195*4882a593Smuzhiyun u32 written;
196*4882a593Smuzhiyun
197*4882a593Smuzhiyun if (!fw->chip)
198*4882a593Smuzhiyun return -ENOENT;
199*4882a593Smuzhiyun
200*4882a593Smuzhiyun if (size > fw->chip->shmem_size)
201*4882a593Smuzhiyun return -EINVAL;
202*4882a593Smuzhiyun
203*4882a593Smuzhiyun if (!fw->chip->cmd_shmem_in_base)
204*4882a593Smuzhiyun return -EINVAL;
205*4882a593Smuzhiyun
206*4882a593Smuzhiyun memcpy(fw->sm_shmem_in_base, buffer, size);
207*4882a593Smuzhiyun
208*4882a593Smuzhiyun if (meson_sm_call(fw, cmd_index, &written, arg0, arg1, arg2, arg3, arg4) < 0)
209*4882a593Smuzhiyun return -EINVAL;
210*4882a593Smuzhiyun
211*4882a593Smuzhiyun if (!written)
212*4882a593Smuzhiyun return -EINVAL;
213*4882a593Smuzhiyun
214*4882a593Smuzhiyun return written;
215*4882a593Smuzhiyun }
216*4882a593Smuzhiyun EXPORT_SYMBOL(meson_sm_call_write);
217*4882a593Smuzhiyun
218*4882a593Smuzhiyun /**
219*4882a593Smuzhiyun * meson_sm_get - get pointer to meson_sm_firmware structure.
220*4882a593Smuzhiyun *
221*4882a593Smuzhiyun * @sm_node: Pointer to the secure-monitor Device Tree node.
222*4882a593Smuzhiyun *
223*4882a593Smuzhiyun * Return: NULL is the secure-monitor device is not ready.
224*4882a593Smuzhiyun */
meson_sm_get(struct device_node * sm_node)225*4882a593Smuzhiyun struct meson_sm_firmware *meson_sm_get(struct device_node *sm_node)
226*4882a593Smuzhiyun {
227*4882a593Smuzhiyun struct platform_device *pdev = of_find_device_by_node(sm_node);
228*4882a593Smuzhiyun
229*4882a593Smuzhiyun if (!pdev)
230*4882a593Smuzhiyun return NULL;
231*4882a593Smuzhiyun
232*4882a593Smuzhiyun return platform_get_drvdata(pdev);
233*4882a593Smuzhiyun }
234*4882a593Smuzhiyun EXPORT_SYMBOL_GPL(meson_sm_get);
235*4882a593Smuzhiyun
236*4882a593Smuzhiyun #define SM_CHIP_ID_LENGTH 119
237*4882a593Smuzhiyun #define SM_CHIP_ID_OFFSET 4
238*4882a593Smuzhiyun #define SM_CHIP_ID_SIZE 12
239*4882a593Smuzhiyun
serial_show(struct device * dev,struct device_attribute * attr,char * buf)240*4882a593Smuzhiyun static ssize_t serial_show(struct device *dev, struct device_attribute *attr,
241*4882a593Smuzhiyun char *buf)
242*4882a593Smuzhiyun {
243*4882a593Smuzhiyun struct platform_device *pdev = to_platform_device(dev);
244*4882a593Smuzhiyun struct meson_sm_firmware *fw;
245*4882a593Smuzhiyun uint8_t *id_buf;
246*4882a593Smuzhiyun int ret;
247*4882a593Smuzhiyun
248*4882a593Smuzhiyun fw = platform_get_drvdata(pdev);
249*4882a593Smuzhiyun
250*4882a593Smuzhiyun id_buf = kmalloc(SM_CHIP_ID_LENGTH, GFP_KERNEL);
251*4882a593Smuzhiyun if (!id_buf)
252*4882a593Smuzhiyun return -ENOMEM;
253*4882a593Smuzhiyun
254*4882a593Smuzhiyun ret = meson_sm_call_read(fw, id_buf, SM_CHIP_ID_LENGTH, SM_GET_CHIP_ID,
255*4882a593Smuzhiyun 0, 0, 0, 0, 0);
256*4882a593Smuzhiyun if (ret < 0) {
257*4882a593Smuzhiyun kfree(id_buf);
258*4882a593Smuzhiyun return ret;
259*4882a593Smuzhiyun }
260*4882a593Smuzhiyun
261*4882a593Smuzhiyun ret = sprintf(buf, "%12phN\n", &id_buf[SM_CHIP_ID_OFFSET]);
262*4882a593Smuzhiyun
263*4882a593Smuzhiyun kfree(id_buf);
264*4882a593Smuzhiyun
265*4882a593Smuzhiyun return ret;
266*4882a593Smuzhiyun }
267*4882a593Smuzhiyun
268*4882a593Smuzhiyun static DEVICE_ATTR_RO(serial);
269*4882a593Smuzhiyun
270*4882a593Smuzhiyun static struct attribute *meson_sm_sysfs_attributes[] = {
271*4882a593Smuzhiyun &dev_attr_serial.attr,
272*4882a593Smuzhiyun NULL,
273*4882a593Smuzhiyun };
274*4882a593Smuzhiyun
275*4882a593Smuzhiyun static const struct attribute_group meson_sm_sysfs_attr_group = {
276*4882a593Smuzhiyun .attrs = meson_sm_sysfs_attributes,
277*4882a593Smuzhiyun };
278*4882a593Smuzhiyun
279*4882a593Smuzhiyun static const struct of_device_id meson_sm_ids[] = {
280*4882a593Smuzhiyun { .compatible = "amlogic,meson-gxbb-sm", .data = &gxbb_chip },
281*4882a593Smuzhiyun { /* sentinel */ },
282*4882a593Smuzhiyun };
283*4882a593Smuzhiyun
meson_sm_probe(struct platform_device * pdev)284*4882a593Smuzhiyun static int __init meson_sm_probe(struct platform_device *pdev)
285*4882a593Smuzhiyun {
286*4882a593Smuzhiyun struct device *dev = &pdev->dev;
287*4882a593Smuzhiyun const struct meson_sm_chip *chip;
288*4882a593Smuzhiyun struct meson_sm_firmware *fw;
289*4882a593Smuzhiyun
290*4882a593Smuzhiyun fw = devm_kzalloc(dev, sizeof(*fw), GFP_KERNEL);
291*4882a593Smuzhiyun if (!fw)
292*4882a593Smuzhiyun return -ENOMEM;
293*4882a593Smuzhiyun
294*4882a593Smuzhiyun chip = of_match_device(meson_sm_ids, dev)->data;
295*4882a593Smuzhiyun
296*4882a593Smuzhiyun if (chip->cmd_shmem_in_base) {
297*4882a593Smuzhiyun fw->sm_shmem_in_base = meson_sm_map_shmem(chip->cmd_shmem_in_base,
298*4882a593Smuzhiyun chip->shmem_size);
299*4882a593Smuzhiyun if (WARN_ON(!fw->sm_shmem_in_base))
300*4882a593Smuzhiyun goto out;
301*4882a593Smuzhiyun }
302*4882a593Smuzhiyun
303*4882a593Smuzhiyun if (chip->cmd_shmem_out_base) {
304*4882a593Smuzhiyun fw->sm_shmem_out_base = meson_sm_map_shmem(chip->cmd_shmem_out_base,
305*4882a593Smuzhiyun chip->shmem_size);
306*4882a593Smuzhiyun if (WARN_ON(!fw->sm_shmem_out_base))
307*4882a593Smuzhiyun goto out_in_base;
308*4882a593Smuzhiyun }
309*4882a593Smuzhiyun
310*4882a593Smuzhiyun fw->chip = chip;
311*4882a593Smuzhiyun
312*4882a593Smuzhiyun platform_set_drvdata(pdev, fw);
313*4882a593Smuzhiyun
314*4882a593Smuzhiyun pr_info("secure-monitor enabled\n");
315*4882a593Smuzhiyun
316*4882a593Smuzhiyun if (sysfs_create_group(&pdev->dev.kobj, &meson_sm_sysfs_attr_group))
317*4882a593Smuzhiyun goto out_in_base;
318*4882a593Smuzhiyun
319*4882a593Smuzhiyun return 0;
320*4882a593Smuzhiyun
321*4882a593Smuzhiyun out_in_base:
322*4882a593Smuzhiyun iounmap(fw->sm_shmem_in_base);
323*4882a593Smuzhiyun out:
324*4882a593Smuzhiyun return -EINVAL;
325*4882a593Smuzhiyun }
326*4882a593Smuzhiyun
327*4882a593Smuzhiyun static struct platform_driver meson_sm_driver = {
328*4882a593Smuzhiyun .driver = {
329*4882a593Smuzhiyun .name = "meson-sm",
330*4882a593Smuzhiyun .of_match_table = of_match_ptr(meson_sm_ids),
331*4882a593Smuzhiyun },
332*4882a593Smuzhiyun };
333*4882a593Smuzhiyun module_platform_driver_probe(meson_sm_driver, meson_sm_probe);
334*4882a593Smuzhiyun MODULE_LICENSE("GPL v2");
335