1*4882a593Smuzhiyun /*
2*4882a593Smuzhiyun * Advanced Crypto Engine - SHA Firmware
3*4882a593Smuzhiyun * Copyright (c) 2012 Samsung Electronics
4*4882a593Smuzhiyun *
5*4882a593Smuzhiyun * SPDX-License-Identifier: GPL-2.0+
6*4882a593Smuzhiyun */
7*4882a593Smuzhiyun #include <common.h>
8*4882a593Smuzhiyun #include "ace_sha.h"
9*4882a593Smuzhiyun
10*4882a593Smuzhiyun #ifdef CONFIG_SHA_HW_ACCEL
11*4882a593Smuzhiyun #include <u-boot/sha256.h>
12*4882a593Smuzhiyun #include <u-boot/sha1.h>
13*4882a593Smuzhiyun #include <linux/errno.h>
14*4882a593Smuzhiyun
15*4882a593Smuzhiyun /* SHA1 value for the message of zero length */
16*4882a593Smuzhiyun static const unsigned char sha1_digest_emptymsg[SHA1_SUM_LEN] = {
17*4882a593Smuzhiyun 0xDA, 0x39, 0xA3, 0xEE, 0x5E, 0x6B, 0x4B, 0x0D,
18*4882a593Smuzhiyun 0x32, 0x55, 0xBF, 0xFF, 0x95, 0x60, 0x18, 0x90,
19*4882a593Smuzhiyun 0xAF, 0xD8, 0x07, 0x09};
20*4882a593Smuzhiyun
21*4882a593Smuzhiyun /* SHA256 value for the message of zero length */
22*4882a593Smuzhiyun static const unsigned char sha256_digest_emptymsg[SHA256_SUM_LEN] = {
23*4882a593Smuzhiyun 0xE3, 0xB0, 0xC4, 0x42, 0x98, 0xFC, 0x1C, 0x14,
24*4882a593Smuzhiyun 0x9A, 0xFB, 0xF4, 0xC8, 0x99, 0x6F, 0xB9, 0x24,
25*4882a593Smuzhiyun 0x27, 0xAE, 0x41, 0xE4, 0x64, 0x9B, 0x93, 0x4C,
26*4882a593Smuzhiyun 0xA4, 0x95, 0x99, 0x1B, 0x78, 0x52, 0xB8, 0x55};
27*4882a593Smuzhiyun
ace_sha_hash_digest(const unsigned char * pbuf,unsigned int buf_len,unsigned char * pout,unsigned int hash_type)28*4882a593Smuzhiyun int ace_sha_hash_digest(const unsigned char *pbuf, unsigned int buf_len,
29*4882a593Smuzhiyun unsigned char *pout, unsigned int hash_type)
30*4882a593Smuzhiyun {
31*4882a593Smuzhiyun unsigned int i, reg, len;
32*4882a593Smuzhiyun unsigned int *pdigest;
33*4882a593Smuzhiyun struct exynos_ace_sfr *ace_sha_reg =
34*4882a593Smuzhiyun (struct exynos_ace_sfr *)samsung_get_base_ace_sfr();
35*4882a593Smuzhiyun
36*4882a593Smuzhiyun if (buf_len == 0) {
37*4882a593Smuzhiyun /* ACE H/W cannot compute hash value for empty string */
38*4882a593Smuzhiyun if (hash_type == ACE_SHA_TYPE_SHA1)
39*4882a593Smuzhiyun memcpy(pout, sha1_digest_emptymsg, SHA1_SUM_LEN);
40*4882a593Smuzhiyun else
41*4882a593Smuzhiyun memcpy(pout, sha256_digest_emptymsg, SHA256_SUM_LEN);
42*4882a593Smuzhiyun return 0;
43*4882a593Smuzhiyun }
44*4882a593Smuzhiyun
45*4882a593Smuzhiyun /* Flush HRDMA */
46*4882a593Smuzhiyun writel(ACE_FC_HRDMACFLUSH_ON, &ace_sha_reg->fc_hrdmac);
47*4882a593Smuzhiyun writel(ACE_FC_HRDMACFLUSH_OFF, &ace_sha_reg->fc_hrdmac);
48*4882a593Smuzhiyun
49*4882a593Smuzhiyun /* Set byte swap of data in */
50*4882a593Smuzhiyun writel(ACE_HASH_SWAPDI_ON | ACE_HASH_SWAPDO_ON | ACE_HASH_SWAPIV_ON,
51*4882a593Smuzhiyun &ace_sha_reg->hash_byteswap);
52*4882a593Smuzhiyun
53*4882a593Smuzhiyun /* Select Hash input mux as external source */
54*4882a593Smuzhiyun reg = readl(&ace_sha_reg->fc_fifoctrl);
55*4882a593Smuzhiyun reg = (reg & ~ACE_FC_SELHASH_MASK) | ACE_FC_SELHASH_EXOUT;
56*4882a593Smuzhiyun writel(reg, &ace_sha_reg->fc_fifoctrl);
57*4882a593Smuzhiyun
58*4882a593Smuzhiyun /* Set Hash as SHA1 or SHA256 and start Hash engine */
59*4882a593Smuzhiyun reg = (hash_type == ACE_SHA_TYPE_SHA1) ?
60*4882a593Smuzhiyun ACE_HASH_ENGSEL_SHA1HASH : ACE_HASH_ENGSEL_SHA256HASH;
61*4882a593Smuzhiyun reg |= ACE_HASH_STARTBIT_ON;
62*4882a593Smuzhiyun writel(reg, &ace_sha_reg->hash_control);
63*4882a593Smuzhiyun
64*4882a593Smuzhiyun /* Enable FIFO mode */
65*4882a593Smuzhiyun writel(ACE_HASH_FIFO_ON, &ace_sha_reg->hash_fifo_mode);
66*4882a593Smuzhiyun
67*4882a593Smuzhiyun /* Set message length */
68*4882a593Smuzhiyun writel(buf_len, &ace_sha_reg->hash_msgsize_low);
69*4882a593Smuzhiyun writel(0, &ace_sha_reg->hash_msgsize_high);
70*4882a593Smuzhiyun
71*4882a593Smuzhiyun /* Set HRDMA */
72*4882a593Smuzhiyun writel((unsigned int)pbuf, &ace_sha_reg->fc_hrdmas);
73*4882a593Smuzhiyun writel(buf_len, &ace_sha_reg->fc_hrdmal);
74*4882a593Smuzhiyun
75*4882a593Smuzhiyun while ((readl(&ace_sha_reg->hash_status) & ACE_HASH_MSGDONE_MASK) ==
76*4882a593Smuzhiyun ACE_HASH_MSGDONE_OFF) {
77*4882a593Smuzhiyun /*
78*4882a593Smuzhiyun * PRNG error bit goes HIGH if a PRNG request occurs without
79*4882a593Smuzhiyun * a complete seed setup. We are using this bit to check h/w
80*4882a593Smuzhiyun * fault because proper setup is not expected in that case.
81*4882a593Smuzhiyun */
82*4882a593Smuzhiyun if ((readl(&ace_sha_reg->hash_status)
83*4882a593Smuzhiyun & ACE_HASH_PRNGERROR_MASK) == ACE_HASH_PRNGERROR_ON)
84*4882a593Smuzhiyun return -EBUSY;
85*4882a593Smuzhiyun }
86*4882a593Smuzhiyun
87*4882a593Smuzhiyun /* Clear MSG_DONE bit */
88*4882a593Smuzhiyun writel(ACE_HASH_MSGDONE_ON, &ace_sha_reg->hash_status);
89*4882a593Smuzhiyun
90*4882a593Smuzhiyun /* Read hash result */
91*4882a593Smuzhiyun pdigest = (unsigned int *)pout;
92*4882a593Smuzhiyun len = (hash_type == ACE_SHA_TYPE_SHA1) ? SHA1_SUM_LEN : SHA256_SUM_LEN;
93*4882a593Smuzhiyun
94*4882a593Smuzhiyun for (i = 0; i < len / 4; i++)
95*4882a593Smuzhiyun pdigest[i] = readl(&ace_sha_reg->hash_result[i]);
96*4882a593Smuzhiyun
97*4882a593Smuzhiyun /* Clear HRDMA pending bit */
98*4882a593Smuzhiyun writel(ACE_FC_HRDMA, &ace_sha_reg->fc_intpend);
99*4882a593Smuzhiyun
100*4882a593Smuzhiyun return 0;
101*4882a593Smuzhiyun }
102*4882a593Smuzhiyun
hw_sha256(const unsigned char * pbuf,unsigned int buf_len,unsigned char * pout,unsigned int chunk_size)103*4882a593Smuzhiyun void hw_sha256(const unsigned char *pbuf, unsigned int buf_len,
104*4882a593Smuzhiyun unsigned char *pout, unsigned int chunk_size)
105*4882a593Smuzhiyun {
106*4882a593Smuzhiyun if (ace_sha_hash_digest(pbuf, buf_len, pout, ACE_SHA_TYPE_SHA256))
107*4882a593Smuzhiyun debug("ACE was not setup properly or it is faulty\n");
108*4882a593Smuzhiyun }
109*4882a593Smuzhiyun
hw_sha1(const unsigned char * pbuf,unsigned int buf_len,unsigned char * pout,unsigned int chunk_size)110*4882a593Smuzhiyun void hw_sha1(const unsigned char *pbuf, unsigned int buf_len,
111*4882a593Smuzhiyun unsigned char *pout, unsigned int chunk_size)
112*4882a593Smuzhiyun {
113*4882a593Smuzhiyun if (ace_sha_hash_digest(pbuf, buf_len, pout, ACE_SHA_TYPE_SHA1))
114*4882a593Smuzhiyun debug("ACE was not setup properly or it is faulty\n");
115*4882a593Smuzhiyun }
116*4882a593Smuzhiyun #endif /* CONFIG_SHA_HW_ACCEL */
117*4882a593Smuzhiyun
118*4882a593Smuzhiyun #ifdef CONFIG_LIB_HW_RAND
119*4882a593Smuzhiyun static unsigned int seed_done;
120*4882a593Smuzhiyun
srand(unsigned int seed)121*4882a593Smuzhiyun void srand(unsigned int seed)
122*4882a593Smuzhiyun {
123*4882a593Smuzhiyun struct exynos_ace_sfr *reg =
124*4882a593Smuzhiyun (struct exynos_ace_sfr *)samsung_get_base_ace_sfr();
125*4882a593Smuzhiyun int i, status;
126*4882a593Smuzhiyun
127*4882a593Smuzhiyun /* Seed data */
128*4882a593Smuzhiyun for (i = 0; i < ACE_HASH_PRNG_REG_NUM; i++)
129*4882a593Smuzhiyun writel(seed << i, ®->hash_seed[i]);
130*4882a593Smuzhiyun
131*4882a593Smuzhiyun /* Wait for seed setup done */
132*4882a593Smuzhiyun while (1) {
133*4882a593Smuzhiyun status = readl(®->hash_status);
134*4882a593Smuzhiyun if ((status & ACE_HASH_SEEDSETTING_MASK) ||
135*4882a593Smuzhiyun (status & ACE_HASH_PRNGERROR_MASK))
136*4882a593Smuzhiyun break;
137*4882a593Smuzhiyun }
138*4882a593Smuzhiyun
139*4882a593Smuzhiyun seed_done = 1;
140*4882a593Smuzhiyun }
141*4882a593Smuzhiyun
rand(void)142*4882a593Smuzhiyun unsigned int rand(void)
143*4882a593Smuzhiyun {
144*4882a593Smuzhiyun struct exynos_ace_sfr *reg =
145*4882a593Smuzhiyun (struct exynos_ace_sfr *)samsung_get_base_ace_sfr();
146*4882a593Smuzhiyun int i, status;
147*4882a593Smuzhiyun unsigned int seed = (unsigned int)&status;
148*4882a593Smuzhiyun unsigned int ret = 0;
149*4882a593Smuzhiyun
150*4882a593Smuzhiyun if (!seed_done)
151*4882a593Smuzhiyun srand(seed);
152*4882a593Smuzhiyun
153*4882a593Smuzhiyun /* Start PRNG */
154*4882a593Smuzhiyun writel(ACE_HASH_ENGSEL_PRNG | ACE_HASH_STARTBIT_ON, ®->hash_control);
155*4882a593Smuzhiyun
156*4882a593Smuzhiyun /* Wait for PRNG done */
157*4882a593Smuzhiyun while (1) {
158*4882a593Smuzhiyun status = readl(®->hash_status);
159*4882a593Smuzhiyun if (status & ACE_HASH_PRNGDONE_MASK)
160*4882a593Smuzhiyun break;
161*4882a593Smuzhiyun if (status & ACE_HASH_PRNGERROR_MASK) {
162*4882a593Smuzhiyun seed_done = 0;
163*4882a593Smuzhiyun return 0;
164*4882a593Smuzhiyun }
165*4882a593Smuzhiyun }
166*4882a593Smuzhiyun
167*4882a593Smuzhiyun /* Clear Done IRQ */
168*4882a593Smuzhiyun writel(ACE_HASH_PRNGDONE_MASK, ®->hash_status);
169*4882a593Smuzhiyun
170*4882a593Smuzhiyun /* Read a PRNG result */
171*4882a593Smuzhiyun for (i = 0; i < ACE_HASH_PRNG_REG_NUM; i++)
172*4882a593Smuzhiyun ret += readl(®->hash_prng[i]);
173*4882a593Smuzhiyun
174*4882a593Smuzhiyun seed_done = 0;
175*4882a593Smuzhiyun return ret;
176*4882a593Smuzhiyun }
177*4882a593Smuzhiyun
rand_r(unsigned int * seedp)178*4882a593Smuzhiyun unsigned int rand_r(unsigned int *seedp)
179*4882a593Smuzhiyun {
180*4882a593Smuzhiyun srand(*seedp);
181*4882a593Smuzhiyun
182*4882a593Smuzhiyun return rand();
183*4882a593Smuzhiyun }
184*4882a593Smuzhiyun #endif /* CONFIG_LIB_HW_RAND */
185