xref: /optee_os/core/arch/arm/arm.mk (revision 099918f6744c37ce693c38562f11466b19d573c9)
1a189a570SPascal BrandCFG_LTC_OPTEE_THREAD ?= y
29ba34389SJens Wiklander# Size of emulated TrustZone protected SRAM, 448 kB.
379a90f9bSJens Wiklander# Only applicable when paging is enabled.
49ba34389SJens WiklanderCFG_CORE_TZSRAM_EMUL_SIZE ?= 458752
5b36e639bSZhizhou ZhangCFG_LPAE_ADDR_SPACE_SIZE ?= (1ull << 32)
6a189a570SPascal Brand
775fddfb8SPeng FanCFG_MMAP_REGIONS ?= 13
842dd7a20SfangsuowuCFG_RESERVED_VASPACE_SIZE ?= (1024 * 1024 * 10)
975fddfb8SPeng Fan
10abe38974SJens Wiklanderifeq ($(CFG_ARM64_core),y)
117a976658SJerome ForissierCFG_KERN_LINKER_FORMAT ?= elf64-littleaarch64
127a976658SJerome ForissierCFG_KERN_LINKER_ARCH ?= aarch64
1359ac3927SZeng Taoelse
14abe38974SJens Wiklanderifeq ($(CFG_ARM32_core),y)
157a976658SJerome ForissierCFG_KERN_LINKER_FORMAT ?= elf32-littlearm
167a976658SJerome ForissierCFG_KERN_LINKER_ARCH ?= arm
1759ac3927SZeng Taoelse
1859ac3927SZeng Tao$(error Error: CFG_ARM64_core or CFG_ARM32_core should be defined)
1959ac3927SZeng Taoendif
207a976658SJerome Forissierendif
217a976658SJerome Forissier
220de9a5fbSJens Wiklanderifeq ($(CFG_TA_FLOAT_SUPPORT),y)
230de9a5fbSJens Wiklander# Use hard-float for floating point support in user TAs instead of
240de9a5fbSJens Wiklander# soft-float
250de9a5fbSJens WiklanderCFG_WITH_VFP ?= y
260de9a5fbSJens Wiklanderifeq ($(CFG_ARM64_core),y)
270de9a5fbSJens Wiklander# AArch64 has no fallback to soft-float
280de9a5fbSJens Wiklander$(call force,CFG_WITH_VFP,y)
290de9a5fbSJens Wiklanderendif
300de9a5fbSJens Wiklanderifeq ($(CFG_WITH_VFP),y)
319551f4e5SJens Wiklanderarm64-platform-hard-float-enabled := y
329551f4e5SJens Wiklanderifneq ($(CFG_TA_ARM32_NO_HARD_FLOAT_SUPPORT),y)
339551f4e5SJens Wiklanderarm32-platform-hard-float-enabled := y
349551f4e5SJens Wiklanderendif
350de9a5fbSJens Wiklanderendif
360de9a5fbSJens Wiklanderendif
370de9a5fbSJens Wiklander
383bc90f3dSJens Wiklander# Adds protection against CVE-2017-5715 also know as Spectre
393bc90f3dSJens Wiklander# (https://spectreattack.com)
403bc90f3dSJens Wiklander# See also https://developer.arm.com/-/media/Files/pdf/Cache_Speculation_Side-channels.pdf
413bc90f3dSJens Wiklander# Variant 2
423bc90f3dSJens WiklanderCFG_CORE_WORKAROUND_SPECTRE_BP ?= y
4340511940SJens Wiklander# Same as CFG_CORE_WORKAROUND_SPECTRE_BP but targeting exceptions from
4440511940SJens Wiklander# secure EL0 instead of non-secure world.
4540511940SJens WiklanderCFG_CORE_WORKAROUND_SPECTRE_BP_SEC ?= $(CFG_CORE_WORKAROUND_SPECTRE_BP)
463bc90f3dSJens Wiklander
4714d6d42bSJens Wiklander# Adds protection against a tool like Cachegrab
4814d6d42bSJens Wiklander# (https://github.com/nccgroup/cachegrab), which uses non-secure interrupts
4914d6d42bSJens Wiklander# to prime and later analyze the L1D, L1I and BTB caches to gain
5014d6d42bSJens Wiklander# information from secure world execution.
5114d6d42bSJens WiklanderCFG_CORE_WORKAROUND_NSITR_CACHE_PRIME ?= y
5214d6d42bSJens Wiklanderifeq ($(CFG_CORE_WORKAROUND_NSITR_CACHE_PRIME),y)
5314d6d42bSJens Wiklander$(call force,CFG_CORE_WORKAROUND_SPECTRE_BP,y,Required by CFG_CORE_WORKAROUND_NSITR_CACHE_PRIME)
5414d6d42bSJens Wiklanderendif
5514d6d42bSJens Wiklander
5610d13b28SEtienne CarriereCFG_CORE_RWDATA_NOEXEC ?= y
573181c736SEtienne CarriereCFG_CORE_RODATA_NOEXEC ?= n
583181c736SEtienne Carriereifeq ($(CFG_CORE_RODATA_NOEXEC),y)
593181c736SEtienne Carriere$(call force,CFG_CORE_RWDATA_NOEXEC,y)
603181c736SEtienne Carriereendif
61aaaf00a2SJerome Forissier# 'y' to set the Alignment Check Enable bit in SCTLR/SCTLR_EL1, 'n' to clear it
62aaaf00a2SJerome ForissierCFG_SCTLR_ALIGNMENT_CHECK ?= y
6310d13b28SEtienne Carriere
64dd3afbacSJens Wiklanderifeq ($(CFG_CORE_LARGE_PHYS_ADDR),y)
65dd3afbacSJens Wiklander$(call force,CFG_WITH_LPAE,y)
66dd3afbacSJens Wiklanderendif
67dd3afbacSJens Wiklander
685b8a58b4SJens Wiklander# Unmaps all kernel mode code except the code needed to take exceptions
695b8a58b4SJens Wiklander# from user space and restore kernel mode mapping again. This gives more
705b8a58b4SJens Wiklander# strict control over what is accessible while in user mode.
715b8a58b4SJens Wiklander# Addresses CVE-2017-5715 (aka Meltdown) known to affect Arm Cortex-A75
725b8a58b4SJens WiklanderCFG_CORE_UNMAP_CORE_AT_EL0 ?= y
735b8a58b4SJens Wiklander
748267e19bSJerome Forissier# Initialize PMCR.DP to 1 to prohibit cycle counting in secure state, and
758267e19bSJerome Forissier# save/restore PMCR during world switch.
768267e19bSJerome ForissierCFG_SM_NO_CYCLE_COUNTING ?= y
778267e19bSJerome Forissier
78ab046bb5SEtienne Carriereifeq ($(CFG_ARM32_core),y)
79ab046bb5SEtienne Carriere# Configration directive related to ARMv7 optee boot arguments.
80ab046bb5SEtienne Carriere# CFG_PAGEABLE_ADDR: if defined, forces pageable data physical address.
81ab046bb5SEtienne Carriere# CFG_NS_ENTRY_ADDR: if defined, forces NS World physical entry address.
82ab046bb5SEtienne Carriere# CFG_DT_ADDR:       if defined, forces Device Tree data physical address.
83ab046bb5SEtienne Carriereendif
84ab046bb5SEtienne Carriere
85739804b5SJens Wiklandercore-platform-cppflags	+= -I$(arch-dir)/include
86739804b5SJens Wiklandercore-platform-subdirs += \
875843bb75SJerome Forissier	$(addprefix $(arch-dir)/, kernel crypto mm tee) $(platform-dir)
88739804b5SJens Wiklander
89739804b5SJens Wiklanderifneq ($(CFG_WITH_ARM_TRUSTED_FW),y)
90739804b5SJens Wiklandercore-platform-subdirs += $(arch-dir)/sm
91739804b5SJens Wiklanderendif
92739804b5SJens Wiklander
93739804b5SJens Wiklanderarm64-platform-cppflags += -DARM64=1 -D__LP64__=1
94739804b5SJens Wiklanderarm32-platform-cppflags += -DARM32=1 -D__ILP32__=1
95739804b5SJens Wiklander
96c8f56835SJerome Forissierplatform-cflags-generic ?= -ffunction-sections -fdata-sections -pipe
97c8f56835SJerome Forissierplatform-aflags-generic ?= -pipe
98739804b5SJens Wiklander
9923381c10SJens Wiklanderarm32-platform-cflags-no-hard-float ?= -mfloat-abi=soft
1000de9a5fbSJens Wiklanderarm32-platform-cflags-hard-float ?= -mfloat-abi=hard -funsafe-math-optimizations
101e9140287SJerome Forissierarm32-platform-cflags-generic-thumb ?= -mthumb \
102c96d7091SSumit Garg			-fno-short-enums -fno-common -mno-unaligned-access
103c96d7091SSumit Gargarm32-platform-cflags-generic-arm ?= -marm -fno-omit-frame-pointer -mapcs \
104739804b5SJens Wiklander			-fno-short-enums -fno-common -mno-unaligned-access
105739804b5SJens Wiklanderarm32-platform-aflags-no-hard-float ?=
106739804b5SJens Wiklander
107739804b5SJens Wiklanderarm64-platform-cflags-no-hard-float ?= -mgeneral-regs-only
1080de9a5fbSJens Wiklanderarm64-platform-cflags-hard-float ?=
109739804b5SJens Wiklanderarm64-platform-cflags-generic ?= -mstrict-align
110739804b5SJens Wiklander
111739804b5SJens Wiklanderifeq ($(DEBUG),1)
112c8f56835SJerome Forissier# For backwards compatibility
113c8f56835SJerome Forissier$(call force,CFG_CC_OPTIMIZE_FOR_SIZE,n)
114c8f56835SJerome Forissier$(call force,CFG_DEBUG_INFO,y)
115739804b5SJens Wiklanderendif
116739804b5SJens Wiklander
117c8f56835SJerome ForissierCFG_CC_OPTIMIZE_FOR_SIZE ?= y
118c8f56835SJerome Forissierifeq ($(CFG_CC_OPTIMIZE_FOR_SIZE),y)
119c8f56835SJerome Forissierplatform-cflags-optimization ?= -Os
120c8f56835SJerome Forissierelse
121c8f56835SJerome Forissierplatform-cflags-optimization ?= -O0
122c8f56835SJerome Forissierendif
123c8f56835SJerome Forissier
124c8f56835SJerome ForissierCFG_DEBUG_INFO ?= y
125c8f56835SJerome Forissierifeq ($(CFG_DEBUG_INFO),y)
126739804b5SJens Wiklanderplatform-cflags-debug-info ?= -g3
127c8f56835SJerome Forissierplatform-aflags-debug-info ?= -g
128c8f56835SJerome Forissierendif
129739804b5SJens Wiklander
130739804b5SJens Wiklandercore-platform-cflags += $(platform-cflags-optimization)
131739804b5SJens Wiklandercore-platform-cflags += $(platform-cflags-generic)
132739804b5SJens Wiklandercore-platform-cflags += $(platform-cflags-debug-info)
133739804b5SJens Wiklander
134739804b5SJens Wiklandercore-platform-aflags += $(platform-aflags-generic)
135739804b5SJens Wiklandercore-platform-aflags += $(platform-aflags-debug-info)
136739804b5SJens Wiklander
1377a976658SJerome Forissierifeq ($(CFG_ARM64_core),y)
138b09cddcaSJerome Forissierarch-bits-core := 64
1397a976658SJerome Forissiercore-platform-cppflags += $(arm64-platform-cppflags)
1407a976658SJerome Forissiercore-platform-cflags += $(arm64-platform-cflags)
141739804b5SJens Wiklandercore-platform-cflags += $(arm64-platform-cflags-generic)
142739804b5SJens Wiklandercore-platform-cflags += $(arm64-platform-cflags-no-hard-float)
1437a976658SJerome Forissiercore-platform-aflags += $(arm64-platform-aflags)
1447a976658SJerome Forissierelse
145b09cddcaSJerome Forissierarch-bits-core := 32
1467a976658SJerome Forissiercore-platform-cppflags += $(arm32-platform-cppflags)
1477a976658SJerome Forissiercore-platform-cflags += $(arm32-platform-cflags)
148739804b5SJens Wiklandercore-platform-cflags += $(arm32-platform-cflags-no-hard-float)
14931a29642SJerome Forissierifeq ($(CFG_UNWIND),y)
150923c1f34SJens Wiklandercore-platform-cflags += -funwind-tables
151923c1f34SJens Wiklanderendif
152*099918f6SSumit Gargifeq ($(CFG_SYSCALL_FTRACE),y)
153*099918f6SSumit Gargcore-platform-cflags += $(arm32-platform-cflags-generic-arm)
154*099918f6SSumit Gargelse
155c96d7091SSumit Gargcore-platform-cflags += $(arm32-platform-cflags-generic-thumb)
156*099918f6SSumit Gargendif
157739804b5SJens Wiklandercore-platform-aflags += $(core_arm32-platform-aflags)
1587a976658SJerome Forissiercore-platform-aflags += $(arm32-platform-aflags)
159abe38974SJens Wiklanderendif
160739804b5SJens Wiklander
1618955ffc4SJerome Forissier# Provide default supported-ta-targets if not set by the platform config
1628955ffc4SJerome Forissierifeq (,$(supported-ta-targets))
1638955ffc4SJerome Forissiersupported-ta-targets = ta_arm32
1649f1eec75SJerome Forissierifeq ($(CFG_ARM64_core),y)
1658955ffc4SJerome Forissiersupported-ta-targets += ta_arm64
1669f1eec75SJerome Forissierendif
1679f1eec75SJerome Forissierendif
1689f1eec75SJerome Forissier
169dc701d99SJerome Forissierta-targets := $(if $(CFG_USER_TA_TARGETS),$(filter $(supported-ta-targets),$(CFG_USER_TA_TARGETS)),$(supported-ta-targets))
170dc701d99SJerome Forissierunsup-targets := $(filter-out $(ta-targets),$(CFG_USER_TA_TARGETS))
171dc701d99SJerome Forissierifneq (,$(unsup-targets))
172dc701d99SJerome Forissier$(error CFG_USER_TA_TARGETS contains unsupported value(s): $(unsup-targets). Valid values: $(supported-ta-targets))
173dc701d99SJerome Forissierendif
1748955ffc4SJerome Forissier
175739804b5SJens Wiklanderifneq ($(filter ta_arm32,$(ta-targets)),)
176739804b5SJens Wiklander# Variables for ta-target/sm "ta_arm32"
177739804b5SJens WiklanderCFG_ARM32_ta_arm32 := y
178b09cddcaSJerome Forissierarch-bits-ta_arm32 := 32
179739804b5SJens Wiklanderta_arm32-platform-cppflags += $(arm32-platform-cppflags)
180739804b5SJens Wiklanderta_arm32-platform-cflags += $(arm32-platform-cflags)
181739804b5SJens Wiklanderta_arm32-platform-cflags += $(platform-cflags-optimization)
182739804b5SJens Wiklanderta_arm32-platform-cflags += $(platform-cflags-debug-info)
1837f761274SJerome Forissierta_arm32-platform-cflags += -fpic
184c96d7091SSumit Garg
185c96d7091SSumit Garg# Thumb mode doesn't support function graph tracing due to missing
186c96d7091SSumit Garg# frame pointer support required to trace function call chain. So
187c96d7091SSumit Garg# rather compile in ARM mode if function tracing is enabled.
188*099918f6SSumit Gargifeq ($(CFG_FTRACE_SUPPORT),y)
189c96d7091SSumit Gargta_arm32-platform-cflags += $(arm32-platform-cflags-generic-arm)
190c96d7091SSumit Gargelse
191c96d7091SSumit Gargta_arm32-platform-cflags += $(arm32-platform-cflags-generic-thumb)
192c96d7091SSumit Gargendif
193c96d7091SSumit Garg
1949551f4e5SJens Wiklanderifeq ($(arm32-platform-hard-float-enabled),y)
1950de9a5fbSJens Wiklanderta_arm32-platform-cflags += $(arm32-platform-cflags-hard-float)
1960de9a5fbSJens Wiklanderelse
197739804b5SJens Wiklanderta_arm32-platform-cflags += $(arm32-platform-cflags-no-hard-float)
1980de9a5fbSJens Wiklanderendif
19931a29642SJerome Forissierifeq ($(CFG_UNWIND),y)
20031a29642SJerome Forissierta_arm32-platform-cflags += -funwind-tables
20131a29642SJerome Forissierendif
2029b40b6e6SJerome Forissierta_arm32-platform-aflags += $(platform-aflags-generic)
203739804b5SJens Wiklanderta_arm32-platform-aflags += $(platform-aflags-debug-info)
204739804b5SJens Wiklanderta_arm32-platform-aflags += $(arm32-platform-aflags)
205739804b5SJens Wiklander
206739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += CFG_ARM32_ta_arm32
207739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-cppflags
208739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-cflags
209739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-aflags
210c042fbefSJerome Forissier
2110ca35294SVictor Chongta-mk-file-export-add-ta_arm32 += CROSS_COMPILE ?= arm-linux-gnueabihf-_nl_
212c042fbefSJerome Forissierta-mk-file-export-add-ta_arm32 += CROSS_COMPILE32 ?= $$(CROSS_COMPILE)_nl_
213c042fbefSJerome Forissierta-mk-file-export-add-ta_arm32 += CROSS_COMPILE_ta_arm32 ?= $$(CROSS_COMPILE32)_nl_
21438f4260cSJerome Forissierta-mk-file-export-add-ta_arm32 += COMPILER ?= gcc_nl_
21538f4260cSJerome Forissierta-mk-file-export-add-ta_arm32 += COMPILER_ta_arm32 ?= $$(COMPILER)_nl_
216739804b5SJens Wiklanderendif
217739804b5SJens Wiklander
218739804b5SJens Wiklanderifneq ($(filter ta_arm64,$(ta-targets)),)
219739804b5SJens Wiklander# Variables for ta-target/sm "ta_arm64"
220739804b5SJens WiklanderCFG_ARM64_ta_arm64 := y
221b09cddcaSJerome Forissierarch-bits-ta_arm64 := 64
222739804b5SJens Wiklanderta_arm64-platform-cppflags += $(arm64-platform-cppflags)
223739804b5SJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags)
224739804b5SJens Wiklanderta_arm64-platform-cflags += $(platform-cflags-optimization)
225739804b5SJens Wiklanderta_arm64-platform-cflags += $(platform-cflags-debug-info)
2267f761274SJerome Forissierta_arm64-platform-cflags += -fpic
227739804b5SJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags-generic)
2289551f4e5SJens Wiklanderifeq ($(arm64-platform-hard-float-enabled),y)
2290de9a5fbSJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags-hard-float)
2300de9a5fbSJens Wiklanderelse
231739804b5SJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags-no-hard-float)
2320de9a5fbSJens Wiklanderendif
2339b40b6e6SJerome Forissierta_arm64-platform-aflags += $(platform-aflags-generic)
234739804b5SJens Wiklanderta_arm64-platform-aflags += $(platform-aflags-debug-info)
235739804b5SJens Wiklanderta_arm64-platform-aflags += $(arm64-platform-aflags)
236739804b5SJens Wiklander
237739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += CFG_ARM64_ta_arm64
238739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-cppflags
239739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-cflags
240739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-aflags
241c042fbefSJerome Forissier
242c042fbefSJerome Forissierta-mk-file-export-add-ta_arm64 += CROSS_COMPILE64 ?= $$(CROSS_COMPILE)_nl_
243c042fbefSJerome Forissierta-mk-file-export-add-ta_arm64 += CROSS_COMPILE_ta_arm64 ?= $$(CROSS_COMPILE64)_nl_
24438f4260cSJerome Forissierta-mk-file-export-add-ta_arm64 += COMPILER ?= gcc_nl_
24538f4260cSJerome Forissierta-mk-file-export-add-ta_arm64 += COMPILER_ta_arm64 ?= $$(COMPILER)_nl_
246739804b5SJens Wiklanderendif
247b09cddcaSJerome Forissier
248b09cddcaSJerome Forissier# Set cross compiler prefix for each submodule
249b09cddcaSJerome Forissier$(foreach sm, core $(ta-targets), $(eval CROSS_COMPILE_$(sm) ?= $(CROSS_COMPILE$(arch-bits-$(sm)))))
25018b58024SJens Wiklander
25118b58024SJens Wiklanderarm32-sysreg-txt = core/arch/arm/kernel/arm32_sysreg.txt
25218b58024SJens Wiklanderarm32-sysregs-$(arm32-sysreg-txt)-h := arm32_sysreg.h
25318b58024SJens Wiklanderarm32-sysregs-$(arm32-sysreg-txt)-s := arm32_sysreg.S
25418b58024SJens Wiklanderarm32-sysregs += $(arm32-sysreg-txt)
25518b58024SJens Wiklander
256c3d0b15dSJens Wiklanderifeq ($(CFG_ARM_GICV3),y)
257c3d0b15dSJens Wiklanderarm32-gicv3-sysreg-txt = core/arch/arm/kernel/arm32_gicv3_sysreg.txt
258c3d0b15dSJens Wiklanderarm32-sysregs-$(arm32-gicv3-sysreg-txt)-h := arm32_gicv3_sysreg.h
259c3d0b15dSJens Wiklanderarm32-sysregs-$(arm32-gicv3-sysreg-txt)-s := arm32_gicv3_sysreg.S
260c3d0b15dSJens Wiklanderarm32-sysregs += $(arm32-gicv3-sysreg-txt)
261c3d0b15dSJens Wiklanderendif
262c3d0b15dSJens Wiklander
26318b58024SJens Wiklanderarm32-sysregs-out := $(out-dir)/$(sm)/include/generated
26418b58024SJens Wiklander
26518b58024SJens Wiklanderdefine process-arm32-sysreg
26618b58024SJens WiklanderFORCE-GENSRC$(sm): $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-h)
26718b58024SJens Wiklandercleanfiles := $$(cleanfiles) $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-h)
26818b58024SJens Wiklander
26918b58024SJens Wiklander$$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-h): $(1) scripts/arm32_sysreg.py
27018b58024SJens Wiklander	@$(cmd-echo-silent) '  GEN     $$@'
27118b58024SJens Wiklander	$(q)mkdir -p $$(dir $$@)
27218b58024SJens Wiklander	$(q)scripts/arm32_sysreg.py --guard __$$(arm32-sysregs-$(1)-h) \
27318b58024SJens Wiklander		< $$< > $$@
27418b58024SJens Wiklander
27518b58024SJens WiklanderFORCE-GENSRC$(sm): $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-s)
27618b58024SJens Wiklandercleanfiles := $$(cleanfiles) $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-s)
27718b58024SJens Wiklander
27818b58024SJens Wiklander$$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-s): $(1) scripts/arm32_sysreg.py
27918b58024SJens Wiklander	@$(cmd-echo-silent) '  GEN     $$@'
28018b58024SJens Wiklander	$(q)mkdir -p $$(dir $$@)
28118b58024SJens Wiklander	$(q)scripts/arm32_sysreg.py --s_file < $$< > $$@
28218b58024SJens Wiklanderendef #process-arm32-sysreg
28318b58024SJens Wiklander
28418b58024SJens Wiklander$(foreach sr, $(arm32-sysregs), $(eval $(call process-arm32-sysreg,$(sr))))
285