xref: /optee_os/core/arch/arm/arm.mk (revision 5843bb755f152c7961130e90bba969b8a1ce8f64)
1a189a570SPascal BrandCFG_LTC_OPTEE_THREAD ?= y
29ba34389SJens Wiklander# Size of emulated TrustZone protected SRAM, 448 kB.
379a90f9bSJens Wiklander# Only applicable when paging is enabled.
49ba34389SJens WiklanderCFG_CORE_TZSRAM_EMUL_SIZE ?= 458752
5b36e639bSZhizhou ZhangCFG_LPAE_ADDR_SPACE_SIZE ?= (1ull << 32)
6a189a570SPascal Brand
775fddfb8SPeng FanCFG_MMAP_REGIONS ?= 13
842dd7a20SfangsuowuCFG_RESERVED_VASPACE_SIZE ?= (1024 * 1024 * 10)
975fddfb8SPeng Fan
10abe38974SJens Wiklanderifeq ($(CFG_ARM64_core),y)
117a976658SJerome ForissierCFG_KERN_LINKER_FORMAT ?= elf64-littleaarch64
127a976658SJerome ForissierCFG_KERN_LINKER_ARCH ?= aarch64
1359ac3927SZeng Taoelse
14abe38974SJens Wiklanderifeq ($(CFG_ARM32_core),y)
157a976658SJerome ForissierCFG_KERN_LINKER_FORMAT ?= elf32-littlearm
167a976658SJerome ForissierCFG_KERN_LINKER_ARCH ?= arm
1759ac3927SZeng Taoelse
1859ac3927SZeng Tao$(error Error: CFG_ARM64_core or CFG_ARM32_core should be defined)
1959ac3927SZeng Taoendif
207a976658SJerome Forissierendif
217a976658SJerome Forissier
220de9a5fbSJens Wiklanderifeq ($(CFG_TA_FLOAT_SUPPORT),y)
230de9a5fbSJens Wiklander# Use hard-float for floating point support in user TAs instead of
240de9a5fbSJens Wiklander# soft-float
250de9a5fbSJens WiklanderCFG_WITH_VFP ?= y
260de9a5fbSJens Wiklanderifeq ($(CFG_ARM64_core),y)
270de9a5fbSJens Wiklander# AArch64 has no fallback to soft-float
280de9a5fbSJens Wiklander$(call force,CFG_WITH_VFP,y)
290de9a5fbSJens Wiklanderendif
300de9a5fbSJens Wiklanderifeq ($(CFG_WITH_VFP),y)
319551f4e5SJens Wiklanderarm64-platform-hard-float-enabled := y
329551f4e5SJens Wiklanderifneq ($(CFG_TA_ARM32_NO_HARD_FLOAT_SUPPORT),y)
339551f4e5SJens Wiklanderarm32-platform-hard-float-enabled := y
349551f4e5SJens Wiklanderendif
350de9a5fbSJens Wiklanderendif
360de9a5fbSJens Wiklanderendif
370de9a5fbSJens Wiklander
383bc90f3dSJens Wiklander# Adds protection against CVE-2017-5715 also know as Spectre
393bc90f3dSJens Wiklander# (https://spectreattack.com)
403bc90f3dSJens Wiklander# See also https://developer.arm.com/-/media/Files/pdf/Cache_Speculation_Side-channels.pdf
413bc90f3dSJens Wiklander# Variant 2
423bc90f3dSJens WiklanderCFG_CORE_WORKAROUND_SPECTRE_BP ?= y
4340511940SJens Wiklander# Same as CFG_CORE_WORKAROUND_SPECTRE_BP but targeting exceptions from
4440511940SJens Wiklander# secure EL0 instead of non-secure world.
4540511940SJens WiklanderCFG_CORE_WORKAROUND_SPECTRE_BP_SEC ?= $(CFG_CORE_WORKAROUND_SPECTRE_BP)
463bc90f3dSJens Wiklander
4714d6d42bSJens Wiklander# Adds protection against a tool like Cachegrab
4814d6d42bSJens Wiklander# (https://github.com/nccgroup/cachegrab), which uses non-secure interrupts
4914d6d42bSJens Wiklander# to prime and later analyze the L1D, L1I and BTB caches to gain
5014d6d42bSJens Wiklander# information from secure world execution.
5114d6d42bSJens WiklanderCFG_CORE_WORKAROUND_NSITR_CACHE_PRIME ?= y
5214d6d42bSJens Wiklanderifeq ($(CFG_CORE_WORKAROUND_NSITR_CACHE_PRIME),y)
5314d6d42bSJens Wiklander$(call force,CFG_CORE_WORKAROUND_SPECTRE_BP,y,Required by CFG_CORE_WORKAROUND_NSITR_CACHE_PRIME)
5414d6d42bSJens Wiklanderendif
5514d6d42bSJens Wiklander
5610d13b28SEtienne CarriereCFG_CORE_RWDATA_NOEXEC ?= y
573181c736SEtienne CarriereCFG_CORE_RODATA_NOEXEC ?= n
583181c736SEtienne Carriereifeq ($(CFG_CORE_RODATA_NOEXEC),y)
593181c736SEtienne Carriere$(call force,CFG_CORE_RWDATA_NOEXEC,y)
603181c736SEtienne Carriereendif
61aaaf00a2SJerome Forissier# 'y' to set the Alignment Check Enable bit in SCTLR/SCTLR_EL1, 'n' to clear it
62aaaf00a2SJerome ForissierCFG_SCTLR_ALIGNMENT_CHECK ?= y
6310d13b28SEtienne Carriere
64dd3afbacSJens Wiklanderifeq ($(CFG_CORE_LARGE_PHYS_ADDR),y)
65dd3afbacSJens Wiklander$(call force,CFG_WITH_LPAE,y)
66dd3afbacSJens Wiklanderendif
67dd3afbacSJens Wiklander
685b8a58b4SJens Wiklander# Unmaps all kernel mode code except the code needed to take exceptions
695b8a58b4SJens Wiklander# from user space and restore kernel mode mapping again. This gives more
705b8a58b4SJens Wiklander# strict control over what is accessible while in user mode.
715b8a58b4SJens Wiklander# Addresses CVE-2017-5715 (aka Meltdown) known to affect Arm Cortex-A75
725b8a58b4SJens WiklanderCFG_CORE_UNMAP_CORE_AT_EL0 ?= y
735b8a58b4SJens Wiklander
748267e19bSJerome Forissier# Initialize PMCR.DP to 1 to prohibit cycle counting in secure state, and
758267e19bSJerome Forissier# save/restore PMCR during world switch.
768267e19bSJerome ForissierCFG_SM_NO_CYCLE_COUNTING ?= y
778267e19bSJerome Forissier
78ab046bb5SEtienne Carriereifeq ($(CFG_ARM32_core),y)
79ab046bb5SEtienne Carriere# Configration directive related to ARMv7 optee boot arguments.
80ab046bb5SEtienne Carriere# CFG_PAGEABLE_ADDR: if defined, forces pageable data physical address.
81ab046bb5SEtienne Carriere# CFG_NS_ENTRY_ADDR: if defined, forces NS World physical entry address.
82ab046bb5SEtienne Carriere# CFG_DT_ADDR:       if defined, forces Device Tree data physical address.
83ab046bb5SEtienne Carriereendif
84ab046bb5SEtienne Carriere
85739804b5SJens Wiklandercore-platform-cppflags	+= -I$(arch-dir)/include
86739804b5SJens Wiklandercore-platform-subdirs += \
87*5843bb75SJerome Forissier	$(addprefix $(arch-dir)/, kernel crypto mm tee) $(platform-dir)
88739804b5SJens Wiklander
89739804b5SJens Wiklanderifneq ($(CFG_WITH_ARM_TRUSTED_FW),y)
90739804b5SJens Wiklandercore-platform-subdirs += $(arch-dir)/sm
91739804b5SJens Wiklanderendif
92739804b5SJens Wiklander
93739804b5SJens Wiklanderarm64-platform-cppflags += -DARM64=1 -D__LP64__=1
94739804b5SJens Wiklanderarm32-platform-cppflags += -DARM32=1 -D__ILP32__=1
95739804b5SJens Wiklander
96c8f56835SJerome Forissierplatform-cflags-generic ?= -ffunction-sections -fdata-sections -pipe
97c8f56835SJerome Forissierplatform-aflags-generic ?= -pipe
98739804b5SJens Wiklander
9923381c10SJens Wiklanderarm32-platform-cflags-no-hard-float ?= -mfloat-abi=soft
1000de9a5fbSJens Wiklanderarm32-platform-cflags-hard-float ?= -mfloat-abi=hard -funsafe-math-optimizations
101e9140287SJerome Forissierarm32-platform-cflags-generic-thumb ?= -mthumb \
102c96d7091SSumit Garg			-fno-short-enums -fno-common -mno-unaligned-access
103c96d7091SSumit Gargarm32-platform-cflags-generic-arm ?= -marm -fno-omit-frame-pointer -mapcs \
104739804b5SJens Wiklander			-fno-short-enums -fno-common -mno-unaligned-access
105739804b5SJens Wiklanderarm32-platform-aflags-no-hard-float ?=
106739804b5SJens Wiklander
107739804b5SJens Wiklanderarm64-platform-cflags-no-hard-float ?= -mgeneral-regs-only
1080de9a5fbSJens Wiklanderarm64-platform-cflags-hard-float ?=
109739804b5SJens Wiklanderarm64-platform-cflags-generic ?= -mstrict-align
110739804b5SJens Wiklander
111739804b5SJens Wiklanderifeq ($(DEBUG),1)
112c8f56835SJerome Forissier# For backwards compatibility
113c8f56835SJerome Forissier$(call force,CFG_CC_OPTIMIZE_FOR_SIZE,n)
114c8f56835SJerome Forissier$(call force,CFG_DEBUG_INFO,y)
115739804b5SJens Wiklanderendif
116739804b5SJens Wiklander
117c8f56835SJerome ForissierCFG_CC_OPTIMIZE_FOR_SIZE ?= y
118c8f56835SJerome Forissierifeq ($(CFG_CC_OPTIMIZE_FOR_SIZE),y)
119c8f56835SJerome Forissierplatform-cflags-optimization ?= -Os
120c8f56835SJerome Forissierelse
121c8f56835SJerome Forissierplatform-cflags-optimization ?= -O0
122c8f56835SJerome Forissierendif
123c8f56835SJerome Forissier
124c8f56835SJerome ForissierCFG_DEBUG_INFO ?= y
125c8f56835SJerome Forissierifeq ($(CFG_DEBUG_INFO),y)
126739804b5SJens Wiklanderplatform-cflags-debug-info ?= -g3
127c8f56835SJerome Forissierplatform-aflags-debug-info ?= -g
128c8f56835SJerome Forissierendif
129739804b5SJens Wiklander
130739804b5SJens Wiklandercore-platform-cflags += $(platform-cflags-optimization)
131739804b5SJens Wiklandercore-platform-cflags += $(platform-cflags-generic)
132739804b5SJens Wiklandercore-platform-cflags += $(platform-cflags-debug-info)
133739804b5SJens Wiklander
134739804b5SJens Wiklandercore-platform-aflags += $(platform-aflags-generic)
135739804b5SJens Wiklandercore-platform-aflags += $(platform-aflags-debug-info)
136739804b5SJens Wiklander
1377a976658SJerome Forissierifeq ($(CFG_ARM64_core),y)
138b09cddcaSJerome Forissierarch-bits-core := 64
1397a976658SJerome Forissiercore-platform-cppflags += $(arm64-platform-cppflags)
1407a976658SJerome Forissiercore-platform-cflags += $(arm64-platform-cflags)
141739804b5SJens Wiklandercore-platform-cflags += $(arm64-platform-cflags-generic)
142739804b5SJens Wiklandercore-platform-cflags += $(arm64-platform-cflags-no-hard-float)
1437a976658SJerome Forissiercore-platform-aflags += $(arm64-platform-aflags)
1447a976658SJerome Forissierelse
145b09cddcaSJerome Forissierarch-bits-core := 32
1467a976658SJerome Forissiercore-platform-cppflags += $(arm32-platform-cppflags)
1477a976658SJerome Forissiercore-platform-cflags += $(arm32-platform-cflags)
148739804b5SJens Wiklandercore-platform-cflags += $(arm32-platform-cflags-no-hard-float)
14931a29642SJerome Forissierifeq ($(CFG_UNWIND),y)
150923c1f34SJens Wiklandercore-platform-cflags += -funwind-tables
151923c1f34SJens Wiklanderendif
152c96d7091SSumit Gargcore-platform-cflags += $(arm32-platform-cflags-generic-thumb)
153739804b5SJens Wiklandercore-platform-aflags += $(core_arm32-platform-aflags)
1547a976658SJerome Forissiercore-platform-aflags += $(arm32-platform-aflags)
155abe38974SJens Wiklanderendif
156739804b5SJens Wiklander
1578955ffc4SJerome Forissier# Provide default supported-ta-targets if not set by the platform config
1588955ffc4SJerome Forissierifeq (,$(supported-ta-targets))
1598955ffc4SJerome Forissiersupported-ta-targets = ta_arm32
1609f1eec75SJerome Forissierifeq ($(CFG_ARM64_core),y)
1618955ffc4SJerome Forissiersupported-ta-targets += ta_arm64
1629f1eec75SJerome Forissierendif
1639f1eec75SJerome Forissierendif
1649f1eec75SJerome Forissier
165dc701d99SJerome Forissierta-targets := $(if $(CFG_USER_TA_TARGETS),$(filter $(supported-ta-targets),$(CFG_USER_TA_TARGETS)),$(supported-ta-targets))
166dc701d99SJerome Forissierunsup-targets := $(filter-out $(ta-targets),$(CFG_USER_TA_TARGETS))
167dc701d99SJerome Forissierifneq (,$(unsup-targets))
168dc701d99SJerome Forissier$(error CFG_USER_TA_TARGETS contains unsupported value(s): $(unsup-targets). Valid values: $(supported-ta-targets))
169dc701d99SJerome Forissierendif
1708955ffc4SJerome Forissier
171739804b5SJens Wiklanderifneq ($(filter ta_arm32,$(ta-targets)),)
172739804b5SJens Wiklander# Variables for ta-target/sm "ta_arm32"
173739804b5SJens WiklanderCFG_ARM32_ta_arm32 := y
174b09cddcaSJerome Forissierarch-bits-ta_arm32 := 32
175739804b5SJens Wiklanderta_arm32-platform-cppflags += $(arm32-platform-cppflags)
176739804b5SJens Wiklanderta_arm32-platform-cflags += $(arm32-platform-cflags)
177739804b5SJens Wiklanderta_arm32-platform-cflags += $(platform-cflags-optimization)
178739804b5SJens Wiklanderta_arm32-platform-cflags += $(platform-cflags-debug-info)
1797f761274SJerome Forissierta_arm32-platform-cflags += -fpic
180c96d7091SSumit Garg
181c96d7091SSumit Garg# Thumb mode doesn't support function graph tracing due to missing
182c96d7091SSumit Garg# frame pointer support required to trace function call chain. So
183c96d7091SSumit Garg# rather compile in ARM mode if function tracing is enabled.
184c96d7091SSumit Gargifeq ($(CFG_TA_FTRACE_SUPPORT),y)
185c96d7091SSumit Gargta_arm32-platform-cflags += $(arm32-platform-cflags-generic-arm)
186c96d7091SSumit Gargelse
187c96d7091SSumit Gargta_arm32-platform-cflags += $(arm32-platform-cflags-generic-thumb)
188c96d7091SSumit Gargendif
189c96d7091SSumit Garg
1909551f4e5SJens Wiklanderifeq ($(arm32-platform-hard-float-enabled),y)
1910de9a5fbSJens Wiklanderta_arm32-platform-cflags += $(arm32-platform-cflags-hard-float)
1920de9a5fbSJens Wiklanderelse
193739804b5SJens Wiklanderta_arm32-platform-cflags += $(arm32-platform-cflags-no-hard-float)
1940de9a5fbSJens Wiklanderendif
19531a29642SJerome Forissierifeq ($(CFG_UNWIND),y)
19631a29642SJerome Forissierta_arm32-platform-cflags += -funwind-tables
19731a29642SJerome Forissierendif
1989b40b6e6SJerome Forissierta_arm32-platform-aflags += $(platform-aflags-generic)
199739804b5SJens Wiklanderta_arm32-platform-aflags += $(platform-aflags-debug-info)
200739804b5SJens Wiklanderta_arm32-platform-aflags += $(arm32-platform-aflags)
201739804b5SJens Wiklander
202739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += CFG_ARM32_ta_arm32
203739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-cppflags
204739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-cflags
205739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-aflags
206c042fbefSJerome Forissier
2070ca35294SVictor Chongta-mk-file-export-add-ta_arm32 += CROSS_COMPILE ?= arm-linux-gnueabihf-_nl_
208c042fbefSJerome Forissierta-mk-file-export-add-ta_arm32 += CROSS_COMPILE32 ?= $$(CROSS_COMPILE)_nl_
209c042fbefSJerome Forissierta-mk-file-export-add-ta_arm32 += CROSS_COMPILE_ta_arm32 ?= $$(CROSS_COMPILE32)_nl_
210739804b5SJens Wiklanderendif
211739804b5SJens Wiklander
212739804b5SJens Wiklanderifneq ($(filter ta_arm64,$(ta-targets)),)
213739804b5SJens Wiklander# Variables for ta-target/sm "ta_arm64"
214739804b5SJens WiklanderCFG_ARM64_ta_arm64 := y
215b09cddcaSJerome Forissierarch-bits-ta_arm64 := 64
216739804b5SJens Wiklanderta_arm64-platform-cppflags += $(arm64-platform-cppflags)
217739804b5SJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags)
218739804b5SJens Wiklanderta_arm64-platform-cflags += $(platform-cflags-optimization)
219739804b5SJens Wiklanderta_arm64-platform-cflags += $(platform-cflags-debug-info)
2207f761274SJerome Forissierta_arm64-platform-cflags += -fpic
221739804b5SJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags-generic)
2229551f4e5SJens Wiklanderifeq ($(arm64-platform-hard-float-enabled),y)
2230de9a5fbSJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags-hard-float)
2240de9a5fbSJens Wiklanderelse
225739804b5SJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags-no-hard-float)
2260de9a5fbSJens Wiklanderendif
2279b40b6e6SJerome Forissierta_arm64-platform-aflags += $(platform-aflags-generic)
228739804b5SJens Wiklanderta_arm64-platform-aflags += $(platform-aflags-debug-info)
229739804b5SJens Wiklanderta_arm64-platform-aflags += $(arm64-platform-aflags)
230739804b5SJens Wiklander
231739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += CFG_ARM64_ta_arm64
232739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-cppflags
233739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-cflags
234739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-aflags
235c042fbefSJerome Forissier
236c042fbefSJerome Forissierta-mk-file-export-add-ta_arm64 += CROSS_COMPILE64 ?= $$(CROSS_COMPILE)_nl_
237c042fbefSJerome Forissierta-mk-file-export-add-ta_arm64 += CROSS_COMPILE_ta_arm64 ?= $$(CROSS_COMPILE64)_nl_
238739804b5SJens Wiklanderendif
239b09cddcaSJerome Forissier
240b09cddcaSJerome Forissier# Set cross compiler prefix for each submodule
241b09cddcaSJerome Forissier$(foreach sm, core $(ta-targets), $(eval CROSS_COMPILE_$(sm) ?= $(CROSS_COMPILE$(arch-bits-$(sm)))))
24218b58024SJens Wiklander
24318b58024SJens Wiklanderarm32-sysreg-txt = core/arch/arm/kernel/arm32_sysreg.txt
24418b58024SJens Wiklanderarm32-sysregs-$(arm32-sysreg-txt)-h := arm32_sysreg.h
24518b58024SJens Wiklanderarm32-sysregs-$(arm32-sysreg-txt)-s := arm32_sysreg.S
24618b58024SJens Wiklanderarm32-sysregs += $(arm32-sysreg-txt)
24718b58024SJens Wiklander
248c3d0b15dSJens Wiklanderifeq ($(CFG_ARM_GICV3),y)
249c3d0b15dSJens Wiklanderarm32-gicv3-sysreg-txt = core/arch/arm/kernel/arm32_gicv3_sysreg.txt
250c3d0b15dSJens Wiklanderarm32-sysregs-$(arm32-gicv3-sysreg-txt)-h := arm32_gicv3_sysreg.h
251c3d0b15dSJens Wiklanderarm32-sysregs-$(arm32-gicv3-sysreg-txt)-s := arm32_gicv3_sysreg.S
252c3d0b15dSJens Wiklanderarm32-sysregs += $(arm32-gicv3-sysreg-txt)
253c3d0b15dSJens Wiklanderendif
254c3d0b15dSJens Wiklander
25518b58024SJens Wiklanderarm32-sysregs-out := $(out-dir)/$(sm)/include/generated
25618b58024SJens Wiklander
25718b58024SJens Wiklanderdefine process-arm32-sysreg
25818b58024SJens WiklanderFORCE-GENSRC$(sm): $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-h)
25918b58024SJens Wiklandercleanfiles := $$(cleanfiles) $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-h)
26018b58024SJens Wiklander
26118b58024SJens Wiklander$$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-h): $(1) scripts/arm32_sysreg.py
26218b58024SJens Wiklander	@$(cmd-echo-silent) '  GEN     $$@'
26318b58024SJens Wiklander	$(q)mkdir -p $$(dir $$@)
26418b58024SJens Wiklander	$(q)scripts/arm32_sysreg.py --guard __$$(arm32-sysregs-$(1)-h) \
26518b58024SJens Wiklander		< $$< > $$@
26618b58024SJens Wiklander
26718b58024SJens WiklanderFORCE-GENSRC$(sm): $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-s)
26818b58024SJens Wiklandercleanfiles := $$(cleanfiles) $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-s)
26918b58024SJens Wiklander
27018b58024SJens Wiklander$$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-s): $(1) scripts/arm32_sysreg.py
27118b58024SJens Wiklander	@$(cmd-echo-silent) '  GEN     $$@'
27218b58024SJens Wiklander	$(q)mkdir -p $$(dir $$@)
27318b58024SJens Wiklander	$(q)scripts/arm32_sysreg.py --s_file < $$< > $$@
27418b58024SJens Wiklanderendef #process-arm32-sysreg
27518b58024SJens Wiklander
27618b58024SJens Wiklander$(foreach sr, $(arm32-sysregs), $(eval $(call process-arm32-sysreg,$(sr))))
277