xref: /optee_os/core/arch/arm/arm.mk (revision a23860a812b3f671a869811e8a8dbeeced507618)
1a189a570SPascal BrandCFG_LTC_OPTEE_THREAD ?= y
29ba34389SJens Wiklander# Size of emulated TrustZone protected SRAM, 448 kB.
379a90f9bSJens Wiklander# Only applicable when paging is enabled.
49ba34389SJens WiklanderCFG_CORE_TZSRAM_EMUL_SIZE ?= 458752
5b36e639bSZhizhou ZhangCFG_LPAE_ADDR_SPACE_SIZE ?= (1ull << 32)
6a189a570SPascal Brand
775fddfb8SPeng FanCFG_MMAP_REGIONS ?= 13
842dd7a20SfangsuowuCFG_RESERVED_VASPACE_SIZE ?= (1024 * 1024 * 10)
975fddfb8SPeng Fan
10abe38974SJens Wiklanderifeq ($(CFG_ARM64_core),y)
117a976658SJerome ForissierCFG_KERN_LINKER_FORMAT ?= elf64-littleaarch64
127a976658SJerome ForissierCFG_KERN_LINKER_ARCH ?= aarch64
1359ac3927SZeng Taoelse
14abe38974SJens Wiklanderifeq ($(CFG_ARM32_core),y)
157a976658SJerome ForissierCFG_KERN_LINKER_FORMAT ?= elf32-littlearm
167a976658SJerome ForissierCFG_KERN_LINKER_ARCH ?= arm
1759ac3927SZeng Taoelse
1859ac3927SZeng Tao$(error Error: CFG_ARM64_core or CFG_ARM32_core should be defined)
1959ac3927SZeng Taoendif
207a976658SJerome Forissierendif
217a976658SJerome Forissier
220de9a5fbSJens Wiklanderifeq ($(CFG_TA_FLOAT_SUPPORT),y)
230de9a5fbSJens Wiklander# Use hard-float for floating point support in user TAs instead of
240de9a5fbSJens Wiklander# soft-float
250de9a5fbSJens WiklanderCFG_WITH_VFP ?= y
260de9a5fbSJens Wiklanderifeq ($(CFG_ARM64_core),y)
270de9a5fbSJens Wiklander# AArch64 has no fallback to soft-float
280de9a5fbSJens Wiklander$(call force,CFG_WITH_VFP,y)
290de9a5fbSJens Wiklanderendif
300de9a5fbSJens Wiklanderifeq ($(CFG_WITH_VFP),y)
319551f4e5SJens Wiklanderarm64-platform-hard-float-enabled := y
329551f4e5SJens Wiklanderifneq ($(CFG_TA_ARM32_NO_HARD_FLOAT_SUPPORT),y)
339551f4e5SJens Wiklanderarm32-platform-hard-float-enabled := y
349551f4e5SJens Wiklanderendif
350de9a5fbSJens Wiklanderendif
360de9a5fbSJens Wiklanderendif
370de9a5fbSJens Wiklander
383bc90f3dSJens Wiklander# Adds protection against CVE-2017-5715 also know as Spectre
393bc90f3dSJens Wiklander# (https://spectreattack.com)
403bc90f3dSJens Wiklander# See also https://developer.arm.com/-/media/Files/pdf/Cache_Speculation_Side-channels.pdf
413bc90f3dSJens Wiklander# Variant 2
423bc90f3dSJens WiklanderCFG_CORE_WORKAROUND_SPECTRE_BP ?= y
4340511940SJens Wiklander# Same as CFG_CORE_WORKAROUND_SPECTRE_BP but targeting exceptions from
4440511940SJens Wiklander# secure EL0 instead of non-secure world.
4540511940SJens WiklanderCFG_CORE_WORKAROUND_SPECTRE_BP_SEC ?= $(CFG_CORE_WORKAROUND_SPECTRE_BP)
463bc90f3dSJens Wiklander
4714d6d42bSJens Wiklander# Adds protection against a tool like Cachegrab
4814d6d42bSJens Wiklander# (https://github.com/nccgroup/cachegrab), which uses non-secure interrupts
4914d6d42bSJens Wiklander# to prime and later analyze the L1D, L1I and BTB caches to gain
5014d6d42bSJens Wiklander# information from secure world execution.
5114d6d42bSJens WiklanderCFG_CORE_WORKAROUND_NSITR_CACHE_PRIME ?= y
5214d6d42bSJens Wiklanderifeq ($(CFG_CORE_WORKAROUND_NSITR_CACHE_PRIME),y)
5314d6d42bSJens Wiklander$(call force,CFG_CORE_WORKAROUND_SPECTRE_BP,y,Required by CFG_CORE_WORKAROUND_NSITR_CACHE_PRIME)
5414d6d42bSJens Wiklanderendif
5514d6d42bSJens Wiklander
5610d13b28SEtienne CarriereCFG_CORE_RWDATA_NOEXEC ?= y
573181c736SEtienne CarriereCFG_CORE_RODATA_NOEXEC ?= n
583181c736SEtienne Carriereifeq ($(CFG_CORE_RODATA_NOEXEC),y)
593181c736SEtienne Carriere$(call force,CFG_CORE_RWDATA_NOEXEC,y)
603181c736SEtienne Carriereendif
61aaaf00a2SJerome Forissier# 'y' to set the Alignment Check Enable bit in SCTLR/SCTLR_EL1, 'n' to clear it
62aaaf00a2SJerome ForissierCFG_SCTLR_ALIGNMENT_CHECK ?= y
6310d13b28SEtienne Carriere
64dd3afbacSJens Wiklanderifeq ($(CFG_CORE_LARGE_PHYS_ADDR),y)
65dd3afbacSJens Wiklander$(call force,CFG_WITH_LPAE,y)
66dd3afbacSJens Wiklanderendif
67dd3afbacSJens Wiklander
685b8a58b4SJens Wiklander# Unmaps all kernel mode code except the code needed to take exceptions
695b8a58b4SJens Wiklander# from user space and restore kernel mode mapping again. This gives more
705b8a58b4SJens Wiklander# strict control over what is accessible while in user mode.
715b8a58b4SJens Wiklander# Addresses CVE-2017-5715 (aka Meltdown) known to affect Arm Cortex-A75
725b8a58b4SJens WiklanderCFG_CORE_UNMAP_CORE_AT_EL0 ?= y
735b8a58b4SJens Wiklander
748267e19bSJerome Forissier# Initialize PMCR.DP to 1 to prohibit cycle counting in secure state, and
758267e19bSJerome Forissier# save/restore PMCR during world switch.
768267e19bSJerome ForissierCFG_SM_NO_CYCLE_COUNTING ?= y
778267e19bSJerome Forissier
78ab046bb5SEtienne Carriereifeq ($(CFG_ARM32_core),y)
79ab046bb5SEtienne Carriere# Configration directive related to ARMv7 optee boot arguments.
80ab046bb5SEtienne Carriere# CFG_PAGEABLE_ADDR: if defined, forces pageable data physical address.
81ab046bb5SEtienne Carriere# CFG_NS_ENTRY_ADDR: if defined, forces NS World physical entry address.
82ab046bb5SEtienne Carriere# CFG_DT_ADDR:       if defined, forces Device Tree data physical address.
83ab046bb5SEtienne Carriereendif
84ab046bb5SEtienne Carriere
85739804b5SJens Wiklandercore-platform-cppflags	+= -I$(arch-dir)/include
86739804b5SJens Wiklandercore-platform-subdirs += \
875843bb75SJerome Forissier	$(addprefix $(arch-dir)/, kernel crypto mm tee) $(platform-dir)
88739804b5SJens Wiklander
89739804b5SJens Wiklanderifneq ($(CFG_WITH_ARM_TRUSTED_FW),y)
90739804b5SJens Wiklandercore-platform-subdirs += $(arch-dir)/sm
91739804b5SJens Wiklanderendif
92739804b5SJens Wiklander
93739804b5SJens Wiklanderarm64-platform-cppflags += -DARM64=1 -D__LP64__=1
94739804b5SJens Wiklanderarm32-platform-cppflags += -DARM32=1 -D__ILP32__=1
95739804b5SJens Wiklander
96c8f56835SJerome Forissierplatform-cflags-generic ?= -ffunction-sections -fdata-sections -pipe
97c8f56835SJerome Forissierplatform-aflags-generic ?= -pipe
98739804b5SJens Wiklander
99*a23860a8SJerome Forissierarm32-platform-aflags += -marm
100*a23860a8SJerome Forissier
10123381c10SJens Wiklanderarm32-platform-cflags-no-hard-float ?= -mfloat-abi=soft
1020de9a5fbSJens Wiklanderarm32-platform-cflags-hard-float ?= -mfloat-abi=hard -funsafe-math-optimizations
103e9140287SJerome Forissierarm32-platform-cflags-generic-thumb ?= -mthumb \
104c96d7091SSumit Garg			-fno-short-enums -fno-common -mno-unaligned-access
105c96d7091SSumit Gargarm32-platform-cflags-generic-arm ?= -marm -fno-omit-frame-pointer -mapcs \
106739804b5SJens Wiklander			-fno-short-enums -fno-common -mno-unaligned-access
107739804b5SJens Wiklanderarm32-platform-aflags-no-hard-float ?=
108739804b5SJens Wiklander
109739804b5SJens Wiklanderarm64-platform-cflags-no-hard-float ?= -mgeneral-regs-only
1100de9a5fbSJens Wiklanderarm64-platform-cflags-hard-float ?=
111739804b5SJens Wiklanderarm64-platform-cflags-generic ?= -mstrict-align
112739804b5SJens Wiklander
113739804b5SJens Wiklanderifeq ($(DEBUG),1)
114c8f56835SJerome Forissier# For backwards compatibility
115c8f56835SJerome Forissier$(call force,CFG_CC_OPTIMIZE_FOR_SIZE,n)
116c8f56835SJerome Forissier$(call force,CFG_DEBUG_INFO,y)
117739804b5SJens Wiklanderendif
118739804b5SJens Wiklander
119c8f56835SJerome ForissierCFG_CC_OPTIMIZE_FOR_SIZE ?= y
120c8f56835SJerome Forissierifeq ($(CFG_CC_OPTIMIZE_FOR_SIZE),y)
121c8f56835SJerome Forissierplatform-cflags-optimization ?= -Os
122c8f56835SJerome Forissierelse
123c8f56835SJerome Forissierplatform-cflags-optimization ?= -O0
124c8f56835SJerome Forissierendif
125c8f56835SJerome Forissier
126c8f56835SJerome ForissierCFG_DEBUG_INFO ?= y
127c8f56835SJerome Forissierifeq ($(CFG_DEBUG_INFO),y)
128739804b5SJens Wiklanderplatform-cflags-debug-info ?= -g3
129c8f56835SJerome Forissierplatform-aflags-debug-info ?= -g
130c8f56835SJerome Forissierendif
131739804b5SJens Wiklander
132739804b5SJens Wiklandercore-platform-cflags += $(platform-cflags-optimization)
133739804b5SJens Wiklandercore-platform-cflags += $(platform-cflags-generic)
134739804b5SJens Wiklandercore-platform-cflags += $(platform-cflags-debug-info)
135739804b5SJens Wiklander
136739804b5SJens Wiklandercore-platform-aflags += $(platform-aflags-generic)
137739804b5SJens Wiklandercore-platform-aflags += $(platform-aflags-debug-info)
138739804b5SJens Wiklander
1397a976658SJerome Forissierifeq ($(CFG_ARM64_core),y)
140b09cddcaSJerome Forissierarch-bits-core := 64
1417a976658SJerome Forissiercore-platform-cppflags += $(arm64-platform-cppflags)
1427a976658SJerome Forissiercore-platform-cflags += $(arm64-platform-cflags)
143739804b5SJens Wiklandercore-platform-cflags += $(arm64-platform-cflags-generic)
144739804b5SJens Wiklandercore-platform-cflags += $(arm64-platform-cflags-no-hard-float)
1457a976658SJerome Forissiercore-platform-aflags += $(arm64-platform-aflags)
1467a976658SJerome Forissierelse
147b09cddcaSJerome Forissierarch-bits-core := 32
1487a976658SJerome Forissiercore-platform-cppflags += $(arm32-platform-cppflags)
1497a976658SJerome Forissiercore-platform-cflags += $(arm32-platform-cflags)
150739804b5SJens Wiklandercore-platform-cflags += $(arm32-platform-cflags-no-hard-float)
15131a29642SJerome Forissierifeq ($(CFG_UNWIND),y)
152923c1f34SJens Wiklandercore-platform-cflags += -funwind-tables
153923c1f34SJens Wiklanderendif
154099918f6SSumit Gargifeq ($(CFG_SYSCALL_FTRACE),y)
155099918f6SSumit Gargcore-platform-cflags += $(arm32-platform-cflags-generic-arm)
156099918f6SSumit Gargelse
157c96d7091SSumit Gargcore-platform-cflags += $(arm32-platform-cflags-generic-thumb)
158099918f6SSumit Gargendif
159739804b5SJens Wiklandercore-platform-aflags += $(core_arm32-platform-aflags)
1607a976658SJerome Forissiercore-platform-aflags += $(arm32-platform-aflags)
161abe38974SJens Wiklanderendif
162739804b5SJens Wiklander
1638955ffc4SJerome Forissier# Provide default supported-ta-targets if not set by the platform config
1648955ffc4SJerome Forissierifeq (,$(supported-ta-targets))
1658955ffc4SJerome Forissiersupported-ta-targets = ta_arm32
1669f1eec75SJerome Forissierifeq ($(CFG_ARM64_core),y)
1678955ffc4SJerome Forissiersupported-ta-targets += ta_arm64
1689f1eec75SJerome Forissierendif
1699f1eec75SJerome Forissierendif
1709f1eec75SJerome Forissier
171dc701d99SJerome Forissierta-targets := $(if $(CFG_USER_TA_TARGETS),$(filter $(supported-ta-targets),$(CFG_USER_TA_TARGETS)),$(supported-ta-targets))
172dc701d99SJerome Forissierunsup-targets := $(filter-out $(ta-targets),$(CFG_USER_TA_TARGETS))
173dc701d99SJerome Forissierifneq (,$(unsup-targets))
174dc701d99SJerome Forissier$(error CFG_USER_TA_TARGETS contains unsupported value(s): $(unsup-targets). Valid values: $(supported-ta-targets))
175dc701d99SJerome Forissierendif
1768955ffc4SJerome Forissier
177739804b5SJens Wiklanderifneq ($(filter ta_arm32,$(ta-targets)),)
178739804b5SJens Wiklander# Variables for ta-target/sm "ta_arm32"
179739804b5SJens WiklanderCFG_ARM32_ta_arm32 := y
180b09cddcaSJerome Forissierarch-bits-ta_arm32 := 32
181739804b5SJens Wiklanderta_arm32-platform-cppflags += $(arm32-platform-cppflags)
182739804b5SJens Wiklanderta_arm32-platform-cflags += $(arm32-platform-cflags)
183739804b5SJens Wiklanderta_arm32-platform-cflags += $(platform-cflags-optimization)
184739804b5SJens Wiklanderta_arm32-platform-cflags += $(platform-cflags-debug-info)
1857f761274SJerome Forissierta_arm32-platform-cflags += -fpic
186c96d7091SSumit Garg
187c96d7091SSumit Garg# Thumb mode doesn't support function graph tracing due to missing
188c96d7091SSumit Garg# frame pointer support required to trace function call chain. So
189c96d7091SSumit Garg# rather compile in ARM mode if function tracing is enabled.
190099918f6SSumit Gargifeq ($(CFG_FTRACE_SUPPORT),y)
191c96d7091SSumit Gargta_arm32-platform-cflags += $(arm32-platform-cflags-generic-arm)
192c96d7091SSumit Gargelse
193c96d7091SSumit Gargta_arm32-platform-cflags += $(arm32-platform-cflags-generic-thumb)
194c96d7091SSumit Gargendif
195c96d7091SSumit Garg
1969551f4e5SJens Wiklanderifeq ($(arm32-platform-hard-float-enabled),y)
1970de9a5fbSJens Wiklanderta_arm32-platform-cflags += $(arm32-platform-cflags-hard-float)
1980de9a5fbSJens Wiklanderelse
199739804b5SJens Wiklanderta_arm32-platform-cflags += $(arm32-platform-cflags-no-hard-float)
2000de9a5fbSJens Wiklanderendif
20131a29642SJerome Forissierifeq ($(CFG_UNWIND),y)
20231a29642SJerome Forissierta_arm32-platform-cflags += -funwind-tables
20331a29642SJerome Forissierendif
2049b40b6e6SJerome Forissierta_arm32-platform-aflags += $(platform-aflags-generic)
205739804b5SJens Wiklanderta_arm32-platform-aflags += $(platform-aflags-debug-info)
206739804b5SJens Wiklanderta_arm32-platform-aflags += $(arm32-platform-aflags)
207739804b5SJens Wiklander
208739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += CFG_ARM32_ta_arm32
209739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-cppflags
210739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-cflags
211739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-aflags
212c042fbefSJerome Forissier
2130ca35294SVictor Chongta-mk-file-export-add-ta_arm32 += CROSS_COMPILE ?= arm-linux-gnueabihf-_nl_
214c042fbefSJerome Forissierta-mk-file-export-add-ta_arm32 += CROSS_COMPILE32 ?= $$(CROSS_COMPILE)_nl_
215c042fbefSJerome Forissierta-mk-file-export-add-ta_arm32 += CROSS_COMPILE_ta_arm32 ?= $$(CROSS_COMPILE32)_nl_
21638f4260cSJerome Forissierta-mk-file-export-add-ta_arm32 += COMPILER ?= gcc_nl_
21738f4260cSJerome Forissierta-mk-file-export-add-ta_arm32 += COMPILER_ta_arm32 ?= $$(COMPILER)_nl_
218739804b5SJens Wiklanderendif
219739804b5SJens Wiklander
220739804b5SJens Wiklanderifneq ($(filter ta_arm64,$(ta-targets)),)
221739804b5SJens Wiklander# Variables for ta-target/sm "ta_arm64"
222739804b5SJens WiklanderCFG_ARM64_ta_arm64 := y
223b09cddcaSJerome Forissierarch-bits-ta_arm64 := 64
224739804b5SJens Wiklanderta_arm64-platform-cppflags += $(arm64-platform-cppflags)
225739804b5SJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags)
226739804b5SJens Wiklanderta_arm64-platform-cflags += $(platform-cflags-optimization)
227739804b5SJens Wiklanderta_arm64-platform-cflags += $(platform-cflags-debug-info)
2287f761274SJerome Forissierta_arm64-platform-cflags += -fpic
229739804b5SJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags-generic)
2309551f4e5SJens Wiklanderifeq ($(arm64-platform-hard-float-enabled),y)
2310de9a5fbSJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags-hard-float)
2320de9a5fbSJens Wiklanderelse
233739804b5SJens Wiklanderta_arm64-platform-cflags += $(arm64-platform-cflags-no-hard-float)
2340de9a5fbSJens Wiklanderendif
2359b40b6e6SJerome Forissierta_arm64-platform-aflags += $(platform-aflags-generic)
236739804b5SJens Wiklanderta_arm64-platform-aflags += $(platform-aflags-debug-info)
237739804b5SJens Wiklanderta_arm64-platform-aflags += $(arm64-platform-aflags)
238739804b5SJens Wiklander
239739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += CFG_ARM64_ta_arm64
240739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-cppflags
241739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-cflags
242739804b5SJens Wiklanderta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-aflags
243c042fbefSJerome Forissier
244c042fbefSJerome Forissierta-mk-file-export-add-ta_arm64 += CROSS_COMPILE64 ?= $$(CROSS_COMPILE)_nl_
245c042fbefSJerome Forissierta-mk-file-export-add-ta_arm64 += CROSS_COMPILE_ta_arm64 ?= $$(CROSS_COMPILE64)_nl_
24638f4260cSJerome Forissierta-mk-file-export-add-ta_arm64 += COMPILER ?= gcc_nl_
24738f4260cSJerome Forissierta-mk-file-export-add-ta_arm64 += COMPILER_ta_arm64 ?= $$(COMPILER)_nl_
248739804b5SJens Wiklanderendif
249b09cddcaSJerome Forissier
250b09cddcaSJerome Forissier# Set cross compiler prefix for each submodule
251b09cddcaSJerome Forissier$(foreach sm, core $(ta-targets), $(eval CROSS_COMPILE_$(sm) ?= $(CROSS_COMPILE$(arch-bits-$(sm)))))
25218b58024SJens Wiklander
25318b58024SJens Wiklanderarm32-sysreg-txt = core/arch/arm/kernel/arm32_sysreg.txt
25418b58024SJens Wiklanderarm32-sysregs-$(arm32-sysreg-txt)-h := arm32_sysreg.h
25518b58024SJens Wiklanderarm32-sysregs-$(arm32-sysreg-txt)-s := arm32_sysreg.S
25618b58024SJens Wiklanderarm32-sysregs += $(arm32-sysreg-txt)
25718b58024SJens Wiklander
258c3d0b15dSJens Wiklanderifeq ($(CFG_ARM_GICV3),y)
259c3d0b15dSJens Wiklanderarm32-gicv3-sysreg-txt = core/arch/arm/kernel/arm32_gicv3_sysreg.txt
260c3d0b15dSJens Wiklanderarm32-sysregs-$(arm32-gicv3-sysreg-txt)-h := arm32_gicv3_sysreg.h
261c3d0b15dSJens Wiklanderarm32-sysregs-$(arm32-gicv3-sysreg-txt)-s := arm32_gicv3_sysreg.S
262c3d0b15dSJens Wiklanderarm32-sysregs += $(arm32-gicv3-sysreg-txt)
263c3d0b15dSJens Wiklanderendif
264c3d0b15dSJens Wiklander
26518b58024SJens Wiklanderarm32-sysregs-out := $(out-dir)/$(sm)/include/generated
26618b58024SJens Wiklander
26718b58024SJens Wiklanderdefine process-arm32-sysreg
26818b58024SJens WiklanderFORCE-GENSRC$(sm): $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-h)
26918b58024SJens Wiklandercleanfiles := $$(cleanfiles) $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-h)
27018b58024SJens Wiklander
27118b58024SJens Wiklander$$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-h): $(1) scripts/arm32_sysreg.py
27218b58024SJens Wiklander	@$(cmd-echo-silent) '  GEN     $$@'
27318b58024SJens Wiklander	$(q)mkdir -p $$(dir $$@)
27418b58024SJens Wiklander	$(q)scripts/arm32_sysreg.py --guard __$$(arm32-sysregs-$(1)-h) \
27518b58024SJens Wiklander		< $$< > $$@
27618b58024SJens Wiklander
27718b58024SJens WiklanderFORCE-GENSRC$(sm): $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-s)
27818b58024SJens Wiklandercleanfiles := $$(cleanfiles) $$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-s)
27918b58024SJens Wiklander
28018b58024SJens Wiklander$$(arm32-sysregs-out)/$$(arm32-sysregs-$(1)-s): $(1) scripts/arm32_sysreg.py
28118b58024SJens Wiklander	@$(cmd-echo-silent) '  GEN     $$@'
28218b58024SJens Wiklander	$(q)mkdir -p $$(dir $$@)
28318b58024SJens Wiklander	$(q)scripts/arm32_sysreg.py --s_file < $$< > $$@
28418b58024SJens Wiklanderendef #process-arm32-sysreg
28518b58024SJens Wiklander
28618b58024SJens Wiklander$(foreach sr, $(arm32-sysregs), $(eval $(call process-arm32-sysreg,$(sr))))
287