1CFG_LTC_OPTEE_THREAD ?= y 2# Size of emulated TrustZone protected SRAM, 448 kB. 3# Only applicable when paging is enabled. 4CFG_CORE_TZSRAM_EMUL_SIZE ?= 458752 5CFG_LPAE_ADDR_SPACE_SIZE ?= (1ull << 32) 6 7CFG_MMAP_REGIONS ?= 13 8 9ifeq ($(CFG_ARM64_core),y) 10CFG_KERN_LINKER_FORMAT ?= elf64-littleaarch64 11CFG_KERN_LINKER_ARCH ?= aarch64 12else 13ifeq ($(CFG_ARM32_core),y) 14CFG_KERN_LINKER_FORMAT ?= elf32-littlearm 15CFG_KERN_LINKER_ARCH ?= arm 16else 17$(error Error: CFG_ARM64_core or CFG_ARM32_core should be defined) 18endif 19endif 20 21ifeq ($(CFG_TA_FLOAT_SUPPORT),y) 22# Use hard-float for floating point support in user TAs instead of 23# soft-float 24CFG_WITH_VFP ?= y 25ifeq ($(CFG_ARM64_core),y) 26# AArch64 has no fallback to soft-float 27$(call force,CFG_WITH_VFP,y) 28endif 29ifeq ($(CFG_WITH_VFP),y) 30platform-hard-float-enabled := y 31endif 32endif 33 34# Adds protection against CVE-2017-5715 also know as Spectre 35# (https://spectreattack.com) 36# See also https://developer.arm.com/-/media/Files/pdf/Cache_Speculation_Side-channels.pdf 37# Variant 2 38CFG_CORE_WORKAROUND_SPECTRE_BP ?= y 39# Same as CFG_CORE_WORKAROUND_SPECTRE_BP but targeting exceptions from 40# secure EL0 instead of non-secure world. 41CFG_CORE_WORKAROUND_SPECTRE_BP_SEC ?= $(CFG_CORE_WORKAROUND_SPECTRE_BP) 42 43CFG_CORE_RWDATA_NOEXEC ?= y 44CFG_CORE_RODATA_NOEXEC ?= n 45ifeq ($(CFG_CORE_RODATA_NOEXEC),y) 46$(call force,CFG_CORE_RWDATA_NOEXEC,y) 47endif 48# 'y' to set the Alignment Check Enable bit in SCTLR/SCTLR_EL1, 'n' to clear it 49CFG_SCTLR_ALIGNMENT_CHECK ?= y 50 51ifeq ($(CFG_CORE_LARGE_PHYS_ADDR),y) 52$(call force,CFG_WITH_LPAE,y) 53endif 54 55# Unmaps all kernel mode code except the code needed to take exceptions 56# from user space and restore kernel mode mapping again. This gives more 57# strict control over what is accessible while in user mode. 58# Addresses CVE-2017-5715 (aka Meltdown) known to affect Arm Cortex-A75 59CFG_CORE_UNMAP_CORE_AT_EL0 ?= y 60 61ifeq ($(CFG_ARM32_core),y) 62# Configration directive related to ARMv7 optee boot arguments. 63# CFG_PAGEABLE_ADDR: if defined, forces pageable data physical address. 64# CFG_NS_ENTRY_ADDR: if defined, forces NS World physical entry address. 65# CFG_DT_ADDR: if defined, forces Device Tree data physical address. 66endif 67 68core-platform-cppflags += -I$(arch-dir)/include 69core-platform-subdirs += \ 70 $(addprefix $(arch-dir)/, kernel crypto mm tee pta) $(platform-dir) 71 72ifneq ($(CFG_WITH_ARM_TRUSTED_FW),y) 73core-platform-subdirs += $(arch-dir)/sm 74endif 75 76arm64-platform-cppflags += -DARM64=1 -D__LP64__=1 77arm32-platform-cppflags += -DARM32=1 -D__ILP32__=1 78 79platform-cflags-generic ?= -g -ffunction-sections -fdata-sections -pipe 80platform-aflags-generic ?= -g -pipe 81 82arm32-platform-cflags-no-hard-float ?= -mfloat-abi=soft 83arm32-platform-cflags-hard-float ?= -mfloat-abi=hard -funsafe-math-optimizations 84arm32-platform-cflags-generic ?= -mthumb -mthumb-interwork \ 85 -fno-short-enums -fno-common -mno-unaligned-access 86arm32-platform-aflags-no-hard-float ?= 87 88arm64-platform-cflags-no-hard-float ?= -mgeneral-regs-only 89arm64-platform-cflags-hard-float ?= 90arm64-platform-cflags-generic ?= -mstrict-align 91 92ifeq ($(DEBUG),1) 93platform-cflags-optimization ?= -O0 94else 95platform-cflags-optimization ?= -Os 96endif 97 98platform-cflags-debug-info ?= -g3 99platform-aflags-debug-info ?= 100 101core-platform-cflags += $(platform-cflags-optimization) 102core-platform-cflags += $(platform-cflags-generic) 103core-platform-cflags += $(platform-cflags-debug-info) 104 105core-platform-aflags += $(platform-aflags-generic) 106core-platform-aflags += $(platform-aflags-debug-info) 107 108ifeq ($(CFG_ARM64_core),y) 109arch-bits-core := 64 110core-platform-cppflags += $(arm64-platform-cppflags) 111core-platform-cflags += $(arm64-platform-cflags) 112core-platform-cflags += $(arm64-platform-cflags-generic) 113core-platform-cflags += $(arm64-platform-cflags-no-hard-float) 114core-platform-aflags += $(arm64-platform-aflags) 115else 116arch-bits-core := 32 117core-platform-cppflags += $(arm32-platform-cppflags) 118core-platform-cflags += $(arm32-platform-cflags) 119core-platform-cflags += $(arm32-platform-cflags-no-hard-float) 120ifeq ($(CFG_UNWIND),y) 121core-platform-cflags += -funwind-tables 122endif 123core-platform-cflags += $(arm32-platform-cflags-generic) 124core-platform-aflags += $(core_arm32-platform-aflags) 125core-platform-aflags += $(arm32-platform-aflags) 126endif 127 128ifneq ($(filter ta_arm32,$(ta-targets)),) 129# Variables for ta-target/sm "ta_arm32" 130CFG_ARM32_ta_arm32 := y 131arch-bits-ta_arm32 := 32 132ta_arm32-platform-cppflags += $(arm32-platform-cppflags) 133ta_arm32-platform-cflags += $(arm32-platform-cflags) 134ta_arm32-platform-cflags += $(platform-cflags-optimization) 135ta_arm32-platform-cflags += $(platform-cflags-debug-info) 136ta_arm32-platform-cflags += -fpie 137ta_arm32-platform-cflags += $(arm32-platform-cflags-generic) 138ifeq ($(platform-hard-float-enabled),y) 139ta_arm32-platform-cflags += $(arm32-platform-cflags-hard-float) 140else 141ta_arm32-platform-cflags += $(arm32-platform-cflags-no-hard-float) 142endif 143ifeq ($(CFG_UNWIND),y) 144ta_arm32-platform-cflags += -funwind-tables 145endif 146ta_arm32-platform-aflags += $(platform-aflags-generic) 147ta_arm32-platform-aflags += $(platform-aflags-debug-info) 148ta_arm32-platform-aflags += $(arm32-platform-aflags) 149 150ta-mk-file-export-vars-ta_arm32 += CFG_ARM32_ta_arm32 151ta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-cppflags 152ta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-cflags 153ta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-aflags 154 155ta-mk-file-export-add-ta_arm32 += CROSS_COMPILE ?= arm-linux-gnueabihf-_nl_ 156ta-mk-file-export-add-ta_arm32 += CROSS_COMPILE32 ?= $$(CROSS_COMPILE)_nl_ 157ta-mk-file-export-add-ta_arm32 += CROSS_COMPILE_ta_arm32 ?= $$(CROSS_COMPILE32)_nl_ 158endif 159 160ifneq ($(filter ta_arm64,$(ta-targets)),) 161# Variables for ta-target/sm "ta_arm64" 162CFG_ARM64_ta_arm64 := y 163arch-bits-ta_arm64 := 64 164ta_arm64-platform-cppflags += $(arm64-platform-cppflags) 165ta_arm64-platform-cflags += $(arm64-platform-cflags) 166ta_arm64-platform-cflags += $(platform-cflags-optimization) 167ta_arm64-platform-cflags += $(platform-cflags-debug-info) 168ta_arm64-platform-cflags += -fpie 169ta_arm64-platform-cflags += $(arm64-platform-cflags-generic) 170ifeq ($(platform-hard-float-enabled),y) 171ta_arm64-platform-cflags += $(arm64-platform-cflags-hard-float) 172else 173ta_arm64-platform-cflags += $(arm64-platform-cflags-no-hard-float) 174endif 175ta_arm64-platform-aflags += $(platform-aflags-generic) 176ta_arm64-platform-aflags += $(platform-aflags-debug-info) 177ta_arm64-platform-aflags += $(arm64-platform-aflags) 178 179ta-mk-file-export-vars-ta_arm64 += CFG_ARM64_ta_arm64 180ta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-cppflags 181ta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-cflags 182ta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-aflags 183 184ta-mk-file-export-add-ta_arm64 += CROSS_COMPILE64 ?= $$(CROSS_COMPILE)_nl_ 185ta-mk-file-export-add-ta_arm64 += CROSS_COMPILE_ta_arm64 ?= $$(CROSS_COMPILE64)_nl_ 186endif 187 188# Set cross compiler prefix for each submodule 189$(foreach sm, core $(ta-targets), $(eval CROSS_COMPILE_$(sm) ?= $(CROSS_COMPILE$(arch-bits-$(sm))))) 190