1CFG_LTC_OPTEE_THREAD ?= y 2# Size of emulated TrustZone protected SRAM, 448 kB. 3# Only applicable when paging is enabled. 4CFG_CORE_TZSRAM_EMUL_SIZE ?= 458752 5CFG_LPAE_ADDR_SPACE_SIZE ?= (1ull << 32) 6 7CFG_MMAP_REGIONS ?= 13 8 9ifeq ($(CFG_ARM64_core),y) 10CFG_KERN_LINKER_FORMAT ?= elf64-littleaarch64 11CFG_KERN_LINKER_ARCH ?= aarch64 12else 13ifeq ($(CFG_ARM32_core),y) 14CFG_KERN_LINKER_FORMAT ?= elf32-littlearm 15CFG_KERN_LINKER_ARCH ?= arm 16else 17$(error Error: CFG_ARM64_core or CFG_ARM32_core should be defined) 18endif 19endif 20 21ifeq ($(CFG_TA_FLOAT_SUPPORT),y) 22# Use hard-float for floating point support in user TAs instead of 23# soft-float 24CFG_WITH_VFP ?= y 25ifeq ($(CFG_ARM64_core),y) 26# AArch64 has no fallback to soft-float 27$(call force,CFG_WITH_VFP,y) 28endif 29ifeq ($(CFG_WITH_VFP),y) 30platform-hard-float-enabled := y 31endif 32endif 33 34# Adds protection against CVE-2017-5715 also know as Spectre 35# (https://spectreattack.com) 36# See also https://developer.arm.com/-/media/Files/pdf/Cache_Speculation_Side-channels.pdf 37# Variant 2 38CFG_CORE_WORKAROUND_SPECTRE_BP ?= y 39 40CFG_CORE_RWDATA_NOEXEC ?= y 41CFG_CORE_RODATA_NOEXEC ?= n 42ifeq ($(CFG_CORE_RODATA_NOEXEC),y) 43$(call force,CFG_CORE_RWDATA_NOEXEC,y) 44endif 45# 'y' to set the Alignment Check Enable bit in SCTLR/SCTLR_EL1, 'n' to clear it 46CFG_SCTLR_ALIGNMENT_CHECK ?= y 47 48ifeq ($(CFG_CORE_LARGE_PHYS_ADDR),y) 49$(call force,CFG_WITH_LPAE,y) 50endif 51 52# Unmaps all kernel mode code except the code needed to take exceptions 53# from user space and restore kernel mode mapping again. This gives more 54# strict control over what is accessible while in user mode. 55# Addresses CVE-2017-5715 (aka Meltdown) known to affect Arm Cortex-A75 56CFG_CORE_UNMAP_CORE_AT_EL0 ?= y 57 58ifeq ($(CFG_ARM32_core),y) 59# Configration directive related to ARMv7 optee boot arguments. 60# CFG_PAGEABLE_ADDR: if defined, forces pageable data physical address. 61# CFG_NS_ENTRY_ADDR: if defined, forces NS World physical entry address. 62# CFG_DT_ADDR: if defined, forces Device Tree data physical address. 63endif 64 65core-platform-cppflags += -I$(arch-dir)/include 66core-platform-subdirs += \ 67 $(addprefix $(arch-dir)/, kernel crypto mm tee pta) $(platform-dir) 68 69ifneq ($(CFG_WITH_ARM_TRUSTED_FW),y) 70core-platform-subdirs += $(arch-dir)/sm 71endif 72 73arm64-platform-cppflags += -DARM64=1 -D__LP64__=1 74arm32-platform-cppflags += -DARM32=1 -D__ILP32__=1 75 76platform-cflags-generic ?= -g -ffunction-sections -fdata-sections -pipe 77platform-aflags-generic ?= -g -pipe 78 79arm32-platform-cflags-no-hard-float ?= -mfloat-abi=soft 80arm32-platform-cflags-hard-float ?= -mfloat-abi=hard -funsafe-math-optimizations 81arm32-platform-cflags-generic ?= -mthumb -mthumb-interwork \ 82 -fno-short-enums -fno-common -mno-unaligned-access 83arm32-platform-aflags-no-hard-float ?= 84 85arm64-platform-cflags-no-hard-float ?= -mgeneral-regs-only 86arm64-platform-cflags-hard-float ?= 87arm64-platform-cflags-generic ?= -mstrict-align 88 89ifeq ($(DEBUG),1) 90platform-cflags-optimization ?= -O0 91else 92platform-cflags-optimization ?= -Os 93endif 94 95platform-cflags-debug-info ?= -g3 96platform-aflags-debug-info ?= 97 98core-platform-cflags += $(platform-cflags-optimization) 99core-platform-cflags += $(platform-cflags-generic) 100core-platform-cflags += $(platform-cflags-debug-info) 101 102core-platform-aflags += $(platform-aflags-generic) 103core-platform-aflags += $(platform-aflags-debug-info) 104 105ifeq ($(CFG_ARM64_core),y) 106arch-bits-core := 64 107core-platform-cppflags += $(arm64-platform-cppflags) 108core-platform-cflags += $(arm64-platform-cflags) 109core-platform-cflags += $(arm64-platform-cflags-generic) 110core-platform-cflags += $(arm64-platform-cflags-no-hard-float) 111core-platform-aflags += $(arm64-platform-aflags) 112else 113arch-bits-core := 32 114core-platform-cppflags += $(arm32-platform-cppflags) 115core-platform-cflags += $(arm32-platform-cflags) 116core-platform-cflags += $(arm32-platform-cflags-no-hard-float) 117ifeq ($(CFG_UNWIND),y) 118core-platform-cflags += -funwind-tables 119endif 120core-platform-cflags += $(arm32-platform-cflags-generic) 121core-platform-aflags += $(core_arm32-platform-aflags) 122core-platform-aflags += $(arm32-platform-aflags) 123endif 124 125ifneq ($(filter ta_arm32,$(ta-targets)),) 126# Variables for ta-target/sm "ta_arm32" 127CFG_ARM32_ta_arm32 := y 128arch-bits-ta_arm32 := 32 129ta_arm32-platform-cppflags += $(arm32-platform-cppflags) 130ta_arm32-platform-cflags += $(arm32-platform-cflags) 131ta_arm32-platform-cflags += $(platform-cflags-optimization) 132ta_arm32-platform-cflags += $(platform-cflags-debug-info) 133ta_arm32-platform-cflags += -fpie 134ta_arm32-platform-cflags += $(arm32-platform-cflags-generic) 135ifeq ($(platform-hard-float-enabled),y) 136ta_arm32-platform-cflags += $(arm32-platform-cflags-hard-float) 137else 138ta_arm32-platform-cflags += $(arm32-platform-cflags-no-hard-float) 139endif 140ifeq ($(CFG_UNWIND),y) 141ta_arm32-platform-cflags += -funwind-tables 142endif 143ta_arm32-platform-aflags += $(platform-aflags-generic) 144ta_arm32-platform-aflags += $(platform-aflags-debug-info) 145ta_arm32-platform-aflags += $(arm32-platform-aflags) 146 147ta-mk-file-export-vars-ta_arm32 += CFG_ARM32_ta_arm32 148ta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-cppflags 149ta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-cflags 150ta-mk-file-export-vars-ta_arm32 += ta_arm32-platform-aflags 151 152ta-mk-file-export-add-ta_arm32 += CROSS_COMPILE ?= arm-linux-gnueabihf-_nl_ 153ta-mk-file-export-add-ta_arm32 += CROSS_COMPILE32 ?= $$(CROSS_COMPILE)_nl_ 154ta-mk-file-export-add-ta_arm32 += CROSS_COMPILE_ta_arm32 ?= $$(CROSS_COMPILE32)_nl_ 155endif 156 157ifneq ($(filter ta_arm64,$(ta-targets)),) 158# Variables for ta-target/sm "ta_arm64" 159CFG_ARM64_ta_arm64 := y 160arch-bits-ta_arm64 := 64 161ta_arm64-platform-cppflags += $(arm64-platform-cppflags) 162ta_arm64-platform-cflags += $(arm64-platform-cflags) 163ta_arm64-platform-cflags += $(platform-cflags-optimization) 164ta_arm64-platform-cflags += $(platform-cflags-debug-info) 165ta_arm64-platform-cflags += -fpie 166ta_arm64-platform-cflags += $(arm64-platform-cflags-generic) 167ifeq ($(platform-hard-float-enabled),y) 168ta_arm64-platform-cflags += $(arm64-platform-cflags-hard-float) 169else 170ta_arm64-platform-cflags += $(arm64-platform-cflags-no-hard-float) 171endif 172ta_arm64-platform-aflags += $(platform-aflags-generic) 173ta_arm64-platform-aflags += $(platform-aflags-debug-info) 174ta_arm64-platform-aflags += $(arm64-platform-aflags) 175 176ta-mk-file-export-vars-ta_arm64 += CFG_ARM64_ta_arm64 177ta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-cppflags 178ta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-cflags 179ta-mk-file-export-vars-ta_arm64 += ta_arm64-platform-aflags 180 181ta-mk-file-export-add-ta_arm64 += CROSS_COMPILE64 ?= $$(CROSS_COMPILE)_nl_ 182ta-mk-file-export-add-ta_arm64 += CROSS_COMPILE_ta_arm64 ?= $$(CROSS_COMPILE64)_nl_ 183endif 184 185# Set cross compiler prefix for each submodule 186$(foreach sm, core $(ta-targets), $(eval CROSS_COMPILE_$(sm) ?= $(CROSS_COMPILE$(arch-bits-$(sm))))) 187