xref: /optee_os/core/drivers/stm32_rng.c (revision 98c3626800f6fe4f514ff05f95c6c86e39a5fb67)
1f3c22059SEtienne Carriere // SPDX-License-Identifier: BSD-3-Clause
2f3c22059SEtienne Carriere /*
3ea8ba295SGatien Chevallier  * Copyright (c) 2018-2023, STMicroelectronics
4f3c22059SEtienne Carriere  */
5f3c22059SEtienne Carriere 
6f3c22059SEtienne Carriere #include <assert.h>
7d7a1a7d2SEtienne Carriere #include <drivers/clk.h>
8d7a1a7d2SEtienne Carriere #include <drivers/clk_dt.h>
9ea8ba295SGatien Chevallier #include <drivers/rstctrl.h>
10f3c22059SEtienne Carriere #include <io.h>
11f3c22059SEtienne Carriere #include <kernel/delay.h>
12a2fc83d1SJerome Forissier #include <kernel/dt.h>
13ea8ba295SGatien Chevallier #include <kernel/dt_driver.h>
1465401337SJens Wiklander #include <kernel/boot.h>
15f3c22059SEtienne Carriere #include <kernel/panic.h>
1629893549SGatien Chevallier #include <kernel/pm.h>
1765b5ada4SMarouene Boubakri #include <kernel/thread.h>
18a2fc83d1SJerome Forissier #include <libfdt.h>
19f3c22059SEtienne Carriere #include <mm/core_memprot.h>
20097f329aSEtienne Carriere #include <rng_support.h>
21f3c22059SEtienne Carriere #include <stdbool.h>
22f3c22059SEtienne Carriere #include <stm32_util.h>
23f3c22059SEtienne Carriere #include <string.h>
24cd451498SEtienne Carriere #include <tee/tee_cryp_utl.h>
25f3c22059SEtienne Carriere 
260817aa6fSGatien Chevallier #define RNG_CR			U(0x00)
270817aa6fSGatien Chevallier #define RNG_SR			U(0x04)
280817aa6fSGatien Chevallier #define RNG_DR			U(0x08)
29f3c22059SEtienne Carriere 
30f3c22059SEtienne Carriere #define RNG_CR_RNGEN		BIT(2)
31f3c22059SEtienne Carriere #define RNG_CR_IE		BIT(3)
32f3c22059SEtienne Carriere #define RNG_CR_CED		BIT(5)
33091ef005SGatien Chevallier #define RNG_CR_CLKDIV		GENMASK_32(19, 16)
34091ef005SGatien Chevallier #define RNG_CR_CLKDIV_SHIFT	U(16)
35091ef005SGatien Chevallier #define RNG_CR_CONDRST		BIT(30)
36f3c22059SEtienne Carriere 
37f3c22059SEtienne Carriere #define RNG_SR_DRDY		BIT(0)
38f3c22059SEtienne Carriere #define RNG_SR_CECS		BIT(1)
39f3c22059SEtienne Carriere #define RNG_SR_SECS		BIT(2)
40f3c22059SEtienne Carriere #define RNG_SR_CEIS		BIT(5)
41f3c22059SEtienne Carriere #define RNG_SR_SEIS		BIT(6)
42f3c22059SEtienne Carriere 
430817aa6fSGatien Chevallier #if TRACE_LEVEL > TRACE_DEBUG
440817aa6fSGatien Chevallier #define RNG_READY_TIMEOUT_US	U(100000)
450817aa6fSGatien Chevallier #else
460817aa6fSGatien Chevallier #define RNG_READY_TIMEOUT_US	U(10000)
470817aa6fSGatien Chevallier #endif
48ea8ba295SGatien Chevallier #define RNG_RESET_TIMEOUT_US	U(1000)
49f3c22059SEtienne Carriere 
500817aa6fSGatien Chevallier #define RNG_FIFO_BYTE_DEPTH	U(16)
510817aa6fSGatien Chevallier 
52091ef005SGatien Chevallier #define RNG_NIST_CONFIG_A	U(0x0F00D00)
53091ef005SGatien Chevallier #define RNG_NIST_CONFIG_B	U(0x1801000)
54091ef005SGatien Chevallier #define RNG_NIST_CONFIG_MASK	GENMASK_32(25, 8)
55091ef005SGatien Chevallier 
56091ef005SGatien Chevallier #define RNG_MAX_NOISE_CLK_FREQ	U(3000000)
57091ef005SGatien Chevallier 
58091ef005SGatien Chevallier struct stm32_rng_driver_data {
59091ef005SGatien Chevallier 	bool has_cond_reset;
60091ef005SGatien Chevallier };
61091ef005SGatien Chevallier 
62f3c22059SEtienne Carriere struct stm32_rng_instance {
63f3c22059SEtienne Carriere 	struct io_pa_va base;
64d7a1a7d2SEtienne Carriere 	struct clk *clock;
65ea8ba295SGatien Chevallier 	struct rstctrl *rstctrl;
66091ef005SGatien Chevallier 	const struct stm32_rng_driver_data *ddata;
67f3c22059SEtienne Carriere 	unsigned int lock;
68d8682c4cSEtienne Carriere 	bool release_post_boot;
693c752300SGatien Chevallier 	bool clock_error;
70091ef005SGatien Chevallier 	bool error_conceal;
71091ef005SGatien Chevallier 	uint64_t error_to_ref;
72f3c22059SEtienne Carriere };
73f3c22059SEtienne Carriere 
74ea8ba295SGatien Chevallier /* Expect at most a single RNG instance */
75f3c22059SEtienne Carriere static struct stm32_rng_instance *stm32_rng;
76f3c22059SEtienne Carriere 
77f63f11bdSGatien Chevallier static vaddr_t get_base(void)
78f63f11bdSGatien Chevallier {
79f63f11bdSGatien Chevallier 	assert(stm32_rng);
80f63f11bdSGatien Chevallier 
81f63f11bdSGatien Chevallier 	return io_pa_or_va(&stm32_rng->base, 1);
82f63f11bdSGatien Chevallier }
83f63f11bdSGatien Chevallier 
84f3c22059SEtienne Carriere /*
85091ef005SGatien Chevallier  * Extracts from the STM32 RNG specification when RNG supports CONDRST.
86f3c22059SEtienne Carriere  *
87f3c22059SEtienne Carriere  * When a noise source (or seed) error occurs, the RNG stops generating
88f3c22059SEtienne Carriere  * random numbers and sets to “1” both SEIS and SECS bits to indicate
89f3c22059SEtienne Carriere  * that a seed error occurred. (...)
90091ef005SGatien Chevallier  *
91091ef005SGatien Chevallier  * 1. Software reset by writing CONDRST at 1 and at 0 (see bitfield
92091ef005SGatien Chevallier  * description for details). This step is needed only if SECS is set.
93091ef005SGatien Chevallier  * Indeed, when SEIS is set and SECS is cleared it means RNG performed
94091ef005SGatien Chevallier  * the reset automatically (auto-reset).
95091ef005SGatien Chevallier  * 2. If SECS was set in step 1 (no auto-reset) wait for CONDRST
96091ef005SGatien Chevallier  * to be cleared in the RNG_CR register, then confirm that SEIS is
97091ef005SGatien Chevallier  * cleared in the RNG_SR register. Otherwise just clear SEIS bit in
98091ef005SGatien Chevallier  * the RNG_SR register.
99091ef005SGatien Chevallier  * 3. If SECS was set in step 1 (no auto-reset) wait for SECS to be
100091ef005SGatien Chevallier  * cleared by RNG. The random number generation is now back to normal.
101091ef005SGatien Chevallier  */
102091ef005SGatien Chevallier static void conceal_seed_error_cond_reset(void)
103091ef005SGatien Chevallier {
104091ef005SGatien Chevallier 	struct stm32_rng_instance *dev = stm32_rng;
105091ef005SGatien Chevallier 	vaddr_t rng_base = get_base();
106f3c22059SEtienne Carriere 
107091ef005SGatien Chevallier 	if (!dev->error_conceal) {
108091ef005SGatien Chevallier 		uint32_t sr = io_read32(rng_base + RNG_SR);
109091ef005SGatien Chevallier 
110091ef005SGatien Chevallier 		if (sr & RNG_SR_SECS) {
111091ef005SGatien Chevallier 			/* Conceal by resetting the subsystem (step 1.) */
112091ef005SGatien Chevallier 			io_setbits32(rng_base + RNG_CR, RNG_CR_CONDRST);
113091ef005SGatien Chevallier 			io_clrbits32(rng_base + RNG_CR, RNG_CR_CONDRST);
114091ef005SGatien Chevallier 
115091ef005SGatien Chevallier 			/* Arm timeout for error_conceal sequence */
116091ef005SGatien Chevallier 			dev->error_to_ref =
117091ef005SGatien Chevallier 				timeout_init_us(RNG_READY_TIMEOUT_US);
118091ef005SGatien Chevallier 			dev->error_conceal = true;
119091ef005SGatien Chevallier 		} else {
120091ef005SGatien Chevallier 			/* RNG auto-reset (step 2.) */
121091ef005SGatien Chevallier 			io_clrbits32(rng_base + RNG_SR, RNG_SR_SEIS);
122091ef005SGatien Chevallier 		}
123091ef005SGatien Chevallier 	} else {
124091ef005SGatien Chevallier 		/* Measure time before possible reschedule */
125091ef005SGatien Chevallier 		bool timed_out = timeout_elapsed(dev->error_to_ref);
126091ef005SGatien Chevallier 
127091ef005SGatien Chevallier 		/* Wait CONDRST is cleared (step 2.) */
128091ef005SGatien Chevallier 		if (io_read32(rng_base + RNG_CR) & RNG_CR_CONDRST) {
129091ef005SGatien Chevallier 			if (timed_out)
130091ef005SGatien Chevallier 				panic();
131091ef005SGatien Chevallier 
132091ef005SGatien Chevallier 			/* Wait subsystem reset cycle completes */
133091ef005SGatien Chevallier 			return;
134091ef005SGatien Chevallier 		}
135091ef005SGatien Chevallier 
136091ef005SGatien Chevallier 		/* Check SEIS is cleared (step 2.) */
137091ef005SGatien Chevallier 		if (io_read32(rng_base + RNG_SR) & RNG_SR_SEIS)
138091ef005SGatien Chevallier 			panic();
139091ef005SGatien Chevallier 
140091ef005SGatien Chevallier 		/* Wait SECS is cleared (step 3.) */
141091ef005SGatien Chevallier 		if (io_read32(rng_base + RNG_SR) & RNG_SR_SECS) {
142091ef005SGatien Chevallier 			if (timed_out)
143091ef005SGatien Chevallier 				panic();
144091ef005SGatien Chevallier 
145091ef005SGatien Chevallier 			/* Wait subsystem reset cycle completes */
146091ef005SGatien Chevallier 			return;
147091ef005SGatien Chevallier 		}
148091ef005SGatien Chevallier 
149091ef005SGatien Chevallier 		dev->error_conceal = false;
150091ef005SGatien Chevallier 	}
151091ef005SGatien Chevallier }
152091ef005SGatien Chevallier 
153091ef005SGatien Chevallier /*
154091ef005SGatien Chevallier  * Extracts from the STM32 RNG specification, when CONDRST is not supported
155091ef005SGatien Chevallier  *
156091ef005SGatien Chevallier  * When a noise source (or seed) error occurs, the RNG stops generating
157091ef005SGatien Chevallier  * random numbers and sets to “1” both SEIS and SECS bits to indicate
158091ef005SGatien Chevallier  * that a seed error occurred. (...)
159091ef005SGatien Chevallier  *
160f3c22059SEtienne Carriere  * The following sequence shall be used to fully recover from a seed
161f3c22059SEtienne Carriere  * error after the RNG initialization:
162f3c22059SEtienne Carriere  * 1. Clear the SEIS bit by writing it to “0”.
163f3c22059SEtienne Carriere  * 2. Read out 12 words from the RNG_DR register, and discard each of
164f3c22059SEtienne Carriere  * them in order to clean the pipeline.
165f3c22059SEtienne Carriere  * 3. Confirm that SEIS is still cleared. Random number generation is
166f3c22059SEtienne Carriere  * back to normal.
167f3c22059SEtienne Carriere  */
168091ef005SGatien Chevallier static void conceal_seed_error_sw_reset(void)
169f3c22059SEtienne Carriere {
1706a6b6168SGatien Chevallier 	vaddr_t rng_base = get_base();
171f3c22059SEtienne Carriere 	size_t i = 0;
172f3c22059SEtienne Carriere 
1736a6b6168SGatien Chevallier 	io_clrbits32(rng_base + RNG_SR, RNG_SR_SEIS);
174f3c22059SEtienne Carriere 
175f3c22059SEtienne Carriere 	for (i = 12; i != 0; i--)
176f3c22059SEtienne Carriere 		(void)io_read32(rng_base + RNG_DR);
177f3c22059SEtienne Carriere 
178f3c22059SEtienne Carriere 	if (io_read32(rng_base + RNG_SR) & RNG_SR_SEIS)
179f3c22059SEtienne Carriere 		panic("RNG noise");
180f3c22059SEtienne Carriere }
181f3c22059SEtienne Carriere 
182091ef005SGatien Chevallier static void conceal_seed_error(void)
183091ef005SGatien Chevallier {
184091ef005SGatien Chevallier 	if (stm32_rng->ddata->has_cond_reset)
185091ef005SGatien Chevallier 		conceal_seed_error_cond_reset();
186091ef005SGatien Chevallier 	else
187091ef005SGatien Chevallier 		conceal_seed_error_sw_reset();
188091ef005SGatien Chevallier }
189091ef005SGatien Chevallier 
190c99311c8SEtienne Carriere static TEE_Result read_available(vaddr_t rng_base, uint8_t *out, size_t *size)
191f3c22059SEtienne Carriere {
192091ef005SGatien Chevallier 	struct stm32_rng_instance *dev = stm32_rng;
193c99311c8SEtienne Carriere 	uint8_t *buf = NULL;
194c99311c8SEtienne Carriere 	size_t req_size = 0;
195c99311c8SEtienne Carriere 	size_t len = 0;
196f3c22059SEtienne Carriere 
197091ef005SGatien Chevallier 	if (dev->error_conceal || io_read32(rng_base + RNG_SR) & RNG_SR_SEIS)
1986a6b6168SGatien Chevallier 		conceal_seed_error();
199f3c22059SEtienne Carriere 
20023123473SEtienne Carriere 	if (!(io_read32(rng_base + RNG_SR) & RNG_SR_DRDY)) {
20123123473SEtienne Carriere 		FMSG("RNG not ready");
202c99311c8SEtienne Carriere 		return TEE_ERROR_NO_DATA;
20323123473SEtienne Carriere 	}
204f3c22059SEtienne Carriere 
20523123473SEtienne Carriere 	if (io_read32(rng_base + RNG_SR) & RNG_SR_SEIS) {
20623123473SEtienne Carriere 		FMSG("RNG noise error");
207c99311c8SEtienne Carriere 		return TEE_ERROR_NO_DATA;
20823123473SEtienne Carriere 	}
209c99311c8SEtienne Carriere 
210c99311c8SEtienne Carriere 	buf = out;
211c99311c8SEtienne Carriere 	req_size = MIN(RNG_FIFO_BYTE_DEPTH, *size);
212c99311c8SEtienne Carriere 	len = req_size;
213f3c22059SEtienne Carriere 
214f3c22059SEtienne Carriere 	/* RNG is ready: read up to 4 32bit words */
215f3c22059SEtienne Carriere 	while (len) {
216f3c22059SEtienne Carriere 		uint32_t data32 = io_read32(rng_base + RNG_DR);
217f3c22059SEtienne Carriere 		size_t sz = MIN(len, sizeof(uint32_t));
218f3c22059SEtienne Carriere 
2193e64c635SGatien Chevallier 		/* Late seed error case: DR being 0 is an error status */
2203e64c635SGatien Chevallier 		if (!data32) {
2213e64c635SGatien Chevallier 			conceal_seed_error();
2223e64c635SGatien Chevallier 			return TEE_ERROR_NO_DATA;
2233e64c635SGatien Chevallier 		}
2243e64c635SGatien Chevallier 
225f3c22059SEtienne Carriere 		memcpy(buf, &data32, sz);
226f3c22059SEtienne Carriere 		buf += sz;
227f3c22059SEtienne Carriere 		len -= sz;
228f3c22059SEtienne Carriere 	}
229c99311c8SEtienne Carriere 
230f3c22059SEtienne Carriere 	*size = req_size;
231f3c22059SEtienne Carriere 
232c99311c8SEtienne Carriere 	return TEE_SUCCESS;
233f3c22059SEtienne Carriere }
234f3c22059SEtienne Carriere 
235091ef005SGatien Chevallier static uint32_t stm32_rng_clock_freq_restrain(void)
236091ef005SGatien Chevallier {
237091ef005SGatien Chevallier 	struct stm32_rng_instance *dev = stm32_rng;
238091ef005SGatien Chevallier 	unsigned long clock_rate = 0;
239091ef005SGatien Chevallier 	uint32_t clock_div = 0;
240091ef005SGatien Chevallier 
241091ef005SGatien Chevallier 	clock_rate = clk_get_rate(dev->clock);
242091ef005SGatien Chevallier 
243091ef005SGatien Chevallier 	/*
244091ef005SGatien Chevallier 	 * Get the exponent to apply on the CLKDIV field in RNG_CR register
245091ef005SGatien Chevallier 	 * No need to handle the case when clock-div > 0xF as it is physically
246091ef005SGatien Chevallier 	 * impossible
247091ef005SGatien Chevallier 	 */
248091ef005SGatien Chevallier 	while ((clock_rate >> clock_div) > RNG_MAX_NOISE_CLK_FREQ)
249091ef005SGatien Chevallier 		clock_div++;
250091ef005SGatien Chevallier 
251091ef005SGatien Chevallier 	DMSG("RNG clk rate : %lu", clk_get_rate(dev->clock) >> clock_div);
252091ef005SGatien Chevallier 
253091ef005SGatien Chevallier 	return clock_div;
254091ef005SGatien Chevallier }
255091ef005SGatien Chevallier 
256f63f11bdSGatien Chevallier static TEE_Result init_rng(void)
257f3c22059SEtienne Carriere {
258f63f11bdSGatien Chevallier 	vaddr_t rng_base = get_base();
259f63f11bdSGatien Chevallier 	uint64_t timeout_ref = 0;
2603c752300SGatien Chevallier 	uint32_t cr_ced_mask = 0;
2613c752300SGatien Chevallier 
2623c752300SGatien Chevallier 	if (!stm32_rng->clock_error)
2633c752300SGatien Chevallier 		cr_ced_mask = RNG_CR_CED;
264f3c22059SEtienne Carriere 
265f63f11bdSGatien Chevallier 	/* Clean error indications */
266f63f11bdSGatien Chevallier 	io_write32(rng_base + RNG_SR, 0);
267f3c22059SEtienne Carriere 
268091ef005SGatien Chevallier 	if (stm32_rng->ddata->has_cond_reset) {
269091ef005SGatien Chevallier 		uint32_t clock_div = stm32_rng_clock_freq_restrain();
270091ef005SGatien Chevallier 
271091ef005SGatien Chevallier 		/* Update configuration fields */
272091ef005SGatien Chevallier 		io_clrsetbits32(rng_base + RNG_CR, RNG_NIST_CONFIG_MASK,
273091ef005SGatien Chevallier 				RNG_NIST_CONFIG_B | RNG_CR_CONDRST |
2743c752300SGatien Chevallier 				cr_ced_mask);
275091ef005SGatien Chevallier 		io_clrsetbits32(rng_base + RNG_CR, RNG_CR_CLKDIV,
276091ef005SGatien Chevallier 				clock_div << RNG_CR_CLKDIV_SHIFT);
277091ef005SGatien Chevallier 
278091ef005SGatien Chevallier 		/* No need to wait for RNG_CR_CONDRST toggle as we enable clk */
279091ef005SGatien Chevallier 		io_clrsetbits32(rng_base + RNG_CR, RNG_CR_CONDRST,
280091ef005SGatien Chevallier 				RNG_CR_RNGEN);
281091ef005SGatien Chevallier 	} else {
2823c752300SGatien Chevallier 		io_setbits32(rng_base + RNG_CR, RNG_CR_RNGEN | cr_ced_mask);
283091ef005SGatien Chevallier 	}
284f63f11bdSGatien Chevallier 
2850817aa6fSGatien Chevallier 	timeout_ref = timeout_init_us(RNG_READY_TIMEOUT_US);
286f63f11bdSGatien Chevallier 	while (!(io_read32(rng_base + RNG_SR) & RNG_SR_DRDY))
287f63f11bdSGatien Chevallier 		if (timeout_elapsed(timeout_ref))
288f63f11bdSGatien Chevallier 			break;
289f63f11bdSGatien Chevallier 
290f63f11bdSGatien Chevallier 	if (!(io_read32(rng_base + RNG_SR) & RNG_SR_DRDY))
291f63f11bdSGatien Chevallier 		return TEE_ERROR_GENERIC;
292f63f11bdSGatien Chevallier 
293f63f11bdSGatien Chevallier 	return TEE_SUCCESS;
294f3c22059SEtienne Carriere }
295f3c22059SEtienne Carriere 
296*98c36268SGatien Chevallier static TEE_Result stm32_rng_read(uint8_t *out, size_t size)
297f3c22059SEtienne Carriere {
298c99311c8SEtienne Carriere 	TEE_Result rc = TEE_ERROR_GENERIC;
299c99311c8SEtienne Carriere 	bool burst_timeout = false;
300c99311c8SEtienne Carriere 	uint64_t timeout_ref = 0;
301f3c22059SEtienne Carriere 	uint32_t exceptions = 0;
302f3c22059SEtienne Carriere 	uint8_t *out_ptr = out;
303c99311c8SEtienne Carriere 	vaddr_t rng_base = 0;
304f3c22059SEtienne Carriere 	size_t out_size = 0;
305f3c22059SEtienne Carriere 
306f3c22059SEtienne Carriere 	if (!stm32_rng) {
307f3c22059SEtienne Carriere 		DMSG("No RNG");
308f3c22059SEtienne Carriere 		return TEE_ERROR_NOT_SUPPORTED;
309f3c22059SEtienne Carriere 	}
310f3c22059SEtienne Carriere 
311f63f11bdSGatien Chevallier 	clk_enable(stm32_rng->clock);
312f63f11bdSGatien Chevallier 	rng_base = get_base();
313c99311c8SEtienne Carriere 
314c99311c8SEtienne Carriere 	/* Arm timeout */
3150817aa6fSGatien Chevallier 	timeout_ref = timeout_init_us(RNG_READY_TIMEOUT_US);
316c99311c8SEtienne Carriere 	burst_timeout = false;
317f3c22059SEtienne Carriere 
318f3c22059SEtienne Carriere 	while (out_size < size) {
319f3c22059SEtienne Carriere 		/* Read by chunks of the size the RNG FIFO depth */
320f3c22059SEtienne Carriere 		size_t sz = size - out_size;
321f3c22059SEtienne Carriere 
322f3c22059SEtienne Carriere 		exceptions = may_spin_lock(&stm32_rng->lock);
323f3c22059SEtienne Carriere 
324c99311c8SEtienne Carriere 		rc = read_available(rng_base, out_ptr, &sz);
325c99311c8SEtienne Carriere 
326c99311c8SEtienne Carriere 		/* Raise timeout only if we failed to get some samples */
327c99311c8SEtienne Carriere 		assert(!rc || rc == TEE_ERROR_NO_DATA);
328c99311c8SEtienne Carriere 		if (rc)
329c99311c8SEtienne Carriere 			burst_timeout = timeout_elapsed(timeout_ref);
330f3c22059SEtienne Carriere 
331f3c22059SEtienne Carriere 		may_spin_unlock(&stm32_rng->lock, exceptions);
332f3c22059SEtienne Carriere 
333c99311c8SEtienne Carriere 		if (burst_timeout) {
334c99311c8SEtienne Carriere 			rc = TEE_ERROR_GENERIC;
335c99311c8SEtienne Carriere 			goto out;
336f3c22059SEtienne Carriere 		}
337f3c22059SEtienne Carriere 
338c99311c8SEtienne Carriere 		if (!rc) {
339c99311c8SEtienne Carriere 			out_size += sz;
340c99311c8SEtienne Carriere 			out_ptr += sz;
341c99311c8SEtienne Carriere 			/* Re-arm timeout */
3420817aa6fSGatien Chevallier 			timeout_ref = timeout_init_us(RNG_READY_TIMEOUT_US);
343c99311c8SEtienne Carriere 			burst_timeout = false;
344c99311c8SEtienne Carriere 		}
345c99311c8SEtienne Carriere 	}
346c99311c8SEtienne Carriere 
347c99311c8SEtienne Carriere out:
348c99311c8SEtienne Carriere 	assert(!rc || rc == TEE_ERROR_GENERIC);
349f63f11bdSGatien Chevallier 	clk_disable(stm32_rng->clock);
350f3c22059SEtienne Carriere 
351f3c22059SEtienne Carriere 	return rc;
352f3c22059SEtienne Carriere }
353f3c22059SEtienne Carriere 
354cd451498SEtienne Carriere #ifdef CFG_WITH_SOFTWARE_PRNG
355cd451498SEtienne Carriere /* Override weak plat_rng_init with platform handler to seed PRNG */
356cd451498SEtienne Carriere void plat_rng_init(void)
357cd451498SEtienne Carriere {
358cd451498SEtienne Carriere 	uint8_t seed[RNG_FIFO_BYTE_DEPTH] = { };
359cd451498SEtienne Carriere 
360cd451498SEtienne Carriere 	if (stm32_rng_read(seed, sizeof(seed)))
361cd451498SEtienne Carriere 		panic();
362cd451498SEtienne Carriere 
363cd451498SEtienne Carriere 	if (crypto_rng_init(seed, sizeof(seed)))
364cd451498SEtienne Carriere 		panic();
365cd451498SEtienne Carriere 
366cd451498SEtienne Carriere 	DMSG("PRNG seeded with RNG");
367cd451498SEtienne Carriere }
368cd451498SEtienne Carriere #else
369cb2478efSAndrew Davis TEE_Result hw_get_random_bytes(void *out, size_t size)
370097f329aSEtienne Carriere {
371097f329aSEtienne Carriere 	return stm32_rng_read(out, size);
372097f329aSEtienne Carriere }
37327f3087bSGatien Chevallier 
37427f3087bSGatien Chevallier void plat_rng_init(void)
37527f3087bSGatien Chevallier {
37627f3087bSGatien Chevallier }
377097f329aSEtienne Carriere #endif
378097f329aSEtienne Carriere 
37929893549SGatien Chevallier static TEE_Result stm32_rng_pm_resume(uint32_t pm_cr)
38029893549SGatien Chevallier {
38129893549SGatien Chevallier 	vaddr_t base = get_base();
38229893549SGatien Chevallier 
38329893549SGatien Chevallier 	/* Clean error indications */
38429893549SGatien Chevallier 	io_write32(base + RNG_SR, 0);
38529893549SGatien Chevallier 
38629893549SGatien Chevallier 	if (stm32_rng->ddata->has_cond_reset) {
38729893549SGatien Chevallier 		/*
38829893549SGatien Chevallier 		 * Correct configuration in bits [29:4] must be set in the same
38929893549SGatien Chevallier 		 * access that set RNG_CR_CONDRST bit. Else config setting is
39029893549SGatien Chevallier 		 * not taken into account.
39129893549SGatien Chevallier 		 */
39229893549SGatien Chevallier 		io_write32(base + RNG_CR, pm_cr | RNG_CR_CONDRST);
39329893549SGatien Chevallier 
39429893549SGatien Chevallier 		io_clrsetbits32(base + RNG_CR, RNG_CR_CONDRST, RNG_CR_RNGEN);
39529893549SGatien Chevallier 	} else {
39629893549SGatien Chevallier 		io_write32(base + RNG_CR, RNG_CR_RNGEN | pm_cr);
39729893549SGatien Chevallier 	}
39829893549SGatien Chevallier 
39929893549SGatien Chevallier 	return TEE_SUCCESS;
40029893549SGatien Chevallier }
40129893549SGatien Chevallier 
40229893549SGatien Chevallier static TEE_Result
40329893549SGatien Chevallier stm32_rng_pm(enum pm_op op, unsigned int pm_hint __unused,
40429893549SGatien Chevallier 	     const struct pm_callback_handle *pm_handle __unused)
40529893549SGatien Chevallier {
40629893549SGatien Chevallier 	static uint32_t pm_cr;
40729893549SGatien Chevallier 	TEE_Result res = TEE_ERROR_GENERIC;
40829893549SGatien Chevallier 
40929893549SGatien Chevallier 	assert(stm32_rng && (op == PM_OP_SUSPEND || op == PM_OP_RESUME));
41029893549SGatien Chevallier 
41129893549SGatien Chevallier 	res = clk_enable(stm32_rng->clock);
41229893549SGatien Chevallier 	if (res)
41329893549SGatien Chevallier 		return res;
41429893549SGatien Chevallier 
41529893549SGatien Chevallier 	if (op == PM_OP_SUSPEND)
41629893549SGatien Chevallier 		pm_cr = io_read32(get_base() + RNG_CR);
41729893549SGatien Chevallier 	else
41829893549SGatien Chevallier 		res = stm32_rng_pm_resume(pm_cr);
41929893549SGatien Chevallier 
42029893549SGatien Chevallier 	clk_disable(stm32_rng->clock);
42129893549SGatien Chevallier 
42229893549SGatien Chevallier 	return res;
42329893549SGatien Chevallier }
42429893549SGatien Chevallier DECLARE_KEEP_PAGER(stm32_rng_pm);
42529893549SGatien Chevallier 
426f3c22059SEtienne Carriere #ifdef CFG_EMBED_DTB
427ea8ba295SGatien Chevallier static TEE_Result stm32_rng_parse_fdt(const void *fdt, int node)
428f3c22059SEtienne Carriere {
429d7a1a7d2SEtienne Carriere 	TEE_Result res = TEE_ERROR_GENERIC;
430ea8ba295SGatien Chevallier 	struct dt_node_info dt_rng = { };
431f3c22059SEtienne Carriere 
432ea8ba295SGatien Chevallier 	_fdt_fill_device_info(fdt, &dt_rng, node);
433ea8ba295SGatien Chevallier 	if (dt_rng.reg == DT_INFO_INVALID_REG)
434ea8ba295SGatien Chevallier 		return TEE_ERROR_BAD_PARAMETERS;
435f3c22059SEtienne Carriere 
436ea8ba295SGatien Chevallier 	stm32_rng->base.pa = dt_rng.reg;
437ea8ba295SGatien Chevallier 	stm32_rng->base.va = io_pa_or_va_secure(&stm32_rng->base,
438ea8ba295SGatien Chevallier 						dt_rng.reg_size);
439ea8ba295SGatien Chevallier 	assert(stm32_rng->base.va);
440f3c22059SEtienne Carriere 
441ea8ba295SGatien Chevallier 	res = rstctrl_dt_get_by_index(fdt, node, 0, &stm32_rng->rstctrl);
442ea8ba295SGatien Chevallier 	if (res != TEE_SUCCESS && res != TEE_ERROR_ITEM_NOT_FOUND)
443ea8ba295SGatien Chevallier 		return res;
44468c4a16bSEtienne Carriere 
445d7a1a7d2SEtienne Carriere 	res = clk_dt_get_by_index(fdt, node, 0, &stm32_rng->clock);
446d7a1a7d2SEtienne Carriere 	if (res)
447d7a1a7d2SEtienne Carriere 		return res;
448d7a1a7d2SEtienne Carriere 
4493c752300SGatien Chevallier 	if (fdt_getprop(fdt, node, "clock-error-detect", NULL))
4503c752300SGatien Chevallier 		stm32_rng->clock_error = true;
4513c752300SGatien Chevallier 
452ea8ba295SGatien Chevallier 	/* Release device if not used at runtime or for pm transitions */
453ea8ba295SGatien Chevallier 	stm32_rng->release_post_boot = IS_ENABLED(CFG_WITH_SOFTWARE_PRNG) &&
454ea8ba295SGatien Chevallier 				       !IS_ENABLED(CFG_PM);
455f3c22059SEtienne Carriere 
456f3c22059SEtienne Carriere 	return TEE_SUCCESS;
457f3c22059SEtienne Carriere }
458f3c22059SEtienne Carriere 
459ea8ba295SGatien Chevallier static TEE_Result stm32_rng_probe(const void *fdt, int offs,
460ea8ba295SGatien Chevallier 				  const void *compat_data __unused)
461ea8ba295SGatien Chevallier {
462ea8ba295SGatien Chevallier 	TEE_Result res = TEE_ERROR_GENERIC;
463ea8ba295SGatien Chevallier 
464ea8ba295SGatien Chevallier 	/* Expect a single RNG instance */
465ea8ba295SGatien Chevallier 	assert(!stm32_rng);
466ea8ba295SGatien Chevallier 
467ea8ba295SGatien Chevallier 	stm32_rng = calloc(1, sizeof(*stm32_rng));
468ea8ba295SGatien Chevallier 	if (!stm32_rng)
469ea8ba295SGatien Chevallier 		panic();
470ea8ba295SGatien Chevallier 
471ea8ba295SGatien Chevallier 	res = stm32_rng_parse_fdt(fdt, offs);
472ea8ba295SGatien Chevallier 	if (res)
473ea8ba295SGatien Chevallier 		goto err;
474ea8ba295SGatien Chevallier 
475091ef005SGatien Chevallier 	stm32_rng->ddata = compat_data;
476091ef005SGatien Chevallier 	assert(stm32_rng->ddata);
477091ef005SGatien Chevallier 
478ea8ba295SGatien Chevallier 	res = clk_enable(stm32_rng->clock);
479ea8ba295SGatien Chevallier 	if (res)
480ea8ba295SGatien Chevallier 		goto err;
481ea8ba295SGatien Chevallier 
482ea8ba295SGatien Chevallier 	if (stm32_rng->rstctrl &&
483ea8ba295SGatien Chevallier 	    rstctrl_assert_to(stm32_rng->rstctrl, RNG_RESET_TIMEOUT_US)) {
484ea8ba295SGatien Chevallier 		res = TEE_ERROR_GENERIC;
485ea8ba295SGatien Chevallier 		goto err_clk;
486ea8ba295SGatien Chevallier 	}
487ea8ba295SGatien Chevallier 
488ea8ba295SGatien Chevallier 	if (stm32_rng->rstctrl &&
489ea8ba295SGatien Chevallier 	    rstctrl_deassert_to(stm32_rng->rstctrl, RNG_RESET_TIMEOUT_US)) {
490ea8ba295SGatien Chevallier 		res = TEE_ERROR_GENERIC;
491ea8ba295SGatien Chevallier 		goto err_clk;
492ea8ba295SGatien Chevallier 	}
493ea8ba295SGatien Chevallier 
494f63f11bdSGatien Chevallier 	res = init_rng();
495f63f11bdSGatien Chevallier 	if (res)
496f63f11bdSGatien Chevallier 		goto err_clk;
497f63f11bdSGatien Chevallier 
498ea8ba295SGatien Chevallier 	clk_disable(stm32_rng->clock);
499ea8ba295SGatien Chevallier 
500ea8ba295SGatien Chevallier 	if (stm32_rng->release_post_boot)
501ea8ba295SGatien Chevallier 		stm32mp_register_non_secure_periph_iomem(stm32_rng->base.pa);
502ea8ba295SGatien Chevallier 	else
503ea8ba295SGatien Chevallier 		stm32mp_register_secure_periph_iomem(stm32_rng->base.pa);
504ea8ba295SGatien Chevallier 
50529893549SGatien Chevallier 	register_pm_core_service_cb(stm32_rng_pm, &stm32_rng, "rng-service");
50629893549SGatien Chevallier 
507ea8ba295SGatien Chevallier 	return TEE_SUCCESS;
508ea8ba295SGatien Chevallier 
509ea8ba295SGatien Chevallier err_clk:
510ea8ba295SGatien Chevallier 	clk_disable(stm32_rng->clock);
511ea8ba295SGatien Chevallier err:
512ea8ba295SGatien Chevallier 	free(stm32_rng);
513ea8ba295SGatien Chevallier 	stm32_rng = NULL;
514ea8ba295SGatien Chevallier 
515ea8ba295SGatien Chevallier 	return res;
516ea8ba295SGatien Chevallier }
517ea8ba295SGatien Chevallier 
518091ef005SGatien Chevallier static const struct stm32_rng_driver_data mp13_data[] = {
519091ef005SGatien Chevallier 	{ .has_cond_reset = true },
520091ef005SGatien Chevallier };
521091ef005SGatien Chevallier 
522091ef005SGatien Chevallier static const struct stm32_rng_driver_data mp15_data[] = {
523091ef005SGatien Chevallier 	{ .has_cond_reset = false },
524091ef005SGatien Chevallier };
525091ef005SGatien Chevallier DECLARE_KEEP_PAGER(mp15_data);
526091ef005SGatien Chevallier 
527ea8ba295SGatien Chevallier static const struct dt_device_match rng_match_table[] = {
528091ef005SGatien Chevallier 	{ .compatible = "st,stm32-rng", .compat_data = &mp15_data },
529091ef005SGatien Chevallier 	{ .compatible = "st,stm32mp13-rng", .compat_data = &mp13_data },
530ea8ba295SGatien Chevallier 	{ }
531ea8ba295SGatien Chevallier };
532ea8ba295SGatien Chevallier 
533ea8ba295SGatien Chevallier DEFINE_DT_DRIVER(stm32_rng_dt_driver) = {
534ea8ba295SGatien Chevallier 	.name = "stm32_rng",
535ea8ba295SGatien Chevallier 	.match_table = rng_match_table,
536ea8ba295SGatien Chevallier 	.probe = stm32_rng_probe,
537ea8ba295SGatien Chevallier };
538d8682c4cSEtienne Carriere 
539d8682c4cSEtienne Carriere static TEE_Result stm32_rng_release(void)
540d8682c4cSEtienne Carriere {
541d8682c4cSEtienne Carriere 	if (stm32_rng && stm32_rng->release_post_boot) {
542d8682c4cSEtienne Carriere 		DMSG("Release RNG driver");
543d8682c4cSEtienne Carriere 		free(stm32_rng);
544d8682c4cSEtienne Carriere 		stm32_rng = NULL;
545d8682c4cSEtienne Carriere 	}
546d8682c4cSEtienne Carriere 
547d8682c4cSEtienne Carriere 	return TEE_SUCCESS;
548d8682c4cSEtienne Carriere }
549d8682c4cSEtienne Carriere 
550d8682c4cSEtienne Carriere release_init_resource(stm32_rng_release);
551f3c22059SEtienne Carriere #endif /*CFG_EMBED_DTB*/
552