14f6ad66aSAchin Gupta /* 26a0da736SJayanth Dodderi Chidanand * Copyright (c) 2013-2022, Arm Limited and Contributors. All rights reserved. 34f6ad66aSAchin Gupta * 482cb2c1aSdp-arm * SPDX-License-Identifier: BSD-3-Clause 54f6ad66aSAchin Gupta */ 64f6ad66aSAchin Gupta 709d40e0eSAntonio Nino Diaz #include <assert.h> 809d40e0eSAntonio Nino Diaz #include <string.h> 909d40e0eSAntonio Nino Diaz 1097043ac9SDan Handley #include <arch.h> 11ed108b56SAlexei Fedorov #include <arch_features.h> 124f6ad66aSAchin Gupta #include <arch_helpers.h> 1309d40e0eSAntonio Nino Diaz #include <bl31/bl31.h> 1409d40e0eSAntonio Nino Diaz #include <bl31/ehf.h> 1509d40e0eSAntonio Nino Diaz #include <common/bl_common.h> 1609d40e0eSAntonio Nino Diaz #include <common/debug.h> 176a0da736SJayanth Dodderi Chidanand #include <common/feat_detect.h> 1809d40e0eSAntonio Nino Diaz #include <common/runtime_svc.h> 1909d40e0eSAntonio Nino Diaz #include <drivers/console.h> 2009d40e0eSAntonio Nino Diaz #include <lib/el3_runtime/context_mgmt.h> 2109d40e0eSAntonio Nino Diaz #include <lib/pmf/pmf.h> 2209d40e0eSAntonio Nino Diaz #include <lib/runtime_instr.h> 2309d40e0eSAntonio Nino Diaz #include <plat/common/platform.h> 2409d40e0eSAntonio Nino Diaz #include <services/std_svc.h> 257aea9087SAchin Gupta 26872be88aSdp-arm #if ENABLE_RUNTIME_INSTRUMENTATION 27872be88aSdp-arm PMF_REGISTER_SERVICE_SMC(rt_instr_svc, PMF_RT_INSTR_SVC_ID, 28872be88aSdp-arm RT_INSTR_TOTAL_IDS, PMF_STORE_ENABLE) 29872be88aSdp-arm #endif 30872be88aSdp-arm 317f366605SJeenu Viswambharan /******************************************************************************* 327f366605SJeenu Viswambharan * This function pointer is used to initialise the BL32 image. It's initialized 337f366605SJeenu Viswambharan * by SPD calling bl31_register_bl32_init after setting up all things necessary 347f366605SJeenu Viswambharan * for SP execution. In cases where both SPD and SP are absent, or when SPD 357f366605SJeenu Viswambharan * finds it impossible to execute SP, this pointer is left as NULL 367f366605SJeenu Viswambharan ******************************************************************************/ 376871c5d3SVikram Kanigiri static int32_t (*bl32_init)(void); 387f366605SJeenu Viswambharan 395b18de09SZelalem Aweke /***************************************************************************** 405b18de09SZelalem Aweke * Function used to initialise RMM if RME is enabled 415b18de09SZelalem Aweke *****************************************************************************/ 425b18de09SZelalem Aweke #if ENABLE_RME 435b18de09SZelalem Aweke static int32_t (*rmm_init)(void); 445b18de09SZelalem Aweke #endif 455b18de09SZelalem Aweke 467aea9087SAchin Gupta /******************************************************************************* 4735ca3511SAchin Gupta * Variable to indicate whether next image to execute after BL31 is BL33 4835ca3511SAchin Gupta * (non-secure & default) or BL32 (secure). 4935ca3511SAchin Gupta ******************************************************************************/ 50faaa2e76SVikram Kanigiri static uint32_t next_image_type = NON_SECURE; 5135ca3511SAchin Gupta 521994e562SJavier Almansa Sobrino #ifdef SUPPORT_UNKNOWN_MPID 531994e562SJavier Almansa Sobrino /* 541994e562SJavier Almansa Sobrino * Flag to know whether an unsupported MPID has been detected. To avoid having it 551994e562SJavier Almansa Sobrino * landing on the .bss section, it is initialized to a non-zero value, this way 561994e562SJavier Almansa Sobrino * we avoid potential WAW hazards during system bring up. 571994e562SJavier Almansa Sobrino * */ 581994e562SJavier Almansa Sobrino volatile uint32_t unsupported_mpid_flag = 1; 591994e562SJavier Almansa Sobrino #endif 601994e562SJavier Almansa Sobrino 6158e946aeSSoby Mathew /* 6258e946aeSSoby Mathew * Implement the ARM Standard Service function to get arguments for a 6358e946aeSSoby Mathew * particular service. 6458e946aeSSoby Mathew */ 6558e946aeSSoby Mathew uintptr_t get_arm_std_svc_args(unsigned int svc_mask) 6658e946aeSSoby Mathew { 6758e946aeSSoby Mathew /* Setup the arguments for PSCI Library */ 6858e946aeSSoby Mathew DEFINE_STATIC_PSCI_LIB_ARGS_V1(psci_args, bl31_warm_entrypoint); 6958e946aeSSoby Mathew 7058e946aeSSoby Mathew /* PSCI is the only ARM Standard Service implemented */ 7158e946aeSSoby Mathew assert(svc_mask == PSCI_FID_MASK); 7258e946aeSSoby Mathew 7358e946aeSSoby Mathew return (uintptr_t)&psci_args; 7458e946aeSSoby Mathew } 7558e946aeSSoby Mathew 7635ca3511SAchin Gupta /******************************************************************************* 777aea9087SAchin Gupta * Simple function to initialise all BL31 helper libraries. 787aea9087SAchin Gupta ******************************************************************************/ 7987c85134SDaniel Boulby void __init bl31_lib_init(void) 807aea9087SAchin Gupta { 817aea9087SAchin Gupta cm_init(); 827aea9087SAchin Gupta } 834f6ad66aSAchin Gupta 844f6ad66aSAchin Gupta /******************************************************************************* 8588cfd9a6SAntonio Nino Diaz * Setup function for BL31. 8688cfd9a6SAntonio Nino Diaz ******************************************************************************/ 8788cfd9a6SAntonio Nino Diaz void bl31_setup(u_register_t arg0, u_register_t arg1, u_register_t arg2, 8888cfd9a6SAntonio Nino Diaz u_register_t arg3) 8988cfd9a6SAntonio Nino Diaz { 9088cfd9a6SAntonio Nino Diaz /* Perform early platform-specific setup */ 9188cfd9a6SAntonio Nino Diaz bl31_early_platform_setup2(arg0, arg1, arg2, arg3); 9288cfd9a6SAntonio Nino Diaz 9388cfd9a6SAntonio Nino Diaz /* Perform late platform-specific setup */ 9488cfd9a6SAntonio Nino Diaz bl31_plat_arch_setup(); 95ed108b56SAlexei Fedorov 96cb4ec47bSjohpow01 #if ENABLE_FEAT_HCX 97cb4ec47bSjohpow01 /* 98cb4ec47bSjohpow01 * Assert that FEAT_HCX is supported on this system, without this check 99cb4ec47bSjohpow01 * an exception would occur during context save/restore if enabled but 100cb4ec47bSjohpow01 * not supported. 101cb4ec47bSjohpow01 */ 102cb4ec47bSjohpow01 assert(is_feat_hcx_present()); 103cb4ec47bSjohpow01 #endif /* ENABLE_FEAT_HCX */ 104cb4ec47bSjohpow01 105ed108b56SAlexei Fedorov #if CTX_INCLUDE_PAUTH_REGS 106ed108b56SAlexei Fedorov /* 107ed108b56SAlexei Fedorov * Assert that the ARMv8.3-PAuth registers are present or an access 108ed108b56SAlexei Fedorov * fault will be triggered when they are being saved or restored. 109ed108b56SAlexei Fedorov */ 110ed108b56SAlexei Fedorov assert(is_armv8_3_pauth_present()); 111ed108b56SAlexei Fedorov #endif /* CTX_INCLUDE_PAUTH_REGS */ 11288cfd9a6SAntonio Nino Diaz } 11388cfd9a6SAntonio Nino Diaz 11488cfd9a6SAntonio Nino Diaz /******************************************************************************* 1154f6ad66aSAchin Gupta * BL31 is responsible for setting up the runtime services for the primary cpu 11635ca3511SAchin Gupta * before passing control to the bootloader or an Operating System. This 11735ca3511SAchin Gupta * function calls runtime_svc_init() which initializes all registered runtime 11835ca3511SAchin Gupta * services. The run time services would setup enough context for the core to 1198aabea33SPaul Beesley * switch to the next exception level. When this function returns, the core will 12073308618SAntonio Nino Diaz * switch to the programmed exception level via an ERET. 1214f6ad66aSAchin Gupta ******************************************************************************/ 1224f6ad66aSAchin Gupta void bl31_main(void) 1234f6ad66aSAchin Gupta { 124d178637dSJuan Castillo NOTICE("BL31: %s\n", version_string); 125d178637dSJuan Castillo NOTICE("BL31: %s\n", build_message); 1266ad2e461SDan Handley 1276a0da736SJayanth Dodderi Chidanand #if FEATURE_DETECTION 1286a0da736SJayanth Dodderi Chidanand /* Detect if features enabled during compilation are supported by PE. */ 1296a0da736SJayanth Dodderi Chidanand detect_arch_features(); 1306a0da736SJayanth Dodderi Chidanand #endif /* FEATURE_DETECTION */ 1316a0da736SJayanth Dodderi Chidanand 1321994e562SJavier Almansa Sobrino #ifdef SUPPORT_UNKNOWN_MPID 1331994e562SJavier Almansa Sobrino if (unsupported_mpid_flag == 0) { 1341994e562SJavier Almansa Sobrino NOTICE("Unsupported MPID detected!\n"); 1351994e562SJavier Almansa Sobrino } 1361994e562SJavier Almansa Sobrino #endif 1371994e562SJavier Almansa Sobrino 13878e61613SSoby Mathew /* Perform platform setup in BL31 */ 1394f6ad66aSAchin Gupta bl31_platform_setup(); 1404f6ad66aSAchin Gupta 1417aea9087SAchin Gupta /* Initialise helper libraries */ 1427aea9087SAchin Gupta bl31_lib_init(); 1434f6ad66aSAchin Gupta 14421b818c0SJeenu Viswambharan #if EL3_EXCEPTION_HANDLING 14521b818c0SJeenu Viswambharan INFO("BL31: Initialising Exception Handling Framework\n"); 14621b818c0SJeenu Viswambharan ehf_init(); 14721b818c0SJeenu Viswambharan #endif 14821b818c0SJeenu Viswambharan 14958e946aeSSoby Mathew /* Initialize the runtime services e.g. psci. */ 150d178637dSJuan Castillo INFO("BL31: Initializing runtime services\n"); 1517421b465SAchin Gupta runtime_svc_init(); 1524f6ad66aSAchin Gupta 15335ca3511SAchin Gupta /* 1547f366605SJeenu Viswambharan * All the cold boot actions on the primary cpu are done. We now need to 1555b18de09SZelalem Aweke * decide which is the next image and how to execute it. 1567f366605SJeenu Viswambharan * If the SPD runtime service is present, it would want to pass control 1577f366605SJeenu Viswambharan * to BL32 first in S-EL1. In that case, SPD would have registered a 1588aabea33SPaul Beesley * function to initialize bl32 where it takes responsibility of entering 1595b18de09SZelalem Aweke * S-EL1 and returning control back to bl31_main. Similarly, if RME is 1605b18de09SZelalem Aweke * enabled and a function is registered to initialize RMM, control is 1615b18de09SZelalem Aweke * transferred to RMM in R-EL2. After RMM initialization, control is 1625b18de09SZelalem Aweke * returned back to bl31_main. Once this is done we can prepare entry 1635b18de09SZelalem Aweke * into BL33 as normal. 16435ca3511SAchin Gupta */ 16535ca3511SAchin Gupta 1667f366605SJeenu Viswambharan /* 1678aabea33SPaul Beesley * If SPD had registered an init hook, invoke it. 1687f366605SJeenu Viswambharan */ 169c9512bcaSAntonio Nino Diaz if (bl32_init != NULL) { 170d178637dSJuan Castillo INFO("BL31: Initializing BL32\n"); 171c9512bcaSAntonio Nino Diaz 172c9512bcaSAntonio Nino Diaz int32_t rc = (*bl32_init)(); 173c9512bcaSAntonio Nino Diaz 1745b18de09SZelalem Aweke if (rc == 0) { 17574ad948fSAntonio Nino Diaz WARN("BL31: BL32 initialization failed\n"); 1766ad2e461SDan Handley } 1775b18de09SZelalem Aweke } 1785b18de09SZelalem Aweke 1795b18de09SZelalem Aweke /* 1805b18de09SZelalem Aweke * If RME is enabled and init hook is registered, initialize RMM 1815b18de09SZelalem Aweke * in R-EL2. 1825b18de09SZelalem Aweke */ 1835b18de09SZelalem Aweke #if ENABLE_RME 1845b18de09SZelalem Aweke if (rmm_init != NULL) { 1855b18de09SZelalem Aweke INFO("BL31: Initializing RMM\n"); 1865b18de09SZelalem Aweke 1875b18de09SZelalem Aweke int32_t rc = (*rmm_init)(); 1885b18de09SZelalem Aweke 1895b18de09SZelalem Aweke if (rc == 0) { 1905b18de09SZelalem Aweke WARN("BL31: RMM initialization failed\n"); 1915b18de09SZelalem Aweke } 1925b18de09SZelalem Aweke } 1935b18de09SZelalem Aweke #endif 1945b18de09SZelalem Aweke 19535ca3511SAchin Gupta /* 19635ca3511SAchin Gupta * We are ready to enter the next EL. Prepare entry into the image 19735ca3511SAchin Gupta * corresponding to the desired security state after the next ERET. 19835ca3511SAchin Gupta */ 19935ca3511SAchin Gupta bl31_prepare_next_image_entry(); 20078e61613SSoby Mathew 2010b32628eSAntonio Nino Diaz console_flush(); 2020b32628eSAntonio Nino Diaz 20378e61613SSoby Mathew /* 20478e61613SSoby Mathew * Perform any platform specific runtime setup prior to cold boot exit 20578e61613SSoby Mathew * from BL31 20678e61613SSoby Mathew */ 20778e61613SSoby Mathew bl31_plat_runtime_setup(); 20835ca3511SAchin Gupta } 20935ca3511SAchin Gupta 21035ca3511SAchin Gupta /******************************************************************************* 21135ca3511SAchin Gupta * Accessor functions to help runtime services decide which image should be 21235ca3511SAchin Gupta * executed after BL31. This is BL33 or the non-secure bootloader image by 21335ca3511SAchin Gupta * default but the Secure payload dispatcher could override this by requesting 21435ca3511SAchin Gupta * an entry into BL32 (Secure payload) first. If it does so then it should use 21535ca3511SAchin Gupta * the same API to program an entry into BL33 once BL32 initialisation is 21635ca3511SAchin Gupta * complete. 21735ca3511SAchin Gupta ******************************************************************************/ 21835ca3511SAchin Gupta void bl31_set_next_image_type(uint32_t security_state) 21935ca3511SAchin Gupta { 220d3280bebSJuan Castillo assert(sec_state_is_valid(security_state)); 22135ca3511SAchin Gupta next_image_type = security_state; 22235ca3511SAchin Gupta } 22335ca3511SAchin Gupta 22435ca3511SAchin Gupta uint32_t bl31_get_next_image_type(void) 22535ca3511SAchin Gupta { 22635ca3511SAchin Gupta return next_image_type; 22735ca3511SAchin Gupta } 22835ca3511SAchin Gupta 22935ca3511SAchin Gupta /******************************************************************************* 23035ca3511SAchin Gupta * This function programs EL3 registers and performs other setup to enable entry 23135ca3511SAchin Gupta * into the next image after BL31 at the next ERET. 23235ca3511SAchin Gupta ******************************************************************************/ 23387c85134SDaniel Boulby void __init bl31_prepare_next_image_entry(void) 23435ca3511SAchin Gupta { 2354112bfa0SVikram Kanigiri entry_point_info_t *next_image_info; 236167a9357SAndrew Thoelke uint32_t image_type; 23735ca3511SAchin Gupta 2388cd16e6bSSoby Mathew #if CTX_INCLUDE_AARCH32_REGS 2398cd16e6bSSoby Mathew /* 2408cd16e6bSSoby Mathew * Ensure that the build flag to save AArch32 system registers in CPU 2418cd16e6bSSoby Mathew * context is not set for AArch64-only platforms. 2428cd16e6bSSoby Mathew */ 243a0fee747SAntonio Nino Diaz if (el_implemented(1) == EL_IMPL_A64ONLY) { 2448cd16e6bSSoby Mathew ERROR("EL1 supports AArch64-only. Please set build flag " 245a0fee747SAntonio Nino Diaz "CTX_INCLUDE_AARCH32_REGS = 0\n"); 2468cd16e6bSSoby Mathew panic(); 2478cd16e6bSSoby Mathew } 2488cd16e6bSSoby Mathew #endif 2498cd16e6bSSoby Mathew 25035ca3511SAchin Gupta /* Determine which image to execute next */ 25135ca3511SAchin Gupta image_type = bl31_get_next_image_type(); 25235ca3511SAchin Gupta 253caa84939SJeenu Viswambharan /* Program EL3 registers to enable entry into the next EL */ 2549865ac15SDan Handley next_image_info = bl31_plat_get_next_image_ep_info(image_type); 255c9512bcaSAntonio Nino Diaz assert(next_image_info != NULL); 256f05cb4a7SVikram Kanigiri assert(image_type == GET_SECURITY_STATE(next_image_info->h.attr)); 25735ca3511SAchin Gupta 258d178637dSJuan Castillo INFO("BL31: Preparing for EL3 exit to %s world\n", 2596ad2e461SDan Handley (image_type == SECURE) ? "secure" : "normal"); 26068a68c92SSandrine Bailleux print_entry_point_info(next_image_info); 26185a181ceSSoby Mathew cm_init_my_context(next_image_info); 262*8b95e848SZelalem Aweke 263*8b95e848SZelalem Aweke /* 264*8b95e848SZelalem Aweke * If we are entering the Non-secure world, use 265*8b95e848SZelalem Aweke * 'cm_prepare_el3_exit_ns' to exit. 266*8b95e848SZelalem Aweke */ 267*8b95e848SZelalem Aweke if (image_type == NON_SECURE) { 268*8b95e848SZelalem Aweke cm_prepare_el3_exit_ns(); 269*8b95e848SZelalem Aweke } else { 270167a9357SAndrew Thoelke cm_prepare_el3_exit(image_type); 2714f6ad66aSAchin Gupta } 272*8b95e848SZelalem Aweke } 2737f366605SJeenu Viswambharan 2747f366605SJeenu Viswambharan /******************************************************************************* 2757f366605SJeenu Viswambharan * This function initializes the pointer to BL32 init function. This is expected 2767f366605SJeenu Viswambharan * to be called by the SPD after it finishes all its initialization 2777f366605SJeenu Viswambharan ******************************************************************************/ 2786871c5d3SVikram Kanigiri void bl31_register_bl32_init(int32_t (*func)(void)) 2797f366605SJeenu Viswambharan { 2807f366605SJeenu Viswambharan bl32_init = func; 2817f366605SJeenu Viswambharan } 2825b18de09SZelalem Aweke 2835b18de09SZelalem Aweke #if ENABLE_RME 2845b18de09SZelalem Aweke /******************************************************************************* 2855b18de09SZelalem Aweke * This function initializes the pointer to RMM init function. This is expected 2865b18de09SZelalem Aweke * to be called by the RMMD after it finishes all its initialization 2875b18de09SZelalem Aweke ******************************************************************************/ 2885b18de09SZelalem Aweke void bl31_register_rmm_init(int32_t (*func)(void)) 2895b18de09SZelalem Aweke { 2905b18de09SZelalem Aweke rmm_init = func; 2915b18de09SZelalem Aweke } 2925b18de09SZelalem Aweke #endif 293