14f6ad66aSAchin Gupta /* 2e83b0cadSDan Handley * Copyright (c) 2013-2014, ARM Limited and Contributors. All rights reserved. 34f6ad66aSAchin Gupta * 44f6ad66aSAchin Gupta * Redistribution and use in source and binary forms, with or without 54f6ad66aSAchin Gupta * modification, are permitted provided that the following conditions are met: 64f6ad66aSAchin Gupta * 74f6ad66aSAchin Gupta * Redistributions of source code must retain the above copyright notice, this 84f6ad66aSAchin Gupta * list of conditions and the following disclaimer. 94f6ad66aSAchin Gupta * 104f6ad66aSAchin Gupta * Redistributions in binary form must reproduce the above copyright notice, 114f6ad66aSAchin Gupta * this list of conditions and the following disclaimer in the documentation 124f6ad66aSAchin Gupta * and/or other materials provided with the distribution. 134f6ad66aSAchin Gupta * 144f6ad66aSAchin Gupta * Neither the name of ARM nor the names of its contributors may be used 154f6ad66aSAchin Gupta * to endorse or promote products derived from this software without specific 164f6ad66aSAchin Gupta * prior written permission. 174f6ad66aSAchin Gupta * 184f6ad66aSAchin Gupta * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" 194f6ad66aSAchin Gupta * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 204f6ad66aSAchin Gupta * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 214f6ad66aSAchin Gupta * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE 224f6ad66aSAchin Gupta * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR 234f6ad66aSAchin Gupta * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF 244f6ad66aSAchin Gupta * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS 254f6ad66aSAchin Gupta * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN 264f6ad66aSAchin Gupta * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 274f6ad66aSAchin Gupta * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE 284f6ad66aSAchin Gupta * POSSIBILITY OF SUCH DAMAGE. 294f6ad66aSAchin Gupta */ 304f6ad66aSAchin Gupta 31*97043ac9SDan Handley #include <arch.h> 324f6ad66aSAchin Gupta #include <arch_helpers.h> 33*97043ac9SDan Handley #include <assert.h> 344f6ad66aSAchin Gupta #include <bl_common.h> 354f6ad66aSAchin Gupta #include <bl31.h> 367aea9087SAchin Gupta #include <context_mgmt.h> 37*97043ac9SDan Handley #include <runtime_svc.h> 38*97043ac9SDan Handley #include <stdio.h> 397aea9087SAchin Gupta 407f366605SJeenu Viswambharan 417f366605SJeenu Viswambharan /******************************************************************************* 427f366605SJeenu Viswambharan * This function pointer is used to initialise the BL32 image. It's initialized 437f366605SJeenu Viswambharan * by SPD calling bl31_register_bl32_init after setting up all things necessary 447f366605SJeenu Viswambharan * for SP execution. In cases where both SPD and SP are absent, or when SPD 457f366605SJeenu Viswambharan * finds it impossible to execute SP, this pointer is left as NULL 467f366605SJeenu Viswambharan ******************************************************************************/ 47fb037bfbSDan Handley static int32_t (*bl32_init)(meminfo_t *); 487f366605SJeenu Viswambharan 497aea9087SAchin Gupta /******************************************************************************* 5035ca3511SAchin Gupta * Variable to indicate whether next image to execute after BL31 is BL33 5135ca3511SAchin Gupta * (non-secure & default) or BL32 (secure). 5235ca3511SAchin Gupta ******************************************************************************/ 5335ca3511SAchin Gupta static uint32_t next_image_type = NON_SECURE; 5435ca3511SAchin Gupta 5535ca3511SAchin Gupta /******************************************************************************* 567aea9087SAchin Gupta * Simple function to initialise all BL31 helper libraries. 577aea9087SAchin Gupta ******************************************************************************/ 587aea9087SAchin Gupta void bl31_lib_init() 597aea9087SAchin Gupta { 607aea9087SAchin Gupta cm_init(); 617aea9087SAchin Gupta } 624f6ad66aSAchin Gupta 634f6ad66aSAchin Gupta /******************************************************************************* 644f6ad66aSAchin Gupta * BL31 is responsible for setting up the runtime services for the primary cpu 6535ca3511SAchin Gupta * before passing control to the bootloader or an Operating System. This 6635ca3511SAchin Gupta * function calls runtime_svc_init() which initializes all registered runtime 6735ca3511SAchin Gupta * services. The run time services would setup enough context for the core to 6835ca3511SAchin Gupta * swtich to the next exception level. When this function returns, the core will 6935ca3511SAchin Gupta * switch to the programmed exception level via. an ERET. 704f6ad66aSAchin Gupta ******************************************************************************/ 714f6ad66aSAchin Gupta void bl31_main(void) 724f6ad66aSAchin Gupta { 7335ca3511SAchin Gupta #if DEBUG 7435ca3511SAchin Gupta unsigned long mpidr = read_mpidr(); 7535ca3511SAchin Gupta #endif 764f6ad66aSAchin Gupta 774f6ad66aSAchin Gupta /* Perform remaining generic architectural setup from EL3 */ 784f6ad66aSAchin Gupta bl31_arch_setup(); 794f6ad66aSAchin Gupta 804f6ad66aSAchin Gupta /* Perform platform setup in BL1 */ 814f6ad66aSAchin Gupta bl31_platform_setup(); 824f6ad66aSAchin Gupta 83fb052462SJon Medhurst printf("BL31 %s\n\r", build_message); 84fb052462SJon Medhurst 857aea9087SAchin Gupta /* Initialise helper libraries */ 867aea9087SAchin Gupta bl31_lib_init(); 874f6ad66aSAchin Gupta 884f6ad66aSAchin Gupta /* Initialize the runtime services e.g. psci */ 897421b465SAchin Gupta runtime_svc_init(); 904f6ad66aSAchin Gupta 914f6ad66aSAchin Gupta /* Clean caches before re-entering normal world */ 924f6ad66aSAchin Gupta dcsw_op_all(DCCSW); 934f6ad66aSAchin Gupta 94caa84939SJeenu Viswambharan /* 9535ca3511SAchin Gupta * Use the more complex exception vectors now that context 9635ca3511SAchin Gupta * management is setup. SP_EL3 should point to a 'cpu_context' 9735ca3511SAchin Gupta * structure which has an exception stack allocated. The PSCI 9835ca3511SAchin Gupta * service should have set the context. 9935ca3511SAchin Gupta */ 10035ca3511SAchin Gupta assert(cm_get_context(mpidr, NON_SECURE)); 10135ca3511SAchin Gupta cm_set_next_eret_context(NON_SECURE); 10235ca3511SAchin Gupta write_vbar_el3((uint64_t) runtime_exceptions); 10335ca3511SAchin Gupta 10435ca3511SAchin Gupta /* 1057f366605SJeenu Viswambharan * All the cold boot actions on the primary cpu are done. We now need to 1067f366605SJeenu Viswambharan * decide which is the next image (BL32 or BL33) and how to execute it. 1077f366605SJeenu Viswambharan * If the SPD runtime service is present, it would want to pass control 1087f366605SJeenu Viswambharan * to BL32 first in S-EL1. In that case, SPD would have registered a 1097f366605SJeenu Viswambharan * function to intialize bl32 where it takes responsibility of entering 1107f366605SJeenu Viswambharan * S-EL1 and returning control back to bl31_main. Once this is done we 1117f366605SJeenu Viswambharan * can prepare entry into BL33 as normal. 11235ca3511SAchin Gupta */ 11335ca3511SAchin Gupta 1147f366605SJeenu Viswambharan /* 1157f366605SJeenu Viswambharan * If SPD had registerd an init hook, invoke it. Pass it the information 1167f366605SJeenu Viswambharan * about memory extents 1177f366605SJeenu Viswambharan */ 11835ca3511SAchin Gupta if (bl32_init) 1197f366605SJeenu Viswambharan (*bl32_init)(bl31_plat_get_bl32_mem_layout()); 12035ca3511SAchin Gupta 12135ca3511SAchin Gupta /* 12235ca3511SAchin Gupta * We are ready to enter the next EL. Prepare entry into the image 12335ca3511SAchin Gupta * corresponding to the desired security state after the next ERET. 12435ca3511SAchin Gupta */ 12535ca3511SAchin Gupta bl31_prepare_next_image_entry(); 12635ca3511SAchin Gupta } 12735ca3511SAchin Gupta 12835ca3511SAchin Gupta /******************************************************************************* 12935ca3511SAchin Gupta * Accessor functions to help runtime services decide which image should be 13035ca3511SAchin Gupta * executed after BL31. This is BL33 or the non-secure bootloader image by 13135ca3511SAchin Gupta * default but the Secure payload dispatcher could override this by requesting 13235ca3511SAchin Gupta * an entry into BL32 (Secure payload) first. If it does so then it should use 13335ca3511SAchin Gupta * the same API to program an entry into BL33 once BL32 initialisation is 13435ca3511SAchin Gupta * complete. 13535ca3511SAchin Gupta ******************************************************************************/ 13635ca3511SAchin Gupta void bl31_set_next_image_type(uint32_t security_state) 13735ca3511SAchin Gupta { 13835ca3511SAchin Gupta assert(security_state == NON_SECURE || security_state == SECURE); 13935ca3511SAchin Gupta next_image_type = security_state; 14035ca3511SAchin Gupta } 14135ca3511SAchin Gupta 14235ca3511SAchin Gupta uint32_t bl31_get_next_image_type(void) 14335ca3511SAchin Gupta { 14435ca3511SAchin Gupta return next_image_type; 14535ca3511SAchin Gupta } 14635ca3511SAchin Gupta 14735ca3511SAchin Gupta /******************************************************************************* 14835ca3511SAchin Gupta * This function programs EL3 registers and performs other setup to enable entry 14935ca3511SAchin Gupta * into the next image after BL31 at the next ERET. 15035ca3511SAchin Gupta ******************************************************************************/ 15135ca3511SAchin Gupta void bl31_prepare_next_image_entry() 15235ca3511SAchin Gupta { 153fb037bfbSDan Handley el_change_info_t *next_image_info; 15435ca3511SAchin Gupta uint32_t scr, image_type; 15535ca3511SAchin Gupta 15635ca3511SAchin Gupta /* Determine which image to execute next */ 15735ca3511SAchin Gupta image_type = bl31_get_next_image_type(); 15835ca3511SAchin Gupta 15935ca3511SAchin Gupta /* 160caa84939SJeenu Viswambharan * Setup minimal architectural state of the next highest EL to 161caa84939SJeenu Viswambharan * allow execution in it immediately upon entering it. 162caa84939SJeenu Viswambharan */ 16335ca3511SAchin Gupta bl31_next_el_arch_setup(image_type); 1644f6ad66aSAchin Gupta 165caa84939SJeenu Viswambharan /* Program EL3 registers to enable entry into the next EL */ 16635ca3511SAchin Gupta next_image_info = bl31_get_next_image_info(image_type); 16735ca3511SAchin Gupta assert(next_image_info); 16835ca3511SAchin Gupta 169caa84939SJeenu Viswambharan scr = read_scr(); 17035ca3511SAchin Gupta if (image_type == NON_SECURE) 171caa84939SJeenu Viswambharan scr |= SCR_NS_BIT; 172caa84939SJeenu Viswambharan 173caa84939SJeenu Viswambharan /* 174caa84939SJeenu Viswambharan * Tell the context mgmt. library to ensure that SP_EL3 points to 175caa84939SJeenu Viswambharan * the right context to exit from EL3 correctly. 176caa84939SJeenu Viswambharan */ 177caa84939SJeenu Viswambharan cm_set_el3_eret_context(next_image_info->security_state, 178caa84939SJeenu Viswambharan next_image_info->entrypoint, 179caa84939SJeenu Viswambharan next_image_info->spsr, 180caa84939SJeenu Viswambharan scr); 181caa84939SJeenu Viswambharan 182caa84939SJeenu Viswambharan /* Finally set the next context */ 183caa84939SJeenu Viswambharan cm_set_next_eret_context(next_image_info->security_state); 1844f6ad66aSAchin Gupta } 1857f366605SJeenu Viswambharan 1867f366605SJeenu Viswambharan /******************************************************************************* 1877f366605SJeenu Viswambharan * This function initializes the pointer to BL32 init function. This is expected 1887f366605SJeenu Viswambharan * to be called by the SPD after it finishes all its initialization 1897f366605SJeenu Viswambharan ******************************************************************************/ 190fb037bfbSDan Handley void bl31_register_bl32_init(int32_t (*func)(meminfo_t *)) 1917f366605SJeenu Viswambharan { 1927f366605SJeenu Viswambharan bl32_init = func; 1937f366605SJeenu Viswambharan } 194