xref: /rk3399_ARM-atf/docs/components/ffa-manifest-binding.rst (revision dd4c9bde22229be574bc954e1125134bb5e83ea7)
19d1f3792SJ-AlvesFF-A manifests binding to device tree
29d1f3792SJ-Alves=====================================
31b17f4f1SOlivier Deprez
41b17f4f1SOlivier DeprezThis document defines the nodes and properties used to define a partition,
59d1f3792SJ-Alvesaccording to the FF-A specification, and the SPMC manifest.
61b17f4f1SOlivier Deprez
79d1f3792SJ-AlvesFF-A Partition Manifest Properties
89d1f3792SJ-Alves----------------------------------
99d1f3792SJ-Alves
109d1f3792SJ-AlvesThe FF-A partition manifest is consumed by the SPMC to configure the state
119d1f3792SJ-Alvesassociated with the related Secure Partition.
121b17f4f1SOlivier Deprez
131b17f4f1SOlivier Deprez- compatible [mandatory]
141b17f4f1SOlivier Deprez   - value type: <string>
151b17f4f1SOlivier Deprez   - Must be the string "arm,ffa-manifest-X.Y" which specifies the major and
161b17f4f1SOlivier Deprez     minor versions of the device tree binding for the FFA manifest represented
171b17f4f1SOlivier Deprez     by this node. The minor number is incremented if the binding changes in a
181b17f4f1SOlivier Deprez     backwards compatible manner.
191b17f4f1SOlivier Deprez
201b17f4f1SOlivier Deprez      - X is an integer representing the major version number of this document.
211b17f4f1SOlivier Deprez      - Y is an integer representing the minor version number of this document.
221b17f4f1SOlivier Deprez
231b17f4f1SOlivier Deprez- ffa-version [mandatory]
241b17f4f1SOlivier Deprez   - value type: <u32>
251b17f4f1SOlivier Deprez   - Must be two 16 bits values (X, Y), concatenated as 31:16 -> X,
261b17f4f1SOlivier Deprez     15:0 -> Y, where:
271b17f4f1SOlivier Deprez
281b17f4f1SOlivier Deprez      - X is the major version of FF-A expected by the partition at the FFA
291b17f4f1SOlivier Deprez        instance it will execute.
301b17f4f1SOlivier Deprez      - Y is the minor version of FF-A expected by the partition at the FFA
311b17f4f1SOlivier Deprez        instance it will execute.
321b17f4f1SOlivier Deprez
331b17f4f1SOlivier Deprez- uuid [mandatory]
341b17f4f1SOlivier Deprez   - value type: <prop-encoded-array>
354a7916a5SSudeep Holla   - An array of comma separated tuples each consisting of 4 <u32> values,
364a7916a5SSudeep Holla     identifying the UUID of the services implemented by this partition.
374a7916a5SSudeep Holla     The UUID format is described in RFC 4122.
38657d1da3SSami Mujawar   - These 4 <u32> values are packed similar to the UUID register mapping
39657d1da3SSami Mujawar     specified in section '5.3 Unique Identification format', SMC Calling
40657d1da3SSami Mujawar     Convention, DEN0028, v1.6 G BET0
41657d1da3SSami Mujawar     (https://developer.arm.com/documentation/den0028/latest/).
421b17f4f1SOlivier Deprez
431b17f4f1SOlivier Deprez- id
441b17f4f1SOlivier Deprez   - value type: <u32>
451b17f4f1SOlivier Deprez   - Pre-allocated partition ID.
461b17f4f1SOlivier Deprez
471b17f4f1SOlivier Deprez- auxiliary-id
481b17f4f1SOlivier Deprez   - value type: <u32>
491b17f4f1SOlivier Deprez   - Pre-allocated ID that could be used in memory management transactions.
501b17f4f1SOlivier Deprez
511b17f4f1SOlivier Deprez- description
521b17f4f1SOlivier Deprez   - value type: <string>
531b17f4f1SOlivier Deprez   - Name of the partition e.g. for debugging purposes.
541b17f4f1SOlivier Deprez
551b17f4f1SOlivier Deprez- execution-ctx-count [mandatory]
561b17f4f1SOlivier Deprez   - value type: <u32>
571b17f4f1SOlivier Deprez   - Number of vCPUs that a VM or SP wants to instantiate.
581b17f4f1SOlivier Deprez
591b17f4f1SOlivier Deprez      - In the absence of virtualization, this is the number of execution
601b17f4f1SOlivier Deprez        contexts that a partition implements.
611b17f4f1SOlivier Deprez      - If value of this field = 1 and number of PEs > 1 then the partition is
621b17f4f1SOlivier Deprez        treated as UP & migrate capable.
631b17f4f1SOlivier Deprez      - If the value of this field > 1 then the partition is treated as a MP
641b17f4f1SOlivier Deprez        capable partition irrespective of the number of PEs.
651b17f4f1SOlivier Deprez
661b17f4f1SOlivier Deprez- exception-level [mandatory]
671b17f4f1SOlivier Deprez   - value type: <u32>
681b17f4f1SOlivier Deprez   - The target exception level for the partition:
691b17f4f1SOlivier Deprez
701b17f4f1SOlivier Deprez      - 0x0: EL1
711b17f4f1SOlivier Deprez      - 0x1: S_EL0
721b17f4f1SOlivier Deprez      - 0x2: S_EL1
731b17f4f1SOlivier Deprez
741b17f4f1SOlivier Deprez- execution-state [mandatory]
751b17f4f1SOlivier Deprez   - value type: <u32>
761b17f4f1SOlivier Deprez   - The target execution state of the partition:
771b17f4f1SOlivier Deprez
781b17f4f1SOlivier Deprez      - 0: AArch64
791b17f4f1SOlivier Deprez      - 1: AArch32
801b17f4f1SOlivier Deprez
811b17f4f1SOlivier Deprez- load-address
821b17f4f1SOlivier Deprez   - value type: <u64>
831b17f4f1SOlivier Deprez   - Physical base address of the partition in memory. Absence of this field
841b17f4f1SOlivier Deprez     indicates that the partition is position independent and can be loaded at
851b17f4f1SOlivier Deprez     any address chosen at boot time.
861b17f4f1SOlivier Deprez
871b17f4f1SOlivier Deprez- entrypoint-offset
881b17f4f1SOlivier Deprez   - value type: <u64>
891b17f4f1SOlivier Deprez   - Offset from the base of the partition's binary image to the entry point of
901b17f4f1SOlivier Deprez     the partition. Absence of this field indicates that the entry point is at
911b17f4f1SOlivier Deprez     offset 0x0 from the base of the partition's binary.
921b17f4f1SOlivier Deprez
933b63eef9SMadhukar Pappireddy- xlat-granule
941b17f4f1SOlivier Deprez   - value type: <u32>
951b17f4f1SOlivier Deprez   - Translation granule used with the partition:
961b17f4f1SOlivier Deprez
971b17f4f1SOlivier Deprez      - 0x0: 4k
981b17f4f1SOlivier Deprez      - 0x1: 16k
991b17f4f1SOlivier Deprez      - 0x2: 64k
1001b17f4f1SOlivier Deprez
1011b17f4f1SOlivier Deprez- boot-order
1029a01089dSMadhukar Pappireddy   - value type: <u32>
1031b17f4f1SOlivier Deprez   - A unique number amongst all partitions that specifies if this partition
1041b17f4f1SOlivier Deprez     must be booted before others. The partition with the smaller number will be
1059a01089dSMadhukar Pappireddy     booted first. Highest vlue allowed for this field is 0xFFFF.
1061b17f4f1SOlivier Deprez
1071b17f4f1SOlivier Deprez- rx-tx-buffer
1081b17f4f1SOlivier Deprez   - value type: "memory-regions" node
1091b17f4f1SOlivier Deprez   - Specific "memory-regions" nodes that describe the RX/TX buffers expected
1101b17f4f1SOlivier Deprez     by the partition.
1111b17f4f1SOlivier Deprez     The "compatible" must be the string "arm,ffa-manifest-rx_tx-buffer".
1121b17f4f1SOlivier Deprez
1131b17f4f1SOlivier Deprez- messaging-method [mandatory]
1149a01089dSMadhukar Pappireddy   - value type: <u32>
115bb320dbcSMaksims Svecovs   - Specifies which messaging methods are supported by the partition, set bit
116bb320dbcSMaksims Svecovs     means the feature is supported, clear bit - not supported:
1171b17f4f1SOlivier Deprez
1183b63eef9SMadhukar Pappireddy      - Bit[0]: partition can receive direct requests via FFA_MSG_SEND_DIRECT_REQ ABI if set
1193b63eef9SMadhukar Pappireddy      - Bit[1]: partition can send direct requests via FFA_MSG_SEND_DIRECT_REQ ABI if set
12012349d33SMaksims Svecovs      - Bit[2]: partition can send and receive indirect messages
1213b63eef9SMadhukar Pappireddy      - Bit[9]: partition can receive direct requests via FFA_MSG_SEND_DIRECT_REQ2 ABI if set
1223b63eef9SMadhukar Pappireddy      - Bit[10]: partition can send direct requests via FFA_MSG_SEND_DIRECT_REQ2 ABI if set
12312349d33SMaksims Svecovs
12412349d33SMaksims Svecovs- managed-exit
12512349d33SMaksims Svecovs   - value type: <empty>
12612349d33SMaksims Svecovs   - Specifies if managed exit is supported.
12710b292e6SMadhukar Pappireddy   - This field is deprecated in favor of ns-interrupts-action field in the FF-A
12810b292e6SMadhukar Pappireddy     v1.1 EAC0 spec.
12910b292e6SMadhukar Pappireddy
1303b63eef9SMadhukar Pappireddy- managed-exit-virq
1313b63eef9SMadhukar Pappireddy   - value type: <empty>
1323b63eef9SMadhukar Pappireddy   - Indicates if the partition needs managed exit, if supported, to be signaled
1333406ff00SMadhukar Pappireddy     through vIRQ signal.
1343b63eef9SMadhukar Pappireddy
13510b292e6SMadhukar Pappireddy- ns-interrupts-action [mandatory]
13610b292e6SMadhukar Pappireddy   - value type: <u32>
13710b292e6SMadhukar Pappireddy   - Specifies the action that the SPMC must take in response to a Non-secure
13810b292e6SMadhukar Pappireddy     physical interrupt.
13910b292e6SMadhukar Pappireddy
14010b292e6SMadhukar Pappireddy      - 0x0: Non-secure interrupt is queued
14110b292e6SMadhukar Pappireddy      - 0x1: Non-secure interrupt is signaled after a managed exit
14210b292e6SMadhukar Pappireddy      - 0x2: Non-secure interrupt is signaled
14310b292e6SMadhukar Pappireddy
14410b292e6SMadhukar Pappireddy   - This field supersedes the managed-exit field in the FF-A v1.0 spec.
1451b17f4f1SOlivier Deprez
146ae1d9d90SMadhukar Pappireddy- other-s-interrupts-action
147ae1d9d90SMadhukar Pappireddy   - value type: <u32>
148ae1d9d90SMadhukar Pappireddy   - Specifies the action that the SPMC must take in response to a Other-Secure
149ae1d9d90SMadhukar Pappireddy     physical interrupt.
150ae1d9d90SMadhukar Pappireddy
151ae1d9d90SMadhukar Pappireddy      - 0x0: Other-Secure interrupt is queued
152ae1d9d90SMadhukar Pappireddy      - 0x1: Other-Secure interrupt is signaled
153ae1d9d90SMadhukar Pappireddy
154*b48ba400SJ-Alves- sri-interrupts-policy
155*b48ba400SJ-Alves
156*b48ba400SJ-Alves  - value type: <u32>
157*b48ba400SJ-Alves  - Specifies how secure interrupts are handled when the SP is in a waiting
158*b48ba400SJ-Alves    state and is targeted by a secure interrupt, or when the SP attempts to
159*b48ba400SJ-Alves    return to a waiting state with pending secure interrupts. The value is a
160*b48ba400SJ-Alves    bitfield.
161*b48ba400SJ-Alves
162*b48ba400SJ-Alves      - 0x0: Proactively inject the VI and resume SP when handling a secure
163*b48ba400SJ-Alves        interrupt and SP in the waiting state.
164*b48ba400SJ-Alves      - 0x1: Only when a secure interrupt is fired while target SP in the
165*b48ba400SJ-Alves        waiting state, pend SRI to the NWd and rely on the scheduler to
166*b48ba400SJ-Alves        explicitly donate CPU cycles to the SP.
167*b48ba400SJ-Alves      - 0x2: Only when the SP attempts to go back to the waiting state while
168*b48ba400SJ-Alves        having pending secure interrupts, trigger the SRI to the NWd and rely
169*b48ba400SJ-Alves        on the scheduler to explicitly donate CPU cycles to the SP.
170*b48ba400SJ-Alves      - 0x3: Enable both actions for values 0x1 and 0x2.
171*b48ba400SJ-Alves
1721b17f4f1SOlivier Deprez- has-primary-scheduler
1731b17f4f1SOlivier Deprez   - value type: <empty>
1741b17f4f1SOlivier Deprez   - Presence of this field indicates that the partition implements the primary
1751b17f4f1SOlivier Deprez     scheduler. If so, run-time EL must be EL1.
1761b17f4f1SOlivier Deprez
1771b17f4f1SOlivier Deprez- time-slice-mem
1781b17f4f1SOlivier Deprez   - value type: <empty>
1791b17f4f1SOlivier Deprez   - Presence of this field indicates that the partition doesn't expect the
1801b17f4f1SOlivier Deprez     partition manager to time slice long running memory management functions.
1811b17f4f1SOlivier Deprez
1821b17f4f1SOlivier Deprez- gp-register-num
1831b17f4f1SOlivier Deprez   - value type: <u32>
184573ac373SJ-Alves   - The field specifies the general purpose register number but not its width.
1851b17f4f1SOlivier Deprez     The width is derived from the partition's execution state, as specified in
1861b17f4f1SOlivier Deprez     the partition properties. For example, if the number value is 1 then the
1871b17f4f1SOlivier Deprez     general-purpose register used will be x1 in AArch64 state and w1 in AArch32
1881b17f4f1SOlivier Deprez     state.
189573ac373SJ-Alves     Presence of this field indicates that the partition expects the address of
190573ac373SJ-Alves     the FF-A boot information blob to be passed in the specified general purpose
191573ac373SJ-Alves     register.
1921b17f4f1SOlivier Deprez
19359bd2ad8SMarc Bonnici- power-management-messages
19459bd2ad8SMarc Bonnici   - value type: <u32>
19559bd2ad8SMarc Bonnici   - Specifies which power management messages a partition subscribes to.
19659bd2ad8SMarc Bonnici     A set bit means the partition should be informed of the power event, clear
19759bd2ad8SMarc Bonnici     bit - should not be informed of event:
19859bd2ad8SMarc Bonnici
19959bd2ad8SMarc Bonnici      - Bit[0]: CPU_OFF
20059bd2ad8SMarc Bonnici      - Bit[1]: CPU_SUSPEND
20159bd2ad8SMarc Bonnici      - Bit[2]: CPU_SUSPEND_RESUME
20259bd2ad8SMarc Bonnici
203a22f84f0SBalint Dobszay- vm-availability-messages
204a22f84f0SBalint Dobszay   - value type: <u32>
205a22f84f0SBalint Dobszay   - Specifies which VM availability messages a partition subscribes to. A set
206a22f84f0SBalint Dobszay     bit means the partition should be informed of the event, clear bit - should
207a22f84f0SBalint Dobszay     not be informed of event:
208a22f84f0SBalint Dobszay
209a22f84f0SBalint Dobszay      - Bit[0]: VM created
210a22f84f0SBalint Dobszay      - Bit[1]: VM destroyed
211a22f84f0SBalint Dobszay
212f306cdcdSMadhukar Pappireddy- lifecycle-support
213f306cdcdSMadhukar Pappireddy   - value type: <empty>
214f306cdcdSMadhukar Pappireddy   - Presence of this field indicates support for all partition lifecycle states
215f306cdcdSMadhukar Pappireddy     defined in the FF-A v1.3 ALP2 spec.
216f306cdcdSMadhukar Pappireddy
217f306cdcdSMadhukar Pappireddy- abort-action
218f306cdcdSMadhukar Pappireddy   - value type: <u32>
219f306cdcdSMadhukar Pappireddy   - Specifies the action that the SPMC takes when a partition encounters a fatal
220f306cdcdSMadhukar Pappireddy     error.
221f306cdcdSMadhukar Pappireddy
222f306cdcdSMadhukar Pappireddy      - 0x0: STOP
223f306cdcdSMadhukar Pappireddy      - 0x1: DESTROY
224f306cdcdSMadhukar Pappireddy      - 0x2: RESTART
225f306cdcdSMadhukar Pappireddy      - 0x3: PROPAGATE
226f306cdcdSMadhukar Pappireddy
227f306cdcdSMadhukar Pappireddy   - All other values are unsupported. If a partition does not specify this
228f306cdcdSMadhukar Pappireddy     field in the manifest, the SPMC takes implementation defined action.
229f306cdcdSMadhukar Pappireddy
2303b63eef9SMadhukar Pappireddy.. _memory_region_node:
2313b63eef9SMadhukar Pappireddy
2321b17f4f1SOlivier DeprezMemory Regions
2339d1f3792SJ-Alves~~~~~~~~~~~~~~
2341b17f4f1SOlivier Deprez
2351b17f4f1SOlivier Deprez- compatible [mandatory]
2361b17f4f1SOlivier Deprez   - value type: <string>
2371b17f4f1SOlivier Deprez   - Must be the string "arm,ffa-manifest-memory-regions".
2381b17f4f1SOlivier Deprez
2391b17f4f1SOlivier Deprez- description
2401b17f4f1SOlivier Deprez   - value type: <string>
2411b17f4f1SOlivier Deprez   - Name of the memory region e.g. for debugging purposes.
2421b17f4f1SOlivier Deprez
2431b17f4f1SOlivier Deprez- pages-count [mandatory]
2441b17f4f1SOlivier Deprez   - value type: <u32>
2451b17f4f1SOlivier Deprez   - Count of pages of memory region as a multiple of the translation granule
2461b17f4f1SOlivier Deprez     size
2471b17f4f1SOlivier Deprez
2481b17f4f1SOlivier Deprez- attributes [mandatory]
2491b17f4f1SOlivier Deprez   - value type: <u32>
2501b17f4f1SOlivier Deprez   - Mapping modes: ORed to get required permission
2511b17f4f1SOlivier Deprez
2521b17f4f1SOlivier Deprez      - 0x1: Read
2531b17f4f1SOlivier Deprez      - 0x2: Write
2541b17f4f1SOlivier Deprez      - 0x4: Execute
25579a91381SOlivier Deprez      - 0x8: Security state
2561b17f4f1SOlivier Deprez
2571b17f4f1SOlivier Deprez- base-address
2581b17f4f1SOlivier Deprez   - value type: <u64>
2591b17f4f1SOlivier Deprez   - Base address of the region. The address must be aligned to the translation
2601b17f4f1SOlivier Deprez     granule size.
2611b17f4f1SOlivier Deprez     The address given may be a Physical Address (PA), Virtual Address (VA), or
26279a91381SOlivier Deprez     Intermediate Physical Address (IPA). Refer to the FF-A specification for
2631b17f4f1SOlivier Deprez     more information on the restrictions around the address type.
2641b17f4f1SOlivier Deprez     If the base address is omitted then the partition manager must map a memory
2651b17f4f1SOlivier Deprez     region of the specified size into the partition's translation regime and
2661b17f4f1SOlivier Deprez     then communicate the region properties (including the base address chosen
2671b17f4f1SOlivier Deprez     by the partition manager) to the partition.
2681b17f4f1SOlivier Deprez
269ac22a77cSDavidson K- load-address-relative-offset
270ac22a77cSDavidson K   - value type: <u64>
271ac22a77cSDavidson K   - Offset relative to the load address of the partition.
272ac22a77cSDavidson K     When this is provided in the partition manifest, it should be added to the
273ac22a77cSDavidson K     load address to get the base address of the region. The secure partition
274ac22a77cSDavidson K     manifest can have either "base-address" or "load-address-relative-offset".
275ac22a77cSDavidson K     It cannot have both.
276ac22a77cSDavidson K
2773b63eef9SMadhukar Pappireddy- stream-ids
2783b63eef9SMadhukar Pappireddy   - value type: <prop-encoded-array>
2793b63eef9SMadhukar Pappireddy   - List of IDs belonging to a DMA capable peripheral device that has access to
2803b63eef9SMadhukar Pappireddy     the memory region represented by current node.
2813b63eef9SMadhukar Pappireddy   - Each ID must have been declared in exactly one device region node.
2823b63eef9SMadhukar Pappireddy
2833b63eef9SMadhukar Pappireddy- smmu-id
2843b63eef9SMadhukar Pappireddy   - value type: <u32>
2853b63eef9SMadhukar Pappireddy   - Identifies the SMMU IP that enforces the access control for the DMA device
2863b63eef9SMadhukar Pappireddy     that owns the above stream-ids.
2873b63eef9SMadhukar Pappireddy
2883b63eef9SMadhukar Pappireddy- stream-ids-access-permissions
2893b63eef9SMadhukar Pappireddy   - value type: <prop-encoded-array>
2903b63eef9SMadhukar Pappireddy   - List of attributes representing the instruction and data access permissions
2913b63eef9SMadhukar Pappireddy     used by the DMA device streams to access the memory region represented by
2923b63eef9SMadhukar Pappireddy     current node.
2933b63eef9SMadhukar Pappireddy
2943b63eef9SMadhukar Pappireddy.. _device_region_node:
2953b63eef9SMadhukar Pappireddy
2961b17f4f1SOlivier DeprezDevice Regions
2979d1f3792SJ-Alves~~~~~~~~~~~~~~
2981b17f4f1SOlivier Deprez
2991b17f4f1SOlivier Deprez- compatible [mandatory]
3001b17f4f1SOlivier Deprez   - value type: <string>
3011b17f4f1SOlivier Deprez   - Must be the string "arm,ffa-manifest-device-regions".
3021b17f4f1SOlivier Deprez
3031b17f4f1SOlivier Deprez- description
3041b17f4f1SOlivier Deprez   - value type: <string>
3051b17f4f1SOlivier Deprez   - Name of the device region e.g. for debugging purposes.
3061b17f4f1SOlivier Deprez
30779a91381SOlivier Deprez- pages-count [mandatory]
30879a91381SOlivier Deprez   - value type: <u32>
30979a91381SOlivier Deprez   - Count of pages of memory region as a multiple of the translation granule
31079a91381SOlivier Deprez     size
3111b17f4f1SOlivier Deprez
3121b17f4f1SOlivier Deprez- attributes [mandatory]
3131b17f4f1SOlivier Deprez   - value type: <u32>
3141b17f4f1SOlivier Deprez   - Mapping modes: ORed to get required permission
3151b17f4f1SOlivier Deprez
3161b17f4f1SOlivier Deprez     - 0x1: Read
3171b17f4f1SOlivier Deprez     - 0x2: Write
3181b17f4f1SOlivier Deprez     - 0x4: Execute
31979a91381SOlivier Deprez     - 0x8: Security state
32079a91381SOlivier Deprez
32179a91381SOlivier Deprez- base-address [mandatory]
32279a91381SOlivier Deprez   - value type: <u64>
32379a91381SOlivier Deprez   - Base address of the region. The address must be aligned to the translation
32479a91381SOlivier Deprez     granule size.
32579a91381SOlivier Deprez     The address given may be a Physical Address (PA), Virtual Address (VA), or
32679a91381SOlivier Deprez     Intermediate Physical Address (IPA). Refer to the FF-A specification for
32779a91381SOlivier Deprez     more information on the restrictions around the address type.
3281b17f4f1SOlivier Deprez
3291b17f4f1SOlivier Deprez- smmu-id
3301b17f4f1SOlivier Deprez   - value type: <u32>
3311b17f4f1SOlivier Deprez   - On systems with multiple System Memory Management Units (SMMUs) this
3321b17f4f1SOlivier Deprez     identifier is used to inform the partition manager which SMMU the device is
3331b17f4f1SOlivier Deprez     upstream of. If the field is omitted then it is assumed that the device is
3341b17f4f1SOlivier Deprez     not upstream of any SMMU.
3351b17f4f1SOlivier Deprez
3361b17f4f1SOlivier Deprez- stream-ids
3371b17f4f1SOlivier Deprez   - value type: <prop-encoded-array>
3383b63eef9SMadhukar Pappireddy   - List of IDs where an ID is a unique <u32> value amongst all devices assigned
3393b63eef9SMadhukar Pappireddy     to the partition.
3401b17f4f1SOlivier Deprez
3413b63eef9SMadhukar Pappireddy- interrupts
3421b17f4f1SOlivier Deprez   - value type: <prop-encoded-array>
3431b17f4f1SOlivier Deprez   - A list of (id, attributes) pair describing the device interrupts, where:
3441b17f4f1SOlivier Deprez
3451b17f4f1SOlivier Deprez      - id: The <u32> interrupt IDs.
34679a91381SOlivier Deprez      - attributes: A <u32> value, containing attributes for each interrupt ID:
3471b17f4f1SOlivier Deprez
34879a91381SOlivier Deprez        +----------------------+----------+
34979a91381SOlivier Deprez        |Field                 | Bit(s)   |
35079a91381SOlivier Deprez        +----------------------+----------+
35179a91381SOlivier Deprez        | Priority	       | 7:0      |
35279a91381SOlivier Deprez        +----------------------+----------+
35379a91381SOlivier Deprez        | Security state       | 8        |
35479a91381SOlivier Deprez        +----------------------+----------+
35579a91381SOlivier Deprez        | Config(Edge/Level)   | 9        |
35679a91381SOlivier Deprez        +----------------------+----------+
35779a91381SOlivier Deprez        | Type(SPI/PPI/SGI)    | 11:10    |
35879a91381SOlivier Deprez        +----------------------+----------+
35979a91381SOlivier Deprez
36079a91381SOlivier Deprez        Security state:
36179a91381SOlivier Deprez          - Secure:       1
36279a91381SOlivier Deprez          - Non-secure:   0
36379a91381SOlivier Deprez
36479a91381SOlivier Deprez        Configuration:
36579a91381SOlivier Deprez          - Edge triggered:       0
36679a91381SOlivier Deprez          - Level triggered:      1
36779a91381SOlivier Deprez
36879a91381SOlivier Deprez        Type:
36979a91381SOlivier Deprez          - SPI:  0b10
37079a91381SOlivier Deprez          - PPI:  0b01
37179a91381SOlivier Deprez          - SGI:  0b00
3721b17f4f1SOlivier Deprez
3739b5a360fSRaghu Krishnamurthy- interrupts-target
3749b5a360fSRaghu Krishnamurthy   - value type: <prop-encoded-array>
3759b5a360fSRaghu Krishnamurthy   - A list of (id, mpdir upper bits, mpidr lower bits) tuples describing which
3769b5a360fSRaghu Krishnamurthy     mpidr the interrupt is routed to, where:
3779b5a360fSRaghu Krishnamurthy
3789b5a360fSRaghu Krishnamurthy      - id: The <u32> interrupt ID. Must be one of those specified in the
3799b5a360fSRaghu Krishnamurthy            "interrupts" field.
3809b5a360fSRaghu Krishnamurthy      - mpidr upper bits: The <u32> describing the upper bits of the 64 bits
3819b5a360fSRaghu Krishnamurthy                          mpidr
3829b5a360fSRaghu Krishnamurthy      - mpidr lower bits: The <u32> describing the lower bits of the 64 bits
3839b5a360fSRaghu Krishnamurthy                          mpidr
3849b5a360fSRaghu Krishnamurthy
3851b17f4f1SOlivier Deprez- exclusive-access
3861b17f4f1SOlivier Deprez   - value type: <empty>
3871b17f4f1SOlivier Deprez   - Presence of this field implies that this endpoint must be granted exclusive
3881b17f4f1SOlivier Deprez     access and ownership of this device's MMIO region.
3891b17f4f1SOlivier Deprez
3909d1f3792SJ-AlvesSPMC Manifest Properties
3919d1f3792SJ-Alves------------------------
3929d1f3792SJ-Alves
3939d1f3792SJ-AlvesThis manifest contains the SPMC *attribute* node consumed by the SPMD at
3949d1f3792SJ-Alvesboot time.
3959d1f3792SJ-Alves
3969d1f3792SJ-Alvesattribute
3979d1f3792SJ-Alves~~~~~~~~~
3989d1f3792SJ-Alves
3999d1f3792SJ-Alves- spmc_id
4009d1f3792SJ-Alves   - value type: <u32>
4019d1f3792SJ-Alves   - Defines the endpoint ID value that SPMC can query through ``FFA_ID_GET``.
4029d1f3792SJ-Alves- maj_ver
4039d1f3792SJ-Alves   - value type: <u32>
4049d1f3792SJ-Alves   - Major of the FF-A version implemented by the SPMC. SPMD checks against its own
4059d1f3792SJ-Alves     version.
4069d1f3792SJ-Alves- min_ver
4079d1f3792SJ-Alves   - value type>: <u32>
4089d1f3792SJ-Alves   - Minor of the FF-A version implemented by the SPMC. SPMD checks against its own
4099d1f3792SJ-Alves     version.
4109d1f3792SJ-Alves- exec_state
4119d1f3792SJ-Alves   - value type: <u32>
4129d1f3792SJ-Alves   - Defines the SPMC execution state (AArch64 or AArch32).
4139d1f3792SJ-Alves- load_address
4149d1f3792SJ-Alves   - value type: <u64>
4159d1f3792SJ-Alves   - Base physical address in which the SPMC binary is placed. Should be page aligned.
4169d1f3792SJ-Alves- entrypoint:
4179d1f3792SJ-Alves   - value type: <u64>
4189d1f3792SJ-Alves   - Defines the physical address for the cold boot primary core entrypoint used by the SPMD
4199d1f3792SJ-Alves     (currently matches ``BL32_BASE``) to enter the SPMC.
4209d1f3792SJ-Alves- binary_size
4219d1f3792SJ-Alves   - value type: <u32>
4229d1f3792SJ-Alves   - Defines the maximum size of the SPMC binary. It is used with load_address to sanitize the
4239d1f3792SJ-Alves     specified entrypoint.
4249d1f3792SJ-Alves
4251b17f4f1SOlivier Deprez--------------
4261b17f4f1SOlivier Deprez
4279d1f3792SJ-Alves*Copyright (c) 2019-2025, Arm Limited and Contributors. All rights reserved.*
428