xref: /rk3399_ARM-atf/drivers/auth/mbedtls/mbedtls_common.mk (revision ea7a57a3a5963a5c8a67bfd42b4f6ad1472b46f3)
17d37aa17SJuan Castillo#
2d25b527cSJeenu Viswambharan# Copyright (c) 2015-2018, ARM Limited and Contributors. All rights reserved.
37d37aa17SJuan Castillo#
482cb2c1aSdp-arm# SPDX-License-Identifier: BSD-3-Clause
57d37aa17SJuan Castillo#
67d37aa17SJuan Castillo
77d37aa17SJuan Castilloifneq (${MBEDTLS_COMMON_MK},1)
87d37aa17SJuan CastilloMBEDTLS_COMMON_MK	:=	1
97d37aa17SJuan Castillo
107d37aa17SJuan Castillo# MBEDTLS_DIR must be set to the mbed TLS main directory (it must contain
117d37aa17SJuan Castillo# the 'include' and 'library' subdirectories).
127d37aa17SJuan Castilloifeq (${MBEDTLS_DIR},)
137d37aa17SJuan Castillo  $(error Error: MBEDTLS_DIR not set)
147d37aa17SJuan Castilloendif
157d37aa17SJuan Castillo
16*ea7a57a3SRoberto VargasMBEDTLS_INC		=	-I${MBEDTLS_DIR}/include
17*ea7a57a3SRoberto VargasINCLUDES		+=     -Iinclude/drivers/auth/mbedtls
187d37aa17SJuan Castillo
197d37aa17SJuan Castillo# Specify mbed TLS configuration file
20649dbf6fSJuan CastilloMBEDTLS_CONFIG_FILE	:=	"<mbedtls_config.h>"
21649dbf6fSJuan Castillo$(eval $(call add_define,MBEDTLS_CONFIG_FILE))
227d37aa17SJuan Castillo
23180c4bc2SRoberto VargasMBEDTLS_SOURCES	+=		drivers/auth/mbedtls/mbedtls_common.c
24180c4bc2SRoberto Vargas
25180c4bc2SRoberto Vargas
26180c4bc2SRoberto VargasLIBMBEDTLS_SRCS		:= $(addprefix ${MBEDTLS_DIR}/library/,	\
277d37aa17SJuan Castillo					asn1parse.c 				\
287d37aa17SJuan Castillo					asn1write.c 				\
297d37aa17SJuan Castillo					memory_buffer_alloc.c			\
307d37aa17SJuan Castillo					oid.c 					\
317d37aa17SJuan Castillo					platform.c 				\
32d25b527cSJeenu Viswambharan					platform_util.c				\
33180c4bc2SRoberto Vargas					bignum.c				\
34180c4bc2SRoberto Vargas					md.c					\
35180c4bc2SRoberto Vargas					md_wrap.c				\
36180c4bc2SRoberto Vargas					pk.c 					\
37180c4bc2SRoberto Vargas					pk_wrap.c 				\
38180c4bc2SRoberto Vargas					pkparse.c 				\
39180c4bc2SRoberto Vargas					pkwrite.c 				\
40180c4bc2SRoberto Vargas					sha256.c            			\
41180c4bc2SRoberto Vargas					sha512.c            			\
42180c4bc2SRoberto Vargas					ecdsa.c					\
43180c4bc2SRoberto Vargas					ecp_curves.c				\
44180c4bc2SRoberto Vargas					ecp.c					\
45180c4bc2SRoberto Vargas					rsa.c					\
46d25b527cSJeenu Viswambharan					rsa_internal.c				\
47180c4bc2SRoberto Vargas					x509.c 					\
48180c4bc2SRoberto Vargas					x509_crt.c 				\
497d37aa17SJuan Castillo					)
507d37aa17SJuan Castillo
51180c4bc2SRoberto Vargas# The platform may define the variable 'TF_MBEDTLS_KEY_ALG' to select the key
52180c4bc2SRoberto Vargas# algorithm to use. If the variable is not defined, select it based on algorithm
53180c4bc2SRoberto Vargas# used for key generation `KEY_ALG`. If `KEY_ALG` is not defined or is
54180c4bc2SRoberto Vargas# defined to `rsa`/`rsa_1_5`, then set the variable to `rsa`.
55180c4bc2SRoberto Vargasifeq (${TF_MBEDTLS_KEY_ALG},)
56180c4bc2SRoberto Vargas    ifeq (${KEY_ALG}, ecdsa)
57180c4bc2SRoberto Vargas        TF_MBEDTLS_KEY_ALG		:=	ecdsa
58180c4bc2SRoberto Vargas    else
59180c4bc2SRoberto Vargas        TF_MBEDTLS_KEY_ALG		:=	rsa
60180c4bc2SRoberto Vargas    endif
61180c4bc2SRoberto Vargasendif
62180c4bc2SRoberto Vargas
63180c4bc2SRoberto Vargas# If MBEDTLS_KEY_ALG build flag is defined use it to set TF_MBEDTLS_KEY_ALG for
64180c4bc2SRoberto Vargas# backward compatibility
65180c4bc2SRoberto Vargasifdef MBEDTLS_KEY_ALG
66180c4bc2SRoberto Vargas    ifeq (${ERROR_DEPRECATED},1)
67180c4bc2SRoberto Vargas        $(error "MBEDTLS_KEY_ALG is deprecated. Please use the new build flag TF_MBEDTLS_KEY_ALG")
68180c4bc2SRoberto Vargas    endif
69180c4bc2SRoberto Vargas    $(warning "MBEDTLS_KEY_ALG is deprecated. Please use the new build flag TF_MBEDTLS_KEY_ALG")
70180c4bc2SRoberto Vargas    TF_MBEDTLS_KEY_ALG	:= ${MBEDTLS_KEY_ALG}
71180c4bc2SRoberto Vargasendif
72180c4bc2SRoberto Vargas
73180c4bc2SRoberto Vargasifeq (${HASH_ALG}, sha384)
74180c4bc2SRoberto Vargas    TF_MBEDTLS_HASH_ALG_ID	:=	TF_MBEDTLS_SHA384
75180c4bc2SRoberto Vargaselse ifeq (${HASH_ALG}, sha512)
76180c4bc2SRoberto Vargas   TF_MBEDTLS_HASH_ALG_ID	:=	TF_MBEDTLS_SHA512
77180c4bc2SRoberto Vargaselse
78180c4bc2SRoberto Vargas    TF_MBEDTLS_HASH_ALG_ID	:=	TF_MBEDTLS_SHA256
79180c4bc2SRoberto Vargasendif
80180c4bc2SRoberto Vargas
81180c4bc2SRoberto Vargasifeq (${TF_MBEDTLS_KEY_ALG},ecdsa)
82180c4bc2SRoberto Vargas    TF_MBEDTLS_KEY_ALG_ID	:=	TF_MBEDTLS_ECDSA
83180c4bc2SRoberto Vargaselse ifeq (${TF_MBEDTLS_KEY_ALG},rsa)
84180c4bc2SRoberto Vargas    TF_MBEDTLS_KEY_ALG_ID	:=	TF_MBEDTLS_RSA
85180c4bc2SRoberto Vargaselse ifeq (${TF_MBEDTLS_KEY_ALG},rsa+ecdsa)
86180c4bc2SRoberto Vargas    TF_MBEDTLS_KEY_ALG_ID	:=	TF_MBEDTLS_RSA_AND_ECDSA
87180c4bc2SRoberto Vargaselse
88180c4bc2SRoberto Vargas    $(error "TF_MBEDTLS_KEY_ALG=${TF_MBEDTLS_KEY_ALG} not supported on mbed TLS")
89180c4bc2SRoberto Vargasendif
90180c4bc2SRoberto Vargas
91180c4bc2SRoberto Vargas# Needs to be set to drive mbed TLS configuration correctly
92180c4bc2SRoberto Vargas$(eval $(call add_define,TF_MBEDTLS_KEY_ALG_ID))
93180c4bc2SRoberto Vargas$(eval $(call add_define,TF_MBEDTLS_HASH_ALG_ID))
94180c4bc2SRoberto Vargas
95180c4bc2SRoberto Vargas
96180c4bc2SRoberto Vargas$(eval $(call MAKE_LIB,mbedtls))
97180c4bc2SRoberto Vargas
987d37aa17SJuan Castilloendif
99