1d310239dSOlivier Deprez /*
2*b226c747SZelalem * Copyright (c) 2019-2021, Arm Limited. All rights reserved.
3d310239dSOlivier Deprez *
4d310239dSOlivier Deprez * SPDX-License-Identifier: BSD-3-Clause
5d310239dSOlivier Deprez */
6d310239dSOlivier Deprez
7d310239dSOlivier Deprez #include <assert.h>
8d310239dSOlivier Deprez #include <lib/debugfs.h>
9d310239dSOlivier Deprez #include <limits.h>
10d310239dSOlivier Deprez #include <plat/arm/common/plat_arm.h>
11d310239dSOlivier Deprez #include <stdlib.h>
12d310239dSOlivier Deprez #include <string.h>
13d310239dSOlivier Deprez #include <tools_share/firmware_image_package.h>
14d310239dSOlivier Deprez
15d310239dSOlivier Deprez #include "dev.h"
16d310239dSOlivier Deprez
17d310239dSOlivier Deprez #define NR_FIPS 1
18d310239dSOlivier Deprez #define STOC_HEADER (sizeof(fip_toc_header_t))
19d310239dSOlivier Deprez #define STOC_ENTRY (sizeof(fip_toc_entry_t))
20d310239dSOlivier Deprez
21d310239dSOlivier Deprez struct fipfile {
22d310239dSOlivier Deprez chan_t *c;
23d310239dSOlivier Deprez long offset[NR_FILES];
24d310239dSOlivier Deprez long size[NR_FILES];
25d310239dSOlivier Deprez };
26d310239dSOlivier Deprez
27d310239dSOlivier Deprez struct fip_entry {
28d310239dSOlivier Deprez uuid_t uuid;
29d310239dSOlivier Deprez long long offset_address;
30d310239dSOlivier Deprez long long size;
31d310239dSOlivier Deprez long long flags;
32d310239dSOlivier Deprez };
33d310239dSOlivier Deprez
34d310239dSOlivier Deprez struct uuidnames {
35d310239dSOlivier Deprez const char name[NAMELEN];
36d310239dSOlivier Deprez const uuid_t uuid;
37d310239dSOlivier Deprez };
38d310239dSOlivier Deprez
39d310239dSOlivier Deprez /*******************************************************************************
40d310239dSOlivier Deprez * This array links the FIP file names to their UUID.
41d310239dSOlivier Deprez * The elements are ordered according to the image number stored in
42d310239dSOlivier Deprez * tbbr_img_def.h, starting at index 1.
43d310239dSOlivier Deprez *
44d310239dSOlivier Deprez * TODO: this name to uuid binding will preferably be done using
45d310239dSOlivier Deprez * the coming Property Access Layer / Firmware CONFiguration feature.
46d310239dSOlivier Deprez ******************************************************************************/
47d310239dSOlivier Deprez static const struct uuidnames uuidnames[] = {
48d310239dSOlivier Deprez {"", { {0}, {0}, {0}, 0, 0, {0} } },
49d310239dSOlivier Deprez {"bl2.bin", UUID_TRUSTED_BOOT_FIRMWARE_BL2},
50d310239dSOlivier Deprez {"scp-bl2.bin", UUID_SCP_FIRMWARE_SCP_BL2},
51d310239dSOlivier Deprez {"bl31.bin", UUID_EL3_RUNTIME_FIRMWARE_BL31},
52d310239dSOlivier Deprez {"bl32.bin", UUID_SECURE_PAYLOAD_BL32},
53d310239dSOlivier Deprez {"bl33.bin", UUID_NON_TRUSTED_FIRMWARE_BL33},
54d310239dSOlivier Deprez {"tb-fw.crt", UUID_TRUSTED_BOOT_FW_CERT},
55d310239dSOlivier Deprez {"trstd-k.crt", UUID_TRUSTED_KEY_CERT},
56d310239dSOlivier Deprez {"scp-fw-k.crt", UUID_SCP_FW_KEY_CERT},
57d310239dSOlivier Deprez {"soc-fw-k.crt", UUID_SOC_FW_KEY_CERT},
58d310239dSOlivier Deprez {"tos-fw-k.crt", UUID_TRUSTED_OS_FW_KEY_CERT},
59d310239dSOlivier Deprez {"nt-fw-k.crt", UUID_NON_TRUSTED_FW_KEY_CERT},
60d310239dSOlivier Deprez {"scp-fw-c.crt", UUID_SCP_FW_CONTENT_CERT},
61d310239dSOlivier Deprez {"soc-fw-c.crt", UUID_SOC_FW_CONTENT_CERT},
62d310239dSOlivier Deprez {"tos-fw-c.crt", UUID_TRUSTED_OS_FW_CONTENT_CERT},
63d310239dSOlivier Deprez {"nt-fw-c.crt", UUID_NON_TRUSTED_FW_CONTENT_CERT},
64d310239dSOlivier Deprez { },
65d310239dSOlivier Deprez {"fwu.crt", UUID_TRUSTED_FWU_CERT},
66d310239dSOlivier Deprez {"scp-bl2u.bin", UUID_TRUSTED_UPDATE_FIRMWARE_SCP_BL2U},
67d310239dSOlivier Deprez {"bl2u.bin", UUID_TRUSTED_UPDATE_FIRMWARE_BL2U},
68d310239dSOlivier Deprez {"ns-bl2u.bin", UUID_TRUSTED_UPDATE_FIRMWARE_NS_BL2U},
69d310239dSOlivier Deprez {"bl32-xtr1.bin", UUID_SECURE_PAYLOAD_BL32_EXTRA1},
70d310239dSOlivier Deprez {"bl32-xtr2.bin", UUID_SECURE_PAYLOAD_BL32_EXTRA2},
71d310239dSOlivier Deprez {"hw.cfg", UUID_HW_CONFIG},
72d310239dSOlivier Deprez {"tb-fw.cfg", UUID_TB_FW_CONFIG},
73d310239dSOlivier Deprez {"soc-fw.cfg", UUID_SOC_FW_CONFIG},
74d310239dSOlivier Deprez {"tos-fw.cfg", UUID_TOS_FW_CONFIG},
75d310239dSOlivier Deprez {"nt-fw.cfg", UUID_NT_FW_CONFIG},
76ce10f9f4SManish V Badarkhe {"fw.cfg", UUID_FW_CONFIG},
77d310239dSOlivier Deprez {"rot-k.crt", UUID_ROT_KEY_CERT},
780792dd7dSManish Pandey {"nt-k.crt", UUID_NON_TRUSTED_WORLD_KEY_CERT},
7923d5f03aSManish Pandey {"sip-sp.crt", UUID_SIP_SECURE_PARTITION_CONTENT_CERT},
8023d5f03aSManish Pandey {"plat-sp.crt", UUID_PLAT_SECURE_PARTITION_CONTENT_CERT}
81d310239dSOlivier Deprez };
82d310239dSOlivier Deprez
83d310239dSOlivier Deprez /*******************************************************************************
84d310239dSOlivier Deprez * This array contains all the available FIP files.
85d310239dSOlivier Deprez ******************************************************************************/
86d310239dSOlivier Deprez static struct fipfile archives[NR_FIPS];
87d310239dSOlivier Deprez
88d310239dSOlivier Deprez /*******************************************************************************
89d310239dSOlivier Deprez * This variable stores the current number of registered FIP files.
90d310239dSOlivier Deprez ******************************************************************************/
91d310239dSOlivier Deprez static int nfips;
92d310239dSOlivier Deprez
93d310239dSOlivier Deprez /*******************************************************************************
94d310239dSOlivier Deprez * This function parses the ToC of the FIP.
95d310239dSOlivier Deprez ******************************************************************************/
get_entry(chan_t * c,struct fip_entry * entry)96d310239dSOlivier Deprez static int get_entry(chan_t *c, struct fip_entry *entry)
97d310239dSOlivier Deprez {
98d310239dSOlivier Deprez int n;
99d310239dSOlivier Deprez
100d310239dSOlivier Deprez n = devtab[c->index]->read(c, entry, sizeof(struct fip_entry));
101d310239dSOlivier Deprez if (n <= 0) {
102d310239dSOlivier Deprez return n;
103d310239dSOlivier Deprez }
104d310239dSOlivier Deprez
105d310239dSOlivier Deprez if (n != sizeof(struct fip_entry)) {
106d310239dSOlivier Deprez return -1;
107d310239dSOlivier Deprez }
108d310239dSOlivier Deprez
109d310239dSOlivier Deprez if (entry->size == 0) {
110d310239dSOlivier Deprez return 0;
111d310239dSOlivier Deprez }
112d310239dSOlivier Deprez
113d310239dSOlivier Deprez return 1;
114d310239dSOlivier Deprez }
115d310239dSOlivier Deprez
116d310239dSOlivier Deprez /*******************************************************************************
117d310239dSOlivier Deprez * This function exposes the FIP images as files.
118d310239dSOlivier Deprez ******************************************************************************/
fipgen(chan_t * c,const dirtab_t * tab,int ntab,int n,dir_t * dir)119d310239dSOlivier Deprez static int fipgen(chan_t *c, const dirtab_t *tab, int ntab, int n, dir_t *dir)
120d310239dSOlivier Deprez {
121d310239dSOlivier Deprez int i, r;
122d310239dSOlivier Deprez long off;
123d310239dSOlivier Deprez chan_t nc;
124d310239dSOlivier Deprez struct fip_entry entry;
125d310239dSOlivier Deprez struct fipfile *fip;
126d310239dSOlivier Deprez static const char unk[] = "unknown";
127d310239dSOlivier Deprez
128d310239dSOlivier Deprez if (c->dev >= nfips) {
129d310239dSOlivier Deprez panic();
130d310239dSOlivier Deprez }
131d310239dSOlivier Deprez
132*b226c747SZelalem if (clone(archives[c->dev].c, &nc) == NULL) {
133*b226c747SZelalem panic();
134*b226c747SZelalem }
135*b226c747SZelalem
136d310239dSOlivier Deprez fip = &archives[nc.dev];
137d310239dSOlivier Deprez
138d310239dSOlivier Deprez off = STOC_HEADER;
139d310239dSOlivier Deprez for (i = 0; i <= n; i++) {
140d310239dSOlivier Deprez if (fip->offset[i] == -1) {
141d310239dSOlivier Deprez return 0;
142d310239dSOlivier Deprez }
143d310239dSOlivier Deprez
144d310239dSOlivier Deprez if (devtab[nc.index]->seek(&nc, off, KSEEK_SET) < 0) {
145d310239dSOlivier Deprez return -1;
146d310239dSOlivier Deprez }
147d310239dSOlivier Deprez
148d310239dSOlivier Deprez r = get_entry(&nc, &entry);
149d310239dSOlivier Deprez if (r <= 0) {
150d310239dSOlivier Deprez return r;
151d310239dSOlivier Deprez }
152d310239dSOlivier Deprez
153d310239dSOlivier Deprez off += sizeof(entry);
154d310239dSOlivier Deprez }
155d310239dSOlivier Deprez
156d310239dSOlivier Deprez for (i = 1; i < NELEM(uuidnames); i++) {
157d310239dSOlivier Deprez if (memcmp(&uuidnames[i].uuid,
158d310239dSOlivier Deprez &entry.uuid, sizeof(uuid_t)) == 0) {
159d310239dSOlivier Deprez break;
160d310239dSOlivier Deprez }
161d310239dSOlivier Deprez }
162d310239dSOlivier Deprez
163d310239dSOlivier Deprez if (i < NELEM(uuidnames)) {
164d310239dSOlivier Deprez make_dir_entry(c, dir, uuidnames[i].name,
165d310239dSOlivier Deprez entry.size, n, O_READ);
166d310239dSOlivier Deprez } else {
167d310239dSOlivier Deprez // TODO: set name depending on uuid node value
168d310239dSOlivier Deprez make_dir_entry(c, dir, unk, entry.size, n, O_READ);
169d310239dSOlivier Deprez }
170d310239dSOlivier Deprez
171d310239dSOlivier Deprez return 1;
172d310239dSOlivier Deprez }
173d310239dSOlivier Deprez
fipwalk(chan_t * c,const char * name)174d310239dSOlivier Deprez static int fipwalk(chan_t *c, const char *name)
175d310239dSOlivier Deprez {
176d310239dSOlivier Deprez return devwalk(c, name, NULL, 0, fipgen);
177d310239dSOlivier Deprez }
178d310239dSOlivier Deprez
fipstat(chan_t * c,const char * file,dir_t * dir)179d310239dSOlivier Deprez static int fipstat(chan_t *c, const char *file, dir_t *dir)
180d310239dSOlivier Deprez {
181d310239dSOlivier Deprez return devstat(c, file, dir, NULL, 0, fipgen);
182d310239dSOlivier Deprez }
183d310239dSOlivier Deprez
184d310239dSOlivier Deprez /*******************************************************************************
185d310239dSOlivier Deprez * This function copies at most n bytes of the FIP image referred by c into
186d310239dSOlivier Deprez * buf.
187d310239dSOlivier Deprez ******************************************************************************/
fipread(chan_t * c,void * buf,int n)188d310239dSOlivier Deprez static int fipread(chan_t *c, void *buf, int n)
189d310239dSOlivier Deprez {
190d310239dSOlivier Deprez long off;
191d310239dSOlivier Deprez chan_t cs;
192d310239dSOlivier Deprez struct fipfile *fip;
193d310239dSOlivier Deprez long size;
194d310239dSOlivier Deprez
195d310239dSOlivier Deprez /* Only makes sense when using debug language */
196d310239dSOlivier Deprez assert(c->qid != CHDIR);
197d310239dSOlivier Deprez
198d310239dSOlivier Deprez if ((c->dev >= nfips) || ((c->qid & CHDIR) != 0)) {
199d310239dSOlivier Deprez panic();
200d310239dSOlivier Deprez }
201d310239dSOlivier Deprez
202d310239dSOlivier Deprez fip = &archives[c->dev];
203d310239dSOlivier Deprez
204d310239dSOlivier Deprez if ((c->qid >= NR_FILES) || (fip->offset[c->qid] < 0)) {
205d310239dSOlivier Deprez panic();
206d310239dSOlivier Deprez }
207d310239dSOlivier Deprez
208*b226c747SZelalem if (clone(fip->c, &cs) == NULL) {
209*b226c747SZelalem panic();
210*b226c747SZelalem }
211d310239dSOlivier Deprez
212d310239dSOlivier Deprez size = fip->size[c->qid];
213d310239dSOlivier Deprez if (c->offset >= size) {
214d310239dSOlivier Deprez return 0;
215d310239dSOlivier Deprez }
216d310239dSOlivier Deprez
217d310239dSOlivier Deprez if (n < 0) {
218d310239dSOlivier Deprez return -1;
219d310239dSOlivier Deprez }
220d310239dSOlivier Deprez
221d310239dSOlivier Deprez if (n > (size - c->offset)) {
222d310239dSOlivier Deprez n = size - c->offset;
223d310239dSOlivier Deprez }
224d310239dSOlivier Deprez
225d310239dSOlivier Deprez off = fip->offset[c->qid] + c->offset;
226d310239dSOlivier Deprez if (devtab[cs.index]->seek(&cs, off, KSEEK_SET) < 0) {
227d310239dSOlivier Deprez return -1;
228d310239dSOlivier Deprez }
229d310239dSOlivier Deprez
230d310239dSOlivier Deprez n = devtab[cs.index]->read(&cs, buf, n);
231d310239dSOlivier Deprez if (n > 0) {
232d310239dSOlivier Deprez c->offset += n;
233d310239dSOlivier Deprez }
234d310239dSOlivier Deprez
235d310239dSOlivier Deprez return n;
236d310239dSOlivier Deprez }
237d310239dSOlivier Deprez
238d310239dSOlivier Deprez /*******************************************************************************
239d310239dSOlivier Deprez * This function parses the FIP spec and registers its images in order to
240d310239dSOlivier Deprez * expose them as files in the driver namespace.
241d310239dSOlivier Deprez * It acts as an initialization function for the FIP driver.
242d310239dSOlivier Deprez * It returns a pointer to the newly created channel.
243d310239dSOlivier Deprez ******************************************************************************/
fipmount(chan_t * c,const char * spec)244d310239dSOlivier Deprez static chan_t *fipmount(chan_t *c, const char *spec)
245d310239dSOlivier Deprez {
246d310239dSOlivier Deprez int r, n, t;
247d310239dSOlivier Deprez chan_t *cspec;
248d310239dSOlivier Deprez uint32_t hname;
249d310239dSOlivier Deprez struct fip_entry entry;
250d310239dSOlivier Deprez struct fipfile *fip;
251d310239dSOlivier Deprez dir_t dir;
252d310239dSOlivier Deprez
253d310239dSOlivier Deprez if (nfips == NR_FIPS) {
254d310239dSOlivier Deprez return NULL;
255d310239dSOlivier Deprez }
256d310239dSOlivier Deprez
257d310239dSOlivier Deprez fip = &archives[nfips];
258d310239dSOlivier Deprez
259d310239dSOlivier Deprez for (n = 0; n < NR_FILES; n++) {
260d310239dSOlivier Deprez fip->offset[n] = -1;
261d310239dSOlivier Deprez }
262d310239dSOlivier Deprez
263d310239dSOlivier Deprez cspec = path_to_channel(spec, O_READ);
264d310239dSOlivier Deprez if (cspec == NULL) {
265d310239dSOlivier Deprez return NULL;
266d310239dSOlivier Deprez }
267d310239dSOlivier Deprez
268d310239dSOlivier Deprez fip->c = cspec;
269d310239dSOlivier Deprez
270d310239dSOlivier Deprez r = devtab[cspec->index]->read(cspec, &hname, sizeof(hname));
271d310239dSOlivier Deprez if (r < 0) {
272d310239dSOlivier Deprez goto err;
273d310239dSOlivier Deprez }
274d310239dSOlivier Deprez
275d310239dSOlivier Deprez if ((r != sizeof(hname)) || (hname != TOC_HEADER_NAME)) {
276d310239dSOlivier Deprez goto err;
277d310239dSOlivier Deprez }
278d310239dSOlivier Deprez
279d310239dSOlivier Deprez if (stat(spec, &dir) < 0) {
280d310239dSOlivier Deprez goto err;
281d310239dSOlivier Deprez }
282d310239dSOlivier Deprez
283d310239dSOlivier Deprez t = cspec->index;
284d310239dSOlivier Deprez if (devtab[t]->seek(cspec, STOC_HEADER, KSEEK_SET) < 0) {
285d310239dSOlivier Deprez goto err;
286d310239dSOlivier Deprez }
287d310239dSOlivier Deprez
288d310239dSOlivier Deprez for (n = 0; n < NR_FILES; n++) {
289d310239dSOlivier Deprez switch (get_entry(cspec, &entry)) {
290d310239dSOlivier Deprez case 0:
291d310239dSOlivier Deprez return attach('F', nfips++);
292d310239dSOlivier Deprez case -1:
293d310239dSOlivier Deprez goto err;
294d310239dSOlivier Deprez default:
295d310239dSOlivier Deprez if ((entry.offset_address + entry.size) > dir.length) {
296d310239dSOlivier Deprez goto err;
297d310239dSOlivier Deprez }
298d310239dSOlivier Deprez
299d310239dSOlivier Deprez fip->offset[n] = entry.offset_address;
300d310239dSOlivier Deprez fip->size[n] = entry.size;
301d310239dSOlivier Deprez break;
302d310239dSOlivier Deprez }
303d310239dSOlivier Deprez }
304d310239dSOlivier Deprez
305d310239dSOlivier Deprez err:
306d310239dSOlivier Deprez channel_close(cspec);
307d310239dSOlivier Deprez return NULL;
308d310239dSOlivier Deprez }
309d310239dSOlivier Deprez
310d310239dSOlivier Deprez const dev_t fipdevtab = {
311d310239dSOlivier Deprez .id = 'F',
312d310239dSOlivier Deprez .stat = fipstat,
313d310239dSOlivier Deprez .clone = devclone,
314d310239dSOlivier Deprez .attach = devattach,
315d310239dSOlivier Deprez .walk = fipwalk,
316d310239dSOlivier Deprez .read = fipread,
317d310239dSOlivier Deprez .write = deverrwrite,
318d310239dSOlivier Deprez .mount = fipmount,
319d310239dSOlivier Deprez .seek = devseek
320d310239dSOlivier Deprez };
321d310239dSOlivier Deprez
322