195cfd4adSJuan Castillo# 2f2423792Slaurenw-arm# Copyright (c) 2015-2022, ARM Limited and Contributors. All rights reserved. 395cfd4adSJuan Castillo# 482cb2c1aSdp-arm# SPDX-License-Identifier: BSD-3-Clause 595cfd4adSJuan Castillo# 695cfd4adSJuan Castillo 71a0a3f06SYatharth KocharPLAT_BL_COMMON_SOURCES += drivers/arm/pl011/${ARCH}/pl011_console.S \ 81a0a3f06SYatharth Kochar plat/arm/board/common/${ARCH}/board_arm_helpers.S 995cfd4adSJuan Castillo 10aa7877c4SAntonio Nino DiazBL1_SOURCES += drivers/cfi/v2m/v2m_flash.c 1195cfd4adSJuan Castillo 12aa7877c4SAntonio Nino DiazBL2_SOURCES += drivers/cfi/v2m/v2m_flash.c 1395cfd4adSJuan Castillo 1495cfd4adSJuan Castilloifneq (${TRUSTED_BOARD_BOOT},0) 15f143cafeSSoby Mathewifneq (${ARM_CRYPTOCELL_INTEG}, 1) 1695cfd4adSJuan Castillo# ROTPK hash location 1795cfd4adSJuan Castilloifeq (${ARM_ROTPK_LOCATION}, regs) 1895cfd4adSJuan Castillo ARM_ROTPK_LOCATION_ID = ARM_ROTPK_REGS_ID 1995cfd4adSJuan Castilloelse ifeq (${ARM_ROTPK_LOCATION}, devel_rsa) 20698e231dSMax Shvetsov CRYPTO_ALG=rsa 2195cfd4adSJuan Castillo ARM_ROTPK_LOCATION_ID = ARM_ROTPK_DEVEL_RSA_ID 22a6ffddecSMax Shvetsov ARM_ROTPK_HASH = plat/arm/board/common/rotpk/arm_rotpk_rsa_sha256.bin 23a6ffddecSMax Shvetsov$(eval $(call add_define_val,ARM_ROTPK_HASH,'"$(ARM_ROTPK_HASH)"')) 24a6ffddecSMax Shvetsov$(BUILD_PLAT)/bl2/arm_dev_rotpk.o : $(ARM_ROTPK_HASH) 25a6ffddecSMax Shvetsov$(warning Development keys support for FVP is deprecated. Use `regs` \ 26a6ffddecSMax Shvetsovoption instead) 279db9c65aSQixiang Xuelse ifeq (${ARM_ROTPK_LOCATION}, devel_ecdsa) 28698e231dSMax Shvetsov CRYPTO_ALG=ec 299db9c65aSQixiang Xu ARM_ROTPK_LOCATION_ID = ARM_ROTPK_DEVEL_ECDSA_ID 30a6ffddecSMax Shvetsov ARM_ROTPK_HASH = plat/arm/board/common/rotpk/arm_rotpk_ecdsa_sha256.bin 31a6ffddecSMax Shvetsov$(eval $(call add_define_val,ARM_ROTPK_HASH,'"$(ARM_ROTPK_HASH)"')) 32a6ffddecSMax Shvetsov$(BUILD_PLAT)/bl2/arm_dev_rotpk.o : $(ARM_ROTPK_HASH) 33a6ffddecSMax Shvetsov$(warning Development keys support for FVP is deprecated. Use `regs` \ 34a6ffddecSMax Shvetsovoption instead) 3595cfd4adSJuan Castilloelse 3695cfd4adSJuan Castillo$(error "Unsupported ARM_ROTPK_LOCATION value") 3795cfd4adSJuan Castilloendif 38a6ffddecSMax Shvetsov 3995cfd4adSJuan Castillo$(eval $(call add_define,ARM_ROTPK_LOCATION_ID)) 4095cfd4adSJuan Castillo 41f2423792Slaurenw-armifeq (${ENABLE_RME}, 1) 42f2423792Slaurenw-armCOT := cca 43f2423792Slaurenw-armendif 44f2423792Slaurenw-arm 45a6ffddecSMax Shvetsov# Force generation of the new hash if ROT_KEY is specified 46a6ffddecSMax Shvetsovifdef ROT_KEY 47a6ffddecSMax Shvetsov HASH_PREREQUISITES = $(ROT_KEY) FORCE 48a6ffddecSMax Shvetsovelse 49a6ffddecSMax Shvetsov HASH_PREREQUISITES = $(ROT_KEY) 50a6ffddecSMax Shvetsovendif 51a6ffddecSMax Shvetsov 52a6ffddecSMax Shvetsov$(ARM_ROTPK_HASH) : $(HASH_PREREQUISITES) 53a6ffddecSMax Shvetsovifndef ROT_KEY 54a6ffddecSMax Shvetsov $(error Cannot generate hash: no ROT_KEY defined) 55a6ffddecSMax Shvetsovendif 56*e95abc4cSSalome Thirot ${OPENSSL_BIN_PATH}/openssl ${CRYPTO_ALG} -in $< -pubout -outform DER | \ 57*e95abc4cSSalome Thirot ${OPENSSL_BIN_PATH}/openssl dgst -sha256 -binary > $@ 58a6ffddecSMax Shvetsov 5948279d52SJuan Castillo# Certificate NV-Counters. Use values corresponding to tied off values in 6048279d52SJuan Castillo# ARM development platforms 6148279d52SJuan CastilloTFW_NVCTR_VAL ?= 31 6248279d52SJuan CastilloNTFW_NVCTR_VAL ?= 223 63f143cafeSSoby Mathewelse 64f143cafeSSoby Mathew# Certificate NV-Counters when CryptoCell is integrated. For development 65f143cafeSSoby Mathew# platforms we set the counter to first valid value. 66f143cafeSSoby MathewTFW_NVCTR_VAL ?= 0 67f143cafeSSoby MathewNTFW_NVCTR_VAL ?= 0 68f143cafeSSoby Mathewendif 69a6ffddecSMax ShvetsovBL1_SOURCES += plat/arm/board/common/board_arm_trusted_boot.c \ 70a6ffddecSMax Shvetsov plat/arm/board/common/rotpk/arm_dev_rotpk.S 71a6ffddecSMax ShvetsovBL2_SOURCES += plat/arm/board/common/board_arm_trusted_boot.c \ 72a6ffddecSMax Shvetsov plat/arm/board/common/rotpk/arm_dev_rotpk.S 73a6ffddecSMax Shvetsov 741035a706SSandrine Bailleux# Allows platform code to provide implementation variants depending on the 751035a706SSandrine Bailleux# selected chain of trust. 761035a706SSandrine Bailleux$(eval $(call add_define,ARM_COT_${COT})) 771035a706SSandrine Bailleux 781035a706SSandrine Bailleuxifeq (${COT},dualroot) 791035a706SSandrine Bailleux# Platform Root of Trust key files. 801035a706SSandrine BailleuxARM_PROT_KEY := plat/arm/board/common/protpk/arm_protprivk_rsa.pem 811035a706SSandrine BailleuxARM_PROTPK_HASH := plat/arm/board/common/protpk/arm_protpk_rsa_sha256.bin 821035a706SSandrine Bailleux 831035a706SSandrine Bailleux# Provide the private key to cert_create tool. It needs it to sign the images. 841035a706SSandrine BailleuxPROT_KEY := ${ARM_PROT_KEY} 851035a706SSandrine Bailleux 861035a706SSandrine Bailleux$(eval $(call add_define_val,ARM_PROTPK_HASH,'"$(ARM_PROTPK_HASH)"')) 871035a706SSandrine Bailleux 881035a706SSandrine BailleuxBL1_SOURCES += plat/arm/board/common/protpk/arm_dev_protpk.S 891035a706SSandrine BailleuxBL2_SOURCES += plat/arm/board/common/protpk/arm_dev_protpk.S 901035a706SSandrine Bailleux 911035a706SSandrine Bailleux$(BUILD_PLAT)/bl1/arm_dev_protpk.o: $(ARM_PROTPK_HASH) 921035a706SSandrine Bailleux$(BUILD_PLAT)/bl2/arm_dev_protpk.o: $(ARM_PROTPK_HASH) 931035a706SSandrine Bailleuxendif 941035a706SSandrine Bailleux 95f2423792Slaurenw-armifeq (${COT},cca) 96f2423792Slaurenw-arm# Platform and Secure World Root of Trust key files. 97f2423792Slaurenw-armARM_PROT_KEY := plat/arm/board/common/protpk/arm_protprivk_rsa.pem 98f2423792Slaurenw-armARM_PROTPK_HASH := plat/arm/board/common/protpk/arm_protpk_rsa_sha256.bin 99f2423792Slaurenw-armARM_SWD_ROT_KEY := plat/arm/board/common/swd_rotpk/arm_swd_rotprivk_rsa.pem 100f2423792Slaurenw-armARM_SWD_ROTPK_HASH := plat/arm/board/common/swd_rotpk/arm_swd_rotpk_rsa_sha256.bin 101f2423792Slaurenw-arm 102f2423792Slaurenw-arm# Provide the private keys to cert_create tool. It needs them to sign the images. 103f2423792Slaurenw-armPROT_KEY := ${ARM_PROT_KEY} 104f2423792Slaurenw-armSWD_ROT_KEY := ${ARM_SWD_ROT_KEY} 105f2423792Slaurenw-arm 106f2423792Slaurenw-arm$(eval $(call add_define_val,ARM_PROTPK_HASH,'"$(ARM_PROTPK_HASH)"')) 107f2423792Slaurenw-arm$(eval $(call add_define_val,ARM_SWD_ROTPK_HASH,'"$(ARM_SWD_ROTPK_HASH)"')) 108f2423792Slaurenw-arm 109f2423792Slaurenw-armBL1_SOURCES += plat/arm/board/common/protpk/arm_dev_protpk.S \ 110f2423792Slaurenw-arm plat/arm/board/common/swd_rotpk/arm_dev_swd_rotpk.S 111f2423792Slaurenw-armBL2_SOURCES += plat/arm/board/common/protpk/arm_dev_protpk.S \ 112f2423792Slaurenw-arm plat/arm/board/common/swd_rotpk/arm_dev_swd_rotpk.S 113f2423792Slaurenw-arm 114f2423792Slaurenw-arm$(BUILD_PLAT)/bl1/arm_dev_protpk.o: $(ARM_PROTPK_HASH) 115f2423792Slaurenw-arm$(BUILD_PLAT)/bl1/arm_dev_swd_rotpk.o: $(ARM_SWD_ROTPK_HASH) 116f2423792Slaurenw-arm$(BUILD_PLAT)/bl2/arm_dev_protpk.o: $(ARM_PROTPK_HASH) 117f2423792Slaurenw-arm$(BUILD_PLAT)/bl2/arm_dev_swd_rotpk.o: $(ARM_SWD_ROTPK_HASH) 118f2423792Slaurenw-armendif 119f2423792Slaurenw-arm 12095cfd4adSJuan Castilloendif 121