1ce2b1ec6SManish Pandey#!/usr/bin/python3 204e7f808SJ-Alves# Copyright (c) 2020-2024, Arm Limited. All rights reserved. 3ce2b1ec6SManish Pandey# 4ce2b1ec6SManish Pandey# SPDX-License-Identifier: BSD-3-Clause 5ce2b1ec6SManish Pandey 6ce2b1ec6SManish Pandey""" 7ce2b1ec6SManish PandeyThis script is invoked by Make system and generates secure partition makefile. 8ce2b1ec6SManish PandeyIt expects platform provided secure partition layout file which contains list 9ce2b1ec6SManish Pandeyof Secure Partition Images and Partition manifests(PM). 10ce2b1ec6SManish PandeyLayout file can exist outside of TF-A tree and the paths of Image and PM files 11ce2b1ec6SManish Pandeymust be relative to it. 12ce2b1ec6SManish Pandey 13ce2b1ec6SManish PandeyThis script parses the layout file and generates a make file which updates 1407c44475SManish PandeyFDT_SOURCES, FIP_ARGS, CRT_ARGS and SPTOOL_ARGS which are used in later build 1507c44475SManish Pandeysteps. 165ac60ea1SImre KisIf the SP entry in the layout file has a "uuid" field the scripts gets the UUID 175ac60ea1SImre Kisfrom there, otherwise it parses the associated partition manifest and extracts 185ac60ea1SImre Kisthe UUID from there. 19ce2b1ec6SManish Pandey 20ce2b1ec6SManish Pandeyparam1: Generated mk file "sp_gen.mk" 21ce2b1ec6SManish Pandeyparam2: "SP_LAYOUT_FILE", json file containing platform provided information 22ce2b1ec6SManish Pandeyparam3: plat out directory 231e7528ecSRuari Phippsparam4: CoT parameter 2420629b31SKarl Meakinparam5: Generated dts file "sp_list_fragment.dts" 25ce2b1ec6SManish Pandey 26ce2b1ec6SManish PandeyGenerated "sp_gen.mk" file contains triplet of following information for each 27ce2b1ec6SManish PandeySecure Partition entry 28ce2b1ec6SManish Pandey FDT_SOURCES += sp1.dts 29ce2b1ec6SManish Pandey SPTOOL_ARGS += -i sp1.bin:sp1.dtb -o sp1.pkg 30ce2b1ec6SManish Pandey FIP_ARGS += --blob uuid=XXXXX-XXX...,file=sp1.pkg 3107c44475SManish Pandey CRT_ARGS += --sp-pkg1 sp1.pkg 32ce2b1ec6SManish Pandey 33ce2b1ec6SManish PandeyA typical SP_LAYOUT_FILE file will look like 34ce2b1ec6SManish Pandey{ 35ce2b1ec6SManish Pandey "SP1" : { 36ce2b1ec6SManish Pandey "image": "sp1.bin", 37ce2b1ec6SManish Pandey "pm": "test/sp1.dts" 38ce2b1ec6SManish Pandey }, 39ce2b1ec6SManish Pandey 40ce2b1ec6SManish Pandey "SP2" : { 41ce2b1ec6SManish Pandey "image": "sp2.bin", 425ac60ea1SImre Kis "pm": "test/sp2.dts", 435ac60ea1SImre Kis "uuid": "1b1820fe-48f7-4175-8999-d51da00b7c9f" 44ce2b1ec6SManish Pandey } 45ce2b1ec6SManish Pandey 46ce2b1ec6SManish Pandey ... 47ce2b1ec6SManish Pandey} 48ce2b1ec6SManish Pandey 49ce2b1ec6SManish Pandey""" 50ce2b1ec6SManish Pandeyimport json 51ce2b1ec6SManish Pandeyimport os 52ce2b1ec6SManish Pandeyimport re 53ce2b1ec6SManish Pandeyimport sys 54ce2b1ec6SManish Pandeyimport uuid 55a96a07bfSJ-Alvesfrom spactions import SpSetupActions 56ce2b1ec6SManish Pandey 571e7528ecSRuari PhippsMAX_SP = 8 58a96a07bfSJ-AlvesUUID_LEN = 4 59ce2b1ec6SManish Pandey 60a96a07bfSJ-Alves# Some helper functions to access args propagated to the action functions in 61a96a07bfSJ-Alves# SpSetupActions framework. 62a96a07bfSJ-Alvesdef check_sp_mk_gen(args :dict): 63a96a07bfSJ-Alves if "sp_gen_mk" not in args.keys(): 64a96a07bfSJ-Alves raise Exception(f"Path to file sp_gen.mk needs to be in 'args'.") 651e7528ecSRuari Phipps 66a96a07bfSJ-Alvesdef check_out_dir(args :dict): 67a96a07bfSJ-Alves if "out_dir" not in args.keys() or not os.path.isdir(args["out_dir"]): 68a96a07bfSJ-Alves raise Exception("Define output folder with \'out_dir\' key.") 691e7528ecSRuari Phipps 70a96a07bfSJ-Alvesdef check_sp_layout_dir(args :dict): 71a96a07bfSJ-Alves if "sp_layout_dir" not in args.keys() or not os.path.isdir(args["sp_layout_dir"]): 72a96a07bfSJ-Alves raise Exception("Define output folder with \'sp_layout_dir\' key.") 73a96a07bfSJ-Alves 74a96a07bfSJ-Alvesdef write_to_sp_mk_gen(content, args :dict): 75a96a07bfSJ-Alves check_sp_mk_gen(args) 76a96a07bfSJ-Alves with open(args["sp_gen_mk"], "a") as f: 77a96a07bfSJ-Alves f.write(f"{content}\n") 78a96a07bfSJ-Alves 79a96a07bfSJ-Alvesdef get_sp_manifest_full_path(sp_node, args :dict): 80a96a07bfSJ-Alves check_sp_layout_dir(args) 81a96a07bfSJ-Alves return os.path.join(args["sp_layout_dir"], get_file_from_layout(sp_node["pm"])) 82a96a07bfSJ-Alves 83a96a07bfSJ-Alvesdef get_sp_img_full_path(sp_node, args :dict): 84a96a07bfSJ-Alves check_sp_layout_dir(args) 85a96a07bfSJ-Alves return os.path.join(args["sp_layout_dir"], get_file_from_layout(sp_node["image"])) 86a96a07bfSJ-Alves 87*0fe374efSJ-Alvesdef get_size(sp_node): 88*0fe374efSJ-Alves if not "size" in sp_node: 89*0fe374efSJ-Alves print("WARNING: default image size 0x100000") 90*0fe374efSJ-Alves return 0x100000 91*0fe374efSJ-Alves 92*0fe374efSJ-Alves # Try if it was a decimal value. 93*0fe374efSJ-Alves try: 94*0fe374efSJ-Alves return int(sp_node["size"]) 95*0fe374efSJ-Alves except ValueError: 96*0fe374efSJ-Alves print("WARNING: trying to parse base 16 size") 97*0fe374efSJ-Alves # Try if it is of base 16 98*0fe374efSJ-Alves return int(sp_node["size"], 16) 99*0fe374efSJ-Alves 100a96a07bfSJ-Alvesdef get_sp_pkg(sp, args :dict): 101a96a07bfSJ-Alves check_out_dir(args) 102a96a07bfSJ-Alves return os.path.join(args["out_dir"], f"{sp}.pkg") 103a96a07bfSJ-Alves 104a96a07bfSJ-Alvesdef is_line_in_sp_gen(line, args :dict): 105a96a07bfSJ-Alves with open(args["sp_gen_mk"], "r") as f: 106a96a07bfSJ-Alves sppkg_rule = [l for l in f if line in l] 1071a28f290SJ-Alves return len(sppkg_rule) != 0 108a96a07bfSJ-Alves 109a96a07bfSJ-Alvesdef get_file_from_layout(node): 110a96a07bfSJ-Alves ''' Helper to fetch a file path from sp_layout.json. ''' 111a96a07bfSJ-Alves if type(node) is dict and "file" in node.keys(): 112a96a07bfSJ-Alves return node["file"] 113a96a07bfSJ-Alves return node 114a96a07bfSJ-Alves 115a96a07bfSJ-Alvesdef get_offset_from_layout(node): 116a96a07bfSJ-Alves ''' Helper to fetch an offset from sp_layout.json. ''' 117a96a07bfSJ-Alves if type(node) is dict and "offset" in node.keys(): 118a96a07bfSJ-Alves return int(node["offset"], 0) 119a96a07bfSJ-Alves return None 120a96a07bfSJ-Alves 121a96a07bfSJ-Alvesdef get_image_offset(node): 122a96a07bfSJ-Alves ''' Helper to fetch image offset from sp_layout.json ''' 123a96a07bfSJ-Alves return get_offset_from_layout(node["image"]) 124a96a07bfSJ-Alves 125a96a07bfSJ-Alvesdef get_pm_offset(node): 126a96a07bfSJ-Alves ''' Helper to fetch pm offset from sp_layout.json ''' 127a96a07bfSJ-Alves return get_offset_from_layout(node["pm"]) 128a96a07bfSJ-Alves 12920629b31SKarl Meakindef get_uuid(sp_layout, sp, args :dict): 13020629b31SKarl Meakin ''' Helper to fetch uuid from pm file listed in sp_layout.json''' 13120629b31SKarl Meakin if "uuid" in sp_layout[sp]: 13220629b31SKarl Meakin # Extract the UUID from the JSON file if the SP entry has a 'uuid' field 13320629b31SKarl Meakin uuid_std = uuid.UUID(sp_layout[sp]['uuid']) 13420629b31SKarl Meakin else: 13520629b31SKarl Meakin with open(get_sp_manifest_full_path(sp_layout[sp], args), "r") as pm_f: 13620629b31SKarl Meakin uuid_lines = [l for l in pm_f if 'uuid' in l] 13720629b31SKarl Meakin assert(len(uuid_lines) == 1) 13820629b31SKarl Meakin # The uuid field in SP manifest is the little endian representation 13920629b31SKarl Meakin # mapped to arguments as described in SMCCC section 5.3. 14020629b31SKarl Meakin # Convert each unsigned integer value to a big endian representation 14120629b31SKarl Meakin # required by fiptool. 14220629b31SKarl Meakin uuid_parsed = re.findall("0x([0-9a-f]+)", uuid_lines[0]) 14320629b31SKarl Meakin y = list(map(bytearray.fromhex, uuid_parsed)) 14420629b31SKarl Meakin z = [int.from_bytes(i, byteorder='little', signed=False) for i in y] 14520629b31SKarl Meakin uuid_std = uuid.UUID(f'{z[0]:08x}{z[1]:08x}{z[2]:08x}{z[3]:08x}') 14620629b31SKarl Meakin return uuid_std 14720629b31SKarl Meakin 14820629b31SKarl Meakindef get_load_address(sp_layout, sp, args :dict): 14920629b31SKarl Meakin ''' Helper to fetch load-address from pm file listed in sp_layout.json''' 15020629b31SKarl Meakin with open(get_sp_manifest_full_path(sp_layout[sp], args), "r") as pm_f: 15120629b31SKarl Meakin load_address_lines = [l for l in pm_f if 'load-address' in l] 15204e7f808SJ-Alves 1536a3225e2SJ-Alves if len(load_address_lines) != 1: 15404e7f808SJ-Alves return None 15504e7f808SJ-Alves 15620629b31SKarl Meakin load_address_parsed = re.search("(0x[0-9a-f]+)", load_address_lines[0]) 15720629b31SKarl Meakin return load_address_parsed.group(0) 15820629b31SKarl Meakin 159a96a07bfSJ-Alves@SpSetupActions.sp_action(global_action=True) 160a96a07bfSJ-Alvesdef check_max_sps(sp_layout, _, args :dict): 161a96a07bfSJ-Alves ''' Check validate the maximum number of SPs is respected. ''' 162a96a07bfSJ-Alves if len(sp_layout.keys()) > MAX_SP: 163a96a07bfSJ-Alves raise Exception(f"Too many SPs in SP layout file. Max: {MAX_SP}") 164a96a07bfSJ-Alves return args 165a96a07bfSJ-Alves 166a96a07bfSJ-Alves@SpSetupActions.sp_action 167a96a07bfSJ-Alvesdef gen_fdt_sources(sp_layout, sp, args :dict): 168a96a07bfSJ-Alves ''' Generate FDT_SOURCES values for a given SP. ''' 169a96a07bfSJ-Alves manifest_path = get_sp_manifest_full_path(sp_layout[sp], args) 170a96a07bfSJ-Alves write_to_sp_mk_gen(f"FDT_SOURCES += {manifest_path}", args) 171a96a07bfSJ-Alves return args 172a96a07bfSJ-Alves 173*0fe374efSJ-Alvesdef generate_sp_pkg(sp_node, pkg, sp_img, sp_dtb): 174*0fe374efSJ-Alves ''' Generates the rule in case SP is to be generated in an SP Pkg. ''' 175*0fe374efSJ-Alves pm_offset = get_pm_offset(sp_node) 176*0fe374efSJ-Alves sptool_args = f" --pm-offset {pm_offset}" if pm_offset is not None else "" 177*0fe374efSJ-Alves image_offset = get_image_offset(sp_node) 178*0fe374efSJ-Alves sptool_args += f" --img-offset {image_offset}" if image_offset is not None else "" 179*0fe374efSJ-Alves sptool_args += f" -o {pkg}" 180*0fe374efSJ-Alves return f''' 181*0fe374efSJ-Alves{pkg}: {sp_dtb} {sp_img} 182*0fe374efSJ-Alves\t$(Q)echo Generating {pkg} 183*0fe374efSJ-Alves\t$(Q)$(PYTHON) $(SPTOOL) -i {sp_img}:{sp_dtb} {sptool_args} 184*0fe374efSJ-Alves''' 185*0fe374efSJ-Alves 186*0fe374efSJ-Alvesdef generate_tl_pkg(sp_node, pkg, sp_img, sp_dtb, hob_path = None): 187*0fe374efSJ-Alves ''' Generate make rules for a Transfer List type package. ''' 188*0fe374efSJ-Alves # TE Type for the FF-A manifest. 189*0fe374efSJ-Alves TE_FFA_MANIFEST = 0x106 190*0fe374efSJ-Alves # TE Type for the SP binary. 191*0fe374efSJ-Alves TE_SP_BINARY = 0x103 192*0fe374efSJ-Alves # TE Type for the HOB List. 193*0fe374efSJ-Alves TE_HOB_LIST = 0x3 194*0fe374efSJ-Alves tlc_add_hob = f"\t$(Q)poetry run tlc add --entry {TE_HOB_LIST} {hob_path} {pkg}" if hob_path is not None else "" 195*0fe374efSJ-Alves return f''' 196*0fe374efSJ-Alves{pkg}: {sp_dtb} {sp_img} 197*0fe374efSJ-Alves\t$(Q)echo Generating {pkg} 198*0fe374efSJ-Alves\t$(Q)$(TLCTOOL) create --size {get_size(sp_node)} --entry {TE_FFA_MANIFEST} {sp_dtb} {pkg} --align 12 199*0fe374efSJ-Alves\t$(Q)$(TLCTOOL) add --entry {TE_SP_BINARY} {sp_img} {pkg} 200*0fe374efSJ-Alves''' 201*0fe374efSJ-Alves 202a96a07bfSJ-Alves@SpSetupActions.sp_action 203*0fe374efSJ-Alvesdef gen_partition_pkg(sp_layout, sp, args :dict): 204822c7279SJ-Alves ''' Generate Sp Pkgs rules. ''' 205*0fe374efSJ-Alves pkg = get_sp_pkg(sp, args) 206*0fe374efSJ-Alves 207822c7279SJ-Alves sp_dtb_name = os.path.basename(get_file_from_layout(sp_layout[sp]["pm"]))[:-1] + "b" 208a96a07bfSJ-Alves sp_dtb = os.path.join(args["out_dir"], f"fdts/{sp_dtb_name}") 2094daeaf34SJens Wiklander sp_img = get_sp_img_full_path(sp_layout[sp], args) 210822c7279SJ-Alves 211822c7279SJ-Alves # Do not generate rule if already there. 212*0fe374efSJ-Alves if is_line_in_sp_gen(f'{pkg}:', args): 213822c7279SJ-Alves return args 214822c7279SJ-Alves 215*0fe374efSJ-Alves # This should include all packages of all kinds. 216*0fe374efSJ-Alves write_to_sp_mk_gen(f"SP_PKGS += {pkg}\n", args) 217*0fe374efSJ-Alves package_type = sp_layout[sp]["package"] if "package" in sp_layout[sp] else "sp_pkg" 218*0fe374efSJ-Alves 219*0fe374efSJ-Alves if package_type == "sp_pkg": 220*0fe374efSJ-Alves partition_pkg_rule = generate_sp_pkg(sp_layout[sp], pkg, sp_img, sp_dtb) 221*0fe374efSJ-Alves elif package_type == "tl_pkg": 222*0fe374efSJ-Alves partition_pkg_rule = generate_tl_pkg(sp_layout[sp], pkg, sp_img, sp_dtb) 223*0fe374efSJ-Alves else: 224*0fe374efSJ-Alves raise ValueError(f"Specified invalid pkg type {package_type}") 225*0fe374efSJ-Alves 226*0fe374efSJ-Alves write_to_sp_mk_gen(partition_pkg_rule, args) 227a96a07bfSJ-Alves return args 228a96a07bfSJ-Alves 229a96a07bfSJ-Alves@SpSetupActions.sp_action(global_action=True, exec_order=1) 230a96a07bfSJ-Alvesdef check_dualroot(sp_layout, _, args :dict): 231a96a07bfSJ-Alves ''' Validate the amount of SPs from SiP and Platform owners. ''' 232a96a07bfSJ-Alves if not args.get("dualroot"): 233a96a07bfSJ-Alves return args 234a96a07bfSJ-Alves args["split"] = int(MAX_SP / 2) 235a96a07bfSJ-Alves owners = [sp_layout[sp].get("owner") for sp in sp_layout] 236a96a07bfSJ-Alves args["plat_max_count"] = owners.count("Plat") 237*0fe374efSJ-Alves 238a96a07bfSJ-Alves # If it is owned by the platform owner, it is assigned to the SiP. 239a96a07bfSJ-Alves args["sip_max_count"] = len(sp_layout.keys()) - args["plat_max_count"] 240a96a07bfSJ-Alves if args["sip_max_count"] > args["split"] or args["sip_max_count"] > args["split"]: 241a96a07bfSJ-Alves print(f"WARN: SiP Secure Partitions should not be more than {args['split']}") 242a96a07bfSJ-Alves # Counters for gen_crt_args. 243a96a07bfSJ-Alves args["sip_count"] = 1 244a96a07bfSJ-Alves args["plat_count"] = 1 245a96a07bfSJ-Alves return args 246a96a07bfSJ-Alves 247a96a07bfSJ-Alves@SpSetupActions.sp_action 248a96a07bfSJ-Alvesdef gen_crt_args(sp_layout, sp, args :dict): 249a96a07bfSJ-Alves ''' Append CRT_ARGS. ''' 250a96a07bfSJ-Alves # If "dualroot" is configured, 'sp_pkg_idx' depends on whether the SP is owned 251a96a07bfSJ-Alves # by the "SiP" or the "Plat". 252a96a07bfSJ-Alves if args.get("dualroot"): 253a96a07bfSJ-Alves # If the owner is not specified as "Plat", default to "SiP". 254a96a07bfSJ-Alves if sp_layout[sp].get("owner") == "Plat": 255a96a07bfSJ-Alves if args["plat_count"] > args["plat_max_count"]: 256a96a07bfSJ-Alves raise ValueError("plat_count can't surpass plat_max_count in args.") 257a96a07bfSJ-Alves sp_pkg_idx = args["plat_count"] + args["split"] 258a96a07bfSJ-Alves args["plat_count"] += 1 2591e7528ecSRuari Phipps else: 260a96a07bfSJ-Alves if args["sip_count"] > args["sip_max_count"]: 261a96a07bfSJ-Alves raise ValueError("sip_count can't surpass sip_max_count in args.") 262a96a07bfSJ-Alves sp_pkg_idx = args["sip_count"] 263a96a07bfSJ-Alves args["sip_count"] += 1 264a96a07bfSJ-Alves else: 265a96a07bfSJ-Alves sp_pkg_idx = [k for k in sp_layout.keys()].index(sp) + 1 266a96a07bfSJ-Alves write_to_sp_mk_gen(f"CRT_ARGS += --sp-pkg{sp_pkg_idx} {get_sp_pkg(sp, args)}\n", args) 267a96a07bfSJ-Alves return args 2681e7528ecSRuari Phipps 269a96a07bfSJ-Alves@SpSetupActions.sp_action 270a96a07bfSJ-Alvesdef gen_fiptool_args(sp_layout, sp, args :dict): 271a96a07bfSJ-Alves ''' Generate arguments for the FIP Tool. ''' 27220629b31SKarl Meakin uuid_std = get_uuid(sp_layout, sp, args) 273a96a07bfSJ-Alves write_to_sp_mk_gen(f"FIP_ARGS += --blob uuid={str(uuid_std)},file={get_sp_pkg(sp, args)}\n", args) 274a96a07bfSJ-Alves return args 275ce2b1ec6SManish Pandey 27620629b31SKarl Meakin@SpSetupActions.sp_action 27720629b31SKarl Meakindef gen_fconf_fragment(sp_layout, sp, args: dict): 27820629b31SKarl Meakin ''' Generate the fconf fragment file''' 27920629b31SKarl Meakin with open(args["fconf_fragment"], "a") as f: 28020629b31SKarl Meakin uuid = get_uuid(sp_layout, sp, args) 28120629b31SKarl Meakin owner = "Plat" if sp_layout[sp].get("owner") == "Plat" else "SiP" 28220629b31SKarl Meakin 28320629b31SKarl Meakin if "physical-load-address" in sp_layout[sp].keys(): 28420629b31SKarl Meakin load_address = sp_layout[sp]["physical-load-address"] 28520629b31SKarl Meakin else: 28620629b31SKarl Meakin load_address = get_load_address(sp_layout, sp, args) 28720629b31SKarl Meakin 28804e7f808SJ-Alves if load_address is not None: 28920629b31SKarl Meakin f.write( 29020629b31SKarl Meakinf'''\ 29120629b31SKarl Meakin{sp} {{ 29220629b31SKarl Meakin uuid = "{uuid}"; 29320629b31SKarl Meakin load-address = <{load_address}>; 29420629b31SKarl Meakin owner = "{owner}"; 29520629b31SKarl Meakin}}; 29620629b31SKarl Meakin 29720629b31SKarl Meakin''') 29804e7f808SJ-Alves else: 29904e7f808SJ-Alves print("Warning: No load-address was found in the SP manifest.") 30004e7f808SJ-Alves 30120629b31SKarl Meakin return args 30220629b31SKarl Meakin 303a96a07bfSJ-Alvesdef init_sp_actions(sys): 304a96a07bfSJ-Alves # Initialize arguments for the SP actions framework 305a96a07bfSJ-Alves args = {} 306a96a07bfSJ-Alves args["sp_gen_mk"] = os.path.abspath(sys.argv[1]) 30720629b31SKarl Meakin sp_layout_file = os.path.abspath(sys.argv[2]) 308a96a07bfSJ-Alves args["sp_layout_dir"] = os.path.dirname(sp_layout_file) 309a96a07bfSJ-Alves args["out_dir"] = os.path.abspath(sys.argv[3]) 310a96a07bfSJ-Alves args["dualroot"] = sys.argv[4] == "dualroot" 31120629b31SKarl Meakin args["fconf_fragment"] = os.path.abspath(sys.argv[5]) 31220629b31SKarl Meakin 31320629b31SKarl Meakin 31420629b31SKarl Meakin with open(sp_layout_file) as json_file: 31520629b31SKarl Meakin sp_layout = json.load(json_file) 316a96a07bfSJ-Alves #Clear content of file "sp_gen.mk". 317a96a07bfSJ-Alves with open(args["sp_gen_mk"], "w"): 318a96a07bfSJ-Alves None 31920629b31SKarl Meakin #Clear content of file "fconf_fragment". 32020629b31SKarl Meakin with open(args["fconf_fragment"], "w"): 32120629b31SKarl Meakin None 32220629b31SKarl Meakin 323a96a07bfSJ-Alves return args, sp_layout 32407c44475SManish Pandey 325a96a07bfSJ-Alvesif __name__ == "__main__": 326a96a07bfSJ-Alves args, sp_layout = init_sp_actions(sys) 327a96a07bfSJ-Alves SpSetupActions.run_actions(sp_layout, args) 328