137a7bc39SJason Zhu /* 237a7bc39SJason Zhu * Copyright (C) 2017 The Android Open Source Project 337a7bc39SJason Zhu * 437a7bc39SJason Zhu * Permission is hereby granted, free of charge, to any person 537a7bc39SJason Zhu * obtaining a copy of this software and associated documentation 637a7bc39SJason Zhu * files (the "Software"), to deal in the Software without 737a7bc39SJason Zhu * restriction, including without limitation the rights to use, copy, 837a7bc39SJason Zhu * modify, merge, publish, distribute, sublicense, and/or sell copies 937a7bc39SJason Zhu * of the Software, and to permit persons to whom the Software is 1037a7bc39SJason Zhu * furnished to do so, subject to the following conditions: 1137a7bc39SJason Zhu * 1237a7bc39SJason Zhu * The above copyright notice and this permission notice shall be 1337a7bc39SJason Zhu * included in all copies or substantial portions of the Software. 1437a7bc39SJason Zhu * 1537a7bc39SJason Zhu * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, 1637a7bc39SJason Zhu * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF 1737a7bc39SJason Zhu * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND 1837a7bc39SJason Zhu * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS 1937a7bc39SJason Zhu * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN 2037a7bc39SJason Zhu * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN 2137a7bc39SJason Zhu * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE 2237a7bc39SJason Zhu * SOFTWARE. 2337a7bc39SJason Zhu */ 2437a7bc39SJason Zhu 2537a7bc39SJason Zhu #include <common.h> 2637a7bc39SJason Zhu #include <image.h> 2737a7bc39SJason Zhu #include <android_image.h> 2837a7bc39SJason Zhu #include <malloc.h> 2937a7bc39SJason Zhu #include <mapmem.h> 3037a7bc39SJason Zhu #include <errno.h> 3137a7bc39SJason Zhu #include <command.h> 3237a7bc39SJason Zhu #include <mmc.h> 3337a7bc39SJason Zhu #include <blk.h> 3437a7bc39SJason Zhu #include <part.h> 3516a62313SJason Zhu #include <stdio.h> 3637a7bc39SJason Zhu #include <android_avb/avb_ops_user.h> 3737a7bc39SJason Zhu #include <android_avb/libavb_ab.h> 3837a7bc39SJason Zhu #include <android_avb/avb_atx_validate.h> 3937a7bc39SJason Zhu #include <android_avb/avb_atx_types.h> 4037a7bc39SJason Zhu #include <optee_include/OpteeClientInterface.h> 4137a7bc39SJason Zhu #include <optee_include/tee_api_defines.h> 4237a7bc39SJason Zhu #include <android_avb/avb_vbmeta_image.h> 4337a7bc39SJason Zhu #include <android_avb/avb_atx_validate.h> 44459bc933SJason Zhu #include <boot_rkimg.h> 4537a7bc39SJason Zhu 4637a7bc39SJason Zhu static void byte_to_block(int64_t *offset, 4737a7bc39SJason Zhu size_t *num_bytes, 4837a7bc39SJason Zhu lbaint_t *offset_blk, 4937a7bc39SJason Zhu lbaint_t *blkcnt) 5037a7bc39SJason Zhu { 5137a7bc39SJason Zhu *offset_blk = (lbaint_t)(*offset / 512); 5237a7bc39SJason Zhu if (*num_bytes % 512 == 0) { 537c1937d6SJason Zhu if (*offset % 512 == 0) 5437a7bc39SJason Zhu *blkcnt = (lbaint_t)(*num_bytes / 512); 557c1937d6SJason Zhu else 5637a7bc39SJason Zhu *blkcnt = (lbaint_t)(*num_bytes / 512) + 1; 5737a7bc39SJason Zhu } else { 5837a7bc39SJason Zhu if (*offset % 512 == 0) { 5937a7bc39SJason Zhu *blkcnt = (lbaint_t)(*num_bytes / 512) + 1; 6037a7bc39SJason Zhu } else { 6137a7bc39SJason Zhu if ((*offset % 512) + (*num_bytes % 512) < 512 || 6237a7bc39SJason Zhu (*offset % 512) + (*num_bytes % 512) == 512) { 6337a7bc39SJason Zhu *blkcnt = (lbaint_t)(*num_bytes / 512) + 1; 6437a7bc39SJason Zhu } else { 6537a7bc39SJason Zhu *blkcnt = (lbaint_t)(*num_bytes / 512) + 2; 6637a7bc39SJason Zhu } 6737a7bc39SJason Zhu } 6837a7bc39SJason Zhu } 6937a7bc39SJason Zhu } 7037a7bc39SJason Zhu 7116a62313SJason Zhu static AvbIOResult get_size_of_partition(AvbOps *ops, 7216a62313SJason Zhu const char *partition, 7316a62313SJason Zhu uint64_t *out_size_in_bytes) 7416a62313SJason Zhu { 7516a62313SJason Zhu struct blk_desc *dev_desc; 7616a62313SJason Zhu disk_partition_t part_info; 7716a62313SJason Zhu 7816a62313SJason Zhu dev_desc = rockchip_get_bootdev(); 7916a62313SJason Zhu if (!dev_desc) { 8016a62313SJason Zhu printf("%s: Could not find device\n", __func__); 8116a62313SJason Zhu return AVB_IO_RESULT_ERROR_NO_SUCH_PARTITION; 8216a62313SJason Zhu } 8316a62313SJason Zhu 84*28317110SJoseph Chen if (part_get_info_by_name(dev_desc, partition, &part_info) < 0) 8516a62313SJason Zhu return AVB_IO_RESULT_ERROR_NO_SUCH_PARTITION; 86*28317110SJoseph Chen 8716a62313SJason Zhu *out_size_in_bytes = (part_info.size) * 512; 8816a62313SJason Zhu return AVB_IO_RESULT_OK; 8916a62313SJason Zhu } 9016a62313SJason Zhu 9137a7bc39SJason Zhu static AvbIOResult read_from_partition(AvbOps *ops, 9237a7bc39SJason Zhu const char *partition, 9337a7bc39SJason Zhu int64_t offset, 9437a7bc39SJason Zhu size_t num_bytes, 9537a7bc39SJason Zhu void *buffer, 9637a7bc39SJason Zhu size_t *out_num_read) 9737a7bc39SJason Zhu { 9837a7bc39SJason Zhu struct blk_desc *dev_desc; 9937a7bc39SJason Zhu lbaint_t offset_blk, blkcnt; 10037a7bc39SJason Zhu disk_partition_t part_info; 10116a62313SJason Zhu uint64_t partition_size; 10216a62313SJason Zhu 10316a62313SJason Zhu if (offset < 0) { 10416a62313SJason Zhu if (get_size_of_partition(ops, partition, &partition_size)) 10516a62313SJason Zhu return AVB_IO_RESULT_ERROR_NO_SUCH_PARTITION; 10616a62313SJason Zhu 10716a62313SJason Zhu if (-offset > partition_size) 10816a62313SJason Zhu return AVB_IO_RESULT_ERROR_RANGE_OUTSIDE_PARTITION; 10916a62313SJason Zhu 11016a62313SJason Zhu offset = partition_size - (-offset); 11116a62313SJason Zhu } 11237a7bc39SJason Zhu 11337a7bc39SJason Zhu byte_to_block(&offset, &num_bytes, &offset_blk, &blkcnt); 114459bc933SJason Zhu dev_desc = rockchip_get_bootdev(); 11537a7bc39SJason Zhu if (!dev_desc) { 116459bc933SJason Zhu printf("%s: Could not find device\n", __func__); 11737a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_NO_SUCH_PARTITION; 11837a7bc39SJason Zhu } 11937a7bc39SJason Zhu 12037a7bc39SJason Zhu if (part_get_info_by_name(dev_desc, partition, &part_info) < 0) { 12137a7bc39SJason Zhu printf("Could not find \"%s\" partition\n", partition); 12237a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_NO_SUCH_PARTITION; 12337a7bc39SJason Zhu } 12437a7bc39SJason Zhu 12537a7bc39SJason Zhu if ((offset % 512 == 0) && (num_bytes % 512 == 0)) { 1267c1937d6SJason Zhu blk_dread(dev_desc, part_info.start + offset_blk, 1277c1937d6SJason Zhu blkcnt, buffer); 12837a7bc39SJason Zhu *out_num_read = blkcnt * 512; 12937a7bc39SJason Zhu } else { 13037a7bc39SJason Zhu char *buffer_temp; 1317c1937d6SJason Zhu 13237a7bc39SJason Zhu buffer_temp = malloc(512 * blkcnt); 1337c1937d6SJason Zhu if (!buffer_temp) { 13437a7bc39SJason Zhu printf("malloc error!\n"); 13537a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_OOM; 13637a7bc39SJason Zhu } 1377c1937d6SJason Zhu blk_dread(dev_desc, part_info.start + offset_blk, 1387c1937d6SJason Zhu blkcnt, buffer_temp); 13937a7bc39SJason Zhu memcpy(buffer, buffer_temp + (offset % 512), num_bytes); 14037a7bc39SJason Zhu *out_num_read = num_bytes; 14137a7bc39SJason Zhu free(buffer_temp); 14237a7bc39SJason Zhu } 14337a7bc39SJason Zhu 14437a7bc39SJason Zhu return AVB_IO_RESULT_OK; 14537a7bc39SJason Zhu } 14637a7bc39SJason Zhu 14737a7bc39SJason Zhu static AvbIOResult write_to_partition(AvbOps *ops, 14837a7bc39SJason Zhu const char *partition, 14937a7bc39SJason Zhu int64_t offset, 15037a7bc39SJason Zhu size_t num_bytes, 15137a7bc39SJason Zhu const void *buffer) 15237a7bc39SJason Zhu { 15337a7bc39SJason Zhu struct blk_desc *dev_desc; 15437a7bc39SJason Zhu char *buffer_temp; 15537a7bc39SJason Zhu disk_partition_t part_info; 15637a7bc39SJason Zhu lbaint_t offset_blk, blkcnt; 15737a7bc39SJason Zhu 15837a7bc39SJason Zhu byte_to_block(&offset, &num_bytes, &offset_blk, &blkcnt); 15937a7bc39SJason Zhu buffer_temp = malloc(512 * blkcnt); 1607c1937d6SJason Zhu if (!buffer_temp) { 16137a7bc39SJason Zhu printf("malloc error!\n"); 16237a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_OOM; 16337a7bc39SJason Zhu } 16437a7bc39SJason Zhu memset(buffer_temp, 0, 512 * blkcnt); 165459bc933SJason Zhu dev_desc = rockchip_get_bootdev(); 16637a7bc39SJason Zhu if (!dev_desc) { 167459bc933SJason Zhu printf("%s: Could not find device\n", __func__); 16837a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_NO_SUCH_PARTITION; 16937a7bc39SJason Zhu } 17037a7bc39SJason Zhu 17137a7bc39SJason Zhu if (part_get_info_by_name(dev_desc, partition, &part_info) < 0) { 17237a7bc39SJason Zhu printf("Could not find \"%s\" partition\n", partition); 17337a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_NO_SUCH_PARTITION; 17437a7bc39SJason Zhu } 17537a7bc39SJason Zhu 1767c1937d6SJason Zhu if ((offset % 512 != 0) && (num_bytes % 512) != 0) 1777c1937d6SJason Zhu blk_dread(dev_desc, part_info.start + offset_blk, 1787c1937d6SJason Zhu blkcnt, buffer_temp); 17937a7bc39SJason Zhu 18037a7bc39SJason Zhu memcpy(buffer_temp, buffer + (offset % 512), num_bytes); 18137a7bc39SJason Zhu blk_dwrite(dev_desc, part_info.start + offset_blk, blkcnt, buffer); 18237a7bc39SJason Zhu free(buffer_temp); 18337a7bc39SJason Zhu 18437a7bc39SJason Zhu return AVB_IO_RESULT_OK; 18537a7bc39SJason Zhu } 18637a7bc39SJason Zhu 1877c1937d6SJason Zhu static AvbIOResult 1887c1937d6SJason Zhu validate_vbmeta_public_key(AvbOps *ops, 18937a7bc39SJason Zhu const uint8_t *public_key_data, 19037a7bc39SJason Zhu size_t public_key_length, 19137a7bc39SJason Zhu const uint8_t *public_key_metadata, 19237a7bc39SJason Zhu size_t public_key_metadata_length, 19337a7bc39SJason Zhu bool *out_is_trusted) 19437a7bc39SJason Zhu { 195caed6b4fSJoseph Chen /* remain AVB_VBMETA_PUBLIC_KEY_VALIDATE to compatible legacy code */ 196caed6b4fSJoseph Chen #if defined(CONFIG_AVB_VBMETA_PUBLIC_KEY_VALIDATE) || \ 197caed6b4fSJoseph Chen defined(AVB_VBMETA_PUBLIC_KEY_VALIDATE) 1987c1937d6SJason Zhu if (out_is_trusted) { 19937a7bc39SJason Zhu avb_atx_validate_vbmeta_public_key(ops, 20037a7bc39SJason Zhu public_key_data, 20137a7bc39SJason Zhu public_key_length, 20237a7bc39SJason Zhu public_key_metadata, 20337a7bc39SJason Zhu public_key_metadata_length, 20437a7bc39SJason Zhu out_is_trusted); 20537a7bc39SJason Zhu } 20637a7bc39SJason Zhu #else 2077c1937d6SJason Zhu if (out_is_trusted) 20837a7bc39SJason Zhu *out_is_trusted = true; 20937a7bc39SJason Zhu #endif 21037a7bc39SJason Zhu return AVB_IO_RESULT_OK; 21137a7bc39SJason Zhu } 21237a7bc39SJason Zhu 21337a7bc39SJason Zhu static AvbIOResult read_rollback_index(AvbOps *ops, 21437a7bc39SJason Zhu size_t rollback_index_location, 21537a7bc39SJason Zhu uint64_t *out_rollback_index) 21637a7bc39SJason Zhu { 2177c1937d6SJason Zhu if (out_rollback_index) { 21837a7bc39SJason Zhu #ifdef CONFIG_OPTEE_CLIENT 21937a7bc39SJason Zhu int ret; 2207c1937d6SJason Zhu 22137a7bc39SJason Zhu ret = trusty_read_rollback_index(rollback_index_location, 22237a7bc39SJason Zhu out_rollback_index); 2237c1937d6SJason Zhu switch (ret) { 2247c1937d6SJason Zhu case TEE_SUCCESS: 2257c1937d6SJason Zhu ret = AVB_IO_RESULT_OK; 2267c1937d6SJason Zhu break; 2277c1937d6SJason Zhu case TEE_ERROR_GENERIC: 2287c1937d6SJason Zhu case TEE_ERROR_NO_DATA: 2297c1937d6SJason Zhu case TEE_ERROR_ITEM_NOT_FOUND: 23037a7bc39SJason Zhu *out_rollback_index = 0; 23137a7bc39SJason Zhu ret = trusty_write_rollback_index(rollback_index_location, 23237a7bc39SJason Zhu *out_rollback_index); 2337c1937d6SJason Zhu if (ret) { 2347c1937d6SJason Zhu printf("%s: init rollback index error\n", 2357c1937d6SJason Zhu __FILE__); 2367c1937d6SJason Zhu ret = AVB_IO_RESULT_ERROR_IO; 23737a7bc39SJason Zhu } else { 2387c1937d6SJason Zhu ret = 2397c1937d6SJason Zhu trusty_read_rollback_index(rollback_index_location, 2407c1937d6SJason Zhu out_rollback_index); 2417c1937d6SJason Zhu if (ret) 2427c1937d6SJason Zhu ret = AVB_IO_RESULT_ERROR_IO; 2437c1937d6SJason Zhu else 2447c1937d6SJason Zhu ret = AVB_IO_RESULT_OK; 24537a7bc39SJason Zhu } 2467c1937d6SJason Zhu break; 2477c1937d6SJason Zhu default: 2487c1937d6SJason Zhu ret = AVB_IO_RESULT_ERROR_IO; 2497c1937d6SJason Zhu printf("%s: trusty_read_rollback_index failed", 2507c1937d6SJason Zhu __FILE__); 2517c1937d6SJason Zhu } 2527c1937d6SJason Zhu 2537c1937d6SJason Zhu return ret; 254ae205b95SJoseph Chen #else 255ae205b95SJoseph Chen *out_rollback_index = 0; 256ae205b95SJoseph Chen 257ae205b95SJoseph Chen return AVB_IO_RESULT_OK; 25837a7bc39SJason Zhu #endif 25937a7bc39SJason Zhu } 260ae205b95SJoseph Chen 26137a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_IO; 26237a7bc39SJason Zhu } 26337a7bc39SJason Zhu 26437a7bc39SJason Zhu static AvbIOResult write_rollback_index(AvbOps *ops, 26537a7bc39SJason Zhu size_t rollback_index_location, 26637a7bc39SJason Zhu uint64_t rollback_index) 26737a7bc39SJason Zhu { 26837a7bc39SJason Zhu #ifdef CONFIG_OPTEE_CLIENT 2697c1937d6SJason Zhu if (trusty_write_rollback_index(rollback_index_location, 2707c1937d6SJason Zhu rollback_index)) { 27137a7bc39SJason Zhu printf("%s: Fail to write rollback index\n", __FILE__); 27237a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_IO; 27337a7bc39SJason Zhu } 27437a7bc39SJason Zhu return AVB_IO_RESULT_OK; 27537a7bc39SJason Zhu #endif 27637a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_IO; 27737a7bc39SJason Zhu } 27837a7bc39SJason Zhu 27937a7bc39SJason Zhu static AvbIOResult read_is_device_unlocked(AvbOps *ops, bool *out_is_unlocked) 28037a7bc39SJason Zhu { 2817c1937d6SJason Zhu if (out_is_unlocked) { 28237a7bc39SJason Zhu #ifdef CONFIG_OPTEE_CLIENT 28337a7bc39SJason Zhu int ret; 28437a7bc39SJason Zhu 28537a7bc39SJason Zhu ret = trusty_read_lock_state((uint8_t *)out_is_unlocked); 2867c1937d6SJason Zhu switch (ret) { 2877c1937d6SJason Zhu case TEE_SUCCESS: 2887c1937d6SJason Zhu ret = AVB_IO_RESULT_OK; 2897c1937d6SJason Zhu break; 2907c1937d6SJason Zhu case TEE_ERROR_GENERIC: 2917c1937d6SJason Zhu case TEE_ERROR_NO_DATA: 2927c1937d6SJason Zhu case TEE_ERROR_ITEM_NOT_FOUND: 29337a7bc39SJason Zhu *out_is_unlocked = 1; 29437a7bc39SJason Zhu if (trusty_write_lock_state(*out_is_unlocked)) { 29537a7bc39SJason Zhu printf("%s: init lock state error\n", __FILE__); 2967c1937d6SJason Zhu ret = AVB_IO_RESULT_ERROR_IO; 29737a7bc39SJason Zhu } else { 2987c1937d6SJason Zhu ret = 2997c1937d6SJason Zhu trusty_read_lock_state((uint8_t *)out_is_unlocked); 3007c1937d6SJason Zhu if (ret == 0) 3017c1937d6SJason Zhu ret = AVB_IO_RESULT_OK; 3027c1937d6SJason Zhu else 3037c1937d6SJason Zhu ret = AVB_IO_RESULT_ERROR_IO; 30437a7bc39SJason Zhu } 3057c1937d6SJason Zhu break; 3067c1937d6SJason Zhu default: 3077c1937d6SJason Zhu ret = AVB_IO_RESULT_ERROR_IO; 3087c1937d6SJason Zhu printf("%s: trusty_read_lock_state failed\n", __FILE__); 3097c1937d6SJason Zhu } 3107c1937d6SJason Zhu return ret; 311ae205b95SJoseph Chen #else 312ae205b95SJoseph Chen *out_is_unlocked = 1; 313ae205b95SJoseph Chen 314ae205b95SJoseph Chen return AVB_IO_RESULT_OK; 31537a7bc39SJason Zhu #endif 31637a7bc39SJason Zhu } 31737a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_IO; 31837a7bc39SJason Zhu } 31937a7bc39SJason Zhu 32037a7bc39SJason Zhu static AvbIOResult write_is_device_unlocked(AvbOps *ops, bool *out_is_unlocked) 32137a7bc39SJason Zhu { 3227c1937d6SJason Zhu if (out_is_unlocked) { 32337a7bc39SJason Zhu #ifdef CONFIG_OPTEE_CLIENT 32437a7bc39SJason Zhu if (trusty_write_lock_state(*out_is_unlocked)) { 32537a7bc39SJason Zhu printf("%s: Fail to write lock state\n", __FILE__); 32637a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_IO; 32737a7bc39SJason Zhu } 32837a7bc39SJason Zhu return AVB_IO_RESULT_OK; 32937a7bc39SJason Zhu #endif 33037a7bc39SJason Zhu } 33137a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_IO; 33237a7bc39SJason Zhu } 33337a7bc39SJason Zhu 33437a7bc39SJason Zhu static AvbIOResult get_unique_guid_for_partition(AvbOps *ops, 33537a7bc39SJason Zhu const char *partition, 33637a7bc39SJason Zhu char *guid_buf, 33737a7bc39SJason Zhu size_t guid_buf_size) 33837a7bc39SJason Zhu { 33937a7bc39SJason Zhu struct blk_desc *dev_desc; 34037a7bc39SJason Zhu disk_partition_t part_info; 3417c1937d6SJason Zhu 342459bc933SJason Zhu dev_desc = rockchip_get_bootdev(); 34337a7bc39SJason Zhu if (!dev_desc) { 344459bc933SJason Zhu printf("%s: Could not find device\n", __func__); 34537a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_NO_SUCH_PARTITION; 34637a7bc39SJason Zhu } 34737a7bc39SJason Zhu 34837a7bc39SJason Zhu if (part_get_info_by_name(dev_desc, partition, &part_info) < 0) { 34937a7bc39SJason Zhu printf("Could not find \"%s\" partition\n", partition); 35037a7bc39SJason Zhu return AVB_IO_RESULT_ERROR_NO_SUCH_PARTITION; 35137a7bc39SJason Zhu } 3527c1937d6SJason Zhu if (guid_buf && guid_buf_size > 0) 35337a7bc39SJason Zhu memcpy(guid_buf, part_info.uuid, guid_buf_size); 3547c1937d6SJason Zhu 35537a7bc39SJason Zhu return AVB_IO_RESULT_OK; 35637a7bc39SJason Zhu } 35737a7bc39SJason Zhu 35837a7bc39SJason Zhu /* read permanent attributes from rpmb */ 35937a7bc39SJason Zhu AvbIOResult avb_read_perm_attr(AvbAtxOps *atx_ops, 36037a7bc39SJason Zhu AvbAtxPermanentAttributes *attributes) 36137a7bc39SJason Zhu { 3627c1937d6SJason Zhu if (attributes) { 36337a7bc39SJason Zhu #ifdef CONFIG_OPTEE_CLIENT 36437a7bc39SJason Zhu trusty_read_permanent_attributes((uint8_t *)attributes, 36537a7bc39SJason Zhu sizeof(struct AvbAtxPermanentAttributes)); 36637a7bc39SJason Zhu return AVB_IO_RESULT_OK; 36737a7bc39SJason Zhu #endif 36837a7bc39SJason Zhu } 36937a7bc39SJason Zhu 37037a7bc39SJason Zhu return -1; 37137a7bc39SJason Zhu } 37237a7bc39SJason Zhu 37337a7bc39SJason Zhu /*read permanent attributes hash from efuse */ 37437a7bc39SJason Zhu AvbIOResult avb_read_perm_attr_hash(AvbAtxOps *atx_ops, 37537a7bc39SJason Zhu uint8_t hash[AVB_SHA256_DIGEST_SIZE]) 37637a7bc39SJason Zhu { 37774b485fbSJason Zhu #ifndef CONFIG_ROCKCHIP_PRELOADER_PUB_KEY 37837a7bc39SJason Zhu #ifdef CONFIG_OPTEE_CLIENT 3797c1937d6SJason Zhu if (trusty_read_attribute_hash((uint32_t *)hash, 3807c1937d6SJason Zhu AVB_SHA256_DIGEST_SIZE / 4)) 38137a7bc39SJason Zhu return -1; 38237a7bc39SJason Zhu #else 383647502d6SJason Zhu printf("Please open the macro!\n"); 38437a7bc39SJason Zhu return -1; 38537a7bc39SJason Zhu #endif 38665f0143bSJason Zhu #endif 38737a7bc39SJason Zhu return AVB_IO_RESULT_OK; 38837a7bc39SJason Zhu } 38937a7bc39SJason Zhu 39082e713e1SJason Zhu static void avb_set_key_version(AvbAtxOps *atx_ops, 39182e713e1SJason Zhu size_t rollback_index_location, 39282e713e1SJason Zhu uint64_t key_version) 39382e713e1SJason Zhu { 39482e713e1SJason Zhu #ifdef CONFIG_OPTEE_CLIENT 395ee9d3433SJason Zhu uint64_t key_version_temp = 0; 396ee9d3433SJason Zhu 397ee9d3433SJason Zhu if (trusty_read_rollback_index(rollback_index_location, &key_version_temp)) 398ee9d3433SJason Zhu printf("%s: Fail to read rollback index\n", __FILE__); 399ee9d3433SJason Zhu if (key_version_temp == key_version) 400ee9d3433SJason Zhu return; 4017c1937d6SJason Zhu if (trusty_write_rollback_index(rollback_index_location, key_version)) 40282e713e1SJason Zhu printf("%s: Fail to write rollback index\n", __FILE__); 40382e713e1SJason Zhu #endif 40482e713e1SJason Zhu } 40582e713e1SJason Zhu 4068d0db1d9SJason Zhu AvbIOResult rk_get_random(AvbAtxOps *atx_ops, 4078d0db1d9SJason Zhu size_t num_bytes, 4088d0db1d9SJason Zhu uint8_t *output) 4098d0db1d9SJason Zhu { 4108d0db1d9SJason Zhu int i; 4118d0db1d9SJason Zhu unsigned int seed; 4128d0db1d9SJason Zhu 4138d0db1d9SJason Zhu seed = (unsigned int)get_timer(0); 4148d0db1d9SJason Zhu for (i = 0; i < num_bytes; i++) { 4158d0db1d9SJason Zhu srand(seed); 4168d0db1d9SJason Zhu output[i] = (uint8_t)(rand()); 4178d0db1d9SJason Zhu seed = (unsigned int)(output[i]); 4188d0db1d9SJason Zhu } 4198d0db1d9SJason Zhu 4208d0db1d9SJason Zhu return 0; 4218d0db1d9SJason Zhu } 4228d0db1d9SJason Zhu 42327e62cd7SJoseph Chen #ifdef CONFIG_ANDROID_BOOT_IMAGE 42427e62cd7SJoseph Chen static AvbIOResult get_preloaded_partition(AvbOps* ops, 42527e62cd7SJoseph Chen const char* partition, 42627e62cd7SJoseph Chen size_t num_bytes, 42727e62cd7SJoseph Chen uint8_t** out_pointer, 42827e62cd7SJoseph Chen size_t* out_num_bytes_preloaded, 42927e62cd7SJoseph Chen int allow_verification_error) 43027e62cd7SJoseph Chen { 431*28317110SJoseph Chen struct preloaded_partition *preload_info = NULL; 432*28317110SJoseph Chen struct AvbOpsData *data = ops->user_data; 43327e62cd7SJoseph Chen struct blk_desc *dev_desc; 434*28317110SJoseph Chen disk_partition_t part_info; 43527e62cd7SJoseph Chen ulong load_addr; 436*28317110SJoseph Chen AvbIOResult ret; 43727e62cd7SJoseph Chen 43827e62cd7SJoseph Chen dev_desc = rockchip_get_bootdev(); 43927e62cd7SJoseph Chen if (!dev_desc) 440*28317110SJoseph Chen return AVB_IO_RESULT_ERROR_IO; 44127e62cd7SJoseph Chen 442*28317110SJoseph Chen if (part_get_info_by_name(dev_desc, partition, &part_info) < 0) { 443*28317110SJoseph Chen printf("Could not find \"%s\" partition\n", partition); 444*28317110SJoseph Chen return AVB_IO_RESULT_ERROR_NO_SUCH_PARTITION; 445*28317110SJoseph Chen } 446*28317110SJoseph Chen 447*28317110SJoseph Chen if (!allow_verification_error) { 448*28317110SJoseph Chen if (!strncmp(partition, ANDROID_PARTITION_BOOT, 4) || 449*28317110SJoseph Chen !strncmp(partition, ANDROID_PARTITION_RECOVERY, 8)) 450*28317110SJoseph Chen preload_info = &data->boot; 451*28317110SJoseph Chen else if (!strncmp(partition, ANDROID_PARTITION_VENDOR_BOOT, 11)) 452*28317110SJoseph Chen preload_info = &data->vendor_boot; 453*28317110SJoseph Chen else if (!strncmp(partition, ANDROID_PARTITION_INIT_BOOT, 9)) 454*28317110SJoseph Chen preload_info = &data->init_boot; 455*28317110SJoseph Chen 456*28317110SJoseph Chen if (!preload_info) { 457*28317110SJoseph Chen printf("Error: unknown full load partition '%s'\n", partition); 458*28317110SJoseph Chen return AVB_IO_RESULT_ERROR_NO_SUCH_PARTITION; 459*28317110SJoseph Chen } 460*28317110SJoseph Chen 461*28317110SJoseph Chen printf("preloaded: full image from '%s' at 0x%08lx - 0x%08lx\n", 462*28317110SJoseph Chen partition, (ulong)preload_info->addr, 463*28317110SJoseph Chen (ulong)preload_info->addr + num_bytes); 464*28317110SJoseph Chen 465*28317110SJoseph Chen /* If the partition hasn't yet been preloaded, do it now.*/ 466*28317110SJoseph Chen if (preload_info->size == 0) { 467*28317110SJoseph Chen ret = ops->read_from_partition(ops, partition, 468*28317110SJoseph Chen 0, num_bytes, 469*28317110SJoseph Chen preload_info->addr, 470*28317110SJoseph Chen &preload_info->size); 471*28317110SJoseph Chen if (ret != AVB_IO_RESULT_OK) 472*28317110SJoseph Chen return ret; 473*28317110SJoseph Chen } 474*28317110SJoseph Chen *out_pointer = preload_info->addr; 475*28317110SJoseph Chen *out_num_bytes_preloaded = preload_info->size; 476*28317110SJoseph Chen ret = AVB_IO_RESULT_OK; 477*28317110SJoseph Chen } else { 478*28317110SJoseph Chen if (!strncmp(partition, ANDROID_PARTITION_INIT_BOOT, 9) || 479*28317110SJoseph Chen !strncmp(partition, ANDROID_PARTITION_VENDOR_BOOT, 11) || 480*28317110SJoseph Chen !strncmp(partition, ANDROID_PARTITION_BOOT, 4) || 481*28317110SJoseph Chen !strncmp(partition, ANDROID_PARTITION_RECOVERY, 8)) { 482*28317110SJoseph Chen printf("preloaded: distribute image from '%s'\n", partition); 483*28317110SJoseph Chen } else { 484*28317110SJoseph Chen printf("Error: unknown preloaded partition '%s'\n", partition); 485*28317110SJoseph Chen return AVB_IO_RESULT_ERROR_OOM; 486*28317110SJoseph Chen } 487*28317110SJoseph Chen 488*28317110SJoseph Chen /* 489*28317110SJoseph Chen * Already preloaded during boot/recovery loading, 490*28317110SJoseph Chen * here we just return a dummy buffer. 491*28317110SJoseph Chen */ 492*28317110SJoseph Chen if (!strncmp(partition, ANDROID_PARTITION_INIT_BOOT, 9) || 493*28317110SJoseph Chen !strncmp(partition, ANDROID_PARTITION_VENDOR_BOOT, 11)) { 494*28317110SJoseph Chen *out_pointer = (u8 *)avb_malloc(ARCH_DMA_MINALIGN); 495*28317110SJoseph Chen *out_num_bytes_preloaded = num_bytes; /* return what it expects */ 496*28317110SJoseph Chen return AVB_IO_RESULT_OK; 497*28317110SJoseph Chen } 498*28317110SJoseph Chen 499*28317110SJoseph Chen /* 500*28317110SJoseph Chen * only boot/recovery partition can reach here 501*28317110SJoseph Chen * and init/vendor_boot are loaded at this round. 502*28317110SJoseph Chen */ 50327e62cd7SJoseph Chen load_addr = env_get_ulong("kernel_addr_r", 16, 0); 50427e62cd7SJoseph Chen if (!load_addr) 5051e9494b5SJoseph Chen return AVB_IO_RESULT_ERROR_NO_SUCH_VALUE; 50627e62cd7SJoseph Chen 50727e62cd7SJoseph Chen ret = android_image_load_by_partname(dev_desc, partition, &load_addr); 50827e62cd7SJoseph Chen if (!ret) { 50927e62cd7SJoseph Chen *out_pointer = (u8 *)load_addr; 51027e62cd7SJoseph Chen *out_num_bytes_preloaded = num_bytes; /* return what it expects */ 5111e9494b5SJoseph Chen ret = AVB_IO_RESULT_OK; 51227e62cd7SJoseph Chen } else { 5131e9494b5SJoseph Chen ret = AVB_IO_RESULT_ERROR_IO; 51427e62cd7SJoseph Chen } 515*28317110SJoseph Chen } 51627e62cd7SJoseph Chen 51727e62cd7SJoseph Chen return ret; 51827e62cd7SJoseph Chen } 51927e62cd7SJoseph Chen #endif 52027e62cd7SJoseph Chen 52116a62313SJason Zhu AvbIOResult validate_public_key_for_partition(AvbOps *ops, 52216a62313SJason Zhu const char *partition, 52316a62313SJason Zhu const uint8_t *public_key_data, 52416a62313SJason Zhu size_t public_key_length, 52516a62313SJason Zhu const uint8_t *public_key_metadata, 52616a62313SJason Zhu size_t public_key_metadata_length, 52716a62313SJason Zhu bool *out_is_trusted, 52816a62313SJason Zhu uint32_t *out_rollback_index_location) 52916a62313SJason Zhu { 53016a62313SJason Zhu /* remain AVB_VBMETA_PUBLIC_KEY_VALIDATE to compatible legacy code */ 53116a62313SJason Zhu #if defined(CONFIG_AVB_VBMETA_PUBLIC_KEY_VALIDATE) || \ 53216a62313SJason Zhu defined(AVB_VBMETA_PUBLIC_KEY_VALIDATE) 53316a62313SJason Zhu if (out_is_trusted) { 53416a62313SJason Zhu avb_atx_validate_vbmeta_public_key(ops, 53516a62313SJason Zhu public_key_data, 53616a62313SJason Zhu public_key_length, 53716a62313SJason Zhu public_key_metadata, 53816a62313SJason Zhu public_key_metadata_length, 53916a62313SJason Zhu out_is_trusted); 54016a62313SJason Zhu } 54116a62313SJason Zhu #else 54216a62313SJason Zhu if (out_is_trusted) 54316a62313SJason Zhu *out_is_trusted = true; 54416a62313SJason Zhu #endif 54516a62313SJason Zhu *out_rollback_index_location = 0; 54616a62313SJason Zhu return AVB_IO_RESULT_OK; 54716a62313SJason Zhu } 54816a62313SJason Zhu 5497c1937d6SJason Zhu AvbOps *avb_ops_user_new(void) 5507c1937d6SJason Zhu { 55148cf108aSJoseph Chen AvbOps *ops = NULL; 55248cf108aSJoseph Chen struct AvbOpsData *ops_data = NULL; 55337a7bc39SJason Zhu 55437a7bc39SJason Zhu ops = calloc(1, sizeof(AvbOps)); 5557c1937d6SJason Zhu if (!ops) { 55608f7f19aSJason Zhu printf("Error allocating memory for AvbOps.\n"); 55737a7bc39SJason Zhu goto out; 55837a7bc39SJason Zhu } 55937a7bc39SJason Zhu ops->ab_ops = calloc(1, sizeof(AvbABOps)); 5607c1937d6SJason Zhu if (!ops->ab_ops) { 56108f7f19aSJason Zhu printf("Error allocating memory for AvbABOps.\n"); 56237a7bc39SJason Zhu free(ops); 56337a7bc39SJason Zhu goto out; 56437a7bc39SJason Zhu } 56537a7bc39SJason Zhu 56637a7bc39SJason Zhu ops->atx_ops = calloc(1, sizeof(AvbAtxOps)); 5677c1937d6SJason Zhu if (!ops->atx_ops) { 56808f7f19aSJason Zhu printf("Error allocating memory for AvbAtxOps.\n"); 56937a7bc39SJason Zhu free(ops->ab_ops); 57037a7bc39SJason Zhu free(ops); 57137a7bc39SJason Zhu goto out; 57237a7bc39SJason Zhu } 57348cf108aSJoseph Chen 57448cf108aSJoseph Chen ops_data = calloc(1, sizeof(struct AvbOpsData)); 57548cf108aSJoseph Chen if (!ops_data) { 57648cf108aSJoseph Chen printf("Error allocating memory for AvbOpsData.\n"); 57748cf108aSJoseph Chen free(ops->atx_ops); 57848cf108aSJoseph Chen free(ops->ab_ops); 57948cf108aSJoseph Chen free(ops); 58048cf108aSJoseph Chen goto out; 58148cf108aSJoseph Chen } 58248cf108aSJoseph Chen 58337a7bc39SJason Zhu ops->ab_ops->ops = ops; 58437a7bc39SJason Zhu ops->atx_ops->ops = ops; 58548cf108aSJoseph Chen ops_data->ops = ops; 58648cf108aSJoseph Chen ops->user_data = ops_data; 58737a7bc39SJason Zhu 58837a7bc39SJason Zhu ops->read_from_partition = read_from_partition; 58937a7bc39SJason Zhu ops->write_to_partition = write_to_partition; 59037a7bc39SJason Zhu ops->validate_vbmeta_public_key = validate_vbmeta_public_key; 59137a7bc39SJason Zhu ops->read_rollback_index = read_rollback_index; 59237a7bc39SJason Zhu ops->write_rollback_index = write_rollback_index; 59337a7bc39SJason Zhu ops->read_is_device_unlocked = read_is_device_unlocked; 59437a7bc39SJason Zhu ops->write_is_device_unlocked = write_is_device_unlocked; 59537a7bc39SJason Zhu ops->get_unique_guid_for_partition = get_unique_guid_for_partition; 59637a7bc39SJason Zhu ops->get_size_of_partition = get_size_of_partition; 59727e62cd7SJoseph Chen #ifdef CONFIG_ANDROID_BOOT_IMAGE 59827e62cd7SJoseph Chen ops->get_preloaded_partition = get_preloaded_partition; 59927e62cd7SJoseph Chen #endif 60016a62313SJason Zhu ops->validate_public_key_for_partition = validate_public_key_for_partition; 60137a7bc39SJason Zhu ops->ab_ops->read_ab_metadata = avb_ab_data_read; 60237a7bc39SJason Zhu ops->ab_ops->write_ab_metadata = avb_ab_data_write; 60337a7bc39SJason Zhu ops->atx_ops->read_permanent_attributes = avb_read_perm_attr; 60437a7bc39SJason Zhu ops->atx_ops->read_permanent_attributes_hash = avb_read_perm_attr_hash; 60582e713e1SJason Zhu ops->atx_ops->set_key_version = avb_set_key_version; 6068d0db1d9SJason Zhu ops->atx_ops->get_random = rk_get_random; 60737a7bc39SJason Zhu 60837a7bc39SJason Zhu return ops; 60948cf108aSJoseph Chen out: 61048cf108aSJoseph Chen return NULL; 61137a7bc39SJason Zhu } 61237a7bc39SJason Zhu 6137c1937d6SJason Zhu void avb_ops_user_free(AvbOps *ops) 6147c1937d6SJason Zhu { 61548cf108aSJoseph Chen free(ops->user_data); 61637a7bc39SJason Zhu free(ops->ab_ops); 61737a7bc39SJason Zhu free(ops->atx_ops); 61837a7bc39SJason Zhu free(ops); 61937a7bc39SJason Zhu } 620