Juan Castillo | a57a4d5 | 2015-04-02 15:44:20 +0100 | [diff] [blame] | 1 | # |
Jeenu Viswambharan | ec06c3b | 2018-06-07 15:14:42 +0100 | [diff] [blame] | 2 | # Copyright (c) 2015-2018, ARM Limited and Contributors. All rights reserved. |
Juan Castillo | a57a4d5 | 2015-04-02 15:44:20 +0100 | [diff] [blame] | 3 | # |
dp-arm | fa3cf0b | 2017-05-03 09:38:09 +0100 | [diff] [blame] | 4 | # SPDX-License-Identifier: BSD-3-Clause |
Juan Castillo | a57a4d5 | 2015-04-02 15:44:20 +0100 | [diff] [blame] | 5 | # |
| 6 | |
| 7 | ifneq (${MBEDTLS_COMMON_MK},1) |
| 8 | MBEDTLS_COMMON_MK := 1 |
| 9 | |
Juan Castillo | bae6b2a | 2015-11-05 09:24:53 +0000 | [diff] [blame] | 10 | # MBEDTLS_DIR must be set to the mbed TLS main directory (it must contain |
Juan Castillo | a57a4d5 | 2015-04-02 15:44:20 +0100 | [diff] [blame] | 11 | # the 'include' and 'library' subdirectories). |
| 12 | ifeq (${MBEDTLS_DIR},) |
| 13 | $(error Error: MBEDTLS_DIR not set) |
| 14 | endif |
| 15 | |
Roberto Vargas | d51207e | 2018-06-04 15:15:04 +0100 | [diff] [blame] | 16 | MBEDTLS_INC = -I${MBEDTLS_DIR}/include |
| 17 | INCLUDES += -Iinclude/drivers/auth/mbedtls |
Juan Castillo | a57a4d5 | 2015-04-02 15:44:20 +0100 | [diff] [blame] | 18 | |
Juan Castillo | bae6b2a | 2015-11-05 09:24:53 +0000 | [diff] [blame] | 19 | # Specify mbed TLS configuration file |
| 20 | MBEDTLS_CONFIG_FILE := "<mbedtls_config.h>" |
| 21 | $(eval $(call add_define,MBEDTLS_CONFIG_FILE)) |
Juan Castillo | a57a4d5 | 2015-04-02 15:44:20 +0100 | [diff] [blame] | 22 | |
Roberto Vargas | 502290b | 2018-05-08 10:27:10 +0100 | [diff] [blame] | 23 | MBEDTLS_SOURCES += drivers/auth/mbedtls/mbedtls_common.c |
| 24 | |
| 25 | |
| 26 | LIBMBEDTLS_SRCS := $(addprefix ${MBEDTLS_DIR}/library/, \ |
| 27 | asn1parse.c \ |
| 28 | asn1write.c \ |
| 29 | memory_buffer_alloc.c \ |
| 30 | oid.c \ |
| 31 | platform.c \ |
| 32 | platform_util.c \ |
| 33 | bignum.c \ |
| 34 | md.c \ |
| 35 | md_wrap.c \ |
| 36 | pk.c \ |
| 37 | pk_wrap.c \ |
| 38 | pkparse.c \ |
| 39 | pkwrite.c \ |
| 40 | sha256.c \ |
| 41 | sha512.c \ |
| 42 | ecdsa.c \ |
| 43 | ecp_curves.c \ |
| 44 | ecp.c \ |
| 45 | rsa.c \ |
| 46 | rsa_internal.c \ |
| 47 | x509.c \ |
| 48 | x509_crt.c \ |
| 49 | ) |
| 50 | |
| 51 | # The platform may define the variable 'TF_MBEDTLS_KEY_ALG' to select the key |
| 52 | # algorithm to use. If the variable is not defined, select it based on algorithm |
| 53 | # used for key generation `KEY_ALG`. If `KEY_ALG` is not defined or is |
| 54 | # defined to `rsa`/`rsa_1_5`, then set the variable to `rsa`. |
| 55 | ifeq (${TF_MBEDTLS_KEY_ALG},) |
| 56 | ifeq (${KEY_ALG}, ecdsa) |
| 57 | TF_MBEDTLS_KEY_ALG := ecdsa |
| 58 | else |
| 59 | TF_MBEDTLS_KEY_ALG := rsa |
| 60 | endif |
| 61 | endif |
| 62 | |
| 63 | # If MBEDTLS_KEY_ALG build flag is defined use it to set TF_MBEDTLS_KEY_ALG for |
| 64 | # backward compatibility |
| 65 | ifdef MBEDTLS_KEY_ALG |
| 66 | ifeq (${ERROR_DEPRECATED},1) |
| 67 | $(error "MBEDTLS_KEY_ALG is deprecated. Please use the new build flag TF_MBEDTLS_KEY_ALG") |
| 68 | endif |
| 69 | $(warning "MBEDTLS_KEY_ALG is deprecated. Please use the new build flag TF_MBEDTLS_KEY_ALG") |
| 70 | TF_MBEDTLS_KEY_ALG := ${MBEDTLS_KEY_ALG} |
| 71 | endif |
| 72 | |
| 73 | ifeq (${HASH_ALG}, sha384) |
| 74 | TF_MBEDTLS_HASH_ALG_ID := TF_MBEDTLS_SHA384 |
| 75 | else ifeq (${HASH_ALG}, sha512) |
| 76 | TF_MBEDTLS_HASH_ALG_ID := TF_MBEDTLS_SHA512 |
| 77 | else |
| 78 | TF_MBEDTLS_HASH_ALG_ID := TF_MBEDTLS_SHA256 |
| 79 | endif |
| 80 | |
| 81 | ifeq (${TF_MBEDTLS_KEY_ALG},ecdsa) |
| 82 | TF_MBEDTLS_KEY_ALG_ID := TF_MBEDTLS_ECDSA |
| 83 | else ifeq (${TF_MBEDTLS_KEY_ALG},rsa) |
| 84 | TF_MBEDTLS_KEY_ALG_ID := TF_MBEDTLS_RSA |
| 85 | else ifeq (${TF_MBEDTLS_KEY_ALG},rsa+ecdsa) |
| 86 | TF_MBEDTLS_KEY_ALG_ID := TF_MBEDTLS_RSA_AND_ECDSA |
| 87 | else |
| 88 | $(error "TF_MBEDTLS_KEY_ALG=${TF_MBEDTLS_KEY_ALG} not supported on mbed TLS") |
| 89 | endif |
| 90 | |
| 91 | # Needs to be set to drive mbed TLS configuration correctly |
| 92 | $(eval $(call add_define,TF_MBEDTLS_KEY_ALG_ID)) |
| 93 | $(eval $(call add_define,TF_MBEDTLS_HASH_ALG_ID)) |
| 94 | |
| 95 | |
| 96 | $(eval $(call MAKE_LIB,mbedtls)) |
Juan Castillo | a57a4d5 | 2015-04-02 15:44:20 +0100 | [diff] [blame] | 97 | |
Juan Castillo | a57a4d5 | 2015-04-02 15:44:20 +0100 | [diff] [blame] | 98 | endif |