Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 1 | /* |
laurenw-arm | 7b7ebff | 2023-05-02 14:42:48 -0500 | [diff] [blame] | 2 | * Copyright (c) 2016-2023, Arm Limited and Contributors. All rights reserved. |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 3 | * |
dp-arm | fa3cf0b | 2017-05-03 09:38:09 +0100 | [diff] [blame] | 4 | * SPDX-License-Identifier: BSD-3-Clause |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 5 | */ |
| 6 | |
| 7 | #include <assert.h> |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 8 | #include <stdint.h> |
| 9 | #include <string.h> |
Antonio Nino Diaz | e0f9063 | 2018-12-14 00:18:21 +0000 | [diff] [blame] | 10 | |
Sandrine Bailleux | 2397d47 | 2019-07-23 15:41:06 +0200 | [diff] [blame] | 11 | #include <lib/mmio.h> |
Manish V Badarkhe | 09a192c | 2020-08-23 09:58:44 +0100 | [diff] [blame] | 12 | #include <lib/fconf/fconf.h> |
Max Shvetsov | 06dba29 | 2019-12-06 11:50:12 +0000 | [diff] [blame] | 13 | #include <plat/arm/common/plat_arm.h> |
Manish V Badarkhe | 09a192c | 2020-08-23 09:58:44 +0100 | [diff] [blame] | 14 | #include <plat/arm/common/fconf_nv_cntr_getter.h> |
Antonio Nino Diaz | e0f9063 | 2018-12-14 00:18:21 +0000 | [diff] [blame] | 15 | #include <plat/common/platform.h> |
Antonio Nino Diaz | a320ecd | 2019-01-15 14:19:50 +0000 | [diff] [blame] | 16 | #include <platform_def.h> |
laurenw-arm | 7b7ebff | 2023-05-02 14:42:48 -0500 | [diff] [blame] | 17 | #include <tools_share/cca_oid.h> |
Masahiro Yamada | d1f9775 | 2017-05-23 19:41:36 +0900 | [diff] [blame] | 18 | |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 19 | /* |
Max Shvetsov | 06dba29 | 2019-12-06 11:50:12 +0000 | [diff] [blame] | 20 | * Return the ROTPK hash in the following ASN.1 structure in DER format: |
| 21 | * |
| 22 | * AlgorithmIdentifier ::= SEQUENCE { |
| 23 | * algorithm OBJECT IDENTIFIER, |
| 24 | * parameters ANY DEFINED BY algorithm OPTIONAL |
| 25 | * } |
| 26 | * |
| 27 | * DigestInfo ::= SEQUENCE { |
| 28 | * digestAlgorithm AlgorithmIdentifier, |
| 29 | * digest OCTET STRING |
| 30 | * } |
| 31 | */ |
| 32 | int plat_get_rotpk_info(void *cookie, void **key_ptr, unsigned int *key_len, |
| 33 | unsigned int *flags) |
| 34 | { |
Sandrine Bailleux | 7b7a41c | 2020-02-06 14:34:44 +0100 | [diff] [blame] | 35 | return arm_get_rotpk_info(cookie, key_ptr, key_len, flags); |
Max Shvetsov | 06dba29 | 2019-12-06 11:50:12 +0000 | [diff] [blame] | 36 | } |
| 37 | |
| 38 | /* |
laurenw-arm | 5b6f4ca | 2023-05-12 15:21:02 -0500 | [diff] [blame] | 39 | * Return the non-volatile counter address stored in the platform. The cookie |
| 40 | * will contain the OID of the counter in the certificate. |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 41 | * |
| 42 | * Return: 0 = success, Otherwise = error |
| 43 | */ |
laurenw-arm | 5b6f4ca | 2023-05-12 15:21:02 -0500 | [diff] [blame] | 44 | static int plat_get_nv_ctr_addr(void *cookie, uintptr_t *nv_ctr_addr) |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 45 | { |
laurenw-arm | 5b6f4ca | 2023-05-12 15:21:02 -0500 | [diff] [blame] | 46 | const char *oid = (const char *)cookie; |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 47 | |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 48 | if (strcmp(oid, TRUSTED_FW_NVCOUNTER_OID) == 0) { |
laurenw-arm | 5b6f4ca | 2023-05-12 15:21:02 -0500 | [diff] [blame] | 49 | *nv_ctr_addr = FCONF_GET_PROPERTY(cot, nv_cntr_addr, |
Manish V Badarkhe | 09a192c | 2020-08-23 09:58:44 +0100 | [diff] [blame] | 50 | TRUSTED_NV_CTR_ID); |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 51 | } else if (strcmp(oid, NON_TRUSTED_FW_NVCOUNTER_OID) == 0) { |
laurenw-arm | 5b6f4ca | 2023-05-12 15:21:02 -0500 | [diff] [blame] | 52 | *nv_ctr_addr = FCONF_GET_PROPERTY(cot, nv_cntr_addr, |
Manish V Badarkhe | 09a192c | 2020-08-23 09:58:44 +0100 | [diff] [blame] | 53 | NON_TRUSTED_NV_CTR_ID); |
laurenw-arm | 7b7ebff | 2023-05-02 14:42:48 -0500 | [diff] [blame] | 54 | } else if (strcmp(oid, CCA_FW_NVCOUNTER_OID) == 0) { |
| 55 | /* FVP does not support the CCA NV Counter so use the Trusted NV */ |
laurenw-arm | 5b6f4ca | 2023-05-12 15:21:02 -0500 | [diff] [blame] | 56 | *nv_ctr_addr = FCONF_GET_PROPERTY(cot, nv_cntr_addr, |
laurenw-arm | 7b7ebff | 2023-05-02 14:42:48 -0500 | [diff] [blame] | 57 | TRUSTED_NV_CTR_ID); |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 58 | } else { |
| 59 | return 1; |
| 60 | } |
| 61 | |
laurenw-arm | 5b6f4ca | 2023-05-12 15:21:02 -0500 | [diff] [blame] | 62 | return 0; |
| 63 | } |
| 64 | |
| 65 | /* |
| 66 | * Store a new non-volatile counter value. |
| 67 | * |
| 68 | * On some FVP versions, the non-volatile counters are read-only so this |
| 69 | * function will always fail. |
| 70 | * |
| 71 | * Return: 0 = success, Otherwise = error |
| 72 | */ |
| 73 | int plat_set_nv_ctr(void *cookie, unsigned int nv_ctr) |
| 74 | { |
| 75 | uintptr_t nv_ctr_addr; |
| 76 | int rc; |
| 77 | |
| 78 | assert(cookie != NULL); |
| 79 | |
| 80 | rc = plat_get_nv_ctr_addr(cookie, &nv_ctr_addr); |
| 81 | if (rc != 0) { |
| 82 | return rc; |
| 83 | } |
| 84 | |
Sandrine Bailleux | 2397d47 | 2019-07-23 15:41:06 +0200 | [diff] [blame] | 85 | mmio_write_32(nv_ctr_addr, nv_ctr); |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 86 | |
Sandrine Bailleux | 2397d47 | 2019-07-23 15:41:06 +0200 | [diff] [blame] | 87 | /* |
| 88 | * If the FVP models a locked counter then its value cannot be updated |
| 89 | * and the above write operation has been silently ignored. |
| 90 | */ |
| 91 | return (mmio_read_32(nv_ctr_addr) == nv_ctr) ? 0 : 1; |
Antonio Nino Diaz | 9d602fe | 2016-05-20 14:14:16 +0100 | [diff] [blame] | 92 | } |
laurenw-arm | 7b7ebff | 2023-05-02 14:42:48 -0500 | [diff] [blame] | 93 | |
| 94 | /* |
| 95 | * Return the non-volatile counter value stored in the platform. The cookie |
| 96 | * will contain the OID of the counter in the certificate. |
| 97 | * |
| 98 | * Return: 0 = success, Otherwise = error |
| 99 | */ |
| 100 | int plat_get_nv_ctr(void *cookie, unsigned int *nv_ctr) |
| 101 | { |
laurenw-arm | 5b6f4ca | 2023-05-12 15:21:02 -0500 | [diff] [blame] | 102 | uintptr_t nv_ctr_addr; |
| 103 | int rc; |
laurenw-arm | 7b7ebff | 2023-05-02 14:42:48 -0500 | [diff] [blame] | 104 | |
| 105 | assert(cookie != NULL); |
| 106 | assert(nv_ctr != NULL); |
| 107 | |
laurenw-arm | 5b6f4ca | 2023-05-12 15:21:02 -0500 | [diff] [blame] | 108 | rc = plat_get_nv_ctr_addr(cookie, &nv_ctr_addr); |
| 109 | if (rc != 0) { |
| 110 | return rc; |
laurenw-arm | 7b7ebff | 2023-05-02 14:42:48 -0500 | [diff] [blame] | 111 | } |
| 112 | |
laurenw-arm | 5b6f4ca | 2023-05-12 15:21:02 -0500 | [diff] [blame] | 113 | *nv_ctr = *((unsigned int *)nv_ctr_addr); |
laurenw-arm | 7b7ebff | 2023-05-02 14:42:48 -0500 | [diff] [blame] | 114 | |
| 115 | return 0; |
| 116 | } |