blob: c359e9f858a5b05a268bd317b73dc44e13f07bdf [file] [log] [blame]
Tamas Banf5492752022-01-18 16:19:17 +01001/*
2 * Copyright (c) 2022, Arm Limited. All rights reserved.
3 *
4 * SPDX-License-Identifier: BSD-3-Clause
5 *
6 */
7
8#include <string.h>
9
10#include <common/debug.h>
11#include <measured_boot.h>
12#include <psa/client.h>
13#include <psa_manifest/sid.h>
14
15#include "measured_boot_private.h"
16
Sandrine Bailleux03d0ad32022-06-15 14:21:17 +020017static void print_byte_array(const uint8_t *array __unused, size_t len __unused)
Tamas Banf5492752022-01-18 16:19:17 +010018{
Sandrine Bailleux03d0ad32022-06-15 14:21:17 +020019#if LOG_LEVEL >= LOG_LEVEL_INFO
David Vinczeffaf5582022-05-18 16:02:37 +020020 size_t i;
Tamas Banf5492752022-01-18 16:19:17 +010021
22 if (array == NULL || len == 0U) {
23 (void)printf("\n");
David Vinczeffaf5582022-05-18 16:02:37 +020024 } else {
25 for (i = 0U; i < len; ++i) {
26 (void)printf(" %02x", array[i]);
27 if ((i & U(0xF)) == U(0xF)) {
28 (void)printf("\n");
29 if (i < (len - 1U)) {
30 INFO("\t\t:");
31 }
Tamas Banf5492752022-01-18 16:19:17 +010032 }
33 }
34 }
Sandrine Bailleux03d0ad32022-06-15 14:21:17 +020035#endif
Tamas Banf5492752022-01-18 16:19:17 +010036}
37
38static void log_measurement(uint8_t index,
39 const uint8_t *signer_id,
40 size_t signer_id_size,
41 const uint8_t *version, /* string */
Tamas Ban4ebcd582022-10-05 13:22:23 +020042 size_t version_size,
Tamas Banf5492752022-01-18 16:19:17 +010043 const uint8_t *sw_type, /* string */
Tamas Ban4ebcd582022-10-05 13:22:23 +020044 size_t sw_type_size,
45 uint32_t measurement_algo,
Tamas Banf5492752022-01-18 16:19:17 +010046 const uint8_t *measurement_value,
47 size_t measurement_value_size,
48 bool lock_measurement)
49{
50 INFO("Measured boot extend measurement:\n");
51 INFO(" - slot : %u\n", index);
52 INFO(" - signer_id :");
53 print_byte_array(signer_id, signer_id_size);
Tamas Ban4ebcd582022-10-05 13:22:23 +020054 INFO(" - version : %s\n", version);
55 INFO(" - version_size: %zu\n", version_size);
56 INFO(" - sw_type : %s\n", sw_type);
57 INFO(" - sw_type_size: %zu\n", sw_type_size);
Tamas Banf5492752022-01-18 16:19:17 +010058 INFO(" - algorithm : %x\n", measurement_algo);
Tamas Banf5492752022-01-18 16:19:17 +010059 INFO(" - measurement :");
60 print_byte_array(measurement_value, measurement_value_size);
61 INFO(" - locking : %s\n", lock_measurement ? "true" : "false");
62}
63
Tamas Banc9ccc272022-01-18 16:20:47 +010064#if !PLAT_RSS_NOT_SUPPORTED
Tamas Banf5492752022-01-18 16:19:17 +010065psa_status_t
66rss_measured_boot_extend_measurement(uint8_t index,
67 const uint8_t *signer_id,
68 size_t signer_id_size,
69 const uint8_t *version,
70 size_t version_size,
71 uint32_t measurement_algo,
72 const uint8_t *sw_type,
73 size_t sw_type_size,
74 const uint8_t *measurement_value,
75 size_t measurement_value_size,
76 bool lock_measurement)
77{
78 struct measured_boot_extend_iovec_t extend_iov = {
79 .index = index,
80 .lock_measurement = lock_measurement,
81 .measurement_algo = measurement_algo,
82 .sw_type = {0},
Jimmy Brisson0100a612023-03-20 09:00:30 -050083 .sw_type_size = sw_type_size,
Tamas Banf5492752022-01-18 16:19:17 +010084 };
85
Jimmy Brisson0100a612023-03-20 09:00:30 -050086 if (version_size > VERSION_MAX_SIZE) {
87 return PSA_ERROR_INVALID_ARGUMENT;
88 }
89
90
91 if (version_size > 0 && version[version_size - 1] == '\0') {
92 version_size--;
93 }
94
Tamas Banf5492752022-01-18 16:19:17 +010095 psa_invec in_vec[] = {
96 {.base = &extend_iov,
97 .len = sizeof(struct measured_boot_extend_iovec_t)},
98 {.base = signer_id, .len = signer_id_size},
Jimmy Brisson0100a612023-03-20 09:00:30 -050099 {.base = version, .len = version_size },
Tamas Banf5492752022-01-18 16:19:17 +0100100 {.base = measurement_value, .len = measurement_value_size}
101 };
102
Tamas Banf5492752022-01-18 16:19:17 +0100103 if (sw_type != NULL) {
David Vincze28572702022-11-04 18:28:12 +0100104 if (extend_iov.sw_type_size > SW_TYPE_MAX_SIZE) {
Tamas Banfc6ba272022-10-03 13:06:53 +0200105 return PSA_ERROR_INVALID_ARGUMENT;
106 }
Jimmy Brisson0100a612023-03-20 09:00:30 -0500107 if (sw_type_size > 0 && sw_type[sw_type_size - 1] == '\0') {
108 extend_iov.sw_type_size--;
109 }
David Vincze28572702022-11-04 18:28:12 +0100110 memcpy(extend_iov.sw_type, sw_type, extend_iov.sw_type_size);
Tamas Banf5492752022-01-18 16:19:17 +0100111 }
112
113 log_measurement(index, signer_id, signer_id_size,
Tamas Ban4ebcd582022-10-05 13:22:23 +0200114 version, version_size, sw_type, sw_type_size,
115 measurement_algo, measurement_value,
116 measurement_value_size, lock_measurement);
Tamas Banf5492752022-01-18 16:19:17 +0100117
118 return psa_call(RSS_MEASURED_BOOT_HANDLE,
119 RSS_MEASURED_BOOT_EXTEND,
120 in_vec, IOVEC_LEN(in_vec),
121 NULL, 0);
122}
Tamas Banc9ccc272022-01-18 16:20:47 +0100123
Mate Toth-Pal445ee112022-10-24 15:15:10 +0200124psa_status_t rss_measured_boot_read_measurement(uint8_t index,
125 uint8_t *signer_id,
126 size_t signer_id_size,
127 size_t *signer_id_len,
128 uint8_t *version,
129 size_t version_size,
130 size_t *version_len,
131 uint32_t *measurement_algo,
132 uint8_t *sw_type,
133 size_t sw_type_size,
134 size_t *sw_type_len,
135 uint8_t *measurement_value,
136 size_t measurement_value_size,
137 size_t *measurement_value_len,
138 bool *is_locked)
139{
140 psa_status_t status;
141 struct measured_boot_read_iovec_in_t read_iov_in = {
142 .index = index,
143 .sw_type_size = sw_type_size,
144 .version_size = version_size,
145 };
146
147 struct measured_boot_read_iovec_out_t read_iov_out;
148
149 psa_invec in_vec[] = {
150 {.base = &read_iov_in,
151 .len = sizeof(struct measured_boot_read_iovec_in_t)},
152 };
153
154 psa_outvec out_vec[] = {
155 {.base = &read_iov_out,
156 .len = sizeof(struct measured_boot_read_iovec_out_t)},
157 {.base = signer_id, .len = signer_id_size},
158 {.base = measurement_value, .len = measurement_value_size}
159 };
160
161 status = psa_call(RSS_MEASURED_BOOT_HANDLE, RSS_MEASURED_BOOT_READ,
162 in_vec, IOVEC_LEN(in_vec),
163 out_vec, IOVEC_LEN(out_vec));
164
165 if (status == PSA_SUCCESS) {
166 *is_locked = read_iov_out.is_locked;
167 *measurement_algo = read_iov_out.measurement_algo;
168 *sw_type_len = read_iov_out.sw_type_len;
169 *version_len = read_iov_out.version_len;
170 memcpy(sw_type, read_iov_out.sw_type, read_iov_out.sw_type_len);
171 memcpy(version, read_iov_out.version, read_iov_out.version_len);
172 *signer_id_len = out_vec[1].len;
173 *measurement_value_len = out_vec[2].len;
174 }
175
176 return status;
177}
178
Tamas Banc9ccc272022-01-18 16:20:47 +0100179#else /* !PLAT_RSS_NOT_SUPPORTED */
180
181psa_status_t
182rss_measured_boot_extend_measurement(uint8_t index,
183 const uint8_t *signer_id,
184 size_t signer_id_size,
185 const uint8_t *version,
186 size_t version_size,
187 uint32_t measurement_algo,
188 const uint8_t *sw_type,
189 size_t sw_type_size,
190 const uint8_t *measurement_value,
191 size_t measurement_value_size,
192 bool lock_measurement)
193{
194 log_measurement(index, signer_id, signer_id_size,
Tamas Ban4ebcd582022-10-05 13:22:23 +0200195 version, version_size, sw_type, sw_type_size,
196 measurement_algo, measurement_value,
197 measurement_value_size, lock_measurement);
Tamas Banc9ccc272022-01-18 16:20:47 +0100198
199 return PSA_SUCCESS;
200}
Mate Toth-Pal445ee112022-10-24 15:15:10 +0200201
202psa_status_t rss_measured_boot_read_measurement(uint8_t index,
203 uint8_t *signer_id,
204 size_t signer_id_size,
205 size_t *signer_id_len,
206 uint8_t *version,
207 size_t version_size,
208 size_t *version_len,
209 uint32_t *measurement_algo,
210 uint8_t *sw_type,
211 size_t sw_type_size,
212 size_t *sw_type_len,
213 uint8_t *measurement_value,
214 size_t measurement_value_size,
215 size_t *measurement_value_len,
216 bool *is_locked)
217{
218 return PSA_SUCCESS;
219}
220
Tamas Banc9ccc272022-01-18 16:20:47 +0100221#endif /* !PLAT_RSS_NOT_SUPPORTED */