blob: 5990f2753b95ab5dbdce03c1015bdf44b98589a2 [file] [log] [blame]
Antonio Nino Diazae6779e2017-11-06 14:49:04 +00001#
Antonio Nino Diaz1f470022018-03-27 09:39:47 +01002# Copyright (c) 2013-2018, ARM Limited and Contributors. All rights reserved.
Antonio Nino Diazae6779e2017-11-06 14:49:04 +00003#
4# SPDX-License-Identifier: BSD-3-Clause
5#
6
7PLAT_INCLUDES := -Iinclude/common/tbbr \
8 -Iinclude/plat/arm/common/ \
9 -Iinclude/plat/arm/common/aarch64/ \
10 -Iplat/rpi3/include
11
12PLAT_BL_COMMON_SOURCES := drivers/console/aarch64/console.S \
13 drivers/ti/uart/aarch64/16550_console.S \
14 plat/rpi3/rpi3_common.c
15
16BL1_SOURCES += drivers/io/io_fip.c \
17 drivers/io/io_memmap.c \
18 drivers/io/io_storage.c \
19 lib/cpus/aarch64/cortex_a53.S \
20 plat/common/aarch64/platform_mp_stack.S \
21 plat/rpi3/aarch64/plat_helpers.S \
22 plat/rpi3/rpi3_bl1_setup.c \
Antonio Nino Diazecf34712018-07-12 13:38:53 +010023 plat/rpi3/rpi3_io_storage.c \
24 plat/rpi3/rpi3_mbox.c
Antonio Nino Diazae6779e2017-11-06 14:49:04 +000025
26BL2_SOURCES += common/desc_image_load.c \
27 drivers/io/io_fip.c \
28 drivers/io/io_memmap.c \
29 drivers/io/io_storage.c \
30 plat/common/aarch64/platform_mp_stack.S \
31 plat/rpi3/aarch64/plat_helpers.S \
32 plat/rpi3/aarch64/rpi3_bl2_mem_params_desc.c \
33 plat/rpi3/rpi3_bl2_setup.c \
34 plat/rpi3/rpi3_image_load.c \
35 plat/rpi3/rpi3_io_storage.c
36
37BL31_SOURCES += lib/cpus/aarch64/cortex_a53.S \
38 plat/common/aarch64/plat_psci_common.c \
39 plat/rpi3/aarch64/plat_helpers.S \
40 plat/rpi3/rpi3_bl31_setup.c \
41 plat/rpi3/rpi3_pm.c \
42 plat/rpi3/rpi3_topology.c
43
44# Translation tables library
45include lib/xlat_tables_v2/xlat_tables.mk
46
47PLAT_BL_COMMON_SOURCES += ${XLAT_TABLES_LIB_SRCS}
48
49# Tune compiler for Cortex-A53
50ifeq ($(notdir $(CC)),armclang)
51 TF_CFLAGS_aarch64 += -mcpu=cortex-a53
52else ifneq ($(findstring clang,$(notdir $(CC))),)
53 TF_CFLAGS_aarch64 += -mcpu=cortex-a53
54else
55 TF_CFLAGS_aarch64 += -mtune=cortex-a53
56endif
57
Antonio Nino Diazdfe895d2018-07-12 08:58:38 +010058# Platform Makefile target
59# ------------------------
60
61RPI3_BL1_PAD_BIN := ${BUILD_PLAT}/bl1_pad.bin
62RPI3_ARMSTUB8_BIN := ${BUILD_PLAT}/armstub8.bin
63
64# Add new default target when compiling this platform
65all: armstub
66
67# This target concatenates BL1 and the FIP so that the base addresses match the
68# ones defined in the memory map
69armstub: bl1 fip
70 @echo " CAT $@"
71 ${Q}cp ${BUILD_PLAT}/bl1.bin ${RPI3_BL1_PAD_BIN}
72 ${Q}truncate --size=131072 ${RPI3_BL1_PAD_BIN}
73 ${Q}cat ${RPI3_BL1_PAD_BIN} ${BUILD_PLAT}/fip.bin > ${RPI3_ARMSTUB8_BIN}
74 @${ECHO_BLANK_LINE}
75 @echo "Built $@ successfully"
76 @${ECHO_BLANK_LINE}
77
Antonio Nino Diazae6779e2017-11-06 14:49:04 +000078# Build config flags
79# ------------------
80
81# Enable all errata workarounds for Cortex-A53
82ERRATA_A53_826319 := 1
83ERRATA_A53_835769 := 1
84ERRATA_A53_836870 := 1
85ERRATA_A53_843419 := 1
86ERRATA_A53_855873 := 1
87
Dimitris Papastamos8e5bd5e2018-01-24 16:41:14 +000088WORKAROUND_CVE_2017_5715 := 0
89
Antonio Nino Diazae6779e2017-11-06 14:49:04 +000090# Disable the PSCI platform compatibility layer by default
91ENABLE_PLAT_COMPAT := 0
92
93# Enable reset to BL31 by default
94RESET_TO_BL31 := 1
95
96# Have different sections for code and rodata
97SEPARATE_CODE_AND_RODATA := 1
98
99# Use Coherent memory
100USE_COHERENT_MEM := 1
101
102# Enable new version of image loading
103LOAD_IMAGE_V2 := 1
104
Antonio Nino Diaz1f470022018-03-27 09:39:47 +0100105# Use multi console API
106MULTI_CONSOLE_API := 1
107
Antonio Nino Diazae6779e2017-11-06 14:49:04 +0000108# Platform build flags
109# --------------------
110
111# BL33 images are in AArch64 by default
112RPI3_BL33_IN_AARCH32 := 0
113
114# BL32 location
115RPI3_BL32_RAM_LOCATION := tdram
116ifeq (${RPI3_BL32_RAM_LOCATION}, tsram)
117 RPI3_BL32_RAM_LOCATION_ID = SEC_SRAM_ID
118else ifeq (${RPI3_BL32_RAM_LOCATION}, tdram)
119 RPI3_BL32_RAM_LOCATION_ID = SEC_DRAM_ID
120else
121 $(error "Unsupported RPI3_BL32_RAM_LOCATION value")
122endif
123
124# Process platform flags
125# ----------------------
126
127$(eval $(call add_define,RPI3_BL32_RAM_LOCATION_ID))
128$(eval $(call add_define,RPI3_BL33_IN_AARCH32))
129
130# Verify build config
131# -------------------
132
133ifneq (${LOAD_IMAGE_V2}, 1)
134 $(error Error: rpi3 needs LOAD_IMAGE_V2=1)
135endif
136
Antonio Nino Diaz1f470022018-03-27 09:39:47 +0100137ifneq (${MULTI_CONSOLE_API}, 1)
138 $(error Error: rpi3 needs MULTI_CONSOLE_API=1)
139endif
140
Antonio Nino Diazae6779e2017-11-06 14:49:04 +0000141ifeq (${ARCH},aarch32)
142 $(error Error: AArch32 not supported on rpi3)
143endif
Ying-Chun Liu (PaulLiu)d9f76e62018-06-10 02:00:27 +0800144
145ifeq (${SPD},opteed)
146BL2_SOURCES += \
147 lib/optee/optee_utils.c
148endif
149
150# Add the build options to pack Trusted OS Extra1 and Trusted OS Extra2 images
151# in the FIP if the platform requires.
152ifneq ($(BL32_EXTRA1),)
153$(eval $(call TOOL_ADD_IMG,BL32_EXTRA1,--tos-fw-extra1))
154endif
155ifneq ($(BL32_EXTRA2),)
156$(eval $(call TOOL_ADD_IMG,BL32_EXTRA2,--tos-fw-extra2))
157endif
Ying-Chun Liu (PaulLiu)9128df62018-07-04 02:26:48 +0800158
159ifneq (${TRUSTED_BOARD_BOOT},0)
160
161 include drivers/auth/mbedtls/mbedtls_crypto.mk
162 include drivers/auth/mbedtls/mbedtls_x509.mk
163
164 USE_TBBR_DEFS := 1
165
166 AUTH_SOURCES := drivers/auth/auth_mod.c \
167 drivers/auth/crypto_mod.c \
168 drivers/auth/img_parser_mod.c \
169 drivers/auth/tbbr/tbbr_cot.c
170
171 PLAT_INCLUDES += -Iinclude/bl1/tbbr
172
173 BL1_SOURCES += ${AUTH_SOURCES} \
174 bl1/tbbr/tbbr_img_desc.c \
175 plat/common/tbbr/plat_tbbr.c \
176 plat/rpi3/rpi3_trusted_boot.c \
177 plat/rpi3/rpi3_rotpk.S
178
179 BL2_SOURCES += ${AUTH_SOURCES} \
180 plat/common/tbbr/plat_tbbr.c \
181 plat/rpi3/rpi3_trusted_boot.c \
182 plat/rpi3/rpi3_rotpk.S
183
184 ROT_KEY = $(BUILD_PLAT)/rot_key.pem
185 ROTPK_HASH = $(BUILD_PLAT)/rotpk_sha256.bin
186
187 $(eval $(call add_define_val,ROTPK_HASH,'"$(ROTPK_HASH)"'))
188
189 $(BUILD_PLAT)/bl1/rpi3_rotpk.o: $(ROTPK_HASH)
190 $(BUILD_PLAT)/bl2/rpi3_rotpk.o: $(ROTPK_HASH)
191
192 certificates: $(ROT_KEY)
193
194 $(ROT_KEY):
195 @echo " OPENSSL $@"
196 $(Q)openssl genrsa 2048 > $@ 2>/dev/null
197
198 $(ROTPK_HASH): $(ROT_KEY)
199 @echo " OPENSSL $@"
200 $(Q)openssl rsa -in $< -pubout -outform DER 2>/dev/null |\
201 openssl dgst -sha256 -binary > $@ 2>/dev/null
202endif