blob: 7ef76652e6b66154c82f80bcf3b28aefa0114ebd [file] [log] [blame]
Yann Gautierdbe63ac2022-03-16 19:03:20 +01001#
laurenw-armb3b6de72024-03-05 14:55:18 -06002# Copyright (c) 2023-2024, STMicroelectronics - All Rights Reserved
Yann Gautierdbe63ac2022-03-16 19:03:20 +01003#
4# SPDX-License-Identifier: BSD-3-Clause
5#
6
7RESET_TO_BL2 := 1
8
Yann Gautierdbe63ac2022-03-16 19:03:20 +01009STM32MP_RECONFIGURE_CONSOLE ?= 0
10STM32MP_UART_BAUDRATE ?= 115200
11
12TRUSTED_BOARD_BOOT ?= 0
13STM32MP_USE_EXTERNAL_HEAP ?= 0
14
15# Use secure library from the ROM code for authentication
16STM32MP_CRYPTO_ROM_LIB ?= 0
17
18# Please don't increment this value without good understanding of
19# the monotonic counter
20STM32_TF_VERSION ?= 0
21
22# Enable dynamic memory mapping
23PLAT_XLAT_TABLES_DYNAMIC := 1
24
25# STM32 image header binary type for BL2
26STM32_HEADER_BL2_BINARY_TYPE := 0x10
27
28TF_CFLAGS += -Wsign-compare
29TF_CFLAGS += -Wformat-signedness
30
31# Boot devices
32STM32MP_EMMC ?= 0
33STM32MP_SDMMC ?= 0
34STM32MP_RAW_NAND ?= 0
35STM32MP_SPI_NAND ?= 0
36STM32MP_SPI_NOR ?= 0
37
38# Put both BL2 and FIP in eMMC boot partition
39STM32MP_EMMC_BOOT ?= 0
40
41# Serial boot devices
42STM32MP_UART_PROGRAMMER ?= 0
43STM32MP_USB_PROGRAMMER ?= 0
44
Chris Kay523e8642023-12-04 12:03:51 +000045$(eval DTC_V = $(shell $($(ARCH)-dtc) -v | awk '{print $$NF}'))
Yann Gautierdbe63ac2022-03-16 19:03:20 +010046$(eval DTC_VERSION = $(shell printf "%d" $(shell echo ${DTC_V} | cut -d- -f1 | sed "s/\./0/g" | grep -o "[0-9]*")))
47DTC_CPPFLAGS += ${INCLUDES}
48DTC_FLAGS += -Wno-unit_address_vs_reg
49ifeq ($(shell test $(DTC_VERSION) -ge 10601; echo $$?),0)
50DTC_FLAGS += -Wno-interrupt_provider
51endif
52
53# Macros and rules to build TF binary
54STM32_TF_ELF_LDFLAGS := --hash-style=gnu --as-needed
55STM32_TF_LINKERFILE := ${BUILD_PLAT}/${PLAT}.ld
56
57ASFLAGS += -DBL2_BIN_PATH=\"${BUILD_PLAT}/bl2.bin\"
58
59# Variables for use with stm32image
60STM32IMAGEPATH ?= tools/stm32image
61STM32IMAGE ?= ${STM32IMAGEPATH}/stm32image${BIN_EXT}
62STM32IMAGE_SRC := ${STM32IMAGEPATH}/stm32image.c
63STM32_DEPS += ${STM32IMAGE}
64
65FIP_DEPS += dtbs
66STM32MP_HW_CONFIG := ${BL33_CFG}
67
68# Add the HW_CONFIG to FIP and specify the same to certtool
69$(eval $(call TOOL_ADD_PAYLOAD,${STM32MP_HW_CONFIG},--hw-config))
70
71# Add the build options to pack Trusted OS Extra1 and Trusted OS Extra2 images
72# in the FIP if the platform requires.
73ifneq ($(BL32_EXTRA1),)
74$(eval $(call TOOL_ADD_IMG,BL32_EXTRA1,--tos-fw-extra1,,$(ENCRYPT_BL32)))
75endif
76ifneq ($(BL32_EXTRA2),)
77$(eval $(call TOOL_ADD_IMG,BL32_EXTRA2,--tos-fw-extra2,,$(ENCRYPT_BL32)))
78endif
79
80# Enable flags for C files
81$(eval $(call assert_booleans,\
82 $(sort \
83 PLAT_XLAT_TABLES_DYNAMIC \
Yann Gautierdbe63ac2022-03-16 19:03:20 +010084 STM32MP_EMMC \
85 STM32MP_EMMC_BOOT \
86 STM32MP_RAW_NAND \
87 STM32MP_RECONFIGURE_CONSOLE \
88 STM32MP_SDMMC \
89 STM32MP_SPI_NAND \
90 STM32MP_SPI_NOR \
91 STM32MP_UART_PROGRAMMER \
92 STM32MP_USB_PROGRAMMER \
93)))
94
95$(eval $(call assert_numerics,\
96 $(sort \
97 STM32_TF_VERSION \
98 STM32MP_UART_BAUDRATE \
99)))
100
101$(eval $(call add_defines,\
102 $(sort \
103 PLAT_XLAT_TABLES_DYNAMIC \
104 STM32_TF_VERSION \
Yann Gautierdbe63ac2022-03-16 19:03:20 +0100105 STM32MP_EMMC \
106 STM32MP_EMMC_BOOT \
107 STM32MP_RAW_NAND \
108 STM32MP_RECONFIGURE_CONSOLE \
109 STM32MP_SDMMC \
110 STM32MP_SPI_NAND \
111 STM32MP_SPI_NOR \
112 STM32MP_UART_BAUDRATE \
113 STM32MP_UART_PROGRAMMER \
114 STM32MP_USB_PROGRAMMER \
115)))
116
117# Include paths and source files
118PLAT_INCLUDES += -Iplat/st/common/include/
119
120include lib/fconf/fconf.mk
121include lib/libfdt/libfdt.mk
122include lib/zlib/zlib.mk
123
124PLAT_BL_COMMON_SOURCES += common/uuid.c \
125 plat/st/common/stm32mp_common.c
126
127
128include lib/xlat_tables_v2/xlat_tables.mk
129PLAT_BL_COMMON_SOURCES += ${XLAT_TABLES_LIB_SRCS}
130
131PLAT_BL_COMMON_SOURCES += drivers/clk/clk.c \
132 drivers/delay_timer/delay_timer.c \
133 drivers/delay_timer/generic_delay_timer.c \
134 drivers/st/clk/stm32mp_clkfunc.c \
135 drivers/st/ddr/stm32mp_ddr.c \
136 drivers/st/gpio/stm32_gpio.c \
137 drivers/st/regulator/regulator_core.c \
138 drivers/st/regulator/regulator_fixed.c \
139 plat/st/common/stm32mp_dt.c
140
141BL2_SOURCES += ${FCONF_SOURCES} ${FCONF_DYN_SOURCES}
142BL2_SOURCES += $(ZLIB_SOURCES)
143
144BL2_SOURCES += drivers/io/io_fip.c \
145 plat/st/common/bl2_io_storage.c \
Yann Gautierea1a3c62023-06-14 14:38:15 +0200146 plat/st/common/plat_image_load.c \
Yann Gautierdbe63ac2022-03-16 19:03:20 +0100147 plat/st/common/stm32mp_fconf_io.c
148
149BL2_SOURCES += drivers/io/io_block.c \
150 drivers/io/io_mtd.c \
151 drivers/io/io_storage.c
152
153ifneq (${DECRYPTION_SUPPORT},none)
154BL2_SOURCES += drivers/io/io_encrypted.c
155endif
156
157ifeq (${TRUSTED_BOARD_BOOT},1)
158AUTH_SOURCES := drivers/auth/auth_mod.c \
159 drivers/auth/crypto_mod.c \
160 drivers/auth/img_parser_mod.c
161
162ifeq (${GENERATE_COT},1)
163TFW_NVCTR_VAL := 0
164NTFW_NVCTR_VAL := 0
Yann Gautierdbe63ac2022-03-16 19:03:20 +0100165KEY_ALG := ecdsa
166HASH_ALG := sha256
167
168ifeq (${SAVE_KEYS},1)
169TRUSTED_WORLD_KEY ?= ${BUILD_PLAT}/trusted.pem
170NON_TRUSTED_WORLD_KEY ?= ${BUILD_PLAT}/non-trusted.pem
171BL32_KEY ?= ${BUILD_PLAT}/trusted_os.pem
172BL33_KEY ?= ${BUILD_PLAT}/non-trusted_os.pem
173endif
174
175endif
176TF_MBEDTLS_KEY_ALG := ecdsa
laurenw-armb4ab90b2023-10-12 13:34:21 -0500177KEY_SIZE := 256
Yann Gautierdbe63ac2022-03-16 19:03:20 +0100178
179ifneq (${MBEDTLS_DIR},)
180MBEDTLS_MAJOR=$(shell grep -hP "define MBEDTLS_VERSION_MAJOR" \
181${MBEDTLS_DIR}/include/mbedtls/*.h | grep -oe '\([0-9.]*\)')
182
Yann Gautierdbe63ac2022-03-16 19:03:20 +0100183ifeq (${MBEDTLS_MAJOR}, 3)
Yann Gautierd8c1a3b2023-03-06 13:01:10 +0100184MBEDTLS_CONFIG_FILE ?= "<stm32mp_mbedtls_config-3.h>"
laurenw-armb3b6de72024-03-05 14:55:18 -0600185else
186$(error Error: TF-A only supports MbedTLS versions > 3.x)
Yann Gautierdbe63ac2022-03-16 19:03:20 +0100187endif
188endif
189
190include drivers/auth/mbedtls/mbedtls_x509.mk
191
192COT_DESC_IN_DTB := 1
193AUTH_SOURCES += lib/fconf/fconf_cot_getter.c \
194 lib/fconf/fconf_tbbr_getter.c \
195 plat/st/common/stm32mp_crypto_lib.c
196
197BL2_SOURCES += $(AUTH_SOURCES) \
198 plat/st/common/stm32mp_trusted_boot.c
199endif
200
201ifneq ($(filter 1,${STM32MP_EMMC} ${STM32MP_SDMMC}),)
202BL2_SOURCES += drivers/mmc/mmc.c \
203 drivers/partition/gpt.c \
204 drivers/partition/partition.c
205endif
206
207ifneq ($(filter 1,${STM32MP_SPI_NAND} ${STM32MP_SPI_NOR}),)
208BL2_SOURCES += drivers/mtd/spi-mem/spi_mem.c
209endif
210
211ifeq (${STM32MP_RAW_NAND},1)
212$(eval $(call add_define_val,NAND_ONFI_DETECT,1))
213BL2_SOURCES += drivers/mtd/nand/raw_nand.c
214endif
215
216ifeq (${STM32MP_SPI_NAND},1)
217BL2_SOURCES += drivers/mtd/nand/spi_nand.c
218endif
219
220ifeq (${STM32MP_SPI_NOR},1)
221ifneq (${STM32MP_FORCE_MTD_START_OFFSET},)
222$(eval $(call add_define_val,STM32MP_NOR_FIP_OFFSET,${STM32MP_FORCE_MTD_START_OFFSET}))
223endif
224BL2_SOURCES += drivers/mtd/nor/spi_nor.c
225endif
226
227ifneq ($(filter 1,${STM32MP_RAW_NAND} ${STM32MP_SPI_NAND}),)
228ifneq (${STM32MP_FORCE_MTD_START_OFFSET},)
229$(eval $(call add_define_val,STM32MP_NAND_FIP_OFFSET,${STM32MP_FORCE_MTD_START_OFFSET}))
230endif
231BL2_SOURCES += drivers/mtd/nand/core.c
232endif
233
234ifneq ($(filter 1,${STM32MP_UART_PROGRAMMER} ${STM32MP_USB_PROGRAMMER}),)
235BL2_SOURCES += drivers/io/io_memmap.c
236endif
237
238ifeq (${STM32MP_UART_PROGRAMMER},1)
239BL2_SOURCES += plat/st/common/stm32cubeprogrammer_uart.c
240endif
241
242ifeq (${STM32MP_USB_PROGRAMMER},1)
243BL2_SOURCES += drivers/usb/usb_device.c \
244 plat/st/common/stm32cubeprogrammer_usb.c \
245 plat/st/common/usb_dfu.c
246endif
247
248BL2_SOURCES += drivers/st/ddr/stm32mp_ddr_test.c \
249 drivers/st/ddr/stm32mp_ram.c
250
251BL2_SOURCES += common/desc_image_load.c
252
253BL2_SOURCES += lib/optee/optee_utils.c