Tom Rini | 10e4779 | 2018-05-06 17:58:06 -0400 | [diff] [blame] | 1 | // SPDX-License-Identifier: GPL-2.0+ |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 2 | /* |
| 3 | * Copyright 2016 NXP Semiconductor, Inc. |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 4 | */ |
| 5 | #include <common.h> |
Simon Glass | 0f2af88 | 2020-05-10 11:40:05 -0600 | [diff] [blame] | 6 | #include <log.h> |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 7 | #include <malloc.h> |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 8 | #include <config.h> |
| 9 | #include <errno.h> |
Simon Glass | 274e0b0 | 2020-05-10 11:39:56 -0600 | [diff] [blame] | 10 | #include <asm/cache.h> |
Simon Glass | 3ba929a | 2020-10-30 21:38:53 -0600 | [diff] [blame] | 11 | #include <asm/global_data.h> |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 12 | #include <asm/system.h> |
| 13 | #include <asm/types.h> |
| 14 | #include <asm/arch/soc.h> |
| 15 | #ifdef CONFIG_FSL_LSCH3 |
| 16 | #include <asm/arch/immap_lsch3.h> |
| 17 | #elif defined(CONFIG_FSL_LSCH2) |
| 18 | #include <asm/arch/immap_lsch2.h> |
| 19 | #endif |
Michael Walle | 16fd24c | 2020-11-18 17:45:54 +0100 | [diff] [blame] | 20 | #if CONFIG_IS_ENABLED(ARMV8_SEC_FIRMWARE_SUPPORT) |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 21 | #include <asm/armv8/sec_firmware.h> |
| 22 | #endif |
Sumit Garg | e0f9e9b | 2016-09-01 12:56:44 -0400 | [diff] [blame] | 23 | #ifdef CONFIG_CHAIN_OF_TRUST |
| 24 | #include <fsl_validate.h> |
| 25 | #endif |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 26 | |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 27 | #ifdef CONFIG_SYS_LS_PPA_FW_IN_NAND |
| 28 | #include <nand.h> |
| 29 | #elif defined(CONFIG_SYS_LS_PPA_FW_IN_MMC) |
| 30 | #include <mmc.h> |
| 31 | #endif |
| 32 | |
| 33 | DECLARE_GLOBAL_DATA_PTR; |
| 34 | |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 35 | int ppa_init(void) |
| 36 | { |
York Sun | e6b871e | 2017-05-15 08:51:59 -0700 | [diff] [blame] | 37 | unsigned int el = current_el(); |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 38 | void *ppa_fit_addr; |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 39 | u32 *boot_loc_ptr_l, *boot_loc_ptr_h; |
Sumit Garg | b6fa55e | 2017-09-01 13:55:01 +0530 | [diff] [blame] | 40 | u32 *loadable_l, *loadable_h; |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 41 | int ret; |
| 42 | |
Sumit Garg | e0f9e9b | 2016-09-01 12:56:44 -0400 | [diff] [blame] | 43 | #ifdef CONFIG_CHAIN_OF_TRUST |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 44 | uintptr_t ppa_esbc_hdr = 0; |
Sumit Garg | e0f9e9b | 2016-09-01 12:56:44 -0400 | [diff] [blame] | 45 | uintptr_t ppa_img_addr = 0; |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 46 | #if defined(CONFIG_SYS_LS_PPA_FW_IN_MMC) || \ |
| 47 | defined(CONFIG_SYS_LS_PPA_FW_IN_NAND) |
| 48 | void *ppa_hdr_ddr; |
| 49 | #endif |
Sumit Garg | e0f9e9b | 2016-09-01 12:56:44 -0400 | [diff] [blame] | 50 | #endif |
| 51 | |
York Sun | e6b871e | 2017-05-15 08:51:59 -0700 | [diff] [blame] | 52 | /* Skip if running at lower exception level */ |
| 53 | if (el < 3) { |
| 54 | debug("Skipping PPA init, running at EL%d\n", el); |
| 55 | return 0; |
| 56 | } |
| 57 | |
Hou Zhiqiang | 7f83a5f | 2016-07-29 19:26:34 +0800 | [diff] [blame] | 58 | #ifdef CONFIG_SYS_LS_PPA_FW_IN_XIP |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 59 | ppa_fit_addr = (void *)CONFIG_SYS_LS_PPA_FW_ADDR; |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 60 | debug("%s: PPA image load from XIP\n", __func__); |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 61 | #ifdef CONFIG_CHAIN_OF_TRUST |
| 62 | ppa_esbc_hdr = CONFIG_SYS_LS_PPA_ESBC_ADDR; |
| 63 | #endif |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 64 | #else /* !CONFIG_SYS_LS_PPA_FW_IN_XIP */ |
| 65 | size_t fw_length, fdt_header_len = sizeof(struct fdt_header); |
| 66 | |
| 67 | /* Copy PPA image from MMC/SD/NAND to allocated memory */ |
| 68 | #ifdef CONFIG_SYS_LS_PPA_FW_IN_MMC |
| 69 | struct mmc *mmc; |
| 70 | int dev = CONFIG_SYS_MMC_ENV_DEV; |
| 71 | struct fdt_header *fitp; |
| 72 | u32 cnt; |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 73 | u32 blk; |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 74 | |
| 75 | debug("%s: PPA image load from eMMC/SD\n", __func__); |
| 76 | |
| 77 | ret = mmc_initialize(gd->bd); |
| 78 | if (ret) { |
| 79 | printf("%s: mmc_initialize() failed\n", __func__); |
| 80 | return ret; |
| 81 | } |
| 82 | mmc = find_mmc_device(dev); |
| 83 | if (!mmc) { |
| 84 | printf("PPA: MMC cannot find device for PPA firmware\n"); |
| 85 | return -ENODEV; |
| 86 | } |
| 87 | |
| 88 | ret = mmc_init(mmc); |
| 89 | if (ret) { |
| 90 | printf("%s: mmc_init() failed\n", __func__); |
| 91 | return ret; |
| 92 | } |
| 93 | |
| 94 | fitp = malloc(roundup(fdt_header_len, 512)); |
| 95 | if (!fitp) { |
| 96 | printf("PPA: malloc failed for FIT header(size 0x%zx)\n", |
| 97 | roundup(fdt_header_len, 512)); |
| 98 | return -ENOMEM; |
| 99 | } |
| 100 | |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 101 | blk = CONFIG_SYS_LS_PPA_FW_ADDR / 512; |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 102 | cnt = DIV_ROUND_UP(fdt_header_len, 512); |
| 103 | debug("%s: MMC read PPA FIT header: dev # %u, block # %u, count %u\n", |
| 104 | __func__, dev, blk, cnt); |
Yinbo Zhu | 45c20bd | 2018-09-25 14:47:06 +0800 | [diff] [blame] | 105 | ret = blk_dread(mmc_get_blk_desc(mmc), blk, cnt, fitp); |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 106 | if (ret != cnt) { |
| 107 | free(fitp); |
| 108 | printf("MMC/SD read of PPA FIT header at offset 0x%x failed\n", |
| 109 | CONFIG_SYS_LS_PPA_FW_ADDR); |
| 110 | return -EIO; |
| 111 | } |
| 112 | |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 113 | ret = fdt_check_header(fitp); |
| 114 | if (ret) { |
| 115 | free(fitp); |
| 116 | printf("%s: fdt_check_header() failed\n", __func__); |
| 117 | return ret; |
| 118 | } |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 119 | |
| 120 | #ifdef CONFIG_CHAIN_OF_TRUST |
| 121 | ppa_hdr_ddr = malloc(CONFIG_LS_PPA_ESBC_HDR_SIZE); |
| 122 | if (!ppa_hdr_ddr) { |
| 123 | printf("PPA: malloc failed for PPA header\n"); |
| 124 | return -ENOMEM; |
| 125 | } |
| 126 | |
| 127 | blk = CONFIG_SYS_LS_PPA_ESBC_ADDR >> 9; |
| 128 | cnt = DIV_ROUND_UP(CONFIG_LS_PPA_ESBC_HDR_SIZE, 512); |
Yinbo Zhu | 45c20bd | 2018-09-25 14:47:06 +0800 | [diff] [blame] | 129 | ret = blk_dread(mmc_get_blk_desc(mmc), blk, cnt, ppa_hdr_ddr); |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 130 | if (ret != cnt) { |
| 131 | free(ppa_hdr_ddr); |
| 132 | printf("MMC/SD read of PPA header failed\n"); |
| 133 | return -EIO; |
| 134 | } |
| 135 | debug("Read PPA header to 0x%p\n", ppa_hdr_ddr); |
| 136 | |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 137 | ppa_esbc_hdr = (uintptr_t)ppa_hdr_ddr; |
| 138 | #endif |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 139 | |
| 140 | fw_length = fdt_totalsize(fitp); |
| 141 | free(fitp); |
| 142 | |
| 143 | fw_length = roundup(fw_length, 512); |
| 144 | ppa_fit_addr = malloc(fw_length); |
| 145 | if (!ppa_fit_addr) { |
| 146 | printf("PPA: malloc failed for PPA image(size 0x%zx)\n", |
| 147 | fw_length); |
| 148 | return -ENOMEM; |
| 149 | } |
| 150 | |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 151 | blk = CONFIG_SYS_LS_PPA_FW_ADDR / 512; |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 152 | cnt = DIV_ROUND_UP(fw_length, 512); |
| 153 | debug("%s: MMC read PPA FIT image: dev # %u, block # %u, count %u\n", |
| 154 | __func__, dev, blk, cnt); |
Yinbo Zhu | 45c20bd | 2018-09-25 14:47:06 +0800 | [diff] [blame] | 155 | ret = blk_dread(mmc_get_blk_desc(mmc), blk, cnt, ppa_fit_addr); |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 156 | if (ret != cnt) { |
| 157 | free(ppa_fit_addr); |
| 158 | printf("MMC/SD read of PPA FIT header at offset 0x%x failed\n", |
| 159 | CONFIG_SYS_LS_PPA_FW_ADDR); |
| 160 | return -EIO; |
| 161 | } |
| 162 | |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 163 | #elif defined(CONFIG_SYS_LS_PPA_FW_IN_NAND) |
| 164 | struct fdt_header fit; |
| 165 | |
| 166 | debug("%s: PPA image load from NAND\n", __func__); |
| 167 | |
| 168 | nand_init(); |
Grygorii Strashko | 3f24355 | 2017-06-26 19:13:07 -0500 | [diff] [blame] | 169 | ret = nand_read(get_nand_dev_by_index(0), |
| 170 | (loff_t)CONFIG_SYS_LS_PPA_FW_ADDR, |
| 171 | &fdt_header_len, (u_char *)&fit); |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 172 | if (ret == -EUCLEAN) { |
| 173 | printf("NAND read of PPA FIT header at offset 0x%x failed\n", |
| 174 | CONFIG_SYS_LS_PPA_FW_ADDR); |
| 175 | return -EIO; |
| 176 | } |
| 177 | |
| 178 | ret = fdt_check_header(&fit); |
| 179 | if (ret) { |
| 180 | printf("%s: fdt_check_header() failed\n", __func__); |
| 181 | return ret; |
| 182 | } |
| 183 | |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 184 | #ifdef CONFIG_CHAIN_OF_TRUST |
| 185 | ppa_hdr_ddr = malloc(CONFIG_LS_PPA_ESBC_HDR_SIZE); |
| 186 | if (!ppa_hdr_ddr) { |
| 187 | printf("PPA: malloc failed for PPA header\n"); |
| 188 | return -ENOMEM; |
| 189 | } |
| 190 | |
| 191 | fw_length = CONFIG_LS_PPA_ESBC_HDR_SIZE; |
| 192 | |
Grygorii Strashko | 3f24355 | 2017-06-26 19:13:07 -0500 | [diff] [blame] | 193 | ret = nand_read(get_nand_dev_by_index(0), |
| 194 | (loff_t)CONFIG_SYS_LS_PPA_ESBC_ADDR, |
| 195 | &fw_length, (u_char *)ppa_hdr_ddr); |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 196 | if (ret == -EUCLEAN) { |
| 197 | free(ppa_hdr_ddr); |
| 198 | printf("NAND read of PPA firmware at offset 0x%x failed\n", |
| 199 | CONFIG_SYS_LS_PPA_FW_ADDR); |
| 200 | return -EIO; |
| 201 | } |
| 202 | debug("Read PPA header to 0x%p\n", ppa_hdr_ddr); |
| 203 | |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 204 | ppa_esbc_hdr = (uintptr_t)ppa_hdr_ddr; |
| 205 | #endif |
| 206 | |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 207 | fw_length = fdt_totalsize(&fit); |
| 208 | |
| 209 | ppa_fit_addr = malloc(fw_length); |
| 210 | if (!ppa_fit_addr) { |
| 211 | printf("PPA: malloc failed for PPA image(size 0x%zx)\n", |
| 212 | fw_length); |
| 213 | return -ENOMEM; |
| 214 | } |
| 215 | |
Grygorii Strashko | 3f24355 | 2017-06-26 19:13:07 -0500 | [diff] [blame] | 216 | ret = nand_read(get_nand_dev_by_index(0), |
| 217 | (loff_t)CONFIG_SYS_LS_PPA_FW_ADDR, |
| 218 | &fw_length, (u_char *)ppa_fit_addr); |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 219 | if (ret == -EUCLEAN) { |
| 220 | free(ppa_fit_addr); |
| 221 | printf("NAND read of PPA firmware at offset 0x%x failed\n", |
| 222 | CONFIG_SYS_LS_PPA_FW_ADDR); |
| 223 | return -EIO; |
| 224 | } |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 225 | #else |
| 226 | #error "No CONFIG_SYS_LS_PPA_FW_IN_xxx defined" |
| 227 | #endif |
| 228 | |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 229 | #endif |
| 230 | |
Sumit Garg | e0f9e9b | 2016-09-01 12:56:44 -0400 | [diff] [blame] | 231 | #ifdef CONFIG_CHAIN_OF_TRUST |
| 232 | ppa_img_addr = (uintptr_t)ppa_fit_addr; |
| 233 | if (fsl_check_boot_mode_secure() != 0) { |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 234 | /* |
| 235 | * In case of failure in validation, fsl_secboot_validate |
| 236 | * would not return back in case of Production environment |
| 237 | * with ITS=1. In Development environment (ITS=0 and |
| 238 | * SB_EN=1), the function may return back in case of |
| 239 | * non-fatal failures. |
| 240 | */ |
Sumit Garg | e0f9e9b | 2016-09-01 12:56:44 -0400 | [diff] [blame] | 241 | ret = fsl_secboot_validate(ppa_esbc_hdr, |
Vinitha Pillai-B57223 | a4b3ded | 2017-03-23 13:48:14 +0530 | [diff] [blame] | 242 | PPA_KEY_HASH, |
Sumit Garg | e0f9e9b | 2016-09-01 12:56:44 -0400 | [diff] [blame] | 243 | &ppa_img_addr); |
| 244 | if (ret != 0) |
Sumit Garg | b6fa55e | 2017-09-01 13:55:01 +0530 | [diff] [blame] | 245 | printf("SEC firmware(s) validation failed\n"); |
Sumit Garg | e0f9e9b | 2016-09-01 12:56:44 -0400 | [diff] [blame] | 246 | else |
Sumit Garg | b6fa55e | 2017-09-01 13:55:01 +0530 | [diff] [blame] | 247 | printf("SEC firmware(s) validation Successful\n"); |
Sumit Garg | e0f9e9b | 2016-09-01 12:56:44 -0400 | [diff] [blame] | 248 | } |
Sumit Garg | 22a66f8 | 2017-04-20 05:09:12 +0530 | [diff] [blame] | 249 | #if defined(CONFIG_SYS_LS_PPA_FW_IN_MMC) || \ |
| 250 | defined(CONFIG_SYS_LS_PPA_FW_IN_NAND) |
| 251 | free(ppa_hdr_ddr); |
| 252 | #endif |
Sumit Garg | e0f9e9b | 2016-09-01 12:56:44 -0400 | [diff] [blame] | 253 | #endif |
| 254 | |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 255 | #ifdef CONFIG_FSL_LSCH3 |
Tom Rini | 376b88a | 2022-10-28 20:27:13 -0400 | [diff] [blame] | 256 | struct ccsr_gur __iomem *gur = (void *)(CFG_SYS_FSL_GUTS_ADDR); |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 257 | boot_loc_ptr_l = &gur->bootlocptrl; |
| 258 | boot_loc_ptr_h = &gur->bootlocptrh; |
Sumit Garg | b6fa55e | 2017-09-01 13:55:01 +0530 | [diff] [blame] | 259 | |
| 260 | /* Assign addresses to loadable ptrs */ |
| 261 | loadable_l = &gur->scratchrw[4]; |
| 262 | loadable_h = &gur->scratchrw[5]; |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 263 | #elif defined(CONFIG_FSL_LSCH2) |
Tom Rini | 376b88a | 2022-10-28 20:27:13 -0400 | [diff] [blame] | 264 | struct ccsr_scfg __iomem *scfg = (void *)(CFG_SYS_FSL_SCFG_ADDR); |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 265 | boot_loc_ptr_l = &scfg->scratchrw[1]; |
| 266 | boot_loc_ptr_h = &scfg->scratchrw[0]; |
Sumit Garg | b6fa55e | 2017-09-01 13:55:01 +0530 | [diff] [blame] | 267 | |
| 268 | /* Assign addresses to loadable ptrs */ |
| 269 | loadable_l = &scfg->scratchrw[2]; |
| 270 | loadable_h = &scfg->scratchrw[3]; |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 271 | #endif |
| 272 | |
| 273 | debug("fsl-ppa: boot_loc_ptr_l = 0x%p, boot_loc_ptr_h =0x%p\n", |
| 274 | boot_loc_ptr_l, boot_loc_ptr_h); |
Sumit Garg | b6fa55e | 2017-09-01 13:55:01 +0530 | [diff] [blame] | 275 | ret = sec_firmware_init(ppa_fit_addr, boot_loc_ptr_l, boot_loc_ptr_h, |
| 276 | loadable_l, loadable_h); |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 277 | |
Hou Zhiqiang | c697bd1 | 2017-03-17 16:12:32 +0800 | [diff] [blame] | 278 | #if defined(CONFIG_SYS_LS_PPA_FW_IN_MMC) || \ |
| 279 | defined(CONFIG_SYS_LS_PPA_FW_IN_NAND) |
| 280 | free(ppa_fit_addr); |
| 281 | #endif |
| 282 | |
Hou Zhiqiang | 0078786 | 2016-06-28 20:18:14 +0800 | [diff] [blame] | 283 | return ret; |
| 284 | } |