blob: 75f2f24042c05d16228d686e17b96c29ace98399 [file] [log] [blame]
Simon Glassa20a7b72019-01-30 20:51:20 -07001Chromium OS Support in U-Boot
2=============================
Simon Glass26784fc2017-05-31 17:57:24 -06003
Simon Glassa20a7b72019-01-30 20:51:20 -07004Introduction
5------------
Simon Glass26784fc2017-05-31 17:57:24 -06006
Simon Glassa20a7b72019-01-30 20:51:20 -07007This describes how to use U-Boot with Chromium OS. Several options are
8available:
Simon Glass26784fc2017-05-31 17:57:24 -06009
Simon Glassa20a7b72019-01-30 20:51:20 -070010 - Running U-Boot from the 'altfw' feature, which is available on selected
11 Chromebooks from 2019 onwards (initially Grunt). Press '1' from the
12 developer-mode screen to get into U-Boot. See here for details:
13 https://sites.google.com/a/chromium.org/dev/chromium-os/poking-around-your-chrome-os-device?pli=1
Simon Glass26784fc2017-05-31 17:57:24 -060014
Simon Glassa20a7b72019-01-30 20:51:20 -070015 - Running U-Boot from the disk partition. This involves signing U-Boot and
16 placing it on the disk, for booting as a 'kernel'. See
17 README.chromium-chainload for information on this. This is the only
18 option on non-U-Boot Chromebooks from 2013 to 2018 and is somewhat
19 more involved.
Simon Glass26784fc2017-05-31 17:57:24 -060020
Simon Glassa20a7b72019-01-30 20:51:20 -070021 - Running U-Boot with Chromium OS verified boot. This allows U-Boot to be
22 used instead of either or both of depthcharge (a bootloader which forked
23 from U-Boot in 2013) and coreboot. See below for more information on
24 this.
Simon Glass26784fc2017-05-31 17:57:24 -060025
Simon Glass0167f192020-09-05 14:50:52 -060026 - Running U-Boot from coreboot. This allows U-Boot to run on more devices
27 since many of them only support coreboot as the bootloader and have
28 no bare-metal support in U-Boot. For this, use the 'coreboot' target.
29
Simon Glass5e73d3c2020-09-05 14:50:53 -060030 - Running U-Boot and booting into a Chrome OS image, but without verified
31 boot. This can be useful for testing.
32
Simon Glass26784fc2017-05-31 17:57:24 -060033
Simon Glassa20a7b72019-01-30 20:51:20 -070034U-Boot with Chromium OS verified boot
35-------------------------------------
Simon Glass26784fc2017-05-31 17:57:24 -060036
Simon Glassa20a7b72019-01-30 20:51:20 -070037To obtain:
Simon Glass26784fc2017-05-31 17:57:24 -060038
Simon Glassa20a7b72019-01-30 20:51:20 -070039 git clone https://github.com/sglass68/u-boot.git
40 cd u-boot
41 git checkout cros-master
Simon Glass26784fc2017-05-31 17:57:24 -060042
Simon Glass4872d932019-07-10 11:04:13 -060043 cd ..
44 git clone https://chromium.googlesource.com/chromiumos/platform/vboot_reference
45 cd vboot_reference
46 git checkout 45964294
47 # futility: updater: Correct output version for Snow
48
Simon Glassa20a7b72019-01-30 20:51:20 -070049To build for sandbox:
Simon Glass26784fc2017-05-31 17:57:24 -060050
Simon Glassa20a7b72019-01-30 20:51:20 -070051 UB=/tmp/b/chromeos_sandbox # U-Boot build directory
Simon Glass4872d932019-07-10 11:04:13 -060052 cd u-boot
53 make O=$UB chromeos_sandbox_defconfig
54 make O=$UB -j20 -s VBOOT_SOURCE=/path/to/vboot_reference \
Simon Glassa20a7b72019-01-30 20:51:20 -070055 MAKEFLAGS_VBOOT=DEBUG=1 QUIET=1
Simon Glass26784fc2017-05-31 17:57:24 -060056
Simon Glassa20a7b72019-01-30 20:51:20 -070057Replace sandbox with another supported target.
Simon Glass26784fc2017-05-31 17:57:24 -060058
Simon Glassa20a7b72019-01-30 20:51:20 -070059This produces $UB/image.bin which contains the firmware binaries in a SPI
60flash image.
Simon Glass26784fc2017-05-31 17:57:24 -060061
Simon Glassa20a7b72019-01-30 20:51:20 -070062To run on sandbox:
Simon Glass26784fc2017-05-31 17:57:24 -060063
Simon Glassa20a7b72019-01-30 20:51:20 -070064 $UB/tpl/u-boot-tpl -d $UB/u-boot.dtb.out \
65 -L6 -c "host bind 0 $CROS/src/build/images/cheza/latest/chromiumos_image.bin; vboot go auto" \
66 -l -w -s state.dtb -r
Simon Glass26784fc2017-05-31 17:57:24 -060067
Simon Glassa20a7b72019-01-30 20:51:20 -070068To run on other boards:
69 Install image.bin in the SPI flash of your device
70 Boot your system
Simon Glass26784fc2017-05-31 17:57:24 -060071
Simon Glass26784fc2017-05-31 17:57:24 -060072
Simon Glassa20a7b72019-01-30 20:51:20 -070073Sandbox
74-------
Simon Glass26784fc2017-05-31 17:57:24 -060075
Simon Glassa20a7b72019-01-30 20:51:20 -070076Most Chromium OS development with U-Boot is undertaken using sandbox. There is
77a sandbox target available (chromeos_sandbox) which allows running U-Boot on
78a Linux machine completion with emulations of the display, TPM, disk, etc.
Simon Glass26784fc2017-05-31 17:57:24 -060079
Simon Glassa20a7b72019-01-30 20:51:20 -070080Running sandbox starts TPL, which contains the first phase of vboot, providing
81a device tree and binding a Chromium OS disk image for use to find kernels
82(any Chromium OS image will do). It also saves driver state between U-Boot
83phases into state.dtb and will automatically ensure that memory is shared
84between all phases. TPL will jump to SPL and then on to U-Boot proper.
Simon Glass26784fc2017-05-31 17:57:24 -060085
Simon Glassa20a7b72019-01-30 20:51:20 -070086It is possible to run with debugging on, e.g.
Simon Glass26784fc2017-05-31 17:57:24 -060087
Simon Glassa20a7b72019-01-30 20:51:20 -070088 gdb --args $UB/tpl/u-boot-tpl -d ....
Simon Glass26784fc2017-05-31 17:57:24 -060089
Simon Glassa20a7b72019-01-30 20:51:20 -070090Breakpoints can be set in any U-Boot phase. Overall this is a good debugging
91environment for new verified-boot features.
Simon Glass26784fc2017-05-31 17:57:24 -060092
Simon Glass26784fc2017-05-31 17:57:24 -060093
Simon Glassa20a7b72019-01-30 20:51:20 -070094Samus
95-----
Simon Glass26784fc2017-05-31 17:57:24 -060096
Simon Glassa20a7b72019-01-30 20:51:20 -070097Basic support is available for samus, using the chromeos_samus target. If you
98have an em100, use:
Simon Glass26784fc2017-05-31 17:57:24 -060099
Simon Glassa20a7b72019-01-30 20:51:20 -0700100 sudo em100 -s -c W25Q128FW -d $UB/image.bin -t -r
Simon Glass26784fc2017-05-31 17:57:24 -0600101
Simon Glassa20a7b72019-01-30 20:51:20 -0700102to write the image and then boot samus (Power-Refresh).
Simon Glass26784fc2017-05-31 17:57:24 -0600103
Simon Glass26784fc2017-05-31 17:57:24 -0600104
Simon Glassa20a7b72019-01-30 20:51:20 -0700105Boot flow
106---------
Simon Glass26784fc2017-05-31 17:57:24 -0600107
Simon Glassa20a7b72019-01-30 20:51:20 -0700108Verified boot starts in TPL, which selects the A or B SPL, which in turn selects
109the A or B U-Boot. Then this jumps to the selected kernel. If anything goes
110wrong, the device reboots and the recovery SPL and U-Boot are used instead.
Simon Glass26784fc2017-05-31 17:57:24 -0600111
Simon Glassa20a7b72019-01-30 20:51:20 -0700112More details are available here:
Simon Glass26784fc2017-05-31 17:57:24 -0600113
Simon Glassa20a7b72019-01-30 20:51:20 -0700114 https://www.chromium.org/chromium-os/chromiumos-design-docs/firmware-boot-and-recovery
Simon Glass26784fc2017-05-31 17:57:24 -0600115
116
Simon Glassa20a7b72019-01-30 20:51:20 -0700117New uclasses
118------------
Simon Glass3421e002017-05-31 17:57:36 -0600119
Simon Glassa20a7b72019-01-30 20:51:20 -0700120Several uclasses are provided in cros/:
Simon Glass3421e002017-05-31 17:57:36 -0600121
Simon Glassa20a7b72019-01-30 20:51:20 -0700122 UCLASS_CROS_AUX_FW Chrome OS auxiliary firmware
123 UCLASS_CROS_FWSTORE Chrome OS firmware storage
124 UCLASS_CROS_NVDATA Chrome OS non-volatile data device
125 UCLASS_CROS_VBOOT_EC Chrome OS vboot EC operations
126 UCLASS_CROS_VBOOT_FLAG Chrome OS verified boot flag
Simon Glass3421e002017-05-31 17:57:36 -0600127
Simon Glassa20a7b72019-01-30 20:51:20 -0700128The existing UCLASS_CROS_EC is also used.
Simon Glass3421e002017-05-31 17:57:36 -0600129
Simon Glass3421e002017-05-31 17:57:36 -0600130
Simon Glassa20a7b72019-01-30 20:51:20 -0700131Commands
132--------
Simon Glass3421e002017-05-31 17:57:36 -0600133
Simon Glassa20a7b72019-01-30 20:51:20 -0700134A new 'vboot' command is provided to run particular vboot stages. The most
135useful command is 'vboot go auto', which continues where the last stage left
136off.
Simon Glass3421e002017-05-31 17:57:36 -0600137
Simon Glassa20a7b72019-01-30 20:51:20 -0700138Note that TPL and SPL do not supports commands as yet, so the vboot code is
139called directly from the SPL boot devices (BOOT_DEVICE_CROS_VBOOT). See
140cros_load_image_tpl() and cros_load_image_spl() which both call
141vboot_run_auto().
Simon Glass3421e002017-05-31 17:57:36 -0600142
Simon Glass3421e002017-05-31 17:57:36 -0600143
Simon Glassa20a7b72019-01-30 20:51:20 -0700144Config options
145--------------
Simon Glass3421e002017-05-31 17:57:36 -0600146
Simon Glassa20a7b72019-01-30 20:51:20 -0700147The main option is CONFIG_CHROMEOS, which enables a wide array of other options
148so that the required features are present.
Simon Glass3421e002017-05-31 17:57:36 -0600149
Simon Glass3421e002017-05-31 17:57:36 -0600150
Simon Glassa20a7b72019-01-30 20:51:20 -0700151Device-tree config
152------------------
Simon Glass3421e002017-05-31 17:57:36 -0600153
Simon Glassa20a7b72019-01-30 20:51:20 -0700154Various options are available which control the operation of verified boot.
155See cros/dts/bindings/config.txt for details. Most config is handled at run-
156time, although build-time config (with Kconfig) could also be added fairly
157easily.
Simon Glass3421e002017-05-31 17:57:36 -0600158
Simon Glass3421e002017-05-31 17:57:36 -0600159
Simon Glassa20a7b72019-01-30 20:51:20 -0700160Porting to other hardware
161-------------------------
Simon Glass3421e002017-05-31 17:57:36 -0600162
Simon Glassa20a7b72019-01-30 20:51:20 -0700163A basic port to samus (Chromebook Pixel 2015) is in a basic working state,
164using the chromeos_samus target. Patches will likely be forthcoming in early
1652019. Ports to an ARM board and coreboot (for x86 Chromebooks) are in the
166dreaming state.
Simon Glass3421e002017-05-31 17:57:36 -0600167
Simon Glass26784fc2017-05-31 17:57:24 -0600168
Simon Glassa20a7b72019-01-30 20:51:20 -0700169Tests
170-----
Simon Glass26784fc2017-05-31 17:57:24 -0600171
Simon Glassa20a7b72019-01-30 20:51:20 -0700172Chromium OS firmware has a very limited set of tests. The tests that originally
173existed in U-Boot were not brought over to coreboot or depthcharge.
Simon Glass26784fc2017-05-31 17:57:24 -0600174
Simon Glassa20a7b72019-01-30 20:51:20 -0700175The U-Boot tests ('make check') do operate, but at present there are no
176Chromium OS tests available. These will hopefully come together over time. Of
177course the above sandbox feature provides a sort of functional test and can
Simon Glass0167f192020-09-05 14:50:52 -0600178detect problems that affect the flow or particular vboot features.
Simon Glass26784fc2017-05-31 17:57:24 -0600179
180
Simon Glass5e73d3c2020-09-05 14:50:53 -0600181U-Boot without Chromium OS verified boot
182----------------------------------------
183
184The following script can be used to boot a Chrome OS image on coral:
185
186 # Read the image header and obtain the address of the kernel
187 # The offset 4f0 is defined by verified boot and may change for other
188 # Chromebooks
189 read mmc 2:2 100000 0 80; setexpr loader *001004f0;
190
191 # Get the kernel size and calculate the number of blocks (0x200 bytes each)
192 setexpr size *00100518; setexpr blocks $size / 200;
193
194 # Read the full kernel and calculate the address of the setup block
195 read mmc 2:2 100000 80 $blocks; setexpr setup $loader - 1000;
196
197 # Locate the command line
198 setexpr cmdline $loader - 2000;
199
200 # Start the zboot process with the loaded kernel, setup block and cmdline
201 zboot start 100000 0 0 0 $setup $cmdline;
202
203 # Load the kernel, fix up the 'setup' block, dump information
204 zboot load; zboot setup; zboot dump
205
206 # Boot into Chrome OS
207 zboot go
208
209
Simon Glassa20a7b72019-01-30 20:51:20 -0700210TO DO
211-----
Simon Glass26784fc2017-05-31 17:57:24 -0600212
Simon Glass0167f192020-09-05 14:50:52 -0600213Get the full ACPI tables working with Coral
Simon Glass26784fc2017-05-31 17:57:24 -0600214
Simon Glass26784fc2017-05-31 17:57:24 -0600215
Simon Glassa20a7b72019-01-30 20:51:20 -0700216Simon Glass
217sjg@chromium.org
2187 October 2018