Tom Rini | 10e4779 | 2018-05-06 17:58:06 -0400 | [diff] [blame] | 1 | # SPDX-License-Identifier: GPL-2.0+ |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 2 | # Copyright (c) 2016 Google, Inc |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 3 | |
| 4 | Introduction |
| 5 | ------------ |
| 6 | |
| 7 | Firmware often consists of several components which must be packaged together. |
| 8 | For example, we may have SPL, U-Boot, a device tree and an environment area |
| 9 | grouped together and placed in MMC flash. When the system starts, it must be |
| 10 | able to find these pieces. |
| 11 | |
| 12 | So far U-Boot has not provided a way to handle creating such images in a |
| 13 | general way. Each SoC does what it needs to build an image, often packing or |
| 14 | concatenating images in the U-Boot build system. |
| 15 | |
| 16 | Binman aims to provide a mechanism for building images, from simple |
| 17 | SPL + U-Boot combinations, to more complex arrangements with many parts. |
| 18 | |
| 19 | |
| 20 | What it does |
| 21 | ------------ |
| 22 | |
| 23 | Binman reads your board's device tree and finds a node which describes the |
| 24 | required image layout. It uses this to work out what to place where. The |
| 25 | output file normally contains the device tree, so it is in principle possible |
| 26 | to read an image and extract its constituent parts. |
| 27 | |
| 28 | |
| 29 | Features |
| 30 | -------- |
| 31 | |
| 32 | So far binman is pretty simple. It supports binary blobs, such as 'u-boot', |
| 33 | 'spl' and 'fdt'. It supports empty entries (such as setting to 0xff). It can |
| 34 | place entries at a fixed location in the image, or fit them together with |
| 35 | suitable padding and alignment. It provides a way to process binaries before |
| 36 | they are included, by adding a Python plug-in. The device tree is available |
| 37 | to U-Boot at run-time so that the images can be interpreted. |
| 38 | |
Simon Glass | 43062bc | 2019-07-08 14:25:25 -0600 | [diff] [blame] | 39 | Binman can update the device tree with the final location of everything when it |
| 40 | is done. Entry positions can be provided to U-Boot SPL as run-time symbols, |
| 41 | avoiding device-tree code overhead. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 42 | |
| 43 | Binman can also support incorporating filesystems in the image if required. |
| 44 | For example x86 platforms may use CBFS in some cases. |
| 45 | |
| 46 | Binman is intended for use with U-Boot but is designed to be general enough |
| 47 | to be useful in other image-packaging situations. |
| 48 | |
| 49 | |
| 50 | Motivation |
| 51 | ---------- |
| 52 | |
| 53 | Packaging of firmware is quite a different task from building the various |
| 54 | parts. In many cases the various binaries which go into the image come from |
| 55 | separate build systems. For example, ARM Trusted Firmware is used on ARMv8 |
| 56 | devices but is not built in the U-Boot tree. If a Linux kernel is included |
| 57 | in the firmware image, it is built elsewhere. |
| 58 | |
| 59 | It is of course possible to add more and more build rules to the U-Boot |
| 60 | build system to cover these cases. It can shell out to other Makefiles and |
| 61 | build scripts. But it seems better to create a clear divide between building |
| 62 | software and packaging it. |
| 63 | |
| 64 | At present this is handled by manual instructions, different for each board, |
| 65 | on how to create images that will boot. By turning these instructions into a |
| 66 | standard format, we can support making valid images for any board without |
| 67 | manual effort, lots of READMEs, etc. |
| 68 | |
| 69 | Benefits: |
| 70 | - Each binary can have its own build system and tool chain without creating |
| 71 | any dependencies between them |
| 72 | - Avoids the need for a single-shot build: individual parts can be updated |
| 73 | and brought in as needed |
| 74 | - Provides for a standard image description available in the build and at |
| 75 | run-time |
Thomas Hebb | fd37f24 | 2019-11-13 18:18:03 -0800 | [diff] [blame] | 76 | - SoC-specific image-signing tools can be accommodated |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 77 | - Avoids cluttering the U-Boot build system with image-building code |
| 78 | - The image description is automatically available at run-time in U-Boot, |
| 79 | SPL. It can be made available to other software also |
| 80 | - The image description is easily readable (it's a text file in device-tree |
| 81 | format) and permits flexible packing of binaries |
| 82 | |
| 83 | |
| 84 | Terminology |
| 85 | ----------- |
| 86 | |
| 87 | Binman uses the following terms: |
| 88 | |
| 89 | - image - an output file containing a firmware image |
| 90 | - binary - an input binary that goes into the image |
| 91 | |
| 92 | |
| 93 | Relationship to FIT |
| 94 | ------------------- |
| 95 | |
| 96 | FIT is U-Boot's official image format. It supports multiple binaries with |
| 97 | load / execution addresses, compression. It also supports verification |
| 98 | through hashing and RSA signatures. |
| 99 | |
| 100 | FIT was originally designed to support booting a Linux kernel (with an |
| 101 | optional ramdisk) and device tree chosen from various options in the FIT. |
| 102 | Now that U-Boot supports configuration via device tree, it is possible to |
| 103 | load U-Boot from a FIT, with the device tree chosen by SPL. |
| 104 | |
| 105 | Binman considers FIT to be one of the binaries it can place in the image. |
| 106 | |
| 107 | Where possible it is best to put as much as possible in the FIT, with binman |
| 108 | used to deal with cases not covered by FIT. Examples include initial |
| 109 | execution (since FIT itself does not have an executable header) and dealing |
| 110 | with device boundaries, such as the read-only/read-write separation in SPI |
| 111 | flash. |
| 112 | |
| 113 | For U-Boot, binman should not be used to create ad-hoc images in place of |
| 114 | FIT. |
| 115 | |
| 116 | |
| 117 | Relationship to mkimage |
| 118 | ----------------------- |
| 119 | |
| 120 | The mkimage tool provides a means to create a FIT. Traditionally it has |
| 121 | needed an image description file: a device tree, like binman, but in a |
| 122 | different format. More recently it has started to support a '-f auto' mode |
| 123 | which can generate that automatically. |
| 124 | |
| 125 | More relevant to binman, mkimage also permits creation of many SoC-specific |
| 126 | image types. These can be listed by running 'mkimage -T list'. Examples |
| 127 | include 'rksd', the Rockchip SD/MMC boot format. The mkimage tool is often |
| 128 | called from the U-Boot build system for this reason. |
| 129 | |
| 130 | Binman considers the output files created by mkimage to be binary blobs |
| 131 | which it can place in an image. Binman does not replace the mkimage tool or |
Michael Heimpold | 55c822d | 2018-08-22 22:01:24 +0200 | [diff] [blame] | 132 | this purpose. It would be possible in some situations to create a new entry |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 133 | type for the images in mkimage, but this would not add functionality. It |
Michael Heimpold | 55c822d | 2018-08-22 22:01:24 +0200 | [diff] [blame] | 134 | seems better to use the mkimage tool to generate binaries and avoid blurring |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 135 | the boundaries between building input files (mkimage) and packaging then |
| 136 | into a final image (binman). |
| 137 | |
| 138 | |
| 139 | Example use of binman in U-Boot |
| 140 | ------------------------------- |
| 141 | |
| 142 | Binman aims to replace some of the ad-hoc image creation in the U-Boot |
| 143 | build system. |
| 144 | |
| 145 | Consider sunxi. It has the following steps: |
| 146 | |
| 147 | 1. It uses a custom mksunxiboot tool to build an SPL image called |
| 148 | sunxi-spl.bin. This should probably move into mkimage. |
| 149 | |
| 150 | 2. It uses mkimage to package U-Boot into a legacy image file (so that it can |
| 151 | hold the load and execution address) called u-boot.img. |
| 152 | |
| 153 | 3. It builds a final output image called u-boot-sunxi-with-spl.bin which |
| 154 | consists of sunxi-spl.bin, some padding and u-boot.img. |
| 155 | |
| 156 | Binman is intended to replace the last step. The U-Boot build system builds |
| 157 | u-boot.bin and sunxi-spl.bin. Binman can then take over creation of |
| 158 | sunxi-spl.bin (by calling mksunxiboot, or hopefully one day mkimage). In any |
| 159 | case, it would then create the image from the component parts. |
| 160 | |
| 161 | This simplifies the U-Boot Makefile somewhat, since various pieces of logic |
| 162 | can be replaced by a call to binman. |
| 163 | |
| 164 | |
| 165 | Example use of binman for x86 |
| 166 | ----------------------------- |
| 167 | |
| 168 | In most cases x86 images have a lot of binary blobs, 'black-box' code |
| 169 | provided by Intel which must be run for the platform to work. Typically |
| 170 | these blobs are not relocatable and must be placed at fixed areas in the |
Michael Heimpold | 55c822d | 2018-08-22 22:01:24 +0200 | [diff] [blame] | 171 | firmware image. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 172 | |
| 173 | Currently this is handled by ifdtool, which places microcode, FSP, MRC, VGA |
| 174 | BIOS, reference code and Intel ME binaries into a u-boot.rom file. |
| 175 | |
| 176 | Binman is intended to replace all of this, with ifdtool left to handle only |
| 177 | the configuration of the Intel-format descriptor. |
| 178 | |
| 179 | |
| 180 | Running binman |
| 181 | -------------- |
| 182 | |
Simon Glass | 567b682 | 2019-07-08 13:18:35 -0600 | [diff] [blame] | 183 | First install prerequisites, e.g. |
| 184 | |
Simon Glass | dfd1901 | 2019-07-08 13:18:41 -0600 | [diff] [blame] | 185 | sudo apt-get install python-pyelftools python3-pyelftools lzma-alone \ |
| 186 | liblz4-tool |
Simon Glass | 567b682 | 2019-07-08 13:18:35 -0600 | [diff] [blame] | 187 | |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 188 | Type: |
| 189 | |
Simon Glass | f46732a | 2019-07-08 14:25:29 -0600 | [diff] [blame] | 190 | binman build -b <board_name> |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 191 | |
| 192 | to build an image for a board. The board name is the same name used when |
| 193 | configuring U-Boot (e.g. for sandbox_defconfig the board name is 'sandbox'). |
| 194 | Binman assumes that the input files for the build are in ../b/<board_name>. |
| 195 | |
| 196 | Or you can specify this explicitly: |
| 197 | |
Simon Glass | f46732a | 2019-07-08 14:25:29 -0600 | [diff] [blame] | 198 | binman build -I <build_path> |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 199 | |
| 200 | where <build_path> is the build directory containing the output of the U-Boot |
| 201 | build. |
| 202 | |
| 203 | (Future work will make this more configurable) |
| 204 | |
| 205 | In either case, binman picks up the device tree file (u-boot.dtb) and looks |
| 206 | for its instructions in the 'binman' node. |
| 207 | |
| 208 | Binman has a few other options which you can see by running 'binman -h'. |
| 209 | |
| 210 | |
Simon Glass | 4b94ac9 | 2017-11-12 21:52:06 -0700 | [diff] [blame] | 211 | Enabling binman for a board |
| 212 | --------------------------- |
| 213 | |
| 214 | At present binman is invoked from a rule in the main Makefile. Typically you |
| 215 | will have a rule like: |
| 216 | |
| 217 | ifneq ($(CONFIG_ARCH_<something>),) |
| 218 | u-boot-<your_suffix>.bin: <input_file_1> <input_file_2> checkbinman FORCE |
| 219 | $(call if_changed,binman) |
| 220 | endif |
| 221 | |
| 222 | This assumes that u-boot-<your_suffix>.bin is a target, and is the final file |
Simon Glass | c46090d | 2020-07-19 13:56:01 -0600 | [diff] [blame] | 223 | that you need to produce. You can make it a target by adding it to INPUTS-y |
Simon Glass | 4b94ac9 | 2017-11-12 21:52:06 -0700 | [diff] [blame] | 224 | either in the main Makefile or in a config.mk file in your arch subdirectory. |
| 225 | |
| 226 | Once binman is executed it will pick up its instructions from a device-tree |
| 227 | file, typically <soc>-u-boot.dtsi, where <soc> is your CONFIG_SYS_SOC value. |
| 228 | You can use other, more specific CONFIG options - see 'Automatic .dtsi |
| 229 | inclusion' below. |
| 230 | |
| 231 | |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 232 | Image description format |
| 233 | ------------------------ |
| 234 | |
| 235 | The binman node is called 'binman'. An example image description is shown |
| 236 | below: |
| 237 | |
| 238 | binman { |
| 239 | filename = "u-boot-sunxi-with-spl.bin"; |
| 240 | pad-byte = <0xff>; |
| 241 | blob { |
| 242 | filename = "spl/sunxi-spl.bin"; |
| 243 | }; |
| 244 | u-boot { |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 245 | offset = <CONFIG_SPL_PAD_TO>; |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 246 | }; |
| 247 | }; |
| 248 | |
| 249 | |
| 250 | This requests binman to create an image file called u-boot-sunxi-with-spl.bin |
| 251 | consisting of a specially formatted SPL (spl/sunxi-spl.bin, built by the |
| 252 | normal U-Boot Makefile), some 0xff padding, and a U-Boot legacy image. The |
| 253 | padding comes from the fact that the second binary is placed at |
| 254 | CONFIG_SPL_PAD_TO. If that line were omitted then the U-Boot binary would |
| 255 | immediately follow the SPL binary. |
| 256 | |
| 257 | The binman node describes an image. The sub-nodes describe entries in the |
| 258 | image. Each entry represents a region within the overall image. The name of |
| 259 | the entry (blob, u-boot) tells binman what to put there. For 'blob' we must |
| 260 | provide a filename. For 'u-boot', binman knows that this means 'u-boot.bin'. |
| 261 | |
| 262 | Entries are normally placed into the image sequentially, one after the other. |
| 263 | The image size is the total size of all entries. As you can see, you can |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 264 | specify the start offset of an entry using the 'offset' property. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 265 | |
| 266 | Note that due to a device tree requirement, all entries must have a unique |
| 267 | name. If you want to put the same binary in the image multiple times, you can |
| 268 | use any unique name, with the 'type' property providing the type. |
| 269 | |
| 270 | The attributes supported for entries are described below. |
| 271 | |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 272 | offset: |
| 273 | This sets the offset of an entry within the image or section containing |
| 274 | it. The first byte of the image is normally at offset 0. If 'offset' is |
| 275 | not provided, binman sets it to the end of the previous region, or the |
| 276 | start of the image's entry area (normally 0) if there is no previous |
| 277 | region. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 278 | |
| 279 | align: |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 280 | This sets the alignment of the entry. The entry offset is adjusted |
Simon Glass | afb9caa | 2020-10-26 17:40:10 -0600 | [diff] [blame^] | 281 | so that the entry starts on an aligned boundary within the containing |
| 282 | section or image. For example 'align = <16>' means that the entry will |
| 283 | start on a 16-byte boundary. This may mean that padding is added before |
| 284 | the entry. The padding is part of the containing section but is not |
| 285 | included in the entry, meaning that an empty space may be created before |
| 286 | the entry starts. Alignment should be a power of 2. If 'align' is not |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 287 | provided, no alignment is performed. |
| 288 | |
| 289 | size: |
| 290 | This sets the size of the entry. The contents will be padded out to |
| 291 | this size. If this is not provided, it will be set to the size of the |
| 292 | contents. |
| 293 | |
| 294 | pad-before: |
| 295 | Padding before the contents of the entry. Normally this is 0, meaning |
Simon Glass | d12599d | 2020-10-26 17:40:09 -0600 | [diff] [blame] | 296 | that the contents start at the beginning of the entry. This can be used |
| 297 | to offset the entry contents a little. While this does not affect the |
| 298 | contents of the entry within binman itself (the padding is performed |
| 299 | only when its parent section is assembled), the end result will be that |
| 300 | the entry starts with the padding bytes, so may grow. Defaults to 0. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 301 | |
| 302 | pad-after: |
| 303 | Padding after the contents of the entry. Normally this is 0, meaning |
| 304 | that the entry ends at the last byte of content (unless adjusted by |
| 305 | other properties). This allows room to be created in the image for |
Simon Glass | d12599d | 2020-10-26 17:40:09 -0600 | [diff] [blame] | 306 | this entry to expand later. While this does not affect the contents of |
| 307 | the entry within binman itself (the padding is performed only when its |
| 308 | parent section is assembled), the end result will be that the entry ends |
| 309 | with the padding bytes, so may grow. Defaults to 0. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 310 | |
| 311 | align-size: |
| 312 | This sets the alignment of the entry size. For example, to ensure |
| 313 | that the size of an entry is a multiple of 64 bytes, set this to 64. |
Simon Glass | afb9caa | 2020-10-26 17:40:10 -0600 | [diff] [blame^] | 314 | While this does not affect the contents of the entry within binman |
| 315 | itself (the padding is performed only when its parent section is |
| 316 | assembled), the end result is that the entry ends with the padding |
| 317 | bytes, so may grow. If 'align-size' is not provided, no alignment is |
| 318 | performed. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 319 | |
| 320 | align-end: |
Simon Glass | afb9caa | 2020-10-26 17:40:10 -0600 | [diff] [blame^] | 321 | This sets the alignment of the end of an entry with respect to the |
| 322 | containing section. Some entries require that they end on an alignment |
| 323 | boundary, regardless of where they start. This does not move the start |
| 324 | of the entry, so the contents of the entry will still start at the |
| 325 | beginning. But there may be padding at the end. While this does not |
| 326 | affect the contents of the entry within binman itself (the padding is |
| 327 | performed only when its parent section is assembled), the end result |
| 328 | is that the entry ends with the padding bytes, so may grow. |
| 329 | If 'align-end' is not provided, no alignment is performed. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 330 | |
| 331 | filename: |
| 332 | For 'blob' types this provides the filename containing the binary to |
| 333 | put into the entry. If binman knows about the entry type (like |
| 334 | u-boot-bin), then there is no need to specify this. |
| 335 | |
| 336 | type: |
| 337 | Sets the type of an entry. This defaults to the entry name, but it is |
| 338 | possible to use any name, and then add (for example) 'type = "u-boot"' |
| 339 | to specify the type. |
| 340 | |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 341 | offset-unset: |
| 342 | Indicates that the offset of this entry should not be set by placing |
Simon Glass | 4ba8d50 | 2018-06-01 09:38:17 -0600 | [diff] [blame] | 343 | it immediately after the entry before. Instead, is set by another |
| 344 | entry which knows where this entry should go. When this boolean |
| 345 | property is present, binman will give an error if another entry does |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 346 | not set the offset (with the GetOffsets() method). |
Simon Glass | 4ba8d50 | 2018-06-01 09:38:17 -0600 | [diff] [blame] | 347 | |
Simon Glass | 9dcc861 | 2018-08-01 15:22:42 -0600 | [diff] [blame] | 348 | image-pos: |
| 349 | This cannot be set on entry (or at least it is ignored if it is), but |
| 350 | with the -u option, binman will set it to the absolute image position |
| 351 | for each entry. This makes it easy to find out exactly where the entry |
| 352 | ended up in the image, regardless of parent sections, etc. |
| 353 | |
Simon Glass | fa79a81 | 2018-09-14 04:57:29 -0600 | [diff] [blame] | 354 | expand-size: |
| 355 | Expand the size of this entry to fit available space. This space is only |
| 356 | limited by the size of the image/section and the position of the next |
| 357 | entry. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 358 | |
Simon Glass | aa2fcf9 | 2019-07-08 14:25:30 -0600 | [diff] [blame] | 359 | compress: |
| 360 | Sets the compression algortihm to use (for blobs only). See the entry |
| 361 | documentation for details. |
| 362 | |
Simon Glass | a820af7 | 2020-09-06 10:39:09 -0600 | [diff] [blame] | 363 | missing-msg: |
| 364 | Sets the tag of the message to show if this entry is missing. This is |
| 365 | used for external blobs. When they are missing it is helpful to show |
| 366 | information about what needs to be fixed. See missing-blob-help for the |
| 367 | message for each tag. |
| 368 | |
Simon Glass | 8004581 | 2018-09-14 04:57:30 -0600 | [diff] [blame] | 369 | The attributes supported for images and sections are described below. Several |
| 370 | are similar to those for entries. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 371 | |
| 372 | size: |
| 373 | Sets the image size in bytes, for example 'size = <0x100000>' for a |
| 374 | 1MB image. |
| 375 | |
Simon Glass | eb023b3 | 2019-04-25 21:58:39 -0600 | [diff] [blame] | 376 | offset: |
| 377 | This is similar to 'offset' in entries, setting the offset of a section |
| 378 | within the image or section containing it. The first byte of the section |
| 379 | is normally at offset 0. If 'offset' is not provided, binman sets it to |
| 380 | the end of the previous region, or the start of the image's entry area |
| 381 | (normally 0) if there is no previous region. |
| 382 | |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 383 | align-size: |
| 384 | This sets the alignment of the image size. For example, to ensure |
| 385 | that the image ends on a 512-byte boundary, use 'align-size = <512>'. |
| 386 | If 'align-size' is not provided, no alignment is performed. |
| 387 | |
| 388 | pad-before: |
| 389 | This sets the padding before the image entries. The first entry will |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 390 | be positioned after the padding. This defaults to 0. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 391 | |
| 392 | pad-after: |
| 393 | This sets the padding after the image entries. The padding will be |
| 394 | placed after the last entry. This defaults to 0. |
| 395 | |
| 396 | pad-byte: |
| 397 | This specifies the pad byte to use when padding in the image. It |
| 398 | defaults to 0. To use 0xff, you would add 'pad-byte = <0xff>'. |
| 399 | |
| 400 | filename: |
| 401 | This specifies the image filename. It defaults to 'image.bin'. |
| 402 | |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 403 | sort-by-offset: |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 404 | This causes binman to reorder the entries as needed to make sure they |
| 405 | are in increasing positional order. This can be used when your entry |
| 406 | order may not match the positional order. A common situation is where |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 407 | the 'offset' properties are set by CONFIG options, so their ordering is |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 408 | not known a priori. |
| 409 | |
| 410 | This is a boolean property so needs no value. To enable it, add a |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 411 | line 'sort-by-offset;' to your description. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 412 | |
| 413 | multiple-images: |
| 414 | Normally only a single image is generated. To create more than one |
| 415 | image, put this property in the binman node. For example, this will |
| 416 | create image1.bin containing u-boot.bin, and image2.bin containing |
| 417 | both spl/u-boot-spl.bin and u-boot.bin: |
| 418 | |
| 419 | binman { |
| 420 | multiple-images; |
| 421 | image1 { |
| 422 | u-boot { |
| 423 | }; |
| 424 | }; |
| 425 | |
| 426 | image2 { |
| 427 | spl { |
| 428 | }; |
| 429 | u-boot { |
| 430 | }; |
| 431 | }; |
| 432 | }; |
| 433 | |
| 434 | end-at-4gb: |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 435 | For x86 machines the ROM offsets start just before 4GB and extend |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 436 | up so that the image finished at the 4GB boundary. This boolean |
| 437 | option can be enabled to support this. The image size must be |
| 438 | provided so that binman knows when the image should start. For an |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 439 | 8MB ROM, the offset of the first entry would be 0xfff80000 with |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 440 | this option, instead of 0 without this option. |
| 441 | |
Jagdish Gediya | 0fb978c | 2018-09-03 21:35:07 +0530 | [diff] [blame] | 442 | skip-at-start: |
| 443 | This property specifies the entry offset of the first entry. |
| 444 | |
| 445 | For PowerPC mpc85xx based CPU, CONFIG_SYS_TEXT_BASE is the entry |
| 446 | offset of the first entry. It can be 0xeff40000 or 0xfff40000 for |
| 447 | nor flash boot, 0x201000 for sd boot etc. |
| 448 | |
| 449 | 'end-at-4gb' property is not applicable where CONFIG_SYS_TEXT_BASE + |
| 450 | Image size != 4gb. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 451 | |
| 452 | Examples of the above options can be found in the tests. See the |
| 453 | tools/binman/test directory. |
| 454 | |
Simon Glass | e76a3e6 | 2018-06-01 09:38:11 -0600 | [diff] [blame] | 455 | It is possible to have the same binary appear multiple times in the image, |
| 456 | either by using a unit number suffix (u-boot@0, u-boot@1) or by using a |
| 457 | different name for each and specifying the type with the 'type' attribute. |
| 458 | |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 459 | |
Michael Heimpold | 55c822d | 2018-08-22 22:01:24 +0200 | [diff] [blame] | 460 | Sections and hierachical images |
Simon Glass | a91e115 | 2018-06-01 09:38:16 -0600 | [diff] [blame] | 461 | ------------------------------- |
| 462 | |
| 463 | Sometimes it is convenient to split an image into several pieces, each of which |
| 464 | contains its own set of binaries. An example is a flash device where part of |
| 465 | the image is read-only and part is read-write. We can set up sections for each |
| 466 | of these, and place binaries in them independently. The image is still produced |
| 467 | as a single output file. |
| 468 | |
| 469 | This feature provides a way of creating hierarchical images. For example here |
Simon Glass | 1e32400 | 2018-06-01 09:38:19 -0600 | [diff] [blame] | 470 | is an example image with two copies of U-Boot. One is read-only (ro), intended |
| 471 | to be written only in the factory. Another is read-write (rw), so that it can be |
Simon Glass | a91e115 | 2018-06-01 09:38:16 -0600 | [diff] [blame] | 472 | upgraded in the field. The sizes are fixed so that the ro/rw boundary is known |
| 473 | and can be programmed: |
| 474 | |
| 475 | binman { |
| 476 | section@0 { |
| 477 | read-only; |
Simon Glass | 3b78d53 | 2018-06-01 09:38:21 -0600 | [diff] [blame] | 478 | name-prefix = "ro-"; |
Simon Glass | a91e115 | 2018-06-01 09:38:16 -0600 | [diff] [blame] | 479 | size = <0x100000>; |
| 480 | u-boot { |
| 481 | }; |
| 482 | }; |
| 483 | section@1 { |
Simon Glass | 3b78d53 | 2018-06-01 09:38:21 -0600 | [diff] [blame] | 484 | name-prefix = "rw-"; |
Simon Glass | a91e115 | 2018-06-01 09:38:16 -0600 | [diff] [blame] | 485 | size = <0x100000>; |
| 486 | u-boot { |
| 487 | }; |
| 488 | }; |
| 489 | }; |
| 490 | |
| 491 | This image could be placed into a SPI flash chip, with the protection boundary |
| 492 | set at 1MB. |
| 493 | |
| 494 | A few special properties are provided for sections: |
| 495 | |
| 496 | read-only: |
| 497 | Indicates that this section is read-only. This has no impact on binman's |
| 498 | operation, but his property can be read at run time. |
| 499 | |
Simon Glass | 3b78d53 | 2018-06-01 09:38:21 -0600 | [diff] [blame] | 500 | name-prefix: |
| 501 | This string is prepended to all the names of the binaries in the |
| 502 | section. In the example above, the 'u-boot' binaries which actually be |
| 503 | renamed to 'ro-u-boot' and 'rw-u-boot'. This can be useful to |
| 504 | distinguish binaries with otherwise identical names. |
| 505 | |
Simon Glass | a91e115 | 2018-06-01 09:38:16 -0600 | [diff] [blame] | 506 | |
Simon Glass | fb30e29 | 2019-07-20 12:23:51 -0600 | [diff] [blame] | 507 | Image Properties |
| 508 | ---------------- |
| 509 | |
| 510 | Image nodes act like sections but also have a few extra properties: |
| 511 | |
| 512 | filename: |
| 513 | Output filename for the image. This defaults to image.bin (or in the |
| 514 | case of multiple images <nodename>.bin where <nodename> is the name of |
| 515 | the image node. |
| 516 | |
| 517 | allow-repack: |
| 518 | Create an image that can be repacked. With this option it is possible |
| 519 | to change anything in the image after it is created, including updating |
| 520 | the position and size of image components. By default this is not |
| 521 | permitted since it is not possibly to know whether this might violate a |
| 522 | constraint in the image description. For example, if a section has to |
| 523 | increase in size to hold a larger binary, that might cause the section |
| 524 | to fall out of its allow region (e.g. read-only portion of flash). |
| 525 | |
| 526 | Adding this property causes the original offset and size values in the |
| 527 | image description to be stored in the FDT and fdtmap. |
| 528 | |
| 529 | |
Simon Glass | 7a61c6b | 2018-07-17 13:25:37 -0600 | [diff] [blame] | 530 | Entry Documentation |
| 531 | ------------------- |
| 532 | |
| 533 | For details on the various entry types supported by binman and how to use them, |
| 534 | see README.entries. This is generated from the source code using: |
| 535 | |
Simon Glass | f46732a | 2019-07-08 14:25:29 -0600 | [diff] [blame] | 536 | binman entry-docs >tools/binman/README.entries |
Simon Glass | 7a61c6b | 2018-07-17 13:25:37 -0600 | [diff] [blame] | 537 | |
| 538 | |
Simon Glass | b2fd11d | 2019-07-08 14:25:48 -0600 | [diff] [blame] | 539 | Listing images |
| 540 | -------------- |
| 541 | |
| 542 | It is possible to list the entries in an existing firmware image created by |
| 543 | binman, provided that there is an 'fdtmap' entry in the image. For example: |
| 544 | |
| 545 | $ binman ls -i image.bin |
| 546 | Name Image-pos Size Entry-type Offset Uncomp-size |
| 547 | ---------------------------------------------------------------------- |
| 548 | main-section c00 section 0 |
| 549 | u-boot 0 4 u-boot 0 |
| 550 | section 5fc section 4 |
| 551 | cbfs 100 400 cbfs 0 |
| 552 | u-boot 138 4 u-boot 38 |
| 553 | u-boot-dtb 180 108 u-boot-dtb 80 3b5 |
| 554 | u-boot-dtb 500 1ff u-boot-dtb 400 3b5 |
| 555 | fdtmap 6fc 381 fdtmap 6fc |
| 556 | image-header bf8 8 image-header bf8 |
| 557 | |
| 558 | This shows the hierarchy of the image, the position, size and type of each |
| 559 | entry, the offset of each entry within its parent and the uncompressed size if |
| 560 | the entry is compressed. |
| 561 | |
| 562 | It is also possible to list just some files in an image, e.g. |
| 563 | |
| 564 | $ binman ls -i image.bin section/cbfs |
| 565 | Name Image-pos Size Entry-type Offset Uncomp-size |
| 566 | -------------------------------------------------------------------- |
| 567 | cbfs 100 400 cbfs 0 |
| 568 | u-boot 138 4 u-boot 38 |
| 569 | u-boot-dtb 180 108 u-boot-dtb 80 3b5 |
| 570 | |
| 571 | or with wildcards: |
| 572 | |
| 573 | $ binman ls -i image.bin "*cb*" "*head*" |
| 574 | Name Image-pos Size Entry-type Offset Uncomp-size |
| 575 | ---------------------------------------------------------------------- |
| 576 | cbfs 100 400 cbfs 0 |
| 577 | u-boot 138 4 u-boot 38 |
| 578 | u-boot-dtb 180 108 u-boot-dtb 80 3b5 |
| 579 | image-header bf8 8 image-header bf8 |
| 580 | |
| 581 | |
Simon Glass | 980a284 | 2019-07-08 14:25:52 -0600 | [diff] [blame] | 582 | Extracting files from images |
| 583 | ---------------------------- |
| 584 | |
| 585 | You can extract files from an existing firmware image created by binman, |
| 586 | provided that there is an 'fdtmap' entry in the image. For example: |
| 587 | |
| 588 | $ binman extract -i image.bin section/cbfs/u-boot |
| 589 | |
| 590 | which will write the uncompressed contents of that entry to the file 'u-boot' in |
| 591 | the current directory. You can also extract to a particular file, in this case |
| 592 | u-boot.bin: |
| 593 | |
| 594 | $ binman extract -i image.bin section/cbfs/u-boot -f u-boot.bin |
| 595 | |
| 596 | It is possible to extract all files into a destination directory, which will |
| 597 | put files in subdirectories matching the entry hierarchy: |
| 598 | |
| 599 | $ binman extract -i image.bin -O outdir |
| 600 | |
| 601 | or just a selection: |
| 602 | |
| 603 | $ binman extract -i image.bin "*u-boot*" -O outdir |
| 604 | |
| 605 | |
Simon Glass | 072959a | 2019-07-20 12:23:50 -0600 | [diff] [blame] | 606 | Replacing files in an image |
| 607 | --------------------------- |
| 608 | |
| 609 | You can replace files in an existing firmware image created by binman, provided |
| 610 | that there is an 'fdtmap' entry in the image. For example: |
| 611 | |
| 612 | $ binman replace -i image.bin section/cbfs/u-boot |
| 613 | |
| 614 | which will write the contents of the file 'u-boot' from the current directory |
Simon Glass | 30033c2 | 2019-07-20 12:24:15 -0600 | [diff] [blame] | 615 | to the that entry, compressing if necessary. If the entry size changes, you must |
| 616 | add the 'allow-repack' property to the original image before generating it (see |
| 617 | above), otherwise you will get an error. |
Simon Glass | 072959a | 2019-07-20 12:23:50 -0600 | [diff] [blame] | 618 | |
Simon Glass | 30033c2 | 2019-07-20 12:24:15 -0600 | [diff] [blame] | 619 | You can also use a particular file, in this case u-boot.bin: |
| 620 | |
| 621 | $ binman replace -i image.bin section/cbfs/u-boot -f u-boot.bin |
| 622 | |
| 623 | It is possible to replace all files from a source directory which uses the same |
| 624 | hierarchy as the entries: |
| 625 | |
| 626 | $ binman replace -i image.bin -I indir |
| 627 | |
| 628 | Files that are missing will generate a warning. |
| 629 | |
| 630 | You can also replace just a selection of entries: |
| 631 | |
| 632 | $ binman replace -i image.bin "*u-boot*" -I indir |
| 633 | |
Simon Glass | 072959a | 2019-07-20 12:23:50 -0600 | [diff] [blame] | 634 | |
Simon Glass | 233a26a9 | 2019-07-08 14:25:49 -0600 | [diff] [blame] | 635 | Logging |
| 636 | ------- |
| 637 | |
| 638 | Binman normally operates silently unless there is an error, in which case it |
| 639 | just displays the error. The -D/--debug option can be used to create a full |
| 640 | backtrace when errors occur. |
| 641 | |
| 642 | Internally binman logs some output while it is running. This can be displayed |
| 643 | by increasing the -v/--verbosity from the default of 1: |
| 644 | |
| 645 | 0: silent |
| 646 | 1: warnings only |
| 647 | 2: notices (important messages) |
| 648 | 3: info about major operations |
| 649 | 4: detailed information about each operation |
| 650 | 5: debug (all output) |
| 651 | |
| 652 | |
Simon Glass | ae7cf03 | 2018-09-14 04:57:31 -0600 | [diff] [blame] | 653 | Hashing Entries |
| 654 | --------------- |
Simon Glass | 7223245 | 2016-11-25 20:15:53 -0700 | [diff] [blame] | 655 | |
Simon Glass | ae7cf03 | 2018-09-14 04:57:31 -0600 | [diff] [blame] | 656 | It is possible to ask binman to hash the contents of an entry and write that |
| 657 | value back to the device-tree node. For example: |
Simon Glass | 7223245 | 2016-11-25 20:15:53 -0700 | [diff] [blame] | 658 | |
Simon Glass | ae7cf03 | 2018-09-14 04:57:31 -0600 | [diff] [blame] | 659 | binman { |
| 660 | u-boot { |
| 661 | hash { |
| 662 | algo = "sha256"; |
| 663 | }; |
| 664 | }; |
| 665 | }; |
| 666 | |
| 667 | Here, a new 'value' property will be written to the 'hash' node containing |
| 668 | the hash of the 'u-boot' entry. Only SHA256 is supported at present. Whole |
| 669 | sections can be hased if desired, by adding the 'hash' node to the section. |
| 670 | |
| 671 | The has value can be chcked at runtime by hashing the data actually read and |
| 672 | comparing this has to the value in the device tree. |
Simon Glass | 7223245 | 2016-11-25 20:15:53 -0700 | [diff] [blame] | 673 | |
| 674 | |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 675 | Order of image creation |
| 676 | ----------------------- |
| 677 | |
| 678 | Image creation proceeds in the following order, for each entry in the image. |
| 679 | |
Simon Glass | e22f8fa | 2018-07-06 10:27:41 -0600 | [diff] [blame] | 680 | 1. AddMissingProperties() - binman can add calculated values to the device |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 681 | tree as part of its processing, for example the offset and size of each |
Simon Glass | e22f8fa | 2018-07-06 10:27:41 -0600 | [diff] [blame] | 682 | entry. This method adds any properties associated with this, expanding the |
| 683 | device tree as needed. These properties can have placeholder values which are |
| 684 | set later by SetCalculatedProperties(). By that stage the size of sections |
| 685 | cannot be changed (since it would cause the images to need to be repacked), |
| 686 | but the correct values can be inserted. |
| 687 | |
| 688 | 2. ProcessFdt() - process the device tree information as required by the |
Simon Glass | 9230773 | 2018-07-06 10:27:40 -0600 | [diff] [blame] | 689 | particular entry. This may involve adding or deleting properties. If the |
| 690 | processing is complete, this method should return True. If the processing |
| 691 | cannot complete because it needs the ProcessFdt() method of another entry to |
| 692 | run first, this method should return False, in which case it will be called |
| 693 | again later. |
| 694 | |
Simon Glass | e22f8fa | 2018-07-06 10:27:41 -0600 | [diff] [blame] | 695 | 3. GetEntryContents() - the contents of each entry are obtained, normally by |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 696 | reading from a file. This calls the Entry.ObtainContents() to read the |
| 697 | contents. The default version of Entry.ObtainContents() calls |
| 698 | Entry.GetDefaultFilename() and then reads that file. So a common mechanism |
| 699 | to select a file to read is to override that function in the subclass. The |
| 700 | functions must return True when they have read the contents. Binman will |
| 701 | retry calling the functions a few times if False is returned, allowing |
| 702 | dependencies between the contents of different entries. |
| 703 | |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 704 | 4. GetEntryOffsets() - calls Entry.GetOffsets() for each entry. This can |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 705 | return a dict containing entries that need updating. The key should be the |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 706 | entry name and the value is a tuple (offset, size). This allows an entry to |
| 707 | provide the offset and size for other entries. The default implementation |
| 708 | of GetEntryOffsets() returns {}. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 709 | |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 710 | 5. PackEntries() - calls Entry.Pack() which figures out the offset and |
| 711 | size of an entry. The 'current' image offset is passed in, and the function |
| 712 | returns the offset immediately after the entry being packed. The default |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 713 | implementation of Pack() is usually sufficient. |
| 714 | |
Simon Glass | e22f8fa | 2018-07-06 10:27:41 -0600 | [diff] [blame] | 715 | 6. CheckSize() - checks that the contents of all the entries fits within |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 716 | the image size. If the image does not have a defined size, the size is set |
| 717 | large enough to hold all the entries. |
| 718 | |
Simon Glass | e22f8fa | 2018-07-06 10:27:41 -0600 | [diff] [blame] | 719 | 7. CheckEntries() - checks that the entries do not overlap, nor extend |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 720 | outside the image. |
| 721 | |
Simon Glass | 4b05b2d | 2019-07-20 12:23:52 -0600 | [diff] [blame] | 722 | 8. SetImagePos() - sets the image position of every entry. This is the absolute |
| 723 | position 'image-pos', as opposed to 'offset' which is relative to the containing |
| 724 | section. This must be done after all offsets are known, which is why it is quite |
| 725 | late in the ordering. |
| 726 | |
| 727 | 9. SetCalculatedProperties() - update any calculated properties in the device |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 728 | tree. This sets the correct 'offset' and 'size' vaues, for example. |
Simon Glass | e22f8fa | 2018-07-06 10:27:41 -0600 | [diff] [blame] | 729 | |
Simon Glass | 4b05b2d | 2019-07-20 12:23:52 -0600 | [diff] [blame] | 730 | 10. ProcessEntryContents() - this calls Entry.ProcessContents() on each entry. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 731 | The default implementatoin does nothing. This can be overriden to adjust the |
| 732 | contents of an entry in some way. For example, it would be possible to create |
| 733 | an entry containing a hash of the contents of some other entries. At this |
Simon Glass | e61b6f6 | 2019-07-08 14:25:37 -0600 | [diff] [blame] | 734 | stage the offset and size of entries should not be adjusted unless absolutely |
| 735 | necessary, since it requires a repack (going back to PackEntries()). |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 736 | |
Simon Glass | 4b05b2d | 2019-07-20 12:23:52 -0600 | [diff] [blame] | 737 | 11. ResetForPack() - if the ProcessEntryContents() step failed, in that an entry |
| 738 | has changed its size, then there is no alternative but to go back to step 5 and |
| 739 | try again, repacking the entries with the updated size. ResetForPack() removes |
| 740 | the fixed offset/size values added by binman, so that the packing can start from |
| 741 | scratch. |
| 742 | |
| 743 | 12. WriteSymbols() - write the value of symbols into the U-Boot SPL binary. |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 744 | See 'Access to binman entry offsets at run time' below for a description of |
Simon Glass | 29dae67 | 2018-07-06 10:27:39 -0600 | [diff] [blame] | 745 | what happens in this stage. |
Simon Glass | be83bc7 | 2017-11-13 18:55:05 -0700 | [diff] [blame] | 746 | |
Simon Glass | 4b05b2d | 2019-07-20 12:23:52 -0600 | [diff] [blame] | 747 | 13. BuildImage() - builds the image and writes it to a file |
| 748 | |
| 749 | 14. WriteMap() - writes a text file containing a map of the image. This is the |
| 750 | final step. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 751 | |
| 752 | |
Simon Glass | 52debad | 2016-11-25 20:15:59 -0700 | [diff] [blame] | 753 | Automatic .dtsi inclusion |
| 754 | ------------------------- |
| 755 | |
| 756 | It is sometimes inconvenient to add a 'binman' node to the .dts file for each |
| 757 | board. This can be done by using #include to bring in a common file. Another |
| 758 | approach supported by the U-Boot build system is to automatically include |
| 759 | a common header. You can then put the binman node (and anything else that is |
| 760 | specific to U-Boot, such as u-boot,dm-pre-reloc properies) in that header |
| 761 | file. |
| 762 | |
| 763 | Binman will search for the following files in arch/<arch>/dts: |
| 764 | |
| 765 | <dts>-u-boot.dtsi where <dts> is the base name of the .dts file |
| 766 | <CONFIG_SYS_SOC>-u-boot.dtsi |
| 767 | <CONFIG_SYS_CPU>-u-boot.dtsi |
| 768 | <CONFIG_SYS_VENDOR>-u-boot.dtsi |
| 769 | u-boot.dtsi |
| 770 | |
| 771 | U-Boot will only use the first one that it finds. If you need to include a |
| 772 | more general file you can do that from the more specific file using #include. |
| 773 | If you are having trouble figuring out what is going on, you can uncomment |
| 774 | the 'warning' line in scripts/Makefile.lib to see what it has found: |
| 775 | |
| 776 | # Uncomment for debugging |
Simon Glass | 2eee32b | 2017-11-12 21:52:05 -0700 | [diff] [blame] | 777 | # This shows all the files that were considered and the one that we chose. |
| 778 | # u_boot_dtsi_options_debug = $(u_boot_dtsi_options_raw) |
Simon Glass | 52debad | 2016-11-25 20:15:59 -0700 | [diff] [blame] | 779 | |
Simon Glass | be83bc7 | 2017-11-13 18:55:05 -0700 | [diff] [blame] | 780 | |
Simon Glass | 9dcc861 | 2018-08-01 15:22:42 -0600 | [diff] [blame] | 781 | Access to binman entry offsets at run time (symbols) |
| 782 | ---------------------------------------------------- |
Simon Glass | be83bc7 | 2017-11-13 18:55:05 -0700 | [diff] [blame] | 783 | |
| 784 | Binman assembles images and determines where each entry is placed in the image. |
| 785 | This information may be useful to U-Boot at run time. For example, in SPL it |
| 786 | is useful to be able to find the location of U-Boot so that it can be executed |
| 787 | when SPL is finished. |
| 788 | |
| 789 | Binman allows you to declare symbols in the SPL image which are filled in |
| 790 | with their correct values during the build. For example: |
| 791 | |
Simon Glass | 72555fa | 2019-11-06 17:22:44 -0700 | [diff] [blame] | 792 | binman_sym_declare(ulong, u_boot_any, image_pos); |
Simon Glass | be83bc7 | 2017-11-13 18:55:05 -0700 | [diff] [blame] | 793 | |
Simon Glass | 72555fa | 2019-11-06 17:22:44 -0700 | [diff] [blame] | 794 | declares a ulong value which will be assigned to the image-pos of any U-Boot |
Simon Glass | be83bc7 | 2017-11-13 18:55:05 -0700 | [diff] [blame] | 795 | image (u-boot.bin, u-boot.img, u-boot-nodtb.bin) that is present in the image. |
| 796 | You can access this value with something like: |
| 797 | |
Simon Glass | 72555fa | 2019-11-06 17:22:44 -0700 | [diff] [blame] | 798 | ulong u_boot_offset = binman_sym(ulong, u_boot_any, image_pos); |
Simon Glass | be83bc7 | 2017-11-13 18:55:05 -0700 | [diff] [blame] | 799 | |
Simon Glass | 72555fa | 2019-11-06 17:22:44 -0700 | [diff] [blame] | 800 | Thus u_boot_offset will be set to the image-pos of U-Boot in memory, assuming |
| 801 | that the whole image has been loaded, or is available in flash. You can then |
| 802 | jump to that address to start U-Boot. |
| 803 | |
| 804 | At present this feature is only supported in SPL and TPL. In principle it is |
| 805 | possible to fill in such symbols in U-Boot proper, as well, but a future C |
| 806 | library is planned for this instead, to read from the device tree. |
| 807 | |
| 808 | As well as image-pos, it is possible to read the size of an entry and its |
| 809 | offset (which is the start position of the entry within its parent). |
| 810 | |
| 811 | A small technical note: Binman automatically adds the base address of the image |
| 812 | (i.e. __image_copy_start) to the value of the image-pos symbol, so that when the |
| 813 | image is loaded to its linked address, the value will be correct and actually |
| 814 | point into the image. |
| 815 | |
| 816 | For example, say SPL is at the start of the image and linked to start at address |
| 817 | 80108000. If U-Boot's image-pos is 0x8000 then binman will write an image-pos |
| 818 | for U-Boot of 80110000 into the SPL binary, since it assumes the image is loaded |
| 819 | to 80108000, with SPL at 80108000 and U-Boot at 80110000. |
Simon Glass | be83bc7 | 2017-11-13 18:55:05 -0700 | [diff] [blame] | 820 | |
Simon Glass | 72555fa | 2019-11-06 17:22:44 -0700 | [diff] [blame] | 821 | For x86 devices (with the end-at-4gb property) this base address is not added |
| 822 | since it is assumed that images are XIP and the offsets already include the |
| 823 | address. |
Simon Glass | be83bc7 | 2017-11-13 18:55:05 -0700 | [diff] [blame] | 824 | |
Simon Glass | 52debad | 2016-11-25 20:15:59 -0700 | [diff] [blame] | 825 | |
Simon Glass | 9dcc861 | 2018-08-01 15:22:42 -0600 | [diff] [blame] | 826 | Access to binman entry offsets at run time (fdt) |
| 827 | ------------------------------------------------ |
| 828 | |
| 829 | Binman can update the U-Boot FDT to include the final position and size of |
| 830 | each entry in the images it processes. The option to enable this is -u and it |
| 831 | causes binman to make sure that the 'offset', 'image-pos' and 'size' properties |
| 832 | are set correctly for every entry. Since it is not necessary to specify these in |
| 833 | the image definition, binman calculates the final values and writes these to |
| 834 | the device tree. These can be used by U-Boot at run-time to find the location |
| 835 | of each entry. |
| 836 | |
Simon Glass | 0f62133 | 2019-07-08 14:25:27 -0600 | [diff] [blame] | 837 | Alternatively, an FDT map entry can be used to add a special FDT containing |
| 838 | just the information about the image. This is preceded by a magic string so can |
Simon Glass | cec34ba | 2019-07-08 14:25:28 -0600 | [diff] [blame] | 839 | be located anywhere in the image. An image header (typically at the start or end |
| 840 | of the image) can be used to point to the FDT map. See fdtmap and image-header |
| 841 | entries for more information. |
Simon Glass | 0f62133 | 2019-07-08 14:25:27 -0600 | [diff] [blame] | 842 | |
Simon Glass | 9dcc861 | 2018-08-01 15:22:42 -0600 | [diff] [blame] | 843 | |
Simon Glass | 7ba3359 | 2018-09-14 04:57:26 -0600 | [diff] [blame] | 844 | Compression |
| 845 | ----------- |
| 846 | |
| 847 | Binman support compression for 'blob' entries (those of type 'blob' and |
Simon Glass | aa2fcf9 | 2019-07-08 14:25:30 -0600 | [diff] [blame] | 848 | derivatives). To enable this for an entry, add a 'compress' property: |
Simon Glass | 7ba3359 | 2018-09-14 04:57:26 -0600 | [diff] [blame] | 849 | |
| 850 | blob { |
| 851 | filename = "datafile"; |
Simon Glass | aa2fcf9 | 2019-07-08 14:25:30 -0600 | [diff] [blame] | 852 | compress = "lz4"; |
Simon Glass | 7ba3359 | 2018-09-14 04:57:26 -0600 | [diff] [blame] | 853 | }; |
| 854 | |
| 855 | The entry will then contain the compressed data, using the 'lz4' compression |
Simon Glass | aa2fcf9 | 2019-07-08 14:25:30 -0600 | [diff] [blame] | 856 | algorithm. Currently this is the only one that is supported. The uncompressed |
| 857 | size is written to the node in an 'uncomp-size' property, if -u is used. |
Simon Glass | 7ba3359 | 2018-09-14 04:57:26 -0600 | [diff] [blame] | 858 | |
| 859 | |
| 860 | |
Simon Glass | 3073266 | 2018-06-01 09:38:20 -0600 | [diff] [blame] | 861 | Map files |
| 862 | --------- |
| 863 | |
| 864 | The -m option causes binman to output a .map file for each image that it |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 865 | generates. This shows the offset and size of each entry. For example: |
Simon Glass | 3073266 | 2018-06-01 09:38:20 -0600 | [diff] [blame] | 866 | |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 867 | Offset Size Name |
Simon Glass | 3a9a2b8 | 2018-07-17 13:25:28 -0600 | [diff] [blame] | 868 | 00000000 00000028 main-section |
| 869 | 00000000 00000010 section@0 |
| 870 | 00000000 00000004 u-boot |
| 871 | 00000010 00000010 section@1 |
| 872 | 00000000 00000004 u-boot |
Simon Glass | 3073266 | 2018-06-01 09:38:20 -0600 | [diff] [blame] | 873 | |
| 874 | This shows a hierarchical image with two sections, each with a single entry. The |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 875 | offsets of the sections are absolute hex byte offsets within the image. The |
| 876 | offsets of the entries are relative to their respective sections. The size of |
Simon Glass | 3073266 | 2018-06-01 09:38:20 -0600 | [diff] [blame] | 877 | each entry is also shown, in bytes (hex). The indentation shows the entries |
| 878 | nested inside their sections. |
| 879 | |
| 880 | |
Simon Glass | 91710b3 | 2018-07-17 13:25:32 -0600 | [diff] [blame] | 881 | Passing command-line arguments to entries |
| 882 | ----------------------------------------- |
| 883 | |
| 884 | Sometimes it is useful to pass binman the value of an entry property from the |
| 885 | command line. For example some entries need access to files and it is not |
| 886 | always convenient to put these filenames in the image definition (device tree). |
| 887 | |
| 888 | The-a option supports this: |
| 889 | |
| 890 | -a<prop>=<value> |
| 891 | |
| 892 | where |
| 893 | |
| 894 | <prop> is the property to set |
| 895 | <value> is the value to set it to |
| 896 | |
| 897 | Not all properties can be provided this way. Only some entries support it, |
| 898 | typically for filenames. |
| 899 | |
| 900 | |
Simon Glass | 6244fa4 | 2019-07-08 13:18:28 -0600 | [diff] [blame] | 901 | External tools |
| 902 | -------------- |
| 903 | |
| 904 | Binman can make use of external command-line tools to handle processing of |
| 905 | entry contents or to generate entry contents. These tools are executed using |
| 906 | the 'tools' module's Run() method. The tools generally must exist on the PATH, |
| 907 | but the --toolpath option can be used to specify additional search paths to |
| 908 | use. This option can be specified multiple times to add more than one path. |
| 909 | |
Alper Nebi Yasak | fb4e538 | 2020-09-06 14:46:07 +0300 | [diff] [blame] | 910 | For some compile tools binman will use the versions specified by commonly-used |
| 911 | environment variables like CC and HOSTCC for the C compiler, based on whether |
| 912 | the tool's output will be used for the target or for the host machine. If those |
| 913 | aren't given, it will also try to derive target-specific versions from the |
| 914 | CROSS_COMPILE environment variable during a cross-compilation. |
| 915 | |
Simon Glass | 6244fa4 | 2019-07-08 13:18:28 -0600 | [diff] [blame] | 916 | |
Simon Glass | 52debad | 2016-11-25 20:15:59 -0700 | [diff] [blame] | 917 | Code coverage |
| 918 | ------------- |
| 919 | |
| 920 | Binman is a critical tool and is designed to be very testable. Entry |
Simon Glass | f46732a | 2019-07-08 14:25:29 -0600 | [diff] [blame] | 921 | implementations target 100% test coverage. Run 'binman test -T' to check this. |
Simon Glass | 52debad | 2016-11-25 20:15:59 -0700 | [diff] [blame] | 922 | |
| 923 | To enable Python test coverage on Debian-type distributions (e.g. Ubuntu): |
| 924 | |
Simon Glass | a16dd6e | 2019-07-08 13:18:26 -0600 | [diff] [blame] | 925 | $ sudo apt-get install python-coverage python3-coverage python-pytest |
Simon Glass | 52debad | 2016-11-25 20:15:59 -0700 | [diff] [blame] | 926 | |
| 927 | |
Simon Glass | 1aeb751 | 2019-05-17 22:00:52 -0600 | [diff] [blame] | 928 | Concurrent tests |
| 929 | ---------------- |
| 930 | |
| 931 | Binman tries to run tests concurrently. This means that the tests make use of |
| 932 | all available CPUs to run. |
| 933 | |
| 934 | To enable this: |
| 935 | |
| 936 | $ sudo apt-get install python-subunit python3-subunit |
| 937 | |
| 938 | Use '-P 1' to disable this. It is automatically disabled when code coverage is |
| 939 | being used (-T) since they are incompatible. |
| 940 | |
| 941 | |
Simon Glass | 1c420c9 | 2019-07-08 13:18:49 -0600 | [diff] [blame] | 942 | Debugging tests |
| 943 | --------------- |
| 944 | |
| 945 | Sometimes when debugging tests it is useful to keep the input and output |
| 946 | directories so they can be examined later. Use -X or --test-preserve-dirs for |
| 947 | this. |
| 948 | |
| 949 | |
Alper Nebi Yasak | fb4e538 | 2020-09-06 14:46:07 +0300 | [diff] [blame] | 950 | Running tests on non-x86 architectures |
| 951 | -------------------------------------- |
| 952 | |
| 953 | Binman's tests have been written under the assumption that they'll be run on a |
| 954 | x86-like host and there hasn't been an attempt to make them portable yet. |
| 955 | However, it's possible to run the tests by cross-compiling to x86. |
| 956 | |
| 957 | To install an x86 cross-compiler on Debian-type distributions (e.g. Ubuntu): |
| 958 | |
| 959 | $ sudo apt-get install gcc-x86-64-linux-gnu |
| 960 | |
| 961 | Then, you can run the tests under cross-compilation: |
| 962 | |
| 963 | $ CROSS_COMPILE=x86_64-linux-gnu- binman test -T |
| 964 | |
| 965 | You can also use gcc-i686-linux-gnu similar to the above. |
| 966 | |
| 967 | |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 968 | Advanced Features / Technical docs |
| 969 | ---------------------------------- |
| 970 | |
| 971 | The behaviour of entries is defined by the Entry class. All other entries are |
| 972 | a subclass of this. An important subclass is Entry_blob which takes binary |
| 973 | data from a file and places it in the entry. In fact most entry types are |
| 974 | subclasses of Entry_blob. |
| 975 | |
| 976 | Each entry type is a separate file in the tools/binman/etype directory. Each |
| 977 | file contains a class called Entry_<type> where <type> is the entry type. |
| 978 | New entry types can be supported by adding new files in that directory. |
| 979 | These will automatically be detected by binman when needed. |
| 980 | |
| 981 | Entry properties are documented in entry.py. The entry subclasses are free |
| 982 | to change the values of properties to support special behaviour. For example, |
| 983 | when Entry_blob loads a file, it sets content_size to the size of the file. |
| 984 | Entry classes can adjust other entries. For example, an entry that knows |
Simon Glass | e8561af | 2018-08-01 15:22:37 -0600 | [diff] [blame] | 985 | where other entries should be positioned can set up those entries' offsets |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 986 | so they don't need to be set in the binman decription. It can also adjust |
| 987 | entry contents. |
| 988 | |
| 989 | Most of the time such essoteric behaviour is not needed, but it can be |
| 990 | essential for complex images. |
| 991 | |
Simon Glass | ade2ef6 | 2017-12-24 12:12:07 -0700 | [diff] [blame] | 992 | If you need to specify a particular device-tree compiler to use, you can define |
| 993 | the DTC environment variable. This can be useful when the system dtc is too |
| 994 | old. |
| 995 | |
Simon Glass | e64a092 | 2018-11-06 15:21:31 -0700 | [diff] [blame] | 996 | To enable a full backtrace and other debugging features in binman, pass |
| 997 | BINMAN_DEBUG=1 to your build: |
| 998 | |
Bin Meng | a089c41 | 2019-10-02 19:07:29 -0700 | [diff] [blame] | 999 | make qemu-x86_defconfig |
Simon Glass | e64a092 | 2018-11-06 15:21:31 -0700 | [diff] [blame] | 1000 | make BINMAN_DEBUG=1 |
| 1001 | |
Simon Glass | 03b1d8f | 2019-09-25 08:11:11 -0600 | [diff] [blame] | 1002 | To enable verbose logging from binman, base BINMAN_VERBOSE to your build, which |
| 1003 | adds a -v<level> option to the call to binman: |
| 1004 | |
Bin Meng | a089c41 | 2019-10-02 19:07:29 -0700 | [diff] [blame] | 1005 | make qemu-x86_defconfig |
Simon Glass | 03b1d8f | 2019-09-25 08:11:11 -0600 | [diff] [blame] | 1006 | make BINMAN_VERBOSE=5 |
| 1007 | |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 1008 | |
| 1009 | History / Credits |
| 1010 | ----------------- |
| 1011 | |
| 1012 | Binman takes a lot of inspiration from a Chrome OS tool called |
| 1013 | 'cros_bundle_firmware', which I wrote some years ago. That tool was based on |
| 1014 | a reasonably simple and sound design but has expanded greatly over the |
| 1015 | years. In particular its handling of x86 images is convoluted. |
| 1016 | |
Simon Glass | 1e32400 | 2018-06-01 09:38:19 -0600 | [diff] [blame] | 1017 | Quite a few lessons have been learned which are hopefully applied here. |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 1018 | |
| 1019 | |
| 1020 | Design notes |
| 1021 | ------------ |
| 1022 | |
| 1023 | On the face of it, a tool to create firmware images should be fairly simple: |
| 1024 | just find all the input binaries and place them at the right place in the |
| 1025 | image. The difficulty comes from the wide variety of input types (simple |
| 1026 | flat binaries containing code, packaged data with various headers), packing |
| 1027 | requirments (alignment, spacing, device boundaries) and other required |
| 1028 | features such as hierarchical images. |
| 1029 | |
| 1030 | The design challenge is to make it easy to create simple images, while |
| 1031 | allowing the more complex cases to be supported. For example, for most |
| 1032 | images we don't much care exactly where each binary ends up, so we should |
| 1033 | not have to specify that unnecessarily. |
| 1034 | |
| 1035 | New entry types should aim to provide simple usage where possible. If new |
| 1036 | core features are needed, they can be added in the Entry base class. |
| 1037 | |
| 1038 | |
| 1039 | To do |
| 1040 | ----- |
| 1041 | |
| 1042 | Some ideas: |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 1043 | - Use of-platdata to make the information available to code that is unable |
| 1044 | to use device tree (such as a very small SPL image) |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 1045 | - Allow easy building of images by specifying just the board name |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 1046 | - Support building an image for a board (-b) more completely, with a |
| 1047 | configurable build directory |
Simon Glass | a9408f8 | 2019-07-08 14:25:24 -0600 | [diff] [blame] | 1048 | - Support adding FITs to an image |
| 1049 | - Support for ARM Trusted Firmware (ATF) |
Simon Glass | 8100a8e | 2019-07-20 12:24:02 -0600 | [diff] [blame] | 1050 | - Detect invalid properties in nodes |
| 1051 | - Sort the fdtmap by offset |
Simon Glass | 2574ef6 | 2016-11-25 20:15:51 -0700 | [diff] [blame] | 1052 | |
| 1053 | -- |
| 1054 | Simon Glass <sjg@chromium.org> |
| 1055 | 7/7/2016 |