Patch Detail
get:
Show a patch.
patch:
Update a patch.
put:
Update a patch.
GET /api/patches/961292/?format=api
{ "id": 961292, "url": "http://patchwork.ozlabs.org/api/patches/961292/?format=api", "web_url": "http://patchwork.ozlabs.org/project/uboot/patch/20180823104334.16083-14-jens.wiklander@linaro.org/", "project": { "id": 18, "url": "http://patchwork.ozlabs.org/api/projects/18/?format=api", "name": "U-Boot", "link_name": "uboot", "list_id": "u-boot.lists.denx.de", "list_email": "u-boot@lists.denx.de", "web_url": null, "scm_url": null, "webscm_url": null, "list_archive_url": "", "list_archive_url_format": "", "commit_url_format": "" }, "msgid": "<20180823104334.16083-14-jens.wiklander@linaro.org>", "list_archive_url": null, "date": "2018-08-23T10:43:32", "name": "[U-Boot,v2,13/15] optee: support routing of rpmb data frames to mmc", "commit_ref": null, "pull_url": null, "state": "superseded", "archived": false, "hash": "99a9bd6c00ee1fe0f3f7dfd9fbd56de70e9ed26e", "submitter": { "id": 66201, "url": "http://patchwork.ozlabs.org/api/people/66201/?format=api", "name": "Jens Wiklander", "email": "jens.wiklander@linaro.org" }, "delegate": { "id": 3651, "url": "http://patchwork.ozlabs.org/api/users/3651/?format=api", "username": "trini", "first_name": "Tom", "last_name": "Rini", "email": "trini@ti.com" }, "mbox": "http://patchwork.ozlabs.org/project/uboot/patch/20180823104334.16083-14-jens.wiklander@linaro.org/mbox/", "series": [ { "id": 62144, "url": "http://patchwork.ozlabs.org/api/series/62144/?format=api", "web_url": "http://patchwork.ozlabs.org/project/uboot/list/?series=62144", "date": "2018-08-23T10:43:19", "name": "AVB using OP-TEE", "version": 2, "mbox": "http://patchwork.ozlabs.org/series/62144/mbox/" } ], "comments": "http://patchwork.ozlabs.org/api/patches/961292/comments/", "check": "pending", "checks": "http://patchwork.ozlabs.org/api/patches/961292/checks/", "tags": {}, "related": [], "headers": { "Return-Path": "<u-boot-bounces@lists.denx.de>", "X-Original-To": "incoming@patchwork.ozlabs.org", "Delivered-To": "patchwork-incoming@bilbo.ozlabs.org", "Authentication-Results": [ "ozlabs.org;\n\tspf=none (mailfrom) smtp.mailfrom=lists.denx.de\n\t(client-ip=81.169.180.215; helo=lists.denx.de;\n\tenvelope-from=u-boot-bounces@lists.denx.de;\n\treceiver=<UNKNOWN>)", "ozlabs.org;\n\tdmarc=fail (p=none dis=none) header.from=linaro.org", "ozlabs.org;\n\tdkim=fail reason=\"signature verification failed\" (1024-bit key;\n\tunprotected) header.d=linaro.org header.i=@linaro.org\n\theader.b=\"g4SeDA3i\"; dkim-atps=neutral" ], "Received": [ "from lists.denx.de (dione.denx.de [81.169.180.215])\n\tby ozlabs.org (Postfix) with ESMTP id 41x1cF3F69z9s3C\n\tfor <incoming@patchwork.ozlabs.org>;\n\tThu, 23 Aug 2018 20:58:37 +1000 (AEST)", "by lists.denx.de (Postfix, from userid 105)\n\tid D84B0C21EBB; Thu, 23 Aug 2018 10:54:43 +0000 (UTC)", "from lists.denx.de (localhost [IPv6:::1])\n\tby lists.denx.de (Postfix) with ESMTP id 7702EC21F94;\n\tThu, 23 Aug 2018 10:44:33 +0000 (UTC)", "by lists.denx.de (Postfix, from userid 105)\n\tid 1CF71C21F79; Thu, 23 Aug 2018 10:44:04 +0000 (UTC)", "from mail-lj1-f170.google.com (mail-lj1-f170.google.com\n\t[209.85.208.170])\n\tby lists.denx.de (Postfix) with ESMTPS id A4FAEC21F05\n\tfor <u-boot@lists.denx.de>; Thu, 23 Aug 2018 10:43:59 +0000 (UTC)", "by mail-lj1-f170.google.com with SMTP id 203-v6so3757534ljj.13\n\tfor <u-boot@lists.denx.de>; Thu, 23 Aug 2018 03:43:59 -0700 (PDT)", "from jax.ideon.se ([85.235.10.227])\n\tby smtp.gmail.com with ESMTPSA id\n\ty5-v6sm679771ljj.75.2018.08.23.03.43.57\n\t(version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128);\n\tThu, 23 Aug 2018 03:43:58 -0700 (PDT)" ], "X-Spam-Checker-Version": "SpamAssassin 3.4.0 (2014-02-07) on lists.denx.de", "X-Spam-Level": "", "X-Spam-Status": "No, score=0.0 required=5.0 tests=RCVD_IN_MSPIKE_H2,\n\tT_DKIM_INVALID autolearn=unavailable autolearn_force=no version=3.4.0", "DKIM-Signature": "v=1; a=rsa-sha256; c=relaxed/relaxed; d=linaro.org; s=google;\n\th=from:to:cc:subject:date:message-id:in-reply-to:references;\n\tbh=j7tb8EnzKg16Ig5E3LdzOtSz35xdMwZN6vwbi/msJQY=;\n\tb=g4SeDA3imkAXevPy3/69OvhPfXJBEZe6d13DJ1PUqVe45nMKcFul1LZEbOrACvv1aP\n\t5V0+Mehhy84nSHtb5IqMHSuOSZlnychBtn89Rp5xz3cJfLdID/XEvahrE8gwB62rP0ek\n\thCVHoYfyQ6ystsCdRrbcrczP5lcnl1iPBJEvI=", "X-Google-DKIM-Signature": "v=1; a=rsa-sha256; c=relaxed/relaxed;\n\td=1e100.net; s=20161025;\n\th=x-gm-message-state:from:to:cc:subject:date:message-id:in-reply-to\n\t:references;\n\tbh=j7tb8EnzKg16Ig5E3LdzOtSz35xdMwZN6vwbi/msJQY=;\n\tb=fximAUfRfSVItaJRVsWddJ1mIBYL7J2coQybgb3AoRzGvMDRyJNrO6Mnyp66pDFOzc\n\tFUDna8+VKz9tT8CU7IvtAAC6gK4imAE6uSQUDZnDXZ19Whtd5crej6S2FD/OT0PcxDSN\n\tWQackk9hNUK8ZvTDafh4F7xdLygznygJO2PRhoLXMBkkQIEj/96EzMQQ3MZmLunVxrSp\n\t5L60f0LisGr9hnQjiKLgRCm8g4ZJo9eZ+0gl38nLtZpGRQ/8SpOMoVrkmez+BmnrZLDi\n\tiJUJqi+hDadCATgy5elz1l8fFh6C1/bwjVsCvvCFrxEfWHFWdOg+sCTJfoFwJOLgDxjN\n\t3biQ==", "X-Gm-Message-State": "AOUpUlH0ofwPkfeT32FZJCA5Wzaowv2MuYXuoxfmMpgjlXC26jQYZ+8+\n\t5NoKYanGtmzSwGJgmNIEq5iflNsK2lM=", "X-Google-Smtp-Source": "AA+uWPxDE0nYUkFKiTgLmICS4Fxk4kYMbb/niwgtmT8Xu2YkPwFHdlxooXJobhrtZy7r/kCKwo+iQg==", "X-Received": "by 2002:a2e:1609:: with SMTP id\n\tw9-v6mr29640889ljd.120.1535021038739; \n\tThu, 23 Aug 2018 03:43:58 -0700 (PDT)", "From": "Jens Wiklander <jens.wiklander@linaro.org>", "To": "u-boot@lists.denx.de", "Date": "Thu, 23 Aug 2018 12:43:32 +0200", "Message-Id": "<20180823104334.16083-14-jens.wiklander@linaro.org>", "X-Mailer": "git-send-email 2.17.1", "In-Reply-To": "<20180823104334.16083-1-jens.wiklander@linaro.org>", "References": "<20180823104334.16083-1-jens.wiklander@linaro.org>", "Cc": "Tom Rini <trini@konsulko.com>, Pierre Aubert <p.aubert@staubli.com>", "Subject": "[U-Boot] [PATCH v2 13/15] optee: support routing of rpmb data\n\tframes to mmc", "X-BeenThere": "u-boot@lists.denx.de", "X-Mailman-Version": "2.1.18", "Precedence": "list", "List-Id": "U-Boot discussion <u-boot.lists.denx.de>", "List-Unsubscribe": "<https://lists.denx.de/options/u-boot>,\n\t<mailto:u-boot-request@lists.denx.de?subject=unsubscribe>", "List-Archive": "<http://lists.denx.de/pipermail/u-boot/>", "List-Post": "<mailto:u-boot@lists.denx.de>", "List-Help": "<mailto:u-boot-request@lists.denx.de?subject=help>", "List-Subscribe": "<https://lists.denx.de/listinfo/u-boot>,\n\t<mailto:u-boot-request@lists.denx.de?subject=subscribe>", "MIME-Version": "1.0", "Content-Type": "text/plain; charset=\"utf-8\"", "Content-Transfer-Encoding": "base64", "Errors-To": "u-boot-bounces@lists.denx.de", "Sender": "\"U-Boot\" <u-boot-bounces@lists.denx.de>" }, "content": "Adds support in optee supplicant to route signed (MACed) RPMB frames\nfrom OP-TEE Secure OS to MMC and vice versa to manipulate the RPMB\npartition.\n\nTested-by: Igor Opaniuk <igor.opaniuk@linaro.org>\nSigned-off-by: Jens Wiklander <jens.wiklander@linaro.org>\n---\n drivers/tee/optee/Makefile | 1 +\n drivers/tee/optee/core.c | 8 ++\n drivers/tee/optee/optee_private.h | 31 ++++-\n drivers/tee/optee/rpmb.c | 184 ++++++++++++++++++++++++++++++\n drivers/tee/optee/supplicant.c | 3 +\n 5 files changed, 226 insertions(+), 1 deletion(-)\n create mode 100644 drivers/tee/optee/rpmb.c", "diff": "diff --git a/drivers/tee/optee/Makefile b/drivers/tee/optee/Makefile\nindex 6148feb474a5..928d3f80027f 100644\n--- a/drivers/tee/optee/Makefile\n+++ b/drivers/tee/optee/Makefile\n@@ -2,3 +2,4 @@\n \n obj-y += core.o\n obj-y += supplicant.o\n+obj-$(CONFIG_SUPPORT_EMMC_RPMB) += rpmb.o\ndiff --git a/drivers/tee/optee/core.c b/drivers/tee/optee/core.c\nindex f2d92d96551b..e297d206af3a 100644\n--- a/drivers/tee/optee/core.c\n+++ b/drivers/tee/optee/core.c\n@@ -280,6 +280,13 @@ static u32 do_call_with_arg(struct udevice *dev, struct optee_msg_arg *arg)\n \t\t\tparam.a3 = res.a3;\n \t\t\thandle_rpc(dev, ¶m, &page_list);\n \t\t} else {\n+\t\t\t/*\n+\t\t\t * In case we've accessed RPMB to serve an RPC\n+\t\t\t * request we need to restore the previously\n+\t\t\t * selected partition as the caller may expect it\n+\t\t\t * to remain unchanged.\n+\t\t\t */\n+\t\t\toptee_suppl_rpmb_release(dev);\n \t\t\treturn call_err_to_res(res.a0);\n \t\t}\n \t}\n@@ -611,4 +618,5 @@ U_BOOT_DRIVER(optee) = {\n \t.probe = optee_probe,\n \t.ops = &optee_ops,\n \t.platdata_auto_alloc_size = sizeof(struct optee_pdata),\n+\t.priv_auto_alloc_size = sizeof(struct optee_private),\n };\ndiff --git a/drivers/tee/optee/optee_private.h b/drivers/tee/optee/optee_private.h\nindex daa470f812a9..b76979d21011 100644\n--- a/drivers/tee/optee/optee_private.h\n+++ b/drivers/tee/optee/optee_private.h\n@@ -6,7 +6,36 @@\n #ifndef __OPTEE_PRIVATE_H\n #define __OPTEE_PRIVATE_H\n \n+#include <tee.h>\n+#include <log.h>\n+\n+struct optee_private {\n+\tstruct mmc *rpmb_mmc;\n+\tint rpmb_dev_id;\n+\tchar rpmb_original_part;\n+};\n+\n+struct optee_msg_arg;\n+\n+void optee_suppl_cmd(struct udevice *dev, struct tee_shm *shm_arg,\n+\t\t void **page_list);\n+\n+#ifdef CONFIG_SUPPORT_EMMC_RPMB\n+void optee_suppl_cmd_rpmb(struct udevice *dev, struct optee_msg_arg *arg);\n+void optee_suppl_rpmb_release(struct udevice *dev);\n+#else\n+static inline void optee_suppl_cmd_rpmb(struct udevice *dev,\n+\t\t\t\t\tstruct optee_msg_arg *arg)\n+{\n+\tdebug(\"OPTEE_MSG_RPC_CMD_RPMB not implemented\\n\");\n+\targ->ret = TEE_ERROR_NOT_IMPLEMENTED;\n+}\n+\n+static inline void optee_suppl_rpmb_release(struct udevice *dev)\n+{\n+}\n+#endif\n+\n void *optee_alloc_and_init_page_list(void *buf, ulong len, u64 *phys_buf_ptr);\n-void optee_suppl_cmd(struct udevice *dev, void *shm, void **page_list);\n \n #endif /*__OPTEE_PRIVATE_H*/\ndiff --git a/drivers/tee/optee/rpmb.c b/drivers/tee/optee/rpmb.c\nnew file mode 100644\nindex 000000000000..c1447a5561c2\n--- /dev/null\n+++ b/drivers/tee/optee/rpmb.c\n@@ -0,0 +1,184 @@\n+// SPDX-License-Identifier: BSD-2-Clause\n+/*\n+ * Copyright (c) 2018 Linaro Limited\n+ */\n+\n+#include <common.h>\n+#include <log.h>\n+#include <tee.h>\n+#include <mmc.h>\n+\n+#include \"optee_msg.h\"\n+#include \"optee_private.h\"\n+\n+/*\n+ * Request and response definitions must be in sync with the secure side of\n+ * OP-TEE.\n+ */\n+\n+/* Request */\n+struct rpmb_req {\n+\tu16 cmd;\n+#define RPMB_CMD_DATA_REQ 0x00\n+#define RPMB_CMD_GET_DEV_INFO 0x01\n+\tu16 dev_id;\n+\tu16 block_count;\n+\t/* Optional data frames (rpmb_data_frame) follow */\n+};\n+\n+#define RPMB_REQ_DATA(req) ((void *)((struct rpmb_req *)(req) + 1))\n+\n+/* Response to device info request */\n+struct rpmb_dev_info {\n+\tu8 cid[16];\n+\tu8 rpmb_size_mult;\t/* EXT CSD-slice 168: RPMB Size */\n+\tu8 rel_wr_sec_c;\t/* EXT CSD-slice 222: Reliable Write Sector */\n+\t\t\t\t/* Count */\n+\tu8 ret_code;\n+#define RPMB_CMD_GET_DEV_INFO_RET_OK 0x00\n+#define RPMB_CMD_GET_DEV_INFO_RET_ERROR 0x01\n+};\n+\n+static void release_mmc(struct optee_private *priv)\n+{\n+\tint rc;\n+\n+\tif (!priv->rpmb_mmc)\n+\t\treturn;\n+\n+\trc = blk_select_hwpart_devnum(IF_TYPE_MMC, priv->rpmb_dev_id,\n+\t\t\t\t priv->rpmb_original_part);\n+\tif (rc)\n+\t\tdebug(\"%s: blk_select_hwpart_devnum() failed: %d\\n\",\n+\t\t __func__, rc);\n+\n+\tpriv->rpmb_mmc = NULL;\n+}\n+\n+static struct mmc *get_mmc(struct optee_private *priv, int dev_id)\n+{\n+\tstruct mmc *mmc;\n+\tint rc;\n+\n+\tif (priv->rpmb_mmc && priv->rpmb_dev_id == dev_id)\n+\t\treturn priv->rpmb_mmc;\n+\n+\trelease_mmc(priv);\n+\n+\tmmc = find_mmc_device(dev_id);\n+\tif (!mmc) {\n+\t\tdebug(\"Cannot find RPMB device\\n\");\n+\t\treturn NULL;\n+\t}\n+\tif (!(mmc->version & MMC_VERSION_MMC)) {\n+\t\tdebug(\"Device id %d is not an eMMC device\\n\", dev_id);\n+\t\treturn NULL;\n+\t}\n+\tif (mmc->version < MMC_VERSION_4_41) {\n+\t\tdebug(\"Device id %d: RPMB not supported before version 4.41\\n\",\n+\t\t dev_id);\n+\t\treturn NULL;\n+\t}\n+\n+#ifdef CONFIG_BLK\n+\tpriv->rpmb_original_part = mmc_get_blk_desc(mmc)->hwpart;\n+#else\n+\tpriv->rpmb_original_part = mmc->block_dev.hwpart;\n+#endif\n+\n+\trc = blk_select_hwpart_devnum(IF_TYPE_MMC, dev_id, MMC_PART_RPMB);\n+\tif (rc) {\n+\t\tdebug(\"Device id %d: cannot select RPMB partition: %d\\n\",\n+\t\t dev_id, rc);\n+\t\treturn NULL;\n+\t}\n+\n+\tpriv->rpmb_mmc = mmc;\n+\tpriv->rpmb_dev_id = dev_id;\n+\treturn mmc;\n+}\n+\n+static u32 rpmb_get_dev_info(u16 dev_id, struct rpmb_dev_info *info)\n+{\n+\tstruct mmc *mmc = find_mmc_device(dev_id);\n+\n+\tif (!mmc)\n+\t\treturn TEE_ERROR_ITEM_NOT_FOUND;\n+\n+\tif (!mmc->ext_csd)\n+\t\treturn TEE_ERROR_GENERIC;\n+\n+\tmemcpy(info->cid, mmc->cid, sizeof(info->cid));\n+\tinfo->rel_wr_sec_c = mmc->ext_csd[222];\n+\tinfo->rpmb_size_mult = mmc->ext_csd[168];\n+\tinfo->ret_code = RPMB_CMD_GET_DEV_INFO_RET_OK;\n+\n+\treturn TEE_SUCCESS;\n+}\n+\n+static u32 rpmb_process_request(struct optee_private *priv, void *req,\n+\t\t\t\tulong req_size, void *rsp, ulong rsp_size)\n+{\n+\tstruct rpmb_req *sreq = req;\n+\tstruct mmc *mmc;\n+\n+\tif (req_size < sizeof(*sreq))\n+\t\treturn TEE_ERROR_BAD_PARAMETERS;\n+\n+\tswitch (sreq->cmd) {\n+\tcase RPMB_CMD_DATA_REQ:\n+\t\tmmc = get_mmc(priv, sreq->dev_id);\n+\t\tif (!mmc)\n+\t\t\treturn TEE_ERROR_ITEM_NOT_FOUND;\n+\t\tif (mmc_rpmb_route_frames(mmc, RPMB_REQ_DATA(req),\n+\t\t\t\t\t req_size - sizeof(struct rpmb_req),\n+\t\t\t\t\t rsp, rsp_size))\n+\t\t\treturn TEE_ERROR_BAD_PARAMETERS;\n+\t\treturn TEE_SUCCESS;\n+\n+\tcase RPMB_CMD_GET_DEV_INFO:\n+\t\tif (req_size != sizeof(struct rpmb_req) ||\n+\t\t rsp_size != sizeof(struct rpmb_dev_info)) {\n+\t\t\tdebug(\"Invalid req/rsp size\\n\");\n+\t\t\treturn TEE_ERROR_BAD_PARAMETERS;\n+\t\t}\n+\t\treturn rpmb_get_dev_info(sreq->dev_id, rsp);\n+\n+\tdefault:\n+\t\tdebug(\"Unsupported RPMB command: %d\\n\", sreq->cmd);\n+\t\treturn TEE_ERROR_BAD_PARAMETERS;\n+\t}\n+}\n+\n+void optee_suppl_cmd_rpmb(struct udevice *dev, struct optee_msg_arg *arg)\n+{\n+\tstruct tee_shm *req_shm;\n+\tstruct tee_shm *rsp_shm;\n+\tvoid *req_buf;\n+\tvoid *rsp_buf;\n+\tulong req_size;\n+\tulong rsp_size;\n+\n+\tif (arg->num_params != 2 ||\n+\t arg->params[0].attr != OPTEE_MSG_ATTR_TYPE_RMEM_INPUT ||\n+\t arg->params[1].attr != OPTEE_MSG_ATTR_TYPE_RMEM_OUTPUT) {\n+\t\targ->ret = TEE_ERROR_BAD_PARAMETERS;\n+\t\treturn;\n+\t}\n+\n+\treq_shm = (struct tee_shm *)(ulong)arg->params[0].u.rmem.shm_ref;\n+\treq_buf = (u8 *)req_shm->addr + arg->params[0].u.rmem.offs;\n+\treq_size = arg->params[0].u.rmem.size;\n+\n+\trsp_shm = (struct tee_shm *)(ulong)arg->params[1].u.rmem.shm_ref;\n+\trsp_buf = (u8 *)rsp_shm->addr + arg->params[1].u.rmem.offs;\n+\trsp_size = arg->params[1].u.rmem.size;\n+\n+\targ->ret = rpmb_process_request(dev_get_priv(dev), req_buf, req_size,\n+\t\t\t\t\trsp_buf, rsp_size);\n+}\n+\n+void optee_suppl_rpmb_release(struct udevice *dev)\n+{\n+\trelease_mmc(dev_get_priv(dev));\n+}\ndiff --git a/drivers/tee/optee/supplicant.c b/drivers/tee/optee/supplicant.c\nindex 6965055bd1b5..14cb8717522c 100644\n--- a/drivers/tee/optee/supplicant.c\n+++ b/drivers/tee/optee/supplicant.c\n@@ -81,6 +81,9 @@ void optee_suppl_cmd(struct udevice *dev, struct tee_shm *shm_arg,\n \t\tdebug(\"OPTEE_MSG_RPC_CMD_FS not implemented\\n\");\n \t\targ->ret = TEE_ERROR_NOT_IMPLEMENTED;\n \t\tbreak;\n+\tcase OPTEE_MSG_RPC_CMD_RPMB:\n+\t\toptee_suppl_cmd_rpmb(dev, arg);\n+\t\tbreak;\n \tdefault:\n \t\targ->ret = TEE_ERROR_NOT_IMPLEMENTED;\n \t}\n", "prefixes": [ "U-Boot", "v2", "13/15" ] }