1b8eb35fdSChristian Daudt /* 2b8eb35fdSChristian Daudt * Copyright (C) 2013 Broadcom Corporation 3b8eb35fdSChristian Daudt * 4b8eb35fdSChristian Daudt * This program is free software; you can redistribute it and/or 5b8eb35fdSChristian Daudt * modify it under the terms of the GNU General Public License as 6b8eb35fdSChristian Daudt * published by the Free Software Foundation version 2. 7b8eb35fdSChristian Daudt * 8b8eb35fdSChristian Daudt * This program is distributed "as is" WITHOUT ANY WARRANTY of any 9b8eb35fdSChristian Daudt * kind, whether express or implied; without even the implied warranty 10b8eb35fdSChristian Daudt * of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 11b8eb35fdSChristian Daudt * GNU General Public License for more details. 12b8eb35fdSChristian Daudt */ 13b8eb35fdSChristian Daudt 14b8eb35fdSChristian Daudt #include <stdarg.h> 15b8eb35fdSChristian Daudt #include <linux/smp.h> 16b8eb35fdSChristian Daudt #include <linux/io.h> 17b8eb35fdSChristian Daudt #include <linux/ioport.h> 18b8eb35fdSChristian Daudt 19b8eb35fdSChristian Daudt #include <asm/cacheflush.h> 20b8eb35fdSChristian Daudt #include <linux/of_address.h> 21b8eb35fdSChristian Daudt 22b8eb35fdSChristian Daudt #include "bcm_kona_smc.h" 23b8eb35fdSChristian Daudt 24c64756ccSAlex Elder static u32 bcm_smc_buffer_phys; /* physical address */ 25c64756ccSAlex Elder static void __iomem *bcm_smc_buffer; /* virtual address */ 26b8eb35fdSChristian Daudt 27b8eb35fdSChristian Daudt struct bcm_kona_smc_data { 28b8eb35fdSChristian Daudt unsigned service_id; 29b8eb35fdSChristian Daudt unsigned arg0; 30b8eb35fdSChristian Daudt unsigned arg1; 31b8eb35fdSChristian Daudt unsigned arg2; 32b8eb35fdSChristian Daudt unsigned arg3; 336c90f108SAlex Elder unsigned result; 34b8eb35fdSChristian Daudt }; 35b8eb35fdSChristian Daudt 36b8eb35fdSChristian Daudt static const struct of_device_id bcm_kona_smc_ids[] __initconst = { 37aea237bfSChristian Daudt {.compatible = "brcm,kona-smc"}, 38aea237bfSChristian Daudt {.compatible = "bcm,kona-smc"}, /* deprecated name */ 39b8eb35fdSChristian Daudt {}, 40b8eb35fdSChristian Daudt }; 41b8eb35fdSChristian Daudt 42c64756ccSAlex Elder /* Map in the args buffer area */ 433a76b351SChristian Daudt int __init bcm_kona_smc_init(void) 44b8eb35fdSChristian Daudt { 45b8eb35fdSChristian Daudt struct device_node *node; 465c4cee2fSAlex Elder const __be32 *prop_val; 47c64756ccSAlex Elder u64 prop_size = 0; 48c64756ccSAlex Elder unsigned long buffer_size; 49c64756ccSAlex Elder u32 buffer_phys; 50b8eb35fdSChristian Daudt 51b8eb35fdSChristian Daudt /* Read buffer addr and size from the device tree node */ 52b8eb35fdSChristian Daudt node = of_find_matching_node(NULL, bcm_kona_smc_ids); 533a76b351SChristian Daudt if (!node) 543a76b351SChristian Daudt return -ENODEV; 55b8eb35fdSChristian Daudt 56c64756ccSAlex Elder prop_val = of_get_address(node, 0, &prop_size, NULL); 575c4cee2fSAlex Elder if (!prop_val) 585c4cee2fSAlex Elder return -EINVAL; 595c4cee2fSAlex Elder 60c64756ccSAlex Elder /* We assume space for four 32-bit arguments */ 61c64756ccSAlex Elder if (prop_size < 4 * sizeof(u32) || prop_size > (u64)ULONG_MAX) 62c64756ccSAlex Elder return -EINVAL; 63c64756ccSAlex Elder buffer_size = (unsigned long)prop_size; 64c64756ccSAlex Elder 65c64756ccSAlex Elder buffer_phys = be32_to_cpup(prop_val); 66c64756ccSAlex Elder if (!buffer_phys) 675c4cee2fSAlex Elder return -EINVAL; 68b8eb35fdSChristian Daudt 69c64756ccSAlex Elder bcm_smc_buffer = ioremap(buffer_phys, buffer_size); 70c64756ccSAlex Elder if (!bcm_smc_buffer) 715c4cee2fSAlex Elder return -ENOMEM; 72c64756ccSAlex Elder bcm_smc_buffer_phys = buffer_phys; 73b8eb35fdSChristian Daudt 743a76b351SChristian Daudt pr_info("Kona Secure API initialized\n"); 753a76b351SChristian Daudt 763a76b351SChristian Daudt return 0; 77b8eb35fdSChristian Daudt } 78b8eb35fdSChristian Daudt 79*8b9c550eSAlex Elder /* 80*8b9c550eSAlex Elder * Since interrupts are disabled in the open mode, we must keep 81*8b9c550eSAlex Elder * interrupts disabled in secure mode by setting R5=0x3. If interrupts 82*8b9c550eSAlex Elder * are enabled in open mode, we can set R5=0x0 to allow interrupts in 83*8b9c550eSAlex Elder * secure mode. If we did this, the secure monitor would return back 84*8b9c550eSAlex Elder * control to the open mode to handle the interrupt prior to completing 85*8b9c550eSAlex Elder * the secure service. If this happened, R12 would not be 86*8b9c550eSAlex Elder * SEC_EXIT_NORMAL and we would need to call SMC again after resetting 87*8b9c550eSAlex Elder * R5 (it gets clobbered by the secure monitor) and setting R4 to 88*8b9c550eSAlex Elder * SSAPI_RET_FROM_INT_SERV to indicate that we want the secure monitor 89*8b9c550eSAlex Elder * to finish up the previous uncompleted secure service. 90*8b9c550eSAlex Elder */ 91*8b9c550eSAlex Elder static int bcm_kona_do_smc(u32 service_id, u32 buffer_phys) 92*8b9c550eSAlex Elder { 93*8b9c550eSAlex Elder register u32 ip asm("ip"); /* Also called r12 */ 94*8b9c550eSAlex Elder register u32 r0 asm("r0"); 95*8b9c550eSAlex Elder register u32 r4 asm("r4"); 96*8b9c550eSAlex Elder register u32 r5 asm("r5"); 97*8b9c550eSAlex Elder register u32 r6 asm("r6"); 98*8b9c550eSAlex Elder 99*8b9c550eSAlex Elder r4 = service_id; 100*8b9c550eSAlex Elder r5 = 0x3; /* Keep IRQ and FIQ off in SM */ 101*8b9c550eSAlex Elder r6 = buffer_phys; 102*8b9c550eSAlex Elder 103*8b9c550eSAlex Elder asm volatile ( 104*8b9c550eSAlex Elder /* Make sure we got the registers we want */ 105*8b9c550eSAlex Elder __asmeq("%0", "ip") 106*8b9c550eSAlex Elder __asmeq("%1", "r0") 107*8b9c550eSAlex Elder __asmeq("%2", "r4") 108*8b9c550eSAlex Elder __asmeq("%3", "r5") 109*8b9c550eSAlex Elder __asmeq("%4", "r6") 110*8b9c550eSAlex Elder #ifdef REQUIRES_SEC 111*8b9c550eSAlex Elder ".arch_extension sec\n" 112*8b9c550eSAlex Elder #endif 113*8b9c550eSAlex Elder " smc #0\n" 114*8b9c550eSAlex Elder : "=r" (ip), "=r" (r0) 115*8b9c550eSAlex Elder : "r" (r4), "r" (r5), "r" (r6) 116*8b9c550eSAlex Elder : "r1", "r2", "r3", "r7", "lr"); 117*8b9c550eSAlex Elder 118*8b9c550eSAlex Elder BUG_ON(ip != SEC_EXIT_NORMAL); 119*8b9c550eSAlex Elder 120*8b9c550eSAlex Elder return r0; 121*8b9c550eSAlex Elder } 122*8b9c550eSAlex Elder 123b8eb35fdSChristian Daudt /* __bcm_kona_smc() should only run on CPU 0, with pre-emption disabled */ 124b8eb35fdSChristian Daudt static void __bcm_kona_smc(void *info) 125b8eb35fdSChristian Daudt { 126b8eb35fdSChristian Daudt struct bcm_kona_smc_data *data = info; 127c64756ccSAlex Elder u32 *args = bcm_smc_buffer; 128b8eb35fdSChristian Daudt 129b8eb35fdSChristian Daudt BUG_ON(smp_processor_id() != 0); 130c64756ccSAlex Elder BUG_ON(!args); 131b8eb35fdSChristian Daudt 132e80eef33SAlex Elder /* Copy the four 32 bit argument values into the bounce area */ 133e80eef33SAlex Elder writel_relaxed(data->arg0, args++); 134e80eef33SAlex Elder writel_relaxed(data->arg1, args++); 135e80eef33SAlex Elder writel_relaxed(data->arg2, args++); 136e80eef33SAlex Elder writel(data->arg3, args); 137b8eb35fdSChristian Daudt 138b8eb35fdSChristian Daudt /* Flush caches for input data passed to Secure Monitor */ 139b8eb35fdSChristian Daudt flush_cache_all(); 140b8eb35fdSChristian Daudt 1416c90f108SAlex Elder /* Trap into Secure Monitor and record the request result */ 142*8b9c550eSAlex Elder data->result = bcm_kona_do_smc(data->service_id, bcm_smc_buffer_phys); 143b8eb35fdSChristian Daudt } 144b8eb35fdSChristian Daudt 145b8eb35fdSChristian Daudt unsigned bcm_kona_smc(unsigned service_id, unsigned arg0, unsigned arg1, 146b8eb35fdSChristian Daudt unsigned arg2, unsigned arg3) 147b8eb35fdSChristian Daudt { 148b8eb35fdSChristian Daudt struct bcm_kona_smc_data data; 149b8eb35fdSChristian Daudt 150b8eb35fdSChristian Daudt data.service_id = service_id; 151b8eb35fdSChristian Daudt data.arg0 = arg0; 152b8eb35fdSChristian Daudt data.arg1 = arg1; 153b8eb35fdSChristian Daudt data.arg2 = arg2; 154b8eb35fdSChristian Daudt data.arg3 = arg3; 1556c90f108SAlex Elder data.result = 0; 156b8eb35fdSChristian Daudt 157b8eb35fdSChristian Daudt /* 158b8eb35fdSChristian Daudt * Due to a limitation of the secure monitor, we must use the SMP 159b8eb35fdSChristian Daudt * infrastructure to forward all secure monitor calls to Core 0. 160b8eb35fdSChristian Daudt */ 16135138d52SAlex Elder smp_call_function_single(0, __bcm_kona_smc, &data, 1); 162b8eb35fdSChristian Daudt 1636c90f108SAlex Elder return data.result; 164b8eb35fdSChristian Daudt } 165