16dd2a5c9SPaolo Bonzini /*
26dd2a5c9SPaolo Bonzini * QEMU PC System Firmware
36dd2a5c9SPaolo Bonzini *
46dd2a5c9SPaolo Bonzini * Copyright (c) 2003-2004 Fabrice Bellard
56dd2a5c9SPaolo Bonzini * Copyright (c) 2011-2012 Intel Corporation
66dd2a5c9SPaolo Bonzini *
76dd2a5c9SPaolo Bonzini * Permission is hereby granted, free of charge, to any person obtaining a copy
86dd2a5c9SPaolo Bonzini * of this software and associated documentation files (the "Software"), to deal
96dd2a5c9SPaolo Bonzini * in the Software without restriction, including without limitation the rights
106dd2a5c9SPaolo Bonzini * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
116dd2a5c9SPaolo Bonzini * copies of the Software, and to permit persons to whom the Software is
126dd2a5c9SPaolo Bonzini * furnished to do so, subject to the following conditions:
136dd2a5c9SPaolo Bonzini *
146dd2a5c9SPaolo Bonzini * The above copyright notice and this permission notice shall be included in
156dd2a5c9SPaolo Bonzini * all copies or substantial portions of the Software.
166dd2a5c9SPaolo Bonzini *
176dd2a5c9SPaolo Bonzini * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
186dd2a5c9SPaolo Bonzini * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
196dd2a5c9SPaolo Bonzini * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
206dd2a5c9SPaolo Bonzini * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
216dd2a5c9SPaolo Bonzini * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
226dd2a5c9SPaolo Bonzini * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
236dd2a5c9SPaolo Bonzini * THE SOFTWARE.
246dd2a5c9SPaolo Bonzini */
256dd2a5c9SPaolo Bonzini
26b6a0aa05SPeter Maydell #include "qemu/osdep.h"
27da34e65cSMarkus Armbruster #include "qapi/error.h"
28fa1d36dfSMarkus Armbruster #include "sysemu/block-backend.h"
296dd2a5c9SPaolo Bonzini #include "qemu/error-report.h"
30922a01a0SMarkus Armbruster #include "qemu/option.h"
31d471bf3eSPaolo Bonzini #include "qemu/units.h"
326dd2a5c9SPaolo Bonzini #include "hw/sysbus.h"
33549e984eSSergio Lopez #include "hw/i386/x86.h"
346dd2a5c9SPaolo Bonzini #include "hw/i386/pc.h"
356dd2a5c9SPaolo Bonzini #include "hw/loader.h"
36a27bd6c7SMarkus Armbruster #include "hw/qdev-properties.h"
376dd2a5c9SPaolo Bonzini #include "hw/block/flash.h"
386dd2a5c9SPaolo Bonzini #include "sysemu/kvm.h"
39deae846fSPhilippe Mathieu-Daudé #include "sev.h"
406dd2a5c9SPaolo Bonzini
41ebc29e1bSMarkus Armbruster #define FLASH_SECTOR_SIZE 4096
42ebc29e1bSMarkus Armbruster
pc_isa_bios_init(PCMachineState * pcms,MemoryRegion * isa_bios,MemoryRegion * rom_memory,MemoryRegion * flash_mem)43*413a6745SMichael Roth static void pc_isa_bios_init(PCMachineState *pcms, MemoryRegion *isa_bios,
44*413a6745SMichael Roth MemoryRegion *rom_memory, MemoryRegion *flash_mem)
456dd2a5c9SPaolo Bonzini {
466dd2a5c9SPaolo Bonzini int isa_bios_size;
476dd2a5c9SPaolo Bonzini uint64_t flash_size;
486dd2a5c9SPaolo Bonzini void *flash_ptr, *isa_bios_ptr;
496dd2a5c9SPaolo Bonzini
506dd2a5c9SPaolo Bonzini flash_size = memory_region_size(flash_mem);
516dd2a5c9SPaolo Bonzini
526dd2a5c9SPaolo Bonzini /* map the last 128KB of the BIOS in ISA space */
53d471bf3eSPaolo Bonzini isa_bios_size = MIN(flash_size, 128 * KiB);
54*413a6745SMichael Roth if (machine_require_guest_memfd(MACHINE(pcms))) {
55*413a6745SMichael Roth memory_region_init_ram_guest_memfd(isa_bios, NULL, "isa-bios",
56*413a6745SMichael Roth isa_bios_size, &error_fatal);
57*413a6745SMichael Roth } else {
5898a99ce0SPeter Maydell memory_region_init_ram(isa_bios, NULL, "isa-bios", isa_bios_size,
59f8ed85acSMarkus Armbruster &error_fatal);
60*413a6745SMichael Roth }
616dd2a5c9SPaolo Bonzini memory_region_add_subregion_overlap(rom_memory,
626dd2a5c9SPaolo Bonzini 0x100000 - isa_bios_size,
636dd2a5c9SPaolo Bonzini isa_bios,
646dd2a5c9SPaolo Bonzini 1);
656dd2a5c9SPaolo Bonzini
666dd2a5c9SPaolo Bonzini /* copy ISA rom image from top of flash memory */
676dd2a5c9SPaolo Bonzini flash_ptr = memory_region_get_ram_ptr(flash_mem);
686dd2a5c9SPaolo Bonzini isa_bios_ptr = memory_region_get_ram_ptr(isa_bios);
696dd2a5c9SPaolo Bonzini memcpy(isa_bios_ptr,
706dd2a5c9SPaolo Bonzini ((uint8_t*)flash_ptr) + (flash_size - isa_bios_size),
716dd2a5c9SPaolo Bonzini isa_bios_size);
726dd2a5c9SPaolo Bonzini
73*413a6745SMichael Roth if (!machine_require_guest_memfd(current_machine)) {
746dd2a5c9SPaolo Bonzini memory_region_set_readonly(isa_bios, true);
756dd2a5c9SPaolo Bonzini }
76*413a6745SMichael Roth }
776dd2a5c9SPaolo Bonzini
pc_pflash_create(PCMachineState * pcms,const char * name,const char * alias_prop_name)78ebc29e1bSMarkus Armbruster static PFlashCFI01 *pc_pflash_create(PCMachineState *pcms,
79ebc29e1bSMarkus Armbruster const char *name,
80ebc29e1bSMarkus Armbruster const char *alias_prop_name)
81ebc29e1bSMarkus Armbruster {
82df707969SMarkus Armbruster DeviceState *dev = qdev_new(TYPE_PFLASH_CFI01);
83637a5acbSLaszlo Ersek
84ebc29e1bSMarkus Armbruster qdev_prop_set_uint64(dev, "sector-length", FLASH_SECTOR_SIZE);
85ebc29e1bSMarkus Armbruster qdev_prop_set_uint8(dev, "width", 1);
86ebc29e1bSMarkus Armbruster qdev_prop_set_string(dev, "name", name);
87d2623129SMarkus Armbruster object_property_add_child(OBJECT(pcms), name, OBJECT(dev));
88ebc29e1bSMarkus Armbruster object_property_add_alias(OBJECT(pcms), alias_prop_name,
89d2623129SMarkus Armbruster OBJECT(dev), "drive");
900b33521eSAlexander Bulekov /*
910b33521eSAlexander Bulekov * The returned reference is tied to the child property and
920b33521eSAlexander Bulekov * will be removed with object_unparent.
930b33521eSAlexander Bulekov */
940b33521eSAlexander Bulekov object_unref(OBJECT(dev));
95ebc29e1bSMarkus Armbruster return PFLASH_CFI01(dev);
96ebc29e1bSMarkus Armbruster }
97637a5acbSLaszlo Ersek
pc_system_flash_create(PCMachineState * pcms)98f2cb9f34SBernhard Beschow void pc_system_flash_create(PCMachineState *pcms)
990fbe8d7cSBernhard Beschow {
1000fbe8d7cSBernhard Beschow PCMachineClass *pcmc = PC_MACHINE_GET_CLASS(pcms);
1010fbe8d7cSBernhard Beschow
1020fbe8d7cSBernhard Beschow if (pcmc->pci_enabled) {
1030fbe8d7cSBernhard Beschow pcms->flash[0] = pc_pflash_create(pcms, "system.flash0",
1040fbe8d7cSBernhard Beschow "pflash0");
1050fbe8d7cSBernhard Beschow pcms->flash[1] = pc_pflash_create(pcms, "system.flash1",
1060fbe8d7cSBernhard Beschow "pflash1");
1070fbe8d7cSBernhard Beschow }
1080fbe8d7cSBernhard Beschow }
1090fbe8d7cSBernhard Beschow
pc_system_flash_cleanup_unused(PCMachineState * pcms)110f2cb9f34SBernhard Beschow void pc_system_flash_cleanup_unused(PCMachineState *pcms)
111ebc29e1bSMarkus Armbruster {
112ebc29e1bSMarkus Armbruster char *prop_name;
113ebc29e1bSMarkus Armbruster int i;
114ebc29e1bSMarkus Armbruster
115ebc29e1bSMarkus Armbruster assert(PC_MACHINE_GET_CLASS(pcms)->pci_enabled);
116ebc29e1bSMarkus Armbruster
117ebc29e1bSMarkus Armbruster for (i = 0; i < ARRAY_SIZE(pcms->flash); i++) {
11858183abfSPhilippe Mathieu-Daudé if (!qdev_is_realized(DEVICE(pcms->flash[i]))) {
119ebc29e1bSMarkus Armbruster prop_name = g_strdup_printf("pflash%d", i);
120df4fe0b2SMarkus Armbruster object_property_del(OBJECT(pcms), prop_name);
121ebc29e1bSMarkus Armbruster g_free(prop_name);
12258183abfSPhilippe Mathieu-Daudé object_unparent(OBJECT(pcms->flash[i]));
123ebc29e1bSMarkus Armbruster pcms->flash[i] = NULL;
124ebc29e1bSMarkus Armbruster }
125ebc29e1bSMarkus Armbruster }
126ebc29e1bSMarkus Armbruster }
127ebc29e1bSMarkus Armbruster
128ebc29e1bSMarkus Armbruster /*
129ebc29e1bSMarkus Armbruster * Map the pcms->flash[] from 4GiB downward, and realize.
130ebc29e1bSMarkus Armbruster * Map them in descending order, i.e. pcms->flash[0] at the top,
131ebc29e1bSMarkus Armbruster * without gaps.
132ebc29e1bSMarkus Armbruster * Stop at the first pcms->flash[0] lacking a block backend.
133ebc29e1bSMarkus Armbruster * Set each flash's size from its block backend. Fatal error if the
134ebc29e1bSMarkus Armbruster * size isn't a non-zero multiple of 4KiB, or the total size exceeds
1350657c657SErich-McMillan * pcms->max_fw_size.
136637a5acbSLaszlo Ersek *
137ebc29e1bSMarkus Armbruster * If pcms->flash[0] has a block backend, its memory is passed to
138ebc29e1bSMarkus Armbruster * pc_isa_bios_init(). Merging several flash devices for isa-bios is
139637a5acbSLaszlo Ersek * not supported.
140637a5acbSLaszlo Ersek */
pc_system_flash_map(PCMachineState * pcms,MemoryRegion * rom_memory)141ebc29e1bSMarkus Armbruster static void pc_system_flash_map(PCMachineState *pcms,
142ebc29e1bSMarkus Armbruster MemoryRegion *rom_memory)
1436dd2a5c9SPaolo Bonzini {
14432d3ee87SBernhard Beschow X86MachineState *x86ms = X86_MACHINE(pcms);
145a44ea3faSBernhard Beschow PCMachineClass *pcmc = PC_MACHINE_GET_CLASS(pcms);
146ebc29e1bSMarkus Armbruster hwaddr total_size = 0;
147ebc29e1bSMarkus Armbruster int i;
1484be74634SMarkus Armbruster BlockBackend *blk;
1496dd2a5c9SPaolo Bonzini int64_t size;
15016434065SMarkus Armbruster PFlashCFI01 *system_flash;
1516dd2a5c9SPaolo Bonzini MemoryRegion *flash_mem;
152952e0668SBrijesh Singh void *flash_ptr;
153aacdb844SDavid Gibson int flash_size;
1546dd2a5c9SPaolo Bonzini
155ebc29e1bSMarkus Armbruster assert(PC_MACHINE_GET_CLASS(pcms)->pci_enabled);
156ebc29e1bSMarkus Armbruster
157ebc29e1bSMarkus Armbruster for (i = 0; i < ARRAY_SIZE(pcms->flash); i++) {
15877d1abd9SBrijesh Singh hwaddr gpa;
15977d1abd9SBrijesh Singh
160ebc29e1bSMarkus Armbruster system_flash = pcms->flash[i];
161ebc29e1bSMarkus Armbruster blk = pflash_cfi01_get_blk(system_flash);
162ebc29e1bSMarkus Armbruster if (!blk) {
163ebc29e1bSMarkus Armbruster break;
164ebc29e1bSMarkus Armbruster }
1654be74634SMarkus Armbruster size = blk_getlength(blk);
166637a5acbSLaszlo Ersek if (size < 0) {
167ebc29e1bSMarkus Armbruster error_report("can't get size of block device %s: %s",
168ebc29e1bSMarkus Armbruster blk_name(blk), strerror(-size));
169ebc29e1bSMarkus Armbruster exit(1);
170637a5acbSLaszlo Ersek }
1714cdd0a77SPhilippe Mathieu-Daudé if (size == 0 || !QEMU_IS_ALIGNED(size, FLASH_SECTOR_SIZE)) {
172ebc29e1bSMarkus Armbruster error_report("system firmware block device %s has invalid size "
173ebc29e1bSMarkus Armbruster "%" PRId64,
174ebc29e1bSMarkus Armbruster blk_name(blk), size);
175ebc29e1bSMarkus Armbruster info_report("its size must be a non-zero multiple of 0x%x",
176ebc29e1bSMarkus Armbruster FLASH_SECTOR_SIZE);
177ebc29e1bSMarkus Armbruster exit(1);
178637a5acbSLaszlo Ersek }
179ebc29e1bSMarkus Armbruster if ((hwaddr)size != size
180ebc29e1bSMarkus Armbruster || total_size > HWADDR_MAX - size
1810657c657SErich-McMillan || total_size + size > pcms->max_fw_size) {
182ebc29e1bSMarkus Armbruster error_report("combined size of system firmware exceeds "
183ebc29e1bSMarkus Armbruster "%" PRIu64 " bytes",
1840657c657SErich-McMillan pcms->max_fw_size);
1856dd2a5c9SPaolo Bonzini exit(1);
1866dd2a5c9SPaolo Bonzini }
1876dd2a5c9SPaolo Bonzini
188ebc29e1bSMarkus Armbruster total_size += size;
18977d1abd9SBrijesh Singh gpa = 0x100000000ULL - total_size; /* where the flash is mapped */
190ebc29e1bSMarkus Armbruster qdev_prop_set_uint32(DEVICE(system_flash), "num-blocks",
191ebc29e1bSMarkus Armbruster size / FLASH_SECTOR_SIZE);
1923c6ef471SMarkus Armbruster sysbus_realize_and_unref(SYS_BUS_DEVICE(system_flash), &error_fatal);
19377d1abd9SBrijesh Singh sysbus_mmio_map(SYS_BUS_DEVICE(system_flash), 0, gpa);
1946dd2a5c9SPaolo Bonzini
195ebc29e1bSMarkus Armbruster if (i == 0) {
196637a5acbSLaszlo Ersek flash_mem = pflash_cfi01_get_memory(system_flash);
197a44ea3faSBernhard Beschow if (pcmc->isa_bios_alias) {
198a44ea3faSBernhard Beschow x86_isa_bios_init(&x86ms->isa_bios, rom_memory, flash_mem,
199a44ea3faSBernhard Beschow true);
200a44ea3faSBernhard Beschow } else {
201*413a6745SMichael Roth pc_isa_bios_init(pcms, &x86ms->isa_bios, rom_memory, flash_mem);
202a44ea3faSBernhard Beschow }
203952e0668SBrijesh Singh
2049617cddbSJames Bottomley /* Encrypt the pflash boot ROM */
2059617cddbSJames Bottomley if (sev_enabled()) {
206952e0668SBrijesh Singh flash_ptr = memory_region_get_ram_ptr(flash_mem);
207952e0668SBrijesh Singh flash_size = memory_region_size(flash_mem);
20877d1abd9SBrijesh Singh x86_firmware_configure(gpa, flash_ptr, flash_size);
2096dd2a5c9SPaolo Bonzini }
210637a5acbSLaszlo Ersek }
211637a5acbSLaszlo Ersek }
2129617cddbSJames Bottomley }
2136dd2a5c9SPaolo Bonzini
pc_system_firmware_init(PCMachineState * pcms,MemoryRegion * rom_memory)2145e640a9eSPhilippe Mathieu-Daudé void pc_system_firmware_init(PCMachineState *pcms,
2155e640a9eSPhilippe Mathieu-Daudé MemoryRegion *rom_memory)
2166dd2a5c9SPaolo Bonzini {
2175e640a9eSPhilippe Mathieu-Daudé PCMachineClass *pcmc = PC_MACHINE_GET_CLASS(pcms);
218ebc29e1bSMarkus Armbruster int i;
219ebc29e1bSMarkus Armbruster BlockBackend *pflash_blk[ARRAY_SIZE(pcms->flash)];
2206dd2a5c9SPaolo Bonzini
221ebc29e1bSMarkus Armbruster if (!pcmc->pci_enabled) {
22284835184SBernhard Beschow x86_bios_rom_init(X86_MACHINE(pcms), "bios.bin", rom_memory, true);
2236dd2a5c9SPaolo Bonzini return;
2246dd2a5c9SPaolo Bonzini }
2256dd2a5c9SPaolo Bonzini
226ebc29e1bSMarkus Armbruster /* Map legacy -drive if=pflash to machine properties */
227ebc29e1bSMarkus Armbruster for (i = 0; i < ARRAY_SIZE(pcms->flash); i++) {
2282d731dbdSMarkus Armbruster pflash_cfi01_legacy_drive(pcms->flash[i],
2292d731dbdSMarkus Armbruster drive_get(IF_PFLASH, 0, i));
230c8d8ef00SMarkus Armbruster pflash_blk[i] = pflash_cfi01_get_blk(pcms->flash[i]);
231c8d8ef00SMarkus Armbruster }
232ebc29e1bSMarkus Armbruster
233ebc29e1bSMarkus Armbruster /* Reject gaps */
234ebc29e1bSMarkus Armbruster for (i = 1; i < ARRAY_SIZE(pcms->flash); i++) {
235ebc29e1bSMarkus Armbruster if (pflash_blk[i] && !pflash_blk[i - 1]) {
236ebc29e1bSMarkus Armbruster error_report("pflash%d requires pflash%d", i, i - 1);
237ebc29e1bSMarkus Armbruster exit(1);
238ebc29e1bSMarkus Armbruster }
239ebc29e1bSMarkus Armbruster }
240ebc29e1bSMarkus Armbruster
241ebc29e1bSMarkus Armbruster if (!pflash_blk[0]) {
242ebc29e1bSMarkus Armbruster /* Machine property pflash0 not set, use ROM mode */
24384835184SBernhard Beschow x86_bios_rom_init(X86_MACHINE(pcms), "bios.bin", rom_memory, false);
244ebc29e1bSMarkus Armbruster } else {
2456dd2a5c9SPaolo Bonzini if (kvm_enabled() && !kvm_readonly_mem_enabled()) {
246ebc29e1bSMarkus Armbruster /*
247ebc29e1bSMarkus Armbruster * Older KVM cannot execute from device memory. So, flash
248ebc29e1bSMarkus Armbruster * memory cannot be used unless the readonly memory kvm
249ebc29e1bSMarkus Armbruster * capability is present.
250ebc29e1bSMarkus Armbruster */
251ebc29e1bSMarkus Armbruster error_report("pflash with kvm requires KVM readonly memory support");
2526dd2a5c9SPaolo Bonzini exit(1);
2536dd2a5c9SPaolo Bonzini }
2546dd2a5c9SPaolo Bonzini
255ebc29e1bSMarkus Armbruster pc_system_flash_map(pcms, rom_memory);
256ebc29e1bSMarkus Armbruster }
257ebc29e1bSMarkus Armbruster
258ebc29e1bSMarkus Armbruster pc_system_flash_cleanup_unused(pcms);
2596dd2a5c9SPaolo Bonzini }
260966f1ca5SGerd Hoffmann
x86_firmware_configure(hwaddr gpa,void * ptr,int size)26177d1abd9SBrijesh Singh void x86_firmware_configure(hwaddr gpa, void *ptr, int size)
262966f1ca5SGerd Hoffmann {
263966f1ca5SGerd Hoffmann int ret;
264966f1ca5SGerd Hoffmann
265966f1ca5SGerd Hoffmann /*
266966f1ca5SGerd Hoffmann * OVMF places a GUIDed structures in the flash, so
267966f1ca5SGerd Hoffmann * search for them
268966f1ca5SGerd Hoffmann */
269966f1ca5SGerd Hoffmann pc_system_parse_ovmf_flash(ptr, size);
270966f1ca5SGerd Hoffmann
271966f1ca5SGerd Hoffmann if (sev_enabled()) {
272f3c30c57SBrijesh Singh
273f3c30c57SBrijesh Singh /* Copy the SEV metadata table (if it exists) */
274f3c30c57SBrijesh Singh pc_system_parse_sev_metadata(ptr, size);
275f3c30c57SBrijesh Singh
276966f1ca5SGerd Hoffmann ret = sev_es_save_reset_vector(ptr, size);
277966f1ca5SGerd Hoffmann if (ret) {
278966f1ca5SGerd Hoffmann error_report("failed to locate and/or save reset vector");
279966f1ca5SGerd Hoffmann exit(1);
280966f1ca5SGerd Hoffmann }
281966f1ca5SGerd Hoffmann
28277d1abd9SBrijesh Singh sev_encrypt_flash(gpa, ptr, size, &error_fatal);
283966f1ca5SGerd Hoffmann }
284966f1ca5SGerd Hoffmann }
285