xref: /openbmc/linux/drivers/acpi/pfr_update.c (revision de4eda9d)
10db89fa2SChen Yu // SPDX-License-Identifier: GPL-2.0
20db89fa2SChen Yu /*
30db89fa2SChen Yu  * ACPI Platform Firmware Runtime Update Device driver
40db89fa2SChen Yu  *
50db89fa2SChen Yu  * Copyright (C) 2021 Intel Corporation
60db89fa2SChen Yu  * Author: Chen Yu <yu.c.chen@intel.com>
70db89fa2SChen Yu  *
80db89fa2SChen Yu  * pfr_update driver is used for Platform Firmware Runtime
90db89fa2SChen Yu  * Update, which includes the code injection and driver update.
100db89fa2SChen Yu  */
110db89fa2SChen Yu #include <linux/acpi.h>
120db89fa2SChen Yu #include <linux/device.h>
130db89fa2SChen Yu #include <linux/efi.h>
140db89fa2SChen Yu #include <linux/err.h>
150db89fa2SChen Yu #include <linux/errno.h>
160db89fa2SChen Yu #include <linux/file.h>
170db89fa2SChen Yu #include <linux/fs.h>
180db89fa2SChen Yu #include <linux/idr.h>
190db89fa2SChen Yu #include <linux/miscdevice.h>
200db89fa2SChen Yu #include <linux/module.h>
210db89fa2SChen Yu #include <linux/platform_device.h>
220db89fa2SChen Yu #include <linux/string.h>
230db89fa2SChen Yu #include <linux/uaccess.h>
240db89fa2SChen Yu #include <linux/uio.h>
250db89fa2SChen Yu #include <linux/uuid.h>
260db89fa2SChen Yu 
270db89fa2SChen Yu #include <uapi/linux/pfrut.h>
280db89fa2SChen Yu 
290db89fa2SChen Yu #define PFRU_FUNC_STANDARD_QUERY	0
300db89fa2SChen Yu #define PFRU_FUNC_QUERY_UPDATE_CAP	1
310db89fa2SChen Yu #define PFRU_FUNC_QUERY_BUF		2
320db89fa2SChen Yu #define PFRU_FUNC_START		3
330db89fa2SChen Yu 
340db89fa2SChen Yu #define PFRU_CODE_INJECT_TYPE	1
350db89fa2SChen Yu #define PFRU_DRIVER_UPDATE_TYPE	2
360db89fa2SChen Yu 
370db89fa2SChen Yu #define PFRU_REVID_1		1
380db89fa2SChen Yu #define PFRU_REVID_2		2
390db89fa2SChen Yu #define PFRU_DEFAULT_REV_ID	PFRU_REVID_1
400db89fa2SChen Yu 
410db89fa2SChen Yu enum cap_index {
420db89fa2SChen Yu 	CAP_STATUS_IDX = 0,
430db89fa2SChen Yu 	CAP_UPDATE_IDX = 1,
440db89fa2SChen Yu 	CAP_CODE_TYPE_IDX = 2,
450db89fa2SChen Yu 	CAP_FW_VER_IDX = 3,
460db89fa2SChen Yu 	CAP_CODE_RT_VER_IDX = 4,
470db89fa2SChen Yu 	CAP_DRV_TYPE_IDX = 5,
480db89fa2SChen Yu 	CAP_DRV_RT_VER_IDX = 6,
490db89fa2SChen Yu 	CAP_DRV_SVN_IDX = 7,
500db89fa2SChen Yu 	CAP_PLAT_ID_IDX = 8,
510db89fa2SChen Yu 	CAP_OEM_ID_IDX = 9,
520db89fa2SChen Yu 	CAP_OEM_INFO_IDX = 10,
530db89fa2SChen Yu 	CAP_NR_IDX
540db89fa2SChen Yu };
550db89fa2SChen Yu 
560db89fa2SChen Yu enum buf_index {
570db89fa2SChen Yu 	BUF_STATUS_IDX = 0,
580db89fa2SChen Yu 	BUF_EXT_STATUS_IDX = 1,
590db89fa2SChen Yu 	BUF_ADDR_LOW_IDX = 2,
600db89fa2SChen Yu 	BUF_ADDR_HI_IDX = 3,
610db89fa2SChen Yu 	BUF_SIZE_IDX = 4,
620db89fa2SChen Yu 	BUF_NR_IDX
630db89fa2SChen Yu };
640db89fa2SChen Yu 
650db89fa2SChen Yu enum update_index {
660db89fa2SChen Yu 	UPDATE_STATUS_IDX = 0,
670db89fa2SChen Yu 	UPDATE_EXT_STATUS_IDX = 1,
680db89fa2SChen Yu 	UPDATE_AUTH_TIME_LOW_IDX = 2,
690db89fa2SChen Yu 	UPDATE_AUTH_TIME_HI_IDX = 3,
700db89fa2SChen Yu 	UPDATE_EXEC_TIME_LOW_IDX = 4,
710db89fa2SChen Yu 	UPDATE_EXEC_TIME_HI_IDX = 5,
720db89fa2SChen Yu 	UPDATE_NR_IDX
730db89fa2SChen Yu };
740db89fa2SChen Yu 
750db89fa2SChen Yu enum pfru_start_action {
760db89fa2SChen Yu 	START_STAGE = 0,
770db89fa2SChen Yu 	START_ACTIVATE = 1,
780db89fa2SChen Yu 	START_STAGE_ACTIVATE = 2,
790db89fa2SChen Yu };
800db89fa2SChen Yu 
810db89fa2SChen Yu struct pfru_device {
820db89fa2SChen Yu 	u32 rev_id, index;
830db89fa2SChen Yu 	struct device *parent_dev;
840db89fa2SChen Yu 	struct miscdevice miscdev;
850db89fa2SChen Yu };
860db89fa2SChen Yu 
870db89fa2SChen Yu static DEFINE_IDA(pfru_ida);
880db89fa2SChen Yu 
890db89fa2SChen Yu /*
900db89fa2SChen Yu  * Manual reference:
910db89fa2SChen Yu  * https://uefi.org/sites/default/files/resources/Intel_MM_OS_Interface_Spec_Rev100.pdf
920db89fa2SChen Yu  *
930db89fa2SChen Yu  * pfru_guid is the parameter for _DSM method
940db89fa2SChen Yu  */
950db89fa2SChen Yu static const guid_t pfru_guid =
960db89fa2SChen Yu 	GUID_INIT(0xECF9533B, 0x4A3C, 0x4E89, 0x93, 0x9E, 0xC7, 0x71,
970db89fa2SChen Yu 		  0x12, 0x60, 0x1C, 0x6D);
980db89fa2SChen Yu 
990db89fa2SChen Yu /* pfru_code_inj_guid is the UUID to identify code injection EFI capsule file */
1000db89fa2SChen Yu static const guid_t pfru_code_inj_guid =
1010db89fa2SChen Yu 	GUID_INIT(0xB2F84B79, 0x7B6E, 0x4E45, 0x88, 0x5F, 0x3F, 0xB9,
1020db89fa2SChen Yu 		  0xBB, 0x18, 0x54, 0x02);
1030db89fa2SChen Yu 
1040db89fa2SChen Yu /* pfru_drv_update_guid is the UUID to identify driver update EFI capsule file */
1050db89fa2SChen Yu static const guid_t pfru_drv_update_guid =
1060db89fa2SChen Yu 	GUID_INIT(0x4569DD8C, 0x75F1, 0x429A, 0xA3, 0xD6, 0x24, 0xDE,
1070db89fa2SChen Yu 		  0x80, 0x97, 0xA0, 0xDF);
1080db89fa2SChen Yu 
pfru_valid_revid(u32 id)1090db89fa2SChen Yu static inline int pfru_valid_revid(u32 id)
1100db89fa2SChen Yu {
1110db89fa2SChen Yu 	return id == PFRU_REVID_1 || id == PFRU_REVID_2;
1120db89fa2SChen Yu }
1130db89fa2SChen Yu 
to_pfru_dev(struct file * file)1140db89fa2SChen Yu static inline struct pfru_device *to_pfru_dev(struct file *file)
1150db89fa2SChen Yu {
1160db89fa2SChen Yu 	return container_of(file->private_data, struct pfru_device, miscdev);
1170db89fa2SChen Yu }
1180db89fa2SChen Yu 
query_capability(struct pfru_update_cap_info * cap_hdr,struct pfru_device * pfru_dev)1190db89fa2SChen Yu static int query_capability(struct pfru_update_cap_info *cap_hdr,
1200db89fa2SChen Yu 			    struct pfru_device *pfru_dev)
1210db89fa2SChen Yu {
1220db89fa2SChen Yu 	acpi_handle handle = ACPI_HANDLE(pfru_dev->parent_dev);
1230db89fa2SChen Yu 	union acpi_object *out_obj;
1240db89fa2SChen Yu 	int ret = -EINVAL;
1250db89fa2SChen Yu 
1260db89fa2SChen Yu 	out_obj = acpi_evaluate_dsm_typed(handle, &pfru_guid,
1270db89fa2SChen Yu 					  pfru_dev->rev_id,
1280db89fa2SChen Yu 					  PFRU_FUNC_QUERY_UPDATE_CAP,
1290db89fa2SChen Yu 					  NULL, ACPI_TYPE_PACKAGE);
1300db89fa2SChen Yu 	if (!out_obj)
1310db89fa2SChen Yu 		return ret;
1320db89fa2SChen Yu 
1330db89fa2SChen Yu 	if (out_obj->package.count < CAP_NR_IDX ||
1340db89fa2SChen Yu 	    out_obj->package.elements[CAP_STATUS_IDX].type != ACPI_TYPE_INTEGER ||
1350db89fa2SChen Yu 	    out_obj->package.elements[CAP_UPDATE_IDX].type != ACPI_TYPE_INTEGER ||
1360db89fa2SChen Yu 	    out_obj->package.elements[CAP_CODE_TYPE_IDX].type != ACPI_TYPE_BUFFER ||
1370db89fa2SChen Yu 	    out_obj->package.elements[CAP_FW_VER_IDX].type != ACPI_TYPE_INTEGER ||
1380db89fa2SChen Yu 	    out_obj->package.elements[CAP_CODE_RT_VER_IDX].type != ACPI_TYPE_INTEGER ||
1390db89fa2SChen Yu 	    out_obj->package.elements[CAP_DRV_TYPE_IDX].type != ACPI_TYPE_BUFFER ||
1400db89fa2SChen Yu 	    out_obj->package.elements[CAP_DRV_RT_VER_IDX].type != ACPI_TYPE_INTEGER ||
1410db89fa2SChen Yu 	    out_obj->package.elements[CAP_DRV_SVN_IDX].type != ACPI_TYPE_INTEGER ||
1420db89fa2SChen Yu 	    out_obj->package.elements[CAP_PLAT_ID_IDX].type != ACPI_TYPE_BUFFER ||
1430db89fa2SChen Yu 	    out_obj->package.elements[CAP_OEM_ID_IDX].type != ACPI_TYPE_BUFFER ||
1440db89fa2SChen Yu 	    out_obj->package.elements[CAP_OEM_INFO_IDX].type != ACPI_TYPE_BUFFER)
1450db89fa2SChen Yu 		goto free_acpi_buffer;
1460db89fa2SChen Yu 
1470db89fa2SChen Yu 	cap_hdr->status = out_obj->package.elements[CAP_STATUS_IDX].integer.value;
1480db89fa2SChen Yu 	if (cap_hdr->status != DSM_SUCCEED) {
1490db89fa2SChen Yu 		ret = -EBUSY;
1500db89fa2SChen Yu 		dev_dbg(pfru_dev->parent_dev, "Error Status:%d\n", cap_hdr->status);
1510db89fa2SChen Yu 		goto free_acpi_buffer;
1520db89fa2SChen Yu 	}
1530db89fa2SChen Yu 
1540db89fa2SChen Yu 	cap_hdr->update_cap = out_obj->package.elements[CAP_UPDATE_IDX].integer.value;
1550db89fa2SChen Yu 	memcpy(&cap_hdr->code_type,
1560db89fa2SChen Yu 	       out_obj->package.elements[CAP_CODE_TYPE_IDX].buffer.pointer,
1570db89fa2SChen Yu 	       out_obj->package.elements[CAP_CODE_TYPE_IDX].buffer.length);
1580db89fa2SChen Yu 	cap_hdr->fw_version =
1590db89fa2SChen Yu 		out_obj->package.elements[CAP_FW_VER_IDX].integer.value;
1600db89fa2SChen Yu 	cap_hdr->code_rt_version =
1610db89fa2SChen Yu 		out_obj->package.elements[CAP_CODE_RT_VER_IDX].integer.value;
1620db89fa2SChen Yu 	memcpy(&cap_hdr->drv_type,
1630db89fa2SChen Yu 	       out_obj->package.elements[CAP_DRV_TYPE_IDX].buffer.pointer,
1640db89fa2SChen Yu 	       out_obj->package.elements[CAP_DRV_TYPE_IDX].buffer.length);
1650db89fa2SChen Yu 	cap_hdr->drv_rt_version =
1660db89fa2SChen Yu 		out_obj->package.elements[CAP_DRV_RT_VER_IDX].integer.value;
1670db89fa2SChen Yu 	cap_hdr->drv_svn =
1680db89fa2SChen Yu 		out_obj->package.elements[CAP_DRV_SVN_IDX].integer.value;
1690db89fa2SChen Yu 	memcpy(&cap_hdr->platform_id,
1700db89fa2SChen Yu 	       out_obj->package.elements[CAP_PLAT_ID_IDX].buffer.pointer,
1710db89fa2SChen Yu 	       out_obj->package.elements[CAP_PLAT_ID_IDX].buffer.length);
1720db89fa2SChen Yu 	memcpy(&cap_hdr->oem_id,
1730db89fa2SChen Yu 	       out_obj->package.elements[CAP_OEM_ID_IDX].buffer.pointer,
1740db89fa2SChen Yu 	       out_obj->package.elements[CAP_OEM_ID_IDX].buffer.length);
1750db89fa2SChen Yu 	cap_hdr->oem_info_len =
1760db89fa2SChen Yu 		out_obj->package.elements[CAP_OEM_INFO_IDX].buffer.length;
1770db89fa2SChen Yu 
1780db89fa2SChen Yu 	ret = 0;
1790db89fa2SChen Yu 
1800db89fa2SChen Yu free_acpi_buffer:
1810db89fa2SChen Yu 	ACPI_FREE(out_obj);
1820db89fa2SChen Yu 
1830db89fa2SChen Yu 	return ret;
1840db89fa2SChen Yu }
1850db89fa2SChen Yu 
query_buffer(struct pfru_com_buf_info * info,struct pfru_device * pfru_dev)1860db89fa2SChen Yu static int query_buffer(struct pfru_com_buf_info *info,
1870db89fa2SChen Yu 			struct pfru_device *pfru_dev)
1880db89fa2SChen Yu {
1890db89fa2SChen Yu 	acpi_handle handle = ACPI_HANDLE(pfru_dev->parent_dev);
1900db89fa2SChen Yu 	union acpi_object *out_obj;
1910db89fa2SChen Yu 	int ret = -EINVAL;
1920db89fa2SChen Yu 
1930db89fa2SChen Yu 	out_obj = acpi_evaluate_dsm_typed(handle, &pfru_guid,
1940db89fa2SChen Yu 					  pfru_dev->rev_id, PFRU_FUNC_QUERY_BUF,
1950db89fa2SChen Yu 					  NULL, ACPI_TYPE_PACKAGE);
1960db89fa2SChen Yu 	if (!out_obj)
1970db89fa2SChen Yu 		return ret;
1980db89fa2SChen Yu 
1990db89fa2SChen Yu 	if (out_obj->package.count < BUF_NR_IDX ||
2000db89fa2SChen Yu 	    out_obj->package.elements[BUF_STATUS_IDX].type != ACPI_TYPE_INTEGER ||
2010db89fa2SChen Yu 	    out_obj->package.elements[BUF_EXT_STATUS_IDX].type != ACPI_TYPE_INTEGER ||
2020db89fa2SChen Yu 	    out_obj->package.elements[BUF_ADDR_LOW_IDX].type != ACPI_TYPE_INTEGER ||
2030db89fa2SChen Yu 	    out_obj->package.elements[BUF_ADDR_HI_IDX].type != ACPI_TYPE_INTEGER ||
2040db89fa2SChen Yu 	    out_obj->package.elements[BUF_SIZE_IDX].type != ACPI_TYPE_INTEGER)
2050db89fa2SChen Yu 		goto free_acpi_buffer;
2060db89fa2SChen Yu 
2070db89fa2SChen Yu 	info->status = out_obj->package.elements[BUF_STATUS_IDX].integer.value;
2080db89fa2SChen Yu 	info->ext_status =
2090db89fa2SChen Yu 		out_obj->package.elements[BUF_EXT_STATUS_IDX].integer.value;
2100db89fa2SChen Yu 	if (info->status != DSM_SUCCEED) {
2110db89fa2SChen Yu 		ret = -EBUSY;
2120db89fa2SChen Yu 		dev_dbg(pfru_dev->parent_dev, "Error Status:%d\n", info->status);
2130db89fa2SChen Yu 		dev_dbg(pfru_dev->parent_dev, "Error Extended Status:%d\n", info->ext_status);
2140db89fa2SChen Yu 
2150db89fa2SChen Yu 		goto free_acpi_buffer;
2160db89fa2SChen Yu 	}
2170db89fa2SChen Yu 
2180db89fa2SChen Yu 	info->addr_lo =
2190db89fa2SChen Yu 		out_obj->package.elements[BUF_ADDR_LOW_IDX].integer.value;
2200db89fa2SChen Yu 	info->addr_hi =
2210db89fa2SChen Yu 		out_obj->package.elements[BUF_ADDR_HI_IDX].integer.value;
2220db89fa2SChen Yu 	info->buf_size = out_obj->package.elements[BUF_SIZE_IDX].integer.value;
2230db89fa2SChen Yu 
2240db89fa2SChen Yu 	ret = 0;
2250db89fa2SChen Yu 
2260db89fa2SChen Yu free_acpi_buffer:
2270db89fa2SChen Yu 	ACPI_FREE(out_obj);
2280db89fa2SChen Yu 
2290db89fa2SChen Yu 	return ret;
2300db89fa2SChen Yu }
2310db89fa2SChen Yu 
get_image_type(const struct efi_manage_capsule_image_header * img_hdr,struct pfru_device * pfru_dev)2320db89fa2SChen Yu static int get_image_type(const struct efi_manage_capsule_image_header *img_hdr,
2330db89fa2SChen Yu 			  struct pfru_device *pfru_dev)
2340db89fa2SChen Yu {
2350db89fa2SChen Yu 	const efi_guid_t *image_type_id = &img_hdr->image_type_id;
2360db89fa2SChen Yu 
2370db89fa2SChen Yu 	/* check whether this is a code injection or driver update */
2380db89fa2SChen Yu 	if (guid_equal(image_type_id, &pfru_code_inj_guid))
2390db89fa2SChen Yu 		return PFRU_CODE_INJECT_TYPE;
2400db89fa2SChen Yu 
2410db89fa2SChen Yu 	if (guid_equal(image_type_id, &pfru_drv_update_guid))
2420db89fa2SChen Yu 		return PFRU_DRIVER_UPDATE_TYPE;
2430db89fa2SChen Yu 
2440db89fa2SChen Yu 	return -EINVAL;
2450db89fa2SChen Yu }
2460db89fa2SChen Yu 
adjust_efi_size(const struct efi_manage_capsule_image_header * img_hdr,int size)2470db89fa2SChen Yu static int adjust_efi_size(const struct efi_manage_capsule_image_header *img_hdr,
2480db89fa2SChen Yu 			   int size)
2490db89fa2SChen Yu {
2500db89fa2SChen Yu 	/*
2510db89fa2SChen Yu 	 * The (u64 hw_ins) was introduced in UEFI spec version 2,
2520db89fa2SChen Yu 	 * and (u64 capsule_support) was introduced in version 3.
2530db89fa2SChen Yu 	 * The size needs to be adjusted accordingly. That is to
2540db89fa2SChen Yu 	 * say, version 1 should subtract the size of hw_ins+capsule_support,
2550db89fa2SChen Yu 	 * and version 2 should sbstract the size of capsule_support.
2560db89fa2SChen Yu 	 */
2570db89fa2SChen Yu 	size += sizeof(struct efi_manage_capsule_image_header);
2580db89fa2SChen Yu 	switch (img_hdr->ver) {
2590db89fa2SChen Yu 	case 1:
2600db89fa2SChen Yu 		return size - 2 * sizeof(u64);
2610db89fa2SChen Yu 
2620db89fa2SChen Yu 	case 2:
2630db89fa2SChen Yu 		return size - sizeof(u64);
2640db89fa2SChen Yu 
2650db89fa2SChen Yu 	default:
2660db89fa2SChen Yu 		/* only support version 1 and 2 */
2670db89fa2SChen Yu 		return -EINVAL;
2680db89fa2SChen Yu 	}
2690db89fa2SChen Yu }
2700db89fa2SChen Yu 
applicable_image(const void * data,struct pfru_update_cap_info * cap,struct pfru_device * pfru_dev)2710db89fa2SChen Yu static bool applicable_image(const void *data, struct pfru_update_cap_info *cap,
2720db89fa2SChen Yu 			     struct pfru_device *pfru_dev)
2730db89fa2SChen Yu {
2740db89fa2SChen Yu 	struct pfru_payload_hdr *payload_hdr;
2750db89fa2SChen Yu 	const efi_capsule_header_t *cap_hdr = data;
2760db89fa2SChen Yu 	const struct efi_manage_capsule_header *m_hdr;
2770db89fa2SChen Yu 	const struct efi_manage_capsule_image_header *m_img_hdr;
2780db89fa2SChen Yu 	const struct efi_image_auth *auth;
2790db89fa2SChen Yu 	int type, size;
2800db89fa2SChen Yu 
2810db89fa2SChen Yu 	/*
2820db89fa2SChen Yu 	 * If the code in the capsule is older than the current
2830db89fa2SChen Yu 	 * firmware code, the update will be rejected by the firmware,
2840db89fa2SChen Yu 	 * so check the version of it upfront without engaging the
2850db89fa2SChen Yu 	 * Management Mode update mechanism which may be costly.
2860db89fa2SChen Yu 	 */
2870db89fa2SChen Yu 	size = cap_hdr->headersize;
2880db89fa2SChen Yu 	m_hdr = data + size;
2890db89fa2SChen Yu 	/*
2900db89fa2SChen Yu 	 * Current data structure size plus variable array indicated
2910db89fa2SChen Yu 	 * by number of (emb_drv_cnt + payload_cnt)
2920db89fa2SChen Yu 	 */
2930db89fa2SChen Yu 	size += offsetof(struct efi_manage_capsule_header, offset_list) +
2940db89fa2SChen Yu 		(m_hdr->emb_drv_cnt + m_hdr->payload_cnt) * sizeof(u64);
2950db89fa2SChen Yu 	m_img_hdr = data + size;
2960db89fa2SChen Yu 
2970db89fa2SChen Yu 	type = get_image_type(m_img_hdr, pfru_dev);
2980db89fa2SChen Yu 	if (type < 0)
2990db89fa2SChen Yu 		return false;
3000db89fa2SChen Yu 
3010db89fa2SChen Yu 	size = adjust_efi_size(m_img_hdr, size);
3020db89fa2SChen Yu 	if (size < 0)
3030db89fa2SChen Yu 		return false;
3040db89fa2SChen Yu 
3050db89fa2SChen Yu 	auth = data + size;
3060db89fa2SChen Yu 	size += sizeof(u64) + auth->auth_info.hdr.len;
3070db89fa2SChen Yu 	payload_hdr = (struct pfru_payload_hdr *)(data + size);
3080db89fa2SChen Yu 
3090db89fa2SChen Yu 	/* finally compare the version */
3100db89fa2SChen Yu 	if (type == PFRU_CODE_INJECT_TYPE)
3110db89fa2SChen Yu 		return payload_hdr->rt_ver >= cap->code_rt_version;
3120db89fa2SChen Yu 
3130db89fa2SChen Yu 	return payload_hdr->rt_ver >= cap->drv_rt_version;
3140db89fa2SChen Yu }
3150db89fa2SChen Yu 
print_update_debug_info(struct pfru_updated_result * result,struct pfru_device * pfru_dev)3160db89fa2SChen Yu static void print_update_debug_info(struct pfru_updated_result *result,
3170db89fa2SChen Yu 				    struct pfru_device *pfru_dev)
3180db89fa2SChen Yu {
3190db89fa2SChen Yu 	dev_dbg(pfru_dev->parent_dev, "Update result:\n");
3200db89fa2SChen Yu 	dev_dbg(pfru_dev->parent_dev, "Authentication Time Low:%lld\n",
3210db89fa2SChen Yu 		result->low_auth_time);
3220db89fa2SChen Yu 	dev_dbg(pfru_dev->parent_dev, "Authentication Time High:%lld\n",
3230db89fa2SChen Yu 		result->high_auth_time);
3240db89fa2SChen Yu 	dev_dbg(pfru_dev->parent_dev, "Execution Time Low:%lld\n",
3250db89fa2SChen Yu 		result->low_exec_time);
3260db89fa2SChen Yu 	dev_dbg(pfru_dev->parent_dev, "Execution Time High:%lld\n",
3270db89fa2SChen Yu 		result->high_exec_time);
3280db89fa2SChen Yu }
3290db89fa2SChen Yu 
start_update(int action,struct pfru_device * pfru_dev)3300db89fa2SChen Yu static int start_update(int action, struct pfru_device *pfru_dev)
3310db89fa2SChen Yu {
3320db89fa2SChen Yu 	union acpi_object *out_obj, in_obj, in_buf;
3330db89fa2SChen Yu 	struct pfru_updated_result update_result;
3340db89fa2SChen Yu 	acpi_handle handle;
3350db89fa2SChen Yu 	int ret = -EINVAL;
3360db89fa2SChen Yu 
3370db89fa2SChen Yu 	memset(&in_obj, 0, sizeof(in_obj));
3380db89fa2SChen Yu 	memset(&in_buf, 0, sizeof(in_buf));
3390db89fa2SChen Yu 	in_obj.type = ACPI_TYPE_PACKAGE;
3400db89fa2SChen Yu 	in_obj.package.count = 1;
3410db89fa2SChen Yu 	in_obj.package.elements = &in_buf;
3420db89fa2SChen Yu 	in_buf.type = ACPI_TYPE_INTEGER;
3430db89fa2SChen Yu 	in_buf.integer.value = action;
3440db89fa2SChen Yu 
3450db89fa2SChen Yu 	handle = ACPI_HANDLE(pfru_dev->parent_dev);
3460db89fa2SChen Yu 	out_obj = acpi_evaluate_dsm_typed(handle, &pfru_guid,
3470db89fa2SChen Yu 					  pfru_dev->rev_id, PFRU_FUNC_START,
3480db89fa2SChen Yu 					  &in_obj, ACPI_TYPE_PACKAGE);
3490db89fa2SChen Yu 	if (!out_obj)
3500db89fa2SChen Yu 		return ret;
3510db89fa2SChen Yu 
3520db89fa2SChen Yu 	if (out_obj->package.count < UPDATE_NR_IDX ||
3530db89fa2SChen Yu 	    out_obj->package.elements[UPDATE_STATUS_IDX].type != ACPI_TYPE_INTEGER ||
3540db89fa2SChen Yu 	    out_obj->package.elements[UPDATE_EXT_STATUS_IDX].type != ACPI_TYPE_INTEGER ||
3550db89fa2SChen Yu 	    out_obj->package.elements[UPDATE_AUTH_TIME_LOW_IDX].type != ACPI_TYPE_INTEGER ||
3560db89fa2SChen Yu 	    out_obj->package.elements[UPDATE_AUTH_TIME_HI_IDX].type != ACPI_TYPE_INTEGER ||
3570db89fa2SChen Yu 	    out_obj->package.elements[UPDATE_EXEC_TIME_LOW_IDX].type != ACPI_TYPE_INTEGER ||
3580db89fa2SChen Yu 	    out_obj->package.elements[UPDATE_EXEC_TIME_HI_IDX].type != ACPI_TYPE_INTEGER)
3590db89fa2SChen Yu 		goto free_acpi_buffer;
3600db89fa2SChen Yu 
3610db89fa2SChen Yu 	update_result.status =
3620db89fa2SChen Yu 		out_obj->package.elements[UPDATE_STATUS_IDX].integer.value;
3630db89fa2SChen Yu 	update_result.ext_status =
3640db89fa2SChen Yu 		out_obj->package.elements[UPDATE_EXT_STATUS_IDX].integer.value;
3650db89fa2SChen Yu 
3660db89fa2SChen Yu 	if (update_result.status != DSM_SUCCEED) {
3670db89fa2SChen Yu 		ret = -EBUSY;
3680db89fa2SChen Yu 		dev_dbg(pfru_dev->parent_dev, "Error Status:%d\n", update_result.status);
3690db89fa2SChen Yu 		dev_dbg(pfru_dev->parent_dev, "Error Extended Status:%d\n",
3700db89fa2SChen Yu 			update_result.ext_status);
3710db89fa2SChen Yu 
3720db89fa2SChen Yu 		goto free_acpi_buffer;
3730db89fa2SChen Yu 	}
3740db89fa2SChen Yu 
3750db89fa2SChen Yu 	update_result.low_auth_time =
3760db89fa2SChen Yu 		out_obj->package.elements[UPDATE_AUTH_TIME_LOW_IDX].integer.value;
3770db89fa2SChen Yu 	update_result.high_auth_time =
3780db89fa2SChen Yu 		out_obj->package.elements[UPDATE_AUTH_TIME_HI_IDX].integer.value;
3790db89fa2SChen Yu 	update_result.low_exec_time =
3800db89fa2SChen Yu 		out_obj->package.elements[UPDATE_EXEC_TIME_LOW_IDX].integer.value;
3810db89fa2SChen Yu 	update_result.high_exec_time =
3820db89fa2SChen Yu 		out_obj->package.elements[UPDATE_EXEC_TIME_HI_IDX].integer.value;
3830db89fa2SChen Yu 
3840db89fa2SChen Yu 	print_update_debug_info(&update_result, pfru_dev);
3850db89fa2SChen Yu 	ret = 0;
3860db89fa2SChen Yu 
3870db89fa2SChen Yu free_acpi_buffer:
3880db89fa2SChen Yu 	ACPI_FREE(out_obj);
3890db89fa2SChen Yu 
3900db89fa2SChen Yu 	return ret;
3910db89fa2SChen Yu }
3920db89fa2SChen Yu 
pfru_ioctl(struct file * file,unsigned int cmd,unsigned long arg)3930db89fa2SChen Yu static long pfru_ioctl(struct file *file, unsigned int cmd, unsigned long arg)
3940db89fa2SChen Yu {
3950db89fa2SChen Yu 	struct pfru_update_cap_info cap_hdr;
3960db89fa2SChen Yu 	struct pfru_device *pfru_dev = to_pfru_dev(file);
3970db89fa2SChen Yu 	void __user *p = (void __user *)arg;
3980db89fa2SChen Yu 	u32 rev;
3990db89fa2SChen Yu 	int ret;
4000db89fa2SChen Yu 
4010db89fa2SChen Yu 	switch (cmd) {
4020db89fa2SChen Yu 	case PFRU_IOC_QUERY_CAP:
4030db89fa2SChen Yu 		ret = query_capability(&cap_hdr, pfru_dev);
4040db89fa2SChen Yu 		if (ret)
4050db89fa2SChen Yu 			return ret;
4060db89fa2SChen Yu 
4070db89fa2SChen Yu 		if (copy_to_user(p, &cap_hdr, sizeof(cap_hdr)))
4080db89fa2SChen Yu 			return -EFAULT;
4090db89fa2SChen Yu 
4100db89fa2SChen Yu 		return 0;
4110db89fa2SChen Yu 
4120db89fa2SChen Yu 	case PFRU_IOC_SET_REV:
4130db89fa2SChen Yu 		if (copy_from_user(&rev, p, sizeof(rev)))
4140db89fa2SChen Yu 			return -EFAULT;
4150db89fa2SChen Yu 
4160db89fa2SChen Yu 		if (!pfru_valid_revid(rev))
4170db89fa2SChen Yu 			return -EINVAL;
4180db89fa2SChen Yu 
4190db89fa2SChen Yu 		pfru_dev->rev_id = rev;
4200db89fa2SChen Yu 
4210db89fa2SChen Yu 		return 0;
4220db89fa2SChen Yu 
4230db89fa2SChen Yu 	case PFRU_IOC_STAGE:
4240db89fa2SChen Yu 		return start_update(START_STAGE, pfru_dev);
4250db89fa2SChen Yu 
4260db89fa2SChen Yu 	case PFRU_IOC_ACTIVATE:
4270db89fa2SChen Yu 		return start_update(START_ACTIVATE, pfru_dev);
4280db89fa2SChen Yu 
4290db89fa2SChen Yu 	case PFRU_IOC_STAGE_ACTIVATE:
4300db89fa2SChen Yu 		return start_update(START_STAGE_ACTIVATE, pfru_dev);
4310db89fa2SChen Yu 
4320db89fa2SChen Yu 	default:
4330db89fa2SChen Yu 		return -ENOTTY;
4340db89fa2SChen Yu 	}
4350db89fa2SChen Yu }
4360db89fa2SChen Yu 
pfru_write(struct file * file,const char __user * buf,size_t len,loff_t * ppos)4370db89fa2SChen Yu static ssize_t pfru_write(struct file *file, const char __user *buf,
4380db89fa2SChen Yu 			  size_t len, loff_t *ppos)
4390db89fa2SChen Yu {
4400db89fa2SChen Yu 	struct pfru_device *pfru_dev = to_pfru_dev(file);
4410db89fa2SChen Yu 	struct pfru_update_cap_info cap;
4420db89fa2SChen Yu 	struct pfru_com_buf_info buf_info;
4430db89fa2SChen Yu 	phys_addr_t phy_addr;
4440db89fa2SChen Yu 	struct iov_iter iter;
4450db89fa2SChen Yu 	struct iovec iov;
4460db89fa2SChen Yu 	char *buf_ptr;
4470db89fa2SChen Yu 	int ret;
4480db89fa2SChen Yu 
4490db89fa2SChen Yu 	ret = query_buffer(&buf_info, pfru_dev);
4500db89fa2SChen Yu 	if (ret)
4510db89fa2SChen Yu 		return ret;
4520db89fa2SChen Yu 
4530db89fa2SChen Yu 	if (len > buf_info.buf_size)
4540db89fa2SChen Yu 		return -EINVAL;
4550db89fa2SChen Yu 
4560db89fa2SChen Yu 	iov.iov_base = (void __user *)buf;
4570db89fa2SChen Yu 	iov.iov_len = len;
458*de4eda9dSAl Viro 	iov_iter_init(&iter, ITER_SOURCE, &iov, 1, len);
4590db89fa2SChen Yu 
4600db89fa2SChen Yu 	/* map the communication buffer */
4610db89fa2SChen Yu 	phy_addr = (phys_addr_t)((buf_info.addr_hi << 32) | buf_info.addr_lo);
4620db89fa2SChen Yu 	buf_ptr = memremap(phy_addr, buf_info.buf_size, MEMREMAP_WB);
46331834aaaSYang Yingliang 	if (!buf_ptr)
46431834aaaSYang Yingliang 		return -ENOMEM;
4650db89fa2SChen Yu 
4660db89fa2SChen Yu 	if (!copy_from_iter_full(buf_ptr, len, &iter)) {
4670db89fa2SChen Yu 		ret = -EINVAL;
4680db89fa2SChen Yu 		goto unmap;
4690db89fa2SChen Yu 	}
4700db89fa2SChen Yu 
4710db89fa2SChen Yu 	/* check if the capsule header has a valid version number */
4720db89fa2SChen Yu 	ret = query_capability(&cap, pfru_dev);
4730db89fa2SChen Yu 	if (ret)
4740db89fa2SChen Yu 		goto unmap;
4750db89fa2SChen Yu 
4760db89fa2SChen Yu 	if (!applicable_image(buf_ptr, &cap, pfru_dev))
4770db89fa2SChen Yu 		ret = -EINVAL;
4780db89fa2SChen Yu 
4790db89fa2SChen Yu unmap:
4800db89fa2SChen Yu 	memunmap(buf_ptr);
4810db89fa2SChen Yu 
4820db89fa2SChen Yu 	return ret ?: len;
4830db89fa2SChen Yu }
4840db89fa2SChen Yu 
4850db89fa2SChen Yu static const struct file_operations acpi_pfru_fops = {
4860db89fa2SChen Yu 	.owner		= THIS_MODULE,
4870db89fa2SChen Yu 	.write		= pfru_write,
4880db89fa2SChen Yu 	.unlocked_ioctl = pfru_ioctl,
4890db89fa2SChen Yu 	.llseek		= noop_llseek,
4900db89fa2SChen Yu };
4910db89fa2SChen Yu 
acpi_pfru_remove(struct platform_device * pdev)4920db89fa2SChen Yu static int acpi_pfru_remove(struct platform_device *pdev)
4930db89fa2SChen Yu {
4940db89fa2SChen Yu 	struct pfru_device *pfru_dev = platform_get_drvdata(pdev);
4950db89fa2SChen Yu 
4960db89fa2SChen Yu 	misc_deregister(&pfru_dev->miscdev);
4970db89fa2SChen Yu 
4980db89fa2SChen Yu 	return 0;
4990db89fa2SChen Yu }
5000db89fa2SChen Yu 
pfru_put_idx(void * data)5010db89fa2SChen Yu static void pfru_put_idx(void *data)
5020db89fa2SChen Yu {
5030db89fa2SChen Yu 	struct pfru_device *pfru_dev = data;
5040db89fa2SChen Yu 
5050db89fa2SChen Yu 	ida_free(&pfru_ida, pfru_dev->index);
5060db89fa2SChen Yu }
5070db89fa2SChen Yu 
acpi_pfru_probe(struct platform_device * pdev)5080db89fa2SChen Yu static int acpi_pfru_probe(struct platform_device *pdev)
5090db89fa2SChen Yu {
5100db89fa2SChen Yu 	acpi_handle handle = ACPI_HANDLE(&pdev->dev);
5110db89fa2SChen Yu 	struct pfru_device *pfru_dev;
5120db89fa2SChen Yu 	int ret;
5130db89fa2SChen Yu 
5140db89fa2SChen Yu 	if (!acpi_has_method(handle, "_DSM")) {
5150db89fa2SChen Yu 		dev_dbg(&pdev->dev, "Missing _DSM\n");
5160db89fa2SChen Yu 		return -ENODEV;
5170db89fa2SChen Yu 	}
5180db89fa2SChen Yu 
5190db89fa2SChen Yu 	pfru_dev = devm_kzalloc(&pdev->dev, sizeof(*pfru_dev), GFP_KERNEL);
5200db89fa2SChen Yu 	if (!pfru_dev)
5210db89fa2SChen Yu 		return -ENOMEM;
5220db89fa2SChen Yu 
5230db89fa2SChen Yu 	ret = ida_alloc(&pfru_ida, GFP_KERNEL);
5240db89fa2SChen Yu 	if (ret < 0)
5250db89fa2SChen Yu 		return ret;
5260db89fa2SChen Yu 
5270db89fa2SChen Yu 	pfru_dev->index = ret;
5280db89fa2SChen Yu 	ret = devm_add_action_or_reset(&pdev->dev, pfru_put_idx, pfru_dev);
5290db89fa2SChen Yu 	if (ret)
5300db89fa2SChen Yu 		return ret;
5310db89fa2SChen Yu 
5320db89fa2SChen Yu 	pfru_dev->rev_id = PFRU_DEFAULT_REV_ID;
5330db89fa2SChen Yu 	pfru_dev->parent_dev = &pdev->dev;
5340db89fa2SChen Yu 
5350db89fa2SChen Yu 	pfru_dev->miscdev.minor = MISC_DYNAMIC_MINOR;
5360db89fa2SChen Yu 	pfru_dev->miscdev.name = devm_kasprintf(&pdev->dev, GFP_KERNEL,
5370db89fa2SChen Yu 						"pfru%d", pfru_dev->index);
5380db89fa2SChen Yu 	if (!pfru_dev->miscdev.name)
5390db89fa2SChen Yu 		return -ENOMEM;
5400db89fa2SChen Yu 
5410db89fa2SChen Yu 	pfru_dev->miscdev.nodename = devm_kasprintf(&pdev->dev, GFP_KERNEL,
5420db89fa2SChen Yu 						    "acpi_pfr_update%d", pfru_dev->index);
5430db89fa2SChen Yu 	if (!pfru_dev->miscdev.nodename)
5440db89fa2SChen Yu 		return -ENOMEM;
5450db89fa2SChen Yu 
5460db89fa2SChen Yu 	pfru_dev->miscdev.fops = &acpi_pfru_fops;
5470db89fa2SChen Yu 	pfru_dev->miscdev.parent = &pdev->dev;
5480db89fa2SChen Yu 
5490db89fa2SChen Yu 	ret = misc_register(&pfru_dev->miscdev);
5500db89fa2SChen Yu 	if (ret)
5510db89fa2SChen Yu 		return ret;
5520db89fa2SChen Yu 
5530db89fa2SChen Yu 	platform_set_drvdata(pdev, pfru_dev);
5540db89fa2SChen Yu 
5550db89fa2SChen Yu 	return 0;
5560db89fa2SChen Yu }
5570db89fa2SChen Yu 
5580db89fa2SChen Yu static const struct acpi_device_id acpi_pfru_ids[] = {
5590db89fa2SChen Yu 	{"INTC1080"},
5600db89fa2SChen Yu 	{}
5610db89fa2SChen Yu };
5620db89fa2SChen Yu MODULE_DEVICE_TABLE(acpi, acpi_pfru_ids);
5630db89fa2SChen Yu 
5640db89fa2SChen Yu static struct platform_driver acpi_pfru_driver = {
5650db89fa2SChen Yu 	.driver = {
5660db89fa2SChen Yu 		.name = "pfr_update",
5670db89fa2SChen Yu 		.acpi_match_table = acpi_pfru_ids,
5680db89fa2SChen Yu 	},
5690db89fa2SChen Yu 	.probe = acpi_pfru_probe,
5700db89fa2SChen Yu 	.remove = acpi_pfru_remove,
5710db89fa2SChen Yu };
5720db89fa2SChen Yu module_platform_driver(acpi_pfru_driver);
5730db89fa2SChen Yu 
5740db89fa2SChen Yu MODULE_DESCRIPTION("Platform Firmware Runtime Update device driver");
5750db89fa2SChen Yu MODULE_LICENSE("GPL v2");
576