bl2_main.c 8.88 KB
Newer Older
1
/*
2
 * Copyright (c) 2013-2014, ARM Limited and Contributors. All rights reserved.
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
 *
 * Redistribution and use in source and binary forms, with or without
 * modification, are permitted provided that the following conditions are met:
 *
 * Redistributions of source code must retain the above copyright notice, this
 * list of conditions and the following disclaimer.
 *
 * Redistributions in binary form must reproduce the above copyright notice,
 * this list of conditions and the following disclaimer in the documentation
 * and/or other materials provided with the distribution.
 *
 * Neither the name of ARM nor the names of its contributors may be used
 * to endorse or promote products derived from this software without specific
 * prior written permission.
 *
 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
 * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
 * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE
 * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
 * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
 * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
 * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
 * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
 * POSSIBILITY OF SUCH DAMAGE.
 */

31
#include <arch.h>
32
#include <arch_helpers.h>
33
#include <assert.h>
34
#include <auth_mod.h>
35
#include <bl_common.h>
36
#include <debug.h>
37
#include <errno.h>
38
#include <platform.h>
39
#include <platform_def.h>
40
#include <stdint.h>
41
#include "bl2_private.h"
42

43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
/*******************************************************************************
 * Load the BL3-0 image if there's one.
 * If a platform does not want to attempt to load BL3-0 image it must leave
 * BL30_BASE undefined.
 * Return 0 on success or if there's no BL3-0 image to load, a negative error
 * code otherwise.
 ******************************************************************************/
static int load_bl30(void)
{
	int e = 0;
#ifdef BL30_BASE
	meminfo_t bl30_mem_info;
	image_info_t bl30_image_info;

	/*
	 * It is up to the platform to specify where BL3-0 should be loaded if
	 * it exists. It could create space in the secure sram or point to a
	 * completely different memory.
	 *
	 * The entry point information is not relevant in this case as the AP
	 * won't execute the BL3-0 image.
	 */
Dan Handley's avatar
Dan Handley committed
65
	INFO("BL2: Loading BL3-0\n");
66
	bl2_plat_get_bl30_meminfo(&bl30_mem_info);
67
	bl30_image_info.h.version = VERSION_1;
68
69
70
71
72
73
74
75
76
77
78
79
	e = load_auth_image(&bl30_mem_info,
			    BL30_IMAGE_ID,
			    BL30_BASE,
			    &bl30_image_info,
			    NULL);

	if (e == 0) {
		/* The subsequent handling of BL3-0 is platform specific */
		e = bl2_plat_handle_bl30(&bl30_image_info);
		if (e) {
			ERROR("Failure in platform-specific handling of BL3-0 image.\n");
		}
80
81
82
83
84
	}
#endif /* BL30_BASE */

	return e;
}
85

86
#ifndef EL3_PAYLOAD_BASE
87
/*******************************************************************************
88
89
90
91
 * Load the BL3-1 image.
 * The bl2_to_bl31_params and bl31_ep_info params will be updated with the
 * relevant BL3-1 information.
 * Return 0 on success, a negative error code otherwise.
92
 ******************************************************************************/
93
94
static int load_bl31(bl31_params_t *bl2_to_bl31_params,
		     entry_point_info_t *bl31_ep_info)
95
{
96
	meminfo_t *bl2_tzram_layout;
97
	int e;
98

Dan Handley's avatar
Dan Handley committed
99
	INFO("BL2: Loading BL3-1\n");
100
101
	assert(bl2_to_bl31_params != NULL);
	assert(bl31_ep_info != NULL);
102
103

	/* Find out how much free trusted ram remains after BL2 load */
104
	bl2_tzram_layout = bl2_plat_sec_mem_layout();
105

106
	/* Set the X0 parameter to BL3-1 */
107
108
	bl31_ep_info->args.arg0 = (unsigned long)bl2_to_bl31_params;

109
	/* Load the BL3-1 image */
110
111
112
113
114
	e = load_auth_image(bl2_tzram_layout,
			    BL31_IMAGE_ID,
			    BL31_BASE,
			    bl2_to_bl31_params->bl31_image_info,
			    bl31_ep_info);
115

116
117
118
	if (e == 0) {
		bl2_plat_set_bl31_ep_info(bl2_to_bl31_params->bl31_image_info,
					  bl31_ep_info);
119
120
	}

121
122
	return e;
}
123

124
125
126
127
128
129
130
131
132
133
134
135
136
137
/*******************************************************************************
 * Load the BL3-2 image if there's one.
 * The bl2_to_bl31_params param will be updated with the relevant BL3-2
 * information.
 * If a platform does not want to attempt to load BL3-2 image it must leave
 * BL32_BASE undefined.
 * Return 0 on success or if there's no BL3-2 image to load, a negative error
 * code otherwise.
 ******************************************************************************/
static int load_bl32(bl31_params_t *bl2_to_bl31_params)
{
	int e = 0;
#ifdef BL32_BASE
	meminfo_t bl32_mem_info;
138

Dan Handley's avatar
Dan Handley committed
139
	INFO("BL2: Loading BL3-2\n");
140
	assert(bl2_to_bl31_params != NULL);
141

142
	/*
143
144
	 * It is up to the platform to specify where BL3-2 should be loaded if
	 * it exists. It could create space in the secure sram or point to a
145
	 * completely different memory.
146
	 */
147
	bl2_plat_get_bl32_meminfo(&bl32_mem_info);
148
149
150
151
152
	e = load_auth_image(&bl32_mem_info,
			    BL32_IMAGE_ID,
			    BL32_BASE,
			    bl2_to_bl31_params->bl32_image_info,
			    bl2_to_bl31_params->bl32_ep_info);
153

154
155
156
157
	if (e == 0) {
		bl2_plat_set_bl32_ep_info(
			bl2_to_bl31_params->bl32_image_info,
			bl2_to_bl31_params->bl32_ep_info);
158
	}
159
#endif /* BL32_BASE */
Achin Gupta's avatar
Achin Gupta committed
160

161
162
163
164
165
166
167
168
169
170
171
172
173
174
	return e;
}

/*******************************************************************************
 * Load the BL3-3 image.
 * The bl2_to_bl31_params param will be updated with the relevant BL3-3
 * information.
 * Return 0 on success, a negative error code otherwise.
 ******************************************************************************/
static int load_bl33(bl31_params_t *bl2_to_bl31_params)
{
	meminfo_t bl33_mem_info;
	int e;

Dan Handley's avatar
Dan Handley committed
175
	INFO("BL2: Loading BL3-3\n");
176
177
178
179
180
	assert(bl2_to_bl31_params != NULL);

	bl2_plat_get_bl33_meminfo(&bl33_mem_info);

	/* Load the BL3-3 image in non-secure memory provided by the platform */
181
182
183
184
185
	e = load_auth_image(&bl33_mem_info,
			    BL33_IMAGE_ID,
			    plat_get_ns_image_entrypoint(),
			    bl2_to_bl31_params->bl33_image_info,
			    bl2_to_bl31_params->bl33_ep_info);
186

187
188
189
	if (e == 0) {
		bl2_plat_set_bl33_ep_info(bl2_to_bl31_params->bl33_image_info,
					  bl2_to_bl31_params->bl33_ep_info);
190
	}
191
192
193

	return e;
}
194
#endif /* EL3_PAYLOAD_BASE */
195
196
197
198
199
200
201
202
203
204
205
206

/*******************************************************************************
 * The only thing to do in BL2 is to load further images and pass control to
 * BL3-1. The memory occupied by BL2 will be reclaimed by BL3-x stages. BL2 runs
 * entirely in S-EL1.
 ******************************************************************************/
void bl2_main(void)
{
	bl31_params_t *bl2_to_bl31_params;
	entry_point_info_t *bl31_ep_info;
	int e;

Dan Handley's avatar
Dan Handley committed
207
208
209
	NOTICE("BL2: %s\n", version_string);
	NOTICE("BL2: %s\n", build_message);

210
211
212
	/* Perform remaining generic architectural setup in S-EL1 */
	bl2_arch_setup();

213
214
#if TRUSTED_BOARD_BOOT
	/* Initialize authentication module */
215
	auth_mod_init();
216
217
#endif /* TRUSTED_BOARD_BOOT */

218
219
220
221
222
223
	/*
	 * Load the subsequent bootloader images
	 */
	e = load_bl30();
	if (e) {
		ERROR("Failed to load BL3-0 (%i)\n", e);
224
		plat_error_handler(e);
225
226
	}

Juan Castillo's avatar
Juan Castillo committed
227
228
229
	/* Perform platform setup in BL2 after loading BL3-0 */
	bl2_platform_setup();

230
231
232
233
234
235
236
	/*
	 * Get a pointer to the memory the platform has set aside to pass
	 * information to BL3-1.
	 */
	bl2_to_bl31_params = bl2_plat_get_bl31_params();
	bl31_ep_info = bl2_plat_get_bl31_ep_info();

237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
#ifdef EL3_PAYLOAD_BASE
	/*
	 * In the case of an EL3 payload, we don't need to load any further
	 * images. Just update the BL31 entrypoint info structure to make BL1
	 * jump to the EL3 payload.
	 * The pointer to the memory the platform has set aside to pass
	 * information to BL3-1 in the normal boot flow is reused here, even
	 * though only a fraction of the information contained in the
	 * bl31_params_t structure makes sense in the context of EL3 payloads.
	 * This will be refined in the future.
	 */
	VERBOSE("BL2: Populating the entrypoint info for the EL3 payload\n");
	bl31_ep_info->pc = EL3_PAYLOAD_BASE;
	bl31_ep_info->args.arg0 = (unsigned long) bl2_to_bl31_params;
	bl2_plat_set_bl31_ep_info(NULL, bl31_ep_info);
#else
253
254
255
	e = load_bl31(bl2_to_bl31_params, bl31_ep_info);
	if (e) {
		ERROR("Failed to load BL3-1 (%i)\n", e);
256
		plat_error_handler(e);
257
258
259
	}

	e = load_bl32(bl2_to_bl31_params);
260
	if (e) {
261
		if (e == -EAUTH) {
262
			ERROR("Failed to authenticate BL3-2\n");
263
			plat_error_handler(e);
264
265
266
267
		} else {
			WARN("Failed to load BL3-2 (%i)\n", e);
		}
	}
268
269
270
271

	e = load_bl33(bl2_to_bl31_params);
	if (e) {
		ERROR("Failed to load BL3-3 (%i)\n", e);
272
		plat_error_handler(e);
273
	}
274
#endif /* EL3_PAYLOAD_BASE */
275

276
277
278
	/* Flush the params to be passed to memory */
	bl2_plat_flush_bl31_params();

279
	/*
280
281
282
	 * Run BL3-1 via an SMC to BL1. Information on how to pass control to
	 * the BL3-2 (if present) and BL3-3 software images will be passed to
	 * BL3-1 as an argument.
283
	 */
284
	smc(RUN_IMAGE, (unsigned long)bl31_ep_info, 0, 0, 0, 0, 0, 0);
285
}