fiptool.c 28.9 KB
Newer Older
dp-arm's avatar
dp-arm committed
1
2
3
/*
 * Copyright (c) 2016, ARM Limited and Contributors. All rights reserved.
 *
dp-arm's avatar
dp-arm committed
4
 * SPDX-License-Identifier: BSD-3-Clause
dp-arm's avatar
dp-arm committed
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
 */

#include <sys/types.h>
#include <sys/stat.h>

#include <assert.h>
#include <errno.h>
#include <getopt.h>
#include <limits.h>
#include <stdarg.h>
#include <stdint.h>
#include <stdio.h>
#include <stdlib.h>
#include <string.h>
#include <unistd.h>

21
22
#include <openssl/sha.h>

dp-arm's avatar
dp-arm committed
23
24
25
26
27
28
#include "fiptool.h"
#include "firmware_image_package.h"
#include "tbbr_config.h"

#define OPT_TOC_ENTRY 0
#define OPT_PLAT_TOC_FLAGS 1
29
#define OPT_ALIGN 2
dp-arm's avatar
dp-arm committed
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56

static int info_cmd(int argc, char *argv[]);
static void info_usage(void);
static int create_cmd(int argc, char *argv[]);
static void create_usage(void);
static int update_cmd(int argc, char *argv[]);
static void update_usage(void);
static int unpack_cmd(int argc, char *argv[]);
static void unpack_usage(void);
static int remove_cmd(int argc, char *argv[]);
static void remove_usage(void);
static int version_cmd(int argc, char *argv[]);
static void version_usage(void);
static int help_cmd(int argc, char *argv[]);
static void usage(void);

/* Available subcommands. */
static cmd_t cmds[] = {
	{ .name = "info",    .handler = info_cmd,    .usage = info_usage    },
	{ .name = "create",  .handler = create_cmd,  .usage = create_usage  },
	{ .name = "update",  .handler = update_cmd,  .usage = update_usage  },
	{ .name = "unpack",  .handler = unpack_cmd,  .usage = unpack_usage  },
	{ .name = "remove",  .handler = remove_cmd,  .usage = remove_usage  },
	{ .name = "version", .handler = version_cmd, .usage = version_usage },
	{ .name = "help",    .handler = help_cmd,    .usage = NULL          },
};

57
58
static image_desc_t *image_desc_head;
static size_t nr_image_descs;
dp-arm's avatar
dp-arm committed
59
60
61
static uuid_t uuid_null = { 0 };
static int verbose;

62
static void vlog(int prio, const char *msg, va_list ap)
dp-arm's avatar
dp-arm committed
63
64
65
66
67
68
69
70
{
	char *prefix[] = { "DEBUG", "WARN", "ERROR" };

	fprintf(stderr, "%s: ", prefix[prio]);
	vfprintf(stderr, msg, ap);
	fputc('\n', stderr);
}

71
static void log_dbgx(const char *msg, ...)
dp-arm's avatar
dp-arm committed
72
73
74
75
76
77
78
79
{
	va_list ap;

	va_start(ap, msg);
	vlog(LOG_DBG, msg, ap);
	va_end(ap);
}

80
static void log_warnx(const char *msg, ...)
dp-arm's avatar
dp-arm committed
81
82
83
84
85
86
87
88
{
	va_list ap;

	va_start(ap, msg);
	vlog(LOG_WARN, msg, ap);
	va_end(ap);
}

89
static void log_err(const char *msg, ...)
dp-arm's avatar
dp-arm committed
90
91
92
93
94
95
96
97
98
99
100
{
	char buf[512];
	va_list ap;

	va_start(ap, msg);
	snprintf(buf, sizeof(buf), "%s: %s", msg, strerror(errno));
	vlog(LOG_ERR, buf, ap);
	va_end(ap);
	exit(1);
}

101
static void log_errx(const char *msg, ...)
dp-arm's avatar
dp-arm committed
102
103
104
105
106
107
108
109
110
{
	va_list ap;

	va_start(ap, msg);
	vlog(LOG_ERR, msg, ap);
	va_end(ap);
	exit(1);
}

111
112
113
114
115
116
static char *xstrdup(const char *s, const char *msg)
{
	char *d;

	d = strdup(s);
	if (d == NULL)
117
		log_errx("strdup: %s", msg);
118
119
120
121
122
123
124
125
126
	return d;
}

static void *xmalloc(size_t size, const char *msg)
{
	void *d;

	d = malloc(size);
	if (d == NULL)
127
		log_errx("malloc: %s", msg);
128
129
130
	return d;
}

131
132
133
134
135
static void *xzalloc(size_t size, const char *msg)
{
	return memset(xmalloc(size, msg), 0, size);
}

136
137
138
139
140
141
static void xfwrite(void *buf, size_t size, FILE *fp, const char *filename)
{
	if (fwrite(buf, 1, size, fp) != size)
		log_errx("Failed to write %s", filename);
}

142
143
static image_desc_t *new_image_desc(const uuid_t *uuid,
    const char *name, const char *cmdline_name)
dp-arm's avatar
dp-arm committed
144
{
145
146
	image_desc_t *desc;

147
	desc = xzalloc(sizeof(*desc),
148
149
150
151
152
153
154
155
	    "failed to allocate memory for image descriptor");
	memcpy(&desc->uuid, uuid, sizeof(uuid_t));
	desc->name = xstrdup(name,
	    "failed to allocate memory for image name");
	desc->cmdline_name = xstrdup(cmdline_name,
	    "failed to allocate memory for image command line name");
	desc->action = DO_UNSPEC;
	return desc;
dp-arm's avatar
dp-arm committed
156
157
}

158
159
160
161
162
163
164
165
166
167
168
169
170
171
static void set_image_desc_action(image_desc_t *desc, int action,
    const char *arg)
{
	assert(desc != NULL);

	if (desc->action_arg != DO_UNSPEC)
		free(desc->action_arg);
	desc->action = action;
	desc->action_arg = NULL;
	if (arg != NULL)
		desc->action_arg = xstrdup(arg,
		    "failed to allocate memory for argument");
}

172
static void free_image_desc(image_desc_t *desc)
dp-arm's avatar
dp-arm committed
173
{
174
175
176
	free(desc->name);
	free(desc->cmdline_name);
	free(desc->action_arg);
177
	free(desc->image);
178
	free(desc);
dp-arm's avatar
dp-arm committed
179
180
}

181
static void add_image_desc(image_desc_t *desc)
dp-arm's avatar
dp-arm committed
182
{
183
184
185
186
187
	image_desc_t **p = &image_desc_head;

	while (*p)
		p = &(*p)->next;

188
	assert(*p == NULL);
189
	*p = desc;
190
191
	nr_image_descs++;
}
dp-arm's avatar
dp-arm committed
192

193
194
195
196
197
198
199
200
201
static void free_image_descs(void)
{
	image_desc_t *desc = image_desc_head, *tmp;

	while (desc != NULL) {
		tmp = desc->next;
		free_image_desc(desc);
		desc = tmp;
		nr_image_descs--;
dp-arm's avatar
dp-arm committed
202
	}
203
	assert(nr_image_descs == 0);
dp-arm's avatar
dp-arm committed
204
205
}

206
static void fill_image_descs(void)
dp-arm's avatar
dp-arm committed
207
{
208
	toc_entry_t *toc_entry;
dp-arm's avatar
dp-arm committed
209

210
211
212
213
214
215
216
217
218
	for (toc_entry = toc_entries;
	     toc_entry->cmdline_name != NULL;
	     toc_entry++) {
		image_desc_t *desc;

		desc = new_image_desc(&toc_entry->uuid,
		    toc_entry->name,
		    toc_entry->cmdline_name);
		add_image_desc(desc);
dp-arm's avatar
dp-arm committed
219
	}
220
}
dp-arm's avatar
dp-arm committed
221

222
static image_desc_t *lookup_image_desc_from_uuid(const uuid_t *uuid)
dp-arm's avatar
dp-arm committed
223
{
224
	image_desc_t *desc;
dp-arm's avatar
dp-arm committed
225

226
227
228
229
230
231
232
233
234
235
236
237
238
	for (desc = image_desc_head; desc != NULL; desc = desc->next)
		if (memcmp(&desc->uuid, uuid, sizeof(uuid_t)) == 0)
			return desc;
	return NULL;
}

static image_desc_t *lookup_image_desc_from_opt(const char *opt)
{
	image_desc_t *desc;

	for (desc = image_desc_head; desc != NULL; desc = desc->next)
		if (strcmp(desc->cmdline_name, opt) == 0)
			return desc;
dp-arm's avatar
dp-arm committed
239
240
241
	return NULL;
}

242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
static void uuid_to_str(char *s, size_t len, const uuid_t *u)
{
	assert(len >= (_UUID_STR_LEN + 1));

	snprintf(s, len, "%08X-%04X-%04X-%04X-%04X%04X%04X",
	    u->time_low,
	    u->time_mid,
	    u->time_hi_and_version,
	    ((uint16_t)u->clock_seq_hi_and_reserved << 8) | u->clock_seq_low,
	    ((uint16_t)u->node[0] << 8) | u->node[1],
	    ((uint16_t)u->node[2] << 8) | u->node[3],
	    ((uint16_t)u->node[4] << 8) | u->node[5]);
}

static void uuid_from_str(uuid_t *u, const char *s)
{
	int n;

	if (s == NULL)
		log_errx("UUID cannot be NULL");
	if (strlen(s) != _UUID_STR_LEN)
		log_errx("Invalid UUID: %s", s);

	n = sscanf(s,
	    "%8x-%4hx-%4hx-%2hhx%2hhx-%2hhx%2hhx%2hhx%2hhx%2hhx%2hhx",
	    &u->time_low, &u->time_mid, &u->time_hi_and_version,
	    &u->clock_seq_hi_and_reserved, &u->clock_seq_low, &u->node[0],
	    &u->node[1], &u->node[2], &u->node[3], &u->node[4], &u->node[5]);
	/*
	 * Given the format specifier above, we expect 11 items to be scanned
	 * for a properly formatted UUID.
	 */
	if (n != 11)
		log_errx("Invalid UUID: %s", s);
}

278
static int parse_fip(const char *filename, fip_toc_header_t *toc_header_out)
dp-arm's avatar
dp-arm committed
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
{
	struct stat st;
	FILE *fp;
	char *buf, *bufend;
	fip_toc_header_t *toc_header;
	fip_toc_entry_t *toc_entry;
	int terminated = 0;

	fp = fopen(filename, "r");
	if (fp == NULL)
		log_err("fopen %s", filename);

	if (fstat(fileno(fp), &st) == -1)
		log_err("fstat %s", filename);

294
	buf = xmalloc(st.st_size, "failed to load file into memory");
dp-arm's avatar
dp-arm committed
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
	if (fread(buf, 1, st.st_size, fp) != st.st_size)
		log_errx("Failed to read %s", filename);
	bufend = buf + st.st_size;
	fclose(fp);

	if (st.st_size < sizeof(fip_toc_header_t))
		log_errx("FIP %s is truncated", filename);

	toc_header = (fip_toc_header_t *)buf;
	toc_entry = (fip_toc_entry_t *)(toc_header + 1);

	if (toc_header->name != TOC_HEADER_NAME)
		log_errx("%s is not a FIP file", filename);

	/* Return the ToC header if the caller wants it. */
	if (toc_header_out != NULL)
		*toc_header_out = *toc_header;

	/* Walk through each ToC entry in the file. */
	while ((char *)toc_entry + sizeof(*toc_entry) - 1 < bufend) {
315
316
317
		image_t *image;
		image_desc_t *desc;

dp-arm's avatar
dp-arm committed
318
319
320
321
322
323
324
325
326
327
		/* Found the ToC terminator, we are done. */
		if (memcmp(&toc_entry->uuid, &uuid_null, sizeof(uuid_t)) == 0) {
			terminated = 1;
			break;
		}

		/*
		 * Build a new image out of the ToC entry and add it to the
		 * table of images.
		 */
328
		image = xzalloc(sizeof(*image),
329
		    "failed to allocate memory for image");
330
		image->toc_e = *toc_entry;
331
332
		image->buffer = xmalloc(toc_entry->size,
		    "failed to allocate image buffer, is FIP file corrupted?");
dp-arm's avatar
dp-arm committed
333
334
335
336
337
338
339
340
341
		/* Overflow checks before memory copy. */
		if (toc_entry->size > (uint64_t)-1 - toc_entry->offset_address)
			log_errx("FIP %s is corrupted", filename);
		if (toc_entry->size + toc_entry->offset_address > st.st_size)
			log_errx("FIP %s is corrupted", filename);

		memcpy(image->buffer, buf + toc_entry->offset_address,
		    toc_entry->size);

342
		/* If this is an unknown image, create a descriptor for it. */
343
		desc = lookup_image_desc_from_uuid(&toc_entry->uuid);
344
345
346
		if (desc == NULL) {
			char name[_UUID_STR_LEN + 1], filename[PATH_MAX];

347
			uuid_to_str(name, sizeof(name), &toc_entry->uuid);
348
349
			snprintf(filename, sizeof(filename), "%s%s",
			    name, ".bin");
350
			desc = new_image_desc(&toc_entry->uuid, name, "blob");
351
352
353
354
355
356
			desc->action = DO_UNPACK;
			desc->action_arg = xstrdup(filename,
			    "failed to allocate memory for blob filename");
			add_image_desc(desc);
		}

357
358
		assert(desc->image == NULL);
		desc->image = image;
dp-arm's avatar
dp-arm committed
359
360
361
362
363
364
365
366
367
368
369

		toc_entry++;
	}

	if (terminated == 0)
		log_errx("FIP %s does not have a ToC terminator entry",
		    filename);
	free(buf);
	return 0;
}

370
static image_t *read_image_from_file(const uuid_t *uuid, const char *filename)
dp-arm's avatar
dp-arm committed
371
372
373
374
375
{
	struct stat st;
	image_t *image;
	FILE *fp;

376
377
	assert(uuid != NULL);

dp-arm's avatar
dp-arm committed
378
379
380
381
382
383
384
	fp = fopen(filename, "r");
	if (fp == NULL)
		log_err("fopen %s", filename);

	if (fstat(fileno(fp), &st) == -1)
		log_errx("fstat %s", filename);

385
	image = xzalloc(sizeof(*image), "failed to allocate memory for image");
386
	image->toc_e.uuid = *uuid;
387
	image->buffer = xmalloc(st.st_size, "failed to allocate image buffer");
dp-arm's avatar
dp-arm committed
388
389
	if (fread(image->buffer, 1, st.st_size, fp) != st.st_size)
		log_errx("Failed to read %s", filename);
390
	image->toc_e.size = st.st_size;
dp-arm's avatar
dp-arm committed
391
392
393
394
395

	fclose(fp);
	return image;
}

396
static int write_image_to_file(const image_t *image, const char *filename)
dp-arm's avatar
dp-arm committed
397
398
399
400
401
402
{
	FILE *fp;

	fp = fopen(filename, "w");
	if (fp == NULL)
		log_err("fopen");
403
	xfwrite(image->buffer, image->toc_e.size, fp, filename);
dp-arm's avatar
dp-arm committed
404
405
406
407
	fclose(fp);
	return 0;
}

408
409
static struct option *add_opt(struct option *opts, size_t *nr_opts,
    const char *name, int has_arg, int val)
dp-arm's avatar
dp-arm committed
410
{
411
412
413
414
415
416
417
418
419
	opts = realloc(opts, (*nr_opts + 1) * sizeof(*opts));
	if (opts == NULL)
		log_err("realloc");
	opts[*nr_opts].name = name;
	opts[*nr_opts].has_arg = has_arg;
	opts[*nr_opts].flag = NULL;
	opts[*nr_opts].val = val;
	++*nr_opts;
	return opts;
dp-arm's avatar
dp-arm committed
420
421
}

422
423
static struct option *fill_common_opts(struct option *opts, size_t *nr_opts,
    int has_arg)
dp-arm's avatar
dp-arm committed
424
{
425
426
427
428
429
430
	image_desc_t *desc;

	for (desc = image_desc_head; desc != NULL; desc = desc->next)
		opts = add_opt(opts, nr_opts, desc->cmdline_name, has_arg,
		    OPT_TOC_ENTRY);
	return opts;
dp-arm's avatar
dp-arm committed
431
432
}

433
static void md_print(const unsigned char *md, size_t len)
434
435
436
437
438
439
440
{
	size_t i;

	for (i = 0; i < len; i++)
		printf("%02x", md[i]);
}

dp-arm's avatar
dp-arm committed
441
442
static int info_cmd(int argc, char *argv[])
{
443
	image_desc_t *desc;
dp-arm's avatar
dp-arm committed
444
445
446
	fip_toc_header_t toc_header;

	if (argc != 2)
447
		info_usage();
dp-arm's avatar
dp-arm committed
448
449
450
451
452
453
454
455
456
457
458
459
460
	argc--, argv++;

	parse_fip(argv[0], &toc_header);

	if (verbose) {
		log_dbgx("toc_header[name]: 0x%llX",
		    (unsigned long long)toc_header.name);
		log_dbgx("toc_header[serial_number]: 0x%llX",
		    (unsigned long long)toc_header.serial_number);
		log_dbgx("toc_header[flags]: 0x%llX",
		    (unsigned long long)toc_header.flags);
	}

461
462
	for (desc = image_desc_head; desc != NULL; desc = desc->next) {
		image_t *image = desc->image;
463

464
465
		if (image == NULL)
			continue;
466
467
468
469
		printf("%s: offset=0x%llX, size=0x%llX, cmdline=\"--%s\"",
		       desc->name,
		       (unsigned long long)image->toc_e.offset_address,
		       (unsigned long long)image->toc_e.size,
470
		       desc->cmdline_name);
471
472
473
		if (verbose) {
			unsigned char md[SHA256_DIGEST_LENGTH];

474
			SHA256(image->buffer, image->toc_e.size, md);
475
476
477
478
			printf(", sha256=");
			md_print(md, sizeof(md));
		}
		putchar('\n');
dp-arm's avatar
dp-arm committed
479
480
481
482
483
484
485
486
	}

	return 0;
}

static void info_usage(void)
{
	printf("fiptool info FIP_FILENAME\n");
487
	exit(1);
dp-arm's avatar
dp-arm committed
488
489
}

490
static int pack_images(const char *filename, uint64_t toc_flags, unsigned long align)
dp-arm's avatar
dp-arm committed
491
492
{
	FILE *fp;
493
	image_desc_t *desc;
dp-arm's avatar
dp-arm committed
494
495
496
	fip_toc_header_t *toc_header;
	fip_toc_entry_t *toc_entry;
	char *buf;
497
	uint64_t entry_offset, buf_size, payload_size = 0;
498
499
500
501
502
	size_t nr_images = 0;

	for (desc = image_desc_head; desc != NULL; desc = desc->next)
		if (desc->image != NULL)
			nr_images++;
dp-arm's avatar
dp-arm committed
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518

	buf_size = sizeof(fip_toc_header_t) +
	    sizeof(fip_toc_entry_t) * (nr_images + 1);
	buf = calloc(1, buf_size);
	if (buf == NULL)
		log_err("calloc");

	/* Build up header and ToC entries from the image table. */
	toc_header = (fip_toc_header_t *)buf;
	toc_header->name = TOC_HEADER_NAME;
	toc_header->serial_number = TOC_HEADER_SERIAL_NUMBER;
	toc_header->flags = toc_flags;

	toc_entry = (fip_toc_entry_t *)(toc_header + 1);

	entry_offset = buf_size;
519
520
521
522
523
	for (desc = image_desc_head; desc != NULL; desc = desc->next) {
		image_t *image = desc->image;

		if (image == NULL)
			continue;
524
		payload_size += image->toc_e.size;
525
		entry_offset = (entry_offset + align - 1) & ~(align - 1);
526
527
528
		image->toc_e.offset_address = entry_offset;
		*toc_entry++ = image->toc_e;
		entry_offset += image->toc_e.size;
dp-arm's avatar
dp-arm committed
529
530
531
	}

	/* Append a null uuid entry to mark the end of ToC entries. */
532
	memset(toc_entry, 0, sizeof(*toc_entry));
dp-arm's avatar
dp-arm committed
533
534
535
536
537
538
539
540
541
542
	toc_entry->offset_address = entry_offset;

	/* Generate the FIP file. */
	fp = fopen(filename, "w");
	if (fp == NULL)
		log_err("fopen %s", filename);

	if (verbose)
		log_dbgx("Metadata size: %zu bytes", buf_size);

543
	xfwrite(buf, buf_size, fp, filename);
dp-arm's avatar
dp-arm committed
544
545
546
547
548
	free(buf);

	if (verbose)
		log_dbgx("Payload size: %zu bytes", payload_size);

549
550
551
552
553
	for (desc = image_desc_head; desc != NULL; desc = desc->next) {
		image_t *image = desc->image;

		if (image == NULL)
			continue;
554
555
556
		if (fseek(fp, image->toc_e.offset_address, SEEK_SET))
			log_errx("Failed to set file position");

557
		xfwrite(image->buffer, image->toc_e.size, fp, filename);
558
	}
dp-arm's avatar
dp-arm committed
559
560
561
562
563
564
565
566
567
568
569
570
571
572

	fclose(fp);
	return 0;
}

/*
 * This function is shared between the create and update subcommands.
 * The difference between the two subcommands is that when the FIP file
 * is created, the parsing of an existing FIP is skipped.  This results
 * in update_fip() creating the new FIP file from scratch because the
 * internal image table is not populated.
 */
static void update_fip(void)
{
573
	image_desc_t *desc;
dp-arm's avatar
dp-arm committed
574
575

	/* Add or replace images in the FIP file. */
576
	for (desc = image_desc_head; desc != NULL; desc = desc->next) {
577
		image_t *image;
578

579
		if (desc->action != DO_PACK)
dp-arm's avatar
dp-arm committed
580
581
			continue;

582
		image = read_image_from_file(&desc->uuid,
583
		    desc->action_arg);
584
		if (desc->image != NULL) {
585
			if (verbose) {
586
				log_dbgx("Replacing %s with %s",
587
588
589
				    desc->cmdline_name,
				    desc->action_arg);
			}
590
591
			free(desc->image);
			desc->image = image;
dp-arm's avatar
dp-arm committed
592
593
594
		} else {
			if (verbose)
				log_dbgx("Adding image %s",
595
				    desc->action_arg);
596
			desc->image = image;
dp-arm's avatar
dp-arm committed
597
598
599
600
		}
	}
}

601
static void parse_plat_toc_flags(const char *arg, unsigned long long *toc_flags)
dp-arm's avatar
dp-arm committed
602
603
604
605
606
607
608
609
610
611
612
613
{
	unsigned long long flags;
	char *endptr;

	errno = 0;
	flags = strtoull(arg, &endptr, 16);
	if (*endptr != '\0' || flags > UINT16_MAX || errno != 0)
		log_errx("Invalid platform ToC flags: %s", arg);
	/* Platform ToC flags is a 16-bit field occupying bits [32-47]. */
	*toc_flags |= flags << 32;
}

614
615
616
617
618
619
620
621
622
623
624
static int is_power_of_2(unsigned long x)
{
	return x && !(x & (x - 1));
}

static unsigned long get_image_align(char *arg)
{
	char *endptr;
	unsigned long align;

	errno = 0;
625
	align = strtoul(arg, &endptr, 0);
626
627
628
629
630
631
	if (*endptr != '\0' || !is_power_of_2(align) || errno != 0)
		log_errx("Invalid alignment: %s", arg);

	return align;
}

632
633
634
635
636
637
638
639
640
641
642
643
644
645
646
static void parse_blob_opt(char *arg, uuid_t *uuid, char *filename, size_t len)
{
	char *p;

	for (p = strtok(arg, ","); p != NULL; p = strtok(NULL, ",")) {
		if (strncmp(p, "uuid=", strlen("uuid=")) == 0) {
			p += strlen("uuid=");
			uuid_from_str(uuid, p);
		} else if (strncmp(p, "file=", strlen("file=")) == 0) {
			p += strlen("file=");
			snprintf(filename, len, "%s", p);
		}
	}
}

dp-arm's avatar
dp-arm committed
647
648
static int create_cmd(int argc, char *argv[])
{
649
650
	struct option *opts = NULL;
	size_t nr_opts = 0;
dp-arm's avatar
dp-arm committed
651
	unsigned long long toc_flags = 0;
652
	unsigned long align = 1;
dp-arm's avatar
dp-arm committed
653
654

	if (argc < 2)
655
		create_usage();
dp-arm's avatar
dp-arm committed
656

657
658
	opts = fill_common_opts(opts, &nr_opts, required_argument);
	opts = add_opt(opts, &nr_opts, "plat-toc-flags", required_argument,
dp-arm's avatar
dp-arm committed
659
	    OPT_PLAT_TOC_FLAGS);
660
	opts = add_opt(opts, &nr_opts, "align", required_argument, OPT_ALIGN);
661
	opts = add_opt(opts, &nr_opts, "blob", required_argument, 'b');
662
	opts = add_opt(opts, &nr_opts, NULL, 0, 0);
dp-arm's avatar
dp-arm committed
663
664

	while (1) {
665
		int c, opt_index = 0;
dp-arm's avatar
dp-arm committed
666

667
		c = getopt_long(argc, argv, "b:", opts, &opt_index);
dp-arm's avatar
dp-arm committed
668
669
670
671
672
		if (c == -1)
			break;

		switch (c) {
		case OPT_TOC_ENTRY: {
673
674
675
			image_desc_t *desc;

			desc = lookup_image_desc_from_opt(opts[opt_index].name);
676
			set_image_desc_action(desc, DO_PACK, optarg);
dp-arm's avatar
dp-arm committed
677
678
679
680
681
			break;
		}
		case OPT_PLAT_TOC_FLAGS:
			parse_plat_toc_flags(optarg, &toc_flags);
			break;
682
683
684
		case OPT_ALIGN:
			align = get_image_align(optarg);
			break;
685
686
687
688
689
690
691
692
693
694
695
696
697
698
		case 'b': {
			char name[_UUID_STR_LEN + 1];
			char filename[PATH_MAX] = { 0 };
			uuid_t uuid = { 0 };
			image_desc_t *desc;

			parse_blob_opt(optarg, &uuid,
			    filename, sizeof(filename));

			if (memcmp(&uuid, &uuid_null, sizeof(uuid_t)) == 0 ||
			    filename[0] == '\0')
				create_usage();

			desc = lookup_image_desc_from_uuid(&uuid);
699
			if (desc == NULL) {
700
701
702
703
				uuid_to_str(name, sizeof(name), &uuid);
				desc = new_image_desc(&uuid, name, "blob");
				add_image_desc(desc);
			}
704
			set_image_desc_action(desc, DO_PACK, filename);
705
706
			break;
		}
dp-arm's avatar
dp-arm committed
707
		default:
708
			create_usage();
dp-arm's avatar
dp-arm committed
709
710
711
712
		}
	}
	argc -= optind;
	argv += optind;
713
	free(opts);
dp-arm's avatar
dp-arm committed
714
715

	if (argc == 0)
716
		create_usage();
dp-arm's avatar
dp-arm committed
717
718
719

	update_fip();

720
	pack_images(argv[0], toc_flags, align);
dp-arm's avatar
dp-arm committed
721
722
723
724
725
726
727
	return 0;
}

static void create_usage(void)
{
	toc_entry_t *toc_entry = toc_entries;

728
729
730
	printf("fiptool create [opts] FIP_FILENAME\n");
	printf("\n");
	printf("Options:\n");
731
	printf("  --align <value>\t\tEach image is aligned to <value> (default: 1).\n");
732
733
	printf("  --blob uuid=...,file=...\tAdd an image with the given UUID pointed to by file.\n");
	printf("  --plat-toc-flags <value>\t16-bit platform specific flag field occupying bits 32-47 in 64-bit ToC header.\n");
734
	printf("\n");
dp-arm's avatar
dp-arm committed
735
736
737
738
	printf("Specific images are packed with the following options:\n");
	for (; toc_entry->cmdline_name != NULL; toc_entry++)
		printf("  --%-16s FILENAME\t%s\n", toc_entry->cmdline_name,
		    toc_entry->name);
739
	exit(1);
dp-arm's avatar
dp-arm committed
740
741
742
743
}

static int update_cmd(int argc, char *argv[])
{
744
745
	struct option *opts = NULL;
	size_t nr_opts = 0;
746
	char outfile[PATH_MAX] = { 0 };
dp-arm's avatar
dp-arm committed
747
748
	fip_toc_header_t toc_header = { 0 };
	unsigned long long toc_flags = 0;
749
	unsigned long align = 1;
dp-arm's avatar
dp-arm committed
750
751
752
	int pflag = 0;

	if (argc < 2)
753
		update_usage();
dp-arm's avatar
dp-arm committed
754

755
	opts = fill_common_opts(opts, &nr_opts, required_argument);
756
	opts = add_opt(opts, &nr_opts, "align", required_argument, OPT_ALIGN);
757
	opts = add_opt(opts, &nr_opts, "blob", required_argument, 'b');
758
759
	opts = add_opt(opts, &nr_opts, "out", required_argument, 'o');
	opts = add_opt(opts, &nr_opts, "plat-toc-flags", required_argument,
dp-arm's avatar
dp-arm committed
760
	    OPT_PLAT_TOC_FLAGS);
761
	opts = add_opt(opts, &nr_opts, NULL, 0, 0);
dp-arm's avatar
dp-arm committed
762
763

	while (1) {
764
		int c, opt_index = 0;
dp-arm's avatar
dp-arm committed
765

766
		c = getopt_long(argc, argv, "b:o:", opts, &opt_index);
dp-arm's avatar
dp-arm committed
767
768
769
770
771
		if (c == -1)
			break;

		switch (c) {
		case OPT_TOC_ENTRY: {
772
773
774
			image_desc_t *desc;

			desc = lookup_image_desc_from_opt(opts[opt_index].name);
775
			set_image_desc_action(desc, DO_PACK, optarg);
dp-arm's avatar
dp-arm committed
776
777
			break;
		}
778
		case OPT_PLAT_TOC_FLAGS:
dp-arm's avatar
dp-arm committed
779
780
781
			parse_plat_toc_flags(optarg, &toc_flags);
			pflag = 1;
			break;
782
783
784
785
786
787
788
789
790
791
792
793
794
795
		case 'b': {
			char name[_UUID_STR_LEN + 1];
			char filename[PATH_MAX] = { 0 };
			uuid_t uuid = { 0 };
			image_desc_t *desc;

			parse_blob_opt(optarg, &uuid,
			    filename, sizeof(filename));

			if (memcmp(&uuid, &uuid_null, sizeof(uuid_t)) == 0 ||
			    filename[0] == '\0')
				update_usage();

			desc = lookup_image_desc_from_uuid(&uuid);
796
			if (desc == NULL) {
797
798
799
800
				uuid_to_str(name, sizeof(name), &uuid);
				desc = new_image_desc(&uuid, name, "blob");
				add_image_desc(desc);
			}
801
			set_image_desc_action(desc, DO_PACK, filename);
802
803
			break;
		}
804
805
806
		case OPT_ALIGN:
			align = get_image_align(optarg);
			break;
dp-arm's avatar
dp-arm committed
807
808
809
810
		case 'o':
			snprintf(outfile, sizeof(outfile), "%s", optarg);
			break;
		default:
811
			update_usage();
dp-arm's avatar
dp-arm committed
812
813
814
815
		}
	}
	argc -= optind;
	argv += optind;
816
	free(opts);
dp-arm's avatar
dp-arm committed
817
818

	if (argc == 0)
819
		update_usage();
dp-arm's avatar
dp-arm committed
820
821
822
823

	if (outfile[0] == '\0')
		snprintf(outfile, sizeof(outfile), "%s", argv[0]);

824
	if (access(argv[0], F_OK) == 0)
dp-arm's avatar
dp-arm committed
825
826
827
828
829
830
831
832
		parse_fip(argv[0], &toc_header);

	if (pflag)
		toc_header.flags &= ~(0xffffULL << 32);
	toc_flags = (toc_header.flags |= toc_flags);

	update_fip();

833
	pack_images(outfile, toc_flags, align);
dp-arm's avatar
dp-arm committed
834
835
836
837
838
839
840
	return 0;
}

static void update_usage(void)
{
	toc_entry_t *toc_entry = toc_entries;

841
842
843
	printf("fiptool update [opts] FIP_FILENAME\n");
	printf("\n");
	printf("Options:\n");
844
	printf("  --align <value>\t\tEach image is aligned to <value> (default: 1).\n");
845
	printf("  --blob uuid=...,file=...\tAdd or update an image with the given UUID pointed to by file.\n");
dp-arm's avatar
dp-arm committed
846
	printf("  --out FIP_FILENAME\t\tSet an alternative output FIP file.\n");
847
	printf("  --plat-toc-flags <value>\t16-bit platform specific flag field occupying bits 32-47 in 64-bit ToC header.\n");
848
	printf("\n");
dp-arm's avatar
dp-arm committed
849
850
851
852
	printf("Specific images are packed with the following options:\n");
	for (; toc_entry->cmdline_name != NULL; toc_entry++)
		printf("  --%-16s FILENAME\t%s\n", toc_entry->cmdline_name,
		    toc_entry->name);
853
	exit(1);
dp-arm's avatar
dp-arm committed
854
855
856
857
}

static int unpack_cmd(int argc, char *argv[])
{
858
859
	struct option *opts = NULL;
	size_t nr_opts = 0;
860
	char outdir[PATH_MAX] = { 0 };
861
	image_desc_t *desc;
dp-arm's avatar
dp-arm committed
862
863
864
865
	int fflag = 0;
	int unpack_all = 1;

	if (argc < 2)
866
		unpack_usage();
dp-arm's avatar
dp-arm committed
867

868
	opts = fill_common_opts(opts, &nr_opts, required_argument);
869
	opts = add_opt(opts, &nr_opts, "blob", required_argument, 'b');
870
871
872
	opts = add_opt(opts, &nr_opts, "force", no_argument, 'f');
	opts = add_opt(opts, &nr_opts, "out", required_argument, 'o');
	opts = add_opt(opts, &nr_opts, NULL, 0, 0);
dp-arm's avatar
dp-arm committed
873
874

	while (1) {
875
		int c, opt_index = 0;
dp-arm's avatar
dp-arm committed
876

877
		c = getopt_long(argc, argv, "b:fo:", opts, &opt_index);
dp-arm's avatar
dp-arm committed
878
879
880
881
		if (c == -1)
			break;

		switch (c) {
882
883
884
885
		case OPT_TOC_ENTRY: {
			image_desc_t *desc;

			desc = lookup_image_desc_from_opt(opts[opt_index].name);
886
			set_image_desc_action(desc, DO_UNPACK, optarg);
887
			unpack_all = 0;
dp-arm's avatar
dp-arm committed
888
			break;
889
		}
890
891
892
893
894
895
896
897
898
899
900
901
902
903
		case 'b': {
			char name[_UUID_STR_LEN + 1];
			char filename[PATH_MAX] = { 0 };
			uuid_t uuid = { 0 };
			image_desc_t *desc;

			parse_blob_opt(optarg, &uuid,
			    filename, sizeof(filename));

			if (memcmp(&uuid, &uuid_null, sizeof(uuid_t)) == 0 ||
			    filename[0] == '\0')
				unpack_usage();

			desc = lookup_image_desc_from_uuid(&uuid);
904
			if (desc == NULL) {
905
906
907
908
				uuid_to_str(name, sizeof(name), &uuid);
				desc = new_image_desc(&uuid, name, "blob");
				add_image_desc(desc);
			}
909
			set_image_desc_action(desc, DO_UNPACK, filename);
910
911
912
			unpack_all = 0;
			break;
		}
dp-arm's avatar
dp-arm committed
913
914
915
916
917
918
919
		case 'f':
			fflag = 1;
			break;
		case 'o':
			snprintf(outdir, sizeof(outdir), "%s", optarg);
			break;
		default:
920
			unpack_usage();
dp-arm's avatar
dp-arm committed
921
922
923
924
		}
	}
	argc -= optind;
	argv += optind;
925
	free(opts);
dp-arm's avatar
dp-arm committed
926
927

	if (argc == 0)
928
		unpack_usage();
dp-arm's avatar
dp-arm committed
929
930
931
932
933
934
935
936

	parse_fip(argv[0], NULL);

	if (outdir[0] != '\0')
		if (chdir(outdir) == -1)
			log_err("chdir %s", outdir);

	/* Unpack all specified images. */
937
	for (desc = image_desc_head; desc != NULL; desc = desc->next) {
938
		char file[PATH_MAX];
939
		image_t *image = desc->image;
940

941
		if (!unpack_all && desc->action != DO_UNPACK)
dp-arm's avatar
dp-arm committed
942
943
944
			continue;

		/* Build filename. */
945
		if (desc->action_arg == NULL)
dp-arm's avatar
dp-arm committed
946
			snprintf(file, sizeof(file), "%s.bin",
947
			    desc->cmdline_name);
dp-arm's avatar
dp-arm committed
948
949
		else
			snprintf(file, sizeof(file), "%s",
950
			    desc->action_arg);
dp-arm's avatar
dp-arm committed
951

952
953
		if (image == NULL) {
			if (!unpack_all)
954
				log_warnx("%s does not exist in %s",
955
				    file, argv[0]);
dp-arm's avatar
dp-arm committed
956
957
958
959
960
961
			continue;
		}

		if (access(file, F_OK) != 0 || fflag) {
			if (verbose)
				log_dbgx("Unpacking %s", file);
962
			write_image_to_file(image, file);
dp-arm's avatar
dp-arm committed
963
964
965
966
967
968
969
970
971
972
973
974
975
		} else {
			log_warnx("File %s already exists, use --force to overwrite it",
			    file);
		}
	}

	return 0;
}

static void unpack_usage(void)
{
	toc_entry_t *toc_entry = toc_entries;

976
977
978
	printf("fiptool unpack [opts] FIP_FILENAME\n");
	printf("\n");
	printf("Options:\n");
979
980
	printf("  --blob uuid=...,file=...\tUnpack an image with the given UUID to file.\n");
	printf("  --force\t\t\tIf the output file already exists, use --force to overwrite it.\n");
981
	printf("  --out path\t\t\tSet the output directory path.\n");
982
	printf("\n");
dp-arm's avatar
dp-arm committed
983
984
985
986
	printf("Specific images are unpacked with the following options:\n");
	for (; toc_entry->cmdline_name != NULL; toc_entry++)
		printf("  --%-16s FILENAME\t%s\n", toc_entry->cmdline_name,
		    toc_entry->name);
987
	printf("\n");
dp-arm's avatar
dp-arm committed
988
	printf("If no options are provided, all images will be unpacked.\n");
989
	exit(1);
dp-arm's avatar
dp-arm committed
990
991
992
993
}

static int remove_cmd(int argc, char *argv[])
{
994
995
	struct option *opts = NULL;
	size_t nr_opts = 0;
996
	char outfile[PATH_MAX] = { 0 };
dp-arm's avatar
dp-arm committed
997
	fip_toc_header_t toc_header;
998
	image_desc_t *desc;
999
	unsigned long align = 1;
dp-arm's avatar
dp-arm committed
1000
1001
1002
	int fflag = 0;

	if (argc < 2)
1003
		remove_usage();
dp-arm's avatar
dp-arm committed
1004

1005
	opts = fill_common_opts(opts, &nr_opts, no_argument);
1006
	opts = add_opt(opts, &nr_opts, "align", required_argument, OPT_ALIGN);
1007
	opts = add_opt(opts, &nr_opts, "blob", required_argument, 'b');
1008
1009
1010
	opts = add_opt(opts, &nr_opts, "force", no_argument, 'f');
	opts = add_opt(opts, &nr_opts, "out", required_argument, 'o');
	opts = add_opt(opts, &nr_opts, NULL, 0, 0);
dp-arm's avatar
dp-arm committed
1011
1012

	while (1) {
1013
		int c, opt_index = 0;
dp-arm's avatar
dp-arm committed
1014

1015
		c = getopt_long(argc, argv, "b:fo:", opts, &opt_index);
dp-arm's avatar
dp-arm committed
1016
1017
1018
1019
		if (c == -1)
			break;

		switch (c) {
1020
1021
1022
1023
		case OPT_TOC_ENTRY: {
			image_desc_t *desc;

			desc = lookup_image_desc_from_opt(opts[opt_index].name);
1024
			set_image_desc_action(desc, DO_REMOVE, NULL);
dp-arm's avatar
dp-arm committed
1025
			break;
1026
		}
1027
1028
1029
		case OPT_ALIGN:
			align = get_image_align(optarg);
			break;
1030
1031
1032
1033
1034
1035
1036
1037
1038
1039
1040
1041
		case 'b': {
			char name[_UUID_STR_LEN + 1], filename[PATH_MAX];
			uuid_t uuid = { 0 };
			image_desc_t *desc;

			parse_blob_opt(optarg, &uuid,
			    filename, sizeof(filename));

			if (memcmp(&uuid, &uuid_null, sizeof(uuid_t)) == 0)
				remove_usage();

			desc = lookup_image_desc_from_uuid(&uuid);
1042
			if (desc == NULL) {
1043
1044
1045
1046
				uuid_to_str(name, sizeof(name), &uuid);
				desc = new_image_desc(&uuid, name, "blob");
				add_image_desc(desc);
			}
1047
			set_image_desc_action(desc, DO_REMOVE, NULL);
1048
1049
			break;
		}
dp-arm's avatar
dp-arm committed
1050
1051
1052
1053
1054
1055
1056
		case 'f':
			fflag = 1;
			break;
		case 'o':
			snprintf(outfile, sizeof(outfile), "%s", optarg);
			break;
		default:
1057
			remove_usage();
dp-arm's avatar
dp-arm committed
1058
1059
1060
1061
		}
	}
	argc -= optind;
	argv += optind;
1062
	free(opts);
dp-arm's avatar
dp-arm committed
1063
1064

	if (argc == 0)
1065
		remove_usage();
dp-arm's avatar
dp-arm committed
1066
1067
1068
1069
1070
1071
1072
1073
1074
1075

	if (outfile[0] != '\0' && access(outfile, F_OK) == 0 && !fflag)
		log_errx("File %s already exists, use --force to overwrite it",
		    outfile);

	if (outfile[0] == '\0')
		snprintf(outfile, sizeof(outfile), "%s", argv[0]);

	parse_fip(argv[0], &toc_header);

1076
1077
	for (desc = image_desc_head; desc != NULL; desc = desc->next) {
		if (desc->action != DO_REMOVE)
dp-arm's avatar
dp-arm committed
1078
			continue;
1079

1080
		if (desc->image != NULL) {
dp-arm's avatar
dp-arm committed
1081
			if (verbose)
1082
				log_dbgx("Removing %s",
1083
				    desc->cmdline_name);
1084
1085
			free(desc->image);
			desc->image = NULL;
dp-arm's avatar
dp-arm committed
1086
		} else {
1087
			log_warnx("%s does not exist in %s",
1088
			    desc->cmdline_name, argv[0]);
dp-arm's avatar
dp-arm committed
1089
1090
1091
		}
	}

1092
	pack_images(outfile, toc_header.flags, align);
dp-arm's avatar
dp-arm committed
1093
1094
1095
1096
1097
1098
1099
	return 0;
}

static void remove_usage(void)
{
	toc_entry_t *toc_entry = toc_entries;

1100
1101
1102
	printf("fiptool remove [opts] FIP_FILENAME\n");
	printf("\n");
	printf("Options:\n");
1103
	printf("  --align <value>\tEach image is aligned to <value> (default: 1).\n");
1104
	printf("  --blob uuid=...\tRemove an image with the given UUID.\n");
1105
	printf("  --force\t\tIf the output FIP file already exists, use --force to overwrite it.\n");
dp-arm's avatar
dp-arm committed
1106
	printf("  --out FIP_FILENAME\tSet an alternative output FIP file.\n");
1107
	printf("\n");
dp-arm's avatar
dp-arm committed
1108
1109
1110
1111
	printf("Specific images are removed with the following options:\n");
	for (; toc_entry->cmdline_name != NULL; toc_entry++)
		printf("  --%-16s\t%s\n", toc_entry->cmdline_name,
		    toc_entry->name);
1112
	exit(1);
dp-arm's avatar
dp-arm committed
1113
1114
1115
1116
1117
1118
1119
1120
1121
1122
1123
1124
1125
1126
1127
1128
}

static int version_cmd(int argc, char *argv[])
{
#ifdef VERSION
	puts(VERSION);
#else
	/* If built from fiptool directory, VERSION is not set. */
	puts("Unknown version");
#endif
	return 0;
}

static void version_usage(void)
{
	printf("fiptool version\n");
1129
	exit(1);
dp-arm's avatar
dp-arm committed
1130
1131
1132
1133
1134
1135
1136
1137
1138
1139
1140
1141
}

static int help_cmd(int argc, char *argv[])
{
	int i;

	if (argc < 2)
		usage();
	argc--, argv++;

	for (i = 0; i < NELEM(cmds); i++) {
		if (strcmp(cmds[i].name, argv[0]) == 0 &&
1142
		    cmds[i].usage != NULL)
dp-arm's avatar
dp-arm committed
1143
1144
1145
1146
1147
1148
1149
1150
1151
			cmds[i].usage();
	}
	if (i == NELEM(cmds))
		printf("No help for subcommand '%s'\n", argv[0]);
	return 0;
}

static void usage(void)
{
1152
	printf("usage: fiptool [--verbose] <command> [<args>]\n");
dp-arm's avatar
dp-arm committed
1153
1154
	printf("Global options supported:\n");
	printf("  --verbose\tEnable verbose output for all commands.\n");
1155
	printf("\n");
dp-arm's avatar
dp-arm committed
1156
1157
1158
1159
1160
1161
1162
1163
1164
1165
1166
1167
1168
1169
1170
	printf("Commands supported:\n");
	printf("  info\t\tList images contained in FIP.\n");
	printf("  create\tCreate a new FIP with the given images.\n");
	printf("  update\tUpdate an existing FIP with the given images.\n");
	printf("  unpack\tUnpack images from FIP.\n");
	printf("  remove\tRemove images from FIP.\n");
	printf("  version\tShow fiptool version.\n");
	printf("  help\t\tShow help for given command.\n");
	exit(1);
}

int main(int argc, char *argv[])
{
	int i, ret = 0;

1171
1172
1173
1174
1175
1176
1177
1178
1179
1180
1181
1182
1183
1184
	while (1) {
		int c, opt_index = 0;
		static struct option opts[] = {
			{ "verbose", no_argument, NULL, 'v' },
			{ NULL, no_argument, NULL, 0 }
		};

		/*
		 * Set POSIX mode so getopt stops at the first non-option
		 * which is the subcommand.
		 */
		c = getopt_long(argc, argv, "+v", opts, &opt_index);
		if (c == -1)
			break;
dp-arm's avatar
dp-arm committed
1185

1186
1187
1188
1189
1190
		switch (c) {
		case 'v':
			verbose = 1;
			break;
		default:
1191
			usage();
1192
		}
dp-arm's avatar
dp-arm committed
1193
	}
1194
1195
1196
1197
1198
1199
1200
	argc -= optind;
	argv += optind;
	/* Reset optind for subsequent getopt processing. */
	optind = 0;

	if (argc == 0)
		usage();
dp-arm's avatar
dp-arm committed
1201

1202
	fill_image_descs();
dp-arm's avatar
dp-arm committed
1203
1204
1205
1206
1207
1208
1209
1210
	for (i = 0; i < NELEM(cmds); i++) {
		if (strcmp(cmds[i].name, argv[0]) == 0) {
			ret = cmds[i].handler(argc, argv);
			break;
		}
	}
	if (i == NELEM(cmds))
		usage();
1211
	free_image_descs();
dp-arm's avatar
dp-arm committed
1212
1213
	return ret;
}