Jamie Fox | e7f8b4e | 2023-05-30 18:03:20 +0100 | [diff] [blame] | 1 | /* |
Tamas Ban | a5e2f58 | 2024-01-25 16:59:26 +0100 | [diff] [blame] | 2 | * Copyright (c) 2023-2024, Arm Limited. All rights reserved. |
Jamie Fox | e7f8b4e | 2023-05-30 18:03:20 +0100 | [diff] [blame] | 3 | * |
| 4 | * SPDX-License-Identifier: BSD-3-Clause |
| 5 | * |
| 6 | */ |
| 7 | |
| 8 | #include "dpe_log.h" |
Maulik Patel | ad2f3db | 2023-05-17 15:41:36 +0100 | [diff] [blame] | 9 | #include "dpe_context_mngr.h" |
Jamie Fox | e7f8b4e | 2023-05-30 18:03:20 +0100 | [diff] [blame] | 10 | |
| 11 | #if (TFM_PARTITION_LOG_LEVEL >= TFM_PARTITION_LOG_LEVEL_DEBUG) |
Maulik Patel | 780943f | 2024-03-14 11:40:14 +0000 | [diff] [blame] | 12 | #define LOG_BOOL_VAL(arg) ((arg) ? "true" : "false") |
Jamie Fox | e7f8b4e | 2023-05-30 18:03:20 +0100 | [diff] [blame] | 13 | |
| 14 | static void print_byte_array(const uint8_t *array, size_t len) |
| 15 | { |
| 16 | size_t i; |
| 17 | |
| 18 | if (array != NULL) { |
| 19 | for (i = 0; i < len; ++i) { |
| 20 | if ((i & 0xF) == 0) { |
| 21 | LOG_DBGFMT("\r\n "); |
| 22 | } |
| 23 | if (array[i] < 0x10) { |
| 24 | LOG_DBGFMT(" 0%x", array[i]); |
| 25 | } else { |
| 26 | LOG_DBGFMT(" %x", array[i]); |
| 27 | } |
| 28 | } |
| 29 | } |
| 30 | |
| 31 | LOG_DBGFMT("\r\n"); |
| 32 | } |
| 33 | |
| 34 | static void log_dice_inputs(const DiceInputValues *input) |
| 35 | { |
| 36 | LOG_DBGFMT(" - DICE code_hash ="); |
| 37 | print_byte_array(input->code_hash, sizeof(input->code_hash)); |
| 38 | LOG_DBGFMT(" - DICE code_descriptor ="); |
| 39 | print_byte_array(input->code_descriptor, input->code_descriptor_size); |
| 40 | LOG_DBGFMT(" - DICE config_type = %d\r\n", input->config_type); |
| 41 | LOG_DBGFMT(" - DICE config_value ="); |
| 42 | print_byte_array(input->config_value, sizeof(input->config_value)); |
| 43 | LOG_DBGFMT(" - DICE config_descriptor ="); |
| 44 | print_byte_array(input->config_descriptor, input->config_descriptor_size); |
| 45 | LOG_DBGFMT(" - DICE authority_hash ="); |
| 46 | print_byte_array(input->authority_hash, sizeof(input->authority_hash)); |
| 47 | LOG_DBGFMT(" - DICE authority_descriptor ="); |
| 48 | print_byte_array(input->authority_descriptor, |
| 49 | input->authority_descriptor_size); |
| 50 | LOG_DBGFMT(" - DICE mode = %d\r\n", input->mode); |
| 51 | LOG_DBGFMT(" - DICE hidden ="); |
| 52 | print_byte_array(input->hidden, sizeof(input->hidden)); |
| 53 | } |
| 54 | |
Maulik Patel | ad2f3db | 2023-05-17 15:41:36 +0100 | [diff] [blame] | 55 | void log_derive_rot_context(const DiceInputValues *dice_inputs) |
| 56 | { |
| 57 | LOG_DBGFMT("DPE DeriveRoTContext:\r\n"); |
| 58 | log_dice_inputs(dice_inputs); |
| 59 | } |
| 60 | |
Maulik Patel | 9a2a567 | 2024-03-14 13:43:58 +0000 | [diff] [blame] | 61 | static void log_handle(int context_handle) |
| 62 | { |
| 63 | LOG_DBGFMT(" index - %d,", GET_IDX(context_handle)); |
| 64 | LOG_DBGFMT(" nonce - 0x%x\r\n", GET_NONCE(context_handle)); |
| 65 | } |
| 66 | |
Maulik Patel | a81605b | 2023-10-24 12:17:03 +0100 | [diff] [blame] | 67 | void log_derive_context(int context_handle, |
Maulik Patel | cb14cde | 2024-01-23 12:39:53 +0000 | [diff] [blame] | 68 | uint32_t cert_id, |
Maulik Patel | a81605b | 2023-10-24 12:17:03 +0100 | [diff] [blame] | 69 | bool retain_parent_context, |
| 70 | bool allow_new_context_to_derive, |
| 71 | bool create_certificate, |
| 72 | const DiceInputValues *dice_inputs, |
| 73 | int32_t client_id) |
Jamie Fox | e7f8b4e | 2023-05-30 18:03:20 +0100 | [diff] [blame] | 74 | { |
Maulik Patel | a81605b | 2023-10-24 12:17:03 +0100 | [diff] [blame] | 75 | LOG_DBGFMT("DPE DeriveContext:\r\n"); |
Maulik Patel | 9a2a567 | 2024-03-14 13:43:58 +0000 | [diff] [blame] | 76 | LOG_DBGFMT(" - input context handle:"); |
| 77 | log_handle(context_handle); |
Maulik Patel | cb14cde | 2024-01-23 12:39:53 +0000 | [diff] [blame] | 78 | LOG_DBGFMT(" - cert_id = 0x%x\r\n", cert_id); |
Maulik Patel | 780943f | 2024-03-14 11:40:14 +0000 | [diff] [blame] | 79 | LOG_DBGFMT(" - retain_parent_context = %s\r\n", LOG_BOOL_VAL(retain_parent_context)); |
| 80 | LOG_DBGFMT(" - allow_new_context_to_derive = %s\r\n", LOG_BOOL_VAL(allow_new_context_to_derive)); |
| 81 | LOG_DBGFMT(" - create_certificate = %s\r\n", LOG_BOOL_VAL(create_certificate)); |
Jamie Fox | e7f8b4e | 2023-05-30 18:03:20 +0100 | [diff] [blame] | 82 | log_dice_inputs(dice_inputs); |
Maulik Patel | ad2f3db | 2023-05-17 15:41:36 +0100 | [diff] [blame] | 83 | LOG_DBGFMT(" - client_id = %d\r\n", client_id); |
Jamie Fox | e7f8b4e | 2023-05-30 18:03:20 +0100 | [diff] [blame] | 84 | } |
| 85 | |
Maulik Patel | 54d65f7 | 2023-06-28 13:04:36 +0100 | [diff] [blame] | 86 | void log_destroy_context(int context_handle, bool destroy_recursively) |
| 87 | { |
| 88 | LOG_DBGFMT("DPE DestroyContext:\r\n"); |
Maulik Patel | 9a2a567 | 2024-03-14 13:43:58 +0000 | [diff] [blame] | 89 | LOG_DBGFMT(" - input context handle:"); |
| 90 | log_handle(context_handle); |
Maulik Patel | 780943f | 2024-03-14 11:40:14 +0000 | [diff] [blame] | 91 | LOG_DBGFMT(" - destroy_recursively = %s\r\n", LOG_BOOL_VAL(destroy_recursively)); |
Maulik Patel | 54d65f7 | 2023-06-28 13:04:36 +0100 | [diff] [blame] | 92 | } |
| 93 | |
Jamie Fox | e7f8b4e | 2023-05-30 18:03:20 +0100 | [diff] [blame] | 94 | void log_certify_key(int context_handle, |
| 95 | bool retain_context, |
| 96 | const uint8_t *public_key, |
| 97 | size_t public_key_size, |
| 98 | const uint8_t *label, |
| 99 | size_t label_size) |
| 100 | { |
| 101 | LOG_DBGFMT("DPE CertifyKey:\r\n"); |
Maulik Patel | 9a2a567 | 2024-03-14 13:43:58 +0000 | [diff] [blame] | 102 | LOG_DBGFMT(" - input context handle:"); |
| 103 | log_handle(context_handle); |
Maulik Patel | 780943f | 2024-03-14 11:40:14 +0000 | [diff] [blame] | 104 | LOG_DBGFMT(" - retain_context = %s\r\n", LOG_BOOL_VAL(retain_context)); |
Jamie Fox | e7f8b4e | 2023-05-30 18:03:20 +0100 | [diff] [blame] | 105 | LOG_DBGFMT(" - public_key ="); |
| 106 | print_byte_array(public_key, public_key_size); |
| 107 | LOG_DBGFMT(" - label ="); |
| 108 | print_byte_array(label, label_size); |
| 109 | } |
| 110 | |
Maulik Patel | 83a6b59 | 2023-12-05 15:20:30 +0000 | [diff] [blame] | 111 | void log_get_certificate_chain(int context_handle, |
| 112 | bool retain_context, |
Tamas Ban | a5e2f58 | 2024-01-25 16:59:26 +0100 | [diff] [blame] | 113 | bool clear_from_context, |
| 114 | size_t cert_chain_buf_size) |
Maulik Patel | 83a6b59 | 2023-12-05 15:20:30 +0000 | [diff] [blame] | 115 | { |
| 116 | LOG_DBGFMT("DPE GetCertificateChain:\r\n"); |
Maulik Patel | 9a2a567 | 2024-03-14 13:43:58 +0000 | [diff] [blame] | 117 | LOG_DBGFMT(" - input context handle:"); |
| 118 | log_handle(context_handle); |
Maulik Patel | 780943f | 2024-03-14 11:40:14 +0000 | [diff] [blame] | 119 | LOG_DBGFMT(" - retain_context = %s\r\n", LOG_BOOL_VAL(retain_context)); |
| 120 | LOG_DBGFMT(" - clear_from_context = %s\r\n", LOG_BOOL_VAL(clear_from_context)); |
Tamas Ban | a5e2f58 | 2024-01-25 16:59:26 +0100 | [diff] [blame] | 121 | LOG_DBGFMT(" - cert_chain_buf_size = %d\r\n", cert_chain_buf_size); |
Maulik Patel | 83a6b59 | 2023-12-05 15:20:30 +0000 | [diff] [blame] | 122 | } |
| 123 | |
Maulik Patel | 97a61fe | 2024-07-01 15:55:04 +0100 | [diff] [blame] | 124 | void log_intermediate_certificate(uint16_t cert_ctx_idx, |
Maulik Patel | 2358bbb | 2023-07-21 10:56:56 +0100 | [diff] [blame] | 125 | const uint8_t *cert_buf, |
Tamas Ban | 7daae9e | 2024-04-03 13:54:34 +0200 | [diff] [blame] | 126 | size_t cert_size) |
Maulik Patel | 2358bbb | 2023-07-21 10:56:56 +0100 | [diff] [blame] | 127 | { |
| 128 | LOG_DBGFMT("DPE Intermediate Certificate:\r\n"); |
Maulik Patel | 97a61fe | 2024-07-01 15:55:04 +0100 | [diff] [blame] | 129 | LOG_DBGFMT(" - certificate context index = %d\r\n", cert_ctx_idx); |
Tamas Ban | 7daae9e | 2024-04-03 13:54:34 +0200 | [diff] [blame] | 130 | LOG_DBGFMT(" - size = %d\r\n", cert_size); |
Maulik Patel | 2358bbb | 2023-07-21 10:56:56 +0100 | [diff] [blame] | 131 | LOG_DBGFMT(" - certificate ="); |
Tamas Ban | 7daae9e | 2024-04-03 13:54:34 +0200 | [diff] [blame] | 132 | print_byte_array(cert_buf, cert_size); |
Maulik Patel | 2358bbb | 2023-07-21 10:56:56 +0100 | [diff] [blame] | 133 | } |
| 134 | |
Maulik Patel | e6adc11 | 2023-08-18 14:21:51 +0100 | [diff] [blame] | 135 | void log_certificate_chain(const uint8_t *certificate_chain_buf, |
| 136 | size_t certificate_chain_size) |
| 137 | { |
| 138 | LOG_DBGFMT("DPE Certificate Chain:\r\n"); |
| 139 | LOG_DBGFMT(" - size = %d\r\n", certificate_chain_size); |
| 140 | print_byte_array(certificate_chain_buf, certificate_chain_size); |
| 141 | } |
| 142 | |
Maulik Patel | 9a2a567 | 2024-03-14 13:43:58 +0000 | [diff] [blame] | 143 | void log_derive_context_output_handles(int parent_context_handle, |
| 144 | int new_context_handle) |
| 145 | { |
| 146 | LOG_DBGFMT("DPE DeriveContext output handles:\r\n"); |
| 147 | LOG_DBGFMT(" - parent context handle:"); |
| 148 | log_handle(parent_context_handle); |
| 149 | LOG_DBGFMT(" - new context handle:"); |
| 150 | log_handle(new_context_handle); |
| 151 | } |
| 152 | |
| 153 | void log_certify_key_output_handle(int new_context_handle) |
| 154 | { |
| 155 | LOG_DBGFMT("DPE CertifyKey output handle:\r\n"); |
| 156 | LOG_DBGFMT(" - new context handle:"); |
| 157 | log_handle(new_context_handle); |
| 158 | } |
| 159 | |
| 160 | void log_get_certificate_chain_output_handle(int new_context_handle) |
| 161 | { |
| 162 | LOG_DBGFMT("DPE GetCertificateChain output handle:\r\n"); |
| 163 | LOG_DBGFMT(" - new context handle:"); |
| 164 | log_handle(new_context_handle); |
| 165 | } |
| 166 | |
Maulik Patel | 5ac8780 | 2024-03-14 14:22:19 +0000 | [diff] [blame] | 167 | void log_dpe_component_ctx_metadata(const struct component_context_t *ctx_ptr, |
| 168 | int component_index) |
| 169 | { |
| 170 | LOG_DBGFMT(" DPE component_ctx_array[%d]: \r\n", component_index); |
| 171 | LOG_DBGFMT(" - in_use = %s\r\n", LOG_BOOL_VAL(ctx_ptr->in_use)); |
| 172 | LOG_DBGFMT(" - is_allowed_to_derive = %s\r\n", |
| 173 | LOG_BOOL_VAL(ctx_ptr->is_allowed_to_derive)); |
| 174 | LOG_DBGFMT(" - is_export_cdi_allowed = %s\r\n", |
| 175 | LOG_BOOL_VAL(ctx_ptr->is_export_cdi_allowed)); |
| 176 | LOG_DBGFMT(" - nonce = 0x%x\r\n", ctx_ptr->nonce); |
| 177 | LOG_DBGFMT(" - parent_idx = %d\r\n", ctx_ptr->parent_idx); |
Maulik Patel | 97a61fe | 2024-07-01 15:55:04 +0100 | [diff] [blame] | 178 | LOG_DBGFMT(" - linked_cert_ctx_idx = %d\r\n", ctx_ptr->linked_cert_ctx_idx); |
Maulik Patel | 5ac8780 | 2024-03-14 14:22:19 +0000 | [diff] [blame] | 179 | LOG_DBGFMT(" - target_locality = %d\r\n", ctx_ptr->target_locality); |
| 180 | LOG_DBGFMT(" - expected_mhu_id = %u\r\n", ctx_ptr->expected_mhu_id); |
| 181 | } |
| 182 | |
Maulik Patel | 97a61fe | 2024-07-01 15:55:04 +0100 | [diff] [blame] | 183 | void log_dpe_cert_ctx_metadata(const struct cert_context_t *ctx_ptr, |
| 184 | uint16_t cert_ctx_idx) |
Maulik Patel | 5ac8780 | 2024-03-14 14:22:19 +0000 | [diff] [blame] | 185 | { |
Maulik Patel | 97a61fe | 2024-07-01 15:55:04 +0100 | [diff] [blame] | 186 | LOG_DBGFMT(" DPE cert_ctx_array[%d]: \r\n", cert_ctx_idx); |
Maulik Patel | 5ac8780 | 2024-03-14 14:22:19 +0000 | [diff] [blame] | 187 | LOG_DBGFMT(" - cert_id = 0x%x\r\n", ctx_ptr->cert_id); |
Maulik Patel | 97a61fe | 2024-07-01 15:55:04 +0100 | [diff] [blame] | 188 | LOG_DBGFMT(" - parent_cert_ctx_idx = %d\r\n", ctx_ptr->parent_cert_ctx_idx); |
Maulik Patel | 5ac8780 | 2024-03-14 14:22:19 +0000 | [diff] [blame] | 189 | LOG_DBGFMT(" - state = %d\r\n", ctx_ptr->state); |
| 190 | LOG_DBGFMT(" - is_external_pub_key_provided = %s\r\n", |
| 191 | LOG_BOOL_VAL(ctx_ptr->is_external_pub_key_provided)); |
| 192 | LOG_DBGFMT(" - is_cdi_to_be_exported = %s\r\n", |
| 193 | LOG_BOOL_VAL(ctx_ptr->is_cdi_to_be_exported)); |
| 194 | } |
| 195 | |
Jamie Fox | e7f8b4e | 2023-05-30 18:03:20 +0100 | [diff] [blame] | 196 | #endif /* TFM_PARTITION_LOG_LEVEL */ |