blob: 31992048160550639b59511fea5f6b82583339c7 [file] [log] [blame]
Gyorgy Szing30fa9872017-12-05 01:08:47 +00001#-------------------------------------------------------------------------------
Jamie Foxb93da8b2018-12-13 18:27:30 +00002# Copyright (c) 2017-2019, Arm Limited. All rights reserved.
Gyorgy Szing30fa9872017-12-05 01:08:47 +00003#
4# SPDX-License-Identifier: BSD-3-Clause
5#
6#-------------------------------------------------------------------------------
7
8cmake_minimum_required(VERSION 3.7)
9
10#Tell cmake where our modules can be found
11list(APPEND CMAKE_MODULE_PATH ${CMAKE_CURRENT_LIST_DIR}/../cmake)
12
13#Include common stuff to control cmake.
14include("Common/BuildSys")
15
Gyorgy Szing5b15f852018-09-24 17:07:36 +020016#Include functionality to enable building the documentation.
17include("Common/BuildDoxygenDoc")
18
Gyorgy Szing30fa9872017-12-05 01:08:47 +000019#Start an embedded project.
20embedded_project_start(CONFIG "${CMAKE_CURRENT_LIST_DIR}/../ConfigDefault.cmake")
21project(tfm_s LANGUAGES ASM C)
22embedded_project_fixup()
23
Tamas Bandb69d522018-03-01 10:04:41 +000024set(SECURE_FW_DIR "${CMAKE_CURRENT_LIST_DIR}")
25set(TFM_ROOT_DIR "${SECURE_FW_DIR}/..")
26set(TEST_DIR "${TFM_ROOT_DIR}/test")
27set(INTERFACE_DIR "${TFM_ROOT_DIR}/interface")
Gyorgy Szing30fa9872017-12-05 01:08:47 +000028
Tamas Ban3109b302018-08-15 14:51:58 +010029if (NOT DEFINED TFM_LVL)
30 message(FATAL_ERROR "Incomplete build configuration: TFM_LVL is undefined. ")
Gyorgy Szing30fa9872017-12-05 01:08:47 +000031endif()
32
33include(${SECURE_FW_DIR}/spm/CMakeLists.inc)
Gyorgy Szing30fa9872017-12-05 01:08:47 +000034include(${SECURE_FW_DIR}/ns_callable/CMakeLists.inc)
Edison Aif09acd42018-09-20 14:00:07 +080035#Involve all IPC related sources in ipc's CMakeLists.inc, and switch core between IPC and Library.
Ken Liub79a6f52018-07-18 16:36:02 +080036if(TFM_PSA_API)
37 include(${SECURE_FW_DIR}/core/ipc/CMakeLists.inc)
Edison Aif09acd42018-09-20 14:00:07 +080038else()
39 include(${SECURE_FW_DIR}/core/CMakeLists.inc)
Ken Liub79a6f52018-07-18 16:36:02 +080040endif()
Gyorgy Szing30fa9872017-12-05 01:08:47 +000041
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000042set(BUILD_CMSIS_CORE On)
43set(BUILD_RETARGET On)
44set(BUILD_NATIVE_DRIVERS On)
45set(BUILD_STARTUP On)
46set(BUILD_TARGET_CFG On)
Marc Moreno Berengue4cc81fc2018-08-10 14:32:01 +010047# FIXME: The following TARGET flags are platform dependent.
48# It is required to add a mechanism to expose the
49# target capabilities and, based on them, set the
50# flags properly.
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000051set(BUILD_TARGET_HARDWARE_KEYS On)
Marc Moreno Berengue4cc81fc2018-08-10 14:32:01 +010052set(BUILD_TARGET_NV_COUNTERS On)
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000053set(BUILD_CMSIS_DRIVERS On)
54set(BUILD_TIME Off)
55set(BUILD_UART_STDOUT On)
Marc Moreno Berengue792fc682018-02-20 11:53:30 +000056set(BUILD_FLASH On)
Tamas Ban3681ce02018-11-22 15:19:24 +000057set(BUILD_BOOT_SEED On)
Tamas Ban38e17312018-11-22 15:26:35 +000058set(BUILD_DEVICE_ID On)
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000059if(NOT DEFINED PLATFORM_CMAKE_FILE)
60 message (FATAL_ERROR "Platform specific CMake is not defined. Please set PLATFORM_CMAKE_FILE.")
61elseif(NOT EXISTS ${PLATFORM_CMAKE_FILE})
62 message (FATAL_ERROR "Platform specific CMake \"${PLATFORM_CMAKE_FILE}\" file does not exist. Please fix value of PLATFORM_CMAKE_FILE.")
63else()
64 include(${PLATFORM_CMAKE_FILE})
65endif()
Gyorgy Szing30fa9872017-12-05 01:08:47 +000066
Mate Toth-Pal48fc6a02018-01-24 09:50:14 +010067if(NOT DEFINED S_SCATTER_FILE_NAME)
68 message(FATAL_ERROR "ERROR: Incomplete Configuration: S_SCATTER_FILE_NAME not defined, Include this file from a Config*.cmake")
69endif()
Gabor Kerteszd7d7d742018-07-04 11:50:05 +020070embedded_set_target_linker_file(TARGET ${PROJECT_NAME} PATH "${S_SCATTER_FILE_NAME}")
71
Gyorgy Szing30fa9872017-12-05 01:08:47 +000072embedded_target_include_directories(TARGET ${PROJECT_NAME} PATH ${TFM_ROOT_DIR} ABSOLUTE APPEND)
Tamas Bandb69d522018-03-01 10:04:41 +000073#Create an object library to avoid compiling all source files twice, when two executables
74#with different memory map need to be linked(BL2 non-swapping)
75set(PROJECT_OBJ_LIB ${PROJECT_NAME}_obj_lib)
76add_library(${PROJECT_OBJ_LIB} OBJECT ${ALL_SRC_C} ${ALL_SRC_C_S} ${ALL_SRC_ASM_S})
Gyorgy Szing30fa9872017-12-05 01:08:47 +000077
Tamas Bandb69d522018-03-01 10:04:41 +000078#Set common compiler flags
79config_setting_shared_compiler_flags(${PROJECT_OBJ_LIB})
80
Marc Moreno Berengue4cc81fc2018-08-10 14:32:01 +010081if(NOT DEFINED TARGET_NV_COUNTERS_ENABLE)
82 set(TARGET_NV_COUNTERS_ENABLE OFF)
83endif()
84
85if(TARGET_NV_COUNTERS_ENABLE)
86 embedded_set_target_compile_defines(TARGET ${PROJECT_OBJ_LIB} LANGUAGE C DEFINES TFM_NVCOUNTERS_ENABLE APPEND)
87endif()
88
Miklos Balint16a9ffb2018-11-19 11:35:49 +010089if (NOT DEFINED CORE_TEST)
90 message(FATAL_ERROR "Incomplete build configuration: CORE_TEST is undefined.")
91elseif(CORE_TEST)
Tamas Bandb69d522018-03-01 10:04:41 +000092 embedded_set_target_compile_defines(TARGET ${PROJECT_OBJ_LIB} LANGUAGE C DEFINES TFM_CORE_DEBUG TFM_PARTITION_TEST_CORE APPEND)
93endif()
94
Miklos Balint16a9ffb2018-11-19 11:35:49 +010095if (NOT DEFINED TFM_NS_CLIENT_IDENTIFICATION)
96 message(FATAL_ERROR "Incomplete build configuration: TFM_NS_CLIENT_IDENTIFICATION is undefined.")
97elseif (TFM_NS_CLIENT_IDENTIFICATION)
98 target_compile_definitions(${PROJECT_OBJ_LIB} PRIVATE TFM_NS_CLIENT_IDENTIFICATION)
99endif()
100
Mate Toth-Palcf32b902019-04-08 18:22:51 +0200101if (NOT DEFINED DEBUG_AUTHENTICATION)
102 set(DEBUG_AUTHENTICATION "DAUTH_CHIP_DEFAULT")
103endif()
104
Tamas Bandb69d522018-03-01 10:04:41 +0000105#Set include directories
106embedded_target_include_directories(TARGET ${PROJECT_OBJ_LIB} PATH ${TFM_ROOT_DIR} ABSOLUTE APPEND)
107
108# For the non-swapping BL2 configuration two executables need to be built.
109# One can be executed from flash partition slot_0 and other from slot_1.
110# Only the linking phase is different. This function captures common settings
111# and eliminates copy-paste.
112function(set_up_secure_fw_build)
113 set( _OPTIONS_ARGS) #Option (on/off) arguments (e.g. IGNORE_CASE)
114 set( _ONE_VALUE_ARGS S_TARGET VENEER_NAME POSTFIX) #Single option arguments (e.g. PATH "./foo/bar")
115 set( _MULTI_VALUE_ARGS LINK_DEFINES) #List arguments (e.g. LANGUAGES C ASM CXX)
116 cmake_parse_arguments(_MY_PARAMS "${_OPTIONS_ARGS}" "${_ONE_VALUE_ARGS}" "${_MULTI_VALUE_ARGS}" ${ARGN})
117
118 if (NOT DEFINED _MY_PARAMS_S_TARGET)
119 message(FATAL_ERROR "set_up_secure_fw_build(): mandatory parameter 'S_TARGET' missing.")
120 endif()
121
122 if (NOT DEFINED _MY_PARAMS_VENEER_NAME)
123 message(FATAL_ERROR "set_up_secure_fw_build(): mandatory parameter 'VENEER_NAME' missing.")
124 endif()
125
126 set(EXE_NAME ${_MY_PARAMS_S_TARGET}${_MY_PARAMS_POSTFIX})
127 set(VENEER_NAME ${_MY_PARAMS_VENEER_NAME}${_MY_PARAMS_POSTFIX}.o)
128
129 #Create linker target: add object library to executable
130 add_executable(${EXE_NAME} $<TARGET_OBJECTS:${PROJECT_OBJ_LIB}>)
131
132 #Set common linker flags
133 config_setting_shared_linker_flags(${EXE_NAME})
134
135 #Indicates to secure target(s) already created
136 set(TARGET_TFM_S_EXISTED True PARENT_SCOPE)
137
138 #Set individual linker flags per linker target/executable
139 foreach(flag ${_MY_PARAMS_LINK_DEFINES})
140 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "${flag}")
141 endforeach(flag)
142
Antonio de Angelis8908f472018-08-31 15:44:25 +0100143
Tamas Bandb69d522018-03-01 10:04:41 +0000144 embedded_set_target_linker_file(TARGET ${EXE_NAME} PATH "${S_SCATTER_FILE_NAME}")
145
Antonio de Angelis8908f472018-08-31 15:44:25 +0100146 add_dependencies(${EXE_NAME} tfm_crypto)
Tamas Bandb69d522018-03-01 10:04:41 +0000147 add_dependencies(${EXE_NAME} tfm_storage)
148 add_dependencies(${EXE_NAME} tfm_audit)
Marc Moreno Berengue8e0fa7a2018-10-04 18:25:13 +0100149 add_dependencies(${EXE_NAME} tfm_platform)
Tamas Bandb69d522018-03-01 10:04:41 +0000150 add_dependencies(${EXE_NAME} tfm_secure_tests)
Tamas Ban48a0eb52018-08-17 12:48:05 +0100151 add_dependencies(${EXE_NAME} tfm_attest)
Tamas Bandb69d522018-03-01 10:04:41 +0000152
153 #Set macro definitions for the project.
Mate Toth-Palcf32b902019-04-08 18:22:51 +0200154 embedded_set_target_compile_defines(TARGET ${PROJECT_OBJ_LIB} LANGUAGE C DEFINES __thumb2__ __ARM_FEATURE_CMSE=3 TFM_LVL=${TFM_LVL} ${DEBUG_AUTHENTICATION} APPEND)
Tamas Bandb69d522018-03-01 10:04:41 +0000155
Edison Ai7d6cb3b2018-09-19 16:41:50 +0800156 if (REGRESSION OR CORE_TEST OR CORE_IPC)
Jamie Foxb93da8b2018-12-13 18:27:30 +0000157 if (DEFINED TFM_PARTITION_TEST_SECURE_SERVICES AND TFM_PARTITION_TEST_SECURE_SERVICES)
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200158 #The test service veneers in the tfm_secure_tests library may not be
159 #referenced in the secure binary so the veneer objects are explicitly loaded
160 #from the secure tests library. However by generating the veneer files from
161 #the manifests, all the iovec interfaced veneers are in a single file in the
162 #secure_fw directory. The core test partitions use the veneers with the
Jamie Foxb93da8b2018-12-13 18:27:30 +0000163 #iovec API, so we only need the explicit load in case the secure client test
164 #partition is present.
165 #FIXME Remove the explicit load and the above comment once the secure client
166 #test partition uses the generated veneers.
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200167 if(${COMPILER} STREQUAL "ARMCLANG")
Tamas Ban85c1c912019-02-14 13:25:51 +0000168 target_link_libraries(${EXE_NAME} tfm_attest tfm_secure_tests tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform $<TARGET_LINKER_FILE:tfm_secure_tests>\(*veneers.o\) tfm_attest)
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200169 elseif(${COMPILER} STREQUAL "GNUARM")
Tamas Ban85c1c912019-02-14 13:25:51 +0000170 target_link_libraries(${EXE_NAME} tfm_attest tfm_secure_tests tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform tfm_attest)
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200171 else()
172 message(FATAL_ERROR "unknown compiler" )
173 endif()
Tamas Bandb69d522018-03-01 10:04:41 +0000174 else()
Tamas Ban85c1c912019-02-14 13:25:51 +0000175 target_link_libraries(${EXE_NAME} tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform tfm_secure_tests tfm_attest)
Tamas Bandb69d522018-03-01 10:04:41 +0000176 endif()
177 else()
Tamas Ban85c1c912019-02-14 13:25:51 +0000178 target_link_libraries(${EXE_NAME} tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform tfm_attest)
Tamas Bandb69d522018-03-01 10:04:41 +0000179 endif()
180
Antonio de Angelis8908f472018-08-31 15:44:25 +0100181
Tamas Bandb69d522018-03-01 10:04:41 +0000182 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_LVL=${TFM_LVL}")
183
184 if (NOT DEFINED TFM_PARTITION_TEST_CORE)
185 message(FATAL_ERROR "Incomplete build configuration: TFM_PARTITION_TEST_CORE is undefined. ")
186 elseif (TFM_PARTITION_TEST_CORE)
187 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_PARTITION_TEST_CORE")
188 endif()
189
Tamas Bandb69d522018-03-01 10:04:41 +0000190 if (NOT DEFINED TFM_PARTITION_TEST_SECURE_SERVICES)
191 message(FATAL_ERROR "Incomplete build configuration: TFM_PARTITION_TEST_SECURE_SERVICES is undefined. ")
192 elseif (TFM_PARTITION_TEST_SECURE_SERVICES)
193 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_PARTITION_TEST_SECURE_SERVICES")
194 endif()
195
Marc Moreno Berenguecae2c532018-10-09 12:58:46 +0100196 if (NOT DEFINED TEST_FRAMEWORK_S)
197 message(FATAL_ERROR "Incomplete build configuration: TEST_FRAMEWORK_S is undefined.")
198 elseif (TEST_FRAMEWORK_S)
199 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TEST_FRAMEWORK_S")
200 endif()
201
202 if (NOT DEFINED TEST_FRAMEWORK_NS)
203 message(FATAL_ERROR "Incomplete build configuration: TEST_FRAMEWORK_NS is undefined.")
204 elseif (TEST_FRAMEWORK_NS)
205 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TEST_FRAMEWORK_NS")
206 endif()
207
Tamas Bandb69d522018-03-01 10:04:41 +0000208 if (NOT DEFINED BL2)
209 message(FATAL_ERROR "Incomplete build configuration: BL2 is undefined. ")
210 elseif (BL2)
211 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "BL2")
212 endif()
213
Summer Qin11883012018-07-04 16:36:21 +0800214 if (NOT DEFINED TFM_PSA_API)
215 message(FATAL_ERROR "Incomplete build configuration: TFM_PSA_API is undefined. ")
216 elseif (TFM_PSA_API)
217 embedded_set_target_link_defines(TARGET ${PROJECT_NAME} DEFINES "TFM_PSA_API")
218 endif()
219
Tamas Bandb69d522018-03-01 10:04:41 +0000220 if(CORE_TEST)
221 set(SECURE_AXF_DIR_PREFIX "${CMAKE_BINARY_DIR}/unit_test/")
222 set_target_properties(${EXE_NAME} PROPERTIES RUNTIME_OUTPUT_DIRECTORY ${SECURE_AXF_DIR_PREFIX})
223 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_PARTITION_TEST_CORE")
224 endif()
225
226 if(NOT DEFINED PLATFORM_LINK_INCLUDES)
227 message(FATAL_ERROR "ERROR: Incomplete Configuration: PLATFORM_LINK_INCLUDES is not defined.")
228 endif()
229 embedded_set_target_link_includes(TARGET ${EXE_NAME} INCLUDES "${PLATFORM_LINK_INCLUDES}")
230
231 #Generate binary file from executable
232 compiler_generate_binary_output(${EXE_NAME})
233
234 #Configure where we put the CMSE veneers generated by the compiler.
235 if (DEFINED S_VENEER_FILE_LOCATION)
236 set(S_VENEER_FILE "${S_VENEER_FILE_LOCATION}/${VENEER_NAME}")
237 else()
238 set(S_VENEER_FILE "${CMAKE_CURRENT_BINARY_DIR}/${VENEER_NAME}")
239 endif()
240 compiler_set_cmse_output(${EXE_NAME} "${S_VENEER_FILE}")
241
242 #Configure what file shall be installed.
243 #Set install location. Keep original value to avoid overriding command line settings.
244 if(CMAKE_INSTALL_PREFIX_INITIALIZED_TO_DEFAULT)
245 set(CMAKE_INSTALL_PREFIX "${CMAKE_BINARY_DIR}/install" CACHE PATH "Default install location for secure_fw." FORCE)
246 endif()
247
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200248 #Export files needed to interface external applications at: <build_dir>/install/export/tfm/
Tamas Bandb69d522018-03-01 10:04:41 +0000249 install(DIRECTORY ${TFM_ROOT_DIR}/interface/include/
Tamas Ban57bfa432018-04-13 16:05:49 +0100250 DESTINATION export/tfm/inc)
Tamas Bandb69d522018-03-01 10:04:41 +0000251
252 install(DIRECTORY ${TFM_ROOT_DIR}/interface/src/
Tamas Ban57bfa432018-04-13 16:05:49 +0100253 DESTINATION export/tfm/src)
Tamas Bandb69d522018-03-01 10:04:41 +0000254
Tamas Ban57bfa432018-04-13 16:05:49 +0100255 install(FILES ${S_VENEER_FILE} DESTINATION export/tfm/veneers)
Tamas Bandb69d522018-03-01 10:04:41 +0000256
Tamas Ban57bfa432018-04-13 16:05:49 +0100257 #Collect executables to common location: <build_dir>/install/outputs/
Tamas Bandb69d522018-03-01 10:04:41 +0000258 if (DEFINED SECURE_AXF_DIR_PREFIX)
259 set(MY_BINARY_DIR ${SECURE_AXF_DIR_PREFIX})
260 else()
261 set(MY_BINARY_DIR ${CMAKE_CURRENT_BINARY_DIR})
262 endif()
263
264 install(FILES ${MY_BINARY_DIR}/${EXE_NAME}.axf
265 ${MY_BINARY_DIR}/${EXE_NAME}.bin
266 DESTINATION outputs/${TARGET_PLATFORM}/)
267
268 install(FILES ${MY_BINARY_DIR}/${EXE_NAME}.axf
269 ${MY_BINARY_DIR}/${EXE_NAME}.bin
270 DESTINATION outputs/fvp/)
271endfunction()
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000272
273#Adds the test directory
274add_subdirectory(${TFM_ROOT_DIR}/test ${CMAKE_BINARY_DIR}/test)
275
Antonio de Angelis8908f472018-08-31 15:44:25 +0100276#Add the crypto library target
277add_subdirectory(${SECURE_FW_DIR}/services/crypto)
278
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000279#Add the secure storage library target
280add_subdirectory(${SECURE_FW_DIR}/services/secure_storage)
Tamas Bandb69d522018-03-01 10:04:41 +0000281
Antonio de Angeliscc657b32018-02-05 15:56:47 +0000282#Add the audit logging library target
283add_subdirectory(${SECURE_FW_DIR}/services/audit_logging)
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000284
Marc Moreno Berengue8e0fa7a2018-10-04 18:25:13 +0100285#Add the platform service library target
286add_subdirectory(${SECURE_FW_DIR}/services/platform)
287
Tamas Ban48a0eb52018-08-17 12:48:05 +0100288#Add the initial attestation service library target
289add_subdirectory(${SECURE_FW_DIR}/services/initial_attestation)
290
Tamas Bandb69d522018-03-01 10:04:41 +0000291if (LINK_TO_BOTH_MEMORY_REGION)
292 #Link to primary memory region
293 set_up_secure_fw_build(S_TARGET ${PROJECT_NAME}
294 VENEER_NAME s_veneers
295 POSTFIX "_0")
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000296
Tamas Bandb69d522018-03-01 10:04:41 +0000297 #Link to secondary memory region(add extra linker flag)
298 set_up_secure_fw_build(S_TARGET ${PROJECT_NAME}
299 LINK_DEFINES "LINK_TO_SECONDARY_PARTITION"
300 VENEER_NAME s_veneers
301 POSTFIX "_1")
Jamie Fox5592db02017-12-18 16:48:29 +0000302else()
Tamas Bandb69d522018-03-01 10:04:41 +0000303 #Link to primary memory region only
304 set_up_secure_fw_build(S_TARGET ${PROJECT_NAME}
305 VENEER_NAME s_veneers)
Jamie Fox5592db02017-12-18 16:48:29 +0000306endif()
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000307
Tamas Bandb69d522018-03-01 10:04:41 +0000308#Finally let CMake system apply changes after the whole project is defined.
309if (TARGET ${PROJECT_NAME})
310 embedded_project_end(${PROJECT_NAME})
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000311endif()
312
Tamas Bandb69d522018-03-01 10:04:41 +0000313if (TARGET ${PROJECT_NAME}_0)
314 embedded_project_end(${PROJECT_NAME}_0)
Jamie Fox5592db02017-12-18 16:48:29 +0000315endif()
316
Tamas Bandb69d522018-03-01 10:04:41 +0000317if (TARGET ${PROJECT_NAME}_1)
318 embedded_project_end(${PROJECT_NAME}_1)
Ben Davis6d7256b2018-04-18 14:16:53 +0100319endif()
320
Tamas Bandb69d522018-03-01 10:04:41 +0000321embedded_project_end(${PROJECT_OBJ_LIB})