blob: ed9264f1dbcc23e5b32cca0b10a9d85901da4bbf [file] [log] [blame]
Tamas Ban48a0eb52018-08-17 12:48:05 +01001/*
Tamas Banb6b80562019-01-04 22:49:24 +00002 * Copyright (c) 2018-2019, Arm Limited. All rights reserved.
Tamas Ban48a0eb52018-08-17 12:48:05 +01003 *
4 * SPDX-License-Identifier: BSD-3-Clause
5 *
6 */
7
Jamie Foxcc31d402019-01-28 17:13:52 +00008#include "psa/initial_attestation.h"
Tamas Banb6b80562019-01-04 22:49:24 +00009#include "tfm_veneers.h"
Antonio de Angelis05b24192019-07-04 15:28:46 +010010#include "tfm_ns_interface.h"
Jamie Foxcc31d402019-01-28 17:13:52 +000011#include "psa/client.h"
David Vinczeff6da532019-11-21 00:19:50 +010012#include "psa/crypto_types.h"
Edison Ai870abb42019-06-21 11:14:08 +080013#include "psa_manifest/sid.h"
Kevin Peng2ed30222019-04-30 09:26:11 +080014
15#define IOVEC_LEN(x) (sizeof(x)/sizeof(x[0]))
Tamas Ban48a0eb52018-08-17 12:48:05 +010016
17enum psa_attest_err_t
18psa_initial_attest_get_token(const uint8_t *challenge_obj,
19 uint32_t challenge_size,
20 uint8_t *token,
21 uint32_t *token_size)
22{
Kevin Peng2ed30222019-04-30 09:26:11 +080023 psa_handle_t handle = PSA_NULL_HANDLE;
24 psa_status_t status;
Kevin Peng9449a362019-07-29 16:05:42 +080025
Kevin Peng2ed30222019-04-30 09:26:11 +080026 psa_invec in_vec[] = {
27 {challenge_obj, challenge_size}
28 };
29 psa_outvec out_vec[] = {
30 {token, *token_size}
31 };
Tamas Ban48a0eb52018-08-17 12:48:05 +010032
Kevin Peng2ed30222019-04-30 09:26:11 +080033 handle = psa_connect(TFM_ATTEST_GET_TOKEN_SID,
Edison Ai870abb42019-06-21 11:14:08 +080034 TFM_ATTEST_GET_TOKEN_VERSION);
Kevin Peng2ed30222019-04-30 09:26:11 +080035 if (handle <= 0) {
36 return PSA_ATTEST_ERR_GENERAL;
37 }
Tamas Ban48a0eb52018-08-17 12:48:05 +010038
Summer Qin4b1d03b2019-07-02 14:56:08 +080039 status = psa_call(handle, PSA_IPC_CALL,
Kevin Peng2ed30222019-04-30 09:26:11 +080040 in_vec, IOVEC_LEN(in_vec),
41 out_vec, IOVEC_LEN(out_vec));
42 psa_close(handle);
Tamas Ban48a0eb52018-08-17 12:48:05 +010043
Kevin Peng2ed30222019-04-30 09:26:11 +080044 if (status < PSA_SUCCESS) {
45 return PSA_ATTEST_ERR_GENERAL;
46 }
47
48 if (status == PSA_SUCCESS) {
49 *token_size = out_vec[0].len;
50 }
51
52 return (enum psa_attest_err_t)status;
Tamas Banb6b80562019-01-04 22:49:24 +000053}
54
55enum psa_attest_err_t
56psa_initial_attest_get_token_size(uint32_t challenge_size,
57 uint32_t *token_size)
58{
Kevin Peng2ed30222019-04-30 09:26:11 +080059 psa_handle_t handle = PSA_NULL_HANDLE;
60 psa_status_t status;
Kevin Peng2ed30222019-04-30 09:26:11 +080061 psa_invec in_vec[] = {
62 {&challenge_size, sizeof(challenge_size)}
63 };
64 psa_outvec out_vec[] = {
65 {token_size, sizeof(uint32_t)}
66 };
Tamas Banb6b80562019-01-04 22:49:24 +000067
Kevin Peng2ed30222019-04-30 09:26:11 +080068 handle = psa_connect(TFM_ATTEST_GET_TOKEN_SIZE_SID,
Edison Ai870abb42019-06-21 11:14:08 +080069 TFM_ATTEST_GET_TOKEN_SIZE_VERSION);
Kevin Peng2ed30222019-04-30 09:26:11 +080070 if (handle <= 0) {
71 return PSA_ATTEST_ERR_GENERAL;
72 }
Tamas Banb6b80562019-01-04 22:49:24 +000073
Summer Qin4b1d03b2019-07-02 14:56:08 +080074 status = psa_call(handle, PSA_IPC_CALL,
Kevin Peng2ed30222019-04-30 09:26:11 +080075 in_vec, IOVEC_LEN(in_vec),
76 out_vec, IOVEC_LEN(out_vec));
77 psa_close(handle);
Tamas Banb6b80562019-01-04 22:49:24 +000078
Kevin Peng2ed30222019-04-30 09:26:11 +080079 if (status < PSA_SUCCESS) {
80 return PSA_ATTEST_ERR_GENERAL;
81 }
82
83 return (enum psa_attest_err_t)status;
Tamas Ban48a0eb52018-08-17 12:48:05 +010084}
David Vinczeff6da532019-11-21 00:19:50 +010085
86enum psa_attest_err_t
87tfm_initial_attest_get_public_key(uint8_t *public_key,
88 size_t public_key_buf_size,
89 size_t *public_key_len,
90 psa_ecc_curve_t *elliptic_curve_type)
91{
92 psa_handle_t handle = PSA_NULL_HANDLE;
93 psa_status_t status;
94
95 psa_outvec out_vec[] = {
96 {.base = public_key, .len = public_key_buf_size},
97 {.base = elliptic_curve_type, .len = sizeof(*elliptic_curve_type)},
98 {.base = public_key_len, .len = sizeof(*public_key_len)}
99 };
100
101 handle = psa_connect(TFM_ATTEST_GET_PUBLIC_KEY_SID,
102 TFM_ATTEST_GET_PUBLIC_KEY_VERSION);
103 if (!PSA_HANDLE_IS_VALID(handle)) {
104 return PSA_ATTEST_ERR_GENERAL;
105 }
106
107 status = psa_call(handle, PSA_IPC_CALL,
108 NULL, 0,
109 out_vec, IOVEC_LEN(out_vec));
110 psa_close(handle);
111
112 return (enum psa_attest_err_t)status;
113}