blob: 4af5a484d71d76dd43cf5df748dd4623d3889212 [file] [log] [blame]
Julian Hall527ddd52021-06-28 11:57:17 +01001/*
2 * Copyright (c) 2021, Arm Limited and Contributors. All rights reserved.
3 *
4 * SPDX-License-Identifier: BSD-3-Clause
5 */
6
7#include <stddef.h>
8#include <rpc/common/endpoint/rpc_interface.h>
9#include <service/attestation/provider/attest_provider.h>
10#include <service/attestation/provider/serializer/packed-c/packedc_attest_provider_serializer.h>
11#include <service/crypto/provider/mbedcrypto/crypto_provider.h>
12#include <service/crypto/provider/serializer/protobuf/pb_crypto_provider_serializer.h>
13#include <service/crypto/provider/serializer/packed-c/packedc_crypto_provider_serializer.h>
14#include <components/service/secure_storage/frontend/secure_storage_provider/secure_storage_provider.h>
15
16/* Not needed once proxy backends added */
17#include <service/attestation/claims/claims_register.h>
18#include <service/attestation/claims/sources/event_log/event_log_claim_source.h>
19#include <service/attestation/claims/sources/boot_seed_generator/boot_seed_generator.h>
20#include <service/attestation/claims/sources/null_lifecycle/null_lifecycle_claim_source.h>
21#include <service/attestation/claims/sources/instance_id/instance_id_claim_source.h>
22#include <service/secure_storage/backend/secure_flash_store/secure_flash_store.h>
23
24
25/* A shared storage backend - should be removed when proxy backends are added */
26static struct storage_backend *shared_storage_backend = NULL;
27
28
29struct rpc_interface *attest_proxy_create(void)
30{
31 struct rpc_interface *attest_iface;
32 struct claim_source *claim_source;
33
34 /* Static objects for proxy instance */
35 static struct attest_provider attest_provider;
36
37 /* Claim sources for deployment */
38 static struct event_log_claim_source event_log_claim_source;
39 static struct boot_seed_generator boot_seed_claim_source;
40 static struct null_lifecycle_claim_source lifecycle_claim_source;
41 static struct instance_id_claim_source instance_id_claim_source;
42
43 /* Register claim sources for deployment */
44 claims_register_init();
45
46 /* Boot measurement claim source */
47 claim_source = event_log_claim_source_init_from_config(&event_log_claim_source);
48 claims_register_add_claim_source(CLAIM_CATEGORY_BOOT_MEASUREMENT, claim_source);
49
50 /* Boot seed claim source */
51 claim_source = boot_seed_generator_init(&boot_seed_claim_source);
52 claims_register_add_claim_source(CLAIM_CATEGORY_DEVICE, claim_source);
53
54 /* Lifecycle state claim source */
55 claim_source = null_lifecycle_claim_source_init(&lifecycle_claim_source);
56 claims_register_add_claim_source(CLAIM_CATEGORY_DEVICE, claim_source);
57
58 /* Instance ID claim source */
59 claim_source = instance_id_claim_source_init(&instance_id_claim_source);
60 claims_register_add_claim_source(CLAIM_CATEGORY_DEVICE, claim_source);
61
62 /* Initialize the service provider */
63 attest_iface = attest_provider_init(&attest_provider, ATTEST_KEY_MNGR_VOLATILE_IAK);
64
65 attest_provider_register_serializer(&attest_provider,
66 TS_RPC_ENCODING_PACKED_C, packedc_attest_provider_serializer_instance());
67
68 return attest_iface;
69}
70
71struct rpc_interface *crypto_proxy_create(void)
72{
73 struct rpc_interface *crypto_iface;
74
75 /* Static objects for proxy instance */
76 static struct mbed_crypto_provider crypto_provider;
77
78 crypto_iface = mbed_crypto_provider_init(&crypto_provider, shared_storage_backend, 0);
79
80 mbed_crypto_provider_register_serializer(&crypto_provider,
81 TS_RPC_ENCODING_PROTOBUF, pb_crypto_provider_serializer_instance());
82
83 mbed_crypto_provider_register_serializer(&crypto_provider,
84 TS_RPC_ENCODING_PACKED_C, packedc_crypto_provider_serializer_instance());
85
86 return crypto_iface;
87}
88
89struct rpc_interface *ps_proxy_create(void)
90{
91 if (!shared_storage_backend) shared_storage_backend = sfs_init();
92
93 static struct secure_storage_provider ps_provider;
94
95 return secure_storage_provider_init(&ps_provider, shared_storage_backend);
96}
97
98struct rpc_interface *its_proxy_create(void)
99{
100 if (!shared_storage_backend) shared_storage_backend = sfs_init();
101
102 static struct secure_storage_provider its_provider;
103
104 return secure_storage_provider_init(&its_provider, shared_storage_backend);
105}