blob: 8f207d6f74702f6397877ac06c33d9e979a458a9 [file] [log] [blame]
Andrew Scull18834872018-10-12 11:48:09 +01001/*
Andrew Walbran692b3252019-03-07 15:51:31 +00002 * Copyright 2018 The Hafnium Authors.
Andrew Scull18834872018-10-12 11:48:09 +01003 *
Andrew Walbrane959ec12020-06-17 15:01:09 +01004 * Use of this source code is governed by a BSD-style
5 * license that can be found in the LICENSE file or at
6 * https://opensource.org/licenses/BSD-3-Clause.
Andrew Scull18834872018-10-12 11:48:09 +01007 */
8
Andrew Scullfbc938a2018-08-20 14:09:28 +01009#pragma once
Wedson Almeida Filho987c0ff2018-06-20 16:34:38 +010010
Andrew Scull9726c252019-01-23 13:44:19 +000011#include <stdatomic.h>
12
Andrew Walbran1f32e722019-06-07 17:57:26 +010013#include "hf/arch/types.h"
14
Andrew Scull18c78fc2018-08-20 12:57:41 +010015#include "hf/cpu.h"
Madhukar Pappireddy464f2462021-08-03 11:23:07 -050016#include "hf/interrupt_desc.h"
Wedson Almeida Filhoea62e2e2019-01-09 19:14:59 +000017#include "hf/list.h"
Andrew Scull18c78fc2018-08-20 12:57:41 +010018#include "hf/mm.h"
Wedson Almeida Filho22d5eaa2018-12-16 00:38:49 +000019#include "hf/mpool.h"
Jose Marinho75509b42019-04-09 09:34:59 +010020
Andrew Walbranb5ab43c2020-04-30 11:32:54 +010021#include "vmapi/hf/ffa.h"
Wedson Almeida Filho987c0ff2018-06-20 16:34:38 +010022
Andrew Scullae9962e2019-10-03 16:51:16 +010023#define MAX_SMCS 32
Andrew Walbranc1ad4ce2019-05-09 11:41:39 +010024#define LOG_BUFFER_SIZE 256
Madhukar Pappireddy464f2462021-08-03 11:23:07 -050025#define VM_MANIFEST_MAX_INTERRUPTS 32
Andrew Walbranc1ad4ce2019-05-09 11:41:39 +010026
Andrew Walbrana36f7592019-12-13 18:43:38 +000027/**
28 * The state of an RX buffer.
29 *
30 * EMPTY is the initial state. The follow state transitions are possible:
Olivier Deprezcf6e3862021-01-18 10:24:58 +010031 * * EMPTY => RECEIVED: message sent to the VM.
Federico Recanati6c1e05c2022-04-20 11:37:26 +020032 * * RECEIVED => READ: secondary VM receives an RX buffer full notification
33 * or primary VM returns from FFA_RUN with an FFA_MSG_SEND where the receiver
34 * is itself.
Olivier Deprezcf6e3862021-01-18 10:24:58 +010035 * * READ => EMPTY: VM called FFA_RX_RELEASE.
Andrew Walbrana36f7592019-12-13 18:43:38 +000036 */
Andrew Scullaa039b32018-10-04 15:02:26 +010037enum mailbox_state {
Andrew Walbranc3910f72018-11-27 14:24:36 +000038 /** There is no message in the mailbox. */
Andrew Sculld6ee1102019-04-05 22:12:42 +010039 MAILBOX_STATE_EMPTY,
Andrew Scullaa039b32018-10-04 15:02:26 +010040
Andrew Walbranc3910f72018-11-27 14:24:36 +000041 /** There is a message in the mailbox that is waiting for a reader. */
Andrew Sculld6ee1102019-04-05 22:12:42 +010042 MAILBOX_STATE_RECEIVED,
Andrew Scullaa039b32018-10-04 15:02:26 +010043
Andrew Walbranc3910f72018-11-27 14:24:36 +000044 /** There is a message in the mailbox that has been read. */
Andrew Sculld6ee1102019-04-05 22:12:42 +010045 MAILBOX_STATE_READ,
Wedson Almeida Filho2f94ec12018-07-26 16:00:48 +010046};
47
Wedson Almeida Filhoea62e2e2019-01-09 19:14:59 +000048struct wait_entry {
49 /** The VM that is waiting for a mailbox to become writable. */
50 struct vm *waiting_vm;
51
52 /**
53 * Links used to add entry to a VM's waiter_list. This is protected by
54 * the notifying VM's lock.
55 */
56 struct list_entry wait_links;
57
58 /**
59 * Links used to add entry to a VM's ready_list. This is protected by
60 * the waiting VM's lock.
61 */
62 struct list_entry ready_links;
63};
64
Andrew Scullaa039b32018-10-04 15:02:26 +010065struct mailbox {
66 enum mailbox_state state;
Andrew Walbran70bc8622019-10-07 14:15:58 +010067 void *recv;
68 const void *send;
69
70 /** The ID of the VM which sent the message currently in `recv`. */
Andrew Walbranb5ab43c2020-04-30 11:32:54 +010071 ffa_vm_id_t recv_sender;
Andrew Walbran70bc8622019-10-07 14:15:58 +010072
73 /** The size of the message currently in `recv`. */
74 uint32_t recv_size;
75
Andrew Walbrane7ad3c02019-12-24 17:03:04 +000076 /**
Andrew Walbranb5ab43c2020-04-30 11:32:54 +010077 * The FF-A function ID to use to deliver the message currently in
Andrew Walbrane7ad3c02019-12-24 17:03:04 +000078 * `recv`.
79 */
80 uint32_t recv_func;
Wedson Almeida Filhoea62e2e2019-01-09 19:14:59 +000081
82 /**
83 * List of wait_entry structs representing VMs that want to be notified
84 * when the mailbox becomes writable. Once the mailbox does become
85 * writable, the entry is removed from this list and added to the
86 * waiting VM's ready_list.
87 */
88 struct list_entry waiter_list;
89
90 /**
91 * List of wait_entry structs representing VMs whose mailboxes became
92 * writable since the owner of the mailbox registers for notification.
93 */
94 struct list_entry ready_list;
Wedson Almeida Filho2f94ec12018-07-26 16:00:48 +010095};
96
J-Alves4ef6e842021-03-18 12:47:01 +000097struct notifications_state {
98 /**
99 * To keep track of the notifications pending.
100 * Set on call to FFA_NOTIFICATION_SET, and cleared on call to
101 * FFA_NOTIFICATION_GET.
102 */
103 ffa_notifications_bitmap_t pending;
104
105 /**
106 * Set on FFA_NOTIFICATION_INFO_GET to keep track of the notifications
107 * whose information has been retrieved by the referred ABI.
108 * Cleared on call to FFA_NOTIFICATION_GET.
109 */
110 ffa_notifications_bitmap_t info_get_retrieved;
111};
112
113struct notifications {
114 /**
115 * The following array maps the notifications to the bound FF-A
116 * endpoint.
117 * The index in the bindings array relates to the notification
118 * ID, and bit position in 'ffa_notifications_bitmap_t'.
119 */
120 ffa_vm_id_t bindings_sender_id[MAX_FFA_NOTIFICATIONS];
121 ffa_notifications_bitmap_t bindings_per_vcpu;
122
Raghu Krishnamurthyf5fec202022-09-30 07:25:10 -0700123 /* The index of the array below relates to the ID of the VCPU.
124 * This is a dynamically allocated array of struct
125 * notifications_state and has as many entries as vcpu_count.
126 */
127 struct notifications_state *per_vcpu;
J-Alves4ef6e842021-03-18 12:47:01 +0000128 struct notifications_state global;
129};
130
J-Alvesc8e8a222021-06-08 17:33:52 +0100131/**
132 * The following enum relates to a state machine to guide the insertion of
133 * IDs in the respective list as a result of a FFA_NOTIFICATION_INFO_GET call.
134 * As per the FF-A v1.1 specification, the return of the interface
135 * FFA_NOTIFICATION_INFO_GET, is a list of 16-bit values, regarding the VM ID
136 * and VCPU IDs of those with pending notifications.
137 * The overall list, is composed of "sub-lists", that starts with the VM ID, and
138 * can follow with up to 3 more VCPU IDs. A VM can have multiple 'sub-lists'.
139 * The states are traversed on a per VM basis, and should help with filling the
140 * list of IDs.
141 *
142 * INIT is the initial state. The following state transitions are possible:
143 * * INIT => INSERTING: no list has been created for the VM prior. There are
144 * notifications pending and VM ID should be inserted first. If it regards to
145 * a per VCPU notification the VCPU ID should follow. Only VCPU IDs should be
146 * inserted from this point, until reaching "sub-list" size limit.
147 * * INIT => FULL: There is no space in the ID list to insert IDs.
148 * * INSERTING => STARTING_NEW: list has been created. Adding only VCPU IDs,
149 * however "sub-list" limit has been reached. If there are more pending per VCPU
150 * notifications pending for the VM, a new list should be created starting with
151 * VM ID.
152 * * INSERTING => FULL: There is no space in the ID list to insert IDs.
153 * * STARTING_NEW => INSERTING: Started a new 'sub-list' for the given VM, for
154 * the remaining pending per VCPU notifications, only the VCPU ID should be
155 * inserted.
156 * * STARTING_NEW => FULL: There is no space in the ID list to insert IDs.
157 */
158enum notifications_info_get_state {
159 INIT,
160 INSERTING,
161 STARTING_NEW,
162 FULL,
163};
164
Andrew Scullae9962e2019-10-03 16:51:16 +0100165struct smc_whitelist {
166 uint32_t smcs[MAX_SMCS];
167 uint16_t smc_count;
168 bool permissive;
169};
170
Wedson Almeida Filho987c0ff2018-06-20 16:34:38 +0100171struct vm {
Andrew Walbranb5ab43c2020-04-30 11:32:54 +0100172 ffa_vm_id_t id;
Fuad Tabbae4efcc32020-07-16 15:37:27 +0100173 struct ffa_uuid uuid;
Daniel Boulbybaeaf2e2021-12-09 11:42:36 +0000174 uint32_t ffa_version;
Andrew Scullae9962e2019-10-03 16:51:16 +0100175 struct smc_whitelist smc_whitelist;
176
Andrew Walbran0d7a0682018-12-06 16:48:47 +0000177 /** See api.c for the partial ordering on locks. */
Wedson Almeida Filho2f94ec12018-07-26 16:00:48 +0100178 struct spinlock lock;
Andrew Walbranb5ab43c2020-04-30 11:32:54 +0100179 ffa_vcpu_count_t vcpu_count;
Raghu Krishnamurthy30aabd62022-09-17 21:41:00 -0700180 struct vcpu *vcpus;
Andrew Scull89a75242018-08-06 17:04:55 +0100181 struct mm_ptable ptable;
Andrew Scullaa039b32018-10-04 15:02:26 +0100182 struct mailbox mailbox;
J-Alves4ef6e842021-03-18 12:47:01 +0000183
184 struct {
185 /**
186 * State structures for notifications coming from VMs or coming
187 * from SPs. Both fields are maintained by the SPMC.
188 * The hypervisor ignores the 'from_sp' field, given VM
189 * notifications from SPs are managed by the SPMC.
190 */
191 struct notifications from_vm;
192 struct notifications from_sp;
J-Alves52578f82022-03-25 12:30:47 +0000193 struct notifications_state framework;
J-Alves4ef6e842021-03-18 12:47:01 +0000194 bool enabled;
J-Alves6e2abc62021-12-02 14:58:56 +0000195 bool npi_injected;
J-Alves4ef6e842021-03-18 12:47:01 +0000196 } notifications;
197
Andrew Walbranc1ad4ce2019-05-09 11:41:39 +0100198 char log_buffer[LOG_BUFFER_SIZE];
Andrew Scullae9962e2019-10-03 16:51:16 +0100199 uint16_t log_buffer_length;
Wedson Almeida Filhoea62e2e2019-01-09 19:14:59 +0000200
Andrew Walbranf76f5752019-12-03 18:33:08 +0000201 /**
202 * Wait entries to be used when waiting on other VM mailboxes. See
203 * comments on `struct wait_entry` for the lock discipline of these.
204 */
Wedson Almeida Filhob790f652019-01-22 23:41:56 +0000205 struct wait_entry wait_entries[MAX_VMS];
Andrew Scull9726c252019-01-23 13:44:19 +0000206
207 atomic_bool aborting;
Andrew Walbran1f32e722019-06-07 17:57:26 +0100208
J-Alvesb37fd082020-10-22 12:29:21 +0100209 /**
Max Shvetsov40108e72020-08-27 12:39:50 +0100210 * Booting parameters (FF-A SP partitions).
J-Alvesb37fd082020-10-22 12:29:21 +0100211 */
212 bool initialized;
213 uint16_t boot_order;
J-Alves7d38f7b2022-04-13 13:22:30 +0100214
215 /** Entries to pass boot data to the VM. */
216 struct {
217 uint32_t gp_register_num;
218 ipaddr_t blob_addr;
219 } boot_info;
220
Maksims Svecovsb596eab2021-04-27 00:52:27 +0100221 uint8_t messaging_method;
Madhukar Pappireddy84154052022-06-21 18:30:25 -0500222
223 /**
224 * Action specified by a Partition through the manifest in response to
225 * non secure interrupt.
226 */
227 uint8_t ns_interrupts_action;
Madhukar Pappireddy046dad02022-06-21 18:43:33 -0500228 bool me_signal_virq;
J-Alvesb37fd082020-10-22 12:29:21 +0100229 struct vm *next_boot;
230
Max Shvetsov40108e72020-08-27 12:39:50 +0100231 /**
232 * Secondary entry point supplied by FFA_SECONDARY_EP_REGISTER used
233 * for cold and warm boot of SP execution contexts.
234 */
235 ipaddr_t secondary_ep;
236
Andrew Walbran1f32e722019-06-07 17:57:26 +0100237 /** Arch-specific VM information. */
238 struct arch_vm arch;
Raghu Krishnamurthycd1eceb2021-01-04 12:20:48 -0800239 bool el0_partition;
Madhukar Pappireddy464f2462021-08-03 11:23:07 -0500240
241 /** Interrupt descriptor */
242 struct interrupt_descriptor interrupt_desc[VM_MANIFEST_MAX_INTERRUPTS];
Wedson Almeida Filhoea62e2e2019-01-09 19:14:59 +0000243};
244
245/** Encapsulates a VM whose lock is held. */
246struct vm_locked {
247 struct vm *vm;
Wedson Almeida Filho987c0ff2018-06-20 16:34:38 +0100248};
249
Jose Marinho75509b42019-04-09 09:34:59 +0100250/** Container for two vm_locked structures */
251struct two_vm_locked {
252 struct vm_locked vm1;
253 struct vm_locked vm2;
254};
255
Andrew Walbranb5ab43c2020-04-30 11:32:54 +0100256struct vm *vm_init(ffa_vm_id_t id, ffa_vcpu_count_t vcpu_count,
Raghu Krishnamurthycd1eceb2021-01-04 12:20:48 -0800257 struct mpool *ppool, bool el0_partition);
Andrew Walbranb5ab43c2020-04-30 11:32:54 +0100258bool vm_init_next(ffa_vcpu_count_t vcpu_count, struct mpool *ppool,
Raghu Krishnamurthycd1eceb2021-01-04 12:20:48 -0800259 struct vm **new_vm, bool el0_partition);
Andrew Walbranb5ab43c2020-04-30 11:32:54 +0100260ffa_vm_count_t vm_get_count(void);
261struct vm *vm_find(ffa_vm_id_t id);
J-Alves46ee0682021-07-26 15:17:53 +0100262struct vm_locked vm_find_locked(ffa_vm_id_t id);
Fuad Tabbae4efcc32020-07-16 15:37:27 +0100263struct vm *vm_find_index(uint16_t index);
Andrew Walbran7e932bd2019-04-29 16:47:06 +0100264struct vm_locked vm_lock(struct vm *vm);
Jose Marinho75509b42019-04-09 09:34:59 +0100265struct two_vm_locked vm_lock_both(struct vm *vm1, struct vm *vm2);
Wedson Almeida Filhoea62e2e2019-01-09 19:14:59 +0000266void vm_unlock(struct vm_locked *locked);
Andrew Walbranb5ab43c2020-04-30 11:32:54 +0100267struct vcpu *vm_get_vcpu(struct vm *vm, ffa_vcpu_index_t vcpu_index);
268struct wait_entry *vm_get_wait_entry(struct vm *vm, ffa_vm_id_t for_vm);
269ffa_vm_id_t vm_id_for_wait_entry(struct vm *vm, struct wait_entry *entry);
Andrew Walbran45633dd2020-10-07 17:59:54 +0100270bool vm_id_is_current_world(ffa_vm_id_t vm_id);
J-Alves122f1a12022-12-12 15:55:42 +0000271bool vm_is_mailbox_busy(struct vm_locked to);
Andrew Scull3c257452019-11-26 13:32:50 +0000272bool vm_identity_map(struct vm_locked vm_locked, paddr_t begin, paddr_t end,
273 uint32_t mode, struct mpool *ppool, ipaddr_t *ipa);
274bool vm_identity_prepare(struct vm_locked vm_locked, paddr_t begin, paddr_t end,
275 uint32_t mode, struct mpool *ppool);
276void vm_identity_commit(struct vm_locked vm_locked, paddr_t begin, paddr_t end,
277 uint32_t mode, struct mpool *ppool, ipaddr_t *ipa);
278bool vm_unmap(struct vm_locked vm_locked, paddr_t begin, paddr_t end,
279 struct mpool *ppool);
Raghu Krishnamurthy7ad3d142021-03-28 00:47:35 -0700280void vm_ptable_defrag(struct vm_locked vm_locked, struct mpool *ppool);
Andrew Scull3c257452019-11-26 13:32:50 +0000281bool vm_unmap_hypervisor(struct vm_locked vm_locked, struct mpool *ppool);
J-Alvesb37fd082020-10-22 12:29:21 +0100282
283void vm_update_boot(struct vm *vm);
284struct vm *vm_get_first_boot(void);
J-Alves4ef6e842021-03-18 12:47:01 +0000285
Raghu Krishnamurthyea195fa2021-02-12 23:29:00 -0800286bool vm_mem_get_mode(struct vm_locked vm_locked, ipaddr_t begin, ipaddr_t end,
287 uint32_t *mode);
J-Alvesa0f317d2021-06-09 13:31:59 +0100288
Raghu Krishnamurthyf5fec202022-09-30 07:25:10 -0700289void vm_notifications_init(struct vm *vm, ffa_vcpu_count_t vcpu_count,
290 struct mpool *ppool);
J-Alvesa0f317d2021-06-09 13:31:59 +0100291bool vm_are_notifications_pending(struct vm_locked vm_locked, bool from_vm,
292 ffa_notifications_bitmap_t notifications);
J-Alves7461ef22021-10-18 17:21:33 +0100293bool vm_are_global_notifications_pending(struct vm_locked vm_locked);
294bool vm_are_per_vcpu_notifications_pending(struct vm_locked vm_locked,
295 ffa_vcpu_index_t vcpu_id);
J-Alves09ff9d82021-11-02 11:55:20 +0000296bool vm_are_notifications_enabled(struct vm *vm);
297bool vm_locked_are_notifications_enabled(struct vm_locked vm_locked);
J-Alvesc003a7a2021-03-18 13:06:53 +0000298bool vm_notifications_validate_per_vcpu(struct vm_locked vm_locked,
299 bool is_from_vm, bool is_per_vcpu,
300 ffa_notifications_bitmap_t notif);
301bool vm_notifications_validate_bound_sender(
302 struct vm_locked vm_locked, bool is_from_vm, ffa_vm_id_t sender_id,
303 ffa_notifications_bitmap_t notifications);
304bool vm_notifications_validate_binding(struct vm_locked vm_locked,
305 bool is_from_vm, ffa_vm_id_t sender_id,
306 ffa_notifications_bitmap_t notifications,
307 bool is_per_vcpu);
308void vm_notifications_update_bindings(struct vm_locked vm_locked,
309 bool is_from_vm, ffa_vm_id_t sender_id,
310 ffa_notifications_bitmap_t notifications,
311 bool is_per_vcpu);
J-Alves5a16c962022-03-25 12:32:51 +0000312void vm_notifications_partition_set_pending(
313 struct vm_locked vm_locked, bool is_from_vm,
314 ffa_notifications_bitmap_t notifications, ffa_vcpu_index_t vcpu_id,
315 bool is_per_vcpu);
J-Alves5136dda2022-03-25 12:26:38 +0000316ffa_notifications_bitmap_t vm_notifications_partition_get_pending(
317 struct vm_locked vm_locked, bool is_from_vm, ffa_vcpu_index_t vcpu_id);
J-Alves14163a72022-03-25 14:01:34 +0000318void vm_notifications_framework_set_pending(
319 struct vm_locked vm_locked, ffa_notifications_bitmap_t notifications);
J-Alves663682a2022-03-25 13:56:51 +0000320ffa_notifications_bitmap_t vm_notifications_framework_get_pending(
321 struct vm_locked vm_locked);
J-Alvesc8e8a222021-06-08 17:33:52 +0100322void vm_notifications_info_get_pending(
323 struct vm_locked vm_locked, bool is_from_vm, uint16_t *ids,
324 uint32_t *ids_count, uint32_t *lists_sizes, uint32_t *lists_count,
325 const uint32_t ids_max_count,
326 enum notifications_info_get_state *info_get_state);
J-Alvesfe23ebe2021-10-13 16:07:07 +0100327bool vm_notifications_pending_not_retrieved_by_scheduler(void);
328bool vm_is_notifications_pending_count_zero(void);
J-Alvesc8e8a222021-06-08 17:33:52 +0100329bool vm_notifications_info_get(struct vm_locked vm_locked, uint16_t *ids,
330 uint32_t *ids_count, uint32_t *lists_sizes,
331 uint32_t *lists_count,
332 const uint32_t ids_max_count);
J-Alves439ac972021-11-18 17:32:03 +0000333bool vm_supports_messaging_method(struct vm *vm, uint8_t messaging_method);
J-Alves6e2abc62021-12-02 14:58:56 +0000334void vm_notifications_set_npi_injected(struct vm_locked vm_locked,
335 bool npi_injected);
336bool vm_notifications_is_npi_injected(struct vm_locked vm_locked);
J-Alves7d38f7b2022-04-13 13:22:30 +0100337void vm_set_boot_info_gp_reg(struct vm *vm, struct vcpu *vcpu);