blob: eb3ab34c0cb7ac4f4e3bbcc60e35b3ab857a4f61 [file] [log] [blame]
David Brown63902772017-07-12 09:47:49 -06001// Build mcuboot as a library, based on the requested features.
2
Fabio Utzig455cad52018-10-15 14:36:33 -07003extern crate cc;
David Brown63902772017-07-12 09:47:49 -06004
David Brown5f4e1482021-09-16 16:44:09 -06005use std::collections::BTreeSet;
David Brown63902772017-07-12 09:47:49 -06006use std::env;
7use std::fs;
8use std::io;
David Brown5f4e1482021-09-16 16:44:09 -06009use std::path::{Path, PathBuf};
David Brown63902772017-07-12 09:47:49 -060010
11fn main() {
12 // Feature flags.
13 let sig_rsa = env::var("CARGO_FEATURE_SIG_RSA").is_ok();
Fabio Utzig39297432019-05-08 18:51:10 -030014 let sig_rsa3072 = env::var("CARGO_FEATURE_SIG_RSA3072").is_ok();
David Brown63902772017-07-12 09:47:49 -060015 let sig_ecdsa = env::var("CARGO_FEATURE_SIG_ECDSA").is_ok();
David Brown641af452021-02-19 12:16:48 -070016 let sig_ecdsa_mbedtls = env::var("CARGO_FEATURE_SIG_ECDSA_MBEDTLS").is_ok();
Fabio Utzig97710282019-05-24 17:44:49 -030017 let sig_ed25519 = env::var("CARGO_FEATURE_SIG_ED25519").is_ok();
David Brown63902772017-07-12 09:47:49 -060018 let overwrite_only = env::var("CARGO_FEATURE_OVERWRITE_ONLY").is_ok();
Fabio Utzig031eb7d2019-11-28 10:13:14 -030019 let swap_move = env::var("CARGO_FEATURE_SWAP_MOVE").is_ok();
David Vincze2d736ad2019-02-18 11:50:22 +010020 let validate_primary_slot =
21 env::var("CARGO_FEATURE_VALIDATE_PRIMARY_SLOT").is_ok();
Fabio Utzig1e48b912018-09-18 09:04:18 -030022 let enc_rsa = env::var("CARGO_FEATURE_ENC_RSA").is_ok();
Salome Thirot6fdbf552021-05-14 16:46:14 +010023 let enc_aes256_rsa = env::var("CARGO_FEATURE_ENC_AES256_RSA").is_ok();
Fabio Utzig1e48b912018-09-18 09:04:18 -030024 let enc_kw = env::var("CARGO_FEATURE_ENC_KW").is_ok();
Salome Thirot6fdbf552021-05-14 16:46:14 +010025 let enc_aes256_kw = env::var("CARGO_FEATURE_ENC_AES256_KW").is_ok();
Fabio Utzig90f449e2019-10-24 07:43:53 -030026 let enc_ec256 = env::var("CARGO_FEATURE_ENC_EC256").is_ok();
Fabio Utzig6c553d62021-05-06 19:56:18 -030027 let enc_ec256_mbedtls = env::var("CARGO_FEATURE_ENC_EC256_MBEDTLS").is_ok();
Salome Thirot6fdbf552021-05-14 16:46:14 +010028 let enc_aes256_ec256 = env::var("CARGO_FEATURE_ENC_AES256_EC256").is_ok();
Fabio Utzig3fa72ca2020-04-02 11:20:37 -030029 let enc_x25519 = env::var("CARGO_FEATURE_ENC_X25519").is_ok();
Salome Thirot6fdbf552021-05-14 16:46:14 +010030 let enc_aes256_x25519 = env::var("CARGO_FEATURE_ENC_AES256_X25519").is_ok();
Fabio Utzig9b97b132018-12-18 17:21:51 -020031 let bootstrap = env::var("CARGO_FEATURE_BOOTSTRAP").is_ok();
David Brown5e6f5e02019-04-04 10:50:05 +070032 let multiimage = env::var("CARGO_FEATURE_MULTIIMAGE").is_ok();
David Brown2ee5f7f2020-01-13 14:04:01 -070033 let downgrade_prevention = env::var("CARGO_FEATURE_DOWNGRADE_PREVENTION").is_ok();
David Brown7e377ab2021-05-26 16:33:39 -060034 let ram_load = env::var("CARGO_FEATURE_RAM_LOAD").is_ok();
David Brown11ffa0a2021-05-26 17:10:47 -060035 let direct_xip = env::var("CARGO_FEATURE_DIRECT_XIP").is_ok();
David Brown63902772017-07-12 09:47:49 -060036
David Brown5f4e1482021-09-16 16:44:09 -060037 let mut conf = CachedBuild::new();
38 conf.conf.define("__BOOTSIM__", None);
39 conf.conf.define("MCUBOOT_HAVE_LOGGING", None);
40 conf.conf.define("MCUBOOT_USE_FLASH_AREA_GET_SECTORS", None);
41 conf.conf.define("MCUBOOT_HAVE_ASSERT_H", None);
42 conf.conf.define("MCUBOOT_MAX_IMG_SECTORS", Some("128"));
43 conf.conf.define("MCUBOOT_IMAGE_NUMBER", Some(if multiimage { "2" } else { "1" }));
Fabio Utzigebdc9692017-11-23 16:28:25 -020044
David Brown2ee5f7f2020-01-13 14:04:01 -070045 if downgrade_prevention && !overwrite_only {
46 panic!("Downgrade prevention requires overwrite only");
47 }
48
Fabio Utzig9b97b132018-12-18 17:21:51 -020049 if bootstrap {
David Brown5f4e1482021-09-16 16:44:09 -060050 conf.conf.define("MCUBOOT_BOOTSTRAP", None);
51 conf.conf.define("MCUBOOT_OVERWRITE_ONLY_FAST", None);
Fabio Utzig9b97b132018-12-18 17:21:51 -020052 }
53
David Vincze2d736ad2019-02-18 11:50:22 +010054 if validate_primary_slot {
David Brown5f4e1482021-09-16 16:44:09 -060055 conf.conf.define("MCUBOOT_VALIDATE_PRIMARY_SLOT", None);
Fabio Utzigebdc9692017-11-23 16:28:25 -020056 }
David Brown63902772017-07-12 09:47:49 -060057
David Brown2ee5f7f2020-01-13 14:04:01 -070058 if downgrade_prevention {
David Brown5f4e1482021-09-16 16:44:09 -060059 conf.conf.define("MCUBOOT_DOWNGRADE_PREVENTION", None);
David Brown2ee5f7f2020-01-13 14:04:01 -070060 }
61
David Brown7e377ab2021-05-26 16:33:39 -060062 if ram_load {
David Brown5f4e1482021-09-16 16:44:09 -060063 conf.conf.define("MCUBOOT_RAM_LOAD", None);
David Brown7e377ab2021-05-26 16:33:39 -060064 }
65
David Brown11ffa0a2021-05-26 17:10:47 -060066 if direct_xip {
David Brown5f4e1482021-09-16 16:44:09 -060067 conf.conf.define("MCUBOOT_DIRECT_XIP", None);
David Brown11ffa0a2021-05-26 17:10:47 -060068 }
69
Fabio Utzig39297432019-05-08 18:51:10 -030070 // Currently no more than one sig type can be used simultaneously.
Fabio Utzig97710282019-05-24 17:44:49 -030071 if vec![sig_rsa, sig_rsa3072, sig_ecdsa, sig_ed25519].iter()
Fabio Utzig39297432019-05-08 18:51:10 -030072 .fold(0, |sum, &v| sum + v as i32) > 1 {
73 panic!("mcuboot does not support more than one sig type at the same time");
David Brown704ac6f2017-07-12 10:14:47 -060074 }
David Brown63902772017-07-12 09:47:49 -060075
Fabio Utzig39297432019-05-08 18:51:10 -030076 if sig_rsa || sig_rsa3072 {
David Brown5f4e1482021-09-16 16:44:09 -060077 conf.conf.define("MCUBOOT_SIGN_RSA", None);
Fabio Utzig39297432019-05-08 18:51:10 -030078 // The Kconfig style defines must be added here as well because
79 // they are used internally by "config-rsa.h"
80 if sig_rsa {
David Brown5f4e1482021-09-16 16:44:09 -060081 conf.conf.define("MCUBOOT_SIGN_RSA_LEN", "2048");
82 conf.conf.define("CONFIG_BOOT_SIGNATURE_TYPE_RSA_LEN", "2048");
Fabio Utzig39297432019-05-08 18:51:10 -030083 } else {
David Brown5f4e1482021-09-16 16:44:09 -060084 conf.conf.define("MCUBOOT_SIGN_RSA_LEN", "3072");
85 conf.conf.define("CONFIG_BOOT_SIGNATURE_TYPE_RSA_LEN", "3072");
Fabio Utzig39297432019-05-08 18:51:10 -030086 }
David Brown5f4e1482021-09-16 16:44:09 -060087 conf.conf.define("MCUBOOT_USE_MBED_TLS", None);
David Brown63902772017-07-12 09:47:49 -060088
David Brown5f4e1482021-09-16 16:44:09 -060089 conf.conf.include("../../ext/mbedtls/include");
Sherry Zhangf4580cb2021-07-13 22:07:31 +080090 conf.file("../../ext/mbedtls/library/sha256.c");
Fabio Utzig806af0e2018-04-26 10:53:54 -030091 conf.file("csupport/keys.c");
David Brown63902772017-07-12 09:47:49 -060092
Sherry Zhangf4580cb2021-07-13 22:07:31 +080093 conf.file("../../ext/mbedtls/library/rsa.c");
94 conf.file("../../ext/mbedtls/library/bignum.c");
95 conf.file("../../ext/mbedtls/library/platform.c");
96 conf.file("../../ext/mbedtls/library/platform_util.c");
97 conf.file("../../ext/mbedtls/library/asn1parse.c");
David Brown704ac6f2017-07-12 10:14:47 -060098 } else if sig_ecdsa {
David Brown5f4e1482021-09-16 16:44:09 -060099 conf.conf.define("MCUBOOT_SIGN_EC256", None);
100 conf.conf.define("MCUBOOT_USE_TINYCRYPT", None);
Fabio Utzigc7865402017-12-05 08:50:52 -0200101
Fabio Utzigb4d20c82018-12-27 16:08:39 -0200102 if !enc_kw {
David Brown5f4e1482021-09-16 16:44:09 -0600103 conf.conf.include("../../ext/mbedtls/include");
Fabio Utzigb4d20c82018-12-27 16:08:39 -0200104 }
David Brown5f4e1482021-09-16 16:44:09 -0600105 conf.conf.include("../../ext/tinycrypt/lib/include");
Fabio Utzigc7865402017-12-05 08:50:52 -0200106
Fabio Utzig806af0e2018-04-26 10:53:54 -0300107 conf.file("csupport/keys.c");
Fabio Utzigc7865402017-12-05 08:50:52 -0200108
109 conf.file("../../ext/tinycrypt/lib/source/utils.c");
110 conf.file("../../ext/tinycrypt/lib/source/sha256.c");
111 conf.file("../../ext/tinycrypt/lib/source/ecc.c");
112 conf.file("../../ext/tinycrypt/lib/source/ecc_dsa.c");
113 conf.file("../../ext/tinycrypt/lib/source/ecc_platform_specific.c");
David Brown5f4e1482021-09-16 16:44:09 -0600114 conf.file("../../ext/mbedtls/library/platform_util.c");
115 conf.file("../../ext/mbedtls/library/asn1parse.c");
David Brown641af452021-02-19 12:16:48 -0700116 } else if sig_ecdsa_mbedtls {
David Brown5f4e1482021-09-16 16:44:09 -0600117 conf.conf.define("MCUBOOT_SIGN_EC256", None);
118 conf.conf.define("MCUBOOT_USE_MBED_TLS", None);
David Brown641af452021-02-19 12:16:48 -0700119
David Brown5f4e1482021-09-16 16:44:09 -0600120 conf.conf.include("../../ext/mbedtls/include");
Sherry Zhangf4580cb2021-07-13 22:07:31 +0800121 conf.file("../../ext/mbedtls/library/sha256.c");
David Brown641af452021-02-19 12:16:48 -0700122 conf.file("csupport/keys.c");
123
Sherry Zhangf4580cb2021-07-13 22:07:31 +0800124 conf.file("../../ext/mbedtls/library/asn1parse.c");
125 conf.file("../../ext/mbedtls/library/bignum.c");
126 conf.file("../../ext/mbedtls/library/ecdsa.c");
127 conf.file("../../ext/mbedtls/library/ecp.c");
128 conf.file("../../ext/mbedtls/library/ecp_curves.c");
129 conf.file("../../ext/mbedtls/library/platform.c");
130 conf.file("../../ext/mbedtls/library/platform_util.c");
Fabio Utzig97710282019-05-24 17:44:49 -0300131 } else if sig_ed25519 {
David Brown5f4e1482021-09-16 16:44:09 -0600132 conf.conf.define("MCUBOOT_SIGN_ED25519", None);
133 conf.conf.define("MCUBOOT_USE_TINYCRYPT", None);
Fabio Utzig97710282019-05-24 17:44:49 -0300134
David Brown5f4e1482021-09-16 16:44:09 -0600135 conf.conf.include("../../ext/tinycrypt/lib/include");
136 conf.conf.include("../../ext/tinycrypt-sha512/lib/include");
137 conf.conf.include("../../ext/mbedtls/include");
Fabio Utziga1c142d2020-01-03 08:28:11 -0300138 conf.file("../../ext/tinycrypt/lib/source/sha256.c");
139 conf.file("../../ext/tinycrypt-sha512/lib/source/sha512.c");
140 conf.file("../../ext/tinycrypt/lib/source/utils.c");
Fabio Utzig97710282019-05-24 17:44:49 -0300141 conf.file("csupport/keys.c");
142 conf.file("../../ext/fiat/src/curve25519.c");
David Brown5f4e1482021-09-16 16:44:09 -0600143 conf.file("../../ext/mbedtls/library/platform_util.c");
144 conf.file("../../ext/mbedtls/library/asn1parse.c");
Fabio Utzig3fa72ca2020-04-02 11:20:37 -0300145 } else if !enc_ec256 && !enc_x25519 {
Fabio Utzig90f449e2019-10-24 07:43:53 -0300146 // No signature type, only sha256 validation. The default
Marti Bolivara4818a52018-04-12 13:02:38 -0400147 // configuration file bundled with mbedTLS is sufficient.
Fabio Utzig90f449e2019-10-24 07:43:53 -0300148 // When using ECIES-P256 rely on Tinycrypt.
David Brown5f4e1482021-09-16 16:44:09 -0600149 conf.conf.define("MCUBOOT_USE_MBED_TLS", None);
150 conf.conf.include("../../ext/mbedtls/include");
Sherry Zhangf4580cb2021-07-13 22:07:31 +0800151 conf.file("../../ext/mbedtls/library/sha256.c");
152 conf.file("../../ext/mbedtls/library/platform_util.c");
David Brown63902772017-07-12 09:47:49 -0600153 }
154
155 if overwrite_only {
David Brown5f4e1482021-09-16 16:44:09 -0600156 conf.conf.define("MCUBOOT_OVERWRITE_ONLY", None);
David Brown63902772017-07-12 09:47:49 -0600157 }
158
Fabio Utzig031eb7d2019-11-28 10:13:14 -0300159 if swap_move {
David Brown5f4e1482021-09-16 16:44:09 -0600160 conf.conf.define("MCUBOOT_SWAP_USING_MOVE", None);
Andrzej Puzdrowski137d7972021-05-13 13:39:30 +0200161 } else if !overwrite_only {
David Brown5f4e1482021-09-16 16:44:09 -0600162 conf.conf.define("CONFIG_BOOT_SWAP_USING_SCRATCH", None);
163 conf.conf.define("MCUBOOT_SWAP_USING_SCRATCH", None);
Fabio Utzig031eb7d2019-11-28 10:13:14 -0300164 }
165
Salome Thirot6fdbf552021-05-14 16:46:14 +0100166 if enc_rsa || enc_aes256_rsa {
167 if enc_aes256_rsa {
David Brown5f4e1482021-09-16 16:44:09 -0600168 conf.conf.define("MCUBOOT_AES_256", None);
Salome Thirot6fdbf552021-05-14 16:46:14 +0100169 }
David Brown5f4e1482021-09-16 16:44:09 -0600170 conf.conf.define("MCUBOOT_ENCRYPT_RSA", None);
171 conf.conf.define("MCUBOOT_ENC_IMAGES", None);
172 conf.conf.define("MCUBOOT_USE_MBED_TLS", None);
Fabio Utzig1e48b912018-09-18 09:04:18 -0300173
174 conf.file("../../boot/bootutil/src/encrypted.c");
175 conf.file("csupport/keys.c");
176
David Brown5f4e1482021-09-16 16:44:09 -0600177 conf.conf.include("../../ext/mbedtls/include");
178 conf.conf.include("../../ext/mbedtls/library");
Sherry Zhangf4580cb2021-07-13 22:07:31 +0800179 conf.file("../../ext/mbedtls/library/sha256.c");
Fabio Utzig1e48b912018-09-18 09:04:18 -0300180
Sherry Zhangf4580cb2021-07-13 22:07:31 +0800181 conf.file("../../ext/mbedtls/library/platform.c");
182 conf.file("../../ext/mbedtls/library/platform_util.c");
183 conf.file("../../ext/mbedtls/library/rsa.c");
184 conf.file("../../ext/mbedtls/library/rsa_alt_helpers.c");
185 conf.file("../../ext/mbedtls/library/md.c");
186 conf.file("../../ext/mbedtls/library/aes.c");
187 conf.file("../../ext/mbedtls/library/bignum.c");
188 conf.file("../../ext/mbedtls/library/asn1parse.c");
Fabio Utzig1e48b912018-09-18 09:04:18 -0300189 }
190
Salome Thirot6fdbf552021-05-14 16:46:14 +0100191 if enc_kw || enc_aes256_kw {
192 if enc_aes256_kw {
David Brown5f4e1482021-09-16 16:44:09 -0600193 conf.conf.define("MCUBOOT_AES_256", None);
Salome Thirot6fdbf552021-05-14 16:46:14 +0100194 }
David Brown5f4e1482021-09-16 16:44:09 -0600195 conf.conf.define("MCUBOOT_ENCRYPT_KW", None);
196 conf.conf.define("MCUBOOT_ENC_IMAGES", None);
Fabio Utzig1e48b912018-09-18 09:04:18 -0300197
198 conf.file("../../boot/bootutil/src/encrypted.c");
199 conf.file("csupport/keys.c");
200
Fabio Utzig39297432019-05-08 18:51:10 -0300201 if sig_rsa || sig_rsa3072 {
Sherry Zhangf4580cb2021-07-13 22:07:31 +0800202 conf.file("../../ext/mbedtls/library/sha256.c");
Fabio Utzigb4d20c82018-12-27 16:08:39 -0200203 }
Fabio Utzig1e48b912018-09-18 09:04:18 -0300204
Fabio Utzigb4d20c82018-12-27 16:08:39 -0200205 /* Simulator uses Mbed-TLS to wrap keys */
David Brown5f4e1482021-09-16 16:44:09 -0600206 conf.conf.include("../../ext/mbedtls/include");
Sherry Zhangf4580cb2021-07-13 22:07:31 +0800207 conf.file("../../ext/mbedtls/library/platform.c");
David Brown5f4e1482021-09-16 16:44:09 -0600208 conf.conf.include("../../ext/mbedtls/library");
Sherry Zhangf4580cb2021-07-13 22:07:31 +0800209 conf.file("../../ext/mbedtls/library/platform_util.c");
210 conf.file("../../ext/mbedtls/library/nist_kw.c");
211 conf.file("../../ext/mbedtls/library/cipher.c");
212 conf.file("../../ext/mbedtls/library/cipher_wrap.c");
213 conf.file("../../ext/mbedtls/library/aes.c");
Fabio Utzigb4d20c82018-12-27 16:08:39 -0200214
215 if sig_ecdsa {
David Brown5f4e1482021-09-16 16:44:09 -0600216 conf.conf.define("MCUBOOT_USE_TINYCRYPT", None);
Fabio Utzigb4d20c82018-12-27 16:08:39 -0200217
David Brown5f4e1482021-09-16 16:44:09 -0600218 conf.conf.include("../../ext/tinycrypt/lib/include");
Fabio Utzigb4d20c82018-12-27 16:08:39 -0200219
220 conf.file("../../ext/tinycrypt/lib/source/utils.c");
221 conf.file("../../ext/tinycrypt/lib/source/sha256.c");
222 conf.file("../../ext/tinycrypt/lib/source/aes_encrypt.c");
223 conf.file("../../ext/tinycrypt/lib/source/aes_decrypt.c");
Blaž Hrastnik4f4833d2020-09-14 13:53:31 +0900224 conf.file("../../ext/tinycrypt/lib/source/ctr_mode.c");
Fabio Utzigb4d20c82018-12-27 16:08:39 -0200225 }
Fabio Utzig97710282019-05-24 17:44:49 -0300226
227 if sig_ed25519 {
228 panic!("ed25519 does not support image encryption with KW yet");
229 }
Fabio Utzig1e48b912018-09-18 09:04:18 -0300230 }
231
Fabio Utzig90f449e2019-10-24 07:43:53 -0300232 if enc_ec256 {
David Brown5f4e1482021-09-16 16:44:09 -0600233 conf.conf.define("MCUBOOT_ENCRYPT_EC256", None);
234 conf.conf.define("MCUBOOT_ENC_IMAGES", None);
235 conf.conf.define("MCUBOOT_USE_TINYCRYPT", None);
236 conf.conf.define("MCUBOOT_SWAP_SAVE_ENCTLV", None);
Fabio Utzig90f449e2019-10-24 07:43:53 -0300237
238 conf.file("../../boot/bootutil/src/encrypted.c");
239 conf.file("csupport/keys.c");
240
David Brown5f4e1482021-09-16 16:44:09 -0600241 conf.conf.include("../../ext/mbedtls/include");
242 conf.conf.include("../../ext/tinycrypt/lib/include");
Fabio Utzig90f449e2019-10-24 07:43:53 -0300243
244 /* FIXME: fail with other signature schemes ? */
245
246 conf.file("../../ext/tinycrypt/lib/source/utils.c");
247 conf.file("../../ext/tinycrypt/lib/source/sha256.c");
248 conf.file("../../ext/tinycrypt/lib/source/ecc.c");
249 conf.file("../../ext/tinycrypt/lib/source/ecc_dsa.c");
250 conf.file("../../ext/tinycrypt/lib/source/ecc_platform_specific.c");
251
David Brown5f4e1482021-09-16 16:44:09 -0600252 conf.file("../../ext/mbedtls/library/platform_util.c");
253 conf.file("../../ext/mbedtls/library/asn1parse.c");
Fabio Utzig90f449e2019-10-24 07:43:53 -0300254
255 conf.file("../../ext/tinycrypt/lib/source/aes_encrypt.c");
256 conf.file("../../ext/tinycrypt/lib/source/aes_decrypt.c");
257 conf.file("../../ext/tinycrypt/lib/source/ctr_mode.c");
258 conf.file("../../ext/tinycrypt/lib/source/hmac.c");
259 conf.file("../../ext/tinycrypt/lib/source/ecc_dh.c");
Salome Thirot6fdbf552021-05-14 16:46:14 +0100260 } else if enc_ec256_mbedtls || enc_aes256_ec256 {
261 if enc_aes256_ec256 {
David Brown5f4e1482021-09-16 16:44:09 -0600262 conf.conf.define("MCUBOOT_AES_256", None);
Salome Thirot6fdbf552021-05-14 16:46:14 +0100263 }
David Brown5f4e1482021-09-16 16:44:09 -0600264 conf.conf.define("MCUBOOT_ENCRYPT_EC256", None);
265 conf.conf.define("MCUBOOT_ENC_IMAGES", None);
266 conf.conf.define("MCUBOOT_USE_MBED_TLS", None);
267 conf.conf.define("MCUBOOT_SWAP_SAVE_ENCTLV", None);
Fabio Utzig6c553d62021-05-06 19:56:18 -0300268
David Brown5f4e1482021-09-16 16:44:09 -0600269 conf.conf.include("../../ext/mbedtls/include");
Fabio Utzig6c553d62021-05-06 19:56:18 -0300270
271 conf.file("../../boot/bootutil/src/encrypted.c");
Sherry Zhangf4580cb2021-07-13 22:07:31 +0800272 conf.file("../../ext/mbedtls/library/sha256.c");
273 conf.file("../../ext/mbedtls/library/asn1parse.c");
274 conf.file("../../ext/mbedtls/library/bignum.c");
275 conf.file("../../ext/mbedtls/library/ecdh.c");
276 conf.file("../../ext/mbedtls/library/md.c");
277 conf.file("../../ext/mbedtls/library/aes.c");
278 conf.file("../../ext/mbedtls/library/ecp.c");
279 conf.file("../../ext/mbedtls/library/ecp_curves.c");
280 conf.file("../../ext/mbedtls/library/platform.c");
281 conf.file("../../ext/mbedtls/library/platform_util.c");
Fabio Utzig6c553d62021-05-06 19:56:18 -0300282 conf.file("csupport/keys.c");
Fabio Utzig90f449e2019-10-24 07:43:53 -0300283 }
284
Fabio Utzig3fa72ca2020-04-02 11:20:37 -0300285 if enc_x25519 {
David Brown5f4e1482021-09-16 16:44:09 -0600286 conf.conf.define("MCUBOOT_ENCRYPT_X25519", None);
287 conf.conf.define("MCUBOOT_ENC_IMAGES", None);
288 conf.conf.define("MCUBOOT_USE_TINYCRYPT", None);
289 conf.conf.define("MCUBOOT_SWAP_SAVE_ENCTLV", None);
Fabio Utzig3fa72ca2020-04-02 11:20:37 -0300290
291 conf.file("../../boot/bootutil/src/encrypted.c");
292 conf.file("csupport/keys.c");
293
David Brown5f4e1482021-09-16 16:44:09 -0600294 conf.conf.include("../../ext/mbedtls/include");
295 conf.conf.include("../../ext/tinycrypt/lib/include");
296 conf.conf.include("../../ext/tinycrypt-sha512/lib/include");
Fabio Utzig3fa72ca2020-04-02 11:20:37 -0300297
298 conf.file("../../ext/fiat/src/curve25519.c");
299
300 conf.file("../../ext/tinycrypt/lib/source/utils.c");
301 conf.file("../../ext/tinycrypt/lib/source/sha256.c");
302
David Brown5f4e1482021-09-16 16:44:09 -0600303 conf.file("../../ext/mbedtls/library/platform_util.c");
304 conf.file("../../ext/mbedtls/library/asn1parse.c");
Fabio Utzig3fa72ca2020-04-02 11:20:37 -0300305
306 conf.file("../../ext/tinycrypt/lib/source/aes_encrypt.c");
307 conf.file("../../ext/tinycrypt/lib/source/aes_decrypt.c");
308 conf.file("../../ext/tinycrypt/lib/source/ctr_mode.c");
309 conf.file("../../ext/tinycrypt/lib/source/hmac.c");
310 }
Fabio Utzig90f449e2019-10-24 07:43:53 -0300311
Salome Thirot6fdbf552021-05-14 16:46:14 +0100312 else if enc_aes256_x25519 {
David Brown5f4e1482021-09-16 16:44:09 -0600313 conf.conf.define("MCUBOOT_AES_256", None);
314 conf.conf.define("MCUBOOT_ENCRYPT_X25519", None);
315 conf.conf.define("MCUBOOT_ENC_IMAGES", None);
316 conf.conf.define("MCUBOOT_USE_MBED_TLS", None);
317 conf.conf.define("MCUBOOT_SWAP_SAVE_ENCTLV", None);
Salome Thirot6fdbf552021-05-14 16:46:14 +0100318
319 conf.file("../../boot/bootutil/src/encrypted.c");
320 conf.file("csupport/keys.c");
321
David Brown5f4e1482021-09-16 16:44:09 -0600322 conf.conf.include("../../ext/mbedtls/include");
Salome Thirot6fdbf552021-05-14 16:46:14 +0100323 conf.file("../../ext/fiat/src/curve25519.c");
David Brown5f4e1482021-09-16 16:44:09 -0600324 conf.file("../../ext/mbedtls/library/asn1parse.c");
Sherry Zhangf4580cb2021-07-13 22:07:31 +0800325 conf.file("../../ext/mbedtls/library/platform.c");
326 conf.file("../../ext/mbedtls/library/platform_util.c");
327 conf.file("../../ext/mbedtls/library/aes.c");
328 conf.file("../../ext/mbedtls/library/sha256.c");
329 conf.file("../../ext/mbedtls/library/md.c");
330 conf.file("../../ext/mbedtls/library/sha512.c");
Salome Thirot6fdbf552021-05-14 16:46:14 +0100331 }
332
Fabio Utzig251ef1d2018-12-18 17:20:19 -0200333 if sig_rsa && enc_kw {
David Brown5f4e1482021-09-16 16:44:09 -0600334 conf.conf.define("MBEDTLS_CONFIG_FILE", Some("<config-rsa-kw.h>"));
Salome Thirot6fdbf552021-05-14 16:46:14 +0100335 } else if sig_rsa || sig_rsa3072 || enc_rsa || enc_aes256_rsa {
David Brown5f4e1482021-09-16 16:44:09 -0600336 conf.conf.define("MBEDTLS_CONFIG_FILE", Some("<config-rsa.h>"));
Salome Thirot6fdbf552021-05-14 16:46:14 +0100337 } else if sig_ecdsa_mbedtls || enc_ec256_mbedtls || enc_aes256_ec256 {
David Brown5f4e1482021-09-16 16:44:09 -0600338 conf.conf.define("MBEDTLS_CONFIG_FILE", Some("<config-ec.h>"));
Fabio Utzig90f449e2019-10-24 07:43:53 -0300339 } else if (sig_ecdsa || enc_ec256) && !enc_kw {
David Brown5f4e1482021-09-16 16:44:09 -0600340 conf.conf.define("MBEDTLS_CONFIG_FILE", Some("<config-asn1.h>"));
Fabio Utzig3fa72ca2020-04-02 11:20:37 -0300341 } else if sig_ed25519 || enc_x25519 {
David Brown5f4e1482021-09-16 16:44:09 -0600342 conf.conf.define("MBEDTLS_CONFIG_FILE", Some("<config-asn1.h>"));
Salome Thirot6fdbf552021-05-14 16:46:14 +0100343 } else if enc_kw || enc_aes256_kw {
David Brown5f4e1482021-09-16 16:44:09 -0600344 conf.conf.define("MBEDTLS_CONFIG_FILE", Some("<config-kw.h>"));
Salome Thirot6fdbf552021-05-14 16:46:14 +0100345 } else if enc_aes256_x25519 {
David Brown5f4e1482021-09-16 16:44:09 -0600346 conf.conf.define("MBEDTLS_CONFIG_FILE", Some("<config-ed25519.h>"));
Fabio Utzig04fd63e2018-12-14 06:43:31 -0200347 }
348
David Brown704ac6f2017-07-12 10:14:47 -0600349 conf.file("../../boot/bootutil/src/image_validate.c");
Fabio Utzig39297432019-05-08 18:51:10 -0300350 if sig_rsa || sig_rsa3072 {
Fabio Utzigc7865402017-12-05 08:50:52 -0200351 conf.file("../../boot/bootutil/src/image_rsa.c");
David Brown641af452021-02-19 12:16:48 -0700352 } else if sig_ecdsa || sig_ecdsa_mbedtls {
David Brown5f4e1482021-09-16 16:44:09 -0600353 conf.conf.include("../../ext/mbedtls/include");
Fabio Utzigc7865402017-12-05 08:50:52 -0200354 conf.file("../../boot/bootutil/src/image_ec256.c");
Fabio Utzig97710282019-05-24 17:44:49 -0300355 } else if sig_ed25519 {
356 conf.file("../../boot/bootutil/src/image_ed25519.c");
Fabio Utzigc7865402017-12-05 08:50:52 -0200357 }
David Brown63902772017-07-12 09:47:49 -0600358 conf.file("../../boot/bootutil/src/loader.c");
Fabio Utzig031eb7d2019-11-28 10:13:14 -0300359 conf.file("../../boot/bootutil/src/swap_misc.c");
360 conf.file("../../boot/bootutil/src/swap_scratch.c");
361 conf.file("../../boot/bootutil/src/swap_move.c");
David Brown63902772017-07-12 09:47:49 -0600362 conf.file("../../boot/bootutil/src/caps.c");
363 conf.file("../../boot/bootutil/src/bootutil_misc.c");
Andrzej Puzdrowskif573b392020-11-10 14:35:15 +0100364 conf.file("../../boot/bootutil/src/bootutil_public.c");
Fabio Utzig61fd8882019-09-14 20:00:20 -0300365 conf.file("../../boot/bootutil/src/tlv.c");
Raef Colese8fe6cf2020-05-26 13:07:40 +0100366 conf.file("../../boot/bootutil/src/fault_injection_hardening.c");
David Brownd2b18532017-07-12 09:51:31 -0600367 conf.file("csupport/run.c");
David Brown5f4e1482021-09-16 16:44:09 -0600368 conf.conf.include("../../boot/bootutil/include");
369 conf.conf.include("csupport");
370 conf.conf.include("../../boot/zephyr/include");
371 conf.conf.debug(true);
372 conf.conf.flag("-Wall");
373 conf.conf.flag("-Werror");
David Brown63902772017-07-12 09:47:49 -0600374
Fabio Utzig0bccf9d2017-12-07 12:13:57 -0200375 // FIXME: travis-ci still uses gcc 4.8.4 which defaults to std=gnu90.
376 // It has incomplete std=c11 and std=c99 support but std=c99 was checked
377 // to build correctly so leaving it here to updated in the future...
David Brown5f4e1482021-09-16 16:44:09 -0600378 conf.conf.flag("-std=c99");
Fabio Utzig0bccf9d2017-12-07 12:13:57 -0200379
David Brown5f4e1482021-09-16 16:44:09 -0600380 conf.conf.compile("libbootutil.a");
David Brown63902772017-07-12 09:47:49 -0600381
382 walk_dir("../../boot").unwrap();
Fabio Utzigc7865402017-12-05 08:50:52 -0200383 walk_dir("../../ext/tinycrypt/lib/source").unwrap();
David Brownb748f6f2019-10-11 10:07:31 -0600384 walk_dir("../../ext/mbedtls-asn1").unwrap();
David Brownd2b18532017-07-12 09:51:31 -0600385 walk_dir("csupport").unwrap();
Sherry Zhangf4580cb2021-07-13 22:07:31 +0800386 walk_dir("../../ext/mbedtls/include").unwrap();
387 walk_dir("../../ext/mbedtls/library").unwrap();
David Brown63902772017-07-12 09:47:49 -0600388}
389
390// Output the names of all files within a directory so that Cargo knows when to rebuild.
391fn walk_dir<P: AsRef<Path>>(path: P) -> io::Result<()> {
392 for ent in fs::read_dir(path.as_ref())? {
393 let ent = ent?;
394 let p = ent.path();
395 if p.is_dir() {
396 walk_dir(p)?;
397 } else {
398 // Note that non-utf8 names will fail.
399 let name = p.to_str().unwrap();
400 if name.ends_with(".c") || name.ends_with(".h") {
401 println!("cargo:rerun-if-changed={}", name);
402 }
403 }
404 }
405
406 Ok(())
407}
David Brown5f4e1482021-09-16 16:44:09 -0600408
409/// Wrap the cc::Build type so that we can make sure that files are only added a single time.
410/// Other methods can be passed through as needed.
411struct CachedBuild {
412 conf: cc::Build,
413 seen: BTreeSet<PathBuf>,
414}
415
416impl CachedBuild {
417 fn new() -> CachedBuild {
418 CachedBuild {
419 conf: cc::Build::new(),
420 seen: BTreeSet::new(),
421 }
422 }
423
424 /// Works like `file` in the Build, but doesn't add a file if the same path has already been
425 /// given.
426 fn file<P: AsRef<Path>>(&mut self, p: P) -> &mut CachedBuild {
427 let p = p.as_ref();
428 if !self.seen.contains(p) {
429 self.conf.file(p);
430 self.seen.insert(p.to_owned());
431 }
432 self
433 }
434}