blob: 3400bc0c4805002d3879ba6f5968b3eeff0704ea [file] [log] [blame]
David Brownde7729e2017-01-09 10:41:35 -07001/// Interface wrappers to C API entering to the bootloader
2
3use area::AreaDesc;
David Brown2cbc4702017-07-06 14:18:58 -06004use simflash::Flash;
David Brownde7729e2017-01-09 10:41:35 -07005use libc;
David Brownbdb6db72017-07-06 10:14:37 -06006use api;
David Brown353610d2017-11-06 11:31:31 -07007use std::sync::Mutex;
8
9lazy_static! {
10 /// Mutex to lock the simulation. The C code for the bootloader uses
11 /// global variables, and is therefore non-reentrant.
12 static ref BOOT_LOCK: Mutex<()> = Mutex::new(());
13}
David Brownde7729e2017-01-09 10:41:35 -070014
15/// Invoke the bootloader on this flash device.
Fabio Utzig9b0ee902017-11-23 19:49:00 -020016pub fn boot_go(flash: &mut Flash, areadesc: &AreaDesc, counter: Option<&mut i32>,
17 align: u8, catch_asserts: bool) -> (i32, u8) {
David Brown353610d2017-11-06 11:31:31 -070018 let _lock = BOOT_LOCK.lock().unwrap();
19
David Brownee61c832017-11-06 11:13:25 -070020 unsafe {
21 api::set_flash(flash);
Fabio Utzig9b0ee902017-11-23 19:49:00 -020022 raw::c_catch_asserts = if catch_asserts { 1 } else { 0 };
23 raw::c_asserts = 0u8;
David Brown541860c2017-11-06 11:25:42 -070024 raw::sim_flash_align = align;
David Brownee61c832017-11-06 11:13:25 -070025 raw::flash_counter = match counter {
26 None => 0,
27 Some(ref c) => **c as libc::c_int
28 };
29 }
David Brownbdb6db72017-07-06 10:14:37 -060030 let result = unsafe { raw::invoke_boot_go(&areadesc.get_c() as *const _) as i32 };
Fabio Utzig9b0ee902017-11-23 19:49:00 -020031 let asserts = unsafe { raw::c_asserts };
David Brownee61c832017-11-06 11:13:25 -070032 unsafe {
33 counter.map(|c| *c = raw::flash_counter as i32);
34 api::clear_flash();
35 };
Fabio Utzig9b0ee902017-11-23 19:49:00 -020036 (result, asserts)
David Brownde7729e2017-01-09 10:41:35 -070037}
38
David Brown541860c2017-11-06 11:25:42 -070039pub fn boot_trailer_sz(align: u8) -> u32 {
40 unsafe { raw::boot_slots_trailer_sz(align) }
David Brownde7729e2017-01-09 10:41:35 -070041}
42
Fabio Utziga0bc9b52017-06-28 09:19:55 -030043pub fn boot_magic_sz() -> usize {
44 unsafe { raw::BOOT_MAGIC_SZ as usize }
45}
46
47pub fn boot_max_align() -> usize {
48 unsafe { raw::BOOT_MAX_ALIGN as usize }
49}
50
Fabio Utzig92be3fb2017-12-05 08:52:53 -020051pub fn ecdsa256_sign(privkey: &[u8], hash: &[u8]) -> Result<[u8; 64], &'static str> {
52 unsafe {
53 let mut signature: [u8; 64] = [0; 64];
54 if raw::ecdsa256_sign_(privkey.as_ptr(), hash.as_ptr(),
55 hash.len() as u32, signature.as_mut_ptr()) == 1 {
56 return Ok(signature);
57 }
58 return Err("Failed signature generation");
59 }
60}
61
David Brownde7729e2017-01-09 10:41:35 -070062mod raw {
63 use area::CAreaDesc;
64 use libc;
65
66 extern "C" {
67 // This generates a warning about `CAreaDesc` not being foreign safe. There doesn't appear to
68 // be any way to get rid of this warning. See https://github.com/rust-lang/rust/issues/34798
69 // for information and tracking.
David Brownbdb6db72017-07-06 10:14:37 -060070 pub fn invoke_boot_go(areadesc: *const CAreaDesc) -> libc::c_int;
David Brownde7729e2017-01-09 10:41:35 -070071 pub static mut flash_counter: libc::c_int;
Fabio Utzig9b0ee902017-11-23 19:49:00 -020072 pub static mut c_asserts: u8;
73 pub static mut c_catch_asserts: u8;
David Brownde7729e2017-01-09 10:41:35 -070074
75 pub static mut sim_flash_align: u8;
Fabio Utzig7ebb7c22017-04-26 10:59:31 -030076 pub fn boot_slots_trailer_sz(min_write_sz: u8) -> u32;
Fabio Utziga0bc9b52017-06-28 09:19:55 -030077
78 pub static BOOT_MAGIC_SZ: u32;
79 pub static BOOT_MAX_ALIGN: u32;
Fabio Utzig92be3fb2017-12-05 08:52:53 -020080
81 pub fn ecdsa256_sign_(privkey: *const u8, hash: *const u8,
82 hash_len: libc::c_uint,
83 signature: *mut u8) -> libc::c_int;
David Brownde7729e2017-01-09 10:41:35 -070084 }
85}