David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 1 | /* |
| 2 | * Licensed to the Apache Software Foundation (ASF) under one |
| 3 | * or more contributor license agreements. See the NOTICE file |
| 4 | * distributed with this work for additional information |
| 5 | * regarding copyright ownership. The ASF licenses this file |
| 6 | * to you under the Apache License, Version 2.0 (the |
| 7 | * "License"); you may not use this file except in compliance |
| 8 | * with the License. You may obtain a copy of the License at |
| 9 | * |
| 10 | * http://www.apache.org/licenses/LICENSE-2.0 |
| 11 | * |
| 12 | * Unless required by applicable law or agreed to in writing, |
| 13 | * software distributed under the License is distributed on an |
| 14 | * "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY |
| 15 | * KIND, either express or implied. See the License for the |
| 16 | * specific language governing permissions and limitations |
| 17 | * under the License. |
| 18 | */ |
| 19 | |
| 20 | #include <zephyr.h> |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 21 | #include <flash.h> |
| 22 | |
Marti Bolivar | 51181cf | 2017-03-20 11:03:41 -0400 | [diff] [blame] | 23 | #include "target.h" |
Ricardo Salveti | 3a2c124 | 2017-01-19 10:22:35 -0200 | [diff] [blame] | 24 | |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 25 | #include <flash_map/flash_map.h> |
| 26 | #include <hal/hal_flash.h> |
| 27 | #include <sysflash/sysflash.h> |
| 28 | |
Marti Bolivar | 4a97b4c | 2017-01-31 18:20:02 -0500 | [diff] [blame] | 29 | #define BOOT_LOG_LEVEL BOOT_LOG_LEVEL_INFO |
| 30 | #include "bootutil/bootutil_log.h" |
Ricardo Salveti | 7cf3d9e | 2017-01-18 16:38:22 -0200 | [diff] [blame] | 31 | |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 32 | extern struct device *boot_flash_device; |
| 33 | |
| 34 | /* |
Marti Bolivar | f660306 | 2017-05-01 17:34:22 -0400 | [diff] [blame] | 35 | * For now, we only support one flash device. |
| 36 | * |
| 37 | * Pick a random device ID for it that's unlikely to collide with |
| 38 | * anything "real". |
| 39 | */ |
| 40 | #define FLASH_DEVICE_ID 100 |
| 41 | #define FLASH_DEVICE_BASE CONFIG_FLASH_BASE_ADDRESS |
| 42 | |
Marti Bolivar | dfa18ce | 2017-05-05 11:59:49 -0400 | [diff] [blame^] | 43 | #define FLASH_MAP_ENTRY_MAGIC 0xd00dbeef |
| 44 | |
| 45 | struct flash_map_entry { |
| 46 | const uint32_t magic; |
| 47 | const struct flash_area area; |
| 48 | unsigned int ref_count; |
| 49 | }; |
| 50 | |
Marti Bolivar | f660306 | 2017-05-01 17:34:22 -0400 | [diff] [blame] | 51 | /* |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 52 | * The flash area describes essentially the partition table of the |
| 53 | * flash. In this case, it starts with FLASH_AREA_IMAGE_0. |
| 54 | */ |
Marti Bolivar | dfa18ce | 2017-05-05 11:59:49 -0400 | [diff] [blame^] | 55 | static struct flash_map_entry part_map[] = { |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 56 | { |
Marti Bolivar | dfa18ce | 2017-05-05 11:59:49 -0400 | [diff] [blame^] | 57 | .magic = FLASH_MAP_ENTRY_MAGIC, |
| 58 | .area = { |
| 59 | .fa_id = FLASH_AREA_IMAGE_0, |
| 60 | .fa_device_id = FLASH_DEVICE_ID, |
| 61 | .fa_off = FLASH_AREA_IMAGE_0_OFFSET, |
| 62 | .fa_size = FLASH_AREA_IMAGE_0_SIZE, |
| 63 | }, |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 64 | }, |
| 65 | { |
Marti Bolivar | dfa18ce | 2017-05-05 11:59:49 -0400 | [diff] [blame^] | 66 | .magic = FLASH_MAP_ENTRY_MAGIC, |
| 67 | .area = { |
| 68 | .fa_id = FLASH_AREA_IMAGE_1, |
| 69 | .fa_device_id = FLASH_DEVICE_ID, |
| 70 | .fa_off = FLASH_AREA_IMAGE_1_OFFSET, |
| 71 | .fa_size = FLASH_AREA_IMAGE_1_SIZE, |
| 72 | }, |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 73 | }, |
| 74 | { |
Marti Bolivar | dfa18ce | 2017-05-05 11:59:49 -0400 | [diff] [blame^] | 75 | .magic = FLASH_MAP_ENTRY_MAGIC, |
| 76 | .area = { |
| 77 | .fa_id = FLASH_AREA_IMAGE_SCRATCH, |
| 78 | .fa_device_id = FLASH_DEVICE_ID, |
| 79 | .fa_off = FLASH_AREA_IMAGE_SCRATCH_OFFSET, |
| 80 | .fa_size = FLASH_AREA_IMAGE_SCRATCH_SIZE, |
| 81 | }, |
| 82 | } |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 83 | }; |
| 84 | |
Marti Bolivar | f660306 | 2017-05-01 17:34:22 -0400 | [diff] [blame] | 85 | int flash_device_base(uint8_t fd_id, uintptr_t *ret) |
| 86 | { |
| 87 | if (fd_id != FLASH_DEVICE_ID) { |
| 88 | BOOT_LOG_ERR("invalid flash ID %d; expected %d", |
| 89 | fd_id, FLASH_DEVICE_ID); |
| 90 | return -EINVAL; |
| 91 | } |
| 92 | *ret = FLASH_DEVICE_BASE; |
| 93 | return 0; |
| 94 | } |
| 95 | |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 96 | /* |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 97 | * `open` a flash area. The `area` in this case is not the individual |
| 98 | * sectors, but describes the particular flash area in question. |
| 99 | */ |
| 100 | int flash_area_open(uint8_t id, const struct flash_area **area) |
| 101 | { |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 102 | int i; |
Ricardo Salveti | 7cf3d9e | 2017-01-18 16:38:22 -0200 | [diff] [blame] | 103 | |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 104 | BOOT_LOG_DBG("area %d", id); |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 105 | |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 106 | for (i = 0; i < ARRAY_SIZE(part_map); i++) { |
Marti Bolivar | dfa18ce | 2017-05-05 11:59:49 -0400 | [diff] [blame^] | 107 | if (id == part_map[i].area.fa_id) { |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 108 | break; |
David Brown | 74b3c58 | 2017-04-11 17:39:25 -0600 | [diff] [blame] | 109 | } |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 110 | } |
David Brown | 74b3c58 | 2017-04-11 17:39:25 -0600 | [diff] [blame] | 111 | if (i == ARRAY_SIZE(part_map)) { |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 112 | return -1; |
David Brown | 74b3c58 | 2017-04-11 17:39:25 -0600 | [diff] [blame] | 113 | } |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 114 | |
Marti Bolivar | dfa18ce | 2017-05-05 11:59:49 -0400 | [diff] [blame^] | 115 | *area = &part_map[i].area; |
| 116 | part_map[i].ref_count++; |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 117 | return 0; |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 118 | } |
| 119 | |
| 120 | /* |
| 121 | * Nothing to do on close. |
| 122 | */ |
| 123 | void flash_area_close(const struct flash_area *area) |
| 124 | { |
Marti Bolivar | dfa18ce | 2017-05-05 11:59:49 -0400 | [diff] [blame^] | 125 | struct flash_map_entry *entry = CONTAINER_OF(area, struct flash_map_entry, |
| 126 | area); |
| 127 | if (entry->magic != FLASH_MAP_ENTRY_MAGIC) { |
| 128 | BOOT_LOG_ERR("invalid area %p (id %u)", area, area->fa_id); |
| 129 | return; |
| 130 | } |
| 131 | if (entry->ref_count == 0) { |
| 132 | BOOT_LOG_ERR("area %u use count underflow", area->fa_id); |
| 133 | return; |
| 134 | } |
| 135 | entry->ref_count--; |
| 136 | } |
| 137 | |
| 138 | void zephyr_flash_area_warn_on_open(void) |
| 139 | { |
| 140 | int i; |
| 141 | |
| 142 | for (i = 0; i < ARRAY_SIZE(part_map); i++) { |
| 143 | struct flash_map_entry *entry = &part_map[i]; |
| 144 | if (entry->ref_count) { |
| 145 | BOOT_LOG_WRN("area %u has %u users", |
| 146 | entry->area.fa_id, entry->ref_count); |
| 147 | } |
| 148 | } |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 149 | } |
| 150 | |
| 151 | int flash_area_read(const struct flash_area *area, uint32_t off, void *dst, |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 152 | uint32_t len) |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 153 | { |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 154 | BOOT_LOG_DBG("area=%d, off=%x, len=%x", area->fa_id, off, len); |
| 155 | return flash_read(boot_flash_device, area->fa_off + off, dst, len); |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 156 | } |
| 157 | |
| 158 | int flash_area_write(const struct flash_area *area, uint32_t off, const void *src, |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 159 | uint32_t len) |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 160 | { |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 161 | int rc = 0; |
Michael Scott | e12746c | 2017-01-31 16:07:08 -0800 | [diff] [blame] | 162 | |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 163 | BOOT_LOG_DBG("area=%d, off=%x, len=%x", area->fa_id, off, len); |
| 164 | flash_write_protection_set(boot_flash_device, false); |
| 165 | rc = flash_write(boot_flash_device, area->fa_off + off, src, len); |
| 166 | flash_write_protection_set(boot_flash_device, true); |
| 167 | return rc; |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 168 | } |
| 169 | |
| 170 | int flash_area_erase(const struct flash_area *area, uint32_t off, uint32_t len) |
| 171 | { |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 172 | int rc; |
Marti Bolivar | 53cfdb9 | 2017-02-10 15:05:22 -0500 | [diff] [blame] | 173 | |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 174 | BOOT_LOG_DBG("area=%d, off=%x, len=%x", area->fa_id, off, len); |
| 175 | flash_write_protection_set(boot_flash_device, false); |
| 176 | rc = flash_erase(boot_flash_device, area->fa_off + off, len); |
| 177 | flash_write_protection_set(boot_flash_device, true); |
| 178 | return rc; |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 179 | } |
| 180 | |
| 181 | uint8_t flash_area_align(const struct flash_area *area) |
| 182 | { |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 183 | return hal_flash_align(area->fa_id); |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 184 | } |
| 185 | |
| 186 | /* |
| 187 | * This depends on the mappings defined in sysflash.h, and assumes |
| 188 | * that slot 0, slot 1, and the scratch area area contiguous. |
| 189 | */ |
| 190 | int flash_area_id_from_image_slot(int slot) |
| 191 | { |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 192 | return slot + FLASH_AREA_IMAGE_0; |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 193 | } |
| 194 | |
Marti Bolivar | 29d3a77 | 2017-03-20 10:44:25 -0400 | [diff] [blame] | 195 | #ifndef FLASH_AREA_IMAGE_SECTOR_SIZE |
| 196 | #warning "Missing FLASH_AREA_IMAGE_SECTOR_SIZE; assuming scratch size instead" |
| 197 | #define FLASH_AREA_IMAGE_SECTOR_SIZE FLASH_AREA_IMAGE_SCRATCH_SIZE |
| 198 | #endif |
| 199 | |
Marti Bolivar | fa264cb | 2017-05-03 17:58:14 -0400 | [diff] [blame] | 200 | static int validate_idx(int idx, uint32_t *off, uint32_t *len) |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 201 | { |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 202 | /* |
| 203 | * This simple layout has uniform slots, so just fill in the |
| 204 | * right one. |
| 205 | */ |
David Brown | 74b3c58 | 2017-04-11 17:39:25 -0600 | [diff] [blame] | 206 | if (idx < FLASH_AREA_IMAGE_0 || idx > FLASH_AREA_IMAGE_SCRATCH) { |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 207 | return -1; |
David Brown | 74b3c58 | 2017-04-11 17:39:25 -0600 | [diff] [blame] | 208 | } |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 209 | |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 210 | switch (idx) { |
| 211 | case FLASH_AREA_IMAGE_0: |
Marti Bolivar | fa264cb | 2017-05-03 17:58:14 -0400 | [diff] [blame] | 212 | *off = FLASH_AREA_IMAGE_0_OFFSET; |
| 213 | *len = FLASH_AREA_IMAGE_0_SIZE; |
| 214 | goto done; |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 215 | case FLASH_AREA_IMAGE_1: |
Marti Bolivar | fa264cb | 2017-05-03 17:58:14 -0400 | [diff] [blame] | 216 | *off = FLASH_AREA_IMAGE_1_OFFSET; |
| 217 | *len = FLASH_AREA_IMAGE_1_SIZE; |
| 218 | goto done; |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 219 | case FLASH_AREA_IMAGE_SCRATCH: |
Marti Bolivar | fa264cb | 2017-05-03 17:58:14 -0400 | [diff] [blame] | 220 | *off = FLASH_AREA_IMAGE_SCRATCH_OFFSET; |
| 221 | *len = FLASH_AREA_IMAGE_SCRATCH_SIZE; |
| 222 | goto done; |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 223 | default: |
| 224 | BOOT_LOG_ERR("unknown flash area %d", idx); |
| 225 | return -1; |
| 226 | } |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 227 | |
Marti Bolivar | fa264cb | 2017-05-03 17:58:14 -0400 | [diff] [blame] | 228 | done: |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 229 | BOOT_LOG_DBG("area %d: offset=0x%x, length=0x%x, sector size=0x%x", |
Marti Bolivar | fa264cb | 2017-05-03 17:58:14 -0400 | [diff] [blame] | 230 | idx, *off, *len, FLASH_AREA_IMAGE_SECTOR_SIZE); |
| 231 | return 0; |
| 232 | } |
| 233 | |
| 234 | int flash_area_to_sectors(int idx, int *cnt, struct flash_area *ret) |
| 235 | { |
| 236 | uint32_t off; |
| 237 | uint32_t len; |
| 238 | uint32_t max_cnt = *cnt; |
| 239 | uint32_t rem_len; |
| 240 | |
| 241 | if (validate_idx(idx, &off, &len)) { |
| 242 | return -1; |
| 243 | } |
| 244 | |
| 245 | if (*cnt < 1) { |
| 246 | return -1; |
| 247 | } |
Marti Bolivar | 29d3a77 | 2017-03-20 10:44:25 -0400 | [diff] [blame] | 248 | |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 249 | rem_len = len; |
| 250 | *cnt = 0; |
| 251 | while (rem_len > 0 && *cnt < max_cnt) { |
| 252 | if (rem_len < FLASH_AREA_IMAGE_SECTOR_SIZE) { |
| 253 | BOOT_LOG_ERR("area %d size 0x%x not divisible by sector size 0x%x", |
| 254 | idx, len, FLASH_AREA_IMAGE_SECTOR_SIZE); |
| 255 | return -1; |
| 256 | } |
Marti Bolivar | 29d3a77 | 2017-03-20 10:44:25 -0400 | [diff] [blame] | 257 | |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 258 | ret[*cnt].fa_id = idx; |
| 259 | ret[*cnt].fa_device_id = 0; |
| 260 | ret[*cnt].pad16 = 0; |
| 261 | ret[*cnt].fa_off = off + (FLASH_AREA_IMAGE_SECTOR_SIZE * (*cnt)); |
| 262 | ret[*cnt].fa_size = FLASH_AREA_IMAGE_SECTOR_SIZE; |
| 263 | *cnt = *cnt + 1; |
| 264 | rem_len -= FLASH_AREA_IMAGE_SECTOR_SIZE; |
| 265 | } |
Marti Bolivar | 29d3a77 | 2017-03-20 10:44:25 -0400 | [diff] [blame] | 266 | |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 267 | if (*cnt >= max_cnt) { |
| 268 | BOOT_LOG_ERR("flash area %d sector count overflow", idx); |
| 269 | return -1; |
| 270 | } |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 271 | |
David Brown | 0d0652a | 2017-04-11 17:33:30 -0600 | [diff] [blame] | 272 | return 0; |
David Brown | 5153bd6 | 2017-01-06 11:16:53 -0700 | [diff] [blame] | 273 | } |
Marti Bolivar | fa264cb | 2017-05-03 17:58:14 -0400 | [diff] [blame] | 274 | |
| 275 | /* |
| 276 | * Lookup the sector map for a given flash area. This should fill in |
| 277 | * `ret` with all of the sectors in the area. `*cnt` will be set to |
| 278 | * the storage at `ret` and should be set to the final number of |
| 279 | * sectors in this area. |
| 280 | */ |
| 281 | int flash_area_get_sectors(int idx, uint32_t *cnt, struct flash_sector *ret) |
| 282 | { |
| 283 | uint32_t off; |
| 284 | uint32_t len; |
| 285 | uint32_t max_cnt = *cnt; |
| 286 | uint32_t rem_len; |
| 287 | |
| 288 | if (validate_idx(idx, &off, &len)) { |
| 289 | return -1; |
| 290 | } |
| 291 | |
| 292 | if (*cnt < 1) { |
| 293 | return -1; |
| 294 | } |
| 295 | |
| 296 | rem_len = len; |
| 297 | *cnt = 0; |
| 298 | while (rem_len > 0 && *cnt < max_cnt) { |
| 299 | if (rem_len < FLASH_AREA_IMAGE_SECTOR_SIZE) { |
| 300 | BOOT_LOG_ERR("area %d size 0x%x not divisible by sector size 0x%x", |
| 301 | idx, len, FLASH_AREA_IMAGE_SECTOR_SIZE); |
| 302 | return -1; |
| 303 | } |
| 304 | |
| 305 | ret[*cnt].fs_off = FLASH_AREA_IMAGE_SECTOR_SIZE * (*cnt); |
| 306 | ret[*cnt].fs_size = FLASH_AREA_IMAGE_SECTOR_SIZE; |
| 307 | *cnt = *cnt + 1; |
| 308 | rem_len -= FLASH_AREA_IMAGE_SECTOR_SIZE; |
| 309 | } |
| 310 | |
| 311 | if (*cnt >= max_cnt) { |
| 312 | BOOT_LOG_ERR("flash area %d sector count overflow", idx); |
| 313 | return -1; |
| 314 | } |
| 315 | |
| 316 | return 0; |
| 317 | } |