blob: d086f919f36a302355ba45d2580703c0693955c4 [file] [log] [blame]
J-Alves7581c382020-05-07 18:34:20 +01001/*
Karl Meakin92aa7702023-10-11 18:48:01 +01002 * Copyright (c) 2018-2023, Arm Limited. All rights reserved.
J-Alves7581c382020-05-07 18:34:20 +01003 *
4 * SPDX-License-Identifier: BSD-3-Clause
5 */
6
7#ifndef FFA_HELPERS_H
8#define FFA_HELPERS_H
9
J-Alves8f08a052020-05-26 17:14:40 +010010#include <ffa_svc.h>
J-Alves7581c382020-05-07 18:34:20 +010011#include <tftf_lib.h>
12#include <utils_def.h>
13
J-Alves779fba62024-04-05 14:14:40 +010014#include <xlat_tables_defs.h>
15
J-Alves7581c382020-05-07 18:34:20 +010016/* This error code must be different to the ones used by FFA */
17#define FFA_TFTF_ERROR -42
18
Daniel Boulbye79d2072021-03-03 11:34:53 +000019typedef unsigned short ffa_id_t;
J-Alves5aecd982020-06-11 10:25:33 +010020typedef unsigned short ffa_vm_count_t;
21typedef unsigned short ffa_vcpu_count_t;
J-Alvesf3a393c2020-10-23 16:00:39 +010022typedef uint64_t ffa_memory_handle_t;
23/** Flags to indicate properties of receivers during memory region retrieval. */
24typedef uint8_t ffa_memory_receiver_flags_t;
J-Alves5aecd982020-06-11 10:25:33 +010025
J-Alvesd708c032020-11-19 12:14:21 +000026struct ffa_uuid {
Raghu Krishnamurthyab5321a2023-04-23 16:14:28 -070027 uint32_t uuid[4];
J-Alvesd708c032020-11-19 12:14:21 +000028};
29
J-Alvesda3e6d42022-01-25 10:19:56 +000030/** Length in bytes of the name in boot information descriptor. */
31#define FFA_BOOT_INFO_NAME_LEN 16
32
33/**
34 * The FF-A boot info descriptor, as defined in table 5.8 of section 5.4.1, of
35 * the FF-A v1.1 EAC0 specification.
36 */
37struct ffa_boot_info_desc {
38 char name[FFA_BOOT_INFO_NAME_LEN];
39 uint8_t type;
40 uint8_t reserved;
41 uint16_t flags;
42 uint32_t size;
43 uint64_t content;
44};
45
46/** FF-A boot information type mask. */
47#define FFA_BOOT_INFO_TYPE_SHIFT 7
48#define FFA_BOOT_INFO_TYPE_MASK (0x1U << FFA_BOOT_INFO_TYPE_SHIFT)
49#define FFA_BOOT_INFO_TYPE_STD 0U
50#define FFA_BOOT_INFO_TYPE_IMPDEF 1U
51
52/** Standard boot info type IDs. */
53#define FFA_BOOT_INFO_TYPE_ID_MASK 0x7FU
54#define FFA_BOOT_INFO_TYPE_ID_FDT 0U
55#define FFA_BOOT_INFO_TYPE_ID_HOB 1U
56
57/** FF-A Boot Info descriptors flags. */
58#define FFA_BOOT_INFO_FLAG_MBZ_MASK 0xFFF0U
59
60/** Bits [1:0] encode the format of the name field in ffa_boot_info_desc. */
61#define FFA_BOOT_INFO_FLAG_NAME_FORMAT_SHIFT 0U
62#define FFA_BOOT_INFO_FLAG_NAME_FORMAT_MASK \
63 (0x3U << FFA_BOOT_INFO_FLAG_NAME_FORMAT_SHIFT)
64#define FFA_BOOT_INFO_FLAG_NAME_FORMAT_STRING 0x0U
65#define FFA_BOOT_INFO_FLAG_NAME_FORMAT_UUID 0x1U
66
67/** Bits [3:2] encode the format of the content field in ffa_boot_info_desc. */
68#define FFA_BOOT_INFO_FLAG_CONTENT_FORMAT_SHIFT 2
69#define FFA_BOOT_INFO_FLAG_CONTENT_FORMAT_MASK \
70 (0x3U << FFA_BOOT_INFO_FLAG_CONTENT_FORMAT_SHIFT)
71#define FFA_BOOT_INFO_FLAG_CONTENT_FORMAT_VALUE 0x1U
72#define FFA_BOOT_INFO_FLAG_CONTENT_FORMAT_ADDR 0x0U
73
74static inline uint16_t ffa_boot_info_content_format(
75 struct ffa_boot_info_desc *desc)
76{
77 return (desc->flags & FFA_BOOT_INFO_FLAG_CONTENT_FORMAT_MASK) >>
78 FFA_BOOT_INFO_FLAG_CONTENT_FORMAT_SHIFT;
79}
80
81static inline uint16_t ffa_boot_info_name_format(
82 struct ffa_boot_info_desc *desc)
83{
84 return (desc->flags & FFA_BOOT_INFO_FLAG_NAME_FORMAT_MASK) >>
85 FFA_BOOT_INFO_FLAG_NAME_FORMAT_SHIFT;
86}
87
88static inline uint8_t ffa_boot_info_type_id(struct ffa_boot_info_desc *desc)
89{
90 return desc->type & FFA_BOOT_INFO_TYPE_ID_MASK;
91}
92
93static inline uint8_t ffa_boot_info_type(struct ffa_boot_info_desc *desc)
94{
95 return (desc->type & FFA_BOOT_INFO_TYPE_MASK) >>
96 FFA_BOOT_INFO_TYPE_SHIFT;
97}
98
99/** Length in bytes of the signature in the boot descriptor. */
100#define FFA_BOOT_INFO_HEADER_SIGNATURE_LEN 4
101
102/**
103 * The FF-A boot information header, as defined in table 5.9 of section 5.4.2,
104 * of the FF-A v1.1 EAC0 specification.
105 */
106struct ffa_boot_info_header {
107 uint32_t signature;
108 uint32_t version;
109 uint32_t info_blob_size;
110 uint32_t desc_size;
111 uint32_t desc_count;
112 uint32_t desc_offset;
113 uint64_t reserved;
114 struct ffa_boot_info_desc boot_info[];
115};
116
J-Alves7581c382020-05-07 18:34:20 +0100117#ifndef __ASSEMBLY__
118
J-Alves18c28052021-03-09 09:58:53 +0000119#include <cassert.h>
J-Alves7581c382020-05-07 18:34:20 +0100120#include <stdint.h>
121
J-Alves4439ece2021-11-05 11:52:54 +0000122/**
123 * FF-A Feature ID, to be used with interface FFA_FEATURES.
124 * As defined in the FF-A v1.1 Beta specification, table 13.10, in section
125 * 13.2.
126 */
127
128/** Query interrupt ID of Notification Pending Interrupt. */
129#define FFA_FEATURE_NPI 0x1U
130
131/** Query interrupt ID of Schedule Receiver Interrupt. */
132#define FFA_FEATURE_SRI 0x2U
133
134/** Query interrupt ID of the Managed Exit Interrupt. */
135#define FFA_FEATURE_MEI 0x3U
136
Karl Meakinf2bb5d02024-02-13 17:23:17 +0000137/** Minimum and maximum buffer size reported by FFA_FEATURES(FFA_RXTX_MAP) */
138#define FFA_RXTX_MAP_MIN_BUF_4K 0
139#define FFA_RXTX_MAP_MAX_BUF_PAGE_COUNT 1
140
Max Shvetsov0b7d25f2021-03-05 13:46:42 +0000141/** Partition property: partition supports receipt of direct requests. */
Kathleen Capella7774d6e2022-11-23 19:06:21 -0500142#define FFA_PARTITION_DIRECT_REQ_RECV (UINT32_C(1) << 0)
Max Shvetsov0b7d25f2021-03-05 13:46:42 +0000143
144/** Partition property: partition can send direct requests. */
Kathleen Capella7774d6e2022-11-23 19:06:21 -0500145#define FFA_PARTITION_DIRECT_REQ_SEND (UINT32_C(1) << 1)
Max Shvetsov0b7d25f2021-03-05 13:46:42 +0000146
147/** Partition property: partition can send and receive indirect messages. */
Kathleen Capella7774d6e2022-11-23 19:06:21 -0500148#define FFA_PARTITION_INDIRECT_MSG (UINT32_C(1) << 2)
Max Shvetsov0b7d25f2021-03-05 13:46:42 +0000149
J-Alves4d05dec2021-11-02 11:52:27 +0000150/** Partition property: partition can receive notifications. */
Kathleen Capella7774d6e2022-11-23 19:06:21 -0500151#define FFA_PARTITION_NOTIFICATION (UINT32_C(1) << 3)
J-Alves4d05dec2021-11-02 11:52:27 +0000152
Kathleen Capella7774d6e2022-11-23 19:06:21 -0500153/** Partition property: partition runs in the AArch64 execution state. */
154#define FFA_PARTITION_AARCH64_EXEC (UINT32_C(1) << 8)
155
156/** Partition info descriptor as defined in FF-A v1.1 EAC0 Table 13.37 */
Max Shvetsovc32f4782020-06-23 09:41:15 +0100157struct ffa_partition_info {
158 /** The ID of the VM the information is about */
Daniel Boulbye79d2072021-03-03 11:34:53 +0000159 ffa_id_t id;
Max Shvetsovc32f4782020-06-23 09:41:15 +0100160 /** The number of execution contexts implemented by the partition */
161 uint16_t exec_context;
162 /** The Partition's properties, e.g. supported messaging methods */
163 uint32_t properties;
Daniel Boulby8aa994c2022-01-05 19:44:30 +0000164 /** The uuid of the partition */
165 struct ffa_uuid uuid;
Max Shvetsovc32f4782020-06-23 09:41:15 +0100166};
167
Daniel Boulby2ac55f22022-01-21 12:08:08 +0000168/**
Kathleen Capella7774d6e2022-11-23 19:06:21 -0500169 * Bits[31:3] of partition properties must be zero for FF-A v1.0.
170 * This corresponds to table 8.25 "Partition information descriptor"
171 * in DEN0077A FF-A 1.0 REL specification.
172 */
173#define FFA_PARTITION_v1_0_RES_MASK (~(UINT32_C(0x7)))
174
175/**
Daniel Boulby2ac55f22022-01-21 12:08:08 +0000176 * Partition info descriptor as defined in Table 8.25 of the v1.0
Kathleen Capella7774d6e2022-11-23 19:06:21 -0500177 * FF-A Specification (DEN0077A).
Daniel Boulby2ac55f22022-01-21 12:08:08 +0000178 */
179struct ffa_partition_info_v1_0 {
180 /** The ID of the VM the information is about */
181 ffa_id_t id;
182 /** The number of execution contexts implemented by the partition */
183 uint16_t exec_context;
184 /** The Partition's properties, e.g. supported messaging methods */
185 uint32_t properties;
186};
187
Daniel Boulbyce386b12022-03-29 18:36:36 +0100188struct ffa_value {
189 u_register_t fid;
190 u_register_t arg1;
191 u_register_t arg2;
192 u_register_t arg3;
193 u_register_t arg4;
194 u_register_t arg5;
195 u_register_t arg6;
196 u_register_t arg7;
Raghu Krishnamurthyab5321a2023-04-23 16:14:28 -0700197 u_register_t arg8;
198 u_register_t arg9;
199 u_register_t arg10;
200 u_register_t arg11;
201 u_register_t arg12;
202 u_register_t arg13;
203 u_register_t arg14;
204 u_register_t arg15;
205 u_register_t arg16;
206 u_register_t arg17;
Daniel Boulbyce386b12022-03-29 18:36:36 +0100207};
208
209/* Function to make an SMC or SVC service call depending on the exception
210 * level of the SP.
211 */
212struct ffa_value ffa_service_call(struct ffa_value *args);
213
214/*
215 * Functions to trigger a service call.
216 *
217 * The arguments to pass through the service call must be stored in the
218 * ffa_value structure. The return values of the service call will be stored
219 * in the same structure (overriding the input arguments).
220 *
221 * Return the first return value. It is equivalent to args.fid but is also
222 * provided as the return value for convenience.
223 */
224u_register_t ffa_svc(struct ffa_value *args);
225u_register_t ffa_smc(struct ffa_value *args);
226
227static inline uint32_t ffa_func_id(struct ffa_value val)
J-Alvesf156ae92021-10-08 12:10:05 +0100228{
Daniel Boulbyce386b12022-03-29 18:36:36 +0100229 return (uint32_t)val.fid;
J-Alves6cb21d92021-01-07 15:18:12 +0000230}
231
Daniel Boulbyce386b12022-03-29 18:36:36 +0100232static inline int32_t ffa_error_code(struct ffa_value val)
J-Alvesf156ae92021-10-08 12:10:05 +0100233{
Daniel Boulbyce386b12022-03-29 18:36:36 +0100234 return (int32_t)val.arg2;
J-Alves6cb21d92021-01-07 15:18:12 +0000235}
236
Daniel Boulbyce386b12022-03-29 18:36:36 +0100237static inline ffa_id_t ffa_endpoint_id(struct ffa_value val) {
238 return (ffa_id_t)val.arg2 & 0xffff;
Daniel Boulby198deda2021-03-03 11:35:25 +0000239}
240
Daniel Boulbyce386b12022-03-29 18:36:36 +0100241static inline uint32_t ffa_partition_info_count(struct ffa_value val)
Daniel Boulby2ac55f22022-01-21 12:08:08 +0000242{
Daniel Boulbyce386b12022-03-29 18:36:36 +0100243 return (uint32_t)val.arg2;
Daniel Boulby2ac55f22022-01-21 12:08:08 +0000244}
245
Daniel Boulby07d751e2022-05-30 17:32:00 +0100246static inline uint32_t ffa_partition_info_desc_size(struct ffa_value val)
247{
248 return (uint32_t)val.arg3;
249}
250
Daniel Boulbyce386b12022-03-29 18:36:36 +0100251static inline uint32_t ffa_feature_intid(struct ffa_value val)
J-Alves4439ece2021-11-05 11:52:54 +0000252{
Daniel Boulbyce386b12022-03-29 18:36:36 +0100253 return (uint32_t)val.arg2;
J-Alves4439ece2021-11-05 11:52:54 +0000254}
255
Raghu Krishnamurthyab5321a2023-04-23 16:14:28 -0700256static inline uint16_t ffa_partition_info_regs_get_last_idx(
257 struct ffa_value args)
258{
259 return args.arg2 & 0xFFFF;
260}
261
262static inline uint16_t ffa_partition_info_regs_get_curr_idx(
263 struct ffa_value args)
264{
265 return (args.arg2 >> 16) & 0xFFFF;
266}
267
268static inline uint16_t ffa_partition_info_regs_get_tag(struct ffa_value args)
269{
270 return (args.arg2 >> 32) & 0xFFFF;
271}
272
273static inline uint16_t ffa_partition_info_regs_get_desc_size(
274 struct ffa_value args)
275{
276 return (args.arg2 >> 48);
277}
278
279static inline uint32_t ffa_partition_info_regs_partition_count(
280 struct ffa_value args)
281{
282 return ffa_partition_info_regs_get_last_idx(args) + 1;
283}
284
285static inline uint32_t ffa_partition_info_regs_entry_count(
286 struct ffa_value args, uint16_t start_idx)
287{
288 return (ffa_partition_info_regs_get_curr_idx(args) - start_idx + 1);
289}
290
291static inline uint16_t ffa_partition_info_regs_entry_size(
292 struct ffa_value args)
293{
294 return (args.arg2 >> 48) & 0xFFFFU;
295}
296
J-Alves18c28052021-03-09 09:58:53 +0000297typedef uint64_t ffa_notification_bitmap_t;
298
J-Alves779fba62024-04-05 14:14:40 +0100299/**
300 * Partition message header as specified by table 6.2 from FF-A v1.1 EAC0
301 * specification.
302 */
303struct ffa_partition_rxtx_header {
304 uint32_t flags;
305 /* MBZ */
306 uint32_t reserved;
307 /* Offset from the beginning of the buffer to the message payload. */
308 uint32_t offset;
309 /* Sender(Bits[31:16]) and Receiver(Bits[15:0]) endpoint IDs. */
310 ffa_id_t receiver;
311 ffa_id_t sender;
312 /* Size of message in buffer. */
313 uint32_t size;
314};
315
316#define FFA_RXTX_HEADER_SIZE sizeof(struct ffa_partition_rxtx_header)
317
318static inline void ffa_rxtx_header_init(
319 ffa_id_t sender, ffa_id_t receiver, uint32_t size,
320 struct ffa_partition_rxtx_header *header)
321{
322 header->flags = 0;
323 header->reserved = 0;
324 header->offset = FFA_RXTX_HEADER_SIZE;
325 header->sender = sender;
326 header->receiver = receiver;
327 header->size = size;
328}
329
330/* The maximum length possible for a single message. */
331#define FFA_PARTITION_MSG_PAYLOAD_MAX (PAGE_SIZE - FFA_RXTX_HEADER_SIZE)
332
333struct ffa_partition_msg {
334 struct ffa_partition_rxtx_header header;
335 char payload[FFA_PARTITION_MSG_PAYLOAD_MAX];
336};
337
338/* The maximum length possible for a single message. */
339#define FFA_MSG_PAYLOAD_MAX PAGE_SIZE
340
J-Alves18c28052021-03-09 09:58:53 +0000341#define FFA_NOTIFICATION(ID) (UINT64_C(1) << ID)
342
343#define MAX_FFA_NOTIFICATIONS UINT32_C(64)
344
345#define FFA_NOTIFICATIONS_FLAG_PER_VCPU UINT32_C(0x1 << 0)
346
J-Alvesb0cb5d02021-07-08 11:19:33 +0100347/** Flag to delay Schedule Receiver Interrupt. */
348#define FFA_NOTIFICATIONS_FLAG_DELAY_SRI UINT32_C(0x1 << 1)
349
J-Alves18c28052021-03-09 09:58:53 +0000350#define FFA_NOTIFICATIONS_FLAGS_VCPU_ID(id) UINT32_C((id & 0xFFFF) << 16)
351
J-Alvesf156ae92021-10-08 12:10:05 +0100352#define FFA_NOTIFICATIONS_FLAG_BITMAP_SP UINT32_C(0x1 << 0)
353#define FFA_NOTIFICATIONS_FLAG_BITMAP_VM UINT32_C(0x1 << 1)
354#define FFA_NOTIFICATIONS_FLAG_BITMAP_SPM UINT32_C(0x1 << 2)
355#define FFA_NOTIFICATIONS_FLAG_BITMAP_HYP UINT32_C(0x1 << 3)
356
J-Alves269118a2021-09-22 09:46:11 +0100357/**
358 * The following is an SGI ID, that the SPMC configures as non-secure, as
359 * suggested by the FF-A v1.1 specification, in section 9.4.1.
360 */
361#define FFA_SCHEDULE_RECEIVER_INTERRUPT_ID 8
362
J-Alvesf156ae92021-10-08 12:10:05 +0100363#define FFA_NOTIFICATIONS_BITMAP(lo, hi) \
364 (ffa_notification_bitmap_t)(lo) | \
365 (((ffa_notification_bitmap_t)hi << 32) & 0xFFFFFFFF00000000ULL)
366
367#define FFA_NOTIFICATIONS_FLAGS_VCPU_ID(id) UINT32_C((id & 0xFFFF) << 16)
368
Daniel Boulbyce386b12022-03-29 18:36:36 +0100369static inline ffa_notification_bitmap_t ffa_notifications_get_from_sp(
370 struct ffa_value val)
J-Alvesf156ae92021-10-08 12:10:05 +0100371{
Daniel Boulbyce386b12022-03-29 18:36:36 +0100372 return FFA_NOTIFICATIONS_BITMAP(val.arg2, val.arg3);
J-Alvesf156ae92021-10-08 12:10:05 +0100373}
374
Daniel Boulbyce386b12022-03-29 18:36:36 +0100375static inline ffa_notification_bitmap_t ffa_notifications_get_from_vm(
376 struct ffa_value val)
J-Alvesf156ae92021-10-08 12:10:05 +0100377{
Daniel Boulbyce386b12022-03-29 18:36:36 +0100378 return FFA_NOTIFICATIONS_BITMAP(val.arg4, val.arg5);
J-Alvesf156ae92021-10-08 12:10:05 +0100379}
380
J-Alves5bce2502021-06-14 14:27:45 +0100381/*
382 * FFA_NOTIFICATION_INFO_GET is a SMC64 interface.
383 * The following macros are defined for SMC64 implementation.
384 */
385#define FFA_NOTIFICATIONS_INFO_GET_MAX_IDS 20U
386
387#define FFA_NOTIFICATIONS_INFO_GET_FLAG_MORE_PENDING UINT64_C(0x1)
388
389#define FFA_NOTIFICATIONS_LISTS_COUNT_SHIFT 0x7U
390#define FFA_NOTIFICATIONS_LISTS_COUNT_MASK 0x1FU
391#define FFA_NOTIFICATIONS_LIST_SHIFT(l) (2 * (l - 1) + 12)
392#define FFA_NOTIFICATIONS_LIST_SIZE_MASK 0x3U
393
394static inline uint32_t ffa_notifications_info_get_lists_count(
Daniel Boulbyce386b12022-03-29 18:36:36 +0100395 struct ffa_value ret)
J-Alves5bce2502021-06-14 14:27:45 +0100396{
Daniel Boulbyce386b12022-03-29 18:36:36 +0100397 return (uint32_t)(ret.arg2 >> FFA_NOTIFICATIONS_LISTS_COUNT_SHIFT)
J-Alves5bce2502021-06-14 14:27:45 +0100398 & FFA_NOTIFICATIONS_LISTS_COUNT_MASK;
399}
400
401static inline uint32_t ffa_notifications_info_get_list_size(
Daniel Boulbyce386b12022-03-29 18:36:36 +0100402 struct ffa_value ret, uint32_t list)
J-Alves5bce2502021-06-14 14:27:45 +0100403{
Daniel Boulbyce386b12022-03-29 18:36:36 +0100404 return (uint32_t)(ret.arg2 >> FFA_NOTIFICATIONS_LIST_SHIFT(list)) &
J-Alves5bce2502021-06-14 14:27:45 +0100405 FFA_NOTIFICATIONS_LIST_SIZE_MASK;
406}
407
Daniel Boulbyce386b12022-03-29 18:36:36 +0100408static inline bool ffa_notifications_info_get_more_pending(struct ffa_value ret)
J-Alves5bce2502021-06-14 14:27:45 +0100409{
Daniel Boulbyce386b12022-03-29 18:36:36 +0100410 return (ret.arg2 & FFA_NOTIFICATIONS_INFO_GET_FLAG_MORE_PENDING) != 0U;
J-Alves5bce2502021-06-14 14:27:45 +0100411}
412
J-Alvesf3a393c2020-10-23 16:00:39 +0100413enum ffa_data_access {
414 FFA_DATA_ACCESS_NOT_SPECIFIED,
415 FFA_DATA_ACCESS_RO,
416 FFA_DATA_ACCESS_RW,
417 FFA_DATA_ACCESS_RESERVED,
418};
419
420enum ffa_instruction_access {
421 FFA_INSTRUCTION_ACCESS_NOT_SPECIFIED,
422 FFA_INSTRUCTION_ACCESS_NX,
423 FFA_INSTRUCTION_ACCESS_X,
424 FFA_INSTRUCTION_ACCESS_RESERVED,
425};
426
427enum ffa_memory_type {
428 FFA_MEMORY_NOT_SPECIFIED_MEM,
429 FFA_MEMORY_DEVICE_MEM,
430 FFA_MEMORY_NORMAL_MEM,
431};
432
433enum ffa_memory_cacheability {
434 FFA_MEMORY_CACHE_RESERVED = 0x0,
435 FFA_MEMORY_CACHE_NON_CACHEABLE = 0x1,
436 FFA_MEMORY_CACHE_RESERVED_1 = 0x2,
437 FFA_MEMORY_CACHE_WRITE_BACK = 0x3,
438 FFA_MEMORY_DEV_NGNRNE = 0x0,
439 FFA_MEMORY_DEV_NGNRE = 0x1,
440 FFA_MEMORY_DEV_NGRE = 0x2,
441 FFA_MEMORY_DEV_GRE = 0x3,
442};
443
444enum ffa_memory_shareability {
445 FFA_MEMORY_SHARE_NON_SHAREABLE,
446 FFA_MEMORY_SHARE_RESERVED,
447 FFA_MEMORY_OUTER_SHAREABLE,
448 FFA_MEMORY_INNER_SHAREABLE,
449};
450
Karl Meakin92aa7702023-10-11 18:48:01 +0100451typedef struct {
452 uint8_t data_access : 2;
453 uint8_t instruction_access : 2;
454} ffa_memory_access_permissions_t;
455
456_Static_assert(sizeof(ffa_memory_access_permissions_t) == sizeof(uint8_t),
457 "ffa_memory_access_permissions_t must be 1 byte wide");
J-Alvesf3a393c2020-10-23 16:00:39 +0100458
459/**
J-Alvesd13d7602023-05-05 14:19:03 +0100460 * FF-A v1.1 REL0 Table 10.18 memory region attributes descriptor NS Bit 6.
461 * Per section 10.10.4.1, NS bit is reserved for FFA_MEM_DONATE/LEND/SHARE
462 * and FFA_MEM_RETRIEVE_REQUEST.
463 */
464enum ffa_memory_security {
465 FFA_MEMORY_SECURITY_UNSPECIFIED = 0,
466 FFA_MEMORY_SECURITY_SECURE = 0,
467 FFA_MEMORY_SECURITY_NON_SECURE,
468};
469
470/**
J-Alvesb42d17f2022-07-04 12:42:13 +0100471 * This corresponds to table 10.18 of the FF-A v1.1 EAC0 specification, "Memory
472 * region attributes descriptor".
J-Alvesf3a393c2020-10-23 16:00:39 +0100473 */
Karl Meakin92aa7702023-10-11 18:48:01 +0100474typedef struct {
475 uint16_t shareability : 2;
476 uint16_t cacheability : 2;
477 uint16_t type : 2;
478 uint16_t security : 1;
479} ffa_memory_attributes_t;
J-Alvesf3a393c2020-10-23 16:00:39 +0100480
Karl Meakin92aa7702023-10-11 18:48:01 +0100481_Static_assert(sizeof(ffa_memory_attributes_t) == sizeof(uint16_t),
482 "ffa_memory_attributes_t must be 2 bytes wide");
J-Alvesf3a393c2020-10-23 16:00:39 +0100483
Karl Meakin0d4f5ff2023-10-13 20:03:16 +0100484#define FFA_MEMORY_HANDLE_ALLOCATOR_MASK UINT64_C(1)
485#define FFA_MEMORY_HANDLE_ALLOCATOR_SHIFT 63U
486#define FFA_MEMORY_HANDLE_ALLOCATOR_HYPERVISOR UINT64_C(1)
487#define FFA_MEMORY_HANDLE_ALLOCATOR_SPMC UINT64_C(0)
J-Alvesf3a393c2020-10-23 16:00:39 +0100488#define FFA_MEMORY_HANDLE_INVALID (~UINT64_C(0))
489
490/**
491 * A set of contiguous pages which is part of a memory region. This corresponds
J-Alvesb42d17f2022-07-04 12:42:13 +0100492 * to table 10.14 of the FF-A v1.1 EAC0 specification, "Constituent memory
493 * region descriptor".
J-Alvesf3a393c2020-10-23 16:00:39 +0100494 */
495struct ffa_memory_region_constituent {
496 /**
497 * The base IPA of the constituent memory region, aligned to 4 kiB page
498 * size granularity.
499 */
500 void *address;
501 /** The number of 4 kiB pages in the constituent memory region. */
502 uint32_t page_count;
503 /** Reserved field, must be 0. */
504 uint32_t reserved;
505};
506
507/**
J-Alvesb42d17f2022-07-04 12:42:13 +0100508 * A set of pages comprising a memory region. This corresponds to table 10.13 of
509 * the FF-A v1.1 EAC0 specification, "Composite memory region descriptor".
J-Alvesf3a393c2020-10-23 16:00:39 +0100510 */
511struct ffa_composite_memory_region {
512 /**
513 * The total number of 4 kiB pages included in this memory region. This
514 * must be equal to the sum of page counts specified in each
515 * `ffa_memory_region_constituent`.
516 */
517 uint32_t page_count;
518 /**
519 * The number of constituents (`ffa_memory_region_constituent`)
520 * included in this memory region range.
521 */
522 uint32_t constituent_count;
523 /** Reserved field, must be 0. */
524 uint64_t reserved_0;
525 /** An array of `constituent_count` memory region constituents. */
526 struct ffa_memory_region_constituent constituents[];
527};
528
529/**
530 * This corresponds to table "Memory access permissions descriptor" of the FFA
531 * 1.0 specification.
532 */
533struct ffa_memory_region_attributes {
534 /** The ID of the VM to which the memory is being given or shared. */
Daniel Boulbye79d2072021-03-03 11:34:53 +0000535 ffa_id_t receiver;
J-Alvesf3a393c2020-10-23 16:00:39 +0100536 /**
537 * The permissions with which the memory region should be mapped in the
538 * receiver's page table.
539 */
540 ffa_memory_access_permissions_t permissions;
541 /**
542 * Flags used during FFA_MEM_RETRIEVE_REQ and FFA_MEM_RETRIEVE_RESP
543 * for memory regions with multiple borrowers.
544 */
545 ffa_memory_receiver_flags_t flags;
546};
547
Karl Meakinbff9b3c2024-01-18 16:08:35 +0000548/**
549 * Endpoint RX/TX descriptor, as defined by Table 13.27 in FF-A v1.1 EAC0.
550 * It's used by the Hypervisor to describe the RX/TX buffers mapped by a VM
551 * to the SPMC, in order to allow indirect messaging.
552 */
553struct ffa_endpoint_rxtx_descriptor {
554 ffa_id_t endpoint_id;
555 uint16_t reserved;
556
557 /*
558 * 8-byte aligned offset from the base address of this descriptor to the
559 * `ffa_composite_memory_region` describing the RX buffer.
560 */
561 uint32_t rx_offset;
562
563 /*
564 * 8-byte aligned offset from the base address of this descriptor to the
565 * `ffa_composite_memory_region` describing the TX buffer.
566 */
567 uint32_t tx_offset;
568
569 /* Pad to align on 16-byte boundary. */
570 uint32_t pad;
571};
572
573_Static_assert(sizeof(struct ffa_endpoint_rxtx_descriptor) == 16,
574 "ffa_endpoint_rx_tx_descriptor must be 16 bytes wide");
575
J-Alvesf3a393c2020-10-23 16:00:39 +0100576/** Flags to control the behaviour of a memory sharing transaction. */
577typedef uint32_t ffa_memory_region_flags_t;
578
579/**
580 * Clear memory region contents after unmapping it from the sender and before
581 * mapping it for any receiver.
582 */
583#define FFA_MEMORY_REGION_FLAG_CLEAR 0x1U
584
585/**
586 * Whether the hypervisor may time slice the memory sharing or retrieval
587 * operation.
588 */
589#define FFA_MEMORY_REGION_FLAG_TIME_SLICE 0x2U
590
591/**
592 * Whether the hypervisor should clear the memory region after the receiver
593 * relinquishes it or is aborted.
594 */
595#define FFA_MEMORY_REGION_FLAG_CLEAR_RELINQUISH 0x4U
596
597#define FFA_MEMORY_REGION_TRANSACTION_TYPE_MASK ((0x3U) << 3)
598#define FFA_MEMORY_REGION_TRANSACTION_TYPE_UNSPECIFIED ((0x0U) << 3)
599#define FFA_MEMORY_REGION_TRANSACTION_TYPE_SHARE ((0x1U) << 3)
600#define FFA_MEMORY_REGION_TRANSACTION_TYPE_LEND ((0x2U) << 3)
601#define FFA_MEMORY_REGION_TRANSACTION_TYPE_DONATE ((0x3U) << 3)
602
J-Alves0435cae2020-11-06 10:49:56 +0000603/** The maximum number of recipients a memory region may be sent to. */
J-Alvesf3253312024-01-18 17:05:26 +0000604#define MAX_MEM_SHARE_RECIPIENTS 2U
J-Alves0435cae2020-11-06 10:49:56 +0000605
Daniel Boulbya24f23a2023-11-15 18:23:40 +0000606struct ffa_memory_access_impdef {
607 uint64_t val[2];
608};
609
J-Alvesf3a393c2020-10-23 16:00:39 +0100610/**
611 * This corresponds to table "Endpoint memory access descriptor" of the FFA 1.0
612 * specification.
613 */
614struct ffa_memory_access {
615 struct ffa_memory_region_attributes receiver_permissions;
616 /**
617 * Offset in bytes from the start of the outer `ffa_memory_region` to
618 * an `ffa_composite_memory_region` struct.
619 */
620 uint32_t composite_memory_region_offset;
Daniel Boulbya24f23a2023-11-15 18:23:40 +0000621 /* Space for implementation defined information */
622 struct ffa_memory_access_impdef impdef;
J-Alvesf3a393c2020-10-23 16:00:39 +0100623 uint64_t reserved_0;
624};
625
626/**
627 * Information about a set of pages which are being shared. This corresponds to
J-Alvesb42d17f2022-07-04 12:42:13 +0100628 * table 10.20 of the FF-A v1.1 EAC0 specification, "Lend, donate or share
629 * memory transaction descriptor". Note that it is also used for retrieve
630 * requests and responses.
J-Alvesf3a393c2020-10-23 16:00:39 +0100631 */
632struct ffa_memory_region {
633 /**
634 * The ID of the VM which originally sent the memory region, i.e. the
635 * owner.
636 */
Daniel Boulbye79d2072021-03-03 11:34:53 +0000637 ffa_id_t sender;
J-Alvesf3a393c2020-10-23 16:00:39 +0100638 ffa_memory_attributes_t attributes;
J-Alvesf3a393c2020-10-23 16:00:39 +0100639 /** Flags to control behaviour of the transaction. */
640 ffa_memory_region_flags_t flags;
641 ffa_memory_handle_t handle;
642 /**
643 * An implementation defined value associated with the receiver and the
644 * memory region.
645 */
646 uint64_t tag;
J-Alvesb42d17f2022-07-04 12:42:13 +0100647 /** Size of the memory access descriptor. */
648 uint32_t memory_access_desc_size;
J-Alvesf3a393c2020-10-23 16:00:39 +0100649 /**
650 * The number of `ffa_memory_access` entries included in this
651 * transaction.
652 */
653 uint32_t receiver_count;
654 /**
J-Alvesb42d17f2022-07-04 12:42:13 +0100655 * Offset of the 'receivers' field, which relates to the memory access
656 * descriptors.
657 */
658 uint32_t receivers_offset;
659 /** Reserved field (12 bytes) must be 0. */
660 uint32_t reserved[3];
661 /**
662 * An array of `receiver_count` endpoint memory access descriptors.
J-Alvesf3a393c2020-10-23 16:00:39 +0100663 * Each one specifies a memory region offset, an endpoint and the
664 * attributes with which this memory region should be mapped in that
665 * endpoint's page table.
666 */
667 struct ffa_memory_access receivers[];
668};
669
670/**
671 * Descriptor used for FFA_MEM_RELINQUISH requests. This corresponds to table
J-Alvesb42d17f2022-07-04 12:42:13 +0100672 * 16.25 of the FF-A v1.1 EAC0 specification, "Descriptor to relinquish a memory
673 * region".
J-Alvesf3a393c2020-10-23 16:00:39 +0100674 */
675struct ffa_mem_relinquish {
676 ffa_memory_handle_t handle;
677 ffa_memory_region_flags_t flags;
678 uint32_t endpoint_count;
Daniel Boulbye79d2072021-03-03 11:34:53 +0000679 ffa_id_t endpoints[];
J-Alvesf3a393c2020-10-23 16:00:39 +0100680};
681
682static inline ffa_memory_handle_t ffa_assemble_handle(uint32_t h1, uint32_t h2)
683{
J-Alves18c28052021-03-09 09:58:53 +0000684 return (ffa_notification_bitmap_t)h1 |
685 (ffa_notification_bitmap_t)h2 << 32;
J-Alvesf3a393c2020-10-23 16:00:39 +0100686}
687
Daniel Boulbyce386b12022-03-29 18:36:36 +0100688static inline ffa_memory_handle_t ffa_mem_success_handle(struct ffa_value r)
J-Alvesf3a393c2020-10-23 16:00:39 +0100689{
Daniel Boulbyce386b12022-03-29 18:36:36 +0100690 return ffa_assemble_handle(r.arg2, r.arg3);
J-Alvesf3a393c2020-10-23 16:00:39 +0100691}
692
Karl Meakin0d4f5ff2023-10-13 20:03:16 +0100693static inline ffa_memory_handle_t ffa_frag_handle(struct ffa_value r)
694{
695 return ffa_assemble_handle(r.arg1, r.arg2);
696}
697
698static inline ffa_id_t ffa_frag_sender(struct ffa_value args)
699{
700 return (args.arg4 >> 16) & 0xffff;
701}
702
J-Alvesf3a393c2020-10-23 16:00:39 +0100703/**
J-Alvesf0b3bd62024-01-18 17:01:37 +0000704 * To maintain forwards compatability we can't make assumptions about the size
705 * of the endpoint memory access descriptor so provide a helper function
706 * to get a receiver from the receiver array using the memory access descriptor
707 * size field from the memory region descriptor struct.
708 * Returns NULL if we cannot return the receiver.
709 */
710static inline struct ffa_memory_access *ffa_memory_region_get_receiver(
711 struct ffa_memory_region *memory_region, uint32_t receiver_index)
712{
713 uint32_t memory_access_desc_size =
714 memory_region->memory_access_desc_size;
715
716 if (receiver_index >= memory_region->receiver_count) {
717 return NULL;
718 }
719
720 /*
721 * Memory access descriptor size cannot be greater than the size of
722 * the memory access descriptor defined by the current FF-A version.
723 */
724 if (memory_access_desc_size > sizeof(struct ffa_memory_access)) {
725 return NULL;
726 }
727
728 /* Check we cannot use receivers offset to cause overflow. */
729 if (memory_region->receivers_offset !=
730 sizeof(struct ffa_memory_region)) {
731 return NULL;
732 }
733
734 return (struct ffa_memory_access *)((uint8_t *)memory_region +
735 memory_region->receivers_offset +
736 (receiver_index *
737 memory_access_desc_size));
738}
739
740/**
J-Alvesf3a393c2020-10-23 16:00:39 +0100741 * Gets the `ffa_composite_memory_region` for the given receiver from an
742 * `ffa_memory_region`, or NULL if it is not valid.
743 */
744static inline struct ffa_composite_memory_region *
745ffa_memory_region_get_composite(struct ffa_memory_region *memory_region,
746 uint32_t receiver_index)
747{
748 uint32_t offset = memory_region->receivers[receiver_index]
749 .composite_memory_region_offset;
750
751 if (offset == 0) {
752 return NULL;
753 }
754
755 return (struct ffa_composite_memory_region *)((uint8_t *)memory_region +
756 offset);
757}
758
759static inline uint32_t ffa_mem_relinquish_init(
760 struct ffa_mem_relinquish *relinquish_request,
761 ffa_memory_handle_t handle, ffa_memory_region_flags_t flags,
Daniel Boulbye79d2072021-03-03 11:34:53 +0000762 ffa_id_t sender)
J-Alvesf3a393c2020-10-23 16:00:39 +0100763{
764 relinquish_request->handle = handle;
765 relinquish_request->flags = flags;
766 relinquish_request->endpoint_count = 1;
767 relinquish_request->endpoints[0] = sender;
Daniel Boulbye79d2072021-03-03 11:34:53 +0000768 return sizeof(struct ffa_mem_relinquish) + sizeof(ffa_id_t);
J-Alvesf3a393c2020-10-23 16:00:39 +0100769}
770
771uint32_t ffa_memory_retrieve_request_init(
772 struct ffa_memory_region *memory_region, ffa_memory_handle_t handle,
Karl Meakin1331a8c2023-09-14 16:25:15 +0100773 ffa_id_t sender, struct ffa_memory_access receivers[],
774 uint32_t receiver_count, uint32_t tag, ffa_memory_region_flags_t flags,
J-Alvesf3a393c2020-10-23 16:00:39 +0100775 enum ffa_memory_type type, enum ffa_memory_cacheability cacheability,
776 enum ffa_memory_shareability shareability);
777
Karl Meakin3d879b82023-06-16 10:32:08 +0100778void ffa_hypervisor_retrieve_request_init(struct ffa_memory_region *region,
779 ffa_memory_handle_t handle);
780
J-Alvesf3a393c2020-10-23 16:00:39 +0100781uint32_t ffa_memory_region_init(
782 struct ffa_memory_region *memory_region, size_t memory_region_max_size,
Karl Meakin1331a8c2023-09-14 16:25:15 +0100783 ffa_id_t sender, struct ffa_memory_access receivers[],
784 uint32_t receiver_count,
J-Alvesf3a393c2020-10-23 16:00:39 +0100785 const struct ffa_memory_region_constituent constituents[],
786 uint32_t constituent_count, uint32_t tag,
Karl Meakin1331a8c2023-09-14 16:25:15 +0100787 ffa_memory_region_flags_t flags, enum ffa_memory_type type,
788 enum ffa_memory_cacheability cacheability,
J-Alvesf3a393c2020-10-23 16:00:39 +0100789 enum ffa_memory_shareability shareability, uint32_t *total_length,
790 uint32_t *fragment_length);
791
Karl Meakin0d4f5ff2023-10-13 20:03:16 +0100792uint32_t ffa_memory_fragment_init(
793 struct ffa_memory_region_constituent *fragment,
794 size_t fragment_max_size,
795 const struct ffa_memory_region_constituent constituents[],
796 uint32_t constituent_count, uint32_t *fragment_length);
797
Daniel Boulbyce386b12022-03-29 18:36:36 +0100798static inline ffa_id_t ffa_dir_msg_dest(struct ffa_value val) {
799 return (ffa_id_t)val.arg1 & U(0xFFFF);
J-Alves6cb21d92021-01-07 15:18:12 +0000800}
801
Daniel Boulbyce386b12022-03-29 18:36:36 +0100802static inline ffa_id_t ffa_dir_msg_source(struct ffa_value val) {
803 return (ffa_id_t)(val.arg1 >> 16U);
J-Alves6cb21d92021-01-07 15:18:12 +0000804}
805
Daniel Boulbyce386b12022-03-29 18:36:36 +0100806struct ffa_value ffa_msg_send_direct_req64(ffa_id_t source_id,
807 ffa_id_t dest_id, uint64_t arg0,
808 uint64_t arg1, uint64_t arg2,
809 uint64_t arg3, uint64_t arg4);
J-Alvesd1aae292020-10-08 17:16:58 +0100810
Daniel Boulbyce386b12022-03-29 18:36:36 +0100811struct ffa_value ffa_msg_send_direct_req32(ffa_id_t source_id,
812 ffa_id_t dest_id, uint32_t arg0,
813 uint32_t arg1, uint32_t arg2,
814 uint32_t arg3, uint32_t arg4);
J-Alvesecd30742021-02-19 18:31:06 +0000815
Daniel Boulbyce386b12022-03-29 18:36:36 +0100816struct ffa_value ffa_msg_send_direct_resp64(ffa_id_t source_id,
817 ffa_id_t dest_id, uint64_t arg0,
818 uint64_t arg1, uint64_t arg2,
819 uint64_t arg3, uint64_t arg4);
J-Alvesecd30742021-02-19 18:31:06 +0000820
Daniel Boulbyce386b12022-03-29 18:36:36 +0100821struct ffa_value ffa_msg_send_direct_resp32(ffa_id_t source_id,
822 ffa_id_t dest_id, uint32_t arg0,
823 uint32_t arg1, uint32_t arg2,
824 uint32_t arg3, uint32_t arg4);
J-Alves035b7d02021-02-11 10:40:35 +0000825
Daniel Boulbyce386b12022-03-29 18:36:36 +0100826struct ffa_value ffa_run(uint32_t dest_id, uint32_t vcpu_id);
827struct ffa_value ffa_version(uint32_t input_version);
828struct ffa_value ffa_id_get(void);
829struct ffa_value ffa_spm_id_get(void);
830struct ffa_value ffa_msg_wait(void);
831struct ffa_value ffa_error(int32_t error_code);
832struct ffa_value ffa_features(uint32_t feature);
Karl Meakin31b81772023-03-14 15:38:17 +0000833struct ffa_value ffa_features_with_input_property(uint32_t feature,
834 uint32_t param);
Daniel Boulbyce386b12022-03-29 18:36:36 +0100835struct ffa_value ffa_partition_info_get(const struct ffa_uuid uuid);
J-Alves067daca2024-04-08 17:31:54 +0100836struct ffa_value ffa_rx_release_with_id(ffa_id_t vm_id);
Daniel Boulbyce386b12022-03-29 18:36:36 +0100837struct ffa_value ffa_rx_release(void);
838struct ffa_value ffa_rxtx_map(uintptr_t send, uintptr_t recv, uint32_t pages);
Karl Meakinbff9b3c2024-01-18 16:08:35 +0000839struct ffa_value ffa_rxtx_unmap_with_id(uint32_t id);
Daniel Boulbyce386b12022-03-29 18:36:36 +0100840struct ffa_value ffa_rxtx_unmap(void);
J-Alves779fba62024-04-05 14:14:40 +0100841struct ffa_value ffa_msg_send2(uint32_t flags);
Daniel Boulbyce386b12022-03-29 18:36:36 +0100842struct ffa_value ffa_mem_donate(uint32_t descriptor_length,
843 uint32_t fragment_length);
844struct ffa_value ffa_mem_lend(uint32_t descriptor_length,
J-Alves3ea46d12020-09-09 11:13:05 +0100845 uint32_t fragment_length);
Daniel Boulbyce386b12022-03-29 18:36:36 +0100846struct ffa_value ffa_mem_share(uint32_t descriptor_length,
847 uint32_t fragment_length);
848struct ffa_value ffa_mem_retrieve_req(uint32_t descriptor_length,
849 uint32_t fragment_length);
850struct ffa_value ffa_mem_relinquish(void);
851struct ffa_value ffa_mem_reclaim(uint64_t handle, uint32_t flags);
Karl Meakin0d4f5ff2023-10-13 20:03:16 +0100852struct ffa_value ffa_mem_frag_rx(ffa_memory_handle_t handle,
853 uint32_t fragment_length);
854struct ffa_value ffa_mem_frag_tx(ffa_memory_handle_t handle,
855 uint32_t fragment_length);
Daniel Boulbyce386b12022-03-29 18:36:36 +0100856struct ffa_value ffa_notification_bitmap_create(ffa_id_t vm_id,
857 ffa_vcpu_count_t vcpu_count);
858struct ffa_value ffa_notification_bitmap_destroy(ffa_id_t vm_id);
859struct ffa_value ffa_notification_bind(ffa_id_t sender, ffa_id_t receiver,
860 uint32_t flags,
J-Alves18c28052021-03-09 09:58:53 +0000861 ffa_notification_bitmap_t notifications);
Daniel Boulbyce386b12022-03-29 18:36:36 +0100862struct ffa_value ffa_notification_unbind(ffa_id_t sender, ffa_id_t receiver,
863 ffa_notification_bitmap_t notifications);
864struct ffa_value ffa_notification_set(ffa_id_t sender, ffa_id_t receiver,
865 uint32_t flags,
866 ffa_notification_bitmap_t bitmap);
867struct ffa_value ffa_notification_get(ffa_id_t receiver, uint32_t vcpu_id,
868 uint32_t flags);
869struct ffa_value ffa_notification_info_get(void);
Maksims Svecovs0b452232022-05-24 11:30:34 +0100870
871struct ffa_value ffa_console_log(const char* message, size_t char_count);
Raghu Krishnamurthyab5321a2023-04-23 16:14:28 -0700872struct ffa_value ffa_partition_info_get_regs(const struct ffa_uuid uuid,
873 const uint16_t start_index,
874 const uint16_t tag);
Karl Meakin367ff542023-11-01 15:05:37 +0000875
Daniel Boulbya24f23a2023-11-15 18:23:40 +0000876struct ffa_memory_access ffa_memory_access_init(
Karl Meakin367ff542023-11-01 15:05:37 +0000877 ffa_id_t receiver_id, enum ffa_data_access data_access,
878 enum ffa_instruction_access instruction_access,
Daniel Boulbya24f23a2023-11-15 18:23:40 +0000879 ffa_memory_receiver_flags_t flags,
880 struct ffa_memory_access_impdef *impdef);
Karl Meakin367ff542023-11-01 15:05:37 +0000881
Karl Meakinbff9b3c2024-01-18 16:08:35 +0000882void ffa_endpoint_rxtx_descriptor_init(
883 struct ffa_endpoint_rxtx_descriptor *desc, ffa_id_t endpoint_id,
884 void *rx_address, void *tx_address);
885
886struct ffa_value ffa_rxtx_map_forward(
887 struct ffa_endpoint_rxtx_descriptor *desc, ffa_id_t endpoint_id,
888 void *rx_address, void *tx_address);
889
J-Alves7581c382020-05-07 18:34:20 +0100890#endif /* __ASSEMBLY__ */
891
892#endif /* FFA_HELPERS_H */