blob: ab1ced21713cc5a81cfd5d7544380bf457cfa98e [file] [log] [blame]
Gyorgy Szing30fa9872017-12-05 01:08:47 +00001#-------------------------------------------------------------------------------
Jamie Foxb93da8b2018-12-13 18:27:30 +00002# Copyright (c) 2017-2019, Arm Limited. All rights reserved.
Gyorgy Szing30fa9872017-12-05 01:08:47 +00003#
4# SPDX-License-Identifier: BSD-3-Clause
5#
6#-------------------------------------------------------------------------------
7
8cmake_minimum_required(VERSION 3.7)
9
10#Tell cmake where our modules can be found
11list(APPEND CMAKE_MODULE_PATH ${CMAKE_CURRENT_LIST_DIR}/../cmake)
12
13#Include common stuff to control cmake.
14include("Common/BuildSys")
15
Gyorgy Szing5b15f852018-09-24 17:07:36 +020016#Include functionality to enable building the documentation.
17include("Common/BuildDoxygenDoc")
18
Gyorgy Szing30fa9872017-12-05 01:08:47 +000019#Start an embedded project.
20embedded_project_start(CONFIG "${CMAKE_CURRENT_LIST_DIR}/../ConfigDefault.cmake")
21project(tfm_s LANGUAGES ASM C)
22embedded_project_fixup()
23
Tamas Bandb69d522018-03-01 10:04:41 +000024set(SECURE_FW_DIR "${CMAKE_CURRENT_LIST_DIR}")
25set(TFM_ROOT_DIR "${SECURE_FW_DIR}/..")
26set(TEST_DIR "${TFM_ROOT_DIR}/test")
27set(INTERFACE_DIR "${TFM_ROOT_DIR}/interface")
Gyorgy Szing30fa9872017-12-05 01:08:47 +000028
Tamas Ban3109b302018-08-15 14:51:58 +010029if (NOT DEFINED TFM_LVL)
30 message(FATAL_ERROR "Incomplete build configuration: TFM_LVL is undefined. ")
Gyorgy Szing30fa9872017-12-05 01:08:47 +000031endif()
32
33include(${SECURE_FW_DIR}/spm/CMakeLists.inc)
34include(${SECURE_FW_DIR}/core/CMakeLists.inc)
35include(${SECURE_FW_DIR}/ns_callable/CMakeLists.inc)
36
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000037set(BUILD_CMSIS_CORE On)
38set(BUILD_RETARGET On)
39set(BUILD_NATIVE_DRIVERS On)
40set(BUILD_STARTUP On)
41set(BUILD_TARGET_CFG On)
Marc Moreno Berengue4cc81fc2018-08-10 14:32:01 +010042# FIXME: The following TARGET flags are platform dependent.
43# It is required to add a mechanism to expose the
44# target capabilities and, based on them, set the
45# flags properly.
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000046set(BUILD_TARGET_HARDWARE_KEYS On)
Marc Moreno Berengue4cc81fc2018-08-10 14:32:01 +010047set(BUILD_TARGET_NV_COUNTERS On)
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000048set(BUILD_CMSIS_DRIVERS On)
49set(BUILD_TIME Off)
50set(BUILD_UART_STDOUT On)
Marc Moreno Berengue792fc682018-02-20 11:53:30 +000051set(BUILD_FLASH On)
Tamas Ban3681ce02018-11-22 15:19:24 +000052set(BUILD_BOOT_SEED On)
Tamas Ban38e17312018-11-22 15:26:35 +000053set(BUILD_DEVICE_ID On)
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000054if(NOT DEFINED PLATFORM_CMAKE_FILE)
55 message (FATAL_ERROR "Platform specific CMake is not defined. Please set PLATFORM_CMAKE_FILE.")
56elseif(NOT EXISTS ${PLATFORM_CMAKE_FILE})
57 message (FATAL_ERROR "Platform specific CMake \"${PLATFORM_CMAKE_FILE}\" file does not exist. Please fix value of PLATFORM_CMAKE_FILE.")
58else()
59 include(${PLATFORM_CMAKE_FILE})
60endif()
Gyorgy Szing30fa9872017-12-05 01:08:47 +000061
Mate Toth-Pal48fc6a02018-01-24 09:50:14 +010062if(NOT DEFINED S_SCATTER_FILE_NAME)
63 message(FATAL_ERROR "ERROR: Incomplete Configuration: S_SCATTER_FILE_NAME not defined, Include this file from a Config*.cmake")
64endif()
Gabor Kerteszd7d7d742018-07-04 11:50:05 +020065embedded_set_target_linker_file(TARGET ${PROJECT_NAME} PATH "${S_SCATTER_FILE_NAME}")
66
Gyorgy Szing30fa9872017-12-05 01:08:47 +000067embedded_target_include_directories(TARGET ${PROJECT_NAME} PATH ${TFM_ROOT_DIR} ABSOLUTE APPEND)
Tamas Bandb69d522018-03-01 10:04:41 +000068#Create an object library to avoid compiling all source files twice, when two executables
69#with different memory map need to be linked(BL2 non-swapping)
70set(PROJECT_OBJ_LIB ${PROJECT_NAME}_obj_lib)
71add_library(${PROJECT_OBJ_LIB} OBJECT ${ALL_SRC_C} ${ALL_SRC_C_S} ${ALL_SRC_ASM_S})
Gyorgy Szing30fa9872017-12-05 01:08:47 +000072
Tamas Bandb69d522018-03-01 10:04:41 +000073#Set common compiler flags
74config_setting_shared_compiler_flags(${PROJECT_OBJ_LIB})
75
Marc Moreno Berengue4cc81fc2018-08-10 14:32:01 +010076if(NOT DEFINED TARGET_NV_COUNTERS_ENABLE)
77 set(TARGET_NV_COUNTERS_ENABLE OFF)
78endif()
79
80if(TARGET_NV_COUNTERS_ENABLE)
81 embedded_set_target_compile_defines(TARGET ${PROJECT_OBJ_LIB} LANGUAGE C DEFINES TFM_NVCOUNTERS_ENABLE APPEND)
82endif()
83
Miklos Balint16a9ffb2018-11-19 11:35:49 +010084if (NOT DEFINED CORE_TEST)
85 message(FATAL_ERROR "Incomplete build configuration: CORE_TEST is undefined.")
86elseif(CORE_TEST)
Tamas Bandb69d522018-03-01 10:04:41 +000087 embedded_set_target_compile_defines(TARGET ${PROJECT_OBJ_LIB} LANGUAGE C DEFINES TFM_CORE_DEBUG TFM_PARTITION_TEST_CORE APPEND)
88endif()
89
Miklos Balint16a9ffb2018-11-19 11:35:49 +010090if (NOT DEFINED TFM_NS_CLIENT_IDENTIFICATION)
91 message(FATAL_ERROR "Incomplete build configuration: TFM_NS_CLIENT_IDENTIFICATION is undefined.")
92elseif (TFM_NS_CLIENT_IDENTIFICATION)
93 target_compile_definitions(${PROJECT_OBJ_LIB} PRIVATE TFM_NS_CLIENT_IDENTIFICATION)
94endif()
95
Tamas Bandb69d522018-03-01 10:04:41 +000096#Set include directories
97embedded_target_include_directories(TARGET ${PROJECT_OBJ_LIB} PATH ${TFM_ROOT_DIR} ABSOLUTE APPEND)
98
99# For the non-swapping BL2 configuration two executables need to be built.
100# One can be executed from flash partition slot_0 and other from slot_1.
101# Only the linking phase is different. This function captures common settings
102# and eliminates copy-paste.
103function(set_up_secure_fw_build)
104 set( _OPTIONS_ARGS) #Option (on/off) arguments (e.g. IGNORE_CASE)
105 set( _ONE_VALUE_ARGS S_TARGET VENEER_NAME POSTFIX) #Single option arguments (e.g. PATH "./foo/bar")
106 set( _MULTI_VALUE_ARGS LINK_DEFINES) #List arguments (e.g. LANGUAGES C ASM CXX)
107 cmake_parse_arguments(_MY_PARAMS "${_OPTIONS_ARGS}" "${_ONE_VALUE_ARGS}" "${_MULTI_VALUE_ARGS}" ${ARGN})
108
109 if (NOT DEFINED _MY_PARAMS_S_TARGET)
110 message(FATAL_ERROR "set_up_secure_fw_build(): mandatory parameter 'S_TARGET' missing.")
111 endif()
112
113 if (NOT DEFINED _MY_PARAMS_VENEER_NAME)
114 message(FATAL_ERROR "set_up_secure_fw_build(): mandatory parameter 'VENEER_NAME' missing.")
115 endif()
116
117 set(EXE_NAME ${_MY_PARAMS_S_TARGET}${_MY_PARAMS_POSTFIX})
118 set(VENEER_NAME ${_MY_PARAMS_VENEER_NAME}${_MY_PARAMS_POSTFIX}.o)
119
120 #Create linker target: add object library to executable
121 add_executable(${EXE_NAME} $<TARGET_OBJECTS:${PROJECT_OBJ_LIB}>)
122
123 #Set common linker flags
124 config_setting_shared_linker_flags(${EXE_NAME})
125
126 #Indicates to secure target(s) already created
127 set(TARGET_TFM_S_EXISTED True PARENT_SCOPE)
128
129 #Set individual linker flags per linker target/executable
130 foreach(flag ${_MY_PARAMS_LINK_DEFINES})
131 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "${flag}")
132 endforeach(flag)
133
Antonio de Angelis8908f472018-08-31 15:44:25 +0100134
Tamas Bandb69d522018-03-01 10:04:41 +0000135 embedded_set_target_linker_file(TARGET ${EXE_NAME} PATH "${S_SCATTER_FILE_NAME}")
136
Antonio de Angelis8908f472018-08-31 15:44:25 +0100137 add_dependencies(${EXE_NAME} tfm_crypto)
Tamas Bandb69d522018-03-01 10:04:41 +0000138 add_dependencies(${EXE_NAME} tfm_storage)
139 add_dependencies(${EXE_NAME} tfm_audit)
Marc Moreno Berengue8e0fa7a2018-10-04 18:25:13 +0100140 add_dependencies(${EXE_NAME} tfm_platform)
Tamas Bandb69d522018-03-01 10:04:41 +0000141 add_dependencies(${EXE_NAME} tfm_secure_tests)
Tamas Ban48a0eb52018-08-17 12:48:05 +0100142 add_dependencies(${EXE_NAME} tfm_attest)
Tamas Bandb69d522018-03-01 10:04:41 +0000143
144 #Set macro definitions for the project.
145 embedded_set_target_compile_defines(TARGET ${PROJECT_OBJ_LIB} LANGUAGE C DEFINES __thumb2__ __ARM_FEATURE_CMSE=3 TFM_LVL=${TFM_LVL} DAUTH_CHIP_DEFAULT APPEND)
146
147 if (REGRESSION OR CORE_TEST)
Jamie Foxb93da8b2018-12-13 18:27:30 +0000148 if (DEFINED TFM_PARTITION_TEST_SECURE_SERVICES AND TFM_PARTITION_TEST_SECURE_SERVICES)
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200149 #The test service veneers in the tfm_secure_tests library may not be
150 #referenced in the secure binary so the veneer objects are explicitly loaded
151 #from the secure tests library. However by generating the veneer files from
152 #the manifests, all the iovec interfaced veneers are in a single file in the
153 #secure_fw directory. The core test partitions use the veneers with the
Jamie Foxb93da8b2018-12-13 18:27:30 +0000154 #iovec API, so we only need the explicit load in case the secure client test
155 #partition is present.
156 #FIXME Remove the explicit load and the above comment once the secure client
157 #test partition uses the generated veneers.
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200158 if(${COMPILER} STREQUAL "ARMCLANG")
Tamas Ban85c1c912019-02-14 13:25:51 +0000159 target_link_libraries(${EXE_NAME} tfm_attest tfm_secure_tests tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform $<TARGET_LINKER_FILE:tfm_secure_tests>\(*veneers.o\) tfm_attest)
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200160 elseif(${COMPILER} STREQUAL "GNUARM")
Tamas Ban85c1c912019-02-14 13:25:51 +0000161 target_link_libraries(${EXE_NAME} tfm_attest tfm_secure_tests tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform tfm_attest)
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200162 else()
163 message(FATAL_ERROR "unknown compiler" )
164 endif()
Tamas Bandb69d522018-03-01 10:04:41 +0000165 else()
Tamas Ban85c1c912019-02-14 13:25:51 +0000166 target_link_libraries(${EXE_NAME} tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform tfm_secure_tests tfm_attest)
Tamas Bandb69d522018-03-01 10:04:41 +0000167 endif()
168 else()
Tamas Ban85c1c912019-02-14 13:25:51 +0000169 target_link_libraries(${EXE_NAME} tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform tfm_attest)
Tamas Bandb69d522018-03-01 10:04:41 +0000170 endif()
171
Antonio de Angelis8908f472018-08-31 15:44:25 +0100172
Tamas Bandb69d522018-03-01 10:04:41 +0000173 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_LVL=${TFM_LVL}")
174
175 if (NOT DEFINED TFM_PARTITION_TEST_CORE)
176 message(FATAL_ERROR "Incomplete build configuration: TFM_PARTITION_TEST_CORE is undefined. ")
177 elseif (TFM_PARTITION_TEST_CORE)
178 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_PARTITION_TEST_CORE")
179 endif()
180
Tamas Bandb69d522018-03-01 10:04:41 +0000181 if (NOT DEFINED TFM_PARTITION_TEST_SECURE_SERVICES)
182 message(FATAL_ERROR "Incomplete build configuration: TFM_PARTITION_TEST_SECURE_SERVICES is undefined. ")
183 elseif (TFM_PARTITION_TEST_SECURE_SERVICES)
184 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_PARTITION_TEST_SECURE_SERVICES")
185 endif()
186
Marc Moreno Berenguecae2c532018-10-09 12:58:46 +0100187 if (NOT DEFINED TEST_FRAMEWORK_S)
188 message(FATAL_ERROR "Incomplete build configuration: TEST_FRAMEWORK_S is undefined.")
189 elseif (TEST_FRAMEWORK_S)
190 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TEST_FRAMEWORK_S")
191 endif()
192
193 if (NOT DEFINED TEST_FRAMEWORK_NS)
194 message(FATAL_ERROR "Incomplete build configuration: TEST_FRAMEWORK_NS is undefined.")
195 elseif (TEST_FRAMEWORK_NS)
196 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TEST_FRAMEWORK_NS")
197 endif()
198
Tamas Bandb69d522018-03-01 10:04:41 +0000199 if (NOT DEFINED BL2)
200 message(FATAL_ERROR "Incomplete build configuration: BL2 is undefined. ")
201 elseif (BL2)
202 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "BL2")
203 endif()
204
205 if(CORE_TEST)
206 set(SECURE_AXF_DIR_PREFIX "${CMAKE_BINARY_DIR}/unit_test/")
207 set_target_properties(${EXE_NAME} PROPERTIES RUNTIME_OUTPUT_DIRECTORY ${SECURE_AXF_DIR_PREFIX})
208 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_PARTITION_TEST_CORE")
209 endif()
210
211 if(NOT DEFINED PLATFORM_LINK_INCLUDES)
212 message(FATAL_ERROR "ERROR: Incomplete Configuration: PLATFORM_LINK_INCLUDES is not defined.")
213 endif()
214 embedded_set_target_link_includes(TARGET ${EXE_NAME} INCLUDES "${PLATFORM_LINK_INCLUDES}")
215
216 #Generate binary file from executable
217 compiler_generate_binary_output(${EXE_NAME})
218
219 #Configure where we put the CMSE veneers generated by the compiler.
220 if (DEFINED S_VENEER_FILE_LOCATION)
221 set(S_VENEER_FILE "${S_VENEER_FILE_LOCATION}/${VENEER_NAME}")
222 else()
223 set(S_VENEER_FILE "${CMAKE_CURRENT_BINARY_DIR}/${VENEER_NAME}")
224 endif()
225 compiler_set_cmse_output(${EXE_NAME} "${S_VENEER_FILE}")
226
227 #Configure what file shall be installed.
228 #Set install location. Keep original value to avoid overriding command line settings.
229 if(CMAKE_INSTALL_PREFIX_INITIALIZED_TO_DEFAULT)
230 set(CMAKE_INSTALL_PREFIX "${CMAKE_BINARY_DIR}/install" CACHE PATH "Default install location for secure_fw." FORCE)
231 endif()
232
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200233 #Export files needed to interface external applications at: <build_dir>/install/export/tfm/
Tamas Bandb69d522018-03-01 10:04:41 +0000234 install(DIRECTORY ${TFM_ROOT_DIR}/interface/include/
Tamas Ban57bfa432018-04-13 16:05:49 +0100235 DESTINATION export/tfm/inc)
Tamas Bandb69d522018-03-01 10:04:41 +0000236
237 install(DIRECTORY ${TFM_ROOT_DIR}/interface/src/
Tamas Ban57bfa432018-04-13 16:05:49 +0100238 DESTINATION export/tfm/src)
Tamas Bandb69d522018-03-01 10:04:41 +0000239
Tamas Ban57bfa432018-04-13 16:05:49 +0100240 install(FILES ${S_VENEER_FILE} DESTINATION export/tfm/veneers)
Tamas Bandb69d522018-03-01 10:04:41 +0000241
Tamas Ban57bfa432018-04-13 16:05:49 +0100242 #Collect executables to common location: <build_dir>/install/outputs/
Tamas Bandb69d522018-03-01 10:04:41 +0000243 if (DEFINED SECURE_AXF_DIR_PREFIX)
244 set(MY_BINARY_DIR ${SECURE_AXF_DIR_PREFIX})
245 else()
246 set(MY_BINARY_DIR ${CMAKE_CURRENT_BINARY_DIR})
247 endif()
248
249 install(FILES ${MY_BINARY_DIR}/${EXE_NAME}.axf
250 ${MY_BINARY_DIR}/${EXE_NAME}.bin
251 DESTINATION outputs/${TARGET_PLATFORM}/)
252
253 install(FILES ${MY_BINARY_DIR}/${EXE_NAME}.axf
254 ${MY_BINARY_DIR}/${EXE_NAME}.bin
255 DESTINATION outputs/fvp/)
256endfunction()
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000257
258#Adds the test directory
259add_subdirectory(${TFM_ROOT_DIR}/test ${CMAKE_BINARY_DIR}/test)
260
Antonio de Angelis8908f472018-08-31 15:44:25 +0100261#Add the crypto library target
262add_subdirectory(${SECURE_FW_DIR}/services/crypto)
263
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000264#Add the secure storage library target
265add_subdirectory(${SECURE_FW_DIR}/services/secure_storage)
Tamas Bandb69d522018-03-01 10:04:41 +0000266
Antonio de Angeliscc657b32018-02-05 15:56:47 +0000267#Add the audit logging library target
268add_subdirectory(${SECURE_FW_DIR}/services/audit_logging)
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000269
Marc Moreno Berengue8e0fa7a2018-10-04 18:25:13 +0100270#Add the platform service library target
271add_subdirectory(${SECURE_FW_DIR}/services/platform)
272
Tamas Ban48a0eb52018-08-17 12:48:05 +0100273#Add the initial attestation service library target
274add_subdirectory(${SECURE_FW_DIR}/services/initial_attestation)
275
Tamas Bandb69d522018-03-01 10:04:41 +0000276if (LINK_TO_BOTH_MEMORY_REGION)
277 #Link to primary memory region
278 set_up_secure_fw_build(S_TARGET ${PROJECT_NAME}
279 VENEER_NAME s_veneers
280 POSTFIX "_0")
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000281
Tamas Bandb69d522018-03-01 10:04:41 +0000282 #Link to secondary memory region(add extra linker flag)
283 set_up_secure_fw_build(S_TARGET ${PROJECT_NAME}
284 LINK_DEFINES "LINK_TO_SECONDARY_PARTITION"
285 VENEER_NAME s_veneers
286 POSTFIX "_1")
Jamie Fox5592db02017-12-18 16:48:29 +0000287else()
Tamas Bandb69d522018-03-01 10:04:41 +0000288 #Link to primary memory region only
289 set_up_secure_fw_build(S_TARGET ${PROJECT_NAME}
290 VENEER_NAME s_veneers)
Jamie Fox5592db02017-12-18 16:48:29 +0000291endif()
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000292
Tamas Bandb69d522018-03-01 10:04:41 +0000293#Finally let CMake system apply changes after the whole project is defined.
294if (TARGET ${PROJECT_NAME})
295 embedded_project_end(${PROJECT_NAME})
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000296endif()
297
Tamas Bandb69d522018-03-01 10:04:41 +0000298if (TARGET ${PROJECT_NAME}_0)
299 embedded_project_end(${PROJECT_NAME}_0)
Jamie Fox5592db02017-12-18 16:48:29 +0000300endif()
301
Tamas Bandb69d522018-03-01 10:04:41 +0000302if (TARGET ${PROJECT_NAME}_1)
303 embedded_project_end(${PROJECT_NAME}_1)
Ben Davis6d7256b2018-04-18 14:16:53 +0100304endif()
305
Tamas Bandb69d522018-03-01 10:04:41 +0000306embedded_project_end(${PROJECT_OBJ_LIB})