blob: 57aa6f0dc2ffc7acd41f09f0a8b3132ffd699d06 [file] [log] [blame]
Gyorgy Szing30fa9872017-12-05 01:08:47 +00001#-------------------------------------------------------------------------------
Jamie Foxb93da8b2018-12-13 18:27:30 +00002# Copyright (c) 2017-2019, Arm Limited. All rights reserved.
Gyorgy Szing30fa9872017-12-05 01:08:47 +00003#
4# SPDX-License-Identifier: BSD-3-Clause
5#
6#-------------------------------------------------------------------------------
7
8cmake_minimum_required(VERSION 3.7)
9
10#Tell cmake where our modules can be found
11list(APPEND CMAKE_MODULE_PATH ${CMAKE_CURRENT_LIST_DIR}/../cmake)
12
13#Include common stuff to control cmake.
14include("Common/BuildSys")
15
Gyorgy Szing5b15f852018-09-24 17:07:36 +020016#Include functionality to enable building the documentation.
17include("Common/BuildDoxygenDoc")
18
Gyorgy Szing30fa9872017-12-05 01:08:47 +000019#Start an embedded project.
20embedded_project_start(CONFIG "${CMAKE_CURRENT_LIST_DIR}/../ConfigDefault.cmake")
21project(tfm_s LANGUAGES ASM C)
22embedded_project_fixup()
23
Tamas Bandb69d522018-03-01 10:04:41 +000024set(SECURE_FW_DIR "${CMAKE_CURRENT_LIST_DIR}")
25set(TFM_ROOT_DIR "${SECURE_FW_DIR}/..")
26set(TEST_DIR "${TFM_ROOT_DIR}/test")
27set(INTERFACE_DIR "${TFM_ROOT_DIR}/interface")
Gyorgy Szing30fa9872017-12-05 01:08:47 +000028
Tamas Ban3109b302018-08-15 14:51:58 +010029if (NOT DEFINED TFM_LVL)
30 message(FATAL_ERROR "Incomplete build configuration: TFM_LVL is undefined. ")
Gyorgy Szing30fa9872017-12-05 01:08:47 +000031endif()
32
33include(${SECURE_FW_DIR}/spm/CMakeLists.inc)
Gyorgy Szing30fa9872017-12-05 01:08:47 +000034include(${SECURE_FW_DIR}/ns_callable/CMakeLists.inc)
Edison Aif09acd42018-09-20 14:00:07 +080035#Involve all IPC related sources in ipc's CMakeLists.inc, and switch core between IPC and Library.
Ken Liub79a6f52018-07-18 16:36:02 +080036if(TFM_PSA_API)
37 include(${SECURE_FW_DIR}/core/ipc/CMakeLists.inc)
Edison Aif09acd42018-09-20 14:00:07 +080038else()
39 include(${SECURE_FW_DIR}/core/CMakeLists.inc)
Ken Liub79a6f52018-07-18 16:36:02 +080040endif()
Gyorgy Szing30fa9872017-12-05 01:08:47 +000041
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000042set(BUILD_CMSIS_CORE On)
43set(BUILD_RETARGET On)
44set(BUILD_NATIVE_DRIVERS On)
45set(BUILD_STARTUP On)
46set(BUILD_TARGET_CFG On)
Marc Moreno Berengue4cc81fc2018-08-10 14:32:01 +010047# FIXME: The following TARGET flags are platform dependent.
48# It is required to add a mechanism to expose the
49# target capabilities and, based on them, set the
50# flags properly.
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000051set(BUILD_TARGET_HARDWARE_KEYS On)
Marc Moreno Berengue4cc81fc2018-08-10 14:32:01 +010052set(BUILD_TARGET_NV_COUNTERS On)
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000053set(BUILD_CMSIS_DRIVERS On)
54set(BUILD_TIME Off)
55set(BUILD_UART_STDOUT On)
Marc Moreno Berengue792fc682018-02-20 11:53:30 +000056set(BUILD_FLASH On)
Tamas Ban3681ce02018-11-22 15:19:24 +000057set(BUILD_BOOT_SEED On)
Tamas Ban38e17312018-11-22 15:26:35 +000058set(BUILD_DEVICE_ID On)
Marc Moreno Berenguea1f296f2018-01-25 15:21:22 +000059if(NOT DEFINED PLATFORM_CMAKE_FILE)
60 message (FATAL_ERROR "Platform specific CMake is not defined. Please set PLATFORM_CMAKE_FILE.")
61elseif(NOT EXISTS ${PLATFORM_CMAKE_FILE})
62 message (FATAL_ERROR "Platform specific CMake \"${PLATFORM_CMAKE_FILE}\" file does not exist. Please fix value of PLATFORM_CMAKE_FILE.")
63else()
64 include(${PLATFORM_CMAKE_FILE})
65endif()
Gyorgy Szing30fa9872017-12-05 01:08:47 +000066
Mate Toth-Pal48fc6a02018-01-24 09:50:14 +010067if(NOT DEFINED S_SCATTER_FILE_NAME)
68 message(FATAL_ERROR "ERROR: Incomplete Configuration: S_SCATTER_FILE_NAME not defined, Include this file from a Config*.cmake")
69endif()
Gabor Kerteszd7d7d742018-07-04 11:50:05 +020070embedded_set_target_linker_file(TARGET ${PROJECT_NAME} PATH "${S_SCATTER_FILE_NAME}")
71
Gyorgy Szing30fa9872017-12-05 01:08:47 +000072embedded_target_include_directories(TARGET ${PROJECT_NAME} PATH ${TFM_ROOT_DIR} ABSOLUTE APPEND)
Tamas Bandb69d522018-03-01 10:04:41 +000073#Create an object library to avoid compiling all source files twice, when two executables
74#with different memory map need to be linked(BL2 non-swapping)
75set(PROJECT_OBJ_LIB ${PROJECT_NAME}_obj_lib)
76add_library(${PROJECT_OBJ_LIB} OBJECT ${ALL_SRC_C} ${ALL_SRC_C_S} ${ALL_SRC_ASM_S})
Gyorgy Szing30fa9872017-12-05 01:08:47 +000077
Tamas Bandb69d522018-03-01 10:04:41 +000078#Set common compiler flags
79config_setting_shared_compiler_flags(${PROJECT_OBJ_LIB})
80
Marc Moreno Berengue4cc81fc2018-08-10 14:32:01 +010081if(NOT DEFINED TARGET_NV_COUNTERS_ENABLE)
82 set(TARGET_NV_COUNTERS_ENABLE OFF)
83endif()
84
85if(TARGET_NV_COUNTERS_ENABLE)
86 embedded_set_target_compile_defines(TARGET ${PROJECT_OBJ_LIB} LANGUAGE C DEFINES TFM_NVCOUNTERS_ENABLE APPEND)
87endif()
88
Miklos Balint16a9ffb2018-11-19 11:35:49 +010089if (NOT DEFINED CORE_TEST)
90 message(FATAL_ERROR "Incomplete build configuration: CORE_TEST is undefined.")
91elseif(CORE_TEST)
Tamas Bandb69d522018-03-01 10:04:41 +000092 embedded_set_target_compile_defines(TARGET ${PROJECT_OBJ_LIB} LANGUAGE C DEFINES TFM_CORE_DEBUG TFM_PARTITION_TEST_CORE APPEND)
93endif()
94
Miklos Balint16a9ffb2018-11-19 11:35:49 +010095if (NOT DEFINED TFM_NS_CLIENT_IDENTIFICATION)
96 message(FATAL_ERROR "Incomplete build configuration: TFM_NS_CLIENT_IDENTIFICATION is undefined.")
97elseif (TFM_NS_CLIENT_IDENTIFICATION)
98 target_compile_definitions(${PROJECT_OBJ_LIB} PRIVATE TFM_NS_CLIENT_IDENTIFICATION)
99endif()
100
Tamas Bandb69d522018-03-01 10:04:41 +0000101#Set include directories
102embedded_target_include_directories(TARGET ${PROJECT_OBJ_LIB} PATH ${TFM_ROOT_DIR} ABSOLUTE APPEND)
103
104# For the non-swapping BL2 configuration two executables need to be built.
105# One can be executed from flash partition slot_0 and other from slot_1.
106# Only the linking phase is different. This function captures common settings
107# and eliminates copy-paste.
108function(set_up_secure_fw_build)
109 set( _OPTIONS_ARGS) #Option (on/off) arguments (e.g. IGNORE_CASE)
110 set( _ONE_VALUE_ARGS S_TARGET VENEER_NAME POSTFIX) #Single option arguments (e.g. PATH "./foo/bar")
111 set( _MULTI_VALUE_ARGS LINK_DEFINES) #List arguments (e.g. LANGUAGES C ASM CXX)
112 cmake_parse_arguments(_MY_PARAMS "${_OPTIONS_ARGS}" "${_ONE_VALUE_ARGS}" "${_MULTI_VALUE_ARGS}" ${ARGN})
113
114 if (NOT DEFINED _MY_PARAMS_S_TARGET)
115 message(FATAL_ERROR "set_up_secure_fw_build(): mandatory parameter 'S_TARGET' missing.")
116 endif()
117
118 if (NOT DEFINED _MY_PARAMS_VENEER_NAME)
119 message(FATAL_ERROR "set_up_secure_fw_build(): mandatory parameter 'VENEER_NAME' missing.")
120 endif()
121
122 set(EXE_NAME ${_MY_PARAMS_S_TARGET}${_MY_PARAMS_POSTFIX})
123 set(VENEER_NAME ${_MY_PARAMS_VENEER_NAME}${_MY_PARAMS_POSTFIX}.o)
124
125 #Create linker target: add object library to executable
126 add_executable(${EXE_NAME} $<TARGET_OBJECTS:${PROJECT_OBJ_LIB}>)
127
128 #Set common linker flags
129 config_setting_shared_linker_flags(${EXE_NAME})
130
131 #Indicates to secure target(s) already created
132 set(TARGET_TFM_S_EXISTED True PARENT_SCOPE)
133
134 #Set individual linker flags per linker target/executable
135 foreach(flag ${_MY_PARAMS_LINK_DEFINES})
136 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "${flag}")
137 endforeach(flag)
138
Antonio de Angelis8908f472018-08-31 15:44:25 +0100139
Tamas Bandb69d522018-03-01 10:04:41 +0000140 embedded_set_target_linker_file(TARGET ${EXE_NAME} PATH "${S_SCATTER_FILE_NAME}")
141
Antonio de Angelis8908f472018-08-31 15:44:25 +0100142 add_dependencies(${EXE_NAME} tfm_crypto)
Tamas Bandb69d522018-03-01 10:04:41 +0000143 add_dependencies(${EXE_NAME} tfm_storage)
144 add_dependencies(${EXE_NAME} tfm_audit)
Marc Moreno Berengue8e0fa7a2018-10-04 18:25:13 +0100145 add_dependencies(${EXE_NAME} tfm_platform)
Tamas Bandb69d522018-03-01 10:04:41 +0000146 add_dependencies(${EXE_NAME} tfm_secure_tests)
Tamas Ban48a0eb52018-08-17 12:48:05 +0100147 add_dependencies(${EXE_NAME} tfm_attest)
Tamas Bandb69d522018-03-01 10:04:41 +0000148
149 #Set macro definitions for the project.
150 embedded_set_target_compile_defines(TARGET ${PROJECT_OBJ_LIB} LANGUAGE C DEFINES __thumb2__ __ARM_FEATURE_CMSE=3 TFM_LVL=${TFM_LVL} DAUTH_CHIP_DEFAULT APPEND)
151
Edison Ai7d6cb3b2018-09-19 16:41:50 +0800152 if (REGRESSION OR CORE_TEST OR CORE_IPC)
Jamie Foxb93da8b2018-12-13 18:27:30 +0000153 if (DEFINED TFM_PARTITION_TEST_SECURE_SERVICES AND TFM_PARTITION_TEST_SECURE_SERVICES)
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200154 #The test service veneers in the tfm_secure_tests library may not be
155 #referenced in the secure binary so the veneer objects are explicitly loaded
156 #from the secure tests library. However by generating the veneer files from
157 #the manifests, all the iovec interfaced veneers are in a single file in the
158 #secure_fw directory. The core test partitions use the veneers with the
Jamie Foxb93da8b2018-12-13 18:27:30 +0000159 #iovec API, so we only need the explicit load in case the secure client test
160 #partition is present.
161 #FIXME Remove the explicit load and the above comment once the secure client
162 #test partition uses the generated veneers.
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200163 if(${COMPILER} STREQUAL "ARMCLANG")
Tamas Ban85c1c912019-02-14 13:25:51 +0000164 target_link_libraries(${EXE_NAME} tfm_attest tfm_secure_tests tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform $<TARGET_LINKER_FILE:tfm_secure_tests>\(*veneers.o\) tfm_attest)
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200165 elseif(${COMPILER} STREQUAL "GNUARM")
Tamas Ban85c1c912019-02-14 13:25:51 +0000166 target_link_libraries(${EXE_NAME} tfm_attest tfm_secure_tests tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform tfm_attest)
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200167 else()
168 message(FATAL_ERROR "unknown compiler" )
169 endif()
Tamas Bandb69d522018-03-01 10:04:41 +0000170 else()
Tamas Ban85c1c912019-02-14 13:25:51 +0000171 target_link_libraries(${EXE_NAME} tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform tfm_secure_tests tfm_attest)
Tamas Bandb69d522018-03-01 10:04:41 +0000172 endif()
173 else()
Tamas Ban85c1c912019-02-14 13:25:51 +0000174 target_link_libraries(${EXE_NAME} tfm_attest tfm_crypto tfm_storage tfm_audit tfm_platform tfm_attest)
Tamas Bandb69d522018-03-01 10:04:41 +0000175 endif()
176
Antonio de Angelis8908f472018-08-31 15:44:25 +0100177
Tamas Bandb69d522018-03-01 10:04:41 +0000178 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_LVL=${TFM_LVL}")
179
180 if (NOT DEFINED TFM_PARTITION_TEST_CORE)
181 message(FATAL_ERROR "Incomplete build configuration: TFM_PARTITION_TEST_CORE is undefined. ")
182 elseif (TFM_PARTITION_TEST_CORE)
183 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_PARTITION_TEST_CORE")
184 endif()
185
Tamas Bandb69d522018-03-01 10:04:41 +0000186 if (NOT DEFINED TFM_PARTITION_TEST_SECURE_SERVICES)
187 message(FATAL_ERROR "Incomplete build configuration: TFM_PARTITION_TEST_SECURE_SERVICES is undefined. ")
188 elseif (TFM_PARTITION_TEST_SECURE_SERVICES)
189 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_PARTITION_TEST_SECURE_SERVICES")
190 endif()
191
Marc Moreno Berenguecae2c532018-10-09 12:58:46 +0100192 if (NOT DEFINED TEST_FRAMEWORK_S)
193 message(FATAL_ERROR "Incomplete build configuration: TEST_FRAMEWORK_S is undefined.")
194 elseif (TEST_FRAMEWORK_S)
195 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TEST_FRAMEWORK_S")
196 endif()
197
198 if (NOT DEFINED TEST_FRAMEWORK_NS)
199 message(FATAL_ERROR "Incomplete build configuration: TEST_FRAMEWORK_NS is undefined.")
200 elseif (TEST_FRAMEWORK_NS)
201 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TEST_FRAMEWORK_NS")
202 endif()
203
Tamas Bandb69d522018-03-01 10:04:41 +0000204 if (NOT DEFINED BL2)
205 message(FATAL_ERROR "Incomplete build configuration: BL2 is undefined. ")
206 elseif (BL2)
207 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "BL2")
208 endif()
209
Summer Qin11883012018-07-04 16:36:21 +0800210 if (NOT DEFINED TFM_PSA_API)
211 message(FATAL_ERROR "Incomplete build configuration: TFM_PSA_API is undefined. ")
212 elseif (TFM_PSA_API)
213 embedded_set_target_link_defines(TARGET ${PROJECT_NAME} DEFINES "TFM_PSA_API")
214 endif()
215
Tamas Bandb69d522018-03-01 10:04:41 +0000216 if(CORE_TEST)
217 set(SECURE_AXF_DIR_PREFIX "${CMAKE_BINARY_DIR}/unit_test/")
218 set_target_properties(${EXE_NAME} PROPERTIES RUNTIME_OUTPUT_DIRECTORY ${SECURE_AXF_DIR_PREFIX})
219 embedded_set_target_link_defines(TARGET ${EXE_NAME} DEFINES "TFM_PARTITION_TEST_CORE")
220 endif()
221
222 if(NOT DEFINED PLATFORM_LINK_INCLUDES)
223 message(FATAL_ERROR "ERROR: Incomplete Configuration: PLATFORM_LINK_INCLUDES is not defined.")
224 endif()
225 embedded_set_target_link_includes(TARGET ${EXE_NAME} INCLUDES "${PLATFORM_LINK_INCLUDES}")
226
227 #Generate binary file from executable
228 compiler_generate_binary_output(${EXE_NAME})
229
230 #Configure where we put the CMSE veneers generated by the compiler.
231 if (DEFINED S_VENEER_FILE_LOCATION)
232 set(S_VENEER_FILE "${S_VENEER_FILE_LOCATION}/${VENEER_NAME}")
233 else()
234 set(S_VENEER_FILE "${CMAKE_CURRENT_BINARY_DIR}/${VENEER_NAME}")
235 endif()
236 compiler_set_cmse_output(${EXE_NAME} "${S_VENEER_FILE}")
237
238 #Configure what file shall be installed.
239 #Set install location. Keep original value to avoid overriding command line settings.
240 if(CMAKE_INSTALL_PREFIX_INITIALIZED_TO_DEFAULT)
241 set(CMAKE_INSTALL_PREFIX "${CMAKE_BINARY_DIR}/install" CACHE PATH "Default install location for secure_fw." FORCE)
242 endif()
243
Mate Toth-Pal8d7f12b2018-06-18 17:40:09 +0200244 #Export files needed to interface external applications at: <build_dir>/install/export/tfm/
Tamas Bandb69d522018-03-01 10:04:41 +0000245 install(DIRECTORY ${TFM_ROOT_DIR}/interface/include/
Tamas Ban57bfa432018-04-13 16:05:49 +0100246 DESTINATION export/tfm/inc)
Tamas Bandb69d522018-03-01 10:04:41 +0000247
248 install(DIRECTORY ${TFM_ROOT_DIR}/interface/src/
Tamas Ban57bfa432018-04-13 16:05:49 +0100249 DESTINATION export/tfm/src)
Tamas Bandb69d522018-03-01 10:04:41 +0000250
Tamas Ban57bfa432018-04-13 16:05:49 +0100251 install(FILES ${S_VENEER_FILE} DESTINATION export/tfm/veneers)
Tamas Bandb69d522018-03-01 10:04:41 +0000252
Tamas Ban57bfa432018-04-13 16:05:49 +0100253 #Collect executables to common location: <build_dir>/install/outputs/
Tamas Bandb69d522018-03-01 10:04:41 +0000254 if (DEFINED SECURE_AXF_DIR_PREFIX)
255 set(MY_BINARY_DIR ${SECURE_AXF_DIR_PREFIX})
256 else()
257 set(MY_BINARY_DIR ${CMAKE_CURRENT_BINARY_DIR})
258 endif()
259
260 install(FILES ${MY_BINARY_DIR}/${EXE_NAME}.axf
261 ${MY_BINARY_DIR}/${EXE_NAME}.bin
262 DESTINATION outputs/${TARGET_PLATFORM}/)
263
264 install(FILES ${MY_BINARY_DIR}/${EXE_NAME}.axf
265 ${MY_BINARY_DIR}/${EXE_NAME}.bin
266 DESTINATION outputs/fvp/)
267endfunction()
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000268
269#Adds the test directory
270add_subdirectory(${TFM_ROOT_DIR}/test ${CMAKE_BINARY_DIR}/test)
271
Antonio de Angelis8908f472018-08-31 15:44:25 +0100272#Add the crypto library target
273add_subdirectory(${SECURE_FW_DIR}/services/crypto)
274
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000275#Add the secure storage library target
276add_subdirectory(${SECURE_FW_DIR}/services/secure_storage)
Tamas Bandb69d522018-03-01 10:04:41 +0000277
Antonio de Angeliscc657b32018-02-05 15:56:47 +0000278#Add the audit logging library target
279add_subdirectory(${SECURE_FW_DIR}/services/audit_logging)
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000280
Marc Moreno Berengue8e0fa7a2018-10-04 18:25:13 +0100281#Add the platform service library target
282add_subdirectory(${SECURE_FW_DIR}/services/platform)
283
Tamas Ban48a0eb52018-08-17 12:48:05 +0100284#Add the initial attestation service library target
285add_subdirectory(${SECURE_FW_DIR}/services/initial_attestation)
286
Tamas Bandb69d522018-03-01 10:04:41 +0000287if (LINK_TO_BOTH_MEMORY_REGION)
288 #Link to primary memory region
289 set_up_secure_fw_build(S_TARGET ${PROJECT_NAME}
290 VENEER_NAME s_veneers
291 POSTFIX "_0")
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000292
Tamas Bandb69d522018-03-01 10:04:41 +0000293 #Link to secondary memory region(add extra linker flag)
294 set_up_secure_fw_build(S_TARGET ${PROJECT_NAME}
295 LINK_DEFINES "LINK_TO_SECONDARY_PARTITION"
296 VENEER_NAME s_veneers
297 POSTFIX "_1")
Jamie Fox5592db02017-12-18 16:48:29 +0000298else()
Tamas Bandb69d522018-03-01 10:04:41 +0000299 #Link to primary memory region only
300 set_up_secure_fw_build(S_TARGET ${PROJECT_NAME}
301 VENEER_NAME s_veneers)
Jamie Fox5592db02017-12-18 16:48:29 +0000302endif()
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000303
Tamas Bandb69d522018-03-01 10:04:41 +0000304#Finally let CMake system apply changes after the whole project is defined.
305if (TARGET ${PROJECT_NAME})
306 embedded_project_end(${PROJECT_NAME})
Gyorgy Szing30fa9872017-12-05 01:08:47 +0000307endif()
308
Tamas Bandb69d522018-03-01 10:04:41 +0000309if (TARGET ${PROJECT_NAME}_0)
310 embedded_project_end(${PROJECT_NAME}_0)
Jamie Fox5592db02017-12-18 16:48:29 +0000311endif()
312
Tamas Bandb69d522018-03-01 10:04:41 +0000313if (TARGET ${PROJECT_NAME}_1)
314 embedded_project_end(${PROJECT_NAME}_1)
Ben Davis6d7256b2018-04-18 14:16:53 +0100315endif()
316
Tamas Bandb69d522018-03-01 10:04:41 +0000317embedded_project_end(${PROJECT_OBJ_LIB})