blob: 7a4b3e743ff5bd642211b3840f4525b9d343828a [file] [log] [blame]
Leonardo Sandoval9dfdd1b2020-08-06 17:08:11 -05001#!/usr/bin/env bash
Fathi Boudra422bf772019-12-02 11:10:16 +02002#
Anurag Koulbaedf932021-12-09 12:49:56 +00003# Copyright (c) 2019-2022 Arm Limited. All rights reserved.
Fathi Boudra422bf772019-12-02 11:10:16 +02004#
5# SPDX-License-Identifier: BSD-3-Clause
6#
7
8# Builds a package with Trusted Firwmare and other payload binaries. The package
9# is meant to be executed by run_package.sh
10
11set -e
12
13ci_root="$(readlink -f "$(dirname "$0")/..")"
14source "$ci_root/utils.sh"
15
16if [ ! -d "$workspace" ]; then
17 die "Directory $workspace doesn't exist"
18fi
19
20# Directory to where the source code e.g. for Trusted Firmware is checked out.
Zelalem219df412020-05-17 19:21:20 -050021export tf_root="${tf_root:-$workspace/trusted_firmware}"
22export tftf_root="${tftf_root:-$workspace/trusted_firmware_tf}"
23export scp_root="${scp_root:-$workspace/scp}"
24scp_tools_root="${scp_tools_root:-$workspace/scp_tools}"
25cc_root="${cc_root:-$ccpathspec}"
Olivier Deprez0a9a3482019-12-16 14:10:31 +010026spm_root="${spm_root:-$workspace/spm}"
Zelalem219df412020-05-17 19:21:20 -050027
28scp_tf_tools_root="$scp_tools_root/scp_tf_tools"
Fathi Boudra422bf772019-12-02 11:10:16 +020029
30# Refspecs
31tf_refspec="$TF_REFSPEC"
32tftf_refspec="$TFTF_REFSPEC"
33scp_refspec="$SCP_REFSPEC"
Zelalem219df412020-05-17 19:21:20 -050034scp_tools_commit="${SCP_TOOLS_COMMIT:-master}"
Olivier Deprez0a9a3482019-12-16 14:10:31 +010035spm_refspec="$SPM_REFSPEC"
Fathi Boudra422bf772019-12-02 11:10:16 +020036
37test_config="${TEST_CONFIG:?}"
38test_group="${TEST_GROUP:?}"
39build_configs="${BUILD_CONFIG:?}"
40run_config="${RUN_CONFIG:?}"
Zelalem219df412020-05-17 19:21:20 -050041cc_config="${CC_ENABLE:-}"
Fathi Boudra422bf772019-12-02 11:10:16 +020042
43archive="$artefacts"
44build_log="$artefacts/build.log"
45fiptool="$tf_root/tools/fiptool/fiptool"
46cert_create="$tf_root/tools/cert_create/cert_create"
47
48# Validate $bin_mode
49case "$bin_mode" in
50 "" | debug | release)
51 ;;
52 *)
53 die "Invalid value for bin_mode: $bin_mode"
54 ;;
55esac
56
57# File to save any environem
58hook_env_file="$(mktempfile)"
59
60# Check if a config is valid
61config_valid() {
62 local config="${1?}"
63 if [ -z "$config" ] || [ "$(basename "$config")" = "nil" ]; then
64 return 1
65 fi
66
67 return 0
68}
69
70# Echo from a build wrapper. Print to descriptor 3 that's opened by the build
71# function.
72echo_w() {
73 echo $echo_flags "$@" >&3
74}
75
76# Print a separator to the log file. Intended to be used at the tail end of a pipe
77log_separator() {
78 {
79 echo
80 echo "----------"
81 } >> "$build_log"
82
83 tee -a "$build_log"
84
85 {
86 echo "----------"
87 echo
88 } >> "$build_log"
89}
90
91# Call function $1 if it's defined
92call_func() {
93 if type "${1:?}" &>/dev/null; then
94 echo
95 echo "> ${2:?}:$1()"
96 eval "$1"
97 echo "< $2:$1()"
98 fi
99}
100
101# Call hook $1 in all chosen fragments if it's defined. Hooks are invoked from
102# within a subshell, so any variables set within a hook are lost. Should a
103# variable needs to be set from within a hook, the function 'set_hook_var'
104# should be used
105call_hook() {
106 local func="$1"
107 local config_fragment
108
109 [ -z "$func" ] && return 0
110
Paul Sokolovskye9962cd2021-12-17 18:39:40 +0300111 echo "=== Calling hooks: $1 ==="
112
Fathi Boudra422bf772019-12-02 11:10:16 +0200113 : >"$hook_env_file"
114
115 if [ "$run_config_candiates" ]; then
116 for config_fragment in $run_config_candiates; do
117 (
118 source "$ci_root/run_config/$config_fragment"
119 call_func "$func" "$config_fragment"
120 )
121 done
122 fi
123
124 # Also source test config file
125 (
126 unset "$func"
127 source "$test_config_file"
128 call_func "$func" "$(basename $test_config_file)"
129 )
130
131 # Have any variables set take effect
132 source "$hook_env_file"
Paul Sokolovskye9962cd2021-12-17 18:39:40 +0300133
134 echo "=== End calling hooks: $1 ==="
Fathi Boudra422bf772019-12-02 11:10:16 +0200135}
136
137# Set a variable from within a hook
138set_hook_var() {
139 echo "export $1=\"${2?}\"" >> "$hook_env_file"
140}
141
142# Append to an array from within a hook
143append_hook_var() {
144 echo "export $1+=\"${2?}\"" >> "$hook_env_file"
145}
146
147# Have the main build script source a file
148source_later() {
149 echo "source ${1?}" >> "$hook_env_file"
150}
151
152# Setup TF build wrapper function by pointing to a script containing a function
153# that will be called with the TF build commands.
154setup_tf_build_wrapper() {
155 source_later "$ci_root/script/${wrapper?}_wrapper.sh"
156 set_hook_var "tf_build_wrapper" "${wrapper}_wrapper"
157 echo "Setup $wrapper build wrapper."
158}
159
160# Collect .bin files for archiving
161collect_build_artefacts() {
162 if [ ! -d "${from:?}" ]; then
163 return
164 fi
165
Javier Almansa Sobrinof98dbd82020-09-30 19:29:27 +0100166 if ! find "$from" \( -name "*.bin" -o -name '*.elf' -o -name '*.dtb' -o -name '*.axf' \) -exec cp -t "${to:?}" '{}' +; then
Fathi Boudra422bf772019-12-02 11:10:16 +0200167 echo "You probably are running local CI on local repositories."
168 echo "Did you set 'dont_clean' but forgot to run 'distclean'?"
169 die
170 fi
171}
172
173# SCP and MCP binaries are named firmware.{bin,elf}, and are placed under
174# scp/mcp_ramfw and scp/mcp_romfw directories, so can't be collected by
175# collect_build_artefacts function.
176collect_scp_artefacts() {
177 to="${to:?}" \
Joel Goddard9bdfe3c2021-02-25 10:15:14 +0000178 find "$scp_root" \( \( -name "*.bin" -o -name '*.elf' \) -and ! -name 'CMake*' \) -exec bash -c '
Fathi Boudra422bf772019-12-02 11:10:16 +0200179 for file; do
180 ext="$(echo $file | awk -F. "{print \$NF}")"
181 case $file in
Anurag Koulbaedf932021-12-09 12:49:56 +0000182 */firmware-scp_ramfw/bin/*|*/firmware-scp_ramfw_fvp/bin/*)
Fathi Boudra422bf772019-12-02 11:10:16 +0200183 cp $file $to/scp_ram.$ext
184 ;;
Joel Goddard9bdfe3c2021-02-25 10:15:14 +0000185 */firmware-scp_romfw/bin/*)
Fathi Boudra422bf772019-12-02 11:10:16 +0200186 cp $file $to/scp_rom.$ext
187 ;;
Anurag Koulbaedf932021-12-09 12:49:56 +0000188 */firmware-mcp_ramfw/bin/*|*/firmware-mcp_ramfw_fvp/bin/*)
Fathi Boudra422bf772019-12-02 11:10:16 +0200189 cp $file $to/mcp_ram.$ext
190 ;;
Joel Goddard9bdfe3c2021-02-25 10:15:14 +0000191 */firmware-mcp_romfw/bin/*)
Fathi Boudra422bf772019-12-02 11:10:16 +0200192 cp $file $to/mcp_rom.$ext
193 ;;
Joel Goddard9bdfe3c2021-02-25 10:15:14 +0000194 */firmware-scp_romfw_bypass/bin/*)
Zelalem219df412020-05-17 19:21:20 -0500195 cp $file $to/scp_rom_bypass.$ext
196 ;;
Fathi Boudra422bf772019-12-02 11:10:16 +0200197 *)
198 echo "Unknown SCP binary: $file" >&2
199 ;;
200 esac
201 done
202 ' bash '{}' +
203}
204
Manish Pandey1e7be852020-11-09 16:04:48 +0000205# Collect SPM/hafnium artefacts with "secure_" appended to the files
206# generated for SPM(secure hafnium).
207collect_spm_artefacts() {
Madhukar Pappireddyc683cf62021-11-01 14:38:32 -0500208 if [ -d "${non_secure_from:?}" ]; then
209 find "$non_secure_from" \( -name "*.bin" -o -name '*.elf' \) -exec cp -t "${to:?}" '{}' +
Manish Pandey1e7be852020-11-09 16:04:48 +0000210 fi
211
Madhukar Pappireddyc683cf62021-11-01 14:38:32 -0500212 if [ -d "${secure_from:?}" ]; then
213 for f in $(find "$secure_from" \( -name "*.bin" -o -name '*.elf' \)); do cp -- "$f" "${to:?}"/secure_$(basename $f); done
214 fi
Manish Pandey1e7be852020-11-09 16:04:48 +0000215}
216
Javier Almansa Sobrino412d3612020-05-22 17:53:12 +0100217# Map the UART ID used for expect with the UART descriptor and port
218# used by the FPGA automation tools.
219map_uart() {
220 local port="${port:?}"
221 local descriptor="${descriptor:?}"
222 local baudrate="${baudrate:?}"
223 local run_root="${archive:?}/run"
224
225 local uart_dir="$run_root/uart${uart:?}"
226 mkdir -p "$uart_dir"
227
228 echo "$port" > "$uart_dir/port"
229 echo "$descriptor" > "$uart_dir/descriptor"
230 echo "$baudrate" > "$uart_dir/baudrate"
231
232 echo "UART${uart} mapped to port ${port} with descriptor ${descriptor} and baudrate ${baudrate}"
233}
234
Fathi Boudra422bf772019-12-02 11:10:16 +0200235# Arrange environment varibles to be set when expect scripts are launched
236set_expect_variable() {
237 local var="${1:?}"
238 local val="${2?}"
239
240 local run_root="${archive:?}/run"
241 local uart_dir="$run_root/uart${uart:?}"
242 mkdir -p "$uart_dir"
243
244 env_file="$uart_dir/env" quote="1" emit_env "$var" "$val"
245 echo "UART$uart: env has $@"
246}
247
248# Place the binary package a pointer to expect script, and its parameters
249track_expect() {
250 local file="${file:?}"
251 local timeout="${timeout-600}"
252 local run_root="${archive:?}/run"
253
254 local uart_dir="$run_root/uart${uart:?}"
255 mkdir -p "$uart_dir"
256
257 echo "$file" > "$uart_dir/expect"
258 echo "$timeout" > "$uart_dir/timeout"
259
260 echo "UART$uart to be tracked with $file; timeout ${timeout}s"
261
262 # The run script assumes UART0 to be primary. If we're asked to set any
263 # other UART to be primary, set a run environment variable to signal
264 # that to the run script
265 if upon "$set_primary"; then
266 echo "Primary UART set to UART$uart."
267 set_run_env "primary_uart" "$uart"
268 fi
Madhukar Pappireddy1e953722021-11-08 15:23:02 -0600269
270 # UART used by payload(such as tftf, Linux) may not be the same as the
271 # primary UART. Set a run environment variable to track the payload
272 # UART which is tracked to check if the test has finished sucessfully.
273 if upon "$set_payload_uart"; then
274 echo "Payload uses UART$uart."
275 set_run_env "payload_uart" "$uart"
276 fi
Fathi Boudra422bf772019-12-02 11:10:16 +0200277}
278
279# Extract a FIP in $1 using fiptool
280extract_fip() {
281 local fip="$1"
282
283 if is_url "$1"; then
284 url="$1" fetch_file
285 fip="$(basename "$1")"
286 fi
287
288 "$fiptool" unpack "$fip"
289 echo "Extracted FIP: $fip"
290}
291
292# Report build failure by printing a the tail end of build log. Archive the
293# build log for later inspection
294fail_build() {
295 local log_path
296
297 if upon "$jenkins_run"; then
298 log_path="$BUILD_URL/artifact/artefacts/build.log"
299 else
300 log_path="$build_log"
301 fi
302
303 echo
Leonardo Sandovalae97eda2020-11-12 10:07:03 -0600304 echo "Build failed! Full build log below:"
Fathi Boudra422bf772019-12-02 11:10:16 +0200305 echo "[...]"
306 echo
Leonardo Sandovalae97eda2020-11-12 10:07:03 -0600307 cat "$build_log"
Fathi Boudra422bf772019-12-02 11:10:16 +0200308 echo
309 echo "See $log_path for full output"
310 echo
311 cp -t "$archive" "$build_log"
312 exit 1;
313}
314
315# Build a FIP with supplied arguments
316build_fip() {
317 (
318 echo "Building FIP with arguments: $@"
319 local tf_env="$workspace/tf.env"
320
321 if [ -f "$tf_env" ]; then
322 set -a
323 source "$tf_env"
324 set +a
325 fi
326
327 make -C "$tf_root" $(cat "$tf_config_file") DEBUG="$DEBUG" V=1 "$@" \
328 ${fip_targets:-fip} &>>"$build_log" || fail_build
329 )
330}
331
332fip_update() {
333 # Before the update process, check if the given image is supported by
334 # the fiptool. It's assumed that both fiptool and cert_create move in
335 # tandem, and therfore, if one has support, the other has it too.
336 if ! "$fiptool" update 2>&1 | grep -qe "\s\+--${bin_name:?}"; then
337 return 1
338 fi
339
340 if not_upon "$(get_tf_opt TRUSTED_BOARD_BOOT)"; then
341 echo "Updating FIP image: $bin_name"
342 # Update HW config. Without TBBR, it's only a matter of using
343 # the update sub-command of fiptool
344 "$fiptool" update "--$bin_name" "${src:-}" \
345 "$archive/fip.bin"
346 else
347 echo "Updating FIP image (TBBR): $bin_name"
348 # With TBBR, we need to unpack, re-create certificates, and then
349 # recreate the FIP.
350 local fip_dir="$(mktempdir)"
351 local bin common_args stem
352 local rot_key="$(get_tf_opt ROT_KEY)"
353
354 rot_key="${rot_key:?}"
355 if ! is_abs "$rot_key"; then
356 rot_key="$tf_root/$rot_key"
357 fi
358
359 # Arguments only for cert_create
360 local cert_args="-n"
361 cert_args+=" --tfw-nvctr ${nvctr:-31}"
362 cert_args+=" --ntfw-nvctr ${nvctr:-223}"
363 cert_args+=" --key-alg ${KEY_ALG:-rsa}"
364 cert_args+=" --rot-key $rot_key"
365
366 local dyn_config_opts=(
Zelalem1af7a7b2020-08-04 17:34:32 -0500367 "fw-config"
Fathi Boudra422bf772019-12-02 11:10:16 +0200368 "hw-config"
369 "tb-fw-config"
370 "nt-fw-config"
371 "soc-fw-config"
372 "tos-fw-config"
373 )
374
375 # Binaries without key certificates
376 declare -A has_no_key_cert
377 for bin in "tb-fw" "${dyn_config_opts[@]}"; do
378 has_no_key_cert["$bin"]="1"
379 done
380
381 # Binaries without certificates
382 declare -A has_no_cert
383 for bin in "hw-config" "${dyn_config_opts[@]}"; do
384 has_no_cert["$bin"]="1"
385 done
386
387 pushd "$fip_dir"
388
389 # Unpack FIP
390 "$fiptool" unpack "$archive/fip.bin" &>>"$build_log"
391
392 # Remove all existing certificates
393 rm -f *-cert.bin
394
395 # Copy the binary to be updated
396 cp -f "$src" "${bin_name}.bin"
397
398 # FIP unpack dumps binaries with the same name as the option
399 # used to pack it; likewise for certificates. Reverse-engineer
400 # the command line from the binary output.
401 common_args="--trusted-key-cert trusted_key.crt"
402 for bin in *.bin; do
403 stem="${bin%%.bin}"
404 common_args+=" --$stem $bin"
405 if not_upon "${has_no_cert[$stem]}"; then
406 common_args+=" --$stem-cert $stem.crt"
407 fi
408 if not_upon "${has_no_key_cert[$stem]}"; then
409 common_args+=" --$stem-key-cert $stem-key.crt"
410 fi
411 done
412
413 # Create certificates
414 "$cert_create" $cert_args $common_args &>>"$build_log"
415
416 # Recreate and archive FIP
417 "$fiptool" create $common_args "fip.bin" &>>"$build_log"
418 archive_file "fip.bin"
419
420 popd
421 fi
422}
423
424# Update hw-config in FIP, and remove the original DTB afterwards.
425update_fip_hw_config() {
426 # The DTB needs to be loaded by the model (and not updated in the FIP)
Madhukar Pappireddy9062ebf2021-03-02 17:07:06 -0600427 # in configs:
428 # 1. Where BL2 isn't present
429 # 2. Where we boot to Linux directly as BL33
Fathi Boudra422bf772019-12-02 11:10:16 +0200430 case "1" in
431 "$(get_tf_opt RESET_TO_BL31)" | \
Madhukar Pappireddy9062ebf2021-03-02 17:07:06 -0600432 "$(get_tf_opt ARM_LINUX_KERNEL_AS_BL33)" | \
Fathi Boudra422bf772019-12-02 11:10:16 +0200433 "$(get_tf_opt RESET_TO_SP_MIN)" | \
434 "$(get_tf_opt BL2_AT_EL3)")
435 return 0;;
436 esac
437
438 if bin_name="hw-config" src="$archive/dtb.bin" fip_update; then
439 # Remove the DTB so that model won't load it
440 rm -f "$archive/dtb.bin"
441 fi
442}
443
444get_scp_opt() {
445 (
446 name="${1:?}"
447 if config_valid "$scp_config_file"; then
448 source "$scp_config_file"
449 echo "${!name}"
450 fi
451 )
452}
453
454get_tftf_opt() {
455 (
456 name="${1:?}"
457 if config_valid "$tftf_config_file"; then
458 source "$tftf_config_file"
459 echo "${!name}"
460 fi
461 )
462}
463
464get_tf_opt() {
465 (
466 name="${1:?}"
467 if config_valid "$tf_config_file"; then
468 source "$tf_config_file"
469 echo "${!name}"
470 fi
471 )
472}
473
474build_tf() {
475 (
476 env_file="$workspace/tf.env"
477 config_file="${tf_build_config:-$tf_config_file}"
478
479 # Build fiptool and all targets by default
Manish V Badarkhe57bea362022-07-12 22:43:30 +0100480 build_targets="${tf_build_targets:-memmap fiptool all}"
Fathi Boudra422bf772019-12-02 11:10:16 +0200481
482 source "$config_file"
483
484 # If it is a TBBR build, extract the MBED TLS library from archive
Manish V Badarkhe8f125012021-12-21 05:47:52 +0000485 if [ "$(get_tf_opt TRUSTED_BOARD_BOOT)" = 1 ] ||
486 [ "$(get_tf_opt MEASURED_BOOT)" = 1 ]; then
Fathi Boudra422bf772019-12-02 11:10:16 +0200487 mbedtls_dir="$workspace/mbedtls"
488 if [ ! -d "$mbedtls_dir" ]; then
489 mbedtls_ar="$workspace/mbedtls.tar.gz"
490
491 url="$mbedtls_archive" saveas="$mbedtls_ar" fetch_file
492 mkdir "$mbedtls_dir"
Leonardo Sandovalec9e16c2020-09-09 14:32:40 -0500493 extract_tarball $mbedtls_ar $mbedtls_dir --strip-components=1
Fathi Boudra422bf772019-12-02 11:10:16 +0200494 fi
495
496 emit_env "MBEDTLS_DIR" "$mbedtls_dir"
497 fi
498
499 if [ -f "$env_file" ]; then
500 set -a
501 source "$env_file"
502 set +a
503 fi
504
Harrison Mutai013f6332022-02-16 16:06:33 +0000505 if is_arm_jenkins_env || upon "$local_ci"; then
506 path_list=(
507 "$llvm_dir/bin"
508 )
509 extend_path "PATH" "path_list"
510 fi
511
Fathi Boudra422bf772019-12-02 11:10:16 +0200512 cd "$tf_root"
513
514 # Always distclean when running on Jenkins. Skip distclean when running
515 # locally and explicitly requested.
516 if upon "$jenkins_run" || not_upon "$dont_clean"; then
517 make distclean &>>"$build_log" || fail_build
518 fi
519
520 # Log build command line. It is left unfolded on purpose to assist
521 # copying to clipboard.
522 cat <<EOF | log_separator >/dev/null
523
524Build command line:
525 $tf_build_wrapper make $make_j_opts $(cat "$config_file" | tr '\n' ' ') DEBUG=$DEBUG V=1 $build_targets
526
527EOF
528
Javier Almansa Sobrinoe8363182020-11-10 16:40:53 +0000529 if not_upon "$local_ci"; then
530 connect_debugger=0
531 fi
532
Fathi Boudra422bf772019-12-02 11:10:16 +0200533 # Build TF. Since build output is being directed to the build log, have
534 # descriptor 3 point to the current terminal for build wrappers to vent.
535 $tf_build_wrapper make $make_j_opts $(cat "$config_file") \
Javier Almansa Sobrinoe8363182020-11-10 16:40:53 +0000536 DEBUG="$DEBUG" V=1 SPIN_ON_BL1_EXIT="$connect_debugger" \
Fathi Boudra422bf772019-12-02 11:10:16 +0200537 $build_targets 3>&1 &>>"$build_log" || fail_build
538 )
539}
540
541build_tftf() {
542 (
543 config_file="${tftf_build_config:-$tftf_config_file}"
544
545 # Build tftf target by default
546 build_targets="${tftf_build_targets:-all}"
547
548 source "$config_file"
549
550 cd "$tftf_root"
551
552 # Always distclean when running on Jenkins. Skip distclean when running
553 # locally and explicitly requested.
554 if upon "$jenkins_run" || not_upon "$dont_clean"; then
555 make distclean &>>"$build_log" || fail_build
556 fi
557
558 # TFTF build system cannot reliably deal with -j option, so we avoid
559 # using that.
560
561 # Log build command line
562 cat <<EOF | log_separator >/dev/null
563
564Build command line:
565 make $(cat "$config_file" | tr '\n' ' ') DEBUG=$DEBUG V=1 $build_targets
566
567EOF
568
569 make $(cat "$config_file") DEBUG="$DEBUG" V=1 \
570 $build_targets &>>"$build_log" || fail_build
571 )
572}
573
574build_scp() {
575 (
576 config_file="${scp_build_config:-$scp_config_file}"
577
578 source "$config_file"
579
580 cd "$scp_root"
581
582 # Always distclean when running on Jenkins. Skip distclean when running
583 # locally and explicitly requested.
584 if upon "$jenkins_run" || not_upon "$dont_clean"; then
585 make clean &>>"$build_log" || fail_build
586 fi
587
Joel Goddard9bdfe3c2021-02-25 10:15:14 +0000588 python3 -m venv .venv
589 . .venv/bin/activate
590
591 # Install extra tools used by CMake build system
592 pip install -r requirements.txt --timeout 30 --retries 15
593
Fathi Boudra422bf772019-12-02 11:10:16 +0200594 # Log build command line. It is left unfolded on purpose to assist
595 # copying to clipboard.
596 cat <<EOF | log_separator >/dev/null
597
598SCP build command line:
Joel Goddard9bdfe3c2021-02-25 10:15:14 +0000599 make -f Makefile.cmake $(cat "$config_file" | tr '\n' ' ') \
600 TOOLCHAIN=GNU \
601 MODE="$mode" \
Nicola Mazzucato506b5802021-12-24 14:23:25 +0000602 EXTRA_CONFIG_ARGS+=-DDISABLE_CPPCHECK=true \
Joel Goddard9bdfe3c2021-02-25 10:15:14 +0000603 V=1 &>>"$build_log"
Fathi Boudra422bf772019-12-02 11:10:16 +0200604
605EOF
606
607 # Build SCP
Joel Goddard9bdfe3c2021-02-25 10:15:14 +0000608 make -f Makefile.cmake $(cat "$config_file" | tr '\n' ' ') \
609 TOOLCHAIN=GNU \
610 MODE="$mode" \
Nicola Mazzucato506b5802021-12-24 14:23:25 +0000611 EXTRA_CONFIG_ARGS+=-DDISABLE_CPPCHECK=true \
Joel Goddard9bdfe3c2021-02-25 10:15:14 +0000612 V=1 &>>"$build_log" \
Fathi Boudra422bf772019-12-02 11:10:16 +0200613 || fail_build
614 )
615}
616
Zelalem219df412020-05-17 19:21:20 -0500617clone_scp_tools() {
618
619 if [ ! -d "$scp_tools_root" ]; then
620 echo "Cloning SCP-tools ... $scp_tools_commit" |& log_separator
621
622 clone_url="${SCP_TOOLS_CHECKOUT_LOC:-$scp_tools_src_repo_url}" \
623 where="$scp_tools_root" \
624 refspec="${scp_tools_commit}"
625 clone_repo &>>"$build_log"
626 else
627 echo "Already cloned SCP-tools ..." |& log_separator
628 fi
629
630 show_head "$scp_tools_root"
631
632 cd "$scp_tools_root"
633
634 echo "Updating submodules"
635
636 git submodule init
637
638 git submodule update
639
Nicola Mazzucato7302cd32021-12-14 13:36:57 +0000640 lib_commit=$(grep "'scmi_lib_commit'" run_tests/settings.py | cut -d':' -f 2 | tr -d "'")
641
Zelalem219df412020-05-17 19:21:20 -0500642 cd "scmi"
Nicola Mazzucato7302cd32021-12-14 13:36:57 +0000643 git checkout $lib_commit
Zelalem219df412020-05-17 19:21:20 -0500644
645 git show --quiet --no-color | sed 's/^/ > /g'
646}
647
648clone_tf_for_scp_tools() {
649 scp_tools_arm_tf="$scp_tools_root/arm-tf"
650
651 if [ ! -d "$scp_tools_arm_tf" ]; then
652 echo "Cloning TF-4-SCP-tools ..." |& log_separator
653
654 clone_url="$tf_for_scp_tools_src_repo_url"
655 where="$scp_tools_arm_tf"
656
657 git clone "$clone_url" "$where"
658
659 cd "$scp_tools_arm_tf"
660
Joel Goddard3ad03062021-03-16 16:47:42 +0000661 git checkout --track origin/juno-v4.3
Zelalem219df412020-05-17 19:21:20 -0500662
663 git show --quiet --no-color | sed 's/^/ > /g'
664
665 else
666 echo "Already cloned TF-4-SCP-tools ..." |& log_separator
667 fi
668}
669
670build_scmi_lib_scp_tools() {
671 (
672 cd "$scp_tools_root"
673
674 cd "scmi"
675
676 scp_tools_arm_tf="$scp_tools_root/arm-tf"
677
Leonardo Sandovalfeae3a22020-11-17 16:53:59 -0600678 cross_compile="$(set_cross_compile_gcc_linaro_toolchain)"
Zelalem219df412020-05-17 19:21:20 -0500679
680 std_libs="-I$scp_tools_arm_tf/include/common"
681 std_libs="$std_libs -I$scp_tools_arm_tf/include/common/tbbr"
682 std_libs="$std_libs -I$scp_tools_arm_tf/include/drivers/arm"
683 std_libs="$std_libs -I$scp_tools_arm_tf/include/lib"
684 std_libs="$std_libs -I$scp_tools_arm_tf/include/lib/aarch64"
685 std_libs="$std_libs -I$scp_tools_arm_tf/include/lib/stdlib"
686 std_libs="$std_libs -I$scp_tools_arm_tf/include/lib/stdlib/sys"
687 std_libs="$std_libs -I$scp_tools_arm_tf/include/lib/xlat_tables"
688 std_libs="$std_libs -I$scp_tools_arm_tf/include/plat/common"
689 std_libs="$std_libs -I$scp_tools_arm_tf/include/plat/arm/common"
690 std_libs="$std_libs -I$scp_tools_arm_tf/include/plat/arm/css/common"
691 std_libs="$std_libs -I$scp_tools_arm_tf/include/plat/arm/board/common"
692 std_libs="$std_libs -I$scp_tools_arm_tf/include/plat/arm/soc/common"
693 std_libs="$std_libs -I$scp_tools_arm_tf/plat/arm/board/juno/include"
694
695 cflags="-Og -g"
696 cflags="$cflags -mgeneral-regs-only"
697 cflags="$cflags -mstrict-align"
698 cflags="$cflags -nostdinc"
699 cflags="$cflags -fno-inline"
700 cflags="$cflags -ffreestanding"
701 cflags="$cflags -ffunction-sections"
702 cflags="$cflags -fdata-sections"
703 cflags="$cflags -DAARCH64"
704 cflags="$cflags -DPRId32=\"ld\""
Joel Goddard3ad03062021-03-16 16:47:42 +0000705 cflags="$cflags -DVERBOSE_LEVEL=3"
Zelalem219df412020-05-17 19:21:20 -0500706
707 cflags="$cflags $std_libs"
708
Joel Goddard3ad03062021-03-16 16:47:42 +0000709 protocols="performance,power_domain,system_power,reset"
Zelalem219df412020-05-17 19:21:20 -0500710
711 echo "Building SCMI library (SCP-tools) ..."
712
713 make "CROSS_COMPILE=$cross_compile" \
714 "CFLAGS=$cflags" \
Joel Goddard3ad03062021-03-16 16:47:42 +0000715 "PLAT=baremetal" \
Zelalem219df412020-05-17 19:21:20 -0500716 "PROTOCOLS=$protocols" \
717 "clean" \
718 "all"
719 )
720}
721
722build_tf_for_scp_tools() {
723
724 cd "$scp_tools_root/arm-tf"
725
Leonardo Sandovalfeae3a22020-11-17 16:53:59 -0600726 cross_compile="$(set_cross_compile_gcc_linaro_toolchain)"
Zelalem219df412020-05-17 19:21:20 -0500727
728 if [ "$1" = "release" ]; then
729 echo "Build TF-4-SCP-Tools rls..."
730 else
731 echo "Build TF-4-SCP-Tools dbg..."
732
733 make realclean
734
735 make "BM_TEST=scmi" \
736 "ARM_BOARD_OPTIMISE_MEM=1" \
737 "BM_CSS=juno" \
738 "CSS_USE_SCMI_SDS_DRIVER=1" \
739 "PLAT=juno" \
740 "DEBUG=1" \
741 "PLATFORM=juno" \
742 "CROSS_COMPILE=$cross_compile" \
743 "BM_WORKSPACE=$scp_tools_root/baremetal"
744
745 archive_file "build/juno/debug/bl1.bin"
746
747 archive_file "build/juno/debug/bl2.bin"
748
749 archive_file "build/juno/debug/bl31.bin"
750 fi
751}
752
753build_fip_for_scp_tools() {
754
755 cd "$scp_tools_root/arm-tf"
756
Leonardo Sandovalfeae3a22020-11-17 16:53:59 -0600757 cross_compile="$(set_cross_compile_gcc_linaro_toolchain)"
Zelalem219df412020-05-17 19:21:20 -0500758
Joel Goddard9bdfe3c2021-02-25 10:15:14 +0000759 if [ ! -d "$scp_root/build/juno/GNU/debug/firmware-scp_ramfw" ]; then
Zelalem219df412020-05-17 19:21:20 -0500760 make fiptool
761 echo "Make FIP 4 SCP-Tools rls..."
762
763 else
764 make fiptool
765 echo "Make FIP 4 SCP-Tools dbg..."
766
767 make "PLAT=juno" \
768 "all" \
769 "fip" \
770 "DEBUG=1" \
771 "CROSS_COMPILE=$cross_compile" \
772 "BL31=$scp_tools_root/arm-tf/build/juno/debug/bl31.bin" \
773 "BL33=$scp_tools_root/baremetal/dummy_bl33" \
Joel Goddard9bdfe3c2021-02-25 10:15:14 +0000774 "SCP_BL2=$scp_root/build/juno/GNU/$mode/firmware-scp_ramfw/bin/juno-bl2.bin"
Zelalem219df412020-05-17 19:21:20 -0500775
776 archive_file "$scp_tools_root/arm-tf/build/juno/debug/fip.bin"
777 fi
778}
779
780build_cc() {
781# Building code coverage plugin
782 ARM_DIR=/arm
783 pvlibversion=$(/arm/devsys-tools/abs/detag "SysGen:PVModelLib:$model_version::trunk")
784 PVLIB_HOME=$warehouse/SysGen/PVModelLib/$model_version/${pvlibversion}/external
785 if [ -n "$(find "$ARM_DIR" -maxdepth 0 -type d -empty 2>/dev/null)" ]; then
786 echo "Error: Arm warehouse not mounted. Please mount the Arm warehouse to your /arm local folder"
787 exit -1
788 fi # Error if arm warehouse not found
789 cd "$ccpathspec/scripts/tools/code_coverage/fastmodel_baremetal/bmcov"
790
791 make -C model-plugin PVLIB_HOME=$PVLIB_HOME &>>"$build_log"
792}
793
Olivier Deprez0a9a3482019-12-16 14:10:31 +0100794build_spm() {
795 (
796 env_file="$workspace/spm.env"
797 config_file="${spm_build_config:-$spm_config_file}"
798
799 source "$config_file"
800
801 if [ -f "$env_file" ]; then
802 set -a
803 source "$env_file"
804 set +a
805 fi
806
807 cd "$spm_root"
808
809 # Always clean when running on Jenkins. Skip clean when running
810 # locally and explicitly requested.
811 if upon "$jenkins_run" || not_upon "$dont_clean"; then
812 # make clean fails on a fresh repo where the project has not
813 # yet been built. Hence only clean if out/reference directory
814 # already exists.
815 if [ -d "out/reference" ]; then
816 make clean &>>"$build_log" || fail_build
817 fi
818 fi
819
820 # Log build command line. It is left unfolded on purpose to assist
821 # copying to clipboard.
822 cat <<EOF | log_separator >/dev/null
823
824Build command line:
825 make $make_j_opts $(cat "$config_file" | tr '\n' ' ')
826
827EOF
828
829 # Build SPM. Since build output is being directed to the build log, have
830 # descriptor 3 point to the current terminal for build wrappers to vent.
Olivier Deprezf34d1d32021-10-11 09:45:32 +0200831 export PATH=$PWD/prebuilts/linux-x64/clang/bin:$PWD/prebuilts/linux-x64/dtc:$PATH
832
Olivier Deprez0a9a3482019-12-16 14:10:31 +0100833 make $make_j_opts $(cat "$config_file") 3>&1 &>>"$build_log" \
834 || fail_build
835 )
836}
Zelalem219df412020-05-17 19:21:20 -0500837
Fathi Boudra422bf772019-12-02 11:10:16 +0200838# Set metadata for the whole package so that it can be used by both Jenkins and
839# shell
840set_package_var() {
841 env_file="$artefacts/env" emit_env "$@"
842}
843
844set_tf_build_targets() {
845 echo "Set build target to '${targets:?}'"
846 set_hook_var "tf_build_targets" "$targets"
847}
848
849set_tftf_build_targets() {
850 echo "Set build target to '${targets:?}'"
851 set_hook_var "tftf_build_targets" "$targets"
852}
853
854set_scp_build_targets() {
855 echo "Set build target to '${targets:?}'"
856 set_hook_var "scp_build_targets" "$targets"
857}
858
Olivier Deprez0a9a3482019-12-16 14:10:31 +0100859set_spm_build_targets() {
860 echo "Set build target to '${targets:?}'"
861 set_hook_var "spm_build_targets" "$targets"
862}
863
Daniel Boulbyb8d2a462022-03-07 13:55:25 +0000864set_spm_out_dir() {
865 echo "Set SPMC binary build to '${out_dir:?}'"
866 set_hook_var "spm_secure_out_dir" "$out_dir"
867}
Fathi Boudra422bf772019-12-02 11:10:16 +0200868# Look under $archive directory for known files such as blX images, kernel, DTB,
869# initrd etc. For each known file foo, if foo.bin exists, then set variable
870# foo_bin to the path of the file. Make the path relative to the workspace so as
871# to remove any @ characters, which Jenkins inserts for parallel runs. If the
872# file doesn't exist, unset its path.
873set_default_bin_paths() {
874 local image image_name image_path path
875 local archive="${archive:?}"
876 local set_vars
877 local var
878
879 pushd "$archive"
880
881 for file in *.bin; do
882 # Get a shell variable from the file's stem
883 var_name="${file%%.*}_bin"
884 var_name="$(echo "$var_name" | sed -r 's/[^[:alnum:]]/_/g')"
885
886 # Skip setting the variable if it's already
887 if [ "${!var_name}" ]; then
888 echo "Note: not setting $var_name; already set to ${!var_name}"
889 continue
890 else
891 set_vars+="$var_name "
892 fi
893
894 eval "$var_name=$file"
895 done
896
897 echo "Binary paths set for: "
898 {
899 for var in $set_vars; do
900 echo -n "\$$var "
901 done
902 } | fmt -80 | sed 's/^/ /'
903 echo
904
905 popd
906}
907
908gen_model_params() {
909 local model_param_file="$archive/model_params"
Javier Almansa Sobrinoe8363182020-11-10 16:40:53 +0000910 [ "$connect_debugger" ] && [ "$connect_debugger" -eq 1 ] && wait_debugger=1
Fathi Boudra422bf772019-12-02 11:10:16 +0200911
912 set_default_bin_paths
913 echo "Generating model parameter for $model..."
914 source "$ci_root/model/${model:?}.sh"
915 archive_file "$model_param_file"
916}
917
918set_model_path() {
919 set_run_env "model_path" "${1:?}"
920}
921
Zelalem1af7a7b2020-08-04 17:34:32 -0500922set_model_env() {
923 local var="${1:?}"
924 local val="${2?}"
925 local run_root="${archive:?}/run"
926
927 mkdir -p "$run_root"
928 echo "export $var=$val" >> "$run_root/model_env"
929}
Fathi Boudra422bf772019-12-02 11:10:16 +0200930set_run_env() {
931 local var="${1:?}"
932 local val="${2?}"
933 local run_root="${archive:?}/run"
934
935 mkdir -p "$run_root"
936 env_file="$run_root/env" quote="1" emit_env "$var" "$val"
937}
938
939show_head() {
940 # Display HEAD descripton
941 pushd "$1"
942 git show --quiet --no-color | sed 's/^/ > /g'
943 echo
944 popd
945}
946
947# Choose debug binaries to run; by default, release binaries are chosen to run
948use_debug_bins() {
949 local run_root="${archive:?}/run"
950
951 echo "Choosing debug binaries for execution"
952 set_package_var "BIN_MODE" "debug"
953}
954
955assert_can_git_clone() {
956 local name="${1:?}"
957 local dir="${!name}"
958
959 # If it doesn't exist, it can be cloned into
960 if [ ! -e "$dir" ]; then
961 return 0
962 fi
963
964 # If it's a directory, it must be a Git clone already
965 if [ -d "$dir" ] && [ -d "$dir/.git" ]; then
966 # No need to clone again
967 echo "Using existing git clone for $name: $dir"
968 return 1
969 fi
970
971 die "Path $dir exists but is not a git clone"
972}
973
974clone_repo() {
975 if ! is_url "${clone_url?}"; then
976 # For --depth to take effect on local paths, it needs to use the
977 # file:// scheme.
978 clone_url="file://$clone_url"
979 fi
980
981 git clone -q --depth 1 "$clone_url" "${where?}"
982 if [ "$refspec" ]; then
983 pushd "$where"
984 git fetch -q --depth 1 origin "$refspec"
985 git checkout -q FETCH_HEAD
986 popd
987 fi
988}
989
990build_unstable() {
991 echo "--BUILD UNSTABLE--" | tee -a "$build_log"
992}
993
994undo_patch_record() {
995 if [ ! -f "${patch_record:?}" ]; then
996 return
997 fi
998
999 # Undo patches in reverse
1000 echo
1001 for patch_name in $(tac "$patch_record"); do
1002 echo "Undoing $patch_name..."
1003 if ! git apply -R "$ci_root/patch/$patch_name"; then
1004 if upon "$local_ci"; then
1005 echo
1006 echo "Your local directory may have been dirtied."
1007 echo
1008 fi
1009 fail_build
1010 fi
1011 done
1012
1013 rm -f "$patch_record"
1014}
1015
1016undo_local_patches() {
1017 pushd "$tf_root"
1018 patch_record="$tf_patch_record" undo_patch_record
1019 popd
1020
1021 if [ -d "$tftf_root" ]; then
1022 pushd "$tftf_root"
1023 patch_record="$tftf_patch_record" undo_patch_record
1024 popd
1025 fi
1026}
1027
1028undo_tftf_patches() {
1029 pushd "$tftf_root"
1030 patch_record="$tftf_patch_record" undo_patch_record
1031 popd
1032}
1033
1034undo_tf_patches() {
1035 pushd "$tf_root"
1036 patch_record="$tf_patch_record" undo_patch_record
1037 popd
1038}
1039
1040apply_patch() {
1041 # If skip_patches is set, the developer has applied required patches
1042 # manually. They probably want to keep them applied for debugging
1043 # purposes too. This means we don't have to apply/revert them as part of
1044 # build process.
1045 if upon "$skip_patches"; then
1046 echo "Skipped applying ${1:?}..."
1047 return 0
1048 else
1049 echo "Applying ${1:?}..."
1050 fi
1051
1052 if git apply < "$ci_root/patch/$1"; then
1053 echo "$1" >> "${patch_record:?}"
1054 else
1055 if upon "$local_ci"; then
1056 undo_local_patches
1057 fi
1058 fail_build
1059 fi
1060}
1061
1062apply_tftf_patch() {
1063 pushd "$tftf_root"
1064 patch_record="$tftf_patch_record" apply_patch "$1"
1065 popd
1066}
1067
1068apply_tf_patch() {
1069 pushd "$tf_root"
1070 patch_record="$tf_patch_record" apply_patch "$1"
1071 popd
1072}
1073
1074# Clear workspace for a local run
1075if not_upon "$jenkins_run"; then
1076 rm -rf "$workspace"
1077
1078 # Clear residue from previous runs
1079 rm -rf "$archive"
1080fi
1081
1082mkdir -p "$workspace"
1083mkdir -p "$archive"
1084set_package_var "TEST_CONFIG" "$test_config"
1085
1086{
1087echo
1088echo "CONFIGURATION: $test_group/$test_config"
1089echo
1090} |& log_separator
1091
1092tf_config="$(echo "$build_configs" | awk -F, '{print $1}')"
1093tftf_config="$(echo "$build_configs" | awk -F, '{print $2}')"
1094scp_config="$(echo "$build_configs" | awk -F, '{print $3}')"
Zelalem219df412020-05-17 19:21:20 -05001095scp_tools_config="$(echo "$build_configs" | awk -F, '{print $4}')"
Olivier Deprez0a9a3482019-12-16 14:10:31 +01001096spm_config="$(echo "$build_configs" | awk -F, '{print $5}')"
Fathi Boudra422bf772019-12-02 11:10:16 +02001097
1098test_config_file="$ci_root/group/$test_group/$test_config"
1099
1100tf_config_file="$ci_root/tf_config/$tf_config"
1101tftf_config_file="$ci_root/tftf_config/$tftf_config"
1102scp_config_file="$ci_root/scp_config/$scp_config"
Zelalem219df412020-05-17 19:21:20 -05001103scp_tools_config_file="$ci_root/scp_tools_config/$scp_tools_config"
Olivier Deprez0a9a3482019-12-16 14:10:31 +01001104spm_config_file="$ci_root/spm_config/$spm_config"
Fathi Boudra422bf772019-12-02 11:10:16 +02001105
1106# File that keeps track of applied patches
1107tf_patch_record="$workspace/tf_patches"
1108tftf_patch_record="$workspace/tftf_patches"
1109
1110pushd "$workspace"
1111
1112if ! config_valid "$tf_config"; then
1113 tf_config=
1114else
1115 echo "Trusted Firmware config:"
1116 echo
1117 sort "$tf_config_file" | sed '/^\s*$/d;s/^/\t/'
1118 echo
1119fi
1120
1121if ! config_valid "$tftf_config"; then
1122 tftf_config=
1123else
1124 echo "Trusted Firmware TF config:"
1125 echo
1126 sort "$tftf_config_file" | sed '/^\s*$/d;s/^/\t/'
1127 echo
1128fi
1129
1130if ! config_valid "$scp_config"; then
1131 scp_config=
1132else
1133 echo "SCP firmware config:"
1134 echo
1135 sort "$scp_config_file" | sed '/^\s*$/d;s/^/\t/'
1136 echo
1137fi
1138
Zelalem219df412020-05-17 19:21:20 -05001139if ! config_valid "$scp_tools_config"; then
1140 scp_tools_config=
1141else
1142 echo "SCP Tools config:"
1143 echo
1144 sort "$scp_tools_config_file" | sed '/^\s*$/d;s/^/\t/'
Olivier Deprez0a9a3482019-12-16 14:10:31 +01001145fi
1146
1147if ! config_valid "$spm_config"; then
1148 spm_config=
1149else
1150 echo "SPM config:"
1151 echo
1152 sort "$spm_config_file" | sed '/^\s*$/d;s/^/\t/'
Zelalem219df412020-05-17 19:21:20 -05001153 echo
1154fi
1155
Fathi Boudra422bf772019-12-02 11:10:16 +02001156if ! config_valid "$run_config"; then
1157 run_config=
1158fi
1159
1160if [ "$tf_config" ] && assert_can_git_clone "tf_root"; then
1161 # If the Trusted Firmware repository has already been checked out, use
1162 # that location. Otherwise, clone one ourselves.
1163 echo "Cloning Trusted Firmware..."
1164 clone_url="${TF_CHECKOUT_LOC:-$tf_src_repo_url}" where="$tf_root" \
1165 refspec="$TF_REFSPEC" clone_repo &>>"$build_log"
1166 show_head "$tf_root"
1167fi
1168
1169if [ "$tftf_config" ] && assert_can_git_clone "tftf_root"; then
1170 # If the Trusted Firmware TF repository has already been checked out,
1171 # use that location. Otherwise, clone one ourselves.
1172 echo "Cloning Trusted Firmware TF..."
1173 clone_url="${TFTF_CHECKOUT_LOC:-$tftf_src_repo_url}" where="$tftf_root" \
1174 refspec="$TFTF_REFSPEC" clone_repo &>>"$build_log"
1175 show_head "$tftf_root"
1176fi
1177
1178if [ "$scp_config" ] && assert_can_git_clone "scp_root"; then
1179 # If the SCP firmware repository has already been checked out,
1180 # use that location. Otherwise, clone one ourselves.
1181 echo "Cloning SCP Firmware..."
1182 clone_url="${SCP_CHECKOUT_LOC:-$scp_src_repo_url}" where="$scp_root" \
1183 refspec="${SCP_REFSPEC-master-upstream}" clone_repo &>>"$build_log"
1184
1185 pushd "$scp_root"
1186
1187 # Use filer submodule as a reference if it exists
Girish Pathak31b824e2021-03-03 20:58:21 +00001188 if [ -d "$SCP_CHECKOUT_LOC/cmsis" ]; then
Fathi Boudra422bf772019-12-02 11:10:16 +02001189 cmsis_reference="--reference $SCP_CHECKOUT_LOC/cmsis"
1190 fi
1191
1192 # If we don't have a reference yet, fall back to $cmsis_root if set, or
1193 # then to project filer if accessible.
1194 if [ -z "$cmsis_reference" ]; then
1195 cmsis_ref_repo="${cmsis_root:-$project_filer/ref-repos/cmsis}"
1196 if [ -d "$cmsis_ref_repo" ]; then
1197 cmsis_reference="--reference $cmsis_ref_repo"
1198 fi
1199 fi
1200
1201 git submodule -q update $cmsis_reference --init
1202
1203 popd
1204
1205 show_head "$scp_root"
1206fi
1207
Zelalem219df412020-05-17 19:21:20 -05001208if [ -n "$cc_config" ] ; then
1209 if [ "$cc_config" -eq 1 ] && assert_can_git_clone "cc_root"; then
1210 # Copy code coverage repository
1211 echo "Cloning Code Coverage..."
1212 git clone -q $cc_src_repo_url cc_plugin --depth 1 -b $cc_src_repo_tag > /dev/null
1213 show_head "$cc_root"
1214 fi
1215fi
1216
Olivier Deprez0a9a3482019-12-16 14:10:31 +01001217if [ "$spm_config" ] && assert_can_git_clone "spm_root"; then
1218 # If the SPM repository has already been checked out, use
1219 # that location. Otherwise, clone one ourselves.
1220 echo "Cloning SPM..."
1221 clone_url="${SPM_CHECKOUT_LOC:-$spm_src_repo_url}" where="$spm_root" \
1222 refspec="$SPM_REFSPEC" clone_repo &>>"$build_log"
1223
1224 # Query git submodules
1225 pushd "$spm_root"
1226 git submodule update --init
1227 popd
1228
1229 show_head "$spm_root"
1230fi
1231
Fathi Boudra422bf772019-12-02 11:10:16 +02001232if [ "$run_config" ]; then
1233 # Get candidates for run config
1234 run_config_candiates="$("$ci_root/script/gen_run_config_candidates.py" \
1235 "$run_config")"
1236 if [ -z "$run_config_candiates" ]; then
1237 die "No run config candidates!"
1238 else
1239 echo
1240 echo "Chosen fragments:"
1241 echo
1242 echo "$run_config_candiates" | sed 's/^\|\n/\t/g'
1243 echo
1244 fi
1245fi
1246
1247call_hook "test_setup"
1248echo
1249
1250if upon "$local_ci"; then
1251 # For local runs, since each config is tried in sequence, it's
1252 # advantageous to run jobs in parallel
1253 if [ "$make_j" ]; then
1254 make_j_opts="-j $make_j"
1255 else
1256 n_cores="$(getconf _NPROCESSORS_ONLN)" 2>/dev/null || true
1257 if [ "$n_cores" ]; then
1258 make_j_opts="-j $n_cores"
1259 fi
1260 fi
1261fi
1262
1263modes="${bin_mode:-debug release}"
1264for mode in $modes; do
Paul Sokolovskye9962cd2021-12-17 18:39:40 +03001265 echo "===== Building package in mode: $mode ====="
Fathi Boudra422bf772019-12-02 11:10:16 +02001266 # Build with a temporary archive
1267 build_archive="$archive/$mode"
1268 mkdir "$build_archive"
1269
1270 if [ "$mode" = "debug" ]; then
Zelalem219df412020-05-17 19:21:20 -05001271 export bin_mode="debug"
Fathi Boudra422bf772019-12-02 11:10:16 +02001272 DEBUG=1
1273 else
Zelalem219df412020-05-17 19:21:20 -05001274 export bin_mode="release"
Fathi Boudra422bf772019-12-02 11:10:16 +02001275 DEBUG=0
1276 fi
1277
1278 # Perform builds in a subshell so as not to pollute the current and
1279 # subsequent builds' environment
1280
Zelalem219df412020-05-17 19:21:20 -05001281 if config_valid "$cc_config"; then
1282 # Build code coverage plugin
1283 build_cc
1284 fi
1285
Fathi Boudra422bf772019-12-02 11:10:16 +02001286 # SCP build
1287 if config_valid "$scp_config"; then
1288 (
1289 echo "##########"
1290
1291 # Source platform-specific utilities
1292 plat="$(get_scp_opt PRODUCT)"
1293 plat_utils="$ci_root/${plat}_utils.sh"
1294 if [ -f "$plat_utils" ]; then
1295 source "$plat_utils"
1296 fi
1297
1298 archive="$build_archive"
1299 scp_build_root="$scp_root/build"
1300
1301 echo "Building SCP Firmware ($mode) ..." |& log_separator
1302
1303 build_scp
Fathi Boudra422bf772019-12-02 11:10:16 +02001304 to="$archive" collect_scp_artefacts
1305
1306 echo "##########"
1307 echo
1308 )
1309 fi
1310
Zelalem219df412020-05-17 19:21:20 -05001311 # SCP-tools build
1312 if config_valid "$scp_tools_config"; then
1313 (
1314 echo "##########"
1315
1316 archive="$build_archive"
1317 scp_tools_build_root="$scp_tools_root/build"
1318
1319 clone_scp_tools
1320
1321 echo "##########"
1322 echo
1323
1324 echo "##########"
1325 clone_tf_for_scp_tools
1326 echo "##########"
1327 echo
1328 )
1329 fi
1330
Fathi Boudra422bf772019-12-02 11:10:16 +02001331 # TFTF build
1332 if config_valid "$tftf_config"; then
1333 (
1334 echo "##########"
1335
Manish V Badarkhe3bd3fea2020-11-08 15:17:00 +00001336 plat_utils="$(get_tf_opt PLAT_UTILS)"
1337 if [ -z ${plat_utils} ]; then
1338 # Source platform-specific utilities.
1339 plat="$(get_tftf_opt PLAT)"
1340 plat_utils="$ci_root/${plat}_utils.sh"
1341 else
1342 # Source platform-specific utilities by
1343 # using plat_utils name.
1344 plat_utils="$ci_root/${plat_utils}.sh"
1345 fi
1346
Fathi Boudra422bf772019-12-02 11:10:16 +02001347 if [ -f "$plat_utils" ]; then
1348 source "$plat_utils"
1349 fi
1350
1351 archive="$build_archive"
1352 tftf_build_root="$tftf_root/build"
1353
1354 echo "Building Trusted Firmware TF ($mode) ..." |& log_separator
1355
1356 # Call pre-build hook
1357 call_hook pre_tftf_build
1358
1359 build_tftf
1360
1361 from="$tftf_build_root" to="$archive" collect_build_artefacts
1362
1363 # Clear any local changes made by applied patches
1364 undo_tftf_patches
1365
1366 echo "##########"
1367 echo
1368 )
1369 fi
1370
Olivier Deprez0a9a3482019-12-16 14:10:31 +01001371 # SPM build
1372 if config_valid "$spm_config"; then
1373 (
1374 echo "##########"
1375
1376 # Get platform name from spm_config file
1377 plat="$(echo "$spm_config" | awk -F- '{print $1}')"
1378 plat_utils="$ci_root/${plat}_utils.sh"
1379 if [ -f "$plat_utils" ]; then
1380 source "$plat_utils"
1381 fi
1382
Daniel Boulbyb8d2a462022-03-07 13:55:25 +00001383 # Call pre-build hook
1384 call_hook pre_spm_build
1385
Manish Pandey1e7be852020-11-09 16:04:48 +00001386 # SPM build generates two sets of binaries, one for normal and other
1387 # for Secure world. We need both set of binaries for CI.
Olivier Deprez0a9a3482019-12-16 14:10:31 +01001388 archive="$build_archive"
Manish Pandey1e7be852020-11-09 16:04:48 +00001389 spm_build_root="$spm_root/out/reference/$spm_secure_out_dir"
1390 hafnium_build_root="$spm_root/out/reference/$spm_non_secure_out_dir"
Olivier Deprez0a9a3482019-12-16 14:10:31 +01001391
Daniel Boulbyb8d2a462022-03-07 13:55:25 +00001392 echo "spm_build_root is $spm_build_root"
Olivier Deprez0a9a3482019-12-16 14:10:31 +01001393 echo "Building SPM ($mode) ..." |& log_separator
1394
1395 # NOTE: mode has no effect on SPM build (for now), hence debug
1396 # mode is built but subsequent build using release mode just
1397 # goes through with "nothing to do".
1398 build_spm
1399
1400 # Show SPM/Hafnium binary details
Madhukar Pappireddyc683cf62021-11-01 14:38:32 -05001401 cksum $spm_build_root/hafnium.bin
1402
1403 # Some platforms only have secure configuration enabled. Hence,
1404 # non secure hanfnium binary might not be built.
1405 if [ -f $hafnium_build_root/hafnium.bin ]; then
1406 cksum $hafnium_build_root/hafnium.bin
1407 fi
Olivier Deprez0a9a3482019-12-16 14:10:31 +01001408
Manish Pandey1e7be852020-11-09 16:04:48 +00001409 secure_from="$spm_build_root" non_secure_from="$hafnium_build_root" to="$archive" collect_spm_artefacts
Olivier Deprez0a9a3482019-12-16 14:10:31 +01001410
1411 echo "##########"
1412 echo
1413 )
1414 fi
1415
Fathi Boudra422bf772019-12-02 11:10:16 +02001416 # TF build
1417 if config_valid "$tf_config"; then
1418 (
1419 echo "##########"
1420
Manish V Badarkhe3bd3fea2020-11-08 15:17:00 +00001421 plat_utils="$(get_tf_opt PLAT_UTILS)"
Madhukar Pappireddy2f284e12021-08-30 16:06:14 -05001422 export plat_variant="$(get_tf_opt TARGET_PLATFORM)"
1423
Manish V Badarkhe3bd3fea2020-11-08 15:17:00 +00001424 if [ -z ${plat_utils} ]; then
1425 # Source platform-specific utilities.
1426 plat="$(get_tf_opt PLAT)"
1427 plat_utils="$ci_root/${plat}_utils.sh"
1428 else
1429 # Source platform-specific utilities by
1430 # using plat_utils name.
1431 plat_utils="$ci_root/${plat_utils}.sh"
1432 fi
1433
Fathi Boudra422bf772019-12-02 11:10:16 +02001434 if [ -f "$plat_utils" ]; then
1435 source "$plat_utils"
1436 fi
1437
Chris Kayd0837902021-11-17 10:17:52 +00001438 source "$ci_root/script/install_python_deps_tf.sh"
1439
Fathi Boudra422bf772019-12-02 11:10:16 +02001440 archive="$build_archive"
1441 tf_build_root="$tf_root/build"
1442
1443 echo "Building Trusted Firmware ($mode) ..." |& log_separator
1444
1445 # Call pre-build hook
1446 call_hook pre_tf_build
1447
1448 build_tf
1449
1450 # Call post-build hook
1451 call_hook post_tf_build
1452
1453 # Pre-archive hook
1454 call_hook pre_tf_archive
1455
1456 from="$tf_build_root" to="$archive" collect_build_artefacts
1457
1458 # Post-archive hook
1459 call_hook post_tf_archive
1460
1461 call_hook fetch_tf_resource
1462 call_hook post_fetch_tf_resource
1463
1464 # Clear any local changes made by applied patches
1465 undo_tf_patches
1466
1467 echo "##########"
1468 )
1469 fi
1470
1471 echo
1472 echo
1473done
1474
1475call_hook pre_package
1476
1477call_hook post_package
1478
1479if upon "$jenkins_run" && upon "$artefacts_receiver" && [ -d "artefacts" ]; then
Zelalem219df412020-05-17 19:21:20 -05001480 source "$CI_ROOT/script/send_artefacts.sh" "artefacts"
Fathi Boudra422bf772019-12-02 11:10:16 +02001481fi
1482
1483echo
1484echo "Done"