blob: 9bc9ead24af927c03dc23c4d4787041050b97320 [file] [log] [blame]
Antonio de Angelis8908f472018-08-31 15:44:25 +01001/*
Kevin Peng6aa48952022-01-28 15:40:46 +08002 * Copyright (c) 2018-2022, Arm Limited. All rights reserved.
Antonio de Angelis8908f472018-08-31 15:44:25 +01003 *
4 * SPDX-License-Identifier: BSD-3-Clause
5 *
6 */
Antonio de Angelis202425a2022-04-06 11:13:15 +01007#include <stdbool.h>
Antonio de Angelis8908f472018-08-31 15:44:25 +01008
Jamie Fox0e54ebc2019-04-09 14:21:04 +01009#include "tfm_mbedcrypto_include.h"
10
Antonio de Angelis8908f472018-08-31 15:44:25 +010011#include "tfm_crypto_api.h"
Jamie Fox0e54ebc2019-04-09 14:21:04 +010012#include "tfm_crypto_defs.h"
Summer Qinc737ece2020-08-28 10:47:26 +080013#include "tfm_sp_log.h"
Summer Qinca6c1522022-06-17 14:25:55 +080014#include "crypto_check_config.h"
Raef Coles79809c72022-03-02 13:48:20 +000015#include "tfm_plat_crypto_keys.h"
Jamie Fox0e54ebc2019-04-09 14:21:04 +010016
17/*
18 * \brief This Mbed TLS include is needed to initialise the memory allocator
Antonio de Angelis202425a2022-04-06 11:13:15 +010019 * of the library used for internal allocations
Jamie Fox0e54ebc2019-04-09 14:21:04 +010020 */
21#include "mbedtls/memory_buffer_alloc.h"
Antonio de Angelis8908f472018-08-31 15:44:25 +010022
Sherry Zhange1524982022-06-08 16:57:59 +080023#include "mbedtls/platform.h"
24
Raef Coles618fc152021-06-18 09:26:46 +010025#ifdef CRYPTO_NV_SEED
26#include "tfm_plat_crypto_nv_seed.h"
27#endif /* CRYPTO_NV_SEED */
Summer Qina5448d62020-12-07 14:03:37 +080028
Antonio de Angelis60a6fe62019-06-18 15:27:34 +010029#ifndef TFM_PSA_API
30#include "tfm_secure_api.h"
31#endif
32
Raef Colesd2485af2019-10-30 10:15:33 +000033#ifdef CRYPTO_HW_ACCELERATOR
34#include "crypto_hw.h"
Michel Jaouenf41c6422021-10-07 14:38:08 +020035#endif /* CRYPTO_HW_ACCELERATOR */
Raef Colesd2485af2019-10-30 10:15:33 +000036
Antonio de Angelis202425a2022-04-06 11:13:15 +010037#ifndef MBEDTLS_PSA_CRYPTO_KEY_ID_ENCODES_OWNER
38#error "MBEDTLS_PSA_CRYPTO_KEY_ID_ENCODES_OWNER must be selected in Mbed TLS config file"
39#endif
40
Antonio de Angelis4743e672019-04-11 11:38:48 +010041#ifdef TFM_PSA_API
Ken Liub671d682022-05-12 20:39:29 +080042#include <string.h>
Kevin Pengfe730cc2022-04-11 17:48:42 +080043#include "psa/framework_feature.h"
Jamie Foxcc31d402019-01-28 17:13:52 +000044#include "psa/service.h"
Edison Aicc4c6162019-06-21 13:52:49 +080045#include "psa_manifest/tfm_crypto.h"
Antonio de Angelis4743e672019-04-11 11:38:48 +010046
47/**
Antonio de Angelis4743e672019-04-11 11:38:48 +010048 * \brief Aligns a value x up to an alignment a.
49 */
50#define ALIGN(x, a) (((x) + ((a) - 1)) & ~((a) - 1))
51
52/**
53 * \brief Maximum alignment required by any iovec parameters to the TF-M Crypto
54 * partition.
55 */
56#define TFM_CRYPTO_IOVEC_ALIGNMENT (4u)
57
Kevin Pengfe730cc2022-04-11 17:48:42 +080058#if PSA_FRAMEWORK_HAS_MM_IOVEC == 1
59static int32_t g_client_id;
60
61static void tfm_crypto_set_caller_id(int32_t id)
62{
63 g_client_id = id;
64}
65
66psa_status_t tfm_crypto_get_caller_id(int32_t *id)
67{
68 *id = g_client_id;
69 return PSA_SUCCESS;
70}
71
72static psa_status_t tfm_crypto_init_iovecs(const psa_msg_t *msg,
73 psa_invec in_vec[],
74 size_t in_len,
75 psa_outvec out_vec[],
76 size_t out_len)
77{
78 uint32_t i;
79
80 /* Map from the second element as the first is read when parsing */
81 for (i = 1; i < in_len; i++) {
82 in_vec[i].len = msg->in_size[i];
83 if (in_vec[i].len != 0) {
84 in_vec[i].base = psa_map_invec(msg->handle, i);
85 } else {
86 in_vec[i].base = NULL;
87 }
88 }
89
90 for (i = 0; i < out_len; i++) {
91 out_vec[i].len = msg->out_size[i];
92 if (out_vec[i].len != 0) {
93 out_vec[i].base = psa_map_outvec(msg->handle, i);
94 } else {
95 out_vec[i].base = NULL;
96 }
97 }
98
99 return PSA_SUCCESS;
100}
101#else /* PSA_FRAMEWORK_HAS_MM_IOVEC == 1 */
Antonio de Angelis4743e672019-04-11 11:38:48 +0100102/**
Antonio de Angelis4743e672019-04-11 11:38:48 +0100103 * \brief Internal scratch used for IOVec allocations
104 *
105 */
106static struct tfm_crypto_scratch {
107 __attribute__((__aligned__(TFM_CRYPTO_IOVEC_ALIGNMENT)))
108 uint8_t buf[TFM_CRYPTO_IOVEC_BUFFER_SIZE];
109 uint32_t alloc_index;
Antonio de Angelis60a6fe62019-06-18 15:27:34 +0100110 int32_t owner;
Antonio de Angelis4743e672019-04-11 11:38:48 +0100111} scratch = {.buf = {0}, .alloc_index = 0};
112
Antonio de Angelis60a6fe62019-06-18 15:27:34 +0100113static psa_status_t tfm_crypto_set_scratch_owner(int32_t id)
114{
115 scratch.owner = id;
116 return PSA_SUCCESS;
117}
118
119static psa_status_t tfm_crypto_get_scratch_owner(int32_t *id)
120{
121 *id = scratch.owner;
122 return PSA_SUCCESS;
123}
124
Antonio de Angelis4743e672019-04-11 11:38:48 +0100125static psa_status_t tfm_crypto_alloc_scratch(size_t requested_size, void **buf)
126{
127 /* Ensure alloc_index remains aligned to the required iovec alignment */
128 requested_size = ALIGN(requested_size, TFM_CRYPTO_IOVEC_ALIGNMENT);
129
130 if (requested_size > (sizeof(scratch.buf) - scratch.alloc_index)) {
131 return PSA_ERROR_INSUFFICIENT_MEMORY;
132 }
133
134 /* Compute the pointer to the allocated space */
135 *buf = (void *)&scratch.buf[scratch.alloc_index];
136
137 /* Increase the allocated size */
138 scratch.alloc_index += requested_size;
139
140 return PSA_SUCCESS;
141}
142
Kevin Pengfe730cc2022-04-11 17:48:42 +0800143static void tfm_crypto_clear_scratch(void)
Antonio de Angelis4743e672019-04-11 11:38:48 +0100144{
Antonio de Angelis60a6fe62019-06-18 15:27:34 +0100145 scratch.owner = 0;
Ken Liub671d682022-05-12 20:39:29 +0800146 (void)memset(scratch.buf, 0, scratch.alloc_index);
Summer Qin0a9e5372020-11-27 16:04:05 +0800147 scratch.alloc_index = 0;
Antonio de Angelis4743e672019-04-11 11:38:48 +0100148}
149
Kevin Pengfe730cc2022-04-11 17:48:42 +0800150static void tfm_crypto_set_caller_id(int32_t id)
151{
152 /* Set the owner of the data in the scratch */
153 (void)tfm_crypto_set_scratch_owner(id);
154}
155
156psa_status_t tfm_crypto_get_caller_id(int32_t *id)
157{
158 return tfm_crypto_get_scratch_owner(id);
159}
160
161static psa_status_t tfm_crypto_init_iovecs(const psa_msg_t *msg,
162 psa_invec in_vec[],
163 size_t in_len,
164 psa_outvec out_vec[],
165 size_t out_len)
166{
167 uint32_t i;
168 void *alloc_buf_ptr = NULL;
169 psa_status_t status;
170
171 /* Alloc/read from the second element as the first is read when parsing */
172 for (i = 1; i < in_len; i++) {
173 /* Allocate necessary space in the internal scratch */
174 status = tfm_crypto_alloc_scratch(msg->in_size[i], &alloc_buf_ptr);
175 if (status != PSA_SUCCESS) {
176 tfm_crypto_clear_scratch();
177 return status;
178 }
179 /* Read from the IPC framework inputs into the scratch */
180 in_vec[i].len =
181 psa_read(msg->handle, i, alloc_buf_ptr, msg->in_size[i]);
182 /* Populate the fields of the input to the secure function */
183 in_vec[i].base = alloc_buf_ptr;
184 }
185
186 for (i = 0; i < out_len; i++) {
187 /* Allocate necessary space for the output in the internal scratch */
188 status = tfm_crypto_alloc_scratch(msg->out_size[i], &alloc_buf_ptr);
189 if (status != PSA_SUCCESS) {
190 tfm_crypto_clear_scratch();
191 return status;
192 }
193 /* Populate the fields of the output to the secure function */
194 out_vec[i].base = alloc_buf_ptr;
195 out_vec[i].len = msg->out_size[i];
196 }
197
198 return PSA_SUCCESS;
199}
200#endif /* PSA_FRAMEWORK_HAS_MM_IOVEC == 1 */
201
Kevin Peng2d4bc2e2022-01-28 16:19:30 +0800202static psa_status_t tfm_crypto_call_srv(const psa_msg_t *msg)
Antonio de Angelis4743e672019-04-11 11:38:48 +0100203{
204 psa_status_t status = PSA_SUCCESS;
TTornblomfaf74f52020-03-04 17:56:27 +0100205 size_t in_len = PSA_MAX_IOVEC, out_len = PSA_MAX_IOVEC, i;
Soby Mathewd8abdfd2020-10-14 10:28:01 +0100206 psa_invec in_vec[PSA_MAX_IOVEC] = { {NULL, 0} };
207 psa_outvec out_vec[PSA_MAX_IOVEC] = { {NULL, 0} };
Kevin Peng2d4bc2e2022-01-28 16:19:30 +0800208 struct tfm_crypto_pack_iovec iov = {0};
Antonio de Angelis4743e672019-04-11 11:38:48 +0100209
210 /* Check the number of in_vec filled */
Jamie Fox9a234e22019-04-30 11:12:05 +0100211 while ((in_len > 0) && (msg->in_size[in_len - 1] == 0)) {
212 in_len--;
Antonio de Angelis4743e672019-04-11 11:38:48 +0100213 }
214
Kevin Pengfe730cc2022-04-11 17:48:42 +0800215 /* Check the number of out_vec filled */
216 while ((out_len > 0) && (msg->out_size[out_len - 1] == 0)) {
217 out_len--;
218 }
219
Antonio de Angelis4743e672019-04-11 11:38:48 +0100220 /* There will always be a tfm_crypto_pack_iovec in the first iovec */
221 if (in_len < 1) {
Jamie Fox0e54ebc2019-04-09 14:21:04 +0100222 return PSA_ERROR_GENERIC_ERROR;
Antonio de Angelis4743e672019-04-11 11:38:48 +0100223 }
Kevin Peng2d4bc2e2022-01-28 16:19:30 +0800224
225 if (psa_read(msg->handle, 0, &iov, sizeof(iov)) != sizeof(iov)) {
226 return PSA_ERROR_GENERIC_ERROR;
227 }
228
Antonio de Angelis4743e672019-04-11 11:38:48 +0100229 /* Initialise the first iovec with the IOV read when parsing */
Kevin Peng2d4bc2e2022-01-28 16:19:30 +0800230 in_vec[0].base = &iov;
Antonio de Angelis4743e672019-04-11 11:38:48 +0100231 in_vec[0].len = sizeof(struct tfm_crypto_pack_iovec);
232
Kevin Pengfe730cc2022-04-11 17:48:42 +0800233 status = tfm_crypto_init_iovecs(msg, in_vec, in_len, out_vec, out_len);
234 if (status != PSA_SUCCESS) {
235 return status;
Antonio de Angelis4743e672019-04-11 11:38:48 +0100236 }
237
Kevin Pengfe730cc2022-04-11 17:48:42 +0800238 tfm_crypto_set_caller_id(msg->client_id);
Antonio de Angelis60a6fe62019-06-18 15:27:34 +0100239
Antonio de Angelis202425a2022-04-06 11:13:15 +0100240 /* Call the dispatcher to the functions that implement the PSA Crypto API */
241 status = tfm_crypto_api_dispatcher(in_vec, in_len, out_vec, out_len);
Antonio de Angelis4743e672019-04-11 11:38:48 +0100242
Kevin Pengfe730cc2022-04-11 17:48:42 +0800243#if PSA_FRAMEWORK_HAS_MM_IOVEC == 1
244 for (i = 0; i < out_len; i++) {
245 if (out_vec[i].base != NULL) {
246 psa_unmap_outvec(msg->handle, i, out_vec[i].len);
247 }
248 }
249#else
Antonio de Angelis4743e672019-04-11 11:38:48 +0100250 /* Write into the IPC framework outputs from the scratch */
251 for (i = 0; i < out_len; i++) {
252 psa_write(msg->handle, i, out_vec[i].base, out_vec[i].len);
253 }
254
255 /* Clear the allocated internal scratch before returning */
Summer Qin0a9e5372020-11-27 16:04:05 +0800256 tfm_crypto_clear_scratch();
Kevin Pengfe730cc2022-04-11 17:48:42 +0800257#endif
Antonio de Angelis4743e672019-04-11 11:38:48 +0100258
259 return status;
260}
Kevin Pengfe730cc2022-04-11 17:48:42 +0800261#else /* TFM_PSA_API */
262psa_status_t tfm_crypto_get_caller_id(int32_t *id)
263{
264 int32_t res;
Antonio de Angelis4743e672019-04-11 11:38:48 +0100265
Kevin Pengfe730cc2022-04-11 17:48:42 +0800266 res = tfm_core_get_caller_client_id(id);
267 if (res != TFM_SUCCESS) {
268 return PSA_ERROR_NOT_PERMITTED;
269 } else {
270 return PSA_SUCCESS;
271 }
272}
Antonio de Angelis4743e672019-04-11 11:38:48 +0100273#endif /* TFM_PSA_API */
274
Jamie Fox0e54ebc2019-04-09 14:21:04 +0100275/**
Jamie Fox0e54ebc2019-04-09 14:21:04 +0100276 * \brief Static buffer to be used by Mbed Crypto for memory allocations
277 *
278 */
279static uint8_t mbedtls_mem_buf[TFM_CRYPTO_ENGINE_BUF_SIZE] = {0};
280
281static psa_status_t tfm_crypto_engine_init(void)
282{
Raef Coles618fc152021-06-18 09:26:46 +0100283#ifdef CRYPTO_NV_SEED
Antonio de Angelis202425a2022-04-06 11:13:15 +0100284 LOG_INFFMT("[INF][Crypto] ");
Raef Coles618fc152021-06-18 09:26:46 +0100285#ifdef TFM_PSA_API
Antonio de Angelis202425a2022-04-06 11:13:15 +0100286 LOG_INFFMT("Provisioning entropy seed... ");
Raef Coles618fc152021-06-18 09:26:46 +0100287 if (tfm_plat_crypto_provision_entropy_seed() != TFM_CRYPTO_NV_SEED_SUCCESS) {
Summer Qina5448d62020-12-07 14:03:37 +0800288 return PSA_ERROR_GENERIC_ERROR;
289 }
Antonio de Angelis202425a2022-04-06 11:13:15 +0100290 LOG_INFFMT("\033[0;32mcomplete.\033[0m\r\n");
Raef Coles618fc152021-06-18 09:26:46 +0100291#else
Raef Coles618fc152021-06-18 09:26:46 +0100292 LOG_INFFMT("TF-M in library mode uses a dummy NV seed. ");
293 LOG_INFFMT("This is not suitable for production! ");
Antonio de Angelis202425a2022-04-06 11:13:15 +0100294 LOG_INFFMT("This device is \033[1;31mNOT SECURE\033[0m\r\n");
Raef Coles618fc152021-06-18 09:26:46 +0100295#endif /* TFM_PSA_API */
296#endif /* CRYPTO_NV_SEED */
Summer Qina5448d62020-12-07 14:03:37 +0800297
Antonio de Angelis202425a2022-04-06 11:13:15 +0100298 /* Initialise the Mbed Crypto memory allocator to use static memory
299 * allocation from the provided buffer instead of using the heap
Jamie Fox0e54ebc2019-04-09 14:21:04 +0100300 */
301 mbedtls_memory_buffer_alloc_init(mbedtls_mem_buf,
302 TFM_CRYPTO_ENGINE_BUF_SIZE);
303
Sherry Zhange1524982022-06-08 16:57:59 +0800304 /* mbedtls_printf is used to print messages including error information. */
305#if (TFM_PARTITION_LOG_LEVEL >= TFM_PARTITION_LOG_LEVEL_ERROR)
306 mbedtls_platform_set_printf(tfm_sp_log_printf);
307#endif
308
Antonio de Angelis695d75b2022-08-22 15:06:24 +0100309 /* Initialise the crypto accelerator if one is enabled. If the driver API is
310 * the one defined by the PSA Unified Driver interface, the initialisation is
311 * performed directly through psa_crypto_init() while the PSA subsystem is
312 * initialised
313 */
314#if defined(CRYPTO_HW_ACCELERATOR) && defined(CC312_LEGACY_DRIVER_API_ENABLED)
Antonio de Angelis202425a2022-04-06 11:13:15 +0100315 LOG_INFFMT("[INF][Crypto] Initialising HW accelerator... ");
Raef Colesd2485af2019-10-30 10:15:33 +0000316 if (crypto_hw_accelerator_init() != 0) {
317 return PSA_ERROR_HARDWARE_FAILURE;
318 }
Antonio de Angelis202425a2022-04-06 11:13:15 +0100319 LOG_INFFMT("\033[0;32mcomplete.\033[0m\r\n");
Raef Colesd2485af2019-10-30 10:15:33 +0000320#endif /* CRYPTO_HW_ACCELERATOR */
321
Antonio de Angelis695d75b2022-08-22 15:06:24 +0100322 /* Perform the initialisation of the PSA subsystem in the Mbed Crypto
323 * library. If a driver is built using the PSA Driver interface, the function
324 * below will perform also the same operations as crypto_hw_accelerator_init()
Jamie Fox0e54ebc2019-04-09 14:21:04 +0100325 */
326 return psa_crypto_init();
327}
328
Antonio de Angelisab85ccd2019-03-25 15:14:29 +0000329static psa_status_t tfm_crypto_module_init(void)
Antonio de Angeliscf85ba22018-10-09 13:29:40 +0100330{
Antonio de Angeliscf85ba22018-10-09 13:29:40 +0100331 /* Init the Alloc module */
Antonio de Angelisab85ccd2019-03-25 15:14:29 +0000332 return tfm_crypto_init_alloc();
Antonio de Angeliscf85ba22018-10-09 13:29:40 +0100333}
Antonio de Angelis8908f472018-08-31 15:44:25 +0100334
Antonio de Angelisab85ccd2019-03-25 15:14:29 +0000335psa_status_t tfm_crypto_init(void)
Antonio de Angelis8908f472018-08-31 15:44:25 +0100336{
Antonio de Angeliscf85ba22018-10-09 13:29:40 +0100337 psa_status_t status;
Raef Coles79809c72022-03-02 13:48:20 +0000338 enum tfm_plat_err_t plat_err;
Antonio de Angelis8908f472018-08-31 15:44:25 +0100339
Antonio de Angeliscf85ba22018-10-09 13:29:40 +0100340 /* Initialise other modules of the service */
Antonio de Angelisab85ccd2019-03-25 15:14:29 +0000341 status = tfm_crypto_module_init();
342 if (status != PSA_SUCCESS) {
343 return status;
Antonio de Angeliscf85ba22018-10-09 13:29:40 +0100344 }
345
Jamie Fox0e54ebc2019-04-09 14:21:04 +0100346 /* Initialise the engine layer */
Raef Coles79809c72022-03-02 13:48:20 +0000347 status = tfm_crypto_engine_init();
348 if (status != PSA_SUCCESS) {
349 return status;
350 }
351
352 plat_err = tfm_plat_load_builtin_keys();
353 if (plat_err != TFM_PLAT_ERR_SUCCESS) {
354 return PSA_ERROR_GENERIC_ERROR;
355 }
356
357 return PSA_SUCCESS;
Kevin Peng2d4bc2e2022-01-28 16:19:30 +0800358}
Antonio de Angelis8908f472018-08-31 15:44:25 +0100359
Antonio de Angelis4743e672019-04-11 11:38:48 +0100360#ifdef TFM_PSA_API
Kevin Peng2d4bc2e2022-01-28 16:19:30 +0800361psa_status_t tfm_crypto_sfn(const psa_msg_t *msg)
362{
363 /* Process the message type */
364 switch (msg->type) {
365 case PSA_IPC_CALL:
366 return tfm_crypto_call_srv(msg);
367 default:
368 return PSA_ERROR_NOT_SUPPORTED;
369 }
Antonio de Angelis4743e672019-04-11 11:38:48 +0100370
Kevin Peng2d4bc2e2022-01-28 16:19:30 +0800371 return PSA_ERROR_GENERIC_ERROR;
Antonio de Angelis8908f472018-08-31 15:44:25 +0100372}
Kevin Peng2d4bc2e2022-01-28 16:19:30 +0800373#endif
Antonio de Angelis202425a2022-04-06 11:13:15 +0100374
375psa_status_t tfm_crypto_api_dispatcher(psa_invec in_vec[],
376 size_t in_len,
377 psa_outvec out_vec[],
378 size_t out_len)
379{
380 psa_status_t status = PSA_ERROR_CORRUPTION_DETECTED;
381 const struct tfm_crypto_pack_iovec *iov = in_vec[0].base;
382 int32_t caller_id = 0;
383 mbedtls_svc_key_id_t encoded_key = MBEDTLS_SVC_KEY_ID_INIT;
384 bool is_key_required = false;
David Huc9679cc2022-06-21 13:09:34 +0800385 enum tfm_crypto_group_id group_id;
Antonio de Angelis202425a2022-04-06 11:13:15 +0100386
387 if (in_vec[0].len != sizeof(struct tfm_crypto_pack_iovec)) {
388 return PSA_ERROR_PROGRAMMER_ERROR;
389 }
390
David Huc9679cc2022-06-21 13:09:34 +0800391 group_id = TFM_CRYPTO_GET_GROUP_ID(iov->function_id);
392
393 is_key_required = !((group_id == TFM_CRYPTO_GROUP_ID_HASH) ||
394 (group_id == TFM_CRYPTO_GROUP_ID_RANDOM));
Antonio de Angelis202425a2022-04-06 11:13:15 +0100395
396 if (is_key_required) {
397 status = tfm_crypto_get_caller_id(&caller_id);
398 if (status != PSA_SUCCESS) {
399 return status;
400 }
401 /* The caller_id being set in the owner field is the partition ID
402 * of the calling partition
403 */
404 encoded_key = mbedtls_svc_key_id_make(caller_id, iov->key_id);
405 }
406
407 /* Dispatch to each sub-module based on the Group ID */
David Huc9679cc2022-06-21 13:09:34 +0800408 switch (group_id) {
409 case TFM_CRYPTO_GROUP_ID_KEY_MANAGEMENT:
410 return tfm_crypto_key_management_interface(in_vec, out_vec,
411 &encoded_key);
412 case TFM_CRYPTO_GROUP_ID_HASH:
413 return tfm_crypto_hash_interface(in_vec, out_vec);
414 case TFM_CRYPTO_GROUP_ID_MAC:
415 return tfm_crypto_mac_interface(in_vec, out_vec, &encoded_key);
416 case TFM_CRYPTO_GROUP_ID_CIPHER:
417 return tfm_crypto_cipher_interface(in_vec, out_vec, &encoded_key);
418 case TFM_CRYPTO_GROUP_ID_AEAD:
419 return tfm_crypto_aead_interface(in_vec, out_vec, &encoded_key);
420 case TFM_CRYPTO_GROUP_ID_ASYM_SIGN:
421 return tfm_crypto_asymmetric_sign_interface(in_vec, out_vec,
422 &encoded_key);
423 case TFM_CRYPTO_GROUP_ID_ASYM_ENCRYPT:
424 return tfm_crypto_asymmetric_encrypt_interface(in_vec, out_vec,
425 &encoded_key);
426 case TFM_CRYPTO_GROUP_ID_KEY_DERIVATION:
427 return tfm_crypto_key_derivation_interface(in_vec, out_vec,
428 &encoded_key);
429 case TFM_CRYPTO_GROUP_ID_RANDOM:
430 return tfm_crypto_random_interface(in_vec, out_vec);
431 default:
Antonio de Angelis202425a2022-04-06 11:13:15 +0100432 LOG_ERRFMT("[ERR][Crypto] Unsupported request!\r\n");
David Huc9679cc2022-06-21 13:09:34 +0800433 return PSA_ERROR_NOT_SUPPORTED;
Antonio de Angelis202425a2022-04-06 11:13:15 +0100434 }
435
David Huc9679cc2022-06-21 13:09:34 +0800436 return PSA_ERROR_NOT_SUPPORTED;
Antonio de Angelis202425a2022-04-06 11:13:15 +0100437}