blob: e5eebc59be2adc034cc20d74daa0595a837efebf [file] [log] [blame]
Tamas Bandf28e9f2022-06-22 12:40:43 +02001/*
2 * Copyright (c) 2019-2022, Arm Limited. All rights reserved.
3 *
4 * SPDX-License-Identifier: BSD-3-Clause
5 *
6 */
7
Tamas Ban44cd1992022-08-18 12:47:12 +02008#ifndef __TFM_ATTEST_IAT_DEFS_H__
9#define __TFM_ATTEST_IAT_DEFS_H__
Tamas Bandf28e9f2022-06-22 12:40:43 +020010
11#ifdef __cplusplus
12extern "C" {
13#endif
14
Tamas Bana7ef16b2022-06-28 15:03:10 +020015#if defined(ATTEST_TOKEN_PROFILE_PSA_IOT_1)
16
17/* In case of the original PSA_IOT_PROFILE_1 */
Tamas Bandf28e9f2022-06-22 12:40:43 +020018#define IAT_ARM_RANGE_BASE (-75000)
19#define IAT_PROFILE_DEFINITION (IAT_ARM_RANGE_BASE - 0)
20#define IAT_CLIENT_ID (IAT_ARM_RANGE_BASE - 1)
21#define IAT_SECURITY_LIFECYCLE (IAT_ARM_RANGE_BASE - 2)
22#define IAT_IMPLEMENTATION_ID (IAT_ARM_RANGE_BASE - 3)
23#define IAT_BOOT_SEED (IAT_ARM_RANGE_BASE - 4)
Tamas Banfc318d72022-06-22 14:23:52 +020024#define IAT_CERTIFICATION_REFERENCE (IAT_ARM_RANGE_BASE - 5)
Tamas Bandf28e9f2022-06-22 12:40:43 +020025#define IAT_SW_COMPONENTS (IAT_ARM_RANGE_BASE - 6)
26#define IAT_NO_SW_COMPONENTS (IAT_ARM_RANGE_BASE - 7)
Tamas Banfc318d72022-06-22 14:23:52 +020027#define IAT_NONCE (IAT_ARM_RANGE_BASE - 8)
28#define IAT_INSTANCE_ID (IAT_ARM_RANGE_BASE - 9)
29#define IAT_VERIFICATION_SERVICE (IAT_ARM_RANGE_BASE - 10)
Tamas Bandf28e9f2022-06-22 12:40:43 +020030
Tamas Bana7ef16b2022-06-28 15:03:10 +020031/* Indicates that the boot status intentionally (i.e. the bootloader is not
32 * capable of producing it) does not contain any SW components' measurement.
33 * Required integer value for claim labeled IAT_NO_SW_COMPONENTS.
34 */
35#define NO_SW_COMPONENT_FIXED_VALUE 1
36
37#elif defined(ATTEST_TOKEN_PROFILE_PSA_2_0_0)
38
39/* In case of PSA_2_0_0 (updated PSA profile ) */
40#define IAT_NONCE 10 /* EAT nonce */
41#define IAT_INSTANCE_ID 256 /* EAT ueid */
42#define IAT_PROFILE_DEFINITION 265 /* EAT eat_profile */
43#define IAT_ARM_RANGE_BASE (2393)
44#define IAT_CLIENT_ID (IAT_ARM_RANGE_BASE + 1)
45#define IAT_SECURITY_LIFECYCLE (IAT_ARM_RANGE_BASE + 2)
46#define IAT_IMPLEMENTATION_ID (IAT_ARM_RANGE_BASE + 3)
47#define IAT_BOOT_SEED (IAT_ARM_RANGE_BASE + 4)
48#define IAT_CERTIFICATION_REFERENCE (IAT_ARM_RANGE_BASE + 5)
49#define IAT_SW_COMPONENTS (IAT_ARM_RANGE_BASE + 6)
50#define IAT_VERIFICATION_SERVICE (IAT_ARM_RANGE_BASE + 7)
51
Tamas Ban7a32d9c2022-06-28 15:45:10 +020052#elif defined(ATTEST_TOKEN_PROFILE_ARM_CCA)
53
54/* In case of ARM_CCA profile */
55#define IAT_NONCE 10 /* EAT nonce*/
56#define IAT_INSTANCE_ID 256 /* EAT ueid */
57#define IAT_PROFILE_DEFINITION 265 /* EAT eat_profile */
58#define IAT_ARM_RANGE_BASE (2393)
59#define IAT_CLIENT_ID (IAT_ARM_RANGE_BASE + 1)
60#define IAT_SECURITY_LIFECYCLE (IAT_ARM_RANGE_BASE + 2)
61#define IAT_IMPLEMENTATION_ID (IAT_ARM_RANGE_BASE + 3)
62#define IAT_BOOT_SEED (IAT_ARM_RANGE_BASE + 4)
63#define IAT_CERTIFICATION_REFERENCE (IAT_ARM_RANGE_BASE + 5)
64#define IAT_SW_COMPONENTS (IAT_ARM_RANGE_BASE + 6)
65#define IAT_VERIFICATION_SERVICE (IAT_ARM_RANGE_BASE + 7)
66#define IAT_PLATFORM_CONFIG (IAT_ARM_RANGE_BASE + 8)
67#define IAT_PLATFORM_HASH_ALGO_ID (IAT_ARM_RANGE_BASE + 9)
68
Tamas Bana7ef16b2022-06-28 15:03:10 +020069#else
70#error "Attestation token profile is incorrect"
71#endif
72
Tamas Bandf28e9f2022-06-22 12:40:43 +020073#define IAT_SW_COMPONENT_MEASUREMENT_TYPE (1)
74#define IAT_SW_COMPONENT_MEASUREMENT_VALUE (2)
75/* Reserved (3) */
76#define IAT_SW_COMPONENT_VERSION (4)
77#define IAT_SW_COMPONENT_SIGNER_ID (5)
78#define IAT_SW_COMPONENT_MEASUREMENT_DESC (6)
79
Tamas Bandf28e9f2022-06-22 12:40:43 +020080#ifdef __cplusplus
81}
82#endif
83
Tamas Ban44cd1992022-08-18 12:47:12 +020084#endif /* __TFM_ATTEST_IAT_DEFS_H__ */