Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1 | /* |
| 2 | * Copyright (C) 2004 IBM Corporation |
Jarkko Sakkinen | a74f8b3 | 2015-10-11 12:26:58 +0300 | [diff] [blame] | 3 | * Copyright (C) 2015 Intel Corporation |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 4 | * |
| 5 | * Authors: |
| 6 | * Leendert van Doorn <leendert@watson.ibm.com> |
| 7 | * Dave Safford <safford@watson.ibm.com> |
| 8 | * Reiner Sailer <sailer@watson.ibm.com> |
| 9 | * Kylene Hall <kjhall@us.ibm.com> |
| 10 | * |
Kent Yoder | 8e81cc1 | 2007-08-22 14:01:04 -0700 | [diff] [blame] | 11 | * Maintained by: <tpmdd-devel@lists.sourceforge.net> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 12 | * |
| 13 | * Device driver for TCG/TCPA TPM (trusted platform module). |
Bruno E O Meneguele | 3b09825 | 2015-01-17 17:03:30 +0100 | [diff] [blame] | 14 | * Specifications at www.trustedcomputinggroup.org |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 15 | * |
| 16 | * This program is free software; you can redistribute it and/or |
| 17 | * modify it under the terms of the GNU General Public License as |
| 18 | * published by the Free Software Foundation, version 2 of the |
| 19 | * License. |
Bruno E O Meneguele | 3b09825 | 2015-01-17 17:03:30 +0100 | [diff] [blame] | 20 | * |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 21 | */ |
Christophe Ricard | d2efee6 | 2016-05-04 21:06:22 +0200 | [diff] [blame] | 22 | |
| 23 | #ifndef __TPM_H__ |
| 24 | #define __TPM_H__ |
| 25 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 26 | #include <linux/module.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 27 | #include <linux/delay.h> |
| 28 | #include <linux/fs.h> |
Matthias Kaehlcke | d081d47 | 2007-05-08 00:32:02 -0700 | [diff] [blame] | 29 | #include <linux/mutex.h> |
Al Viro | 914e263 | 2006-10-18 13:55:46 -0400 | [diff] [blame] | 30 | #include <linux/sched.h> |
Al Viro | bbc5b21 | 2005-11-01 15:14:05 +0000 | [diff] [blame] | 31 | #include <linux/platform_device.h> |
Andrew Morton | 276ad0c | 2006-03-25 03:07:35 -0800 | [diff] [blame] | 32 | #include <linux/io.h> |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 33 | #include <linux/tpm.h> |
Jarkko Sakkinen | 0dc5536 | 2014-12-12 11:46:35 -0800 | [diff] [blame] | 34 | #include <linux/acpi.h> |
Jarkko Sakkinen | 313d21e | 2014-12-12 11:46:37 -0800 | [diff] [blame] | 35 | #include <linux/cdev.h> |
Jarkko Sakkinen | a74f8b3 | 2015-10-11 12:26:58 +0300 | [diff] [blame] | 36 | #include <linux/highmem.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 37 | |
Nayna Jain | 748935e | 2016-11-14 05:00:52 -0500 | [diff] [blame] | 38 | #include "tpm_eventlog.h" |
| 39 | |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 40 | enum tpm_const { |
| 41 | TPM_MINOR = 224, /* officially assigned */ |
| 42 | TPM_BUFSIZE = 4096, |
Stefan Berger | 1551678 | 2016-02-29 08:53:02 -0500 | [diff] [blame] | 43 | TPM_NUM_DEVICES = 65536, |
Duncan Laurie | 32d33b2 | 2013-03-17 14:56:39 -0700 | [diff] [blame] | 44 | TPM_RETRY = 50, /* 5 seconds */ |
Jarkko Sakkinen | cd9b763 | 2016-11-14 05:00:50 -0500 | [diff] [blame] | 45 | TPM_NUM_EVENT_LOG_FILES = 3, |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 46 | }; |
| 47 | |
Kylene Hall | 3122a88 | 2005-06-23 22:01:48 -0700 | [diff] [blame] | 48 | enum tpm_timeout { |
| 49 | TPM_TIMEOUT = 5, /* msecs */ |
Duncan Laurie | 32d33b2 | 2013-03-17 14:56:39 -0700 | [diff] [blame] | 50 | TPM_TIMEOUT_RETRY = 100 /* msecs */ |
Kylene Hall | 3122a88 | 2005-06-23 22:01:48 -0700 | [diff] [blame] | 51 | }; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 52 | |
| 53 | /* TPM addresses */ |
Kylene Hall | 3122a88 | 2005-06-23 22:01:48 -0700 | [diff] [blame] | 54 | enum tpm_addr { |
Kylene Jo Hall | daacdfa | 2005-06-25 14:55:39 -0700 | [diff] [blame] | 55 | TPM_SUPERIO_ADDR = 0x2E, |
Kylene Hall | 3122a88 | 2005-06-23 22:01:48 -0700 | [diff] [blame] | 56 | TPM_ADDR = 0x4E, |
Kylene Hall | 3122a88 | 2005-06-23 22:01:48 -0700 | [diff] [blame] | 57 | }; |
| 58 | |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 59 | /* Indexes the duration array */ |
| 60 | enum tpm_duration { |
| 61 | TPM_SHORT = 0, |
| 62 | TPM_MEDIUM = 1, |
| 63 | TPM_LONG = 2, |
| 64 | TPM_UNDEFINED, |
| 65 | }; |
| 66 | |
Duncan Laurie | 32d33b2 | 2013-03-17 14:56:39 -0700 | [diff] [blame] | 67 | #define TPM_WARN_RETRY 0x800 |
Stefan Berger | 68d6e67 | 2011-11-11 12:57:04 -0500 | [diff] [blame] | 68 | #define TPM_WARN_DOING_SELFTEST 0x802 |
Stefan Berger | be40541 | 2012-01-17 22:07:30 -0500 | [diff] [blame] | 69 | #define TPM_ERR_DEACTIVATED 0x6 |
| 70 | #define TPM_ERR_DISABLED 0x7 |
Jason Gunthorpe | c584af1 | 2012-11-21 13:54:33 -0700 | [diff] [blame] | 71 | #define TPM_ERR_INVALID_POSTINIT 38 |
Stefan Berger | be40541 | 2012-01-17 22:07:30 -0500 | [diff] [blame] | 72 | |
Rajiv Andrade | b9e3238 | 2011-11-01 17:00:52 -0200 | [diff] [blame] | 73 | #define TPM_HEADER_SIZE 10 |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 74 | |
| 75 | enum tpm2_const { |
| 76 | TPM2_PLATFORM_PCR = 24, |
| 77 | TPM2_PCR_SELECT_MIN = ((TPM2_PLATFORM_PCR + 7) / 8), |
| 78 | TPM2_TIMEOUT_A = 750, |
| 79 | TPM2_TIMEOUT_B = 2000, |
| 80 | TPM2_TIMEOUT_C = 200, |
| 81 | TPM2_TIMEOUT_D = 30, |
| 82 | TPM2_DURATION_SHORT = 20, |
| 83 | TPM2_DURATION_MEDIUM = 750, |
| 84 | TPM2_DURATION_LONG = 2000, |
| 85 | }; |
| 86 | |
| 87 | enum tpm2_structures { |
| 88 | TPM2_ST_NO_SESSIONS = 0x8001, |
| 89 | TPM2_ST_SESSIONS = 0x8002, |
| 90 | }; |
| 91 | |
| 92 | enum tpm2_return_codes { |
Jarkko Sakkinen | 5ca4c20 | 2015-11-05 21:43:06 +0200 | [diff] [blame] | 93 | TPM2_RC_HASH = 0x0083, /* RC_FMT1 */ |
| 94 | TPM2_RC_INITIALIZE = 0x0100, /* RC_VER1 */ |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 95 | TPM2_RC_DISABLED = 0x0120, |
Jarkko Sakkinen | 5ca4c20 | 2015-11-05 21:43:06 +0200 | [diff] [blame] | 96 | TPM2_RC_TESTING = 0x090A, /* RC_WARN */ |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 97 | }; |
| 98 | |
| 99 | enum tpm2_algorithms { |
Nayna Jain | 1db1534 | 2017-01-30 04:59:40 -0500 | [diff] [blame^] | 100 | TPM2_ALG_ERROR = 0x0000, |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 101 | TPM2_ALG_SHA1 = 0x0004, |
Jarkko Sakkinen | 954650e | 2015-05-30 08:09:04 +0300 | [diff] [blame] | 102 | TPM2_ALG_KEYEDHASH = 0x0008, |
| 103 | TPM2_ALG_SHA256 = 0x000B, |
Jarkko Sakkinen | 5ca4c20 | 2015-11-05 21:43:06 +0200 | [diff] [blame] | 104 | TPM2_ALG_SHA384 = 0x000C, |
| 105 | TPM2_ALG_SHA512 = 0x000D, |
| 106 | TPM2_ALG_NULL = 0x0010, |
| 107 | TPM2_ALG_SM3_256 = 0x0012, |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 108 | }; |
| 109 | |
| 110 | enum tpm2_command_codes { |
| 111 | TPM2_CC_FIRST = 0x011F, |
| 112 | TPM2_CC_SELF_TEST = 0x0143, |
| 113 | TPM2_CC_STARTUP = 0x0144, |
| 114 | TPM2_CC_SHUTDOWN = 0x0145, |
Jarkko Sakkinen | 954650e | 2015-05-30 08:09:04 +0300 | [diff] [blame] | 115 | TPM2_CC_CREATE = 0x0153, |
| 116 | TPM2_CC_LOAD = 0x0157, |
| 117 | TPM2_CC_UNSEAL = 0x015E, |
| 118 | TPM2_CC_FLUSH_CONTEXT = 0x0165, |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 119 | TPM2_CC_GET_CAPABILITY = 0x017A, |
| 120 | TPM2_CC_GET_RANDOM = 0x017B, |
| 121 | TPM2_CC_PCR_READ = 0x017E, |
| 122 | TPM2_CC_PCR_EXTEND = 0x0182, |
| 123 | TPM2_CC_LAST = 0x018F, |
| 124 | }; |
| 125 | |
| 126 | enum tpm2_permanent_handles { |
| 127 | TPM2_RS_PW = 0x40000009, |
| 128 | }; |
| 129 | |
| 130 | enum tpm2_capabilities { |
Nayna Jain | 1db1534 | 2017-01-30 04:59:40 -0500 | [diff] [blame^] | 131 | TPM2_CAP_PCRS = 5, |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 132 | TPM2_CAP_TPM_PROPERTIES = 6, |
| 133 | }; |
| 134 | |
| 135 | enum tpm2_startup_types { |
| 136 | TPM2_SU_CLEAR = 0x0000, |
| 137 | TPM2_SU_STATE = 0x0001, |
| 138 | }; |
| 139 | |
Stefan Berger | 4e401fb | 2012-01-20 12:58:49 -0500 | [diff] [blame] | 140 | #define TPM_VID_INTEL 0x8086 |
Stefan Berger | 1f86605 | 2013-01-22 13:52:35 -0600 | [diff] [blame] | 141 | #define TPM_VID_WINBOND 0x1050 |
| 142 | #define TPM_VID_STM 0x104A |
Stefan Berger | 4e401fb | 2012-01-20 12:58:49 -0500 | [diff] [blame] | 143 | |
Jarkko Sakkinen | 0dc5536 | 2014-12-12 11:46:35 -0800 | [diff] [blame] | 144 | #define TPM_PPI_VERSION_LEN 3 |
| 145 | |
Jarkko Sakkinen | afb5abc | 2014-12-12 11:46:34 -0800 | [diff] [blame] | 146 | enum tpm_chip_flags { |
Jarkko Sakkinen | 9b774d5 | 2015-04-14 17:56:48 +0300 | [diff] [blame] | 147 | TPM_CHIP_FLAG_TPM2 = BIT(1), |
Christophe Ricard | 570a360 | 2016-03-31 22:56:56 +0200 | [diff] [blame] | 148 | TPM_CHIP_FLAG_IRQ = BIT(2), |
Stefan Berger | 2f9f537 | 2016-04-18 13:26:14 -0400 | [diff] [blame] | 149 | TPM_CHIP_FLAG_VIRTUAL = BIT(3), |
Jason Gunthorpe | d1d253c | 2016-10-26 16:28:44 -0600 | [diff] [blame] | 150 | TPM_CHIP_FLAG_HAVE_TIMEOUTS = BIT(4), |
Jarkko Sakkinen | afb5abc | 2014-12-12 11:46:34 -0800 | [diff] [blame] | 151 | }; |
| 152 | |
Nayna Jain | 748935e | 2016-11-14 05:00:52 -0500 | [diff] [blame] | 153 | struct tpm_chip_seqops { |
| 154 | struct tpm_chip *chip; |
| 155 | const struct seq_operations *seqops; |
| 156 | }; |
| 157 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 158 | struct tpm_chip { |
Jarkko Sakkinen | 313d21e | 2014-12-12 11:46:37 -0800 | [diff] [blame] | 159 | struct device dev; |
| 160 | struct cdev cdev; |
| 161 | |
Jason Gunthorpe | 4e26195 | 2016-02-12 20:29:53 -0700 | [diff] [blame] | 162 | /* A driver callback under ops cannot be run unless ops_sem is held |
| 163 | * (sometimes implicitly, eg for the sysfs code). ops becomes null |
| 164 | * when the driver is unregistered, see tpm_try_get_ops. |
| 165 | */ |
| 166 | struct rw_semaphore ops_sem; |
Jason Gunthorpe | 5f82e9f | 2013-11-26 13:30:44 -0700 | [diff] [blame] | 167 | const struct tpm_class_ops *ops; |
Jason Gunthorpe | 4e26195 | 2016-02-12 20:29:53 -0700 | [diff] [blame] | 168 | |
Nayna Jain | 748935e | 2016-11-14 05:00:52 -0500 | [diff] [blame] | 169 | struct tpm_bios_log log; |
| 170 | struct tpm_chip_seqops bin_log_seqops; |
| 171 | struct tpm_chip_seqops ascii_log_seqops; |
| 172 | |
Jarkko Sakkinen | afb5abc | 2014-12-12 11:46:34 -0800 | [diff] [blame] | 173 | unsigned int flags; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 174 | |
| 175 | int dev_num; /* /dev/tpm# */ |
Rajiv Andrade | dc36d32 | 2008-10-11 09:04:02 +1100 | [diff] [blame] | 176 | unsigned long is_open; /* only one allowed */ |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 177 | |
Matthias Kaehlcke | d081d47 | 2007-05-08 00:32:02 -0700 | [diff] [blame] | 178 | struct mutex tpm_mutex; /* tpm is processing */ |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 179 | |
Christophe Ricard | af782f3 | 2016-03-31 22:56:59 +0200 | [diff] [blame] | 180 | unsigned long timeout_a; /* jiffies */ |
| 181 | unsigned long timeout_b; /* jiffies */ |
| 182 | unsigned long timeout_c; /* jiffies */ |
| 183 | unsigned long timeout_d; /* jiffies */ |
| 184 | bool timeout_adjusted; |
| 185 | unsigned long duration[3]; /* jiffies */ |
| 186 | bool duration_adjusted; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 187 | |
Jarkko Sakkinen | cd9b763 | 2016-11-14 05:00:50 -0500 | [diff] [blame] | 188 | struct dentry *bios_dir[TPM_NUM_EVENT_LOG_FILES]; |
Kylene Jo Hall | 55a82ab | 2006-01-08 01:03:15 -0800 | [diff] [blame] | 189 | |
Jason Gunthorpe | 062807f | 2016-04-18 13:26:13 -0400 | [diff] [blame] | 190 | const struct attribute_group *groups[3]; |
Jarkko Sakkinen | 9b774d5 | 2015-04-14 17:56:48 +0300 | [diff] [blame] | 191 | unsigned int groups_cnt; |
Nayna Jain | 1db1534 | 2017-01-30 04:59:40 -0500 | [diff] [blame^] | 192 | |
| 193 | u16 active_banks[7]; |
Jason Gunthorpe | 062807f | 2016-04-18 13:26:13 -0400 | [diff] [blame] | 194 | #ifdef CONFIG_ACPI |
Jarkko Sakkinen | 0dc5536 | 2014-12-12 11:46:35 -0800 | [diff] [blame] | 195 | acpi_handle acpi_dev_handle; |
| 196 | char ppi_version[TPM_PPI_VERSION_LEN + 1]; |
| 197 | #endif /* CONFIG_ACPI */ |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 198 | }; |
| 199 | |
Jarkko Sakkinen | 9b774d5 | 2015-04-14 17:56:48 +0300 | [diff] [blame] | 200 | #define to_tpm_chip(d) container_of(d, struct tpm_chip, dev) |
Leendert van Doorn | 27084ef | 2006-04-22 02:38:03 -0700 | [diff] [blame] | 201 | |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 202 | struct tpm_input_header { |
| 203 | __be16 tag; |
| 204 | __be32 length; |
| 205 | __be32 ordinal; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 206 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 207 | |
| 208 | struct tpm_output_header { |
| 209 | __be16 tag; |
| 210 | __be32 length; |
| 211 | __be32 return_code; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 212 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 213 | |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 214 | #define TPM_TAG_RQU_COMMAND cpu_to_be16(193) |
| 215 | |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 216 | struct stclear_flags_t { |
| 217 | __be16 tag; |
| 218 | u8 deactivated; |
| 219 | u8 disableForceClear; |
| 220 | u8 physicalPresence; |
| 221 | u8 physicalPresenceLock; |
| 222 | u8 bGlobalLock; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 223 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 224 | |
| 225 | struct tpm_version_t { |
| 226 | u8 Major; |
| 227 | u8 Minor; |
| 228 | u8 revMajor; |
| 229 | u8 revMinor; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 230 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 231 | |
| 232 | struct tpm_version_1_2_t { |
| 233 | __be16 tag; |
| 234 | u8 Major; |
| 235 | u8 Minor; |
| 236 | u8 revMajor; |
| 237 | u8 revMinor; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 238 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 239 | |
| 240 | struct timeout_t { |
| 241 | __be32 a; |
| 242 | __be32 b; |
| 243 | __be32 c; |
| 244 | __be32 d; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 245 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 246 | |
| 247 | struct duration_t { |
| 248 | __be32 tpm_short; |
| 249 | __be32 tpm_medium; |
| 250 | __be32 tpm_long; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 251 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 252 | |
| 253 | struct permanent_flags_t { |
| 254 | __be16 tag; |
| 255 | u8 disable; |
| 256 | u8 ownership; |
| 257 | u8 deactivated; |
| 258 | u8 readPubek; |
| 259 | u8 disableOwnerClear; |
| 260 | u8 allowMaintenance; |
| 261 | u8 physicalPresenceLifetimeLock; |
| 262 | u8 physicalPresenceHWEnable; |
| 263 | u8 physicalPresenceCMDEnable; |
| 264 | u8 CEKPUsed; |
| 265 | u8 TPMpost; |
| 266 | u8 TPMpostLock; |
| 267 | u8 FIPS; |
| 268 | u8 operator; |
| 269 | u8 enableRevokeEK; |
| 270 | u8 nvLocked; |
| 271 | u8 readSRKPub; |
| 272 | u8 tpmEstablished; |
| 273 | u8 maintenanceDone; |
| 274 | u8 disableFullDALogicInfo; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 275 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 276 | |
| 277 | typedef union { |
| 278 | struct permanent_flags_t perm_flags; |
| 279 | struct stclear_flags_t stclear_flags; |
| 280 | bool owned; |
| 281 | __be32 num_pcrs; |
| 282 | struct tpm_version_t tpm_version; |
| 283 | struct tpm_version_1_2_t tpm_version_1_2; |
| 284 | __be32 manufacturer_id; |
| 285 | struct timeout_t timeout; |
| 286 | struct duration_t duration; |
| 287 | } cap_t; |
| 288 | |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 289 | enum tpm_capabilities { |
Jarkko Sakkinen | 84fda15 | 2016-09-19 23:22:09 +0300 | [diff] [blame] | 290 | TPM_CAP_FLAG = 4, |
| 291 | TPM_CAP_PROP = 5, |
| 292 | TPM_CAP_VERSION_1_1 = 0x06, |
| 293 | TPM_CAP_VERSION_1_2 = 0x1A, |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 294 | }; |
| 295 | |
| 296 | enum tpm_sub_capabilities { |
Jarkko Sakkinen | 84fda15 | 2016-09-19 23:22:09 +0300 | [diff] [blame] | 297 | TPM_CAP_PROP_PCR = 0x101, |
| 298 | TPM_CAP_PROP_MANUFACTURER = 0x103, |
| 299 | TPM_CAP_FLAG_PERM = 0x108, |
| 300 | TPM_CAP_FLAG_VOL = 0x109, |
| 301 | TPM_CAP_PROP_OWNER = 0x111, |
| 302 | TPM_CAP_PROP_TIS_TIMEOUT = 0x115, |
| 303 | TPM_CAP_PROP_TIS_DURATION = 0x120, |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 304 | }; |
| 305 | |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 306 | struct tpm_getcap_params_in { |
| 307 | __be32 cap; |
| 308 | __be32 subcap_size; |
| 309 | __be32 subcap; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 310 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 311 | |
| 312 | struct tpm_getcap_params_out { |
| 313 | __be32 cap_size; |
| 314 | cap_t cap; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 315 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 316 | |
| 317 | struct tpm_readpubek_params_out { |
| 318 | u8 algorithm[4]; |
| 319 | u8 encscheme[2]; |
| 320 | u8 sigscheme[2]; |
Rajiv Andrade | 02a077c | 2010-06-14 13:58:22 -0300 | [diff] [blame] | 321 | __be32 paramsize; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 322 | u8 parameters[12]; /*assuming RSA*/ |
| 323 | __be32 keysize; |
| 324 | u8 modulus[256]; |
| 325 | u8 checksum[20]; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 326 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 327 | |
| 328 | typedef union { |
| 329 | struct tpm_input_header in; |
| 330 | struct tpm_output_header out; |
| 331 | } tpm_cmd_header; |
| 332 | |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 333 | struct tpm_pcrread_out { |
| 334 | u8 pcr_result[TPM_DIGEST_SIZE]; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 335 | } __packed; |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 336 | |
| 337 | struct tpm_pcrread_in { |
| 338 | __be32 pcr_idx; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 339 | } __packed; |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 340 | |
| 341 | struct tpm_pcrextend_in { |
| 342 | __be32 pcr_idx; |
| 343 | u8 hash[TPM_DIGEST_SIZE]; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 344 | } __packed; |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 345 | |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 346 | /* 128 bytes is an arbitrary cap. This could be as large as TPM_BUFSIZE - 18 |
| 347 | * bytes, but 128 is still a relatively large number of random bytes and |
| 348 | * anything much bigger causes users of struct tpm_cmd_t to start getting |
| 349 | * compiler warnings about stack frame size. */ |
| 350 | #define TPM_MAX_RNG_DATA 128 |
| 351 | |
| 352 | struct tpm_getrandom_out { |
| 353 | __be32 rng_data_len; |
| 354 | u8 rng_data[TPM_MAX_RNG_DATA]; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 355 | } __packed; |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 356 | |
| 357 | struct tpm_getrandom_in { |
| 358 | __be32 num_bytes; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 359 | } __packed; |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 360 | |
Jason Gunthorpe | c584af1 | 2012-11-21 13:54:33 -0700 | [diff] [blame] | 361 | struct tpm_startup_in { |
| 362 | __be16 startup_type; |
| 363 | } __packed; |
| 364 | |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 365 | typedef union { |
| 366 | struct tpm_getcap_params_out getcap_out; |
| 367 | struct tpm_readpubek_params_out readpubek_out; |
| 368 | u8 readpubek_out_buffer[sizeof(struct tpm_readpubek_params_out)]; |
| 369 | struct tpm_getcap_params_in getcap_in; |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 370 | struct tpm_pcrread_in pcrread_in; |
| 371 | struct tpm_pcrread_out pcrread_out; |
| 372 | struct tpm_pcrextend_in pcrextend_in; |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 373 | struct tpm_getrandom_in getrandom_in; |
| 374 | struct tpm_getrandom_out getrandom_out; |
Jason Gunthorpe | c584af1 | 2012-11-21 13:54:33 -0700 | [diff] [blame] | 375 | struct tpm_startup_in startup_in; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 376 | } tpm_cmd_params; |
| 377 | |
| 378 | struct tpm_cmd_t { |
| 379 | tpm_cmd_header header; |
| 380 | tpm_cmd_params params; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 381 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 382 | |
Jarkko Sakkinen | a74f8b3 | 2015-10-11 12:26:58 +0300 | [diff] [blame] | 383 | /* A string buffer type for constructing TPM commands. This is based on the |
| 384 | * ideas of string buffer code in security/keys/trusted.h but is heap based |
| 385 | * in order to keep the stack usage minimal. |
| 386 | */ |
| 387 | |
| 388 | enum tpm_buf_flags { |
| 389 | TPM_BUF_OVERFLOW = BIT(0), |
| 390 | }; |
| 391 | |
| 392 | struct tpm_buf { |
| 393 | struct page *data_page; |
| 394 | unsigned int flags; |
| 395 | u8 *data; |
| 396 | }; |
| 397 | |
Jarkko Sakkinen | 954650e | 2015-05-30 08:09:04 +0300 | [diff] [blame] | 398 | static inline int tpm_buf_init(struct tpm_buf *buf, u16 tag, u32 ordinal) |
Jarkko Sakkinen | a74f8b3 | 2015-10-11 12:26:58 +0300 | [diff] [blame] | 399 | { |
| 400 | struct tpm_input_header *head; |
| 401 | |
| 402 | buf->data_page = alloc_page(GFP_HIGHUSER); |
| 403 | if (!buf->data_page) |
| 404 | return -ENOMEM; |
| 405 | |
| 406 | buf->flags = 0; |
| 407 | buf->data = kmap(buf->data_page); |
| 408 | |
| 409 | head = (struct tpm_input_header *) buf->data; |
| 410 | |
| 411 | head->tag = cpu_to_be16(tag); |
| 412 | head->length = cpu_to_be32(sizeof(*head)); |
| 413 | head->ordinal = cpu_to_be32(ordinal); |
| 414 | |
| 415 | return 0; |
| 416 | } |
| 417 | |
| 418 | static inline void tpm_buf_destroy(struct tpm_buf *buf) |
| 419 | { |
| 420 | kunmap(buf->data_page); |
| 421 | __free_page(buf->data_page); |
| 422 | } |
| 423 | |
| 424 | static inline u32 tpm_buf_length(struct tpm_buf *buf) |
| 425 | { |
| 426 | struct tpm_input_header *head = (struct tpm_input_header *) buf->data; |
| 427 | |
| 428 | return be32_to_cpu(head->length); |
| 429 | } |
| 430 | |
| 431 | static inline u16 tpm_buf_tag(struct tpm_buf *buf) |
| 432 | { |
| 433 | struct tpm_input_header *head = (struct tpm_input_header *) buf->data; |
| 434 | |
| 435 | return be16_to_cpu(head->tag); |
| 436 | } |
| 437 | |
| 438 | static inline void tpm_buf_append(struct tpm_buf *buf, |
| 439 | const unsigned char *new_data, |
| 440 | unsigned int new_len) |
| 441 | { |
| 442 | struct tpm_input_header *head = (struct tpm_input_header *) buf->data; |
| 443 | u32 len = tpm_buf_length(buf); |
| 444 | |
| 445 | /* Return silently if overflow has already happened. */ |
| 446 | if (buf->flags & TPM_BUF_OVERFLOW) |
| 447 | return; |
| 448 | |
| 449 | if ((len + new_len) > PAGE_SIZE) { |
| 450 | WARN(1, "tpm_buf: overflow\n"); |
| 451 | buf->flags |= TPM_BUF_OVERFLOW; |
| 452 | return; |
| 453 | } |
| 454 | |
| 455 | memcpy(&buf->data[len], new_data, new_len); |
| 456 | head->length = cpu_to_be32(len + new_len); |
| 457 | } |
| 458 | |
| 459 | static inline void tpm_buf_append_u8(struct tpm_buf *buf, const u8 value) |
| 460 | { |
| 461 | tpm_buf_append(buf, &value, 1); |
| 462 | } |
| 463 | |
| 464 | static inline void tpm_buf_append_u16(struct tpm_buf *buf, const u16 value) |
| 465 | { |
| 466 | __be16 value2 = cpu_to_be16(value); |
| 467 | |
| 468 | tpm_buf_append(buf, (u8 *) &value2, 2); |
| 469 | } |
| 470 | |
| 471 | static inline void tpm_buf_append_u32(struct tpm_buf *buf, const u32 value) |
| 472 | { |
| 473 | __be32 value2 = cpu_to_be32(value); |
| 474 | |
| 475 | tpm_buf_append(buf, (u8 *) &value2, 4); |
| 476 | } |
| 477 | |
Jarkko Sakkinen | 313d21e | 2014-12-12 11:46:37 -0800 | [diff] [blame] | 478 | extern struct class *tpm_class; |
| 479 | extern dev_t tpm_devt; |
| 480 | extern const struct file_operations tpm_fops; |
Stefan Berger | 1551678 | 2016-02-29 08:53:02 -0500 | [diff] [blame] | 481 | extern struct idr dev_nums_idr; |
Jarkko Sakkinen | 313d21e | 2014-12-12 11:46:37 -0800 | [diff] [blame] | 482 | |
Jarkko Sakkinen | d4816ed | 2016-08-16 22:00:38 +0300 | [diff] [blame] | 483 | enum tpm_transmit_flags { |
| 484 | TPM_TRANSMIT_UNLOCKED = BIT(0), |
| 485 | }; |
| 486 | |
| 487 | ssize_t tpm_transmit(struct tpm_chip *chip, const u8 *buf, size_t bufsiz, |
| 488 | unsigned int flags); |
Stefan Berger | c659af7 | 2017-01-19 07:19:12 -0500 | [diff] [blame] | 489 | ssize_t tpm_transmit_cmd(struct tpm_chip *chip, const void *buf, size_t bufsiz, |
| 490 | size_t min_rsp_body_len, unsigned int flags, |
| 491 | const char *desc); |
Jarkko Sakkinen | 84fda15 | 2016-09-19 23:22:09 +0300 | [diff] [blame] | 492 | ssize_t tpm_getcap(struct tpm_chip *chip, u32 subcap_id, cap_t *cap, |
Stefan Berger | c659af7 | 2017-01-19 07:19:12 -0500 | [diff] [blame] | 493 | const char *desc, size_t min_cap_length); |
Jarkko Sakkinen | d4abd95 | 2016-06-25 23:33:09 +0300 | [diff] [blame] | 494 | int tpm_get_timeouts(struct tpm_chip *); |
Jason Gunthorpe | cae8b44 | 2016-07-12 11:41:49 -0600 | [diff] [blame] | 495 | int tpm1_auto_startup(struct tpm_chip *chip); |
Jarkko Sakkinen | d4abd95 | 2016-06-25 23:33:09 +0300 | [diff] [blame] | 496 | int tpm_do_selftest(struct tpm_chip *chip); |
| 497 | unsigned long tpm_calc_ordinal_duration(struct tpm_chip *chip, u32 ordinal); |
| 498 | int tpm_pm_suspend(struct device *dev); |
| 499 | int tpm_pm_resume(struct device *dev); |
| 500 | int wait_for_tpm_stat(struct tpm_chip *chip, u8 mask, unsigned long timeout, |
| 501 | wait_queue_head_t *queue, bool check_cancel); |
Xiaoyan Zhang | f84fdff | 2012-08-22 18:47:22 +0800 | [diff] [blame] | 502 | |
Jarkko Sakkinen | afb5abc | 2014-12-12 11:46:34 -0800 | [diff] [blame] | 503 | struct tpm_chip *tpm_chip_find_get(int chip_num); |
Jason Gunthorpe | 4e26195 | 2016-02-12 20:29:53 -0700 | [diff] [blame] | 504 | __must_check int tpm_try_get_ops(struct tpm_chip *chip); |
| 505 | void tpm_put_ops(struct tpm_chip *chip); |
| 506 | |
Jarkko Sakkinen | d4abd95 | 2016-06-25 23:33:09 +0300 | [diff] [blame] | 507 | struct tpm_chip *tpm_chip_alloc(struct device *dev, |
| 508 | const struct tpm_class_ops *ops); |
| 509 | struct tpm_chip *tpmm_chip_alloc(struct device *pdev, |
| 510 | const struct tpm_class_ops *ops); |
| 511 | int tpm_chip_register(struct tpm_chip *chip); |
| 512 | void tpm_chip_unregister(struct tpm_chip *chip); |
Jarkko Sakkinen | afb5abc | 2014-12-12 11:46:34 -0800 | [diff] [blame] | 513 | |
Jason Gunthorpe | 062807f | 2016-04-18 13:26:13 -0400 | [diff] [blame] | 514 | void tpm_sysfs_add_device(struct tpm_chip *chip); |
Jason Gunthorpe | afdba32 | 2013-11-26 13:30:40 -0700 | [diff] [blame] | 515 | |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 516 | int tpm_pcr_read_dev(struct tpm_chip *chip, int pcr_idx, u8 *res_buf); |
| 517 | |
Xiaoyan Zhang | f84fdff | 2012-08-22 18:47:22 +0800 | [diff] [blame] | 518 | #ifdef CONFIG_ACPI |
Jarkko Sakkinen | 9b774d5 | 2015-04-14 17:56:48 +0300 | [diff] [blame] | 519 | extern void tpm_add_ppi(struct tpm_chip *chip); |
Xiaoyan Zhang | f84fdff | 2012-08-22 18:47:22 +0800 | [diff] [blame] | 520 | #else |
Jarkko Sakkinen | 9b774d5 | 2015-04-14 17:56:48 +0300 | [diff] [blame] | 521 | static inline void tpm_add_ppi(struct tpm_chip *chip) |
Gang Wei | 1631cfb | 2012-10-09 17:35:22 +0800 | [diff] [blame] | 522 | { |
| 523 | } |
Xiaoyan Zhang | f84fdff | 2012-08-22 18:47:22 +0800 | [diff] [blame] | 524 | #endif |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 525 | |
Jarkko Sakkinen | 7d76111 | 2017-01-25 23:00:22 +0200 | [diff] [blame] | 526 | static inline inline u32 tpm2_rc_value(u32 rc) |
| 527 | { |
| 528 | return (rc & BIT(7)) ? rc & 0xff : rc; |
| 529 | } |
| 530 | |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 531 | int tpm2_pcr_read(struct tpm_chip *chip, int pcr_idx, u8 *res_buf); |
| 532 | int tpm2_pcr_extend(struct tpm_chip *chip, int pcr_idx, const u8 *hash); |
| 533 | int tpm2_get_random(struct tpm_chip *chip, u8 *out, size_t max); |
Jarkko Sakkinen | 954650e | 2015-05-30 08:09:04 +0300 | [diff] [blame] | 534 | int tpm2_seal_trusted(struct tpm_chip *chip, |
| 535 | struct trusted_key_payload *payload, |
| 536 | struct trusted_key_options *options); |
| 537 | int tpm2_unseal_trusted(struct tpm_chip *chip, |
| 538 | struct trusted_key_payload *payload, |
| 539 | struct trusted_key_options *options); |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 540 | ssize_t tpm2_get_tpm_pt(struct tpm_chip *chip, u32 property_id, |
| 541 | u32 *value, const char *desc); |
| 542 | |
Jason Gunthorpe | cae8b44 | 2016-07-12 11:41:49 -0600 | [diff] [blame] | 543 | int tpm2_auto_startup(struct tpm_chip *chip); |
Jarkko Sakkinen | d4abd95 | 2016-06-25 23:33:09 +0300 | [diff] [blame] | 544 | void tpm2_shutdown(struct tpm_chip *chip, u16 shutdown_type); |
| 545 | unsigned long tpm2_calc_ordinal_duration(struct tpm_chip *chip, u32 ordinal); |
Jarkko Sakkinen | d4abd95 | 2016-06-25 23:33:09 +0300 | [diff] [blame] | 546 | int tpm2_probe(struct tpm_chip *chip); |
Nayna Jain | 1db1534 | 2017-01-30 04:59:40 -0500 | [diff] [blame^] | 547 | ssize_t tpm2_get_pcr_allocation(struct tpm_chip *chip); |
Christophe Ricard | d2efee6 | 2016-05-04 21:06:22 +0200 | [diff] [blame] | 548 | #endif |