Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1 | /* |
| 2 | * Copyright (C) 2004 IBM Corporation |
Jarkko Sakkinen | a74f8b3 | 2015-10-11 12:26:58 +0300 | [diff] [blame] | 3 | * Copyright (C) 2015 Intel Corporation |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 4 | * |
| 5 | * Authors: |
| 6 | * Leendert van Doorn <leendert@watson.ibm.com> |
| 7 | * Dave Safford <safford@watson.ibm.com> |
| 8 | * Reiner Sailer <sailer@watson.ibm.com> |
| 9 | * Kylene Hall <kjhall@us.ibm.com> |
| 10 | * |
Kent Yoder | 8e81cc1 | 2007-08-22 14:01:04 -0700 | [diff] [blame] | 11 | * Maintained by: <tpmdd-devel@lists.sourceforge.net> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 12 | * |
| 13 | * Device driver for TCG/TCPA TPM (trusted platform module). |
Bruno E O Meneguele | 3b09825 | 2015-01-17 17:03:30 +0100 | [diff] [blame] | 14 | * Specifications at www.trustedcomputinggroup.org |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 15 | * |
| 16 | * This program is free software; you can redistribute it and/or |
| 17 | * modify it under the terms of the GNU General Public License as |
| 18 | * published by the Free Software Foundation, version 2 of the |
| 19 | * License. |
Bruno E O Meneguele | 3b09825 | 2015-01-17 17:03:30 +0100 | [diff] [blame] | 20 | * |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 21 | */ |
Christophe Ricard | d2efee6 | 2016-05-04 21:06:22 +0200 | [diff] [blame] | 22 | |
| 23 | #ifndef __TPM_H__ |
| 24 | #define __TPM_H__ |
| 25 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 26 | #include <linux/module.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 27 | #include <linux/delay.h> |
| 28 | #include <linux/fs.h> |
Matthias Kaehlcke | d081d47 | 2007-05-08 00:32:02 -0700 | [diff] [blame] | 29 | #include <linux/mutex.h> |
Al Viro | 914e263 | 2006-10-18 13:55:46 -0400 | [diff] [blame] | 30 | #include <linux/sched.h> |
Al Viro | bbc5b21 | 2005-11-01 15:14:05 +0000 | [diff] [blame] | 31 | #include <linux/platform_device.h> |
Andrew Morton | 276ad0c | 2006-03-25 03:07:35 -0800 | [diff] [blame] | 32 | #include <linux/io.h> |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 33 | #include <linux/tpm.h> |
Jarkko Sakkinen | 0dc5536 | 2014-12-12 11:46:35 -0800 | [diff] [blame] | 34 | #include <linux/acpi.h> |
Jarkko Sakkinen | 313d21e | 2014-12-12 11:46:37 -0800 | [diff] [blame] | 35 | #include <linux/cdev.h> |
Jarkko Sakkinen | a74f8b3 | 2015-10-11 12:26:58 +0300 | [diff] [blame] | 36 | #include <linux/highmem.h> |
Nayna Jain | c1f92b4 | 2017-01-30 04:59:41 -0500 | [diff] [blame^] | 37 | #include <crypto/hash_info.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 38 | |
Nayna Jain | 748935e | 2016-11-14 05:00:52 -0500 | [diff] [blame] | 39 | #include "tpm_eventlog.h" |
| 40 | |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 41 | enum tpm_const { |
| 42 | TPM_MINOR = 224, /* officially assigned */ |
| 43 | TPM_BUFSIZE = 4096, |
Stefan Berger | 1551678 | 2016-02-29 08:53:02 -0500 | [diff] [blame] | 44 | TPM_NUM_DEVICES = 65536, |
Duncan Laurie | 32d33b2 | 2013-03-17 14:56:39 -0700 | [diff] [blame] | 45 | TPM_RETRY = 50, /* 5 seconds */ |
Jarkko Sakkinen | cd9b763 | 2016-11-14 05:00:50 -0500 | [diff] [blame] | 46 | TPM_NUM_EVENT_LOG_FILES = 3, |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 47 | }; |
| 48 | |
Kylene Hall | 3122a88 | 2005-06-23 22:01:48 -0700 | [diff] [blame] | 49 | enum tpm_timeout { |
| 50 | TPM_TIMEOUT = 5, /* msecs */ |
Duncan Laurie | 32d33b2 | 2013-03-17 14:56:39 -0700 | [diff] [blame] | 51 | TPM_TIMEOUT_RETRY = 100 /* msecs */ |
Kylene Hall | 3122a88 | 2005-06-23 22:01:48 -0700 | [diff] [blame] | 52 | }; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 53 | |
| 54 | /* TPM addresses */ |
Kylene Hall | 3122a88 | 2005-06-23 22:01:48 -0700 | [diff] [blame] | 55 | enum tpm_addr { |
Kylene Jo Hall | daacdfa | 2005-06-25 14:55:39 -0700 | [diff] [blame] | 56 | TPM_SUPERIO_ADDR = 0x2E, |
Kylene Hall | 3122a88 | 2005-06-23 22:01:48 -0700 | [diff] [blame] | 57 | TPM_ADDR = 0x4E, |
Kylene Hall | 3122a88 | 2005-06-23 22:01:48 -0700 | [diff] [blame] | 58 | }; |
| 59 | |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 60 | /* Indexes the duration array */ |
| 61 | enum tpm_duration { |
| 62 | TPM_SHORT = 0, |
| 63 | TPM_MEDIUM = 1, |
| 64 | TPM_LONG = 2, |
| 65 | TPM_UNDEFINED, |
| 66 | }; |
| 67 | |
Duncan Laurie | 32d33b2 | 2013-03-17 14:56:39 -0700 | [diff] [blame] | 68 | #define TPM_WARN_RETRY 0x800 |
Stefan Berger | 68d6e67 | 2011-11-11 12:57:04 -0500 | [diff] [blame] | 69 | #define TPM_WARN_DOING_SELFTEST 0x802 |
Stefan Berger | be40541 | 2012-01-17 22:07:30 -0500 | [diff] [blame] | 70 | #define TPM_ERR_DEACTIVATED 0x6 |
| 71 | #define TPM_ERR_DISABLED 0x7 |
Jason Gunthorpe | c584af1 | 2012-11-21 13:54:33 -0700 | [diff] [blame] | 72 | #define TPM_ERR_INVALID_POSTINIT 38 |
Stefan Berger | be40541 | 2012-01-17 22:07:30 -0500 | [diff] [blame] | 73 | |
Rajiv Andrade | b9e3238 | 2011-11-01 17:00:52 -0200 | [diff] [blame] | 74 | #define TPM_HEADER_SIZE 10 |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 75 | |
| 76 | enum tpm2_const { |
| 77 | TPM2_PLATFORM_PCR = 24, |
| 78 | TPM2_PCR_SELECT_MIN = ((TPM2_PLATFORM_PCR + 7) / 8), |
| 79 | TPM2_TIMEOUT_A = 750, |
| 80 | TPM2_TIMEOUT_B = 2000, |
| 81 | TPM2_TIMEOUT_C = 200, |
| 82 | TPM2_TIMEOUT_D = 30, |
| 83 | TPM2_DURATION_SHORT = 20, |
| 84 | TPM2_DURATION_MEDIUM = 750, |
| 85 | TPM2_DURATION_LONG = 2000, |
| 86 | }; |
| 87 | |
| 88 | enum tpm2_structures { |
| 89 | TPM2_ST_NO_SESSIONS = 0x8001, |
| 90 | TPM2_ST_SESSIONS = 0x8002, |
| 91 | }; |
| 92 | |
| 93 | enum tpm2_return_codes { |
Jarkko Sakkinen | 5ca4c20 | 2015-11-05 21:43:06 +0200 | [diff] [blame] | 94 | TPM2_RC_HASH = 0x0083, /* RC_FMT1 */ |
| 95 | TPM2_RC_INITIALIZE = 0x0100, /* RC_VER1 */ |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 96 | TPM2_RC_DISABLED = 0x0120, |
Jarkko Sakkinen | 5ca4c20 | 2015-11-05 21:43:06 +0200 | [diff] [blame] | 97 | TPM2_RC_TESTING = 0x090A, /* RC_WARN */ |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 98 | }; |
| 99 | |
| 100 | enum tpm2_algorithms { |
Nayna Jain | 1db1534 | 2017-01-30 04:59:40 -0500 | [diff] [blame] | 101 | TPM2_ALG_ERROR = 0x0000, |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 102 | TPM2_ALG_SHA1 = 0x0004, |
Jarkko Sakkinen | 954650e | 2015-05-30 08:09:04 +0300 | [diff] [blame] | 103 | TPM2_ALG_KEYEDHASH = 0x0008, |
| 104 | TPM2_ALG_SHA256 = 0x000B, |
Jarkko Sakkinen | 5ca4c20 | 2015-11-05 21:43:06 +0200 | [diff] [blame] | 105 | TPM2_ALG_SHA384 = 0x000C, |
| 106 | TPM2_ALG_SHA512 = 0x000D, |
| 107 | TPM2_ALG_NULL = 0x0010, |
| 108 | TPM2_ALG_SM3_256 = 0x0012, |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 109 | }; |
| 110 | |
| 111 | enum tpm2_command_codes { |
| 112 | TPM2_CC_FIRST = 0x011F, |
| 113 | TPM2_CC_SELF_TEST = 0x0143, |
| 114 | TPM2_CC_STARTUP = 0x0144, |
| 115 | TPM2_CC_SHUTDOWN = 0x0145, |
Jarkko Sakkinen | 954650e | 2015-05-30 08:09:04 +0300 | [diff] [blame] | 116 | TPM2_CC_CREATE = 0x0153, |
| 117 | TPM2_CC_LOAD = 0x0157, |
| 118 | TPM2_CC_UNSEAL = 0x015E, |
| 119 | TPM2_CC_FLUSH_CONTEXT = 0x0165, |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 120 | TPM2_CC_GET_CAPABILITY = 0x017A, |
| 121 | TPM2_CC_GET_RANDOM = 0x017B, |
| 122 | TPM2_CC_PCR_READ = 0x017E, |
| 123 | TPM2_CC_PCR_EXTEND = 0x0182, |
| 124 | TPM2_CC_LAST = 0x018F, |
| 125 | }; |
| 126 | |
| 127 | enum tpm2_permanent_handles { |
| 128 | TPM2_RS_PW = 0x40000009, |
| 129 | }; |
| 130 | |
| 131 | enum tpm2_capabilities { |
Nayna Jain | 1db1534 | 2017-01-30 04:59:40 -0500 | [diff] [blame] | 132 | TPM2_CAP_PCRS = 5, |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 133 | TPM2_CAP_TPM_PROPERTIES = 6, |
| 134 | }; |
| 135 | |
| 136 | enum tpm2_startup_types { |
| 137 | TPM2_SU_CLEAR = 0x0000, |
| 138 | TPM2_SU_STATE = 0x0001, |
| 139 | }; |
| 140 | |
Stefan Berger | 4e401fb | 2012-01-20 12:58:49 -0500 | [diff] [blame] | 141 | #define TPM_VID_INTEL 0x8086 |
Stefan Berger | 1f86605 | 2013-01-22 13:52:35 -0600 | [diff] [blame] | 142 | #define TPM_VID_WINBOND 0x1050 |
| 143 | #define TPM_VID_STM 0x104A |
Stefan Berger | 4e401fb | 2012-01-20 12:58:49 -0500 | [diff] [blame] | 144 | |
Jarkko Sakkinen | 0dc5536 | 2014-12-12 11:46:35 -0800 | [diff] [blame] | 145 | #define TPM_PPI_VERSION_LEN 3 |
| 146 | |
Jarkko Sakkinen | afb5abc | 2014-12-12 11:46:34 -0800 | [diff] [blame] | 147 | enum tpm_chip_flags { |
Jarkko Sakkinen | 9b774d5 | 2015-04-14 17:56:48 +0300 | [diff] [blame] | 148 | TPM_CHIP_FLAG_TPM2 = BIT(1), |
Christophe Ricard | 570a360 | 2016-03-31 22:56:56 +0200 | [diff] [blame] | 149 | TPM_CHIP_FLAG_IRQ = BIT(2), |
Stefan Berger | 2f9f537 | 2016-04-18 13:26:14 -0400 | [diff] [blame] | 150 | TPM_CHIP_FLAG_VIRTUAL = BIT(3), |
Jason Gunthorpe | d1d253c | 2016-10-26 16:28:44 -0600 | [diff] [blame] | 151 | TPM_CHIP_FLAG_HAVE_TIMEOUTS = BIT(4), |
Jarkko Sakkinen | afb5abc | 2014-12-12 11:46:34 -0800 | [diff] [blame] | 152 | }; |
| 153 | |
Nayna Jain | 748935e | 2016-11-14 05:00:52 -0500 | [diff] [blame] | 154 | struct tpm_chip_seqops { |
| 155 | struct tpm_chip *chip; |
| 156 | const struct seq_operations *seqops; |
| 157 | }; |
| 158 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 159 | struct tpm_chip { |
Jarkko Sakkinen | 313d21e | 2014-12-12 11:46:37 -0800 | [diff] [blame] | 160 | struct device dev; |
| 161 | struct cdev cdev; |
| 162 | |
Jason Gunthorpe | 4e26195 | 2016-02-12 20:29:53 -0700 | [diff] [blame] | 163 | /* A driver callback under ops cannot be run unless ops_sem is held |
| 164 | * (sometimes implicitly, eg for the sysfs code). ops becomes null |
| 165 | * when the driver is unregistered, see tpm_try_get_ops. |
| 166 | */ |
| 167 | struct rw_semaphore ops_sem; |
Jason Gunthorpe | 5f82e9f | 2013-11-26 13:30:44 -0700 | [diff] [blame] | 168 | const struct tpm_class_ops *ops; |
Jason Gunthorpe | 4e26195 | 2016-02-12 20:29:53 -0700 | [diff] [blame] | 169 | |
Nayna Jain | 748935e | 2016-11-14 05:00:52 -0500 | [diff] [blame] | 170 | struct tpm_bios_log log; |
| 171 | struct tpm_chip_seqops bin_log_seqops; |
| 172 | struct tpm_chip_seqops ascii_log_seqops; |
| 173 | |
Jarkko Sakkinen | afb5abc | 2014-12-12 11:46:34 -0800 | [diff] [blame] | 174 | unsigned int flags; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 175 | |
| 176 | int dev_num; /* /dev/tpm# */ |
Rajiv Andrade | dc36d32 | 2008-10-11 09:04:02 +1100 | [diff] [blame] | 177 | unsigned long is_open; /* only one allowed */ |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 178 | |
Matthias Kaehlcke | d081d47 | 2007-05-08 00:32:02 -0700 | [diff] [blame] | 179 | struct mutex tpm_mutex; /* tpm is processing */ |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 180 | |
Christophe Ricard | af782f3 | 2016-03-31 22:56:59 +0200 | [diff] [blame] | 181 | unsigned long timeout_a; /* jiffies */ |
| 182 | unsigned long timeout_b; /* jiffies */ |
| 183 | unsigned long timeout_c; /* jiffies */ |
| 184 | unsigned long timeout_d; /* jiffies */ |
| 185 | bool timeout_adjusted; |
| 186 | unsigned long duration[3]; /* jiffies */ |
| 187 | bool duration_adjusted; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 188 | |
Jarkko Sakkinen | cd9b763 | 2016-11-14 05:00:50 -0500 | [diff] [blame] | 189 | struct dentry *bios_dir[TPM_NUM_EVENT_LOG_FILES]; |
Kylene Jo Hall | 55a82ab | 2006-01-08 01:03:15 -0800 | [diff] [blame] | 190 | |
Jason Gunthorpe | 062807f | 2016-04-18 13:26:13 -0400 | [diff] [blame] | 191 | const struct attribute_group *groups[3]; |
Jarkko Sakkinen | 9b774d5 | 2015-04-14 17:56:48 +0300 | [diff] [blame] | 192 | unsigned int groups_cnt; |
Nayna Jain | 1db1534 | 2017-01-30 04:59:40 -0500 | [diff] [blame] | 193 | |
| 194 | u16 active_banks[7]; |
Jason Gunthorpe | 062807f | 2016-04-18 13:26:13 -0400 | [diff] [blame] | 195 | #ifdef CONFIG_ACPI |
Jarkko Sakkinen | 0dc5536 | 2014-12-12 11:46:35 -0800 | [diff] [blame] | 196 | acpi_handle acpi_dev_handle; |
| 197 | char ppi_version[TPM_PPI_VERSION_LEN + 1]; |
| 198 | #endif /* CONFIG_ACPI */ |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 199 | }; |
| 200 | |
Jarkko Sakkinen | 9b774d5 | 2015-04-14 17:56:48 +0300 | [diff] [blame] | 201 | #define to_tpm_chip(d) container_of(d, struct tpm_chip, dev) |
Leendert van Doorn | 27084ef | 2006-04-22 02:38:03 -0700 | [diff] [blame] | 202 | |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 203 | struct tpm_input_header { |
| 204 | __be16 tag; |
| 205 | __be32 length; |
| 206 | __be32 ordinal; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 207 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 208 | |
| 209 | struct tpm_output_header { |
| 210 | __be16 tag; |
| 211 | __be32 length; |
| 212 | __be32 return_code; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 213 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 214 | |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 215 | #define TPM_TAG_RQU_COMMAND cpu_to_be16(193) |
| 216 | |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 217 | struct stclear_flags_t { |
| 218 | __be16 tag; |
| 219 | u8 deactivated; |
| 220 | u8 disableForceClear; |
| 221 | u8 physicalPresence; |
| 222 | u8 physicalPresenceLock; |
| 223 | u8 bGlobalLock; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 224 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 225 | |
| 226 | struct tpm_version_t { |
| 227 | u8 Major; |
| 228 | u8 Minor; |
| 229 | u8 revMajor; |
| 230 | u8 revMinor; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 231 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 232 | |
| 233 | struct tpm_version_1_2_t { |
| 234 | __be16 tag; |
| 235 | u8 Major; |
| 236 | u8 Minor; |
| 237 | u8 revMajor; |
| 238 | u8 revMinor; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 239 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 240 | |
| 241 | struct timeout_t { |
| 242 | __be32 a; |
| 243 | __be32 b; |
| 244 | __be32 c; |
| 245 | __be32 d; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 246 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 247 | |
| 248 | struct duration_t { |
| 249 | __be32 tpm_short; |
| 250 | __be32 tpm_medium; |
| 251 | __be32 tpm_long; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 252 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 253 | |
| 254 | struct permanent_flags_t { |
| 255 | __be16 tag; |
| 256 | u8 disable; |
| 257 | u8 ownership; |
| 258 | u8 deactivated; |
| 259 | u8 readPubek; |
| 260 | u8 disableOwnerClear; |
| 261 | u8 allowMaintenance; |
| 262 | u8 physicalPresenceLifetimeLock; |
| 263 | u8 physicalPresenceHWEnable; |
| 264 | u8 physicalPresenceCMDEnable; |
| 265 | u8 CEKPUsed; |
| 266 | u8 TPMpost; |
| 267 | u8 TPMpostLock; |
| 268 | u8 FIPS; |
| 269 | u8 operator; |
| 270 | u8 enableRevokeEK; |
| 271 | u8 nvLocked; |
| 272 | u8 readSRKPub; |
| 273 | u8 tpmEstablished; |
| 274 | u8 maintenanceDone; |
| 275 | u8 disableFullDALogicInfo; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 276 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 277 | |
| 278 | typedef union { |
| 279 | struct permanent_flags_t perm_flags; |
| 280 | struct stclear_flags_t stclear_flags; |
| 281 | bool owned; |
| 282 | __be32 num_pcrs; |
| 283 | struct tpm_version_t tpm_version; |
| 284 | struct tpm_version_1_2_t tpm_version_1_2; |
| 285 | __be32 manufacturer_id; |
| 286 | struct timeout_t timeout; |
| 287 | struct duration_t duration; |
| 288 | } cap_t; |
| 289 | |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 290 | enum tpm_capabilities { |
Jarkko Sakkinen | 84fda15 | 2016-09-19 23:22:09 +0300 | [diff] [blame] | 291 | TPM_CAP_FLAG = 4, |
| 292 | TPM_CAP_PROP = 5, |
| 293 | TPM_CAP_VERSION_1_1 = 0x06, |
| 294 | TPM_CAP_VERSION_1_2 = 0x1A, |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 295 | }; |
| 296 | |
| 297 | enum tpm_sub_capabilities { |
Jarkko Sakkinen | 84fda15 | 2016-09-19 23:22:09 +0300 | [diff] [blame] | 298 | TPM_CAP_PROP_PCR = 0x101, |
| 299 | TPM_CAP_PROP_MANUFACTURER = 0x103, |
| 300 | TPM_CAP_FLAG_PERM = 0x108, |
| 301 | TPM_CAP_FLAG_VOL = 0x109, |
| 302 | TPM_CAP_PROP_OWNER = 0x111, |
| 303 | TPM_CAP_PROP_TIS_TIMEOUT = 0x115, |
| 304 | TPM_CAP_PROP_TIS_DURATION = 0x120, |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 305 | }; |
| 306 | |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 307 | struct tpm_getcap_params_in { |
| 308 | __be32 cap; |
| 309 | __be32 subcap_size; |
| 310 | __be32 subcap; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 311 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 312 | |
| 313 | struct tpm_getcap_params_out { |
| 314 | __be32 cap_size; |
| 315 | cap_t cap; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 316 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 317 | |
| 318 | struct tpm_readpubek_params_out { |
| 319 | u8 algorithm[4]; |
| 320 | u8 encscheme[2]; |
| 321 | u8 sigscheme[2]; |
Rajiv Andrade | 02a077c | 2010-06-14 13:58:22 -0300 | [diff] [blame] | 322 | __be32 paramsize; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 323 | u8 parameters[12]; /*assuming RSA*/ |
| 324 | __be32 keysize; |
| 325 | u8 modulus[256]; |
| 326 | u8 checksum[20]; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 327 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 328 | |
| 329 | typedef union { |
| 330 | struct tpm_input_header in; |
| 331 | struct tpm_output_header out; |
| 332 | } tpm_cmd_header; |
| 333 | |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 334 | struct tpm_pcrread_out { |
| 335 | u8 pcr_result[TPM_DIGEST_SIZE]; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 336 | } __packed; |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 337 | |
| 338 | struct tpm_pcrread_in { |
| 339 | __be32 pcr_idx; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 340 | } __packed; |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 341 | |
| 342 | struct tpm_pcrextend_in { |
| 343 | __be32 pcr_idx; |
| 344 | u8 hash[TPM_DIGEST_SIZE]; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 345 | } __packed; |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 346 | |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 347 | /* 128 bytes is an arbitrary cap. This could be as large as TPM_BUFSIZE - 18 |
| 348 | * bytes, but 128 is still a relatively large number of random bytes and |
| 349 | * anything much bigger causes users of struct tpm_cmd_t to start getting |
| 350 | * compiler warnings about stack frame size. */ |
| 351 | #define TPM_MAX_RNG_DATA 128 |
| 352 | |
| 353 | struct tpm_getrandom_out { |
| 354 | __be32 rng_data_len; |
| 355 | u8 rng_data[TPM_MAX_RNG_DATA]; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 356 | } __packed; |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 357 | |
| 358 | struct tpm_getrandom_in { |
| 359 | __be32 num_bytes; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 360 | } __packed; |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 361 | |
Jason Gunthorpe | c584af1 | 2012-11-21 13:54:33 -0700 | [diff] [blame] | 362 | struct tpm_startup_in { |
| 363 | __be16 startup_type; |
| 364 | } __packed; |
| 365 | |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 366 | typedef union { |
| 367 | struct tpm_getcap_params_out getcap_out; |
| 368 | struct tpm_readpubek_params_out readpubek_out; |
| 369 | u8 readpubek_out_buffer[sizeof(struct tpm_readpubek_params_out)]; |
| 370 | struct tpm_getcap_params_in getcap_in; |
Rajiv Andrade | 659aaf2 | 2009-02-02 15:23:44 -0200 | [diff] [blame] | 371 | struct tpm_pcrread_in pcrread_in; |
| 372 | struct tpm_pcrread_out pcrread_out; |
| 373 | struct tpm_pcrextend_in pcrextend_in; |
Kent Yoder | 41ab999 | 2012-06-07 13:47:14 -0500 | [diff] [blame] | 374 | struct tpm_getrandom_in getrandom_in; |
| 375 | struct tpm_getrandom_out getrandom_out; |
Jason Gunthorpe | c584af1 | 2012-11-21 13:54:33 -0700 | [diff] [blame] | 376 | struct tpm_startup_in startup_in; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 377 | } tpm_cmd_params; |
| 378 | |
| 379 | struct tpm_cmd_t { |
| 380 | tpm_cmd_header header; |
| 381 | tpm_cmd_params params; |
Jason Gunthorpe | 348df8d | 2012-11-21 13:56:45 -0700 | [diff] [blame] | 382 | } __packed; |
Rajiv Andrade | 0883743 | 2009-02-02 15:23:43 -0200 | [diff] [blame] | 383 | |
Nayna Jain | c1f92b4 | 2017-01-30 04:59:41 -0500 | [diff] [blame^] | 384 | struct tpm2_digest { |
| 385 | u16 alg_id; |
| 386 | u8 digest[SHA512_DIGEST_SIZE]; |
| 387 | } __packed; |
| 388 | |
Jarkko Sakkinen | a74f8b3 | 2015-10-11 12:26:58 +0300 | [diff] [blame] | 389 | /* A string buffer type for constructing TPM commands. This is based on the |
| 390 | * ideas of string buffer code in security/keys/trusted.h but is heap based |
| 391 | * in order to keep the stack usage minimal. |
| 392 | */ |
| 393 | |
| 394 | enum tpm_buf_flags { |
| 395 | TPM_BUF_OVERFLOW = BIT(0), |
| 396 | }; |
| 397 | |
| 398 | struct tpm_buf { |
| 399 | struct page *data_page; |
| 400 | unsigned int flags; |
| 401 | u8 *data; |
| 402 | }; |
| 403 | |
Jarkko Sakkinen | 954650e | 2015-05-30 08:09:04 +0300 | [diff] [blame] | 404 | static inline int tpm_buf_init(struct tpm_buf *buf, u16 tag, u32 ordinal) |
Jarkko Sakkinen | a74f8b3 | 2015-10-11 12:26:58 +0300 | [diff] [blame] | 405 | { |
| 406 | struct tpm_input_header *head; |
| 407 | |
| 408 | buf->data_page = alloc_page(GFP_HIGHUSER); |
| 409 | if (!buf->data_page) |
| 410 | return -ENOMEM; |
| 411 | |
| 412 | buf->flags = 0; |
| 413 | buf->data = kmap(buf->data_page); |
| 414 | |
| 415 | head = (struct tpm_input_header *) buf->data; |
| 416 | |
| 417 | head->tag = cpu_to_be16(tag); |
| 418 | head->length = cpu_to_be32(sizeof(*head)); |
| 419 | head->ordinal = cpu_to_be32(ordinal); |
| 420 | |
| 421 | return 0; |
| 422 | } |
| 423 | |
| 424 | static inline void tpm_buf_destroy(struct tpm_buf *buf) |
| 425 | { |
| 426 | kunmap(buf->data_page); |
| 427 | __free_page(buf->data_page); |
| 428 | } |
| 429 | |
| 430 | static inline u32 tpm_buf_length(struct tpm_buf *buf) |
| 431 | { |
| 432 | struct tpm_input_header *head = (struct tpm_input_header *) buf->data; |
| 433 | |
| 434 | return be32_to_cpu(head->length); |
| 435 | } |
| 436 | |
| 437 | static inline u16 tpm_buf_tag(struct tpm_buf *buf) |
| 438 | { |
| 439 | struct tpm_input_header *head = (struct tpm_input_header *) buf->data; |
| 440 | |
| 441 | return be16_to_cpu(head->tag); |
| 442 | } |
| 443 | |
| 444 | static inline void tpm_buf_append(struct tpm_buf *buf, |
| 445 | const unsigned char *new_data, |
| 446 | unsigned int new_len) |
| 447 | { |
| 448 | struct tpm_input_header *head = (struct tpm_input_header *) buf->data; |
| 449 | u32 len = tpm_buf_length(buf); |
| 450 | |
| 451 | /* Return silently if overflow has already happened. */ |
| 452 | if (buf->flags & TPM_BUF_OVERFLOW) |
| 453 | return; |
| 454 | |
| 455 | if ((len + new_len) > PAGE_SIZE) { |
| 456 | WARN(1, "tpm_buf: overflow\n"); |
| 457 | buf->flags |= TPM_BUF_OVERFLOW; |
| 458 | return; |
| 459 | } |
| 460 | |
| 461 | memcpy(&buf->data[len], new_data, new_len); |
| 462 | head->length = cpu_to_be32(len + new_len); |
| 463 | } |
| 464 | |
| 465 | static inline void tpm_buf_append_u8(struct tpm_buf *buf, const u8 value) |
| 466 | { |
| 467 | tpm_buf_append(buf, &value, 1); |
| 468 | } |
| 469 | |
| 470 | static inline void tpm_buf_append_u16(struct tpm_buf *buf, const u16 value) |
| 471 | { |
| 472 | __be16 value2 = cpu_to_be16(value); |
| 473 | |
| 474 | tpm_buf_append(buf, (u8 *) &value2, 2); |
| 475 | } |
| 476 | |
| 477 | static inline void tpm_buf_append_u32(struct tpm_buf *buf, const u32 value) |
| 478 | { |
| 479 | __be32 value2 = cpu_to_be32(value); |
| 480 | |
| 481 | tpm_buf_append(buf, (u8 *) &value2, 4); |
| 482 | } |
| 483 | |
Jarkko Sakkinen | 313d21e | 2014-12-12 11:46:37 -0800 | [diff] [blame] | 484 | extern struct class *tpm_class; |
| 485 | extern dev_t tpm_devt; |
| 486 | extern const struct file_operations tpm_fops; |
Stefan Berger | 1551678 | 2016-02-29 08:53:02 -0500 | [diff] [blame] | 487 | extern struct idr dev_nums_idr; |
Jarkko Sakkinen | 313d21e | 2014-12-12 11:46:37 -0800 | [diff] [blame] | 488 | |
Jarkko Sakkinen | d4816ed | 2016-08-16 22:00:38 +0300 | [diff] [blame] | 489 | enum tpm_transmit_flags { |
| 490 | TPM_TRANSMIT_UNLOCKED = BIT(0), |
| 491 | }; |
| 492 | |
| 493 | ssize_t tpm_transmit(struct tpm_chip *chip, const u8 *buf, size_t bufsiz, |
| 494 | unsigned int flags); |
Stefan Berger | c659af7 | 2017-01-19 07:19:12 -0500 | [diff] [blame] | 495 | ssize_t tpm_transmit_cmd(struct tpm_chip *chip, const void *buf, size_t bufsiz, |
| 496 | size_t min_rsp_body_len, unsigned int flags, |
| 497 | const char *desc); |
Jarkko Sakkinen | 84fda15 | 2016-09-19 23:22:09 +0300 | [diff] [blame] | 498 | ssize_t tpm_getcap(struct tpm_chip *chip, u32 subcap_id, cap_t *cap, |
Stefan Berger | c659af7 | 2017-01-19 07:19:12 -0500 | [diff] [blame] | 499 | const char *desc, size_t min_cap_length); |
Jarkko Sakkinen | d4abd95 | 2016-06-25 23:33:09 +0300 | [diff] [blame] | 500 | int tpm_get_timeouts(struct tpm_chip *); |
Jason Gunthorpe | cae8b44 | 2016-07-12 11:41:49 -0600 | [diff] [blame] | 501 | int tpm1_auto_startup(struct tpm_chip *chip); |
Jarkko Sakkinen | d4abd95 | 2016-06-25 23:33:09 +0300 | [diff] [blame] | 502 | int tpm_do_selftest(struct tpm_chip *chip); |
| 503 | unsigned long tpm_calc_ordinal_duration(struct tpm_chip *chip, u32 ordinal); |
| 504 | int tpm_pm_suspend(struct device *dev); |
| 505 | int tpm_pm_resume(struct device *dev); |
| 506 | int wait_for_tpm_stat(struct tpm_chip *chip, u8 mask, unsigned long timeout, |
| 507 | wait_queue_head_t *queue, bool check_cancel); |
Xiaoyan Zhang | f84fdff | 2012-08-22 18:47:22 +0800 | [diff] [blame] | 508 | |
Jarkko Sakkinen | afb5abc | 2014-12-12 11:46:34 -0800 | [diff] [blame] | 509 | struct tpm_chip *tpm_chip_find_get(int chip_num); |
Jason Gunthorpe | 4e26195 | 2016-02-12 20:29:53 -0700 | [diff] [blame] | 510 | __must_check int tpm_try_get_ops(struct tpm_chip *chip); |
| 511 | void tpm_put_ops(struct tpm_chip *chip); |
| 512 | |
Jarkko Sakkinen | d4abd95 | 2016-06-25 23:33:09 +0300 | [diff] [blame] | 513 | struct tpm_chip *tpm_chip_alloc(struct device *dev, |
| 514 | const struct tpm_class_ops *ops); |
| 515 | struct tpm_chip *tpmm_chip_alloc(struct device *pdev, |
| 516 | const struct tpm_class_ops *ops); |
| 517 | int tpm_chip_register(struct tpm_chip *chip); |
| 518 | void tpm_chip_unregister(struct tpm_chip *chip); |
Jarkko Sakkinen | afb5abc | 2014-12-12 11:46:34 -0800 | [diff] [blame] | 519 | |
Jason Gunthorpe | 062807f | 2016-04-18 13:26:13 -0400 | [diff] [blame] | 520 | void tpm_sysfs_add_device(struct tpm_chip *chip); |
Jason Gunthorpe | afdba32 | 2013-11-26 13:30:40 -0700 | [diff] [blame] | 521 | |
Jason Gunthorpe | 000a07b | 2013-11-26 13:30:41 -0700 | [diff] [blame] | 522 | int tpm_pcr_read_dev(struct tpm_chip *chip, int pcr_idx, u8 *res_buf); |
| 523 | |
Xiaoyan Zhang | f84fdff | 2012-08-22 18:47:22 +0800 | [diff] [blame] | 524 | #ifdef CONFIG_ACPI |
Jarkko Sakkinen | 9b774d5 | 2015-04-14 17:56:48 +0300 | [diff] [blame] | 525 | extern void tpm_add_ppi(struct tpm_chip *chip); |
Xiaoyan Zhang | f84fdff | 2012-08-22 18:47:22 +0800 | [diff] [blame] | 526 | #else |
Jarkko Sakkinen | 9b774d5 | 2015-04-14 17:56:48 +0300 | [diff] [blame] | 527 | static inline void tpm_add_ppi(struct tpm_chip *chip) |
Gang Wei | 1631cfb | 2012-10-09 17:35:22 +0800 | [diff] [blame] | 528 | { |
| 529 | } |
Xiaoyan Zhang | f84fdff | 2012-08-22 18:47:22 +0800 | [diff] [blame] | 530 | #endif |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 531 | |
Jarkko Sakkinen | 7d76111 | 2017-01-25 23:00:22 +0200 | [diff] [blame] | 532 | static inline inline u32 tpm2_rc_value(u32 rc) |
| 533 | { |
| 534 | return (rc & BIT(7)) ? rc & 0xff : rc; |
| 535 | } |
| 536 | |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 537 | int tpm2_pcr_read(struct tpm_chip *chip, int pcr_idx, u8 *res_buf); |
Nayna Jain | c1f92b4 | 2017-01-30 04:59:41 -0500 | [diff] [blame^] | 538 | int tpm2_pcr_extend(struct tpm_chip *chip, int pcr_idx, u32 count, |
| 539 | struct tpm2_digest *digests); |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 540 | int tpm2_get_random(struct tpm_chip *chip, u8 *out, size_t max); |
Jarkko Sakkinen | 954650e | 2015-05-30 08:09:04 +0300 | [diff] [blame] | 541 | int tpm2_seal_trusted(struct tpm_chip *chip, |
| 542 | struct trusted_key_payload *payload, |
| 543 | struct trusted_key_options *options); |
| 544 | int tpm2_unseal_trusted(struct tpm_chip *chip, |
| 545 | struct trusted_key_payload *payload, |
| 546 | struct trusted_key_options *options); |
Jarkko Sakkinen | 7a1d7e6 | 2014-12-12 11:46:38 -0800 | [diff] [blame] | 547 | ssize_t tpm2_get_tpm_pt(struct tpm_chip *chip, u32 property_id, |
| 548 | u32 *value, const char *desc); |
| 549 | |
Jason Gunthorpe | cae8b44 | 2016-07-12 11:41:49 -0600 | [diff] [blame] | 550 | int tpm2_auto_startup(struct tpm_chip *chip); |
Jarkko Sakkinen | d4abd95 | 2016-06-25 23:33:09 +0300 | [diff] [blame] | 551 | void tpm2_shutdown(struct tpm_chip *chip, u16 shutdown_type); |
| 552 | unsigned long tpm2_calc_ordinal_duration(struct tpm_chip *chip, u32 ordinal); |
Jarkko Sakkinen | d4abd95 | 2016-06-25 23:33:09 +0300 | [diff] [blame] | 553 | int tpm2_probe(struct tpm_chip *chip); |
Nayna Jain | 1db1534 | 2017-01-30 04:59:40 -0500 | [diff] [blame] | 554 | ssize_t tpm2_get_pcr_allocation(struct tpm_chip *chip); |
Christophe Ricard | d2efee6 | 2016-05-04 21:06:22 +0200 | [diff] [blame] | 555 | #endif |