forked from Minki/linux
897ab23169
Adds function that checks if cryptocell tee fips error occurred and in such case triggers system error through kernel panic. Change fips function to use this new routine. Signed-off-by: Ofir Drang <ofir.drang@arm.com> Signed-off-by: Gilad Ben-Yossef <gilad@benyossef.com> Cc: stable@vger.kernel.org # v4.19+ Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>
39 lines
1.1 KiB
C
39 lines
1.1 KiB
C
/* SPDX-License-Identifier: GPL-2.0 */
|
|
/* Copyright (C) 2012-2019 ARM Limited (or its affiliates). */
|
|
|
|
#ifndef __CC_FIPS_H__
|
|
#define __CC_FIPS_H__
|
|
|
|
#ifdef CONFIG_CRYPTO_FIPS
|
|
|
|
enum cc_fips_status {
|
|
CC_FIPS_SYNC_MODULE_OK = 0x0,
|
|
CC_FIPS_SYNC_MODULE_ERROR = 0x1,
|
|
CC_FIPS_SYNC_REE_STATUS = 0x4,
|
|
CC_FIPS_SYNC_TEE_STATUS = 0x8,
|
|
CC_FIPS_SYNC_STATUS_RESERVE32B = S32_MAX
|
|
};
|
|
|
|
int cc_fips_init(struct cc_drvdata *p_drvdata);
|
|
void cc_fips_fini(struct cc_drvdata *drvdata);
|
|
void fips_handler(struct cc_drvdata *drvdata);
|
|
void cc_set_ree_fips_status(struct cc_drvdata *drvdata, bool ok);
|
|
void cc_tee_handle_fips_error(struct cc_drvdata *p_drvdata);
|
|
|
|
#else /* CONFIG_CRYPTO_FIPS */
|
|
|
|
static inline int cc_fips_init(struct cc_drvdata *p_drvdata)
|
|
{
|
|
return 0;
|
|
}
|
|
|
|
static inline void cc_fips_fini(struct cc_drvdata *drvdata) {}
|
|
static inline void cc_set_ree_fips_status(struct cc_drvdata *drvdata,
|
|
bool ok) {}
|
|
static inline void fips_handler(struct cc_drvdata *drvdata) {}
|
|
static inline void cc_tee_handle_fips_error(struct cc_drvdata *p_drvdata) {}
|
|
|
|
#endif /* CONFIG_CRYPTO_FIPS */
|
|
|
|
#endif /*__CC_FIPS_H__*/
|