2023-11-13 15:03:42 +00:00
|
|
|
/*
|
|
|
|
* This file is part of the Trezor project, https://trezor.io/
|
|
|
|
*
|
|
|
|
* Copyright (c) SatoshiLabs
|
|
|
|
*
|
|
|
|
* This program is free software: you can redistribute it and/or modify
|
|
|
|
* it under the terms of the GNU General Public License as published by
|
|
|
|
* the Free Software Foundation, either version 3 of the License, or
|
|
|
|
* (at your option) any later version.
|
|
|
|
*
|
|
|
|
* This program is distributed in the hope that it will be useful,
|
|
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
* GNU General Public License for more details.
|
|
|
|
*
|
|
|
|
* You should have received a copy of the GNU General Public License
|
|
|
|
* along with this program. If not, see <http://www.gnu.org/licenses/>.
|
|
|
|
*/
|
|
|
|
|
2024-10-31 08:23:37 +00:00
|
|
|
#ifndef TREZORHAL_TRUSTZONE
|
|
|
|
#define TREZORHAL_TRUSTZONE
|
|
|
|
|
2024-11-01 11:55:31 +00:00
|
|
|
#include <trezor_types.h>
|
2023-06-28 08:51:30 +00:00
|
|
|
|
|
|
|
#ifdef BOARDLOADER
|
|
|
|
|
2023-11-13 15:03:42 +00:00
|
|
|
// Provides initial security configuration of CPU and GTZC
|
|
|
|
// in the board-loader
|
2024-10-31 08:23:37 +00:00
|
|
|
void tz_init_boardloader(void);
|
2023-06-28 08:51:30 +00:00
|
|
|
|
2023-11-13 15:03:42 +00:00
|
|
|
#endif // BOARDLOADER
|
2023-06-28 08:51:30 +00:00
|
|
|
|
2024-10-31 08:23:37 +00:00
|
|
|
// Alters configuration of GTZC in the kernel
|
|
|
|
void tz_init_kernel(void);
|
|
|
|
|
|
|
|
// Alignment required by MCPBB/GTZC for SRAM regions
|
|
|
|
#define TZ_SRAM_ALIGNMENT 512
|
|
|
|
|
|
|
|
// Set unprivileged access to an SRAM address range at the
|
|
|
|
// MCPBB/GTZC level. The region's start and end are automatically aligned to
|
|
|
|
// 512B to cover the entire specified range.
|
|
|
|
void tz_set_sram_unpriv(uint32_t start, uint32_t size, bool unpriv);
|
|
|
|
|
|
|
|
// Alignment required by GTZC for FLASH regions
|
|
|
|
#define TZ_FLASH_ALIGNMENT 8192
|
|
|
|
|
|
|
|
// Sets unprivileged access to a FLASH address range at the
|
|
|
|
// MCPBB/GTZC level. The region's start and end are automatically aligned to
|
|
|
|
// 8KB to cover the entire specified range.
|
|
|
|
void tz_set_flash_unpriv(uint32_t start, uint32_t size, bool unpriv);
|
|
|
|
|
|
|
|
// Sets unprivileged access to the SAES peripheral.
|
|
|
|
void tz_set_saes_unpriv(bool unpriv);
|
|
|
|
|
|
|
|
// Sets unprivileged access to the TAMP peripheral.
|
|
|
|
void tz_set_tamper_unpriv(bool unpriv);
|
|
|
|
|
|
|
|
// Sets unprivileged access to the DMA2D peripheral.
|
|
|
|
void tz_set_dma2d_unpriv(bool unpriv);
|
|
|
|
|
|
|
|
// Sets unprivileged access to the GFXMMU peripheral.
|
|
|
|
void tz_set_gfxmmu_unpriv(bool unpriv);
|
|
|
|
|
|
|
|
#endif // TREZORHAL_TRUSTZONE
|