From patchwork Sun Nov 22 21:53:48 2020 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Jan Kiszka X-Patchwork-Id: 185 Return-Path: Delivered-To: ilbers.mnt@gmail.com Received: by 2002:a4a:df02:0:0:0:0:0 with SMTP id i2csp2785360oou; Sun, 22 Nov 2020 23:54:03 -0800 (PST) X-Received: by 2002:a19:5d55:: with SMTP id p21mr3138520lfj.115.1606118043583; Sun, 22 Nov 2020 23:54:03 -0800 (PST) ARC-Seal: i=3; a=rsa-sha256; t=1606118043; cv=pass; d=google.com; s=arc-20160816; b=vvMDm47W1KssFjVNWIHPr7ypura3iB8OGUZwA+oqU5qpP8fM3EDqfzkBJ6h7uQvHbV IrjB04iWWQRdofKm/UMtAAolvmkqUx4ewnWRluXzAVA+YU8TXbjYlREWtt+86HbRLhZI iaZqXD4oebD4TezmkZ1kj1yTdzOL2BZVFfIT7Fn0k3q9zi5QNP5FNfQU9JwSuBLQMY+O vWDE89847wqxVyfWuJoihcGpzzO2qqqVfeMmInnCcciKdHP8x5FD3oz1J5Bom9Qytr79 9Tb54aBjjdrtdH6j5Nk4wt74Ub5ARXt1u+odw7jU9nbKQj75UhcweE3LGrkB22obGHlj LvPQ== ARC-Message-Signature: i=3; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:mime-version:message-id:date :subject:cc:to:from:sender:dkim-signature; bh=/kzvmfjQz/LEzUvGbyXtN+zWNRZ1hNKVpxRvmxxnSd4=; b=qNI6/JUewQ7YBi8taUT/R5nnr2ibMVOGWpRKlVL2r2TMwromaqjtRNaP4/D2reN9TK JBPxuWKXiAcPd0ZcZJ6viFBIqvbriZSLMlkd7ffX68FoRNIBgVophWWX4i8BtmzIzgWL oSeHr2ia0Cm5NUw7iegrzD+T4paJgGmismw5MtDTrFGjYE+lPCfymgB3uG80nEE7p7lJ ao7Fe2PagVlXmQsIvICrphgeHc/xCJ81G0ynX+2RhKSzYfQBMz8S/EHqKEaJ7to9TqWA robiCgWFbbTvohEqKw5jQ7tQOqd121oFJfK7qh54zP9z+quQU94ZP5I0wb4cw4639IzV Q6Xg== ARC-Authentication-Results: i=3; mx.google.com; dkim=pass header.i=@googlegroups.com header.s=20161025 header.b=Mv+8eTcX; arc=pass (i=2 spf=pass spfdomain=siemens.com dmarc=pass fromdomain=siemens.com); spf=pass (google.com: domain of isar-users+bncbcji7smnv4nbbg6v5x6qkgqetouvoha@googlegroups.com designates 209.85.220.55 as permitted sender) smtp.mailfrom=isar-users+bncBCJI7SMNV4NBBG6V5X6QKGQETOUVOHA@googlegroups.com; dmarc=fail (p=NONE sp=NONE dis=NONE arc=pass) header.from=siemens.com Received: from mail-sor-f55.google.com (mail-sor-f55.google.com. [209.85.220.55]) by mx.google.com with SMTPS id e8sor3753764ljl.7.2020.11.22.23.54.03 (Google Transport Security); Sun, 22 Nov 2020 23:54:03 -0800 (PST) Received-SPF: pass (google.com: domain of isar-users+bncbcji7smnv4nbbg6v5x6qkgqetouvoha@googlegroups.com designates 209.85.220.55 as permitted sender) client-ip=209.85.220.55; Authentication-Results: mx.google.com; dkim=pass header.i=@googlegroups.com header.s=20161025 header.b=Mv+8eTcX; arc=pass (i=2 spf=pass spfdomain=siemens.com dmarc=pass fromdomain=siemens.com); spf=pass (google.com: domain of isar-users+bncbcji7smnv4nbbg6v5x6qkgqetouvoha@googlegroups.com designates 209.85.220.55 as permitted sender) smtp.mailfrom=isar-users+bncBCJI7SMNV4NBBG6V5X6QKGQETOUVOHA@googlegroups.com; dmarc=fail (p=NONE sp=NONE dis=NONE arc=pass) header.from=siemens.com ARC-Seal: i=2; a=rsa-sha256; t=1606118043; cv=pass; d=google.com; s=arc-20160816; b=jc0gTdg9XnmhaANczdBUeMFm7wkMLOgu5RVmLEdKQl2FpJgjp+SJf6HlaLzXTapKL3 0ovY/F0HkPBdAGtwxI0BWF3XLIqW9AgQAUQoWN+QXYwTVEXnf8CTqy8lwi5b8mdj4SKb fVCka/XRDvoDerStTU4npmhOj4rrbQtpy0hZVTvWoFWdLqB6+LkoVXvcVHLCXZET3Eis 6dfdRAgszB07SoRou0g/0/lOadumiNYbgaq/Hbu6TO5nrThyAfmSIHN0X8+u7Cm8su52 IqGAWro67Bvq9xtbG/LHGewBaXwu+s4mkFvzmyY9r7dHm966HpPbRnfD5olBeV206kvM LBuA== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:mime-version:message-id:date :subject:cc:to:from:sender:dkim-signature; bh=/kzvmfjQz/LEzUvGbyXtN+zWNRZ1hNKVpxRvmxxnSd4=; b=QBEIjKgzztEdDJ/b6P6rGo5Q04zcNZLcrzDYDnqlxqyZ7r/O5Dn4YNBuFhWlI9GCXv jvLIgy2Mq8DDOk4VR+qCCv8eLQYtMn1wVUMHTusXEIAZir1gzoWeBOAyFWCuE/vVrPki dfvPqQDWILNU7ENmwqJur6hT5XVb78R78C2C4EwMuPPoCuj74rFX8+9qQeKyrya6c3kQ H1T0TBMaXJDGRIC3OrjY8weTAWpwE5sQWt11kAYizEUzK+ztUAAngdfdr+qD1d2nzo9f UlOD65vq926urZD4eqsMZN0x4aUqi3GW7a09lkHJwjT7kP0NhUHMX+7EXVyZ8FO/6px/ e3ig== ARC-Authentication-Results: i=2; gmr-mx.google.com; spf=pass (google.com: domain of jan.kiszka@siemens.com designates 192.35.17.2 as permitted sender) smtp.mailfrom=jan.kiszka@siemens.com; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=siemens.com DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20161025; h=sender:from:to:cc:subject:date:message-id:mime-version :x-original-sender:x-original-authentication-results:precedence :mailing-list:list-id:list-post:list-help:list-archive :list-subscribe:list-unsubscribe; bh=/kzvmfjQz/LEzUvGbyXtN+zWNRZ1hNKVpxRvmxxnSd4=; b=Mv+8eTcX+2jMJb7Mya3Kvh8mS8RKUm6XyWjolS+1o+MVYAvC/GM8fkAU+/caPs++ba Vvp9LKWWnZXo4USSz2hVV/86xTCuduw7wAK0KbhcPVWGk0U/rjOxcoPKh4mVbUnumzBo LOKkIMx6Et99OlqfKypB81+O44359vFrK05uJA0bV3lFAOtUcl37FnHop+MEKJBccW2u kdHLJv6u266UXsL2fD8JsMlopd8M49HJiirC2nWy9gq9sg054feP9WrAvH2+ME3QFsFp qLTlv+PBiFptd4BrEv0K3VPCHhHtbJU+ND1We2QaRm4k6IyW+iQCOTFCU16mq/H+YPw4 Qdmg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=sender:x-gm-message-state:from:to:cc:subject:date:message-id :mime-version:x-original-sender:x-original-authentication-results :precedence:mailing-list:list-id:x-spam-checked-in-group:list-post :list-help:list-archive:list-subscribe:list-unsubscribe; bh=/kzvmfjQz/LEzUvGbyXtN+zWNRZ1hNKVpxRvmxxnSd4=; b=QZ6DFufPWHX1lExTihoplTbbLmpgK/p4h4yFCaOCm4fNvpCE4VS7DNYQPOtQqZ1U3z dICQFHfW5beaIWp6QSZnj3e7fJWKtCGA6+JDPnmuKiYr8PoKeXlhrzxL2bQdLtkkfyNM jvv+t1PT415ulkSvARqdtXy/rAySuErWBPe+Twg5yDb4o7aRbKUkhdi8Rkt14DqXqp7l f3C1wjQ5sunEEK9sluYA0tOZfAlnogIOf0A+XY9Q91a1ztMfT1HklVzgk4P/IZbob4h8 c+t/D6Xw+JhxetFSsd6dBl9vY1O9RroUXQLLuKk7d5PvSHMdi6lK8oVHnXo6lyBhrmyf KDEQ== Sender: isar-users@googlegroups.com X-Gm-Message-State: AOAM5305O61FbGhWzObjClSQ3jcrrNECoaW1ovSDUbTR1pUwbFV27C44 MdVp/okuMllNMY2Pt8+FuQM= X-Google-Smtp-Source: ABdhPJwYCVw+1DT7gUZoJaXaspGNT/aFd2YJCkMTbnjN7IH0ccDyk2pRIpc8F8hXuOmKBVpqNLOkqQ== X-Received: by 2002:a2e:894e:: with SMTP id b14mr13670414ljk.370.1606118043261; Sun, 22 Nov 2020 23:54:03 -0800 (PST) X-BeenThere: isar-users@googlegroups.com Received: by 2002:ac2:58ed:: with SMTP id v13ls1048947lfo.2.gmail; Sun, 22 Nov 2020 23:54:02 -0800 (PST) X-Received: by 2002:a19:f504:: with SMTP id j4mr1684056lfb.163.1606118042166; Sun, 22 Nov 2020 23:54:02 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1606118042; cv=none; d=google.com; s=arc-20160816; b=c/uFor4xZt2lyMwNYx14SXss2I4vvCA841xnqoXVVwI+M14xpKvDwOR8vwgjuCXfJF MSFL0tLd6k7KNV9EihHa8vJCWxbA9hrYvYZW92uq7ufhUEYp3i8NYWHCNrw76p/Ec4IY M5Hi9ex3Tv8VfTtx0udFAZopD31GkMgMrj5rMztwZJypWvrULHB5J5W5zj60u7gsgnvd y7SuqdLhyP7uV0sFez09Ask1nYMh+JdJiGuLe/blcMjfGgwcNkcHcvf+u0aJarC02gfa S19O3kig3sGML5CIytbCf3fD4GJPdmA2Gx/cdEc+Wt+Je8BLi3FyMZIIFHREYCX7c1bT Mqwg== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=content-transfer-encoding:mime-version:message-id:date:subject:cc :to:from; bh=oyRkqCc8WeC7pIou5P2oMW5f9+UGRaSI9LnRu5h6jgk=; b=WGZA1v9d49HzK/7Q+u0RfXNeXn8WyzQwyVQBaPUt+rw8PgujUrkfjzytWOAwiM/tBc AbGDpPpta/OBDcEyk/tlYeKRMvzajVcUmSNTUqfC0V+klfAV/P4XIjNctJoKcwX4GRgp eF7Rq1e7NFsjKrP61w0cJmxqImiRR+4m/ZJ3qLtEsdGfwecmnYHHYtn9QOo3BBg5SxdQ T8vIT0cGrFGIBoypgT2ZLXXYTJ28JShVDyKIeJUdd9SEh8ivnD8l3EaLxRCe2sjyjbNE 2CwfR+u7XX2HXyrBaGFMnmFHOmHd2xHml7sMdEcyLE+tJMCQDYW7WrYOPnz0M18G7/vB sWcw== ARC-Authentication-Results: i=1; gmr-mx.google.com; spf=pass (google.com: domain of jan.kiszka@siemens.com designates 192.35.17.2 as permitted sender) smtp.mailfrom=jan.kiszka@siemens.com; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=siemens.com Received: from thoth.sbs.de (thoth.sbs.de. [192.35.17.2]) by gmr-mx.google.com with ESMTPS id h19si376097ljh.7.2020.11.22.23.54.01 for (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Sun, 22 Nov 2020 23:54:02 -0800 (PST) Received-SPF: pass (google.com: domain of jan.kiszka@siemens.com designates 192.35.17.2 as permitted sender) client-ip=192.35.17.2; Received: from mail2.sbs.de (mail2.sbs.de [192.129.41.66]) by thoth.sbs.de (8.15.2/8.15.2) with ESMTPS id 0AN7s04o001621 (version=TLSv1.2 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=OK); Mon, 23 Nov 2020 08:54:00 +0100 Received: from md1f2u6c.ad001.siemens.net ([167.87.38.29]) by mail2.sbs.de (8.15.2/8.15.2) with ESMTP id 0AN7rxTo017265; Mon, 23 Nov 2020 08:54:00 +0100 From: Jan Kiszka To: isar-users Cc: vijaikumar.kanagarajan@gmail.com Subject: [PATCH v4 00/11] Support for building TF-A and OP-TEE, add STM32MP15x board Date: Mon, 23 Nov 2020 08:53:48 +0100 Message-Id: X-Mailer: git-send-email 2.26.2 MIME-Version: 1.0 X-Original-Sender: jan.kiszka@siemens.com X-Original-Authentication-Results: gmr-mx.google.com; spf=pass (google.com: domain of jan.kiszka@siemens.com designates 192.35.17.2 as permitted sender) smtp.mailfrom=jan.kiszka@siemens.com; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=siemens.com Precedence: list Mailing-list: list isar-users@googlegroups.com; contact isar-users+owners@googlegroups.com List-ID: X-Spam-Checked-In-Group: isar-users@googlegroups.com X-Google-Group-Id: 914930254986 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-getmail-retrieved-from-mailbox: INBOX X-GMAIL-THRID: =?utf-8?q?1684136833534386859?= X-GMAIL-MSGID: =?utf-8?q?1684136833534386859?= Changes in v4: - fix up OP-TEE version reporting for STM32MP15x - update to TF-A 2.4 and OP-TEE 3.11.0 Changes in v3 (sent as partial updates before): - more flexible TF_A_BINARIES definition, supporting also platforms with custom BUILD_PLAT definitions (k3, rk3399, tegra) - account for platform flavors in OPTEE_PLATFORM This adds include files for building custom Trusted Firmware A and Open Portable Trusted Execution Environment, similar to U-Boot. As a demonstration target, support for the STM32MP15x board is added, and its boot is enabled for both TF-a and OP-TEE. Note that the kernel is intentionally kept at 5.4.70 due to https://lkml.org/lkml/2020/11/22/126. Jan CC: vijaikumar.kanagarajan@gmail.com Jan Kiszka (11): meta-isar: Lift de0-nano-soc build to buster meta-isar: linux-mainline: Update to latest 5.4.70 meta-isar: u-boot: Update to 2020.10 meta-isar: u-boot: Factor our de0-nano-soc recipe meta-isar: example-raw: Purge securetty from target image Add STM32MP15x eval board Add recipe include for building custom Trusted Firmware A stm32mp15x: Switch to TF-A based boot Add recipe include for building custom OP-TEE meta-isar: u-boot-stm32mp15x: Add patches needed for OP-TEE usage meta-isar: Add OP-TEE to STM32MP15x board meta-isar/conf/local.conf.sample | 3 +- meta-isar/conf/machine/de0-nano-soc.conf | 1 + meta-isar/conf/machine/stm32mp15x.conf | 19 +++ .../conf/multiconfig/de0-nano-soc-buster.conf | 7 + .../multiconfig/de0-nano-soc-stretch.conf | 7 - .../conf/multiconfig/stm32mp15x-buster.conf | 7 + .../recipes-app/example-raw/files/postinst | 3 + .../optee-os/optee-os-stm32mp15x_3.10.0.bb | 19 +++ .../trusted-firmware-a-stm32mp15x_2.3.bb | 21 +++ ...y-add-property-no-map-to-created-res.patch | 151 ++++++++++++++++++ ...rty-no-map-to-secure-reserved-memory.patch | 33 ++++ .../recipes-bsp/u-boot/u-boot-2020.10.inc | 13 ++ .../u-boot/u-boot-de0-nano-soc_2020.10.bb | 9 ++ .../u-boot/u-boot-stm32mp15x_2020.10.bb | 10 ++ .../recipes-bsp/u-boot/u-boot_2018.09.bb | 14 -- ...ine_5.4.10.bb => linux-mainline_5.4.70.bb} | 4 +- .../lib/wic/canned-wks/stm32mp15x.wks.in | 16 ++ meta/recipes-bsp/optee-os/files/debian/compat | 1 + .../optee-os/files/debian/control.tmpl | 10 ++ meta/recipes-bsp/optee-os/files/debian/rules | 19 +++ meta/recipes-bsp/optee-os/optee-os-custom.inc | 46 ++++++ .../trusted-firmware-a/files/debian/compat | 1 + .../files/debian/control.tmpl | 10 ++ .../trusted-firmware-a/files/debian/rules | 19 +++ .../trusted-firmware-a-custom.inc | 43 +++++ scripts/ci_build.sh | 5 +- 26 files changed, 465 insertions(+), 26 deletions(-) create mode 100644 meta-isar/conf/machine/stm32mp15x.conf create mode 100644 meta-isar/conf/multiconfig/de0-nano-soc-buster.conf delete mode 100644 meta-isar/conf/multiconfig/de0-nano-soc-stretch.conf create mode 100644 meta-isar/conf/multiconfig/stm32mp15x-buster.conf create mode 100644 meta-isar/recipes-bsp/optee-os/optee-os-stm32mp15x_3.10.0.bb create mode 100644 meta-isar/recipes-bsp/trusted-firmware-a/trusted-firmware-a-stm32mp15x_2.3.bb create mode 100644 meta-isar/recipes-bsp/u-boot/files/0001-fdtdec-optionally-add-property-no-map-to-created-res.patch create mode 100644 meta-isar/recipes-bsp/u-boot/files/0002-optee-add-property-no-map-to-secure-reserved-memory.patch create mode 100644 meta-isar/recipes-bsp/u-boot/u-boot-2020.10.inc create mode 100644 meta-isar/recipes-bsp/u-boot/u-boot-de0-nano-soc_2020.10.bb create mode 100644 meta-isar/recipes-bsp/u-boot/u-boot-stm32mp15x_2020.10.bb delete mode 100644 meta-isar/recipes-bsp/u-boot/u-boot_2018.09.bb rename meta-isar/recipes-kernel/linux/{linux-mainline_5.4.10.bb => linux-mainline_5.4.70.bb} (89%) create mode 100644 meta-isar/scripts/lib/wic/canned-wks/stm32mp15x.wks.in create mode 100644 meta/recipes-bsp/optee-os/files/debian/compat create mode 100644 meta/recipes-bsp/optee-os/files/debian/control.tmpl create mode 100755 meta/recipes-bsp/optee-os/files/debian/rules create mode 100644 meta/recipes-bsp/optee-os/optee-os-custom.inc create mode 100644 meta/recipes-bsp/trusted-firmware-a/files/debian/compat create mode 100644 meta/recipes-bsp/trusted-firmware-a/files/debian/control.tmpl create mode 100755 meta/recipes-bsp/trusted-firmware-a/files/debian/rules create mode 100644 meta/recipes-bsp/trusted-firmware-a/trusted-firmware-a-custom.inc