1 // SPDX-License-Identifier: GPL-2.0
5 // Support for Samsung S5PV210 and Exynos HW acceleration.
7 // Copyright (C) 2011 NetUP Inc. All rights reserved.
8 // Copyright (c) 2017 Samsung Electronics Co., Ltd. All rights reserved.
10 // Hash part based on omap-sham.c driver.
12 #include <linux/clk.h>
13 #include <linux/crypto.h>
14 #include <linux/dma-mapping.h>
15 #include <linux/err.h>
16 #include <linux/errno.h>
17 #include <linux/init.h>
18 #include <linux/interrupt.h>
20 #include <linux/kernel.h>
21 #include <linux/module.h>
23 #include <linux/platform_device.h>
24 #include <linux/scatterlist.h>
26 #include <crypto/ctr.h>
27 #include <crypto/aes.h>
28 #include <crypto/algapi.h>
29 #include <crypto/scatterwalk.h>
31 #include <crypto/hash.h>
32 #include <crypto/md5.h>
33 #include <crypto/sha1.h>
34 #include <crypto/sha2.h>
35 #include <crypto/internal/hash.h>
37 #define _SBF(s, v) ((v) << (s))
39 /* Feed control registers */
40 #define SSS_REG_FCINTSTAT 0x0000
41 #define SSS_FCINTSTAT_HPARTINT BIT(7)
42 #define SSS_FCINTSTAT_HDONEINT BIT(5)
43 #define SSS_FCINTSTAT_BRDMAINT BIT(3)
44 #define SSS_FCINTSTAT_BTDMAINT BIT(2)
45 #define SSS_FCINTSTAT_HRDMAINT BIT(1)
46 #define SSS_FCINTSTAT_PKDMAINT BIT(0)
48 #define SSS_REG_FCINTENSET 0x0004
49 #define SSS_FCINTENSET_HPARTINTENSET BIT(7)
50 #define SSS_FCINTENSET_HDONEINTENSET BIT(5)
51 #define SSS_FCINTENSET_BRDMAINTENSET BIT(3)
52 #define SSS_FCINTENSET_BTDMAINTENSET BIT(2)
53 #define SSS_FCINTENSET_HRDMAINTENSET BIT(1)
54 #define SSS_FCINTENSET_PKDMAINTENSET BIT(0)
56 #define SSS_REG_FCINTENCLR 0x0008
57 #define SSS_FCINTENCLR_HPARTINTENCLR BIT(7)
58 #define SSS_FCINTENCLR_HDONEINTENCLR BIT(5)
59 #define SSS_FCINTENCLR_BRDMAINTENCLR BIT(3)
60 #define SSS_FCINTENCLR_BTDMAINTENCLR BIT(2)
61 #define SSS_FCINTENCLR_HRDMAINTENCLR BIT(1)
62 #define SSS_FCINTENCLR_PKDMAINTENCLR BIT(0)
64 #define SSS_REG_FCINTPEND 0x000C
65 #define SSS_FCINTPEND_HPARTINTP BIT(7)
66 #define SSS_FCINTPEND_HDONEINTP BIT(5)
67 #define SSS_FCINTPEND_BRDMAINTP BIT(3)
68 #define SSS_FCINTPEND_BTDMAINTP BIT(2)
69 #define SSS_FCINTPEND_HRDMAINTP BIT(1)
70 #define SSS_FCINTPEND_PKDMAINTP BIT(0)
72 #define SSS_REG_FCFIFOSTAT 0x0010
73 #define SSS_FCFIFOSTAT_BRFIFOFUL BIT(7)
74 #define SSS_FCFIFOSTAT_BRFIFOEMP BIT(6)
75 #define SSS_FCFIFOSTAT_BTFIFOFUL BIT(5)
76 #define SSS_FCFIFOSTAT_BTFIFOEMP BIT(4)
77 #define SSS_FCFIFOSTAT_HRFIFOFUL BIT(3)
78 #define SSS_FCFIFOSTAT_HRFIFOEMP BIT(2)
79 #define SSS_FCFIFOSTAT_PKFIFOFUL BIT(1)
80 #define SSS_FCFIFOSTAT_PKFIFOEMP BIT(0)
82 #define SSS_REG_FCFIFOCTRL 0x0014
83 #define SSS_FCFIFOCTRL_DESSEL BIT(2)
84 #define SSS_HASHIN_INDEPENDENT _SBF(0, 0x00)
85 #define SSS_HASHIN_CIPHER_INPUT _SBF(0, 0x01)
86 #define SSS_HASHIN_CIPHER_OUTPUT _SBF(0, 0x02)
87 #define SSS_HASHIN_MASK _SBF(0, 0x03)
89 #define SSS_REG_FCBRDMAS 0x0020
90 #define SSS_REG_FCBRDMAL 0x0024
91 #define SSS_REG_FCBRDMAC 0x0028
92 #define SSS_FCBRDMAC_BYTESWAP BIT(1)
93 #define SSS_FCBRDMAC_FLUSH BIT(0)
95 #define SSS_REG_FCBTDMAS 0x0030
96 #define SSS_REG_FCBTDMAL 0x0034
97 #define SSS_REG_FCBTDMAC 0x0038
98 #define SSS_FCBTDMAC_BYTESWAP BIT(1)
99 #define SSS_FCBTDMAC_FLUSH BIT(0)
101 #define SSS_REG_FCHRDMAS 0x0040
102 #define SSS_REG_FCHRDMAL 0x0044
103 #define SSS_REG_FCHRDMAC 0x0048
104 #define SSS_FCHRDMAC_BYTESWAP BIT(1)
105 #define SSS_FCHRDMAC_FLUSH BIT(0)
107 #define SSS_REG_FCPKDMAS 0x0050
108 #define SSS_REG_FCPKDMAL 0x0054
109 #define SSS_REG_FCPKDMAC 0x0058
110 #define SSS_FCPKDMAC_BYTESWAP BIT(3)
111 #define SSS_FCPKDMAC_DESCEND BIT(2)
112 #define SSS_FCPKDMAC_TRANSMIT BIT(1)
113 #define SSS_FCPKDMAC_FLUSH BIT(0)
115 #define SSS_REG_FCPKDMAO 0x005C
118 #define SSS_REG_AES_CONTROL 0x00
119 #define SSS_AES_BYTESWAP_DI BIT(11)
120 #define SSS_AES_BYTESWAP_DO BIT(10)
121 #define SSS_AES_BYTESWAP_IV BIT(9)
122 #define SSS_AES_BYTESWAP_CNT BIT(8)
123 #define SSS_AES_BYTESWAP_KEY BIT(7)
124 #define SSS_AES_KEY_CHANGE_MODE BIT(6)
125 #define SSS_AES_KEY_SIZE_128 _SBF(4, 0x00)
126 #define SSS_AES_KEY_SIZE_192 _SBF(4, 0x01)
127 #define SSS_AES_KEY_SIZE_256 _SBF(4, 0x02)
128 #define SSS_AES_FIFO_MODE BIT(3)
129 #define SSS_AES_CHAIN_MODE_ECB _SBF(1, 0x00)
130 #define SSS_AES_CHAIN_MODE_CBC _SBF(1, 0x01)
131 #define SSS_AES_CHAIN_MODE_CTR _SBF(1, 0x02)
132 #define SSS_AES_MODE_DECRYPT BIT(0)
134 #define SSS_REG_AES_STATUS 0x04
135 #define SSS_AES_BUSY BIT(2)
136 #define SSS_AES_INPUT_READY BIT(1)
137 #define SSS_AES_OUTPUT_READY BIT(0)
139 #define SSS_REG_AES_IN_DATA(s) (0x10 + (s << 2))
140 #define SSS_REG_AES_OUT_DATA(s) (0x20 + (s << 2))
141 #define SSS_REG_AES_IV_DATA(s) (0x30 + (s << 2))
142 #define SSS_REG_AES_CNT_DATA(s) (0x40 + (s << 2))
143 #define SSS_REG_AES_KEY_DATA(s) (0x80 + (s << 2))
145 #define SSS_REG(dev, reg) ((dev)->ioaddr + (SSS_REG_##reg))
146 #define SSS_READ(dev, reg) __raw_readl(SSS_REG(dev, reg))
147 #define SSS_WRITE(dev, reg, val) __raw_writel((val), SSS_REG(dev, reg))
149 #define SSS_AES_REG(dev, reg) ((dev)->aes_ioaddr + SSS_REG_##reg)
150 #define SSS_AES_WRITE(dev, reg, val) __raw_writel((val), \
151 SSS_AES_REG(dev, reg))
153 /* HW engine modes */
154 #define FLAGS_AES_DECRYPT BIT(0)
155 #define FLAGS_AES_MODE_MASK _SBF(1, 0x03)
156 #define FLAGS_AES_CBC _SBF(1, 0x01)
157 #define FLAGS_AES_CTR _SBF(1, 0x02)
159 #define AES_KEY_LEN 16
160 #define CRYPTO_QUEUE_LEN 1
163 #define SSS_REG_HASH_CTRL 0x00
165 #define SSS_HASH_USER_IV_EN BIT(5)
166 #define SSS_HASH_INIT_BIT BIT(4)
167 #define SSS_HASH_ENGINE_SHA1 _SBF(1, 0x00)
168 #define SSS_HASH_ENGINE_MD5 _SBF(1, 0x01)
169 #define SSS_HASH_ENGINE_SHA256 _SBF(1, 0x02)
171 #define SSS_HASH_ENGINE_MASK _SBF(1, 0x03)
173 #define SSS_REG_HASH_CTRL_PAUSE 0x04
175 #define SSS_HASH_PAUSE BIT(0)
177 #define SSS_REG_HASH_CTRL_FIFO 0x08
179 #define SSS_HASH_FIFO_MODE_DMA BIT(0)
180 #define SSS_HASH_FIFO_MODE_CPU 0
182 #define SSS_REG_HASH_CTRL_SWAP 0x0C
184 #define SSS_HASH_BYTESWAP_DI BIT(3)
185 #define SSS_HASH_BYTESWAP_DO BIT(2)
186 #define SSS_HASH_BYTESWAP_IV BIT(1)
187 #define SSS_HASH_BYTESWAP_KEY BIT(0)
189 #define SSS_REG_HASH_STATUS 0x10
191 #define SSS_HASH_STATUS_MSG_DONE BIT(6)
192 #define SSS_HASH_STATUS_PARTIAL_DONE BIT(4)
193 #define SSS_HASH_STATUS_BUFFER_READY BIT(0)
195 #define SSS_REG_HASH_MSG_SIZE_LOW 0x20
196 #define SSS_REG_HASH_MSG_SIZE_HIGH 0x24
198 #define SSS_REG_HASH_PRE_MSG_SIZE_LOW 0x28
199 #define SSS_REG_HASH_PRE_MSG_SIZE_HIGH 0x2C
201 #define SSS_REG_HASH_IV(s) (0xB0 + ((s) << 2))
202 #define SSS_REG_HASH_OUT(s) (0x100 + ((s) << 2))
204 #define HASH_BLOCK_SIZE 64
205 #define HASH_REG_SIZEOF 4
206 #define HASH_MD5_MAX_REG (MD5_DIGEST_SIZE / HASH_REG_SIZEOF)
207 #define HASH_SHA1_MAX_REG (SHA1_DIGEST_SIZE / HASH_REG_SIZEOF)
208 #define HASH_SHA256_MAX_REG (SHA256_DIGEST_SIZE / HASH_REG_SIZEOF)
211 * HASH bit numbers, used by device, setting in dev->hash_flags with
212 * functions set_bit(), clear_bit() or tested with test_bit() or BIT(),
213 * to keep HASH state BUSY or FREE, or to signal state from irq_handler
214 * to hash_tasklet. SGS keep track of allocated memory for scatterlist
216 #define HASH_FLAGS_BUSY 0
217 #define HASH_FLAGS_FINAL 1
218 #define HASH_FLAGS_DMA_ACTIVE 2
219 #define HASH_FLAGS_OUTPUT_READY 3
220 #define HASH_FLAGS_DMA_READY 4
221 #define HASH_FLAGS_SGS_COPIED 5
222 #define HASH_FLAGS_SGS_ALLOCED 6
224 /* HASH HW constants */
225 #define BUFLEN HASH_BLOCK_SIZE
227 #define SSS_HASH_QUEUE_LENGTH 10
230 * struct samsung_aes_variant - platform specific SSS driver data
231 * @aes_offset: AES register offset from SSS module's base.
232 * @hash_offset: HASH register offset from SSS module's base.
233 * @clk_names: names of clocks needed to run SSS IP
235 * Specifies platform specific configuration of SSS module.
236 * Note: A structure for driver specific platform data is used for future
237 * expansion of its usage.
239 struct samsung_aes_variant
{
240 unsigned int aes_offset
;
241 unsigned int hash_offset
;
242 const char *clk_names
[2];
245 struct s5p_aes_reqctx
{
250 struct s5p_aes_dev
*dev
;
252 u8 aes_key
[AES_MAX_KEY_SIZE
];
253 u8 nonce
[CTR_RFC3686_NONCE_SIZE
];
258 * struct s5p_aes_dev - Crypto device state container
259 * @dev: Associated device
260 * @clk: Clock for accessing hardware
261 * @pclk: APB bus clock necessary to access the hardware
262 * @ioaddr: Mapped IO memory region
263 * @aes_ioaddr: Per-varian offset for AES block IO memory
264 * @irq_fc: Feed control interrupt line
265 * @req: Crypto request currently handled by the device
266 * @ctx: Configuration for currently handled crypto request
267 * @sg_src: Scatter list with source data for currently handled block
268 * in device. This is DMA-mapped into device.
269 * @sg_dst: Scatter list with destination data for currently handled block
270 * in device. This is DMA-mapped into device.
271 * @sg_src_cpy: In case of unaligned access, copied scatter list
273 * @sg_dst_cpy: In case of unaligned access, copied scatter list
274 * with destination data.
275 * @tasklet: New request scheduling jib
276 * @queue: Crypto queue
277 * @busy: Indicates whether the device is currently handling some request
278 * thus it uses some of the fields from this state, like:
279 * req, ctx, sg_src/dst (and copies). This essentially
280 * protects against concurrent access to these fields.
281 * @lock: Lock for protecting both access to device hardware registers
282 * and fields related to current request (including the busy field).
283 * @res: Resources for hash.
284 * @io_hash_base: Per-variant offset for HASH block IO memory.
285 * @hash_lock: Lock for protecting hash_req, hash_queue and hash_flags
287 * @hash_flags: Flags for current HASH op.
288 * @hash_queue: Async hash queue.
289 * @hash_tasklet: New HASH request scheduling job.
290 * @xmit_buf: Buffer for current HASH request transfer into SSS block.
291 * @hash_req: Current request sending to SSS HASH block.
292 * @hash_sg_iter: Scatterlist transferred through DMA into SSS HASH block.
293 * @hash_sg_cnt: Counter for hash_sg_iter.
295 * @use_hash: true if HASH algs enabled
301 void __iomem
*ioaddr
;
302 void __iomem
*aes_ioaddr
;
305 struct skcipher_request
*req
;
306 struct s5p_aes_ctx
*ctx
;
307 struct scatterlist
*sg_src
;
308 struct scatterlist
*sg_dst
;
310 struct scatterlist
*sg_src_cpy
;
311 struct scatterlist
*sg_dst_cpy
;
313 struct tasklet_struct tasklet
;
314 struct crypto_queue queue
;
318 struct resource
*res
;
319 void __iomem
*io_hash_base
;
321 spinlock_t hash_lock
; /* protect hash_ vars */
322 unsigned long hash_flags
;
323 struct crypto_queue hash_queue
;
324 struct tasklet_struct hash_tasklet
;
327 struct ahash_request
*hash_req
;
328 struct scatterlist
*hash_sg_iter
;
329 unsigned int hash_sg_cnt
;
335 * struct s5p_hash_reqctx - HASH request context
336 * @dd: Associated device
337 * @op_update: Current request operation (OP_UPDATE or OP_FINAL)
338 * @digcnt: Number of bytes processed by HW (without buffer[] ones)
339 * @digest: Digest message or IV for partial result
340 * @nregs: Number of HW registers for digest or IV read/write
341 * @engine: Bits for selecting type of HASH in SSS block
342 * @sg: sg for DMA transfer
343 * @sg_len: Length of sg for DMA transfer
344 * @sgl: sg for joining buffer and req->src scatterlist
345 * @skip: Skip offset in req->src for current op
346 * @total: Total number of bytes for current request
347 * @finup: Keep state for finup or final.
348 * @error: Keep track of error.
349 * @bufcnt: Number of bytes holded in buffer[]
350 * @buffer: For byte(s) from end of req->src in UPDATE op
352 struct s5p_hash_reqctx
{
353 struct s5p_aes_dev
*dd
;
357 u8 digest
[SHA256_DIGEST_SIZE
];
359 unsigned int nregs
; /* digest_size / sizeof(reg) */
362 struct scatterlist
*sg
;
364 struct scatterlist sgl
[2];
375 * struct s5p_hash_ctx - HASH transformation context
376 * @dd: Associated device
377 * @flags: Bits for algorithm HASH.
378 * @fallback: Software transformation for zero message or size < BUFLEN.
380 struct s5p_hash_ctx
{
381 struct s5p_aes_dev
*dd
;
383 struct crypto_shash
*fallback
;
386 static const struct samsung_aes_variant s5p_aes_data
= {
387 .aes_offset
= 0x4000,
388 .hash_offset
= 0x6000,
389 .clk_names
= { "secss", },
392 static const struct samsung_aes_variant exynos_aes_data
= {
394 .hash_offset
= 0x400,
395 .clk_names
= { "secss", },
398 static const struct samsung_aes_variant exynos5433_slim_aes_data
= {
400 .hash_offset
= 0x800,
401 .clk_names
= { "aclk", "pclk", },
404 static const struct of_device_id s5p_sss_dt_match
[] = {
406 .compatible
= "samsung,s5pv210-secss",
407 .data
= &s5p_aes_data
,
410 .compatible
= "samsung,exynos4210-secss",
411 .data
= &exynos_aes_data
,
414 .compatible
= "samsung,exynos5433-slim-sss",
415 .data
= &exynos5433_slim_aes_data
,
419 MODULE_DEVICE_TABLE(of
, s5p_sss_dt_match
);
421 static inline const struct samsung_aes_variant
*find_s5p_sss_version
422 (const struct platform_device
*pdev
)
424 if (IS_ENABLED(CONFIG_OF
) && (pdev
->dev
.of_node
))
425 return of_device_get_match_data(&pdev
->dev
);
427 return (const struct samsung_aes_variant
*)
428 platform_get_device_id(pdev
)->driver_data
;
431 static struct s5p_aes_dev
*s5p_dev
;
433 static void s5p_set_dma_indata(struct s5p_aes_dev
*dev
,
434 const struct scatterlist
*sg
)
436 SSS_WRITE(dev
, FCBRDMAS
, sg_dma_address(sg
));
437 SSS_WRITE(dev
, FCBRDMAL
, sg_dma_len(sg
));
440 static void s5p_set_dma_outdata(struct s5p_aes_dev
*dev
,
441 const struct scatterlist
*sg
)
443 SSS_WRITE(dev
, FCBTDMAS
, sg_dma_address(sg
));
444 SSS_WRITE(dev
, FCBTDMAL
, sg_dma_len(sg
));
447 static void s5p_free_sg_cpy(struct s5p_aes_dev
*dev
, struct scatterlist
**sg
)
454 len
= ALIGN(dev
->req
->cryptlen
, AES_BLOCK_SIZE
);
455 free_pages((unsigned long)sg_virt(*sg
), get_order(len
));
461 static void s5p_sg_copy_buf(void *buf
, struct scatterlist
*sg
,
462 unsigned int nbytes
, int out
)
464 struct scatter_walk walk
;
469 scatterwalk_start(&walk
, sg
);
470 scatterwalk_copychunks(buf
, &walk
, nbytes
, out
);
471 scatterwalk_done(&walk
, out
, 0);
474 static void s5p_sg_done(struct s5p_aes_dev
*dev
)
476 struct skcipher_request
*req
= dev
->req
;
477 struct s5p_aes_reqctx
*reqctx
= skcipher_request_ctx(req
);
479 if (dev
->sg_dst_cpy
) {
481 "Copying %d bytes of output data back to original place\n",
483 s5p_sg_copy_buf(sg_virt(dev
->sg_dst_cpy
), dev
->req
->dst
,
484 dev
->req
->cryptlen
, 1);
486 s5p_free_sg_cpy(dev
, &dev
->sg_src_cpy
);
487 s5p_free_sg_cpy(dev
, &dev
->sg_dst_cpy
);
488 if (reqctx
->mode
& FLAGS_AES_CBC
)
489 memcpy_fromio(req
->iv
, dev
->aes_ioaddr
+ SSS_REG_AES_IV_DATA(0), AES_BLOCK_SIZE
);
491 else if (reqctx
->mode
& FLAGS_AES_CTR
)
492 memcpy_fromio(req
->iv
, dev
->aes_ioaddr
+ SSS_REG_AES_CNT_DATA(0), AES_BLOCK_SIZE
);
495 /* Calls the completion. Cannot be called with dev->lock hold. */
496 static void s5p_aes_complete(struct skcipher_request
*req
, int err
)
498 skcipher_request_complete(req
, err
);
501 static void s5p_unset_outdata(struct s5p_aes_dev
*dev
)
503 dma_unmap_sg(dev
->dev
, dev
->sg_dst
, 1, DMA_FROM_DEVICE
);
506 static void s5p_unset_indata(struct s5p_aes_dev
*dev
)
508 dma_unmap_sg(dev
->dev
, dev
->sg_src
, 1, DMA_TO_DEVICE
);
511 static int s5p_make_sg_cpy(struct s5p_aes_dev
*dev
, struct scatterlist
*src
,
512 struct scatterlist
**dst
)
517 *dst
= kmalloc(sizeof(**dst
), GFP_ATOMIC
);
521 len
= ALIGN(dev
->req
->cryptlen
, AES_BLOCK_SIZE
);
522 pages
= (void *)__get_free_pages(GFP_ATOMIC
, get_order(len
));
529 s5p_sg_copy_buf(pages
, src
, dev
->req
->cryptlen
, 0);
531 sg_init_table(*dst
, 1);
532 sg_set_buf(*dst
, pages
, len
);
537 static int s5p_set_outdata(struct s5p_aes_dev
*dev
, struct scatterlist
*sg
)
542 if (!dma_map_sg(dev
->dev
, sg
, 1, DMA_FROM_DEVICE
))
550 static int s5p_set_indata(struct s5p_aes_dev
*dev
, struct scatterlist
*sg
)
555 if (!dma_map_sg(dev
->dev
, sg
, 1, DMA_TO_DEVICE
))
564 * Returns -ERRNO on error (mapping of new data failed).
565 * On success returns:
566 * - 0 if there is no more data,
567 * - 1 if new transmitting (output) data is ready and its address+length
568 * have to be written to device (by calling s5p_set_dma_outdata()).
570 static int s5p_aes_tx(struct s5p_aes_dev
*dev
)
574 s5p_unset_outdata(dev
);
576 if (!sg_is_last(dev
->sg_dst
)) {
577 ret
= s5p_set_outdata(dev
, sg_next(dev
->sg_dst
));
586 * Returns -ERRNO on error (mapping of new data failed).
587 * On success returns:
588 * - 0 if there is no more data,
589 * - 1 if new receiving (input) data is ready and its address+length
590 * have to be written to device (by calling s5p_set_dma_indata()).
592 static int s5p_aes_rx(struct s5p_aes_dev
*dev
/*, bool *set_dma*/)
596 s5p_unset_indata(dev
);
598 if (!sg_is_last(dev
->sg_src
)) {
599 ret
= s5p_set_indata(dev
, sg_next(dev
->sg_src
));
607 static inline u32
s5p_hash_read(struct s5p_aes_dev
*dd
, u32 offset
)
609 return __raw_readl(dd
->io_hash_base
+ offset
);
612 static inline void s5p_hash_write(struct s5p_aes_dev
*dd
,
613 u32 offset
, u32 value
)
615 __raw_writel(value
, dd
->io_hash_base
+ offset
);
619 * s5p_set_dma_hashdata() - start DMA with sg
621 * @sg: scatterlist ready to DMA transmit
623 static void s5p_set_dma_hashdata(struct s5p_aes_dev
*dev
,
624 const struct scatterlist
*sg
)
627 SSS_WRITE(dev
, FCHRDMAS
, sg_dma_address(sg
));
628 SSS_WRITE(dev
, FCHRDMAL
, sg_dma_len(sg
)); /* DMA starts */
632 * s5p_hash_rx() - get next hash_sg_iter
636 * 2 if there is no more data and it is UPDATE op
637 * 1 if new receiving (input) data is ready and can be written to device
638 * 0 if there is no more data and it is FINAL op
640 static int s5p_hash_rx(struct s5p_aes_dev
*dev
)
642 if (dev
->hash_sg_cnt
> 0) {
643 dev
->hash_sg_iter
= sg_next(dev
->hash_sg_iter
);
647 set_bit(HASH_FLAGS_DMA_READY
, &dev
->hash_flags
);
648 if (test_bit(HASH_FLAGS_FINAL
, &dev
->hash_flags
))
654 static irqreturn_t
s5p_aes_interrupt(int irq
, void *dev_id
)
656 struct platform_device
*pdev
= dev_id
;
657 struct s5p_aes_dev
*dev
= platform_get_drvdata(pdev
);
658 struct skcipher_request
*req
;
668 spin_lock_irqsave(&dev
->lock
, flags
);
671 * Handle rx or tx interrupt. If there is still data (scatterlist did not
672 * reach end), then map next scatterlist entry.
673 * In case of such mapping error, s5p_aes_complete() should be called.
675 * If there is no more data in tx scatter list, call s5p_aes_complete()
676 * and schedule new tasklet.
678 * Handle hx interrupt. If there is still data map next entry.
680 status
= SSS_READ(dev
, FCINTSTAT
);
681 if (status
& SSS_FCINTSTAT_BRDMAINT
)
682 err_dma_rx
= s5p_aes_rx(dev
);
684 if (status
& SSS_FCINTSTAT_BTDMAINT
) {
685 if (sg_is_last(dev
->sg_dst
))
687 err_dma_tx
= s5p_aes_tx(dev
);
690 if (status
& SSS_FCINTSTAT_HRDMAINT
)
691 err_dma_hx
= s5p_hash_rx(dev
);
693 st_bits
= status
& (SSS_FCINTSTAT_BRDMAINT
| SSS_FCINTSTAT_BTDMAINT
|
694 SSS_FCINTSTAT_HRDMAINT
);
696 SSS_WRITE(dev
, FCINTPEND
, st_bits
);
698 /* clear HASH irq bits */
699 if (status
& (SSS_FCINTSTAT_HDONEINT
| SSS_FCINTSTAT_HPARTINT
)) {
700 /* cannot have both HPART and HDONE */
701 if (status
& SSS_FCINTSTAT_HPARTINT
)
702 st_bits
= SSS_HASH_STATUS_PARTIAL_DONE
;
704 if (status
& SSS_FCINTSTAT_HDONEINT
)
705 st_bits
= SSS_HASH_STATUS_MSG_DONE
;
707 set_bit(HASH_FLAGS_OUTPUT_READY
, &dev
->hash_flags
);
708 s5p_hash_write(dev
, SSS_REG_HASH_STATUS
, st_bits
);
710 /* when DONE or PART, do not handle HASH DMA */
714 if (err_dma_rx
< 0) {
718 if (err_dma_tx
< 0) {
726 s5p_set_dma_hashdata(dev
, dev
->hash_sg_iter
);
728 spin_unlock_irqrestore(&dev
->lock
, flags
);
730 s5p_aes_complete(dev
->req
, 0);
731 /* Device is still busy */
732 tasklet_schedule(&dev
->tasklet
);
735 * Writing length of DMA block (either receiving or
736 * transmitting) will start the operation immediately, so this
737 * should be done at the end (even after clearing pending
738 * interrupts to not miss the interrupt).
741 s5p_set_dma_outdata(dev
, dev
->sg_dst
);
743 s5p_set_dma_indata(dev
, dev
->sg_src
);
745 s5p_set_dma_hashdata(dev
, dev
->hash_sg_iter
);
747 spin_unlock_irqrestore(&dev
->lock
, flags
);
757 s5p_set_dma_hashdata(dev
, dev
->hash_sg_iter
);
759 spin_unlock_irqrestore(&dev
->lock
, flags
);
760 s5p_aes_complete(req
, err
);
764 * Note about else if:
765 * when hash_sg_iter reaches end and its UPDATE op,
766 * issue SSS_HASH_PAUSE and wait for HPART irq
769 tasklet_schedule(&dev
->hash_tasklet
);
770 else if (err_dma_hx
== 2)
771 s5p_hash_write(dev
, SSS_REG_HASH_CTRL_PAUSE
,
778 * s5p_hash_read_msg() - read message or IV from HW
779 * @req: AHASH request
781 static void s5p_hash_read_msg(struct ahash_request
*req
)
783 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
784 struct s5p_aes_dev
*dd
= ctx
->dd
;
785 u32
*hash
= (u32
*)ctx
->digest
;
788 for (i
= 0; i
< ctx
->nregs
; i
++)
789 hash
[i
] = s5p_hash_read(dd
, SSS_REG_HASH_OUT(i
));
793 * s5p_hash_write_ctx_iv() - write IV for next partial/finup op.
795 * @ctx: request context
797 static void s5p_hash_write_ctx_iv(struct s5p_aes_dev
*dd
,
798 const struct s5p_hash_reqctx
*ctx
)
800 const u32
*hash
= (const u32
*)ctx
->digest
;
803 for (i
= 0; i
< ctx
->nregs
; i
++)
804 s5p_hash_write(dd
, SSS_REG_HASH_IV(i
), hash
[i
]);
808 * s5p_hash_write_iv() - write IV for next partial/finup op.
809 * @req: AHASH request
811 static void s5p_hash_write_iv(struct ahash_request
*req
)
813 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
815 s5p_hash_write_ctx_iv(ctx
->dd
, ctx
);
819 * s5p_hash_copy_result() - copy digest into req->result
820 * @req: AHASH request
822 static void s5p_hash_copy_result(struct ahash_request
*req
)
824 const struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
829 memcpy(req
->result
, ctx
->digest
, ctx
->nregs
* HASH_REG_SIZEOF
);
833 * s5p_hash_dma_flush() - flush HASH DMA
836 static void s5p_hash_dma_flush(struct s5p_aes_dev
*dev
)
838 SSS_WRITE(dev
, FCHRDMAC
, SSS_FCHRDMAC_FLUSH
);
842 * s5p_hash_dma_enable() - enable DMA mode for HASH
845 * enable DMA mode for HASH
847 static void s5p_hash_dma_enable(struct s5p_aes_dev
*dev
)
849 s5p_hash_write(dev
, SSS_REG_HASH_CTRL_FIFO
, SSS_HASH_FIFO_MODE_DMA
);
853 * s5p_hash_irq_disable() - disable irq HASH signals
855 * @flags: bitfield with irq's to be disabled
857 static void s5p_hash_irq_disable(struct s5p_aes_dev
*dev
, u32 flags
)
859 SSS_WRITE(dev
, FCINTENCLR
, flags
);
863 * s5p_hash_irq_enable() - enable irq signals
865 * @flags: bitfield with irq's to be enabled
867 static void s5p_hash_irq_enable(struct s5p_aes_dev
*dev
, int flags
)
869 SSS_WRITE(dev
, FCINTENSET
, flags
);
873 * s5p_hash_set_flow() - set flow inside SecSS AES/DES with/without HASH
875 * @hashflow: HASH stream flow with/without crypto AES/DES
877 static void s5p_hash_set_flow(struct s5p_aes_dev
*dev
, u32 hashflow
)
882 spin_lock_irqsave(&dev
->lock
, flags
);
884 flow
= SSS_READ(dev
, FCFIFOCTRL
);
885 flow
&= ~SSS_HASHIN_MASK
;
887 SSS_WRITE(dev
, FCFIFOCTRL
, flow
);
889 spin_unlock_irqrestore(&dev
->lock
, flags
);
893 * s5p_ahash_dma_init() - enable DMA and set HASH flow inside SecSS
895 * @hashflow: HASH stream flow with/without AES/DES
897 * flush HASH DMA and enable DMA, set HASH stream flow inside SecSS HW,
898 * enable HASH irq's HRDMA, HDONE, HPART
900 static void s5p_ahash_dma_init(struct s5p_aes_dev
*dev
, u32 hashflow
)
902 s5p_hash_irq_disable(dev
, SSS_FCINTENCLR_HRDMAINTENCLR
|
903 SSS_FCINTENCLR_HDONEINTENCLR
|
904 SSS_FCINTENCLR_HPARTINTENCLR
);
905 s5p_hash_dma_flush(dev
);
907 s5p_hash_dma_enable(dev
);
908 s5p_hash_set_flow(dev
, hashflow
& SSS_HASHIN_MASK
);
909 s5p_hash_irq_enable(dev
, SSS_FCINTENSET_HRDMAINTENSET
|
910 SSS_FCINTENSET_HDONEINTENSET
|
911 SSS_FCINTENSET_HPARTINTENSET
);
915 * s5p_hash_write_ctrl() - prepare HASH block in SecSS for processing
917 * @length: length for request
918 * @final: true if final op
920 * Prepare SSS HASH block for processing bytes in DMA mode. If it is called
921 * after previous updates, fill up IV words. For final, calculate and set
922 * lengths for HASH so SecSS can finalize hash. For partial, set SSS HASH
923 * length as 2^63 so it will be never reached and set to zero prelow and
926 * This function does not start DMA transfer.
928 static void s5p_hash_write_ctrl(struct s5p_aes_dev
*dd
, size_t length
,
931 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(dd
->hash_req
);
932 u32 prelow
, prehigh
, low
, high
;
933 u32 configflags
, swapflags
;
936 configflags
= ctx
->engine
| SSS_HASH_INIT_BIT
;
938 if (likely(ctx
->digcnt
)) {
939 s5p_hash_write_ctx_iv(dd
, ctx
);
940 configflags
|= SSS_HASH_USER_IV_EN
;
944 /* number of bytes for last part */
947 /* total number of bits prev hashed */
948 tmplen
= ctx
->digcnt
* 8;
949 prelow
= (u32
)tmplen
;
950 prehigh
= (u32
)(tmplen
>> 32);
958 swapflags
= SSS_HASH_BYTESWAP_DI
| SSS_HASH_BYTESWAP_DO
|
959 SSS_HASH_BYTESWAP_IV
| SSS_HASH_BYTESWAP_KEY
;
961 s5p_hash_write(dd
, SSS_REG_HASH_MSG_SIZE_LOW
, low
);
962 s5p_hash_write(dd
, SSS_REG_HASH_MSG_SIZE_HIGH
, high
);
963 s5p_hash_write(dd
, SSS_REG_HASH_PRE_MSG_SIZE_LOW
, prelow
);
964 s5p_hash_write(dd
, SSS_REG_HASH_PRE_MSG_SIZE_HIGH
, prehigh
);
966 s5p_hash_write(dd
, SSS_REG_HASH_CTRL_SWAP
, swapflags
);
967 s5p_hash_write(dd
, SSS_REG_HASH_CTRL
, configflags
);
971 * s5p_hash_xmit_dma() - start DMA hash processing
973 * @length: length for request
974 * @final: true if final op
976 * Update digcnt here, as it is needed for finup/final op.
978 static int s5p_hash_xmit_dma(struct s5p_aes_dev
*dd
, size_t length
,
981 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(dd
->hash_req
);
984 cnt
= dma_map_sg(dd
->dev
, ctx
->sg
, ctx
->sg_len
, DMA_TO_DEVICE
);
986 dev_err(dd
->dev
, "dma_map_sg error\n");
991 set_bit(HASH_FLAGS_DMA_ACTIVE
, &dd
->hash_flags
);
992 dd
->hash_sg_iter
= ctx
->sg
;
993 dd
->hash_sg_cnt
= cnt
;
994 s5p_hash_write_ctrl(dd
, length
, final
);
995 ctx
->digcnt
+= length
;
996 ctx
->total
-= length
;
998 /* catch last interrupt */
1000 set_bit(HASH_FLAGS_FINAL
, &dd
->hash_flags
);
1002 s5p_set_dma_hashdata(dd
, dd
->hash_sg_iter
); /* DMA starts */
1004 return -EINPROGRESS
;
1008 * s5p_hash_copy_sgs() - copy request's bytes into new buffer
1009 * @ctx: request context
1010 * @sg: source scatterlist request
1011 * @new_len: number of bytes to process from sg
1013 * Allocate new buffer, copy data for HASH into it. If there was xmit_buf
1014 * filled, copy it first, then copy data from sg into it. Prepare one sgl[0]
1015 * with allocated buffer.
1017 * Set bit in dd->hash_flag so we can free it after irq ends processing.
1019 static int s5p_hash_copy_sgs(struct s5p_hash_reqctx
*ctx
,
1020 struct scatterlist
*sg
, unsigned int new_len
)
1022 unsigned int pages
, len
;
1025 len
= new_len
+ ctx
->bufcnt
;
1026 pages
= get_order(len
);
1028 buf
= (void *)__get_free_pages(GFP_ATOMIC
, pages
);
1030 dev_err(ctx
->dd
->dev
, "alloc pages for unaligned case.\n");
1036 memcpy(buf
, ctx
->dd
->xmit_buf
, ctx
->bufcnt
);
1038 scatterwalk_map_and_copy(buf
+ ctx
->bufcnt
, sg
, ctx
->skip
,
1040 sg_init_table(ctx
->sgl
, 1);
1041 sg_set_buf(ctx
->sgl
, buf
, len
);
1046 set_bit(HASH_FLAGS_SGS_COPIED
, &ctx
->dd
->hash_flags
);
1052 * s5p_hash_copy_sg_lists() - copy sg list and make fixes in copy
1053 * @ctx: request context
1054 * @sg: source scatterlist request
1055 * @new_len: number of bytes to process from sg
1057 * Allocate new scatterlist table, copy data for HASH into it. If there was
1058 * xmit_buf filled, prepare it first, then copy page, length and offset from
1059 * source sg into it, adjusting begin and/or end for skip offset and
1062 * Resulting sg table will be assigned to ctx->sg. Set flag so we can free
1063 * it after irq ends processing.
1065 static int s5p_hash_copy_sg_lists(struct s5p_hash_reqctx
*ctx
,
1066 struct scatterlist
*sg
, unsigned int new_len
)
1068 unsigned int skip
= ctx
->skip
, n
= sg_nents(sg
);
1069 struct scatterlist
*tmp
;
1075 ctx
->sg
= kmalloc_array(n
, sizeof(*sg
), GFP_KERNEL
);
1081 sg_init_table(ctx
->sg
, n
);
1088 sg_set_buf(tmp
, ctx
->dd
->xmit_buf
, ctx
->bufcnt
);
1093 while (sg
&& skip
>= sg
->length
) {
1098 while (sg
&& new_len
) {
1099 len
= sg
->length
- skip
;
1104 sg_set_page(tmp
, sg_page(sg
), len
, sg
->offset
+ skip
);
1114 set_bit(HASH_FLAGS_SGS_ALLOCED
, &ctx
->dd
->hash_flags
);
1120 * s5p_hash_prepare_sgs() - prepare sg for processing
1121 * @ctx: request context
1122 * @sg: source scatterlist request
1123 * @new_len: number of bytes to process from sg
1124 * @final: final flag
1126 * Check two conditions: (1) if buffers in sg have len aligned data, and (2)
1127 * sg table have good aligned elements (list_ok). If one of this checks fails,
1128 * then either (1) allocates new buffer for data with s5p_hash_copy_sgs, copy
1129 * data into this buffer and prepare request in sgl, or (2) allocates new sg
1130 * table and prepare sg elements.
1132 * For digest or finup all conditions can be good, and we may not need any
1135 static int s5p_hash_prepare_sgs(struct s5p_hash_reqctx
*ctx
,
1136 struct scatterlist
*sg
,
1137 unsigned int new_len
, bool final
)
1139 unsigned int skip
= ctx
->skip
, nbytes
= new_len
, n
= 0;
1140 bool aligned
= true, list_ok
= true;
1141 struct scatterlist
*sg_tmp
= sg
;
1143 if (!sg
|| !sg
->length
|| !new_len
)
1149 while (nbytes
> 0 && sg_tmp
) {
1151 if (skip
>= sg_tmp
->length
) {
1152 skip
-= sg_tmp
->length
;
1153 if (!sg_tmp
->length
) {
1158 if (!IS_ALIGNED(sg_tmp
->length
- skip
, BUFLEN
)) {
1163 if (nbytes
< sg_tmp
->length
- skip
) {
1168 nbytes
-= sg_tmp
->length
- skip
;
1172 sg_tmp
= sg_next(sg_tmp
);
1176 return s5p_hash_copy_sgs(ctx
, sg
, new_len
);
1178 return s5p_hash_copy_sg_lists(ctx
, sg
, new_len
);
1181 * Have aligned data from previous operation and/or current
1182 * Note: will enter here only if (digest or finup) and aligned
1186 sg_init_table(ctx
->sgl
, 2);
1187 sg_set_buf(ctx
->sgl
, ctx
->dd
->xmit_buf
, ctx
->bufcnt
);
1188 sg_chain(ctx
->sgl
, 2, sg
);
1200 * s5p_hash_prepare_request() - prepare request for processing
1201 * @req: AHASH request
1202 * @update: true if UPDATE op
1204 * Note 1: we can have update flag _and_ final flag at the same time.
1205 * Note 2: we enter here when digcnt > BUFLEN (=HASH_BLOCK_SIZE) or
1206 * either req->nbytes or ctx->bufcnt + req->nbytes is > BUFLEN or
1209 static int s5p_hash_prepare_request(struct ahash_request
*req
, bool update
)
1211 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
1212 bool final
= ctx
->finup
;
1213 int xmit_len
, hash_later
, nbytes
;
1217 nbytes
= req
->nbytes
;
1221 ctx
->total
= nbytes
+ ctx
->bufcnt
;
1225 if (nbytes
&& (!IS_ALIGNED(ctx
->bufcnt
, BUFLEN
))) {
1226 /* bytes left from previous request, so fill up to BUFLEN */
1227 int len
= BUFLEN
- ctx
->bufcnt
% BUFLEN
;
1232 scatterwalk_map_and_copy(ctx
->buffer
+ ctx
->bufcnt
, req
->src
,
1242 memcpy(ctx
->dd
->xmit_buf
, ctx
->buffer
, ctx
->bufcnt
);
1244 xmit_len
= ctx
->total
;
1248 if (IS_ALIGNED(xmit_len
, BUFLEN
))
1251 xmit_len
-= xmit_len
& (BUFLEN
- 1);
1253 hash_later
= ctx
->total
- xmit_len
;
1254 /* copy hash_later bytes from end of req->src */
1255 /* previous bytes are in xmit_buf, so no overwrite */
1256 scatterwalk_map_and_copy(ctx
->buffer
, req
->src
,
1257 req
->nbytes
- hash_later
,
1261 if (xmit_len
> BUFLEN
) {
1262 ret
= s5p_hash_prepare_sgs(ctx
, req
->src
, nbytes
- hash_later
,
1267 /* have buffered data only */
1268 if (unlikely(!ctx
->bufcnt
)) {
1269 /* first update didn't fill up buffer */
1270 scatterwalk_map_and_copy(ctx
->dd
->xmit_buf
, req
->src
,
1274 sg_init_table(ctx
->sgl
, 1);
1275 sg_set_buf(ctx
->sgl
, ctx
->dd
->xmit_buf
, xmit_len
);
1281 ctx
->bufcnt
= hash_later
;
1283 ctx
->total
= xmit_len
;
1289 * s5p_hash_update_dma_stop() - unmap DMA
1292 * Unmap scatterlist ctx->sg.
1294 static void s5p_hash_update_dma_stop(struct s5p_aes_dev
*dd
)
1296 const struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(dd
->hash_req
);
1298 dma_unmap_sg(dd
->dev
, ctx
->sg
, ctx
->sg_len
, DMA_TO_DEVICE
);
1299 clear_bit(HASH_FLAGS_DMA_ACTIVE
, &dd
->hash_flags
);
1303 * s5p_hash_finish() - copy calculated digest to crypto layer
1304 * @req: AHASH request
1306 static void s5p_hash_finish(struct ahash_request
*req
)
1308 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
1309 struct s5p_aes_dev
*dd
= ctx
->dd
;
1312 s5p_hash_copy_result(req
);
1314 dev_dbg(dd
->dev
, "hash_finish digcnt: %lld\n", ctx
->digcnt
);
1318 * s5p_hash_finish_req() - finish request
1319 * @req: AHASH request
1322 static void s5p_hash_finish_req(struct ahash_request
*req
, int err
)
1324 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
1325 struct s5p_aes_dev
*dd
= ctx
->dd
;
1326 unsigned long flags
;
1328 if (test_bit(HASH_FLAGS_SGS_COPIED
, &dd
->hash_flags
))
1329 free_pages((unsigned long)sg_virt(ctx
->sg
),
1330 get_order(ctx
->sg
->length
));
1332 if (test_bit(HASH_FLAGS_SGS_ALLOCED
, &dd
->hash_flags
))
1336 dd
->hash_flags
&= ~(BIT(HASH_FLAGS_SGS_ALLOCED
) |
1337 BIT(HASH_FLAGS_SGS_COPIED
));
1339 if (!err
&& !ctx
->error
) {
1340 s5p_hash_read_msg(req
);
1341 if (test_bit(HASH_FLAGS_FINAL
, &dd
->hash_flags
))
1342 s5p_hash_finish(req
);
1347 spin_lock_irqsave(&dd
->hash_lock
, flags
);
1348 dd
->hash_flags
&= ~(BIT(HASH_FLAGS_BUSY
) | BIT(HASH_FLAGS_FINAL
) |
1349 BIT(HASH_FLAGS_DMA_READY
) |
1350 BIT(HASH_FLAGS_OUTPUT_READY
));
1351 spin_unlock_irqrestore(&dd
->hash_lock
, flags
);
1353 if (req
->base
.complete
)
1354 ahash_request_complete(req
, err
);
1358 * s5p_hash_handle_queue() - handle hash queue
1359 * @dd: device s5p_aes_dev
1360 * @req: AHASH request
1362 * If req!=NULL enqueue it on dd->queue, if FLAGS_BUSY is not set on the
1363 * device then processes the first request from the dd->queue
1365 * Returns: see s5p_hash_final below.
1367 static int s5p_hash_handle_queue(struct s5p_aes_dev
*dd
,
1368 struct ahash_request
*req
)
1370 struct crypto_async_request
*async_req
, *backlog
;
1371 struct s5p_hash_reqctx
*ctx
;
1372 unsigned long flags
;
1373 int err
= 0, ret
= 0;
1376 spin_lock_irqsave(&dd
->hash_lock
, flags
);
1378 ret
= ahash_enqueue_request(&dd
->hash_queue
, req
);
1380 if (test_bit(HASH_FLAGS_BUSY
, &dd
->hash_flags
)) {
1381 spin_unlock_irqrestore(&dd
->hash_lock
, flags
);
1385 backlog
= crypto_get_backlog(&dd
->hash_queue
);
1386 async_req
= crypto_dequeue_request(&dd
->hash_queue
);
1388 set_bit(HASH_FLAGS_BUSY
, &dd
->hash_flags
);
1390 spin_unlock_irqrestore(&dd
->hash_lock
, flags
);
1396 crypto_request_complete(backlog
, -EINPROGRESS
);
1398 req
= ahash_request_cast(async_req
);
1400 ctx
= ahash_request_ctx(req
);
1402 err
= s5p_hash_prepare_request(req
, ctx
->op_update
);
1403 if (err
|| !ctx
->total
)
1406 dev_dbg(dd
->dev
, "handling new req, op_update: %u, nbytes: %d\n",
1407 ctx
->op_update
, req
->nbytes
);
1409 s5p_ahash_dma_init(dd
, SSS_HASHIN_INDEPENDENT
);
1411 s5p_hash_write_iv(req
); /* restore hash IV */
1413 if (ctx
->op_update
) { /* HASH_OP_UPDATE */
1414 err
= s5p_hash_xmit_dma(dd
, ctx
->total
, ctx
->finup
);
1415 if (err
!= -EINPROGRESS
&& ctx
->finup
&& !ctx
->error
)
1416 /* no final() after finup() */
1417 err
= s5p_hash_xmit_dma(dd
, ctx
->total
, true);
1418 } else { /* HASH_OP_FINAL */
1419 err
= s5p_hash_xmit_dma(dd
, ctx
->total
, true);
1422 if (err
!= -EINPROGRESS
) {
1423 /* hash_tasklet_cb will not finish it, so do it here */
1424 s5p_hash_finish_req(req
, err
);
1428 * Execute next request immediately if there is anything
1438 * s5p_hash_tasklet_cb() - hash tasklet
1439 * @data: ptr to s5p_aes_dev
1441 static void s5p_hash_tasklet_cb(unsigned long data
)
1443 struct s5p_aes_dev
*dd
= (struct s5p_aes_dev
*)data
;
1445 if (!test_bit(HASH_FLAGS_BUSY
, &dd
->hash_flags
)) {
1446 s5p_hash_handle_queue(dd
, NULL
);
1450 if (test_bit(HASH_FLAGS_DMA_READY
, &dd
->hash_flags
)) {
1451 if (test_and_clear_bit(HASH_FLAGS_DMA_ACTIVE
,
1453 s5p_hash_update_dma_stop(dd
);
1456 if (test_and_clear_bit(HASH_FLAGS_OUTPUT_READY
,
1458 /* hash or semi-hash ready */
1459 clear_bit(HASH_FLAGS_DMA_READY
, &dd
->hash_flags
);
1467 /* finish curent request */
1468 s5p_hash_finish_req(dd
->hash_req
, 0);
1470 /* If we are not busy, process next req */
1471 if (!test_bit(HASH_FLAGS_BUSY
, &dd
->hash_flags
))
1472 s5p_hash_handle_queue(dd
, NULL
);
1476 * s5p_hash_enqueue() - enqueue request
1477 * @req: AHASH request
1478 * @op: operation UPDATE (true) or FINAL (false)
1480 * Returns: see s5p_hash_final below.
1482 static int s5p_hash_enqueue(struct ahash_request
*req
, bool op
)
1484 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
1485 struct s5p_hash_ctx
*tctx
= crypto_tfm_ctx(req
->base
.tfm
);
1487 ctx
->op_update
= op
;
1489 return s5p_hash_handle_queue(tctx
->dd
, req
);
1493 * s5p_hash_update() - process the hash input data
1494 * @req: AHASH request
1496 * If request will fit in buffer, copy it and return immediately
1497 * else enqueue it with OP_UPDATE.
1499 * Returns: see s5p_hash_final below.
1501 static int s5p_hash_update(struct ahash_request
*req
)
1503 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
1508 if (ctx
->bufcnt
+ req
->nbytes
<= BUFLEN
) {
1509 scatterwalk_map_and_copy(ctx
->buffer
+ ctx
->bufcnt
, req
->src
,
1511 ctx
->bufcnt
+= req
->nbytes
;
1515 return s5p_hash_enqueue(req
, true); /* HASH_OP_UPDATE */
1519 * s5p_hash_final() - close up hash and calculate digest
1520 * @req: AHASH request
1522 * Note: in final req->src do not have any data, and req->nbytes can be
1525 * If there were no input data processed yet and the buffered hash data is
1526 * less than BUFLEN (64) then calculate the final hash immediately by using
1527 * SW algorithm fallback.
1529 * Otherwise enqueues the current AHASH request with OP_FINAL operation op
1530 * and finalize hash message in HW. Note that if digcnt!=0 then there were
1531 * previous update op, so there are always some buffered bytes in ctx->buffer,
1532 * which means that ctx->bufcnt!=0
1535 * 0 if the request has been processed immediately,
1536 * -EINPROGRESS if the operation has been queued for later execution or is set
1537 * to processing by HW,
1538 * -EBUSY if queue is full and request should be resubmitted later,
1539 * other negative values denotes an error.
1541 static int s5p_hash_final(struct ahash_request
*req
)
1543 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
1547 return -EINVAL
; /* uncompleted hash is not needed */
1549 if (!ctx
->digcnt
&& ctx
->bufcnt
< BUFLEN
) {
1550 struct s5p_hash_ctx
*tctx
= crypto_tfm_ctx(req
->base
.tfm
);
1552 return crypto_shash_tfm_digest(tctx
->fallback
, ctx
->buffer
,
1553 ctx
->bufcnt
, req
->result
);
1556 return s5p_hash_enqueue(req
, false); /* HASH_OP_FINAL */
1560 * s5p_hash_finup() - process last req->src and calculate digest
1561 * @req: AHASH request containing the last update data
1563 * Return values: see s5p_hash_final above.
1565 static int s5p_hash_finup(struct ahash_request
*req
)
1567 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
1572 err1
= s5p_hash_update(req
);
1573 if (err1
== -EINPROGRESS
|| err1
== -EBUSY
)
1577 * final() has to be always called to cleanup resources even if
1578 * update() failed, except EINPROGRESS or calculate digest for small
1581 err2
= s5p_hash_final(req
);
1583 return err1
?: err2
;
1587 * s5p_hash_init() - initialize AHASH request contex
1588 * @req: AHASH request
1590 * Init async hash request context.
1592 static int s5p_hash_init(struct ahash_request
*req
)
1594 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
1595 struct crypto_ahash
*tfm
= crypto_ahash_reqtfm(req
);
1596 struct s5p_hash_ctx
*tctx
= crypto_ahash_ctx(tfm
);
1606 dev_dbg(tctx
->dd
->dev
, "init: digest size: %d\n",
1607 crypto_ahash_digestsize(tfm
));
1609 switch (crypto_ahash_digestsize(tfm
)) {
1610 case MD5_DIGEST_SIZE
:
1611 ctx
->engine
= SSS_HASH_ENGINE_MD5
;
1612 ctx
->nregs
= HASH_MD5_MAX_REG
;
1614 case SHA1_DIGEST_SIZE
:
1615 ctx
->engine
= SSS_HASH_ENGINE_SHA1
;
1616 ctx
->nregs
= HASH_SHA1_MAX_REG
;
1618 case SHA256_DIGEST_SIZE
:
1619 ctx
->engine
= SSS_HASH_ENGINE_SHA256
;
1620 ctx
->nregs
= HASH_SHA256_MAX_REG
;
1631 * s5p_hash_digest - calculate digest from req->src
1632 * @req: AHASH request
1634 * Return values: see s5p_hash_final above.
1636 static int s5p_hash_digest(struct ahash_request
*req
)
1638 return s5p_hash_init(req
) ?: s5p_hash_finup(req
);
1642 * s5p_hash_cra_init_alg - init crypto alg transformation
1643 * @tfm: crypto transformation
1645 static int s5p_hash_cra_init_alg(struct crypto_tfm
*tfm
)
1647 struct s5p_hash_ctx
*tctx
= crypto_tfm_ctx(tfm
);
1648 const char *alg_name
= crypto_tfm_alg_name(tfm
);
1651 /* Allocate a fallback and abort if it failed. */
1652 tctx
->fallback
= crypto_alloc_shash(alg_name
, 0,
1653 CRYPTO_ALG_NEED_FALLBACK
);
1654 if (IS_ERR(tctx
->fallback
)) {
1655 pr_err("fallback alloc fails for '%s'\n", alg_name
);
1656 return PTR_ERR(tctx
->fallback
);
1659 crypto_ahash_set_reqsize(__crypto_ahash_cast(tfm
),
1660 sizeof(struct s5p_hash_reqctx
) + BUFLEN
);
1666 * s5p_hash_cra_init - init crypto tfm
1667 * @tfm: crypto transformation
1669 static int s5p_hash_cra_init(struct crypto_tfm
*tfm
)
1671 return s5p_hash_cra_init_alg(tfm
);
1675 * s5p_hash_cra_exit - exit crypto tfm
1676 * @tfm: crypto transformation
1678 * free allocated fallback
1680 static void s5p_hash_cra_exit(struct crypto_tfm
*tfm
)
1682 struct s5p_hash_ctx
*tctx
= crypto_tfm_ctx(tfm
);
1684 crypto_free_shash(tctx
->fallback
);
1685 tctx
->fallback
= NULL
;
1689 * s5p_hash_export - export hash state
1690 * @req: AHASH request
1691 * @out: buffer for exported state
1693 static int s5p_hash_export(struct ahash_request
*req
, void *out
)
1695 const struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
1697 memcpy(out
, ctx
, sizeof(*ctx
) + ctx
->bufcnt
);
1703 * s5p_hash_import - import hash state
1704 * @req: AHASH request
1705 * @in: buffer with state to be imported from
1707 static int s5p_hash_import(struct ahash_request
*req
, const void *in
)
1709 struct s5p_hash_reqctx
*ctx
= ahash_request_ctx(req
);
1710 struct crypto_ahash
*tfm
= crypto_ahash_reqtfm(req
);
1711 struct s5p_hash_ctx
*tctx
= crypto_ahash_ctx(tfm
);
1712 const struct s5p_hash_reqctx
*ctx_in
= in
;
1714 memcpy(ctx
, in
, sizeof(*ctx
) + BUFLEN
);
1715 if (ctx_in
->bufcnt
> BUFLEN
) {
1726 static struct ahash_alg algs_sha1_md5_sha256
[] = {
1728 .init
= s5p_hash_init
,
1729 .update
= s5p_hash_update
,
1730 .final
= s5p_hash_final
,
1731 .finup
= s5p_hash_finup
,
1732 .digest
= s5p_hash_digest
,
1733 .export
= s5p_hash_export
,
1734 .import
= s5p_hash_import
,
1735 .halg
.statesize
= sizeof(struct s5p_hash_reqctx
) + BUFLEN
,
1736 .halg
.digestsize
= SHA1_DIGEST_SIZE
,
1739 .cra_driver_name
= "exynos-sha1",
1740 .cra_priority
= 100,
1741 .cra_flags
= CRYPTO_ALG_KERN_DRIVER_ONLY
|
1743 CRYPTO_ALG_NEED_FALLBACK
,
1744 .cra_blocksize
= HASH_BLOCK_SIZE
,
1745 .cra_ctxsize
= sizeof(struct s5p_hash_ctx
),
1746 .cra_module
= THIS_MODULE
,
1747 .cra_init
= s5p_hash_cra_init
,
1748 .cra_exit
= s5p_hash_cra_exit
,
1752 .init
= s5p_hash_init
,
1753 .update
= s5p_hash_update
,
1754 .final
= s5p_hash_final
,
1755 .finup
= s5p_hash_finup
,
1756 .digest
= s5p_hash_digest
,
1757 .export
= s5p_hash_export
,
1758 .import
= s5p_hash_import
,
1759 .halg
.statesize
= sizeof(struct s5p_hash_reqctx
) + BUFLEN
,
1760 .halg
.digestsize
= MD5_DIGEST_SIZE
,
1763 .cra_driver_name
= "exynos-md5",
1764 .cra_priority
= 100,
1765 .cra_flags
= CRYPTO_ALG_KERN_DRIVER_ONLY
|
1767 CRYPTO_ALG_NEED_FALLBACK
,
1768 .cra_blocksize
= HASH_BLOCK_SIZE
,
1769 .cra_ctxsize
= sizeof(struct s5p_hash_ctx
),
1770 .cra_module
= THIS_MODULE
,
1771 .cra_init
= s5p_hash_cra_init
,
1772 .cra_exit
= s5p_hash_cra_exit
,
1776 .init
= s5p_hash_init
,
1777 .update
= s5p_hash_update
,
1778 .final
= s5p_hash_final
,
1779 .finup
= s5p_hash_finup
,
1780 .digest
= s5p_hash_digest
,
1781 .export
= s5p_hash_export
,
1782 .import
= s5p_hash_import
,
1783 .halg
.statesize
= sizeof(struct s5p_hash_reqctx
) + BUFLEN
,
1784 .halg
.digestsize
= SHA256_DIGEST_SIZE
,
1786 .cra_name
= "sha256",
1787 .cra_driver_name
= "exynos-sha256",
1788 .cra_priority
= 100,
1789 .cra_flags
= CRYPTO_ALG_KERN_DRIVER_ONLY
|
1791 CRYPTO_ALG_NEED_FALLBACK
,
1792 .cra_blocksize
= HASH_BLOCK_SIZE
,
1793 .cra_ctxsize
= sizeof(struct s5p_hash_ctx
),
1794 .cra_module
= THIS_MODULE
,
1795 .cra_init
= s5p_hash_cra_init
,
1796 .cra_exit
= s5p_hash_cra_exit
,
1802 static void s5p_set_aes(struct s5p_aes_dev
*dev
,
1803 const u8
*key
, const u8
*iv
, const u8
*ctr
,
1804 unsigned int keylen
)
1806 void __iomem
*keystart
;
1809 memcpy_toio(dev
->aes_ioaddr
+ SSS_REG_AES_IV_DATA(0), iv
,
1813 memcpy_toio(dev
->aes_ioaddr
+ SSS_REG_AES_CNT_DATA(0), ctr
,
1816 if (keylen
== AES_KEYSIZE_256
)
1817 keystart
= dev
->aes_ioaddr
+ SSS_REG_AES_KEY_DATA(0);
1818 else if (keylen
== AES_KEYSIZE_192
)
1819 keystart
= dev
->aes_ioaddr
+ SSS_REG_AES_KEY_DATA(2);
1821 keystart
= dev
->aes_ioaddr
+ SSS_REG_AES_KEY_DATA(4);
1823 memcpy_toio(keystart
, key
, keylen
);
1826 static bool s5p_is_sg_aligned(struct scatterlist
*sg
)
1829 if (!IS_ALIGNED(sg
->length
, AES_BLOCK_SIZE
))
1837 static int s5p_set_indata_start(struct s5p_aes_dev
*dev
,
1838 struct skcipher_request
*req
)
1840 struct scatterlist
*sg
;
1843 dev
->sg_src_cpy
= NULL
;
1845 if (!s5p_is_sg_aligned(sg
)) {
1847 "At least one unaligned source scatter list, making a copy\n");
1848 err
= s5p_make_sg_cpy(dev
, sg
, &dev
->sg_src_cpy
);
1852 sg
= dev
->sg_src_cpy
;
1855 err
= s5p_set_indata(dev
, sg
);
1857 s5p_free_sg_cpy(dev
, &dev
->sg_src_cpy
);
1864 static int s5p_set_outdata_start(struct s5p_aes_dev
*dev
,
1865 struct skcipher_request
*req
)
1867 struct scatterlist
*sg
;
1870 dev
->sg_dst_cpy
= NULL
;
1872 if (!s5p_is_sg_aligned(sg
)) {
1874 "At least one unaligned dest scatter list, making a copy\n");
1875 err
= s5p_make_sg_cpy(dev
, sg
, &dev
->sg_dst_cpy
);
1879 sg
= dev
->sg_dst_cpy
;
1882 err
= s5p_set_outdata(dev
, sg
);
1884 s5p_free_sg_cpy(dev
, &dev
->sg_dst_cpy
);
1891 static void s5p_aes_crypt_start(struct s5p_aes_dev
*dev
, unsigned long mode
)
1893 struct skcipher_request
*req
= dev
->req
;
1895 unsigned long flags
;
1899 /* This sets bit [13:12] to 00, which selects 128-bit counter */
1900 aes_control
= SSS_AES_KEY_CHANGE_MODE
;
1901 if (mode
& FLAGS_AES_DECRYPT
)
1902 aes_control
|= SSS_AES_MODE_DECRYPT
;
1904 if ((mode
& FLAGS_AES_MODE_MASK
) == FLAGS_AES_CBC
) {
1905 aes_control
|= SSS_AES_CHAIN_MODE_CBC
;
1908 } else if ((mode
& FLAGS_AES_MODE_MASK
) == FLAGS_AES_CTR
) {
1909 aes_control
|= SSS_AES_CHAIN_MODE_CTR
;
1913 iv
= NULL
; /* AES_ECB */
1917 if (dev
->ctx
->keylen
== AES_KEYSIZE_192
)
1918 aes_control
|= SSS_AES_KEY_SIZE_192
;
1919 else if (dev
->ctx
->keylen
== AES_KEYSIZE_256
)
1920 aes_control
|= SSS_AES_KEY_SIZE_256
;
1922 aes_control
|= SSS_AES_FIFO_MODE
;
1924 /* as a variant it is possible to use byte swapping on DMA side */
1925 aes_control
|= SSS_AES_BYTESWAP_DI
1926 | SSS_AES_BYTESWAP_DO
1927 | SSS_AES_BYTESWAP_IV
1928 | SSS_AES_BYTESWAP_KEY
1929 | SSS_AES_BYTESWAP_CNT
;
1931 spin_lock_irqsave(&dev
->lock
, flags
);
1933 SSS_WRITE(dev
, FCINTENCLR
,
1934 SSS_FCINTENCLR_BTDMAINTENCLR
| SSS_FCINTENCLR_BRDMAINTENCLR
);
1935 SSS_WRITE(dev
, FCFIFOCTRL
, 0x00);
1937 err
= s5p_set_indata_start(dev
, req
);
1941 err
= s5p_set_outdata_start(dev
, req
);
1945 SSS_AES_WRITE(dev
, AES_CONTROL
, aes_control
);
1946 s5p_set_aes(dev
, dev
->ctx
->aes_key
, iv
, ctr
, dev
->ctx
->keylen
);
1948 s5p_set_dma_indata(dev
, dev
->sg_src
);
1949 s5p_set_dma_outdata(dev
, dev
->sg_dst
);
1951 SSS_WRITE(dev
, FCINTENSET
,
1952 SSS_FCINTENSET_BTDMAINTENSET
| SSS_FCINTENSET_BRDMAINTENSET
);
1954 spin_unlock_irqrestore(&dev
->lock
, flags
);
1959 s5p_unset_indata(dev
);
1964 spin_unlock_irqrestore(&dev
->lock
, flags
);
1965 s5p_aes_complete(req
, err
);
1968 static void s5p_tasklet_cb(unsigned long data
)
1970 struct s5p_aes_dev
*dev
= (struct s5p_aes_dev
*)data
;
1971 struct crypto_async_request
*async_req
, *backlog
;
1972 struct s5p_aes_reqctx
*reqctx
;
1973 unsigned long flags
;
1975 spin_lock_irqsave(&dev
->lock
, flags
);
1976 backlog
= crypto_get_backlog(&dev
->queue
);
1977 async_req
= crypto_dequeue_request(&dev
->queue
);
1981 spin_unlock_irqrestore(&dev
->lock
, flags
);
1984 spin_unlock_irqrestore(&dev
->lock
, flags
);
1987 crypto_request_complete(backlog
, -EINPROGRESS
);
1989 dev
->req
= skcipher_request_cast(async_req
);
1990 dev
->ctx
= crypto_tfm_ctx(dev
->req
->base
.tfm
);
1991 reqctx
= skcipher_request_ctx(dev
->req
);
1993 s5p_aes_crypt_start(dev
, reqctx
->mode
);
1996 static int s5p_aes_handle_req(struct s5p_aes_dev
*dev
,
1997 struct skcipher_request
*req
)
1999 unsigned long flags
;
2002 spin_lock_irqsave(&dev
->lock
, flags
);
2003 err
= crypto_enqueue_request(&dev
->queue
, &req
->base
);
2005 spin_unlock_irqrestore(&dev
->lock
, flags
);
2010 spin_unlock_irqrestore(&dev
->lock
, flags
);
2012 tasklet_schedule(&dev
->tasklet
);
2017 static int s5p_aes_crypt(struct skcipher_request
*req
, unsigned long mode
)
2019 struct crypto_skcipher
*tfm
= crypto_skcipher_reqtfm(req
);
2020 struct s5p_aes_reqctx
*reqctx
= skcipher_request_ctx(req
);
2021 struct s5p_aes_ctx
*ctx
= crypto_skcipher_ctx(tfm
);
2022 struct s5p_aes_dev
*dev
= ctx
->dev
;
2027 if (!IS_ALIGNED(req
->cryptlen
, AES_BLOCK_SIZE
) &&
2028 ((mode
& FLAGS_AES_MODE_MASK
) != FLAGS_AES_CTR
)) {
2029 dev_dbg(dev
->dev
, "request size is not exact amount of AES blocks\n");
2033 reqctx
->mode
= mode
;
2035 return s5p_aes_handle_req(dev
, req
);
2038 static int s5p_aes_setkey(struct crypto_skcipher
*cipher
,
2039 const u8
*key
, unsigned int keylen
)
2041 struct crypto_tfm
*tfm
= crypto_skcipher_tfm(cipher
);
2042 struct s5p_aes_ctx
*ctx
= crypto_tfm_ctx(tfm
);
2044 if (keylen
!= AES_KEYSIZE_128
&&
2045 keylen
!= AES_KEYSIZE_192
&&
2046 keylen
!= AES_KEYSIZE_256
)
2049 memcpy(ctx
->aes_key
, key
, keylen
);
2050 ctx
->keylen
= keylen
;
2055 static int s5p_aes_ecb_encrypt(struct skcipher_request
*req
)
2057 return s5p_aes_crypt(req
, 0);
2060 static int s5p_aes_ecb_decrypt(struct skcipher_request
*req
)
2062 return s5p_aes_crypt(req
, FLAGS_AES_DECRYPT
);
2065 static int s5p_aes_cbc_encrypt(struct skcipher_request
*req
)
2067 return s5p_aes_crypt(req
, FLAGS_AES_CBC
);
2070 static int s5p_aes_cbc_decrypt(struct skcipher_request
*req
)
2072 return s5p_aes_crypt(req
, FLAGS_AES_DECRYPT
| FLAGS_AES_CBC
);
2075 static int s5p_aes_ctr_crypt(struct skcipher_request
*req
)
2077 return s5p_aes_crypt(req
, FLAGS_AES_CTR
);
2080 static int s5p_aes_init_tfm(struct crypto_skcipher
*tfm
)
2082 struct s5p_aes_ctx
*ctx
= crypto_skcipher_ctx(tfm
);
2085 crypto_skcipher_set_reqsize(tfm
, sizeof(struct s5p_aes_reqctx
));
2090 static struct skcipher_alg algs
[] = {
2092 .base
.cra_name
= "ecb(aes)",
2093 .base
.cra_driver_name
= "ecb-aes-s5p",
2094 .base
.cra_priority
= 100,
2095 .base
.cra_flags
= CRYPTO_ALG_ASYNC
|
2096 CRYPTO_ALG_KERN_DRIVER_ONLY
,
2097 .base
.cra_blocksize
= AES_BLOCK_SIZE
,
2098 .base
.cra_ctxsize
= sizeof(struct s5p_aes_ctx
),
2099 .base
.cra_alignmask
= 0x0f,
2100 .base
.cra_module
= THIS_MODULE
,
2102 .min_keysize
= AES_MIN_KEY_SIZE
,
2103 .max_keysize
= AES_MAX_KEY_SIZE
,
2104 .setkey
= s5p_aes_setkey
,
2105 .encrypt
= s5p_aes_ecb_encrypt
,
2106 .decrypt
= s5p_aes_ecb_decrypt
,
2107 .init
= s5p_aes_init_tfm
,
2110 .base
.cra_name
= "cbc(aes)",
2111 .base
.cra_driver_name
= "cbc-aes-s5p",
2112 .base
.cra_priority
= 100,
2113 .base
.cra_flags
= CRYPTO_ALG_ASYNC
|
2114 CRYPTO_ALG_KERN_DRIVER_ONLY
,
2115 .base
.cra_blocksize
= AES_BLOCK_SIZE
,
2116 .base
.cra_ctxsize
= sizeof(struct s5p_aes_ctx
),
2117 .base
.cra_alignmask
= 0x0f,
2118 .base
.cra_module
= THIS_MODULE
,
2120 .min_keysize
= AES_MIN_KEY_SIZE
,
2121 .max_keysize
= AES_MAX_KEY_SIZE
,
2122 .ivsize
= AES_BLOCK_SIZE
,
2123 .setkey
= s5p_aes_setkey
,
2124 .encrypt
= s5p_aes_cbc_encrypt
,
2125 .decrypt
= s5p_aes_cbc_decrypt
,
2126 .init
= s5p_aes_init_tfm
,
2129 .base
.cra_name
= "ctr(aes)",
2130 .base
.cra_driver_name
= "ctr-aes-s5p",
2131 .base
.cra_priority
= 100,
2132 .base
.cra_flags
= CRYPTO_ALG_ASYNC
|
2133 CRYPTO_ALG_KERN_DRIVER_ONLY
,
2134 .base
.cra_blocksize
= 1,
2135 .base
.cra_ctxsize
= sizeof(struct s5p_aes_ctx
),
2136 .base
.cra_alignmask
= 0x0f,
2137 .base
.cra_module
= THIS_MODULE
,
2139 .min_keysize
= AES_MIN_KEY_SIZE
,
2140 .max_keysize
= AES_MAX_KEY_SIZE
,
2141 .ivsize
= AES_BLOCK_SIZE
,
2142 .setkey
= s5p_aes_setkey
,
2143 .encrypt
= s5p_aes_ctr_crypt
,
2144 .decrypt
= s5p_aes_ctr_crypt
,
2145 .init
= s5p_aes_init_tfm
,
2149 static int s5p_aes_probe(struct platform_device
*pdev
)
2151 struct device
*dev
= &pdev
->dev
;
2153 const struct samsung_aes_variant
*variant
;
2154 struct s5p_aes_dev
*pdata
;
2155 struct resource
*res
;
2156 unsigned int hash_i
;
2161 pdata
= devm_kzalloc(dev
, sizeof(*pdata
), GFP_KERNEL
);
2165 variant
= find_s5p_sss_version(pdev
);
2166 res
= platform_get_resource(pdev
, IORESOURCE_MEM
, 0);
2171 * Note: HASH and PRNG uses the same registers in secss, avoid
2172 * overwrite each other. This will drop HASH when CONFIG_EXYNOS_RNG
2173 * is enabled in config. We need larger size for HASH registers in
2174 * secss, current describe only AES/DES
2176 if (IS_ENABLED(CONFIG_CRYPTO_DEV_EXYNOS_HASH
)) {
2177 if (variant
== &exynos_aes_data
) {
2179 pdata
->use_hash
= true;
2184 pdata
->ioaddr
= devm_ioremap_resource(dev
, res
);
2185 if (IS_ERR(pdata
->ioaddr
)) {
2186 if (!pdata
->use_hash
)
2187 return PTR_ERR(pdata
->ioaddr
);
2188 /* try AES without HASH */
2190 pdata
->use_hash
= false;
2191 pdata
->ioaddr
= devm_ioremap_resource(dev
, res
);
2192 if (IS_ERR(pdata
->ioaddr
))
2193 return PTR_ERR(pdata
->ioaddr
);
2196 pdata
->clk
= devm_clk_get(dev
, variant
->clk_names
[0]);
2197 if (IS_ERR(pdata
->clk
))
2198 return dev_err_probe(dev
, PTR_ERR(pdata
->clk
),
2199 "failed to find secss clock %s\n",
2200 variant
->clk_names
[0]);
2202 err
= clk_prepare_enable(pdata
->clk
);
2204 dev_err(dev
, "Enabling clock %s failed, err %d\n",
2205 variant
->clk_names
[0], err
);
2209 if (variant
->clk_names
[1]) {
2210 pdata
->pclk
= devm_clk_get(dev
, variant
->clk_names
[1]);
2211 if (IS_ERR(pdata
->pclk
)) {
2212 err
= dev_err_probe(dev
, PTR_ERR(pdata
->pclk
),
2213 "failed to find clock %s\n",
2214 variant
->clk_names
[1]);
2218 err
= clk_prepare_enable(pdata
->pclk
);
2220 dev_err(dev
, "Enabling clock %s failed, err %d\n",
2221 variant
->clk_names
[0], err
);
2228 spin_lock_init(&pdata
->lock
);
2229 spin_lock_init(&pdata
->hash_lock
);
2231 pdata
->aes_ioaddr
= pdata
->ioaddr
+ variant
->aes_offset
;
2232 pdata
->io_hash_base
= pdata
->ioaddr
+ variant
->hash_offset
;
2234 pdata
->irq_fc
= platform_get_irq(pdev
, 0);
2235 if (pdata
->irq_fc
< 0) {
2236 err
= pdata
->irq_fc
;
2237 dev_warn(dev
, "feed control interrupt is not available.\n");
2240 err
= devm_request_threaded_irq(dev
, pdata
->irq_fc
, NULL
,
2241 s5p_aes_interrupt
, IRQF_ONESHOT
,
2244 dev_warn(dev
, "feed control interrupt is not available.\n");
2248 pdata
->busy
= false;
2250 platform_set_drvdata(pdev
, pdata
);
2253 tasklet_init(&pdata
->tasklet
, s5p_tasklet_cb
, (unsigned long)pdata
);
2254 crypto_init_queue(&pdata
->queue
, CRYPTO_QUEUE_LEN
);
2256 for (i
= 0; i
< ARRAY_SIZE(algs
); i
++) {
2257 err
= crypto_register_skcipher(&algs
[i
]);
2262 if (pdata
->use_hash
) {
2263 tasklet_init(&pdata
->hash_tasklet
, s5p_hash_tasklet_cb
,
2264 (unsigned long)pdata
);
2265 crypto_init_queue(&pdata
->hash_queue
, SSS_HASH_QUEUE_LENGTH
);
2267 for (hash_i
= 0; hash_i
< ARRAY_SIZE(algs_sha1_md5_sha256
);
2269 struct ahash_alg
*alg
;
2271 alg
= &algs_sha1_md5_sha256
[hash_i
];
2272 err
= crypto_register_ahash(alg
);
2274 dev_err(dev
, "can't register '%s': %d\n",
2275 alg
->halg
.base
.cra_driver_name
, err
);
2281 dev_info(dev
, "s5p-sss driver registered\n");
2286 for (j
= hash_i
- 1; j
>= 0; j
--)
2287 crypto_unregister_ahash(&algs_sha1_md5_sha256
[j
]);
2289 tasklet_kill(&pdata
->hash_tasklet
);
2293 if (i
< ARRAY_SIZE(algs
))
2294 dev_err(dev
, "can't register '%s': %d\n", algs
[i
].base
.cra_name
,
2297 for (j
= 0; j
< i
; j
++)
2298 crypto_unregister_skcipher(&algs
[j
]);
2300 tasklet_kill(&pdata
->tasklet
);
2303 clk_disable_unprepare(pdata
->pclk
);
2306 clk_disable_unprepare(pdata
->clk
);
2312 static void s5p_aes_remove(struct platform_device
*pdev
)
2314 struct s5p_aes_dev
*pdata
= platform_get_drvdata(pdev
);
2317 for (i
= 0; i
< ARRAY_SIZE(algs
); i
++)
2318 crypto_unregister_skcipher(&algs
[i
]);
2320 tasklet_kill(&pdata
->tasklet
);
2321 if (pdata
->use_hash
) {
2322 for (i
= ARRAY_SIZE(algs_sha1_md5_sha256
) - 1; i
>= 0; i
--)
2323 crypto_unregister_ahash(&algs_sha1_md5_sha256
[i
]);
2325 pdata
->res
->end
-= 0x300;
2326 tasklet_kill(&pdata
->hash_tasklet
);
2327 pdata
->use_hash
= false;
2330 clk_disable_unprepare(pdata
->pclk
);
2332 clk_disable_unprepare(pdata
->clk
);
2336 static struct platform_driver s5p_aes_crypto
= {
2337 .probe
= s5p_aes_probe
,
2338 .remove
= s5p_aes_remove
,
2340 .name
= "s5p-secss",
2341 .of_match_table
= s5p_sss_dt_match
,
2345 module_platform_driver(s5p_aes_crypto
);
2347 MODULE_DESCRIPTION("S5PV210 AES hw acceleration support.");
2348 MODULE_LICENSE("GPL v2");
2349 MODULE_AUTHOR("Vladimir Zapolskiy <vzapolskiy@gmail.com>");
2350 MODULE_AUTHOR("Kamil Konieczny <k.konieczny@partner.samsung.com>");