1#
2# Copyright (c) 2018-2023, Arm Limited and Contributors. All rights reserved.
3#
4# SPDX-License-Identifier: BSD-3-Clause
5#
6
7# Architecture
8$(eval $(call add_define,ARMV7_SUPPORTS_LARGE_PAGE_ADDRESSING))
9
10TF_CFLAGS	+=	-mfpu=neon
11ASFLAGS		+=	-mfpu=neon
12
13# Platform
14PLAT_INCLUDES		:=	-Idrivers/imx/uart			\
15				-Iplat/imx/common/include		\
16				-Iplat/imx/imx7/include			\
17				-Idrivers/imx/timer			\
18				-Idrivers/imx/usdhc			\
19				-Iinclude/common/tbbr
20
21# Translation tables library
22include lib/xlat_tables_v2/xlat_tables.mk
23
24BL2_SOURCES		+=	common/desc_image_load.c			\
25				drivers/delay_timer/delay_timer.c		\
26				drivers/mmc/mmc.c				\
27				drivers/io/io_block.c				\
28				drivers/io/io_fip.c				\
29				drivers/io/io_memmap.c				\
30				drivers/io/io_storage.c				\
31				drivers/imx/timer/imx_gpt.c			\
32				drivers/imx/uart/imx_uart.c			\
33				drivers/imx/uart/imx_crash_uart.S		\
34				lib/aarch32/arm32_aeabi_divmod.c		\
35				lib/aarch32/arm32_aeabi_divmod_a32.S		\
36				lib/cpus/aarch32/cortex_a7.S			\
37				lib/optee/optee_utils.c				\
38				plat/imx/common/imx_aips.c			\
39				plat/imx/common/imx_caam.c			\
40				plat/imx/common/imx_clock.c			\
41				plat/imx/common/imx_csu.c			\
42				plat/imx/common/imx_io_mux.c			\
43				plat/imx/common/imx_snvs.c			\
44				plat/imx/common/imx_wdog.c			\
45				plat/imx/common/imx7_clock.c			\
46				plat/imx/imx7/common/imx7_bl2_mem_params_desc.c	\
47				plat/imx/imx7/common/imx7_bl2_el3_common.c	\
48				plat/imx/imx7/common/imx7_helpers.S		\
49				plat/imx/imx7/common/imx7_image_load.c		\
50				plat/imx/common/imx_io_storage.c		\
51				plat/imx/common/aarch32/imx_uart_console.S	\
52				${XLAT_TABLES_LIB_SRCS}
53
54ifneq (${TRUSTED_BOARD_BOOT},0)
55
56include drivers/auth/mbedtls/mbedtls_crypto.mk
57include drivers/auth/mbedtls/mbedtls_x509.mk
58
59AUTH_SOURCES	:=	drivers/auth/auth_mod.c			\
60			drivers/auth/crypto_mod.c		\
61			drivers/auth/img_parser_mod.c		\
62			drivers/auth/tbbr/tbbr_cot_common.c
63
64BL2_SOURCES		+=	${AUTH_SOURCES}					\
65				plat/common/tbbr/plat_tbbr.c			\
66				plat/imx/imx7/common/imx7_trusted_boot.c	\
67				plat/imx/imx7/common/imx7_rotpk.S		\
68				drivers/auth/tbbr/tbbr_cot_bl2.c
69
70ROT_KEY             = $(BUILD_PLAT)/rot_key.pem
71ROTPK_HASH          = $(BUILD_PLAT)/rotpk_sha256.bin
72
73$(eval $(call add_define_val,ROTPK_HASH,'"$(ROTPK_HASH)"'))
74$(eval $(call MAKE_LIB_DIRS))
75
76$(BUILD_PLAT)/bl2/imx7_rotpk.o: $(ROTPK_HASH)
77
78certificates: $(ROT_KEY)
79
80$(ROT_KEY): | $(BUILD_PLAT)
81	@echo "  OPENSSL $@"
82	@if [ ! -f $(ROT_KEY) ]; then \
83		${OPENSSL_BIN_PATH}/openssl genrsa 2048 > $@ 2>/dev/null; \
84	fi
85
86$(ROTPK_HASH): $(ROT_KEY)
87	@echo "  OPENSSL $@"
88	$(Q)${OPENSSL_BIN_PATH}/openssl rsa -in $< -pubout -outform DER 2>/dev/null |\
89	${OPENSSL_BIN_PATH}/openssl dgst -sha256 -binary > $@ 2>/dev/null
90endif
91
92# Add the build options to pack BLx images and kernel device tree
93# in the FIP if the platform requires.
94ifneq ($(BL2),)
95$(eval $(call TOOL_ADD_PAYLOAD,${BUILD_PLAT}/tb_fw.crt,--tb-fw-cert))
96endif
97ifneq ($(BL32_EXTRA1),)
98$(eval $(call TOOL_ADD_IMG,BL32_EXTRA1,--tos-fw-extra1))
99endif
100ifneq ($(BL32_EXTRA2),)
101$(eval $(call TOOL_ADD_IMG,BL32_EXTRA2,--tos-fw-extra2))
102endif
103ifneq ($(HW_CONFIG),)
104$(eval $(call TOOL_ADD_IMG,HW_CONFIG,--hw-config))
105endif
106
107# Verify build config
108# -------------------
109
110ifeq (${ARCH},aarch64)
111  $(error Error: AArch64 not supported on i.mx7)
112endif
113
114ifeq (${AARCH32_SP}, none)
115    $(error Variable AARCH32_SP has to be set for AArch32)
116endif
117