/* * Copyright 2017 The Chromium OS Authors. All rights reserved. * Use of this source code is governed by a BSD-style license that can be * found in the LICENSE file. */ #include "common.h" #include "console.h" #include "tpm_nvmem_ops.h" /* These come from the tpm2 tree. */ #include "Global.h" #include "Implementation.h" #include "NV_fp.h" #include "tpm_types.h" #define CPRINTF(format, args...) cprintf(CC_TASK, format, ## args) enum tpm_read_rv read_tpm_nvmem(uint16_t obj_index, uint16_t obj_size, void *obj_value) { TPM_HANDLE object_handle; NV_INDEX nvIndex; uint32_t handle_addr; object_handle = HR_NV_INDEX + obj_index; handle_addr = NvEarlyStageFindHandle(object_handle); if (!handle_addr) { CPRINTF("%s: object at 0x%x not found\n", __func__, obj_index); return TPM_READ_NOT_FOUND; } /* Get properties of this index as stored in nvmem. */ NvReadIndexInfo(object_handle, handle_addr, &nvIndex); /* * We presume it is readable and are not checking the access * limitations. */ /* * Does the caller ask for too much? Note that we always read from the * beginning of the space, unlike the actual TPM2_NV_Read command * which can start at an offset. */ if (obj_size > nvIndex.publicArea.dataSize) { CPRINTF("%s: object at 0x%x is smaller than %d\n", __func__, obj_index, obj_size); return TPM_READ_TOO_SMALL; } /* Perform the read. */ NvReadIndexData(object_handle, &nvIndex, handle_addr, 0, obj_size, obj_value); return TPM_READ_SUCCESS; } enum tpm_read_rv read_tpm_nvmem_hidden(uint16_t object_index, uint16_t object_size, void *obj_value) { if (NvGetHiddenObject(HR_HIDDEN | object_index, object_size, obj_value) == TPM_RC_SUCCESS) { return TPM_READ_SUCCESS; } else { return TPM_READ_NOT_FOUND; } } enum tpm_write_rv write_tpm_nvmem_hidden(uint16_t object_index, uint16_t object_size, void *obj_value, int commit) { enum tpm_write_rv ret = TPM_WRITE_FAIL; uint32_t handle = object_index | HR_HIDDEN; if (!NvIsDefinedHiddenObject(handle) && NvAddHiddenObject(handle, object_size, obj_value) == TPM_RC_SUCCESS) { ret = TPM_WRITE_CREATED; } else if (NvWriteHiddenObject(handle, object_size, obj_value) == TPM_RC_SUCCESS) { ret = TPM_WRITE_UPDATED; } if (commit && !NvCommit()) ret = TPM_WRITE_FAIL; return ret; }