diff options
author | Franck LENORMAND <franck.lenormand@nxp.com> | 2020-08-10 12:07:47 +0200 |
---|---|---|
committer | Franck LENORMAND <franck.lenormand@nxp.com> | 2020-08-13 15:13:56 +0200 |
commit | 7ad9e7ab4cc7ede448bffd37ecd6ec69002e17e3 (patch) | |
tree | 74eddbb15b627a3e6751ad7fc5f8a9b0bce90e0f /plat/imx/imx8m/imx8mp/gpc.c | |
parent | fac431ed6755c1b66511838e350a987b2ddcb9fb (diff) |
MLK-24474: Add SIP call to enable FIPS mode
The configuration of the FIPS alter the SoC which is configured
and cannot be reverted so the support SHALL NOT be in
customer binary as it could lead to DoS of the SECO.
We add a SIP service to configure the FIPS mode. It is added
to the ATF because it is the only component with the required
permissions to successfully perform the call.
This service currently only allow to set the FIPS mode with
a value but can be extended.
IT can be called from other components like uboot or the OS.
The support is added only if the bl31 is compiled with
FIPS_CONFIG defined which happens when FIPS_CONFIG=on is passed
as option to Makefile.
Signed-off-by: Franck LENORMAND <franck.lenormand@nxp.com>
Acked-by: Anson Huang <anson.huang@nxp.com>
Acked-by: Ye Li <ye.li@nxp.com>
Diffstat (limited to 'plat/imx/imx8m/imx8mp/gpc.c')
0 files changed, 0 insertions, 0 deletions