Received: by 2002:a05:6a10:8c0a:0:0:0:0 with SMTP id go10csp3885843pxb; Mon, 1 Feb 2021 07:10:50 -0800 (PST) X-Google-Smtp-Source: ABdhPJxdjqxACDEW7qzc586xe9JugX8uJtuFF48LNM2pX6Bo+vHvkN6+cQz4fTCJ1hqj0JGF8moq X-Received: by 2002:a17:906:b055:: with SMTP id bj21mr18718237ejb.355.1612192250614; Mon, 01 Feb 2021 07:10:50 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1612192250; cv=none; d=google.com; s=arc-20160816; b=Y+MYx4BJAvPNfnOjb6ndB0T5AdhGJlF24Gta5uJABNXEjbphOiUu9tquQPYjg1fSZG S6PB+/inWqcv0sA2X5cBfLvHKsThgtH5Jp+jjlVNUBEXLl21X/8RmbSgBz4FEiug/gpZ cd0V1Bk82Oe+2B1dIhVOiYRjM7FkCzjg/2xb3WVfQbk/0oLkYxU9wR2+kG1DBHktOs3y KZy1R1mTFppjch4016y6Hu72dh8lWx+CUn5S5TmxA9rZl7VKtFhdtGLogv7MJUhMhSyj IaHx5CEpQ2mD4BUlIK52tAoLrs0+locv1FLrxb7wMXOX2j4yxItV0Ff+iDcZxjA2EeBd AmWQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:references:in-reply-to:message-id:date:subject :cc:to:from:ironport-sdr:ironport-sdr; bh=Tp+SfE309TfNxNQlbxYN5/GRQyx1aOed2kve4VtVgVY=; b=ESZQkOF66AZRoHoRoFcjrlVN7107L83JFABpnNx1Q09A7dWVi5FEwkQMZBTjC6PSHE w/AgRYosbsNpn0yPxj4NJ+gJu9XPS7rXkiilfayncz+By/tiBqCSJWT0R1wjpkwM3BIC oVjUJtPO6cF6rnrmugnGM42U4AANLgswsvNAc9RH4GIxUgCAxTGtMP2lZbg401UBc2h0 7JC6E0Mk3I8CkQMEW4GogQgYFbJV7eCK1Kkit293dLOqHSBUF5R+XKghPhcGvFfaPo+e oKv4O8IyLFK58T4og0nyQSyoUCT0t9wPjjdi7v3WwTMnb1TqtxPrgB0SScIzbeNBIWLO IV0w== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=intel.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id p31si11291258edd.505.2021.02.01.07.10.24; Mon, 01 Feb 2021 07:10:50 -0800 (PST) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=intel.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S231336AbhBAPHq (ORCPT + 99 others); Mon, 1 Feb 2021 10:07:46 -0500 Received: from mga06.intel.com ([134.134.136.31]:33902 "EHLO mga06.intel.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S231144AbhBAPGK (ORCPT ); Mon, 1 Feb 2021 10:06:10 -0500 IronPort-SDR: kRHU/rf+XAHfqn6X5Im+DoJhRmUG4zRFSdI+WbqAQvPYJ9Okj7aWaZhB43arBxASI/XD/20+m5 PFNGVCyvP8tw== X-IronPort-AV: E=McAfee;i="6000,8403,9882"; a="242214665" X-IronPort-AV: E=Sophos;i="5.79,392,1602572400"; d="scan'208";a="242214665" Received: from fmsmga008.fm.intel.com ([10.253.24.58]) by orsmga104.jf.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 01 Feb 2021 07:02:30 -0800 IronPort-SDR: 3WsIeX/Q2pmr/wZF9wkrifAuukjJmjr7IwEPyYfIUXzBlHrFIn9JkzdOUiAQFaNJZRKuTA7JYv c9vcSZIE7h6g== X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="5.79,392,1602572400"; d="scan'208";a="369891561" Received: from marshy.an.intel.com ([10.122.105.143]) by fmsmga008.fm.intel.com with ESMTP; 01 Feb 2021 07:02:30 -0800 From: richard.gong@linux.intel.com To: mdf@kernel.org, trix@redhat.com, gregkh@linuxfoundation.org, linux-fpga@vger.kernel.org, linux-kernel@vger.kernel.org Cc: Richard Gong Subject: [PATCHv4 1/6] firmware: stratix10-svc: add COMMAND_AUTHENTICATE_BITSTREAM flag Date: Mon, 1 Feb 2021 09:21:54 -0600 Message-Id: <1612192919-4069-2-git-send-email-richard.gong@linux.intel.com> X-Mailer: git-send-email 2.7.4 In-Reply-To: <1612192919-4069-1-git-send-email-richard.gong@linux.intel.com> References: <1612192919-4069-1-git-send-email-richard.gong@linux.intel.com> Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org From: Richard Gong Add COMMAND_AUTHENTICATE_BITSTREAM command flag for new added bitstream authentication feature. Authenticating a bitstream is to make sure a signed bitstream has the valid signatures. Except for the actual configuration of the device, the bitstream authentication works the same way as FPGA configuration does. If the authentication passes, the signed bitstream will be programmed into QSPI flash memory and will be expected to boot without issues. Signed-off-by: Richard Gong --- v4: remove change at COMMAND_RECONFIG_FLAG_PARTIAL flag & add that to a separate commit 27ad5309c247b6bde8a098e17e9bd9b1576b7f71. v3: no change v2: new added --- include/linux/firmware/intel/stratix10-svc-client.h | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/include/linux/firmware/intel/stratix10-svc-client.h b/include/linux/firmware/intel/stratix10-svc-client.h index f843c6a..fa9581d 100644 --- a/include/linux/firmware/intel/stratix10-svc-client.h +++ b/include/linux/firmware/intel/stratix10-svc-client.h @@ -55,8 +55,13 @@ * * COMMAND_RECONFIG_FLAG_PARTIAL: * Set to FPGA configuration type (full or partial). + * + * COMMAND_AUTHENTICATE_BITSTREAM: + * Set for bitstream authentication, which makes sure a signed bitstream + * has valid signatures before committing it to device. */ #define COMMAND_RECONFIG_FLAG_PARTIAL 0 +#define COMMAND_AUTHENTICATE_BITSTREAM 1 /** * Timeout settings for service clients: -- 2.7.4