Received: by 2002:a05:7412:37c9:b0:e2:908c:2ebd with SMTP id jz9csp2676533rdb; Fri, 22 Sep 2023 05:46:24 -0700 (PDT) X-Google-Smtp-Source: AGHT+IGWxBtV0Hr6x8WRrjcU/83oL7FfWqGoAOXTG6vxth5qwJNxYzth1nWeWU40mtl3bJMcxbSM X-Received: by 2002:a17:90a:ff0d:b0:262:d661:2963 with SMTP id ce13-20020a17090aff0d00b00262d6612963mr7824767pjb.39.1695386784181; Fri, 22 Sep 2023 05:46:24 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1695386784; cv=none; d=google.com; s=arc-20160816; b=Fpgj5raWhluwjujdaku+6eSS2X9N8zxuThJqvDIFHABbbaeissaMnV/S2o/rH8KmZF 05Uj/Hr/cwcSpacWRO7uX5eJdcljRCV7vttWRiUctv3lGiXz8z7mAEoZzuDg6gVqHtet atOvjwDL5MQTkCnVyrb5P4AnRpEAYVU4OEK4/mWwZ8QcYxyVTzoqU4PUYWwpGNJXrGii Fat3r5AJ7o54icJLWsn5ni55JGchdWEP5nlMFiej4aZbrNUnxPMDjBx55HGuEAgBpt5W Q7bQHf0Tnd7jg4X29dnpYjIFFOsCnt9KQnTL4s/wGFo4IzLnoEaOGRKmgqN5SjVZPm6V 663Q== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:mime-version:message-id:date:references :in-reply-to:subject:cc:to:from:dkim-signature; bh=/DzZEktjO9kVfpnI+exRh6b65njwoqhvk7patX0JxOQ=; fh=w8j8wwyMRVuQdVomF54iN/cngIrRm8aiCfRlQIFqbuU=; b=neYEkUj3F8L7Gdf/EajS+sV1DvQJnI1jPBDXH+W8Xh3sPg0xp03rJbg7Wduc88kLKk WKtYvHYvlkf3U6AwbQ2T2Wrdl/yAjgkqqb4fx4pIlw4B+9Y7k6drGLH9JEte9/XA4UaR Rm7cBnHZ/tElQ+xaEEM3mLWguwIw9pO0TU8uNperzDmjT3Fziu+0jCUivYv+z1MhKr1S 40A6ZsYpckymWigWOPQpZTd7OP7P2cBgaZZJYAY4wonsY54iKUVKTAlT94RO0CnsDfYm STR6G1Xd88vbprMYxy1QAwfinSxAvwc3G7R61mWKhjxDwJNN2zAJ6sHTi5RhvMdcwIZq MVBQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@ti.com header.s=ti-com-17Q1 header.b=PG4sI2rr; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.32 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=QUARANTINE sp=NONE dis=NONE) header.from=ti.com Return-Path: Received: from agentk.vger.email (agentk.vger.email. [23.128.96.32]) by mx.google.com with ESMTPS id g3-20020a17090a128300b0026b51323933si5730149pja.158.2023.09.22.05.46.21 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Fri, 22 Sep 2023 05:46:24 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.32 as permitted sender) client-ip=23.128.96.32; Authentication-Results: mx.google.com; dkim=pass header.i=@ti.com header.s=ti-com-17Q1 header.b=PG4sI2rr; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.32 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=QUARANTINE sp=NONE dis=NONE) header.from=ti.com Received: from out1.vger.email (depot.vger.email [IPv6:2620:137:e000::3:0]) by agentk.vger.email (Postfix) with ESMTP id E5B4880944EB; Fri, 22 Sep 2023 01:21:18 -0700 (PDT) X-Virus-Status: Clean X-Virus-Scanned: clamav-milter 0.103.10 at agentk.vger.email Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S232163AbjIVIVE (ORCPT + 99 others); Fri, 22 Sep 2023 04:21:04 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:37968 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S229629AbjIVIVC (ORCPT ); Fri, 22 Sep 2023 04:21:02 -0400 Received: from fllv0016.ext.ti.com (fllv0016.ext.ti.com [198.47.19.142]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 5864C8F; Fri, 22 Sep 2023 01:20:55 -0700 (PDT) Received: from lelv0266.itg.ti.com ([10.180.67.225]) by fllv0016.ext.ti.com (8.15.2/8.15.2) with ESMTP id 38M8KQbI116649; Fri, 22 Sep 2023 03:20:26 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ti.com; s=ti-com-17Q1; t=1695370826; bh=/DzZEktjO9kVfpnI+exRh6b65njwoqhvk7patX0JxOQ=; h=From:To:CC:Subject:In-Reply-To:References:Date; b=PG4sI2rrFNS07SPKQBQLdr96Afazkm9Aj0K/tRyDmGkb/Qywl3mEoMVLX/gou8Dlv eT2WQmkEzE49Gwm5ysJbQjOyJpiksbHNmwpMSi4ps5kYuMBkeaeaPQb9jiuyRQQoML TEia62ATg6DWn4/xjv0Caf+C+GdzQunNLvRLqyZ8= Received: from DLEE115.ent.ti.com (dlee115.ent.ti.com [157.170.170.26]) by lelv0266.itg.ti.com (8.15.2/8.15.2) with ESMTPS id 38M8KQhn030656 (version=TLSv1.2 cipher=AES256-GCM-SHA384 bits=256 verify=FAIL); Fri, 22 Sep 2023 03:20:26 -0500 Received: from DLEE114.ent.ti.com (157.170.170.25) by DLEE115.ent.ti.com (157.170.170.26) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.2507.23; Fri, 22 Sep 2023 03:20:26 -0500 Received: from fllv0039.itg.ti.com (10.64.41.19) by DLEE114.ent.ti.com (157.170.170.25) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.2507.23 via Frontend Transport; Fri, 22 Sep 2023 03:20:26 -0500 Received: from localhost (ileaxei01-snat2.itg.ti.com [10.180.69.6]) by fllv0039.itg.ti.com (8.15.2/8.15.2) with ESMTP id 38M8KPUa118745; Fri, 22 Sep 2023 03:20:26 -0500 From: Kamlesh Gurudasani To: Gatien Chevallier , Olivia Mackall , Herbert Xu , "Rob Herring" , Krzysztof Kozlowski , Maxime Coquelin , Alexandre Torgue CC: Lionel Debieve , , , , , , "Gatien Chevallier" Subject: Re: [EXTERNAL] [PATCH v3 9/9] ARM: dts: stm32: add RNG node for STM32MP13x platforms In-Reply-To: <20230921080301.253563-10-gatien.chevallier@foss.st.com> References: <20230921080301.253563-1-gatien.chevallier@foss.st.com> <20230921080301.253563-10-gatien.chevallier@foss.st.com> Date: Fri, 22 Sep 2023 13:50:25 +0530 Message-ID: <8734z6hb5i.fsf@kamlesh.i-did-not-set--mail-host-address--so-tickle-me> MIME-Version: 1.0 Content-Type: text/plain X-EXCLAIMER-MD-CONFIG: e1e8a2fd-e40a-4ac6-ac9b-f7e9cc9ee180 X-Spam-Status: No, score=-0.9 required=5.0 tests=DKIMWL_WL_HIGH,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,HEADER_FROM_DIFFERENT_DOMAINS, MAILING_LIST_MULTI,SPF_HELO_NONE,SPF_PASS,URIBL_BLOCKED autolearn=unavailable autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on agentk.vger.email Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org X-Greylist: Sender passed SPF test, not delayed by milter-greylist-4.6.4 (agentk.vger.email [0.0.0.0]); Fri, 22 Sep 2023 01:21:19 -0700 (PDT) Gatien Chevallier writes: > The RNG on STM32MP13 offers upgrades like customization of its > configuration and the conditional reset. > > The hardware RNG should be managed in the secure world for but it > is supported on Linux. Therefore, is it not default enabled. Just curious, will there be concurrent access? If yes, how do you manage the entropy in that case? If you allow access to RNG from normal world, can attacker change the setting to generate more predicatable numbers leading this to secure world as well. I understand that you're leaving the enablement part to customer but you still have to allow RNG access to normal world for that. -Kamlesh