1 // SPDX-License-Identifier: GPL-2.0-only
3 * This file is part of STM32 Crypto driver for Linux.
5 * Copyright (C) 2017, STMicroelectronics - All Rights Reserved
9 #include <crypto/engine.h>
10 #include <crypto/internal/hash.h>
11 #include <crypto/md5.h>
12 #include <crypto/scatterwalk.h>
13 #include <crypto/sha1.h>
14 #include <crypto/sha2.h>
15 #include <crypto/sha3.h>
16 #include <linux/clk.h>
17 #include <linux/delay.h>
18 #include <linux/dma-mapping.h>
19 #include <linux/dmaengine.h>
20 #include <linux/interrupt.h>
21 #include <linux/iopoll.h>
22 #include <linux/kernel.h>
23 #include <linux/module.h>
25 #include <linux/platform_device.h>
26 #include <linux/pm_runtime.h>
27 #include <linux/reset.h>
28 #include <linux/string.h>
33 #define HASH_UX500_HREG(x) (0x0c + ((x) * 0x04))
36 #define HASH_CSR(x) (0x0F8 + ((x) * 0x04))
37 #define HASH_HREG(x) (0x310 + ((x) * 0x04))
38 #define HASH_HWCFGR 0x3F0
39 #define HASH_VER 0x3F4
42 /* Control Register */
43 #define HASH_CR_INIT BIT(2)
44 #define HASH_CR_DMAE BIT(3)
45 #define HASH_CR_DATATYPE_POS 4
46 #define HASH_CR_MODE BIT(6)
47 #define HASH_CR_ALGO_POS 7
48 #define HASH_CR_MDMAT BIT(13)
49 #define HASH_CR_DMAA BIT(14)
50 #define HASH_CR_LKEY BIT(16)
53 #define HASH_DINIE BIT(0)
54 #define HASH_DCIE BIT(1)
57 #define HASH_MASK_CALC_COMPLETION BIT(0)
58 #define HASH_MASK_DATA_INPUT BIT(1)
61 #define HASH_SR_DATA_INPUT_READY BIT(0)
62 #define HASH_SR_OUTPUT_READY BIT(1)
63 #define HASH_SR_DMA_ACTIVE BIT(2)
64 #define HASH_SR_BUSY BIT(3)
67 #define HASH_STR_NBLW_MASK GENMASK(4, 0)
68 #define HASH_STR_DCAL BIT(8)
71 #define HASH_HWCFG_DMA_MASK GENMASK(3, 0)
73 /* Context swap register */
74 #define HASH_CSR_NB_SHA256_HMAC 54
75 #define HASH_CSR_NB_SHA256 38
76 #define HASH_CSR_NB_SHA512_HMAC 103
77 #define HASH_CSR_NB_SHA512 91
78 #define HASH_CSR_NB_SHA3_HMAC 88
79 #define HASH_CSR_NB_SHA3 72
80 #define HASH_CSR_NB_MAX HASH_CSR_NB_SHA512_HMAC
82 #define HASH_FLAGS_INIT BIT(0)
83 #define HASH_FLAGS_OUTPUT_READY BIT(1)
84 #define HASH_FLAGS_CPU BIT(2)
85 #define HASH_FLAGS_DMA_ACTIVE BIT(3)
86 #define HASH_FLAGS_HMAC_INIT BIT(4)
87 #define HASH_FLAGS_HMAC_FINAL BIT(5)
88 #define HASH_FLAGS_HMAC_KEY BIT(6)
89 #define HASH_FLAGS_SHA3_MODE BIT(7)
90 #define HASH_FLAGS_FINAL BIT(15)
91 #define HASH_FLAGS_FINUP BIT(16)
92 #define HASH_FLAGS_ALGO_MASK GENMASK(20, 17)
93 #define HASH_FLAGS_ALGO_SHIFT 17
94 #define HASH_FLAGS_ERRORS BIT(21)
95 #define HASH_FLAGS_EMPTY BIT(22)
96 #define HASH_FLAGS_HMAC BIT(23)
98 #define HASH_OP_UPDATE 1
99 #define HASH_OP_FINAL 2
101 #define HASH_BURST_LEVEL 4
103 enum stm32_hash_data_format {
104 HASH_DATA_32_BITS = 0x0,
105 HASH_DATA_16_BITS = 0x1,
106 HASH_DATA_8_BITS = 0x2,
107 HASH_DATA_1_BIT = 0x3
110 #define HASH_BUFLEN (SHA3_224_BLOCK_SIZE + 4)
111 #define HASH_MAX_KEY_SIZE (SHA512_BLOCK_SIZE * 8)
113 enum stm32_hash_algo {
126 enum ux500_hash_algo {
127 HASH_SHA256_UX500 = 0,
131 #define HASH_AUTOSUSPEND_DELAY 50
133 struct stm32_hash_ctx {
134 struct stm32_hash_dev *hdev;
135 struct crypto_shash *xtfm;
138 u8 key[HASH_MAX_KEY_SIZE];
142 struct stm32_hash_state {
148 u8 buffer[HASH_BUFLEN] __aligned(4);
151 u32 hw_context[3 + HASH_CSR_NB_MAX];
154 struct stm32_hash_request_ctx {
155 struct stm32_hash_dev *hdev;
158 u8 digest[SHA512_DIGEST_SIZE] __aligned(sizeof(u32));
162 struct scatterlist *sg;
165 struct scatterlist sg_key;
173 struct stm32_hash_state state;
176 struct stm32_hash_algs_info {
177 struct ahash_engine_alg *algs_list;
181 struct stm32_hash_pdata {
183 const struct stm32_hash_algs_info *algs_info;
184 size_t algs_info_size;
187 bool broken_emptymsg;
191 struct stm32_hash_dev {
192 struct list_head list;
195 struct reset_control *rst;
196 void __iomem *io_base;
197 phys_addr_t phys_base;
201 struct ahash_request *req;
202 struct crypto_engine *engine;
206 struct dma_chan *dma_lch;
207 struct completion dma_completion;
209 const struct stm32_hash_pdata *pdata;
212 struct stm32_hash_drv {
213 struct list_head dev_list;
214 spinlock_t lock; /* List protection access */
217 static struct stm32_hash_drv stm32_hash = {
218 .dev_list = LIST_HEAD_INIT(stm32_hash.dev_list),
219 .lock = __SPIN_LOCK_UNLOCKED(stm32_hash.lock),
222 static void stm32_hash_dma_callback(void *param);
224 static inline u32 stm32_hash_read(struct stm32_hash_dev *hdev, u32 offset)
226 return readl_relaxed(hdev->io_base + offset);
229 static inline void stm32_hash_write(struct stm32_hash_dev *hdev,
230 u32 offset, u32 value)
232 writel_relaxed(value, hdev->io_base + offset);
235 static inline int stm32_hash_wait_busy(struct stm32_hash_dev *hdev)
239 /* The Ux500 lacks the special status register, we poll the DCAL bit instead */
240 if (!hdev->pdata->has_sr)
241 return readl_relaxed_poll_timeout(hdev->io_base + HASH_STR, status,
242 !(status & HASH_STR_DCAL), 10, 10000);
244 return readl_relaxed_poll_timeout(hdev->io_base + HASH_SR, status,
245 !(status & HASH_SR_BUSY), 10, 10000);
248 static void stm32_hash_set_nblw(struct stm32_hash_dev *hdev, int length)
252 reg = stm32_hash_read(hdev, HASH_STR);
253 reg &= ~(HASH_STR_NBLW_MASK);
254 reg |= (8U * ((length) % 4U));
255 stm32_hash_write(hdev, HASH_STR, reg);
258 static int stm32_hash_write_key(struct stm32_hash_dev *hdev)
260 struct crypto_ahash *tfm = crypto_ahash_reqtfm(hdev->req);
261 struct stm32_hash_ctx *ctx = crypto_ahash_ctx(tfm);
263 int keylen = ctx->keylen;
264 void *key = ctx->key;
267 stm32_hash_set_nblw(hdev, keylen);
270 stm32_hash_write(hdev, HASH_DIN, *(u32 *)key);
275 reg = stm32_hash_read(hdev, HASH_STR);
276 reg |= HASH_STR_DCAL;
277 stm32_hash_write(hdev, HASH_STR, reg);
285 static void stm32_hash_write_ctrl(struct stm32_hash_dev *hdev)
287 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(hdev->req);
288 struct crypto_ahash *tfm = crypto_ahash_reqtfm(hdev->req);
289 struct stm32_hash_ctx *ctx = crypto_ahash_ctx(tfm);
290 struct stm32_hash_state *state = &rctx->state;
291 u32 alg = (state->flags & HASH_FLAGS_ALGO_MASK) >> HASH_FLAGS_ALGO_SHIFT;
293 u32 reg = HASH_CR_INIT;
295 if (!(hdev->flags & HASH_FLAGS_INIT)) {
296 if (hdev->pdata->ux500) {
297 reg |= ((alg & BIT(0)) << HASH_CR_ALGO_POS);
299 if (hdev->pdata->alg_shift == HASH_CR_ALGO_POS)
300 reg |= ((alg & BIT(1)) << 17) |
301 ((alg & BIT(0)) << HASH_CR_ALGO_POS);
303 reg |= alg << hdev->pdata->alg_shift;
306 reg |= (rctx->data_type << HASH_CR_DATATYPE_POS);
308 if (state->flags & HASH_FLAGS_HMAC) {
309 hdev->flags |= HASH_FLAGS_HMAC;
311 if (ctx->keylen > crypto_ahash_blocksize(tfm))
316 stm32_hash_write(hdev, HASH_IMR, HASH_DCIE);
318 stm32_hash_write(hdev, HASH_CR, reg);
320 hdev->flags |= HASH_FLAGS_INIT;
323 * After first block + 1 words are fill up,
324 * we only need to fill 1 block to start partial computation
326 rctx->state.blocklen -= sizeof(u32);
328 dev_dbg(hdev->dev, "Write Control %x\n", reg);
332 static void stm32_hash_append_sg(struct stm32_hash_request_ctx *rctx)
334 struct stm32_hash_state *state = &rctx->state;
337 while ((state->bufcnt < state->blocklen) && rctx->total) {
338 count = min(rctx->sg->length - rctx->offset, rctx->total);
339 count = min_t(size_t, count, state->blocklen - state->bufcnt);
342 if ((rctx->sg->length == 0) && !sg_is_last(rctx->sg)) {
343 rctx->sg = sg_next(rctx->sg);
350 scatterwalk_map_and_copy(state->buffer + state->bufcnt,
351 rctx->sg, rctx->offset, count, 0);
353 state->bufcnt += count;
354 rctx->offset += count;
355 rctx->total -= count;
357 if (rctx->offset == rctx->sg->length) {
358 rctx->sg = sg_next(rctx->sg);
367 static int stm32_hash_xmit_cpu(struct stm32_hash_dev *hdev,
368 const u8 *buf, size_t length, int final)
370 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(hdev->req);
371 struct stm32_hash_state *state = &rctx->state;
372 unsigned int count, len32;
373 const u32 *buffer = (const u32 *)buf;
377 hdev->flags |= HASH_FLAGS_FINAL;
379 /* Do not process empty messages if hw is buggy. */
380 if (!(hdev->flags & HASH_FLAGS_INIT) && !length &&
381 hdev->pdata->broken_emptymsg) {
382 state->flags |= HASH_FLAGS_EMPTY;
387 len32 = DIV_ROUND_UP(length, sizeof(u32));
389 dev_dbg(hdev->dev, "%s: length: %zd, final: %x len32 %i\n",
390 __func__, length, final, len32);
392 hdev->flags |= HASH_FLAGS_CPU;
394 stm32_hash_write_ctrl(hdev);
396 if (stm32_hash_wait_busy(hdev))
399 if ((hdev->flags & HASH_FLAGS_HMAC) &&
400 (!(hdev->flags & HASH_FLAGS_HMAC_KEY))) {
401 hdev->flags |= HASH_FLAGS_HMAC_KEY;
402 stm32_hash_write_key(hdev);
403 if (stm32_hash_wait_busy(hdev))
407 for (count = 0; count < len32; count++)
408 stm32_hash_write(hdev, HASH_DIN, buffer[count]);
411 if (stm32_hash_wait_busy(hdev))
414 stm32_hash_set_nblw(hdev, length);
415 reg = stm32_hash_read(hdev, HASH_STR);
416 reg |= HASH_STR_DCAL;
417 stm32_hash_write(hdev, HASH_STR, reg);
418 if (hdev->flags & HASH_FLAGS_HMAC) {
419 if (stm32_hash_wait_busy(hdev))
421 stm32_hash_write_key(hdev);
429 static int hash_swap_reg(struct stm32_hash_request_ctx *rctx)
431 struct stm32_hash_state *state = &rctx->state;
433 switch ((state->flags & HASH_FLAGS_ALGO_MASK) >>
434 HASH_FLAGS_ALGO_SHIFT) {
439 if (state->flags & HASH_FLAGS_HMAC)
440 return HASH_CSR_NB_SHA256_HMAC;
442 return HASH_CSR_NB_SHA256;
447 if (state->flags & HASH_FLAGS_HMAC)
448 return HASH_CSR_NB_SHA512_HMAC;
450 return HASH_CSR_NB_SHA512;
457 if (state->flags & HASH_FLAGS_HMAC)
458 return HASH_CSR_NB_SHA3_HMAC;
460 return HASH_CSR_NB_SHA3;
468 static int stm32_hash_update_cpu(struct stm32_hash_dev *hdev)
470 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(hdev->req);
471 struct stm32_hash_state *state = &rctx->state;
472 u32 *preg = state->hw_context;
473 int bufcnt, err = 0, final;
476 dev_dbg(hdev->dev, "%s flags %x\n", __func__, state->flags);
478 final = state->flags & HASH_FLAGS_FINAL;
480 while ((rctx->total >= state->blocklen) ||
481 (state->bufcnt + rctx->total >= state->blocklen)) {
482 stm32_hash_append_sg(rctx);
483 bufcnt = state->bufcnt;
485 err = stm32_hash_xmit_cpu(hdev, state->buffer, bufcnt, 0);
490 stm32_hash_append_sg(rctx);
493 bufcnt = state->bufcnt;
495 return stm32_hash_xmit_cpu(hdev, state->buffer, bufcnt, 1);
498 if (!(hdev->flags & HASH_FLAGS_INIT))
501 if (stm32_hash_wait_busy(hdev))
504 swap_reg = hash_swap_reg(rctx);
506 if (!hdev->pdata->ux500)
507 *preg++ = stm32_hash_read(hdev, HASH_IMR);
508 *preg++ = stm32_hash_read(hdev, HASH_STR);
509 *preg++ = stm32_hash_read(hdev, HASH_CR);
510 for (i = 0; i < swap_reg; i++)
511 *preg++ = stm32_hash_read(hdev, HASH_CSR(i));
513 state->flags |= HASH_FLAGS_INIT;
518 static int stm32_hash_xmit_dma(struct stm32_hash_dev *hdev,
519 struct scatterlist *sg, int length, int mdma)
521 struct dma_async_tx_descriptor *in_desc;
526 in_desc = dmaengine_prep_slave_sg(hdev->dma_lch, sg, 1,
527 DMA_MEM_TO_DEV, DMA_PREP_INTERRUPT |
530 dev_err(hdev->dev, "dmaengine_prep_slave error\n");
534 reinit_completion(&hdev->dma_completion);
535 in_desc->callback = stm32_hash_dma_callback;
536 in_desc->callback_param = hdev;
538 hdev->flags |= HASH_FLAGS_FINAL;
539 hdev->flags |= HASH_FLAGS_DMA_ACTIVE;
541 reg = stm32_hash_read(hdev, HASH_CR);
543 if (hdev->pdata->has_mdmat) {
545 reg |= HASH_CR_MDMAT;
547 reg &= ~HASH_CR_MDMAT;
551 stm32_hash_write(hdev, HASH_CR, reg);
553 stm32_hash_set_nblw(hdev, length);
555 cookie = dmaengine_submit(in_desc);
556 err = dma_submit_error(cookie);
560 dma_async_issue_pending(hdev->dma_lch);
562 if (!wait_for_completion_timeout(&hdev->dma_completion,
563 msecs_to_jiffies(100)))
566 if (dma_async_is_tx_complete(hdev->dma_lch, cookie,
567 NULL, NULL) != DMA_COMPLETE)
571 dev_err(hdev->dev, "DMA Error %i\n", err);
572 dmaengine_terminate_all(hdev->dma_lch);
579 static void stm32_hash_dma_callback(void *param)
581 struct stm32_hash_dev *hdev = param;
583 complete(&hdev->dma_completion);
586 static int stm32_hash_hmac_dma_send(struct stm32_hash_dev *hdev)
588 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(hdev->req);
589 struct crypto_ahash *tfm = crypto_ahash_reqtfm(hdev->req);
590 struct stm32_hash_ctx *ctx = crypto_ahash_ctx(tfm);
593 if (ctx->keylen < rctx->state.blocklen || hdev->dma_mode == 1) {
594 err = stm32_hash_write_key(hdev);
595 if (stm32_hash_wait_busy(hdev))
598 if (!(hdev->flags & HASH_FLAGS_HMAC_KEY))
599 sg_init_one(&rctx->sg_key, ctx->key,
600 ALIGN(ctx->keylen, sizeof(u32)));
602 rctx->dma_ct = dma_map_sg(hdev->dev, &rctx->sg_key, 1,
604 if (rctx->dma_ct == 0) {
605 dev_err(hdev->dev, "dma_map_sg error\n");
609 err = stm32_hash_xmit_dma(hdev, &rctx->sg_key, ctx->keylen, 0);
611 dma_unmap_sg(hdev->dev, &rctx->sg_key, 1, DMA_TO_DEVICE);
617 static int stm32_hash_dma_init(struct stm32_hash_dev *hdev)
619 struct dma_slave_config dma_conf;
620 struct dma_chan *chan;
623 memset(&dma_conf, 0, sizeof(dma_conf));
625 dma_conf.direction = DMA_MEM_TO_DEV;
626 dma_conf.dst_addr = hdev->phys_base + HASH_DIN;
627 dma_conf.dst_addr_width = DMA_SLAVE_BUSWIDTH_4_BYTES;
628 dma_conf.src_maxburst = HASH_BURST_LEVEL;
629 dma_conf.dst_maxburst = HASH_BURST_LEVEL;
630 dma_conf.device_fc = false;
632 chan = dma_request_chan(hdev->dev, "in");
634 return PTR_ERR(chan);
636 hdev->dma_lch = chan;
638 err = dmaengine_slave_config(hdev->dma_lch, &dma_conf);
640 dma_release_channel(hdev->dma_lch);
641 hdev->dma_lch = NULL;
642 dev_err(hdev->dev, "Couldn't configure DMA slave.\n");
646 init_completion(&hdev->dma_completion);
651 static int stm32_hash_dma_send(struct stm32_hash_dev *hdev)
653 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(hdev->req);
654 u32 *buffer = (void *)rctx->state.buffer;
655 struct scatterlist sg[1], *tsg;
656 int err = 0, reg, ncp = 0;
657 unsigned int i, len = 0, bufcnt = 0;
658 bool is_last = false;
660 rctx->sg = hdev->req->src;
661 rctx->total = hdev->req->nbytes;
663 rctx->nents = sg_nents(rctx->sg);
667 stm32_hash_write_ctrl(hdev);
669 if (hdev->flags & HASH_FLAGS_HMAC) {
670 err = stm32_hash_hmac_dma_send(hdev);
671 if (err != -EINPROGRESS)
675 for_each_sg(rctx->sg, tsg, rctx->nents, i) {
679 if (sg_is_last(sg) || (bufcnt + sg[0].length) >= rctx->total) {
680 sg->length = rctx->total - bufcnt;
682 if (hdev->dma_mode == 1) {
683 len = (ALIGN(sg->length, 16) - 16);
685 ncp = sg_pcopy_to_buffer(
686 rctx->sg, rctx->nents,
687 rctx->state.buffer, sg->length - len,
688 rctx->total - sg->length + len);
692 if (!(IS_ALIGNED(sg->length, sizeof(u32)))) {
694 sg->length = ALIGN(sg->length,
700 rctx->dma_ct = dma_map_sg(hdev->dev, sg, 1,
702 if (rctx->dma_ct == 0) {
703 dev_err(hdev->dev, "dma_map_sg error\n");
707 err = stm32_hash_xmit_dma(hdev, sg, len, !is_last);
709 bufcnt += sg[0].length;
710 dma_unmap_sg(hdev->dev, sg, 1, DMA_TO_DEVICE);
718 if (hdev->dma_mode == 1) {
719 if (stm32_hash_wait_busy(hdev))
721 reg = stm32_hash_read(hdev, HASH_CR);
722 reg &= ~HASH_CR_DMAE;
724 stm32_hash_write(hdev, HASH_CR, reg);
727 memset(buffer + ncp, 0,
728 DIV_ROUND_UP(ncp, sizeof(u32)) - ncp);
729 writesl(hdev->io_base + HASH_DIN, buffer,
730 DIV_ROUND_UP(ncp, sizeof(u32)));
732 stm32_hash_set_nblw(hdev, ncp);
733 reg = stm32_hash_read(hdev, HASH_STR);
734 reg |= HASH_STR_DCAL;
735 stm32_hash_write(hdev, HASH_STR, reg);
739 if (hdev->flags & HASH_FLAGS_HMAC) {
740 if (stm32_hash_wait_busy(hdev))
742 err = stm32_hash_hmac_dma_send(hdev);
748 static struct stm32_hash_dev *stm32_hash_find_dev(struct stm32_hash_ctx *ctx)
750 struct stm32_hash_dev *hdev = NULL, *tmp;
752 spin_lock_bh(&stm32_hash.lock);
754 list_for_each_entry(tmp, &stm32_hash.dev_list, list) {
763 spin_unlock_bh(&stm32_hash.lock);
768 static bool stm32_hash_dma_aligned_data(struct ahash_request *req)
770 struct scatterlist *sg;
771 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
772 struct stm32_hash_ctx *ctx = crypto_ahash_ctx(crypto_ahash_reqtfm(req));
773 struct stm32_hash_dev *hdev = stm32_hash_find_dev(ctx);
776 if (!hdev->dma_lch || req->nbytes <= rctx->state.blocklen)
779 if (sg_nents(req->src) > 1) {
780 if (hdev->dma_mode == 1)
782 for_each_sg(req->src, sg, sg_nents(req->src), i) {
783 if ((!IS_ALIGNED(sg->length, sizeof(u32))) &&
789 if (req->src->offset % 4)
795 static int stm32_hash_init(struct ahash_request *req)
797 struct crypto_ahash *tfm = crypto_ahash_reqtfm(req);
798 struct stm32_hash_ctx *ctx = crypto_ahash_ctx(tfm);
799 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
800 struct stm32_hash_dev *hdev = stm32_hash_find_dev(ctx);
801 struct stm32_hash_state *state = &rctx->state;
802 bool sha3_mode = ctx->flags & HASH_FLAGS_SHA3_MODE;
806 state->flags = HASH_FLAGS_CPU;
809 state->flags |= HASH_FLAGS_SHA3_MODE;
811 rctx->digcnt = crypto_ahash_digestsize(tfm);
812 switch (rctx->digcnt) {
813 case MD5_DIGEST_SIZE:
814 state->flags |= HASH_MD5 << HASH_FLAGS_ALGO_SHIFT;
816 case SHA1_DIGEST_SIZE:
817 if (hdev->pdata->ux500)
818 state->flags |= HASH_SHA1_UX500 << HASH_FLAGS_ALGO_SHIFT;
820 state->flags |= HASH_SHA1 << HASH_FLAGS_ALGO_SHIFT;
822 case SHA224_DIGEST_SIZE:
824 state->flags |= HASH_SHA3_224 << HASH_FLAGS_ALGO_SHIFT;
826 state->flags |= HASH_SHA224 << HASH_FLAGS_ALGO_SHIFT;
828 case SHA256_DIGEST_SIZE:
830 state->flags |= HASH_SHA3_256 << HASH_FLAGS_ALGO_SHIFT;
832 if (hdev->pdata->ux500)
833 state->flags |= HASH_SHA256_UX500 << HASH_FLAGS_ALGO_SHIFT;
835 state->flags |= HASH_SHA256 << HASH_FLAGS_ALGO_SHIFT;
838 case SHA384_DIGEST_SIZE:
840 state->flags |= HASH_SHA3_384 << HASH_FLAGS_ALGO_SHIFT;
842 state->flags |= HASH_SHA384 << HASH_FLAGS_ALGO_SHIFT;
844 case SHA512_DIGEST_SIZE:
846 state->flags |= HASH_SHA3_512 << HASH_FLAGS_ALGO_SHIFT;
848 state->flags |= HASH_SHA512 << HASH_FLAGS_ALGO_SHIFT;
854 rctx->state.bufcnt = 0;
855 rctx->state.blocklen = crypto_ahash_blocksize(tfm) + sizeof(u32);
856 if (rctx->state.blocklen > HASH_BUFLEN) {
857 dev_err(hdev->dev, "Error, block too large");
862 rctx->data_type = HASH_DATA_8_BITS;
864 if (ctx->flags & HASH_FLAGS_HMAC)
865 state->flags |= HASH_FLAGS_HMAC;
867 dev_dbg(hdev->dev, "%s Flags %x\n", __func__, state->flags);
872 static int stm32_hash_update_req(struct stm32_hash_dev *hdev)
874 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(hdev->req);
875 struct stm32_hash_state *state = &rctx->state;
877 if (!(state->flags & HASH_FLAGS_CPU))
878 return stm32_hash_dma_send(hdev);
880 return stm32_hash_update_cpu(hdev);
883 static int stm32_hash_final_req(struct stm32_hash_dev *hdev)
885 struct ahash_request *req = hdev->req;
886 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
887 struct stm32_hash_state *state = &rctx->state;
888 int buflen = state->bufcnt;
890 if (state->flags & HASH_FLAGS_FINUP)
891 return stm32_hash_update_req(hdev);
895 return stm32_hash_xmit_cpu(hdev, state->buffer, buflen, 1);
898 static void stm32_hash_emptymsg_fallback(struct ahash_request *req)
900 struct crypto_ahash *ahash = crypto_ahash_reqtfm(req);
901 struct stm32_hash_ctx *ctx = crypto_ahash_ctx(ahash);
902 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
903 struct stm32_hash_dev *hdev = rctx->hdev;
906 dev_dbg(hdev->dev, "use fallback message size 0 key size %d\n",
910 dev_err(hdev->dev, "no fallback engine\n");
915 ret = crypto_shash_setkey(ctx->xtfm, ctx->key, ctx->keylen);
917 dev_err(hdev->dev, "failed to set key ret=%d\n", ret);
922 ret = crypto_shash_tfm_digest(ctx->xtfm, NULL, 0, rctx->digest);
924 dev_err(hdev->dev, "shash digest error\n");
927 static void stm32_hash_copy_hash(struct ahash_request *req)
929 struct crypto_ahash *tfm = crypto_ahash_reqtfm(req);
930 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
931 struct stm32_hash_state *state = &rctx->state;
932 struct stm32_hash_dev *hdev = rctx->hdev;
933 __be32 *hash = (void *)rctx->digest;
934 unsigned int i, hashsize;
936 if (hdev->pdata->broken_emptymsg && (state->flags & HASH_FLAGS_EMPTY))
937 return stm32_hash_emptymsg_fallback(req);
939 hashsize = crypto_ahash_digestsize(tfm);
941 for (i = 0; i < hashsize / sizeof(u32); i++) {
942 if (hdev->pdata->ux500)
943 hash[i] = cpu_to_be32(stm32_hash_read(hdev,
944 HASH_UX500_HREG(i)));
946 hash[i] = cpu_to_be32(stm32_hash_read(hdev,
951 static int stm32_hash_finish(struct ahash_request *req)
953 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
956 reg = stm32_hash_read(rctx->hdev, HASH_SR);
957 reg &= ~HASH_SR_OUTPUT_READY;
958 stm32_hash_write(rctx->hdev, HASH_SR, reg);
963 memcpy(req->result, rctx->digest, rctx->digcnt);
968 static void stm32_hash_finish_req(struct ahash_request *req, int err)
970 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
971 struct stm32_hash_dev *hdev = rctx->hdev;
973 if (!err && (HASH_FLAGS_FINAL & hdev->flags)) {
974 stm32_hash_copy_hash(req);
975 err = stm32_hash_finish(req);
978 pm_runtime_mark_last_busy(hdev->dev);
979 pm_runtime_put_autosuspend(hdev->dev);
981 crypto_finalize_hash_request(hdev->engine, req, err);
984 static int stm32_hash_handle_queue(struct stm32_hash_dev *hdev,
985 struct ahash_request *req)
987 return crypto_transfer_hash_request_to_engine(hdev->engine, req);
990 static int stm32_hash_one_request(struct crypto_engine *engine, void *areq)
992 struct ahash_request *req = container_of(areq, struct ahash_request,
994 struct stm32_hash_ctx *ctx = crypto_ahash_ctx(crypto_ahash_reqtfm(req));
995 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
996 struct stm32_hash_dev *hdev = stm32_hash_find_dev(ctx);
997 struct stm32_hash_state *state = &rctx->state;
1004 dev_dbg(hdev->dev, "processing new req, op: %lu, nbytes %d\n",
1005 rctx->op, req->nbytes);
1007 pm_runtime_get_sync(hdev->dev);
1011 swap_reg = hash_swap_reg(rctx);
1013 if (state->flags & HASH_FLAGS_INIT) {
1014 u32 *preg = rctx->state.hw_context;
1018 if (!hdev->pdata->ux500)
1019 stm32_hash_write(hdev, HASH_IMR, *preg++);
1020 stm32_hash_write(hdev, HASH_STR, *preg++);
1021 stm32_hash_write(hdev, HASH_CR, *preg);
1022 reg = *preg++ | HASH_CR_INIT;
1023 stm32_hash_write(hdev, HASH_CR, reg);
1025 for (i = 0; i < swap_reg; i++)
1026 stm32_hash_write(hdev, HASH_CSR(i), *preg++);
1028 hdev->flags |= HASH_FLAGS_INIT;
1030 if (state->flags & HASH_FLAGS_HMAC)
1031 hdev->flags |= HASH_FLAGS_HMAC |
1032 HASH_FLAGS_HMAC_KEY;
1035 if (rctx->op == HASH_OP_UPDATE)
1036 err = stm32_hash_update_req(hdev);
1037 else if (rctx->op == HASH_OP_FINAL)
1038 err = stm32_hash_final_req(hdev);
1040 /* If we have an IRQ, wait for that, else poll for completion */
1041 if (err == -EINPROGRESS && hdev->polled) {
1042 if (stm32_hash_wait_busy(hdev))
1045 hdev->flags |= HASH_FLAGS_OUTPUT_READY;
1050 if (err != -EINPROGRESS)
1051 /* done task will not finish it, so do it here */
1052 stm32_hash_finish_req(req, err);
1057 static int stm32_hash_enqueue(struct ahash_request *req, unsigned int op)
1059 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
1060 struct stm32_hash_ctx *ctx = crypto_tfm_ctx(req->base.tfm);
1061 struct stm32_hash_dev *hdev = ctx->hdev;
1065 return stm32_hash_handle_queue(hdev, req);
1068 static int stm32_hash_update(struct ahash_request *req)
1070 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
1071 struct stm32_hash_state *state = &rctx->state;
1073 if (!req->nbytes || !(state->flags & HASH_FLAGS_CPU))
1076 rctx->total = req->nbytes;
1077 rctx->sg = req->src;
1080 if ((state->bufcnt + rctx->total < state->blocklen)) {
1081 stm32_hash_append_sg(rctx);
1085 return stm32_hash_enqueue(req, HASH_OP_UPDATE);
1088 static int stm32_hash_final(struct ahash_request *req)
1090 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
1091 struct stm32_hash_state *state = &rctx->state;
1093 state->flags |= HASH_FLAGS_FINAL;
1095 return stm32_hash_enqueue(req, HASH_OP_FINAL);
1098 static int stm32_hash_finup(struct ahash_request *req)
1100 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
1101 struct stm32_hash_ctx *ctx = crypto_ahash_ctx(crypto_ahash_reqtfm(req));
1102 struct stm32_hash_dev *hdev = stm32_hash_find_dev(ctx);
1103 struct stm32_hash_state *state = &rctx->state;
1108 state->flags |= HASH_FLAGS_FINUP;
1109 rctx->total = req->nbytes;
1110 rctx->sg = req->src;
1113 if (hdev->dma_lch && stm32_hash_dma_aligned_data(req))
1114 state->flags &= ~HASH_FLAGS_CPU;
1117 return stm32_hash_final(req);
1120 static int stm32_hash_digest(struct ahash_request *req)
1122 return stm32_hash_init(req) ?: stm32_hash_finup(req);
1125 static int stm32_hash_export(struct ahash_request *req, void *out)
1127 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
1129 memcpy(out, &rctx->state, sizeof(rctx->state));
1134 static int stm32_hash_import(struct ahash_request *req, const void *in)
1136 struct stm32_hash_request_ctx *rctx = ahash_request_ctx(req);
1138 stm32_hash_init(req);
1139 memcpy(&rctx->state, in, sizeof(rctx->state));
1144 static int stm32_hash_setkey(struct crypto_ahash *tfm,
1145 const u8 *key, unsigned int keylen)
1147 struct stm32_hash_ctx *ctx = crypto_ahash_ctx(tfm);
1149 if (keylen <= HASH_MAX_KEY_SIZE) {
1150 memcpy(ctx->key, key, keylen);
1151 ctx->keylen = keylen;
1159 static int stm32_hash_init_fallback(struct crypto_tfm *tfm)
1161 struct stm32_hash_ctx *ctx = crypto_tfm_ctx(tfm);
1162 struct stm32_hash_dev *hdev = stm32_hash_find_dev(ctx);
1163 const char *name = crypto_tfm_alg_name(tfm);
1164 struct crypto_shash *xtfm;
1166 /* The fallback is only needed on Ux500 */
1167 if (!hdev->pdata->ux500)
1170 xtfm = crypto_alloc_shash(name, 0, CRYPTO_ALG_NEED_FALLBACK);
1172 dev_err(hdev->dev, "failed to allocate %s fallback\n",
1174 return PTR_ERR(xtfm);
1176 dev_info(hdev->dev, "allocated %s fallback\n", name);
1182 static int stm32_hash_cra_init_algs(struct crypto_tfm *tfm, u32 algs_flags)
1184 struct stm32_hash_ctx *ctx = crypto_tfm_ctx(tfm);
1186 crypto_ahash_set_reqsize(__crypto_ahash_cast(tfm),
1187 sizeof(struct stm32_hash_request_ctx));
1192 ctx->flags |= algs_flags;
1194 return stm32_hash_init_fallback(tfm);
1197 static int stm32_hash_cra_init(struct crypto_tfm *tfm)
1199 return stm32_hash_cra_init_algs(tfm, 0);
1202 static int stm32_hash_cra_hmac_init(struct crypto_tfm *tfm)
1204 return stm32_hash_cra_init_algs(tfm, HASH_FLAGS_HMAC);
1207 static int stm32_hash_cra_sha3_init(struct crypto_tfm *tfm)
1209 return stm32_hash_cra_init_algs(tfm, HASH_FLAGS_SHA3_MODE);
1212 static int stm32_hash_cra_sha3_hmac_init(struct crypto_tfm *tfm)
1214 return stm32_hash_cra_init_algs(tfm, HASH_FLAGS_SHA3_MODE |
1219 static void stm32_hash_cra_exit(struct crypto_tfm *tfm)
1221 struct stm32_hash_ctx *ctx = crypto_tfm_ctx(tfm);
1224 crypto_free_shash(ctx->xtfm);
1227 static irqreturn_t stm32_hash_irq_thread(int irq, void *dev_id)
1229 struct stm32_hash_dev *hdev = dev_id;
1231 if (HASH_FLAGS_CPU & hdev->flags) {
1232 if (HASH_FLAGS_OUTPUT_READY & hdev->flags) {
1233 hdev->flags &= ~HASH_FLAGS_OUTPUT_READY;
1236 } else if (HASH_FLAGS_DMA_ACTIVE & hdev->flags) {
1237 hdev->flags &= ~HASH_FLAGS_DMA_ACTIVE;
1244 /* Finish current request */
1245 stm32_hash_finish_req(hdev->req, 0);
1250 static irqreturn_t stm32_hash_irq_handler(int irq, void *dev_id)
1252 struct stm32_hash_dev *hdev = dev_id;
1255 reg = stm32_hash_read(hdev, HASH_SR);
1256 if (reg & HASH_SR_OUTPUT_READY) {
1257 hdev->flags |= HASH_FLAGS_OUTPUT_READY;
1259 stm32_hash_write(hdev, HASH_IMR, 0);
1260 return IRQ_WAKE_THREAD;
1266 static struct ahash_engine_alg algs_md5[] = {
1268 .base.init = stm32_hash_init,
1269 .base.update = stm32_hash_update,
1270 .base.final = stm32_hash_final,
1271 .base.finup = stm32_hash_finup,
1272 .base.digest = stm32_hash_digest,
1273 .base.export = stm32_hash_export,
1274 .base.import = stm32_hash_import,
1276 .digestsize = MD5_DIGEST_SIZE,
1277 .statesize = sizeof(struct stm32_hash_state),
1280 .cra_driver_name = "stm32-md5",
1281 .cra_priority = 200,
1282 .cra_flags = CRYPTO_ALG_ASYNC |
1283 CRYPTO_ALG_KERN_DRIVER_ONLY,
1284 .cra_blocksize = MD5_HMAC_BLOCK_SIZE,
1285 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1286 .cra_init = stm32_hash_cra_init,
1287 .cra_exit = stm32_hash_cra_exit,
1288 .cra_module = THIS_MODULE,
1292 .do_one_request = stm32_hash_one_request,
1296 .base.init = stm32_hash_init,
1297 .base.update = stm32_hash_update,
1298 .base.final = stm32_hash_final,
1299 .base.finup = stm32_hash_finup,
1300 .base.digest = stm32_hash_digest,
1301 .base.export = stm32_hash_export,
1302 .base.import = stm32_hash_import,
1303 .base.setkey = stm32_hash_setkey,
1305 .digestsize = MD5_DIGEST_SIZE,
1306 .statesize = sizeof(struct stm32_hash_state),
1308 .cra_name = "hmac(md5)",
1309 .cra_driver_name = "stm32-hmac-md5",
1310 .cra_priority = 200,
1311 .cra_flags = CRYPTO_ALG_ASYNC |
1312 CRYPTO_ALG_KERN_DRIVER_ONLY,
1313 .cra_blocksize = MD5_HMAC_BLOCK_SIZE,
1314 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1315 .cra_init = stm32_hash_cra_hmac_init,
1316 .cra_exit = stm32_hash_cra_exit,
1317 .cra_module = THIS_MODULE,
1321 .do_one_request = stm32_hash_one_request,
1326 static struct ahash_engine_alg algs_sha1[] = {
1328 .base.init = stm32_hash_init,
1329 .base.update = stm32_hash_update,
1330 .base.final = stm32_hash_final,
1331 .base.finup = stm32_hash_finup,
1332 .base.digest = stm32_hash_digest,
1333 .base.export = stm32_hash_export,
1334 .base.import = stm32_hash_import,
1336 .digestsize = SHA1_DIGEST_SIZE,
1337 .statesize = sizeof(struct stm32_hash_state),
1340 .cra_driver_name = "stm32-sha1",
1341 .cra_priority = 200,
1342 .cra_flags = CRYPTO_ALG_ASYNC |
1343 CRYPTO_ALG_KERN_DRIVER_ONLY,
1344 .cra_blocksize = SHA1_BLOCK_SIZE,
1345 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1346 .cra_init = stm32_hash_cra_init,
1347 .cra_exit = stm32_hash_cra_exit,
1348 .cra_module = THIS_MODULE,
1352 .do_one_request = stm32_hash_one_request,
1356 .base.init = stm32_hash_init,
1357 .base.update = stm32_hash_update,
1358 .base.final = stm32_hash_final,
1359 .base.finup = stm32_hash_finup,
1360 .base.digest = stm32_hash_digest,
1361 .base.export = stm32_hash_export,
1362 .base.import = stm32_hash_import,
1363 .base.setkey = stm32_hash_setkey,
1365 .digestsize = SHA1_DIGEST_SIZE,
1366 .statesize = sizeof(struct stm32_hash_state),
1368 .cra_name = "hmac(sha1)",
1369 .cra_driver_name = "stm32-hmac-sha1",
1370 .cra_priority = 200,
1371 .cra_flags = CRYPTO_ALG_ASYNC |
1372 CRYPTO_ALG_KERN_DRIVER_ONLY,
1373 .cra_blocksize = SHA1_BLOCK_SIZE,
1374 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1375 .cra_init = stm32_hash_cra_hmac_init,
1376 .cra_exit = stm32_hash_cra_exit,
1377 .cra_module = THIS_MODULE,
1381 .do_one_request = stm32_hash_one_request,
1386 static struct ahash_engine_alg algs_sha224[] = {
1388 .base.init = stm32_hash_init,
1389 .base.update = stm32_hash_update,
1390 .base.final = stm32_hash_final,
1391 .base.finup = stm32_hash_finup,
1392 .base.digest = stm32_hash_digest,
1393 .base.export = stm32_hash_export,
1394 .base.import = stm32_hash_import,
1396 .digestsize = SHA224_DIGEST_SIZE,
1397 .statesize = sizeof(struct stm32_hash_state),
1399 .cra_name = "sha224",
1400 .cra_driver_name = "stm32-sha224",
1401 .cra_priority = 200,
1402 .cra_flags = CRYPTO_ALG_ASYNC |
1403 CRYPTO_ALG_KERN_DRIVER_ONLY,
1404 .cra_blocksize = SHA224_BLOCK_SIZE,
1405 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1406 .cra_init = stm32_hash_cra_init,
1407 .cra_exit = stm32_hash_cra_exit,
1408 .cra_module = THIS_MODULE,
1412 .do_one_request = stm32_hash_one_request,
1416 .base.init = stm32_hash_init,
1417 .base.update = stm32_hash_update,
1418 .base.final = stm32_hash_final,
1419 .base.finup = stm32_hash_finup,
1420 .base.digest = stm32_hash_digest,
1421 .base.setkey = stm32_hash_setkey,
1422 .base.export = stm32_hash_export,
1423 .base.import = stm32_hash_import,
1425 .digestsize = SHA224_DIGEST_SIZE,
1426 .statesize = sizeof(struct stm32_hash_state),
1428 .cra_name = "hmac(sha224)",
1429 .cra_driver_name = "stm32-hmac-sha224",
1430 .cra_priority = 200,
1431 .cra_flags = CRYPTO_ALG_ASYNC |
1432 CRYPTO_ALG_KERN_DRIVER_ONLY,
1433 .cra_blocksize = SHA224_BLOCK_SIZE,
1434 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1435 .cra_init = stm32_hash_cra_hmac_init,
1436 .cra_exit = stm32_hash_cra_exit,
1437 .cra_module = THIS_MODULE,
1441 .do_one_request = stm32_hash_one_request,
1446 static struct ahash_engine_alg algs_sha256[] = {
1448 .base.init = stm32_hash_init,
1449 .base.update = stm32_hash_update,
1450 .base.final = stm32_hash_final,
1451 .base.finup = stm32_hash_finup,
1452 .base.digest = stm32_hash_digest,
1453 .base.export = stm32_hash_export,
1454 .base.import = stm32_hash_import,
1456 .digestsize = SHA256_DIGEST_SIZE,
1457 .statesize = sizeof(struct stm32_hash_state),
1459 .cra_name = "sha256",
1460 .cra_driver_name = "stm32-sha256",
1461 .cra_priority = 200,
1462 .cra_flags = CRYPTO_ALG_ASYNC |
1463 CRYPTO_ALG_KERN_DRIVER_ONLY,
1464 .cra_blocksize = SHA256_BLOCK_SIZE,
1465 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1466 .cra_init = stm32_hash_cra_init,
1467 .cra_exit = stm32_hash_cra_exit,
1468 .cra_module = THIS_MODULE,
1472 .do_one_request = stm32_hash_one_request,
1476 .base.init = stm32_hash_init,
1477 .base.update = stm32_hash_update,
1478 .base.final = stm32_hash_final,
1479 .base.finup = stm32_hash_finup,
1480 .base.digest = stm32_hash_digest,
1481 .base.export = stm32_hash_export,
1482 .base.import = stm32_hash_import,
1483 .base.setkey = stm32_hash_setkey,
1485 .digestsize = SHA256_DIGEST_SIZE,
1486 .statesize = sizeof(struct stm32_hash_state),
1488 .cra_name = "hmac(sha256)",
1489 .cra_driver_name = "stm32-hmac-sha256",
1490 .cra_priority = 200,
1491 .cra_flags = CRYPTO_ALG_ASYNC |
1492 CRYPTO_ALG_KERN_DRIVER_ONLY,
1493 .cra_blocksize = SHA256_BLOCK_SIZE,
1494 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1495 .cra_init = stm32_hash_cra_hmac_init,
1496 .cra_exit = stm32_hash_cra_exit,
1497 .cra_module = THIS_MODULE,
1501 .do_one_request = stm32_hash_one_request,
1506 static struct ahash_engine_alg algs_sha384_sha512[] = {
1508 .base.init = stm32_hash_init,
1509 .base.update = stm32_hash_update,
1510 .base.final = stm32_hash_final,
1511 .base.finup = stm32_hash_finup,
1512 .base.digest = stm32_hash_digest,
1513 .base.export = stm32_hash_export,
1514 .base.import = stm32_hash_import,
1516 .digestsize = SHA384_DIGEST_SIZE,
1517 .statesize = sizeof(struct stm32_hash_state),
1519 .cra_name = "sha384",
1520 .cra_driver_name = "stm32-sha384",
1521 .cra_priority = 200,
1522 .cra_flags = CRYPTO_ALG_ASYNC |
1523 CRYPTO_ALG_KERN_DRIVER_ONLY,
1524 .cra_blocksize = SHA384_BLOCK_SIZE,
1525 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1526 .cra_init = stm32_hash_cra_init,
1527 .cra_exit = stm32_hash_cra_exit,
1528 .cra_module = THIS_MODULE,
1532 .do_one_request = stm32_hash_one_request,
1536 .base.init = stm32_hash_init,
1537 .base.update = stm32_hash_update,
1538 .base.final = stm32_hash_final,
1539 .base.finup = stm32_hash_finup,
1540 .base.digest = stm32_hash_digest,
1541 .base.setkey = stm32_hash_setkey,
1542 .base.export = stm32_hash_export,
1543 .base.import = stm32_hash_import,
1545 .digestsize = SHA384_DIGEST_SIZE,
1546 .statesize = sizeof(struct stm32_hash_state),
1548 .cra_name = "hmac(sha384)",
1549 .cra_driver_name = "stm32-hmac-sha384",
1550 .cra_priority = 200,
1551 .cra_flags = CRYPTO_ALG_ASYNC |
1552 CRYPTO_ALG_KERN_DRIVER_ONLY,
1553 .cra_blocksize = SHA384_BLOCK_SIZE,
1554 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1555 .cra_init = stm32_hash_cra_hmac_init,
1556 .cra_exit = stm32_hash_cra_exit,
1557 .cra_module = THIS_MODULE,
1561 .do_one_request = stm32_hash_one_request,
1565 .base.init = stm32_hash_init,
1566 .base.update = stm32_hash_update,
1567 .base.final = stm32_hash_final,
1568 .base.finup = stm32_hash_finup,
1569 .base.digest = stm32_hash_digest,
1570 .base.export = stm32_hash_export,
1571 .base.import = stm32_hash_import,
1573 .digestsize = SHA512_DIGEST_SIZE,
1574 .statesize = sizeof(struct stm32_hash_state),
1576 .cra_name = "sha512",
1577 .cra_driver_name = "stm32-sha512",
1578 .cra_priority = 200,
1579 .cra_flags = CRYPTO_ALG_ASYNC |
1580 CRYPTO_ALG_KERN_DRIVER_ONLY,
1581 .cra_blocksize = SHA512_BLOCK_SIZE,
1582 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1583 .cra_init = stm32_hash_cra_init,
1584 .cra_exit = stm32_hash_cra_exit,
1585 .cra_module = THIS_MODULE,
1589 .do_one_request = stm32_hash_one_request,
1593 .base.init = stm32_hash_init,
1594 .base.update = stm32_hash_update,
1595 .base.final = stm32_hash_final,
1596 .base.finup = stm32_hash_finup,
1597 .base.digest = stm32_hash_digest,
1598 .base.export = stm32_hash_export,
1599 .base.import = stm32_hash_import,
1600 .base.setkey = stm32_hash_setkey,
1602 .digestsize = SHA512_DIGEST_SIZE,
1603 .statesize = sizeof(struct stm32_hash_state),
1605 .cra_name = "hmac(sha512)",
1606 .cra_driver_name = "stm32-hmac-sha512",
1607 .cra_priority = 200,
1608 .cra_flags = CRYPTO_ALG_ASYNC |
1609 CRYPTO_ALG_KERN_DRIVER_ONLY,
1610 .cra_blocksize = SHA512_BLOCK_SIZE,
1611 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1612 .cra_init = stm32_hash_cra_hmac_init,
1613 .cra_exit = stm32_hash_cra_exit,
1614 .cra_module = THIS_MODULE,
1618 .do_one_request = stm32_hash_one_request,
1623 static struct ahash_engine_alg algs_sha3[] = {
1625 .base.init = stm32_hash_init,
1626 .base.update = stm32_hash_update,
1627 .base.final = stm32_hash_final,
1628 .base.finup = stm32_hash_finup,
1629 .base.digest = stm32_hash_digest,
1630 .base.export = stm32_hash_export,
1631 .base.import = stm32_hash_import,
1633 .digestsize = SHA3_224_DIGEST_SIZE,
1634 .statesize = sizeof(struct stm32_hash_state),
1636 .cra_name = "sha3-224",
1637 .cra_driver_name = "stm32-sha3-224",
1638 .cra_priority = 200,
1639 .cra_flags = CRYPTO_ALG_ASYNC |
1640 CRYPTO_ALG_KERN_DRIVER_ONLY,
1641 .cra_blocksize = SHA3_224_BLOCK_SIZE,
1642 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1643 .cra_init = stm32_hash_cra_sha3_init,
1644 .cra_exit = stm32_hash_cra_exit,
1645 .cra_module = THIS_MODULE,
1649 .do_one_request = stm32_hash_one_request,
1653 .base.init = stm32_hash_init,
1654 .base.update = stm32_hash_update,
1655 .base.final = stm32_hash_final,
1656 .base.finup = stm32_hash_finup,
1657 .base.digest = stm32_hash_digest,
1658 .base.export = stm32_hash_export,
1659 .base.import = stm32_hash_import,
1660 .base.setkey = stm32_hash_setkey,
1662 .digestsize = SHA3_224_DIGEST_SIZE,
1663 .statesize = sizeof(struct stm32_hash_state),
1665 .cra_name = "hmac(sha3-224)",
1666 .cra_driver_name = "stm32-hmac-sha3-224",
1667 .cra_priority = 200,
1668 .cra_flags = CRYPTO_ALG_ASYNC |
1669 CRYPTO_ALG_KERN_DRIVER_ONLY,
1670 .cra_blocksize = SHA3_224_BLOCK_SIZE,
1671 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1672 .cra_init = stm32_hash_cra_sha3_hmac_init,
1673 .cra_exit = stm32_hash_cra_exit,
1674 .cra_module = THIS_MODULE,
1678 .do_one_request = stm32_hash_one_request,
1682 .base.init = stm32_hash_init,
1683 .base.update = stm32_hash_update,
1684 .base.final = stm32_hash_final,
1685 .base.finup = stm32_hash_finup,
1686 .base.digest = stm32_hash_digest,
1687 .base.export = stm32_hash_export,
1688 .base.import = stm32_hash_import,
1690 .digestsize = SHA3_256_DIGEST_SIZE,
1691 .statesize = sizeof(struct stm32_hash_state),
1693 .cra_name = "sha3-256",
1694 .cra_driver_name = "stm32-sha3-256",
1695 .cra_priority = 200,
1696 .cra_flags = CRYPTO_ALG_ASYNC |
1697 CRYPTO_ALG_KERN_DRIVER_ONLY,
1698 .cra_blocksize = SHA3_256_BLOCK_SIZE,
1699 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1700 .cra_init = stm32_hash_cra_sha3_init,
1701 .cra_exit = stm32_hash_cra_exit,
1702 .cra_module = THIS_MODULE,
1706 .do_one_request = stm32_hash_one_request,
1710 .base.init = stm32_hash_init,
1711 .base.update = stm32_hash_update,
1712 .base.final = stm32_hash_final,
1713 .base.finup = stm32_hash_finup,
1714 .base.digest = stm32_hash_digest,
1715 .base.export = stm32_hash_export,
1716 .base.import = stm32_hash_import,
1717 .base.setkey = stm32_hash_setkey,
1719 .digestsize = SHA3_256_DIGEST_SIZE,
1720 .statesize = sizeof(struct stm32_hash_state),
1722 .cra_name = "hmac(sha3-256)",
1723 .cra_driver_name = "stm32-hmac-sha3-256",
1724 .cra_priority = 200,
1725 .cra_flags = CRYPTO_ALG_ASYNC |
1726 CRYPTO_ALG_KERN_DRIVER_ONLY,
1727 .cra_blocksize = SHA3_256_BLOCK_SIZE,
1728 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1729 .cra_init = stm32_hash_cra_sha3_hmac_init,
1730 .cra_exit = stm32_hash_cra_exit,
1731 .cra_module = THIS_MODULE,
1735 .do_one_request = stm32_hash_one_request,
1739 .base.init = stm32_hash_init,
1740 .base.update = stm32_hash_update,
1741 .base.final = stm32_hash_final,
1742 .base.finup = stm32_hash_finup,
1743 .base.digest = stm32_hash_digest,
1744 .base.export = stm32_hash_export,
1745 .base.import = stm32_hash_import,
1747 .digestsize = SHA3_384_DIGEST_SIZE,
1748 .statesize = sizeof(struct stm32_hash_state),
1750 .cra_name = "sha3-384",
1751 .cra_driver_name = "stm32-sha3-384",
1752 .cra_priority = 200,
1753 .cra_flags = CRYPTO_ALG_ASYNC |
1754 CRYPTO_ALG_KERN_DRIVER_ONLY,
1755 .cra_blocksize = SHA3_384_BLOCK_SIZE,
1756 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1757 .cra_init = stm32_hash_cra_sha3_init,
1758 .cra_exit = stm32_hash_cra_exit,
1759 .cra_module = THIS_MODULE,
1763 .do_one_request = stm32_hash_one_request,
1767 .base.init = stm32_hash_init,
1768 .base.update = stm32_hash_update,
1769 .base.final = stm32_hash_final,
1770 .base.finup = stm32_hash_finup,
1771 .base.digest = stm32_hash_digest,
1772 .base.export = stm32_hash_export,
1773 .base.import = stm32_hash_import,
1774 .base.setkey = stm32_hash_setkey,
1776 .digestsize = SHA3_384_DIGEST_SIZE,
1777 .statesize = sizeof(struct stm32_hash_state),
1779 .cra_name = "hmac(sha3-384)",
1780 .cra_driver_name = "stm32-hmac-sha3-384",
1781 .cra_priority = 200,
1782 .cra_flags = CRYPTO_ALG_ASYNC |
1783 CRYPTO_ALG_KERN_DRIVER_ONLY,
1784 .cra_blocksize = SHA3_384_BLOCK_SIZE,
1785 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1786 .cra_init = stm32_hash_cra_sha3_hmac_init,
1787 .cra_exit = stm32_hash_cra_exit,
1788 .cra_module = THIS_MODULE,
1792 .do_one_request = stm32_hash_one_request,
1796 .base.init = stm32_hash_init,
1797 .base.update = stm32_hash_update,
1798 .base.final = stm32_hash_final,
1799 .base.finup = stm32_hash_finup,
1800 .base.digest = stm32_hash_digest,
1801 .base.export = stm32_hash_export,
1802 .base.import = stm32_hash_import,
1804 .digestsize = SHA3_512_DIGEST_SIZE,
1805 .statesize = sizeof(struct stm32_hash_state),
1807 .cra_name = "sha3-512",
1808 .cra_driver_name = "stm32-sha3-512",
1809 .cra_priority = 200,
1810 .cra_flags = CRYPTO_ALG_ASYNC |
1811 CRYPTO_ALG_KERN_DRIVER_ONLY,
1812 .cra_blocksize = SHA3_512_BLOCK_SIZE,
1813 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1814 .cra_init = stm32_hash_cra_sha3_init,
1815 .cra_exit = stm32_hash_cra_exit,
1816 .cra_module = THIS_MODULE,
1820 .do_one_request = stm32_hash_one_request,
1824 .base.init = stm32_hash_init,
1825 .base.update = stm32_hash_update,
1826 .base.final = stm32_hash_final,
1827 .base.finup = stm32_hash_finup,
1828 .base.digest = stm32_hash_digest,
1829 .base.export = stm32_hash_export,
1830 .base.import = stm32_hash_import,
1831 .base.setkey = stm32_hash_setkey,
1833 .digestsize = SHA3_512_DIGEST_SIZE,
1834 .statesize = sizeof(struct stm32_hash_state),
1836 .cra_name = "hmac(sha3-512)",
1837 .cra_driver_name = "stm32-hmac-sha3-512",
1838 .cra_priority = 200,
1839 .cra_flags = CRYPTO_ALG_ASYNC |
1840 CRYPTO_ALG_KERN_DRIVER_ONLY,
1841 .cra_blocksize = SHA3_512_BLOCK_SIZE,
1842 .cra_ctxsize = sizeof(struct stm32_hash_ctx),
1843 .cra_init = stm32_hash_cra_sha3_hmac_init,
1844 .cra_exit = stm32_hash_cra_exit,
1845 .cra_module = THIS_MODULE,
1849 .do_one_request = stm32_hash_one_request,
1854 static int stm32_hash_register_algs(struct stm32_hash_dev *hdev)
1859 for (i = 0; i < hdev->pdata->algs_info_size; i++) {
1860 for (j = 0; j < hdev->pdata->algs_info[i].size; j++) {
1861 err = crypto_engine_register_ahash(
1862 &hdev->pdata->algs_info[i].algs_list[j]);
1870 dev_err(hdev->dev, "Algo %d : %d failed\n", i, j);
1873 crypto_engine_unregister_ahash(
1874 &hdev->pdata->algs_info[i].algs_list[j]);
1880 static int stm32_hash_unregister_algs(struct stm32_hash_dev *hdev)
1884 for (i = 0; i < hdev->pdata->algs_info_size; i++) {
1885 for (j = 0; j < hdev->pdata->algs_info[i].size; j++)
1886 crypto_engine_unregister_ahash(
1887 &hdev->pdata->algs_info[i].algs_list[j]);
1893 static struct stm32_hash_algs_info stm32_hash_algs_info_ux500[] = {
1895 .algs_list = algs_sha1,
1896 .size = ARRAY_SIZE(algs_sha1),
1899 .algs_list = algs_sha256,
1900 .size = ARRAY_SIZE(algs_sha256),
1904 static const struct stm32_hash_pdata stm32_hash_pdata_ux500 = {
1906 .algs_info = stm32_hash_algs_info_ux500,
1907 .algs_info_size = ARRAY_SIZE(stm32_hash_algs_info_ux500),
1908 .broken_emptymsg = true,
1912 static struct stm32_hash_algs_info stm32_hash_algs_info_stm32f4[] = {
1914 .algs_list = algs_md5,
1915 .size = ARRAY_SIZE(algs_md5),
1918 .algs_list = algs_sha1,
1919 .size = ARRAY_SIZE(algs_sha1),
1923 static const struct stm32_hash_pdata stm32_hash_pdata_stm32f4 = {
1925 .algs_info = stm32_hash_algs_info_stm32f4,
1926 .algs_info_size = ARRAY_SIZE(stm32_hash_algs_info_stm32f4),
1931 static struct stm32_hash_algs_info stm32_hash_algs_info_stm32f7[] = {
1933 .algs_list = algs_md5,
1934 .size = ARRAY_SIZE(algs_md5),
1937 .algs_list = algs_sha1,
1938 .size = ARRAY_SIZE(algs_sha1),
1941 .algs_list = algs_sha224,
1942 .size = ARRAY_SIZE(algs_sha224),
1945 .algs_list = algs_sha256,
1946 .size = ARRAY_SIZE(algs_sha256),
1950 static const struct stm32_hash_pdata stm32_hash_pdata_stm32f7 = {
1952 .algs_info = stm32_hash_algs_info_stm32f7,
1953 .algs_info_size = ARRAY_SIZE(stm32_hash_algs_info_stm32f7),
1958 static struct stm32_hash_algs_info stm32_hash_algs_info_stm32mp13[] = {
1960 .algs_list = algs_sha1,
1961 .size = ARRAY_SIZE(algs_sha1),
1964 .algs_list = algs_sha224,
1965 .size = ARRAY_SIZE(algs_sha224),
1968 .algs_list = algs_sha256,
1969 .size = ARRAY_SIZE(algs_sha256),
1972 .algs_list = algs_sha384_sha512,
1973 .size = ARRAY_SIZE(algs_sha384_sha512),
1976 .algs_list = algs_sha3,
1977 .size = ARRAY_SIZE(algs_sha3),
1981 static const struct stm32_hash_pdata stm32_hash_pdata_stm32mp13 = {
1983 .algs_info = stm32_hash_algs_info_stm32mp13,
1984 .algs_info_size = ARRAY_SIZE(stm32_hash_algs_info_stm32mp13),
1989 static const struct of_device_id stm32_hash_of_match[] = {
1990 { .compatible = "stericsson,ux500-hash", .data = &stm32_hash_pdata_ux500 },
1991 { .compatible = "st,stm32f456-hash", .data = &stm32_hash_pdata_stm32f4 },
1992 { .compatible = "st,stm32f756-hash", .data = &stm32_hash_pdata_stm32f7 },
1993 { .compatible = "st,stm32mp13-hash", .data = &stm32_hash_pdata_stm32mp13 },
1997 MODULE_DEVICE_TABLE(of, stm32_hash_of_match);
1999 static int stm32_hash_get_of_match(struct stm32_hash_dev *hdev,
2002 hdev->pdata = of_device_get_match_data(dev);
2004 dev_err(dev, "no compatible OF match\n");
2011 static int stm32_hash_probe(struct platform_device *pdev)
2013 struct stm32_hash_dev *hdev;
2014 struct device *dev = &pdev->dev;
2015 struct resource *res;
2018 hdev = devm_kzalloc(dev, sizeof(*hdev), GFP_KERNEL);
2022 hdev->io_base = devm_platform_get_and_ioremap_resource(pdev, 0, &res);
2023 if (IS_ERR(hdev->io_base))
2024 return PTR_ERR(hdev->io_base);
2026 hdev->phys_base = res->start;
2028 ret = stm32_hash_get_of_match(hdev, dev);
2032 irq = platform_get_irq_optional(pdev, 0);
2033 if (irq < 0 && irq != -ENXIO)
2037 ret = devm_request_threaded_irq(dev, irq,
2038 stm32_hash_irq_handler,
2039 stm32_hash_irq_thread,
2041 dev_name(dev), hdev);
2043 dev_err(dev, "Cannot grab IRQ\n");
2047 dev_info(dev, "No IRQ, use polling mode\n");
2048 hdev->polled = true;
2051 hdev->clk = devm_clk_get(&pdev->dev, NULL);
2052 if (IS_ERR(hdev->clk))
2053 return dev_err_probe(dev, PTR_ERR(hdev->clk),
2054 "failed to get clock for hash\n");
2056 ret = clk_prepare_enable(hdev->clk);
2058 dev_err(dev, "failed to enable hash clock (%d)\n", ret);
2062 pm_runtime_set_autosuspend_delay(dev, HASH_AUTOSUSPEND_DELAY);
2063 pm_runtime_use_autosuspend(dev);
2065 pm_runtime_get_noresume(dev);
2066 pm_runtime_set_active(dev);
2067 pm_runtime_enable(dev);
2069 hdev->rst = devm_reset_control_get(&pdev->dev, NULL);
2070 if (IS_ERR(hdev->rst)) {
2071 if (PTR_ERR(hdev->rst) == -EPROBE_DEFER) {
2072 ret = -EPROBE_DEFER;
2076 reset_control_assert(hdev->rst);
2078 reset_control_deassert(hdev->rst);
2083 platform_set_drvdata(pdev, hdev);
2085 ret = stm32_hash_dma_init(hdev);
2091 dev_info(dev, "DMA mode not available\n");
2094 dev_err(dev, "DMA init error %d\n", ret);
2098 spin_lock(&stm32_hash.lock);
2099 list_add_tail(&hdev->list, &stm32_hash.dev_list);
2100 spin_unlock(&stm32_hash.lock);
2102 /* Initialize crypto engine */
2103 hdev->engine = crypto_engine_alloc_init(dev, 1);
2104 if (!hdev->engine) {
2109 ret = crypto_engine_start(hdev->engine);
2111 goto err_engine_start;
2113 if (hdev->pdata->ux500)
2114 /* FIXME: implement DMA mode for Ux500 */
2117 hdev->dma_mode = stm32_hash_read(hdev, HASH_HWCFGR) & HASH_HWCFG_DMA_MASK;
2119 /* Register algos */
2120 ret = stm32_hash_register_algs(hdev);
2124 dev_info(dev, "Init HASH done HW ver %x DMA mode %u\n",
2125 stm32_hash_read(hdev, HASH_VER), hdev->dma_mode);
2127 pm_runtime_put_sync(dev);
2133 crypto_engine_exit(hdev->engine);
2135 spin_lock(&stm32_hash.lock);
2136 list_del(&hdev->list);
2137 spin_unlock(&stm32_hash.lock);
2140 dma_release_channel(hdev->dma_lch);
2142 pm_runtime_disable(dev);
2143 pm_runtime_put_noidle(dev);
2145 clk_disable_unprepare(hdev->clk);
2150 static void stm32_hash_remove(struct platform_device *pdev)
2152 struct stm32_hash_dev *hdev = platform_get_drvdata(pdev);
2155 ret = pm_runtime_get_sync(hdev->dev);
2157 stm32_hash_unregister_algs(hdev);
2159 crypto_engine_exit(hdev->engine);
2161 spin_lock(&stm32_hash.lock);
2162 list_del(&hdev->list);
2163 spin_unlock(&stm32_hash.lock);
2166 dma_release_channel(hdev->dma_lch);
2168 pm_runtime_disable(hdev->dev);
2169 pm_runtime_put_noidle(hdev->dev);
2172 clk_disable_unprepare(hdev->clk);
2176 static int stm32_hash_runtime_suspend(struct device *dev)
2178 struct stm32_hash_dev *hdev = dev_get_drvdata(dev);
2180 clk_disable_unprepare(hdev->clk);
2185 static int stm32_hash_runtime_resume(struct device *dev)
2187 struct stm32_hash_dev *hdev = dev_get_drvdata(dev);
2190 ret = clk_prepare_enable(hdev->clk);
2192 dev_err(hdev->dev, "Failed to prepare_enable clock\n");
2200 static const struct dev_pm_ops stm32_hash_pm_ops = {
2201 SET_SYSTEM_SLEEP_PM_OPS(pm_runtime_force_suspend,
2202 pm_runtime_force_resume)
2203 SET_RUNTIME_PM_OPS(stm32_hash_runtime_suspend,
2204 stm32_hash_runtime_resume, NULL)
2207 static struct platform_driver stm32_hash_driver = {
2208 .probe = stm32_hash_probe,
2209 .remove_new = stm32_hash_remove,
2211 .name = "stm32-hash",
2212 .pm = &stm32_hash_pm_ops,
2213 .of_match_table = stm32_hash_of_match,
2217 module_platform_driver(stm32_hash_driver);
2219 MODULE_DESCRIPTION("STM32 SHA1/SHA2/SHA3 & MD5 (HMAC) hw accelerator driver");
2221 MODULE_LICENSE("GPL v2");