David Brazdil | 66fc120 | 2022-07-04 21:48:45 +0100 | [diff] [blame] | 1 | // Copyright 2022, The Android Open Source Project |
| 2 | // |
| 3 | // Licensed under the Apache License, Version 2.0 (the "License"); |
| 4 | // you may not use this file except in compliance with the License. |
| 5 | // You may obtain a copy of the License at |
| 6 | // |
| 7 | // http://www.apache.org/licenses/LICENSE-2.0 |
| 8 | // |
| 9 | // Unless required by applicable law or agreed to in writing, software |
| 10 | // distributed under the License is distributed on an "AS IS" BASIS, |
| 11 | // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 12 | // See the License for the specific language governing permissions and |
| 13 | // limitations under the License. |
| 14 | |
| 15 | //! Project Rialto main source file. |
| 16 | |
| 17 | #![no_main] |
| 18 | #![no_std] |
David Brazdil | 66fc120 | 2022-07-04 21:48:45 +0100 | [diff] [blame] | 19 | |
Alice Wang | 4e082c3 | 2023-07-11 07:41:50 +0000 | [diff] [blame] | 20 | mod communication; |
Alice Wang | 9a8b39f | 2023-04-12 15:31:48 +0000 | [diff] [blame] | 21 | mod error; |
David Brazdil | 66fc120 | 2022-07-04 21:48:45 +0100 | [diff] [blame] | 22 | mod exceptions; |
Alice Wang | 474c0ee | 2023-09-14 12:52:33 +0000 | [diff] [blame] | 23 | mod fdt; |
David Brazdil | 66fc120 | 2022-07-04 21:48:45 +0100 | [diff] [blame] | 24 | |
| 25 | extern crate alloc; |
David Brazdil | 66fc120 | 2022-07-04 21:48:45 +0100 | [diff] [blame] | 26 | |
Alice Wang | 748b032 | 2023-07-24 12:51:18 +0000 | [diff] [blame] | 27 | use crate::communication::VsockStream; |
Alice Wang | 9a8b39f | 2023-04-12 15:31:48 +0000 | [diff] [blame] | 28 | use crate::error::{Error, Result}; |
Alice Wang | 9eebbab | 2024-04-10 14:57:27 +0000 | [diff] [blame] | 29 | use crate::fdt::{read_dice_range_from, read_vendor_hashtree_root_digest}; |
Alice Wang | 77639bf | 2023-09-21 06:57:12 +0000 | [diff] [blame] | 30 | use alloc::boxed::Box; |
Maurice Lam | 0322b8c | 2023-12-18 22:13:48 +0000 | [diff] [blame] | 31 | use bssl_sys::CRYPTO_library_init; |
Alice Wang | 953a657 | 2023-08-24 13:40:10 +0000 | [diff] [blame] | 32 | use ciborium_io::Write; |
Alice Wang | 74f7f4b | 2023-06-13 08:24:50 +0000 | [diff] [blame] | 33 | use core::num::NonZeroUsize; |
Pierre-Clément Tosi | 3d4c5c3 | 2023-05-31 16:57:06 +0000 | [diff] [blame] | 34 | use core::slice; |
Alice Wang | 77639bf | 2023-09-21 06:57:12 +0000 | [diff] [blame] | 35 | use diced_open_dice::{bcc_handover_parse, DiceArtifacts}; |
Alice Wang | dda3ba9 | 2023-05-25 15:15:30 +0000 | [diff] [blame] | 36 | use fdtpci::PciInfo; |
Pierre-Clément Tosi | 910a72d | 2023-06-29 14:29:29 +0000 | [diff] [blame] | 37 | use hyp::{get_mem_sharer, get_mmio_guard}; |
Alice Wang | b6d2c64 | 2023-06-13 13:07:06 +0000 | [diff] [blame] | 38 | use libfdt::FdtError; |
Alice Wang | 9a8b39f | 2023-04-12 15:31:48 +0000 | [diff] [blame] | 39 | use log::{debug, error, info}; |
Alice Wang | b5d9a46 | 2024-02-09 10:10:47 +0000 | [diff] [blame] | 40 | use service_vm_comm::{ServiceVmRequest, VmType}; |
Alice Wang | 4ac9c8b | 2023-12-05 16:23:14 +0000 | [diff] [blame] | 41 | use service_vm_fake_chain::service_vm; |
Alice Wang | 9eebbab | 2024-04-10 14:57:27 +0000 | [diff] [blame] | 42 | use service_vm_requests::{process_request, RequestContext}; |
Alice Wang | 6218335 | 2023-07-04 08:33:27 +0000 | [diff] [blame] | 43 | use virtio_drivers::{ |
Alice Wang | d158e39 | 2023-08-30 12:51:12 +0000 | [diff] [blame] | 44 | device::socket::{VsockAddr, VMADDR_CID_HOST}, |
Alice Wang | 6218335 | 2023-07-04 08:33:27 +0000 | [diff] [blame] | 45 | transport::{pci::bus::PciRoot, DeviceType, Transport}, |
| 46 | Hal, |
| 47 | }; |
Alice Wang | 4b3cc11 | 2023-06-06 12:22:53 +0000 | [diff] [blame] | 48 | use vmbase::{ |
Pierre-Clément Tosi | 6a4808c | 2023-06-29 09:19:38 +0000 | [diff] [blame] | 49 | configure_heap, |
Alice Wang | b6d2c64 | 2023-06-13 13:07:06 +0000 | [diff] [blame] | 50 | fdt::SwiotlbInfo, |
Alice Wang | 89d2959 | 2023-06-12 09:41:29 +0000 | [diff] [blame] | 51 | layout::{self, crosvm}, |
| 52 | main, |
Alice Wang | 6218335 | 2023-07-04 08:33:27 +0000 | [diff] [blame] | 53 | memory::{MemoryTracker, PageTable, MEMORY, PAGE_SIZE, SIZE_128KB}, |
Alice Wang | 4b3cc11 | 2023-06-06 12:22:53 +0000 | [diff] [blame] | 54 | power::reboot, |
Alice Wang | 6218335 | 2023-07-04 08:33:27 +0000 | [diff] [blame] | 55 | virtio::{ |
| 56 | pci::{self, PciTransportIterator, VirtIOSocket}, |
| 57 | HalImpl, |
| 58 | }, |
Alice Wang | 4b3cc11 | 2023-06-06 12:22:53 +0000 | [diff] [blame] | 59 | }; |
David Brazdil | 66fc120 | 2022-07-04 21:48:45 +0100 | [diff] [blame] | 60 | |
Alice Wang | 4e082c3 | 2023-07-11 07:41:50 +0000 | [diff] [blame] | 61 | fn host_addr() -> VsockAddr { |
Alice Wang | 1d9a587 | 2023-09-06 14:32:36 +0000 | [diff] [blame] | 62 | VsockAddr { cid: VMADDR_CID_HOST, port: vm_type().port() } |
Alice Wang | 4e082c3 | 2023-07-11 07:41:50 +0000 | [diff] [blame] | 63 | } |
| 64 | |
Alice Wang | 1d9a587 | 2023-09-06 14:32:36 +0000 | [diff] [blame] | 65 | fn vm_type() -> VmType { |
Alice Wang | 4e082c3 | 2023-07-11 07:41:50 +0000 | [diff] [blame] | 66 | // Use MMIO support to determine whether the VM is protected. |
Alice Wang | 1d9a587 | 2023-09-06 14:32:36 +0000 | [diff] [blame] | 67 | if get_mmio_guard().is_some() { |
| 68 | VmType::ProtectedVm |
| 69 | } else { |
| 70 | VmType::NonProtectedVm |
| 71 | } |
Alice Wang | 4e082c3 | 2023-07-11 07:41:50 +0000 | [diff] [blame] | 72 | } |
| 73 | |
Alice Wang | b70bdb5 | 2023-06-12 08:17:58 +0000 | [diff] [blame] | 74 | fn new_page_table() -> Result<PageTable> { |
Alice Wang | ee5b180 | 2023-06-07 07:41:54 +0000 | [diff] [blame] | 75 | let mut page_table = PageTable::default(); |
Pierre-Clément Tosi | 3d4c5c3 | 2023-05-31 16:57:06 +0000 | [diff] [blame] | 76 | |
Alice Wang | a3931aa | 2023-07-05 12:52:09 +0000 | [diff] [blame] | 77 | page_table.map_data(&layout::scratch_range().into())?; |
| 78 | page_table.map_data(&layout::stack_range(40 * PAGE_SIZE).into())?; |
| 79 | page_table.map_code(&layout::text_range().into())?; |
| 80 | page_table.map_rodata(&layout::rodata_range().into())?; |
| 81 | page_table.map_device(&layout::console_uart_range().into())?; |
David Brazdil | 66fc120 | 2022-07-04 21:48:45 +0100 | [diff] [blame] | 82 | |
Alice Wang | b70bdb5 | 2023-06-12 08:17:58 +0000 | [diff] [blame] | 83 | Ok(page_table) |
David Brazdil | 66fc120 | 2022-07-04 21:48:45 +0100 | [diff] [blame] | 84 | } |
| 85 | |
Alice Wang | dda3ba9 | 2023-05-25 15:15:30 +0000 | [diff] [blame] | 86 | /// # Safety |
| 87 | /// |
| 88 | /// Behavior is undefined if any of the following conditions are violated: |
| 89 | /// * The `fdt_addr` must be a valid pointer and points to a valid `Fdt`. |
| 90 | unsafe fn try_main(fdt_addr: usize) -> Result<()> { |
David Brazdil | 66fc120 | 2022-07-04 21:48:45 +0100 | [diff] [blame] | 91 | info!("Welcome to Rialto!"); |
Alice Wang | b70bdb5 | 2023-06-12 08:17:58 +0000 | [diff] [blame] | 92 | let page_table = new_page_table()?; |
| 93 | |
| 94 | MEMORY.lock().replace(MemoryTracker::new( |
| 95 | page_table, |
| 96 | crosvm::MEM_START..layout::MAX_VIRT_ADDR, |
| 97 | crosvm::MMIO_RANGE, |
| 98 | None, // Rialto doesn't have any payload for now. |
| 99 | )); |
Alice Wang | 74f7f4b | 2023-06-13 08:24:50 +0000 | [diff] [blame] | 100 | |
| 101 | let fdt_range = MEMORY |
| 102 | .lock() |
| 103 | .as_mut() |
| 104 | .unwrap() |
| 105 | .alloc(fdt_addr, NonZeroUsize::new(crosvm::FDT_MAX_SIZE).unwrap())?; |
| 106 | // SAFETY: The tracker validated the range to be in main memory, mapped, and not overlap. |
| 107 | let fdt = unsafe { slice::from_raw_parts(fdt_range.start as *mut u8, fdt_range.len()) }; |
Alice Wang | 674257a | 2023-06-13 09:44:53 +0000 | [diff] [blame] | 108 | // We do not need to validate the DT since it is already validated in pvmfw. |
Alice Wang | 74f7f4b | 2023-06-13 08:24:50 +0000 | [diff] [blame] | 109 | let fdt = libfdt::Fdt::from_slice(fdt)?; |
Alice Wang | 74f7f4b | 2023-06-13 08:24:50 +0000 | [diff] [blame] | 110 | |
Alice Wang | 674257a | 2023-06-13 09:44:53 +0000 | [diff] [blame] | 111 | let memory_range = fdt.first_memory_range()?; |
| 112 | MEMORY.lock().as_mut().unwrap().shrink(&memory_range).map_err(|e| { |
| 113 | error!("Failed to use memory range value from DT: {memory_range:#x?}"); |
| 114 | e |
| 115 | })?; |
Alice Wang | b6d2c64 | 2023-06-13 13:07:06 +0000 | [diff] [blame] | 116 | |
Pierre-Clément Tosi | 910a72d | 2023-06-29 14:29:29 +0000 | [diff] [blame] | 117 | if let Some(mem_sharer) = get_mem_sharer() { |
| 118 | let granule = mem_sharer.granule()?; |
Alice Wang | b6d2c64 | 2023-06-13 13:07:06 +0000 | [diff] [blame] | 119 | MEMORY.lock().as_mut().unwrap().init_dynamic_shared_pool(granule).map_err(|e| { |
| 120 | error!("Failed to initialize dynamically shared pool."); |
| 121 | e |
| 122 | })?; |
Pierre-Clément Tosi | 8937cb8 | 2023-07-06 15:07:38 +0000 | [diff] [blame] | 123 | } else if let Ok(swiotlb_info) = SwiotlbInfo::new_from_fdt(fdt) { |
| 124 | let range = swiotlb_info.fixed_range().ok_or_else(|| { |
Alice Wang | b6d2c64 | 2023-06-13 13:07:06 +0000 | [diff] [blame] | 125 | error!("Pre-shared pool range not specified in swiotlb node"); |
| 126 | Error::from(FdtError::BadValue) |
| 127 | })?; |
| 128 | MEMORY.lock().as_mut().unwrap().init_static_shared_pool(range).map_err(|e| { |
| 129 | error!("Failed to initialize pre-shared pool."); |
| 130 | e |
| 131 | })?; |
Pierre-Clément Tosi | 8937cb8 | 2023-07-06 15:07:38 +0000 | [diff] [blame] | 132 | } else { |
| 133 | info!("No MEM_SHARE capability detected or swiotlb found: allocating buffers from heap."); |
| 134 | MEMORY.lock().as_mut().unwrap().init_heap_shared_pool().map_err(|e| { |
| 135 | error!("Failed to initialize heap-based pseudo-shared pool."); |
| 136 | e |
| 137 | })?; |
Alice Wang | b6d2c64 | 2023-06-13 13:07:06 +0000 | [diff] [blame] | 138 | } |
Alice Wang | 7b2ab94 | 2023-09-12 13:04:42 +0000 | [diff] [blame] | 139 | |
| 140 | // Initializes the crypto library before any crypto operations and after the heap is |
| 141 | // initialized. |
| 142 | // SAFETY: It is safe to call this function multiple times and concurrently. |
| 143 | unsafe { |
| 144 | CRYPTO_library_init(); |
| 145 | } |
Alice Wang | 77639bf | 2023-09-21 06:57:12 +0000 | [diff] [blame] | 146 | let bcc_handover: Box<dyn DiceArtifacts> = match vm_type() { |
Alice Wang | 474c0ee | 2023-09-14 12:52:33 +0000 | [diff] [blame] | 147 | VmType::ProtectedVm => { |
| 148 | let dice_range = read_dice_range_from(fdt)?; |
| 149 | info!("DICE range: {dice_range:#x?}"); |
Alice Wang | 9f3ca83 | 2023-09-20 09:33:14 +0000 | [diff] [blame] | 150 | // SAFETY: This region was written by pvmfw in its writable_data region. The region |
| 151 | // has no overlap with the main memory region and is safe to be mapped as read-only |
| 152 | // data. |
| 153 | let res = unsafe { |
| 154 | MEMORY.lock().as_mut().unwrap().alloc_range_outside_main_memory(&dice_range) |
| 155 | }; |
| 156 | res.map_err(|e| { |
| 157 | error!("Failed to use DICE range from DT: {dice_range:#x?}"); |
| 158 | e |
| 159 | })?; |
| 160 | let dice_start = dice_range.start as *const u8; |
| 161 | // SAFETY: There's no memory overlap and the region is mapped as read-only data. |
| 162 | let bcc_handover = unsafe { slice::from_raw_parts(dice_start, dice_range.len()) }; |
Alice Wang | 77639bf | 2023-09-21 06:57:12 +0000 | [diff] [blame] | 163 | Box::new(bcc_handover_parse(bcc_handover)?) |
Alice Wang | 474c0ee | 2023-09-14 12:52:33 +0000 | [diff] [blame] | 164 | } |
Alice Wang | 77639bf | 2023-09-21 06:57:12 +0000 | [diff] [blame] | 165 | // Currently, a sample DICE data is used for non-protected VMs, as these VMs only run |
| 166 | // in tests at the moment. |
Alice Wang | 4ac9c8b | 2023-12-05 16:23:14 +0000 | [diff] [blame] | 167 | VmType::NonProtectedVm => Box::new(service_vm::fake_service_vm_dice_artifacts()?), |
Alice Wang | 474c0ee | 2023-09-14 12:52:33 +0000 | [diff] [blame] | 168 | }; |
Alice Wang | d36c711 | 2023-07-04 09:50:45 +0000 | [diff] [blame] | 169 | |
| 170 | let pci_info = PciInfo::from_fdt(fdt)?; |
| 171 | debug!("PCI: {pci_info:#x?}"); |
Alice Wang | 6218335 | 2023-07-04 08:33:27 +0000 | [diff] [blame] | 172 | let mut pci_root = pci::initialize(pci_info, MEMORY.lock().as_mut().unwrap()) |
Alice Wang | d36c711 | 2023-07-04 09:50:45 +0000 | [diff] [blame] | 173 | .map_err(Error::PciInitializationFailed)?; |
| 174 | debug!("PCI root: {pci_root:#x?}"); |
Alice Wang | 6218335 | 2023-07-04 08:33:27 +0000 | [diff] [blame] | 175 | let socket_device = find_socket_device::<HalImpl>(&mut pci_root)?; |
| 176 | debug!("Found socket device: guest cid = {:?}", socket_device.guest_cid()); |
Alice Wang | 9eebbab | 2024-04-10 14:57:27 +0000 | [diff] [blame] | 177 | let vendor_hashtree_root_digest = read_vendor_hashtree_root_digest(fdt)?; |
| 178 | let request_context = |
| 179 | RequestContext { dice_artifacts: bcc_handover.as_ref(), vendor_hashtree_root_digest }; |
Alice Wang | 4e082c3 | 2023-07-11 07:41:50 +0000 | [diff] [blame] | 180 | |
Alice Wang | 748b032 | 2023-07-24 12:51:18 +0000 | [diff] [blame] | 181 | let mut vsock_stream = VsockStream::new(socket_device, host_addr())?; |
Alice Wang | fbdc85b | 2023-09-07 12:56:46 +0000 | [diff] [blame] | 182 | while let ServiceVmRequest::Process(req) = vsock_stream.read_request()? { |
Alice Wang | 2e6cdc1 | 2024-02-19 11:36:36 +0000 | [diff] [blame] | 183 | info!("Received request: {}", req.name()); |
Alice Wang | 9eebbab | 2024-04-10 14:57:27 +0000 | [diff] [blame] | 184 | let response = process_request(req, &request_context); |
Alice Wang | 2e6cdc1 | 2024-02-19 11:36:36 +0000 | [diff] [blame] | 185 | info!("Sending response: {}", response.name()); |
Alice Wang | fbdc85b | 2023-09-07 12:56:46 +0000 | [diff] [blame] | 186 | vsock_stream.write_response(&response)?; |
| 187 | vsock_stream.flush()?; |
| 188 | } |
Alice Wang | 748b032 | 2023-07-24 12:51:18 +0000 | [diff] [blame] | 189 | vsock_stream.shutdown()?; |
Alice Wang | 4e082c3 | 2023-07-11 07:41:50 +0000 | [diff] [blame] | 190 | |
Alice Wang | 9a8b39f | 2023-04-12 15:31:48 +0000 | [diff] [blame] | 191 | Ok(()) |
| 192 | } |
| 193 | |
Alice Wang | 6218335 | 2023-07-04 08:33:27 +0000 | [diff] [blame] | 194 | fn find_socket_device<T: Hal>(pci_root: &mut PciRoot) -> Result<VirtIOSocket<T>> { |
| 195 | PciTransportIterator::<T>::new(pci_root) |
| 196 | .find(|t| DeviceType::Socket == t.device_type()) |
| 197 | .map(VirtIOSocket::<T>::new) |
| 198 | .transpose() |
| 199 | .map_err(Error::VirtIOSocketCreationFailed)? |
| 200 | .ok_or(Error::MissingVirtIOSocketDevice) |
| 201 | } |
| 202 | |
Pierre-Clément Tosi | 910a72d | 2023-06-29 14:29:29 +0000 | [diff] [blame] | 203 | fn try_unshare_all_memory() -> Result<()> { |
Alice Wang | 77d9dd3 | 2023-06-07 13:41:21 +0000 | [diff] [blame] | 204 | info!("Starting unsharing memory..."); |
| 205 | |
Alice Wang | 77d9dd3 | 2023-06-07 13:41:21 +0000 | [diff] [blame] | 206 | // No logging after unmapping UART. |
Pierre-Clément Tosi | 910a72d | 2023-06-29 14:29:29 +0000 | [diff] [blame] | 207 | if let Some(mmio_guard) = get_mmio_guard() { |
| 208 | mmio_guard.unmap(vmbase::console::BASE_ADDRESS)?; |
Alice Wang | b70bdb5 | 2023-06-12 08:17:58 +0000 | [diff] [blame] | 209 | } |
| 210 | // Unshares all memory and deactivates page table. |
| 211 | drop(MEMORY.lock().take()); |
Alice Wang | 77d9dd3 | 2023-06-07 13:41:21 +0000 | [diff] [blame] | 212 | Ok(()) |
| 213 | } |
| 214 | |
Pierre-Clément Tosi | 910a72d | 2023-06-29 14:29:29 +0000 | [diff] [blame] | 215 | fn unshare_all_memory() { |
| 216 | if let Err(e) = try_unshare_all_memory() { |
Alice Wang | 77d9dd3 | 2023-06-07 13:41:21 +0000 | [diff] [blame] | 217 | error!("Failed to unshare the memory: {e}"); |
| 218 | } |
| 219 | } |
| 220 | |
Alice Wang | 9a8b39f | 2023-04-12 15:31:48 +0000 | [diff] [blame] | 221 | /// Entry point for Rialto. |
Alice Wang | dda3ba9 | 2023-05-25 15:15:30 +0000 | [diff] [blame] | 222 | pub fn main(fdt_addr: u64, _a1: u64, _a2: u64, _a3: u64) { |
Pierre-Clément Tosi | d330548 | 2023-06-29 15:03:48 +0000 | [diff] [blame] | 223 | log::set_max_level(log::LevelFilter::Debug); |
Alice Wang | dda3ba9 | 2023-05-25 15:15:30 +0000 | [diff] [blame] | 224 | // SAFETY: `fdt_addr` is supposed to be a valid pointer and points to |
| 225 | // a valid `Fdt`. |
| 226 | match unsafe { try_main(fdt_addr as usize) } { |
Pierre-Clément Tosi | 910a72d | 2023-06-29 14:29:29 +0000 | [diff] [blame] | 227 | Ok(()) => unshare_all_memory(), |
Alice Wang | 9a8b39f | 2023-04-12 15:31:48 +0000 | [diff] [blame] | 228 | Err(e) => { |
| 229 | error!("Rialto failed with {e}"); |
Pierre-Clément Tosi | 910a72d | 2023-06-29 14:29:29 +0000 | [diff] [blame] | 230 | unshare_all_memory(); |
Alice Wang | 9a8b39f | 2023-04-12 15:31:48 +0000 | [diff] [blame] | 231 | reboot() |
| 232 | } |
| 233 | } |
David Brazdil | 66fc120 | 2022-07-04 21:48:45 +0100 | [diff] [blame] | 234 | } |
| 235 | |
David Brazdil | 66fc120 | 2022-07-04 21:48:45 +0100 | [diff] [blame] | 236 | main!(main); |
Alice Wang | 65ea4cb | 2024-04-30 10:07:51 +0000 | [diff] [blame^] | 237 | configure_heap!(SIZE_128KB * 2); |