blob: 35b792f1f82030dd56ed21f2d660fdd7dac4ec69 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
|
/** @file
Random number generator service that uses the SEED instruction
to provide pseudorandom numbers.
Copyright (c) 2024, Rivos, Inc.
Copyright (C) 2025 Advanced Micro Devices, Inc. All rights reserved.
SPDX-License-Identifier: BSD-2-Clause-Patent
**/
#include <Uefi.h>
#include <Library/BaseLib.h>
#include <Library/DebugLib.h>
#include <Library/RngLib.h>
#include <Register/RiscV64/RiscVEncoding.h>
#include "BaseRngLibInternals.h"
#define RISCV_CPU_FEATURE_ZKR_BITMASK 0x8
#define SEED_RETRY_LOOPS 100
// 64-bit CPU-based RNG using risc-v Zkr instruction
// Defined in Seed.S
extern UINT64
ReadSeed (
VOID
);
/**
Gets seed value by executing trng instruction (CSR 0x15) amd returns
the see to the caller 64bit value.
@param[out] Out Buffer pointer to store the 64-bit random value.
@retval TRUE Random number generated successfully.
@retval FALSE Failed to generate the random number.
**/
STATIC
BOOLEAN
Get64BitSeed (
OUT UINT64 *Out
)
{
UINT64 Seed;
UINTN Retry;
UINTN ValidSeeds;
UINTN NeededSeeds;
UINT16 *Entropy;
Retry = SEED_RETRY_LOOPS;
Entropy = (UINT16 *)Out;
NeededSeeds = sizeof (UINT64) / sizeof (UINT16);
ValidSeeds = 0;
if (!ArchIsRngSupported ()) {
DEBUG ((DEBUG_ERROR, "Get64BitSeed: HW not supported!\n"));
return FALSE;
}
do {
Seed = ReadSeed ();
switch (Seed & SEED_OPST_MASK) {
case SEED_OPST_ES16:
Entropy[ValidSeeds++] = Seed & SEED_ENTROPY_MASK;
if (ValidSeeds == NeededSeeds) {
return TRUE;
}
break;
case SEED_OPST_DEAD:
DEBUG ((DEBUG_ERROR, "Get64BitSeed: Unrecoverable error!\n"));
return FALSE;
case SEED_OPST_BIST: // fallthrough
case SEED_OPST_WAIT: // fallthrough
default:
continue;
}
} while (--Retry);
return FALSE;
}
/**
Constructor library which initializes Seeds and mStatus array.
@retval EFI_SUCCESS initialization was successful.
@retval EFI_UNSUPPORTED Feature not supported.
**/
EFI_STATUS
EFIAPI
BaseRngLibConstructor (
VOID
)
{
return EFI_SUCCESS;
}
/**
Generates a 16-bit random number.
@param[out] Rand Buffer pointer to store the 16-bit random value.
@retval TRUE Random number generated successfully.
@retval FALSE Failed to generate the random number.
**/
BOOLEAN
EFIAPI
ArchGetRandomNumber16 (
OUT UINT16 *Rand
)
{
UINT64 Rand64;
if (ArchGetRandomNumber64 (&Rand64)) {
*Rand = Rand64 & MAX_UINT16;
return TRUE;
}
return FALSE;
}
/**
Generates a 32-bit random number.
@param[out] Rand Buffer pointer to store the 32-bit random value.
@retval TRUE Random number generated successfully.
@retval FALSE Failed to generate the random number.
**/
BOOLEAN
EFIAPI
ArchGetRandomNumber32 (
OUT UINT32 *Rand
)
{
UINT64 Rand64;
if (ArchGetRandomNumber64 (&Rand64)) {
*Rand = Rand64 & MAX_UINT32;
return TRUE;
}
return FALSE;
}
/**
Generates a 64-bit random number.
@param[out] Rand Buffer pointer to store the 64-bit random value.
@retval TRUE Random number generated successfully.
@retval FALSE Failed to generate the random number.
**/
BOOLEAN
EFIAPI
ArchGetRandomNumber64 (
OUT UINT64 *Rand
)
{
UINT64 Y;
if (!Get64BitSeed (&Y)) {
return FALSE;
}
*Rand = Y;
return TRUE;
}
/**
Checks whether SEED is supported.
@retval TRUE SEED is supported.
**/
BOOLEAN
EFIAPI
ArchIsRngSupported (
VOID
)
{
return ((PcdGet64 (PcdRiscVFeatureOverride) & RISCV_CPU_FEATURE_ZKR_BITMASK) != 0);
}
|