blob: 0d10e49483228abf5c68295cc19a5e48c8d065da [file] [log] [blame]
fbrosson533407a2018-04-04 21:44:29 +00001#!/usr/bin/env perl
SimonB60f2cf92016-04-03 14:16:08 +01002#
3# This file is part of mbed TLS (https://tls.mbed.org)
4#
5# Copyright (c) 2014-2016, ARM Limited, All Rights Reserved
6#
7# Purpose
8#
9# Comments and uncomments #define lines in the given header file and optionally
Simon Butcher4ae86912016-06-21 10:09:25 +010010# sets their value or can get the value. This is to provide scripting control of
11# what preprocessor symbols, and therefore what build time configuration flags
12# are set in the 'config.h' file.
SimonB60f2cf92016-04-03 14:16:08 +010013#
14# Usage: config.pl [-f <file> | --file <file>] [-o | --force]
Simon Butcher4ae86912016-06-21 10:09:25 +010015# [set <symbol> <value> | unset <symbol> | get <symbol> |
16# full | realfull]
SimonB60f2cf92016-04-03 14:16:08 +010017#
18# Full usage description provided below.
19#
Hanno Becker7c0f17d2017-09-28 11:49:46 +010020# The following options are disabled instead of enabled with "full".
SimonB60f2cf92016-04-03 14:16:08 +010021#
Simon Butcherab5df402016-06-11 02:31:21 +010022# MBEDTLS_TEST_NULL_ENTROPY
SimonB60f2cf92016-04-03 14:16:08 +010023# MBEDTLS_DEPRECATED_REMOVED
24# MBEDTLS_HAVE_SSE2
25# MBEDTLS_PLATFORM_NO_STD_FUNCTIONS
26# MBEDTLS_ECP_DP_M221_ENABLED
27# MBEDTLS_ECP_DP_M383_ENABLED
28# MBEDTLS_ECP_DP_M511_ENABLED
Hanno Becker909e68d2019-02-26 13:51:00 +000029# MBEDTLS_MEMORY_BACKTRACE
30# MBEDTLS_MEMORY_BUFFER_ALLOC_C
SimonB60f2cf92016-04-03 14:16:08 +010031# MBEDTLS_NO_DEFAULT_ENTROPY_SOURCES
32# MBEDTLS_NO_PLATFORM_ENTROPY
33# MBEDTLS_REMOVE_ARC4_CIPHERSUITES
Andres Amaya Garcia4a512282018-10-30 18:21:41 +000034# MBEDTLS_REMOVE_3DES_CIPHERSUITES
SimonB60f2cf92016-04-03 14:16:08 +010035# MBEDTLS_SSL_HW_RECORD_ACCEL
Hanno Becker7c0f17d2017-09-28 11:49:46 +010036# MBEDTLS_RSA_NO_CRT
SimonB60f2cf92016-04-03 14:16:08 +010037# MBEDTLS_X509_ALLOW_EXTENSIONS_NON_V3
38# MBEDTLS_X509_ALLOW_UNSUPPORTED_CRITICAL_EXTENSION
39# - this could be enabled if the respective tests were adapted
40# MBEDTLS_ZLIB_SUPPORT
41# MBEDTLS_PKCS11_C
Hanno Becker2ea2f052019-02-26 14:33:57 +000042# MBEDTLS_NO_UDBL_DIVISION
43# MBEDTLS_NO_64BIT_MULTIPLICATION
Andrzej Kurekd3643ef2019-02-07 07:41:27 -050044# MBEDTLS_PSA_CRYPTO_SPM
Jaeden Amero57f4d9e2019-03-15 16:14:19 +000045# MBEDTLS_PSA_INJECT_ENTROPY
Andrzej Kurek03c35a52019-04-17 06:36:20 -040046# MBEDTLS_ECP_RESTARTABLE
SimonB60f2cf92016-04-03 14:16:08 +010047# and any symbol beginning _ALT
48#
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +020049
50use warnings;
51use strict;
52
SimonB60f2cf92016-04-03 14:16:08 +010053my $config_file = "include/mbedtls/config.h";
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +020054my $usage = <<EOU;
SimonB60f2cf92016-04-03 14:16:08 +010055$0 [-f <file> | --file <file>] [-o | --force]
Simon Butcher4ae86912016-06-21 10:09:25 +010056 [set <symbol> <value> | unset <symbol> | get <symbol> |
Azim Khanc3c3a682017-12-21 15:19:53 +000057 full | realfull | baremetal]
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +020058
SimonB60f2cf92016-04-03 14:16:08 +010059Commands
Simon Butcher4ae86912016-06-21 10:09:25 +010060 set <symbol> [<value>] - Uncomments or adds a #define for the <symbol> to
SimonB60f2cf92016-04-03 14:16:08 +010061 the configuration file, and optionally making it
62 of <value>.
63 If the symbol isn't present in the file an error
64 is returned.
Simon Butcher4ae86912016-06-21 10:09:25 +010065 unset <symbol> - Comments out the #define for the given symbol if
66 present in the configuration file.
67 get <symbol> - Finds the #define for the given symbol, returning
Gilles Peskined98e9e82017-10-09 16:56:18 +020068 an exitcode of 0 if the symbol is found, and 1 if
Simon Butcher4ae86912016-06-21 10:09:25 +010069 not. The value of the symbol is output if one is
70 specified in the configuration file.
SimonB60f2cf92016-04-03 14:16:08 +010071 full - Uncomments all #define's in the configuration file
Simon Butcher4ae86912016-06-21 10:09:25 +010072 excluding some reserved symbols, until the
SimonB60f2cf92016-04-03 14:16:08 +010073 'Module configuration options' section
74 realfull - Uncomments all #define's with no exclusions
Azim Khanc3c3a682017-12-21 15:19:53 +000075 baremetal - Sets full configuration suitable for baremetal build.
SimonB60f2cf92016-04-03 14:16:08 +010076
77Options
78 -f | --file <filename> - The file or file path for the configuration file
79 to edit. When omitted, the following default is
80 used:
81 $config_file
82 -o | --force - If the symbol isn't present in the configuration
Brian J Murray2adecba2016-11-06 04:45:15 -080083 file when setting its value, a #define is
SimonB60f2cf92016-04-03 14:16:08 +010084 appended to the end of the file.
85
86EOU
87
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +020088my @excluded = qw(
Simon Butcherab5df402016-06-11 02:31:21 +010089MBEDTLS_TEST_NULL_ENTROPY
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020090MBEDTLS_DEPRECATED_REMOVED
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020091MBEDTLS_HAVE_SSE2
92MBEDTLS_PLATFORM_NO_STD_FUNCTIONS
93MBEDTLS_ECP_DP_M221_ENABLED
94MBEDTLS_ECP_DP_M383_ENABLED
95MBEDTLS_ECP_DP_M511_ENABLED
Hanno Becker909e68d2019-02-26 13:51:00 +000096MBEDTLS_MEMORY_BACKTRACE
97MBEDTLS_MEMORY_BUFFER_ALLOC_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020098MBEDTLS_NO_DEFAULT_ENTROPY_SOURCES
99MBEDTLS_NO_PLATFORM_ENTROPY
Hanno Becker7c0f17d2017-09-28 11:49:46 +0100100MBEDTLS_RSA_NO_CRT
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200101MBEDTLS_REMOVE_ARC4_CIPHERSUITES
Andres Amaya Garcia4a512282018-10-30 18:21:41 +0000102MBEDTLS_REMOVE_3DES_CIPHERSUITES
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200103MBEDTLS_SSL_HW_RECORD_ACCEL
104MBEDTLS_X509_ALLOW_EXTENSIONS_NON_V3
105MBEDTLS_X509_ALLOW_UNSUPPORTED_CRITICAL_EXTENSION
106MBEDTLS_ZLIB_SUPPORT
107MBEDTLS_PKCS11_C
Azim Khanc4e96942017-12-21 15:22:37 +0000108MBEDTLS_NO_UDBL_DIVISION
Manuel Pégourié-Gonnard2adb3752018-06-07 10:51:44 +0200109MBEDTLS_NO_64BIT_MULTIPLICATION
Andrzej Kurekd3643ef2019-02-07 07:41:27 -0500110MBEDTLS_PSA_CRYPTO_SPM
Jaeden Amero57f4d9e2019-03-15 16:14:19 +0000111MBEDTLS_PSA_INJECT_ENTROPY
Andrzej Kurek03c35a52019-04-17 06:36:20 -0400112MBEDTLS_ECP_RESTARTABLE
Christoph M. Wintersteiger6cddd302019-01-17 12:17:54 +0000113MBEDTLS_ECDH_VARIANT_EVEREST_ENABLED
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200114_ALT\s*$
115);
116
Azim Khan0d445732017-12-21 09:28:39 +0000117# Things that should be disabled in "baremetal"
118my @excluded_baremetal = qw(
119MBEDTLS_NET_C
120MBEDTLS_TIMING_C
121MBEDTLS_FS_IO
122MBEDTLS_ENTROPY_NV_SEED
123MBEDTLS_HAVE_TIME
124MBEDTLS_HAVE_TIME_DATE
125MBEDTLS_DEPRECATED_WARNING
126MBEDTLS_HAVEGE_C
127MBEDTLS_THREADING_C
128MBEDTLS_THREADING_PTHREAD
129MBEDTLS_MEMORY_BACKTRACE
130MBEDTLS_MEMORY_BUFFER_ALLOC_C
131MBEDTLS_PLATFORM_TIME_ALT
132MBEDTLS_PLATFORM_FPRINTF_ALT
Andrzej Kurek9c754a92019-04-19 15:03:03 -0400133MBEDTLS_PSA_ITS_FILE_C
134MBEDTLS_PSA_CRYPTO_STORAGE_C
Azim Khan0d445732017-12-21 09:28:39 +0000135);
136
Manuel Pégourié-Gonnardb7527152015-06-03 09:59:06 +0100137# Things that should be enabled in "full" even if they match @excluded
138my @non_excluded = qw(
139PLATFORM_[A-Z0-9]+_ALT
140);
141
Azim Khan0d445732017-12-21 09:28:39 +0000142# Things that should be enabled in "baremetal"
143my @non_excluded_baremetal = qw(
144MBEDTLS_NO_PLATFORM_ENTROPY
145);
146
SimonB60f2cf92016-04-03 14:16:08 +0100147# Process the command line arguments
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200148
SimonB60f2cf92016-04-03 14:16:08 +0100149my $force_option = 0;
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200150
SimonB60f2cf92016-04-03 14:16:08 +0100151my ($arg, $name, $value, $action);
152
SimonB73883c12016-04-04 13:49:10 +0100153while ($arg = shift) {
SimonB60f2cf92016-04-03 14:16:08 +0100154
155 # Check if the argument is an option
SimonB73883c12016-04-04 13:49:10 +0100156 if ($arg eq "-f" || $arg eq "--file") {
SimonB60f2cf92016-04-03 14:16:08 +0100157 $config_file = shift;
158
159 -f $config_file or die "No such file: $config_file\n";
160
161 }
SimonB73883c12016-04-04 13:49:10 +0100162 elsif ($arg eq "-o" || $arg eq "--force") {
SimonB60f2cf92016-04-03 14:16:08 +0100163 $force_option = 1;
164
165 }
166 else
167 {
168 # ...else assume it's a command
169 $action = $arg;
170
Azim Khan0d445732017-12-21 09:28:39 +0000171 if ($action eq "full" || $action eq "realfull" || $action eq "baremetal" ) {
SimonB60f2cf92016-04-03 14:16:08 +0100172 # No additional parameters
173 die $usage if @ARGV;
174
175 }
Simon Butcher4ae86912016-06-21 10:09:25 +0100176 elsif ($action eq "unset" || $action eq "get") {
SimonB60f2cf92016-04-03 14:16:08 +0100177 die $usage unless @ARGV;
178 $name = shift;
179
180 }
181 elsif ($action eq "set") {
182 die $usage unless @ARGV;
183 $name = shift;
184 $value = shift if @ARGV;
185
186 }
187 else {
188 die "Command '$action' not recognised.\n\n".$usage;
189 }
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200190 }
191}
192
Simon Butcher3d265132016-06-23 21:57:06 +0100193# If no command was specified, exit...
194if ( not defined($action) ){ die $usage; }
195
SimonB60f2cf92016-04-03 14:16:08 +0100196# Check the config file is present
197if (! -f $config_file) {
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200198
SimonB60f2cf92016-04-03 14:16:08 +0100199 chdir '..' or die;
200
201 # Confirm this is the project root directory and try again
202 if ( !(-d 'scripts' && -d 'include' && -d 'library' && -f $config_file) ) {
203 die "If no file specified, must be run from the project root or scripts directory.\n";
204 }
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200205}
SimonB60f2cf92016-04-03 14:16:08 +0100206
207
208# Now read the file and process the contents
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200209
210open my $config_read, '<', $config_file or die "read $config_file: $!\n";
211my @config_lines = <$config_read>;
212close $config_read;
213
Azim Khan0d445732017-12-21 09:28:39 +0000214# Add required baremetal symbols to the list that is included.
215if ( $action eq "baremetal" ) {
216 @non_excluded = ( @non_excluded, @non_excluded_baremetal );
217}
218
219my ($exclude_re, $no_exclude_re, $exclude_baremetal_re);
Manuel Pégourié-Gonnard1989caf2016-01-04 12:57:32 +0100220if ($action eq "realfull") {
221 $exclude_re = qr/^$/;
222 $no_exclude_re = qr/./;
223} else {
224 $exclude_re = join '|', @excluded;
225 $no_exclude_re = join '|', @non_excluded;
226}
Azim Khan0d445732017-12-21 09:28:39 +0000227if ( $action eq "baremetal" ) {
228 $exclude_baremetal_re = join '|', @excluded_baremetal;
229}
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200230
Gilles Peskine01f57e32017-10-09 16:54:28 +0200231my $config_write = undef;
232if ($action ne "get") {
233 open $config_write, '>', $config_file or die "write $config_file: $!\n";
234}
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200235
236my $done;
237for my $line (@config_lines) {
Azim Khan0d445732017-12-21 09:28:39 +0000238 if ($action eq "full" || $action eq "realfull" || $action eq "baremetal" ) {
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200239 if ($line =~ /name SECTION: Module configuration options/) {
240 $done = 1;
241 }
242
Manuel Pégourié-Gonnardb7527152015-06-03 09:59:06 +0100243 if (!$done && $line =~ m!^//\s?#define! &&
Azim Khan0d445732017-12-21 09:28:39 +0000244 ( $line !~ /$exclude_re/ || $line =~ /$no_exclude_re/ ) &&
245 ( $action ne "baremetal" || ( $line !~ /$exclude_baremetal_re/ ) ) ) {
Manuel Pégourié-Gonnardea0920f2015-03-24 09:50:15 +0100246 $line =~ s!^//\s?!!;
247 }
Manuel Pégourié-Gonnard7ee5ddd2015-06-03 10:33:55 +0100248 if (!$done && $line =~ m!^\s?#define! &&
Azim Khan0d445732017-12-21 09:28:39 +0000249 ! ( ( $line !~ /$exclude_re/ || $line =~ /$no_exclude_re/ ) &&
250 ( $action ne "baremetal" || ( $line !~ /$exclude_baremetal_re/ ) ) ) ) {
Manuel Pégourié-Gonnardea0920f2015-03-24 09:50:15 +0100251 $line =~ s!^!//!;
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200252 }
253 } elsif ($action eq "unset") {
Manuel Pégourié-Gonnard7f9049b2015-06-23 17:42:51 +0200254 if (!$done && $line =~ /^\s*#define\s*$name\b/) {
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200255 $line = '//' . $line;
256 $done = 1;
257 }
258 } elsif (!$done && $action eq "set") {
Manuel Pégourié-Gonnard7f9049b2015-06-23 17:42:51 +0200259 if ($line =~ m!^(?://)?\s*#define\s*$name\b!) {
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200260 $line = "#define $name";
261 $line .= " $value" if defined $value && $value ne "";
262 $line .= "\n";
263 $done = 1;
264 }
Simon Butcher4ae86912016-06-21 10:09:25 +0100265 } elsif (!$done && $action eq "get") {
Gilles Peskinef0f55cc2017-10-09 16:51:24 +0200266 if ($line =~ /^\s*#define\s*$name(?:\s+(.*?))\s*(?:$|\/\*|\/\/)/) {
Simon Butcher4ae86912016-06-21 10:09:25 +0100267 $value = $1;
268 $done = 1;
269 }
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200270 }
271
Gilles Peskine01f57e32017-10-09 16:54:28 +0200272 if (defined $config_write) {
Gilles Peskine8ca0e8f2017-10-10 11:26:45 +0200273 print $config_write $line or die "write $config_file: $!\n";
Gilles Peskine01f57e32017-10-09 16:54:28 +0200274 }
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200275}
276
SimonB60f2cf92016-04-03 14:16:08 +0100277# Did the set command work?
Gilles Peskined98e9e82017-10-09 16:56:18 +0200278if ($action eq "set" && $force_option && !$done) {
SimonB60f2cf92016-04-03 14:16:08 +0100279
280 # If the force option was set, append the symbol to the end of the file
281 my $line = "#define $name";
282 $line .= " $value" if defined $value && $value ne "";
283 $line .= "\n";
284 $done = 1;
285
Gilles Peskine01f57e32017-10-09 16:54:28 +0200286 print $config_write $line or die "write $config_file: $!\n";
SimonB60f2cf92016-04-03 14:16:08 +0100287}
288
Gilles Peskine01f57e32017-10-09 16:54:28 +0200289if (defined $config_write) {
290 close $config_write or die "close $config_file: $!\n";
291}
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200292
Simon Butcherdd9895d2016-06-21 15:12:00 +0100293if ($action eq "get") {
Gilles Peskined98e9e82017-10-09 16:56:18 +0200294 if ($done) {
Simon Butcherdd9895d2016-06-21 15:12:00 +0100295 if ($value ne '') {
Gilles Peskined98e9e82017-10-09 16:56:18 +0200296 print "$value\n";
Simon Butcherdd9895d2016-06-21 15:12:00 +0100297 }
298 exit 0;
299 } else {
300 # If the symbol was not found, return an error
Gilles Peskined98e9e82017-10-09 16:56:18 +0200301 exit 1;
Simon Butcher4ae86912016-06-21 10:09:25 +0100302 }
Simon Butcher4ae86912016-06-21 10:09:25 +0100303}
304
SimonB60f2cf92016-04-03 14:16:08 +0100305if ($action eq "full" && !$done) {
306 die "Configuration section was not found in $config_file\n";
307
308}
309
310if ($action ne "full" && $action ne "unset" && !$done) {
311 die "A #define for the symbol $name was not found in $config_file\n";
312}
Manuel Pégourié-Gonnardab3d8622014-07-12 03:19:18 +0200313
314__END__