blob: 1b6024d124e03cc5bebaa0c94d2e47e9a4651371 [file] [log] [blame]
Marti Bolivarbf909a12017-11-13 19:43:46 -05001# CMakeLists.txt for building mcuboot as a Zephyr project
2#
3# Copyright (c) 2017 Open Source Foundries Limited
4#
5# SPDX-License-Identifier: Apache-2.0
6
Martí Bolívar0e3fa722019-10-22 14:39:33 -06007cmake_minimum_required(VERSION 3.13.1)
Rajavardhan Gundi40c28e32018-12-09 13:32:01 +05308
Sergey Koziakov24d1be02019-12-03 15:03:00 +03009# Add a common dts overlay necessary to ensure mcuboot is linked into,
10# and fits inside, the boot partition. (If the user specified a
11# DTC_OVERLAY_FILE on the CMake command line, we need to append onto
12# the list).
13if(DTC_OVERLAY_FILE)
14 set(DTC_OVERLAY_FILE
15 "${DTC_OVERLAY_FILE} ${CMAKE_CURRENT_LIST_DIR}/dts.overlay"
16 CACHE STRING "" FORCE
17 )
18else()
19 set(DTC_OVERLAY_FILE ${CMAKE_CURRENT_LIST_DIR}/dts.overlay)
20endif()
21
Marti Bolivaraefbd462017-12-15 03:43:46 -050022# Enable Zephyr runner options which request mass erase if so
23# configured.
24#
25# Note that this also disables the default "leave" option when
26# targeting STM32 DfuSe devices with dfu-util, making the chip stay in
27# the bootloader after flashing.
28#
29# That's the right thing, because mcuboot has nothing to do since the
30# chip was just erased. The next thing the user is going to want to do
31# is flash the application. (Developers can reset DfuSE devices
32# manually to test mcuboot behavior on an otherwise erased flash
33# device.)
34macro(app_set_runner_args)
Marti Bolivar53e2c262018-04-12 14:13:28 -040035 if(CONFIG_ZEPHYR_TRY_MASS_ERASE)
Marti Bolivaraefbd462017-12-15 03:43:46 -050036 board_runner_args(dfu-util "--dfuse-modifiers=force:mass-erase")
Maureen Helm4df602a2019-02-18 17:26:39 -060037 board_runner_args(pyocd "--flash-opt=-e=chip")
Marti Bolivar23e38532018-03-26 13:14:22 -040038 board_runner_args(nrfjprog "--erase")
Marti Bolivaraefbd462017-12-15 03:43:46 -050039 endif()
40endmacro()
41
Torsten Rasmussen43004b82020-05-28 12:34:15 +020042# find_package(Zephyr) in order to load application boilerplate:
Marti Bolivarbf909a12017-11-13 19:43:46 -050043# http://docs.zephyrproject.org/application/application.html
Torsten Rasmussen43004b82020-05-28 12:34:15 +020044find_package(Zephyr REQUIRED HINTS $ENV{ZEPHYR_BASE})
Marti Bolivarbf909a12017-11-13 19:43:46 -050045project(NONE)
46
47# Path to "boot" subdirectory of repository root.
48get_filename_component(BOOT_DIR ${APPLICATION_SOURCE_DIR} DIRECTORY)
49# Path to top-level repository root directory.
50get_filename_component(MCUBOOT_DIR ${BOOT_DIR} DIRECTORY)
51# Path to tinycrypt library source subdirectory of MCUBOOT_DIR.
52set(TINYCRYPT_DIR "${MCUBOOT_DIR}/ext/tinycrypt/lib")
Sigvart Hovlandebd05032019-03-21 10:47:32 +010053assert_exists(TINYCRYPT_DIR)
Fabio Utzig34e93a52020-02-03 09:59:53 -030054set(TINYCRYPT_SHA512_DIR "${MCUBOOT_DIR}/ext/tinycrypt-sha512/lib")
55assert_exists(TINYCRYPT_SHA512_DIR)
Fabio Utzig1171df92019-05-10 19:26:38 -030056# Path to crypto-fiat
57set(FIAT_DIR "${MCUBOOT_DIR}/ext/fiat")
58assert_exists(FIAT_DIR)
Fabio Utzig28ee5b02017-12-12 08:10:40 -020059# Path to mbed-tls' asn1 parser library.
David Brownb748f6f2019-10-11 10:07:31 -060060set(MBEDTLS_ASN1_DIR "${MCUBOOT_DIR}/ext/mbedtls-asn1")
Sigvart Hovlandebd05032019-03-21 10:47:32 +010061assert_exists(MBEDTLS_ASN1_DIR)
62set(NRF_DIR "${MCUBOOT_DIR}/ext/nrf")
63
64if(CONFIG_BOOT_USE_NRF_CC310_BL)
Torsten Rasmussen33fbef52020-06-03 20:21:13 +020065set(NRFXLIB_DIR ${ZEPHYR_BASE}/../nrfxlib)
Andrzej Puzdrowskif0ef8b62020-10-01 13:51:48 +020066if(NOT EXISTS ${NRFXLIB_DIR})
67 message(FATAL_ERROR "
68 ------------------------------------------------------------------------
69 No such file or directory: ${NRFXLIB_DIR}
70 The current configuration enables nRF CC310 crypto accelerator hardware
71 with the `CONFIG_BOOT_USE_NRF_CC310_BL` option. Please follow
72 `ext/nrf/README.md` guide to fix your setup or use tinycrypt instead of
73 the HW accelerator.
74 To use the tinycrypt set `CONFIG_BOOT_ECDSA_TINYCRYPT` to y.
75 ------------------------------------------------------------------------")
76endif()
Sigvart Hovlandebd05032019-03-21 10:47:32 +010077# Don't include this if we are using west
78 add_subdirectory(${NRFXLIB_DIR} ${PROJECT_BINARY_DIR}/nrfxlib)
79endif()
Marti Bolivarbf909a12017-11-13 19:43:46 -050080
Sebastian Bøebe972172019-01-22 14:05:14 +010081zephyr_library_include_directories(
82 include
83 targets
84 )
85if(EXISTS targets/${BOARD}.h)
86 zephyr_library_compile_definitions(MCUBOOT_TARGET_CONFIG="${BOARD}.h")
Marti Bolivarbf909a12017-11-13 19:43:46 -050087endif()
88
89# Zephyr port-specific sources.
Sebastian Bøebe972172019-01-22 14:05:14 +010090zephyr_library_sources(
91 main.c
92 flash_map_extended.c
93 os.c
94 keys.c
95 )
96
Marti Bolivarbf909a12017-11-13 19:43:46 -050097if(NOT DEFINED CONFIG_FLASH_PAGE_LAYOUT)
Sebastian Bøebe972172019-01-22 14:05:14 +010098 zephyr_library_sources(
Fabio Utzigccc02802019-11-05 07:55:14 -030099 flash_map_legacy.c
100 )
Marti Bolivarbf909a12017-11-13 19:43:46 -0500101endif()
102
103# Generic bootutil sources and includes.
Sebastian Bøebe972172019-01-22 14:05:14 +0100104zephyr_library_include_directories(${BOOT_DIR}/bootutil/include)
105zephyr_library_sources(
Dominik Ermel8101c0c2020-05-19 13:01:16 +0000106 ${BOOT_DIR}/bootutil/src/image_validate.c
107 ${BOOT_DIR}/bootutil/src/tlv.c
108 ${BOOT_DIR}/bootutil/src/encrypted.c
109 ${BOOT_DIR}/bootutil/src/image_rsa.c
110 ${BOOT_DIR}/bootutil/src/image_ec256.c
111 ${BOOT_DIR}/bootutil/src/image_ed25519.c
Dominik Ermel9b48d082020-06-08 12:40:06 +0000112 ${BOOT_DIR}/bootutil/src/bootutil_misc.c
Tamas Banfce87332020-07-10 12:40:11 +0100113 ${BOOT_DIR}/bootutil/src/fault_injection_hardening.c
Dominik Ermel8101c0c2020-05-19 13:01:16 +0000114 )
115
Tamas Banfce87332020-07-10 12:40:11 +0100116if(CONFIG_BOOT_FIH_PROFILE_HIGH)
117zephyr_library_sources(
118 ${BOOT_DIR}/bootutil/src/fault_injection_hardening_delay_rng_mbedtls.c
119 )
120endif()
121
Andrzej Puzdrowskifdff3e12020-09-15 08:23:25 +0200122if(CONFIG_SINGLE_APPLICATION_SLOT)
Dominik Ermel8101c0c2020-05-19 13:01:16 +0000123zephyr_library_sources(
124 ${BOOT_DIR}/zephyr/single_loader.c
125 )
126zephyr_library_include_directories(${BOOT_DIR}/bootutil/src)
127else()
128zephyr_library_sources(
Sebastian Bøebe972172019-01-22 14:05:14 +0100129 ${BOOT_DIR}/bootutil/src/loader.c
Fabio Utzigc58842e2019-11-28 10:30:01 -0300130 ${BOOT_DIR}/bootutil/src/swap_misc.c
131 ${BOOT_DIR}/bootutil/src/swap_scratch.c
132 ${BOOT_DIR}/bootutil/src/swap_move.c
Sebastian Bøebe972172019-01-22 14:05:14 +0100133 ${BOOT_DIR}/bootutil/src/caps.c
134 )
Dominik Ermel8101c0c2020-05-19 13:01:16 +0000135endif()
136
Fabio Utzig42cc29a2019-11-05 07:54:41 -0300137if(CONFIG_BOOT_SIGNATURE_TYPE_ECDSA_P256 OR CONFIG_BOOT_ENCRYPT_EC256)
Sigvart Hovlandebd05032019-03-21 10:47:32 +0100138 zephyr_library_include_directories(
Fabio Utzigccc02802019-11-05 07:55:14 -0300139 ${MBEDTLS_ASN1_DIR}/include
140 )
Sigvart Hovlandebd05032019-03-21 10:47:32 +0100141 zephyr_library_sources(
Fabio Utzigccc02802019-11-05 07:55:14 -0300142 # Additionally pull in just the ASN.1 parser from mbedTLS.
143 ${MBEDTLS_ASN1_DIR}/src/asn1parse.c
144 ${MBEDTLS_ASN1_DIR}/src/platform_util.c
145 )
Sigvart Hovlandebd05032019-03-21 10:47:32 +0100146 if(CONFIG_BOOT_USE_TINYCRYPT)
Marti Bolivara4818a52018-04-12 13:02:38 -0400147 # When using ECDSA signatures, pull in our copy of the tinycrypt library.
Sebastian Bøebe972172019-01-22 14:05:14 +0100148 zephyr_library_include_directories(
Fabio Utzigccc02802019-11-05 07:55:14 -0300149 ${BOOT_DIR}/zephyr/include
150 ${TINYCRYPT_DIR}/include
151 )
Marti Bolivarbf909a12017-11-13 19:43:46 -0500152
Sebastian Bøebe972172019-01-22 14:05:14 +0100153 zephyr_library_sources(
Fabio Utzigccc02802019-11-05 07:55:14 -0300154 ${TINYCRYPT_DIR}/source/ecc.c
155 ${TINYCRYPT_DIR}/source/ecc_dsa.c
156 ${TINYCRYPT_DIR}/source/sha256.c
157 ${TINYCRYPT_DIR}/source/utils.c
158 )
Sigvart Hovlandebd05032019-03-21 10:47:32 +0100159 elseif(CONFIG_BOOT_USE_NRF_CC310_BL)
160 zephyr_library_sources(${NRF_DIR}/cc310_glue.c)
161 zephyr_library_include_directories(${NRF_DIR})
162 zephyr_link_libraries(nrfxlib_crypto)
163 endif()
Fabio Utzig28ee5b02017-12-12 08:10:40 -0200164
Ding Taof97cb712018-06-08 14:37:13 +0000165 # Since here we are not using Zephyr's mbedTLS but rather our own, we need
Carles Cufi69c61d02018-06-05 15:56:08 +0200166 # to set MBEDTLS_CONFIG_FILE ourselves. When using Zephyr's copy, this
167 # variable is set by its Kconfig in the Zephyr codebase.
Sebastian Bøebe972172019-01-22 14:05:14 +0100168 zephyr_library_compile_definitions(
Fabio Utzigccc02802019-11-05 07:55:14 -0300169 MBEDTLS_CONFIG_FILE="${CMAKE_CURRENT_LIST_DIR}/include/mcuboot-mbedtls-cfg.h"
170 )
Arvin Farahmandfb5ec182020-05-05 11:44:12 -0400171elseif(CONFIG_BOOT_SIGNATURE_TYPE_NONE)
172 zephyr_library_include_directories(
173 ${BOOT_DIR}/zephyr/include
174 ${TINYCRYPT_DIR}/include
175 )
176
177 zephyr_library_sources(
178 ${TINYCRYPT_DIR}/source/sha256.c
179 ${TINYCRYPT_DIR}/source/utils.c
180 )
Marti Bolivara4818a52018-04-12 13:02:38 -0400181elseif(CONFIG_BOOT_SIGNATURE_TYPE_RSA)
182 # Use mbedTLS provided by Zephyr for RSA signatures. (Its config file
183 # is set using Kconfig.)
184 zephyr_include_directories(include)
Fabio Utzigb6f014c2020-04-02 13:25:01 -0300185elseif(CONFIG_BOOT_SIGNATURE_TYPE_ED25519 OR CONFIG_BOOT_ENCRYPT_X25519)
Fabio Utzig34e93a52020-02-03 09:59:53 -0300186 if(CONFIG_BOOT_USE_TINYCRYPT)
187 zephyr_library_include_directories(
188 ${MBEDTLS_ASN1_DIR}/include
189 ${BOOT_DIR}/zephyr/include
190 ${TINYCRYPT_DIR}/include
191 ${TINYCRYPT_SHA512_DIR}/include
192 )
193 zephyr_library_sources(
194 ${TINYCRYPT_DIR}/source/sha256.c
195 ${TINYCRYPT_DIR}/source/utils.c
196 ${TINYCRYPT_SHA512_DIR}/source/sha512.c
197 # Additionally pull in just the ASN.1 parser from mbedTLS.
198 ${MBEDTLS_ASN1_DIR}/src/asn1parse.c
199 ${MBEDTLS_ASN1_DIR}/src/platform_util.c
200 )
201 zephyr_library_compile_definitions(
202 MBEDTLS_CONFIG_FILE="${CMAKE_CURRENT_LIST_DIR}/include/mcuboot-mbedtls-cfg.h"
203 )
204 else()
205 zephyr_include_directories(include)
206 endif()
Fabio Utzig1171df92019-05-10 19:26:38 -0300207
208 zephyr_library_include_directories(
209 ${BOOT_DIR}/zephyr/include
210 ${FIAT_DIR}/include/
211 )
212
213 zephyr_library_sources(
214 ${FIAT_DIR}/src/curve25519.c
215 )
Marti Bolivarbf909a12017-11-13 19:43:46 -0500216endif()
Andrzej Puzdrowski8e96b832017-09-08 16:49:14 +0200217
Fabio Utzigb6f014c2020-04-02 13:25:01 -0300218if(CONFIG_BOOT_ENCRYPT_EC256 OR CONFIG_BOOT_ENCRYPT_X25519)
Fabio Utzig42cc29a2019-11-05 07:54:41 -0300219 zephyr_library_sources(
220 ${TINYCRYPT_DIR}/source/aes_encrypt.c
221 ${TINYCRYPT_DIR}/source/aes_decrypt.c
222 ${TINYCRYPT_DIR}/source/ctr_mode.c
223 ${TINYCRYPT_DIR}/source/hmac.c
224 ${TINYCRYPT_DIR}/source/ecc_dh.c
225 )
226endif()
227
Fabio Utzigb6f014c2020-04-02 13:25:01 -0300228if(CONFIG_BOOT_ENCRYPT_EC256)
229 zephyr_library_sources(
230 ${TINYCRYPT_DIR}/source/ecc_dh.c
231 )
232endif()
233
Sebastian Bøebe972172019-01-22 14:05:14 +0100234if(CONFIG_MCUBOOT_SERIAL)
Andrzej Puzdrowskic2e30cf2018-07-20 16:19:09 +0200235 zephyr_sources(${BOOT_DIR}/zephyr/serial_adapter.c)
236 zephyr_sources(${BOOT_DIR}/boot_serial/src/boot_serial.c)
Øyvind Rønningstadf42a8202019-12-13 03:27:54 +0100237 zephyr_sources(${BOOT_DIR}/boot_serial/src/serial_recovery_cbor.c)
238 zephyr_sources(${BOOT_DIR}/boot_serial/src/cbor_decode.c)
Andrzej Puzdrowski8e96b832017-09-08 16:49:14 +0200239
Andrzej Puzdrowskic2e30cf2018-07-20 16:19:09 +0200240 zephyr_include_directories(${BOOT_DIR}/bootutil/include)
241 zephyr_include_directories(${BOOT_DIR}/boot_serial/include)
242 zephyr_include_directories(include)
Andrzej Puzdrowskic2e30cf2018-07-20 16:19:09 +0200243
Sebastian Bøebe972172019-01-22 14:05:14 +0100244 zephyr_include_directories_ifdef(
Fabio Utzigccc02802019-11-05 07:55:14 -0300245 CONFIG_BOOT_ERASE_PROGRESSIVELY
246 ${BOOT_DIR}/bootutil/src
247 )
Andrzej Puzdrowski8e96b832017-09-08 16:49:14 +0200248endif()
Fabio Utzigb1e0dc52018-04-26 10:53:19 -0300249
Marek Pietac1cdcae2020-08-12 04:29:12 -0700250# CONF_FILE points to the KConfig configuration files of the bootloader.
251foreach (filepath ${CONF_FILE})
252 file(READ ${filepath} temp_text)
253 string(FIND "${temp_text}" ${CONFIG_BOOT_SIGNATURE_KEY_FILE} match)
254 if (${match} GREATER_EQUAL 0)
255 if (NOT DEFINED CONF_DIR)
256 get_filename_component(CONF_DIR ${filepath} DIRECTORY)
257 else()
258 message(FATAL_ERROR "Signature key file defined in multiple conf files")
259 endif()
260 endif()
261endforeach()
Marek Pietabdcfc852020-08-04 02:22:55 -0700262
Fabio Utzigb1e0dc52018-04-26 10:53:19 -0300263if(NOT CONFIG_BOOT_SIGNATURE_KEY_FILE STREQUAL "")
264 if(IS_ABSOLUTE ${CONFIG_BOOT_SIGNATURE_KEY_FILE})
265 set(KEY_FILE ${CONFIG_BOOT_SIGNATURE_KEY_FILE})
Marek Pietac1cdcae2020-08-12 04:29:12 -0700266 elseif((DEFINED CONF_DIR) AND
267 (EXISTS ${CONF_DIR}/${CONFIG_BOOT_SIGNATURE_KEY_FILE}))
Marek Pietabdcfc852020-08-04 02:22:55 -0700268 set(KEY_FILE ${CONF_DIR}/${CONFIG_BOOT_SIGNATURE_KEY_FILE})
Fabio Utzigb1e0dc52018-04-26 10:53:19 -0300269 else()
270 set(KEY_FILE ${MCUBOOT_DIR}/${CONFIG_BOOT_SIGNATURE_KEY_FILE})
271 endif()
Marek Pietac1cdcae2020-08-12 04:29:12 -0700272 message("MCUBoot bootloader key file: ${KEY_FILE}")
273
Fabio Utzigb1e0dc52018-04-26 10:53:19 -0300274 set(GENERATED_PUBKEY ${ZEPHYR_BINARY_DIR}/autogen-pubkey.c)
275 add_custom_command(
276 OUTPUT ${GENERATED_PUBKEY}
277 COMMAND
278 ${PYTHON_EXECUTABLE}
279 ${MCUBOOT_DIR}/scripts/imgtool.py
280 getpub
281 -k
282 ${KEY_FILE}
283 > ${GENERATED_PUBKEY}
284 DEPENDS ${KEY_FILE}
285 )
Sebastian Bøebe972172019-01-22 14:05:14 +0100286 zephyr_library_sources(${GENERATED_PUBKEY})
Fabio Utzigb1e0dc52018-04-26 10:53:19 -0300287endif()
Sigvart Hovlandebd05032019-03-21 10:47:32 +0100288
Andrzej Puzdrowski9a605b62020-03-16 13:34:30 +0100289if(CONFIG_MCUBOOT_CLEANUP_ARM_CORE)
290zephyr_library_sources(
291 ${BOOT_DIR}/zephyr/arm_cleanup.c
292)
293endif()