xref: /aosp_15_r20/bionic/libc/kernel/uapi/linux/psp-sev.h (revision 8d67ca893c1523eb926b9080dbe4e2ffd2a27ba1)
1*8d67ca89SAndroid Build Coastguard Worker /*
2*8d67ca89SAndroid Build Coastguard Worker  * This file is auto-generated. Modifications will be lost.
3*8d67ca89SAndroid Build Coastguard Worker  *
4*8d67ca89SAndroid Build Coastguard Worker  * See https://android.googlesource.com/platform/bionic/+/master/libc/kernel/
5*8d67ca89SAndroid Build Coastguard Worker  * for more information.
6*8d67ca89SAndroid Build Coastguard Worker  */
7*8d67ca89SAndroid Build Coastguard Worker #ifndef __PSP_SEV_USER_H__
8*8d67ca89SAndroid Build Coastguard Worker #define __PSP_SEV_USER_H__
9*8d67ca89SAndroid Build Coastguard Worker #include <linux/types.h>
10*8d67ca89SAndroid Build Coastguard Worker enum {
11*8d67ca89SAndroid Build Coastguard Worker   SEV_FACTORY_RESET = 0,
12*8d67ca89SAndroid Build Coastguard Worker   SEV_PLATFORM_STATUS,
13*8d67ca89SAndroid Build Coastguard Worker   SEV_PEK_GEN,
14*8d67ca89SAndroid Build Coastguard Worker   SEV_PEK_CSR,
15*8d67ca89SAndroid Build Coastguard Worker   SEV_PDH_GEN,
16*8d67ca89SAndroid Build Coastguard Worker   SEV_PDH_CERT_EXPORT,
17*8d67ca89SAndroid Build Coastguard Worker   SEV_PEK_CERT_IMPORT,
18*8d67ca89SAndroid Build Coastguard Worker   SEV_GET_ID,
19*8d67ca89SAndroid Build Coastguard Worker   SEV_GET_ID2,
20*8d67ca89SAndroid Build Coastguard Worker   SNP_PLATFORM_STATUS,
21*8d67ca89SAndroid Build Coastguard Worker   SNP_COMMIT,
22*8d67ca89SAndroid Build Coastguard Worker   SNP_SET_CONFIG,
23*8d67ca89SAndroid Build Coastguard Worker   SNP_VLEK_LOAD,
24*8d67ca89SAndroid Build Coastguard Worker   SEV_MAX,
25*8d67ca89SAndroid Build Coastguard Worker };
26*8d67ca89SAndroid Build Coastguard Worker typedef enum {
27*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_NO_FW_CALL = - 1,
28*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_SUCCESS = 0,
29*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_PLATFORM_STATE,
30*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_GUEST_STATE,
31*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INAVLID_CONFIG,
32*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_CONFIG = SEV_RET_INAVLID_CONFIG,
33*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_LEN,
34*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_ALREADY_OWNED,
35*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_CERTIFICATE,
36*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_POLICY_FAILURE,
37*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INACTIVE,
38*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_ADDRESS,
39*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_BAD_SIGNATURE,
40*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_BAD_MEASUREMENT,
41*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_ASID_OWNED,
42*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_ASID,
43*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_WBINVD_REQUIRED,
44*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_DFFLUSH_REQUIRED,
45*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_GUEST,
46*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_COMMAND,
47*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_ACTIVE,
48*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_HWSEV_RET_PLATFORM,
49*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_HWSEV_RET_UNSAFE,
50*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_UNSUPPORTED,
51*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_PARAM,
52*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_RESOURCE_LIMIT,
53*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_SECURE_DATA_INVALID,
54*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_KEY = 0x27,
55*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_PAGE_SIZE,
56*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_PAGE_STATE,
57*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_MDATA_ENTRY,
58*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_PAGE_OWNER,
59*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_INVALID_PAGE_AEAD_OFLOW,
60*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_RMP_INIT_REQUIRED,
61*8d67ca89SAndroid Build Coastguard Worker   SEV_RET_MAX,
62*8d67ca89SAndroid Build Coastguard Worker } sev_ret_code;
63*8d67ca89SAndroid Build Coastguard Worker struct sev_user_data_status {
64*8d67ca89SAndroid Build Coastguard Worker   __u8 api_major;
65*8d67ca89SAndroid Build Coastguard Worker   __u8 api_minor;
66*8d67ca89SAndroid Build Coastguard Worker   __u8 state;
67*8d67ca89SAndroid Build Coastguard Worker   __u32 flags;
68*8d67ca89SAndroid Build Coastguard Worker   __u8 build;
69*8d67ca89SAndroid Build Coastguard Worker   __u32 guest_count;
70*8d67ca89SAndroid Build Coastguard Worker } __attribute__((__packed__));
71*8d67ca89SAndroid Build Coastguard Worker #define SEV_STATUS_FLAGS_CONFIG_ES 0x0100
72*8d67ca89SAndroid Build Coastguard Worker struct sev_user_data_pek_csr {
73*8d67ca89SAndroid Build Coastguard Worker   __u64 address;
74*8d67ca89SAndroid Build Coastguard Worker   __u32 length;
75*8d67ca89SAndroid Build Coastguard Worker } __attribute__((__packed__));
76*8d67ca89SAndroid Build Coastguard Worker struct sev_user_data_pek_cert_import {
77*8d67ca89SAndroid Build Coastguard Worker   __u64 pek_cert_address;
78*8d67ca89SAndroid Build Coastguard Worker   __u32 pek_cert_len;
79*8d67ca89SAndroid Build Coastguard Worker   __u64 oca_cert_address;
80*8d67ca89SAndroid Build Coastguard Worker   __u32 oca_cert_len;
81*8d67ca89SAndroid Build Coastguard Worker } __attribute__((__packed__));
82*8d67ca89SAndroid Build Coastguard Worker struct sev_user_data_pdh_cert_export {
83*8d67ca89SAndroid Build Coastguard Worker   __u64 pdh_cert_address;
84*8d67ca89SAndroid Build Coastguard Worker   __u32 pdh_cert_len;
85*8d67ca89SAndroid Build Coastguard Worker   __u64 cert_chain_address;
86*8d67ca89SAndroid Build Coastguard Worker   __u32 cert_chain_len;
87*8d67ca89SAndroid Build Coastguard Worker } __attribute__((__packed__));
88*8d67ca89SAndroid Build Coastguard Worker struct sev_user_data_get_id {
89*8d67ca89SAndroid Build Coastguard Worker   __u8 socket1[64];
90*8d67ca89SAndroid Build Coastguard Worker   __u8 socket2[64];
91*8d67ca89SAndroid Build Coastguard Worker } __attribute__((__packed__));
92*8d67ca89SAndroid Build Coastguard Worker struct sev_user_data_get_id2 {
93*8d67ca89SAndroid Build Coastguard Worker   __u64 address;
94*8d67ca89SAndroid Build Coastguard Worker   __u32 length;
95*8d67ca89SAndroid Build Coastguard Worker } __attribute__((__packed__));
96*8d67ca89SAndroid Build Coastguard Worker struct sev_user_data_snp_status {
97*8d67ca89SAndroid Build Coastguard Worker   __u8 api_major;
98*8d67ca89SAndroid Build Coastguard Worker   __u8 api_minor;
99*8d67ca89SAndroid Build Coastguard Worker   __u8 state;
100*8d67ca89SAndroid Build Coastguard Worker   __u8 is_rmp_initialized : 1;
101*8d67ca89SAndroid Build Coastguard Worker   __u8 rsvd : 7;
102*8d67ca89SAndroid Build Coastguard Worker   __u32 build_id;
103*8d67ca89SAndroid Build Coastguard Worker   __u32 mask_chip_id : 1;
104*8d67ca89SAndroid Build Coastguard Worker   __u32 mask_chip_key : 1;
105*8d67ca89SAndroid Build Coastguard Worker   __u32 vlek_en : 1;
106*8d67ca89SAndroid Build Coastguard Worker   __u32 rsvd1 : 29;
107*8d67ca89SAndroid Build Coastguard Worker   __u32 guest_count;
108*8d67ca89SAndroid Build Coastguard Worker   __u64 current_tcb_version;
109*8d67ca89SAndroid Build Coastguard Worker   __u64 reported_tcb_version;
110*8d67ca89SAndroid Build Coastguard Worker } __attribute__((__packed__));
111*8d67ca89SAndroid Build Coastguard Worker struct sev_user_data_snp_config {
112*8d67ca89SAndroid Build Coastguard Worker   __u64 reported_tcb;
113*8d67ca89SAndroid Build Coastguard Worker   __u32 mask_chip_id : 1;
114*8d67ca89SAndroid Build Coastguard Worker   __u32 mask_chip_key : 1;
115*8d67ca89SAndroid Build Coastguard Worker   __u32 rsvd : 30;
116*8d67ca89SAndroid Build Coastguard Worker   __u8 rsvd1[52];
117*8d67ca89SAndroid Build Coastguard Worker } __attribute__((__packed__));
118*8d67ca89SAndroid Build Coastguard Worker struct sev_user_data_snp_vlek_load {
119*8d67ca89SAndroid Build Coastguard Worker   __u32 len;
120*8d67ca89SAndroid Build Coastguard Worker   __u8 vlek_wrapped_version;
121*8d67ca89SAndroid Build Coastguard Worker   __u8 rsvd[3];
122*8d67ca89SAndroid Build Coastguard Worker   __u64 vlek_wrapped_address;
123*8d67ca89SAndroid Build Coastguard Worker } __attribute__((__packed__));
124*8d67ca89SAndroid Build Coastguard Worker struct sev_user_data_snp_wrapped_vlek_hashstick {
125*8d67ca89SAndroid Build Coastguard Worker   __u8 data[432];
126*8d67ca89SAndroid Build Coastguard Worker } __attribute__((__packed__));
127*8d67ca89SAndroid Build Coastguard Worker struct sev_issue_cmd {
128*8d67ca89SAndroid Build Coastguard Worker   __u32 cmd;
129*8d67ca89SAndroid Build Coastguard Worker   __u64 data;
130*8d67ca89SAndroid Build Coastguard Worker   __u32 error;
131*8d67ca89SAndroid Build Coastguard Worker } __attribute__((__packed__));
132*8d67ca89SAndroid Build Coastguard Worker #define SEV_IOC_TYPE 'S'
133*8d67ca89SAndroid Build Coastguard Worker #define SEV_ISSUE_CMD _IOWR(SEV_IOC_TYPE, 0x0, struct sev_issue_cmd)
134*8d67ca89SAndroid Build Coastguard Worker #endif
135