xref: /aosp_15_r20/system/keymaster/ng/include/AndroidKeymaster41Device.h (revision 789431f29546679ab5188a97751fb38e3018d44d)
1*789431f2SAndroid Build Coastguard Worker /*
2*789431f2SAndroid Build Coastguard Worker  **
3*789431f2SAndroid Build Coastguard Worker  ** Copyright 2019, The Android Open Source Project
4*789431f2SAndroid Build Coastguard Worker  **
5*789431f2SAndroid Build Coastguard Worker  ** Licensed under the Apache License, Version 2.0 (the "License");
6*789431f2SAndroid Build Coastguard Worker  ** you may not use this file except in compliance with the License.
7*789431f2SAndroid Build Coastguard Worker  ** You may obtain a copy of the License at
8*789431f2SAndroid Build Coastguard Worker  **
9*789431f2SAndroid Build Coastguard Worker  **     http://www.apache.org/licenses/LICENSE-2.0
10*789431f2SAndroid Build Coastguard Worker  **
11*789431f2SAndroid Build Coastguard Worker  ** Unless required by applicable law or agreed to in writing, software
12*789431f2SAndroid Build Coastguard Worker  ** distributed under the License is distributed on an "AS IS" BASIS,
13*789431f2SAndroid Build Coastguard Worker  ** WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
14*789431f2SAndroid Build Coastguard Worker  ** See the License for the specific language governing permissions and
15*789431f2SAndroid Build Coastguard Worker  ** limitations under the License.
16*789431f2SAndroid Build Coastguard Worker  */
17*789431f2SAndroid Build Coastguard Worker 
18*789431f2SAndroid Build Coastguard Worker #ifndef HIDL_android_hardware_keymaster_V4_1_AndroidKeymaster4Device_H_
19*789431f2SAndroid Build Coastguard Worker #define HIDL_android_hardware_keymaster_V4_1_AndroidKeymaster4Device_H_
20*789431f2SAndroid Build Coastguard Worker 
21*789431f2SAndroid Build Coastguard Worker #include <android/hardware/keymaster/4.1/IKeymasterDevice.h>
22*789431f2SAndroid Build Coastguard Worker #include <android/hardware/keymaster/4.1/types.h>
23*789431f2SAndroid Build Coastguard Worker #include <hidl/Status.h>
24*789431f2SAndroid Build Coastguard Worker 
25*789431f2SAndroid Build Coastguard Worker #include "AndroidKeymaster4Device.h"
26*789431f2SAndroid Build Coastguard Worker 
27*789431f2SAndroid Build Coastguard Worker namespace keymaster {
28*789431f2SAndroid Build Coastguard Worker class AndroidKeymaster;
29*789431f2SAndroid Build Coastguard Worker class KeymasterContext;
30*789431f2SAndroid Build Coastguard Worker 
31*789431f2SAndroid Build Coastguard Worker namespace V4_1 {
32*789431f2SAndroid Build Coastguard Worker 
33*789431f2SAndroid Build Coastguard Worker using ::android::hardware::hidl_vec;
34*789431f2SAndroid Build Coastguard Worker using ::android::hardware::Return;
35*789431f2SAndroid Build Coastguard Worker using ::android::hardware::Void;
36*789431f2SAndroid Build Coastguard Worker 
37*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_0::ErrorCode;
38*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_0::HardwareAuthenticatorType;
39*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_0::HardwareAuthToken;
40*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_0::HmacSharingParameters;
41*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_0::KeyCharacteristics;
42*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_0::KeyFormat;
43*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_0::KeyParameter;
44*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_0::KeyPurpose;
45*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_0::OperationHandle;
46*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_0::SecurityLevel;
47*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_0::VerificationToken;
48*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_1::IKeymasterDevice;
49*789431f2SAndroid Build Coastguard Worker using ::android::hardware::keymaster::V4_1::Tag;
50*789431f2SAndroid Build Coastguard Worker 
51*789431f2SAndroid Build Coastguard Worker using V41ErrorCode = ::android::hardware::keymaster::V4_1::ErrorCode;
52*789431f2SAndroid Build Coastguard Worker 
convert(ErrorCode error_code)53*789431f2SAndroid Build Coastguard Worker inline V41ErrorCode convert(ErrorCode error_code) {
54*789431f2SAndroid Build Coastguard Worker     return static_cast<V41ErrorCode>(error_code);
55*789431f2SAndroid Build Coastguard Worker }
56*789431f2SAndroid Build Coastguard Worker 
convert(V41ErrorCode error_code)57*789431f2SAndroid Build Coastguard Worker inline ErrorCode convert(V41ErrorCode error_code) {
58*789431f2SAndroid Build Coastguard Worker     return static_cast<ErrorCode>(error_code);
59*789431f2SAndroid Build Coastguard Worker }
60*789431f2SAndroid Build Coastguard Worker 
61*789431f2SAndroid Build Coastguard Worker class AndroidKeymaster41Device : public IKeymasterDevice, public V4_0::ng::AndroidKeymaster4Device {
62*789431f2SAndroid Build Coastguard Worker     using super = V4_0::ng::AndroidKeymaster4Device;
63*789431f2SAndroid Build Coastguard Worker 
64*789431f2SAndroid Build Coastguard Worker   public:
AndroidKeymaster41Device(SecurityLevel securityLevel)65*789431f2SAndroid Build Coastguard Worker     explicit AndroidKeymaster41Device(SecurityLevel securityLevel)
66*789431f2SAndroid Build Coastguard Worker         : super(KmVersion::KEYMASTER_4_1, securityLevel) {}
~AndroidKeymaster41Device()67*789431f2SAndroid Build Coastguard Worker     virtual ~AndroidKeymaster41Device() {}
68*789431f2SAndroid Build Coastguard Worker 
69*789431f2SAndroid Build Coastguard Worker     Return<V41ErrorCode> deviceLocked(bool /* passwordOnly */,
70*789431f2SAndroid Build Coastguard Worker                                       const VerificationToken& /* verificationToken */) override;
71*789431f2SAndroid Build Coastguard Worker     Return<V41ErrorCode> earlyBootEnded() override;
72*789431f2SAndroid Build Coastguard Worker 
getHardwareInfo(super::getHardwareInfo_cb _hidl_cb)73*789431f2SAndroid Build Coastguard Worker     Return<void> getHardwareInfo(super::getHardwareInfo_cb _hidl_cb) override {
74*789431f2SAndroid Build Coastguard Worker         return super::getHardwareInfo(_hidl_cb);
75*789431f2SAndroid Build Coastguard Worker     }
76*789431f2SAndroid Build Coastguard Worker 
getHmacSharingParameters(super::getHmacSharingParameters_cb _hidl_cb)77*789431f2SAndroid Build Coastguard Worker     Return<void> getHmacSharingParameters(super::getHmacSharingParameters_cb _hidl_cb) override {
78*789431f2SAndroid Build Coastguard Worker         return super::getHmacSharingParameters(_hidl_cb);
79*789431f2SAndroid Build Coastguard Worker     }
80*789431f2SAndroid Build Coastguard Worker 
computeSharedHmac(const hidl_vec<HmacSharingParameters> & params,super::computeSharedHmac_cb _hidl_cb)81*789431f2SAndroid Build Coastguard Worker     Return<void> computeSharedHmac(const hidl_vec<HmacSharingParameters>& params,
82*789431f2SAndroid Build Coastguard Worker                                    super::computeSharedHmac_cb _hidl_cb) override {
83*789431f2SAndroid Build Coastguard Worker         return super::computeSharedHmac(params, _hidl_cb);
84*789431f2SAndroid Build Coastguard Worker     }
85*789431f2SAndroid Build Coastguard Worker 
verifyAuthorization(uint64_t challenge,const hidl_vec<KeyParameter> & parametersToVerify,const HardwareAuthToken & authToken,super::verifyAuthorization_cb _hidl_cb)86*789431f2SAndroid Build Coastguard Worker     Return<void> verifyAuthorization(uint64_t challenge,
87*789431f2SAndroid Build Coastguard Worker                                      const hidl_vec<KeyParameter>& parametersToVerify,
88*789431f2SAndroid Build Coastguard Worker                                      const HardwareAuthToken& authToken,
89*789431f2SAndroid Build Coastguard Worker                                      super::verifyAuthorization_cb _hidl_cb) override {
90*789431f2SAndroid Build Coastguard Worker         return super::verifyAuthorization(challenge, parametersToVerify, authToken, _hidl_cb);
91*789431f2SAndroid Build Coastguard Worker     }
92*789431f2SAndroid Build Coastguard Worker 
addRngEntropy(const hidl_vec<uint8_t> & data)93*789431f2SAndroid Build Coastguard Worker     Return<ErrorCode> addRngEntropy(const hidl_vec<uint8_t>& data) override {
94*789431f2SAndroid Build Coastguard Worker         return super::addRngEntropy(data);
95*789431f2SAndroid Build Coastguard Worker     }
96*789431f2SAndroid Build Coastguard Worker 
generateKey(const hidl_vec<KeyParameter> & keyParams,super::generateKey_cb _hidl_cb)97*789431f2SAndroid Build Coastguard Worker     Return<void> generateKey(const hidl_vec<KeyParameter>& keyParams,
98*789431f2SAndroid Build Coastguard Worker                              super::generateKey_cb _hidl_cb) override {
99*789431f2SAndroid Build Coastguard Worker         return super::generateKey(keyParams, _hidl_cb);
100*789431f2SAndroid Build Coastguard Worker     }
101*789431f2SAndroid Build Coastguard Worker 
getKeyCharacteristics(const hidl_vec<uint8_t> & keyBlob,const hidl_vec<uint8_t> & clientId,const hidl_vec<uint8_t> & appData,super::getKeyCharacteristics_cb _hidl_cb)102*789431f2SAndroid Build Coastguard Worker     Return<void> getKeyCharacteristics(const hidl_vec<uint8_t>& keyBlob,
103*789431f2SAndroid Build Coastguard Worker                                        const hidl_vec<uint8_t>& clientId,
104*789431f2SAndroid Build Coastguard Worker                                        const hidl_vec<uint8_t>& appData,
105*789431f2SAndroid Build Coastguard Worker                                        super::getKeyCharacteristics_cb _hidl_cb) override {
106*789431f2SAndroid Build Coastguard Worker         return super::getKeyCharacteristics(keyBlob, clientId, appData, _hidl_cb);
107*789431f2SAndroid Build Coastguard Worker     }
108*789431f2SAndroid Build Coastguard Worker 
importKey(const hidl_vec<KeyParameter> & params,KeyFormat keyFormat,const hidl_vec<uint8_t> & keyData,super::importKey_cb _hidl_cb)109*789431f2SAndroid Build Coastguard Worker     Return<void> importKey(const hidl_vec<KeyParameter>& params, KeyFormat keyFormat,
110*789431f2SAndroid Build Coastguard Worker                            const hidl_vec<uint8_t>& keyData,
111*789431f2SAndroid Build Coastguard Worker                            super::importKey_cb _hidl_cb) override {
112*789431f2SAndroid Build Coastguard Worker         return super::importKey(params, keyFormat, keyData, _hidl_cb);
113*789431f2SAndroid Build Coastguard Worker     }
114*789431f2SAndroid Build Coastguard Worker 
importWrappedKey(const hidl_vec<uint8_t> & wrappedKeyData,const hidl_vec<uint8_t> & wrappingKeyBlob,const hidl_vec<uint8_t> & maskingKey,const hidl_vec<KeyParameter> & unwrappingParams,uint64_t passwordSid,uint64_t biometricSid,super::importWrappedKey_cb _hidl_cb)115*789431f2SAndroid Build Coastguard Worker     Return<void> importWrappedKey(const hidl_vec<uint8_t>& wrappedKeyData,
116*789431f2SAndroid Build Coastguard Worker                                   const hidl_vec<uint8_t>& wrappingKeyBlob,
117*789431f2SAndroid Build Coastguard Worker                                   const hidl_vec<uint8_t>& maskingKey,
118*789431f2SAndroid Build Coastguard Worker                                   const hidl_vec<KeyParameter>& unwrappingParams,
119*789431f2SAndroid Build Coastguard Worker                                   uint64_t passwordSid, uint64_t biometricSid,
120*789431f2SAndroid Build Coastguard Worker                                   super::importWrappedKey_cb _hidl_cb) override {
121*789431f2SAndroid Build Coastguard Worker         return super::importWrappedKey(wrappedKeyData, wrappingKeyBlob, maskingKey,
122*789431f2SAndroid Build Coastguard Worker                                        unwrappingParams, passwordSid, biometricSid, _hidl_cb);
123*789431f2SAndroid Build Coastguard Worker     }
124*789431f2SAndroid Build Coastguard Worker 
exportKey(KeyFormat exportFormat,const hidl_vec<uint8_t> & keyBlob,const hidl_vec<uint8_t> & clientId,const hidl_vec<uint8_t> & appData,super::exportKey_cb _hidl_cb)125*789431f2SAndroid Build Coastguard Worker     Return<void> exportKey(KeyFormat exportFormat, const hidl_vec<uint8_t>& keyBlob,
126*789431f2SAndroid Build Coastguard Worker                            const hidl_vec<uint8_t>& clientId, const hidl_vec<uint8_t>& appData,
127*789431f2SAndroid Build Coastguard Worker                            super::exportKey_cb _hidl_cb) override {
128*789431f2SAndroid Build Coastguard Worker         return super::exportKey(exportFormat, keyBlob, clientId, appData, _hidl_cb);
129*789431f2SAndroid Build Coastguard Worker     }
130*789431f2SAndroid Build Coastguard Worker 
attestKey(const hidl_vec<uint8_t> & keyToAttest,const hidl_vec<KeyParameter> & attestParams,super::attestKey_cb _hidl_cb)131*789431f2SAndroid Build Coastguard Worker     Return<void> attestKey(const hidl_vec<uint8_t>& keyToAttest,
132*789431f2SAndroid Build Coastguard Worker                            const hidl_vec<KeyParameter>& attestParams,
133*789431f2SAndroid Build Coastguard Worker                            super::attestKey_cb _hidl_cb) override {
134*789431f2SAndroid Build Coastguard Worker         return super::attestKey(keyToAttest, attestParams, _hidl_cb);
135*789431f2SAndroid Build Coastguard Worker     }
136*789431f2SAndroid Build Coastguard Worker 
upgradeKey(const hidl_vec<uint8_t> & keyBlobToUpgrade,const hidl_vec<KeyParameter> & upgradeParams,super::upgradeKey_cb _hidl_cb)137*789431f2SAndroid Build Coastguard Worker     Return<void> upgradeKey(const hidl_vec<uint8_t>& keyBlobToUpgrade,
138*789431f2SAndroid Build Coastguard Worker                             const hidl_vec<KeyParameter>& upgradeParams,
139*789431f2SAndroid Build Coastguard Worker                             super::upgradeKey_cb _hidl_cb) override {
140*789431f2SAndroid Build Coastguard Worker         return super::upgradeKey(keyBlobToUpgrade, upgradeParams, _hidl_cb);
141*789431f2SAndroid Build Coastguard Worker     }
142*789431f2SAndroid Build Coastguard Worker 
deleteKey(const hidl_vec<uint8_t> & keyBlob)143*789431f2SAndroid Build Coastguard Worker     Return<ErrorCode> deleteKey(const hidl_vec<uint8_t>& keyBlob) override {
144*789431f2SAndroid Build Coastguard Worker         return super::deleteKey(keyBlob);
145*789431f2SAndroid Build Coastguard Worker     }
146*789431f2SAndroid Build Coastguard Worker 
deleteAllKeys()147*789431f2SAndroid Build Coastguard Worker     Return<ErrorCode> deleteAllKeys() override { return super::deleteAllKeys(); }
148*789431f2SAndroid Build Coastguard Worker 
destroyAttestationIds()149*789431f2SAndroid Build Coastguard Worker     Return<ErrorCode> destroyAttestationIds() override { return super::destroyAttestationIds(); }
150*789431f2SAndroid Build Coastguard Worker 
begin(KeyPurpose purpose,const hidl_vec<uint8_t> & key,const hidl_vec<KeyParameter> & inParams,const HardwareAuthToken & authToken,super::begin_cb _hidl_cb)151*789431f2SAndroid Build Coastguard Worker     Return<void> begin(KeyPurpose purpose, const hidl_vec<uint8_t>& key,
152*789431f2SAndroid Build Coastguard Worker                        const hidl_vec<KeyParameter>& inParams, const HardwareAuthToken& authToken,
153*789431f2SAndroid Build Coastguard Worker                        super::begin_cb _hidl_cb) override {
154*789431f2SAndroid Build Coastguard Worker         return super::begin(purpose, key, inParams, authToken, _hidl_cb);
155*789431f2SAndroid Build Coastguard Worker     }
156*789431f2SAndroid Build Coastguard Worker 
update(uint64_t operationHandle,const hidl_vec<KeyParameter> & inParams,const hidl_vec<uint8_t> & input,const HardwareAuthToken & authToken,const VerificationToken & verificationToken,super::update_cb _hidl_cb)157*789431f2SAndroid Build Coastguard Worker     Return<void> update(uint64_t operationHandle, const hidl_vec<KeyParameter>& inParams,
158*789431f2SAndroid Build Coastguard Worker                         const hidl_vec<uint8_t>& input, const HardwareAuthToken& authToken,
159*789431f2SAndroid Build Coastguard Worker                         const VerificationToken& verificationToken,
160*789431f2SAndroid Build Coastguard Worker                         super::update_cb _hidl_cb) override {
161*789431f2SAndroid Build Coastguard Worker         return super::update(operationHandle, inParams, input, authToken, verificationToken,
162*789431f2SAndroid Build Coastguard Worker                              _hidl_cb);
163*789431f2SAndroid Build Coastguard Worker     }
164*789431f2SAndroid Build Coastguard Worker 
finish(uint64_t operationHandle,const hidl_vec<KeyParameter> & inParams,const hidl_vec<uint8_t> & input,const hidl_vec<uint8_t> & signature,const HardwareAuthToken & authToken,const VerificationToken & verificationToken,super::finish_cb _hidl_cb)165*789431f2SAndroid Build Coastguard Worker     Return<void> finish(uint64_t operationHandle, const hidl_vec<KeyParameter>& inParams,
166*789431f2SAndroid Build Coastguard Worker                         const hidl_vec<uint8_t>& input, const hidl_vec<uint8_t>& signature,
167*789431f2SAndroid Build Coastguard Worker                         const HardwareAuthToken& authToken,
168*789431f2SAndroid Build Coastguard Worker                         const VerificationToken& verificationToken,
169*789431f2SAndroid Build Coastguard Worker                         super::finish_cb _hidl_cb) override {
170*789431f2SAndroid Build Coastguard Worker         return super::finish(operationHandle, inParams, input, signature, authToken,
171*789431f2SAndroid Build Coastguard Worker                              verificationToken, _hidl_cb);
172*789431f2SAndroid Build Coastguard Worker     }
173*789431f2SAndroid Build Coastguard Worker 
abort(uint64_t operationHandle)174*789431f2SAndroid Build Coastguard Worker     Return<ErrorCode> abort(uint64_t operationHandle) override {
175*789431f2SAndroid Build Coastguard Worker         return super::abort(operationHandle);
176*789431f2SAndroid Build Coastguard Worker     }
177*789431f2SAndroid Build Coastguard Worker };
178*789431f2SAndroid Build Coastguard Worker 
179*789431f2SAndroid Build Coastguard Worker IKeymasterDevice* CreateKeymasterDevice(SecurityLevel securityLevel);
180*789431f2SAndroid Build Coastguard Worker 
181*789431f2SAndroid Build Coastguard Worker }  // namespace V4_1
182*789431f2SAndroid Build Coastguard Worker }  // namespace keymaster
183*789431f2SAndroid Build Coastguard Worker 
184*789431f2SAndroid Build Coastguard Worker #endif  // HIDL_android_hardware_keymaster_V4_1_AndroidKeymaster4Device_H_
185