xref: /qemu/backends/tpm/tpm_passthrough.c (revision b19a5eea5a26e9bd83a48c742172d2a6aa8c4180)
14549a8b7SStefan Berger /*
24549a8b7SStefan Berger  *  passthrough TPM driver
34549a8b7SStefan Berger  *
44549a8b7SStefan Berger  *  Copyright (c) 2010 - 2013 IBM Corporation
54549a8b7SStefan Berger  *  Authors:
64549a8b7SStefan Berger  *    Stefan Berger <stefanb@us.ibm.com>
74549a8b7SStefan Berger  *
84549a8b7SStefan Berger  *  Copyright (C) 2011 IAIK, Graz University of Technology
94549a8b7SStefan Berger  *    Author: Andreas Niederl
104549a8b7SStefan Berger  *
114549a8b7SStefan Berger  * This library is free software; you can redistribute it and/or
124549a8b7SStefan Berger  * modify it under the terms of the GNU Lesser General Public
134549a8b7SStefan Berger  * License as published by the Free Software Foundation; either
144549a8b7SStefan Berger  * version 2 of the License, or (at your option) any later version.
154549a8b7SStefan Berger  *
164549a8b7SStefan Berger  * This library is distributed in the hope that it will be useful,
174549a8b7SStefan Berger  * but WITHOUT ANY WARRANTY; without even the implied warranty of
184549a8b7SStefan Berger  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
194549a8b7SStefan Berger  * Lesser General Public License for more details.
204549a8b7SStefan Berger  *
214549a8b7SStefan Berger  * You should have received a copy of the GNU Lesser General Public
224549a8b7SStefan Berger  * License along with this library; if not, see <http://www.gnu.org/licenses/>
234549a8b7SStefan Berger  */
244549a8b7SStefan Berger 
250430891cSPeter Maydell #include "qemu/osdep.h"
264549a8b7SStefan Berger #include "qemu-common.h"
27d49b6836SMarkus Armbruster #include "qemu/error-report.h"
284549a8b7SStefan Berger #include "qemu/sockets.h"
29dccfcd0eSPaolo Bonzini #include "sysemu/tpm_backend.h"
304549a8b7SStefan Berger #include "tpm_int.h"
314549a8b7SStefan Berger #include "hw/hw.h"
320d09e41aSPaolo Bonzini #include "hw/i386/pc.h"
334549a8b7SStefan Berger #include "tpm_tis.h"
3456a3c24fSStefan Berger #include "tpm_util.h"
354549a8b7SStefan Berger 
364d1ba9c4SStefan Berger #define DEBUG_TPM 0
374549a8b7SStefan Berger 
384d1ba9c4SStefan Berger #define DPRINTF(fmt, ...) do { \
394d1ba9c4SStefan Berger     if (DEBUG_TPM) { \
404d1ba9c4SStefan Berger         fprintf(stderr, fmt, ## __VA_ARGS__); \
414d1ba9c4SStefan Berger     } \
424d1ba9c4SStefan Berger } while (0);
434549a8b7SStefan Berger 
448f0605ccSStefan Berger #define TYPE_TPM_PASSTHROUGH "tpm-passthrough"
458f0605ccSStefan Berger #define TPM_PASSTHROUGH(obj) \
468f0605ccSStefan Berger     OBJECT_CHECK(TPMPassthruState, (obj), TYPE_TPM_PASSTHROUGH)
474549a8b7SStefan Berger 
488f0605ccSStefan Berger /* data structures */
494549a8b7SStefan Berger struct TPMPassthruState {
508f0605ccSStefan Berger     TPMBackend parent;
518f0605ccSStefan Berger 
524549a8b7SStefan Berger     char *tpm_dev;
534549a8b7SStefan Berger     int tpm_fd;
5492dcc234SStefan Berger     bool tpm_executing;
5592dcc234SStefan Berger     bool tpm_op_canceled;
5692dcc234SStefan Berger     int cancel_fd;
574549a8b7SStefan Berger     bool had_startup_error;
5856a3c24fSStefan Berger 
5956a3c24fSStefan Berger     TPMVersion tpm_version;
604549a8b7SStefan Berger };
614549a8b7SStefan Berger 
628f0605ccSStefan Berger typedef struct TPMPassthruState TPMPassthruState;
638f0605ccSStefan Berger 
644549a8b7SStefan Berger #define TPM_PASSTHROUGH_DEFAULT_DEVICE "/dev/tpm0"
654549a8b7SStefan Berger 
6692dcc234SStefan Berger /* functions */
6792dcc234SStefan Berger 
6892dcc234SStefan Berger static void tpm_passthrough_cancel_cmd(TPMBackend *tb);
6992dcc234SStefan Berger 
704549a8b7SStefan Berger static int tpm_passthrough_unix_write(int fd, const uint8_t *buf, uint32_t len)
714549a8b7SStefan Berger {
7246f296cdSDaniel P. Berrange     int ret, remain;
7346f296cdSDaniel P. Berrange 
7446f296cdSDaniel P. Berrange     remain = len;
75e7658fccSStefan Berger     while (remain > 0) {
7646f296cdSDaniel P. Berrange         ret = write(fd, buf, remain);
7746f296cdSDaniel P. Berrange         if (ret < 0) {
7846f296cdSDaniel P. Berrange             if (errno != EINTR && errno != EAGAIN) {
7946f296cdSDaniel P. Berrange                 return -1;
8046f296cdSDaniel P. Berrange             }
8146f296cdSDaniel P. Berrange         } else if (ret == 0) {
8246f296cdSDaniel P. Berrange             break;
8346f296cdSDaniel P. Berrange         } else {
8446f296cdSDaniel P. Berrange             buf += ret;
8546f296cdSDaniel P. Berrange             remain -= ret;
8646f296cdSDaniel P. Berrange         }
8746f296cdSDaniel P. Berrange     }
8846f296cdSDaniel P. Berrange     return len - remain;
894549a8b7SStefan Berger }
904549a8b7SStefan Berger 
914549a8b7SStefan Berger static int tpm_passthrough_unix_read(int fd, uint8_t *buf, uint32_t len)
924549a8b7SStefan Berger {
9346f296cdSDaniel P. Berrange     int ret;
9446f296cdSDaniel P. Berrange  reread:
9546f296cdSDaniel P. Berrange     ret = read(fd, buf, len);
9646f296cdSDaniel P. Berrange     if (ret < 0) {
9746f296cdSDaniel P. Berrange         if (errno != EINTR && errno != EAGAIN) {
9846f296cdSDaniel P. Berrange             return -1;
9946f296cdSDaniel P. Berrange         }
10046f296cdSDaniel P. Berrange         goto reread;
10146f296cdSDaniel P. Berrange     }
10246f296cdSDaniel P. Berrange     return ret;
1034549a8b7SStefan Berger }
1044549a8b7SStefan Berger 
1054549a8b7SStefan Berger static uint32_t tpm_passthrough_get_size_from_buffer(const uint8_t *buf)
1064549a8b7SStefan Berger {
1074549a8b7SStefan Berger     struct tpm_resp_hdr *resp = (struct tpm_resp_hdr *)buf;
1084549a8b7SStefan Berger 
1094549a8b7SStefan Berger     return be32_to_cpu(resp->len);
1104549a8b7SStefan Berger }
1114549a8b7SStefan Berger 
112bdee56f5SPaolo Bonzini /*
113bdee56f5SPaolo Bonzini  * Write an error message in the given output buffer.
114bdee56f5SPaolo Bonzini  */
115bdee56f5SPaolo Bonzini static void tpm_write_fatal_error_response(uint8_t *out, uint32_t out_len)
116bdee56f5SPaolo Bonzini {
117bdee56f5SPaolo Bonzini     if (out_len >= sizeof(struct tpm_resp_hdr)) {
118bdee56f5SPaolo Bonzini         struct tpm_resp_hdr *resp = (struct tpm_resp_hdr *)out;
119bdee56f5SPaolo Bonzini 
120bdee56f5SPaolo Bonzini         resp->tag = cpu_to_be16(TPM_TAG_RSP_COMMAND);
121bdee56f5SPaolo Bonzini         resp->len = cpu_to_be32(sizeof(struct tpm_resp_hdr));
122bdee56f5SPaolo Bonzini         resp->errcode = cpu_to_be32(TPM_FAIL);
123bdee56f5SPaolo Bonzini     }
124bdee56f5SPaolo Bonzini }
125bdee56f5SPaolo Bonzini 
126fd859081SStefan Berger static bool tpm_passthrough_is_selftest(const uint8_t *in, uint32_t in_len)
127fd859081SStefan Berger {
128fd859081SStefan Berger     struct tpm_req_hdr *hdr = (struct tpm_req_hdr *)in;
129fd859081SStefan Berger 
130fd859081SStefan Berger     if (in_len >= sizeof(*hdr)) {
131fd859081SStefan Berger         return (be32_to_cpu(hdr->ordinal) == TPM_ORD_ContinueSelfTest);
132fd859081SStefan Berger     }
133fd859081SStefan Berger 
134fd859081SStefan Berger     return false;
135fd859081SStefan Berger }
136fd859081SStefan Berger 
13792dcc234SStefan Berger static int tpm_passthrough_unix_tx_bufs(TPMPassthruState *tpm_pt,
1384549a8b7SStefan Berger                                         const uint8_t *in, uint32_t in_len,
139fd859081SStefan Berger                                         uint8_t *out, uint32_t out_len,
140fd859081SStefan Berger                                         bool *selftest_done)
1414549a8b7SStefan Berger {
1424549a8b7SStefan Berger     int ret;
143fd859081SStefan Berger     bool is_selftest;
144fd859081SStefan Berger     const struct tpm_resp_hdr *hdr;
1454549a8b7SStefan Berger 
14692dcc234SStefan Berger     tpm_pt->tpm_op_canceled = false;
14792dcc234SStefan Berger     tpm_pt->tpm_executing = true;
148fd859081SStefan Berger     *selftest_done = false;
149fd859081SStefan Berger 
150fd859081SStefan Berger     is_selftest = tpm_passthrough_is_selftest(in, in_len);
15192dcc234SStefan Berger 
15292dcc234SStefan Berger     ret = tpm_passthrough_unix_write(tpm_pt->tpm_fd, in, in_len);
1534549a8b7SStefan Berger     if (ret != in_len) {
1545f333d79SThomas Huth         if (!tpm_pt->tpm_op_canceled || errno != ECANCELED) {
1554549a8b7SStefan Berger             error_report("tpm_passthrough: error while transmitting data "
15627215a22SGonglei                          "to TPM: %s (%i)",
1574549a8b7SStefan Berger                          strerror(errno), errno);
15892dcc234SStefan Berger         }
1594549a8b7SStefan Berger         goto err_exit;
1604549a8b7SStefan Berger     }
1614549a8b7SStefan Berger 
16292dcc234SStefan Berger     tpm_pt->tpm_executing = false;
16392dcc234SStefan Berger 
16492dcc234SStefan Berger     ret = tpm_passthrough_unix_read(tpm_pt->tpm_fd, out, out_len);
1654549a8b7SStefan Berger     if (ret < 0) {
1665f333d79SThomas Huth         if (!tpm_pt->tpm_op_canceled || errno != ECANCELED) {
1674549a8b7SStefan Berger             error_report("tpm_passthrough: error while reading data from "
16827215a22SGonglei                          "TPM: %s (%i)",
1694549a8b7SStefan Berger                          strerror(errno), errno);
17092dcc234SStefan Berger         }
1714549a8b7SStefan Berger     } else if (ret < sizeof(struct tpm_resp_hdr) ||
1724549a8b7SStefan Berger                tpm_passthrough_get_size_from_buffer(out) != ret) {
1734549a8b7SStefan Berger         ret = -1;
1744549a8b7SStefan Berger         error_report("tpm_passthrough: received invalid response "
17527215a22SGonglei                      "packet from TPM");
1764549a8b7SStefan Berger     }
1774549a8b7SStefan Berger 
178fd859081SStefan Berger     if (is_selftest && (ret >= sizeof(struct tpm_resp_hdr))) {
179fd859081SStefan Berger         hdr = (struct tpm_resp_hdr *)out;
180fd859081SStefan Berger         *selftest_done = (be32_to_cpu(hdr->errcode) == 0);
181fd859081SStefan Berger     }
182fd859081SStefan Berger 
1834549a8b7SStefan Berger err_exit:
1844549a8b7SStefan Berger     if (ret < 0) {
1854549a8b7SStefan Berger         tpm_write_fatal_error_response(out, out_len);
1864549a8b7SStefan Berger     }
1874549a8b7SStefan Berger 
18892dcc234SStefan Berger     tpm_pt->tpm_executing = false;
18992dcc234SStefan Berger 
1904549a8b7SStefan Berger     return ret;
1914549a8b7SStefan Berger }
1924549a8b7SStefan Berger 
19392dcc234SStefan Berger static int tpm_passthrough_unix_transfer(TPMPassthruState *tpm_pt,
194fd859081SStefan Berger                                          const TPMLocality *locty_data,
195fd859081SStefan Berger                                          bool *selftest_done)
1964549a8b7SStefan Berger {
19792dcc234SStefan Berger     return tpm_passthrough_unix_tx_bufs(tpm_pt,
1984549a8b7SStefan Berger                                         locty_data->w_buffer.buffer,
1994549a8b7SStefan Berger                                         locty_data->w_offset,
2004549a8b7SStefan Berger                                         locty_data->r_buffer.buffer,
201fd859081SStefan Berger                                         locty_data->r_buffer.size,
202fd859081SStefan Berger                                         selftest_done);
2034549a8b7SStefan Berger }
2044549a8b7SStefan Berger 
205*b19a5eeaSAmarnath Valluri static void tpm_passthrough_handle_request(TPMBackend *tb, TPMBackendCmd cmd)
2064549a8b7SStefan Berger {
207*b19a5eeaSAmarnath Valluri     TPMPassthruState *tpm_pt = TPM_PASSTHROUGH(tb);
208fd859081SStefan Berger     bool selftest_done = false;
2094549a8b7SStefan Berger 
2104549a8b7SStefan Berger     DPRINTF("tpm_passthrough: processing command type %d\n", cmd);
2114549a8b7SStefan Berger 
2124549a8b7SStefan Berger     switch (cmd) {
2134549a8b7SStefan Berger     case TPM_BACKEND_CMD_PROCESS_CMD:
21492dcc234SStefan Berger         tpm_passthrough_unix_transfer(tpm_pt,
215*b19a5eeaSAmarnath Valluri                                       tb->tpm_state->locty_data,
216fd859081SStefan Berger                                       &selftest_done);
2174549a8b7SStefan Berger 
218*b19a5eeaSAmarnath Valluri         tb->recv_data_callback(tb->tpm_state,
219*b19a5eeaSAmarnath Valluri                                tb->tpm_state->locty_number,
220fd859081SStefan Berger                                selftest_done);
2214549a8b7SStefan Berger         break;
2224549a8b7SStefan Berger     case TPM_BACKEND_CMD_INIT:
2234549a8b7SStefan Berger     case TPM_BACKEND_CMD_END:
2244549a8b7SStefan Berger     case TPM_BACKEND_CMD_TPM_RESET:
2254549a8b7SStefan Berger         /* nothing to do */
2264549a8b7SStefan Berger         break;
2274549a8b7SStefan Berger     }
2284549a8b7SStefan Berger }
2294549a8b7SStefan Berger 
2304549a8b7SStefan Berger /*
2314549a8b7SStefan Berger  * Start the TPM (thread). If it had been started before, then terminate
2324549a8b7SStefan Berger  * and start it again.
2334549a8b7SStefan Berger  */
2344549a8b7SStefan Berger static int tpm_passthrough_startup_tpm(TPMBackend *tb)
2354549a8b7SStefan Berger {
2364549a8b7SStefan Berger     return 0;
2374549a8b7SStefan Berger }
2384549a8b7SStefan Berger 
2394549a8b7SStefan Berger static void tpm_passthrough_reset(TPMBackend *tb)
2404549a8b7SStefan Berger {
2418f0605ccSStefan Berger     TPMPassthruState *tpm_pt = TPM_PASSTHROUGH(tb);
2424549a8b7SStefan Berger 
2434549a8b7SStefan Berger     DPRINTF("tpm_passthrough: CALL TO TPM_RESET!\n");
2444549a8b7SStefan Berger 
24592dcc234SStefan Berger     tpm_passthrough_cancel_cmd(tb);
24692dcc234SStefan Berger 
2474549a8b7SStefan Berger     tpm_pt->had_startup_error = false;
2484549a8b7SStefan Berger }
2494549a8b7SStefan Berger 
250*b19a5eeaSAmarnath Valluri static int tpm_passthrough_init(TPMBackend *tb)
2514549a8b7SStefan Berger {
2524549a8b7SStefan Berger     return 0;
2534549a8b7SStefan Berger }
2544549a8b7SStefan Berger 
2554549a8b7SStefan Berger static bool tpm_passthrough_get_tpm_established_flag(TPMBackend *tb)
2564549a8b7SStefan Berger {
2574549a8b7SStefan Berger     return false;
2584549a8b7SStefan Berger }
2594549a8b7SStefan Berger 
260116694c3SStefan Berger static int tpm_passthrough_reset_tpm_established_flag(TPMBackend *tb,
261116694c3SStefan Berger                                                       uint8_t locty)
262116694c3SStefan Berger {
263116694c3SStefan Berger     /* only a TPM 2.0 will support this */
264116694c3SStefan Berger     return 0;
265116694c3SStefan Berger }
266116694c3SStefan Berger 
2674549a8b7SStefan Berger static bool tpm_passthrough_get_startup_error(TPMBackend *tb)
2684549a8b7SStefan Berger {
2698f0605ccSStefan Berger     TPMPassthruState *tpm_pt = TPM_PASSTHROUGH(tb);
2704549a8b7SStefan Berger 
2714549a8b7SStefan Berger     return tpm_pt->had_startup_error;
2724549a8b7SStefan Berger }
2734549a8b7SStefan Berger 
2744549a8b7SStefan Berger static size_t tpm_passthrough_realloc_buffer(TPMSizedBuffer *sb)
2754549a8b7SStefan Berger {
2764549a8b7SStefan Berger     size_t wanted_size = 4096; /* Linux tpm.c buffer size */
2774549a8b7SStefan Berger 
2784549a8b7SStefan Berger     if (sb->size != wanted_size) {
2794549a8b7SStefan Berger         sb->buffer = g_realloc(sb->buffer, wanted_size);
2804549a8b7SStefan Berger         sb->size = wanted_size;
2814549a8b7SStefan Berger     }
2824549a8b7SStefan Berger     return sb->size;
2834549a8b7SStefan Berger }
2844549a8b7SStefan Berger 
2854549a8b7SStefan Berger static void tpm_passthrough_cancel_cmd(TPMBackend *tb)
2864549a8b7SStefan Berger {
2878f0605ccSStefan Berger     TPMPassthruState *tpm_pt = TPM_PASSTHROUGH(tb);
28892dcc234SStefan Berger     int n;
28992dcc234SStefan Berger 
29092dcc234SStefan Berger     /*
29192dcc234SStefan Berger      * As of Linux 3.7 the tpm_tis driver does not properly cancel
29292dcc234SStefan Berger      * commands on all TPM manufacturers' TPMs.
29392dcc234SStefan Berger      * Only cancel if we're busy so we don't cancel someone else's
29492dcc234SStefan Berger      * command, e.g., a command executed on the host.
29592dcc234SStefan Berger      */
29692dcc234SStefan Berger     if (tpm_pt->tpm_executing) {
29792dcc234SStefan Berger         if (tpm_pt->cancel_fd >= 0) {
29892dcc234SStefan Berger             n = write(tpm_pt->cancel_fd, "-", 1);
29992dcc234SStefan Berger             if (n != 1) {
30027215a22SGonglei                 error_report("Canceling TPM command failed: %s",
30192dcc234SStefan Berger                              strerror(errno));
30292dcc234SStefan Berger             } else {
30392dcc234SStefan Berger                 tpm_pt->tpm_op_canceled = true;
30492dcc234SStefan Berger             }
30592dcc234SStefan Berger         } else {
30692dcc234SStefan Berger             error_report("Cannot cancel TPM command due to missing "
30792dcc234SStefan Berger                          "TPM sysfs cancel entry");
30892dcc234SStefan Berger         }
30992dcc234SStefan Berger     }
3104549a8b7SStefan Berger }
3114549a8b7SStefan Berger 
3124549a8b7SStefan Berger static const char *tpm_passthrough_create_desc(void)
3134549a8b7SStefan Berger {
3144549a8b7SStefan Berger     return "Passthrough TPM backend driver";
3154549a8b7SStefan Berger }
3164549a8b7SStefan Berger 
317116694c3SStefan Berger static TPMVersion tpm_passthrough_get_tpm_version(TPMBackend *tb)
318116694c3SStefan Berger {
31956a3c24fSStefan Berger     TPMPassthruState *tpm_pt = TPM_PASSTHROUGH(tb);
320116694c3SStefan Berger 
32156a3c24fSStefan Berger     return tpm_pt->tpm_version;
3224549a8b7SStefan Berger }
3234549a8b7SStefan Berger 
32492dcc234SStefan Berger /*
32592dcc234SStefan Berger  * Unless path or file descriptor set has been provided by user,
32692dcc234SStefan Berger  * determine the sysfs cancel file following kernel documentation
32792dcc234SStefan Berger  * in Documentation/ABI/stable/sysfs-class-tpm.
3288e36d6caSStefan Berger  * From /dev/tpm0 create /sys/class/misc/tpm0/device/cancel
32992dcc234SStefan Berger  */
33092dcc234SStefan Berger static int tpm_passthrough_open_sysfs_cancel(TPMBackend *tb)
33192dcc234SStefan Berger {
3328e36d6caSStefan Berger     TPMPassthruState *tpm_pt = TPM_PASSTHROUGH(tb);
33392dcc234SStefan Berger     int fd = -1;
3348e36d6caSStefan Berger     char *dev;
33592dcc234SStefan Berger     char path[PATH_MAX];
33692dcc234SStefan Berger 
33792dcc234SStefan Berger     if (tb->cancel_path) {
33892dcc234SStefan Berger         fd = qemu_open(tb->cancel_path, O_WRONLY);
33992dcc234SStefan Berger         if (fd < 0) {
34092dcc234SStefan Berger             error_report("Could not open TPM cancel path : %s",
34192dcc234SStefan Berger                          strerror(errno));
34292dcc234SStefan Berger         }
34392dcc234SStefan Berger         return fd;
34492dcc234SStefan Berger     }
34592dcc234SStefan Berger 
3468e36d6caSStefan Berger     dev = strrchr(tpm_pt->tpm_dev, '/');
3478e36d6caSStefan Berger     if (dev) {
3488e36d6caSStefan Berger         dev++;
3498e36d6caSStefan Berger         if (snprintf(path, sizeof(path), "/sys/class/misc/%s/device/cancel",
3508e36d6caSStefan Berger                      dev) < sizeof(path)) {
35192dcc234SStefan Berger             fd = qemu_open(path, O_WRONLY);
35292dcc234SStefan Berger             if (fd >= 0) {
35392dcc234SStefan Berger                 tb->cancel_path = g_strdup(path);
3548e36d6caSStefan Berger             } else {
3558e36d6caSStefan Berger                 error_report("tpm_passthrough: Could not open TPM cancel "
3568e36d6caSStefan Berger                              "path %s : %s", path, strerror(errno));
3578e36d6caSStefan Berger             }
3588e36d6caSStefan Berger         }
3598e36d6caSStefan Berger     } else {
3608e36d6caSStefan Berger        error_report("tpm_passthrough: Bad TPM device path %s",
3618e36d6caSStefan Berger                     tpm_pt->tpm_dev);
36292dcc234SStefan Berger     }
36392dcc234SStefan Berger 
36492dcc234SStefan Berger     return fd;
36592dcc234SStefan Berger }
36692dcc234SStefan Berger 
3674549a8b7SStefan Berger static int tpm_passthrough_handle_device_opts(QemuOpts *opts, TPMBackend *tb)
3684549a8b7SStefan Berger {
3698f0605ccSStefan Berger     TPMPassthruState *tpm_pt = TPM_PASSTHROUGH(tb);
3704549a8b7SStefan Berger     const char *value;
3714549a8b7SStefan Berger 
37292dcc234SStefan Berger     value = qemu_opt_get(opts, "cancel-path");
37392dcc234SStefan Berger     tb->cancel_path = g_strdup(value);
37492dcc234SStefan Berger 
3754549a8b7SStefan Berger     value = qemu_opt_get(opts, "path");
3764549a8b7SStefan Berger     if (!value) {
3774549a8b7SStefan Berger         value = TPM_PASSTHROUGH_DEFAULT_DEVICE;
3784549a8b7SStefan Berger     }
3794549a8b7SStefan Berger 
3808f0605ccSStefan Berger     tpm_pt->tpm_dev = g_strdup(value);
3814549a8b7SStefan Berger 
3828f0605ccSStefan Berger     tb->path = g_strdup(tpm_pt->tpm_dev);
3834549a8b7SStefan Berger 
3848f0605ccSStefan Berger     tpm_pt->tpm_fd = qemu_open(tpm_pt->tpm_dev, O_RDWR);
3858f0605ccSStefan Berger     if (tpm_pt->tpm_fd < 0) {
38627215a22SGonglei         error_report("Cannot access TPM device using '%s': %s",
3878f0605ccSStefan Berger                      tpm_pt->tpm_dev, strerror(errno));
3884549a8b7SStefan Berger         goto err_free_parameters;
3894549a8b7SStefan Berger     }
3904549a8b7SStefan Berger 
39156a3c24fSStefan Berger     if (tpm_util_test_tpmdev(tpm_pt->tpm_fd, &tpm_pt->tpm_version)) {
39227215a22SGonglei         error_report("'%s' is not a TPM device.",
3938f0605ccSStefan Berger                      tpm_pt->tpm_dev);
3944549a8b7SStefan Berger         goto err_close_tpmdev;
3954549a8b7SStefan Berger     }
3964549a8b7SStefan Berger 
3974549a8b7SStefan Berger     return 0;
3984549a8b7SStefan Berger 
3994549a8b7SStefan Berger  err_close_tpmdev:
4008f0605ccSStefan Berger     qemu_close(tpm_pt->tpm_fd);
4018f0605ccSStefan Berger     tpm_pt->tpm_fd = -1;
4024549a8b7SStefan Berger 
4034549a8b7SStefan Berger  err_free_parameters:
4044549a8b7SStefan Berger     g_free(tb->path);
4054549a8b7SStefan Berger     tb->path = NULL;
4064549a8b7SStefan Berger 
4078f0605ccSStefan Berger     g_free(tpm_pt->tpm_dev);
4088f0605ccSStefan Berger     tpm_pt->tpm_dev = NULL;
4094549a8b7SStefan Berger 
4104549a8b7SStefan Berger     return 1;
4114549a8b7SStefan Berger }
4124549a8b7SStefan Berger 
4134549a8b7SStefan Berger static TPMBackend *tpm_passthrough_create(QemuOpts *opts, const char *id)
4144549a8b7SStefan Berger {
4158f0605ccSStefan Berger     Object *obj = object_new(TYPE_TPM_PASSTHROUGH);
4168f0605ccSStefan Berger     TPMBackend *tb = TPM_BACKEND(obj);
4178f0605ccSStefan Berger     TPMPassthruState *tpm_pt = TPM_PASSTHROUGH(tb);
4184549a8b7SStefan Berger 
4194549a8b7SStefan Berger     tb->id = g_strdup(id);
4204549a8b7SStefan Berger     /* let frontend set the fe_model to proper value */
4214549a8b7SStefan Berger     tb->fe_model = -1;
4224549a8b7SStefan Berger 
4234549a8b7SStefan Berger     if (tpm_passthrough_handle_device_opts(opts, tb)) {
4244549a8b7SStefan Berger         goto err_exit;
4254549a8b7SStefan Berger     }
4264549a8b7SStefan Berger 
4278f0605ccSStefan Berger     tpm_pt->cancel_fd = tpm_passthrough_open_sysfs_cancel(tb);
4288f0605ccSStefan Berger     if (tpm_pt->cancel_fd < 0) {
42992dcc234SStefan Berger         goto err_exit;
43092dcc234SStefan Berger     }
43192dcc234SStefan Berger 
4324549a8b7SStefan Berger     return tb;
4334549a8b7SStefan Berger 
4344549a8b7SStefan Berger err_exit:
4354549a8b7SStefan Berger     g_free(tb->id);
4364549a8b7SStefan Berger 
4374549a8b7SStefan Berger     return NULL;
4384549a8b7SStefan Berger }
4394549a8b7SStefan Berger 
4404549a8b7SStefan Berger static void tpm_passthrough_destroy(TPMBackend *tb)
4414549a8b7SStefan Berger {
4428f0605ccSStefan Berger     TPMPassthruState *tpm_pt = TPM_PASSTHROUGH(tb);
4434549a8b7SStefan Berger 
44492dcc234SStefan Berger     tpm_passthrough_cancel_cmd(tb);
44592dcc234SStefan Berger 
4464549a8b7SStefan Berger     qemu_close(tpm_pt->tpm_fd);
4478f0605ccSStefan Berger     qemu_close(tpm_pt->cancel_fd);
4484549a8b7SStefan Berger 
4494549a8b7SStefan Berger     g_free(tb->id);
4504549a8b7SStefan Berger     g_free(tb->path);
45192dcc234SStefan Berger     g_free(tb->cancel_path);
4528f0605ccSStefan Berger     g_free(tpm_pt->tpm_dev);
4534549a8b7SStefan Berger }
4544549a8b7SStefan Berger 
455bb716238SStefan Berger static const QemuOptDesc tpm_passthrough_cmdline_opts[] = {
456bb716238SStefan Berger     TPM_STANDARD_CMDLINE_OPTS,
457bb716238SStefan Berger     {
458bb716238SStefan Berger         .name = "cancel-path",
459bb716238SStefan Berger         .type = QEMU_OPT_STRING,
460bb716238SStefan Berger         .help = "Sysfs file entry for canceling TPM commands",
461bb716238SStefan Berger     },
462bb716238SStefan Berger     {
463bb716238SStefan Berger         .name = "path",
464bb716238SStefan Berger         .type = QEMU_OPT_STRING,
465bb716238SStefan Berger         .help = "Path to TPM device on the host",
466bb716238SStefan Berger     },
467bb716238SStefan Berger     { /* end of list */ },
468bb716238SStefan Berger };
469bb716238SStefan Berger 
470bdee56f5SPaolo Bonzini static const TPMDriverOps tpm_passthrough_driver = {
4714549a8b7SStefan Berger     .type                     = TPM_TYPE_PASSTHROUGH,
472bb716238SStefan Berger     .opts                     = tpm_passthrough_cmdline_opts,
4734549a8b7SStefan Berger     .desc                     = tpm_passthrough_create_desc,
4744549a8b7SStefan Berger     .create                   = tpm_passthrough_create,
4754549a8b7SStefan Berger     .destroy                  = tpm_passthrough_destroy,
4764549a8b7SStefan Berger     .init                     = tpm_passthrough_init,
4774549a8b7SStefan Berger     .startup_tpm              = tpm_passthrough_startup_tpm,
4784549a8b7SStefan Berger     .realloc_buffer           = tpm_passthrough_realloc_buffer,
4794549a8b7SStefan Berger     .reset                    = tpm_passthrough_reset,
4804549a8b7SStefan Berger     .had_startup_error        = tpm_passthrough_get_startup_error,
4814549a8b7SStefan Berger     .cancel_cmd               = tpm_passthrough_cancel_cmd,
4824549a8b7SStefan Berger     .get_tpm_established_flag = tpm_passthrough_get_tpm_established_flag,
483116694c3SStefan Berger     .reset_tpm_established_flag = tpm_passthrough_reset_tpm_established_flag,
484116694c3SStefan Berger     .get_tpm_version          = tpm_passthrough_get_tpm_version,
4854549a8b7SStefan Berger };
4864549a8b7SStefan Berger 
4878f0605ccSStefan Berger static void tpm_passthrough_inst_init(Object *obj)
4888f0605ccSStefan Berger {
4898f0605ccSStefan Berger }
4908f0605ccSStefan Berger 
4918f0605ccSStefan Berger static void tpm_passthrough_inst_finalize(Object *obj)
4928f0605ccSStefan Berger {
4938f0605ccSStefan Berger }
4948f0605ccSStefan Berger 
4958f0605ccSStefan Berger static void tpm_passthrough_class_init(ObjectClass *klass, void *data)
4968f0605ccSStefan Berger {
4978f0605ccSStefan Berger     TPMBackendClass *tbc = TPM_BACKEND_CLASS(klass);
4988f0605ccSStefan Berger 
4998f0605ccSStefan Berger     tbc->ops = &tpm_passthrough_driver;
500*b19a5eeaSAmarnath Valluri     tbc->handle_request = tpm_passthrough_handle_request;
5018f0605ccSStefan Berger }
5028f0605ccSStefan Berger 
5038f0605ccSStefan Berger static const TypeInfo tpm_passthrough_info = {
5048f0605ccSStefan Berger     .name = TYPE_TPM_PASSTHROUGH,
5058f0605ccSStefan Berger     .parent = TYPE_TPM_BACKEND,
5068f0605ccSStefan Berger     .instance_size = sizeof(TPMPassthruState),
5078f0605ccSStefan Berger     .class_init = tpm_passthrough_class_init,
5088f0605ccSStefan Berger     .instance_init = tpm_passthrough_inst_init,
5098f0605ccSStefan Berger     .instance_finalize = tpm_passthrough_inst_finalize,
5108f0605ccSStefan Berger };
5118f0605ccSStefan Berger 
5124549a8b7SStefan Berger static void tpm_passthrough_register(void)
5134549a8b7SStefan Berger {
5148f0605ccSStefan Berger     type_register_static(&tpm_passthrough_info);
5154549a8b7SStefan Berger     tpm_register_driver(&tpm_passthrough_driver);
5164549a8b7SStefan Berger }
5174549a8b7SStefan Berger 
5184549a8b7SStefan Berger type_init(tpm_passthrough_register)
519