1cbc5b5f3SJordan Justen /* 2cbc5b5f3SJordan Justen * QEMU PC System Firmware 3cbc5b5f3SJordan Justen * 4cbc5b5f3SJordan Justen * Copyright (c) 2003-2004 Fabrice Bellard 5cbc5b5f3SJordan Justen * Copyright (c) 2011-2012 Intel Corporation 6cbc5b5f3SJordan Justen * 7cbc5b5f3SJordan Justen * Permission is hereby granted, free of charge, to any person obtaining a copy 8cbc5b5f3SJordan Justen * of this software and associated documentation files (the "Software"), to deal 9cbc5b5f3SJordan Justen * in the Software without restriction, including without limitation the rights 10cbc5b5f3SJordan Justen * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell 11cbc5b5f3SJordan Justen * copies of the Software, and to permit persons to whom the Software is 12cbc5b5f3SJordan Justen * furnished to do so, subject to the following conditions: 13cbc5b5f3SJordan Justen * 14cbc5b5f3SJordan Justen * The above copyright notice and this permission notice shall be included in 15cbc5b5f3SJordan Justen * all copies or substantial portions of the Software. 16cbc5b5f3SJordan Justen * 17cbc5b5f3SJordan Justen * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR 18cbc5b5f3SJordan Justen * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, 19cbc5b5f3SJordan Justen * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL 20cbc5b5f3SJordan Justen * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER 21cbc5b5f3SJordan Justen * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, 22cbc5b5f3SJordan Justen * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN 23cbc5b5f3SJordan Justen * THE SOFTWARE. 24cbc5b5f3SJordan Justen */ 25cbc5b5f3SJordan Justen 26b6a0aa05SPeter Maydell #include "qemu/osdep.h" 27*a8d25326SMarkus Armbruster #include "qemu-common.h" 28da34e65cSMarkus Armbruster #include "qapi/error.h" 29fa1d36dfSMarkus Armbruster #include "sysemu/block-backend.h" 30b4a42f81SPaolo Bonzini #include "qemu/error-report.h" 31922a01a0SMarkus Armbruster #include "qemu/option.h" 32d471bf3eSPaolo Bonzini #include "qemu/units.h" 3383c9f4caSPaolo Bonzini #include "hw/sysbus.h" 3483c9f4caSPaolo Bonzini #include "hw/hw.h" 350d09e41aSPaolo Bonzini #include "hw/i386/pc.h" 36bd183c79SJordan Justen #include "hw/boards.h" 3783c9f4caSPaolo Bonzini #include "hw/loader.h" 389c17d615SPaolo Bonzini #include "sysemu/sysemu.h" 390d09e41aSPaolo Bonzini #include "hw/block/flash.h" 409c17d615SPaolo Bonzini #include "sysemu/kvm.h" 41cbc5b5f3SJordan Justen 42cbc5b5f3SJordan Justen #define BIOS_FILENAME "bios.bin" 43cbc5b5f3SJordan Justen 44ebc29e1bSMarkus Armbruster /* 45ebc29e1bSMarkus Armbruster * We don't have a theoretically justifiable exact lower bound on the base 46ebc29e1bSMarkus Armbruster * address of any flash mapping. In practice, the IO-APIC MMIO range is 47ebc29e1bSMarkus Armbruster * [0xFEE00000..0xFEE01000] -- see IO_APIC_DEFAULT_ADDRESS --, leaving free 48ebc29e1bSMarkus Armbruster * only 18MB-4KB below 4G. For now, restrict the cumulative mapping to 8MB in 49ebc29e1bSMarkus Armbruster * size. 50ebc29e1bSMarkus Armbruster */ 51ebc29e1bSMarkus Armbruster #define FLASH_SIZE_LIMIT (8 * MiB) 52ebc29e1bSMarkus Armbruster 53ebc29e1bSMarkus Armbruster #define FLASH_SECTOR_SIZE 4096 54ebc29e1bSMarkus Armbruster 55bd183c79SJordan Justen static void pc_isa_bios_init(MemoryRegion *rom_memory, 56bd183c79SJordan Justen MemoryRegion *flash_mem, 57bd183c79SJordan Justen int ram_size) 58bd183c79SJordan Justen { 59bd183c79SJordan Justen int isa_bios_size; 60bd183c79SJordan Justen MemoryRegion *isa_bios; 61bd183c79SJordan Justen uint64_t flash_size; 62bd183c79SJordan Justen void *flash_ptr, *isa_bios_ptr; 63bd183c79SJordan Justen 64bd183c79SJordan Justen flash_size = memory_region_size(flash_mem); 65bd183c79SJordan Justen 66bd183c79SJordan Justen /* map the last 128KB of the BIOS in ISA space */ 67d471bf3eSPaolo Bonzini isa_bios_size = MIN(flash_size, 128 * KiB); 68bd183c79SJordan Justen isa_bios = g_malloc(sizeof(*isa_bios)); 6998a99ce0SPeter Maydell memory_region_init_ram(isa_bios, NULL, "isa-bios", isa_bios_size, 70f8ed85acSMarkus Armbruster &error_fatal); 71bd183c79SJordan Justen memory_region_add_subregion_overlap(rom_memory, 72bd183c79SJordan Justen 0x100000 - isa_bios_size, 73bd183c79SJordan Justen isa_bios, 74bd183c79SJordan Justen 1); 75bd183c79SJordan Justen 76bd183c79SJordan Justen /* copy ISA rom image from top of flash memory */ 77bd183c79SJordan Justen flash_ptr = memory_region_get_ram_ptr(flash_mem); 78bd183c79SJordan Justen isa_bios_ptr = memory_region_get_ram_ptr(isa_bios); 79bd183c79SJordan Justen memcpy(isa_bios_ptr, 80bd183c79SJordan Justen ((uint8_t*)flash_ptr) + (flash_size - isa_bios_size), 81bd183c79SJordan Justen isa_bios_size); 82bd183c79SJordan Justen 83bd183c79SJordan Justen memory_region_set_readonly(isa_bios, true); 84bd183c79SJordan Justen } 85bd183c79SJordan Justen 86ebc29e1bSMarkus Armbruster static PFlashCFI01 *pc_pflash_create(PCMachineState *pcms, 87ebc29e1bSMarkus Armbruster const char *name, 88ebc29e1bSMarkus Armbruster const char *alias_prop_name) 89ebc29e1bSMarkus Armbruster { 90ebc29e1bSMarkus Armbruster DeviceState *dev = qdev_create(NULL, TYPE_PFLASH_CFI01); 91637a5acbSLaszlo Ersek 92ebc29e1bSMarkus Armbruster qdev_prop_set_uint64(dev, "sector-length", FLASH_SECTOR_SIZE); 93ebc29e1bSMarkus Armbruster qdev_prop_set_uint8(dev, "width", 1); 94ebc29e1bSMarkus Armbruster qdev_prop_set_string(dev, "name", name); 95ebc29e1bSMarkus Armbruster object_property_add_child(OBJECT(pcms), name, OBJECT(dev), 96ebc29e1bSMarkus Armbruster &error_abort); 97ebc29e1bSMarkus Armbruster object_property_add_alias(OBJECT(pcms), alias_prop_name, 98ebc29e1bSMarkus Armbruster OBJECT(dev), "drive", &error_abort); 99ebc29e1bSMarkus Armbruster return PFLASH_CFI01(dev); 100ebc29e1bSMarkus Armbruster } 101637a5acbSLaszlo Ersek 102ebc29e1bSMarkus Armbruster void pc_system_flash_create(PCMachineState *pcms) 103ebc29e1bSMarkus Armbruster { 104ebc29e1bSMarkus Armbruster PCMachineClass *pcmc = PC_MACHINE_GET_CLASS(pcms); 105ebc29e1bSMarkus Armbruster 106ebc29e1bSMarkus Armbruster if (pcmc->pci_enabled) { 107ebc29e1bSMarkus Armbruster pcms->flash[0] = pc_pflash_create(pcms, "system.flash0", 108ebc29e1bSMarkus Armbruster "pflash0"); 109ebc29e1bSMarkus Armbruster pcms->flash[1] = pc_pflash_create(pcms, "system.flash1", 110ebc29e1bSMarkus Armbruster "pflash1"); 111ebc29e1bSMarkus Armbruster } 112ebc29e1bSMarkus Armbruster } 113ebc29e1bSMarkus Armbruster 114ebc29e1bSMarkus Armbruster static void pc_system_flash_cleanup_unused(PCMachineState *pcms) 115ebc29e1bSMarkus Armbruster { 116ebc29e1bSMarkus Armbruster char *prop_name; 117ebc29e1bSMarkus Armbruster int i; 118ebc29e1bSMarkus Armbruster Object *dev_obj; 119ebc29e1bSMarkus Armbruster 120ebc29e1bSMarkus Armbruster assert(PC_MACHINE_GET_CLASS(pcms)->pci_enabled); 121ebc29e1bSMarkus Armbruster 122ebc29e1bSMarkus Armbruster for (i = 0; i < ARRAY_SIZE(pcms->flash); i++) { 123ebc29e1bSMarkus Armbruster dev_obj = OBJECT(pcms->flash[i]); 124ebc29e1bSMarkus Armbruster if (!object_property_get_bool(dev_obj, "realized", &error_abort)) { 125ebc29e1bSMarkus Armbruster prop_name = g_strdup_printf("pflash%d", i); 126ebc29e1bSMarkus Armbruster object_property_del(OBJECT(pcms), prop_name, &error_abort); 127ebc29e1bSMarkus Armbruster g_free(prop_name); 128ebc29e1bSMarkus Armbruster object_unparent(dev_obj); 129ebc29e1bSMarkus Armbruster pcms->flash[i] = NULL; 130ebc29e1bSMarkus Armbruster } 131ebc29e1bSMarkus Armbruster } 132ebc29e1bSMarkus Armbruster } 133ebc29e1bSMarkus Armbruster 134ebc29e1bSMarkus Armbruster /* 135ebc29e1bSMarkus Armbruster * Map the pcms->flash[] from 4GiB downward, and realize. 136ebc29e1bSMarkus Armbruster * Map them in descending order, i.e. pcms->flash[0] at the top, 137ebc29e1bSMarkus Armbruster * without gaps. 138ebc29e1bSMarkus Armbruster * Stop at the first pcms->flash[0] lacking a block backend. 139ebc29e1bSMarkus Armbruster * Set each flash's size from its block backend. Fatal error if the 140ebc29e1bSMarkus Armbruster * size isn't a non-zero multiple of 4KiB, or the total size exceeds 141ebc29e1bSMarkus Armbruster * FLASH_SIZE_LIMIT. 142637a5acbSLaszlo Ersek * 143ebc29e1bSMarkus Armbruster * If pcms->flash[0] has a block backend, its memory is passed to 144ebc29e1bSMarkus Armbruster * pc_isa_bios_init(). Merging several flash devices for isa-bios is 145637a5acbSLaszlo Ersek * not supported. 146637a5acbSLaszlo Ersek */ 147ebc29e1bSMarkus Armbruster static void pc_system_flash_map(PCMachineState *pcms, 148ebc29e1bSMarkus Armbruster MemoryRegion *rom_memory) 149bd183c79SJordan Justen { 150ebc29e1bSMarkus Armbruster hwaddr total_size = 0; 151ebc29e1bSMarkus Armbruster int i; 1524be74634SMarkus Armbruster BlockBackend *blk; 153bd183c79SJordan Justen int64_t size; 15416434065SMarkus Armbruster PFlashCFI01 *system_flash; 155bd183c79SJordan Justen MemoryRegion *flash_mem; 156952e0668SBrijesh Singh void *flash_ptr; 157952e0668SBrijesh Singh int ret, flash_size; 158bd183c79SJordan Justen 159ebc29e1bSMarkus Armbruster assert(PC_MACHINE_GET_CLASS(pcms)->pci_enabled); 160ebc29e1bSMarkus Armbruster 161ebc29e1bSMarkus Armbruster for (i = 0; i < ARRAY_SIZE(pcms->flash); i++) { 162ebc29e1bSMarkus Armbruster system_flash = pcms->flash[i]; 163ebc29e1bSMarkus Armbruster blk = pflash_cfi01_get_blk(system_flash); 164ebc29e1bSMarkus Armbruster if (!blk) { 165ebc29e1bSMarkus Armbruster break; 166ebc29e1bSMarkus Armbruster } 1674be74634SMarkus Armbruster size = blk_getlength(blk); 168637a5acbSLaszlo Ersek if (size < 0) { 169ebc29e1bSMarkus Armbruster error_report("can't get size of block device %s: %s", 170ebc29e1bSMarkus Armbruster blk_name(blk), strerror(-size)); 171ebc29e1bSMarkus Armbruster exit(1); 172637a5acbSLaszlo Ersek } 173ebc29e1bSMarkus Armbruster if (size == 0 || size % FLASH_SECTOR_SIZE != 0) { 174ebc29e1bSMarkus Armbruster error_report("system firmware block device %s has invalid size " 175ebc29e1bSMarkus Armbruster "%" PRId64, 176ebc29e1bSMarkus Armbruster blk_name(blk), size); 177ebc29e1bSMarkus Armbruster info_report("its size must be a non-zero multiple of 0x%x", 178ebc29e1bSMarkus Armbruster FLASH_SECTOR_SIZE); 179ebc29e1bSMarkus Armbruster exit(1); 180637a5acbSLaszlo Ersek } 181ebc29e1bSMarkus Armbruster if ((hwaddr)size != size 182ebc29e1bSMarkus Armbruster || total_size > HWADDR_MAX - size 183ebc29e1bSMarkus Armbruster || total_size + size > FLASH_SIZE_LIMIT) { 184ebc29e1bSMarkus Armbruster error_report("combined size of system firmware exceeds " 185ebc29e1bSMarkus Armbruster "%" PRIu64 " bytes", 186ebc29e1bSMarkus Armbruster FLASH_SIZE_LIMIT); 187bd183c79SJordan Justen exit(1); 188bd183c79SJordan Justen } 189bd183c79SJordan Justen 190ebc29e1bSMarkus Armbruster total_size += size; 191ebc29e1bSMarkus Armbruster qdev_prop_set_uint32(DEVICE(system_flash), "num-blocks", 192ebc29e1bSMarkus Armbruster size / FLASH_SECTOR_SIZE); 193ebc29e1bSMarkus Armbruster qdev_init_nofail(DEVICE(system_flash)); 194ebc29e1bSMarkus Armbruster sysbus_mmio_map(SYS_BUS_DEVICE(system_flash), 0, 195ebc29e1bSMarkus Armbruster 0x100000000ULL - total_size); 196bd183c79SJordan Justen 197ebc29e1bSMarkus Armbruster if (i == 0) { 198637a5acbSLaszlo Ersek flash_mem = pflash_cfi01_get_memory(system_flash); 199bd183c79SJordan Justen pc_isa_bios_init(rom_memory, flash_mem, size); 200952e0668SBrijesh Singh 201952e0668SBrijesh Singh /* Encrypt the pflash boot ROM */ 202952e0668SBrijesh Singh if (kvm_memcrypt_enabled()) { 203952e0668SBrijesh Singh flash_ptr = memory_region_get_ram_ptr(flash_mem); 204952e0668SBrijesh Singh flash_size = memory_region_size(flash_mem); 205952e0668SBrijesh Singh ret = kvm_memcrypt_encrypt_data(flash_ptr, flash_size); 206952e0668SBrijesh Singh if (ret) { 207952e0668SBrijesh Singh error_report("failed to encrypt pflash rom"); 208952e0668SBrijesh Singh exit(1); 209952e0668SBrijesh Singh } 210952e0668SBrijesh Singh } 211bd183c79SJordan Justen } 212637a5acbSLaszlo Ersek } 213637a5acbSLaszlo Ersek } 214bd183c79SJordan Justen 215dade922fSJordan Justen static void old_pc_system_rom_init(MemoryRegion *rom_memory, bool isapc_ram_fw) 216cbc5b5f3SJordan Justen { 217cbc5b5f3SJordan Justen char *filename; 218cbc5b5f3SJordan Justen MemoryRegion *bios, *isa_bios; 219cbc5b5f3SJordan Justen int bios_size, isa_bios_size; 220cbc5b5f3SJordan Justen int ret; 221cbc5b5f3SJordan Justen 222cbc5b5f3SJordan Justen /* BIOS load */ 223cbc5b5f3SJordan Justen if (bios_name == NULL) { 224cbc5b5f3SJordan Justen bios_name = BIOS_FILENAME; 225cbc5b5f3SJordan Justen } 226cbc5b5f3SJordan Justen filename = qemu_find_file(QEMU_FILE_TYPE_BIOS, bios_name); 227cbc5b5f3SJordan Justen if (filename) { 228cbc5b5f3SJordan Justen bios_size = get_image_size(filename); 229cbc5b5f3SJordan Justen } else { 230cbc5b5f3SJordan Justen bios_size = -1; 231cbc5b5f3SJordan Justen } 232cbc5b5f3SJordan Justen if (bios_size <= 0 || 233cbc5b5f3SJordan Justen (bios_size % 65536) != 0) { 234cbc5b5f3SJordan Justen goto bios_error; 235cbc5b5f3SJordan Justen } 236cbc5b5f3SJordan Justen bios = g_malloc(sizeof(*bios)); 23798a99ce0SPeter Maydell memory_region_init_ram(bios, NULL, "pc.bios", bios_size, &error_fatal); 238dade922fSJordan Justen if (!isapc_ram_fw) { 239cbc5b5f3SJordan Justen memory_region_set_readonly(bios, true); 240dade922fSJordan Justen } 241cbc5b5f3SJordan Justen ret = rom_add_file_fixed(bios_name, (uint32_t)(-bios_size), -1); 242cbc5b5f3SJordan Justen if (ret != 0) { 243cbc5b5f3SJordan Justen bios_error: 244cbc5b5f3SJordan Justen fprintf(stderr, "qemu: could not load PC BIOS '%s'\n", bios_name); 245cbc5b5f3SJordan Justen exit(1); 246cbc5b5f3SJordan Justen } 247cbc5b5f3SJordan Justen g_free(filename); 248cbc5b5f3SJordan Justen 249cbc5b5f3SJordan Justen /* map the last 128KB of the BIOS in ISA space */ 250d471bf3eSPaolo Bonzini isa_bios_size = MIN(bios_size, 128 * KiB); 251cbc5b5f3SJordan Justen isa_bios = g_malloc(sizeof(*isa_bios)); 2522c9b15caSPaolo Bonzini memory_region_init_alias(isa_bios, NULL, "isa-bios", bios, 253cbc5b5f3SJordan Justen bios_size - isa_bios_size, isa_bios_size); 254cbc5b5f3SJordan Justen memory_region_add_subregion_overlap(rom_memory, 255cbc5b5f3SJordan Justen 0x100000 - isa_bios_size, 256cbc5b5f3SJordan Justen isa_bios, 257cbc5b5f3SJordan Justen 1); 258dade922fSJordan Justen if (!isapc_ram_fw) { 259cbc5b5f3SJordan Justen memory_region_set_readonly(isa_bios, true); 260dade922fSJordan Justen } 261cbc5b5f3SJordan Justen 262cbc5b5f3SJordan Justen /* map all the bios at the top of memory */ 263cbc5b5f3SJordan Justen memory_region_add_subregion(rom_memory, 264cbc5b5f3SJordan Justen (uint32_t)(-bios_size), 265cbc5b5f3SJordan Justen bios); 266cbc5b5f3SJordan Justen } 267cbc5b5f3SJordan Justen 2685e640a9eSPhilippe Mathieu-Daudé void pc_system_firmware_init(PCMachineState *pcms, 2695e640a9eSPhilippe Mathieu-Daudé MemoryRegion *rom_memory) 270cbc5b5f3SJordan Justen { 2715e640a9eSPhilippe Mathieu-Daudé PCMachineClass *pcmc = PC_MACHINE_GET_CLASS(pcms); 272ebc29e1bSMarkus Armbruster int i; 273ebc29e1bSMarkus Armbruster BlockBackend *pflash_blk[ARRAY_SIZE(pcms->flash)]; 2741d38574fSAnthony Liguori 275ebc29e1bSMarkus Armbruster if (!pcmc->pci_enabled) { 276ebc29e1bSMarkus Armbruster old_pc_system_rom_init(rom_memory, true); 277a904410aSPaolo Bonzini return; 278a904410aSPaolo Bonzini } 279a904410aSPaolo Bonzini 280ebc29e1bSMarkus Armbruster /* Map legacy -drive if=pflash to machine properties */ 281ebc29e1bSMarkus Armbruster for (i = 0; i < ARRAY_SIZE(pcms->flash); i++) { 2822d731dbdSMarkus Armbruster pflash_cfi01_legacy_drive(pcms->flash[i], 2832d731dbdSMarkus Armbruster drive_get(IF_PFLASH, 0, i)); 284c8d8ef00SMarkus Armbruster pflash_blk[i] = pflash_cfi01_get_blk(pcms->flash[i]); 285c8d8ef00SMarkus Armbruster } 286ebc29e1bSMarkus Armbruster 287ebc29e1bSMarkus Armbruster /* Reject gaps */ 288ebc29e1bSMarkus Armbruster for (i = 1; i < ARRAY_SIZE(pcms->flash); i++) { 289ebc29e1bSMarkus Armbruster if (pflash_blk[i] && !pflash_blk[i - 1]) { 290ebc29e1bSMarkus Armbruster error_report("pflash%d requires pflash%d", i, i - 1); 291ebc29e1bSMarkus Armbruster exit(1); 292ebc29e1bSMarkus Armbruster } 293ebc29e1bSMarkus Armbruster } 294ebc29e1bSMarkus Armbruster 295ebc29e1bSMarkus Armbruster if (!pflash_blk[0]) { 296ebc29e1bSMarkus Armbruster /* Machine property pflash0 not set, use ROM mode */ 297ebc29e1bSMarkus Armbruster old_pc_system_rom_init(rom_memory, false); 298ebc29e1bSMarkus Armbruster } else { 299a904410aSPaolo Bonzini if (kvm_enabled() && !kvm_readonly_mem_enabled()) { 300ebc29e1bSMarkus Armbruster /* 301ebc29e1bSMarkus Armbruster * Older KVM cannot execute from device memory. So, flash 302ebc29e1bSMarkus Armbruster * memory cannot be used unless the readonly memory kvm 303ebc29e1bSMarkus Armbruster * capability is present. 304ebc29e1bSMarkus Armbruster */ 305ebc29e1bSMarkus Armbruster error_report("pflash with kvm requires KVM readonly memory support"); 306dafb82e0SJordan Justen exit(1); 307dafb82e0SJordan Justen } 308dafb82e0SJordan Justen 309ebc29e1bSMarkus Armbruster pc_system_flash_map(pcms, rom_memory); 310ebc29e1bSMarkus Armbruster } 311ebc29e1bSMarkus Armbruster 312ebc29e1bSMarkus Armbruster pc_system_flash_cleanup_unused(pcms); 313cbc5b5f3SJordan Justen } 314