blob: fca1c73c5569b6c162cf19d610a0d073d841d7b3 [file] [log] [blame]
Luka Perkovd131ad62012-05-27 11:44:51 +00001/*
Stefan Roese84899e22014-10-22 12:13:21 +02002 * Boot a Marvell SoC, with Xmodem over UART0.
Marek Behúnb843aed2021-09-24 23:07:13 +02003 * supports Kirkwood, Dove, Armada 370, Armada XP, Armada 375, Armada 38x and
4 * Armada 39x
Luka Perkovd131ad62012-05-27 11:44:51 +00005 *
6 * (c) 2012 Daniel Stodden <daniel.stodden@gmail.com>
Pali Rohárcf8c9322021-09-24 23:07:14 +02007 * (c) 2021 Pali Rohár <pali@kernel.org>
8 * (c) 2021 Marek Behún <marek.behun@nic.cz>
Luka Perkovd131ad62012-05-27 11:44:51 +00009 *
10 * References: marvell.com, "88F6180, 88F6190, 88F6192, and 88F6281
11 * Integrated Controller: Functional Specifications" December 2,
12 * 2008. Chapter 24.2 "BootROM Firmware".
13 */
14
Stefan Roesef4db6c92016-01-07 14:12:04 +010015#include "kwbimage.h"
16#include "mkimage.h"
Pali Rohára050a862021-09-24 23:06:42 +020017#include "version.h"
Stefan Roesef4db6c92016-01-07 14:12:04 +010018
Luka Perkovd131ad62012-05-27 11:44:51 +000019#include <stdlib.h>
20#include <stdio.h>
21#include <string.h>
22#include <stdarg.h>
Stefan Roesef4db6c92016-01-07 14:12:04 +010023#include <image.h>
Luka Perkovd131ad62012-05-27 11:44:51 +000024#include <libgen.h>
25#include <fcntl.h>
26#include <errno.h>
27#include <unistd.h>
28#include <stdint.h>
Marek Behún12df7b72021-09-24 23:06:52 +020029#include <time.h>
Luka Perkovd131ad62012-05-27 11:44:51 +000030#include <sys/stat.h>
31
Pali Rohár93b55632021-09-24 23:07:06 +020032#ifdef __linux__
33#include "termios_linux.h"
34#else
35#include <termios.h>
36#endif
37
Luka Perkovd131ad62012-05-27 11:44:51 +000038/*
39 * Marvell BootROM UART Sensing
40 */
41
42static unsigned char kwboot_msg_boot[] = {
43 0xBB, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77
44};
45
Stefan Roese84899e22014-10-22 12:13:21 +020046static unsigned char kwboot_msg_debug[] = {
47 0xDD, 0x11, 0x22, 0x33, 0x44, 0x55, 0x66, 0x77
48};
49
50/* Defines known to work on Kirkwood */
Luka Perkovd131ad62012-05-27 11:44:51 +000051#define KWBOOT_MSG_REQ_DELAY 10 /* ms */
52#define KWBOOT_MSG_RSP_TIMEO 50 /* ms */
53
Stefan Roese84899e22014-10-22 12:13:21 +020054/* Defines known to work on Armada XP */
55#define KWBOOT_MSG_REQ_DELAY_AXP 1000 /* ms */
56#define KWBOOT_MSG_RSP_TIMEO_AXP 1000 /* ms */
57
Luka Perkovd131ad62012-05-27 11:44:51 +000058/*
59 * Xmodem Transfers
60 */
61
62#define SOH 1 /* sender start of block header */
63#define EOT 4 /* sender end of block transfer */
64#define ACK 6 /* target block ack */
65#define NAK 21 /* target block negative ack */
Luka Perkovd131ad62012-05-27 11:44:51 +000066
Pali Rohár2ef87f72021-09-24 23:06:48 +020067#define KWBOOT_XM_BLKSZ 128 /* xmodem block size */
68
Luka Perkovd131ad62012-05-27 11:44:51 +000069struct kwboot_block {
70 uint8_t soh;
71 uint8_t pnum;
72 uint8_t _pnum;
Pali Rohár2ef87f72021-09-24 23:06:48 +020073 uint8_t data[KWBOOT_XM_BLKSZ];
Luka Perkovd131ad62012-05-27 11:44:51 +000074 uint8_t csum;
Pali Rohára107c612021-07-23 11:14:14 +020075} __packed;
Luka Perkovd131ad62012-05-27 11:44:51 +000076
Pali Roháref951432022-01-25 18:13:00 +010077#define KWBOOT_BLK_RSP_TIMEO 2000 /* ms */
Marek Behún12df7b72021-09-24 23:06:52 +020078#define KWBOOT_HDR_RSP_TIMEO 10000 /* ms */
Luka Perkovd131ad62012-05-27 11:44:51 +000079
Pali Rohár8dbe0272021-10-27 20:57:02 +020080/* ARM code to change baudrate */
Pali Rohárca272042021-09-24 23:07:05 +020081static unsigned char kwboot_baud_code[] = {
82 /* ; #define UART_BASE 0xd0012000 */
Pali Rohárca272042021-09-24 23:07:05 +020083 /* ; #define DLL 0x00 */
84 /* ; #define DLH 0x04 */
85 /* ; #define LCR 0x0c */
86 /* ; #define DLAB 0x80 */
87 /* ; #define LSR 0x14 */
Pali Rohárca272042021-09-24 23:07:05 +020088 /* ; #define TEMT 0x40 */
89 /* ; #define DIV_ROUND(a, b) ((a + b/2) / b) */
90 /* ; */
91 /* ; u32 set_baudrate(u32 old_b, u32 new_b) { */
Pali Rohárca272042021-09-24 23:07:05 +020092 /* ; while */
93 /* ; (!(readl(UART_BASE + LSR) & TEMT)); */
94 /* ; u32 lcr = readl(UART_BASE + LCR); */
95 /* ; writel(UART_BASE + LCR, lcr | DLAB); */
96 /* ; u8 old_dll = readl(UART_BASE + DLL); */
97 /* ; u8 old_dlh = readl(UART_BASE + DLH); */
98 /* ; u16 old_dl = old_dll | (old_dlh << 8); */
99 /* ; u32 clk = old_b * old_dl; */
100 /* ; u16 new_dl = DIV_ROUND(clk, new_b); */
101 /* ; u8 new_dll = new_dl & 0xff; */
102 /* ; u8 new_dlh = (new_dl >> 8) & 0xff; */
103 /* ; writel(UART_BASE + DLL, new_dll); */
104 /* ; writel(UART_BASE + DLH, new_dlh); */
105 /* ; writel(UART_BASE + LCR, lcr & ~DLAB); */
Pali Rohár56452292021-10-27 20:57:00 +0200106 /* ; msleep(5); */
Pali Rohárca272042021-09-24 23:07:05 +0200107 /* ; return 0; */
108 /* ; } */
109
Pali Rohárca272042021-09-24 23:07:05 +0200110 /* ; r0 = UART_BASE */
Pali Rohár558176d2021-10-27 20:57:01 +0200111 0x0d, 0x02, 0xa0, 0xe3, /* mov r0, #0xd0000000 */
112 0x12, 0x0a, 0x80, 0xe3, /* orr r0, r0, #0x12000 */
Pali Rohárca272042021-09-24 23:07:05 +0200113
Pali Rohárca272042021-09-24 23:07:05 +0200114 /* ; Wait until Transmitter FIFO is Empty */
115 /* .Lloop_txempty: */
116 /* ; r1 = UART_BASE[LSR] & TEMT */
117 0x14, 0x10, 0x90, 0xe5, /* ldr r1, [r0, #0x14] */
118 0x40, 0x00, 0x11, 0xe3, /* tst r1, #0x40 */
119 0xfc, 0xff, 0xff, 0x0a, /* beq .Lloop_txempty */
120
121 /* ; Set Divisor Latch Access Bit */
122 /* ; UART_BASE[LCR] |= DLAB */
123 0x0c, 0x10, 0x90, 0xe5, /* ldr r1, [r0, #0x0c] */
124 0x80, 0x10, 0x81, 0xe3, /* orr r1, r1, #0x80 */
125 0x0c, 0x10, 0x80, 0xe5, /* str r1, [r0, #0x0c] */
126
127 /* ; Read current Divisor Latch */
128 /* ; r1 = UART_BASE[DLH]<<8 | UART_BASE[DLL] */
129 0x00, 0x10, 0x90, 0xe5, /* ldr r1, [r0, #0x00] */
130 0xff, 0x10, 0x01, 0xe2, /* and r1, r1, #0xff */
131 0x01, 0x20, 0xa0, 0xe1, /* mov r2, r1 */
132 0x04, 0x10, 0x90, 0xe5, /* ldr r1, [r0, #0x04] */
133 0xff, 0x10, 0x01, 0xe2, /* and r1, r1, #0xff */
134 0x41, 0x14, 0xa0, 0xe1, /* asr r1, r1, #8 */
135 0x02, 0x10, 0x81, 0xe1, /* orr r1, r1, r2 */
136
137 /* ; Read old baudrate value */
138 /* ; r2 = old_baudrate */
Pali Rohár62a98f42021-11-01 14:00:02 +0100139 0x74, 0x20, 0x9f, 0xe5, /* ldr r2, old_baudrate */
Pali Rohárca272042021-09-24 23:07:05 +0200140
141 /* ; Calculate base clock */
142 /* ; r1 = r2 * r1 */
143 0x92, 0x01, 0x01, 0xe0, /* mul r1, r2, r1 */
144
145 /* ; Read new baudrate value */
Pali Rohár56452292021-10-27 20:57:00 +0200146 /* ; r2 = new_baudrate */
Pali Rohár62a98f42021-11-01 14:00:02 +0100147 0x70, 0x20, 0x9f, 0xe5, /* ldr r2, new_baudrate */
Pali Rohárca272042021-09-24 23:07:05 +0200148
149 /* ; Calculate new Divisor Latch */
150 /* ; r1 = DIV_ROUND(r1, r2) = */
151 /* ; = (r1 + r2/2) / r2 */
152 0xa2, 0x10, 0x81, 0xe0, /* add r1, r1, r2, lsr #1 */
153 0x02, 0x40, 0xa0, 0xe1, /* mov r4, r2 */
154 0xa1, 0x00, 0x54, 0xe1, /* cmp r4, r1, lsr #1 */
155 /* .Lloop_div1: */
156 0x84, 0x40, 0xa0, 0x91, /* movls r4, r4, lsl #1 */
157 0xa1, 0x00, 0x54, 0xe1, /* cmp r4, r1, lsr #1 */
158 0xfc, 0xff, 0xff, 0x9a, /* bls .Lloop_div1 */
159 0x00, 0x30, 0xa0, 0xe3, /* mov r3, #0 */
160 /* .Lloop_div2: */
161 0x04, 0x00, 0x51, 0xe1, /* cmp r1, r4 */
162 0x04, 0x10, 0x41, 0x20, /* subhs r1, r1, r4 */
163 0x03, 0x30, 0xa3, 0xe0, /* adc r3, r3, r3 */
164 0xa4, 0x40, 0xa0, 0xe1, /* mov r4, r4, lsr #1 */
165 0x02, 0x00, 0x54, 0xe1, /* cmp r4, r2 */
166 0xf9, 0xff, 0xff, 0x2a, /* bhs .Lloop_div2 */
167 0x03, 0x10, 0xa0, 0xe1, /* mov r1, r3 */
168
169 /* ; Set new Divisor Latch Low */
170 /* ; UART_BASE[DLL] = r1 & 0xff */
171 0x01, 0x20, 0xa0, 0xe1, /* mov r2, r1 */
172 0xff, 0x20, 0x02, 0xe2, /* and r2, r2, #0xff */
173 0x00, 0x20, 0x80, 0xe5, /* str r2, [r0, #0x00] */
174
175 /* ; Set new Divisor Latch High */
176 /* ; UART_BASE[DLH] = r1>>8 & 0xff */
177 0x41, 0x24, 0xa0, 0xe1, /* asr r2, r1, #8 */
178 0xff, 0x20, 0x02, 0xe2, /* and r2, r2, #0xff */
179 0x04, 0x20, 0x80, 0xe5, /* str r2, [r0, #0x04] */
180
181 /* ; Clear Divisor Latch Access Bit */
182 /* ; UART_BASE[LCR] &= ~DLAB */
183 0x0c, 0x10, 0x90, 0xe5, /* ldr r1, [r0, #0x0c] */
184 0x80, 0x10, 0xc1, 0xe3, /* bic r1, r1, #0x80 */
185 0x0c, 0x10, 0x80, 0xe5, /* str r1, [r0, #0x0c] */
186
Pali Rohár56452292021-10-27 20:57:00 +0200187 /* ; Loop 0x2dc000 (2998272) cycles */
188 /* ; which is about 5ms on 1200 MHz CPU */
189 /* ; r1 = 0x2dc000 */
190 0xb7, 0x19, 0xa0, 0xe3, /* mov r1, #0x2dc000 */
Pali Rohárca272042021-09-24 23:07:05 +0200191 /* .Lloop_sleep: */
192 0x01, 0x10, 0x41, 0xe2, /* sub r1, r1, #1 */
193 0x00, 0x00, 0x51, 0xe3, /* cmp r1, #0 */
194 0xfc, 0xff, 0xff, 0x1a, /* bne .Lloop_sleep */
195
Pali Rohár62a98f42021-11-01 14:00:02 +0100196 /* ; Jump to the end of execution */
197 0x01, 0x00, 0x00, 0xea, /* b end */
Pali Rohárca272042021-09-24 23:07:05 +0200198
199 /* ; Placeholder for old baudrate value */
200 /* old_baudrate: */
201 0x00, 0x00, 0x00, 0x00, /* .word 0 */
202
203 /* ; Placeholder for new baudrate value */
204 /* new_baudrate: */
205 0x00, 0x00, 0x00, 0x00, /* .word 0 */
Pali Rohár8dbe0272021-10-27 20:57:02 +0200206
207 /* end: */
Pali Rohárca272042021-09-24 23:07:05 +0200208};
209
Pali Rohár62a98f42021-11-01 14:00:02 +0100210/* ARM code from binary header executed by BootROM before changing baudrate */
Pali Rohár8dbe0272021-10-27 20:57:02 +0200211static unsigned char kwboot_baud_code_binhdr_pre[] = {
Pali Rohár62a98f42021-11-01 14:00:02 +0100212 /* ; #define UART_BASE 0xd0012000 */
213 /* ; #define THR 0x00 */
214 /* ; #define LSR 0x14 */
215 /* ; #define THRE 0x20 */
216 /* ; */
217 /* ; void send_preamble(void) { */
218 /* ; const u8 *str = "$baudratechange"; */
219 /* ; u8 c; */
220 /* ; do { */
221 /* ; while */
222 /* ; ((readl(UART_BASE + LSR) & THRE)); */
223 /* ; c = *str++; */
224 /* ; writel(UART_BASE + THR, c); */
225 /* ; } while (c); */
226 /* ; } */
227
228 /* ; Preserve registers for BootROM */
Pali Rohár8dbe0272021-10-27 20:57:02 +0200229 0xfe, 0x5f, 0x2d, 0xe9, /* push { r1 - r12, lr } */
Pali Rohár62a98f42021-11-01 14:00:02 +0100230
231 /* ; r0 = UART_BASE */
232 0x0d, 0x02, 0xa0, 0xe3, /* mov r0, #0xd0000000 */
233 0x12, 0x0a, 0x80, 0xe3, /* orr r0, r0, #0x12000 */
234
235 /* ; r2 = address of preamble string */
236 0x00, 0x20, 0x8f, 0xe2, /* adr r2, .Lstr_preamble */
237
238 /* ; Skip preamble data section */
239 0x03, 0x00, 0x00, 0xea, /* b .Lloop_preamble */
240
241 /* ; Preamble string */
242 /* .Lstr_preamble: */
243 0x24, 0x62, 0x61, 0x75, /* .asciz "$baudratechange" */
244 0x64, 0x72, 0x61, 0x74,
245 0x65, 0x63, 0x68, 0x61,
246 0x6e, 0x67, 0x65, 0x00,
247
248 /* ; Send preamble string over UART */
249 /* .Lloop_preamble: */
250 /* */
251 /* ; Wait until Transmitter Holding is Empty */
252 /* .Lloop_thre: */
253 /* ; r1 = UART_BASE[LSR] & THRE */
254 0x14, 0x10, 0x90, 0xe5, /* ldr r1, [r0, #0x14] */
255 0x20, 0x00, 0x11, 0xe3, /* tst r1, #0x20 */
256 0xfc, 0xff, 0xff, 0x0a, /* beq .Lloop_thre */
257
258 /* ; Put character into Transmitter FIFO */
259 /* ; r1 = *r2++ */
260 0x01, 0x10, 0xd2, 0xe4, /* ldrb r1, [r2], #1 */
261 /* ; UART_BASE[THR] = r1 */
262 0x00, 0x10, 0x80, 0xe5, /* str r1, [r0, #0x0] */
263
264 /* ; Loop until end of preamble string */
265 0x00, 0x00, 0x51, 0xe3, /* cmp r1, #0 */
266 0xf8, 0xff, 0xff, 0x1a, /* bne .Lloop_preamble */
Pali Rohár8dbe0272021-10-27 20:57:02 +0200267};
268
Pali Rohár62a98f42021-11-01 14:00:02 +0100269/* ARM code for returning from binary header back to BootROM */
Pali Rohár8dbe0272021-10-27 20:57:02 +0200270static unsigned char kwboot_baud_code_binhdr_post[] = {
271 /* ; Return 0 - no error */
272 0x00, 0x00, 0xa0, 0xe3, /* mov r0, #0 */
273 0xfe, 0x9f, 0xbd, 0xe8, /* pop { r1 - r12, pc } */
274};
275
276/* ARM code for jumping to the original image exec_addr */
277static unsigned char kwboot_baud_code_data_jump[] = {
278 0x04, 0xf0, 0x1f, 0xe5, /* ldr pc, exec_addr */
279 /* ; Placeholder for exec_addr */
280 /* exec_addr: */
281 0x00, 0x00, 0x00, 0x00, /* .word 0 */
282};
Pali Rohárca272042021-09-24 23:07:05 +0200283
284static const char kwb_baud_magic[16] = "$baudratechange";
285
Luka Perkovd131ad62012-05-27 11:44:51 +0000286static int kwboot_verbose;
287
Stefan Roese84899e22014-10-22 12:13:21 +0200288static int msg_req_delay = KWBOOT_MSG_REQ_DELAY;
289static int msg_rsp_timeo = KWBOOT_MSG_RSP_TIMEO;
Kevin Smith7497a6a2016-02-16 21:28:19 +0000290static int blk_rsp_timeo = KWBOOT_BLK_RSP_TIMEO;
Stefan Roese84899e22014-10-22 12:13:21 +0200291
Marek Behúne453bb42021-09-24 23:06:41 +0200292static ssize_t
293kwboot_write(int fd, const char *buf, size_t len)
294{
Pali Rohár6ba7d632022-01-25 18:13:10 +0100295 ssize_t tot = 0;
Marek Behúne453bb42021-09-24 23:06:41 +0200296
297 while (tot < len) {
298 ssize_t wr = write(fd, buf + tot, len - tot);
299
Pali Rohár6ba7d632022-01-25 18:13:10 +0100300 if (wr < 0 && errno == EINTR)
301 continue;
302 else if (wr < 0)
303 return wr;
Marek Behúne453bb42021-09-24 23:06:41 +0200304
305 tot += wr;
306 }
307
308 return tot;
309}
310
Luka Perkovd131ad62012-05-27 11:44:51 +0000311static void
312kwboot_printv(const char *fmt, ...)
313{
314 va_list ap;
315
316 if (kwboot_verbose) {
317 va_start(ap, fmt);
318 vprintf(fmt, ap);
319 va_end(ap);
320 fflush(stdout);
321 }
322}
323
324static void
325__spinner(void)
326{
327 const char seq[] = { '-', '\\', '|', '/' };
328 const int div = 8;
329 static int state, bs;
330
331 if (state % div == 0) {
332 fputc(bs, stdout);
333 fputc(seq[state / div % sizeof(seq)], stdout);
334 fflush(stdout);
335 }
336
337 bs = '\b';
338 state++;
339}
340
341static void
342kwboot_spinner(void)
343{
344 if (kwboot_verbose)
345 __spinner();
346}
347
348static void
349__progress(int pct, char c)
350{
351 const int width = 70;
352 static const char *nl = "";
353 static int pos;
354
355 if (pos % width == 0)
356 printf("%s%3d %% [", nl, pct);
357
358 fputc(c, stdout);
359
360 nl = "]\n";
Pali Rohár5a1f8cb2021-09-24 23:06:46 +0200361 pos = (pos + 1) % width;
Luka Perkovd131ad62012-05-27 11:44:51 +0000362
363 if (pct == 100) {
Pali Rohár5a1f8cb2021-09-24 23:06:46 +0200364 while (pos && pos++ < width)
Luka Perkovd131ad62012-05-27 11:44:51 +0000365 fputc(' ', stdout);
366 fputs(nl, stdout);
Pali Rohár5a1f8cb2021-09-24 23:06:46 +0200367 nl = "";
368 pos = 0;
Luka Perkovd131ad62012-05-27 11:44:51 +0000369 }
370
371 fflush(stdout);
372
373}
374
375static void
376kwboot_progress(int _pct, char c)
377{
378 static int pct;
379
380 if (_pct != -1)
381 pct = _pct;
382
383 if (kwboot_verbose)
384 __progress(pct, c);
Pali Rohár5a1f8cb2021-09-24 23:06:46 +0200385
386 if (pct == 100)
387 pct = 0;
Luka Perkovd131ad62012-05-27 11:44:51 +0000388}
389
390static int
391kwboot_tty_recv(int fd, void *buf, size_t len, int timeo)
392{
393 int rc, nfds;
394 fd_set rfds;
395 struct timeval tv;
396 ssize_t n;
397
398 rc = -1;
399
400 FD_ZERO(&rfds);
401 FD_SET(fd, &rfds);
402
403 tv.tv_sec = 0;
404 tv.tv_usec = timeo * 1000;
405 if (tv.tv_usec > 1000000) {
406 tv.tv_sec += tv.tv_usec / 1000000;
407 tv.tv_usec %= 1000000;
408 }
409
410 do {
411 nfds = select(fd + 1, &rfds, NULL, NULL, &tv);
Pali Rohár91fb0952022-01-25 18:13:11 +0100412 if (nfds < 0 && errno == EINTR)
413 continue;
414 else if (nfds < 0)
Luka Perkovd131ad62012-05-27 11:44:51 +0000415 goto out;
Pali Rohár91fb0952022-01-25 18:13:11 +0100416 else if (!nfds) {
Luka Perkovd131ad62012-05-27 11:44:51 +0000417 errno = ETIMEDOUT;
418 goto out;
419 }
420
421 n = read(fd, buf, len);
Pali Rohár91fb0952022-01-25 18:13:11 +0100422 if (n < 0 && errno == EINTR)
423 continue;
424 else if (n <= 0)
Luka Perkovd131ad62012-05-27 11:44:51 +0000425 goto out;
426
427 buf = (char *)buf + n;
428 len -= n;
429 } while (len > 0);
430
431 rc = 0;
432out:
433 return rc;
434}
435
436static int
Pali Rohárcab817d2021-10-27 20:56:59 +0200437kwboot_tty_send(int fd, const void *buf, size_t len, int nodrain)
Luka Perkovd131ad62012-05-27 11:44:51 +0000438{
Stefan Roese84899e22014-10-22 12:13:21 +0200439 if (!buf)
440 return 0;
441
Marek Behúne453bb42021-09-24 23:06:41 +0200442 if (kwboot_write(fd, buf, len) < 0)
443 return -1;
Luka Perkovd131ad62012-05-27 11:44:51 +0000444
Pali Rohárcab817d2021-10-27 20:56:59 +0200445 if (nodrain)
446 return 0;
447
Marek Behúne453bb42021-09-24 23:06:41 +0200448 return tcdrain(fd);
Luka Perkovd131ad62012-05-27 11:44:51 +0000449}
450
451static int
452kwboot_tty_send_char(int fd, unsigned char c)
453{
Pali Rohárcab817d2021-10-27 20:56:59 +0200454 return kwboot_tty_send(fd, &c, 1, 0);
Luka Perkovd131ad62012-05-27 11:44:51 +0000455}
456
457static speed_t
Pali Rohárca272042021-09-24 23:07:05 +0200458kwboot_tty_baudrate_to_speed(int baudrate)
Luka Perkovd131ad62012-05-27 11:44:51 +0000459{
460 switch (baudrate) {
Pali Rohárca272042021-09-24 23:07:05 +0200461#ifdef B4000000
462 case 4000000:
463 return B4000000;
464#endif
465#ifdef B3500000
466 case 3500000:
467 return B3500000;
468#endif
469#ifdef B3000000
470 case 3000000:
471 return B3000000;
472#endif
473#ifdef B2500000
474 case 2500000:
475 return B2500000;
476#endif
477#ifdef B2000000
478 case 2000000:
479 return B2000000;
480#endif
481#ifdef B1500000
482 case 1500000:
483 return B1500000;
484#endif
485#ifdef B1152000
486 case 1152000:
487 return B1152000;
488#endif
489#ifdef B1000000
490 case 1000000:
491 return B1000000;
492#endif
493#ifdef B921600
494 case 921600:
495 return B921600;
496#endif
497#ifdef B614400
498 case 614400:
499 return B614400;
500#endif
501#ifdef B576000
502 case 576000:
503 return B576000;
504#endif
505#ifdef B500000
506 case 500000:
507 return B500000;
508#endif
509#ifdef B460800
510 case 460800:
511 return B460800;
512#endif
513#ifdef B307200
514 case 307200:
515 return B307200;
516#endif
517#ifdef B230400
518 case 230400:
519 return B230400;
520#endif
521#ifdef B153600
522 case 153600:
523 return B153600;
524#endif
525#ifdef B115200
Luka Perkovd131ad62012-05-27 11:44:51 +0000526 case 115200:
527 return B115200;
Pali Rohárca272042021-09-24 23:07:05 +0200528#endif
529#ifdef B76800
530 case 76800:
531 return B76800;
532#endif
533#ifdef B57600
Luka Perkovd131ad62012-05-27 11:44:51 +0000534 case 57600:
535 return B57600;
Pali Rohárca272042021-09-24 23:07:05 +0200536#endif
537#ifdef B38400
Luka Perkovd131ad62012-05-27 11:44:51 +0000538 case 38400:
539 return B38400;
Pali Rohárca272042021-09-24 23:07:05 +0200540#endif
541#ifdef B19200
Luka Perkovd131ad62012-05-27 11:44:51 +0000542 case 19200:
543 return B19200;
Pali Rohárca272042021-09-24 23:07:05 +0200544#endif
545#ifdef B9600
Luka Perkovd131ad62012-05-27 11:44:51 +0000546 case 9600:
547 return B9600;
Pali Rohárca272042021-09-24 23:07:05 +0200548#endif
549#ifdef B4800
550 case 4800:
551 return B4800;
552#endif
553#ifdef B2400
554 case 2400:
555 return B2400;
556#endif
557#ifdef B1800
558 case 1800:
559 return B1800;
560#endif
561#ifdef B1200
562 case 1200:
563 return B1200;
564#endif
565#ifdef B600
566 case 600:
567 return B600;
568#endif
569#ifdef B300
570 case 300:
571 return B300;
572#endif
573#ifdef B200
574 case 200:
575 return B200;
576#endif
577#ifdef B150
578 case 150:
579 return B150;
580#endif
581#ifdef B134
582 case 134:
583 return B134;
584#endif
585#ifdef B110
586 case 110:
587 return B110;
588#endif
589#ifdef B75
590 case 75:
591 return B75;
592#endif
593#ifdef B50
594 case 50:
595 return B50;
596#endif
597 default:
Pali Rohár93b55632021-09-24 23:07:06 +0200598#ifdef BOTHER
599 return BOTHER;
600#else
Pali Rohárca272042021-09-24 23:07:05 +0200601 return B0;
Pali Rohár93b55632021-09-24 23:07:06 +0200602#endif
Luka Perkovd131ad62012-05-27 11:44:51 +0000603 }
Luka Perkovd131ad62012-05-27 11:44:51 +0000604}
605
606static int
Marek Behún99a3d0232021-09-24 23:07:07 +0200607_is_within_tolerance(int value, int reference, int tolerance)
608{
609 return 100 * value >= reference * (100 - tolerance) &&
610 100 * value <= reference * (100 + tolerance);
611}
612
613static int
Pali Rohárca272042021-09-24 23:07:05 +0200614kwboot_tty_change_baudrate(int fd, int baudrate)
615{
616 struct termios tio;
617 speed_t speed;
618 int rc;
619
620 rc = tcgetattr(fd, &tio);
621 if (rc)
622 return rc;
623
624 speed = kwboot_tty_baudrate_to_speed(baudrate);
625 if (speed == B0) {
626 errno = EINVAL;
627 return -1;
628 }
629
Pali Rohár93b55632021-09-24 23:07:06 +0200630#ifdef BOTHER
631 if (speed == BOTHER)
632 tio.c_ospeed = tio.c_ispeed = baudrate;
633#endif
634
Pali Rohárca272042021-09-24 23:07:05 +0200635 rc = cfsetospeed(&tio, speed);
636 if (rc)
637 return rc;
638
639 rc = cfsetispeed(&tio, speed);
640 if (rc)
641 return rc;
642
643 rc = tcsetattr(fd, TCSANOW, &tio);
644 if (rc)
645 return rc;
646
Marek Behún99a3d0232021-09-24 23:07:07 +0200647 rc = tcgetattr(fd, &tio);
648 if (rc)
649 return rc;
650
651 if (cfgetospeed(&tio) != speed || cfgetispeed(&tio) != speed)
652 goto baud_fail;
653
654#ifdef BOTHER
655 /*
656 * Check whether set baudrate is within 3% tolerance.
657 * If BOTHER is defined, Linux always fills out c_ospeed / c_ispeed
658 * with real values.
659 */
660 if (!_is_within_tolerance(tio.c_ospeed, baudrate, 3))
661 goto baud_fail;
662
663 if (!_is_within_tolerance(tio.c_ispeed, baudrate, 3))
664 goto baud_fail;
665#endif
666
Pali Rohárca272042021-09-24 23:07:05 +0200667 return 0;
Marek Behún99a3d0232021-09-24 23:07:07 +0200668
669baud_fail:
670 fprintf(stderr, "Could not set baudrate to requested value\n");
671 errno = EINVAL;
672 return -1;
Pali Rohárca272042021-09-24 23:07:05 +0200673}
674
675static int
676kwboot_open_tty(const char *path, int baudrate)
Luka Perkovd131ad62012-05-27 11:44:51 +0000677{
Pali Rohár911515b2021-09-24 23:07:10 +0200678 int rc, fd, flags;
Luka Perkovd131ad62012-05-27 11:44:51 +0000679 struct termios tio;
680
681 rc = -1;
682
Marek Behún5fa04f42021-09-24 23:07:11 +0200683 fd = open(path, O_RDWR | O_NOCTTY | O_NDELAY);
Luka Perkovd131ad62012-05-27 11:44:51 +0000684 if (fd < 0)
685 goto out;
686
Pali Rohárc704e0e2021-09-24 23:07:08 +0200687 rc = tcgetattr(fd, &tio);
688 if (rc)
689 goto out;
Luka Perkovd131ad62012-05-27 11:44:51 +0000690
Pali Rohárc704e0e2021-09-24 23:07:08 +0200691 cfmakeraw(&tio);
Marek Behún5fa04f42021-09-24 23:07:11 +0200692 tio.c_cflag |= CREAD | CLOCAL;
Pali Rohár2ecca3d2021-10-25 15:12:53 +0200693 tio.c_cflag &= ~(CSTOPB | HUPCL | CRTSCTS);
Luka Perkovd131ad62012-05-27 11:44:51 +0000694 tio.c_cc[VMIN] = 1;
Pali Rohár24a471b2021-09-24 23:07:09 +0200695 tio.c_cc[VTIME] = 0;
Luka Perkovd131ad62012-05-27 11:44:51 +0000696
Luka Perkovd131ad62012-05-27 11:44:51 +0000697 rc = tcsetattr(fd, TCSANOW, &tio);
698 if (rc)
699 goto out;
700
Pali Rohár911515b2021-09-24 23:07:10 +0200701 flags = fcntl(fd, F_GETFL);
702 if (flags < 0)
703 goto out;
704
705 rc = fcntl(fd, F_SETFL, flags & ~O_NDELAY);
706 if (rc)
707 goto out;
708
Pali Rohárca272042021-09-24 23:07:05 +0200709 rc = kwboot_tty_change_baudrate(fd, baudrate);
710 if (rc)
711 goto out;
712
Luka Perkovd131ad62012-05-27 11:44:51 +0000713 rc = fd;
714out:
715 if (rc < 0) {
716 if (fd >= 0)
717 close(fd);
718 }
719
720 return rc;
721}
722
723static int
724kwboot_bootmsg(int tty, void *msg)
725{
Pali Rohár2bcd5b12022-01-25 18:13:08 +0100726 struct kwboot_block block;
Luka Perkovd131ad62012-05-27 11:44:51 +0000727 int rc;
728 char c;
Jon Nettleton9ca6fae2018-08-13 18:24:38 +0300729 int count;
Luka Perkovd131ad62012-05-27 11:44:51 +0000730
Stefan Roese84899e22014-10-22 12:13:21 +0200731 if (msg == NULL)
732 kwboot_printv("Please reboot the target into UART boot mode...");
733 else
734 kwboot_printv("Sending boot message. Please reboot the target...");
Luka Perkovd131ad62012-05-27 11:44:51 +0000735
736 do {
737 rc = tcflush(tty, TCIOFLUSH);
738 if (rc)
739 break;
740
Jon Nettleton9ca6fae2018-08-13 18:24:38 +0300741 for (count = 0; count < 128; count++) {
Pali Rohárcab817d2021-10-27 20:56:59 +0200742 rc = kwboot_tty_send(tty, msg, 8, 0);
Jon Nettleton9ca6fae2018-08-13 18:24:38 +0300743 if (rc) {
744 usleep(msg_req_delay * 1000);
745 continue;
746 }
Luka Perkovd131ad62012-05-27 11:44:51 +0000747 }
748
Stefan Roese84899e22014-10-22 12:13:21 +0200749 rc = kwboot_tty_recv(tty, &c, 1, msg_rsp_timeo);
Luka Perkovd131ad62012-05-27 11:44:51 +0000750
751 kwboot_spinner();
752
753 } while (rc || c != NAK);
754
755 kwboot_printv("\n");
756
Pali Rohár2bcd5b12022-01-25 18:13:08 +0100757 if (rc)
758 return rc;
759
760 /*
761 * At this stage we have sent more boot message patterns and BootROM
762 * (at least on Armada XP and 385) started interpreting sent bytes as
763 * part of xmodem packets. If BootROM is expecting SOH byte as start of
764 * a xmodem packet and it receives byte 0xff, then it throws it away and
765 * sends a NAK reply to host. If BootROM does not receive any byte for
766 * 2s when expecting some continuation of the xmodem packet, it throws
767 * away the partially received xmodem data and sends NAK reply to host.
768 *
769 * Therefore for starting xmodem transfer we have two options: Either
770 * wait 2s or send 132 0xff bytes (which is the size of xmodem packet)
771 * to ensure that BootROM throws away any partially received data.
772 */
773
774 /* flush output queue with remaining boot message patterns */
775 tcflush(tty, TCOFLUSH);
776
777 /* send one xmodem packet with 0xff bytes to force BootROM to re-sync */
778 memset(&block, 0xff, sizeof(block));
779 kwboot_tty_send(tty, &block, sizeof(block), 0);
780
781 /*
782 * Sending 132 bytes via 115200B/8-N-1 takes 11.45 ms, reading 132 bytes
783 * takes 11.45 ms, so waiting for 30 ms should be enough.
784 */
785 usleep(30 * 1000);
786
787 /* flush remaining NAK replies from input queue */
788 tcflush(tty, TCIFLUSH);
789
790 return 0;
Luka Perkovd131ad62012-05-27 11:44:51 +0000791}
792
793static int
Stefan Roese84899e22014-10-22 12:13:21 +0200794kwboot_debugmsg(int tty, void *msg)
795{
796 int rc;
797
798 kwboot_printv("Sending debug message. Please reboot the target...");
799
800 do {
801 char buf[16];
802
803 rc = tcflush(tty, TCIOFLUSH);
804 if (rc)
805 break;
806
Pali Rohárcab817d2021-10-27 20:56:59 +0200807 rc = kwboot_tty_send(tty, msg, 8, 0);
Stefan Roese84899e22014-10-22 12:13:21 +0200808 if (rc) {
809 usleep(msg_req_delay * 1000);
810 continue;
811 }
812
813 rc = kwboot_tty_recv(tty, buf, 16, msg_rsp_timeo);
814
815 kwboot_spinner();
816
817 } while (rc);
818
819 kwboot_printv("\n");
820
821 return rc;
822}
823
Pali Rohárc5d666a2021-09-24 23:06:44 +0200824static size_t
Luka Perkovd131ad62012-05-27 11:44:51 +0000825kwboot_xm_makeblock(struct kwboot_block *block, const void *data,
826 size_t size, int pnum)
827{
Marek Behúnd8cc8512021-09-24 23:06:45 +0200828 size_t i, n;
Luka Perkovd131ad62012-05-27 11:44:51 +0000829
Stefan Roese84899e22014-10-22 12:13:21 +0200830 block->soh = SOH;
Luka Perkovd131ad62012-05-27 11:44:51 +0000831 block->pnum = pnum;
832 block->_pnum = ~block->pnum;
833
Pali Rohár2ef87f72021-09-24 23:06:48 +0200834 n = size < KWBOOT_XM_BLKSZ ? size : KWBOOT_XM_BLKSZ;
Luka Perkovd131ad62012-05-27 11:44:51 +0000835 memcpy(&block->data[0], data, n);
Pali Rohár2ef87f72021-09-24 23:06:48 +0200836 memset(&block->data[n], 0, KWBOOT_XM_BLKSZ - n);
Luka Perkovd131ad62012-05-27 11:44:51 +0000837
838 block->csum = 0;
839 for (i = 0; i < n; i++)
840 block->csum += block->data[i];
841
842 return n;
843}
844
Marek Behún12df7b72021-09-24 23:06:52 +0200845static uint64_t
846_now(void)
847{
848 struct timespec ts;
849
850 if (clock_gettime(CLOCK_MONOTONIC, &ts)) {
851 static int err_print;
852
853 if (!err_print) {
854 perror("clock_gettime() does not work");
855 err_print = 1;
856 }
857
858 /* this will just make the timeout not work */
859 return -1ULL;
860 }
861
862 return ts.tv_sec * 1000ULL + (ts.tv_nsec + 500000) / 1000000;
863}
864
Luka Perkovd131ad62012-05-27 11:44:51 +0000865static int
Marek Behún408ea612021-09-24 23:06:49 +0200866_is_xm_reply(char c)
867{
Pali Rohár94c906a2022-01-25 18:13:03 +0100868 return c == ACK || c == NAK;
Marek Behún408ea612021-09-24 23:06:49 +0200869}
870
871static int
Pali Rohár9cdc2642021-09-24 23:06:54 +0200872_xm_reply_to_error(int c)
873{
874 int rc = -1;
875
876 switch (c) {
877 case ACK:
878 rc = 0;
879 break;
880 case NAK:
881 errno = EBADMSG;
882 break;
Pali Rohár9cdc2642021-09-24 23:06:54 +0200883 default:
884 errno = EPROTO;
885 break;
886 }
887
888 return rc;
889}
890
891static int
Pali Rohárca272042021-09-24 23:07:05 +0200892kwboot_baud_magic_handle(int fd, char c, int baudrate)
893{
894 static size_t rcv_len;
895
896 if (rcv_len < sizeof(kwb_baud_magic)) {
897 /* try to recognize whole magic word */
898 if (c == kwb_baud_magic[rcv_len]) {
899 rcv_len++;
900 } else {
901 printf("%.*s%c", (int)rcv_len, kwb_baud_magic, c);
902 fflush(stdout);
903 rcv_len = 0;
904 }
905 }
906
907 if (rcv_len == sizeof(kwb_baud_magic)) {
908 /* magic word received */
909 kwboot_printv("\nChanging baudrate to %d Bd\n", baudrate);
910
911 return kwboot_tty_change_baudrate(fd, baudrate) ? : 1;
912 } else {
913 return 0;
914 }
915}
916
917static int
Pali Rohár950ed242022-01-25 18:13:04 +0100918kwboot_xm_recv_reply(int fd, char *c, int stop_on_non_xm,
Pali Rohár82a9e132022-01-25 18:13:02 +0100919 int ignore_nak_reply,
Pali Rohára6fcac22021-10-25 15:13:04 +0200920 int allow_non_xm, int *non_xm_print,
Pali Rohárca272042021-09-24 23:07:05 +0200921 int baudrate, int *baud_changed)
Pali Rohár48b3ea62021-09-24 23:06:50 +0200922{
Marek Behún12df7b72021-09-24 23:06:52 +0200923 int timeout = allow_non_xm ? KWBOOT_HDR_RSP_TIMEO : blk_rsp_timeo;
Marek Behún819cd322021-09-24 23:06:53 +0200924 uint64_t recv_until = _now() + timeout;
Pali Rohár48b3ea62021-09-24 23:06:50 +0200925 int rc;
926
927 while (1) {
Marek Behún12df7b72021-09-24 23:06:52 +0200928 rc = kwboot_tty_recv(fd, c, 1, timeout);
Pali Rohár48b3ea62021-09-24 23:06:50 +0200929 if (rc) {
930 if (errno != ETIMEDOUT)
931 return rc;
Marek Behún819cd322021-09-24 23:06:53 +0200932 else if (allow_non_xm && *non_xm_print)
Marek Behún12df7b72021-09-24 23:06:52 +0200933 return -1;
934 else
935 *c = NAK;
Pali Rohár48b3ea62021-09-24 23:06:50 +0200936 }
937
938 /* If received xmodem reply, end. */
Pali Rohár82a9e132022-01-25 18:13:02 +0100939 if (_is_xm_reply(*c)) {
940 if (*c == NAK && ignore_nak_reply) {
941 timeout = recv_until - _now();
942 if (timeout >= 0)
943 continue;
944 }
Pali Rohár48b3ea62021-09-24 23:06:50 +0200945 break;
Pali Rohár82a9e132022-01-25 18:13:02 +0100946 }
Pali Rohár48b3ea62021-09-24 23:06:50 +0200947
948 /*
Pali Rohárca272042021-09-24 23:07:05 +0200949 * If receiving/printing non-xmodem text output is allowed and
950 * such a byte was received, we want to increase receiving time
951 * and either:
952 * - print the byte, if it is not part of baudrate change magic
953 * sequence while baudrate change was requested (-B option)
954 * - change baudrate
Marek Behún819cd322021-09-24 23:06:53 +0200955 * Otherwise decrease timeout by time elapsed.
Pali Rohár48b3ea62021-09-24 23:06:50 +0200956 */
957 if (allow_non_xm) {
Marek Behún12df7b72021-09-24 23:06:52 +0200958 recv_until = _now() + timeout;
Pali Rohárca272042021-09-24 23:07:05 +0200959
960 if (baudrate && !*baud_changed) {
961 rc = kwboot_baud_magic_handle(fd, *c, baudrate);
962 if (rc == 1)
963 *baud_changed = 1;
964 else if (!rc)
965 *non_xm_print = 1;
966 else
967 return rc;
968 } else if (!baudrate || !*baud_changed) {
969 putchar(*c);
970 fflush(stdout);
971 *non_xm_print = 1;
972 }
Marek Behún819cd322021-09-24 23:06:53 +0200973 } else {
Pali Rohár950ed242022-01-25 18:13:04 +0100974 if (stop_on_non_xm)
Pali Rohára6fcac22021-10-25 15:13:04 +0200975 break;
Marek Behún819cd322021-09-24 23:06:53 +0200976 timeout = recv_until - _now();
977 if (timeout < 0) {
978 errno = ETIMEDOUT;
979 return -1;
980 }
Pali Rohár48b3ea62021-09-24 23:06:50 +0200981 }
982 }
983
984 return 0;
985}
986
987static int
988kwboot_xm_sendblock(int fd, struct kwboot_block *block, int allow_non_xm,
Pali Rohár5875ad42022-01-25 18:13:05 +0100989 int *done_print, int baudrate, int allow_retries)
Luka Perkovd131ad62012-05-27 11:44:51 +0000990{
Pali Rohárca272042021-09-24 23:07:05 +0200991 int non_xm_print, baud_changed;
992 int rc, err, retries;
Luka Perkovd131ad62012-05-27 11:44:51 +0000993 char c;
994
Pali Rohár48b3ea62021-09-24 23:06:50 +0200995 *done_print = 0;
Pali Rohár455c0d22021-10-27 20:56:58 +0200996 non_xm_print = 0;
997 baud_changed = 0;
Pali Rohár48b3ea62021-09-24 23:06:50 +0200998
Pali Rohárd14a3422021-10-25 15:13:03 +0200999 retries = 0;
Luka Perkovd131ad62012-05-27 11:44:51 +00001000 do {
Pali Rohárcab817d2021-10-27 20:56:59 +02001001 rc = kwboot_tty_send(fd, block, sizeof(*block), 1);
Luka Perkovd131ad62012-05-27 11:44:51 +00001002 if (rc)
Pali Rohár94c906a2022-01-25 18:13:03 +01001003 goto err;
Luka Perkovd131ad62012-05-27 11:44:51 +00001004
Pali Rohár48b3ea62021-09-24 23:06:50 +02001005 if (allow_non_xm && !*done_print) {
1006 kwboot_progress(100, '.');
1007 kwboot_printv("Done\n");
1008 *done_print = 1;
1009 }
Stefan Roese84899e22014-10-22 12:13:21 +02001010
Pali Rohára6fcac22021-10-25 15:13:04 +02001011 rc = kwboot_xm_recv_reply(fd, &c, retries < 3,
Pali Rohár82a9e132022-01-25 18:13:02 +01001012 retries > 8,
Pali Rohára6fcac22021-10-25 15:13:04 +02001013 allow_non_xm, &non_xm_print,
Pali Rohárca272042021-09-24 23:07:05 +02001014 baudrate, &baud_changed);
Pali Rohár48b3ea62021-09-24 23:06:50 +02001015 if (rc)
Pali Rohár94c906a2022-01-25 18:13:03 +01001016 goto err;
Stefan Roese84899e22014-10-22 12:13:21 +02001017
Pali Rohár5d8aa4c2022-01-25 18:13:06 +01001018 if (!allow_non_xm && c != ACK) {
1019 if (c == NAK && allow_retries && retries + 1 < 16)
1020 kwboot_progress(-1, '+');
1021 else
1022 kwboot_progress(-1, 'E');
1023 }
Pali Rohár5875ad42022-01-25 18:13:05 +01001024 } while (c == NAK && allow_retries && retries++ < 16);
Luka Perkovd131ad62012-05-27 11:44:51 +00001025
Marek Behún2e81b3a2021-09-24 23:06:51 +02001026 if (non_xm_print)
1027 kwboot_printv("\n");
1028
Pali Rohárca272042021-09-24 23:07:05 +02001029 if (allow_non_xm && baudrate && !baud_changed) {
1030 fprintf(stderr, "Baudrate was not changed\n");
Pali Rohárca272042021-09-24 23:07:05 +02001031 errno = EPROTO;
Pali Rohár94c906a2022-01-25 18:13:03 +01001032 return -1;
Pali Rohárca272042021-09-24 23:07:05 +02001033 }
1034
Pali Rohár9cdc2642021-09-24 23:06:54 +02001035 return _xm_reply_to_error(c);
Pali Rohár94c906a2022-01-25 18:13:03 +01001036err:
Pali Rohárca272042021-09-24 23:07:05 +02001037 err = errno;
Pali Rohárca272042021-09-24 23:07:05 +02001038 kwboot_printv("\n");
1039 errno = err;
1040 return rc;
Pali Rohár9cdc2642021-09-24 23:06:54 +02001041}
Luka Perkovd131ad62012-05-27 11:44:51 +00001042
Pali Rohár9cdc2642021-09-24 23:06:54 +02001043static int
1044kwboot_xm_finish(int fd)
1045{
1046 int rc, retries;
1047 char c;
Luka Perkovd131ad62012-05-27 11:44:51 +00001048
Pali Rohár9cdc2642021-09-24 23:06:54 +02001049 kwboot_printv("Finishing transfer\n");
1050
Pali Rohárd14a3422021-10-25 15:13:03 +02001051 retries = 0;
Pali Rohár9cdc2642021-09-24 23:06:54 +02001052 do {
1053 rc = kwboot_tty_send_char(fd, EOT);
1054 if (rc)
1055 return rc;
1056
Pali Rohára6fcac22021-10-25 15:13:04 +02001057 rc = kwboot_xm_recv_reply(fd, &c, retries < 3,
Pali Rohár82a9e132022-01-25 18:13:02 +01001058 retries > 8,
Pali Rohára6fcac22021-10-25 15:13:04 +02001059 0, NULL, 0, NULL);
Pali Rohár9cdc2642021-09-24 23:06:54 +02001060 if (rc)
1061 return rc;
Pali Rohárd14a3422021-10-25 15:13:03 +02001062 } while (c == NAK && retries++ < 16);
Pali Rohár9cdc2642021-09-24 23:06:54 +02001063
1064 return _xm_reply_to_error(c);
Luka Perkovd131ad62012-05-27 11:44:51 +00001065}
1066
1067static int
Pali Rohár2ef87f72021-09-24 23:06:48 +02001068kwboot_xmodem_one(int tty, int *pnum, int header, const uint8_t *data,
Pali Rohárca272042021-09-24 23:07:05 +02001069 size_t size, int baudrate)
Luka Perkovd131ad62012-05-27 11:44:51 +00001070{
Pali Rohár48b3ea62021-09-24 23:06:50 +02001071 int done_print = 0;
Pali Rohár2ef87f72021-09-24 23:06:48 +02001072 size_t sent, left;
1073 int rc;
Luka Perkovd131ad62012-05-27 11:44:51 +00001074
Pali Rohár2ef87f72021-09-24 23:06:48 +02001075 kwboot_printv("Sending boot image %s (%zu bytes)...\n",
1076 header ? "header" : "data", size);
Luka Perkovd131ad62012-05-27 11:44:51 +00001077
Pali Rohár2ef87f72021-09-24 23:06:48 +02001078 left = size;
1079 sent = 0;
Luka Perkovd131ad62012-05-27 11:44:51 +00001080
Pali Rohár2ef87f72021-09-24 23:06:48 +02001081 while (sent < size) {
Luka Perkovd131ad62012-05-27 11:44:51 +00001082 struct kwboot_block block;
Pali Rohár48b3ea62021-09-24 23:06:50 +02001083 int last_block;
Pali Rohár2ef87f72021-09-24 23:06:48 +02001084 size_t blksz;
Luka Perkovd131ad62012-05-27 11:44:51 +00001085
Pali Rohár2ef87f72021-09-24 23:06:48 +02001086 blksz = kwboot_xm_makeblock(&block, data, left, (*pnum)++);
1087 data += blksz;
Luka Perkovd131ad62012-05-27 11:44:51 +00001088
Pali Rohár48b3ea62021-09-24 23:06:50 +02001089 last_block = (left <= blksz);
1090
Pali Rohár5875ad42022-01-25 18:13:05 +01001091 /*
1092 * Handling of repeated xmodem packets is completely broken in
1093 * Armada 385 BootROM - it completely ignores xmodem packet
1094 * numbers, they are only used for checksum verification.
1095 * BootROM can handle a retry of the xmodem packet only during
1096 * the transmission of kwbimage header and only if BootROM
1097 * itself sent NAK response to previous attempt (it does it on
1098 * checksum failure). During the transmission of kwbimage data
1099 * part, BootROM always expects next xmodem packet, even if it
1100 * sent NAK to previous attempt - there is absolutely no way to
1101 * repair incorrectly transmitted xmodem packet during kwbimage
1102 * data part upload. Also, if kwboot receives non-ACK/NAK
1103 * response (meaning that original BootROM response was damaged
1104 * on UART) there is no way to detect if BootROM accepted xmodem
1105 * packet or not and no way to check if kwboot could repeat the
1106 * packet or not.
1107 *
1108 * Stop transfer and return failure if kwboot receives unknown
1109 * reply if non-xmodem reply is not allowed (for all xmodem
1110 * packets except the last header packet) or when non-ACK reply
1111 * is received during data part transfer.
1112 */
Pali Rohár48b3ea62021-09-24 23:06:50 +02001113 rc = kwboot_xm_sendblock(tty, &block, header && last_block,
Pali Rohár5875ad42022-01-25 18:13:05 +01001114 &done_print, baudrate, header);
Luka Perkovd131ad62012-05-27 11:44:51 +00001115 if (rc)
1116 goto out;
1117
Pali Rohár2ef87f72021-09-24 23:06:48 +02001118 sent += blksz;
1119 left -= blksz;
Luka Perkovd131ad62012-05-27 11:44:51 +00001120
Pali Rohár48b3ea62021-09-24 23:06:50 +02001121 if (!done_print)
1122 kwboot_progress(sent * 100 / size, '.');
Pali Rohár2ef87f72021-09-24 23:06:48 +02001123 }
Luka Perkovd131ad62012-05-27 11:44:51 +00001124
Pali Rohár48b3ea62021-09-24 23:06:50 +02001125 if (!done_print)
1126 kwboot_printv("Done\n");
Pali Rohár2ef87f72021-09-24 23:06:48 +02001127
1128 return 0;
Luka Perkovd131ad62012-05-27 11:44:51 +00001129out:
Pali Rohárd5ba8db2021-09-24 23:06:47 +02001130 kwboot_printv("\n");
Luka Perkovd131ad62012-05-27 11:44:51 +00001131 return rc;
Pali Rohár2ef87f72021-09-24 23:06:48 +02001132}
Luka Perkovd131ad62012-05-27 11:44:51 +00001133
Pali Rohár2ef87f72021-09-24 23:06:48 +02001134static int
Pali Rohárca272042021-09-24 23:07:05 +02001135kwboot_xmodem(int tty, const void *_img, size_t size, int baudrate)
Pali Rohár2ef87f72021-09-24 23:06:48 +02001136{
1137 const uint8_t *img = _img;
1138 int rc, pnum;
1139 size_t hdrsz;
1140
Marek Behúnfe2fd732021-09-24 23:07:01 +02001141 hdrsz = kwbheader_size(img);
Pali Rohár2ef87f72021-09-24 23:06:48 +02001142
Pali Rohárf8017c32021-11-05 23:29:58 +01001143 /*
1144 * If header size is not aligned to xmodem block size (which applies
1145 * for all images in kwbimage v0 format) then we have to ensure that
1146 * the last xmodem block of header contains beginning of the data
1147 * followed by the header. So align header size to xmodem block size.
1148 */
1149 hdrsz += (KWBOOT_XM_BLKSZ - hdrsz % KWBOOT_XM_BLKSZ) % KWBOOT_XM_BLKSZ;
1150
Pali Rohár2ef87f72021-09-24 23:06:48 +02001151 pnum = 1;
1152
Pali Rohárca272042021-09-24 23:07:05 +02001153 rc = kwboot_xmodem_one(tty, &pnum, 1, img, hdrsz, baudrate);
Pali Rohár2ef87f72021-09-24 23:06:48 +02001154 if (rc)
1155 return rc;
1156
Pali Rohárf8017c32021-11-05 23:29:58 +01001157 /*
1158 * If we have already sent image data as a part of the last
1159 * xmodem header block then we have nothing more to send.
1160 */
1161 if (hdrsz < size) {
1162 img += hdrsz;
1163 size -= hdrsz;
1164 rc = kwboot_xmodem_one(tty, &pnum, 0, img, size, 0);
1165 if (rc)
1166 return rc;
1167 }
Pali Rohár2ef87f72021-09-24 23:06:48 +02001168
Pali Rohárca272042021-09-24 23:07:05 +02001169 rc = kwboot_xm_finish(tty);
1170 if (rc)
1171 return rc;
1172
1173 if (baudrate) {
Pali Rohárca272042021-09-24 23:07:05 +02001174 kwboot_printv("\nChanging baudrate back to 115200 Bd\n\n");
1175 rc = kwboot_tty_change_baudrate(tty, 115200);
1176 if (rc)
1177 return rc;
1178 }
1179
1180 return 0;
Luka Perkovd131ad62012-05-27 11:44:51 +00001181}
1182
1183static int
Marek Behún46237e62021-09-24 23:06:40 +02001184kwboot_term_pipe(int in, int out, const char *quit, int *s)
Luka Perkovd131ad62012-05-27 11:44:51 +00001185{
Marek Behúne453bb42021-09-24 23:06:41 +02001186 ssize_t nin;
Luka Perkovd131ad62012-05-27 11:44:51 +00001187 char _buf[128], *buf = _buf;
1188
Pali Rohár43fef8d2021-07-23 11:14:17 +02001189 nin = read(in, buf, sizeof(_buf));
Willy Tarreau4469bd72018-07-03 12:10:31 -04001190 if (nin <= 0)
Luka Perkovd131ad62012-05-27 11:44:51 +00001191 return -1;
1192
1193 if (quit) {
1194 int i;
1195
1196 for (i = 0; i < nin; i++) {
1197 if (*buf == quit[*s]) {
1198 (*s)++;
1199 if (!quit[*s])
1200 return 0;
1201 buf++;
1202 nin--;
Pali Rohárb943eee2021-07-23 11:14:20 +02001203 } else {
Marek Behúne453bb42021-09-24 23:06:41 +02001204 if (kwboot_write(out, quit, *s) < 0)
1205 return -1;
1206 *s = 0;
Pali Rohárb943eee2021-07-23 11:14:20 +02001207 }
Luka Perkovd131ad62012-05-27 11:44:51 +00001208 }
1209 }
1210
Marek Behúne453bb42021-09-24 23:06:41 +02001211 if (kwboot_write(out, buf, nin) < 0)
1212 return -1;
Luka Perkovd131ad62012-05-27 11:44:51 +00001213
1214 return 0;
1215}
1216
1217static int
1218kwboot_terminal(int tty)
1219{
1220 int rc, in, s;
Marek Behún46237e62021-09-24 23:06:40 +02001221 const char *quit = "\34c";
Luka Perkovd131ad62012-05-27 11:44:51 +00001222 struct termios otio, tio;
1223
1224 rc = -1;
1225
1226 in = STDIN_FILENO;
1227 if (isatty(in)) {
1228 rc = tcgetattr(in, &otio);
1229 if (!rc) {
1230 tio = otio;
1231 cfmakeraw(&tio);
1232 rc = tcsetattr(in, TCSANOW, &tio);
1233 }
1234 if (rc) {
1235 perror("tcsetattr");
1236 goto out;
1237 }
1238
1239 kwboot_printv("[Type Ctrl-%c + %c to quit]\r\n",
Marek Behún5fa04f42021-09-24 23:07:11 +02001240 quit[0] | 0100, quit[1]);
Luka Perkovd131ad62012-05-27 11:44:51 +00001241 } else
1242 in = -1;
1243
1244 rc = 0;
1245 s = 0;
1246
1247 do {
1248 fd_set rfds;
1249 int nfds = 0;
1250
Pali Rohár0a143412021-10-25 15:12:52 +02001251 FD_ZERO(&rfds);
Luka Perkovd131ad62012-05-27 11:44:51 +00001252 FD_SET(tty, &rfds);
1253 nfds = nfds < tty ? tty : nfds;
1254
1255 if (in >= 0) {
1256 FD_SET(in, &rfds);
1257 nfds = nfds < in ? in : nfds;
1258 }
1259
1260 nfds = select(nfds + 1, &rfds, NULL, NULL, NULL);
1261 if (nfds < 0)
1262 break;
1263
1264 if (FD_ISSET(tty, &rfds)) {
1265 rc = kwboot_term_pipe(tty, STDOUT_FILENO, NULL, NULL);
1266 if (rc)
1267 break;
1268 }
1269
Marek Behúnf30cb0d2021-09-24 23:06:39 +02001270 if (in >= 0 && FD_ISSET(in, &rfds)) {
Luka Perkovd131ad62012-05-27 11:44:51 +00001271 rc = kwboot_term_pipe(in, tty, quit, &s);
1272 if (rc)
1273 break;
1274 }
1275 } while (quit[s] != 0);
1276
Pali Rohárec0fe5b2021-07-23 11:14:18 +02001277 if (in >= 0)
1278 tcsetattr(in, TCSANOW, &otio);
Pali Rohár49a0a3b2021-07-23 11:14:19 +02001279 printf("\n");
Luka Perkovd131ad62012-05-27 11:44:51 +00001280out:
1281 return rc;
1282}
1283
1284static void *
Pali Rohár04ced022021-09-24 23:07:03 +02001285kwboot_read_image(const char *path, size_t *size, size_t reserve)
Luka Perkovd131ad62012-05-27 11:44:51 +00001286{
Pali Rohárddc04fa2021-09-24 23:06:55 +02001287 int rc, fd;
Luka Perkovd131ad62012-05-27 11:44:51 +00001288 struct stat st;
1289 void *img;
Pali Rohár04ced022021-09-24 23:07:03 +02001290 off_t tot;
Luka Perkovd131ad62012-05-27 11:44:51 +00001291
1292 rc = -1;
Luka Perkovd131ad62012-05-27 11:44:51 +00001293 img = NULL;
1294
1295 fd = open(path, O_RDONLY);
1296 if (fd < 0)
1297 goto out;
1298
1299 rc = fstat(fd, &st);
1300 if (rc)
1301 goto out;
1302
Pali Rohár04ced022021-09-24 23:07:03 +02001303 img = malloc(st.st_size + reserve);
1304 if (!img)
Luka Perkovd131ad62012-05-27 11:44:51 +00001305 goto out;
Pali Rohár04ced022021-09-24 23:07:03 +02001306
1307 tot = 0;
1308 while (tot < st.st_size) {
1309 ssize_t rd = read(fd, img + tot, st.st_size - tot);
1310
1311 if (rd < 0)
1312 goto out;
1313
1314 tot += rd;
1315
1316 if (!rd && tot < st.st_size) {
1317 errno = EIO;
1318 goto out;
1319 }
Luka Perkovd131ad62012-05-27 11:44:51 +00001320 }
1321
1322 rc = 0;
1323 *size = st.st_size;
1324out:
1325 if (rc && img) {
Pali Rohár04ced022021-09-24 23:07:03 +02001326 free(img);
Luka Perkovd131ad62012-05-27 11:44:51 +00001327 img = NULL;
1328 }
1329 if (fd >= 0)
1330 close(fd);
1331
1332 return img;
1333}
1334
1335static uint8_t
Marek Behúnfe2fd732021-09-24 23:07:01 +02001336kwboot_hdr_csum8(const void *hdr)
Luka Perkovd131ad62012-05-27 11:44:51 +00001337{
Marek Behúnfe2fd732021-09-24 23:07:01 +02001338 const uint8_t *data = hdr;
1339 uint8_t csum;
1340 size_t size;
1341
1342 size = kwbheader_size_for_csum(hdr);
Luka Perkovd131ad62012-05-27 11:44:51 +00001343
1344 for (csum = 0; size-- > 0; data++)
1345 csum += *data;
1346
1347 return csum;
1348}
1349
Pali Rohárad9a3ac2021-10-25 15:12:55 +02001350static uint32_t *
1351kwboot_img_csum32_ptr(void *img)
1352{
1353 struct main_hdr_v1 *hdr = img;
1354 uint32_t datasz;
1355
1356 datasz = le32_to_cpu(hdr->blocksize) - sizeof(uint32_t);
1357
1358 return img + le32_to_cpu(hdr->srcaddr) + datasz;
1359}
1360
1361static uint32_t
1362kwboot_img_csum32(const void *img)
1363{
1364 const struct main_hdr_v1 *hdr = img;
1365 uint32_t datasz, csum = 0;
1366 const uint32_t *data;
1367
1368 datasz = le32_to_cpu(hdr->blocksize) - sizeof(csum);
1369 if (datasz % sizeof(uint32_t))
1370 return 0;
1371
1372 data = img + le32_to_cpu(hdr->srcaddr);
1373 while (datasz > 0) {
1374 csum += le32_to_cpu(*data++);
1375 datasz -= 4;
1376 }
1377
1378 return cpu_to_le32(csum);
1379}
1380
Luka Perkovd131ad62012-05-27 11:44:51 +00001381static int
Pali Rohár550c9302021-09-24 23:06:57 +02001382kwboot_img_is_secure(void *img)
1383{
1384 struct opt_hdr_v1 *ohdr;
1385
1386 for_each_opt_hdr_v1 (ohdr, img)
1387 if (ohdr->headertype == OPT_HDR_V1_SECURE_TYPE)
1388 return 1;
1389
1390 return 0;
1391}
1392
Pali Rohárca272042021-09-24 23:07:05 +02001393static void *
Pali Rohár063cb352021-10-25 15:12:56 +02001394kwboot_img_grow_data_right(void *img, size_t *size, size_t grow)
Pali Rohárca272042021-09-24 23:07:05 +02001395{
Pali Rohárca272042021-09-24 23:07:05 +02001396 struct main_hdr_v1 *hdr = img;
Pali Rohár063cb352021-10-25 15:12:56 +02001397 void *result;
Pali Rohárca272042021-09-24 23:07:05 +02001398
Pali Rohár063cb352021-10-25 15:12:56 +02001399 /*
1400 * 32-bit checksum comes after end of image code, so we will be putting
1401 * new code there. So we get this pointer and then increase data size
1402 * (since increasing data size changes kwboot_img_csum32_ptr() return
1403 * value).
1404 */
1405 result = kwboot_img_csum32_ptr(img);
Pali Rohárca272042021-09-24 23:07:05 +02001406 hdr->blocksize = cpu_to_le32(le32_to_cpu(hdr->blocksize) + grow);
Pali Rohár063cb352021-10-25 15:12:56 +02001407 *size += grow;
Pali Rohárca272042021-09-24 23:07:05 +02001408
Pali Rohár063cb352021-10-25 15:12:56 +02001409 return result;
Pali Rohárca272042021-09-24 23:07:05 +02001410}
1411
Pali Rohár04ced022021-09-24 23:07:03 +02001412static void
1413kwboot_img_grow_hdr(void *img, size_t *size, size_t grow)
1414{
1415 uint32_t hdrsz, datasz, srcaddr;
1416 struct main_hdr_v1 *hdr = img;
Pali Rohárd656f5a2021-10-25 15:13:02 +02001417 struct opt_hdr_v1 *ohdr;
Pali Rohár04ced022021-09-24 23:07:03 +02001418 uint8_t *data;
1419
1420 srcaddr = le32_to_cpu(hdr->srcaddr);
1421
Pali Rohárd656f5a2021-10-25 15:13:02 +02001422 /* calculate real used space in kwbimage header */
1423 if (kwbimage_version(img) == 0) {
1424 hdrsz = kwbheader_size(img);
1425 } else {
1426 hdrsz = sizeof(*hdr);
1427 for_each_opt_hdr_v1 (ohdr, hdr)
1428 hdrsz += opt_hdr_v1_size(ohdr);
1429 }
1430
Pali Rohár04ced022021-09-24 23:07:03 +02001431 data = (uint8_t *)img + srcaddr;
1432 datasz = *size - srcaddr;
1433
1434 /* only move data if there is not enough space */
1435 if (hdrsz + grow > srcaddr) {
1436 size_t need = hdrsz + grow - srcaddr;
1437
1438 /* move data by enough bytes */
1439 memmove(data + need, data, datasz);
1440
1441 hdr->srcaddr = cpu_to_le32(srcaddr + need);
1442 *size += need;
1443 }
1444
1445 if (kwbimage_version(img) == 1) {
1446 hdrsz += grow;
Pali Rohárd656f5a2021-10-25 15:13:02 +02001447 if (hdrsz > kwbheader_size(img)) {
1448 hdr->headersz_msb = hdrsz >> 16;
1449 hdr->headersz_lsb = cpu_to_le16(hdrsz & 0xffff);
1450 }
Pali Rohár04ced022021-09-24 23:07:03 +02001451 }
1452}
1453
Pali Rohárca272042021-09-24 23:07:05 +02001454static void *
1455kwboot_add_bin_ohdr_v1(void *img, size_t *size, uint32_t binsz)
1456{
1457 struct main_hdr_v1 *hdr = img;
1458 struct opt_hdr_v1 *ohdr;
Pali Rohára85a71d2021-10-21 16:46:06 +02001459 uint32_t num_args;
1460 uint32_t offset;
Pali Rohárca272042021-09-24 23:07:05 +02001461 uint32_t ohdrsz;
Pali Roháre511cc32021-10-25 15:13:01 +02001462 uint8_t *prev_ext;
Pali Rohárca272042021-09-24 23:07:05 +02001463
Pali Rohár44691032022-01-12 18:20:52 +01001464 if (hdr->ext) {
Pali Rohárca272042021-09-24 23:07:05 +02001465 for_each_opt_hdr_v1 (ohdr, img)
1466 if (opt_hdr_v1_next(ohdr) == NULL)
1467 break;
1468
Pali Roháre511cc32021-10-25 15:13:01 +02001469 prev_ext = opt_hdr_v1_ext(ohdr);
1470 ohdr = _opt_hdr_v1_next(ohdr);
Pali Rohárca272042021-09-24 23:07:05 +02001471 } else {
Pali Rohárca272042021-09-24 23:07:05 +02001472 ohdr = (void *)(hdr + 1);
Pali Roháre511cc32021-10-25 15:13:01 +02001473 prev_ext = &hdr->ext;
Pali Rohárca272042021-09-24 23:07:05 +02001474 }
1475
Pali Rohára85a71d2021-10-21 16:46:06 +02001476 /*
1477 * ARM executable code inside the BIN header on some mvebu platforms
1478 * (e.g. A370, AXP) must always be aligned with the 128-bit boundary.
1479 * This requirement can be met by inserting dummy arguments into
1480 * BIN header, if needed.
1481 */
1482 offset = &ohdr->data[4] - (char *)img;
1483 num_args = ((16 - offset % 16) % 16) / sizeof(uint32_t);
1484
1485 ohdrsz = sizeof(*ohdr) + 4 + 4 * num_args + binsz + 4;
1486 kwboot_img_grow_hdr(hdr, size, ohdrsz);
1487
Pali Rohár44691032022-01-12 18:20:52 +01001488 *prev_ext = 1;
Pali Roháre511cc32021-10-25 15:13:01 +02001489
Pali Rohárca272042021-09-24 23:07:05 +02001490 ohdr->headertype = OPT_HDR_V1_BINARY_TYPE;
1491 ohdr->headersz_msb = ohdrsz >> 16;
1492 ohdr->headersz_lsb = cpu_to_le16(ohdrsz & 0xffff);
1493
1494 memset(&ohdr->data[0], 0, ohdrsz - sizeof(*ohdr));
Pali Rohára85a71d2021-10-21 16:46:06 +02001495 *(uint32_t *)&ohdr->data[0] = cpu_to_le32(num_args);
Pali Rohárca272042021-09-24 23:07:05 +02001496
Pali Rohára85a71d2021-10-21 16:46:06 +02001497 return &ohdr->data[4 + 4 * num_args];
Pali Rohárca272042021-09-24 23:07:05 +02001498}
1499
1500static void
Pali Rohár8dbe0272021-10-27 20:57:02 +02001501_inject_baudrate_change_code(void *img, size_t *size, int for_data,
Pali Rohár063cb352021-10-25 15:12:56 +02001502 int old_baud, int new_baud)
Pali Rohárca272042021-09-24 23:07:05 +02001503{
Pali Rohár063cb352021-10-25 15:12:56 +02001504 struct main_hdr_v1 *hdr = img;
Pali Rohár8dbe0272021-10-27 20:57:02 +02001505 uint32_t orig_datasz;
1506 uint32_t codesz;
Pali Rohár063cb352021-10-25 15:12:56 +02001507 uint8_t *code;
Pali Rohárca272042021-09-24 23:07:05 +02001508
Pali Rohár8dbe0272021-10-27 20:57:02 +02001509 if (for_data) {
Pali Rohár063cb352021-10-25 15:12:56 +02001510 orig_datasz = le32_to_cpu(hdr->blocksize) - sizeof(uint32_t);
1511
Pali Rohár8dbe0272021-10-27 20:57:02 +02001512 codesz = sizeof(kwboot_baud_code) +
1513 sizeof(kwboot_baud_code_data_jump);
1514 code = kwboot_img_grow_data_right(img, size, codesz);
Pali Rohár063cb352021-10-25 15:12:56 +02001515 } else {
Pali Rohár8dbe0272021-10-27 20:57:02 +02001516 codesz = sizeof(kwboot_baud_code_binhdr_pre) +
1517 sizeof(kwboot_baud_code) +
1518 sizeof(kwboot_baud_code_binhdr_post);
Pali Rohár063cb352021-10-25 15:12:56 +02001519 code = kwboot_add_bin_ohdr_v1(img, size, codesz);
Pali Rohár8dbe0272021-10-27 20:57:02 +02001520
1521 codesz = sizeof(kwboot_baud_code_binhdr_pre);
1522 memcpy(code, kwboot_baud_code_binhdr_pre, codesz);
1523 code += codesz;
Pali Rohárca272042021-09-24 23:07:05 +02001524 }
1525
Pali Rohár8dbe0272021-10-27 20:57:02 +02001526 codesz = sizeof(kwboot_baud_code) - 2 * sizeof(uint32_t);
1527 memcpy(code, kwboot_baud_code, codesz);
1528 code += codesz;
1529 *(uint32_t *)code = cpu_to_le32(old_baud);
1530 code += sizeof(uint32_t);
1531 *(uint32_t *)code = cpu_to_le32(new_baud);
1532 code += sizeof(uint32_t);
1533
1534 if (for_data) {
1535 codesz = sizeof(kwboot_baud_code_data_jump) - sizeof(uint32_t);
1536 memcpy(code, kwboot_baud_code_data_jump, codesz);
1537 code += codesz;
1538 *(uint32_t *)code = hdr->execaddr;
1539 code += sizeof(uint32_t);
1540 hdr->execaddr = cpu_to_le32(le32_to_cpu(hdr->destaddr) + orig_datasz);
1541 } else {
1542 codesz = sizeof(kwboot_baud_code_binhdr_post);
1543 memcpy(code, kwboot_baud_code_binhdr_post, codesz);
1544 code += codesz;
1545 }
Pali Rohárca272042021-09-24 23:07:05 +02001546}
1547
Pali Rohár550c9302021-09-24 23:06:57 +02001548static int
Pali Rohárca272042021-09-24 23:07:05 +02001549kwboot_img_patch(void *img, size_t *size, int baudrate)
Luka Perkovd131ad62012-05-27 11:44:51 +00001550{
Stefan Roesee29f1db2015-09-29 09:19:59 +02001551 struct main_hdr_v1 *hdr;
Pali Rohár792e4232021-09-24 23:06:58 +02001552 uint32_t srcaddr;
Luka Perkovd131ad62012-05-27 11:44:51 +00001553 uint8_t csum;
Marek Behún5c8f8122021-09-24 23:07:04 +02001554 size_t hdrsz;
Stefan Roesee29f1db2015-09-29 09:19:59 +02001555 int image_ver;
Pali Rohár550c9302021-09-24 23:06:57 +02001556 int is_secure;
Luka Perkovd131ad62012-05-27 11:44:51 +00001557
Luka Perkovd131ad62012-05-27 11:44:51 +00001558 hdr = img;
1559
Marek Behúnb4eea8f2021-09-24 23:07:12 +02001560 if (*size < sizeof(struct main_hdr_v1))
1561 goto err;
Luka Perkovd131ad62012-05-27 11:44:51 +00001562
Marek Behúnacb0b382021-09-24 23:07:00 +02001563 image_ver = kwbimage_version(img);
Pali Rohár5029d7b2021-07-23 11:14:22 +02001564 if (image_ver != 0 && image_ver != 1) {
Stefan Roesee29f1db2015-09-29 09:19:59 +02001565 fprintf(stderr, "Invalid image header version\n");
Marek Behúnb4eea8f2021-09-24 23:07:12 +02001566 goto err;
Stefan Roesee29f1db2015-09-29 09:19:59 +02001567 }
1568
Marek Behúnfe2fd732021-09-24 23:07:01 +02001569 hdrsz = kwbheader_size(hdr);
Stefan Roesee29f1db2015-09-29 09:19:59 +02001570
Marek Behúnb4eea8f2021-09-24 23:07:12 +02001571 if (*size < hdrsz)
1572 goto err;
Pali Rohár825a2ca2021-07-23 11:14:21 +02001573
Marek Behúnfe2fd732021-09-24 23:07:01 +02001574 csum = kwboot_hdr_csum8(hdr) - hdr->checksum;
Marek Behúnb4eea8f2021-09-24 23:07:12 +02001575 if (csum != hdr->checksum)
1576 goto err;
Luka Perkovd131ad62012-05-27 11:44:51 +00001577
Pali Rohár792e4232021-09-24 23:06:58 +02001578 srcaddr = le32_to_cpu(hdr->srcaddr);
1579
1580 switch (hdr->blockid) {
1581 case IBR_HDR_SATA_ID:
Marek Behúnb4eea8f2021-09-24 23:07:12 +02001582 if (srcaddr < 1)
1583 goto err;
1584
Pali Rohár792e4232021-09-24 23:06:58 +02001585 hdr->srcaddr = cpu_to_le32((srcaddr - 1) * 512);
1586 break;
1587
1588 case IBR_HDR_SDIO_ID:
1589 hdr->srcaddr = cpu_to_le32(srcaddr * 512);
1590 break;
1591
1592 case IBR_HDR_PEX_ID:
1593 if (srcaddr == 0xFFFFFFFF)
1594 hdr->srcaddr = cpu_to_le32(hdrsz);
1595 break;
Pali Rohárf2c644e2021-09-24 23:06:59 +02001596
1597 case IBR_HDR_SPI_ID:
1598 if (hdr->destaddr == cpu_to_le32(0xFFFFFFFF)) {
1599 kwboot_printv("Patching destination and execution addresses from SPI/NOR XIP area to DDR area 0x00800000\n");
1600 hdr->destaddr = cpu_to_le32(0x00800000);
1601 hdr->execaddr = cpu_to_le32(0x00800000);
1602 }
1603 break;
Pali Rohár792e4232021-09-24 23:06:58 +02001604 }
1605
Pali Rohár04ced022021-09-24 23:07:03 +02001606 if (hdrsz > le32_to_cpu(hdr->srcaddr) ||
Marek Behúnb4eea8f2021-09-24 23:07:12 +02001607 *size < le32_to_cpu(hdr->srcaddr) + le32_to_cpu(hdr->blocksize))
1608 goto err;
Pali Rohár04ced022021-09-24 23:07:03 +02001609
Pali Rohárad9a3ac2021-10-25 15:12:55 +02001610 if (kwboot_img_csum32(img) != *kwboot_img_csum32_ptr(img))
1611 goto err;
1612
Pali Rohár550c9302021-09-24 23:06:57 +02001613 is_secure = kwboot_img_is_secure(img);
Luka Perkovd131ad62012-05-27 11:44:51 +00001614
Pali Rohár550c9302021-09-24 23:06:57 +02001615 if (hdr->blockid != IBR_HDR_UART_ID) {
1616 if (is_secure) {
1617 fprintf(stderr,
1618 "Image has secure header with signature for non-UART booting\n");
Marek Behúnb4eea8f2021-09-24 23:07:12 +02001619 goto err;
Pali Rohár550c9302021-09-24 23:06:57 +02001620 }
1621
1622 kwboot_printv("Patching image boot signature to UART\n");
1623 hdr->blockid = IBR_HDR_UART_ID;
1624 }
Luka Perkovd131ad62012-05-27 11:44:51 +00001625
Pali Rohár0089f612021-10-22 12:37:47 +02001626 if (!is_secure) {
Pali Rohár4bebab62021-10-25 15:12:58 +02001627 if (image_ver == 1) {
1628 /*
1629 * Tell BootROM to send BootROM messages to UART port
1630 * number 0 (used also for UART booting) with default
1631 * baudrate (which should be 115200) and do not touch
1632 * UART MPP configuration.
1633 */
1634 hdr->options &= ~0x1F;
1635 hdr->options |= MAIN_HDR_V1_OPT_BAUD_DEFAULT;
1636 hdr->options |= 0 << 3;
1637 }
Pali Rohár0089f612021-10-22 12:37:47 +02001638 if (image_ver == 0)
1639 ((struct main_hdr_v0 *)img)->nandeccmode = IBR_HDR_ECC_DISABLED;
1640 hdr->nandpagesize = 0;
1641 }
1642
Pali Rohárca272042021-09-24 23:07:05 +02001643 if (baudrate) {
Pali Rohárca272042021-09-24 23:07:05 +02001644 if (image_ver == 0) {
1645 fprintf(stderr,
1646 "Cannot inject code for changing baudrate into v0 image header\n");
Marek Behúnb4eea8f2021-09-24 23:07:12 +02001647 goto err;
Pali Rohárca272042021-09-24 23:07:05 +02001648 }
1649
1650 if (is_secure) {
1651 fprintf(stderr,
1652 "Cannot inject code for changing baudrate into image with secure header\n");
Marek Behúnb4eea8f2021-09-24 23:07:12 +02001653 goto err;
Pali Rohárca272042021-09-24 23:07:05 +02001654 }
1655
1656 /*
1657 * First inject code that changes the baudrate from the default
1658 * value of 115200 Bd to requested value. This code is inserted
1659 * as a new opt hdr, so it is executed by BootROM after the
1660 * header part is received.
1661 */
1662 kwboot_printv("Injecting binary header code for changing baudrate to %d Bd\n",
1663 baudrate);
Pali Rohár063cb352021-10-25 15:12:56 +02001664 _inject_baudrate_change_code(img, size, 0, 115200, baudrate);
Pali Rohárca272042021-09-24 23:07:05 +02001665
1666 /*
1667 * Now inject code that changes the baudrate back to 115200 Bd.
Pali Rohár063cb352021-10-25 15:12:56 +02001668 * This code is appended after the data part of the image, and
1669 * execaddr is changed so that it is executed before U-Boot
1670 * proper.
Pali Rohárca272042021-09-24 23:07:05 +02001671 */
1672 kwboot_printv("Injecting code for changing baudrate back\n");
Pali Rohár063cb352021-10-25 15:12:56 +02001673 _inject_baudrate_change_code(img, size, 1, baudrate, 115200);
Pali Rohárca272042021-09-24 23:07:05 +02001674
Pali Rohár82c5a0a2021-10-25 15:12:57 +02001675 /* Update the 32-bit data checksum */
1676 *kwboot_img_csum32_ptr(img) = kwboot_img_csum32(img);
1677
Pali Rohárca272042021-09-24 23:07:05 +02001678 /* recompute header size */
1679 hdrsz = kwbheader_size(hdr);
1680 }
1681
Pali Rohár04ced022021-09-24 23:07:03 +02001682 if (hdrsz % KWBOOT_XM_BLKSZ) {
Pali Roháred792c22021-10-25 15:13:00 +02001683 size_t grow = KWBOOT_XM_BLKSZ - hdrsz % KWBOOT_XM_BLKSZ;
Pali Rohár04ced022021-09-24 23:07:03 +02001684
1685 if (is_secure) {
1686 fprintf(stderr, "Cannot align image with secure header\n");
Marek Behúnb4eea8f2021-09-24 23:07:12 +02001687 goto err;
Pali Rohár04ced022021-09-24 23:07:03 +02001688 }
1689
1690 kwboot_printv("Aligning image header to Xmodem block size\n");
Pali Roháred792c22021-10-25 15:13:00 +02001691 kwboot_img_grow_hdr(img, size, grow);
Pali Rohár04ced022021-09-24 23:07:03 +02001692 }
1693
Marek Behúnfe2fd732021-09-24 23:07:01 +02001694 hdr->checksum = kwboot_hdr_csum8(hdr) - csum;
Luka Perkovd131ad62012-05-27 11:44:51 +00001695
Pali Rohár04ced022021-09-24 23:07:03 +02001696 *size = le32_to_cpu(hdr->srcaddr) + le32_to_cpu(hdr->blocksize);
Marek Behúnb4eea8f2021-09-24 23:07:12 +02001697 return 0;
1698err:
1699 errno = EINVAL;
1700 return -1;
Luka Perkovd131ad62012-05-27 11:44:51 +00001701}
1702
1703static void
1704kwboot_usage(FILE *stream, char *progname)
1705{
1706 fprintf(stream,
Kevin Smith8669dac2016-02-16 21:28:17 +00001707 "Usage: %s [OPTIONS] [-b <image> | -D <image> ] [-B <baud> ] <TTY>\n",
Stefan Roese84899e22014-10-22 12:13:21 +02001708 progname);
Luka Perkovd131ad62012-05-27 11:44:51 +00001709 fprintf(stream, "\n");
Stefan Roese84899e22014-10-22 12:13:21 +02001710 fprintf(stream,
1711 " -b <image>: boot <image> with preamble (Kirkwood, Armada 370/XP)\n");
Stefan Roese84899e22014-10-22 12:13:21 +02001712 fprintf(stream,
1713 " -D <image>: boot <image> without preamble (Dove)\n");
1714 fprintf(stream, " -d: enter debug mode\n");
1715 fprintf(stream, " -a: use timings for Armada XP\n");
Stefan Roese1c0df9e2015-05-29 13:25:04 +02001716 fprintf(stream, " -q <req-delay>: use specific request-delay\n");
1717 fprintf(stream, " -s <resp-timeo>: use specific response-timeout\n");
Kevin Smith7497a6a2016-02-16 21:28:19 +00001718 fprintf(stream,
1719 " -o <block-timeo>: use specific xmodem block timeout\n");
Luka Perkovd131ad62012-05-27 11:44:51 +00001720 fprintf(stream, "\n");
1721 fprintf(stream, " -t: mini terminal\n");
1722 fprintf(stream, "\n");
1723 fprintf(stream, " -B <baud>: set baud rate\n");
1724 fprintf(stream, "\n");
1725}
1726
1727int
1728main(int argc, char **argv)
1729{
1730 const char *ttypath, *imgpath;
Pali Rohárddc04fa2021-09-24 23:06:55 +02001731 int rv, rc, tty, term;
Luka Perkovd131ad62012-05-27 11:44:51 +00001732 void *bootmsg;
Stefan Roese84899e22014-10-22 12:13:21 +02001733 void *debugmsg;
Luka Perkovd131ad62012-05-27 11:44:51 +00001734 void *img;
1735 size_t size;
Pali Rohárca272042021-09-24 23:07:05 +02001736 size_t after_img_rsv;
1737 int baudrate;
Pali Rohárc513fe42022-01-25 18:13:07 +01001738 int prev_optind;
1739 int c;
Luka Perkovd131ad62012-05-27 11:44:51 +00001740
1741 rv = 1;
1742 tty = -1;
1743 bootmsg = NULL;
Stefan Roese84899e22014-10-22 12:13:21 +02001744 debugmsg = NULL;
Luka Perkovd131ad62012-05-27 11:44:51 +00001745 imgpath = NULL;
1746 img = NULL;
1747 term = 0;
Luka Perkovd131ad62012-05-27 11:44:51 +00001748 size = 0;
Pali Rohárca272042021-09-24 23:07:05 +02001749 after_img_rsv = KWBOOT_XM_BLKSZ;
1750 baudrate = 115200;
Luka Perkovd131ad62012-05-27 11:44:51 +00001751
Pali Rohár75176dc2021-11-05 23:30:42 +01001752 printf("kwboot version %s\n", PLAIN_VERSION);
1753
Luka Perkovd131ad62012-05-27 11:44:51 +00001754 kwboot_verbose = isatty(STDOUT_FILENO);
1755
1756 do {
Pali Rohárc513fe42022-01-25 18:13:07 +01001757 prev_optind = optind;
1758 c = getopt(argc, argv, "hbptaB:dD:q:s:o:");
Luka Perkovd131ad62012-05-27 11:44:51 +00001759 if (c < 0)
1760 break;
1761
1762 switch (c) {
1763 case 'b':
Pali Rohárc513fe42022-01-25 18:13:07 +01001764 if (imgpath || bootmsg || debugmsg)
1765 goto usage;
Luka Perkovd131ad62012-05-27 11:44:51 +00001766 bootmsg = kwboot_msg_boot;
Pali Rohárc513fe42022-01-25 18:13:07 +01001767 if (prev_optind == optind)
1768 goto usage;
1769 if (argv[optind] && argv[optind][0] != '-')
1770 imgpath = argv[optind++];
Luka Perkovd131ad62012-05-27 11:44:51 +00001771 break;
1772
Stefan Roese84899e22014-10-22 12:13:21 +02001773 case 'D':
Pali Rohárc513fe42022-01-25 18:13:07 +01001774 if (imgpath || bootmsg || debugmsg)
1775 goto usage;
Stefan Roese84899e22014-10-22 12:13:21 +02001776 bootmsg = NULL;
1777 imgpath = optarg;
1778 break;
1779
1780 case 'd':
Pali Rohárc513fe42022-01-25 18:13:07 +01001781 if (imgpath || bootmsg || debugmsg)
1782 goto usage;
Stefan Roese84899e22014-10-22 12:13:21 +02001783 debugmsg = kwboot_msg_debug;
1784 break;
1785
Luka Perkovd131ad62012-05-27 11:44:51 +00001786 case 'p':
Pali Rohárddc04fa2021-09-24 23:06:55 +02001787 /* nop, for backward compatibility */
Luka Perkovd131ad62012-05-27 11:44:51 +00001788 break;
1789
1790 case 't':
1791 term = 1;
1792 break;
1793
Stefan Roese84899e22014-10-22 12:13:21 +02001794 case 'a':
1795 msg_req_delay = KWBOOT_MSG_REQ_DELAY_AXP;
1796 msg_rsp_timeo = KWBOOT_MSG_RSP_TIMEO_AXP;
1797 break;
1798
Stefan Roese1c0df9e2015-05-29 13:25:04 +02001799 case 'q':
1800 msg_req_delay = atoi(optarg);
1801 break;
1802
1803 case 's':
1804 msg_rsp_timeo = atoi(optarg);
1805 break;
1806
Kevin Smith7497a6a2016-02-16 21:28:19 +00001807 case 'o':
1808 blk_rsp_timeo = atoi(optarg);
1809 break;
1810
Luka Perkovd131ad62012-05-27 11:44:51 +00001811 case 'B':
Pali Rohárca272042021-09-24 23:07:05 +02001812 baudrate = atoi(optarg);
Luka Perkovd131ad62012-05-27 11:44:51 +00001813 break;
1814
1815 case 'h':
1816 rv = 0;
1817 default:
1818 goto usage;
1819 }
1820 } while (1);
1821
Stefan Roese84899e22014-10-22 12:13:21 +02001822 if (!bootmsg && !term && !debugmsg)
Luka Perkovd131ad62012-05-27 11:44:51 +00001823 goto usage;
1824
Luka Perkovd131ad62012-05-27 11:44:51 +00001825 ttypath = argv[optind++];
1826
Pali Rohárc513fe42022-01-25 18:13:07 +01001827 if (optind != argc)
1828 goto usage;
1829
Pali Rohárca272042021-09-24 23:07:05 +02001830 tty = kwboot_open_tty(ttypath, imgpath ? 115200 : baudrate);
Luka Perkovd131ad62012-05-27 11:44:51 +00001831 if (tty < 0) {
1832 perror(ttypath);
1833 goto out;
1834 }
1835
Pali Rohárca272042021-09-24 23:07:05 +02001836 if (baudrate == 115200)
1837 /* do not change baudrate during Xmodem to the same value */
1838 baudrate = 0;
1839 else
1840 /* ensure we have enough space for baudrate change code */
Pali Rohár8dbe0272021-10-27 20:57:02 +02001841 after_img_rsv += sizeof(struct opt_hdr_v1) + 8 + 16 +
1842 sizeof(kwboot_baud_code_binhdr_pre) +
Pali Rohár5923ef62021-10-25 15:12:54 +02001843 sizeof(kwboot_baud_code) +
Pali Rohár8dbe0272021-10-27 20:57:02 +02001844 sizeof(kwboot_baud_code_binhdr_post) +
1845 KWBOOT_XM_BLKSZ +
1846 sizeof(kwboot_baud_code) +
1847 sizeof(kwboot_baud_code_data_jump) +
Pali Rohár5923ef62021-10-25 15:12:54 +02001848 KWBOOT_XM_BLKSZ;
Pali Rohárca272042021-09-24 23:07:05 +02001849
Luka Perkovd131ad62012-05-27 11:44:51 +00001850 if (imgpath) {
Pali Rohárca272042021-09-24 23:07:05 +02001851 img = kwboot_read_image(imgpath, &size, after_img_rsv);
Luka Perkovd131ad62012-05-27 11:44:51 +00001852 if (!img) {
1853 perror(imgpath);
1854 goto out;
1855 }
Luka Perkovd131ad62012-05-27 11:44:51 +00001856
Pali Rohárca272042021-09-24 23:07:05 +02001857 rc = kwboot_img_patch(img, &size, baudrate);
Luka Perkovd131ad62012-05-27 11:44:51 +00001858 if (rc) {
1859 fprintf(stderr, "%s: Invalid image.\n", imgpath);
1860 goto out;
1861 }
1862 }
1863
Stefan Roese84899e22014-10-22 12:13:21 +02001864 if (debugmsg) {
1865 rc = kwboot_debugmsg(tty, debugmsg);
1866 if (rc) {
1867 perror("debugmsg");
1868 goto out;
1869 }
Willy Tarreau3475a712018-07-03 12:10:30 -04001870 } else if (bootmsg) {
Luka Perkovd131ad62012-05-27 11:44:51 +00001871 rc = kwboot_bootmsg(tty, bootmsg);
1872 if (rc) {
1873 perror("bootmsg");
1874 goto out;
1875 }
1876 }
1877
1878 if (img) {
Pali Rohárca272042021-09-24 23:07:05 +02001879 rc = kwboot_xmodem(tty, img, size, baudrate);
Luka Perkovd131ad62012-05-27 11:44:51 +00001880 if (rc) {
1881 perror("xmodem");
1882 goto out;
1883 }
1884 }
1885
1886 if (term) {
1887 rc = kwboot_terminal(tty);
1888 if (rc && !(errno == EINTR)) {
1889 perror("terminal");
1890 goto out;
1891 }
1892 }
1893
1894 rv = 0;
1895out:
1896 if (tty >= 0)
1897 close(tty);
1898
1899 if (img)
Pali Rohár04ced022021-09-24 23:07:03 +02001900 free(img);
Luka Perkovd131ad62012-05-27 11:44:51 +00001901
1902 return rv;
1903
1904usage:
1905 kwboot_usage(rv ? stderr : stdout, basename(argv[0]));
1906 goto out;
1907}