2 # Copyright (c) 2013-2019, ARM Limited and Contributors. All rights reserved.
4 # SPDX-License-Identifier: BSD-3-Clause
8 # Trusted Firmware Version
13 # Default goal is build all images
16 # Avoid any implicit propagation of command line variable definitions to
17 # sub-Makefiles, like CFLAGS that we reserved for the firmware images'
18 # usage. Other command line options like "-s" are still propagated as usual.
21 MAKE_HELPERS_DIRECTORY
:= make_helpers
/
22 include ${MAKE_HELPERS_DIRECTORY}build_macros.mk
23 include ${MAKE_HELPERS_DIRECTORY}build_env.mk
25 ################################################################################
26 # Default values for build configurations, and their dependencies
27 ################################################################################
29 include ${MAKE_HELPERS_DIRECTORY}defaults.mk
31 # Assertions enabled for DEBUG builds by default
32 ENABLE_ASSERTIONS
:= ${DEBUG}
33 ENABLE_PMF
:= ${ENABLE_RUNTIME_INSTRUMENTATION}
34 PLAT
:= ${DEFAULT_PLAT}
36 ################################################################################
37 # Checkpatch script options
38 ################################################################################
40 CHECKCODE_ARGS
:= --no-patch
41 # Do not check the coding style on imported library files or documentation files
42 INC_LIB_DIRS_TO_CHECK
:= $(sort $(filter-out \
45 $(wildcard include/lib
/*)))
46 INC_DIRS_TO_CHECK
:= $(sort $(filter-out \
48 $(wildcard include/*)))
49 LIB_DIRS_TO_CHECK
:= $(sort $(filter-out \
54 ROOT_DIRS_TO_CHECK
:= $(sort $(filter-out \
60 CHECK_PATHS
:= ${ROOT_DIRS_TO_CHECK} \
61 ${INC_DIRS_TO_CHECK} \
62 ${INC_LIB_DIRS_TO_CHECK} \
66 ################################################################################
67 # Process build options
68 ################################################################################
74 CHECKCODE_ARGS
+= --no-summary
--terse
80 ifneq ($(findstring s
,$(filter-out --%,$(MAKEFLAGS
))),)
88 $(eval
$(call add_define
,DEBUG
))
93 ifneq ($(findstring clang
,$(notdir $(CC
))),)
96 ASFLAGS
+= -g
-Wa
,--gdwarf-2
99 # Use LOG_LEVEL_INFO by default for debug builds
102 BUILD_TYPE
:= release
103 # Use LOG_LEVEL_NOTICE by default for release builds
107 # Default build string (git branch and commit)
108 ifeq (${BUILD_STRING},)
109 BUILD_STRING
:= $(shell git describe
--always
--dirty
--tags 2> /dev
/null
)
111 VERSION_STRING
:= v
${VERSION_MAJOR}.
${VERSION_MINOR}(${BUILD_TYPE}):${BUILD_STRING}
113 # The cert_create tool cannot generate certificates individually, so we use the
114 # target 'certificates' to create them all
115 ifneq (${GENERATE_COT},0)
116 FIP_DEPS
+= certificates
117 FWU_FIP_DEPS
+= fwu_certificates
120 # Process BRANCH_PROTECTION value and set
121 # Pointer Authentication and Branch Target Identification flags
122 ifeq (${BRANCH_PROTECTION},0)
123 # Default value turns off all types of branch protection
125 else ifneq (${ARCH},aarch64
)
126 $(error BRANCH_PROTECTION requires AArch64
)
127 else ifeq (${BRANCH_PROTECTION},1)
128 # Enables all types of branch protection features
129 BP_OPTION
:= standard
132 else ifeq (${BRANCH_PROTECTION},2)
133 # Return address signing to its standard level
136 else ifeq (${BRANCH_PROTECTION},3)
137 # Extend the signing to include leaf functions
138 BP_OPTION
:= pac-ret
+leaf
141 $(error Unknown BRANCH_PROTECTION value
${BRANCH_PROTECTION})
144 ################################################################################
146 ################################################################################
151 CC
:= ${CROSS_COMPILE}gcc
152 CPP
:= ${CROSS_COMPILE}cpp
153 AS
:= ${CROSS_COMPILE}gcc
154 AR
:= ${CROSS_COMPILE}ar
155 LINKER
:= ${CROSS_COMPILE}ld
156 OC
:= ${CROSS_COMPILE}objcopy
157 OD
:= ${CROSS_COMPILE}objdump
158 NM
:= ${CROSS_COMPILE}nm
159 PP
:= ${CROSS_COMPILE}gcc
-E
162 # Use ${LD}.bfd instead if it exists (as absolute path or together with $PATH).
163 ifneq ($(strip $(wildcard ${LD}.bfd
) \
164 $(foreach dir,$(subst :, ,${PATH}),$(wildcard ${dir}/${LINKER}.bfd
))),)
165 LINKER
:= ${LINKER}.bfd
168 ifeq (${ARM_ARCH_MAJOR},7)
169 target32-directive
= -target arm-none-eabi
170 # Will set march32-directive from platform configuration
172 target32-directive
= -target armv8a-none-eabi
174 # Set the compiler's target architecture profile based on ARM_ARCH_MINOR option
175 ifeq (${ARM_ARCH_MINOR},0)
176 march32-directive
= -march
=armv8-a
177 march64-directive
= -march
=armv8-a
179 march32-directive
= -march
=armv8.
${ARM_ARCH_MINOR}-a
180 march64-directive
= -march
=armv8.
${ARM_ARCH_MINOR}-a
184 ifneq ($(findstring armclang
,$(notdir $(CC
))),)
185 TF_CFLAGS_aarch32
= -target arm-arm-none-eabi
$(march32-directive
)
186 TF_CFLAGS_aarch64
= -target aarch64-arm-none-eabi
$(march64-directive
)
188 AS
= $(CC
) -c
-x assembler-with-cpp
$(TF_CFLAGS_
$(ARCH
))
189 CPP
= $(CC
) -E
$(TF_CFLAGS_
$(ARCH
))
190 PP
= $(CC
) -E
$(TF_CFLAGS_
$(ARCH
))
191 else ifneq ($(findstring clang
,$(notdir $(CC
))),)
192 TF_CFLAGS_aarch32
= $(target32-directive
) $(march32-directive
)
193 TF_CFLAGS_aarch64
= -target aarch64-elf
$(march64-directive
)
195 AS
= $(CC
) -c
-x assembler-with-cpp
$(TF_CFLAGS_
$(ARCH
))
199 TF_CFLAGS_aarch32
= $(march32-directive
)
200 TF_CFLAGS_aarch64
= $(march64-directive
)
204 ifeq (${AARCH32_INSTRUCTION_SET},A32
)
205 TF_CFLAGS_aarch32
+= -marm
206 else ifeq (${AARCH32_INSTRUCTION_SET},T32
)
207 TF_CFLAGS_aarch32
+= -mthumb
209 $(error Error
: Unknown AArch32 instruction set
${AARCH32_INSTRUCTION_SET})
212 TF_CFLAGS_aarch32
+= -mno-unaligned-access
213 TF_CFLAGS_aarch64
+= -mgeneral-regs-only
-mstrict-align
215 ifneq (${BP_OPTION},none
)
216 TF_CFLAGS_aarch64
+= -mbranch-protection
=${BP_OPTION}
219 ASFLAGS_aarch32
= $(march32-directive
)
220 ASFLAGS_aarch64
= $(march64-directive
)
223 WARNING1
+= -Wmissing-declarations
224 WARNING1
+= -Wmissing-format-attribute
225 WARNING1
+= -Wmissing-prototypes
226 WARNING1
+= -Wold-style-definition
227 WARNING1
+= -Wunused-const-variable
229 WARNING2
:= -Waggregate-return
230 WARNING2
+= -Wcast-align
231 WARNING2
+= -Wnested-externs
233 WARNING2
+= -Wlogical-op
234 WARNING2
+= -Wmissing-field-initializers
235 WARNING2
+= -Wsign-compare
237 WARNING3
:= -Wbad-function-cast
238 WARNING3
+= -Wcast-qual
239 WARNING3
+= -Wconversion
242 WARNING3
+= -Wpointer-arith
243 WARNING3
+= -Wredundant-decls
244 WARNING3
+= -Wswitch-default
247 WARNINGS
:= $(WARNING1
)
249 WARNINGS
:= $(WARNING1
) $(WARNING2
)
251 WARNINGS
:= $(WARNING1
) $(WARNING2
) $(WARNING3
)
254 WARNINGS
+= -Wunused
-Wno-unused-parameter \
255 -Wdisabled-optimization \
258 ifeq ($(findstring clang
,$(notdir $(CC
))),)
260 WARNINGS
+= -Wunused-but-set-variable \
261 -Wmaybe-uninitialized \
262 -Wpacked-bitfield-compat \
266 WARNINGS
+= -Wshift-overflow
-Wshift-sign-overflow
273 CPPFLAGS
= ${DEFINES} ${INCLUDES} ${MBEDTLS_INC} -nostdinc \
274 -Wmissing-include-dirs
$(ERRORS
) $(WARNINGS
)
275 ASFLAGS
+= $(CPPFLAGS
) $(ASFLAGS_
$(ARCH
)) \
276 -ffreestanding
-Wa
,--fatal-warnings
277 TF_CFLAGS
+= $(CPPFLAGS
) $(TF_CFLAGS_
$(ARCH
)) \
278 -ffreestanding
-fno-builtin
-Wall
-std
=gnu99 \
279 -Os
-ffunction-sections
-fdata-sections
281 GCC_V_OUTPUT
:= $(shell $(CC
) -v
2>&1)
283 ifneq ($(findstring armlink
,$(notdir $(LD
))),)
284 TF_LDFLAGS
+= --diag_error
=warning
--lto_level
=O1
285 TF_LDFLAGS
+= --remove
--info=unused
,unusedsymbols
287 TF_LDFLAGS
+= --fatal-warnings
-O1
288 TF_LDFLAGS
+= --gc-sections
290 TF_LDFLAGS
+= $(TF_LDFLAGS_
$(ARCH
))
292 DTC_FLAGS
+= -I dts
-O dtb
293 DTC_CPPFLAGS
+= -nostdinc
-Iinclude
-undef
-x assembler-with-cpp
295 ################################################################################
296 # Common sources and include directories
297 ################################################################################
298 include lib
/compiler-rt
/compiler-rt.mk
300 BL_COMMON_SOURCES
+= common
/bl_common.c \
302 common
/${ARCH}/debug.S \
303 drivers
/console
/multi_console.c \
304 lib
/${ARCH}/cache_helpers.S \
305 lib
/${ARCH}/misc_helpers.S \
306 plat
/common
/plat_bl_common.c \
307 plat
/common
/plat_log_common.c \
308 plat
/common
/${ARCH}/plat_common.c \
309 plat
/common
/${ARCH}/platform_helpers.S \
312 ifeq ($(notdir $(CC
)),armclang
)
313 BL_COMMON_SOURCES
+= lib
/${ARCH}/armclang_printf.S
316 INCLUDES
+= -Iinclude \
317 -Iinclude
/arch
/${ARCH} \
318 -Iinclude
/lib
/cpus
/${ARCH} \
319 -Iinclude
/lib
/el3_runtime
/${ARCH} \
323 include common
/backtrace
/backtrace.mk
325 ################################################################################
326 # Generic definitions
327 ################################################################################
329 include ${MAKE_HELPERS_DIRECTORY}plat_helpers.mk
331 BUILD_BASE
:= .
/build
332 BUILD_PLAT
:= ${BUILD_BASE}/${PLAT}/${BUILD_TYPE}
334 SPDS
:= $(sort $(filter-out none
, $(patsubst services
/spd
/%,%,$(wildcard services
/spd
/*))))
336 # Platforms providing their own TBB makefile may override this value
340 ################################################################################
341 # Include SPD Makefile if one has been specified
342 ################################################################################
345 ifeq (${ARCH},aarch32
)
346 $(error
"Error: SPD is incompatible with AArch32.")
348 ifdef EL3_PAYLOAD_BASE
349 $(warning
"SPD and EL3_PAYLOAD_BASE are incompatible build options.")
350 $(warning
"The SPD and its BL32 companion will be present but ignored.")
352 # We expect to locate an spd.mk under the specified SPD directory
353 SPD_MAKE
:= $(wildcard services
/spd
/${SPD}/${SPD}.mk
)
356 $(error Error
: No services
/spd
/${SPD}/${SPD}.mk located
)
358 $(info Including
${SPD_MAKE})
361 # If there's BL32 companion for the chosen SPD, we expect that the SPD's
362 # Makefile would set NEED_BL32 to "yes". In this case, the build system
363 # supports two mutually exclusive options:
364 # * BL32 is built from source: then BL32_SOURCES must contain the list
365 # of source files to build BL32
366 # * BL32 is a prebuilt binary: then BL32 must point to the image file
367 # that will be included in the FIP
368 # If both BL32_SOURCES and BL32 are defined, the binary takes precedence
372 ################################################################################
373 # Include the platform specific Makefile after the SPD Makefile (the platform
374 # makefile may use all previous definitions in this file)
375 ################################################################################
377 include ${PLAT_MAKEFILE_FULL}
379 $(eval
$(call MAKE_PREREQ_DIR
,${BUILD_PLAT}))
381 ifeq (${ARM_ARCH_MAJOR},7)
382 include make_helpers
/armv7-a-cpus.mk
385 ifeq ($(ENABLE_PIE
),1)
387 TF_LDFLAGS
+= -pie
--no-dynamic-linker
389 PIE_FOUND
:= $(findstring --enable-default-pie
,${GCC_V_OUTPUT})
390 ifneq ($(PIE_FOUND
),)
391 TF_CFLAGS
+= -fno-PIE
395 # Include the CPU specific operations makefile, which provides default
396 # values for all CPU errata workarounds and CPU specific optimisations.
397 # This can be overridden by the platform.
398 include lib
/cpus
/cpu-ops.mk
400 ifeq (${ARCH},aarch32
)
403 ################################################################################
404 # Build `AARCH32_SP` as BL32 image for AArch32
405 ################################################################################
406 ifneq (${AARCH32_SP},none
)
407 # We expect to locate an sp.mk under the specified AARCH32_SP directory
408 AARCH32_SP_MAKE
:= $(wildcard bl32
/${AARCH32_SP}/${AARCH32_SP}.mk
)
410 ifeq (${AARCH32_SP_MAKE},)
411 $(error Error
: No bl32
/${AARCH32_SP}/${AARCH32_SP}.mk located
)
414 $(info Including
${AARCH32_SP_MAKE})
415 include ${AARCH32_SP_MAKE}
420 ################################################################################
421 # Include libc if not overridden
422 ################################################################################
423 ifeq (${OVERRIDE_LIBC},0)
424 include lib
/libc
/libc.mk
427 ################################################################################
428 # Check incompatible options
429 ################################################################################
431 ifdef EL3_PAYLOAD_BASE
432 ifdef PRELOADED_BL33_BASE
433 $(warning
"PRELOADED_BL33_BASE and EL3_PAYLOAD_BASE are \
434 incompatible build options. EL3_PAYLOAD_BASE has priority.")
436 ifneq (${GENERATE_COT},0)
437 $(error
"GENERATE_COT and EL3_PAYLOAD_BASE are incompatible build options.")
439 ifneq (${TRUSTED_BOARD_BOOT},0)
440 $(error
"TRUSTED_BOARD_BOOT and EL3_PAYLOAD_BASE are incompatible build options.")
444 ifeq (${NEED_BL33},yes
)
445 ifdef EL3_PAYLOAD_BASE
446 $(warning
"BL33 image is not needed when option \
447 BL33_PAYLOAD_BASE is used and won't be added to the FIP file.")
449 ifdef PRELOADED_BL33_BASE
450 $(warning
"BL33 image is not needed when option \
451 PRELOADED_BL33_BASE is used and won't be added to the FIP \
456 # When building for systems with hardware-assisted coherency, there's no need to
457 # use USE_COHERENT_MEM. Require that USE_COHERENT_MEM must be set to 0 too.
458 ifeq ($(HW_ASSISTED_COHERENCY
)-$(USE_COHERENT_MEM
),1-1)
459 $(error USE_COHERENT_MEM cannot be enabled with HW_ASSISTED_COHERENCY
)
462 #For now, BL2_IN_XIP_MEM is only supported when BL2_AT_EL3 is 1.
463 ifeq ($(BL2_AT_EL3
)-$(BL2_IN_XIP_MEM
),0-1)
464 $(error
"BL2_IN_XIP_MEM is only supported when BL2_AT_EL3 is enabled")
467 # For RAS_EXTENSION, require that EAs are handled in EL3 first
468 ifeq ($(RAS_EXTENSION
),1)
469 ifneq ($(HANDLE_EA_EL3_FIRST
),1)
470 $(error For RAS_EXTENSION
, HANDLE_EA_EL3_FIRST must also be
1)
474 # When FAULT_INJECTION_SUPPORT is used, require that RAS_EXTENSION is enabled
475 ifeq ($(FAULT_INJECTION_SUPPORT
),1)
476 ifneq ($(RAS_EXTENSION
),1)
477 $(error For FAULT_INJECTION_SUPPORT
, RAS_EXTENSION must also be
1)
481 # DYN_DISABLE_AUTH can be set only when TRUSTED_BOARD_BOOT=1
482 ifeq ($(DYN_DISABLE_AUTH
), 1)
483 ifeq (${TRUSTED_BOARD_BOOT}, 0)
484 $(error
"TRUSTED_BOARD_BOOT must be enabled for DYN_DISABLE_AUTH to be set.")
488 # If pointer authentication is used in the firmware, make sure that all the
489 # registers associated to it are also saved and restored.
490 # Not doing it would leak the value of the keys used by EL3 to EL1 and S-EL1.
491 ifeq ($(ENABLE_PAUTH
),1)
492 ifeq ($(CTX_INCLUDE_PAUTH_REGS
),0)
493 $(error Pointer Authentication requires CTX_INCLUDE_PAUTH_REGS
=1)
497 ifeq ($(CTX_INCLUDE_PAUTH_REGS
),1)
498 ifneq (${ARCH},aarch64
)
499 $(error CTX_INCLUDE_PAUTH_REGS requires AArch64
)
501 $(info CTX_INCLUDE_PAUTH_REGS is an experimental feature
)
505 ifeq ($(ENABLE_PAUTH
),1)
506 $(info Pointer Authentication is an experimental feature
)
509 ifeq ($(ENABLE_BTI
),1)
510 $(info Branch Protection is an experimental feature
)
513 ################################################################################
514 # Process platform overrideable behaviour
515 ################################################################################
517 # Using BL2 implies that a BL33 image also needs to be supplied for the FIP and
518 # Certificate generation tools. This flag can be overridden by the platform.
520 ifdef EL3_PAYLOAD_BASE
521 # If booting an EL3 payload there is no need for a BL33 image
525 ifdef PRELOADED_BL33_BASE
526 # If booting a BL33 preloaded image there is no need of
527 # another one in the FIP file.
535 # If SCP_BL2 is given, we always want FIP to include it.
540 # For AArch32, BL31 is not currently supported.
541 ifneq (${ARCH},aarch32
)
543 # When booting an EL3 payload, there is no need to compile the BL31 image nor
545 ifndef EL3_PAYLOAD_BASE
551 # Process TBB related flags
552 ifneq (${GENERATE_COT},0)
553 # Common cert_create options
554 ifneq (${CREATE_KEYS},0)
555 $(eval CRT_ARGS
+= -n
)
556 $(eval FWU_CRT_ARGS
+= -n
)
557 ifneq (${SAVE_KEYS},0)
558 $(eval CRT_ARGS
+= -k
)
559 $(eval FWU_CRT_ARGS
+= -k
)
562 # Include TBBR makefile (unless the platform indicates otherwise)
563 ifeq (${INCLUDE_TBBR_MK},1)
564 include make_helpers
/tbbr
/tbbr_tools.mk
568 ifneq (${FIP_ALIGN},0)
569 FIP_ARGS
+= --align
${FIP_ALIGN}
572 ################################################################################
573 # Include libraries' Makefile that are used in all BL
574 ################################################################################
576 include lib
/stack_protector
/stack_protector.mk
578 ################################################################################
579 # Auxiliary tools (fiptool, cert_create, etc)
580 ################################################################################
582 # Variables for use with Certificate Generation Tool
583 CRTTOOLPATH ?
= tools
/cert_create
584 CRTTOOL ?
= ${CRTTOOLPATH}/cert_create
${BIN_EXT}
586 # Variables for use with Firmware Image Package
587 FIPTOOLPATH ?
= tools
/fiptool
588 FIPTOOL ?
= ${FIPTOOLPATH}/fiptool
${BIN_EXT}
590 # Variables for use with sptool
591 SPTOOLPATH ?
= tools
/sptool
592 SPTOOL ?
= ${SPTOOLPATH}/sptool
${BIN_EXT}
594 # Variables for use with ROMLIB
595 ROMLIBPATH ?
= lib
/romlib
597 ################################################################################
598 # Include BL specific makefiles
599 ################################################################################
615 ifeq (${NEED_BL31},yes
)
625 ################################################################################
626 # Build options checks
627 ################################################################################
629 $(eval
$(call assert_boolean
,COLD_BOOT_SINGLE_CPU
))
630 $(eval
$(call assert_boolean
,CREATE_KEYS
))
631 $(eval
$(call assert_boolean
,CTX_INCLUDE_AARCH32_REGS
))
632 $(eval
$(call assert_boolean
,CTX_INCLUDE_FPREGS
))
633 $(eval
$(call assert_boolean
,CTX_INCLUDE_PAUTH_REGS
))
634 $(eval
$(call assert_boolean
,DEBUG
))
635 $(eval
$(call assert_boolean
,DYN_DISABLE_AUTH
))
636 $(eval
$(call assert_boolean
,EL3_EXCEPTION_HANDLING
))
637 $(eval
$(call assert_boolean
,ENABLE_AMU
))
638 $(eval
$(call assert_boolean
,ENABLE_ASSERTIONS
))
639 $(eval
$(call assert_boolean
,ENABLE_MPAM_FOR_LOWER_ELS
))
640 $(eval
$(call assert_boolean
,ENABLE_PIE
))
641 $(eval
$(call assert_boolean
,ENABLE_PMF
))
642 $(eval
$(call assert_boolean
,ENABLE_PSCI_STAT
))
643 $(eval
$(call assert_boolean
,ENABLE_RUNTIME_INSTRUMENTATION
))
644 $(eval
$(call assert_boolean
,ENABLE_SPE_FOR_LOWER_ELS
))
645 $(eval
$(call assert_boolean
,ENABLE_SPM
))
646 $(eval
$(call assert_boolean
,ENABLE_SVE_FOR_NS
))
647 $(eval
$(call assert_boolean
,ERROR_DEPRECATED
))
648 $(eval
$(call assert_boolean
,FAULT_INJECTION_SUPPORT
))
649 $(eval
$(call assert_boolean
,GENERATE_COT
))
650 $(eval
$(call assert_boolean
,GICV2_G0_FOR_EL3
))
651 $(eval
$(call assert_boolean
,HANDLE_EA_EL3_FIRST
))
652 $(eval
$(call assert_boolean
,HW_ASSISTED_COHERENCY
))
653 $(eval
$(call assert_boolean
,NS_TIMER_SWITCH
))
654 $(eval
$(call assert_boolean
,OVERRIDE_LIBC
))
655 $(eval
$(call assert_boolean
,PL011_GENERIC_UART
))
656 $(eval
$(call assert_boolean
,PROGRAMMABLE_RESET_ADDRESS
))
657 $(eval
$(call assert_boolean
,PSCI_EXTENDED_STATE_ID
))
658 $(eval
$(call assert_boolean
,RAS_EXTENSION
))
659 $(eval
$(call assert_boolean
,RESET_TO_BL31
))
660 $(eval
$(call assert_boolean
,SAVE_KEYS
))
661 $(eval
$(call assert_boolean
,SEPARATE_CODE_AND_RODATA
))
662 $(eval
$(call assert_boolean
,SPIN_ON_BL1_EXIT
))
663 $(eval
$(call assert_boolean
,SPM_MM
))
664 $(eval
$(call assert_boolean
,TRUSTED_BOARD_BOOT
))
665 $(eval
$(call assert_boolean
,USE_COHERENT_MEM
))
666 $(eval
$(call assert_boolean
,USE_ROMLIB
))
667 $(eval
$(call assert_boolean
,USE_TBBR_DEFS
))
668 $(eval
$(call assert_boolean
,WARMBOOT_ENABLE_DCACHE_EARLY
))
669 $(eval
$(call assert_boolean
,BL2_AT_EL3
))
670 $(eval
$(call assert_boolean
,BL2_IN_XIP_MEM
))
672 $(eval
$(call assert_numeric
,ARM_ARCH_MAJOR
))
673 $(eval
$(call assert_numeric
,ARM_ARCH_MINOR
))
674 $(eval
$(call assert_numeric
,BRANCH_PROTECTION
))
676 ################################################################################
677 # Add definitions to the cpp preprocessor based on the current build options.
678 # This is done after including the platform specific makefile to allow the
679 # platform to overwrite the default options
680 ################################################################################
682 $(eval
$(call add_define
,ARM_ARCH_MAJOR
))
683 $(eval
$(call add_define
,ARM_ARCH_MINOR
))
684 $(eval
$(call add_define
,COLD_BOOT_SINGLE_CPU
))
685 $(eval
$(call add_define
,CTX_INCLUDE_AARCH32_REGS
))
686 $(eval
$(call add_define
,CTX_INCLUDE_FPREGS
))
687 $(eval
$(call add_define
,CTX_INCLUDE_PAUTH_REGS
))
688 $(eval
$(call add_define
,EL3_EXCEPTION_HANDLING
))
689 $(eval
$(call add_define
,ENABLE_AMU
))
690 $(eval
$(call add_define
,ENABLE_ASSERTIONS
))
691 $(eval
$(call add_define
,ENABLE_BTI
))
692 $(eval
$(call add_define
,ENABLE_MPAM_FOR_LOWER_ELS
))
693 $(eval
$(call add_define
,ENABLE_PAUTH
))
694 $(eval
$(call add_define
,ENABLE_PIE
))
695 $(eval
$(call add_define
,ENABLE_PMF
))
696 $(eval
$(call add_define
,ENABLE_PSCI_STAT
))
697 $(eval
$(call add_define
,ENABLE_RUNTIME_INSTRUMENTATION
))
698 $(eval
$(call add_define
,ENABLE_SPE_FOR_LOWER_ELS
))
699 $(eval
$(call add_define
,ENABLE_SPM
))
700 $(eval
$(call add_define
,ENABLE_SVE_FOR_NS
))
701 $(eval
$(call add_define
,ERROR_DEPRECATED
))
702 $(eval
$(call add_define
,FAULT_INJECTION_SUPPORT
))
703 $(eval
$(call add_define
,GICV2_G0_FOR_EL3
))
704 $(eval
$(call add_define
,HANDLE_EA_EL3_FIRST
))
705 $(eval
$(call add_define
,HW_ASSISTED_COHERENCY
))
706 $(eval
$(call add_define
,LOG_LEVEL
))
707 $(eval
$(call add_define
,NS_TIMER_SWITCH
))
708 $(eval
$(call add_define
,PL011_GENERIC_UART
))
709 $(eval
$(call add_define
,PLAT_
${PLAT}))
710 $(eval
$(call add_define
,PROGRAMMABLE_RESET_ADDRESS
))
711 $(eval
$(call add_define
,PSCI_EXTENDED_STATE_ID
))
712 $(eval
$(call add_define
,RAS_EXTENSION
))
713 $(eval
$(call add_define
,RESET_TO_BL31
))
714 $(eval
$(call add_define
,SEPARATE_CODE_AND_RODATA
))
715 $(eval
$(call add_define
,RECLAIM_INIT_CODE
))
716 $(eval
$(call add_define
,SPD_
${SPD}))
717 $(eval
$(call add_define
,SPIN_ON_BL1_EXIT
))
718 $(eval
$(call add_define
,SPM_MM
))
719 $(eval
$(call add_define
,TRUSTED_BOARD_BOOT
))
720 $(eval
$(call add_define
,USE_COHERENT_MEM
))
721 $(eval
$(call add_define
,USE_ROMLIB
))
722 $(eval
$(call add_define
,USE_TBBR_DEFS
))
723 $(eval
$(call add_define
,WARMBOOT_ENABLE_DCACHE_EARLY
))
724 $(eval
$(call add_define
,BL2_AT_EL3
))
725 $(eval
$(call add_define
,BL2_IN_XIP_MEM
))
727 # Define the EL3_PAYLOAD_BASE flag only if it is provided.
728 ifdef EL3_PAYLOAD_BASE
729 $(eval
$(call add_define
,EL3_PAYLOAD_BASE
))
731 # Define the PRELOADED_BL33_BASE flag only if it is provided and
732 # EL3_PAYLOAD_BASE is not defined, as it has priority.
733 ifdef PRELOADED_BL33_BASE
734 $(eval
$(call add_define
,PRELOADED_BL33_BASE
))
737 # Define the AARCH32/AARCH64 flag based on the ARCH flag
738 ifeq (${ARCH},aarch32
)
739 $(eval
$(call add_define
,AARCH32
))
741 $(eval
$(call add_define
,AARCH64
))
744 # Define the DYN_DISABLE_AUTH flag only if set.
745 ifeq (${DYN_DISABLE_AUTH},1)
746 $(eval
$(call add_define
,DYN_DISABLE_AUTH
))
749 ifneq ($(findstring armlink
,$(notdir $(LD
))),)
750 $(eval
$(call add_define
,USE_ARM_LINK
))
753 ################################################################################
755 ################################################################################
757 .PHONY
: all msg_start
clean realclean distclean cscope locate-checkpatch checkcodebase checkpatch fiptool sptool fip fwu_fip certtool dtbs
763 @echo
"Building ${PLAT}"
765 ifeq (${ERROR_DEPRECATED},0)
766 # Check if deprecated declarations and cpp warnings should be treated as error or not.
767 ifneq ($(findstring clang
,$(notdir $(CC
))),)
768 CPPFLAGS
+= -Wno-error
=deprecated-declarations
770 CPPFLAGS
+= -Wno-error
=deprecated-declarations
-Wno-error
=cpp
772 # __ASSEMBLY__ is deprecated in favor of the compiler-builtin __ASSEMBLER__.
773 ASFLAGS
+= -D__ASSEMBLY__
774 endif # !ERROR_DEPRECATED
776 $(eval
$(call MAKE_LIB_DIRS
))
777 $(eval
$(call MAKE_LIB
,c
))
779 # Expand build macros for the different images
780 ifeq (${NEED_BL1},yes
)
781 $(eval
$(call MAKE_BL
,1))
784 ifeq (${NEED_BL2},yes
)
785 ifeq (${BL2_AT_EL3}, 0)
786 FIP_BL2_ARGS
:= tb-fw
789 $(if
${BL2}, $(eval
$(call TOOL_ADD_IMG
,bl2
,--${FIP_BL2_ARGS})),\
790 $(eval
$(call MAKE_BL
,2,${FIP_BL2_ARGS})))
793 ifeq (${NEED_SCP_BL2},yes
)
794 $(eval
$(call TOOL_ADD_IMG
,scp_bl2
,--scp-fw
))
797 ifeq (${NEED_BL31},yes
)
798 BL31_SOURCES
+= ${SPD_SOURCES}
799 $(if
${BL31}, $(eval
$(call TOOL_ADD_IMG
,bl31
,--soc-fw
)),\
800 $(eval
$(call MAKE_BL
,31,soc-fw
)))
803 # If a BL32 image is needed but neither BL32 nor BL32_SOURCES is defined, the
804 # build system will call TOOL_ADD_IMG to print a warning message and abort the
805 # process. Note that the dependency on BL32 applies to the FIP only.
806 ifeq (${NEED_BL32},yes
)
808 BUILD_BL32
:= $(if
$(BL32
),,$(if
$(BL32_SOURCES
),1))
810 $(if
${BUILD_BL32}, $(eval
$(call MAKE_BL
,32,tos-fw
)),\
811 $(eval
$(call TOOL_ADD_IMG
,bl32
,--tos-fw
)))
814 # Add the BL33 image if required by the platform
815 ifeq (${NEED_BL33},yes
)
816 $(eval
$(call TOOL_ADD_IMG
,bl33
,--nt-fw
))
819 ifeq (${NEED_BL2U},yes
)
820 $(if
${BL2U}, $(eval
$(call TOOL_ADD_IMG
,bl2u
,--ap-fwu-cfg
,FWU_
)),\
821 $(eval
$(call MAKE_BL
,2u,ap-fwu-cfg
,FWU_
)))
824 # Expand build macros for the different images
825 ifeq (${NEED_FDT},yes
)
826 $(eval
$(call MAKE_DTBS
,$(BUILD_PLAT
)/fdts
,$(FDT_SOURCES
)))
831 $(error
"Please set CHECKPATCH to point to the Linux checkpatch.pl file, eg: CHECKPATCH=../linux/scripts/checkpatch.pl")
833 ifeq (,$(wildcard ${CHECKPATCH}))
834 $(error
"The file CHECKPATCH points to cannot be found, use eg: CHECKPATCH=../linux/scripts/checkpatch.pl")
840 $(call SHELL_REMOVE_DIR
,${BUILD_PLAT})
841 ${Q}${MAKE} --no-print-directory
-C
${FIPTOOLPATH} clean
842 ${Q}${MAKE} PLAT
=${PLAT} --no-print-directory
-C
${CRTTOOLPATH} clean
843 ${Q}${MAKE} --no-print-directory
-C
${ROMLIBPATH} clean
847 $(call SHELL_REMOVE_DIR
,${BUILD_BASE})
848 $(call SHELL_DELETE_ALL
, ${CURDIR}/cscope.
*)
849 ${Q}${MAKE} --no-print-directory
-C
${FIPTOOLPATH} clean
850 ${Q}${MAKE} --no-print-directory
-C
${SPTOOLPATH} clean
851 ${Q}${MAKE} PLAT
=${PLAT} --no-print-directory
-C
${CRTTOOLPATH} clean
852 ${Q}${MAKE} --no-print-directory
-C
${ROMLIBPATH} clean
854 checkcodebase
: locate-checkpatch
855 @echo
" CHECKING STYLE"
856 @if
test -d .git
; then \
857 git ls-files | grep
-E
-v
'libfdt|libc|docs|\.rst' | \
858 while read GIT_FILE
; \
859 do
${CHECKPATCH} ${CHECKCODE_ARGS} -f
$$GIT_FILE ; \
862 find .
-type f
-not
-iwholename
"*.git*" \
863 -not
-iwholename
"*build*" \
864 -not
-iwholename
"*libfdt*" \
865 -not
-iwholename
"*libc*" \
866 -not
-iwholename
"*docs*" \
867 -not
-iwholename
"*.rst" \
868 -exec
${CHECKPATCH} ${CHECKCODE_ARGS} -f
{} \
; ; \
871 checkpatch
: locate-checkpatch
872 @echo
" CHECKING STYLE"
873 @if
test -n
"${CHECKPATCH_OPTS}"; then \
874 echo
" with ${CHECKPATCH_OPTS} option(s)"; \
876 ${Q}COMMON_COMMIT
=$$(git merge-base HEAD
${BASE_COMMIT}); \
877 for commit in
`git rev-list $$COMMON_COMMIT..HEAD`; do \
878 printf
"\n[*] Checking style of '$$commit'\n\n"; \
879 git log
--format
=email
"$$commit~..$$commit" \
880 -- ${CHECK_PATHS} | \
881 ${CHECKPATCH} ${CHECKPATCH_OPTS} - || true
; \
882 git diff
--format
=email
"$$commit~..$$commit" \
883 -- ${CHECK_PATHS} | \
884 ${CHECKPATCH} ${CHECKPATCH_OPTS} - || true
; \
891 ${Q}${MAKE} PLAT
=${PLAT} USE_TBBR_DEFS
=${USE_TBBR_DEFS} --no-print-directory
-C
${CRTTOOLPATH}
893 @echo
"Built $@ successfully"
896 ifneq (${GENERATE_COT},0)
897 certificates
: ${CRT_DEPS} ${CRTTOOL}
898 ${Q}${CRTTOOL} ${CRT_ARGS}
900 @echo
"Built $@ successfully"
901 @echo
"Certificates can be found in ${BUILD_PLAT}"
905 ${BUILD_PLAT}/${FIP_NAME}: ${FIP_DEPS} ${FIPTOOL}
906 ${Q}${FIPTOOL} create
${FIP_ARGS} $@
907 ${Q}${FIPTOOL} info $@
909 @echo
"Built $@ successfully"
912 ifneq (${GENERATE_COT},0)
913 fwu_certificates
: ${FWU_CRT_DEPS} ${CRTTOOL}
914 ${Q}${CRTTOOL} ${FWU_CRT_ARGS}
916 @echo
"Built $@ successfully"
917 @echo
"FWU certificates can be found in ${BUILD_PLAT}"
921 ${BUILD_PLAT}/${FWU_FIP_NAME}: ${FWU_FIP_DEPS} ${FIPTOOL}
922 ${Q}${FIPTOOL} create
${FWU_FIP_ARGS} $@
923 ${Q}${FIPTOOL} info $@
925 @echo
"Built $@ successfully"
929 fip
: ${BUILD_PLAT}/${FIP_NAME}
930 fwu_fip
: ${BUILD_PLAT}/${FWU_FIP_NAME}
934 ${Q}${MAKE} CPPFLAGS
="-DVERSION='\"${VERSION_STRING}\"'" --no-print-directory
-C
${FIPTOOLPATH}
939 ${Q}${MAKE} CPPFLAGS
="-DVERSION='\"${VERSION_STRING}\"'" --no-print-directory
-C
${SPTOOLPATH}
942 romlib.bin
: libraries
943 ${Q}${MAKE} PLAT_DIR
=${PLAT_DIR} BUILD_PLAT
=${BUILD_PLAT} ENABLE_BTI
=${ENABLE_BTI} ARM_ARCH_MINOR
=${ARM_ARCH_MINOR} INCLUDES
='${INCLUDES}' DEFINES
='${DEFINES}' --no-print-directory
-C
${ROMLIBPATH} all
947 ${Q}find
${CURDIR} -name
"*.[chsS]" > cscope.files
951 @echo
"usage: ${MAKE} [PLAT=<platform>] [OPTIONS] [TARGET]"
953 @echo
"PLAT is used to specify which platform you wish to build."
954 @echo
"If no platform is specified, PLAT defaults to: ${DEFAULT_PLAT}"
956 @echo
"platform = ${PLATFORM_LIST}"
958 @echo
"Please refer to the User Guide for a list of all supported options."
959 @echo
"Note that the build system doesn't track dependencies for build "
960 @echo
"options. Therefore, if any of the build options are changed "
961 @echo
"from a previous build, a clean build must be performed."
963 @echo
"Supported Targets:"
964 @echo
" all Build all individual bootloader binaries"
965 @echo
" bl1 Build the BL1 binary"
966 @echo
" bl2 Build the BL2 binary"
967 @echo
" bl2u Build the BL2U binary"
968 @echo
" bl31 Build the BL31 binary"
969 @echo
" bl32 Build the BL32 binary. If ARCH=aarch32, then "
970 @echo
" this builds secure payload specified by AARCH32_SP"
971 @echo
" certificates Build the certificates (requires 'GENERATE_COT=1')"
972 @echo
" fip Build the Firmware Image Package (FIP)"
973 @echo
" fwu_fip Build the FWU Firmware Image Package (FIP)"
974 @echo
" checkcodebase Check the coding style of the entire source tree"
975 @echo
" checkpatch Check the coding style on changes in the current"
976 @echo
" branch against BASE_COMMIT (default origin/master)"
977 @echo
" clean Clean the build for the selected platform"
978 @echo
" cscope Generate cscope index"
979 @echo
" distclean Remove all build artifacts for all platforms"
980 @echo
" certtool Build the Certificate generation tool"
981 @echo
" fiptool Build the Firmware Image Package (FIP) creation tool"
982 @echo
" sptool Build the Secure Partition Package creation tool"
983 @echo
" dtbs Build the Device Tree Blobs (if required for the platform)"
985 @echo
"Note: most build targets require PLAT to be set to a specific platform."
987 @echo
"example: build all targets for the FVP platform:"
988 @echo
" CROSS_COMPILE=aarch64-none-elf- make PLAT=fvp all"