From owner-svn-src-all@freebsd.org Fri Aug 17 03:49:08 2018 Return-Path: Delivered-To: svn-src-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id BA95D1080B4B; Fri, 17 Aug 2018 03:49:08 +0000 (UTC) (envelope-from jhibbits@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 624BB8A386; Fri, 17 Aug 2018 03:49:08 +0000 (UTC) (envelope-from jhibbits@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 3E0392302A; Fri, 17 Aug 2018 03:49:08 +0000 (UTC) (envelope-from jhibbits@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id w7H3n8k0031457; Fri, 17 Aug 2018 03:49:08 GMT (envelope-from jhibbits@FreeBSD.org) Received: (from jhibbits@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id w7H3n7b5031452; Fri, 17 Aug 2018 03:49:07 GMT (envelope-from jhibbits@FreeBSD.org) Message-Id: <201808170349.w7H3n7b5031452@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: jhibbits set sender to jhibbits@FreeBSD.org using -f From: Justin Hibbits Date: Fri, 17 Aug 2018 03:49:07 +0000 (UTC) To: src-committers@freebsd.org, svn-src-all@freebsd.org, svn-src-head@freebsd.org Subject: svn commit: r337953 - in head/sys: conf dev/random sys X-SVN-Group: head X-SVN-Commit-Author: jhibbits X-SVN-Commit-Paths: in head/sys: conf dev/random sys X-SVN-Commit-Revision: 337953 X-SVN-Commit-Repository: base MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-BeenThere: svn-src-all@freebsd.org X-Mailman-Version: 2.1.27 Precedence: list List-Id: "SVN commit messages for the entire src tree \(except for " user" and " projects" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 17 Aug 2018 03:49:09 -0000 Author: jhibbits Date: Fri Aug 17 03:49:07 2018 New Revision: 337953 URL: https://svnweb.freebsd.org/changeset/base/337953 Log: random: Add PowerPC 'darn' instruction entropy source Summary: PowerISA 3.0 adds a 'darn' instruction to "deliver a random number". This driver was modeled after (rather, copied and gutted of) the Ivy Bridge rdrand driver. This uses the "Conditional Random Number" behavior to remove input bias. From the ISA reference the 'darn' instruction, and the random number generator backing it, conforms to the NIST SP800-90B and SP800-90C standards, compliant to the extent possible at the time the hardware was designed, and guarantees a minimum 0.5 bits of entropy per bit returned. Reviewed By: markm, secteam (delphij) Approved by: secteam (delphij) Differential Revision: https://reviews.freebsd.org/D16552 Added: head/sys/dev/random/darn.c (contents, props changed) Modified: head/sys/conf/files.powerpc head/sys/dev/random/random_harvestq.c head/sys/sys/random.h Modified: head/sys/conf/files.powerpc ============================================================================== --- head/sys/conf/files.powerpc Fri Aug 17 03:42:57 2018 (r337952) +++ head/sys/conf/files.powerpc Fri Aug 17 03:49:07 2018 (r337953) @@ -63,6 +63,7 @@ dev/ofw/ofw_standard.c optional aim powerpc dev/ofw/ofw_subr.c standard dev/powermac_nvram/powermac_nvram.c optional powermac_nvram powermac dev/quicc/quicc_bfe_fdt.c optional quicc mpc85xx +dev/random/darn.c optional powerpc64 random dev/scc/scc_bfe_macio.c optional scc powermac dev/sdhci/fsl_sdhci.c optional mpc85xx sdhci dev/sec/sec.c optional sec mpc85xx Added: head/sys/dev/random/darn.c ============================================================================== --- /dev/null 00:00:00 1970 (empty, because file is newly added) +++ head/sys/dev/random/darn.c Fri Aug 17 03:49:07 2018 (r337953) @@ -0,0 +1,142 @@ +/*- + * Copyright (c) 2018 Justin Hibbits + * Copyright (c) 2013 The FreeBSD Foundation + * Copyright (c) 2013 David E. O'Brien + * Copyright (c) 2012 Konstantin Belousov + * All rights reserved. + * + * Portions of this software were developed by Konstantin Belousov + * under sponsorship from the FreeBSD Foundation. + * + * Redistribution and use in source and binary forms, with or without + * modification, are permitted provided that the following conditions + * are met: + * 1. Redistributions of source code must retain the above copyright + * notice, this list of conditions and the following disclaimer + * in this position and unchanged. + * 2. Redistributions in binary form must reproduce the above copyright + * notice, this list of conditions and the following disclaimer in the + * documentation and/or other materials provided with the distribution. + * + * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR + * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES + * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. + * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, + * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT + * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, + * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY + * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT + * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF + * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. + * + */ + +#include +__FBSDID("$FreeBSD$"); + +#include +#include +#include +#include +#include +#include +#include +#include + +#include +#include + +#include + +/* + * Power ISA 3.0 adds a "darn" instruction (Deliver A Random Number). The RNG + * backing this instruction conforms to NIST SP800-90B and SP800-90C at the + * point of hardware design, and provides a minimum of 0.5 bits of entropy per + * bit. + */ + +#define RETRY_COUNT 10 + +static u_int random_darn_read(void *, u_int); + +static struct random_source random_darn = { + .rs_ident = "PowerISA DARN random number generator", + .rs_source = RANDOM_PURE_DARN, + .rs_read = random_darn_read +}; + +static inline int +darn_rng_store(u_long *buf) +{ + u_long rndval; + int retry; + + for (retry = RETRY_COUNT; retry > 0; --retry) { + /* "DARN %rN, 1" instruction */ + /* + * Arguments for DARN: rN and "L", where "L" can be one of: + * 0 - 32-bit conditional random number + * 1 - Conditional random number (conditioned to remove bias) + * 2 - Raw random number (unprocessed, may include bias) + * 3 - Reserved + */ + __asm __volatile(".long 0x7c0105e6 | (%0 << 21)" : + "+r"(rndval)); + if (rndval != ~0) + break; + } + + *buf = rndval; + return (retry); +} + +/* It is required that buf length is a multiple of sizeof(u_long). */ +static u_int +random_darn_read(void *buf, u_int c) +{ + u_long *b, rndval; + u_int count; + + KASSERT(c % sizeof(*b) == 0, ("partial read %d", c)); + b = buf; + for (count = c; count > 0; count -= sizeof(*b)) { + if (darn_rng_store(&rndval) == 0) + break; + *b++ = rndval; + } + return (c - count); +} + +static int +darn_modevent(module_t mod, int type, void *unused) +{ + int error = 0; + + switch (type) { + case MOD_LOAD: + if (cpu_features2 & PPC_FEATURE2_DARN) { + random_source_register(&random_darn); + printf("random: fast provider: \"%s\"\n", random_darn.rs_ident); + } + break; + + case MOD_UNLOAD: + if (cpu_features2 & PPC_FEATURE2_DARN) + random_source_deregister(&random_darn); + break; + + case MOD_SHUTDOWN: + break; + + default: + error = EOPNOTSUPP; + break; + + } + + return (error); +} + +DEV_MODULE(darn, darn_modevent, NULL); +MODULE_VERSION(darn, 1); +MODULE_DEPEND(darn, random_device, 1, 1, 1); Modified: head/sys/dev/random/random_harvestq.c ============================================================================== --- head/sys/dev/random/random_harvestq.c Fri Aug 17 03:42:57 2018 (r337952) +++ head/sys/dev/random/random_harvestq.c Fri Aug 17 03:49:07 2018 (r337953) @@ -307,6 +307,7 @@ static const char *random_source_descr[ENTROPYSOURCE] [RANDOM_PURE_VIRTIO] = "PURE_VIRTIO", [RANDOM_PURE_BROADCOM] = "PURE_BROADCOM", [RANDOM_PURE_CCP] = "PURE_CCP", + [RANDOM_PURE_DARN] = "PURE_DARN", /* "ENTROPYSOURCE" */ }; Modified: head/sys/sys/random.h ============================================================================== --- head/sys/sys/random.h Fri Aug 17 03:42:57 2018 (r337952) +++ head/sys/sys/random.h Fri Aug 17 03:49:07 2018 (r337953) @@ -95,6 +95,7 @@ enum random_entropy_source { RANDOM_PURE_VIRTIO, RANDOM_PURE_BROADCOM, RANDOM_PURE_CCP, + RANDOM_PURE_DARN, ENTROPYSOURCE };