]> git.ipfire.org Git - thirdparty/kernel/stable.git/commitdiff
arm64: Enable EFI secret area Securityfs support
authorSuzuki K Poulose <suzuki.poulose@arm.com>
Thu, 18 Sep 2025 12:56:17 +0000 (13:56 +0100)
committerWill Deacon <will@kernel.org>
Fri, 19 Sep 2025 09:12:01 +0000 (10:12 +0100)
Enable EFI COCO secrets support. Provide the ioremap_encrypted() support required
by the driver.

Cc: Sami Mujawar <sami.mujawar@arm.com>
Cc: Will Deacon <will@kernel.org>
Cc: Catalin Marinas <catalin.marinas@arm.com>
Cc: Aneesh Kumar K.V <aneesh.kumar@kernel.org>
Cc: Steven Price <steven.price@arm.com>
Reviewed-by: Gavin Shan <gshan@redhat.com>
Tested-by: Sami Mujawar <sami.mujawar@arm.com>
Signed-off-by: Suzuki K Poulose <suzuki.poulose@arm.com>
Signed-off-by: Will Deacon <will@kernel.org>
arch/arm64/include/asm/io.h
drivers/virt/coco/efi_secret/Kconfig

index 82276282a3c725984643fec873c54afff39f33a5..83e03abbb2ca9217976987aa44ee6c74c7413052 100644 (file)
@@ -274,6 +274,10 @@ int arm64_ioremap_prot_hook_register(const ioremap_prot_hook_t hook);
 #define ioremap_np(addr, size) \
        ioremap_prot((addr), (size), __pgprot(PROT_DEVICE_nGnRnE))
 
+
+#define ioremap_encrypted(addr, size)  \
+       ioremap_prot((addr), (size), PAGE_KERNEL)
+
 /*
  * io{read,write}{16,32,64}be() macros
  */
index 4404d198f3b200bc7084feabe91855e162a18558..94d88e5da70721cbfd9c83a2c37af5439c6cdcd5 100644 (file)
@@ -1,7 +1,7 @@
 # SPDX-License-Identifier: GPL-2.0-only
 config EFI_SECRET
        tristate "EFI secret area securityfs support"
-       depends on EFI && X86_64
+       depends on EFI && (X86_64 || ARM64)
        select EFI_COCO_SECRET
        select SECURITYFS
        help