svn commit: r337953 - in head/sys: conf dev/random sys

Justin Hibbits jhibbits at FreeBSD.org
Fri Aug 17 03:49:09 UTC 2018


Author: jhibbits
Date: Fri Aug 17 03:49:07 2018
New Revision: 337953
URL: https://svnweb.freebsd.org/changeset/base/337953

Log:
  random: Add PowerPC 'darn' instruction entropy source
  
  Summary:
  PowerISA 3.0 adds a 'darn' instruction to "deliver a random number".  This
  driver was modeled after (rather, copied and gutted of) the Ivy Bridge
  rdrand driver.
  
  This uses the "Conditional Random Number" behavior to remove input bias.
  
  From the ISA reference the 'darn' instruction, and the random number
  generator backing it, conforms to the NIST SP800-90B and SP800-90C
  standards, compliant to the extent possible at the time the hardware was
  designed, and guarantees a minimum 0.5 bits of entropy per bit returned.
  
  Reviewed By:	markm, secteam (delphij)
  Approved by:	secteam (delphij)
  Differential Revision: https://reviews.freebsd.org/D16552

Added:
  head/sys/dev/random/darn.c   (contents, props changed)
Modified:
  head/sys/conf/files.powerpc
  head/sys/dev/random/random_harvestq.c
  head/sys/sys/random.h

Modified: head/sys/conf/files.powerpc
==============================================================================
--- head/sys/conf/files.powerpc	Fri Aug 17 03:42:57 2018	(r337952)
+++ head/sys/conf/files.powerpc	Fri Aug 17 03:49:07 2018	(r337953)
@@ -63,6 +63,7 @@ dev/ofw/ofw_standard.c		optional	aim powerpc
 dev/ofw/ofw_subr.c		standard
 dev/powermac_nvram/powermac_nvram.c optional	powermac_nvram powermac
 dev/quicc/quicc_bfe_fdt.c	optional	quicc mpc85xx
+dev/random/darn.c		optional	powerpc64 random
 dev/scc/scc_bfe_macio.c		optional	scc powermac
 dev/sdhci/fsl_sdhci.c		optional	mpc85xx sdhci
 dev/sec/sec.c			optional	sec mpc85xx

Added: head/sys/dev/random/darn.c
==============================================================================
--- /dev/null	00:00:00 1970	(empty, because file is newly added)
+++ head/sys/dev/random/darn.c	Fri Aug 17 03:49:07 2018	(r337953)
@@ -0,0 +1,142 @@
+/*-
+ * Copyright (c) 2018 Justin Hibbits
+ * Copyright (c) 2013 The FreeBSD Foundation
+ * Copyright (c) 2013 David E. O'Brien <obrien at NUXI.org>
+ * Copyright (c) 2012 Konstantin Belousov <kib at FreeBSD.org>
+ * All rights reserved.
+ *
+ * Portions of this software were developed by Konstantin Belousov
+ * under sponsorship from the FreeBSD Foundation.
+ *
+ * Redistribution and use in source and binary forms, with or without
+ * modification, are permitted provided that the following conditions
+ * are met:
+ * 1. Redistributions of source code must retain the above copyright
+ *    notice, this list of conditions and the following disclaimer
+ *    in this position and unchanged.
+ * 2. Redistributions in binary form must reproduce the above copyright
+ *    notice, this list of conditions and the following disclaimer in the
+ *    documentation and/or other materials provided with the distribution.
+ *
+ * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
+ * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
+ * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
+ * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
+ * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
+ * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
+ * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
+ * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
+ * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
+ * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
+ *
+ */
+
+#include <sys/cdefs.h>
+__FBSDID("$FreeBSD$");
+
+#include <sys/param.h>
+#include <sys/kernel.h>
+#include <sys/conf.h>
+#include <sys/lock.h>
+#include <sys/malloc.h>
+#include <sys/module.h>
+#include <sys/random.h>
+#include <sys/systm.h>
+
+#include <machine/cpu.h>
+#include <machine/md_var.h>
+
+#include <dev/random/randomdev.h>
+
+/*
+ * Power ISA 3.0 adds a "darn" instruction (Deliver A Random Number).  The RNG
+ * backing this instruction conforms to NIST SP800-90B and SP800-90C at the
+ * point of hardware design, and provides a minimum of 0.5 bits of entropy per
+ * bit.
+ */
+
+#define	RETRY_COUNT	10
+
+static u_int random_darn_read(void *, u_int);
+
+static struct random_source random_darn = {
+	.rs_ident = "PowerISA DARN random number generator",
+	.rs_source = RANDOM_PURE_DARN,
+	.rs_read = random_darn_read
+};
+
+static inline int
+darn_rng_store(u_long *buf)
+{
+	u_long rndval;
+	int retry;
+
+	for (retry = RETRY_COUNT; retry > 0; --retry) {
+		/* "DARN %rN, 1" instruction */
+		/*
+		 * Arguments for DARN: rN and "L", where "L" can be one of:
+		 * 0 - 32-bit conditional random number
+		 * 1 - Conditional random number (conditioned to remove bias)
+		 * 2 - Raw random number	 (unprocessed, may include bias)
+		 * 3 - Reserved
+		 */
+	    	__asm __volatile(".long 0x7c0105e6 | (%0 << 21)" :
+	    	    "+r"(rndval));
+		if (rndval != ~0)
+			break;
+	}
+
+	*buf = rndval;
+	return (retry);
+}
+
+/* It is required that buf length is a multiple of sizeof(u_long). */
+static u_int
+random_darn_read(void *buf, u_int c)
+{
+	u_long *b, rndval;
+	u_int count;
+
+	KASSERT(c % sizeof(*b) == 0, ("partial read %d", c));
+	b = buf;
+	for (count = c; count > 0; count -= sizeof(*b)) {
+		if (darn_rng_store(&rndval) == 0)
+			break;
+		*b++ = rndval;
+	}
+	return (c - count);
+}
+
+static int
+darn_modevent(module_t mod, int type, void *unused)
+{
+	int error = 0;
+
+	switch (type) {
+	case MOD_LOAD:
+		if (cpu_features2 & PPC_FEATURE2_DARN) {
+			random_source_register(&random_darn);
+			printf("random: fast provider: \"%s\"\n", random_darn.rs_ident);
+		}
+		break;
+
+	case MOD_UNLOAD:
+		if (cpu_features2 & PPC_FEATURE2_DARN)
+			random_source_deregister(&random_darn);
+		break;
+
+	case MOD_SHUTDOWN:
+		break;
+
+	default:
+		error = EOPNOTSUPP;
+		break;
+
+	}
+
+	return (error);
+}
+
+DEV_MODULE(darn, darn_modevent, NULL);
+MODULE_VERSION(darn, 1);
+MODULE_DEPEND(darn, random_device, 1, 1, 1);

Modified: head/sys/dev/random/random_harvestq.c
==============================================================================
--- head/sys/dev/random/random_harvestq.c	Fri Aug 17 03:42:57 2018	(r337952)
+++ head/sys/dev/random/random_harvestq.c	Fri Aug 17 03:49:07 2018	(r337953)
@@ -307,6 +307,7 @@ static const char *random_source_descr[ENTROPYSOURCE] 
 	[RANDOM_PURE_VIRTIO] = "PURE_VIRTIO",
 	[RANDOM_PURE_BROADCOM] = "PURE_BROADCOM",
 	[RANDOM_PURE_CCP] = "PURE_CCP",
+	[RANDOM_PURE_DARN] = "PURE_DARN",
 	/* "ENTROPYSOURCE" */
 };
 

Modified: head/sys/sys/random.h
==============================================================================
--- head/sys/sys/random.h	Fri Aug 17 03:42:57 2018	(r337952)
+++ head/sys/sys/random.h	Fri Aug 17 03:49:07 2018	(r337953)
@@ -95,6 +95,7 @@ enum random_entropy_source {
 	RANDOM_PURE_VIRTIO,
 	RANDOM_PURE_BROADCOM,
 	RANDOM_PURE_CCP,
+	RANDOM_PURE_DARN,
 	ENTROPYSOURCE
 };
 


More information about the svn-src-head mailing list