Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 1 | /* |
| 2 | ** |
| 3 | ** Copyright 2017, The Android Open Source Project |
| 4 | ** |
| 5 | ** Licensed under the Apache License, Version 2.0 (the "License"); |
| 6 | ** you may not use this file except in compliance with the License. |
| 7 | ** You may obtain a copy of the License at |
| 8 | ** |
| 9 | ** http://www.apache.org/licenses/LICENSE-2.0 |
| 10 | ** |
| 11 | ** Unless required by applicable law or agreed to in writing, software |
| 12 | ** distributed under the License is distributed on an "AS IS" BASIS, |
| 13 | ** WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 14 | ** See the License for the specific language governing permissions and |
| 15 | ** limitations under the License. |
| 16 | */ |
| 17 | |
Shawn Willden | efd0673 | 2017-11-30 19:34:16 -0700 | [diff] [blame] | 18 | #ifndef HIDL_android_hardware_keymaster_V4_0_AndroidKeymaster4Device_H_ |
| 19 | #define HIDL_android_hardware_keymaster_V4_0_AndroidKeymaster4Device_H_ |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 20 | |
Shawn Willden | efd0673 | 2017-11-30 19:34:16 -0700 | [diff] [blame] | 21 | #include <android/hardware/keymaster/4.0/IKeymasterDevice.h> |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 22 | |
Shawn Willden | da49575 | 2020-01-15 17:46:30 -0700 | [diff] [blame] | 23 | #include <hardware/keymaster_defs.h> |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 24 | #include <hidl/Status.h> |
Shawn Willden | 6daf984 | 2020-11-19 10:11:47 -0700 | [diff] [blame] | 25 | #include <keymaster/km_version.h> |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 26 | |
| 27 | namespace keymaster { |
| 28 | class AndroidKeymaster; |
| 29 | class KeymasterContext; |
| 30 | |
| 31 | namespace V4_0 { |
| 32 | namespace ng { |
| 33 | |
| 34 | using ::android::sp; |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 35 | using ::android::hardware::hidl_vec; |
| 36 | using ::android::hardware::Return; |
| 37 | using ::android::hardware::Void; |
Shawn Willden | 8123da8 | 2017-10-31 09:01:26 -0600 | [diff] [blame] | 38 | using ::android::hardware::keymaster::V4_0::ErrorCode; |
Shawn Willden | 18534d5 | 2018-01-07 21:16:40 -0700 | [diff] [blame] | 39 | using ::android::hardware::keymaster::V4_0::HardwareAuthenticatorType; |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 40 | using ::android::hardware::keymaster::V4_0::HardwareAuthToken; |
Shawn Willden | 8123da8 | 2017-10-31 09:01:26 -0600 | [diff] [blame] | 41 | using ::android::hardware::keymaster::V4_0::HmacSharingParameters; |
Shawn Willden | efd0673 | 2017-11-30 19:34:16 -0700 | [diff] [blame] | 42 | using ::android::hardware::keymaster::V4_0::IKeymasterDevice; |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 43 | using ::android::hardware::keymaster::V4_0::KeyCharacteristics; |
Shawn Willden | 18534d5 | 2018-01-07 21:16:40 -0700 | [diff] [blame] | 44 | using ::android::hardware::keymaster::V4_0::KeyFormat; |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 45 | using ::android::hardware::keymaster::V4_0::KeyParameter; |
| 46 | using ::android::hardware::keymaster::V4_0::KeyPurpose; |
Janis Danisevskis | 265f912 | 2018-01-02 17:02:21 -0800 | [diff] [blame] | 47 | using ::android::hardware::keymaster::V4_0::SecurityLevel; |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 48 | using ::android::hardware::keymaster::V4_0::Tag; |
Shawn Willden | 8123da8 | 2017-10-31 09:01:26 -0600 | [diff] [blame] | 49 | using ::android::hardware::keymaster::V4_0::VerificationToken; |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 50 | |
Shawn Willden | efd0673 | 2017-11-30 19:34:16 -0700 | [diff] [blame] | 51 | class AndroidKeymaster4Device : public IKeymasterDevice { |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 52 | public: |
Shawn Willden | 6daf984 | 2020-11-19 10:11:47 -0700 | [diff] [blame] | 53 | explicit AndroidKeymaster4Device(SecurityLevel securityLevel) |
| 54 | : AndroidKeymaster4Device(KmVersion::KEYMASTER_4, securityLevel) {} |
Shawn Willden | efd0673 | 2017-11-30 19:34:16 -0700 | [diff] [blame] | 55 | virtual ~AndroidKeymaster4Device(); |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 56 | |
Shawn Willden | 8123da8 | 2017-10-31 09:01:26 -0600 | [diff] [blame] | 57 | Return<void> getHardwareInfo(getHardwareInfo_cb _hidl_cb) override; |
| 58 | Return<void> getHmacSharingParameters(getHmacSharingParameters_cb _hidl_cb) override; |
| 59 | Return<void> computeSharedHmac(const hidl_vec<HmacSharingParameters>& params, |
| 60 | computeSharedHmac_cb) override; |
| 61 | Return<void> verifyAuthorization(uint64_t challenge, |
| 62 | const hidl_vec<KeyParameter>& parametersToVerify, |
| 63 | const HardwareAuthToken& authToken, |
| 64 | verifyAuthorization_cb _hidl_cb) override; |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 65 | Return<ErrorCode> addRngEntropy(const hidl_vec<uint8_t>& data) override; |
| 66 | Return<void> generateKey(const hidl_vec<KeyParameter>& keyParams, |
| 67 | generateKey_cb _hidl_cb) override; |
| 68 | Return<void> getKeyCharacteristics(const hidl_vec<uint8_t>& keyBlob, |
| 69 | const hidl_vec<uint8_t>& clientId, |
| 70 | const hidl_vec<uint8_t>& appData, |
| 71 | getKeyCharacteristics_cb _hidl_cb) override; |
| 72 | Return<void> importKey(const hidl_vec<KeyParameter>& params, KeyFormat keyFormat, |
| 73 | const hidl_vec<uint8_t>& keyData, importKey_cb _hidl_cb) override; |
Shawn Willden | 8123da8 | 2017-10-31 09:01:26 -0600 | [diff] [blame] | 74 | Return<void> importWrappedKey(const hidl_vec<uint8_t>& wrappedKeyData, |
| 75 | const hidl_vec<uint8_t>& wrappingKeyBlob, |
| 76 | const hidl_vec<uint8_t>& maskingKey, |
Shawn Willden | 3c665a2 | 2018-01-19 13:32:42 -0700 | [diff] [blame] | 77 | const hidl_vec<KeyParameter>& unwrappingParams, |
| 78 | uint64_t passwordSid, uint64_t biometricSid, |
Shawn Willden | 8123da8 | 2017-10-31 09:01:26 -0600 | [diff] [blame] | 79 | importWrappedKey_cb _hidl_cb) override; |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 80 | Return<void> exportKey(KeyFormat exportFormat, const hidl_vec<uint8_t>& keyBlob, |
| 81 | const hidl_vec<uint8_t>& clientId, const hidl_vec<uint8_t>& appData, |
| 82 | exportKey_cb _hidl_cb) override; |
| 83 | Return<void> attestKey(const hidl_vec<uint8_t>& keyToAttest, |
| 84 | const hidl_vec<KeyParameter>& attestParams, |
| 85 | attestKey_cb _hidl_cb) override; |
| 86 | Return<void> upgradeKey(const hidl_vec<uint8_t>& keyBlobToUpgrade, |
| 87 | const hidl_vec<KeyParameter>& upgradeParams, |
| 88 | upgradeKey_cb _hidl_cb) override; |
| 89 | Return<ErrorCode> deleteKey(const hidl_vec<uint8_t>& keyBlob) override; |
| 90 | Return<ErrorCode> deleteAllKeys() override; |
| 91 | Return<ErrorCode> destroyAttestationIds() override; |
| 92 | Return<void> begin(KeyPurpose purpose, const hidl_vec<uint8_t>& key, |
| 93 | const hidl_vec<KeyParameter>& inParams, const HardwareAuthToken& authToken, |
| 94 | begin_cb _hidl_cb) override; |
| 95 | Return<void> update(uint64_t operationHandle, const hidl_vec<KeyParameter>& inParams, |
| 96 | const hidl_vec<uint8_t>& input, const HardwareAuthToken& authToken, |
Shawn Willden | 8123da8 | 2017-10-31 09:01:26 -0600 | [diff] [blame] | 97 | const VerificationToken& verificationToken, update_cb _hidl_cb) override; |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 98 | Return<void> finish(uint64_t operationHandle, const hidl_vec<KeyParameter>& inParams, |
| 99 | const hidl_vec<uint8_t>& input, const hidl_vec<uint8_t>& signature, |
Shawn Willden | 8123da8 | 2017-10-31 09:01:26 -0600 | [diff] [blame] | 100 | const HardwareAuthToken& authToken, |
| 101 | const VerificationToken& verificationToken, finish_cb _hidl_cb) override; |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 102 | Return<ErrorCode> abort(uint64_t operationHandle) override; |
| 103 | |
Shawn Willden | da49575 | 2020-01-15 17:46:30 -0700 | [diff] [blame] | 104 | protected: |
Shawn Willden | 6daf984 | 2020-11-19 10:11:47 -0700 | [diff] [blame] | 105 | AndroidKeymaster4Device(::keymaster::KmVersion version, SecurityLevel securityLevel); |
| 106 | |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 107 | std::unique_ptr<::keymaster::AndroidKeymaster> impl_; |
Janis Danisevskis | 265f912 | 2018-01-02 17:02:21 -0800 | [diff] [blame] | 108 | SecurityLevel securityLevel_; |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 109 | }; |
| 110 | |
Shawn Willden | da49575 | 2020-01-15 17:46:30 -0700 | [diff] [blame] | 111 | // Convert HIDL key parametes to old keymaster param set. Note that this does *not* copy the blobs |
| 112 | // from keyParams, only pointers to them. The keyParams instance retains ownership and must |
| 113 | // continue to exist. |
| 114 | keymaster_key_param_set_t hidlKeyParams2Km(const hidl_vec<KeyParameter>& keyParams); |
| 115 | |
Janis Danisevskis | 265f912 | 2018-01-02 17:02:21 -0800 | [diff] [blame] | 116 | IKeymasterDevice* CreateKeymasterDevice(SecurityLevel securityLevel); |
Shawn Willden | 9e14957 | 2017-10-30 16:08:21 -0600 | [diff] [blame] | 117 | |
| 118 | } // namespace ng |
| 119 | } // namespace V4_0 |
| 120 | } // namespace keymaster |
| 121 | |
Shawn Willden | efd0673 | 2017-11-30 19:34:16 -0700 | [diff] [blame] | 122 | #endif // HIDL_android_hardware_keymaster_V4_0_AndroidKeymaster4Device_H_ |