2011-09-02 09:49:32 +02:00
|
|
|
## @file
|
2014-08-28 07:31:09 +02:00
|
|
|
# Provides SMM authenticated variable service
|
2011-09-02 09:49:32 +02:00
|
|
|
#
|
|
|
|
# This module installs SMM variable protocol into SMM protocol database,
|
2011-10-28 11:55:09 +02:00
|
|
|
# which can be used by SMM driver, and installs SMM variable protocol
|
2011-09-02 09:49:32 +02:00
|
|
|
# into BS protocol database, which can be used to notify the SMM Runtime
|
|
|
|
# Dxe driver that the SMM variable service is ready.
|
2011-10-28 11:55:09 +02:00
|
|
|
# This module should be used with SMM Runtime DXE module together. The
|
2014-08-28 07:31:09 +02:00
|
|
|
# SMM Runtime DXE module installs variable arch protocol and variable
|
2011-09-02 09:49:32 +02:00
|
|
|
# write arch protocol based on SMM variable module.
|
|
|
|
#
|
2012-06-12 10:28:43 +02:00
|
|
|
# Caution: This module requires additional review when modified.
|
|
|
|
# This driver will have external input - variable data and communicate buffer in SMM mode.
|
2014-08-28 07:31:09 +02:00
|
|
|
# This external input must be validated carefully to avoid security issues such as
|
|
|
|
# buffer overflow or integer overflow.
|
2014-10-22 09:30:22 +02:00
|
|
|
# The whole SMM authentication variable design relies on the integrity of flash part and SMM.
|
|
|
|
# which is assumed to be protected by platform. All variable code and metadata in flash/SMM Memory
|
|
|
|
# may not be modified without authorization. If platform fails to protect these resources,
|
|
|
|
# the authentication service provided in this driver will be broken, and the behavior is undefined.
|
2012-06-12 10:28:43 +02:00
|
|
|
#
|
2015-01-05 04:42:17 +01:00
|
|
|
# Copyright (c) 2010 - 2015, Intel Corporation. All rights reserved.<BR>
|
2011-09-02 09:49:32 +02:00
|
|
|
# This program and the accompanying materials
|
|
|
|
# are licensed and made available under the terms and conditions of the BSD License
|
|
|
|
# which accompanies this distribution. The full text of the license may be found at
|
|
|
|
# http://opensource.org/licenses/bsd-license.php
|
|
|
|
# THE PROGRAM IS DISTRIBUTED UNDER THE BSD LICENSE ON AN "AS IS" BASIS,
|
|
|
|
# WITHOUT WARRANTIES OR REPRESENTATIONS OF ANY KIND, EITHER EXPRESS OR IMPLIED.
|
|
|
|
#
|
|
|
|
##
|
|
|
|
|
|
|
|
[Defines]
|
|
|
|
INF_VERSION = 0x00010005
|
2014-01-24 10:32:30 +01:00
|
|
|
BASE_NAME = VariableAuthSmm
|
2014-08-28 07:31:09 +02:00
|
|
|
MODULE_UNI_FILE = VariableAuthSmm.uni
|
2011-09-02 09:49:32 +02:00
|
|
|
FILE_GUID = D34BDC5E-968A-40f5-A48C-E594F45AE211
|
|
|
|
MODULE_TYPE = DXE_SMM_DRIVER
|
|
|
|
VERSION_STRING = 1.0
|
|
|
|
PI_SPECIFICATION_VERSION = 0x0001000A
|
|
|
|
ENTRY_POINT = VariableServiceInitialize
|
|
|
|
|
|
|
|
#
|
|
|
|
# The following information is for reference only and not required by the build tools.
|
|
|
|
#
|
|
|
|
# VALID_ARCHITECTURES = IA32 X64
|
|
|
|
#
|
|
|
|
|
|
|
|
|
|
|
|
[Sources]
|
|
|
|
Reclaim.c
|
|
|
|
Variable.c
|
|
|
|
VariableSmm.c
|
|
|
|
AuthService.c
|
2015-01-05 04:42:17 +01:00
|
|
|
VarCheck.c
|
2011-09-02 09:49:32 +02:00
|
|
|
Variable.h
|
|
|
|
AuthService.h
|
|
|
|
|
|
|
|
[Packages]
|
|
|
|
MdePkg/MdePkg.dec
|
|
|
|
MdeModulePkg/MdeModulePkg.dec
|
|
|
|
CryptoPkg/CryptoPkg.dec
|
|
|
|
SecurityPkg/SecurityPkg.dec
|
|
|
|
|
|
|
|
[LibraryClasses]
|
|
|
|
UefiDriverEntryPoint
|
|
|
|
MemoryAllocationLib
|
|
|
|
BaseLib
|
|
|
|
SynchronizationLib
|
|
|
|
UefiLib
|
|
|
|
SmmServicesTableLib
|
|
|
|
BaseMemoryLib
|
|
|
|
DebugLib
|
|
|
|
DxeServicesTableLib
|
|
|
|
BaseCryptLib
|
2011-10-28 11:55:09 +02:00
|
|
|
PlatformSecureLib
|
2011-10-19 14:40:52 +02:00
|
|
|
HobLib
|
2015-01-05 04:42:17 +01:00
|
|
|
PcdLib
|
|
|
|
DevicePathLib
|
2011-09-02 09:49:32 +02:00
|
|
|
|
|
|
|
[Protocols]
|
2014-08-28 07:31:09 +02:00
|
|
|
gEfiSmmFirmwareVolumeBlockProtocolGuid ## CONSUMES
|
|
|
|
gEfiSmmAccess2ProtocolGuid ## CONSUMES
|
|
|
|
|
|
|
|
## PRODUCES
|
|
|
|
## UNDEFINED # SmiHandlerRegister
|
|
|
|
gEfiSmmVariableProtocolGuid
|
|
|
|
|
|
|
|
## CONSUMES
|
|
|
|
## NOTIFY
|
|
|
|
gEfiSmmFaultTolerantWriteProtocolGuid
|
2015-01-05 04:42:17 +01:00
|
|
|
gEfiSmmEndOfDxeProtocolGuid ## NOTIFY
|
|
|
|
gEdkiiSmmVarCheckProtocolGuid ## PRODUCES
|
2011-09-02 09:49:32 +02:00
|
|
|
|
|
|
|
[Guids]
|
2014-08-28 07:31:09 +02:00
|
|
|
## PRODUCES ## GUID # Variable store header
|
|
|
|
## CONSUMES ## GUID # Variable store header
|
|
|
|
## SOMETIMES_CONSUMES ## HOB
|
|
|
|
gEfiAuthenticatedVariableGuid
|
|
|
|
|
|
|
|
## SOMETIMES_CONSUMES ## Variable:L"PlatformLang"
|
|
|
|
## SOMETIMES_PRODUCES ## Variable:L"PlatformLang"
|
|
|
|
## SOMETIMES_CONSUMES ## Variable:L"Lang"
|
|
|
|
## SOMETIMES_PRODUCES ## Variable:L"Lang"
|
|
|
|
## SOMETIMES_CONSUMES ## Variable:L"HwErrRecSupport"
|
|
|
|
## CONSUMES ## Variable:L"SetupMode"
|
|
|
|
## PRODUCES ## Variable:L"SetupMode"
|
|
|
|
## SOMETIMES_CONSUMES ## Variable:L"PK"
|
|
|
|
## SOMETIMES_CONSUMES ## Variable:L"KEK"
|
|
|
|
## CONSUMES ## Variable:L"SecureBoot"
|
|
|
|
## PRODUCES ## Variable:L"SecureBoot"
|
|
|
|
## CONSUMES ## Variable:L"SignatureSupport"
|
|
|
|
## PRODUCES ## Variable:L"SignatureSupport"
|
|
|
|
## PRODUCES ## Variable:L"VendorKeys"
|
|
|
|
gEfiGlobalVariableGuid
|
|
|
|
|
|
|
|
## SOMETIMES_CONSUMES ## Variable:L"DB"
|
|
|
|
## SOMETIMES_CONSUMES ## Variable:L"DBX"
|
2011-09-02 09:49:32 +02:00
|
|
|
gEfiImageSecurityDatabaseGuid
|
2014-08-28 07:31:09 +02:00
|
|
|
|
|
|
|
## CONSUMES ## Variable:L"SecureBootEnable"
|
|
|
|
## PRODUCES ## Variable:L"SecureBootEnable"
|
2011-10-28 05:46:20 +02:00
|
|
|
gEfiSecureBootEnableDisableGuid
|
2014-08-28 07:31:09 +02:00
|
|
|
|
|
|
|
## CONSUMES ## Variable:L"CustomMode"
|
|
|
|
## PRODUCES ## Variable:L"CustomMode"
|
2012-03-27 10:17:23 +02:00
|
|
|
gEfiCustomModeEnableGuid
|
2014-08-28 07:31:09 +02:00
|
|
|
|
|
|
|
## CONSUMES ## Variable:L"certdb"
|
|
|
|
## PRODUCES ## Variable:L"certdb"
|
2012-03-31 06:42:20 +02:00
|
|
|
gEfiCertDbGuid
|
2011-09-02 09:49:32 +02:00
|
|
|
|
2014-08-28 07:31:09 +02:00
|
|
|
## CONSUMES ## Variable:L"VendorKeysNv"
|
|
|
|
## PRODUCES ## Variable:L"VendorKeysNv"
|
|
|
|
gEfiVendorKeysNvGuid
|
|
|
|
|
|
|
|
gSmmVariableWriteGuid ## PRODUCES ## GUID # Install protocol
|
|
|
|
gEfiCertTypeRsa2048Sha256Guid ## SOMETIMES_CONSUMES ## GUID # Unique ID for the format of the CertData.
|
|
|
|
gEfiCertPkcs7Guid ## SOMETIMES_CONSUMES ## GUID # Unique ID for the format of the CertData.
|
|
|
|
gEfiCertX509Guid ## SOMETIMES_CONSUMES ## GUID # Unique ID for the type of the signature.
|
|
|
|
gEfiSystemNvDataFvGuid ## CONSUMES ## GUID
|
|
|
|
gEfiHardwareErrorVariableGuid ## SOMETIMES_CONSUMES ## Variable:L"HwErrRec####"
|
|
|
|
gEdkiiFaultTolerantWriteGuid ## SOMETIMES_CONSUMES ## HOB
|
2015-01-27 09:44:10 +01:00
|
|
|
gEdkiiVarErrorFlagGuid ## CONSUMES ## GUID
|
|
|
|
|
2011-09-02 09:49:32 +02:00
|
|
|
[Pcd]
|
2014-08-28 07:31:09 +02:00
|
|
|
gEfiMdeModulePkgTokenSpaceGuid.PcdFlashNvStorageVariableSize ## CONSUMES
|
|
|
|
gEfiMdeModulePkgTokenSpaceGuid.PcdFlashNvStorageVariableBase ## SOMETIMES_CONSUMES
|
|
|
|
gEfiMdeModulePkgTokenSpaceGuid.PcdFlashNvStorageVariableBase64 ## CONSUMES
|
|
|
|
gEfiMdeModulePkgTokenSpaceGuid.PcdMaxVariableSize ## CONSUMES
|
|
|
|
gEfiMdeModulePkgTokenSpaceGuid.PcdMaxHardwareErrorVariableSize ## CONSUMES
|
|
|
|
gEfiMdeModulePkgTokenSpaceGuid.PcdVariableStoreSize ## CONSUMES
|
|
|
|
gEfiMdeModulePkgTokenSpaceGuid.PcdHwErrStorageSize ## CONSUMES
|
2015-01-27 09:44:10 +01:00
|
|
|
gEfiMdeModulePkgTokenSpaceGuid.PcdMaxUserNvVariableSpaceSize ## CONSUMES
|
|
|
|
gEfiMdeModulePkgTokenSpaceGuid.PcdBoottimeReservedNvVariableSpaceSize ## CONSUMES
|
2015-02-02 10:31:08 +01:00
|
|
|
gEfiMdeModulePkgTokenSpaceGuid.PcdReclaimVariableSpaceAtEndOfDxe ## CONSUMES
|
2015-01-27 09:44:10 +01:00
|
|
|
|
2011-09-02 09:49:32 +02:00
|
|
|
[FeaturePcd]
|
2014-08-28 07:31:09 +02:00
|
|
|
gEfiMdeModulePkgTokenSpaceGuid.PcdVariableCollectStatistics ## CONSUMES # statistic the information of variable.
|
|
|
|
gEfiMdePkgTokenSpaceGuid.PcdUefiVariableDefaultLangDeprecate ## CONSUMES # Auto update PlatformLang/Lang
|
2011-09-02 09:49:32 +02:00
|
|
|
|
|
|
|
[Depex]
|
2011-10-28 11:55:09 +02:00
|
|
|
TRUE
|
2014-08-28 07:31:09 +02:00
|
|
|
|
|
|
|
[UserExtensions.TianoCore."ExtraFiles"]
|
|
|
|
VariableSmmExtra.uni
|