]> git.proxmox.com Git - mirror_edk2.git/blame - NetworkPkg/TlsDxe/TlsDriver.c
NetworkPkg: Replace BSD License with BSD+Patent License
[mirror_edk2.git] / NetworkPkg / TlsDxe / TlsDriver.c
CommitLineData
7618784b
HW
1/** @file\r
2 The Driver Binding and Service Binding Protocol for TlsDxe driver.\r
3\r
4 Copyright (c) 2016, Intel Corporation. All rights reserved.<BR>\r
5\r
ecf98fbc 6 SPDX-License-Identifier: BSD-2-Clause-Patent\r
7618784b
HW
7\r
8**/\r
9\r
10#include "TlsImpl.h"\r
11\r
12EFI_SERVICE_BINDING_PROTOCOL mTlsServiceBinding = {\r
13 TlsServiceBindingCreateChild,\r
14 TlsServiceBindingDestroyChild\r
15};\r
16\r
17/**\r
18 Release all the resources used by the TLS instance.\r
19\r
20 @param[in] Instance The TLS instance data.\r
21\r
22**/\r
23VOID\r
24TlsCleanInstance (\r
25 IN TLS_INSTANCE *Instance\r
26 )\r
27{\r
28 if (Instance != NULL) {\r
29 if (Instance->TlsConn != NULL) {\r
30 TlsFree (Instance->TlsConn);\r
31 }\r
32\r
33 FreePool (Instance);\r
34 }\r
35}\r
36\r
37/**\r
38 Create the TLS instance and initialize it.\r
39\r
40 @param[in] Service The pointer to the TLS service.\r
41 @param[out] Instance The pointer to the TLS instance.\r
42\r
43 @retval EFI_OUT_OF_RESOURCES Failed to allocate resources.\r
44 @retval EFI_SUCCESS The TLS instance is created.\r
45\r
46**/\r
47EFI_STATUS\r
48TlsCreateInstance (\r
49 IN TLS_SERVICE *Service,\r
50 OUT TLS_INSTANCE **Instance\r
51 )\r
52{\r
53 TLS_INSTANCE *TlsInstance;\r
54\r
55 *Instance = NULL;\r
56\r
57 TlsInstance = AllocateZeroPool (sizeof (TLS_INSTANCE));\r
58 if (TlsInstance == NULL) {\r
59 return EFI_OUT_OF_RESOURCES;\r
60 }\r
61\r
62 TlsInstance->Signature = TLS_INSTANCE_SIGNATURE;\r
63 InitializeListHead (&TlsInstance->Link);\r
64 TlsInstance->InDestroy = FALSE;\r
65 TlsInstance->Service = Service;\r
66\r
67 CopyMem (&TlsInstance->Tls, &mTlsProtocol, sizeof (TlsInstance->Tls));\r
68 CopyMem (&TlsInstance->TlsConfig, &mTlsConfigurationProtocol, sizeof (TlsInstance->TlsConfig));\r
69\r
70 TlsInstance->TlsSessionState = EfiTlsSessionNotStarted;\r
71\r
72 *Instance = TlsInstance;\r
73\r
74 return EFI_SUCCESS;\r
75}\r
76\r
77/**\r
78 Release all the resources used by the TLS service binding instance.\r
79\r
80 @param[in] Service The TLS service data.\r
81\r
82**/\r
83VOID\r
84TlsCleanService (\r
85 IN TLS_SERVICE *Service\r
86 )\r
87{\r
88 if (Service != NULL) {\r
89 if (Service->TlsCtx != NULL) {\r
90 TlsCtxFree (Service->TlsCtx);\r
91 }\r
92\r
93 FreePool (Service);\r
94 }\r
95}\r
96\r
97/**\r
98 Create then initialize a TLS service.\r
99\r
100 @param[in] Image ImageHandle of the TLS driver\r
101 @param[out] Service The service for TLS driver\r
102\r
103 @retval EFI_OUT_OF_RESOURCES Failed to allocate resource to create the service.\r
104 @retval EFI_SUCCESS The service is created for the driver.\r
105\r
106**/\r
107EFI_STATUS\r
108TlsCreateService (\r
109 IN EFI_HANDLE Image,\r
110 OUT TLS_SERVICE **Service\r
111 )\r
112{\r
113 TLS_SERVICE *TlsService;\r
114\r
115 ASSERT (Service != NULL);\r
116\r
117 *Service = NULL;\r
118\r
119 //\r
120 // Allocate a TLS Service Data\r
121 //\r
122 TlsService = AllocateZeroPool (sizeof (TLS_SERVICE));\r
123 if (TlsService == NULL) {\r
124 return EFI_OUT_OF_RESOURCES;\r
125 }\r
126\r
127 //\r
128 // Initialize TLS Service Data\r
129 //\r
130 TlsService->Signature = TLS_SERVICE_SIGNATURE;\r
131 CopyMem (&TlsService->ServiceBinding, &mTlsServiceBinding, sizeof (TlsService->ServiceBinding));\r
132 TlsService->TlsChildrenNum = 0;\r
133 InitializeListHead (&TlsService->TlsChildrenList);\r
134 TlsService->ImageHandle = Image;\r
135\r
136 *Service = TlsService;\r
137\r
138 return EFI_SUCCESS;\r
139}\r
140\r
141/**\r
142 Unloads an image.\r
143\r
144 @param[in] ImageHandle Handle that identifies the image to be unloaded.\r
145\r
146 @retval EFI_SUCCESS The image has been unloaded.\r
147 @retval EFI_INVALID_PARAMETER ImageHandle is not a valid image handle.\r
148\r
149**/\r
150EFI_STATUS\r
151EFIAPI\r
152TlsUnload (\r
153 IN EFI_HANDLE ImageHandle\r
154 )\r
155{\r
156 EFI_STATUS Status;\r
157 UINTN HandleNum;\r
158 EFI_HANDLE *HandleBuffer;\r
159 UINT32 Index;\r
160 EFI_SERVICE_BINDING_PROTOCOL *ServiceBinding;\r
161 TLS_SERVICE *TlsService;\r
162\r
163 HandleBuffer = NULL;\r
164 ServiceBinding = NULL;\r
165 TlsService = NULL;\r
166\r
167 //\r
168 // Locate all the handles with Tls service binding protocol.\r
169 //\r
170 Status = gBS->LocateHandleBuffer (\r
171 ByProtocol,\r
172 &gEfiTlsServiceBindingProtocolGuid,\r
173 NULL,\r
174 &HandleNum,\r
175 &HandleBuffer\r
176 );\r
177 if (EFI_ERROR (Status)) {\r
178 return Status;\r
179 }\r
180\r
181 for (Index = 0; Index < HandleNum; Index++) {\r
182 //\r
183 // Firstly, find ServiceBinding interface\r
184 //\r
185 Status = gBS->OpenProtocol (\r
186 HandleBuffer[Index],\r
187 &gEfiTlsServiceBindingProtocolGuid,\r
188 (VOID **) &ServiceBinding,\r
189 ImageHandle,\r
190 NULL,\r
191 EFI_OPEN_PROTOCOL_BY_HANDLE_PROTOCOL\r
192 );\r
193 if (EFI_ERROR (Status)) {\r
194 return Status;\r
195 }\r
196\r
197 TlsService = TLS_SERVICE_FROM_THIS (ServiceBinding);\r
198\r
199 //\r
200 // Then, uninstall ServiceBinding interface\r
201 //\r
202 Status = gBS->UninstallMultipleProtocolInterfaces (\r
203 HandleBuffer[Index],\r
204 &gEfiTlsServiceBindingProtocolGuid, ServiceBinding,\r
205 NULL\r
206 );\r
207 if (EFI_ERROR (Status)) {\r
208 return Status;\r
209 }\r
210\r
211 TlsCleanService (TlsService);\r
212 }\r
213\r
214 if (HandleBuffer != NULL) {\r
215 FreePool (HandleBuffer);\r
216 }\r
217\r
218 return EFI_SUCCESS;\r
219}\r
220\r
221/**\r
222 This is the declaration of an EFI image entry point. This entry point is\r
223 the same for UEFI Applications, UEFI OS Loaders, and UEFI Drivers including\r
224 both device drivers and bus drivers.\r
225\r
226 @param ImageHandle The firmware allocated handle for the UEFI image.\r
227 @param SystemTable A pointer to the EFI System Table.\r
228\r
229 @retval EFI_SUCCESS The operation completed successfully.\r
230 @retval Others An unexpected error occurred.\r
231**/\r
232EFI_STATUS\r
233EFIAPI\r
234TlsDriverEntryPoint (\r
235 IN EFI_HANDLE ImageHandle,\r
236 IN EFI_SYSTEM_TABLE *SystemTable\r
237 )\r
238{\r
239 EFI_STATUS Status;\r
240\r
241 TLS_SERVICE *TlsService;\r
242\r
243 //\r
244 // Create TLS Service\r
245 //\r
246 Status = TlsCreateService (ImageHandle, &TlsService);\r
247 if (EFI_ERROR (Status)) {\r
248 return Status;\r
249 }\r
250\r
251 ASSERT (TlsService != NULL);\r
252\r
253 //\r
254 // Initializes the OpenSSL library.\r
255 //\r
256 TlsInitialize ();\r
257\r
258 //\r
259 // Create a new SSL_CTX object as framework to establish TLS/SSL enabled\r
260 // connections. TLS 1.0 is used as the default version.\r
261 //\r
262 TlsService->TlsCtx = TlsCtxNew (TLS10_PROTOCOL_VERSION_MAJOR, TLS10_PROTOCOL_VERSION_MINOR);\r
263 if (TlsService->TlsCtx == NULL) {\r
264 FreePool (TlsService);\r
265 return EFI_ABORTED;\r
266 }\r
267\r
268 //\r
269 // Install the TlsServiceBinding Protocol onto Handle\r
270 //\r
271 Status = gBS->InstallMultipleProtocolInterfaces (\r
272 &TlsService->Handle,\r
273 &gEfiTlsServiceBindingProtocolGuid,\r
274 &TlsService->ServiceBinding,\r
275 NULL\r
276 );\r
277 if (EFI_ERROR (Status)) {\r
278 goto ON_CLEAN_SERVICE;\r
279 }\r
280\r
281 return Status;\r
282\r
283ON_CLEAN_SERVICE:\r
284 TlsCleanService (TlsService);\r
285\r
286 return Status;\r
287}\r
288\r
289/**\r
290 Creates a child handle and installs a protocol.\r
291\r
292 The CreateChild() function installs a protocol on ChildHandle.\r
293 If ChildHandle is a pointer to NULL, then a new handle is created and returned in ChildHandle.\r
294 If ChildHandle is not a pointer to NULL, then the protocol installs on the existing ChildHandle.\r
295\r
296 @param[in] This Pointer to the EFI_SERVICE_BINDING_PROTOCOL instance.\r
297 @param[in] ChildHandle Pointer to the handle of the child to create. If it is NULL,\r
298 then a new handle is created. If it is a pointer to an existing UEFI handle,\r
299 then the protocol is added to the existing UEFI handle.\r
300\r
301 @retval EFI_SUCCES The protocol was added to ChildHandle.\r
302 @retval EFI_INVALID_PARAMETER ChildHandle is NULL.\r
303 @retval EFI_OUT_OF_RESOURCES There are not enough resources available to create\r
304 the child.\r
305 @retval other The child handle was not created.\r
306\r
307**/\r
308EFI_STATUS\r
309EFIAPI\r
310TlsServiceBindingCreateChild (\r
311 IN EFI_SERVICE_BINDING_PROTOCOL *This,\r
312 IN EFI_HANDLE *ChildHandle\r
313 )\r
314{\r
315 TLS_SERVICE *TlsService;\r
316 TLS_INSTANCE *TlsInstance;\r
317 EFI_STATUS Status;\r
318 EFI_TPL OldTpl;\r
319\r
320 if ((This == NULL) || (ChildHandle == NULL)) {\r
321 return EFI_INVALID_PARAMETER;\r
322 }\r
323\r
324 TlsService = TLS_SERVICE_FROM_THIS (This);\r
325\r
326 Status = TlsCreateInstance (TlsService, &TlsInstance);\r
327 if (EFI_ERROR (Status)) {\r
328 return Status;\r
329 }\r
330\r
331 ASSERT (TlsInstance != NULL);\r
332\r
333 //\r
334 // Create a new TLS connection object.\r
335 //\r
336 TlsInstance->TlsConn = TlsNew (TlsService->TlsCtx);\r
337 if (TlsInstance->TlsConn == NULL) {\r
338 Status = EFI_ABORTED;\r
339 goto ON_ERROR;\r
340 }\r
341\r
342 //\r
343 // Set default ConnectionEnd to EfiTlsClient\r
344 //\r
345 Status = TlsSetConnectionEnd (TlsInstance->TlsConn, EfiTlsClient);\r
346 if (EFI_ERROR (Status)) {\r
347 goto ON_ERROR;\r
348 }\r
349\r
350 //\r
351 // Install TLS protocol and configuration protocol onto ChildHandle\r
352 //\r
353 Status = gBS->InstallMultipleProtocolInterfaces (\r
354 ChildHandle,\r
355 &gEfiTlsProtocolGuid,\r
356 &TlsInstance->Tls,\r
357 &gEfiTlsConfigurationProtocolGuid,\r
358 &TlsInstance->TlsConfig,\r
359 NULL\r
360 );\r
361 if (EFI_ERROR (Status)) {\r
362 goto ON_ERROR;\r
363 }\r
364\r
365 TlsInstance->ChildHandle = *ChildHandle;\r
366\r
367 //\r
368 // Add it to the TLS service's child list.\r
369 //\r
370 OldTpl = gBS->RaiseTPL (TPL_CALLBACK);\r
371\r
372 InsertTailList (&TlsService->TlsChildrenList, &TlsInstance->Link);\r
373 TlsService->TlsChildrenNum++;\r
374\r
375 gBS->RestoreTPL (OldTpl);\r
376\r
377 return EFI_SUCCESS;\r
378\r
379ON_ERROR:\r
380 TlsCleanInstance (TlsInstance);\r
381 return Status;\r
382}\r
383\r
384/**\r
385 Destroys a child handle with a protocol installed on it.\r
386\r
387 The DestroyChild() function does the opposite of CreateChild(). It removes a protocol\r
388 that was installed by CreateChild() from ChildHandle. If the removed protocol is the\r
389 last protocol on ChildHandle, then ChildHandle is destroyed.\r
390\r
391 @param This Pointer to the EFI_SERVICE_BINDING_PROTOCOL instance.\r
392 @param ChildHandle Handle of the child to destroy.\r
393\r
394 @retval EFI_SUCCES The protocol was removed from ChildHandle.\r
395 @retval EFI_UNSUPPORTED ChildHandle does not support the protocol that is being removed.\r
396 @retval EFI_INVALID_PARAMETER Child handle is NULL.\r
397 @retval EFI_ACCESS_DENIED The protocol could not be removed from the ChildHandle\r
398 because its services are being used.\r
399 @retval other The child handle was not destroyed.\r
400\r
401**/\r
402EFI_STATUS\r
403EFIAPI\r
404TlsServiceBindingDestroyChild (\r
405 IN EFI_SERVICE_BINDING_PROTOCOL *This,\r
406 IN EFI_HANDLE ChildHandle\r
407 )\r
408{\r
409 TLS_SERVICE *TlsService;\r
410 TLS_INSTANCE *TlsInstance;\r
411\r
412 EFI_TLS_PROTOCOL *Tls;\r
413 EFI_TLS_CONFIGURATION_PROTOCOL *TlsConfig;\r
414 EFI_STATUS Status;\r
415 EFI_TPL OldTpl;\r
416\r
417 if ((This == NULL) || (ChildHandle == NULL)) {\r
418 return EFI_INVALID_PARAMETER;\r
419 }\r
420\r
421 TlsService = TLS_SERVICE_FROM_THIS (This);\r
422\r
423 //\r
424 // Find TLS protocol interface installed in ChildHandle\r
425 //\r
426 Status = gBS->OpenProtocol (\r
427 ChildHandle,\r
428 &gEfiTlsProtocolGuid,\r
429 (VOID **) &Tls,\r
430 TlsService->ImageHandle,\r
431 NULL,\r
432 EFI_OPEN_PROTOCOL_BY_HANDLE_PROTOCOL\r
433 );\r
434 if (EFI_ERROR (Status)) {\r
435 return Status;\r
436 }\r
437\r
438 //\r
439 // Find TLS configuration protocol interface installed in ChildHandle\r
440 //\r
441 Status = gBS->OpenProtocol (\r
442 ChildHandle,\r
443 &gEfiTlsConfigurationProtocolGuid,\r
444 (VOID **) &TlsConfig,\r
445 TlsService->ImageHandle,\r
446 NULL,\r
447 EFI_OPEN_PROTOCOL_BY_HANDLE_PROTOCOL\r
448 );\r
449 if (EFI_ERROR (Status)) {\r
450 return Status;\r
451 }\r
452\r
453 TlsInstance = TLS_INSTANCE_FROM_PROTOCOL (Tls);\r
454\r
455 if (TlsInstance->Service != TlsService) {\r
456 return EFI_INVALID_PARAMETER;\r
457 }\r
458\r
459 if (TlsInstance->InDestroy) {\r
460 return EFI_SUCCESS;\r
461 }\r
462\r
463 OldTpl = gBS->RaiseTPL (TPL_CALLBACK);\r
464\r
465 TlsInstance->InDestroy = TRUE;\r
466\r
467 //\r
468 // Uninstall the TLS protocol and TLS Configuration Protocol interface installed in ChildHandle.\r
469 //\r
470 Status = gBS->UninstallMultipleProtocolInterfaces (\r
471 ChildHandle,\r
472 &gEfiTlsProtocolGuid,\r
473 Tls,\r
474 &gEfiTlsConfigurationProtocolGuid,\r
475 TlsConfig,\r
476 NULL\r
477 );\r
478 if (EFI_ERROR (Status)) {\r
479 return Status;\r
480 }\r
481\r
482 RemoveEntryList (&TlsInstance->Link);\r
483 TlsService->TlsChildrenNum--;\r
484\r
485 gBS->RestoreTPL (OldTpl);\r
486\r
487 TlsCleanInstance (TlsInstance);\r
488\r
489 return EFI_SUCCESS;\r
490}\r
491\r