No description
Find a file
Sandrine Bailleux a353e39e8d feat(mbedtls): update to 3.4.1
Update TF-A documentation to recommend using the latest and greatest
release of mbedTLS library to this date, i.e. version 3.4.1. The
upgrade was successfully tested by the OpenCI running all existing
test configs, in particular trusted boot and measured boot related
ones.

The reason for this upgrade is simply to obey TF-A's guideline to
always use up-to-date security libraries. mbedTLS 3.4.1 release
notes [1] do not list any changes that should affect TF-A.

[1] https://github.com/Mbed-TLS/mbedtls/releases/tag/v3.4.1

Signed-off-by: Sandrine Bailleux <sandrine.bailleux@arm.com>
Change-Id: Ifc31c2fc825a2fc9ca318ea8baadd51b670e7a4e
(cherry picked from commit e686cdb450)
2024-06-28 20:06:09 +02:00
.husky build(hooks): add commitlint hook 2021-04-19 14:06:25 +01:00
bl1 refactor(cpus): rename errata_report.h to errata.h 2023-09-12 08:55:23 +00:00
bl2 refactor(cpus): convert print_errata_status to C 2023-09-12 08:55:52 +00:00
bl2u feat(debug): add helpers for aborts on AARCH32 2022-10-03 14:42:40 +02:00
bl31 fix(gic600): workaround for Part 1 of GIC600 erratum 2384374 2024-03-28 13:40:24 +00:00
bl32 feat(errata_abi): errata management firmware interface 2023-05-30 18:35:55 +01:00
common fix(ras): restrict RAS support for NS world 2022-11-08 10:10:59 +00:00
docs feat(mbedtls): update to 3.4.1 2024-06-28 20:06:09 +02:00
drivers feat(mbedtls): add support for mbedtls-3.3 2024-06-28 20:05:27 +02:00
fdts refactor(stm32mp1): remove STM32MP_USE_STM32IMAGE 2022-11-14 14:14:48 +01:00
include feat(mbedtls): add support for mbedtls-3.3 2024-06-28 20:05:27 +02:00
lib refactor(mbedtls): avoid including MBEDTLS_CONFIG_FILE 2024-05-27 14:41:18 +02:00
licenses docs(license): rectify arm-gic.h license 2021-04-26 12:36:00 +01:00
make_helpers feat(build): allow additional CFLAGS for library build 2024-05-27 14:41:18 +02:00
plat feat(stm32mp1): add mbedtls-3.3 support config 2024-06-28 20:06:09 +02:00
services Merge changes I368088ec,Ia246235a into lts-v2.8 2024-05-02 18:05:20 +02:00
tools refactor(mbedtls): avoid including MBEDTLS_CONFIG_FILE 2024-05-27 14:41:18 +02:00
.checkpatch.conf Re-apply GIT_COMMIT_ID check for checkpatch 2019-07-12 11:06:24 +01:00
.commitlintrc.js build(commitlint): make the scope optional 2022-05-03 11:06:50 +02:00
.cz.json refactor(hooks): replace cz-conventional-changelog with cz-commitlint 2022-01-24 12:55:00 +00:00
.editorconfig .editorconfig: set max line length to 100 2020-12-03 15:39:23 +00:00
.gitignore chore: add encrypt_fw to gitignore 2024-05-27 14:41:18 +02:00
.gitreview Specify integration as the default branch for git-review 2020-04-02 07:57:17 +00:00
.nvmrc build(npm): add NVM version file 2022-10-10 13:24:22 +01:00
.readthedocs.yaml fix(docs): use rsvg-convert as the conversion backend 2023-10-11 13:19:56 +02:00
.versionrc.js fix(docs): fix build errors for latexpdf 2023-10-11 13:18:14 +02:00
changelog.yaml docs(changelog): display all sections 2023-10-05 10:48:57 +02:00
dco.txt Drop requirement for CLA in contribution.md 2016-09-27 21:52:03 +01:00
license.rst doc: De-duplicate readme and license files 2019-10-08 16:36:15 +00:00
Makefile docs(changelog): changelog for lts-v2.8.19 release 2024-05-16 21:37:26 +00:00
package-lock.json docs(changelog): changelog for lts-v2.8.19 release 2024-05-16 21:37:26 +00:00
package.json docs(changelog): changelog for lts-v2.8.19 release 2024-05-16 21:37:26 +00:00
poetry.lock fix(docs): fix build errors for latexpdf 2023-10-11 13:18:14 +02:00
pyproject.toml docs(changelog): changelog for lts-v2.8.19 release 2024-05-16 21:37:26 +00:00
readme.rst docs(changelog): changelog for lts-v2.8.19 release 2024-05-16 21:37:26 +00:00

Trusted Firmware-A
==================

Trusted Firmware-A (TF-A) is a reference implementation of secure world software
for `Arm A-Profile architectures`_ (Armv8-A and Armv7-A), including an Exception
Level 3 (EL3) `Secure Monitor`_. It provides a suitable starting point for
productization of secure world boot and runtime firmware, in either the AArch32
or AArch64 execution states.

TF-A implements Arm interface standards, including:

-  `Power State Coordination Interface (PSCI)`_
-  `Trusted Board Boot Requirements CLIENT (TBBR-CLIENT)`_
-  `SMC Calling Convention`_
-  `System Control and Management Interface (SCMI)`_
-  `Software Delegated Exception Interface (SDEI)`_

The code is designed to be portable and reusable across hardware platforms and
software models that are based on the Armv8-A and Armv7-A architectures.

In collaboration with interested parties, we will continue to enhance TF-A
with reference implementations of Arm standards to benefit developers working
with Armv7-A and Armv8-A TrustZone technology.

Users are encouraged to do their own security validation, including penetration
testing, on any secure world code derived from TF-A.

More Info and Documentation
---------------------------

To find out more about Trusted Firmware-A, please `view the full documentation`_
that is available through `trustedfirmware.org`_.

--------------

*Copyright (c) 2013-2019, Arm Limited and Contributors. All rights reserved.*

.. _Armv7-A and Armv8-A: https://developer.arm.com/products/architecture/a-profile
.. _Secure Monitor: http://www.arm.com/products/processors/technologies/trustzone/tee-smc.php
.. _Power State Coordination Interface (PSCI): PSCI_
.. _PSCI: http://infocenter.arm.com/help/topic/com.arm.doc.den0022d/Power_State_Coordination_Interface_PDD_v1_1_DEN0022D.pdf
.. _Trusted Board Boot Requirements CLIENT (TBBR-CLIENT): https://developer.arm.com/docs/den0006/latest/trusted-board-boot-requirements-client-tbbr-client-armv8-a
.. _SMC Calling Convention: http://infocenter.arm.com/help/topic/com.arm.doc.den0028b/ARM_DEN0028B_SMC_Calling_Convention.pdf
.. _System Control and Management Interface (SCMI): SCMI_
.. _SCMI: http://infocenter.arm.com/help/topic/com.arm.doc.den0056a/DEN0056A_System_Control_and_Management_Interface.pdf
.. _Software Delegated Exception Interface (SDEI): SDEI_
.. _SDEI: http://infocenter.arm.com/help/topic/com.arm.doc.den0054a/ARM_DEN0054A_Software_Delegated_Exception_Interface.pdf
.. _Arm A-Profile architectures: https://developer.arm.com/architectures/cpu-architecture/a-profile
.. _view the full documentation: https://www.trustedfirmware.org/docs/tf-a
.. _trustedfirmware.org: http://www.trustedfirmware.org