xref: /dflybsd-src/sys/dev/crypto/safe/safereg.h (revision 86d7f5d305c6adaa56ff4582ece9859d73106103)
186d7f5d3SJohn Marino /*-
286d7f5d3SJohn Marino  * Copyright (c) 2003 Sam Leffler, Errno Consulting
386d7f5d3SJohn Marino  * Copyright (c) 2003 Global Technology Associates, Inc.
486d7f5d3SJohn Marino  * All rights reserved.
586d7f5d3SJohn Marino  *
686d7f5d3SJohn Marino  * Redistribution and use in source and binary forms, with or without
786d7f5d3SJohn Marino  * modification, are permitted provided that the following conditions
886d7f5d3SJohn Marino  * are met:
986d7f5d3SJohn Marino  * 1. Redistributions of source code must retain the above copyright
1086d7f5d3SJohn Marino  *    notice, this list of conditions and the following disclaimer.
1186d7f5d3SJohn Marino  * 2. Redistributions in binary form must reproduce the above copyright
1286d7f5d3SJohn Marino  *    notice, this list of conditions and the following disclaimer in the
1386d7f5d3SJohn Marino  *    documentation and/or other materials provided with the distribution.
1486d7f5d3SJohn Marino  *
1586d7f5d3SJohn Marino  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
1686d7f5d3SJohn Marino  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
1786d7f5d3SJohn Marino  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
1886d7f5d3SJohn Marino  * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
1986d7f5d3SJohn Marino  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
2086d7f5d3SJohn Marino  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
2186d7f5d3SJohn Marino  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
2286d7f5d3SJohn Marino  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
2386d7f5d3SJohn Marino  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
2486d7f5d3SJohn Marino  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
2586d7f5d3SJohn Marino  * SUCH DAMAGE.
2686d7f5d3SJohn Marino  *
2786d7f5d3SJohn Marino  * $FreeBSD: src/sys/dev/safe/safereg.h,v 1.1 2003/07/21 21:46:07 sam Exp $
2886d7f5d3SJohn Marino  */
2986d7f5d3SJohn Marino #ifndef _SAFE_SAFEREG_H_
3086d7f5d3SJohn Marino #define	_SAFE_SAFEREG_H_
3186d7f5d3SJohn Marino 
3286d7f5d3SJohn Marino /*
3386d7f5d3SJohn Marino  * Register definitions for SafeNet SafeXcel-1141 crypto device.
3486d7f5d3SJohn Marino  * Definitions from revision 1.3 (Nov 6 2002) of the User's Manual.
3586d7f5d3SJohn Marino  */
3686d7f5d3SJohn Marino 
3786d7f5d3SJohn Marino #define BS_BAR			0x10	/* DMA base address register */
3886d7f5d3SJohn Marino #define	BS_TRDY_TIMEOUT		0x40	/* TRDY timeout */
3986d7f5d3SJohn Marino #define	BS_RETRY_TIMEOUT	0x41	/* DMA retry timeout */
4086d7f5d3SJohn Marino 
4186d7f5d3SJohn Marino #define	PCI_VENDOR_SAFENET	0x16ae		/* SafeNet, Inc. */
4286d7f5d3SJohn Marino 
4386d7f5d3SJohn Marino /* SafeNet */
4486d7f5d3SJohn Marino #define	PCI_PRODUCT_SAFEXCEL	0x1141		/* 1141 */
4586d7f5d3SJohn Marino 
4686d7f5d3SJohn Marino #define	SAFE_PE_CSR		0x0000	/* Packet Enginge Ctrl/Status */
4786d7f5d3SJohn Marino #define	SAFE_PE_SRC		0x0004	/* Packet Engine Source */
4886d7f5d3SJohn Marino #define	SAFE_PE_DST		0x0008	/* Packet Engine Destination */
4986d7f5d3SJohn Marino #define	SAFE_PE_SA		0x000c	/* Packet Engine SA */
5086d7f5d3SJohn Marino #define	SAFE_PE_LEN		0x0010	/* Packet Engine Length */
5186d7f5d3SJohn Marino #define	SAFE_PE_DMACFG		0x0040	/* Packet Engine DMA Configuration */
5286d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT		0x0044	/* Packet Engine DMA Status */
5386d7f5d3SJohn Marino #define	SAFE_PE_PDRBASE		0x0048	/* Packet Engine Descriptor Ring Base */
5486d7f5d3SJohn Marino #define	SAFE_PE_RDRBASE		0x004c	/* Packet Engine Result Ring Base */
5586d7f5d3SJohn Marino #define	SAFE_PE_RINGCFG		0x0050	/* Packet Engine Ring Configuration */
5686d7f5d3SJohn Marino #define	SAFE_PE_RINGPOLL	0x0054	/* Packet Engine Ring Poll */
5786d7f5d3SJohn Marino #define	SAFE_PE_IRNGSTAT	0x0058	/* Packet Engine Internal Ring Status */
5886d7f5d3SJohn Marino #define	SAFE_PE_ERNGSTAT	0x005c	/* Packet Engine External Ring Status */
5986d7f5d3SJohn Marino #define	SAFE_PE_IOTHRESH	0x0060	/* Packet Engine I/O Threshold */
6086d7f5d3SJohn Marino #define	SAFE_PE_GRNGBASE	0x0064	/* Packet Engine Gather Ring Base */
6186d7f5d3SJohn Marino #define	SAFE_PE_SRNGBASE	0x0068	/* Packet Engine Scatter Ring Base */
6286d7f5d3SJohn Marino #define	SAFE_PE_PARTSIZE	0x006c	/* Packet Engine Particlar Ring Size */
6386d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG		0x0070	/* Packet Engine Particle Ring Config */
6486d7f5d3SJohn Marino #define	SAFE_CRYPTO_CTRL	0x0080	/* Crypto Control */
6586d7f5d3SJohn Marino #define	SAFE_DEVID		0x0084	/* Device ID */
6686d7f5d3SJohn Marino #define	SAFE_DEVINFO		0x0088	/* Device Info */
6786d7f5d3SJohn Marino #define	SAFE_HU_STAT		0x00a0	/* Host Unmasked Status */
6886d7f5d3SJohn Marino #define	SAFE_HM_STAT		0x00a4	/* Host Masked Status (read-only) */
6986d7f5d3SJohn Marino #define	SAFE_HI_CLR		0x00a4	/* Host Clear Interrupt (write-only) */
7086d7f5d3SJohn Marino #define	SAFE_HI_MASK		0x00a8	/* Host Mask Control */
7186d7f5d3SJohn Marino #define	SAFE_HI_CFG		0x00ac	/* Interrupt Configuration */
7286d7f5d3SJohn Marino #define	SAFE_HI_RD_DESCR	0x00b4	/* Force Descriptor Read */
7386d7f5d3SJohn Marino #define	SAFE_HI_DESC_CNT	0x00b8	/* Host Descriptor Done Count */
7486d7f5d3SJohn Marino #define	SAFE_DMA_ENDIAN		0x00c0	/* Master Endian Status */
7586d7f5d3SJohn Marino #define	SAFE_DMA_SRCADDR	0x00c4	/* DMA Source Address Status */
7686d7f5d3SJohn Marino #define	SAFE_DMA_DSTADDR	0x00c8	/* DMA Destination Address Status */
7786d7f5d3SJohn Marino #define	SAFE_DMA_STAT		0x00cc	/* DMA Current Status */
7886d7f5d3SJohn Marino #define	SAFE_DMA_CFG		0x00d4	/* DMA Configuration/Status */
7986d7f5d3SJohn Marino #define	SAFE_ENDIAN		0x00e0	/* Endian Configuration */
8086d7f5d3SJohn Marino #define	SAFE_PK_A_ADDR		0x0800	/* Public Key A Address */
8186d7f5d3SJohn Marino #define	SAFE_PK_B_ADDR		0x0804	/* Public Key B Address */
8286d7f5d3SJohn Marino #define	SAFE_PK_C_ADDR		0x0808	/* Public Key C Address */
8386d7f5d3SJohn Marino #define	SAFE_PK_D_ADDR		0x080c	/* Public Key D Address */
8486d7f5d3SJohn Marino #define	SAFE_PK_A_LEN		0x0810	/* Public Key A Length */
8586d7f5d3SJohn Marino #define	SAFE_PK_B_LEN		0x0814	/* Public Key B Length */
8686d7f5d3SJohn Marino #define	SAFE_PK_SHIFT		0x0818	/* Public Key Shift */
8786d7f5d3SJohn Marino #define	SAFE_PK_FUNC		0x081c	/* Public Key Function */
8886d7f5d3SJohn Marino #define	SAFE_RNG_OUT		0x0100	/* RNG Output */
8986d7f5d3SJohn Marino #define	SAFE_RNG_STAT		0x0104	/* RNG Status */
9086d7f5d3SJohn Marino #define	SAFE_RNG_CTRL		0x0108	/* RNG Control */
9186d7f5d3SJohn Marino #define	SAFE_RNG_A		0x010c	/* RNG A */
9286d7f5d3SJohn Marino #define	SAFE_RNG_B		0x0110	/* RNG B */
9386d7f5d3SJohn Marino #define	SAFE_RNG_X_LO		0x0114	/* RNG X [31:0] */
9486d7f5d3SJohn Marino #define	SAFE_RNG_X_MID		0x0118	/* RNG X [63:32] */
9586d7f5d3SJohn Marino #define	SAFE_RNG_X_HI		0x011c	/* RNG X [80:64] */
9686d7f5d3SJohn Marino #define	SAFE_RNG_X_CNTR		0x0120	/* RNG Counter */
9786d7f5d3SJohn Marino #define	SAFE_RNG_ALM_CNT	0x0124	/* RNG Alarm Count */
9886d7f5d3SJohn Marino #define	SAFE_RNG_CNFG		0x0128	/* RNG Configuration */
9986d7f5d3SJohn Marino #define	SAFE_RNG_LFSR1_LO	0x012c	/* RNG LFSR1 [31:0] */
10086d7f5d3SJohn Marino #define	SAFE_RNG_LFSR1_HI	0x0130	/* RNG LFSR1 [47:32] */
10186d7f5d3SJohn Marino #define	SAFE_RNG_LFSR2_LO	0x0134	/* RNG LFSR1 [31:0] */
10286d7f5d3SJohn Marino #define	SAFE_RNG_LFSR2_HI	0x0138	/* RNG LFSR1 [47:32] */
10386d7f5d3SJohn Marino 
10486d7f5d3SJohn Marino #define	SAFE_PE_CSR_READY	0x00000001	/* ready for processing */
10586d7f5d3SJohn Marino #define	SAFE_PE_CSR_DONE	0x00000002	/* h/w completed processing */
10686d7f5d3SJohn Marino #define	SAFE_PE_CSR_LOADSA	0x00000004	/* load SA digests */
10786d7f5d3SJohn Marino #define	SAFE_PE_CSR_HASHFINAL	0x00000010	/* do hash pad & write result */
10886d7f5d3SJohn Marino #define	SAFE_PE_CSR_SABUSID	0x000000c0	/* bus id for SA */
10986d7f5d3SJohn Marino #define	SAFE_PE_CSR_SAPCI	0x00000040	/* PCI bus id for SA */
11086d7f5d3SJohn Marino #define	SAFE_PE_CSR_NXTHDR	0x0000ff00	/* next hdr value for IPsec */
11186d7f5d3SJohn Marino #define	SAFE_PE_CSR_FPAD	0x0000ff00	/* fixed pad for basic ops */
11286d7f5d3SJohn Marino #define	SAFE_PE_CSR_STATUS	0x00ff0000	/* operation result status */
11386d7f5d3SJohn Marino #define	SAFE_PE_CSR_AUTH_FAIL	0x00010000	/* ICV mismatch (inbound) */
11486d7f5d3SJohn Marino #define	SAFE_PE_CSR_PAD_FAIL	0x00020000	/* pad verify fail (inbound) */
11586d7f5d3SJohn Marino #define	SAFE_PE_CSR_SEQ_FAIL	0x00040000	/* sequence number (inbound) */
11686d7f5d3SJohn Marino #define	SAFE_PE_CSR_XERROR	0x00080000	/* extended error follows */
11786d7f5d3SJohn Marino #define	SAFE_PE_CSR_XECODE	0x00f00000	/* extended error code */
11886d7f5d3SJohn Marino #define	SAFE_PE_CSR_XECODE_S	20
11986d7f5d3SJohn Marino #define	SAFE_PE_CSR_XECODE_BADCMD	0	/* invalid command */
12086d7f5d3SJohn Marino #define	SAFE_PE_CSR_XECODE_BADALG	1	/* invalid algorithm */
12186d7f5d3SJohn Marino #define	SAFE_PE_CSR_XECODE_ALGDIS	2	/* algorithm disabled */
12286d7f5d3SJohn Marino #define	SAFE_PE_CSR_XECODE_ZEROLEN	3	/* zero packet length */
12386d7f5d3SJohn Marino #define	SAFE_PE_CSR_XECODE_DMAERR	4	/* bus DMA error */
12486d7f5d3SJohn Marino #define	SAFE_PE_CSR_XECODE_PIPEABORT	5	/* secondary bus DMA error */
12586d7f5d3SJohn Marino #define	SAFE_PE_CSR_XECODE_BADSPI	6	/* IPsec SPI mismatch */
12686d7f5d3SJohn Marino #define	SAFE_PE_CSR_XECODE_TIMEOUT	10	/* failsafe timeout */
12786d7f5d3SJohn Marino #define	SAFE_PE_CSR_PAD		0xff000000	/* ESP padding control/status */
12886d7f5d3SJohn Marino #define	SAFE_PE_CSR_PAD_MIN	0x00000000	/* minimum IPsec padding */
12986d7f5d3SJohn Marino #define	SAFE_PE_CSR_PAD_16	0x08000000	/* pad to 16-byte boundary */
13086d7f5d3SJohn Marino #define	SAFE_PE_CSR_PAD_32	0x10000000	/* pad to 32-byte boundary */
13186d7f5d3SJohn Marino #define	SAFE_PE_CSR_PAD_64	0x20000000	/* pad to 64-byte boundary */
13286d7f5d3SJohn Marino #define	SAFE_PE_CSR_PAD_128	0x40000000	/* pad to 128-byte boundary */
13386d7f5d3SJohn Marino #define	SAFE_PE_CSR_PAD_256	0x80000000	/* pad to 256-byte boundary */
13486d7f5d3SJohn Marino 
13586d7f5d3SJohn Marino /*
13686d7f5d3SJohn Marino  * Check the CSR to see if the PE has returned ownership to
13786d7f5d3SJohn Marino  * the host.  Note that before processing a descriptor this
13886d7f5d3SJohn Marino  * must be done followed by a check of the SAFE_PE_LEN register
13986d7f5d3SJohn Marino  * status bits to avoid premature processing of a descriptor
14086d7f5d3SJohn Marino  * on its way back to the host.
14186d7f5d3SJohn Marino  */
14286d7f5d3SJohn Marino #define	SAFE_PE_CSR_IS_DONE(_csr) \
14386d7f5d3SJohn Marino     (((_csr) & (SAFE_PE_CSR_READY | SAFE_PE_CSR_DONE)) == SAFE_PE_CSR_DONE)
14486d7f5d3SJohn Marino 
14586d7f5d3SJohn Marino #define	SAFE_PE_LEN_LENGTH	0x000fffff	/* total length (bytes) */
14686d7f5d3SJohn Marino #define	SAFE_PE_LEN_READY	0x00400000	/* ready for processing */
14786d7f5d3SJohn Marino #define	SAFE_PE_LEN_DONE	0x00800000	/* h/w completed processing */
14886d7f5d3SJohn Marino #define	SAFE_PE_LEN_BYPASS	0xff000000	/* bypass offset (bytes) */
14986d7f5d3SJohn Marino #define	SAFE_PE_LEN_BYPASS_S	24
15086d7f5d3SJohn Marino 
15186d7f5d3SJohn Marino #define	SAFE_PE_LEN_IS_DONE(_len) \
15286d7f5d3SJohn Marino     (((_len) & (SAFE_PE_LEN_READY | SAFE_PE_LEN_DONE)) == SAFE_PE_LEN_DONE)
15386d7f5d3SJohn Marino 
15486d7f5d3SJohn Marino /* NB: these apply to HU_STAT, HM_STAT, HI_CLR, and HI_MASK */
15586d7f5d3SJohn Marino #define	SAFE_INT_PE_CDONE	0x00000002	/* PE context done */
15686d7f5d3SJohn Marino #define	SAFE_INT_PE_DDONE	0x00000008	/* PE descriptor done */
15786d7f5d3SJohn Marino #define	SAFE_INT_PE_ERROR	0x00000010	/* PE error */
15886d7f5d3SJohn Marino #define	SAFE_INT_PE_ODONE	0x00000020	/* PE operation done */
15986d7f5d3SJohn Marino 
16086d7f5d3SJohn Marino #define	SAFE_HI_CFG_PULSE	0x00000001	/* use pulse interrupt */
16186d7f5d3SJohn Marino #define	SAFE_HI_CFG_LEVEL	0x00000000	/* use level interrupt */
16286d7f5d3SJohn Marino #define	SAFE_HI_CFG_AUTOCLR	0x00000002	/* auto-clear pulse interrupt */
16386d7f5d3SJohn Marino 
16486d7f5d3SJohn Marino #define	SAFE_ENDIAN_PASS	0x000000e4	/* straight pass-thru */
16586d7f5d3SJohn Marino #define	SAFE_ENDIAN_SWAB	0x0000001b	/* swap bytes in 32-bit word */
16686d7f5d3SJohn Marino 
16786d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_PERESET	0x00000001	/* reset packet engine */
16886d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_PDRRESET	0x00000002	/* reset PDR counters/ptrs */
16986d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_SGRESET	0x00000004	/* reset scatter/gather cache */
17086d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_FSENA	0x00000008	/* enable failsafe reset */
17186d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_PEMODE	0x00000100	/* packet engine mode */
17286d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_SAPREC	0x00000200	/* SA precedes packet */
17386d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_PKFOLL	0x00000400	/* packet follows descriptor */
17486d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_GPRBID	0x00003000	/* gather particle ring busid */
17586d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_GPRPCI	0x00001000	/* PCI gather particle ring */
17686d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_SPRBID	0x0000c000	/* scatter part. ring busid */
17786d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_SPRPCI	0x00004000	/* PCI scatter part. ring */
17886d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_ESDESC	0x00010000	/* endian swap descriptors */
17986d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_ESSA	0x00020000	/* endian swap SA data */
18086d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_ESPACKET	0x00040000	/* endian swap packet data */
18186d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_ESPDESC	0x00080000	/* endian swap particle desc. */
18286d7f5d3SJohn Marino #define	SAFE_PE_DMACFG_NOPDRUP	0x00100000	/* supp. PDR ownership update */
18386d7f5d3SJohn Marino #define	SAFE_PD_EDMACFG_PCIMODE	0x01000000	/* PCI target mode */
18486d7f5d3SJohn Marino 
18586d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_PEIDONE	0x00000001	/* PE core input done */
18686d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_PEODONE	0x00000002	/* PE core output done */
18786d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_ENCDONE	0x00000004	/* encryption done */
18886d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_IHDONE	0x00000008	/* inner hash done */
18986d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_OHDONE	0x00000010	/* outer hash (HMAC) done */
19086d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_PADFLT	0x00000020	/* crypto pad fault */
19186d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_ICVFLT	0x00000040	/* ICV fault */
19286d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_SPIMIS	0x00000080	/* SPI mismatch */
19386d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_CRYPTO	0x00000100	/* crypto engine timeout */
19486d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_CQACT	0x00000200	/* command queue active */
19586d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_IRACT	0x00000400	/* input request active */
19686d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_ORACT	0x00000800	/* output request active */
19786d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_PEISIZE	0x003ff000	/* PE input size:32-bit words */
19886d7f5d3SJohn Marino #define	SAFE_PE_DMASTAT_PEOSIZE	0xffc00000	/* PE out. size:32-bit words */
19986d7f5d3SJohn Marino 
20086d7f5d3SJohn Marino #define	SAFE_PE_RINGCFG_SIZE	0x000003ff	/* ring size (descriptors) */
20186d7f5d3SJohn Marino #define	SAFE_PE_RINGCFG_OFFSET	0xffff0000	/* offset btw desc's (dwords) */
20286d7f5d3SJohn Marino #define	SAFE_PE_RINGCFG_OFFSET_S	16
20386d7f5d3SJohn Marino 
20486d7f5d3SJohn Marino #define	SAFE_PE_RINGPOLL_POLL	0x00000fff	/* polling frequency/divisor */
20586d7f5d3SJohn Marino #define	SAFE_PE_RINGPOLL_RETRY	0x03ff0000	/* polling frequency/divisor */
20686d7f5d3SJohn Marino #define	SAFE_PE_RINGPOLL_CONT	0x80000000	/* continuously poll */
20786d7f5d3SJohn Marino 
20886d7f5d3SJohn Marino #define	SAFE_PE_IRNGSTAT_CQAVAIL 0x00000001	/* command queue available */
20986d7f5d3SJohn Marino 
21086d7f5d3SJohn Marino #define	SAFE_PE_ERNGSTAT_NEXT	0x03ff0000	/* index of next packet desc. */
21186d7f5d3SJohn Marino #define	SAFE_PE_ERNGSTAT_NEXT_S	16
21286d7f5d3SJohn Marino 
21386d7f5d3SJohn Marino #define	SAFE_PE_IOTHRESH_INPUT	0x000003ff	/* input threshold (dwords) */
21486d7f5d3SJohn Marino #define	SAFE_PE_IOTHRESH_OUTPUT	0x03ff0000	/* output threshold (dwords) */
21586d7f5d3SJohn Marino 
21686d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG_SIZE	0x0000ffff	/* scatter particle size */
21786d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG_GBURST	0x00030000	/* gather particle burst */
21886d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG_GBURST_2	0x00000000
21986d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG_GBURST_4	0x00010000
22086d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG_GBURST_8	0x00020000
22186d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG_GBURST_16	0x00030000
22286d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG_SBURST	0x000c0000	/* scatter particle burst */
22386d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG_SBURST_2	0x00000000
22486d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG_SBURST_4	0x00040000
22586d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG_SBURST_8	0x00080000
22686d7f5d3SJohn Marino #define	SAFE_PE_PARTCFG_SBURST_16	0x000c0000
22786d7f5d3SJohn Marino 
22886d7f5d3SJohn Marino #define	SAFE_PE_PARTSIZE_SCAT	0xffff0000	/* scatter particle ring size */
22986d7f5d3SJohn Marino #define	SAFE_PE_PARTSIZE_GATH	0x0000ffff	/* gather particle ring size */
23086d7f5d3SJohn Marino 
23186d7f5d3SJohn Marino #define	SAFE_CRYPTO_CTRL_3DES	0x00000001	/* enable 3DES support */
23286d7f5d3SJohn Marino #define	SAFE_CRYPTO_CTRL_PKEY	0x00010000	/* enable public key support */
23386d7f5d3SJohn Marino #define	SAFE_CRYPTO_CTRL_RNG	0x00020000	/* enable RNG support */
23486d7f5d3SJohn Marino 
23586d7f5d3SJohn Marino #define	SAFE_DEVINFO_REV_MIN	0x0000000f	/* minor rev for chip */
23686d7f5d3SJohn Marino #define	SAFE_DEVINFO_REV_MAJ	0x000000f0	/* major rev for chip */
23786d7f5d3SJohn Marino #define	SAFE_DEVINFO_REV_MAJ_S	4
23886d7f5d3SJohn Marino #define	SAFE_DEVINFO_DES	0x00000100	/* DES/3DES support present */
23986d7f5d3SJohn Marino #define	SAFE_DEVINFO_ARC4	0x00000200	/* ARC4 support present */
24086d7f5d3SJohn Marino #define	SAFE_DEVINFO_AES	0x00000400	/* AES support present */
24186d7f5d3SJohn Marino #define	SAFE_DEVINFO_MD5	0x00001000	/* MD5 support present */
24286d7f5d3SJohn Marino #define	SAFE_DEVINFO_SHA1	0x00002000	/* SHA-1 support present */
24386d7f5d3SJohn Marino #define	SAFE_DEVINFO_RIPEMD	0x00004000	/* RIPEMD support present */
24486d7f5d3SJohn Marino #define	SAFE_DEVINFO_DEFLATE	0x00010000	/* Deflate support present */
24586d7f5d3SJohn Marino #define	SAFE_DEVINFO_SARAM	0x00100000	/* on-chip SA RAM present */
24686d7f5d3SJohn Marino #define	SAFE_DEVINFO_EMIBUS	0x00200000	/* EMI bus present */
24786d7f5d3SJohn Marino #define	SAFE_DEVINFO_PKEY	0x00400000	/* public key support present */
24886d7f5d3SJohn Marino #define	SAFE_DEVINFO_RNG	0x00800000	/* RNG present */
24986d7f5d3SJohn Marino 
25086d7f5d3SJohn Marino #define	SAFE_REV(_maj, _min)	(((_maj) << SAFE_DEVINFO_REV_MAJ_S) | (_min))
25186d7f5d3SJohn Marino #define	SAFE_REV_MAJ(_chiprev) \
25286d7f5d3SJohn Marino 	(((_chiprev) & SAFE_DEVINFO_REV_MAJ) >> SAFE_DEVINFO_REV_MAJ_S)
25386d7f5d3SJohn Marino #define	SAFE_REV_MIN(_chiprev)	((_chiprev) & SAFE_DEVINFO_REV_MIN)
25486d7f5d3SJohn Marino 
25586d7f5d3SJohn Marino #define	SAFE_PK_FUNC_MULT	0x00000001	/* Multiply function */
25686d7f5d3SJohn Marino #define	SAFE_PK_FUNC_SQUARE	0x00000004	/* Square function */
25786d7f5d3SJohn Marino #define	SAFE_PK_FUNC_ADD	0x00000010	/* Add function */
25886d7f5d3SJohn Marino #define	SAFE_PK_FUNC_SUB	0x00000020	/* Subtract function */
25986d7f5d3SJohn Marino #define	SAFE_PK_FUNC_LSHIFT	0x00000040	/* Left-shift function */
26086d7f5d3SJohn Marino #define	SAFE_PK_FUNC_RSHIFT	0x00000080	/* Right-shift function */
26186d7f5d3SJohn Marino #define	SAFE_PK_FUNC_DIV	0x00000100	/* Divide function */
26286d7f5d3SJohn Marino #define	SAFE_PK_FUNC_CMP	0x00000400	/* Compare function */
26386d7f5d3SJohn Marino #define	SAFE_PK_FUNC_COPY	0x00000800	/* Copy function */
26486d7f5d3SJohn Marino #define	SAFE_PK_FUNC_EXP16	0x00002000	/* Exponentiate (4-bit ACT) */
26586d7f5d3SJohn Marino #define	SAFE_PK_FUNC_EXP4	0x00004000	/* Exponentiate (2-bit ACT) */
26686d7f5d3SJohn Marino 
26786d7f5d3SJohn Marino #define	SAFE_RNG_STAT_BUSY	0x00000001	/* busy, data not valid */
26886d7f5d3SJohn Marino 
26986d7f5d3SJohn Marino #define	SAFE_RNG_CTRL_PRE_LFSR	0x00000001	/* enable output pre-LFSR */
27086d7f5d3SJohn Marino #define	SAFE_RNG_CTRL_TST_MODE	0x00000002	/* enable test mode */
27186d7f5d3SJohn Marino #define	SAFE_RNG_CTRL_TST_RUN	0x00000004	/* start test state machine */
27286d7f5d3SJohn Marino #define	SAFE_RNG_CTRL_ENA_RING1	0x00000008	/* test entropy oscillator #1 */
27386d7f5d3SJohn Marino #define	SAFE_RNG_CTRL_ENA_RING2	0x00000010	/* test entropy oscillator #2 */
27486d7f5d3SJohn Marino #define	SAFE_RNG_CTRL_DIS_ALARM	0x00000020	/* disable RNG alarm reports */
27586d7f5d3SJohn Marino #define	SAFE_RNG_CTRL_TST_CLOCK	0x00000040	/* enable test clock */
27686d7f5d3SJohn Marino #define	SAFE_RNG_CTRL_SHORTEN	0x00000080	/* shorten state timers */
27786d7f5d3SJohn Marino #define	SAFE_RNG_CTRL_TST_ALARM	0x00000100	/* simulate alarm state */
27886d7f5d3SJohn Marino #define	SAFE_RNG_CTRL_RST_LFSR	0x00000200	/* reset LFSR */
27986d7f5d3SJohn Marino 
28086d7f5d3SJohn Marino /*
28186d7f5d3SJohn Marino  * Packet engine descriptor.  Note that d_csr is a copy of the
28286d7f5d3SJohn Marino  * SAFE_PE_CSR register and all definitions apply, and d_len
28386d7f5d3SJohn Marino  * is a copy of the SAFE_PE_LEN register and all definitions apply.
28486d7f5d3SJohn Marino  * d_src and d_len may point directly to contiguous data or to a
28586d7f5d3SJohn Marino  * list of ``particle descriptors'' when using scatter/gather i/o.
28686d7f5d3SJohn Marino  */
28786d7f5d3SJohn Marino struct safe_desc {
28886d7f5d3SJohn Marino 	u_int32_t	d_csr;			/* per-packet control/status */
28986d7f5d3SJohn Marino 	u_int32_t	d_src;			/* source address */
29086d7f5d3SJohn Marino 	u_int32_t	d_dst;			/* destination address */
29186d7f5d3SJohn Marino 	u_int32_t	d_sa;			/* SA address */
29286d7f5d3SJohn Marino 	u_int32_t	d_len;			/* length, bypass, status */
29386d7f5d3SJohn Marino };
29486d7f5d3SJohn Marino 
29586d7f5d3SJohn Marino /*
29686d7f5d3SJohn Marino  * Scatter/Gather particle descriptor.
29786d7f5d3SJohn Marino  *
29886d7f5d3SJohn Marino  * NB: scatter descriptors do not specify a size; this is fixed
29986d7f5d3SJohn Marino  *     by the setting of the SAFE_PE_PARTCFG register.
30086d7f5d3SJohn Marino  */
30186d7f5d3SJohn Marino struct safe_pdesc {
30286d7f5d3SJohn Marino 	u_int32_t	pd_addr;		/* particle address */
30386d7f5d3SJohn Marino 	u_int16_t	pd_flags;		/* control word */
30486d7f5d3SJohn Marino 	u_int16_t	pd_size;		/* particle size (bytes) */
30586d7f5d3SJohn Marino };
30686d7f5d3SJohn Marino 
30786d7f5d3SJohn Marino #define	SAFE_PD_READY	0x0001			/* ready for processing */
30886d7f5d3SJohn Marino #define	SAFE_PD_DONE	0x0002			/* h/w completed processing */
30986d7f5d3SJohn Marino 
31086d7f5d3SJohn Marino /*
31186d7f5d3SJohn Marino  * Security Association (SA) Record (Rev 1).  One of these is
31286d7f5d3SJohn Marino  * required for each operation processed by the packet engine.
31386d7f5d3SJohn Marino  */
31486d7f5d3SJohn Marino struct safe_sarec {
31586d7f5d3SJohn Marino 	u_int32_t	sa_cmd0;
31686d7f5d3SJohn Marino 	u_int32_t	sa_cmd1;
31786d7f5d3SJohn Marino 	u_int32_t	sa_resv0;
31886d7f5d3SJohn Marino 	u_int32_t	sa_resv1;
31986d7f5d3SJohn Marino 	u_int32_t	sa_key[8];		/* DES/3DES/AES key */
32086d7f5d3SJohn Marino 	u_int32_t	sa_indigest[5];		/* inner digest */
32186d7f5d3SJohn Marino 	u_int32_t	sa_outdigest[5];	/* outer digest */
32286d7f5d3SJohn Marino 	u_int32_t	sa_spi;			/* SPI */
32386d7f5d3SJohn Marino 	u_int32_t	sa_seqnum;		/* sequence number */
32486d7f5d3SJohn Marino 	u_int32_t	sa_seqmask[2];		/* sequence number mask */
32586d7f5d3SJohn Marino 	u_int32_t	sa_resv2;
32686d7f5d3SJohn Marino 	u_int32_t	sa_staterec;		/* address of state record */
32786d7f5d3SJohn Marino 	u_int32_t	sa_resv3[2];
32886d7f5d3SJohn Marino 	u_int32_t	sa_samgmt0;		/* SA management field 0 */
32986d7f5d3SJohn Marino 	u_int32_t	sa_samgmt1;		/* SA management field 0 */
33086d7f5d3SJohn Marino };
33186d7f5d3SJohn Marino 
33286d7f5d3SJohn Marino #define	SAFE_SA_CMD0_OP		0x00000007	/* operation code */
33386d7f5d3SJohn Marino #define	SAFE_SA_CMD0_OP_CRYPT	0x00000000	/* encrypt/decrypt (basic) */
33486d7f5d3SJohn Marino #define	SAFE_SA_CMD0_OP_BOTH	0x00000001	/* encrypt-hash/hash-decrypto */
33586d7f5d3SJohn Marino #define	SAFE_SA_CMD0_OP_HASH	0x00000003	/* hash (outbound-only) */
33686d7f5d3SJohn Marino #define	SAFE_SA_CMD0_OP_ESP	0x00000000	/* ESP in/out (proto) */
33786d7f5d3SJohn Marino #define	SAFE_SA_CMD0_OP_AH	0x00000001	/* AH in/out (proto) */
33886d7f5d3SJohn Marino #define	SAFE_SA_CMD0_INBOUND	0x00000008	/* inbound operation */
33986d7f5d3SJohn Marino #define	SAFE_SA_CMD0_OUTBOUND	0x00000000	/* outbound operation */
34086d7f5d3SJohn Marino #define	SAFE_SA_CMD0_GROUP	0x00000030	/* operation group */
34186d7f5d3SJohn Marino #define	SAFE_SA_CMD0_BASIC	0x00000000	/* basic operation */
34286d7f5d3SJohn Marino #define	SAFE_SA_CMD0_PROTO	0x00000010	/* protocol/packet operation */
34386d7f5d3SJohn Marino #define	SAFE_SA_CMD0_BUNDLE	0x00000020	/* bundled operation (resvd) */
34486d7f5d3SJohn Marino #define	SAFE_SA_CMD0_PAD	0x000000c0	/* crypto pad method */
34586d7f5d3SJohn Marino #define	SAFE_SA_CMD0_PAD_IPSEC	0x00000000	/* IPsec padding */
34686d7f5d3SJohn Marino #define	SAFE_SA_CMD0_PAD_PKCS7	0x00000040	/* PKCS#7 padding */
34786d7f5d3SJohn Marino #define	SAFE_SA_CMD0_PAD_CONS	0x00000080	/* constant padding */
34886d7f5d3SJohn Marino #define	SAFE_SA_CMD0_PAD_ZERO	0x000000c0	/* zero padding */
34986d7f5d3SJohn Marino #define	SAFE_SA_CMD0_CRYPT_ALG	0x00000f00	/* symmetric crypto algorithm */
35086d7f5d3SJohn Marino #define	SAFE_SA_CMD0_DES	0x00000000	/* DES crypto algorithm */
35186d7f5d3SJohn Marino #define	SAFE_SA_CMD0_3DES	0x00000100	/* 3DES crypto algorithm */
35286d7f5d3SJohn Marino #define	SAFE_SA_CMD0_AES	0x00000300	/* AES crypto algorithm */
35386d7f5d3SJohn Marino #define	SAFE_SA_CMD0_CRYPT_NULL	0x00000f00	/* null crypto algorithm */
35486d7f5d3SJohn Marino #define	SAFE_SA_CMD0_HASH_ALG	0x0000f000	/* hash algorithm */
35586d7f5d3SJohn Marino #define	SAFE_SA_CMD0_MD5	0x00000000	/* MD5 hash algorithm */
35686d7f5d3SJohn Marino #define	SAFE_SA_CMD0_SHA1	0x00001000	/* SHA-1 hash algorithm */
35786d7f5d3SJohn Marino #define	SAFE_SA_CMD0_HASH_NULL	0x0000f000	/* null hash algorithm */
35886d7f5d3SJohn Marino #define	SAFE_SA_CMD0_HDR_PROC	0x00080000	/* header processing */
35986d7f5d3SJohn Marino #define	SAFE_SA_CMD0_IBUSID	0x00300000	/* input bus id */
36086d7f5d3SJohn Marino #define	SAFE_SA_CMD0_IPCI	0x00100000	/* PCI input bus id */
36186d7f5d3SJohn Marino #define	SAFE_SA_CMD0_OBUSID	0x00c00000	/* output bus id */
36286d7f5d3SJohn Marino #define	SAFE_SA_CMD0_OPCI	0x00400000	/* PCI output bus id */
36386d7f5d3SJohn Marino #define	SAFE_SA_CMD0_IVLD	0x03000000	/* IV loading */
36486d7f5d3SJohn Marino #define	SAFE_SA_CMD0_IVLD_NONE	0x00000000	/* IV no load (reuse) */
36586d7f5d3SJohn Marino #define	SAFE_SA_CMD0_IVLD_IBUF	0x01000000	/* IV load from input buffer */
36686d7f5d3SJohn Marino #define	SAFE_SA_CMD0_IVLD_STATE	0x02000000	/* IV load from state */
36786d7f5d3SJohn Marino #define	SAFE_SA_CMD0_HSLD	0x0c000000	/* hash state loading */
36886d7f5d3SJohn Marino #define	SAFE_SA_CMD0_HSLD_SA	0x00000000	/* hash state load from SA */
36986d7f5d3SJohn Marino #define	SAFE_SA_CMD0_HSLD_STATE	0x08000000	/* hash state load from state */
37086d7f5d3SJohn Marino #define	SAFE_SA_CMD0_HSLD_NONE	0x0c000000	/* hash state no load */
37186d7f5d3SJohn Marino #define	SAFE_SA_CMD0_SAVEIV	0x10000000	/* save IV */
37286d7f5d3SJohn Marino #define	SAFE_SA_CMD0_SAVEHASH	0x20000000	/* save hash state */
37386d7f5d3SJohn Marino #define	SAFE_SA_CMD0_IGATHER	0x40000000	/* input gather */
37486d7f5d3SJohn Marino #define	SAFE_SA_CMD0_OSCATTER	0x80000000	/* output scatter */
37586d7f5d3SJohn Marino 
37686d7f5d3SJohn Marino #define	SAFE_SA_CMD1_HDRCOPY	0x00000002	/* copy header to output */
37786d7f5d3SJohn Marino #define	SAFE_SA_CMD1_PAYCOPY	0x00000004	/* copy payload to output */
37886d7f5d3SJohn Marino #define	SAFE_SA_CMD1_PADCOPY	0x00000008	/* copy pad to output */
37986d7f5d3SJohn Marino #define	SAFE_SA_CMD1_IPV4	0x00000000	/* IPv4 protocol */
38086d7f5d3SJohn Marino #define	SAFE_SA_CMD1_IPV6	0x00000010	/* IPv6 protocol */
38186d7f5d3SJohn Marino #define	SAFE_SA_CMD1_MUTABLE	0x00000020	/* mutable bit processing */
38286d7f5d3SJohn Marino #define	SAFE_SA_CMD1_SRBUSID	0x000000c0	/* state record bus id */
38386d7f5d3SJohn Marino #define	SAFE_SA_CMD1_SRPCI	0x00000040	/* state record from PCI */
38486d7f5d3SJohn Marino #define	SAFE_SA_CMD1_CRMODE	0x00000300	/* crypto mode */
38586d7f5d3SJohn Marino #define	SAFE_SA_CMD1_ECB	0x00000000	/* ECB crypto mode */
38686d7f5d3SJohn Marino #define	SAFE_SA_CMD1_CBC	0x00000100	/* CBC crypto mode */
38786d7f5d3SJohn Marino #define	SAFE_SA_CMD1_OFB	0x00000200	/* OFB crypto mode */
38886d7f5d3SJohn Marino #define	SAFE_SA_CMD1_CFB	0x00000300	/* CFB crypto mode */
38986d7f5d3SJohn Marino #define	SAFE_SA_CMD1_CRFEEDBACK	0x00000c00	/* crypto feedback mode */
39086d7f5d3SJohn Marino #define	SAFE_SA_CMD1_64BIT	0x00000000	/* 64-bit crypto feedback */
39186d7f5d3SJohn Marino #define	SAFE_SA_CMD1_8BIT	0x00000400	/* 8-bit crypto feedback */
39286d7f5d3SJohn Marino #define	SAFE_SA_CMD1_1BIT	0x00000800	/* 1-bit crypto feedback */
39386d7f5d3SJohn Marino #define	SAFE_SA_CMD1_128BIT	0x00000c00	/* 128-bit crypto feedback */
39486d7f5d3SJohn Marino #define	SAFE_SA_CMD1_OPTIONS	0x00001000	/* HMAC/options mutable bit */
39586d7f5d3SJohn Marino #define	SAFE_SA_CMD1_HMAC	SAFE_SA_CMD1_OPTIONS
39686d7f5d3SJohn Marino #define	SAFE_SA_CMD1_SAREV1	0x00008000	/* SA Revision 1 */
39786d7f5d3SJohn Marino #define	SAFE_SA_CMD1_OFFSET	0x00ff0000	/* hash/crypto offset(dwords) */
39886d7f5d3SJohn Marino #define	SAFE_SA_CMD1_OFFSET_S	16
39986d7f5d3SJohn Marino #define	SAFE_SA_CMD1_AESKEYLEN	0x0f000000	/* AES key length */
40086d7f5d3SJohn Marino #define	SAFE_SA_CMD1_AES128	0x02000000	/* 128-bit AES key */
40186d7f5d3SJohn Marino #define	SAFE_SA_CMD1_AES192	0x03000000	/* 192-bit AES key */
40286d7f5d3SJohn Marino #define	SAFE_SA_CMD1_AES256	0x04000000	/* 256-bit AES key */
40386d7f5d3SJohn Marino 
40486d7f5d3SJohn Marino /*
40586d7f5d3SJohn Marino  * Security Associate State Record (Rev 1).
40686d7f5d3SJohn Marino  */
40786d7f5d3SJohn Marino struct safe_sastate {
40886d7f5d3SJohn Marino 	u_int32_t	sa_saved_iv[4];		/* saved IV (DES/3DES/AES) */
40986d7f5d3SJohn Marino 	u_int32_t	sa_saved_hashbc;	/* saved hash byte count */
41086d7f5d3SJohn Marino 	u_int32_t	sa_saved_indigest[5];	/* saved inner digest */
41186d7f5d3SJohn Marino };
41286d7f5d3SJohn Marino #endif /* _SAFE_SAFEREG_H_ */
413