mirror of
https://github.com/intel/linux-sgx
synced 2026-06-08 14:49:32 +00:00
b9b071b544
Supported new OS: RHEL 8.2 and SUSE 15. Provided standalone Intel(R) SGX DCAP Quote verification library installer. Added Intel(R) SGX DCAP Platform Certificate ID Retrieval Tool and Multi-package Registration Agent (MPA) installers into SGX installation repo. Fixed bugs. Signed-off-by: Li, Xun <xun.li@intel.com>
93 lines
3.0 KiB
C++
93 lines
3.0 KiB
C++
/*
|
|
* Copyright (C) 2011-2020 Intel Corporation. All rights reserved.
|
|
*
|
|
* Redistribution and use in source and binary forms, with or without
|
|
* modification, are permitted provided that the following conditions
|
|
* are met:
|
|
*
|
|
* * Redistributions of source code must retain the above copyright
|
|
* notice, this list of conditions and the following disclaimer.
|
|
* * Redistributions in binary form must reproduce the above copyright
|
|
* notice, this list of conditions and the following disclaimer in
|
|
* the documentation and/or other materials provided with the
|
|
* distribution.
|
|
* * Neither the name of Intel Corporation nor the names of its
|
|
* contributors may be used to endorse or promote products derived
|
|
* from this software without specific prior written permission.
|
|
*
|
|
* THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
|
|
* "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
|
|
* LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
|
|
* A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
|
|
* OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
|
|
* SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
|
|
* LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
|
|
* DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
|
|
* THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
|
|
* (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
|
|
* OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
|
|
*
|
|
*/
|
|
|
|
#include "urts_emodpr.h"
|
|
#include "enclave_creator.h"
|
|
#include <sys/mman.h>
|
|
|
|
typedef struct ms_emodpr_ocall_t {
|
|
size_t ms_addr;
|
|
size_t ms_size;
|
|
uint64_t ms_epcm_perms;
|
|
} ms_trim_emodpr_ocall_t;
|
|
|
|
|
|
|
|
sgx_status_t ocall_emodpr(void* pms)
|
|
{
|
|
int ret = 0;
|
|
ms_trim_emodpr_ocall_t* ms = SGX_CAST(ms_trim_emodpr_ocall_t*, pms);
|
|
|
|
if(ms->ms_epcm_perms < (SI_FLAG_R|SI_FLAG_W|SI_FLAG_X))
|
|
{
|
|
EnclaveCreator *enclave_creator = get_enclave_creator();
|
|
if(NULL == enclave_creator)
|
|
{
|
|
return SGX_ERROR_UNEXPECTED;
|
|
}
|
|
ret = enclave_creator->emodpr(ms->ms_addr, ms->ms_size, ms->ms_epcm_perms);
|
|
if(0 != ret)
|
|
{
|
|
return (sgx_status_t)ret;
|
|
}
|
|
}
|
|
if(ms->ms_epcm_perms != SI_FLAG_NONE)
|
|
{
|
|
ret = mprotect((void*)ms->ms_addr, ms->ms_size, (int)ms->ms_epcm_perms);
|
|
if(ret != 0)
|
|
{
|
|
return SGX_ERROR_UNEXPECTED;
|
|
}
|
|
}
|
|
|
|
return SGX_SUCCESS;
|
|
}
|
|
|
|
sgx_status_t ocall_mprotect(void *pms)
|
|
{
|
|
int ret = 0;
|
|
ms_trim_emodpr_ocall_t* ms = SGX_CAST(ms_trim_emodpr_ocall_t*, pms);
|
|
if(ms->ms_epcm_perms & ~(SI_FLAG_R|SI_FLAG_W|SI_FLAG_X))
|
|
{
|
|
return SGX_ERROR_INVALID_PARAMETER;
|
|
}
|
|
else
|
|
{
|
|
ret = mprotect((void*)ms->ms_addr, ms->ms_size, (int)ms->ms_epcm_perms);
|
|
if(ret != 0)
|
|
{
|
|
return SGX_ERROR_UNEXPECTED;
|
|
}
|
|
}
|
|
|
|
return SGX_SUCCESS;
|
|
}
|