From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mga03.intel.com (mga03.intel.com [134.134.136.65]) by mx.groups.io with SMTP id smtpd.web11.8571.1635228660058396759 for ; Mon, 25 Oct 2021 23:11:00 -0700 Authentication-Results: mx.groups.io; dkim=missing; spf=pass (domain: intel.com, ip: 134.134.136.65, mailfrom: jie.yang@intel.com) X-IronPort-AV: E=McAfee;i="6200,9189,10148"; a="229777498" X-IronPort-AV: E=Sophos;i="5.87,182,1631602800"; d="scan'208";a="229777498" Received: from orsmga002.jf.intel.com ([10.7.209.21]) by orsmga103.jf.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 25 Oct 2021 23:10:58 -0700 X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="5.87,182,1631602800"; d="scan'208";a="465174406" Received: from desktop-yang.ccr.corp.intel.com ([10.239.158.131]) by orsmga002.jf.intel.com with ESMTP; 25 Oct 2021 23:10:56 -0700 From: "Yang Jie" To: devel@edk2.groups.io Cc: jian.j.wang@intel.com, hao.a.wu@intel.com, liming.gao@intel.com, lersek@redhat.com, philmd@redhat.com, Yang Jie Subject: [edk2-devel] MdeModulePkg/DxeCapsuleLibFmp: Use new Variable Lock interface Date: Tue, 26 Oct 2021 14:10:48 +0800 Message-Id: <20211026061048.2858-1-jie.yang@intel.com> X-Mailer: git-send-email 2.26.2.windows.1 MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable REF: https://bugzilla.tianocore.org/show_bug.cgi?id=3D3699 The code in MdeModulePkg\Library\DxeCapsuleLibFmp call the deprecated=20 interface VariableLockRequestToLockc. So I changed the code in FmpDevicePkg using RegisterBasicVariablePolicy, instead of the=20 deprecated interface. Signed-off-by: Yang Jie Cc: Jian J Wang Cc: Hao A Wu Cc: Liming Gao Cc: Laszlo Ersek Cc: Philippe Mathieu-Daude --- .../DxeCapsuleLibFmp/DxeCapsuleLib.inf | 5 +- .../DxeCapsuleLibFmp/DxeCapsuleReportLib.c | 66 ++++++++++++------- 2 files changed, 47 insertions(+), 24 deletions(-) diff --git a/MdeModulePkg/Library/DxeCapsuleLibFmp/DxeCapsuleLib.inf b/MdeM= odulePkg/Library/DxeCapsuleLibFmp/DxeCapsuleLib.inf index 05de4299fb..9212c81d68 100644 --- a/MdeModulePkg/Library/DxeCapsuleLibFmp/DxeCapsuleLib.inf +++ b/MdeModulePkg/Library/DxeCapsuleLibFmp/DxeCapsuleLib.inf @@ -3,7 +3,7 @@ #=0D # Capsule library instance for DXE_DRIVER module types.=0D #=0D -# Copyright (c) 2016 - 2019, Intel Corporation. All rights reserved.
= =0D +# Copyright (c) 2016 - 2021, Intel Corporation. All rights reserved.
= =0D # SPDX-License-Identifier: BSD-2-Clause-Patent=0D #=0D ##=0D @@ -51,6 +51,7 @@ DisplayUpdateProgressLib=0D FileHandleLib=0D UefiBootManagerLib=0D + VariablePolicyHelperLib=0D =0D [Pcd]=0D gEfiMdeModulePkgTokenSpaceGuid.PcdCapsuleMax = ## CONSUMES=0D @@ -71,11 +72,11 @@ [Protocols]=0D gEsrtManagementProtocolGuid ## CONSUMES=0D gEfiFirmwareManagementProtocolGuid ## CONSUMES=0D - gEdkiiVariableLockProtocolGuid ## SOMETIMES_CONSUMES=0D gEdkiiFirmwareManagementProgressProtocolGuid ## SOMETIMES_CONSUMES=0D gEfiSimpleFileSystemProtocolGuid ## SOMETIMES_CONSUMES=0D gEfiBlockIoProtocolGuid ## CONSUMES=0D gEfiDiskIoProtocolGuid ## CONSUMES=0D + gEdkiiVariablePolicyProtocolGuid ## CONSUMES=0D =0D [Guids]=0D gEfiFmpCapsuleGuid ## SOMETIMES_CONSUMES ## GUID=0D diff --git a/MdeModulePkg/Library/DxeCapsuleLibFmp/DxeCapsuleReportLib.c b/= MdeModulePkg/Library/DxeCapsuleLibFmp/DxeCapsuleReportLib.c index 0ec5f20676..665b7d06d9 100644 --- a/MdeModulePkg/Library/DxeCapsuleLibFmp/DxeCapsuleReportLib.c +++ b/MdeModulePkg/Library/DxeCapsuleLibFmp/DxeCapsuleReportLib.c @@ -1,14 +1,13 @@ /** @file=0D DXE capsule report related function.=0D =0D - Copyright (c) 2016 - 2019, Intel Corporation. All rights reserved.
=0D + Copyright (c) 2016 - 2021, Intel Corporation. All rights reserved.
=0D SPDX-License-Identifier: BSD-2-Clause-Patent=0D =0D **/=0D =0D #include =0D #include =0D -#include =0D #include =0D #include =0D #include =0D @@ -26,6 +25,7 @@ #include =0D #include =0D #include =0D +#include =0D =0D #include =0D =0D @@ -94,6 +94,44 @@ GetNewCapsuleResultIndex ( return CurrentIndex + 1;=0D }=0D =0D +/**=0D + Lock Variable by variable policy=0D +=0D + @param[in] VariableGuid The Guid of the variable to be locked=0D + @param[in] VariableName The name of the variable to be locked=0D +**/=0D +VOID LockVaraible (=0D + IN CONST EFI_GUID VariableGuid,=0D + IN CHAR16 *VariableName=0D + )=0D +{=0D + EFI_STATUS Status;=0D + EDKII_VARIABLE_POLICY_PROTOCOL *VariablePolicy;=0D +=0D + // Locate the VariablePolicy protocol=0D + Status =3D gBS->LocateProtocol (&gEdkiiVariablePolicyProtocolGuid, NULL,= (VOID**)&VariablePolicy);=0D + if (EFI_ERROR (Status)) {=0D + DEBUG ((DEBUG_ERROR, "DxeCapsuleReportLib %a - Could not locate Variab= lePolicy protocol! %r\n", __FUNCTION__, Status));=0D + ASSERT_EFI_ERROR (Status);=0D + }=0D + // If success, go ahead and set the policies to protect the target varia= bles.=0D + Status =3D RegisterBasicVariablePolicy (VariablePolicy,=0D + &VariableGuid,=0D + VariableName,=0D + VARIABLE_POLICY_NO_MIN_SIZE,=0D + VARIABLE_POLICY_NO_MAX_SIZE,=0D + VARIABLE_POLICY_NO_MUST_ATTR,=0D + VARIABLE_POLICY_NO_CANT_ATTR,=0D + VARIABLE_POLICY_TYPE_LOCK_NOW);=0D + if (EFI_ERROR (Status)) {=0D + DEBUG ((DEBUG_ERROR, "DxeCapsuleLibFmp: Failed to lock variable %g %s.= Status =3D %r\n",=0D + &VariableGuid,=0D + L"CapsuleLast",=0D + Status));=0D + ASSERT_EFI_ERROR (Status);=0D + }=0D +}=0D +=0D /**=0D Write a new capsule status variable.=0D =0D @@ -278,7 +316,7 @@ InitCapsuleMaxVariable ( EFI_STATUS Status;=0D UINTN Size;=0D CHAR16 CapsuleMaxStr[sizeof("Capsule####")];=0D - EDKII_VARIABLE_LOCK_PROTOCOL *VariableLock;=0D + //EDKII_VARIABLE_LOCK_PROTOCOL *VariableLock;=0D =0D UnicodeSPrint(=0D CapsuleMaxStr,=0D @@ -297,11 +335,7 @@ InitCapsuleMaxVariable ( );=0D if (!EFI_ERROR(Status)) {=0D // Lock it per UEFI spec.=0D - Status =3D gBS->LocateProtocol(&gEdkiiVariableLockProtocolGuid, NULL, = (VOID **)&VariableLock);=0D - if (!EFI_ERROR(Status)) {=0D - Status =3D VariableLock->RequestToLock(VariableLock, L"CapsuleMax", = &gEfiCapsuleReportGuid);=0D - ASSERT_EFI_ERROR(Status);=0D - }=0D + LockVaraible (gEfiCapsuleReportGuid, L"CapsuleMax");=0D }=0D }=0D =0D @@ -315,7 +349,6 @@ InitCapsuleLastVariable ( {=0D EFI_STATUS Status;=0D EFI_BOOT_MODE BootMode;=0D - EDKII_VARIABLE_LOCK_PROTOCOL *VariableLock;=0D VOID *CapsuleResult;=0D UINTN Size;=0D CHAR16 CapsuleLastStr[sizeof("Capsule####")];= =0D @@ -372,11 +405,7 @@ InitCapsuleLastVariable ( }=0D =0D // Lock it in normal boot path per UEFI spec.=0D - Status =3D gBS->LocateProtocol(&gEdkiiVariableLockProtocolGuid, NULL, = (VOID **)&VariableLock);=0D - if (!EFI_ERROR(Status)) {=0D - Status =3D VariableLock->RequestToLock(VariableLock, L"CapsuleLast",= &gEfiCapsuleReportGuid);=0D - ASSERT_EFI_ERROR(Status);=0D - }=0D + LockVaraible (gEfiCapsuleReportGuid, L"CapsuleLast");=0D }=0D }=0D =0D @@ -436,20 +465,13 @@ InitCapsuleRelocationInfo ( VOID=0D )=0D {=0D - EFI_STATUS Status;=0D - EDKII_VARIABLE_LOCK_PROTOCOL *VariableLock;=0D -=0D CoDClearCapsuleRelocationInfo();=0D =0D //=0D // Unlock Capsule On Disk relocation Info variable only when Capsule On = Disk flag is enabled=0D //=0D if (!CoDCheckCapsuleOnDiskFlag()) {=0D - Status =3D gBS->LocateProtocol (&gEdkiiVariableLockProtocolGuid, NULL,= (VOID **) &VariableLock);=0D - if (!EFI_ERROR (Status)) {=0D - Status =3D VariableLock->RequestToLock (VariableLock, COD_RELOCATION= _INFO_VAR_NAME, &gEfiCapsuleVendorGuid);=0D - ASSERT_EFI_ERROR (Status);=0D - }=0D + LockVaraible (gEfiCapsuleVendorGuid, COD_RELOCATION_INFO_VAR_NAME);=0D }=0D }=0D =0D --=20 2.26.2.windows.1