[entropy_src/rtl] Corrections to Main SM

This commit fixes a number of deviations from spec in the main SM

- The most important fixes come in the exit from the `ContHTRunning`
state.  Previously this state moved to start SHA processing of
the raw entropy at the end of each HT window, regardless of the HT
results.   Errors or alerts were to be handled in later states
as the SHA engine shut down.  This had two big problems:
  1. Data from failing windows would be permitted in the conditioned
     output, rather than being blocked.
  2. Since the SM clears the failure counter and issues the alert
     from different states, there is a possiblity that an alert
     can be cleared before action is taken.  This provides a pathway
     for the _release_ of low-grade entropy, with _no alert_.
- The `CondHTRunning` state also did not go straight to Idle once
  disabled, instead it would close out the SHA processing pipline
  first. (This "clean exit" was also the motivation for moving to SHA
  processing even in HT error condictions).  Unfortunately this is
  the only situation where the SHA is shut down cleanly like this,
  making it hard to predict whether old data will be squeezed from
  the SHA or not.
- Having a full esfinal FIFO would cause the SM to take different
  tranitions than normal.  Given that this condition is impossible
  to predict, this leads to unverifiable outputs.
- Though no data is to be output after the single BOOT mode seed
  is generated, health test data still needs to be processed and
  --unless in FW_OV mode-- alerts need to be signalled.

Signed-off-by: Martin Lueker-Boden <martin.lueker-boden@wdc.com>
2 files changed
tree: a5b9748a389527bdeaded8b1f5a447bad00ef113
  1. .github/
  2. ci/
  3. doc/
  4. hw/
  5. release/
  6. rules/
  7. site/
  8. sw/
  9. third_party/
  10. util/
  11. .bazelignore
  12. .bazelrc
  13. .bazelversion
  14. .clang-format
  15. .dockerignore
  16. .flake8
  17. .gitattributes
  18. .gitignore
  19. .style.yapf
  20. .svlint.toml
  21. .svls.toml
  22. _index.md
  23. apt-requirements.txt
  24. azure-pipelines.yml
  25. bazelisk.sh
  26. BUILD.bazel
  27. check_tool_requirements.core
  28. CLA
  29. COMMITTERS
  30. CONTRIBUTING.md
  31. LICENSE
  32. mypy.ini
  33. python-requirements.txt
  34. README.md
  35. tool_requirements.py
  36. topgen-reg-only.core
  37. topgen.core
  38. WORKSPACE
  39. yum-requirements.txt
README.md

OpenTitan

OpenTitan logo

About the project

OpenTitan is an open source silicon Root of Trust (RoT) project. OpenTitan will make the silicon RoT design and implementation more transparent, trustworthy, and secure for enterprises, platform providers, and chip manufacturers. OpenTitan is administered by lowRISC CIC as a collaborative project to produce high quality, open IP for instantiation as a full-featured product. See the OpenTitan site and OpenTitan docs for more information about the project.

About this repository

This repository contains hardware, software and utilities written as part of the OpenTitan project. It is structured as monolithic repository, or “monorepo”, where all components live in one repository. It exists to enable collaboration across partners participating in the OpenTitan project.

Documentation

The project contains comprehensive documentation of all IPs and tools. You can access it online at docs.opentitan.org.

How to contribute

Have a look at CONTRIBUTING and our documentation on project organization and processes for guidelines on how to contribute code to this repository.

Licensing

Unless otherwise noted, everything in this repository is covered by the Apache License, Version 2.0 (see LICENSE for full text).