sgx_t.mk 4.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127
  1. ######## Intel(R) SGX SDK Settings ########
  2. SGX_SDK ?= $(SdkPathFromPlugin)
  3. SGX_MODE ?= SIM
  4. SGX_ARCH ?= x64
  5. ifeq ($(shell getconf LONG_BIT), 32)
  6. SGX_ARCH := x86
  7. else ifeq ($(findstring -m32, $(CXXFLAGS)), -m32)
  8. SGX_ARCH := x86
  9. endif
  10. ifeq ($(SGX_ARCH), x86)
  11. SGX_COMMON_CFLAGS := -m32
  12. SGX_LIBRARY_PATH := $(SGX_SDK)/lib
  13. SGX_ENCLAVE_SIGNER := $(SGX_SDK)/bin/x86/sgx_sign
  14. SGX_EDGER8R := $(SGX_SDK)/bin/x86/sgx_edger8r
  15. else
  16. SGX_COMMON_CFLAGS := -m64
  17. SGX_LIBRARY_PATH := $(SGX_SDK)/lib64
  18. SGX_ENCLAVE_SIGNER := $(SGX_SDK)/bin/x64/sgx_sign
  19. SGX_EDGER8R := $(SGX_SDK)/bin/x64/sgx_edger8r
  20. endif
  21. ifeq ($(SGX_DEBUG), 1)
  22. ifeq ($(SGX_PRERELEASE), 1)
  23. $(error Cannot set SGX_DEBUG and SGX_PRERELEASE at the same time!!)
  24. endif
  25. endif
  26. ifeq ($(SGX_DEBUG), 1)
  27. SGX_COMMON_CFLAGS += -O0 -g
  28. else
  29. SGX_COMMON_CFLAGS += -O2
  30. endif
  31. ifneq ($(SGX_MODE), HW)
  32. Trts_Library_Name := sgx_trts_sim
  33. Service_Library_Name := sgx_tservice_sim
  34. else
  35. Trts_Library_Name := sgx_trts
  36. Service_Library_Name := sgx_tservice
  37. endif
  38. Crypto_Library_Name := sgx_tcrypto
  39. $(EnclaveName)_Cpp_Files := trusted/$(enclaveName).cpp
  40. $(EnclaveName)_C_Files :=
  41. $(EnclaveName)_Include_Paths := -IInclude -Itrusted -I$(SGX_SDK)/include -I$(SGX_SDK)/include/tlibc -I$(SGX_SDK)/include/libcxx
  42. Flags_Just_For_C := -Wno-implicit-function-declaration -std=c11
  43. Common_C_Cpp_Flags := $(SGX_COMMON_CFLAGS) -nostdinc -fvisibility=hidden -fpie -fstack-protector $($(EnclaveName)_Include_Paths) -fno-builtin-printf -I.
  44. $(EnclaveName)_C_Flags := $(Flags_Just_For_C) $(Common_C_Cpp_Flags)
  45. $(EnclaveName)_Cpp_Flags := $(Common_C_Cpp_Flags) -std=c++11 -nostdinc++ -fno-builtin-printf -I.
  46. $(EnclaveName)_Cpp_Flags := $($(EnclaveName)_Cpp_Flags) -fno-builtin-printf
  47. $(EnclaveName)_Link_Flags := $(SGX_COMMON_CFLAGS) -Wl,--no-undefined -nostdlib -nodefaultlibs -nostartfiles -L$(SGX_LIBRARY_PATH) \
  48. -Wl,--whole-archive -l$(Trts_Library_Name) -Wl,--no-whole-archive \
  49. -Wl,--start-group -lsgx_tstdc -lsgx_tcxx -l$(Crypto_Library_Name) -l$(Service_Library_Name) -Wl,--end-group \
  50. -Wl,-Bstatic -Wl,-Bsymbolic -Wl,--no-undefined \
  51. -Wl,-pie,-eenclave_entry -Wl,--export-dynamic \
  52. -Wl,--defsym,__ImageBase=0 \
  53. -Wl,--version-script=trusted/$(enclaveName).lds
  54. $(EnclaveName)_Cpp_Objects := $($(EnclaveName)_Cpp_Files:.cpp=.o)
  55. $(EnclaveName)_C_Objects := $($(EnclaveName)_C_Files:.c=.o)
  56. ifeq ($(SGX_MODE), HW)
  57. ifneq ($(SGX_DEBUG), 1)
  58. ifneq ($(SGX_PRERELEASE), 1)
  59. Build_Mode = HW_RELEASE
  60. endif
  61. endif
  62. endif
  63. .PHONY: all run
  64. ifeq ($(Build_Mode), HW_RELEASE)
  65. all: $(enclaveName).so
  66. @echo "Build enclave $(enclaveName).so [$(Build_Mode)|$(SGX_ARCH)] success!"
  67. @echo
  68. @echo "*********************************************************************************************************************************************************"
  69. @echo "PLEASE NOTE: In this mode, please sign the $(enclaveName).so first using Two Step Sign mechanism before you run the app to launch and access the enclave."
  70. @echo "*********************************************************************************************************************************************************"
  71. @echo
  72. else
  73. all: $(enclaveName).signed.so
  74. endif
  75. run: all
  76. ifneq ($(Build_Mode), HW_RELEASE)
  77. @$(CURDIR)/app
  78. @echo "RUN => app [$(SGX_MODE)|$(SGX_ARCH), OK]"
  79. endif
  80. ######## $(enclaveName) Objects ########
  81. trusted/$(enclaveName)_t.c: $(SGX_EDGER8R) ./trusted/$(enclaveName).edl
  82. @cd ./trusted && $(SGX_EDGER8R) --trusted ../trusted/$(enclaveName).edl --search-path ../trusted --search-path $(SGX_SDK)/include
  83. @echo "GEN => $@"
  84. trusted/$(enclaveName)_t.o: ./trusted/$(enclaveName)_t.c
  85. @$(CC) $($(EnclaveName)_C_Flags) -c $< -o $@
  86. @echo "CC <= $<"
  87. trusted/%.o: trusted/%.cpp
  88. @$(CXX) $($(EnclaveName)_Cpp_Flags) -c $< -o $@
  89. @echo "CXX <= $<"
  90. trusted/%.o: trusted/%.c
  91. @$(CC) $($(EnclaveName)_C_Flags) -c $< -o $@
  92. @echo "CC <= $<"
  93. $(enclaveName).so: trusted/$(enclaveName)_t.o $($(EnclaveName)_Cpp_Objects) $($(EnclaveName)_C_Objects)
  94. @$(CXX) $^ -o $@ $($(EnclaveName)_Link_Flags)
  95. @echo "LINK => $@"
  96. $(enclaveName).signed.so: $(enclaveName).so
  97. @$(SGX_ENCLAVE_SIGNER) sign -key trusted/$(enclaveName)_private.pem -enclave $(enclaveName).so -out $@ -config trusted/$(enclaveName).config.xml
  98. @echo "SIGN => $@"
  99. clean:
  100. @rm -f $(enclaveName).* trusted/$(enclaveName)_t.* $($(EnclaveName)_Cpp_Objects) $($(EnclaveName)_C_Objects)