xref: /xnu-11417.140.69/libsa/bootstrap.cpp (revision 43a90889846e00bfb5cf1d255cdc0a701a1e05a4)
1*43a90889SApple OSS Distributions /*
2*43a90889SApple OSS Distributions  * Copyright (c) 2000-2012 Apple Inc. All rights reserved.
3*43a90889SApple OSS Distributions  *
4*43a90889SApple OSS Distributions  * @APPLE_OSREFERENCE_LICENSE_HEADER_START@
5*43a90889SApple OSS Distributions  *
6*43a90889SApple OSS Distributions  * This file contains Original Code and/or Modifications of Original Code
7*43a90889SApple OSS Distributions  * as defined in and that are subject to the Apple Public Source License
8*43a90889SApple OSS Distributions  * Version 2.0 (the 'License'). You may not use this file except in
9*43a90889SApple OSS Distributions  * compliance with the License. The rights granted to you under the License
10*43a90889SApple OSS Distributions  * may not be used to create, or enable the creation or redistribution of,
11*43a90889SApple OSS Distributions  * unlawful or unlicensed copies of an Apple operating system, or to
12*43a90889SApple OSS Distributions  * circumvent, violate, or enable the circumvention or violation of, any
13*43a90889SApple OSS Distributions  * terms of an Apple operating system software license agreement.
14*43a90889SApple OSS Distributions  *
15*43a90889SApple OSS Distributions  * Please obtain a copy of the License at
16*43a90889SApple OSS Distributions  * http://www.opensource.apple.com/apsl/ and read it before using this file.
17*43a90889SApple OSS Distributions  *
18*43a90889SApple OSS Distributions  * The Original Code and all software distributed under the License are
19*43a90889SApple OSS Distributions  * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
20*43a90889SApple OSS Distributions  * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
21*43a90889SApple OSS Distributions  * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
22*43a90889SApple OSS Distributions  * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
23*43a90889SApple OSS Distributions  * Please see the License for the specific language governing rights and
24*43a90889SApple OSS Distributions  * limitations under the License.
25*43a90889SApple OSS Distributions  *
26*43a90889SApple OSS Distributions  * @APPLE_OSREFERENCE_LICENSE_HEADER_END@
27*43a90889SApple OSS Distributions  */
28*43a90889SApple OSS Distributions extern "C" {
29*43a90889SApple OSS Distributions #include <mach/kmod.h>
30*43a90889SApple OSS Distributions #include <libkern/kernel_mach_header.h>
31*43a90889SApple OSS Distributions #include <libkern/prelink.h>
32*43a90889SApple OSS Distributions #include <libkern/crypto/sha2.h>
33*43a90889SApple OSS Distributions }
34*43a90889SApple OSS Distributions 
35*43a90889SApple OSS Distributions #define IOKIT_ENABLE_SHARED_PTR
36*43a90889SApple OSS Distributions 
37*43a90889SApple OSS Distributions #include <libkern/version.h>
38*43a90889SApple OSS Distributions #include <libkern/c++/OSContainers.h>
39*43a90889SApple OSS Distributions #include <libkern/OSKextLibPrivate.h>
40*43a90889SApple OSS Distributions #include <libkern/c++/OSKext.h>
41*43a90889SApple OSS Distributions #include <IOKit/IOLib.h>
42*43a90889SApple OSS Distributions #include <IOKit/IOService.h>
43*43a90889SApple OSS Distributions #include <IOKit/IODeviceTreeSupport.h>
44*43a90889SApple OSS Distributions #include <IOKit/IOCatalogue.h>
45*43a90889SApple OSS Distributions 
46*43a90889SApple OSS Distributions #if __x86_64__
47*43a90889SApple OSS Distributions #define KASLR_KEXT_DEBUG 0
48*43a90889SApple OSS Distributions #endif
49*43a90889SApple OSS Distributions 
50*43a90889SApple OSS Distributions #if PRAGMA_MARK
51*43a90889SApple OSS Distributions #pragma mark Bootstrap Declarations
52*43a90889SApple OSS Distributions #endif
53*43a90889SApple OSS Distributions /*********************************************************************
54*43a90889SApple OSS Distributions * Bootstrap Declarations
55*43a90889SApple OSS Distributions *
56*43a90889SApple OSS Distributions * The ENTIRE point of the libsa/KLD segment is to isolate bootstrap
57*43a90889SApple OSS Distributions * code from other parts of the kernel, so function symbols are not
58*43a90889SApple OSS Distributions * exported; rather pointers to those functions are exported.
59*43a90889SApple OSS Distributions *
60*43a90889SApple OSS Distributions * xxx - need to think about locking for handling the 'weak' refs.
61*43a90889SApple OSS Distributions * xxx - do export a non-KLD function that says you've called a
62*43a90889SApple OSS Distributions * xxx - bootstrap function that has been removed.
63*43a90889SApple OSS Distributions *
64*43a90889SApple OSS Distributions * ALL call-ins to this segment of the kernel must be done through
65*43a90889SApple OSS Distributions * exported pointers. The symbols themselves are private and not to
66*43a90889SApple OSS Distributions * be linked against.
67*43a90889SApple OSS Distributions *********************************************************************/
68*43a90889SApple OSS Distributions extern "C" {
69*43a90889SApple OSS Distributions extern void (*record_startup_extensions_function)(void);
70*43a90889SApple OSS Distributions extern void (*load_security_extensions_function)(void);
71*43a90889SApple OSS Distributions };
72*43a90889SApple OSS Distributions 
73*43a90889SApple OSS Distributions static void bootstrapRecordStartupExtensions(void);
74*43a90889SApple OSS Distributions static void bootstrapLoadSecurityExtensions(void);
75*43a90889SApple OSS Distributions 
76*43a90889SApple OSS Distributions 
77*43a90889SApple OSS Distributions #if NO_KEXTD
78*43a90889SApple OSS Distributions extern "C" bool IORamDiskBSDRoot(void);
79*43a90889SApple OSS Distributions #endif
80*43a90889SApple OSS Distributions 
81*43a90889SApple OSS Distributions #if PRAGMA_MARK
82*43a90889SApple OSS Distributions #pragma mark Macros
83*43a90889SApple OSS Distributions #endif
84*43a90889SApple OSS Distributions /*********************************************************************
85*43a90889SApple OSS Distributions * Macros
86*43a90889SApple OSS Distributions *********************************************************************/
87*43a90889SApple OSS Distributions #define CONST_STRLEN(str) (sizeof(str) - 1)
88*43a90889SApple OSS Distributions 
89*43a90889SApple OSS Distributions #if PRAGMA_MARK
90*43a90889SApple OSS Distributions #pragma mark Kernel Component Kext Identifiers
91*43a90889SApple OSS Distributions #endif
92*43a90889SApple OSS Distributions /*********************************************************************
93*43a90889SApple OSS Distributions * Kernel Component Kext Identifiers
94*43a90889SApple OSS Distributions *
95*43a90889SApple OSS Distributions * We could have each kernel resource kext automatically "load" as
96*43a90889SApple OSS Distributions * it's created, but it's nicer to have them listed in kextstat in
97*43a90889SApple OSS Distributions * the order of this list. We'll walk through this after setting up
98*43a90889SApple OSS Distributions * all the boot kexts and have them load up.
99*43a90889SApple OSS Distributions *********************************************************************/
100*43a90889SApple OSS Distributions static const char * sKernelComponentNames[] = {
101*43a90889SApple OSS Distributions 	// The kexts for these IDs must have a version matching 'osrelease'.
102*43a90889SApple OSS Distributions 	"com.apple.kernel",
103*43a90889SApple OSS Distributions 	"com.apple.kpi.bsd",
104*43a90889SApple OSS Distributions 	"com.apple.kpi.dsep",
105*43a90889SApple OSS Distributions 	"com.apple.kpi.iokit",
106*43a90889SApple OSS Distributions 	"com.apple.kpi.kasan",
107*43a90889SApple OSS Distributions 	"com.apple.kpi.kcov",
108*43a90889SApple OSS Distributions 	"com.apple.kpi.libkern",
109*43a90889SApple OSS Distributions 	"com.apple.kpi.mach",
110*43a90889SApple OSS Distributions 	"com.apple.kpi.private",
111*43a90889SApple OSS Distributions 	"com.apple.kpi.unsupported",
112*43a90889SApple OSS Distributions 	"com.apple.iokit.IONVRAMFamily",
113*43a90889SApple OSS Distributions 	"com.apple.driver.AppleNMI",
114*43a90889SApple OSS Distributions 	"com.apple.iokit.IOSystemManagementFamily",
115*43a90889SApple OSS Distributions 	"com.apple.iokit.ApplePlatformFamily",
116*43a90889SApple OSS Distributions 	NULL
117*43a90889SApple OSS Distributions };
118*43a90889SApple OSS Distributions 
119*43a90889SApple OSS Distributions #if PRAGMA_MARK
120*43a90889SApple OSS Distributions #pragma mark KLDBootstrap Class
121*43a90889SApple OSS Distributions #endif
122*43a90889SApple OSS Distributions /*********************************************************************
123*43a90889SApple OSS Distributions * KLDBootstrap Class
124*43a90889SApple OSS Distributions *
125*43a90889SApple OSS Distributions * We use a C++ class here so that it can be a friend of OSKext and
126*43a90889SApple OSS Distributions * get at private stuff. We can't hide the class itself, but we can
127*43a90889SApple OSS Distributions * hide the instance through which we invoke the functions.
128*43a90889SApple OSS Distributions *********************************************************************/
129*43a90889SApple OSS Distributions class KLDBootstrap {
130*43a90889SApple OSS Distributions 	friend void bootstrapRecordStartupExtensions(void);
131*43a90889SApple OSS Distributions 	friend void bootstrapLoadSecurityExtensions(void);
132*43a90889SApple OSS Distributions 
133*43a90889SApple OSS Distributions private:
134*43a90889SApple OSS Distributions 	void readStartupExtensions(void);
135*43a90889SApple OSS Distributions 
136*43a90889SApple OSS Distributions 	void readPrelinkedExtensions(kernel_mach_header_t *mh, kc_kind_t type);
137*43a90889SApple OSS Distributions 	void readBooterExtensions(void);
138*43a90889SApple OSS Distributions 
139*43a90889SApple OSS Distributions 	OSReturn loadKernelComponentKexts(void);
140*43a90889SApple OSS Distributions 	void     loadKernelExternalComponents(void);
141*43a90889SApple OSS Distributions 	void     readBuiltinPersonalities(void);
142*43a90889SApple OSS Distributions 
143*43a90889SApple OSS Distributions 	void     loadSecurityExtensions(void);
144*43a90889SApple OSS Distributions 
145*43a90889SApple OSS Distributions public:
146*43a90889SApple OSS Distributions 	KLDBootstrap(void);
147*43a90889SApple OSS Distributions 	~KLDBootstrap(void);
148*43a90889SApple OSS Distributions };
149*43a90889SApple OSS Distributions 
150*43a90889SApple OSS Distributions LIBKERN_ALWAYS_DESTROY static KLDBootstrap sBootstrapObject;
151*43a90889SApple OSS Distributions 
152*43a90889SApple OSS Distributions /*********************************************************************
153*43a90889SApple OSS Distributions * Set the function pointers for the entry points into the bootstrap
154*43a90889SApple OSS Distributions * segment upon C++ static constructor invocation.
155*43a90889SApple OSS Distributions *********************************************************************/
KLDBootstrap(void)156*43a90889SApple OSS Distributions KLDBootstrap::KLDBootstrap(void)
157*43a90889SApple OSS Distributions {
158*43a90889SApple OSS Distributions 	if (this != &sBootstrapObject) {
159*43a90889SApple OSS Distributions 		panic("Attempt to access bootstrap segment.");
160*43a90889SApple OSS Distributions 	}
161*43a90889SApple OSS Distributions 	record_startup_extensions_function = &bootstrapRecordStartupExtensions;
162*43a90889SApple OSS Distributions 	load_security_extensions_function = &bootstrapLoadSecurityExtensions;
163*43a90889SApple OSS Distributions }
164*43a90889SApple OSS Distributions 
165*43a90889SApple OSS Distributions /*********************************************************************
166*43a90889SApple OSS Distributions * Clear the function pointers for the entry points into the bootstrap
167*43a90889SApple OSS Distributions * segment upon C++ static destructor invocation.
168*43a90889SApple OSS Distributions *********************************************************************/
~KLDBootstrap(void)169*43a90889SApple OSS Distributions KLDBootstrap::~KLDBootstrap(void)
170*43a90889SApple OSS Distributions {
171*43a90889SApple OSS Distributions 	if (this != &sBootstrapObject) {
172*43a90889SApple OSS Distributions 		panic("Attempt to access bootstrap segment.");
173*43a90889SApple OSS Distributions 	}
174*43a90889SApple OSS Distributions 
175*43a90889SApple OSS Distributions 
176*43a90889SApple OSS Distributions 	record_startup_extensions_function = NULL;
177*43a90889SApple OSS Distributions 	load_security_extensions_function = NULL;
178*43a90889SApple OSS Distributions }
179*43a90889SApple OSS Distributions 
180*43a90889SApple OSS Distributions /*********************************************************************
181*43a90889SApple OSS Distributions *********************************************************************/
182*43a90889SApple OSS Distributions void
readStartupExtensions(void)183*43a90889SApple OSS Distributions KLDBootstrap::readStartupExtensions(void)
184*43a90889SApple OSS Distributions {
185*43a90889SApple OSS Distributions 	kernel_section_t * prelinkInfoSect = NULL; // do not free
186*43a90889SApple OSS Distributions 
187*43a90889SApple OSS Distributions 	OSKextLog(/* kext */ NULL,
188*43a90889SApple OSS Distributions 	    kOSKextLogProgressLevel |
189*43a90889SApple OSS Distributions 	    kOSKextLogGeneralFlag | kOSKextLogDirectoryScanFlag |
190*43a90889SApple OSS Distributions 	    kOSKextLogKextBookkeepingFlag,
191*43a90889SApple OSS Distributions 	    "Reading startup extensions.");
192*43a90889SApple OSS Distributions 
193*43a90889SApple OSS Distributions 	kc_format_t kc_format;
194*43a90889SApple OSS Distributions 	kernel_mach_header_t *mh = &_mh_execute_header;
195*43a90889SApple OSS Distributions 	if (PE_get_primary_kc_format(&kc_format) && kc_format == KCFormatFileset) {
196*43a90889SApple OSS Distributions 		mh = (kernel_mach_header_t *)PE_get_kc_header(KCKindPrimary);
197*43a90889SApple OSS Distributions 	}
198*43a90889SApple OSS Distributions 
199*43a90889SApple OSS Distributions 	/* If the prelink info segment has a nonzero size, we are prelinked
200*43a90889SApple OSS Distributions 	 * and won't have any individual kexts or mkexts to read.
201*43a90889SApple OSS Distributions 	 * Otherwise, we need to read kexts or the mkext from what the booter
202*43a90889SApple OSS Distributions 	 * has handed us.
203*43a90889SApple OSS Distributions 	 */
204*43a90889SApple OSS Distributions 	prelinkInfoSect = getsectbynamefromheader(mh, kPrelinkInfoSegment, kPrelinkInfoSection);
205*43a90889SApple OSS Distributions 	if (prelinkInfoSect->size) {
206*43a90889SApple OSS Distributions 		readPrelinkedExtensions(mh, KCKindPrimary);
207*43a90889SApple OSS Distributions 	} else {
208*43a90889SApple OSS Distributions 		readBooterExtensions();
209*43a90889SApple OSS Distributions 	}
210*43a90889SApple OSS Distributions 
211*43a90889SApple OSS Distributions 	kernel_mach_header_t *akc_mh;
212*43a90889SApple OSS Distributions 	akc_mh = (kernel_mach_header_t*)PE_get_kc_header(KCKindAuxiliary);
213*43a90889SApple OSS Distributions 	if (akc_mh) {
214*43a90889SApple OSS Distributions 		readPrelinkedExtensions(akc_mh, KCKindAuxiliary);
215*43a90889SApple OSS Distributions 	}
216*43a90889SApple OSS Distributions 
217*43a90889SApple OSS Distributions 	loadKernelComponentKexts();
218*43a90889SApple OSS Distributions 	loadKernelExternalComponents();
219*43a90889SApple OSS Distributions 	readBuiltinPersonalities();
220*43a90889SApple OSS Distributions 	OSKext::sendAllKextPersonalitiesToCatalog(true);
221*43a90889SApple OSS Distributions 
222*43a90889SApple OSS Distributions 	return;
223*43a90889SApple OSS Distributions }
224*43a90889SApple OSS Distributions 
225*43a90889SApple OSS Distributions /*********************************************************************
226*43a90889SApple OSS Distributions *********************************************************************/
227*43a90889SApple OSS Distributions void
readPrelinkedExtensions(kernel_mach_header_t * mh,kc_kind_t type)228*43a90889SApple OSS Distributions KLDBootstrap::readPrelinkedExtensions(kernel_mach_header_t *mh, kc_kind_t type)
229*43a90889SApple OSS Distributions {
230*43a90889SApple OSS Distributions 	bool ret;
231*43a90889SApple OSS Distributions 	OSSharedPtr<OSData> loaded_kcUUID;
232*43a90889SApple OSS Distributions 	OSSharedPtr<OSString> errorString;
233*43a90889SApple OSS Distributions 	OSSharedPtr<OSObject> parsedXML;
234*43a90889SApple OSS Distributions 	kernel_section_t *infoPlistSection = NULL;
235*43a90889SApple OSS Distributions 	OSDictionary *infoDict = NULL;         // do not release
236*43a90889SApple OSS Distributions 
237*43a90889SApple OSS Distributions 	OSKextLog(/* kext */ NULL,
238*43a90889SApple OSS Distributions 	    kOSKextLogProgressLevel |
239*43a90889SApple OSS Distributions 	    kOSKextLogDirectoryScanFlag | kOSKextLogArchiveFlag,
240*43a90889SApple OSS Distributions 	    "Starting from prelinked kernel.");
241*43a90889SApple OSS Distributions 
242*43a90889SApple OSS Distributions 	/*
243*43a90889SApple OSS Distributions 	 * The 'infoPlistSection' should contains an XML dictionary that
244*43a90889SApple OSS Distributions 	 * contains some meta data about the KC, and also describes each kext
245*43a90889SApple OSS Distributions 	 * included in the kext collection. Unserialize this dictionary and
246*43a90889SApple OSS Distributions 	 * then iterate over each kext.
247*43a90889SApple OSS Distributions 	 */
248*43a90889SApple OSS Distributions 	infoPlistSection = getsectbynamefromheader(mh, kPrelinkInfoSegment, kPrelinkInfoSection);
249*43a90889SApple OSS Distributions 	parsedXML = OSUnserializeXML((const char *)infoPlistSection->addr, errorString);
250*43a90889SApple OSS Distributions 	if (parsedXML) {
251*43a90889SApple OSS Distributions 		infoDict = OSDynamicCast(OSDictionary, parsedXML.get());
252*43a90889SApple OSS Distributions 	}
253*43a90889SApple OSS Distributions 
254*43a90889SApple OSS Distributions 	if (!infoDict) {
255*43a90889SApple OSS Distributions 		const char *errorCString = "(unknown error)";
256*43a90889SApple OSS Distributions 
257*43a90889SApple OSS Distributions 		if (errorString && errorString->getCStringNoCopy()) {
258*43a90889SApple OSS Distributions 			errorCString = errorString->getCStringNoCopy();
259*43a90889SApple OSS Distributions 		} else if (parsedXML) {
260*43a90889SApple OSS Distributions 			errorCString = "not a dictionary";
261*43a90889SApple OSS Distributions 		}
262*43a90889SApple OSS Distributions 		OSKextLog(/* kext */ NULL, kOSKextLogErrorLevel | kOSKextLogArchiveFlag,
263*43a90889SApple OSS Distributions 		    "Error unserializing kext info plist section: %s.", errorCString);
264*43a90889SApple OSS Distributions 		return;
265*43a90889SApple OSS Distributions 	}
266*43a90889SApple OSS Distributions 
267*43a90889SApple OSS Distributions 	/* Validate that the Kext Collection is prelinked to the loaded KC */
268*43a90889SApple OSS Distributions 	if (type == KCKindAuxiliary) {
269*43a90889SApple OSS Distributions 		if (OSKext::validateKCFileSetUUID(infoDict, KCKindAuxiliary) != 0) {
270*43a90889SApple OSS Distributions 			OSKextLog(/* kext */ NULL, kOSKextLogErrorLevel | kOSKextLogArchiveFlag,
271*43a90889SApple OSS Distributions 			    "Early boot AuxKC  doesn't appear to be linked against the loaded BootKC.");
272*43a90889SApple OSS Distributions 			return;
273*43a90889SApple OSS Distributions 		}
274*43a90889SApple OSS Distributions 
275*43a90889SApple OSS Distributions 		/*
276*43a90889SApple OSS Distributions 		 * Defer further processing of the AuxKC, but keep the
277*43a90889SApple OSS Distributions 		 * processed info dictionary around so we can ml_static_free
278*43a90889SApple OSS Distributions 		 * the segment.
279*43a90889SApple OSS Distributions 		 */
280*43a90889SApple OSS Distributions 		if (!OSKext::registerDeferredKextCollection(mh, parsedXML, KCKindAuxiliary)) {
281*43a90889SApple OSS Distributions 			OSKextLog(/* kext */ NULL, kOSKextLogErrorLevel | kOSKextLogArchiveFlag,
282*43a90889SApple OSS Distributions 			    "Error deferring AuxKC kext processing: Kexts in this collection will be unusable.");
283*43a90889SApple OSS Distributions 		}
284*43a90889SApple OSS Distributions 		goto skip_adding_kexts;
285*43a90889SApple OSS Distributions 	}
286*43a90889SApple OSS Distributions 
287*43a90889SApple OSS Distributions 	/*
288*43a90889SApple OSS Distributions 	 * this function does all the heavy lifting of adding OSKext objects
289*43a90889SApple OSS Distributions 	 * and potentially sliding them if necessary
290*43a90889SApple OSS Distributions 	 */
291*43a90889SApple OSS Distributions 	ret = OSKext::addKextsFromKextCollection(mh, infoDict,
292*43a90889SApple OSS Distributions 	    kPrelinkTextSegment, loaded_kcUUID, (mh->filetype == MH_FILESET) ? type : KCKindUnknown);
293*43a90889SApple OSS Distributions 
294*43a90889SApple OSS Distributions 	if (!ret) {
295*43a90889SApple OSS Distributions 		OSKextLog(/* kext */ NULL, kOSKextLogErrorLevel | kOSKextLogArchiveFlag,
296*43a90889SApple OSS Distributions 		    "Error loading kext info from prelinked primary KC");
297*43a90889SApple OSS Distributions 		return;
298*43a90889SApple OSS Distributions 	}
299*43a90889SApple OSS Distributions 
300*43a90889SApple OSS Distributions 	/* Copy in the kernelcache UUID */
301*43a90889SApple OSS Distributions 	if (!loaded_kcUUID) {
302*43a90889SApple OSS Distributions 		OSKextLog(/* kext */ NULL, kOSKextLogErrorLevel | kOSKextLogArchiveFlag,
303*43a90889SApple OSS Distributions 		    "WARNING: did not find UUID in %s KC!", (type == KCKindAuxiliary) ? "Aux" : "Primary");
304*43a90889SApple OSS Distributions 	} else if (type != KCKindAuxiliary) {
305*43a90889SApple OSS Distributions 		kernelcache_uuid_valid = TRUE;
306*43a90889SApple OSS Distributions 		memcpy((void *)&kernelcache_uuid, (const void *)loaded_kcUUID->getBytesNoCopy(), loaded_kcUUID->getLength());
307*43a90889SApple OSS Distributions 		uuid_unparse_upper(kernelcache_uuid, kernelcache_uuid_string);
308*43a90889SApple OSS Distributions 	} else {
309*43a90889SApple OSS Distributions 		auxkc_uuid_valid = TRUE;
310*43a90889SApple OSS Distributions 		memcpy((void *)&auxkc_uuid, (const void *)loaded_kcUUID->getBytesNoCopy(), loaded_kcUUID->getLength());
311*43a90889SApple OSS Distributions 		uuid_unparse_upper(auxkc_uuid, auxkc_uuid_string);
312*43a90889SApple OSS Distributions 	}
313*43a90889SApple OSS Distributions 
314*43a90889SApple OSS Distributions skip_adding_kexts:
315*43a90889SApple OSS Distributions #if CONFIG_KEXT_BASEMENT
316*43a90889SApple OSS Distributions 	if (mh->filetype != MH_FILESET) {
317*43a90889SApple OSS Distributions 		/*
318*43a90889SApple OSS Distributions 		 * On CONFIG_KEXT_BASEMENT systems which do _not_ boot the new
319*43a90889SApple OSS Distributions 		 * MH_FILESET kext collection, kexts are copied to their own
320*43a90889SApple OSS Distributions 		 * special VM region during OSKext init time, so we can free
321*43a90889SApple OSS Distributions 		 * the whole segment now.
322*43a90889SApple OSS Distributions 		 */
323*43a90889SApple OSS Distributions 		kernel_segment_command_t *prelinkTextSegment = NULL;
324*43a90889SApple OSS Distributions 		prelinkTextSegment = getsegbyname(kPrelinkTextSegment);
325*43a90889SApple OSS Distributions 		if (!prelinkTextSegment) {
326*43a90889SApple OSS Distributions 			OSKextLog(/* kext */ NULL,
327*43a90889SApple OSS Distributions 			    kOSKextLogErrorLevel | kOSKextLogArchiveFlag,
328*43a90889SApple OSS Distributions 			    "Can't find prelinked kexts' text segment.");
329*43a90889SApple OSS Distributions 			return;
330*43a90889SApple OSS Distributions 		}
331*43a90889SApple OSS Distributions 
332*43a90889SApple OSS Distributions 		ml_static_mfree((vm_offset_t)prelinkTextSegment->vmaddr, prelinkTextSegment->vmsize);
333*43a90889SApple OSS Distributions 	}
334*43a90889SApple OSS Distributions #endif /* CONFIG_KEXT_BASEMENT */
335*43a90889SApple OSS Distributions 
336*43a90889SApple OSS Distributions 	/*
337*43a90889SApple OSS Distributions 	 * Free the prelink info segment, we're done with it.
338*43a90889SApple OSS Distributions 	 */
339*43a90889SApple OSS Distributions 
340*43a90889SApple OSS Distributions #if !XNU_TARGET_OS_OSX
341*43a90889SApple OSS Distributions 	/*
342*43a90889SApple OSS Distributions 	 * For now, we are limiting this freeing to embedded platforms.
343*43a90889SApple OSS Distributions 	 * To enable freeing of prelink info segment on macOS, we need to
344*43a90889SApple OSS Distributions 	 * fix rdar://88929016
345*43a90889SApple OSS Distributions 	 */
346*43a90889SApple OSS Distributions 	bool freedPrelinkInfo = false;
347*43a90889SApple OSS Distributions 	kernel_segment_command_t *prelinkInfoSegment = NULL;
348*43a90889SApple OSS Distributions 	prelinkInfoSegment = getsegbynamefromheader(mh, kPrelinkInfoSegment);
349*43a90889SApple OSS Distributions 	if (prelinkInfoSegment) {
350*43a90889SApple OSS Distributions 		if (prelinkInfoSegment->vmsize != 0) {
351*43a90889SApple OSS Distributions 			freedPrelinkInfo = true;
352*43a90889SApple OSS Distributions 			ml_static_mfree((vm_offset_t)prelinkInfoSegment->vmaddr,
353*43a90889SApple OSS Distributions 			    (vm_size_t)prelinkInfoSegment->vmsize);
354*43a90889SApple OSS Distributions 		}
355*43a90889SApple OSS Distributions 	}
356*43a90889SApple OSS Distributions 
357*43a90889SApple OSS Distributions 	if (!freedPrelinkInfo) {
358*43a90889SApple OSS Distributions 		OSKextLog(NULL, kOSKextLogErrorLevel | kOSKextLogArchiveFlag, "Failed to free prelink info.");
359*43a90889SApple OSS Distributions 	}
360*43a90889SApple OSS Distributions #endif
361*43a90889SApple OSS Distributions 	return;
362*43a90889SApple OSS Distributions }
363*43a90889SApple OSS Distributions 
364*43a90889SApple OSS Distributions 
365*43a90889SApple OSS Distributions /*********************************************************************
366*43a90889SApple OSS Distributions *********************************************************************/
367*43a90889SApple OSS Distributions #define BOOTER_KEXT_PREFIX   "Driver-"
368*43a90889SApple OSS Distributions 
369*43a90889SApple OSS Distributions typedef struct _DeviceTreeBuffer {
370*43a90889SApple OSS Distributions 	uint32_t paddr;
371*43a90889SApple OSS Distributions 	uint32_t length;
372*43a90889SApple OSS Distributions } _DeviceTreeBuffer;
373*43a90889SApple OSS Distributions 
374*43a90889SApple OSS Distributions void
readBooterExtensions(void)375*43a90889SApple OSS Distributions KLDBootstrap::readBooterExtensions(void)
376*43a90889SApple OSS Distributions {
377*43a90889SApple OSS Distributions 	OSSharedPtr<IORegistryEntry> booterMemoryMap;
378*43a90889SApple OSS Distributions 	OSSharedPtr<OSDictionary>    propertyDict;
379*43a90889SApple OSS Distributions 	OSSharedPtr<OSCollectionIterator>      keyIterator;
380*43a90889SApple OSS Distributions 	OSString                  * deviceTreeName          = NULL;// do not release
381*43a90889SApple OSS Distributions 
382*43a90889SApple OSS Distributions 	const _DeviceTreeBuffer   * deviceTreeBuffer        = NULL;// do not free
383*43a90889SApple OSS Distributions 	char                      * booterDataPtr           = NULL;// do not free
384*43a90889SApple OSS Distributions 	OSSharedPtr<OSData>         booterData;
385*43a90889SApple OSS Distributions 	OSSharedPtr<OSKext>         aKext;
386*43a90889SApple OSS Distributions 
387*43a90889SApple OSS Distributions 	OSKextLog(/* kext */ NULL,
388*43a90889SApple OSS Distributions 	    kOSKextLogProgressLevel |
389*43a90889SApple OSS Distributions 	    kOSKextLogDirectoryScanFlag | kOSKextLogKextBookkeepingFlag,
390*43a90889SApple OSS Distributions 	    "Reading startup extensions from booter memory.");
391*43a90889SApple OSS Distributions 
392*43a90889SApple OSS Distributions 	booterMemoryMap = IORegistryEntry::fromPath( "/chosen/memory-map", gIODTPlane);
393*43a90889SApple OSS Distributions 
394*43a90889SApple OSS Distributions 	if (!booterMemoryMap) {
395*43a90889SApple OSS Distributions 		OSKextLog(/* kext */ NULL,
396*43a90889SApple OSS Distributions 		    kOSKextLogErrorLevel |
397*43a90889SApple OSS Distributions 		    kOSKextLogGeneralFlag | kOSKextLogDirectoryScanFlag,
398*43a90889SApple OSS Distributions 		    "Can't read booter memory map.");
399*43a90889SApple OSS Distributions 		goto finish;
400*43a90889SApple OSS Distributions 	}
401*43a90889SApple OSS Distributions 
402*43a90889SApple OSS Distributions 	propertyDict = booterMemoryMap->dictionaryWithProperties();
403*43a90889SApple OSS Distributions 	if (!propertyDict) {
404*43a90889SApple OSS Distributions 		OSKextLog(/* kext */ NULL,
405*43a90889SApple OSS Distributions 		    kOSKextLogErrorLevel |
406*43a90889SApple OSS Distributions 		    kOSKextLogDirectoryScanFlag,
407*43a90889SApple OSS Distributions 		    "Can't get property dictionary from memory map.");
408*43a90889SApple OSS Distributions 		goto finish;
409*43a90889SApple OSS Distributions 	}
410*43a90889SApple OSS Distributions 
411*43a90889SApple OSS Distributions 	keyIterator = OSCollectionIterator::withCollection(propertyDict.get());
412*43a90889SApple OSS Distributions 	if (!keyIterator) {
413*43a90889SApple OSS Distributions 		OSKextLog(/* kext */ NULL,
414*43a90889SApple OSS Distributions 		    kOSKextLogErrorLevel |
415*43a90889SApple OSS Distributions 		    kOSKextLogGeneralFlag,
416*43a90889SApple OSS Distributions 		    "Can't allocate iterator for driver images.");
417*43a90889SApple OSS Distributions 		goto finish;
418*43a90889SApple OSS Distributions 	}
419*43a90889SApple OSS Distributions 
420*43a90889SApple OSS Distributions 	/* Create dictionary of excluded kexts
421*43a90889SApple OSS Distributions 	 */
422*43a90889SApple OSS Distributions #ifndef CONFIG_EMBEDDED
423*43a90889SApple OSS Distributions 	OSKext::createExcludeListFromBooterData(propertyDict.get(), keyIterator.get());
424*43a90889SApple OSS Distributions #endif
425*43a90889SApple OSS Distributions 	// !! reset the iterator, not the pointer
426*43a90889SApple OSS Distributions 	keyIterator->reset();
427*43a90889SApple OSS Distributions 
428*43a90889SApple OSS Distributions 	while ((deviceTreeName =
429*43a90889SApple OSS Distributions 	    OSDynamicCast(OSString, keyIterator->getNextObject()))) {
430*43a90889SApple OSS Distributions 		const char * devTreeNameCString = deviceTreeName->getCStringNoCopy();
431*43a90889SApple OSS Distributions 		OSData * deviceTreeEntry = OSDynamicCast(OSData,
432*43a90889SApple OSS Distributions 		    propertyDict->getObject(deviceTreeName));
433*43a90889SApple OSS Distributions 
434*43a90889SApple OSS Distributions 		/* If there is no entry for the name, we can't do much with it. */
435*43a90889SApple OSS Distributions 		if (!deviceTreeEntry) {
436*43a90889SApple OSS Distributions 			continue;
437*43a90889SApple OSS Distributions 		}
438*43a90889SApple OSS Distributions 
439*43a90889SApple OSS Distributions 		/* Make sure it is a kext */
440*43a90889SApple OSS Distributions 		if (strncmp(devTreeNameCString,
441*43a90889SApple OSS Distributions 		    BOOTER_KEXT_PREFIX,
442*43a90889SApple OSS Distributions 		    CONST_STRLEN(BOOTER_KEXT_PREFIX))) {
443*43a90889SApple OSS Distributions 			continue;
444*43a90889SApple OSS Distributions 		}
445*43a90889SApple OSS Distributions 
446*43a90889SApple OSS Distributions 		deviceTreeBuffer = (const _DeviceTreeBuffer *)
447*43a90889SApple OSS Distributions 		    deviceTreeEntry->getBytesNoCopy(0, sizeof(deviceTreeBuffer));
448*43a90889SApple OSS Distributions 		if (!deviceTreeBuffer) {
449*43a90889SApple OSS Distributions 			/* We can't get to the data, so we can't do anything,
450*43a90889SApple OSS Distributions 			 * not even free it from physical memory (if it's there).
451*43a90889SApple OSS Distributions 			 */
452*43a90889SApple OSS Distributions 			OSKextLog(/* kext */ NULL,
453*43a90889SApple OSS Distributions 			    kOSKextLogErrorLevel |
454*43a90889SApple OSS Distributions 			    kOSKextLogDirectoryScanFlag,
455*43a90889SApple OSS Distributions 			    "Device tree entry %s has NULL pointer.",
456*43a90889SApple OSS Distributions 			    devTreeNameCString);
457*43a90889SApple OSS Distributions 			goto finish; // xxx - continue, panic?
458*43a90889SApple OSS Distributions 		}
459*43a90889SApple OSS Distributions 
460*43a90889SApple OSS Distributions 		booterDataPtr = (char *)ml_static_ptovirt(deviceTreeBuffer->paddr);
461*43a90889SApple OSS Distributions 		if (!booterDataPtr) {
462*43a90889SApple OSS Distributions 			OSKextLog(/* kext */ NULL,
463*43a90889SApple OSS Distributions 			    kOSKextLogErrorLevel |
464*43a90889SApple OSS Distributions 			    kOSKextLogDirectoryScanFlag,
465*43a90889SApple OSS Distributions 			    "Can't get virtual address for device tree entry %s.",
466*43a90889SApple OSS Distributions 			    devTreeNameCString);
467*43a90889SApple OSS Distributions 			goto finish;
468*43a90889SApple OSS Distributions 		}
469*43a90889SApple OSS Distributions 
470*43a90889SApple OSS Distributions 		/* Wrap the booter data buffer in an OSData and set a dealloc function
471*43a90889SApple OSS Distributions 		 * so it will take care of the physical memory when freed. Kexts will
472*43a90889SApple OSS Distributions 		 * retain the booterData for as long as they need it. Remove the entry
473*43a90889SApple OSS Distributions 		 * from the booter memory map after this is done.
474*43a90889SApple OSS Distributions 		 */
475*43a90889SApple OSS Distributions 		booterData = OSData::withBytesNoCopy(booterDataPtr,
476*43a90889SApple OSS Distributions 		    deviceTreeBuffer->length);
477*43a90889SApple OSS Distributions 		if (!booterData) {
478*43a90889SApple OSS Distributions 			OSKextLog(/* kext */ NULL,
479*43a90889SApple OSS Distributions 			    kOSKextLogErrorLevel |
480*43a90889SApple OSS Distributions 			    kOSKextLogGeneralFlag,
481*43a90889SApple OSS Distributions 			    "Error - Can't allocate OSData wrapper for device tree entry %s.",
482*43a90889SApple OSS Distributions 			    devTreeNameCString);
483*43a90889SApple OSS Distributions 			goto finish;
484*43a90889SApple OSS Distributions 		}
485*43a90889SApple OSS Distributions 		booterData->setDeallocFunction(osdata_phys_free);
486*43a90889SApple OSS Distributions 
487*43a90889SApple OSS Distributions 		/* Create the kext for the entry, then release it, because the
488*43a90889SApple OSS Distributions 		 * kext system keeps them around until explicitly removed.
489*43a90889SApple OSS Distributions 		 * Any creation/registration failures are already logged for us.
490*43a90889SApple OSS Distributions 		 */
491*43a90889SApple OSS Distributions 		OSSharedPtr<OSKext> newKext = OSKext::withBooterData(deviceTreeName, booterData.get());
492*43a90889SApple OSS Distributions 
493*43a90889SApple OSS Distributions 		booterMemoryMap->removeProperty(deviceTreeName);
494*43a90889SApple OSS Distributions 	} /* while ( (deviceTreeName = OSDynamicCast(OSString, ...) ) ) */
495*43a90889SApple OSS Distributions 
496*43a90889SApple OSS Distributions finish:
497*43a90889SApple OSS Distributions 	return;
498*43a90889SApple OSS Distributions }
499*43a90889SApple OSS Distributions 
500*43a90889SApple OSS Distributions /*********************************************************************
501*43a90889SApple OSS Distributions *********************************************************************/
502*43a90889SApple OSS Distributions #define COM_APPLE  "com.apple."
503*43a90889SApple OSS Distributions 
504*43a90889SApple OSS Distributions void
loadSecurityExtensions(void)505*43a90889SApple OSS Distributions KLDBootstrap::loadSecurityExtensions(void)
506*43a90889SApple OSS Distributions {
507*43a90889SApple OSS Distributions 	OSSharedPtr<OSDictionary>         extensionsDict;
508*43a90889SApple OSS Distributions 	OSSharedPtr<OSCollectionIterator> keyIterator;
509*43a90889SApple OSS Distributions 	OSString             * bundleID       = NULL;// don't release
510*43a90889SApple OSS Distributions 	OSKext               * theKext        = NULL;// don't release
511*43a90889SApple OSS Distributions 
512*43a90889SApple OSS Distributions 	OSKextLog(/* kext */ NULL,
513*43a90889SApple OSS Distributions 	    kOSKextLogStepLevel |
514*43a90889SApple OSS Distributions 	    kOSKextLogLoadFlag,
515*43a90889SApple OSS Distributions 	    "Loading security extensions.");
516*43a90889SApple OSS Distributions 
517*43a90889SApple OSS Distributions 	extensionsDict = OSKext::copyKexts();
518*43a90889SApple OSS Distributions 	if (!extensionsDict) {
519*43a90889SApple OSS Distributions 		return;
520*43a90889SApple OSS Distributions 	}
521*43a90889SApple OSS Distributions 
522*43a90889SApple OSS Distributions 	keyIterator = OSCollectionIterator::withCollection(extensionsDict.get());
523*43a90889SApple OSS Distributions 	if (!keyIterator) {
524*43a90889SApple OSS Distributions 		OSKextLog(/* kext */ NULL,
525*43a90889SApple OSS Distributions 		    kOSKextLogErrorLevel |
526*43a90889SApple OSS Distributions 		    kOSKextLogGeneralFlag,
527*43a90889SApple OSS Distributions 		    "Failed to allocate iterator for security extensions.");
528*43a90889SApple OSS Distributions 		goto finish;
529*43a90889SApple OSS Distributions 	}
530*43a90889SApple OSS Distributions 
531*43a90889SApple OSS Distributions 	while ((bundleID = OSDynamicCast(OSString, keyIterator->getNextObject()))) {
532*43a90889SApple OSS Distributions 		const char * bundle_id = bundleID->getCStringNoCopy();
533*43a90889SApple OSS Distributions 
534*43a90889SApple OSS Distributions 		/* Skip extensions whose bundle IDs don't start with "com.apple.".
535*43a90889SApple OSS Distributions 		 */
536*43a90889SApple OSS Distributions 		if (!bundle_id ||
537*43a90889SApple OSS Distributions 		    (strncmp(bundle_id, COM_APPLE, CONST_STRLEN(COM_APPLE)) != 0)) {
538*43a90889SApple OSS Distributions 			continue;
539*43a90889SApple OSS Distributions 		}
540*43a90889SApple OSS Distributions 
541*43a90889SApple OSS Distributions 		theKext = OSDynamicCast(OSKext, extensionsDict->getObject(bundleID));
542*43a90889SApple OSS Distributions 		if (!theKext) {
543*43a90889SApple OSS Distributions 			continue;
544*43a90889SApple OSS Distributions 		}
545*43a90889SApple OSS Distributions 
546*43a90889SApple OSS Distributions 		if (kOSBooleanTrue == theKext->getPropertyForHostArch(kAppleSecurityExtensionKey)) {
547*43a90889SApple OSS Distributions 			OSKextLog(/* kext */ NULL,
548*43a90889SApple OSS Distributions 			    kOSKextLogStepLevel |
549*43a90889SApple OSS Distributions 			    kOSKextLogLoadFlag,
550*43a90889SApple OSS Distributions 			    "Loading security extension %s.", bundleID->getCStringNoCopy());
551*43a90889SApple OSS Distributions 			OSKext::loadKextWithIdentifier(bundleID->getCStringNoCopy(),
552*43a90889SApple OSS Distributions 			    /* allowDefer */ false);
553*43a90889SApple OSS Distributions 		}
554*43a90889SApple OSS Distributions 	}
555*43a90889SApple OSS Distributions 
556*43a90889SApple OSS Distributions finish:
557*43a90889SApple OSS Distributions 	return;
558*43a90889SApple OSS Distributions }
559*43a90889SApple OSS Distributions 
560*43a90889SApple OSS Distributions /*********************************************************************
561*43a90889SApple OSS Distributions * We used to require that all listed kernel components load, but
562*43a90889SApple OSS Distributions * nowadays we can get them from userland so we only try to load the
563*43a90889SApple OSS Distributions * ones we have. If an error occurs later, such is life.
564*43a90889SApple OSS Distributions *
565*43a90889SApple OSS Distributions * Note that we look the kexts up first, so we can avoid spurious
566*43a90889SApple OSS Distributions * (in this context, anyhow) log messages about kexts not being found.
567*43a90889SApple OSS Distributions *
568*43a90889SApple OSS Distributions * xxx - do we even need to do this any more? Check if the kernel
569*43a90889SApple OSS Distributions * xxx - compoonents just load in the regular paths
570*43a90889SApple OSS Distributions *********************************************************************/
571*43a90889SApple OSS Distributions OSReturn
loadKernelComponentKexts(void)572*43a90889SApple OSS Distributions KLDBootstrap::loadKernelComponentKexts(void)
573*43a90889SApple OSS Distributions {
574*43a90889SApple OSS Distributions 	OSReturn            result      = kOSReturnSuccess;// optimistic
575*43a90889SApple OSS Distributions 	OSSharedPtr<OSKext> theKext;
576*43a90889SApple OSS Distributions 	const char       ** kextIDPtr   = NULL;          // do not release
577*43a90889SApple OSS Distributions 
578*43a90889SApple OSS Distributions 	for (kextIDPtr = &sKernelComponentNames[0]; *kextIDPtr; kextIDPtr++) {
579*43a90889SApple OSS Distributions 		theKext = OSKext::lookupKextWithIdentifier(*kextIDPtr);
580*43a90889SApple OSS Distributions 
581*43a90889SApple OSS Distributions 		if (theKext) {
582*43a90889SApple OSS Distributions 			if (kOSReturnSuccess != OSKext::loadKextWithIdentifier(
583*43a90889SApple OSS Distributions 				    *kextIDPtr, /* allowDefer */ false)) {
584*43a90889SApple OSS Distributions 				// xxx - check KextBookkeeping, might be redundant
585*43a90889SApple OSS Distributions 				OSKextLog(/* kext */ NULL,
586*43a90889SApple OSS Distributions 				    kOSKextLogErrorLevel |
587*43a90889SApple OSS Distributions 				    kOSKextLogDirectoryScanFlag | kOSKextLogKextBookkeepingFlag,
588*43a90889SApple OSS Distributions 				    "Failed to initialize kernel component %s.", *kextIDPtr);
589*43a90889SApple OSS Distributions 				result = kOSReturnError;
590*43a90889SApple OSS Distributions 			}
591*43a90889SApple OSS Distributions 		}
592*43a90889SApple OSS Distributions 	}
593*43a90889SApple OSS Distributions 
594*43a90889SApple OSS Distributions 	return result;
595*43a90889SApple OSS Distributions }
596*43a90889SApple OSS Distributions 
597*43a90889SApple OSS Distributions /*********************************************************************
598*43a90889SApple OSS Distributions * Ensure that Kernel External Components are loaded early in boot,
599*43a90889SApple OSS Distributions * before other kext personalities get sent to the IOCatalogue. These
600*43a90889SApple OSS Distributions * kexts are treated specially because they may provide the implementation
601*43a90889SApple OSS Distributions * for kernel-vended KPI, so they must register themselves before
602*43a90889SApple OSS Distributions * general purpose IOKit probing begins.
603*43a90889SApple OSS Distributions *********************************************************************/
604*43a90889SApple OSS Distributions 
605*43a90889SApple OSS Distributions #define COM_APPLE_KEC  "com.apple.kec."
606*43a90889SApple OSS Distributions 
607*43a90889SApple OSS Distributions void
loadKernelExternalComponents(void)608*43a90889SApple OSS Distributions KLDBootstrap::loadKernelExternalComponents(void)
609*43a90889SApple OSS Distributions {
610*43a90889SApple OSS Distributions 	OSSharedPtr<OSDictionary>         extensionsDict;
611*43a90889SApple OSS Distributions 	OSSharedPtr<OSCollectionIterator> keyIterator;
612*43a90889SApple OSS Distributions 	OSString             * bundleID       = NULL;// don't release
613*43a90889SApple OSS Distributions 	OSKext               * theKext        = NULL;// don't release
614*43a90889SApple OSS Distributions 	OSBoolean            * isKernelExternalComponent = NULL;// don't release
615*43a90889SApple OSS Distributions 
616*43a90889SApple OSS Distributions 	OSKextLog(/* kext */ NULL,
617*43a90889SApple OSS Distributions 	    kOSKextLogStepLevel |
618*43a90889SApple OSS Distributions 	    kOSKextLogLoadFlag,
619*43a90889SApple OSS Distributions 	    "Loading Kernel External Components.");
620*43a90889SApple OSS Distributions 
621*43a90889SApple OSS Distributions 	extensionsDict = OSKext::copyKexts();
622*43a90889SApple OSS Distributions 	if (!extensionsDict) {
623*43a90889SApple OSS Distributions 		return;
624*43a90889SApple OSS Distributions 	}
625*43a90889SApple OSS Distributions 
626*43a90889SApple OSS Distributions 	keyIterator = OSCollectionIterator::withCollection(extensionsDict.get());
627*43a90889SApple OSS Distributions 	if (!keyIterator) {
628*43a90889SApple OSS Distributions 		OSKextLog(/* kext */ NULL,
629*43a90889SApple OSS Distributions 		    kOSKextLogErrorLevel |
630*43a90889SApple OSS Distributions 		    kOSKextLogGeneralFlag,
631*43a90889SApple OSS Distributions 		    "Failed to allocate iterator for Kernel External Components.");
632*43a90889SApple OSS Distributions 		goto finish;
633*43a90889SApple OSS Distributions 	}
634*43a90889SApple OSS Distributions 
635*43a90889SApple OSS Distributions 	while ((bundleID = OSDynamicCast(OSString, keyIterator->getNextObject()))) {
636*43a90889SApple OSS Distributions 		const char * bundle_id = bundleID->getCStringNoCopy();
637*43a90889SApple OSS Distributions 
638*43a90889SApple OSS Distributions 		/* Skip extensions whose bundle IDs don't start with "com.apple.kec.".
639*43a90889SApple OSS Distributions 		 */
640*43a90889SApple OSS Distributions 		if (!bundle_id ||
641*43a90889SApple OSS Distributions 		    (strncmp(bundle_id, COM_APPLE_KEC, CONST_STRLEN(COM_APPLE_KEC)) != 0)) {
642*43a90889SApple OSS Distributions 			continue;
643*43a90889SApple OSS Distributions 		}
644*43a90889SApple OSS Distributions 
645*43a90889SApple OSS Distributions 		theKext = OSDynamicCast(OSKext, extensionsDict->getObject(bundleID));
646*43a90889SApple OSS Distributions 		if (!theKext) {
647*43a90889SApple OSS Distributions 			continue;
648*43a90889SApple OSS Distributions 		}
649*43a90889SApple OSS Distributions 
650*43a90889SApple OSS Distributions 		isKernelExternalComponent = OSDynamicCast(OSBoolean,
651*43a90889SApple OSS Distributions 		    theKext->getPropertyForHostArch(kAppleKernelExternalComponentKey));
652*43a90889SApple OSS Distributions 		if (isKernelExternalComponent && isKernelExternalComponent->isTrue()) {
653*43a90889SApple OSS Distributions 			OSKextLog(/* kext */ NULL,
654*43a90889SApple OSS Distributions 			    kOSKextLogStepLevel |
655*43a90889SApple OSS Distributions 			    kOSKextLogLoadFlag,
656*43a90889SApple OSS Distributions 			    "Loading kernel external component %s.", bundleID->getCStringNoCopy());
657*43a90889SApple OSS Distributions 			OSKext::loadKextWithIdentifier(bundleID->getCStringNoCopy(),
658*43a90889SApple OSS Distributions 			    /* allowDefer */ false);
659*43a90889SApple OSS Distributions 		}
660*43a90889SApple OSS Distributions 	}
661*43a90889SApple OSS Distributions 
662*43a90889SApple OSS Distributions finish:
663*43a90889SApple OSS Distributions 	return;
664*43a90889SApple OSS Distributions }
665*43a90889SApple OSS Distributions 
666*43a90889SApple OSS Distributions /*********************************************************************
667*43a90889SApple OSS Distributions *********************************************************************/
668*43a90889SApple OSS Distributions void
readBuiltinPersonalities(void)669*43a90889SApple OSS Distributions KLDBootstrap::readBuiltinPersonalities(void)
670*43a90889SApple OSS Distributions {
671*43a90889SApple OSS Distributions 	OSSharedPtr<OSObject>   parsedXML;
672*43a90889SApple OSS Distributions 	OSArray               * builtinExtensions     = NULL;// do not release
673*43a90889SApple OSS Distributions 	OSSharedPtr<OSArray>    allPersonalities;
674*43a90889SApple OSS Distributions 	OSSharedPtr<OSString>   errorString;
675*43a90889SApple OSS Distributions 	kernel_section_t      * infosect              = NULL;// do not free
676*43a90889SApple OSS Distributions 	OSSharedPtr<OSCollectionIterator>  personalitiesIterator;
677*43a90889SApple OSS Distributions 	unsigned int            count, i;
678*43a90889SApple OSS Distributions 
679*43a90889SApple OSS Distributions 	OSKextLog(/* kext */ NULL,
680*43a90889SApple OSS Distributions 	    kOSKextLogStepLevel |
681*43a90889SApple OSS Distributions 	    kOSKextLogLoadFlag,
682*43a90889SApple OSS Distributions 	    "Reading built-in kernel personalities for I/O Kit drivers.");
683*43a90889SApple OSS Distributions 
684*43a90889SApple OSS Distributions 	/* Look in the __BUILTIN __info segment for an array of Info.plist
685*43a90889SApple OSS Distributions 	 * entries. For each one, extract the personalities dictionary, add
686*43a90889SApple OSS Distributions 	 * it to our array, then push them all (without matching) to
687*43a90889SApple OSS Distributions 	 * the IOCatalogue. This can be used to augment the personalities
688*43a90889SApple OSS Distributions 	 * in gIOKernelConfigTables, especially when linking entire kexts into
689*43a90889SApple OSS Distributions 	 * the mach_kernel image.
690*43a90889SApple OSS Distributions 	 */
691*43a90889SApple OSS Distributions 	infosect   = getsectbyname("__BUILTIN", "__info");
692*43a90889SApple OSS Distributions 	if (!infosect) {
693*43a90889SApple OSS Distributions 		// this isn't fatal
694*43a90889SApple OSS Distributions 		goto finish;
695*43a90889SApple OSS Distributions 	}
696*43a90889SApple OSS Distributions 
697*43a90889SApple OSS Distributions 	parsedXML = OSUnserializeXML((const char *) (uintptr_t)infosect->addr,
698*43a90889SApple OSS Distributions 	    errorString);
699*43a90889SApple OSS Distributions 	if (parsedXML) {
700*43a90889SApple OSS Distributions 		builtinExtensions = OSDynamicCast(OSArray, parsedXML.get());
701*43a90889SApple OSS Distributions 	}
702*43a90889SApple OSS Distributions 	if (!builtinExtensions) {
703*43a90889SApple OSS Distributions 		const char * errorCString = "(unknown error)";
704*43a90889SApple OSS Distributions 
705*43a90889SApple OSS Distributions 		if (errorString && errorString->getCStringNoCopy()) {
706*43a90889SApple OSS Distributions 			errorCString = errorString->getCStringNoCopy();
707*43a90889SApple OSS Distributions 		} else if (parsedXML) {
708*43a90889SApple OSS Distributions 			errorCString = "not an array";
709*43a90889SApple OSS Distributions 		}
710*43a90889SApple OSS Distributions 		OSKextLog(/* kext */ NULL,
711*43a90889SApple OSS Distributions 		    kOSKextLogErrorLevel |
712*43a90889SApple OSS Distributions 		    kOSKextLogLoadFlag,
713*43a90889SApple OSS Distributions 		    "Error unserializing built-in personalities: %s.", errorCString);
714*43a90889SApple OSS Distributions 		goto finish;
715*43a90889SApple OSS Distributions 	}
716*43a90889SApple OSS Distributions 
717*43a90889SApple OSS Distributions 	// estimate 3 personalities per Info.plist/kext
718*43a90889SApple OSS Distributions 	count = builtinExtensions->getCount();
719*43a90889SApple OSS Distributions 	allPersonalities = OSArray::withCapacity(count * 3);
720*43a90889SApple OSS Distributions 
721*43a90889SApple OSS Distributions 	for (i = 0; i < count; i++) {
722*43a90889SApple OSS Distributions 		OSDictionary            * infoDict = NULL;// do not release
723*43a90889SApple OSS Distributions 		OSString                * moduleName = NULL;// do not release
724*43a90889SApple OSS Distributions 		OSDictionary            * personalities;// do not release
725*43a90889SApple OSS Distributions 		OSString                * personalityName;// do not release
726*43a90889SApple OSS Distributions 
727*43a90889SApple OSS Distributions 		infoDict = OSDynamicCast(OSDictionary,
728*43a90889SApple OSS Distributions 		    builtinExtensions->getObject(i));
729*43a90889SApple OSS Distributions 		if (!infoDict) {
730*43a90889SApple OSS Distributions 			continue;
731*43a90889SApple OSS Distributions 		}
732*43a90889SApple OSS Distributions 
733*43a90889SApple OSS Distributions 		moduleName = OSDynamicCast(OSString,
734*43a90889SApple OSS Distributions 		    infoDict->getObject(kCFBundleIdentifierKey));
735*43a90889SApple OSS Distributions 		if (!moduleName) {
736*43a90889SApple OSS Distributions 			continue;
737*43a90889SApple OSS Distributions 		}
738*43a90889SApple OSS Distributions 
739*43a90889SApple OSS Distributions 		OSKextLog(/* kext */ NULL,
740*43a90889SApple OSS Distributions 		    kOSKextLogStepLevel |
741*43a90889SApple OSS Distributions 		    kOSKextLogLoadFlag,
742*43a90889SApple OSS Distributions 		    "Adding personalities for built-in driver %s:",
743*43a90889SApple OSS Distributions 		    moduleName->getCStringNoCopy());
744*43a90889SApple OSS Distributions 
745*43a90889SApple OSS Distributions 		personalities = OSDynamicCast(OSDictionary,
746*43a90889SApple OSS Distributions 		    infoDict->getObject("IOKitPersonalities"));
747*43a90889SApple OSS Distributions 		if (!personalities) {
748*43a90889SApple OSS Distributions 			continue;
749*43a90889SApple OSS Distributions 		}
750*43a90889SApple OSS Distributions 
751*43a90889SApple OSS Distributions 		personalitiesIterator = OSCollectionIterator::withCollection(personalities);
752*43a90889SApple OSS Distributions 		if (!personalitiesIterator) {
753*43a90889SApple OSS Distributions 			continue; // xxx - well really, what can we do? should we panic?
754*43a90889SApple OSS Distributions 		}
755*43a90889SApple OSS Distributions 
756*43a90889SApple OSS Distributions 		while ((personalityName = OSDynamicCast(OSString,
757*43a90889SApple OSS Distributions 		    personalitiesIterator->getNextObject()))) {
758*43a90889SApple OSS Distributions 			OSDictionary * personality = OSDynamicCast(OSDictionary,
759*43a90889SApple OSS Distributions 			    personalities->getObject(personalityName));
760*43a90889SApple OSS Distributions 
761*43a90889SApple OSS Distributions 			OSKextLog(/* kext */ NULL,
762*43a90889SApple OSS Distributions 			    kOSKextLogDetailLevel |
763*43a90889SApple OSS Distributions 			    kOSKextLogLoadFlag,
764*43a90889SApple OSS Distributions 			    "Adding built-in driver personality %s.",
765*43a90889SApple OSS Distributions 			    personalityName->getCStringNoCopy());
766*43a90889SApple OSS Distributions 
767*43a90889SApple OSS Distributions 			if (personality && !personality->getObject(kCFBundleIdentifierKey)) {
768*43a90889SApple OSS Distributions 				personality->setObject(kCFBundleIdentifierKey, moduleName);
769*43a90889SApple OSS Distributions 			}
770*43a90889SApple OSS Distributions 			allPersonalities->setObject(personality);
771*43a90889SApple OSS Distributions 		}
772*43a90889SApple OSS Distributions 	}
773*43a90889SApple OSS Distributions 
774*43a90889SApple OSS Distributions 	gIOCatalogue->addDrivers(allPersonalities.get(), false);
775*43a90889SApple OSS Distributions 
776*43a90889SApple OSS Distributions finish:
777*43a90889SApple OSS Distributions 	return;
778*43a90889SApple OSS Distributions }
779*43a90889SApple OSS Distributions 
780*43a90889SApple OSS Distributions #if PRAGMA_MARK
781*43a90889SApple OSS Distributions #pragma mark Bootstrap Functions
782*43a90889SApple OSS Distributions #endif
783*43a90889SApple OSS Distributions /*********************************************************************
784*43a90889SApple OSS Distributions * Bootstrap Functions
785*43a90889SApple OSS Distributions *********************************************************************/
786*43a90889SApple OSS Distributions static void
bootstrapRecordStartupExtensions(void)787*43a90889SApple OSS Distributions bootstrapRecordStartupExtensions(void)
788*43a90889SApple OSS Distributions {
789*43a90889SApple OSS Distributions 	sBootstrapObject.readStartupExtensions();
790*43a90889SApple OSS Distributions 	return;
791*43a90889SApple OSS Distributions }
792*43a90889SApple OSS Distributions 
793*43a90889SApple OSS Distributions static void
bootstrapLoadSecurityExtensions(void)794*43a90889SApple OSS Distributions bootstrapLoadSecurityExtensions(void)
795*43a90889SApple OSS Distributions {
796*43a90889SApple OSS Distributions 	sBootstrapObject.loadSecurityExtensions();
797*43a90889SApple OSS Distributions 	return;
798*43a90889SApple OSS Distributions }
799*43a90889SApple OSS Distributions 
800