nvs_flash.h 7.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201
  1. // Copyright 2015-2016 Espressif Systems (Shanghai) PTE LTD
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. // http://www.apache.org/licenses/LICENSE-2.0
  7. //
  8. // Unless required by applicable law or agreed to in writing, software
  9. // distributed under the License is distributed on an "AS IS" BASIS,
  10. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  11. // See the License for the specific language governing permissions and
  12. // limitations under the License.
  13. #ifndef nvs_flash_h
  14. #define nvs_flash_h
  15. #ifdef __cplusplus
  16. extern "C" {
  17. #endif
  18. #include "nvs.h"
  19. #include "esp_partition.h"
  20. #define NVS_KEY_SIZE 32 // AES-256
  21. /**
  22. * @brief Key for encryption and decryption
  23. */
  24. typedef struct {
  25. uint8_t eky[NVS_KEY_SIZE]; /*!< XTS encryption and decryption key*/
  26. uint8_t tky[NVS_KEY_SIZE]; /*!< XTS tweak key */
  27. } nvs_sec_cfg_t;
  28. /**
  29. * @brief Initialize the default NVS partition.
  30. *
  31. * This API initialises the default NVS partition. The default NVS partition
  32. * is the one that is labeled "nvs" in the partition table.
  33. *
  34. * @return
  35. * - ESP_OK if storage was successfully initialized.
  36. * - ESP_ERR_NVS_NO_FREE_PAGES if the NVS storage contains no empty pages
  37. * (which may happen if NVS partition was truncated)
  38. * - ESP_ERR_NOT_FOUND if no partition with label "nvs" is found in the partition table
  39. * - one of the error codes from the underlying flash storage driver
  40. */
  41. esp_err_t nvs_flash_init(void);
  42. /**
  43. * @brief Initialize NVS flash storage for the specified partition.
  44. *
  45. * @param[in] partition_label Label of the partition. Note that internally a reference to
  46. * passed value is kept and it should be accessible for future operations
  47. *
  48. * @return
  49. * - ESP_OK if storage was successfully initialized.
  50. * - ESP_ERR_NVS_NO_FREE_PAGES if the NVS storage contains no empty pages
  51. * (which may happen if NVS partition was truncated)
  52. * - ESP_ERR_NOT_FOUND if specified partition is not found in the partition table
  53. * - one of the error codes from the underlying flash storage driver
  54. */
  55. esp_err_t nvs_flash_init_partition(const char *partition_label);
  56. /**
  57. * @brief Deinitialize NVS storage for the default NVS partition
  58. *
  59. * Default NVS partition is the partition with "nvs" label in the partition table.
  60. *
  61. * @return
  62. * - ESP_OK on success (storage was deinitialized)
  63. * - ESP_ERR_NVS_NOT_INITIALIZED if the storage was not initialized prior to this call
  64. */
  65. esp_err_t nvs_flash_deinit(void);
  66. /**
  67. * @brief Deinitialize NVS storage for the given NVS partition
  68. *
  69. * @param[in] partition_label Label of the partition
  70. *
  71. * @return
  72. * - ESP_OK on success
  73. * - ESP_ERR_NVS_NOT_INITIALIZED if the storage for given partition was not
  74. * initialized prior to this call
  75. */
  76. esp_err_t nvs_flash_deinit_partition(const char* partition_label);
  77. /**
  78. * @brief Erase the default NVS partition
  79. *
  80. * Erases all contents of the default NVS partition (one with label "nvs").
  81. *
  82. * @note If the partition is initialized, this function first de-initializes it. Afterwards, the partition has to
  83. * be initialized again to be used.
  84. *
  85. * @return
  86. * - ESP_OK on success
  87. * - ESP_ERR_NOT_FOUND if there is no NVS partition labeled "nvs" in the
  88. * partition table
  89. * - different error in case de-initialization fails (shouldn't happen)
  90. */
  91. esp_err_t nvs_flash_erase(void);
  92. /**
  93. * @brief Erase specified NVS partition
  94. *
  95. * Erase all content of a specified NVS partition
  96. *
  97. * @note If the partition is initialized, this function first de-initializes it. Afterwards, the partition has to
  98. * be initialized again to be used.
  99. *
  100. * @param[in] part_name Name (label) of the partition which should be erased
  101. *
  102. * @return
  103. * - ESP_OK on success
  104. * - ESP_ERR_NOT_FOUND if there is no NVS partition with the specified name
  105. * in the partition table
  106. * - different error in case de-initialization fails (shouldn't happen)
  107. */
  108. esp_err_t nvs_flash_erase_partition(const char *part_name);
  109. /**
  110. * @brief Initialize the default NVS partition.
  111. *
  112. * This API initialises the default NVS partition. The default NVS partition
  113. * is the one that is labeled "nvs" in the partition table.
  114. *
  115. * @param[in] cfg Security configuration (keys) to be used for NVS encryption/decryption.
  116. * If cfg is NULL, no encryption is used.
  117. *
  118. * @return
  119. * - ESP_OK if storage was successfully initialized.
  120. * - ESP_ERR_NVS_NO_FREE_PAGES if the NVS storage contains no empty pages
  121. * (which may happen if NVS partition was truncated)
  122. * - ESP_ERR_NOT_FOUND if no partition with label "nvs" is found in the partition table
  123. * - one of the error codes from the underlying flash storage driver
  124. */
  125. esp_err_t nvs_flash_secure_init(nvs_sec_cfg_t* cfg);
  126. /**
  127. * @brief Initialize NVS flash storage for the specified partition.
  128. *
  129. * @param[in] partition_label Label of the partition. Note that internally a reference to
  130. * passed value is kept and it should be accessible for future operations
  131. *
  132. * @param[in] cfg Security configuration (keys) to be used for NVS encryption/decryption.
  133. * If cfg is null, no encryption/decryption is used.
  134. * @return
  135. * - ESP_OK if storage was successfully initialized.
  136. * - ESP_ERR_NVS_NO_FREE_PAGES if the NVS storage contains no empty pages
  137. * (which may happen if NVS partition was truncated)
  138. * - ESP_ERR_NOT_FOUND if specified partition is not found in the partition table
  139. * - one of the error codes from the underlying flash storage driver
  140. */
  141. esp_err_t nvs_flash_secure_init_partition(const char *partition_label, nvs_sec_cfg_t* cfg);
  142. /**
  143. * @brief Generate and store NVS keys in the provided esp partition
  144. *
  145. * @param[in] partition Pointer to partition structure obtained using
  146. * esp_partition_find_first or esp_partition_get.
  147. * Must be non-NULL.
  148. * @param[out] cfg Pointer to nvs security configuration structure.
  149. * Pointer must be non-NULL.
  150. * Generated keys will be populated in this structure.
  151. *
  152. *
  153. * @return
  154. * -ESP_OK, if cfg was read successfully;
  155. * -or error codes from esp_partition_write/erase APIs.
  156. */
  157. esp_err_t nvs_flash_generate_keys(const esp_partition_t* partition, nvs_sec_cfg_t* cfg);
  158. /**
  159. * @brief Read NVS security configuration from a partition.
  160. *
  161. * @param[in] partition Pointer to partition structure obtained using
  162. * esp_partition_find_first or esp_partition_get.
  163. * Must be non-NULL.
  164. * @param[out] cfg Pointer to nvs security configuration structure.
  165. * Pointer must be non-NULL.
  166. *
  167. * @note Provided parition is assumed to be marked 'encrypted'.
  168. *
  169. * @return
  170. * -ESP_OK, if cfg was read successfully;
  171. * -ESP_ERR_NVS_KEYS_NOT_INITIALIZED, if the partition is not yet written with keys.
  172. * -ESP_ERR_NVS_CORRUPT_KEY_PART, if the partition containing keys is found to be corrupt
  173. * -or error codes from esp_partition_read API.
  174. */
  175. esp_err_t nvs_flash_read_security_cfg(const esp_partition_t* partition, nvs_sec_cfg_t* cfg);
  176. #ifdef __cplusplus
  177. }
  178. #endif
  179. #endif /* nvs_flash_h */