1 /*
2  * Copyright 2023 The Android Open Source Project
3  *
4  * Licensed under the Apache License, Version 2.0 (the "License");
5  * you may not use this file except in compliance with the License.
6  * You may obtain a copy of the License at
7  *
8  *      http://www.apache.org/licenses/LICENSE-2.0
9  *
10  * Unless required by applicable law or agreed to in writing, software
11  * distributed under the License is distributed on an "AS IS" BASIS,
12  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13  * See the License for the specific language governing permissions and
14  * limitations under the License.
15  *
16  */
17 
18 #pragma once
19 
20 #include "common/libs/utils/result.h"
21 
22 #include "host/commands/secure_env/storage/storage.h"
23 
24 namespace cuttlefish {
25 namespace oemlock {
26 
27 /**
28  * OEMLock TPM server interface
29  *
30  * Inspired by OemLock HAL interface:
31  * https://cs.android.com/android/platform/superproject/+/master:hardware/interfaces/oemlock/aidl/default/Android.bp
32 */
33 class OemLock {
34  public:
35   OemLock(secure_env::Storage& storage);
36 
37   Result<bool> IsOemUnlockAllowedByCarrier() const;
38   Result<bool> IsOemUnlockAllowedByDevice() const;
39   Result<bool> IsOemUnlockAllowed() const;
40   Result<bool> IsOemLocked() const;
41   Result<void> SetOemUnlockAllowedByCarrier(bool allowed);
42   Result<void> SetOemUnlockAllowedByDevice(bool allowed);
43   // TODO(b/286558252): add ConfirmationUI token to the signature
44   Result<void> SetOemLocked(bool locked);
45 
46  private:
47   secure_env::Storage& storage_;
48 };
49 
50 } // namespace oemlock
51 } // namespace cuttlefish
52