Home > Articles > Operating Systems, Server

Security in Your Pocket: OpenBSD on ARM

David Chisnall
  • PrintPrint
  • Share ThisShare This
  • DiscussDiscuss
Close WindowDavid Chisnall

David Chisnall

Learn more…

The State of Open Source 3D
Feb 9, 2010
What Is Mac OS X?
Feb 5, 2010
Snow Leopard: The Underhyped APIs
Jan 29, 2010
Foundation: The Objective-C Standard Library
Jan 26, 2010
Cocoa Tips: Exposing System Services
Jan 22, 2010
Cocoa Tips: Don't Reimplement Standard Functionality
Jan 15, 2010
Localizing Cocoa
Jan 8, 2010
How Core Animation Changed Cocoa Drawing
Jan 4, 2010
Using Distributed Objects in Cocoa
Jan 1, 2010
Inside Modern X11 Programming
Sep 18, 2009
Making JavaScript Fast, Part 2
Sep 15, 2009
Security in Your Pocket: OpenBSD on ARM
Sep 11, 2009
Making JavaScript Fast, Part 1
Sep 8, 2009
The Failure of the GPL
Aug 31, 2009
How Not To Optimize
Aug 21, 2009
A Half-Way Step to Apple’s Source Code: An Interview with David Chisnall
Jun 5, 2009
Advanced Flow Control for Objective-C
Jun 5, 2009
Erica Sadun on the iPhone SDK, OS X, and the Computing Landscape
Jun 5, 2009
From NeXTSTEP to Cocoa: Erik Buck on the Development of Cocoa and Objective-C
Jun 5, 2009
Fun with the Objective-C Runtime
Jun 5, 2009
Marcus Zarra and Matt Long on Core Animation
Jun 5, 2009
Steve Kochan on the Evolution of Objective-C
Jun 5, 2009
The Technology NeXT Gave the World
Jun 5, 2009
Where the Web and the Desktop Meet: An Interview with Lee Barney
Jun 5, 2009
Pandora: An Open Console
Jun 2, 2009
The Future of Wireless Networking
May 15, 2009
GNU or Linux?
May 11, 2009
Debugging C-Family Languages
Mar 27, 2009
How Small Is Your PC? The Rise of Netbooks and Other Small Form-Factor PCs
Mar 23, 2009
David Chisnall's CPU Feature Wishlist
Mar 13, 2009
The Dynamic Languages Renaissance
Jan 30, 2009
Robert Seacord on the CERT C Secure Coding Standard
Dec 15, 2008
Objective-C for C++ Programmers, Part 3
Nov 21, 2008
Objective-C for C++ Programmers, Part 2
Nov 14, 2008
Objective-C for C++ Programmers, Part 1
Nov 7, 2008
Writing Insecure C, Part 3
Oct 24, 2008
Writing Insecure C, Part 2
Oct 17, 2008
Writing Insecure C, Part 1
Oct 10, 2008
iRex iLiad e-Reader: Linux's Answer to the Kindle?
Aug 29, 2008
How It Works: Filesystems
Jun 13, 2008
How the LLVM Compiler Infrastructure Works
May 23, 2008
How It Works: Virtual Memory
May 21, 2008
What Is C For?
May 16, 2008
The Future of eBooks
Apr 25, 2008
Imagining an Open Network
Apr 18, 2008
Understanding How Xen Approaches Device Drivers
Mar 21, 2008
Examining the Legendary HURD Kernel
Mar 14, 2008
Competition Among Open Source Compilers
Feb 1, 2008
Inside Your OS: What is a Process Scheduler, and How Does it Work?
Jan 25, 2008
Bad UI of the Week: Read This (OK/Cancel)
Jan 18, 2008
The End of the Desktop Era
Jan 11, 2008
The What and Why of Open IM
Dec 28, 2007
A Look at the Modern X Server
Dec 21, 2007
The Future of Digital Media
Dec 14, 2007
The Future of Identity
Dec 7, 2007
Bad UI of the Week: Ask Forgiveness, Not Permission
Nov 21, 2007
Copyright Versus Free Software
Nov 16, 2007
Is Computer Science Dying?
Nov 9, 2007
A Brief History of Programming, Part 2
Nov 2, 2007
A Brief History of Programming, Part 1
Oct 26, 2007
The 700MHz Question: Will the Wireless Spectrum Auction Lead to Innovation or More of the Same?
Sep 28, 2007
Bad UI of the Week: The Menu Bar
Aug 24, 2007
The Dark Corners of x86
Aug 17, 2007
Bad UI of the Week: The Cross-Platform User Interface
Aug 17, 2007
Bad UI of the Week: The Mythical "is Like" Operator
Aug 10, 2007
Bad UI of the Week: Don't Make Me Tell You Twice...
Aug 3, 2007
Bad UI of the Week: Kettles and Washing Machines
Jul 27, 2007
The BBC iPlayer Controversy Explained
Jul 20, 2007
Bad UI of the Week: The Mitten Mouse
Jul 20, 2007
Bad User Interface of the Week: File It Under “Bad”
Jul 13, 2007
Bad User Interface of the Week: The DVD
Jul 6, 2007
A Roundup of Free Operating Systems
Jun 22, 2007
DragonFly BSD: UNIX for Clusters?
Jun 15, 2007
CPU Wars, Part 3: Put Your Left ARM In
May 18, 2007
CPU Wars, Part 2: POWER to the People
May 11, 2007
CPU Wars, Part 1: When the Chips Are Down
May 4, 2007
ZFS Uncovered
Apr 6, 2007
Vector Programming with GCC
Mar 30, 2007
Free Software Versus Open Source Software
Mar 16, 2007
What Programming Languages Should You Know?
Mar 9, 2007
Standardizing UNIX
Feb 2, 2007
Prolog: Logic Programming for Rapid Development
Jan 26, 2007
POSIX Parallel Programming, Part 3: Threads
Jan 19, 2007
POSIX Parallel Programming, Part 2: Message Passing
Jan 12, 2007
POSIX Parallel Programming, Part 1
Jan 5, 2007
The Nokia 770 Revisited
Dec 29, 2006
The Open Source Desktop Myth
Dec 22, 2006
Separating Style and Content: LaTeX and Typesetting
Dec 1, 2006
GNUstep: A Free Software alternative to OpenStep
Nov 10, 2006
Behind the Scenes of Objective-C 2.0
Nov 3, 2006
The Future of CPUs: What's After Multi-Core?
Oct 27, 2006
What Makes a Good Programming Language?
Oct 20, 2006
Emulation: Role-Playing for Computers
Oct 13, 2006
NetBSD: Not Just for Toasters
Oct 6, 2006
POSIX Asynchronous I/O
Sep 22, 2006
Breaking Down GPL Version 3
Aug 18, 2006
The Role of Binary Drivers in a Free OS
Aug 4, 2006
Security Is a UI Problem
Jul 28, 2006
Debunking the Myth of High-level Languages
Jul 14, 2006
A Taste of Erlang, a Dynamic, Asynchronous Message-Passing Language
Jun 30, 2006
Alternatives to LAMP
Jun 2, 2006
BSD Packaging Systems
May 26, 2006
DRM: Digital Rights or Digital Restrictions?
May 4, 2006
Introducing OpenBSD 3.9
Apr 28, 2006
The Need for Virtualization and Xen
Mar 31, 2006
Making Effective Software TCO Calculations
Mar 24, 2006
10 Things I Hate About U(NIX) Revisited: Readers Speak
Mar 17, 2006
Comparing Open Source Licenses: GPL vs. BSDL
Feb 3, 2006
BSD: The Other Free UNIX Family
Jan 20, 2006
Measuring the Effectiveness of Application Security Policies
Jan 13, 2006
The Cost of Free Software
Dec 9, 2005
Nokia 770 Internet Tablet Week-long Test Drive
Nov 18, 2005
10 Things I Hate About (U)NIX
Nov 4, 2005
The Lure of Open Source Software: Why Consider It for Your Business?
Oct 14, 2005
Cocoa Tip of the Day, 1/29/10
By on January 29, 2010 No Comments

Don't ignore old versions of OS X.

Cocoa Tip of the Day, 1/28/10
By on January 28, 2010 No Comments

Exceptions should be exceptional.

Cocoa Tip of the Day, 1/27/10
By on January 27, 2010 No Comments

Explore the runtime system.

Cocoa Tip of the Day, 1/26/10
By on January 26, 2010 No Comments

Copy design patterns from Cocoa.

Cocoa Tip of the Day, 1/25/10
By on January 25, 2010 No Comments

Profile with Instruments.

Cocoa Tip of the Day, 1/22/10
By on January 22, 2010 No Comments

Expose system services.

Cocoa Tip of the Day, 1/21/10
By on January 21, 2010 No Comments

Always read the release notes for new OS X versions.

Cocoa Tip of the Day, 1/20/10
By on January 20, 2010 No Comments

Broadcast events with notifications.

Cocoa Tip of the Day, 1/19/10
By on January 19, 2010 No Comments

Port your code with GNUstep.

Cocoa Tip of the Day, 1/18/10
By on January 18, 2010 No Comments

Use CoreAnimation for caching.

Cocoa Tip of the Day, 1/15/10
By on January 15, 2010 No Comments

Don't recreate standard features.

Cocoa Tip of the Day, 1/14/10
By on January 14, 2010 No Comments

Don't forget NSCell.

Cocoa Tip of the Day, 1/13/10
By on January 13, 20102 Comments

Plan for code reuse.

Cocoa Tip of the Day, 1/12/10
By on January 12, 2010 No Comments

Remember the C in Objective-C.

Cocoa Tip of the Day, 1/11/10
By on January 11, 2010 No Comments

Separate interfaces and implementations.

Cocoa Tip of the Day, 1/8/10
By on January 8, 2010 No Comments

Think about localisation early.

Cocoa Tip of the Day, 1/7/10
By on January 7, 2010 No Comments

Read the Human Interface Guidelines.

Cocoa Tip of the Day, 1/6/10
By on January 6, 2010 No Comments

Don't optimise yet.

Cocoa Tip of the Day, 1/5/10
By on January 5, 2010 No Comments

Put controllers in nib files.

Cocoa Tip of the Day, 1/4/10
By on January 4, 2010 No Comments

Don't write code.

Cocoa Tip of the Day, 1/1/10
By on January 1, 2010 No Comments

Use Distributed Objects for local network communication.

David Chisnall talks with Dale Rahn, the OpenBSD ARM port maintainer, about how OpenBSD support for handheld systems has improved over recent years, and why users and OEMs should consider it.

When you think about OpenBSD, if you think about OpenBSD at all, you probably think of firewalls and routers. Maybe servers, and possibly desktops (but probably not). Recent versions have nice sound and 3D support, so desktop use isn't too unlikely, but one thing you probably don't think of is handheld systems.

The handheld operating system market is largely owned by Symbian, although its market share has been eroding over the last few years. Linux is starting to make inroads, and some people still use WinCE devices (developers for the platform tell me that naming it "wince" was more accurate than most Microsoft product names). Given that Symbian now has a POSIX layer and Linux has always aimed toward POSIX compliance, it's starting to look as if handhelds may end up running a lot of the same software as desktops.

The First Ports

The initial port of OpenBSD was funded by DARPA; Dale Rahn, who was employed by the DARPA grant to OpenBSD, and who had formerly worked for Motorola on ARM simulations, received the donation of a desktop ARM system. After this initial port, he returned to Motorola. At the time, a number of Motorola's customers were interested in a UNIX-like system for ARM chips, but didn't want to use GPL'd code in their products. Dale was hired to work on a BSD-licensed system for these customers.

One of the first handheld platforms to excite the Free Software community was the Sharp Zaurus series. These clamshell machines featured a 416 MHz Intel ARM CPU and 64MB of RAM. Most importantly, they shipped with Linux. At the time they were introduced, flash was still very expensive, so instead they came with a microdrive—a tiny mechanical disk.

Running Linux meant that there was already support from a toolchain capable of building a similar system. In addition, most of the hardware was well documented. In 2005, a few OpenBSD developers got hold of Zaurus systems and began a port of their operating system. The Zaurus used the same system-on-chip (SoC) module as the mobile phones Dale had been working to support at Motorola.

A few of the OpenBSD developers still use the Zaurus, but it's starting to look a bit dated. The screen is quite small, and the processor is a lot slower than a modern ARM system. I asked Dale if he had his eye on any more-recent devices:

We had started to look into the Nokia N800; however, there wasn't quite enough information available to get the port started properly at the time.

Work was started on the Openmoko FreeRunner and Gumstix (PXA270) at h2k8 last November, but those projects have stalled since I have had little free time lately. At this point, both of those hardware [lines] have been discontinued, so it is unclear how far those ports will proceed.

The situation isn't quite as bad as it seems, though. A lot of devices are starting to appear based around the Cortex-A8, with Texas Instruments' OMAP3 series being the most popular, and Motorola's i.MX5 is a newer entrant aimed at the netbook market. Dale continued:

Upcoming devices which look interesting include Beagle Board and Gumstix Overo. I have temporary access to a Beagle Board, but to support it properly [I] would need one or two for development and regression testing.

A number of companies have announced that they're planning to produce netbooks based around ARM cores, and companies such as Dell are now shipping hybrid systems that have both x86 and ARM CPUs. Dale mentioned his interest in the Latitude ON feature in these systems, which uses an OMAP3 core in Dell laptops for instant-on support. By keeping the home directories on a separate partition, it would be possible to have OpenBSD/ARM and OpenBSD/x86 installed on such a machine, using one when on battery and the other when on main power.

OpenBSD gained a lot of clean hardware abstraction from NetBSD, and has maintained this since it was forked. All code in the base system is expected to be tested on several architectures, including i386 and SPARC64, which provide almost diametrically opposed sets of constraints. I asked Dale how much time it took to get the initial Zaurus port working:

Most of the work was done in a couple of months. I did the bulk of the work, with dlg@ doing most of the USB host, miod@ most of the display driver work, [and] uwe@ did most of the apm/suspend/cpu-speed changes.

This was a port from the Cats platform, a desktop ARM system based around an evaluation board (and generally loathed by most developers), but it required new drivers to be written for a lot of the hardware. I asked Dale how much effort was needed to add support for a new SoC:

Depends on if the family of chips is supported or not. Typically a family of chips will have the same (or very similar) timers and interrupt controllers. So these must be rewritten for each family; however, for a new version of the family of chips, it is just a minor tweak or reused.

Most platforms can be up and running on uart, with the basic devices (uart, tick timer, interrupt controller) running in a few days to a few weeks. However, supporting additional pieces, USB (host and client), SD, CF, gpio keyboards, audio can take quite a bit longer. It definitely helps if hardware is available to other developers for them to work on their different areas of expertise. A bigger problem exists when the processor core isn't supported; e.g., Cortex-A8 removed one of the features in the mmu that was being used, so the physical map code needs work to function with the new changes, W^X support can be added at that time.

Unlike x86, which has always aimed to be backwardly compatible (even a new, 64-bit, x86 chip can still boot MS-DOS 1.0), each new ARM instruction set revision typically includes a new set of privileged-mode instructions, and therefore needs extra support, as do all of the other devices integrated into the SoC. Fortunately, a lot of devices outside of the SoC are not attached via standard interfaces such as compact flash or USB ports. Once OpenBSD has a working device driver for the bus, these can all run using existing drivers. If a USB webcam works on OpenBSD, for example, it will work on any OpenBSD platform with a USB driver.

  • Share ThisShare This
  • Your Account

Discussions

Make a New Comment

You must log in in order to post a comment.

Related Resources

Jennifer  BortelWin FREE iPhone Developer Books and Videos- Introducing @InformIT Giveaways
By Jennifer Bortel on February 5, 2010 No Comments

Apples’s recent iPad announcement made our hearts flutter so we couldn’t resist making an announcement of our own!

Today marks the first ever @InformIT Giveaway!

We’ll regularly post a video like this one profiling spectacular prizes we’re giving away—from books and videos to T-shirts and other exciting stuff. Check out the video below to see the giveaways for today, and then scroll down for more prize details and instructions on how to win them!

So Far So Good
By John Traenkenschuh on February 2, 2010 No Comments

So far, Win 7 is making a thoroughbred of what has been a plough mule laptop

Dustin Sullivan"Every OSX developer should have this book on their desk."
By Dustin Sullivan on February 1, 2010 No Comments

That was the sentence Mike Riley ended his recent Dr Dobb's CodeTalk review of Cocoa Programming Developer's Handbook with.

See All Related Blogs

Informit Network