blob: 4f70a42d18416e6f40134b6171e0150d9729b5af [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080071 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
72 if "ANDROID_HOST_OUT" in os.environ:
73 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080074 self.signapk_shared_library_path = "lib64" # Relative to search_path
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020075 self.sign_sepolicy_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070076 self.extra_signapk_args = []
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020077 self.extra_sign_sepolicy_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000078 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070079 self.java_path = "java" # Use the one on the path by default.
Sorin Basca05085832022-09-14 11:33:22 +010080 self.java_args = ["-Xmx4096m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080081 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070082 self.public_key_suffix = ".x509.pem"
83 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070084 # use otatools built boot_signer by default
Dan Albert8b72aef2015-03-23 19:13:21 -070085 self.verbose = False
86 self.tempfiles = []
87 self.device_specific = None
88 self.extras = {}
89 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070090 self.source_info_dict = None
91 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070092 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070093 # Stash size cannot exceed cache_size * threshold.
94 self.cache_size = None
95 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070096 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -070097 self.host_tools = {}
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020098 self.sepolicy_name = 'sepolicy.apex'
Dan Albert8b72aef2015-03-23 19:13:21 -070099
100
101OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700102
Tao Bao71197512018-10-11 14:08:45 -0700103# The block size that's used across the releasetools scripts.
104BLOCK_SIZE = 4096
105
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800106# Values for "certificate" in apkcerts that mean special things.
107SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
108
Tao Bao5cc0abb2019-03-21 10:18:05 -0700109# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
110# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800111# descriptor into vbmeta.img. When adding a new entry here, the
112# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
113# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000114AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Lucas Wei03230252022-04-18 16:00:40 +0800115 'system', 'system_ext', 'vendor', 'vendor_boot', 'vendor_kernel_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000116 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800117
Tao Bao08c190f2019-06-03 23:07:58 -0700118# Chained VBMeta partitions.
119AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
120
Tianjie Xu861f4132018-09-12 11:49:33 -0700121# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400122PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700123 'system',
124 'vendor',
125 'product',
126 'system_ext',
127 'odm',
128 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700129 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000130 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400131]
Tianjie Xu861f4132018-09-12 11:49:33 -0700132
Yifan Hong5057b952021-01-07 14:09:57 -0800133# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000134PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800135
Yifan Hongc65a0542021-01-07 14:21:01 -0800136# See sysprop.mk. If file is moved, add new search paths here; don't remove
137# existing search paths.
138RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700139
Kelvin Zhang563750f2021-04-28 12:46:17 -0400140
Tianjie Xu209db462016-05-24 17:34:52 -0700141class ErrorCode(object):
142 """Define error_codes for failures that happen during the actual
143 update package installation.
144
145 Error codes 0-999 are reserved for failures before the package
146 installation (i.e. low battery, package verification failure).
147 Detailed code in 'bootable/recovery/error_code.h' """
148
149 SYSTEM_VERIFICATION_FAILURE = 1000
150 SYSTEM_UPDATE_FAILURE = 1001
151 SYSTEM_UNEXPECTED_CONTENTS = 1002
152 SYSTEM_NONZERO_CONTENTS = 1003
153 SYSTEM_RECOVER_FAILURE = 1004
154 VENDOR_VERIFICATION_FAILURE = 2000
155 VENDOR_UPDATE_FAILURE = 2001
156 VENDOR_UNEXPECTED_CONTENTS = 2002
157 VENDOR_NONZERO_CONTENTS = 2003
158 VENDOR_RECOVER_FAILURE = 2004
159 OEM_PROP_MISMATCH = 3000
160 FINGERPRINT_MISMATCH = 3001
161 THUMBPRINT_MISMATCH = 3002
162 OLDER_BUILD = 3003
163 DEVICE_MISMATCH = 3004
164 BAD_PATCH_FILE = 3005
165 INSUFFICIENT_CACHE_SPACE = 3006
166 TUNE_PARTITION_FAILURE = 3007
167 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800168
Tao Bao80921982018-03-21 21:02:19 -0700169
Dan Albert8b72aef2015-03-23 19:13:21 -0700170class ExternalError(RuntimeError):
171 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700172
173
Tao Bao32fcdab2018-10-12 10:30:39 -0700174def InitLogging():
175 DEFAULT_LOGGING_CONFIG = {
176 'version': 1,
177 'disable_existing_loggers': False,
178 'formatters': {
179 'standard': {
180 'format':
181 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
182 'datefmt': '%Y-%m-%d %H:%M:%S',
183 },
184 },
185 'handlers': {
186 'default': {
187 'class': 'logging.StreamHandler',
188 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700189 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700190 },
191 },
192 'loggers': {
193 '': {
194 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700195 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700196 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700197 }
198 }
199 }
200 env_config = os.getenv('LOGGING_CONFIG')
201 if env_config:
202 with open(env_config) as f:
203 config = json.load(f)
204 else:
205 config = DEFAULT_LOGGING_CONFIG
206
207 # Increase the logging level for verbose mode.
208 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700209 config = copy.deepcopy(config)
210 config['handlers']['default']['level'] = 'INFO'
211
212 if OPTIONS.logfile:
213 config = copy.deepcopy(config)
214 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400215 'class': 'logging.FileHandler',
216 'formatter': 'standard',
217 'level': 'INFO',
218 'mode': 'w',
219 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700220 }
221 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700222
223 logging.config.dictConfig(config)
224
225
Yifan Hong8e332ff2020-07-29 17:51:55 -0700226def SetHostToolLocation(tool_name, location):
227 OPTIONS.host_tools[tool_name] = location
228
Kelvin Zhang563750f2021-04-28 12:46:17 -0400229
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900230def FindHostToolPath(tool_name):
231 """Finds the path to the host tool.
232
233 Args:
234 tool_name: name of the tool to find
235 Returns:
236 path to the tool if found under either one of the host_tools map or under
237 the same directory as this binary is located at. If not found, tool_name
238 is returned.
239 """
240 if tool_name in OPTIONS.host_tools:
241 return OPTIONS.host_tools[tool_name]
242
243 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
244 tool_path = os.path.join(my_dir, tool_name)
245 if os.path.exists(tool_path):
246 return tool_path
247
248 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700249
Kelvin Zhang563750f2021-04-28 12:46:17 -0400250
Tao Bao39451582017-05-04 11:10:47 -0700251def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700252 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700253
Tao Bao73dd4f42018-10-04 16:25:33 -0700254 Args:
255 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700256 verbose: Whether the commands should be shown. Default to the global
257 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700258 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
259 stdin, etc. stdout and stderr will default to subprocess.PIPE and
260 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800261 universal_newlines will default to True, as most of the users in
262 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700263
264 Returns:
265 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700266 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700267 if 'stdout' not in kwargs and 'stderr' not in kwargs:
268 kwargs['stdout'] = subprocess.PIPE
269 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800270 if 'universal_newlines' not in kwargs:
271 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700272
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900273 if args:
274 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700275 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900276 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700277
Kelvin Zhang766eea72021-06-03 09:36:08 -0400278 if verbose is None:
279 verbose = OPTIONS.verbose
280
Tao Bao32fcdab2018-10-12 10:30:39 -0700281 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400282 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700283 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700284 return subprocess.Popen(args, **kwargs)
285
286
Tao Bao986ee862018-10-04 15:46:16 -0700287def RunAndCheckOutput(args, verbose=None, **kwargs):
288 """Runs the given command and returns the output.
289
290 Args:
291 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700292 verbose: Whether the commands should be shown. Default to the global
293 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700294 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
295 stdin, etc. stdout and stderr will default to subprocess.PIPE and
296 subprocess.STDOUT respectively unless caller specifies any of them.
297
298 Returns:
299 The output string.
300
301 Raises:
302 ExternalError: On non-zero exit from the command.
303 """
Tao Bao986ee862018-10-04 15:46:16 -0700304 proc = Run(args, verbose=verbose, **kwargs)
305 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800306 if output is None:
307 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700308 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400309 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700310 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700311 if proc.returncode != 0:
312 raise ExternalError(
313 "Failed to run command '{}' (exit code {}):\n{}".format(
314 args, proc.returncode, output))
315 return output
316
317
Tao Baoc765cca2018-01-31 17:32:40 -0800318def RoundUpTo4K(value):
319 rounded_up = value + 4095
320 return rounded_up - (rounded_up % 4096)
321
322
Ying Wang7e6d4e42010-12-13 16:25:36 -0800323def CloseInheritedPipes():
324 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
325 before doing other work."""
326 if platform.system() != "Darwin":
327 return
328 for d in range(3, 1025):
329 try:
330 stat = os.fstat(d)
331 if stat is not None:
332 pipebit = stat[0] & 0x1000
333 if pipebit != 0:
334 os.close(d)
335 except OSError:
336 pass
337
338
Tao Bao1c320f82019-10-04 23:25:12 -0700339class BuildInfo(object):
340 """A class that holds the information for a given build.
341
342 This class wraps up the property querying for a given source or target build.
343 It abstracts away the logic of handling OEM-specific properties, and caches
344 the commonly used properties such as fingerprint.
345
346 There are two types of info dicts: a) build-time info dict, which is generated
347 at build time (i.e. included in a target_files zip); b) OEM info dict that is
348 specified at package generation time (via command line argument
349 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
350 having "oem_fingerprint_properties" in build-time info dict), all the queries
351 would be answered based on build-time info dict only. Otherwise if using
352 OEM-specific properties, some of them will be calculated from two info dicts.
353
354 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800355 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700356
357 Attributes:
358 info_dict: The build-time info dict.
359 is_ab: Whether it's a build that uses A/B OTA.
360 oem_dicts: A list of OEM dicts.
361 oem_props: A list of OEM properties that should be read from OEM dicts; None
362 if the build doesn't use any OEM-specific property.
363 fingerprint: The fingerprint of the build, which would be calculated based
364 on OEM properties if applicable.
365 device: The device name, which could come from OEM dicts if applicable.
366 """
367
368 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
369 "ro.product.manufacturer", "ro.product.model",
370 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700371 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
372 "product", "odm", "vendor", "system_ext", "system"]
373 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
374 "product", "product_services", "odm", "vendor", "system"]
375 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700376
Tianjiefdda51d2021-05-05 14:46:35 -0700377 # The length of vbmeta digest to append to the fingerprint
378 _VBMETA_DIGEST_SIZE_USED = 8
379
380 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700381 """Initializes a BuildInfo instance with the given dicts.
382
383 Note that it only wraps up the given dicts, without making copies.
384
385 Arguments:
386 info_dict: The build-time info dict.
387 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
388 that it always uses the first dict to calculate the fingerprint or the
389 device name. The rest would be used for asserting OEM properties only
390 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700391 use_legacy_id: Use the legacy build id to construct the fingerprint. This
392 is used when we need a BuildInfo class, while the vbmeta digest is
393 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700394
395 Raises:
396 ValueError: On invalid inputs.
397 """
398 self.info_dict = info_dict
399 self.oem_dicts = oem_dicts
400
401 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700402 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700403
Hongguang Chend7c160f2020-05-03 21:24:26 -0700404 # Skip _oem_props if oem_dicts is None to use BuildInfo in
405 # sign_target_files_apks
406 if self.oem_dicts:
407 self._oem_props = info_dict.get("oem_fingerprint_properties")
408 else:
409 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700410
Daniel Normand5fe8622020-01-08 17:01:11 -0800411 def check_fingerprint(fingerprint):
412 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
413 raise ValueError(
414 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
415 "3.2.2. Build Parameters.".format(fingerprint))
416
Daniel Normand5fe8622020-01-08 17:01:11 -0800417 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800418 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800419 try:
420 fingerprint = self.CalculatePartitionFingerprint(partition)
421 check_fingerprint(fingerprint)
422 self._partition_fingerprints[partition] = fingerprint
423 except ExternalError:
424 continue
425 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800426 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800427 # need a fingerprint when creating the image.
428 self._partition_fingerprints[
429 "system_other"] = self._partition_fingerprints["system"]
430
Tao Bao1c320f82019-10-04 23:25:12 -0700431 # These two should be computed only after setting self._oem_props.
432 self._device = self.GetOemProperty("ro.product.device")
433 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800434 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700435
436 @property
437 def is_ab(self):
438 return self._is_ab
439
440 @property
441 def device(self):
442 return self._device
443
444 @property
445 def fingerprint(self):
446 return self._fingerprint
447
448 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400449 def is_vabc(self):
450 vendor_prop = self.info_dict.get("vendor.build.prop")
451 vabc_enabled = vendor_prop and \
452 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
453 return vabc_enabled
454
455 @property
Kelvin Zhanga9a87ec2022-05-04 16:44:52 -0700456 def is_android_r(self):
457 system_prop = self.info_dict.get("system.build.prop")
458 return system_prop and system_prop.GetProp("ro.build.version.release") == "11"
459
460 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700461 def is_vabc_xor(self):
462 vendor_prop = self.info_dict.get("vendor.build.prop")
463 vabc_xor_enabled = vendor_prop and \
464 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
465 return vabc_xor_enabled
466
467 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400468 def vendor_suppressed_vabc(self):
469 vendor_prop = self.info_dict.get("vendor.build.prop")
470 vabc_suppressed = vendor_prop and \
471 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
472 return vabc_suppressed and vabc_suppressed.lower() == "true"
473
474 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700475 def oem_props(self):
476 return self._oem_props
477
478 def __getitem__(self, key):
479 return self.info_dict[key]
480
481 def __setitem__(self, key, value):
482 self.info_dict[key] = value
483
484 def get(self, key, default=None):
485 return self.info_dict.get(key, default)
486
487 def items(self):
488 return self.info_dict.items()
489
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000490 def _GetRawBuildProp(self, prop, partition):
491 prop_file = '{}.build.prop'.format(
492 partition) if partition else 'build.prop'
493 partition_props = self.info_dict.get(prop_file)
494 if not partition_props:
495 return None
496 return partition_props.GetProp(prop)
497
Daniel Normand5fe8622020-01-08 17:01:11 -0800498 def GetPartitionBuildProp(self, prop, partition):
499 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800500
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000501 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
Devin Mooreb5195ff2022-02-11 18:44:26 +0000502 # This comes from the generic ramdisk
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000503 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800504
Daniel Normand5fe8622020-01-08 17:01:11 -0800505 # If provided a partition for this property, only look within that
506 # partition's build.prop.
507 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800508 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800509 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800510 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000511
512 prop_val = self._GetRawBuildProp(prop, partition)
513 if prop_val is not None:
514 return prop_val
515 raise ExternalError("couldn't find %s in %s.build.prop" %
516 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800517
Tao Bao1c320f82019-10-04 23:25:12 -0700518 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800519 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700520 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
521 return self._ResolveRoProductBuildProp(prop)
522
Tianjiefdda51d2021-05-05 14:46:35 -0700523 if prop == "ro.build.id":
524 return self._GetBuildId()
525
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000526 prop_val = self._GetRawBuildProp(prop, None)
527 if prop_val is not None:
528 return prop_val
529
530 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700531
532 def _ResolveRoProductBuildProp(self, prop):
533 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000534 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700535 if prop_val:
536 return prop_val
537
Steven Laver8e2086e2020-04-27 16:26:31 -0700538 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000539 source_order_val = self._GetRawBuildProp(
540 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700541 if source_order_val:
542 source_order = source_order_val.split(",")
543 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700544 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700545
546 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700547 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700548 raise ExternalError(
549 "Invalid ro.product.property_source_order '{}'".format(source_order))
550
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000551 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700552 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000553 "ro.product", "ro.product.{}".format(source_partition), 1)
554 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700555 if prop_val:
556 return prop_val
557
558 raise ExternalError("couldn't resolve {}".format(prop))
559
Steven Laver8e2086e2020-04-27 16:26:31 -0700560 def _GetRoProductPropsDefaultSourceOrder(self):
561 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
562 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000563 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700564 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000565 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700566 if android_version == "10":
567 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
568 # NOTE: float() conversion of android_version will have rounding error.
569 # We are checking for "9" or less, and using "< 10" is well outside of
570 # possible floating point rounding.
571 try:
572 android_version_val = float(android_version)
573 except ValueError:
574 android_version_val = 0
575 if android_version_val < 10:
576 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
577 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
578
Tianjieb37c5be2020-10-15 21:27:10 -0700579 def _GetPlatformVersion(self):
580 version_sdk = self.GetBuildProp("ro.build.version.sdk")
581 # init code switches to version_release_or_codename (see b/158483506). After
582 # API finalization, release_or_codename will be the same as release. This
583 # is the best effort to support pre-S dev stage builds.
584 if int(version_sdk) >= 30:
585 try:
586 return self.GetBuildProp("ro.build.version.release_or_codename")
587 except ExternalError:
588 logger.warning('Failed to find ro.build.version.release_or_codename')
589
590 return self.GetBuildProp("ro.build.version.release")
591
Tianjiefdda51d2021-05-05 14:46:35 -0700592 def _GetBuildId(self):
593 build_id = self._GetRawBuildProp("ro.build.id", None)
594 if build_id:
595 return build_id
596
597 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
598 if not legacy_build_id:
599 raise ExternalError("Couldn't find build id in property file")
600
601 if self.use_legacy_id:
602 return legacy_build_id
603
604 # Append the top 8 chars of vbmeta digest to the existing build id. The
605 # logic needs to match the one in init, so that OTA can deliver correctly.
606 avb_enable = self.info_dict.get("avb_enable") == "true"
607 if not avb_enable:
608 raise ExternalError("AVB isn't enabled when using legacy build id")
609
610 vbmeta_digest = self.info_dict.get("vbmeta_digest")
611 if not vbmeta_digest:
612 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
613 " id")
614 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
615 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
616
617 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
618 return legacy_build_id + '.' + digest_prefix
619
Tianjieb37c5be2020-10-15 21:27:10 -0700620 def _GetPartitionPlatformVersion(self, partition):
621 try:
622 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
623 partition)
624 except ExternalError:
625 return self.GetPartitionBuildProp("ro.build.version.release",
626 partition)
627
Tao Bao1c320f82019-10-04 23:25:12 -0700628 def GetOemProperty(self, key):
629 if self.oem_props is not None and key in self.oem_props:
630 return self.oem_dicts[0][key]
631 return self.GetBuildProp(key)
632
Daniel Normand5fe8622020-01-08 17:01:11 -0800633 def GetPartitionFingerprint(self, partition):
634 return self._partition_fingerprints.get(partition, None)
635
636 def CalculatePartitionFingerprint(self, partition):
637 try:
638 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
639 except ExternalError:
640 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
641 self.GetPartitionBuildProp("ro.product.brand", partition),
642 self.GetPartitionBuildProp("ro.product.name", partition),
643 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700644 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800645 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400646 self.GetPartitionBuildProp(
647 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800648 self.GetPartitionBuildProp("ro.build.type", partition),
649 self.GetPartitionBuildProp("ro.build.tags", partition))
650
Tao Bao1c320f82019-10-04 23:25:12 -0700651 def CalculateFingerprint(self):
652 if self.oem_props is None:
653 try:
654 return self.GetBuildProp("ro.build.fingerprint")
655 except ExternalError:
656 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
657 self.GetBuildProp("ro.product.brand"),
658 self.GetBuildProp("ro.product.name"),
659 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700660 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700661 self.GetBuildProp("ro.build.id"),
662 self.GetBuildProp("ro.build.version.incremental"),
663 self.GetBuildProp("ro.build.type"),
664 self.GetBuildProp("ro.build.tags"))
665 return "%s/%s/%s:%s" % (
666 self.GetOemProperty("ro.product.brand"),
667 self.GetOemProperty("ro.product.name"),
668 self.GetOemProperty("ro.product.device"),
669 self.GetBuildProp("ro.build.thumbprint"))
670
671 def WriteMountOemScript(self, script):
672 assert self.oem_props is not None
673 recovery_mount_options = self.info_dict.get("recovery_mount_options")
674 script.Mount("/oem", recovery_mount_options)
675
676 def WriteDeviceAssertions(self, script, oem_no_mount):
677 # Read the property directly if not using OEM properties.
678 if not self.oem_props:
679 script.AssertDevice(self.device)
680 return
681
682 # Otherwise assert OEM properties.
683 if not self.oem_dicts:
684 raise ExternalError(
685 "No OEM file provided to answer expected assertions")
686
687 for prop in self.oem_props.split():
688 values = []
689 for oem_dict in self.oem_dicts:
690 if prop in oem_dict:
691 values.append(oem_dict[prop])
692 if not values:
693 raise ExternalError(
694 "The OEM file is missing the property %s" % (prop,))
695 script.AssertOemProperty(prop, values, oem_no_mount)
696
697
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000698def ReadFromInputFile(input_file, fn):
699 """Reads the contents of fn from input zipfile or directory."""
700 if isinstance(input_file, zipfile.ZipFile):
701 return input_file.read(fn).decode()
702 else:
703 path = os.path.join(input_file, *fn.split("/"))
704 try:
705 with open(path) as f:
706 return f.read()
707 except IOError as e:
708 if e.errno == errno.ENOENT:
709 raise KeyError(fn)
710
711
Yifan Hong10482a22021-01-07 14:38:41 -0800712def ExtractFromInputFile(input_file, fn):
713 """Extracts the contents of fn from input zipfile or directory into a file."""
714 if isinstance(input_file, zipfile.ZipFile):
715 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500716 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800717 f.write(input_file.read(fn))
718 return tmp_file
719 else:
720 file = os.path.join(input_file, *fn.split("/"))
721 if not os.path.exists(file):
722 raise KeyError(fn)
723 return file
724
Kelvin Zhang563750f2021-04-28 12:46:17 -0400725
jiajia tangf3f842b2021-03-17 21:49:44 +0800726class RamdiskFormat(object):
727 LZ4 = 1
728 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800729
Kelvin Zhang563750f2021-04-28 12:46:17 -0400730
TJ Rhoades6f488e92022-05-01 22:16:22 -0700731def GetRamdiskFormat(info_dict):
jiajia tang836f76b2021-04-02 14:48:26 +0800732 if info_dict.get('lz4_ramdisks') == 'true':
733 ramdisk_format = RamdiskFormat.LZ4
734 else:
735 ramdisk_format = RamdiskFormat.GZ
736 return ramdisk_format
737
Kelvin Zhang563750f2021-04-28 12:46:17 -0400738
Tao Bao410ad8b2018-08-24 12:08:38 -0700739def LoadInfoDict(input_file, repacking=False):
740 """Loads the key/value pairs from the given input target_files.
741
Tianjiea85bdf02020-07-29 11:56:19 -0700742 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700743 checks and returns the parsed key/value pairs for to the given build. It's
744 usually called early when working on input target_files files, e.g. when
745 generating OTAs, or signing builds. Note that the function may be called
746 against an old target_files file (i.e. from past dessert releases). So the
747 property parsing needs to be backward compatible.
748
749 In a `META/misc_info.txt`, a few properties are stored as links to the files
750 in the PRODUCT_OUT directory. It works fine with the build system. However,
751 they are no longer available when (re)generating images from target_files zip.
752 When `repacking` is True, redirect these properties to the actual files in the
753 unzipped directory.
754
755 Args:
756 input_file: The input target_files file, which could be an open
757 zipfile.ZipFile instance, or a str for the dir that contains the files
758 unzipped from a target_files file.
759 repacking: Whether it's trying repack an target_files file after loading the
760 info dict (default: False). If so, it will rewrite a few loaded
761 properties (e.g. selinux_fc, root_dir) to point to the actual files in
762 target_files file. When doing repacking, `input_file` must be a dir.
763
764 Returns:
765 A dict that contains the parsed key/value pairs.
766
767 Raises:
768 AssertionError: On invalid input arguments.
769 ValueError: On malformed input values.
770 """
771 if repacking:
772 assert isinstance(input_file, str), \
773 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700774
Doug Zongkerc9253822014-02-04 12:17:58 -0800775 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000776 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800777
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700778 try:
Michael Runge6e836112014-04-15 17:40:21 -0700779 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700780 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700781 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700782
Tao Bao410ad8b2018-08-24 12:08:38 -0700783 if "recovery_api_version" not in d:
784 raise ValueError("Failed to find 'recovery_api_version'")
785 if "fstab_version" not in d:
786 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800787
Tao Bao410ad8b2018-08-24 12:08:38 -0700788 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700789 # "selinux_fc" properties should point to the file_contexts files
790 # (file_contexts.bin) under META/.
791 for key in d:
792 if key.endswith("selinux_fc"):
793 fc_basename = os.path.basename(d[key])
794 fc_config = os.path.join(input_file, "META", fc_basename)
795 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700796
Daniel Norman72c626f2019-05-13 15:58:14 -0700797 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700798
Tom Cherryd14b8952018-08-09 14:26:00 -0700799 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700800 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700801 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700802 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700803
David Anderson0ec64ac2019-12-06 12:21:18 -0800804 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700805 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000806 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800807 key_name = part_name + "_base_fs_file"
808 if key_name not in d:
809 continue
810 basename = os.path.basename(d[key_name])
811 base_fs_file = os.path.join(input_file, "META", basename)
812 if os.path.exists(base_fs_file):
813 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700814 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700815 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800816 "Failed to find %s base fs file: %s", part_name, base_fs_file)
817 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700818
Doug Zongker37974732010-09-16 17:44:38 -0700819 def makeint(key):
820 if key in d:
821 d[key] = int(d[key], 0)
822
823 makeint("recovery_api_version")
824 makeint("blocksize")
825 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700826 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700827 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700828 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700829 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800830 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700831
Steve Muckle903a1ca2020-05-07 17:32:10 -0700832 boot_images = "boot.img"
833 if "boot_images" in d:
834 boot_images = d["boot_images"]
835 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400836 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700837
Tao Bao765668f2019-10-04 22:03:00 -0700838 # Load recovery fstab if applicable.
839 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
TJ Rhoades6f488e92022-05-01 22:16:22 -0700840 ramdisk_format = GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800841
Tianjie Xu861f4132018-09-12 11:49:33 -0700842 # Tries to load the build props for all partitions with care_map, including
843 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800844 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800845 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000846 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800847 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700848 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800849
Tao Bao3ed35d32019-10-07 20:48:48 -0700850 # Set up the salt (based on fingerprint) that will be used when adding AVB
851 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800852 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700853 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800854 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800855 fingerprint = build_info.GetPartitionFingerprint(partition)
856 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400857 d["avb_{}_salt".format(partition)] = sha256(
858 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700859
Yong Ma253b1062022-08-18 09:53:27 +0000860 # Set up the salt for partitions without build.prop
861 if build_info.fingerprint:
862 d["avb_salt"] = sha256(build_info.fingerprint.encode()).hexdigest()
863
Tianjiefdda51d2021-05-05 14:46:35 -0700864 # Set the vbmeta digest if exists
865 try:
866 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
867 except KeyError:
868 pass
869
Kelvin Zhang39aea442020-08-17 11:04:25 -0400870 try:
871 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
872 except KeyError:
873 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700874 return d
875
Tao Baod1de6f32017-03-01 16:38:48 -0800876
Daniel Norman4cc9df62019-07-18 10:11:07 -0700877def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900878 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700879 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900880
Daniel Norman4cc9df62019-07-18 10:11:07 -0700881
882def LoadDictionaryFromFile(file_path):
883 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900884 return LoadDictionaryFromLines(lines)
885
886
Michael Runge6e836112014-04-15 17:40:21 -0700887def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700888 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700889 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700890 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700891 if not line or line.startswith("#"):
892 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700893 if "=" in line:
894 name, value = line.split("=", 1)
895 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700896 return d
897
Tao Baod1de6f32017-03-01 16:38:48 -0800898
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000899class PartitionBuildProps(object):
900 """The class holds the build prop of a particular partition.
901
902 This class loads the build.prop and holds the build properties for a given
903 partition. It also partially recognizes the 'import' statement in the
904 build.prop; and calculates alternative values of some specific build
905 properties during runtime.
906
907 Attributes:
908 input_file: a zipped target-file or an unzipped target-file directory.
909 partition: name of the partition.
910 props_allow_override: a list of build properties to search for the
911 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000912 build_props: a dict of build properties for the given partition.
913 prop_overrides: a set of props that are overridden by import.
914 placeholder_values: A dict of runtime variables' values to replace the
915 placeholders in the build.prop file. We expect exactly one value for
916 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800917 ramdisk_format: If name is "boot", the format of ramdisk inside the
918 boot image. Otherwise, its value is ignored.
919 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000920 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400921
Tianjie Xu9afb2212020-05-10 21:48:15 +0000922 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000923 self.input_file = input_file
924 self.partition = name
925 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000926 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000927 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000928 self.prop_overrides = set()
929 self.placeholder_values = {}
930 if placeholder_values:
931 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000932
933 @staticmethod
934 def FromDictionary(name, build_props):
935 """Constructs an instance from a build prop dictionary."""
936
937 props = PartitionBuildProps("unknown", name)
938 props.build_props = build_props.copy()
939 return props
940
941 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800942 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000943 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800944
Devin Mooreafdd7c72021-12-13 22:04:08 +0000945 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400946 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000947 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800948 else:
949 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
950
951 props = PartitionBuildProps(input_file, name, placeholder_values)
952 props._LoadBuildProp(data)
953 return props
954
955 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000956 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800957 """
958 Read build.prop for boot image from input_file.
959 Return empty string if not found.
960 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000961 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800962 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000963 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800964 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000965 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800966 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800967 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800968 if prop_file is None:
969 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500970 with open(prop_file, "r") as f:
971 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800972
973 @staticmethod
974 def _ReadPartitionPropFile(input_file, name):
975 """
976 Read build.prop for name from input_file.
977 Return empty string if not found.
978 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000979 data = ''
980 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
981 '{}/build.prop'.format(name.upper())]:
982 try:
983 data = ReadFromInputFile(input_file, prop_file)
984 break
985 except KeyError:
986 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -0800987 if data == '':
988 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -0800989 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000990
Yifan Hong125d0b62020-09-24 17:07:03 -0700991 @staticmethod
992 def FromBuildPropFile(name, build_prop_file):
993 """Constructs an instance from a build prop file."""
994
995 props = PartitionBuildProps("unknown", name)
996 with open(build_prop_file) as f:
997 props._LoadBuildProp(f.read())
998 return props
999
Tianjie Xu9afb2212020-05-10 21:48:15 +00001000 def _LoadBuildProp(self, data):
1001 for line in data.split('\n'):
1002 line = line.strip()
1003 if not line or line.startswith("#"):
1004 continue
1005 if line.startswith("import"):
1006 overrides = self._ImportParser(line)
1007 duplicates = self.prop_overrides.intersection(overrides.keys())
1008 if duplicates:
1009 raise ValueError('prop {} is overridden multiple times'.format(
1010 ','.join(duplicates)))
1011 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1012 self.build_props.update(overrides)
1013 elif "=" in line:
1014 name, value = line.split("=", 1)
1015 if name in self.prop_overrides:
1016 raise ValueError('prop {} is set again after overridden by import '
1017 'statement'.format(name))
1018 self.build_props[name] = value
1019
1020 def _ImportParser(self, line):
1021 """Parses the build prop in a given import statement."""
1022
1023 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001024 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001025 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001026
1027 if len(tokens) == 3:
1028 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1029 return {}
1030
Tianjie Xu9afb2212020-05-10 21:48:15 +00001031 import_path = tokens[1]
1032 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001033 logger.warn('Unrecognized import path {}'.format(line))
1034 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001035
1036 # We only recognize a subset of import statement that the init process
1037 # supports. And we can loose the restriction based on how the dynamic
1038 # fingerprint is used in practice. The placeholder format should be
1039 # ${placeholder}, and its value should be provided by the caller through
1040 # the placeholder_values.
1041 for prop, value in self.placeholder_values.items():
1042 prop_place_holder = '${{{}}}'.format(prop)
1043 if prop_place_holder in import_path:
1044 import_path = import_path.replace(prop_place_holder, value)
1045 if '$' in import_path:
1046 logger.info('Unresolved place holder in import path %s', import_path)
1047 return {}
1048
1049 import_path = import_path.replace('/{}'.format(self.partition),
1050 self.partition.upper())
1051 logger.info('Parsing build props override from %s', import_path)
1052
1053 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1054 d = LoadDictionaryFromLines(lines)
1055 return {key: val for key, val in d.items()
1056 if key in self.props_allow_override}
1057
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001058 def GetProp(self, prop):
1059 return self.build_props.get(prop)
1060
1061
Tianjie Xucfa86222016-03-07 16:31:19 -08001062def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1063 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001064 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001065 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001066 self.mount_point = mount_point
1067 self.fs_type = fs_type
1068 self.device = device
1069 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001070 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001071 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001072
1073 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001074 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001075 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001076 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001077 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001078
Tao Baod1de6f32017-03-01 16:38:48 -08001079 assert fstab_version == 2
1080
1081 d = {}
1082 for line in data.split("\n"):
1083 line = line.strip()
1084 if not line or line.startswith("#"):
1085 continue
1086
1087 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1088 pieces = line.split()
1089 if len(pieces) != 5:
1090 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1091
1092 # Ignore entries that are managed by vold.
1093 options = pieces[4]
1094 if "voldmanaged=" in options:
1095 continue
1096
1097 # It's a good line, parse it.
1098 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001099 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001100 options = options.split(",")
1101 for i in options:
1102 if i.startswith("length="):
1103 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001104 elif i == "slotselect":
1105 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001106 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001107 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001108 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001109
Tao Baod1de6f32017-03-01 16:38:48 -08001110 mount_flags = pieces[3]
1111 # Honor the SELinux context if present.
1112 context = None
1113 for i in mount_flags.split(","):
1114 if i.startswith("context="):
1115 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001116
Tao Baod1de6f32017-03-01 16:38:48 -08001117 mount_point = pieces[1]
1118 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001119 device=pieces[0], length=length, context=context,
1120 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001121
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001122 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001123 # system. Other areas assume system is always at "/system" so point /system
1124 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001125 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001126 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001127 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001128 return d
1129
1130
Tao Bao765668f2019-10-04 22:03:00 -07001131def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1132 """Finds the path to recovery fstab and loads its contents."""
1133 # recovery fstab is only meaningful when installing an update via recovery
1134 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001135 if info_dict.get('ab_update') == 'true' and \
1136 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001137 return None
1138
1139 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1140 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1141 # cases, since it may load the info_dict from an old build (e.g. when
1142 # generating incremental OTAs from that build).
1143 system_root_image = info_dict.get('system_root_image') == 'true'
1144 if info_dict.get('no_recovery') != 'true':
1145 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1146 if isinstance(input_file, zipfile.ZipFile):
1147 if recovery_fstab_path not in input_file.namelist():
1148 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1149 else:
1150 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1151 if not os.path.exists(path):
1152 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1153 return LoadRecoveryFSTab(
1154 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1155 system_root_image)
1156
1157 if info_dict.get('recovery_as_boot') == 'true':
1158 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1159 if isinstance(input_file, zipfile.ZipFile):
1160 if recovery_fstab_path not in input_file.namelist():
1161 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1162 else:
1163 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1164 if not os.path.exists(path):
1165 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1166 return LoadRecoveryFSTab(
1167 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1168 system_root_image)
1169
1170 return None
1171
1172
Doug Zongker37974732010-09-16 17:44:38 -07001173def DumpInfoDict(d):
1174 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001175 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001176
Dan Albert8b72aef2015-03-23 19:13:21 -07001177
Daniel Norman55417142019-11-25 16:04:36 -08001178def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001179 """Merges dynamic partition info variables.
1180
1181 Args:
1182 framework_dict: The dictionary of dynamic partition info variables from the
1183 partial framework target files.
1184 vendor_dict: The dictionary of dynamic partition info variables from the
1185 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001186
1187 Returns:
1188 The merged dynamic partition info dictionary.
1189 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001190
1191 def uniq_concat(a, b):
jiajia tange5ddfcd2022-06-21 10:36:12 +08001192 combined = set(a.split())
1193 combined.update(set(b.split()))
Daniel Normanb0c75912020-09-24 14:30:21 -07001194 combined = [item.strip() for item in combined if item.strip()]
1195 return " ".join(sorted(combined))
1196
1197 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001198 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001199 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1200
1201 merged_dict = {"use_dynamic_partitions": "true"}
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001202 # For keys-value pairs that are the same, copy to merged dict
1203 for key in vendor_dict.keys():
1204 if key in framework_dict and framework_dict[key] == vendor_dict[key]:
1205 merged_dict[key] = vendor_dict[key]
Daniel Normanb0c75912020-09-24 14:30:21 -07001206
1207 merged_dict["dynamic_partition_list"] = uniq_concat(
1208 framework_dict.get("dynamic_partition_list", ""),
1209 vendor_dict.get("dynamic_partition_list", ""))
1210
1211 # Super block devices are defined by the vendor dict.
1212 if "super_block_devices" in vendor_dict:
1213 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001214 for block_device in merged_dict["super_block_devices"].split():
Daniel Normanb0c75912020-09-24 14:30:21 -07001215 key = "super_%s_device_size" % block_device
1216 if key not in vendor_dict:
1217 raise ValueError("Vendor dict does not contain required key %s." % key)
1218 merged_dict[key] = vendor_dict[key]
1219
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001220 # Partition groups and group sizes are defined by the vendor dict because
1221 # these values may vary for each board that uses a shared system image.
1222 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001223 for partition_group in merged_dict["super_partition_groups"].split():
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001224 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001225 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001226 if key not in vendor_dict:
1227 raise ValueError("Vendor dict does not contain required key %s." % key)
1228 merged_dict[key] = vendor_dict[key]
1229
1230 # Set the partition group's partition list using a concatenation of the
1231 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001232 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001233 merged_dict[key] = uniq_concat(
1234 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301235
Daniel Normanb0c75912020-09-24 14:30:21 -07001236 # Various other flags should be copied from the vendor dict, if defined.
1237 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1238 "super_metadata_device", "super_partition_error_limit",
1239 "super_partition_size"):
1240 if key in vendor_dict.keys():
1241 merged_dict[key] = vendor_dict[key]
1242
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001243 return merged_dict
1244
1245
Daniel Norman21c34f72020-11-11 17:25:50 -08001246def PartitionMapFromTargetFiles(target_files_dir):
1247 """Builds a map from partition -> path within an extracted target files directory."""
1248 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1249 possible_subdirs = {
1250 "system": ["SYSTEM"],
1251 "vendor": ["VENDOR", "SYSTEM/vendor"],
1252 "product": ["PRODUCT", "SYSTEM/product"],
1253 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1254 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1255 "vendor_dlkm": [
1256 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1257 ],
1258 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001259 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001260 }
1261 partition_map = {}
1262 for partition, subdirs in possible_subdirs.items():
1263 for subdir in subdirs:
1264 if os.path.exists(os.path.join(target_files_dir, subdir)):
1265 partition_map[partition] = subdir
1266 break
1267 return partition_map
1268
1269
Daniel Normand3351562020-10-29 12:33:11 -07001270def SharedUidPartitionViolations(uid_dict, partition_groups):
1271 """Checks for APK sharedUserIds that cross partition group boundaries.
1272
1273 This uses a single or merged build's shareduid_violation_modules.json
1274 output file, as generated by find_shareduid_violation.py or
1275 core/tasks/find-shareduid-violation.mk.
1276
1277 An error is defined as a sharedUserId that is found in a set of partitions
1278 that span more than one partition group.
1279
1280 Args:
1281 uid_dict: A dictionary created by using the standard json module to read a
1282 complete shareduid_violation_modules.json file.
1283 partition_groups: A list of groups, where each group is a list of
1284 partitions.
1285
1286 Returns:
1287 A list of error messages.
1288 """
1289 errors = []
1290 for uid, partitions in uid_dict.items():
1291 found_in_groups = [
1292 group for group in partition_groups
1293 if set(partitions.keys()) & set(group)
1294 ]
1295 if len(found_in_groups) > 1:
1296 errors.append(
1297 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1298 % (uid, ",".join(sorted(partitions.keys()))))
1299 return errors
1300
1301
Daniel Norman21c34f72020-11-11 17:25:50 -08001302def RunHostInitVerifier(product_out, partition_map):
1303 """Runs host_init_verifier on the init rc files within partitions.
1304
1305 host_init_verifier searches the etc/init path within each partition.
1306
1307 Args:
1308 product_out: PRODUCT_OUT directory, containing partition directories.
1309 partition_map: A map of partition name -> relative path within product_out.
1310 """
1311 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1312 cmd = ["host_init_verifier"]
1313 for partition, path in partition_map.items():
1314 if partition not in allowed_partitions:
1315 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1316 partition)
1317 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1318 # Add --property-contexts if the file exists on the partition.
1319 property_contexts = "%s_property_contexts" % (
1320 "plat" if partition == "system" else partition)
1321 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1322 property_contexts)
1323 if os.path.exists(property_contexts_path):
1324 cmd.append("--property-contexts=%s" % property_contexts_path)
1325 # Add the passwd file if the file exists on the partition.
1326 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1327 if os.path.exists(passwd_path):
1328 cmd.extend(["-p", passwd_path])
1329 return RunAndCheckOutput(cmd)
1330
1331
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001332def AppendAVBSigningArgs(cmd, partition):
1333 """Append signing arguments for avbtool."""
1334 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1335 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001336 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1337 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1338 if os.path.exists(new_key_path):
1339 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001340 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1341 if key_path and algorithm:
1342 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001343 avb_salt = OPTIONS.info_dict.get("avb_salt")
1344 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001345 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001346 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001347
1348
Tao Bao765668f2019-10-04 22:03:00 -07001349def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001350 """Returns the VBMeta arguments for partition.
1351
1352 It sets up the VBMeta argument by including the partition descriptor from the
1353 given 'image', or by configuring the partition as a chained partition.
1354
1355 Args:
1356 partition: The name of the partition (e.g. "system").
1357 image: The path to the partition image.
1358 info_dict: A dict returned by common.LoadInfoDict(). Will use
1359 OPTIONS.info_dict if None has been given.
1360
1361 Returns:
1362 A list of VBMeta arguments.
1363 """
1364 if info_dict is None:
1365 info_dict = OPTIONS.info_dict
1366
1367 # Check if chain partition is used.
1368 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001369 if not key_path:
1370 return ["--include_descriptors_from_image", image]
1371
1372 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1373 # into vbmeta.img. The recovery image will be configured on an independent
1374 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1375 # See details at
1376 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001377 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001378 return []
1379
1380 # Otherwise chain the partition into vbmeta.
1381 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1382 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001383
1384
Tao Bao02a08592018-07-22 12:40:45 -07001385def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1386 """Constructs and returns the arg to build or verify a chained partition.
1387
1388 Args:
1389 partition: The partition name.
1390 info_dict: The info dict to look up the key info and rollback index
1391 location.
1392 key: The key to be used for building or verifying the partition. Defaults to
1393 the key listed in info_dict.
1394
1395 Returns:
1396 A string of form "partition:rollback_index_location:key" that can be used to
1397 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001398 """
1399 if key is None:
1400 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001401 if key and not os.path.exists(key) and OPTIONS.search_path:
1402 new_key_path = os.path.join(OPTIONS.search_path, key)
1403 if os.path.exists(new_key_path):
1404 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001405 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001406 rollback_index_location = info_dict[
1407 "avb_" + partition + "_rollback_index_location"]
1408 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1409
1410
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001411def _HasGkiCertificationArgs():
1412 return ("gki_signing_key_path" in OPTIONS.info_dict and
1413 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001414
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001415
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001416def _GenerateGkiCertificate(image, image_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001417 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001418 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001419
1420 if not os.path.exists(key_path) and OPTIONS.search_path:
1421 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1422 if os.path.exists(new_key_path):
1423 key_path = new_key_path
1424
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001425 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001426 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001427 raise ExternalError(
1428 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001429
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001430 output_certificate = tempfile.NamedTemporaryFile()
1431 cmd = [
1432 "generate_gki_certificate",
1433 "--name", image_name,
1434 "--algorithm", algorithm,
1435 "--key", key_path,
1436 "--output", output_certificate.name,
1437 image,
1438 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001439
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001440 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1441 signature_args = signature_args.strip()
1442 if signature_args:
1443 cmd.extend(["--additional_avb_args", signature_args])
1444
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001445 args = OPTIONS.info_dict.get("avb_boot_add_hash_footer_args", "")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001446 args = args.strip()
1447 if args:
1448 cmd.extend(["--additional_avb_args", args])
1449
1450 RunAndCheckOutput(cmd)
1451
1452 output_certificate.seek(os.SEEK_SET, 0)
1453 data = output_certificate.read()
1454 output_certificate.close()
1455 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001456
1457
Daniel Norman276f0622019-07-26 14:13:51 -07001458def BuildVBMeta(image_path, partitions, name, needed_partitions):
1459 """Creates a VBMeta image.
1460
1461 It generates the requested VBMeta image. The requested image could be for
1462 top-level or chained VBMeta image, which is determined based on the name.
1463
1464 Args:
1465 image_path: The output path for the new VBMeta image.
1466 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001467 values. Only valid partition names are accepted, as partitions listed
1468 in common.AVB_PARTITIONS and custom partitions listed in
1469 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001470 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1471 needed_partitions: Partitions whose descriptors should be included into the
1472 generated VBMeta image.
1473
1474 Raises:
1475 AssertionError: On invalid input args.
1476 """
1477 avbtool = OPTIONS.info_dict["avb_avbtool"]
1478 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1479 AppendAVBSigningArgs(cmd, name)
1480
Hongguang Chenf23364d2020-04-27 18:36:36 -07001481 custom_partitions = OPTIONS.info_dict.get(
1482 "avb_custom_images_partition_list", "").strip().split()
1483
Daniel Norman276f0622019-07-26 14:13:51 -07001484 for partition, path in partitions.items():
1485 if partition not in needed_partitions:
1486 continue
1487 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001488 partition in AVB_VBMETA_PARTITIONS or
1489 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001490 'Unknown partition: {}'.format(partition)
1491 assert os.path.exists(path), \
1492 'Failed to find {} for {}'.format(path, partition)
1493 cmd.extend(GetAvbPartitionArg(partition, path))
1494
1495 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1496 if args and args.strip():
1497 split_args = shlex.split(args)
1498 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001499 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001500 # as a path relative to source tree, which may not be available at the
1501 # same location when running this script (we have the input target_files
1502 # zip only). For such cases, we additionally scan other locations (e.g.
1503 # IMAGES/, RADIO/, etc) before bailing out.
1504 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001505 chained_image = split_args[index + 1]
1506 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001507 continue
1508 found = False
1509 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1510 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001511 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001512 if os.path.exists(alt_path):
1513 split_args[index + 1] = alt_path
1514 found = True
1515 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001516 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001517 cmd.extend(split_args)
1518
1519 RunAndCheckOutput(cmd)
1520
1521
jiajia tang836f76b2021-04-02 14:48:26 +08001522def _MakeRamdisk(sourcedir, fs_config_file=None,
1523 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001524 ramdisk_img = tempfile.NamedTemporaryFile()
1525
1526 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1527 cmd = ["mkbootfs", "-f", fs_config_file,
1528 os.path.join(sourcedir, "RAMDISK")]
1529 else:
1530 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1531 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001532 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001533 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001534 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001535 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001536 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001537 else:
1538 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001539
1540 p2.wait()
1541 p1.wait()
1542 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001543 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001544
1545 return ramdisk_img
1546
1547
Steve Muckle9793cf62020-04-08 18:27:00 -07001548def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001549 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001550 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001551
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001552 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001553 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1554 we are building a two-step special image (i.e. building a recovery image to
1555 be loaded into /boot in two-step OTAs).
1556
1557 Return the image data, or None if sourcedir does not appear to contains files
1558 for building the requested image.
1559 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001560
Yifan Hong63c5ca12020-10-08 11:54:02 -07001561 if info_dict is None:
1562 info_dict = OPTIONS.info_dict
1563
Steve Muckle9793cf62020-04-08 18:27:00 -07001564 # "boot" or "recovery", without extension.
1565 partition_name = os.path.basename(sourcedir).lower()
1566
Yifan Hong63c5ca12020-10-08 11:54:02 -07001567 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001568 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001569 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1570 logger.info("Excluded kernel binary from recovery image.")
1571 else:
1572 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001573 elif partition_name == "init_boot":
1574 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001575 else:
1576 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001577 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001578 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001579 return None
1580
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001581 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1582
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001583 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001584 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001585
Doug Zongkereef39442009-04-02 12:14:19 -07001586 img = tempfile.NamedTemporaryFile()
1587
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001588 if has_ramdisk:
TJ Rhoades6f488e92022-05-01 22:16:22 -07001589 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001590 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1591 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001592
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001593 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1594 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1595
Yifan Hong63c5ca12020-10-08 11:54:02 -07001596 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001597 if kernel_path is not None:
1598 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001599
Benoit Fradina45a8682014-07-14 21:00:43 +02001600 fn = os.path.join(sourcedir, "second")
1601 if os.access(fn, os.F_OK):
1602 cmd.append("--second")
1603 cmd.append(fn)
1604
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001605 fn = os.path.join(sourcedir, "dtb")
1606 if os.access(fn, os.F_OK):
1607 cmd.append("--dtb")
1608 cmd.append(fn)
1609
Doug Zongker171f1cd2009-06-15 22:36:37 -07001610 fn = os.path.join(sourcedir, "cmdline")
1611 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001612 cmd.append("--cmdline")
1613 cmd.append(open(fn).read().rstrip("\n"))
1614
1615 fn = os.path.join(sourcedir, "base")
1616 if os.access(fn, os.F_OK):
1617 cmd.append("--base")
1618 cmd.append(open(fn).read().rstrip("\n"))
1619
Ying Wang4de6b5b2010-08-25 14:29:34 -07001620 fn = os.path.join(sourcedir, "pagesize")
1621 if os.access(fn, os.F_OK):
1622 cmd.append("--pagesize")
1623 cmd.append(open(fn).read().rstrip("\n"))
1624
Steve Mucklef84668e2020-03-16 19:13:46 -07001625 if partition_name == "recovery":
1626 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301627 if not args:
1628 # Fall back to "mkbootimg_args" for recovery image
1629 # in case "recovery_mkbootimg_args" is not set.
1630 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001631 elif partition_name == "init_boot":
1632 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001633 else:
1634 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001635 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001636 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001637
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001638 args = info_dict.get("mkbootimg_version_args")
1639 if args and args.strip():
1640 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001641
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001642 if has_ramdisk:
1643 cmd.extend(["--ramdisk", ramdisk_img.name])
1644
Tao Baod95e9fd2015-03-29 23:07:41 -07001645 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001646 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001647 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001648 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001649 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001650 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001651
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001652 if partition_name == "recovery":
1653 if info_dict.get("include_recovery_dtbo") == "true":
1654 fn = os.path.join(sourcedir, "recovery_dtbo")
1655 cmd.extend(["--recovery_dtbo", fn])
1656 if info_dict.get("include_recovery_acpio") == "true":
1657 fn = os.path.join(sourcedir, "recovery_acpio")
1658 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001659
Tao Bao986ee862018-10-04 15:46:16 -07001660 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001661
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001662 if _HasGkiCertificationArgs():
1663 if not os.path.exists(img.name):
1664 raise ValueError("Cannot find GKI boot.img")
1665 if kernel_path is None or not os.path.exists(kernel_path):
1666 raise ValueError("Cannot find GKI kernel.img")
1667
1668 # Certify GKI images.
1669 boot_signature_bytes = b''
1670 boot_signature_bytes += _GenerateGkiCertificate(img.name, "boot")
1671 boot_signature_bytes += _GenerateGkiCertificate(
1672 kernel_path, "generic_kernel")
1673
1674 BOOT_SIGNATURE_SIZE = 16 * 1024
1675 if len(boot_signature_bytes) > BOOT_SIGNATURE_SIZE:
1676 raise ValueError(
1677 f"GKI boot_signature size must be <= {BOOT_SIGNATURE_SIZE}")
1678 boot_signature_bytes += (
1679 b'\0' * (BOOT_SIGNATURE_SIZE - len(boot_signature_bytes)))
1680 assert len(boot_signature_bytes) == BOOT_SIGNATURE_SIZE
1681
1682 with open(img.name, 'ab') as f:
1683 f.write(boot_signature_bytes)
1684
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001685
Tao Baod95e9fd2015-03-29 23:07:41 -07001686 # Sign the image if vboot is non-empty.
hungweichen22e3b012022-08-19 06:35:43 +00001687 if info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001688 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001689 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001690 # We have switched from the prebuilt futility binary to using the tool
1691 # (futility-host) built from the source. Override the setting in the old
1692 # TF.zip.
1693 futility = info_dict["futility"]
1694 if futility.startswith("prebuilts/"):
1695 futility = "futility-host"
1696 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001697 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001698 info_dict["vboot_key"] + ".vbprivk",
1699 info_dict["vboot_subkey"] + ".vbprivk",
1700 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001701 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001702 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001703
Tao Baof3282b42015-04-01 11:21:55 -07001704 # Clean up the temp files.
1705 img_unsigned.close()
1706 img_keyblock.close()
1707
David Zeuthen8fecb282017-12-01 16:24:01 -05001708 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001709 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001710 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001711 if partition_name == "recovery":
1712 part_size = info_dict["recovery_size"]
1713 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001714 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001715 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001716 "--partition_size", str(part_size), "--partition_name",
1717 partition_name]
1718 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001719 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001720 if args and args.strip():
1721 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001722 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001723
1724 img.seek(os.SEEK_SET, 0)
1725 data = img.read()
1726
1727 if has_ramdisk:
1728 ramdisk_img.close()
1729 img.close()
1730
1731 return data
1732
1733
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001734def _SignBootableImage(image_path, prebuilt_name, partition_name,
1735 info_dict=None):
1736 """Performs AVB signing for a prebuilt boot.img.
1737
1738 Args:
1739 image_path: The full path of the image, e.g., /path/to/boot.img.
1740 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001741 boot-5.10.img, recovery.img or init_boot.img.
1742 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001743 info_dict: The information dict read from misc_info.txt.
1744 """
1745 if info_dict is None:
1746 info_dict = OPTIONS.info_dict
1747
1748 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1749 if info_dict.get("avb_enable") == "true":
1750 avbtool = info_dict["avb_avbtool"]
1751 if partition_name == "recovery":
1752 part_size = info_dict["recovery_size"]
1753 else:
1754 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1755
1756 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1757 "--partition_size", str(part_size), "--partition_name",
1758 partition_name]
1759 AppendAVBSigningArgs(cmd, partition_name)
1760 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1761 if args and args.strip():
1762 cmd.extend(shlex.split(args))
1763 RunAndCheckOutput(cmd)
1764
1765
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001766def HasRamdisk(partition_name, info_dict=None):
1767 """Returns true/false to see if a bootable image should have a ramdisk.
1768
1769 Args:
1770 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1771 info_dict: The information dict read from misc_info.txt.
1772 """
1773 if info_dict is None:
1774 info_dict = OPTIONS.info_dict
1775
1776 if partition_name != "boot":
1777 return True # init_boot.img or recovery.img has a ramdisk.
1778
1779 if info_dict.get("recovery_as_boot") == "true":
1780 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1781
Bowgo Tsai85578e02022-04-19 10:50:59 +08001782 if info_dict.get("gki_boot_image_without_ramdisk") == "true":
1783 return False # A GKI boot.img has no ramdisk since Android-13.
1784
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001785 if info_dict.get("system_root_image") == "true":
1786 # The ramdisk content is merged into the system.img, so there is NO
1787 # ramdisk in the boot.img or boot-<kernel version>.img.
1788 return False
1789
1790 if info_dict.get("init_boot") == "true":
1791 # The ramdisk is moved to the init_boot.img, so there is NO
1792 # ramdisk in the boot.img or boot-<kernel version>.img.
1793 return False
1794
1795 return True
1796
1797
Doug Zongkerd5131602012-08-02 14:46:42 -07001798def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001799 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001800 """Return a File object with the desired bootable image.
1801
1802 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1803 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1804 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001805
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001806 if info_dict is None:
1807 info_dict = OPTIONS.info_dict
1808
Doug Zongker55d93282011-01-25 17:03:34 -08001809 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1810 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001811 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001812 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001813
1814 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1815 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001816 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001817 return File.FromLocalFile(name, prebuilt_path)
1818
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001819 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001820 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1821 if os.path.exists(prebuilt_path):
1822 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1823 signed_img = MakeTempFile()
1824 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001825 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1826 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001827
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001828 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001829
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001830 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001831
Doug Zongker6f1d0312014-08-22 08:07:12 -07001832 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001833 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001834 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001835 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001836 if data:
1837 return File(name, data)
1838 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001839
Doug Zongkereef39442009-04-02 12:14:19 -07001840
Lucas Wei03230252022-04-18 16:00:40 +08001841def _BuildVendorBootImage(sourcedir, partition_name, info_dict=None):
Steve Mucklee1b10862019-07-10 10:49:37 -07001842 """Build a vendor boot image from the specified sourcedir.
1843
1844 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1845 turn them into a vendor boot image.
1846
1847 Return the image data, or None if sourcedir does not appear to contains files
1848 for building the requested image.
1849 """
1850
1851 if info_dict is None:
1852 info_dict = OPTIONS.info_dict
1853
1854 img = tempfile.NamedTemporaryFile()
1855
TJ Rhoades6f488e92022-05-01 22:16:22 -07001856 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001857 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001858
1859 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1860 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1861
1862 cmd = [mkbootimg]
1863
1864 fn = os.path.join(sourcedir, "dtb")
1865 if os.access(fn, os.F_OK):
Lucas Wei03230252022-04-18 16:00:40 +08001866 has_vendor_kernel_boot = (info_dict.get("vendor_kernel_boot", "").lower() == "true")
1867
1868 # Pack dtb into vendor_kernel_boot if building vendor_kernel_boot.
1869 # Otherwise pack dtb into vendor_boot.
1870 if not has_vendor_kernel_boot or partition_name == "vendor_kernel_boot":
1871 cmd.append("--dtb")
1872 cmd.append(fn)
Steve Mucklee1b10862019-07-10 10:49:37 -07001873
1874 fn = os.path.join(sourcedir, "vendor_cmdline")
1875 if os.access(fn, os.F_OK):
1876 cmd.append("--vendor_cmdline")
1877 cmd.append(open(fn).read().rstrip("\n"))
1878
1879 fn = os.path.join(sourcedir, "base")
1880 if os.access(fn, os.F_OK):
1881 cmd.append("--base")
1882 cmd.append(open(fn).read().rstrip("\n"))
1883
1884 fn = os.path.join(sourcedir, "pagesize")
1885 if os.access(fn, os.F_OK):
1886 cmd.append("--pagesize")
1887 cmd.append(open(fn).read().rstrip("\n"))
1888
1889 args = info_dict.get("mkbootimg_args")
1890 if args and args.strip():
1891 cmd.extend(shlex.split(args))
1892
1893 args = info_dict.get("mkbootimg_version_args")
1894 if args and args.strip():
1895 cmd.extend(shlex.split(args))
1896
1897 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1898 cmd.extend(["--vendor_boot", img.name])
1899
Devin Moore50509012021-01-13 10:45:04 -08001900 fn = os.path.join(sourcedir, "vendor_bootconfig")
1901 if os.access(fn, os.F_OK):
1902 cmd.append("--vendor_bootconfig")
1903 cmd.append(fn)
1904
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001905 ramdisk_fragment_imgs = []
1906 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1907 if os.access(fn, os.F_OK):
1908 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1909 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001910 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1911 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001912 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001913 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1914 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001915 # Use prebuilt image if found, else create ramdisk from supplied files.
1916 if os.access(fn, os.F_OK):
1917 ramdisk_fragment_pathname = fn
1918 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001919 ramdisk_fragment_root = os.path.join(
1920 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001921 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1922 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001923 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1924 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1925 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1926
Steve Mucklee1b10862019-07-10 10:49:37 -07001927 RunAndCheckOutput(cmd)
1928
1929 # AVB: if enabled, calculate and add hash.
1930 if info_dict.get("avb_enable") == "true":
1931 avbtool = info_dict["avb_avbtool"]
Lucas Wei03230252022-04-18 16:00:40 +08001932 part_size = info_dict[f'{partition_name}_size']
Steve Mucklee1b10862019-07-10 10:49:37 -07001933 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Lucas Wei03230252022-04-18 16:00:40 +08001934 "--partition_size", str(part_size), "--partition_name", partition_name]
1935 AppendAVBSigningArgs(cmd, partition_name)
1936 args = info_dict.get(f'avb_{partition_name}_add_hash_footer_args')
Steve Mucklee1b10862019-07-10 10:49:37 -07001937 if args and args.strip():
1938 cmd.extend(shlex.split(args))
1939 RunAndCheckOutput(cmd)
1940
1941 img.seek(os.SEEK_SET, 0)
1942 data = img.read()
1943
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001944 for f in ramdisk_fragment_imgs:
1945 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001946 ramdisk_img.close()
1947 img.close()
1948
1949 return data
1950
1951
1952def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1953 info_dict=None):
1954 """Return a File object with the desired vendor boot image.
1955
1956 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1957 the source files in 'unpack_dir'/'tree_subdir'."""
1958
1959 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1960 if os.path.exists(prebuilt_path):
1961 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1962 return File.FromLocalFile(name, prebuilt_path)
1963
1964 logger.info("building image from target_files %s...", tree_subdir)
1965
1966 if info_dict is None:
1967 info_dict = OPTIONS.info_dict
1968
Kelvin Zhang0876c412020-06-23 15:06:58 -04001969 data = _BuildVendorBootImage(
Lucas Wei03230252022-04-18 16:00:40 +08001970 os.path.join(unpack_dir, tree_subdir), "vendor_boot", info_dict)
1971 if data:
1972 return File(name, data)
1973 return None
1974
1975
1976def GetVendorKernelBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1977 info_dict=None):
1978 """Return a File object with the desired vendor kernel boot image.
1979
1980 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1981 the source files in 'unpack_dir'/'tree_subdir'."""
1982
1983 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1984 if os.path.exists(prebuilt_path):
1985 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1986 return File.FromLocalFile(name, prebuilt_path)
1987
1988 logger.info("building image from target_files %s...", tree_subdir)
1989
1990 if info_dict is None:
1991 info_dict = OPTIONS.info_dict
1992
1993 data = _BuildVendorBootImage(
1994 os.path.join(unpack_dir, tree_subdir), "vendor_kernel_boot", info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07001995 if data:
1996 return File(name, data)
1997 return None
1998
1999
Narayan Kamatha07bf042017-08-14 14:49:21 +01002000def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08002001 """Gunzips the given gzip compressed file to a given output file."""
2002 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04002003 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01002004 shutil.copyfileobj(in_file, out_file)
2005
2006
Tao Bao0ff15de2019-03-20 11:26:06 -07002007def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002008 """Unzips the archive to the given directory.
2009
2010 Args:
2011 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002012 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07002013 patterns: Files to unzip from the archive. If omitted, will unzip the entire
2014 archvie. Non-matching patterns will be filtered out. If there's no match
2015 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002016 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002017 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07002018 if patterns is not None:
2019 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04002020 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07002021 names = input_zip.namelist()
2022 filtered = [
2023 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
2024
2025 # There isn't any matching files. Don't unzip anything.
2026 if not filtered:
2027 return
2028 cmd.extend(filtered)
2029
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002030 RunAndCheckOutput(cmd)
2031
2032
Daniel Norman78554ea2021-09-14 10:29:38 -07002033def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002034 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002035
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002036 Args:
2037 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2038 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2039
Daniel Norman78554ea2021-09-14 10:29:38 -07002040 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002041 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002042
Tao Bao1c830bf2017-12-25 10:43:47 -08002043 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002044 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002045 """
Doug Zongkereef39442009-04-02 12:14:19 -07002046
Tao Bao1c830bf2017-12-25 10:43:47 -08002047 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002048 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2049 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002050 UnzipToDir(m.group(1), tmp, patterns)
2051 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002052 filename = m.group(1)
2053 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002054 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002055
Tao Baodba59ee2018-01-09 13:21:02 -08002056 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002057
2058
Yifan Hong8a66a712019-04-04 15:37:57 -07002059def GetUserImage(which, tmpdir, input_zip,
2060 info_dict=None,
2061 allow_shared_blocks=None,
Yifan Hong8a66a712019-04-04 15:37:57 -07002062 reset_file_map=False):
2063 """Returns an Image object suitable for passing to BlockImageDiff.
2064
2065 This function loads the specified image from the given path. If the specified
2066 image is sparse, it also performs additional processing for OTA purpose. For
2067 example, it always adds block 0 to clobbered blocks list. It also detects
2068 files that cannot be reconstructed from the block list, for whom we should
2069 avoid applying imgdiff.
2070
2071 Args:
2072 which: The partition name.
2073 tmpdir: The directory that contains the prebuilt image and block map file.
2074 input_zip: The target-files ZIP archive.
2075 info_dict: The dict to be looked up for relevant info.
2076 allow_shared_blocks: If image is sparse, whether having shared blocks is
2077 allowed. If none, it is looked up from info_dict.
Yifan Hong8a66a712019-04-04 15:37:57 -07002078 reset_file_map: If true and image is sparse, reset file map before returning
2079 the image.
2080 Returns:
2081 A Image object. If it is a sparse image and reset_file_map is False, the
2082 image will have file_map info loaded.
2083 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002084 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002085 info_dict = LoadInfoDict(input_zip)
2086
2087 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002088 if info_dict.get(which + "_disable_sparse"):
2089 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002090
2091 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2092 # shared blocks (i.e. some blocks will show up in multiple files' block
2093 # list). We can only allocate such shared blocks to the first "owner", and
2094 # disable imgdiff for all later occurrences.
2095 if allow_shared_blocks is None:
2096 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2097
2098 if is_sparse:
hungweichencc9c05d2022-08-23 05:45:42 +00002099 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks)
Yifan Hong8a66a712019-04-04 15:37:57 -07002100 if reset_file_map:
2101 img.ResetFileMap()
2102 return img
hungweichencc9c05d2022-08-23 05:45:42 +00002103 return GetNonSparseImage(which, tmpdir)
Yifan Hong8a66a712019-04-04 15:37:57 -07002104
2105
hungweichencc9c05d2022-08-23 05:45:42 +00002106def GetNonSparseImage(which, tmpdir):
Yifan Hong8a66a712019-04-04 15:37:57 -07002107 """Returns a Image object suitable for passing to BlockImageDiff.
2108
2109 This function loads the specified non-sparse image from the given path.
2110
2111 Args:
2112 which: The partition name.
2113 tmpdir: The directory that contains the prebuilt image and block map file.
2114 Returns:
2115 A Image object.
2116 """
2117 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2118 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2119
2120 # The image and map files must have been created prior to calling
2121 # ota_from_target_files.py (since LMP).
2122 assert os.path.exists(path) and os.path.exists(mappath)
2123
hungweichencc9c05d2022-08-23 05:45:42 +00002124 return images.FileImage(path)
Tianjie Xu41976c72019-07-03 13:57:01 -07002125
Yifan Hong8a66a712019-04-04 15:37:57 -07002126
hungweichencc9c05d2022-08-23 05:45:42 +00002127def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks):
Tao Baoc765cca2018-01-31 17:32:40 -08002128 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2129
2130 This function loads the specified sparse image from the given path, and
2131 performs additional processing for OTA purpose. For example, it always adds
2132 block 0 to clobbered blocks list. It also detects files that cannot be
2133 reconstructed from the block list, for whom we should avoid applying imgdiff.
2134
2135 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002136 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002137 tmpdir: The directory that contains the prebuilt image and block map file.
2138 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002139 allow_shared_blocks: Whether having shared blocks is allowed.
Tao Baoc765cca2018-01-31 17:32:40 -08002140 Returns:
2141 A SparseImage object, with file_map info loaded.
2142 """
Tao Baoc765cca2018-01-31 17:32:40 -08002143 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2144 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2145
2146 # The image and map files must have been created prior to calling
2147 # ota_from_target_files.py (since LMP).
2148 assert os.path.exists(path) and os.path.exists(mappath)
2149
2150 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2151 # it to clobbered_blocks so that it will be written to the target
2152 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2153 clobbered_blocks = "0"
2154
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002155 image = sparse_img.SparseImage(
hungweichencc9c05d2022-08-23 05:45:42 +00002156 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks)
Tao Baoc765cca2018-01-31 17:32:40 -08002157
2158 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2159 # if they contain all zeros. We can't reconstruct such a file from its block
2160 # list. Tag such entries accordingly. (Bug: 65213616)
2161 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002162 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002163 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002164 continue
2165
Tom Cherryd14b8952018-08-09 14:26:00 -07002166 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2167 # filename listed in system.map may contain an additional leading slash
2168 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2169 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002170 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002171 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002172 arcname = entry.lstrip('/')
2173 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002174 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002175 else:
2176 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002177
2178 assert arcname in input_zip.namelist(), \
2179 "Failed to find the ZIP entry for {}".format(entry)
2180
Tao Baoc765cca2018-01-31 17:32:40 -08002181 info = input_zip.getinfo(arcname)
2182 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002183
2184 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002185 # image, check the original block list to determine its completeness. Note
2186 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002187 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002188 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002189
Tao Baoc765cca2018-01-31 17:32:40 -08002190 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2191 ranges.extra['incomplete'] = True
2192
2193 return image
2194
2195
Doug Zongkereef39442009-04-02 12:14:19 -07002196def GetKeyPasswords(keylist):
2197 """Given a list of keys, prompt the user to enter passwords for
2198 those which require them. Return a {key: password} dict. password
2199 will be None if the key has no password."""
2200
Doug Zongker8ce7c252009-05-22 13:34:54 -07002201 no_passwords = []
2202 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002203 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002204 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002205
2206 # sorted() can't compare strings to None, so convert Nones to strings
2207 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002208 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002209 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002210 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002211 continue
2212
T.R. Fullhart37e10522013-03-18 10:31:26 -07002213 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002214 "-inform", "DER", "-nocrypt"],
2215 stdin=devnull.fileno(),
2216 stdout=devnull.fileno(),
2217 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002218 p.communicate()
2219 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002220 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002221 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002222 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002223 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2224 "-inform", "DER", "-passin", "pass:"],
2225 stdin=devnull.fileno(),
2226 stdout=devnull.fileno(),
2227 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002228 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002229 if p.returncode == 0:
2230 # Encrypted key with empty string as password.
2231 key_passwords[k] = ''
2232 elif stderr.startswith('Error decrypting key'):
2233 # Definitely encrypted key.
2234 # It would have said "Error reading key" if it didn't parse correctly.
2235 need_passwords.append(k)
2236 else:
2237 # Potentially, a type of key that openssl doesn't understand.
2238 # We'll let the routines in signapk.jar handle it.
2239 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002240 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002241
T.R. Fullhart37e10522013-03-18 10:31:26 -07002242 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002243 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002244 return key_passwords
2245
2246
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002247def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002248 """Gets the minSdkVersion declared in the APK.
2249
Martin Stjernholm58472e82022-01-07 22:08:47 +00002250 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2251 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002252
2253 Args:
2254 apk_name: The APK filename.
2255
2256 Returns:
2257 The parsed SDK version string.
2258
2259 Raises:
2260 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002261 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002262 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002263 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002264 stderr=subprocess.PIPE)
2265 stdoutdata, stderrdata = proc.communicate()
2266 if proc.returncode != 0:
2267 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002268 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2269 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002270
Tao Baof47bf0f2018-03-21 23:28:51 -07002271 for line in stdoutdata.split("\n"):
2272 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002273 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2274 if m:
2275 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002276 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002277
2278
2279def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002280 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002281
Tao Baof47bf0f2018-03-21 23:28:51 -07002282 If minSdkVersion is set to a codename, it is translated to a number using the
2283 provided map.
2284
2285 Args:
2286 apk_name: The APK filename.
2287
2288 Returns:
2289 The parsed SDK version number.
2290
2291 Raises:
2292 ExternalError: On failing to get the min SDK version number.
2293 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002294 version = GetMinSdkVersion(apk_name)
2295 try:
2296 return int(version)
2297 except ValueError:
2298 # Not a decimal number. Codename?
2299 if version in codename_to_api_level_map:
2300 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002301 raise ExternalError(
2302 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2303 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002304
2305
2306def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002307 codename_to_api_level_map=None, whole_file=False,
2308 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002309 """Sign the input_name zip/jar/apk, producing output_name. Use the
2310 given key and password (the latter may be None if the key does not
2311 have a password.
2312
Doug Zongker951495f2009-08-14 12:44:19 -07002313 If whole_file is true, use the "-w" option to SignApk to embed a
2314 signature that covers the whole file in the archive comment of the
2315 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002316
2317 min_api_level is the API Level (int) of the oldest platform this file may end
2318 up on. If not specified for an APK, the API Level is obtained by interpreting
2319 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2320
2321 codename_to_api_level_map is needed to translate the codename which may be
2322 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002323
2324 Caller may optionally specify extra args to be passed to SignApk, which
2325 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002326 """
Tao Bao76def242017-11-21 09:25:31 -08002327 if codename_to_api_level_map is None:
2328 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002329 if extra_signapk_args is None:
2330 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002331
Alex Klyubin9667b182015-12-10 13:38:50 -08002332 java_library_path = os.path.join(
2333 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2334
Tao Baoe95540e2016-11-08 12:08:53 -08002335 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2336 ["-Djava.library.path=" + java_library_path,
2337 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002338 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002339 if whole_file:
2340 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002341
2342 min_sdk_version = min_api_level
2343 if min_sdk_version is None:
2344 if not whole_file:
2345 min_sdk_version = GetMinSdkVersionInt(
2346 input_name, codename_to_api_level_map)
2347 if min_sdk_version is not None:
2348 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2349
T.R. Fullhart37e10522013-03-18 10:31:26 -07002350 cmd.extend([key + OPTIONS.public_key_suffix,
2351 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002352 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002353
Tao Bao73dd4f42018-10-04 16:25:33 -07002354 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002355 if password is not None:
2356 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002357 stdoutdata, _ = proc.communicate(password)
2358 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002359 raise ExternalError(
Kelvin Zhang197772f2022-04-26 15:15:11 -07002360 "Failed to run {}: return code {}:\n{}".format(cmd,
Tao Bao73dd4f42018-10-04 16:25:33 -07002361 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002362
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002363def SignSePolicy(sepolicy, key, password):
2364 """Sign the sepolicy zip, producing an fsverity .fsv_sig and
2365 an RSA .sig signature files.
2366 """
2367
2368 if OPTIONS.sign_sepolicy_path is None:
Melisa Carranza Zuniga7ef13792022-08-23 19:09:12 +02002369 logger.info("No sign_sepolicy_path specified, %s was not signed", sepolicy)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002370 return False
2371
2372 java_library_path = os.path.join(
2373 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2374
2375 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2376 ["-Djava.library.path=" + java_library_path,
2377 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.sign_sepolicy_path)] +
2378 OPTIONS.extra_sign_sepolicy_args)
2379
2380 cmd.extend([key + OPTIONS.public_key_suffix,
2381 key + OPTIONS.private_key_suffix,
Melisa Carranza Zuniga7ef13792022-08-23 19:09:12 +02002382 sepolicy, os.path.dirname(sepolicy)])
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002383
2384 proc = Run(cmd, stdin=subprocess.PIPE)
2385 if password is not None:
2386 password += "\n"
2387 stdoutdata, _ = proc.communicate(password)
2388 if proc.returncode != 0:
2389 raise ExternalError(
2390 "Failed to run sign sepolicy: return code {}:\n{}".format(
2391 proc.returncode, stdoutdata))
2392 return True
Doug Zongkereef39442009-04-02 12:14:19 -07002393
Doug Zongker37974732010-09-16 17:44:38 -07002394def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002395 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002396
Tao Bao9dd909e2017-11-14 11:27:32 -08002397 For non-AVB images, raise exception if the data is too big. Print a warning
2398 if the data is nearing the maximum size.
2399
2400 For AVB images, the actual image size should be identical to the limit.
2401
2402 Args:
2403 data: A string that contains all the data for the partition.
2404 target: The partition name. The ".img" suffix is optional.
2405 info_dict: The dict to be looked up for relevant info.
2406 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002407 if target.endswith(".img"):
2408 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002409 mount_point = "/" + target
2410
Ying Wangf8824af2014-06-03 14:07:27 -07002411 fs_type = None
2412 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002413 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002414 if mount_point == "/userdata":
2415 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002416 p = info_dict["fstab"][mount_point]
2417 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002418 device = p.device
2419 if "/" in device:
2420 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002421 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002422 if not fs_type or not limit:
2423 return
Doug Zongkereef39442009-04-02 12:14:19 -07002424
Andrew Boie0f9aec82012-02-14 09:32:52 -08002425 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002426 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2427 # path.
2428 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2429 if size != limit:
2430 raise ExternalError(
2431 "Mismatching image size for %s: expected %d actual %d" % (
2432 target, limit, size))
2433 else:
2434 pct = float(size) * 100.0 / limit
2435 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2436 if pct >= 99.0:
2437 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002438
2439 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002440 logger.warning("\n WARNING: %s\n", msg)
2441 else:
2442 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002443
2444
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002445def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002446 """Parses the APK certs info from a given target-files zip.
2447
2448 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2449 tuple with the following elements: (1) a dictionary that maps packages to
2450 certs (based on the "certificate" and "private_key" attributes in the file;
2451 (2) a string representing the extension of compressed APKs in the target files
2452 (e.g ".gz", ".bro").
2453
2454 Args:
2455 tf_zip: The input target_files ZipFile (already open).
2456
2457 Returns:
2458 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2459 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2460 no compressed APKs.
2461 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002462 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002463 compressed_extension = None
2464
Tao Bao0f990332017-09-08 19:02:54 -07002465 # META/apkcerts.txt contains the info for _all_ the packages known at build
2466 # time. Filter out the ones that are not installed.
2467 installed_files = set()
2468 for name in tf_zip.namelist():
2469 basename = os.path.basename(name)
2470 if basename:
2471 installed_files.add(basename)
2472
Tao Baoda30cfa2017-12-01 16:19:46 -08002473 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002474 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002475 if not line:
2476 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002477 m = re.match(
2478 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002479 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2480 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002481 line)
2482 if not m:
2483 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002484
Tao Bao818ddf52018-01-05 11:17:34 -08002485 matches = m.groupdict()
2486 cert = matches["CERT"]
2487 privkey = matches["PRIVKEY"]
2488 name = matches["NAME"]
2489 this_compressed_extension = matches["COMPRESSED"]
2490
2491 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2492 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2493 if cert in SPECIAL_CERT_STRINGS and not privkey:
2494 certmap[name] = cert
2495 elif (cert.endswith(OPTIONS.public_key_suffix) and
2496 privkey.endswith(OPTIONS.private_key_suffix) and
2497 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2498 certmap[name] = cert[:-public_key_suffix_len]
2499 else:
2500 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2501
2502 if not this_compressed_extension:
2503 continue
2504
2505 # Only count the installed files.
2506 filename = name + '.' + this_compressed_extension
2507 if filename not in installed_files:
2508 continue
2509
2510 # Make sure that all the values in the compression map have the same
2511 # extension. We don't support multiple compression methods in the same
2512 # system image.
2513 if compressed_extension:
2514 if this_compressed_extension != compressed_extension:
2515 raise ValueError(
2516 "Multiple compressed extensions: {} vs {}".format(
2517 compressed_extension, this_compressed_extension))
2518 else:
2519 compressed_extension = this_compressed_extension
2520
2521 return (certmap,
2522 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002523
2524
Doug Zongkereef39442009-04-02 12:14:19 -07002525COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002526Global options
2527
2528 -p (--path) <dir>
2529 Prepend <dir>/bin to the list of places to search for binaries run by this
2530 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002531
Doug Zongker05d3dea2009-06-22 11:32:31 -07002532 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002533 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002534
Tao Bao30df8b42018-04-23 15:32:53 -07002535 -x (--extra) <key=value>
2536 Add a key/value pair to the 'extras' dict, which device-specific extension
2537 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002538
Doug Zongkereef39442009-04-02 12:14:19 -07002539 -v (--verbose)
2540 Show command lines being executed.
2541
2542 -h (--help)
2543 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002544
2545 --logfile <file>
2546 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002547"""
2548
Kelvin Zhang0876c412020-06-23 15:06:58 -04002549
Doug Zongkereef39442009-04-02 12:14:19 -07002550def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002551 print(docstring.rstrip("\n"))
2552 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002553
2554
2555def ParseOptions(argv,
2556 docstring,
2557 extra_opts="", extra_long_opts=(),
2558 extra_option_handler=None):
2559 """Parse the options in argv and return any arguments that aren't
2560 flags. docstring is the calling module's docstring, to be displayed
2561 for errors and -h. extra_opts and extra_long_opts are for flags
2562 defined by the caller, which are processed by passing them to
2563 extra_option_handler."""
2564
2565 try:
2566 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002567 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002568 ["help", "verbose", "path=", "signapk_path=",
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002569 "signapk_shared_library_path=", "extra_signapk_args=",
2570 "sign_sepolicy_path=", "extra_sign_sepolicy_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002571 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002572 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2573 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002574 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002575 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002576 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002577 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002578 sys.exit(2)
2579
Doug Zongkereef39442009-04-02 12:14:19 -07002580 for o, a in opts:
2581 if o in ("-h", "--help"):
2582 Usage(docstring)
2583 sys.exit()
2584 elif o in ("-v", "--verbose"):
2585 OPTIONS.verbose = True
2586 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002587 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002588 elif o in ("--signapk_path",):
2589 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002590 elif o in ("--signapk_shared_library_path",):
2591 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002592 elif o in ("--extra_signapk_args",):
2593 OPTIONS.extra_signapk_args = shlex.split(a)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002594 elif o in ("--sign_sepolicy_path",):
2595 OPTIONS.sign_sepolicy_path = a
2596 elif o in ("--extra_sign_sepolicy_args",):
2597 OPTIONS.extra_sign_sepolicy_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002598 elif o in ("--aapt2_path",):
2599 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002600 elif o in ("--java_path",):
2601 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002602 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002603 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002604 elif o in ("--android_jar_path",):
2605 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002606 elif o in ("--public_key_suffix",):
2607 OPTIONS.public_key_suffix = a
2608 elif o in ("--private_key_suffix",):
2609 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002610 elif o in ("--boot_signer_path",):
hungweichen49447912022-08-19 06:04:06 +00002611 raise ValueError("--boot_signer_path is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002612 elif o in ("--boot_signer_args",):
hungweichen49447912022-08-19 06:04:06 +00002613 raise ValueError("--boot_signer_args is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002614 elif o in ("--verity_signer_path",):
hungweichen49447912022-08-19 06:04:06 +00002615 raise ValueError("--verity_signer_path is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002616 elif o in ("--verity_signer_args",):
hungweichen49447912022-08-19 06:04:06 +00002617 raise ValueError("--verity_signer_args is no longer supported, please switch to AVB")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002618 elif o in ("-s", "--device_specific"):
2619 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002620 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002621 key, value = a.split("=", 1)
2622 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002623 elif o in ("--logfile",):
2624 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002625 else:
2626 if extra_option_handler is None or not extra_option_handler(o, a):
2627 assert False, "unknown option \"%s\"" % (o,)
2628
Doug Zongker85448772014-09-09 14:59:20 -07002629 if OPTIONS.search_path:
2630 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2631 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002632
2633 return args
2634
2635
Tao Bao4c851b12016-09-19 13:54:38 -07002636def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002637 """Make a temp file and add it to the list of things to be deleted
2638 when Cleanup() is called. Return the filename."""
2639 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2640 os.close(fd)
2641 OPTIONS.tempfiles.append(fn)
2642 return fn
2643
2644
Tao Bao1c830bf2017-12-25 10:43:47 -08002645def MakeTempDir(prefix='tmp', suffix=''):
2646 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2647
2648 Returns:
2649 The absolute pathname of the new directory.
2650 """
2651 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2652 OPTIONS.tempfiles.append(dir_name)
2653 return dir_name
2654
2655
Doug Zongkereef39442009-04-02 12:14:19 -07002656def Cleanup():
2657 for i in OPTIONS.tempfiles:
2658 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002659 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002660 else:
2661 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002662 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002663
2664
2665class PasswordManager(object):
2666 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002667 self.editor = os.getenv("EDITOR")
2668 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002669
2670 def GetPasswords(self, items):
2671 """Get passwords corresponding to each string in 'items',
2672 returning a dict. (The dict may have keys in addition to the
2673 values in 'items'.)
2674
2675 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2676 user edit that file to add more needed passwords. If no editor is
2677 available, or $ANDROID_PW_FILE isn't define, prompts the user
2678 interactively in the ordinary way.
2679 """
2680
2681 current = self.ReadFile()
2682
2683 first = True
2684 while True:
2685 missing = []
2686 for i in items:
2687 if i not in current or not current[i]:
2688 missing.append(i)
2689 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002690 if not missing:
2691 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002692
2693 for i in missing:
2694 current[i] = ""
2695
2696 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002697 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002698 if sys.version_info[0] >= 3:
2699 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002700 answer = raw_input("try to edit again? [y]> ").strip()
2701 if answer and answer[0] not in 'yY':
2702 raise RuntimeError("key passwords unavailable")
2703 first = False
2704
2705 current = self.UpdateAndReadFile(current)
2706
Kelvin Zhang0876c412020-06-23 15:06:58 -04002707 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002708 """Prompt the user to enter a value (password) for each key in
2709 'current' whose value is fales. Returns a new dict with all the
2710 values.
2711 """
2712 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002713 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002714 if v:
2715 result[k] = v
2716 else:
2717 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002718 result[k] = getpass.getpass(
2719 "Enter password for %s key> " % k).strip()
2720 if result[k]:
2721 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002722 return result
2723
2724 def UpdateAndReadFile(self, current):
2725 if not self.editor or not self.pwfile:
2726 return self.PromptResult(current)
2727
2728 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002729 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002730 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2731 f.write("# (Additional spaces are harmless.)\n\n")
2732
2733 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002734 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002735 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002736 f.write("[[[ %s ]]] %s\n" % (v, k))
2737 if not v and first_line is None:
2738 # position cursor on first line with no password.
2739 first_line = i + 4
2740 f.close()
2741
Tao Bao986ee862018-10-04 15:46:16 -07002742 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002743
2744 return self.ReadFile()
2745
2746 def ReadFile(self):
2747 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002748 if self.pwfile is None:
2749 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002750 try:
2751 f = open(self.pwfile, "r")
2752 for line in f:
2753 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002754 if not line or line[0] == '#':
2755 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002756 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2757 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002758 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002759 else:
2760 result[m.group(2)] = m.group(1)
2761 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002762 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002763 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002764 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002765 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002766
2767
Dan Albert8e0178d2015-01-27 15:53:15 -08002768def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2769 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002770
2771 # http://b/18015246
2772 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2773 # for files larger than 2GiB. We can work around this by adjusting their
2774 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2775 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2776 # it isn't clear to me exactly what circumstances cause this).
2777 # `zipfile.write()` must be used directly to work around this.
2778 #
2779 # This mess can be avoided if we port to python3.
2780 saved_zip64_limit = zipfile.ZIP64_LIMIT
2781 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2782
2783 if compress_type is None:
2784 compress_type = zip_file.compression
2785 if arcname is None:
2786 arcname = filename
2787
2788 saved_stat = os.stat(filename)
2789
2790 try:
2791 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2792 # file to be zipped and reset it when we're done.
2793 os.chmod(filename, perms)
2794
2795 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002796 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2797 # intentional. zip stores datetimes in local time without a time zone
2798 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2799 # in the zip archive.
2800 local_epoch = datetime.datetime.fromtimestamp(0)
2801 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002802 os.utime(filename, (timestamp, timestamp))
2803
2804 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2805 finally:
2806 os.chmod(filename, saved_stat.st_mode)
2807 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2808 zipfile.ZIP64_LIMIT = saved_zip64_limit
2809
2810
Tao Bao58c1b962015-05-20 09:32:18 -07002811def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002812 compress_type=None):
2813 """Wrap zipfile.writestr() function to work around the zip64 limit.
2814
2815 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2816 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2817 when calling crc32(bytes).
2818
2819 But it still works fine to write a shorter string into a large zip file.
2820 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2821 when we know the string won't be too long.
2822 """
2823
2824 saved_zip64_limit = zipfile.ZIP64_LIMIT
2825 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2826
2827 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2828 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002829 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002830 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002831 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002832 else:
Tao Baof3282b42015-04-01 11:21:55 -07002833 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002834 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2835 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2836 # such a case (since
2837 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2838 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2839 # permission bits. We follow the logic in Python 3 to get consistent
2840 # behavior between using the two versions.
2841 if not zinfo.external_attr:
2842 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002843
2844 # If compress_type is given, it overrides the value in zinfo.
2845 if compress_type is not None:
2846 zinfo.compress_type = compress_type
2847
Tao Bao58c1b962015-05-20 09:32:18 -07002848 # If perms is given, it has a priority.
2849 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002850 # If perms doesn't set the file type, mark it as a regular file.
2851 if perms & 0o770000 == 0:
2852 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002853 zinfo.external_attr = perms << 16
2854
Tao Baof3282b42015-04-01 11:21:55 -07002855 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002856 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2857
Dan Albert8b72aef2015-03-23 19:13:21 -07002858 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002859 zipfile.ZIP64_LIMIT = saved_zip64_limit
2860
2861
Tao Bao89d7ab22017-12-14 17:05:33 -08002862def ZipDelete(zip_filename, entries):
2863 """Deletes entries from a ZIP file.
2864
2865 Since deleting entries from a ZIP file is not supported, it shells out to
2866 'zip -d'.
2867
2868 Args:
2869 zip_filename: The name of the ZIP file.
2870 entries: The name of the entry, or the list of names to be deleted.
2871
2872 Raises:
2873 AssertionError: In case of non-zero return from 'zip'.
2874 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002875 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002876 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002877 # If list is empty, nothing to do
2878 if not entries:
2879 return
Tao Bao89d7ab22017-12-14 17:05:33 -08002880 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002881 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002882
2883
Tao Baof3282b42015-04-01 11:21:55 -07002884def ZipClose(zip_file):
2885 # http://b/18015246
2886 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2887 # central directory.
2888 saved_zip64_limit = zipfile.ZIP64_LIMIT
2889 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2890
2891 zip_file.close()
2892
2893 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002894
2895
2896class DeviceSpecificParams(object):
2897 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002898
Doug Zongker05d3dea2009-06-22 11:32:31 -07002899 def __init__(self, **kwargs):
2900 """Keyword arguments to the constructor become attributes of this
2901 object, which is passed to all functions in the device-specific
2902 module."""
Tao Bao38884282019-07-10 22:20:56 -07002903 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002904 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002905 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002906
2907 if self.module is None:
2908 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002909 if not path:
2910 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002911 try:
2912 if os.path.isdir(path):
2913 info = imp.find_module("releasetools", [path])
2914 else:
2915 d, f = os.path.split(path)
2916 b, x = os.path.splitext(f)
2917 if x == ".py":
2918 f = b
2919 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002920 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002921 self.module = imp.load_module("device_specific", *info)
2922 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002923 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002924
2925 def _DoCall(self, function_name, *args, **kwargs):
2926 """Call the named function in the device-specific module, passing
2927 the given args and kwargs. The first argument to the call will be
2928 the DeviceSpecific object itself. If there is no module, or the
2929 module does not define the function, return the value of the
2930 'default' kwarg (which itself defaults to None)."""
2931 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002932 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002933 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2934
2935 def FullOTA_Assertions(self):
2936 """Called after emitting the block of assertions at the top of a
2937 full OTA package. Implementations can add whatever additional
2938 assertions they like."""
2939 return self._DoCall("FullOTA_Assertions")
2940
Doug Zongkere5ff5902012-01-17 10:55:37 -08002941 def FullOTA_InstallBegin(self):
2942 """Called at the start of full OTA installation."""
2943 return self._DoCall("FullOTA_InstallBegin")
2944
Yifan Hong10c530d2018-12-27 17:34:18 -08002945 def FullOTA_GetBlockDifferences(self):
2946 """Called during full OTA installation and verification.
2947 Implementation should return a list of BlockDifference objects describing
2948 the update on each additional partitions.
2949 """
2950 return self._DoCall("FullOTA_GetBlockDifferences")
2951
Doug Zongker05d3dea2009-06-22 11:32:31 -07002952 def FullOTA_InstallEnd(self):
2953 """Called at the end of full OTA installation; typically this is
2954 used to install the image for the device's baseband processor."""
2955 return self._DoCall("FullOTA_InstallEnd")
2956
2957 def IncrementalOTA_Assertions(self):
2958 """Called after emitting the block of assertions at the top of an
2959 incremental OTA package. Implementations can add whatever
2960 additional assertions they like."""
2961 return self._DoCall("IncrementalOTA_Assertions")
2962
Doug Zongkere5ff5902012-01-17 10:55:37 -08002963 def IncrementalOTA_VerifyBegin(self):
2964 """Called at the start of the verification phase of incremental
2965 OTA installation; additional checks can be placed here to abort
2966 the script before any changes are made."""
2967 return self._DoCall("IncrementalOTA_VerifyBegin")
2968
Doug Zongker05d3dea2009-06-22 11:32:31 -07002969 def IncrementalOTA_VerifyEnd(self):
2970 """Called at the end of the verification phase of incremental OTA
2971 installation; additional checks can be placed here to abort the
2972 script before any changes are made."""
2973 return self._DoCall("IncrementalOTA_VerifyEnd")
2974
Doug Zongkere5ff5902012-01-17 10:55:37 -08002975 def IncrementalOTA_InstallBegin(self):
2976 """Called at the start of incremental OTA installation (after
2977 verification is complete)."""
2978 return self._DoCall("IncrementalOTA_InstallBegin")
2979
Yifan Hong10c530d2018-12-27 17:34:18 -08002980 def IncrementalOTA_GetBlockDifferences(self):
2981 """Called during incremental OTA installation and verification.
2982 Implementation should return a list of BlockDifference objects describing
2983 the update on each additional partitions.
2984 """
2985 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2986
Doug Zongker05d3dea2009-06-22 11:32:31 -07002987 def IncrementalOTA_InstallEnd(self):
2988 """Called at the end of incremental OTA installation; typically
2989 this is used to install the image for the device's baseband
2990 processor."""
2991 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002992
Tao Bao9bc6bb22015-11-09 16:58:28 -08002993 def VerifyOTA_Assertions(self):
2994 return self._DoCall("VerifyOTA_Assertions")
2995
Tao Bao76def242017-11-21 09:25:31 -08002996
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002997class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002998 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002999 self.name = name
3000 self.data = data
3001 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09003002 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08003003 self.sha1 = sha1(data).hexdigest()
3004
3005 @classmethod
3006 def FromLocalFile(cls, name, diskname):
3007 f = open(diskname, "rb")
3008 data = f.read()
3009 f.close()
3010 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003011
3012 def WriteToTemp(self):
3013 t = tempfile.NamedTemporaryFile()
3014 t.write(self.data)
3015 t.flush()
3016 return t
3017
Dan Willemsen2ee00d52017-03-05 19:51:56 -08003018 def WriteToDir(self, d):
3019 with open(os.path.join(d, self.name), "wb") as fp:
3020 fp.write(self.data)
3021
Geremy Condra36bd3652014-02-06 19:45:10 -08003022 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07003023 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003024
Tao Bao76def242017-11-21 09:25:31 -08003025
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003026DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04003027 ".gz": "imgdiff",
3028 ".zip": ["imgdiff", "-z"],
3029 ".jar": ["imgdiff", "-z"],
3030 ".apk": ["imgdiff", "-z"],
3031 ".img": "imgdiff",
3032}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003033
Tao Bao76def242017-11-21 09:25:31 -08003034
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003035class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07003036 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003037 self.tf = tf
3038 self.sf = sf
3039 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07003040 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003041
3042 def ComputePatch(self):
3043 """Compute the patch (as a string of data) needed to turn sf into
3044 tf. Returns the same tuple as GetPatch()."""
3045
3046 tf = self.tf
3047 sf = self.sf
3048
Doug Zongker24cd2802012-08-14 16:36:15 -07003049 if self.diff_program:
3050 diff_program = self.diff_program
3051 else:
3052 ext = os.path.splitext(tf.name)[1]
3053 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003054
3055 ttemp = tf.WriteToTemp()
3056 stemp = sf.WriteToTemp()
3057
3058 ext = os.path.splitext(tf.name)[1]
3059
3060 try:
3061 ptemp = tempfile.NamedTemporaryFile()
3062 if isinstance(diff_program, list):
3063 cmd = copy.copy(diff_program)
3064 else:
3065 cmd = [diff_program]
3066 cmd.append(stemp.name)
3067 cmd.append(ttemp.name)
3068 cmd.append(ptemp.name)
3069 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003070 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003071
Doug Zongkerf8340082014-08-05 10:39:37 -07003072 def run():
3073 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003074 if e:
3075 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003076 th = threading.Thread(target=run)
3077 th.start()
3078 th.join(timeout=300) # 5 mins
3079 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003080 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003081 p.terminate()
3082 th.join(5)
3083 if th.is_alive():
3084 p.kill()
3085 th.join()
3086
Tianjie Xua2a9f992018-01-05 15:15:54 -08003087 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003088 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003089 self.patch = None
3090 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003091 diff = ptemp.read()
3092 finally:
3093 ptemp.close()
3094 stemp.close()
3095 ttemp.close()
3096
3097 self.patch = diff
3098 return self.tf, self.sf, self.patch
3099
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003100 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003101 """Returns a tuple of (target_file, source_file, patch_data).
3102
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003103 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003104 computing the patch failed.
3105 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003106 return self.tf, self.sf, self.patch
3107
3108
3109def ComputeDifferences(diffs):
3110 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003111 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003112
3113 # Do the largest files first, to try and reduce the long-pole effect.
3114 by_size = [(i.tf.size, i) for i in diffs]
3115 by_size.sort(reverse=True)
3116 by_size = [i[1] for i in by_size]
3117
3118 lock = threading.Lock()
3119 diff_iter = iter(by_size) # accessed under lock
3120
3121 def worker():
3122 try:
3123 lock.acquire()
3124 for d in diff_iter:
3125 lock.release()
3126 start = time.time()
3127 d.ComputePatch()
3128 dur = time.time() - start
3129 lock.acquire()
3130
3131 tf, sf, patch = d.GetPatch()
3132 if sf.name == tf.name:
3133 name = tf.name
3134 else:
3135 name = "%s (%s)" % (tf.name, sf.name)
3136 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003137 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003138 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003139 logger.info(
3140 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3141 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003142 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003143 except Exception:
3144 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003145 raise
3146
3147 # start worker threads; wait for them all to finish.
3148 threads = [threading.Thread(target=worker)
3149 for i in range(OPTIONS.worker_threads)]
3150 for th in threads:
3151 th.start()
3152 while threads:
3153 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003154
3155
Dan Albert8b72aef2015-03-23 19:13:21 -07003156class BlockDifference(object):
3157 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003158 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003159 self.tgt = tgt
3160 self.src = src
3161 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003162 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003163 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003164
Tao Baodd2a5892015-03-12 12:32:37 -07003165 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003166 version = max(
3167 int(i) for i in
3168 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003169 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003170 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003171
Tianjie Xu41976c72019-07-03 13:57:01 -07003172 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3173 version=self.version,
3174 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003175 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003176 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003177 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003178 self.touched_src_ranges = b.touched_src_ranges
3179 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003180
Yifan Hong10c530d2018-12-27 17:34:18 -08003181 # On devices with dynamic partitions, for new partitions,
3182 # src is None but OPTIONS.source_info_dict is not.
3183 if OPTIONS.source_info_dict is None:
3184 is_dynamic_build = OPTIONS.info_dict.get(
3185 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003186 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003187 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003188 is_dynamic_build = OPTIONS.source_info_dict.get(
3189 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003190 is_dynamic_source = partition in shlex.split(
3191 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003192
Yifan Hongbb2658d2019-01-25 12:30:58 -08003193 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003194 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3195
Yifan Hongbb2658d2019-01-25 12:30:58 -08003196 # For dynamic partitions builds, check partition list in both source
3197 # and target build because new partitions may be added, and existing
3198 # partitions may be removed.
3199 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3200
Yifan Hong10c530d2018-12-27 17:34:18 -08003201 if is_dynamic:
3202 self.device = 'map_partition("%s")' % partition
3203 else:
3204 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003205 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3206 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003207 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003208 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3209 OPTIONS.source_info_dict)
3210 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003211
Tao Baod8d14be2016-02-04 14:26:02 -08003212 @property
3213 def required_cache(self):
3214 return self._required_cache
3215
Tao Bao76def242017-11-21 09:25:31 -08003216 def WriteScript(self, script, output_zip, progress=None,
3217 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003218 if not self.src:
3219 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003220 script.Print("Patching %s image unconditionally..." % (self.partition,))
3221 else:
3222 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003223
Dan Albert8b72aef2015-03-23 19:13:21 -07003224 if progress:
3225 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003226 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003227
3228 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003229 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003230
Tao Bao9bc6bb22015-11-09 16:58:28 -08003231 def WriteStrictVerifyScript(self, script):
3232 """Verify all the blocks in the care_map, including clobbered blocks.
3233
3234 This differs from the WriteVerifyScript() function: a) it prints different
3235 error messages; b) it doesn't allow half-way updated images to pass the
3236 verification."""
3237
3238 partition = self.partition
3239 script.Print("Verifying %s..." % (partition,))
3240 ranges = self.tgt.care_map
3241 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003242 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003243 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3244 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003245 self.device, ranges_str,
3246 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003247 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003248 script.AppendExtra("")
3249
Tao Baod522bdc2016-04-12 15:53:16 -07003250 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003251 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003252
3253 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003254 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003255 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003256
3257 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003258 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003259 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003260 ranges = self.touched_src_ranges
3261 expected_sha1 = self.touched_src_sha1
3262 else:
3263 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3264 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003265
3266 # No blocks to be checked, skipping.
3267 if not ranges:
3268 return
3269
Tao Bao5ece99d2015-05-12 11:42:31 -07003270 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003271 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003272 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003273 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3274 '"%s.patch.dat")) then' % (
3275 self.device, ranges_str, expected_sha1,
3276 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003277 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003278 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003279
Tianjie Xufc3422a2015-12-15 11:53:59 -08003280 if self.version >= 4:
3281
3282 # Bug: 21124327
3283 # When generating incrementals for the system and vendor partitions in
3284 # version 4 or newer, explicitly check the first block (which contains
3285 # the superblock) of the partition to see if it's what we expect. If
3286 # this check fails, give an explicit log message about the partition
3287 # having been remounted R/W (the most likely explanation).
3288 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003289 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003290
3291 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003292 if partition == "system":
3293 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3294 else:
3295 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003296 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003297 'ifelse (block_image_recover({device}, "{ranges}") && '
3298 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003299 'package_extract_file("{partition}.transfer.list"), '
3300 '"{partition}.new.dat", "{partition}.patch.dat"), '
3301 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003302 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003303 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003304 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003305
Tao Baodd2a5892015-03-12 12:32:37 -07003306 # Abort the OTA update. Note that the incremental OTA cannot be applied
3307 # even if it may match the checksum of the target partition.
3308 # a) If version < 3, operations like move and erase will make changes
3309 # unconditionally and damage the partition.
3310 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003311 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003312 if partition == "system":
3313 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3314 else:
3315 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3316 script.AppendExtra((
3317 'abort("E%d: %s partition has unexpected contents");\n'
3318 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003319
Yifan Hong10c530d2018-12-27 17:34:18 -08003320 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003321 partition = self.partition
3322 script.Print('Verifying the updated %s image...' % (partition,))
3323 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3324 ranges = self.tgt.care_map
3325 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003326 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003327 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003328 self.device, ranges_str,
3329 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003330
3331 # Bug: 20881595
3332 # Verify that extended blocks are really zeroed out.
3333 if self.tgt.extended:
3334 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003335 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003336 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003337 self.device, ranges_str,
3338 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003339 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003340 if partition == "system":
3341 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3342 else:
3343 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003344 script.AppendExtra(
3345 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003346 ' abort("E%d: %s partition has unexpected non-zero contents after '
3347 'OTA update");\n'
3348 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003349 else:
3350 script.Print('Verified the updated %s image.' % (partition,))
3351
Tianjie Xu209db462016-05-24 17:34:52 -07003352 if partition == "system":
3353 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3354 else:
3355 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3356
Tao Bao5fcaaef2015-06-01 13:40:49 -07003357 script.AppendExtra(
3358 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003359 ' abort("E%d: %s partition has unexpected contents after OTA '
3360 'update");\n'
3361 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003362
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003363 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003364 ZipWrite(output_zip,
3365 '{}.transfer.list'.format(self.path),
3366 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003367
Tao Bao76def242017-11-21 09:25:31 -08003368 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3369 # its size. Quailty 9 almost triples the compression time but doesn't
3370 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003371 # zip | brotli(quality 6) | brotli(quality 9)
3372 # compressed_size: 942M | 869M (~8% reduced) | 854M
3373 # compression_time: 75s | 265s | 719s
3374 # decompression_time: 15s | 25s | 25s
3375
3376 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003377 brotli_cmd = ['brotli', '--quality=6',
3378 '--output={}.new.dat.br'.format(self.path),
3379 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003380 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003381 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003382
3383 new_data_name = '{}.new.dat.br'.format(self.partition)
3384 ZipWrite(output_zip,
3385 '{}.new.dat.br'.format(self.path),
3386 new_data_name,
3387 compress_type=zipfile.ZIP_STORED)
3388 else:
3389 new_data_name = '{}.new.dat'.format(self.partition)
3390 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3391
Dan Albert8e0178d2015-01-27 15:53:15 -08003392 ZipWrite(output_zip,
3393 '{}.patch.dat'.format(self.path),
3394 '{}.patch.dat'.format(self.partition),
3395 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003396
Tianjie Xu209db462016-05-24 17:34:52 -07003397 if self.partition == "system":
3398 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3399 else:
3400 code = ErrorCode.VENDOR_UPDATE_FAILURE
3401
Yifan Hong10c530d2018-12-27 17:34:18 -08003402 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003403 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003404 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003405 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003406 device=self.device, partition=self.partition,
3407 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003408 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003409
Kelvin Zhang0876c412020-06-23 15:06:58 -04003410 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003411 data = source.ReadRangeSet(ranges)
3412 ctx = sha1()
3413
3414 for p in data:
3415 ctx.update(p)
3416
3417 return ctx.hexdigest()
3418
Kelvin Zhang0876c412020-06-23 15:06:58 -04003419 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003420 """Return the hash value for all zero blocks."""
3421 zero_block = '\x00' * 4096
3422 ctx = sha1()
3423 for _ in range(num_blocks):
3424 ctx.update(zero_block)
3425
3426 return ctx.hexdigest()
3427
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003428
Tianjie Xu41976c72019-07-03 13:57:01 -07003429# Expose these two classes to support vendor-specific scripts
3430DataImage = images.DataImage
3431EmptyImage = images.EmptyImage
3432
Tao Bao76def242017-11-21 09:25:31 -08003433
Doug Zongker96a57e72010-09-26 14:57:41 -07003434# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003435PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003436 "ext4": "EMMC",
3437 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003438 "f2fs": "EMMC",
3439 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003440}
Doug Zongker96a57e72010-09-26 14:57:41 -07003441
Kelvin Zhang0876c412020-06-23 15:06:58 -04003442
Yifan Hongbdb32012020-05-07 12:38:53 -07003443def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3444 """
3445 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3446 backwards compatibility. It aborts if the fstab entry has slotselect option
3447 (unless check_no_slot is explicitly set to False).
3448 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003449 fstab = info["fstab"]
3450 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003451 if check_no_slot:
3452 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003453 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003454 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3455 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003456 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003457
3458
Yifan Hongbdb32012020-05-07 12:38:53 -07003459def GetTypeAndDeviceExpr(mount_point, info):
3460 """
3461 Return the filesystem of the partition, and an edify expression that evaluates
3462 to the device at runtime.
3463 """
3464 fstab = info["fstab"]
3465 if fstab:
3466 p = fstab[mount_point]
3467 device_expr = '"%s"' % fstab[mount_point].device
3468 if p.slotselect:
3469 device_expr = 'add_slot_suffix(%s)' % device_expr
3470 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003471 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003472
3473
3474def GetEntryForDevice(fstab, device):
3475 """
3476 Returns:
3477 The first entry in fstab whose device is the given value.
3478 """
3479 if not fstab:
3480 return None
3481 for mount_point in fstab:
3482 if fstab[mount_point].device == device:
3483 return fstab[mount_point]
3484 return None
3485
Kelvin Zhang0876c412020-06-23 15:06:58 -04003486
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003487def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003488 """Parses and converts a PEM-encoded certificate into DER-encoded.
3489
3490 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3491
3492 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003493 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003494 """
3495 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003496 save = False
3497 for line in data.split("\n"):
3498 if "--END CERTIFICATE--" in line:
3499 break
3500 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003501 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003502 if "--BEGIN CERTIFICATE--" in line:
3503 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003504 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003505 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003506
Tao Bao04e1f012018-02-04 12:13:35 -08003507
3508def ExtractPublicKey(cert):
3509 """Extracts the public key (PEM-encoded) from the given certificate file.
3510
3511 Args:
3512 cert: The certificate filename.
3513
3514 Returns:
3515 The public key string.
3516
3517 Raises:
3518 AssertionError: On non-zero return from 'openssl'.
3519 """
3520 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3521 # While openssl 1.1 writes the key into the given filename followed by '-out',
3522 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3523 # stdout instead.
3524 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3525 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3526 pubkey, stderrdata = proc.communicate()
3527 assert proc.returncode == 0, \
3528 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3529 return pubkey
3530
3531
Tao Bao1ac886e2019-06-26 11:58:22 -07003532def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003533 """Extracts the AVB public key from the given public or private key.
3534
3535 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003536 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003537 key: The input key file, which should be PEM-encoded public or private key.
3538
3539 Returns:
3540 The path to the extracted AVB public key file.
3541 """
3542 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3543 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003544 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003545 return output
3546
3547
Doug Zongker412c02f2014-02-13 10:58:24 -08003548def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3549 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003550 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003551
Tao Bao6d5d6232018-03-09 17:04:42 -08003552 Most of the space in the boot and recovery images is just the kernel, which is
3553 identical for the two, so the resulting patch should be efficient. Add it to
3554 the output zip, along with a shell script that is run from init.rc on first
3555 boot to actually do the patching and install the new recovery image.
3556
3557 Args:
3558 input_dir: The top-level input directory of the target-files.zip.
3559 output_sink: The callback function that writes the result.
3560 recovery_img: File object for the recovery image.
3561 boot_img: File objects for the boot image.
3562 info_dict: A dict returned by common.LoadInfoDict() on the input
3563 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003564 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003565 if info_dict is None:
3566 info_dict = OPTIONS.info_dict
3567
Tao Bao6d5d6232018-03-09 17:04:42 -08003568 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003569 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3570
3571 if board_uses_vendorimage:
3572 # In this case, the output sink is rooted at VENDOR
3573 recovery_img_path = "etc/recovery.img"
3574 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3575 sh_dir = "bin"
3576 else:
3577 # In this case the output sink is rooted at SYSTEM
3578 recovery_img_path = "vendor/etc/recovery.img"
3579 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3580 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003581
Tao Baof2cffbd2015-07-22 12:33:18 -07003582 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003583 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003584
3585 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003586 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003587 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003588 # With system-root-image, boot and recovery images will have mismatching
3589 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3590 # to handle such a case.
3591 if system_root_image:
3592 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003593 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003594 assert not os.path.exists(path)
3595 else:
3596 diff_program = ["imgdiff"]
3597 if os.path.exists(path):
3598 diff_program.append("-b")
3599 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003600 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003601 else:
3602 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003603
3604 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3605 _, _, patch = d.ComputePatch()
3606 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003607
Dan Albertebb19aa2015-03-27 19:11:53 -07003608 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003609 # The following GetTypeAndDevice()s need to use the path in the target
3610 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003611 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3612 check_no_slot=False)
3613 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3614 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003615 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003616 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003617
Tao Baof2cffbd2015-07-22 12:33:18 -07003618 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003619
3620 # Note that we use /vendor to refer to the recovery resources. This will
3621 # work for a separate vendor partition mounted at /vendor or a
3622 # /system/vendor subdirectory on the system partition, for which init will
3623 # create a symlink from /vendor to /system/vendor.
3624
3625 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003626if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3627 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003628 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003629 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3630 log -t recovery "Installing new recovery image: succeeded" || \\
3631 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003632else
3633 log -t recovery "Recovery image already installed"
3634fi
3635""" % {'type': recovery_type,
3636 'device': recovery_device,
3637 'sha1': recovery_img.sha1,
3638 'size': recovery_img.size}
3639 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003640 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003641if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3642 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003643 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003644 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3645 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3646 log -t recovery "Installing new recovery image: succeeded" || \\
3647 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003648else
3649 log -t recovery "Recovery image already installed"
3650fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003651""" % {'boot_size': boot_img.size,
3652 'boot_sha1': boot_img.sha1,
3653 'recovery_size': recovery_img.size,
3654 'recovery_sha1': recovery_img.sha1,
3655 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003656 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003657 'recovery_type': recovery_type,
3658 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003659 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003660
Bill Peckhame868aec2019-09-17 17:06:47 -07003661 # The install script location moved from /system/etc to /system/bin in the L
3662 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3663 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003664
Tao Bao32fcdab2018-10-12 10:30:39 -07003665 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003666
Tao Baoda30cfa2017-12-01 16:19:46 -08003667 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003668
3669
3670class DynamicPartitionUpdate(object):
3671 def __init__(self, src_group=None, tgt_group=None, progress=None,
3672 block_difference=None):
3673 self.src_group = src_group
3674 self.tgt_group = tgt_group
3675 self.progress = progress
3676 self.block_difference = block_difference
3677
3678 @property
3679 def src_size(self):
3680 if not self.block_difference:
3681 return 0
3682 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3683
3684 @property
3685 def tgt_size(self):
3686 if not self.block_difference:
3687 return 0
3688 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3689
3690 @staticmethod
3691 def _GetSparseImageSize(img):
3692 if not img:
3693 return 0
3694 return img.blocksize * img.total_blocks
3695
3696
3697class DynamicGroupUpdate(object):
3698 def __init__(self, src_size=None, tgt_size=None):
3699 # None: group does not exist. 0: no size limits.
3700 self.src_size = src_size
3701 self.tgt_size = tgt_size
3702
3703
3704class DynamicPartitionsDifference(object):
3705 def __init__(self, info_dict, block_diffs, progress_dict=None,
3706 source_info_dict=None):
3707 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003708 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003709
3710 self._remove_all_before_apply = False
3711 if source_info_dict is None:
3712 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003713 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003714
Tao Baof1113e92019-06-18 12:10:14 -07003715 block_diff_dict = collections.OrderedDict(
3716 [(e.partition, e) for e in block_diffs])
3717
Yifan Hong10c530d2018-12-27 17:34:18 -08003718 assert len(block_diff_dict) == len(block_diffs), \
3719 "Duplicated BlockDifference object for {}".format(
3720 [partition for partition, count in
3721 collections.Counter(e.partition for e in block_diffs).items()
3722 if count > 1])
3723
Yifan Hong79997e52019-01-23 16:56:19 -08003724 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003725
3726 for p, block_diff in block_diff_dict.items():
3727 self._partition_updates[p] = DynamicPartitionUpdate()
3728 self._partition_updates[p].block_difference = block_diff
3729
3730 for p, progress in progress_dict.items():
3731 if p in self._partition_updates:
3732 self._partition_updates[p].progress = progress
3733
3734 tgt_groups = shlex.split(info_dict.get(
3735 "super_partition_groups", "").strip())
3736 src_groups = shlex.split(source_info_dict.get(
3737 "super_partition_groups", "").strip())
3738
3739 for g in tgt_groups:
3740 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003741 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003742 assert p in self._partition_updates, \
3743 "{} is in target super_{}_partition_list but no BlockDifference " \
3744 "object is provided.".format(p, g)
3745 self._partition_updates[p].tgt_group = g
3746
3747 for g in src_groups:
3748 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003749 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003750 assert p in self._partition_updates, \
3751 "{} is in source super_{}_partition_list but no BlockDifference " \
3752 "object is provided.".format(p, g)
3753 self._partition_updates[p].src_group = g
3754
Yifan Hong45433e42019-01-18 13:55:25 -08003755 target_dynamic_partitions = set(shlex.split(info_dict.get(
3756 "dynamic_partition_list", "").strip()))
3757 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3758 if u.tgt_size)
3759 assert block_diffs_with_target == target_dynamic_partitions, \
3760 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3761 list(target_dynamic_partitions), list(block_diffs_with_target))
3762
3763 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3764 "dynamic_partition_list", "").strip()))
3765 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3766 if u.src_size)
3767 assert block_diffs_with_source == source_dynamic_partitions, \
3768 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3769 list(source_dynamic_partitions), list(block_diffs_with_source))
3770
Yifan Hong10c530d2018-12-27 17:34:18 -08003771 if self._partition_updates:
3772 logger.info("Updating dynamic partitions %s",
3773 self._partition_updates.keys())
3774
Yifan Hong79997e52019-01-23 16:56:19 -08003775 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003776
3777 for g in tgt_groups:
3778 self._group_updates[g] = DynamicGroupUpdate()
3779 self._group_updates[g].tgt_size = int(info_dict.get(
3780 "super_%s_group_size" % g, "0").strip())
3781
3782 for g in src_groups:
3783 if g not in self._group_updates:
3784 self._group_updates[g] = DynamicGroupUpdate()
3785 self._group_updates[g].src_size = int(source_info_dict.get(
3786 "super_%s_group_size" % g, "0").strip())
3787
3788 self._Compute()
3789
3790 def WriteScript(self, script, output_zip, write_verify_script=False):
3791 script.Comment('--- Start patching dynamic partitions ---')
3792 for p, u in self._partition_updates.items():
3793 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3794 script.Comment('Patch partition %s' % p)
3795 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3796 write_verify_script=False)
3797
3798 op_list_path = MakeTempFile()
3799 with open(op_list_path, 'w') as f:
3800 for line in self._op_list:
3801 f.write('{}\n'.format(line))
3802
3803 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3804
3805 script.Comment('Update dynamic partition metadata')
3806 script.AppendExtra('assert(update_dynamic_partitions('
3807 'package_extract_file("dynamic_partitions_op_list")));')
3808
3809 if write_verify_script:
3810 for p, u in self._partition_updates.items():
3811 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3812 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003813 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003814
3815 for p, u in self._partition_updates.items():
3816 if u.tgt_size and u.src_size <= u.tgt_size:
3817 script.Comment('Patch partition %s' % p)
3818 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3819 write_verify_script=write_verify_script)
3820 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003821 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003822
3823 script.Comment('--- End patching dynamic partitions ---')
3824
3825 def _Compute(self):
3826 self._op_list = list()
3827
3828 def append(line):
3829 self._op_list.append(line)
3830
3831 def comment(line):
3832 self._op_list.append("# %s" % line)
3833
3834 if self._remove_all_before_apply:
3835 comment('Remove all existing dynamic partitions and groups before '
3836 'applying full OTA')
3837 append('remove_all_groups')
3838
3839 for p, u in self._partition_updates.items():
3840 if u.src_group and not u.tgt_group:
3841 append('remove %s' % p)
3842
3843 for p, u in self._partition_updates.items():
3844 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3845 comment('Move partition %s from %s to default' % (p, u.src_group))
3846 append('move %s default' % p)
3847
3848 for p, u in self._partition_updates.items():
3849 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3850 comment('Shrink partition %s from %d to %d' %
3851 (p, u.src_size, u.tgt_size))
3852 append('resize %s %s' % (p, u.tgt_size))
3853
3854 for g, u in self._group_updates.items():
3855 if u.src_size is not None and u.tgt_size is None:
3856 append('remove_group %s' % g)
3857 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003858 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003859 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3860 append('resize_group %s %d' % (g, u.tgt_size))
3861
3862 for g, u in self._group_updates.items():
3863 if u.src_size is None and u.tgt_size is not None:
3864 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3865 append('add_group %s %d' % (g, u.tgt_size))
3866 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003867 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003868 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3869 append('resize_group %s %d' % (g, u.tgt_size))
3870
3871 for p, u in self._partition_updates.items():
3872 if u.tgt_group and not u.src_group:
3873 comment('Add partition %s to group %s' % (p, u.tgt_group))
3874 append('add %s %s' % (p, u.tgt_group))
3875
3876 for p, u in self._partition_updates.items():
3877 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003878 comment('Grow partition %s from %d to %d' %
3879 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003880 append('resize %s %d' % (p, u.tgt_size))
3881
3882 for p, u in self._partition_updates.items():
3883 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3884 comment('Move partition %s from default to %s' %
3885 (p, u.tgt_group))
3886 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003887
3888
jiajia tangf3f842b2021-03-17 21:49:44 +08003889def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003890 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003891 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003892
3893 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003894 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003895
3896 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003897 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003898 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003899 tmp_dir = MakeTempDir('boot_', suffix='.img')
3900 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003901 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3902 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003903 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3904 if not os.path.isfile(ramdisk):
3905 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3906 return None
3907 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003908 if ramdisk_format == RamdiskFormat.LZ4:
3909 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3910 elif ramdisk_format == RamdiskFormat.GZ:
3911 with open(ramdisk, 'rb') as input_stream:
3912 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003913 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3914 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003915 p2.wait()
3916 else:
3917 logger.error('Only support lz4 or minigzip ramdisk format.')
3918 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003919
3920 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3921 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3922 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3923 # the host environment.
3924 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003925 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003926
Yifan Hongc65a0542021-01-07 14:21:01 -08003927 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3928 prop_file = os.path.join(extracted_ramdisk, search_path)
3929 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003930 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003931 logger.warning(
3932 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003933
Yifan Hong7dc51172021-01-12 11:27:39 -08003934 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003935
Yifan Hong85ac5012021-01-07 14:43:46 -08003936 except ExternalError as e:
3937 logger.warning('Unable to get boot image build props: %s', e)
3938 return None
3939
3940
3941def GetBootImageTimestamp(boot_img):
3942 """
3943 Get timestamp from ramdisk within the boot image
3944
3945 Args:
3946 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3947
3948 Return:
3949 An integer that corresponds to the timestamp of the boot image, or None
3950 if file has unknown format. Raise exception if an unexpected error has
3951 occurred.
3952 """
3953 prop_file = GetBootImageBuildProp(boot_img)
3954 if not prop_file:
3955 return None
3956
3957 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3958 if props is None:
3959 return None
3960
3961 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003962 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3963 if timestamp:
3964 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003965 logger.warning(
3966 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003967 return None
3968
3969 except ExternalError as e:
3970 logger.warning('Unable to get boot image timestamp: %s', e)
3971 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003972
3973
3974def GetCareMap(which, imgname):
3975 """Returns the care_map string for the given partition.
3976
3977 Args:
3978 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
3979 imgname: The filename of the image.
3980
3981 Returns:
3982 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
3983 RangeSet; or None.
3984 """
3985 assert which in PARTITIONS_WITH_CARE_MAP
3986
3987 # which + "_image_size" contains the size that the actual filesystem image
3988 # resides in, which is all that needs to be verified. The additional blocks in
3989 # the image file contain verity metadata, by reading which would trigger
3990 # invalid reads.
3991 image_size = OPTIONS.info_dict.get(which + "_image_size")
3992 if not image_size:
3993 return None
3994
David Anderson9e95a022021-08-31 21:32:45 -07003995 disable_sparse = OPTIONS.info_dict.get(which + "_disable_sparse")
3996
Kelvin Zhang27324132021-03-22 15:38:38 -04003997 image_blocks = int(image_size) // 4096 - 1
Kelvin Zhang98ef7bb2022-01-07 14:41:46 -08003998 # It's OK for image_blocks to be 0, because care map ranges are inclusive.
3999 # So 0-0 means "just block 0", which is valid.
4000 assert image_blocks >= 0, "blocks for {} must be non-negative, image size: {}".format(
4001 which, image_size)
Kelvin Zhang27324132021-03-22 15:38:38 -04004002
4003 # For sparse images, we will only check the blocks that are listed in the care
4004 # map, i.e. the ones with meaningful data.
David Anderson9e95a022021-08-31 21:32:45 -07004005 if "extfs_sparse_flag" in OPTIONS.info_dict and not disable_sparse:
Kelvin Zhang27324132021-03-22 15:38:38 -04004006 simg = sparse_img.SparseImage(imgname)
4007 care_map_ranges = simg.care_map.intersect(
4008 rangelib.RangeSet("0-{}".format(image_blocks)))
4009
4010 # Otherwise for non-sparse images, we read all the blocks in the filesystem
4011 # image.
4012 else:
4013 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
4014
4015 return [which, care_map_ranges.to_string_raw()]
4016
4017
4018def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
4019 """Generates and adds care_map.pb for a/b partition that has care_map.
4020
4021 Args:
4022 output_file: The output zip file (needs to be already open),
4023 or file path to write care_map.pb.
4024 ab_partitions: The list of A/B partitions.
4025 image_paths: A map from the partition name to the image path.
4026 """
4027 if not output_file:
4028 raise ExternalError('Expected output_file for AddCareMapForAbOta')
4029
4030 care_map_list = []
4031 for partition in ab_partitions:
4032 partition = partition.strip()
4033 if partition not in PARTITIONS_WITH_CARE_MAP:
4034 continue
4035
4036 verity_block_device = "{}_verity_block_device".format(partition)
4037 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
4038 if (verity_block_device in OPTIONS.info_dict or
4039 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
4040 if partition not in image_paths:
4041 logger.warning('Potential partition with care_map missing from images: %s',
4042 partition)
4043 continue
4044 image_path = image_paths[partition]
4045 if not os.path.exists(image_path):
4046 raise ExternalError('Expected image at path {}'.format(image_path))
4047
4048 care_map = GetCareMap(partition, image_path)
4049 if not care_map:
4050 continue
4051 care_map_list += care_map
4052
4053 # adds fingerprint field to the care_map
4054 # TODO(xunchang) revisit the fingerprint calculation for care_map.
4055 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
4056 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
4057 "ro.{}.build.thumbprint".format(partition)]
4058
4059 present_props = [x for x in prop_name_list if
4060 partition_props and partition_props.GetProp(x)]
4061 if not present_props:
4062 logger.warning(
4063 "fingerprint is not present for partition %s", partition)
4064 property_id, fingerprint = "unknown", "unknown"
4065 else:
4066 property_id = present_props[0]
4067 fingerprint = partition_props.GetProp(property_id)
4068 care_map_list += [property_id, fingerprint]
4069
4070 if not care_map_list:
4071 return
4072
4073 # Converts the list into proto buf message by calling care_map_generator; and
4074 # writes the result to a temp file.
4075 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
4076 suffix=".txt")
4077 with open(temp_care_map_text, 'w') as text_file:
4078 text_file.write('\n'.join(care_map_list))
4079
4080 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
4081 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
4082 RunAndCheckOutput(care_map_gen_cmd)
4083
4084 if not isinstance(output_file, zipfile.ZipFile):
4085 shutil.copy(temp_care_map, output_file)
4086 return
4087 # output_file is a zip file
4088 care_map_path = "META/care_map.pb"
4089 if care_map_path in output_file.namelist():
4090 # Copy the temp file into the OPTIONS.input_tmp dir and update the
4091 # replace_updated_files_list used by add_img_to_target_files
4092 if not OPTIONS.replace_updated_files_list:
4093 OPTIONS.replace_updated_files_list = []
4094 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
4095 OPTIONS.replace_updated_files_list.append(care_map_path)
4096 else:
4097 ZipWrite(output_file, temp_care_map, arcname=care_map_path)
Kelvin Zhang26390482021-11-02 14:31:10 -07004098
4099
4100def IsSparseImage(filepath):
4101 with open(filepath, 'rb') as fp:
4102 # Magic for android sparse image format
4103 # https://source.android.com/devices/bootloader/images
4104 return fp.read(4) == b'\x3A\xFF\x26\xED'