blob: 3bbf9d804fb1463ae4460e03ea43bc13d0263a6f [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Doug Zongker8ce7c252009-05-22 13:34:54 -070020import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070021import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070022import getopt
23import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010024import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070025import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070026import json
27import logging
28import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070029import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080030import platform
Doug Zongkereef39442009-04-02 12:14:19 -070031import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070032import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070033import shutil
34import subprocess
35import sys
36import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070037import threading
38import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070039import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080040from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070041
Tianjie Xu41976c72019-07-03 13:57:01 -070042import images
Tao Baoc765cca2018-01-31 17:32:40 -080043import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070044from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070045
Tao Bao32fcdab2018-10-12 10:30:39 -070046logger = logging.getLogger(__name__)
47
Tao Bao986ee862018-10-04 15:46:16 -070048
Dan Albert8b72aef2015-03-23 19:13:21 -070049class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070052 # Set up search path, in order to find framework/ and lib64/. At the time of
53 # running this function, user-supplied search path (`--path`) hasn't been
54 # available. So the value set here is the default, which might be overridden
55 # by commandline flag later.
56 exec_path = sys.argv[0]
57 if exec_path.endswith('.py'):
58 script_name = os.path.basename(exec_path)
59 # logger hasn't been initialized yet at this point. Use print to output
60 # warnings.
61 print(
62 'Warning: releasetools script should be invoked as hermetic Python '
63 'executable -- build and run `{}` directly.'.format(script_name[:-3]),
64 file=sys.stderr)
Robin Lee34ea7392020-01-02 20:21:18 +010065 self.search_path = os.path.realpath(os.path.join(os.path.dirname(exec_path), '..'))
Pavel Salomatov32676552019-03-06 20:00:45 +030066
Dan Albert8b72aef2015-03-23 19:13:21 -070067 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080068 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070069 self.extra_signapk_args = []
70 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080071 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080072 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070073 self.public_key_suffix = ".x509.pem"
74 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070075 # use otatools built boot_signer by default
76 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070077 self.boot_signer_args = []
78 self.verity_signer_path = None
79 self.verity_signer_args = []
Dan Austin52903642019-12-12 15:44:00 -080080 self.aftl_server = None
81 self.aftl_key_path = None
82 self.aftl_manufacturer_key_path = None
83 self.aftl_signer_helper = None
Dan Albert8b72aef2015-03-23 19:13:21 -070084 self.verbose = False
85 self.tempfiles = []
86 self.device_specific = None
87 self.extras = {}
88 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070089 self.source_info_dict = None
90 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070091 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070092 # Stash size cannot exceed cache_size * threshold.
93 self.cache_size = None
94 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070095 self.logfile = None
Dan Albert8b72aef2015-03-23 19:13:21 -070096
97
98OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -070099
Tao Bao71197512018-10-11 14:08:45 -0700100# The block size that's used across the releasetools scripts.
101BLOCK_SIZE = 4096
102
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800103# Values for "certificate" in apkcerts that mean special things.
104SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
105
Tao Bao5cc0abb2019-03-21 10:18:05 -0700106# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
107# that system_other is not in the list because we don't want to include its
108# descriptor into vbmeta.img.
Justin Yun6151e3f2019-06-25 15:58:13 +0900109AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'recovery', 'system',
Steve Mucklee1b10862019-07-10 10:49:37 -0700110 'system_ext', 'vendor', 'vendor_boot')
Tao Bao9dd909e2017-11-14 11:27:32 -0800111
Tao Bao08c190f2019-06-03 23:07:58 -0700112# Chained VBMeta partitions.
113AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
114
Tianjie Xu861f4132018-09-12 11:49:33 -0700115# Partitions that should have their care_map added to META/care_map.pb
Justin Yun6151e3f2019-06-25 15:58:13 +0900116PARTITIONS_WITH_CARE_MAP = ('system', 'vendor', 'product', 'system_ext', 'odm')
Tianjie Xu861f4132018-09-12 11:49:33 -0700117
118
Tianjie Xu209db462016-05-24 17:34:52 -0700119class ErrorCode(object):
120 """Define error_codes for failures that happen during the actual
121 update package installation.
122
123 Error codes 0-999 are reserved for failures before the package
124 installation (i.e. low battery, package verification failure).
125 Detailed code in 'bootable/recovery/error_code.h' """
126
127 SYSTEM_VERIFICATION_FAILURE = 1000
128 SYSTEM_UPDATE_FAILURE = 1001
129 SYSTEM_UNEXPECTED_CONTENTS = 1002
130 SYSTEM_NONZERO_CONTENTS = 1003
131 SYSTEM_RECOVER_FAILURE = 1004
132 VENDOR_VERIFICATION_FAILURE = 2000
133 VENDOR_UPDATE_FAILURE = 2001
134 VENDOR_UNEXPECTED_CONTENTS = 2002
135 VENDOR_NONZERO_CONTENTS = 2003
136 VENDOR_RECOVER_FAILURE = 2004
137 OEM_PROP_MISMATCH = 3000
138 FINGERPRINT_MISMATCH = 3001
139 THUMBPRINT_MISMATCH = 3002
140 OLDER_BUILD = 3003
141 DEVICE_MISMATCH = 3004
142 BAD_PATCH_FILE = 3005
143 INSUFFICIENT_CACHE_SPACE = 3006
144 TUNE_PARTITION_FAILURE = 3007
145 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800146
Tao Bao80921982018-03-21 21:02:19 -0700147
Dan Albert8b72aef2015-03-23 19:13:21 -0700148class ExternalError(RuntimeError):
149 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700150
151
Tao Bao32fcdab2018-10-12 10:30:39 -0700152def InitLogging():
153 DEFAULT_LOGGING_CONFIG = {
154 'version': 1,
155 'disable_existing_loggers': False,
156 'formatters': {
157 'standard': {
158 'format':
159 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
160 'datefmt': '%Y-%m-%d %H:%M:%S',
161 },
162 },
163 'handlers': {
164 'default': {
165 'class': 'logging.StreamHandler',
166 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700167 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700168 },
169 },
170 'loggers': {
171 '': {
172 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700173 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700174 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700175 }
176 }
177 }
178 env_config = os.getenv('LOGGING_CONFIG')
179 if env_config:
180 with open(env_config) as f:
181 config = json.load(f)
182 else:
183 config = DEFAULT_LOGGING_CONFIG
184
185 # Increase the logging level for verbose mode.
186 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700187 config = copy.deepcopy(config)
188 config['handlers']['default']['level'] = 'INFO'
189
190 if OPTIONS.logfile:
191 config = copy.deepcopy(config)
192 config['handlers']['logfile'] = {
193 'class': 'logging.FileHandler',
194 'formatter': 'standard',
195 'level': 'INFO',
196 'mode': 'w',
197 'filename': OPTIONS.logfile,
198 }
199 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700200
201 logging.config.dictConfig(config)
202
203
Tao Bao39451582017-05-04 11:10:47 -0700204def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700205 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700206
Tao Bao73dd4f42018-10-04 16:25:33 -0700207 Args:
208 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700209 verbose: Whether the commands should be shown. Default to the global
210 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700211 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
212 stdin, etc. stdout and stderr will default to subprocess.PIPE and
213 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800214 universal_newlines will default to True, as most of the users in
215 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700216
217 Returns:
218 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700219 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700220 if 'stdout' not in kwargs and 'stderr' not in kwargs:
221 kwargs['stdout'] = subprocess.PIPE
222 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800223 if 'universal_newlines' not in kwargs:
224 kwargs['universal_newlines'] = True
Tao Bao32fcdab2018-10-12 10:30:39 -0700225 # Don't log any if caller explicitly says so.
226 if verbose != False:
227 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700228 return subprocess.Popen(args, **kwargs)
229
230
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800231def RunAndWait(args, verbose=None, **kwargs):
Bill Peckham889b0c62019-02-21 18:53:37 -0800232 """Runs the given command waiting for it to complete.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800233
234 Args:
235 args: The command represented as a list of strings.
236 verbose: Whether the commands should be shown. Default to the global
237 verbosity if unspecified.
238 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
239 stdin, etc. stdout and stderr will default to subprocess.PIPE and
240 subprocess.STDOUT respectively unless caller specifies any of them.
241
Bill Peckham889b0c62019-02-21 18:53:37 -0800242 Raises:
243 ExternalError: On non-zero exit from the command.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800244 """
245 proc = Run(args, verbose=verbose, **kwargs)
246 proc.wait()
Bill Peckham889b0c62019-02-21 18:53:37 -0800247
248 if proc.returncode != 0:
249 raise ExternalError(
250 "Failed to run command '{}' (exit code {})".format(
251 args, proc.returncode))
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800252
253
Tao Bao986ee862018-10-04 15:46:16 -0700254def RunAndCheckOutput(args, verbose=None, **kwargs):
255 """Runs the given command and returns the output.
256
257 Args:
258 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700259 verbose: Whether the commands should be shown. Default to the global
260 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700261 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
262 stdin, etc. stdout and stderr will default to subprocess.PIPE and
263 subprocess.STDOUT respectively unless caller specifies any of them.
264
265 Returns:
266 The output string.
267
268 Raises:
269 ExternalError: On non-zero exit from the command.
270 """
Tao Bao986ee862018-10-04 15:46:16 -0700271 proc = Run(args, verbose=verbose, **kwargs)
272 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800273 if output is None:
274 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700275 # Don't log any if caller explicitly says so.
276 if verbose != False:
277 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700278 if proc.returncode != 0:
279 raise ExternalError(
280 "Failed to run command '{}' (exit code {}):\n{}".format(
281 args, proc.returncode, output))
282 return output
283
284
Tao Baoc765cca2018-01-31 17:32:40 -0800285def RoundUpTo4K(value):
286 rounded_up = value + 4095
287 return rounded_up - (rounded_up % 4096)
288
289
Ying Wang7e6d4e42010-12-13 16:25:36 -0800290def CloseInheritedPipes():
291 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
292 before doing other work."""
293 if platform.system() != "Darwin":
294 return
295 for d in range(3, 1025):
296 try:
297 stat = os.fstat(d)
298 if stat is not None:
299 pipebit = stat[0] & 0x1000
300 if pipebit != 0:
301 os.close(d)
302 except OSError:
303 pass
304
305
Tao Bao1c320f82019-10-04 23:25:12 -0700306class BuildInfo(object):
307 """A class that holds the information for a given build.
308
309 This class wraps up the property querying for a given source or target build.
310 It abstracts away the logic of handling OEM-specific properties, and caches
311 the commonly used properties such as fingerprint.
312
313 There are two types of info dicts: a) build-time info dict, which is generated
314 at build time (i.e. included in a target_files zip); b) OEM info dict that is
315 specified at package generation time (via command line argument
316 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
317 having "oem_fingerprint_properties" in build-time info dict), all the queries
318 would be answered based on build-time info dict only. Otherwise if using
319 OEM-specific properties, some of them will be calculated from two info dicts.
320
321 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800322 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700323
324 Attributes:
325 info_dict: The build-time info dict.
326 is_ab: Whether it's a build that uses A/B OTA.
327 oem_dicts: A list of OEM dicts.
328 oem_props: A list of OEM properties that should be read from OEM dicts; None
329 if the build doesn't use any OEM-specific property.
330 fingerprint: The fingerprint of the build, which would be calculated based
331 on OEM properties if applicable.
332 device: The device name, which could come from OEM dicts if applicable.
333 """
334
335 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
336 "ro.product.manufacturer", "ro.product.model",
337 "ro.product.name"]
338 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER = ["product", "odm", "vendor",
339 "system_ext", "system"]
340
Tao Bao3ed35d32019-10-07 20:48:48 -0700341 def __init__(self, info_dict, oem_dicts=None):
Tao Bao1c320f82019-10-04 23:25:12 -0700342 """Initializes a BuildInfo instance with the given dicts.
343
344 Note that it only wraps up the given dicts, without making copies.
345
346 Arguments:
347 info_dict: The build-time info dict.
348 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
349 that it always uses the first dict to calculate the fingerprint or the
350 device name. The rest would be used for asserting OEM properties only
351 (e.g. one package can be installed on one of these devices).
352
353 Raises:
354 ValueError: On invalid inputs.
355 """
356 self.info_dict = info_dict
357 self.oem_dicts = oem_dicts
358
359 self._is_ab = info_dict.get("ab_update") == "true"
360 self._oem_props = info_dict.get("oem_fingerprint_properties")
361
362 if self._oem_props:
363 assert oem_dicts, "OEM source required for this build"
364
Daniel Normand5fe8622020-01-08 17:01:11 -0800365 def check_fingerprint(fingerprint):
366 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
367 raise ValueError(
368 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
369 "3.2.2. Build Parameters.".format(fingerprint))
370
371
372 self._partition_fingerprints = {}
373 for partition in PARTITIONS_WITH_CARE_MAP:
374 try:
375 fingerprint = self.CalculatePartitionFingerprint(partition)
376 check_fingerprint(fingerprint)
377 self._partition_fingerprints[partition] = fingerprint
378 except ExternalError:
379 continue
380 if "system" in self._partition_fingerprints:
381 # system_other is not included in PARTITIONS_WITH_CARE_MAP, but does
382 # need a fingerprint when creating the image.
383 self._partition_fingerprints[
384 "system_other"] = self._partition_fingerprints["system"]
385
Tao Bao1c320f82019-10-04 23:25:12 -0700386 # These two should be computed only after setting self._oem_props.
387 self._device = self.GetOemProperty("ro.product.device")
388 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800389 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700390
391 @property
392 def is_ab(self):
393 return self._is_ab
394
395 @property
396 def device(self):
397 return self._device
398
399 @property
400 def fingerprint(self):
401 return self._fingerprint
402
403 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700404 def oem_props(self):
405 return self._oem_props
406
407 def __getitem__(self, key):
408 return self.info_dict[key]
409
410 def __setitem__(self, key, value):
411 self.info_dict[key] = value
412
413 def get(self, key, default=None):
414 return self.info_dict.get(key, default)
415
416 def items(self):
417 return self.info_dict.items()
418
Daniel Normand5fe8622020-01-08 17:01:11 -0800419 def GetPartitionBuildProp(self, prop, partition):
420 """Returns the inquired build property for the provided partition."""
421 # If provided a partition for this property, only look within that
422 # partition's build.prop.
423 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
424 prop = prop.replace("ro.product", "ro.product.{}".format(partition))
425 else:
426 prop = prop.replace("ro.", "ro.{}.".format(partition))
427 try:
428 return self.info_dict.get("{}.build.prop".format(partition), {})[prop]
429 except KeyError:
430 raise ExternalError("couldn't find %s in %s.build.prop" %
431 (prop, partition))
432
Tao Bao1c320f82019-10-04 23:25:12 -0700433 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800434 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700435 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
436 return self._ResolveRoProductBuildProp(prop)
437
438 try:
439 return self.info_dict.get("build.prop", {})[prop]
440 except KeyError:
441 raise ExternalError("couldn't find %s in build.prop" % (prop,))
442
443 def _ResolveRoProductBuildProp(self, prop):
444 """Resolves the inquired ro.product.* build property"""
445 prop_val = self.info_dict.get("build.prop", {}).get(prop)
446 if prop_val:
447 return prop_val
448
449 source_order_val = self.info_dict.get("build.prop", {}).get(
450 "ro.product.property_source_order")
451 if source_order_val:
452 source_order = source_order_val.split(",")
453 else:
454 source_order = BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
455
456 # Check that all sources in ro.product.property_source_order are valid
457 if any([x not in BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
458 for x in source_order]):
459 raise ExternalError(
460 "Invalid ro.product.property_source_order '{}'".format(source_order))
461
462 for source in source_order:
463 source_prop = prop.replace(
464 "ro.product", "ro.product.{}".format(source), 1)
465 prop_val = self.info_dict.get(
466 "{}.build.prop".format(source), {}).get(source_prop)
467 if prop_val:
468 return prop_val
469
470 raise ExternalError("couldn't resolve {}".format(prop))
471
Tao Bao1c320f82019-10-04 23:25:12 -0700472 def GetOemProperty(self, key):
473 if self.oem_props is not None and key in self.oem_props:
474 return self.oem_dicts[0][key]
475 return self.GetBuildProp(key)
476
Daniel Normand5fe8622020-01-08 17:01:11 -0800477 def GetPartitionFingerprint(self, partition):
478 return self._partition_fingerprints.get(partition, None)
479
480 def CalculatePartitionFingerprint(self, partition):
481 try:
482 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
483 except ExternalError:
484 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
485 self.GetPartitionBuildProp("ro.product.brand", partition),
486 self.GetPartitionBuildProp("ro.product.name", partition),
487 self.GetPartitionBuildProp("ro.product.device", partition),
488 self.GetPartitionBuildProp("ro.build.version.release", partition),
489 self.GetPartitionBuildProp("ro.build.id", partition),
490 self.GetPartitionBuildProp("ro.build.version.incremental", partition),
491 self.GetPartitionBuildProp("ro.build.type", partition),
492 self.GetPartitionBuildProp("ro.build.tags", partition))
493
Tao Bao1c320f82019-10-04 23:25:12 -0700494 def CalculateFingerprint(self):
495 if self.oem_props is None:
496 try:
497 return self.GetBuildProp("ro.build.fingerprint")
498 except ExternalError:
499 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
500 self.GetBuildProp("ro.product.brand"),
501 self.GetBuildProp("ro.product.name"),
502 self.GetBuildProp("ro.product.device"),
503 self.GetBuildProp("ro.build.version.release"),
504 self.GetBuildProp("ro.build.id"),
505 self.GetBuildProp("ro.build.version.incremental"),
506 self.GetBuildProp("ro.build.type"),
507 self.GetBuildProp("ro.build.tags"))
508 return "%s/%s/%s:%s" % (
509 self.GetOemProperty("ro.product.brand"),
510 self.GetOemProperty("ro.product.name"),
511 self.GetOemProperty("ro.product.device"),
512 self.GetBuildProp("ro.build.thumbprint"))
513
514 def WriteMountOemScript(self, script):
515 assert self.oem_props is not None
516 recovery_mount_options = self.info_dict.get("recovery_mount_options")
517 script.Mount("/oem", recovery_mount_options)
518
519 def WriteDeviceAssertions(self, script, oem_no_mount):
520 # Read the property directly if not using OEM properties.
521 if not self.oem_props:
522 script.AssertDevice(self.device)
523 return
524
525 # Otherwise assert OEM properties.
526 if not self.oem_dicts:
527 raise ExternalError(
528 "No OEM file provided to answer expected assertions")
529
530 for prop in self.oem_props.split():
531 values = []
532 for oem_dict in self.oem_dicts:
533 if prop in oem_dict:
534 values.append(oem_dict[prop])
535 if not values:
536 raise ExternalError(
537 "The OEM file is missing the property %s" % (prop,))
538 script.AssertOemProperty(prop, values, oem_no_mount)
539
540
Tao Bao410ad8b2018-08-24 12:08:38 -0700541def LoadInfoDict(input_file, repacking=False):
542 """Loads the key/value pairs from the given input target_files.
543
544 It reads `META/misc_info.txt` file in the target_files input, does sanity
545 checks and returns the parsed key/value pairs for to the given build. It's
546 usually called early when working on input target_files files, e.g. when
547 generating OTAs, or signing builds. Note that the function may be called
548 against an old target_files file (i.e. from past dessert releases). So the
549 property parsing needs to be backward compatible.
550
551 In a `META/misc_info.txt`, a few properties are stored as links to the files
552 in the PRODUCT_OUT directory. It works fine with the build system. However,
553 they are no longer available when (re)generating images from target_files zip.
554 When `repacking` is True, redirect these properties to the actual files in the
555 unzipped directory.
556
557 Args:
558 input_file: The input target_files file, which could be an open
559 zipfile.ZipFile instance, or a str for the dir that contains the files
560 unzipped from a target_files file.
561 repacking: Whether it's trying repack an target_files file after loading the
562 info dict (default: False). If so, it will rewrite a few loaded
563 properties (e.g. selinux_fc, root_dir) to point to the actual files in
564 target_files file. When doing repacking, `input_file` must be a dir.
565
566 Returns:
567 A dict that contains the parsed key/value pairs.
568
569 Raises:
570 AssertionError: On invalid input arguments.
571 ValueError: On malformed input values.
572 """
573 if repacking:
574 assert isinstance(input_file, str), \
575 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700576
Doug Zongkerc9253822014-02-04 12:17:58 -0800577 def read_helper(fn):
Dan Albert8b72aef2015-03-23 19:13:21 -0700578 if isinstance(input_file, zipfile.ZipFile):
Tao Baoda30cfa2017-12-01 16:19:46 -0800579 return input_file.read(fn).decode()
Doug Zongkerc9253822014-02-04 12:17:58 -0800580 else:
Dan Albert8b72aef2015-03-23 19:13:21 -0700581 path = os.path.join(input_file, *fn.split("/"))
Doug Zongkerc9253822014-02-04 12:17:58 -0800582 try:
583 with open(path) as f:
584 return f.read()
Dan Albert8b72aef2015-03-23 19:13:21 -0700585 except IOError as e:
Doug Zongkerc9253822014-02-04 12:17:58 -0800586 if e.errno == errno.ENOENT:
587 raise KeyError(fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800588
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700589 try:
Michael Runge6e836112014-04-15 17:40:21 -0700590 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700591 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700592 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700593
Tao Bao410ad8b2018-08-24 12:08:38 -0700594 if "recovery_api_version" not in d:
595 raise ValueError("Failed to find 'recovery_api_version'")
596 if "fstab_version" not in d:
597 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800598
Tao Bao410ad8b2018-08-24 12:08:38 -0700599 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700600 # "selinux_fc" properties should point to the file_contexts files
601 # (file_contexts.bin) under META/.
602 for key in d:
603 if key.endswith("selinux_fc"):
604 fc_basename = os.path.basename(d[key])
605 fc_config = os.path.join(input_file, "META", fc_basename)
606 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700607
Daniel Norman72c626f2019-05-13 15:58:14 -0700608 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700609
Tom Cherryd14b8952018-08-09 14:26:00 -0700610 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700611 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700612 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700613 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700614
David Anderson0ec64ac2019-12-06 12:21:18 -0800615 # Redirect {partition}_base_fs_file for each of the named partitions.
616 for part_name in ["system", "vendor", "system_ext", "product", "odm"]:
617 key_name = part_name + "_base_fs_file"
618 if key_name not in d:
619 continue
620 basename = os.path.basename(d[key_name])
621 base_fs_file = os.path.join(input_file, "META", basename)
622 if os.path.exists(base_fs_file):
623 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700624 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700625 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800626 "Failed to find %s base fs file: %s", part_name, base_fs_file)
627 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700628
Doug Zongker37974732010-09-16 17:44:38 -0700629 def makeint(key):
630 if key in d:
631 d[key] = int(d[key], 0)
632
633 makeint("recovery_api_version")
634 makeint("blocksize")
635 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700636 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700637 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700638 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700639 makeint("recovery_size")
640 makeint("boot_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800641 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700642
Tao Bao765668f2019-10-04 22:03:00 -0700643 # Load recovery fstab if applicable.
644 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
Tianjie Xucfa86222016-03-07 16:31:19 -0800645
Tianjie Xu861f4132018-09-12 11:49:33 -0700646 # Tries to load the build props for all partitions with care_map, including
647 # system and vendor.
648 for partition in PARTITIONS_WITH_CARE_MAP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800649 partition_prop = "{}.build.prop".format(partition)
650 d[partition_prop] = LoadBuildProp(
Tianjie Xu861f4132018-09-12 11:49:33 -0700651 read_helper, "{}/build.prop".format(partition.upper()))
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800652 # Some partition might use /<partition>/etc/build.prop as the new path.
653 # TODO: try new path first when majority of them switch to the new path.
654 if not d[partition_prop]:
655 d[partition_prop] = LoadBuildProp(
656 read_helper, "{}/etc/build.prop".format(partition.upper()))
Tianjie Xu861f4132018-09-12 11:49:33 -0700657 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800658
Tao Bao3ed35d32019-10-07 20:48:48 -0700659 # Set up the salt (based on fingerprint) that will be used when adding AVB
660 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800661 if d.get("avb_enable") == "true":
Tao Bao3ed35d32019-10-07 20:48:48 -0700662 build_info = BuildInfo(d)
Daniel Normand5fe8622020-01-08 17:01:11 -0800663 for partition in PARTITIONS_WITH_CARE_MAP:
664 fingerprint = build_info.GetPartitionFingerprint(partition)
665 if fingerprint:
666 d["avb_{}_salt".format(partition)] = sha256(fingerprint).hexdigest()
Tao Bao12d87fc2018-01-31 12:18:52 -0800667
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700668 return d
669
Tao Baod1de6f32017-03-01 16:38:48 -0800670
Tao Baobcd1d162017-08-26 13:10:26 -0700671def LoadBuildProp(read_helper, prop_file):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700672 try:
Tao Baobcd1d162017-08-26 13:10:26 -0700673 data = read_helper(prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700674 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700675 logger.warning("Failed to read %s", prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700676 data = ""
Michael Runge6e836112014-04-15 17:40:21 -0700677 return LoadDictionaryFromLines(data.split("\n"))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700678
Tao Baod1de6f32017-03-01 16:38:48 -0800679
Daniel Norman4cc9df62019-07-18 10:11:07 -0700680def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900681 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700682 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900683
Daniel Norman4cc9df62019-07-18 10:11:07 -0700684
685def LoadDictionaryFromFile(file_path):
686 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900687 return LoadDictionaryFromLines(lines)
688
689
Michael Runge6e836112014-04-15 17:40:21 -0700690def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700691 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700692 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700693 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700694 if not line or line.startswith("#"):
695 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700696 if "=" in line:
697 name, value = line.split("=", 1)
698 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700699 return d
700
Tao Baod1de6f32017-03-01 16:38:48 -0800701
Tianjie Xucfa86222016-03-07 16:31:19 -0800702def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
703 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700704 class Partition(object):
Tao Baod1de6f32017-03-01 16:38:48 -0800705 def __init__(self, mount_point, fs_type, device, length, context):
Dan Albert8b72aef2015-03-23 19:13:21 -0700706 self.mount_point = mount_point
707 self.fs_type = fs_type
708 self.device = device
709 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700710 self.context = context
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700711
712 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800713 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700714 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700715 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -0700716 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700717
Tao Baod1de6f32017-03-01 16:38:48 -0800718 assert fstab_version == 2
719
720 d = {}
721 for line in data.split("\n"):
722 line = line.strip()
723 if not line or line.startswith("#"):
724 continue
725
726 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
727 pieces = line.split()
728 if len(pieces) != 5:
729 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
730
731 # Ignore entries that are managed by vold.
732 options = pieces[4]
733 if "voldmanaged=" in options:
734 continue
735
736 # It's a good line, parse it.
737 length = 0
738 options = options.split(",")
739 for i in options:
740 if i.startswith("length="):
741 length = int(i[7:])
Doug Zongker086cbb02011-02-17 15:54:20 -0800742 else:
Tao Baod1de6f32017-03-01 16:38:48 -0800743 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -0700744 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800745
Tao Baod1de6f32017-03-01 16:38:48 -0800746 mount_flags = pieces[3]
747 # Honor the SELinux context if present.
748 context = None
749 for i in mount_flags.split(","):
750 if i.startswith("context="):
751 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -0800752
Tao Baod1de6f32017-03-01 16:38:48 -0800753 mount_point = pieces[1]
754 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
755 device=pieces[0], length=length, context=context)
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800756
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700757 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700758 # system. Other areas assume system is always at "/system" so point /system
759 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700760 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -0800761 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700762 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700763 return d
764
765
Tao Bao765668f2019-10-04 22:03:00 -0700766def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
767 """Finds the path to recovery fstab and loads its contents."""
768 # recovery fstab is only meaningful when installing an update via recovery
769 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
770 if info_dict.get('ab_update') == 'true':
771 return None
772
773 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
774 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
775 # cases, since it may load the info_dict from an old build (e.g. when
776 # generating incremental OTAs from that build).
777 system_root_image = info_dict.get('system_root_image') == 'true'
778 if info_dict.get('no_recovery') != 'true':
779 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
780 if isinstance(input_file, zipfile.ZipFile):
781 if recovery_fstab_path not in input_file.namelist():
782 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
783 else:
784 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
785 if not os.path.exists(path):
786 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
787 return LoadRecoveryFSTab(
788 read_helper, info_dict['fstab_version'], recovery_fstab_path,
789 system_root_image)
790
791 if info_dict.get('recovery_as_boot') == 'true':
792 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
793 if isinstance(input_file, zipfile.ZipFile):
794 if recovery_fstab_path not in input_file.namelist():
795 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
796 else:
797 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
798 if not os.path.exists(path):
799 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
800 return LoadRecoveryFSTab(
801 read_helper, info_dict['fstab_version'], recovery_fstab_path,
802 system_root_image)
803
804 return None
805
806
Doug Zongker37974732010-09-16 17:44:38 -0700807def DumpInfoDict(d):
808 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -0700809 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700810
Dan Albert8b72aef2015-03-23 19:13:21 -0700811
Daniel Norman55417142019-11-25 16:04:36 -0800812def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700813 """Merges dynamic partition info variables.
814
815 Args:
816 framework_dict: The dictionary of dynamic partition info variables from the
817 partial framework target files.
818 vendor_dict: The dictionary of dynamic partition info variables from the
819 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700820
821 Returns:
822 The merged dynamic partition info dictionary.
823 """
824 merged_dict = {}
825 # Partition groups and group sizes are defined by the vendor dict because
826 # these values may vary for each board that uses a shared system image.
827 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Norman55417142019-11-25 16:04:36 -0800828 framework_dynamic_partition_list = framework_dict.get(
829 "dynamic_partition_list", "")
830 vendor_dynamic_partition_list = vendor_dict.get("dynamic_partition_list", "")
831 merged_dict["dynamic_partition_list"] = ("%s %s" % (
832 framework_dynamic_partition_list, vendor_dynamic_partition_list)).strip()
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700833 for partition_group in merged_dict["super_partition_groups"].split(" "):
834 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -0800835 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700836 if key not in vendor_dict:
837 raise ValueError("Vendor dict does not contain required key %s." % key)
838 merged_dict[key] = vendor_dict[key]
839
840 # Set the partition group's partition list using a concatenation of the
841 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -0800842 key = "super_%s_partition_list" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700843 merged_dict[key] = (
844 "%s %s" %
845 (framework_dict.get(key, ""), vendor_dict.get(key, ""))).strip()
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +0530846
847 # Pick virtual ab related flags from vendor dict, if defined.
848 if "virtual_ab" in vendor_dict.keys():
849 merged_dict["virtual_ab"] = vendor_dict["virtual_ab"]
850 if "virtual_ab_retrofit" in vendor_dict.keys():
851 merged_dict["virtual_ab_retrofit"] = vendor_dict["virtual_ab_retrofit"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700852 return merged_dict
853
854
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800855def AppendAVBSigningArgs(cmd, partition):
856 """Append signing arguments for avbtool."""
857 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
858 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -0700859 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
860 new_key_path = os.path.join(OPTIONS.search_path, key_path)
861 if os.path.exists(new_key_path):
862 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800863 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
864 if key_path and algorithm:
865 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -0700866 avb_salt = OPTIONS.info_dict.get("avb_salt")
867 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -0700868 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -0700869 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800870
871
Tao Bao765668f2019-10-04 22:03:00 -0700872def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -0700873 """Returns the VBMeta arguments for partition.
874
875 It sets up the VBMeta argument by including the partition descriptor from the
876 given 'image', or by configuring the partition as a chained partition.
877
878 Args:
879 partition: The name of the partition (e.g. "system").
880 image: The path to the partition image.
881 info_dict: A dict returned by common.LoadInfoDict(). Will use
882 OPTIONS.info_dict if None has been given.
883
884 Returns:
885 A list of VBMeta arguments.
886 """
887 if info_dict is None:
888 info_dict = OPTIONS.info_dict
889
890 # Check if chain partition is used.
891 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +0800892 if not key_path:
893 return ["--include_descriptors_from_image", image]
894
895 # For a non-A/B device, we don't chain /recovery nor include its descriptor
896 # into vbmeta.img. The recovery image will be configured on an independent
897 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
898 # See details at
899 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -0700900 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +0800901 return []
902
903 # Otherwise chain the partition into vbmeta.
904 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
905 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -0700906
907
Tao Bao02a08592018-07-22 12:40:45 -0700908def GetAvbChainedPartitionArg(partition, info_dict, key=None):
909 """Constructs and returns the arg to build or verify a chained partition.
910
911 Args:
912 partition: The partition name.
913 info_dict: The info dict to look up the key info and rollback index
914 location.
915 key: The key to be used for building or verifying the partition. Defaults to
916 the key listed in info_dict.
917
918 Returns:
919 A string of form "partition:rollback_index_location:key" that can be used to
920 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -0700921 """
922 if key is None:
923 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -0700924 if key and not os.path.exists(key) and OPTIONS.search_path:
925 new_key_path = os.path.join(OPTIONS.search_path, key)
926 if os.path.exists(new_key_path):
927 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -0700928 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -0700929 rollback_index_location = info_dict[
930 "avb_" + partition + "_rollback_index_location"]
931 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
932
933
Tianjie Xueaed60c2020-03-12 00:33:28 -0700934def AddAftlInclusionProof(output_image):
935 """Appends the aftl inclusion proof to the vbmeta image."""
936
937 # Ensure the other AFTL parameters are set as well.
938 assert OPTIONS.aftl_key_path is not None, 'No AFTL key provided.'
939 assert OPTIONS.aftl_manufacturer_key_path is not None, \
940 'No AFTL manufacturer key provided.'
941
942 vbmeta_image = MakeTempFile()
943 os.rename(output_image, vbmeta_image)
944 build_info = BuildInfo(OPTIONS.info_dict)
945 version_incremental = build_info.GetBuildProp("ro.build.version.incremental")
946 aftl_cmd = ["aftltool", "make_icp_from_vbmeta",
947 "--vbmeta_image_path", vbmeta_image,
948 "--output", output_image,
949 "--version_incremental", version_incremental,
950 "--transparency_log_servers", OPTIONS.aftl_server,
951 "--transparency_log_pub_keys", OPTIONS.aftl_key_path,
952 "--manufacturer_key", OPTIONS.aftl_manufacturer_key_path,
953 "--algorithm", "SHA256_RSA4096",
954 "--padding", "4096"]
955 if OPTIONS.aftl_signer_helper:
956 aftl_cmd.extend(shlex.split(OPTIONS.aftl_signer_helper))
957 RunAndCheckOutput(aftl_cmd)
958
959 verify_cmd = ['aftltool', 'verify_image_icp', '--vbmeta_image_path',
960 output_image, '--transparency_log_pub_keys',
961 OPTIONS.aftl_key_path]
962 RunAndCheckOutput(verify_cmd)
963
964
Daniel Norman276f0622019-07-26 14:13:51 -0700965def BuildVBMeta(image_path, partitions, name, needed_partitions):
966 """Creates a VBMeta image.
967
968 It generates the requested VBMeta image. The requested image could be for
969 top-level or chained VBMeta image, which is determined based on the name.
970
971 Args:
972 image_path: The output path for the new VBMeta image.
973 partitions: A dict that's keyed by partition names with image paths as
974 values. Only valid partition names are accepted, as listed in
975 common.AVB_PARTITIONS.
976 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
977 needed_partitions: Partitions whose descriptors should be included into the
978 generated VBMeta image.
979
980 Raises:
981 AssertionError: On invalid input args.
982 """
983 avbtool = OPTIONS.info_dict["avb_avbtool"]
984 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
985 AppendAVBSigningArgs(cmd, name)
986
987 for partition, path in partitions.items():
988 if partition not in needed_partitions:
989 continue
990 assert (partition in AVB_PARTITIONS or
991 partition in AVB_VBMETA_PARTITIONS), \
992 'Unknown partition: {}'.format(partition)
993 assert os.path.exists(path), \
994 'Failed to find {} for {}'.format(path, partition)
995 cmd.extend(GetAvbPartitionArg(partition, path))
996
997 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
998 if args and args.strip():
999 split_args = shlex.split(args)
1000 for index, arg in enumerate(split_args[:-1]):
1001 # Sanity check that the image file exists. Some images might be defined
1002 # as a path relative to source tree, which may not be available at the
1003 # same location when running this script (we have the input target_files
1004 # zip only). For such cases, we additionally scan other locations (e.g.
1005 # IMAGES/, RADIO/, etc) before bailing out.
1006 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001007 chained_image = split_args[index + 1]
1008 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001009 continue
1010 found = False
1011 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1012 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001013 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001014 if os.path.exists(alt_path):
1015 split_args[index + 1] = alt_path
1016 found = True
1017 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001018 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001019 cmd.extend(split_args)
1020
1021 RunAndCheckOutput(cmd)
1022
Tianjie Xueaed60c2020-03-12 00:33:28 -07001023 # Generate the AFTL inclusion proof.
Dan Austin52903642019-12-12 15:44:00 -08001024 if OPTIONS.aftl_server is not None:
Tianjie Xueaed60c2020-03-12 00:33:28 -07001025 AddAftlInclusionProof(image_path)
1026
Daniel Norman276f0622019-07-26 14:13:51 -07001027
Steve Mucklee1b10862019-07-10 10:49:37 -07001028def _MakeRamdisk(sourcedir, fs_config_file=None):
1029 ramdisk_img = tempfile.NamedTemporaryFile()
1030
1031 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1032 cmd = ["mkbootfs", "-f", fs_config_file,
1033 os.path.join(sourcedir, "RAMDISK")]
1034 else:
1035 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1036 p1 = Run(cmd, stdout=subprocess.PIPE)
1037 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
1038
1039 p2.wait()
1040 p1.wait()
1041 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
1042 assert p2.returncode == 0, "minigzip of %s ramdisk failed" % (sourcedir,)
1043
1044 return ramdisk_img
1045
1046
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001047def _BuildBootableImage(sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001048 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001049 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001050
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001051 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001052 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1053 we are building a two-step special image (i.e. building a recovery image to
1054 be loaded into /boot in two-step OTAs).
1055
1056 Return the image data, or None if sourcedir does not appear to contains files
1057 for building the requested image.
1058 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001059
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001060 if not os.access(os.path.join(sourcedir, "kernel"), os.F_OK):
1061 return None
1062
1063 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001064 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001065
Doug Zongkerd5131602012-08-02 14:46:42 -07001066 if info_dict is None:
1067 info_dict = OPTIONS.info_dict
1068
Doug Zongkereef39442009-04-02 12:14:19 -07001069 img = tempfile.NamedTemporaryFile()
1070
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001071 if has_ramdisk:
Steve Mucklee1b10862019-07-10 10:49:37 -07001072 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file)
Doug Zongkereef39442009-04-02 12:14:19 -07001073
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001074 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1075 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1076
1077 cmd = [mkbootimg, "--kernel", os.path.join(sourcedir, "kernel")]
Doug Zongker38a649f2009-06-17 09:07:09 -07001078
Benoit Fradina45a8682014-07-14 21:00:43 +02001079 fn = os.path.join(sourcedir, "second")
1080 if os.access(fn, os.F_OK):
1081 cmd.append("--second")
1082 cmd.append(fn)
1083
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001084 fn = os.path.join(sourcedir, "dtb")
1085 if os.access(fn, os.F_OK):
1086 cmd.append("--dtb")
1087 cmd.append(fn)
1088
Doug Zongker171f1cd2009-06-15 22:36:37 -07001089 fn = os.path.join(sourcedir, "cmdline")
1090 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001091 cmd.append("--cmdline")
1092 cmd.append(open(fn).read().rstrip("\n"))
1093
1094 fn = os.path.join(sourcedir, "base")
1095 if os.access(fn, os.F_OK):
1096 cmd.append("--base")
1097 cmd.append(open(fn).read().rstrip("\n"))
1098
Ying Wang4de6b5b2010-08-25 14:29:34 -07001099 fn = os.path.join(sourcedir, "pagesize")
1100 if os.access(fn, os.F_OK):
1101 cmd.append("--pagesize")
1102 cmd.append(open(fn).read().rstrip("\n"))
1103
Tao Bao76def242017-11-21 09:25:31 -08001104 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001105 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001106 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001107
Tao Bao76def242017-11-21 09:25:31 -08001108 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +00001109 if args and args.strip():
1110 cmd.extend(shlex.split(args))
1111
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001112 if has_ramdisk:
1113 cmd.extend(["--ramdisk", ramdisk_img.name])
1114
Tao Baod95e9fd2015-03-29 23:07:41 -07001115 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001116 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001117 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001118 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001119 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001120 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001121
Tao Baobf70c312017-07-11 17:27:55 -07001122 # "boot" or "recovery", without extension.
1123 partition_name = os.path.basename(sourcedir).lower()
1124
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001125 if partition_name == "recovery":
1126 if info_dict.get("include_recovery_dtbo") == "true":
1127 fn = os.path.join(sourcedir, "recovery_dtbo")
1128 cmd.extend(["--recovery_dtbo", fn])
1129 if info_dict.get("include_recovery_acpio") == "true":
1130 fn = os.path.join(sourcedir, "recovery_acpio")
1131 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001132
Tao Bao986ee862018-10-04 15:46:16 -07001133 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001134
Tao Bao76def242017-11-21 09:25:31 -08001135 if (info_dict.get("boot_signer") == "true" and
1136 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001137 # Hard-code the path as "/boot" for two-step special recovery image (which
1138 # will be loaded into /boot during the two-step OTA).
1139 if two_step_image:
1140 path = "/boot"
1141 else:
Tao Baobf70c312017-07-11 17:27:55 -07001142 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001143 cmd = [OPTIONS.boot_signer_path]
1144 cmd.extend(OPTIONS.boot_signer_args)
1145 cmd.extend([path, img.name,
1146 info_dict["verity_key"] + ".pk8",
1147 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001148 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001149
Tao Baod95e9fd2015-03-29 23:07:41 -07001150 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001151 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001152 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001153 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001154 # We have switched from the prebuilt futility binary to using the tool
1155 # (futility-host) built from the source. Override the setting in the old
1156 # TF.zip.
1157 futility = info_dict["futility"]
1158 if futility.startswith("prebuilts/"):
1159 futility = "futility-host"
1160 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001161 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001162 info_dict["vboot_key"] + ".vbprivk",
1163 info_dict["vboot_subkey"] + ".vbprivk",
1164 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001165 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001166 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001167
Tao Baof3282b42015-04-01 11:21:55 -07001168 # Clean up the temp files.
1169 img_unsigned.close()
1170 img_keyblock.close()
1171
David Zeuthen8fecb282017-12-01 16:24:01 -05001172 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001173 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001174 avbtool = info_dict["avb_avbtool"]
David Zeuthen8fecb282017-12-01 16:24:01 -05001175 part_size = info_dict[partition_name + "_size"]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001176 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001177 "--partition_size", str(part_size), "--partition_name",
1178 partition_name]
1179 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001180 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001181 if args and args.strip():
1182 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001183 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001184
1185 img.seek(os.SEEK_SET, 0)
1186 data = img.read()
1187
1188 if has_ramdisk:
1189 ramdisk_img.close()
1190 img.close()
1191
1192 return data
1193
1194
Doug Zongkerd5131602012-08-02 14:46:42 -07001195def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001196 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001197 """Return a File object with the desired bootable image.
1198
1199 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1200 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1201 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001202
Doug Zongker55d93282011-01-25 17:03:34 -08001203 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1204 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001205 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001206 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001207
1208 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1209 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001210 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001211 return File.FromLocalFile(name, prebuilt_path)
1212
Tao Bao32fcdab2018-10-12 10:30:39 -07001213 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001214
1215 if info_dict is None:
1216 info_dict = OPTIONS.info_dict
1217
1218 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -08001219 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
1220 # for recovery.
1221 has_ramdisk = (info_dict.get("system_root_image") != "true" or
1222 prebuilt_name != "boot.img" or
1223 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001224
Doug Zongker6f1d0312014-08-22 08:07:12 -07001225 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001226 data = _BuildBootableImage(os.path.join(unpack_dir, tree_subdir),
1227 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001228 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001229 if data:
1230 return File(name, data)
1231 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001232
Doug Zongkereef39442009-04-02 12:14:19 -07001233
Steve Mucklee1b10862019-07-10 10:49:37 -07001234def _BuildVendorBootImage(sourcedir, info_dict=None):
1235 """Build a vendor boot image from the specified sourcedir.
1236
1237 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1238 turn them into a vendor boot image.
1239
1240 Return the image data, or None if sourcedir does not appear to contains files
1241 for building the requested image.
1242 """
1243
1244 if info_dict is None:
1245 info_dict = OPTIONS.info_dict
1246
1247 img = tempfile.NamedTemporaryFile()
1248
1249 ramdisk_img = _MakeRamdisk(sourcedir)
1250
1251 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1252 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1253
1254 cmd = [mkbootimg]
1255
1256 fn = os.path.join(sourcedir, "dtb")
1257 if os.access(fn, os.F_OK):
1258 cmd.append("--dtb")
1259 cmd.append(fn)
1260
1261 fn = os.path.join(sourcedir, "vendor_cmdline")
1262 if os.access(fn, os.F_OK):
1263 cmd.append("--vendor_cmdline")
1264 cmd.append(open(fn).read().rstrip("\n"))
1265
1266 fn = os.path.join(sourcedir, "base")
1267 if os.access(fn, os.F_OK):
1268 cmd.append("--base")
1269 cmd.append(open(fn).read().rstrip("\n"))
1270
1271 fn = os.path.join(sourcedir, "pagesize")
1272 if os.access(fn, os.F_OK):
1273 cmd.append("--pagesize")
1274 cmd.append(open(fn).read().rstrip("\n"))
1275
1276 args = info_dict.get("mkbootimg_args")
1277 if args and args.strip():
1278 cmd.extend(shlex.split(args))
1279
1280 args = info_dict.get("mkbootimg_version_args")
1281 if args and args.strip():
1282 cmd.extend(shlex.split(args))
1283
1284 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1285 cmd.extend(["--vendor_boot", img.name])
1286
1287 RunAndCheckOutput(cmd)
1288
1289 # AVB: if enabled, calculate and add hash.
1290 if info_dict.get("avb_enable") == "true":
1291 avbtool = info_dict["avb_avbtool"]
1292 part_size = info_dict["vendor_boot_size"]
1293 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001294 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001295 AppendAVBSigningArgs(cmd, "vendor_boot")
1296 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1297 if args and args.strip():
1298 cmd.extend(shlex.split(args))
1299 RunAndCheckOutput(cmd)
1300
1301 img.seek(os.SEEK_SET, 0)
1302 data = img.read()
1303
1304 ramdisk_img.close()
1305 img.close()
1306
1307 return data
1308
1309
1310def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1311 info_dict=None):
1312 """Return a File object with the desired vendor boot image.
1313
1314 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1315 the source files in 'unpack_dir'/'tree_subdir'."""
1316
1317 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1318 if os.path.exists(prebuilt_path):
1319 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1320 return File.FromLocalFile(name, prebuilt_path)
1321
1322 logger.info("building image from target_files %s...", tree_subdir)
1323
1324 if info_dict is None:
1325 info_dict = OPTIONS.info_dict
1326
1327 data = _BuildVendorBootImage(os.path.join(unpack_dir, tree_subdir), info_dict)
1328 if data:
1329 return File(name, data)
1330 return None
1331
1332
Narayan Kamatha07bf042017-08-14 14:49:21 +01001333def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001334 """Gunzips the given gzip compressed file to a given output file."""
1335 with gzip.open(in_filename, "rb") as in_file, \
1336 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001337 shutil.copyfileobj(in_file, out_file)
1338
1339
Tao Bao0ff15de2019-03-20 11:26:06 -07001340def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001341 """Unzips the archive to the given directory.
1342
1343 Args:
1344 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001345 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001346 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1347 archvie. Non-matching patterns will be filtered out. If there's no match
1348 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001349 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001350 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001351 if patterns is not None:
1352 # Filter out non-matching patterns. unzip will complain otherwise.
1353 with zipfile.ZipFile(filename) as input_zip:
1354 names = input_zip.namelist()
1355 filtered = [
1356 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1357
1358 # There isn't any matching files. Don't unzip anything.
1359 if not filtered:
1360 return
1361 cmd.extend(filtered)
1362
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001363 RunAndCheckOutput(cmd)
1364
1365
Doug Zongker75f17362009-12-08 13:46:44 -08001366def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001367 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001368
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001369 Args:
1370 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1371 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1372
1373 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1374 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001375
Tao Bao1c830bf2017-12-25 10:43:47 -08001376 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001377 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001378 """
Doug Zongkereef39442009-04-02 12:14:19 -07001379
Tao Bao1c830bf2017-12-25 10:43:47 -08001380 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001381 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1382 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001383 UnzipToDir(m.group(1), tmp, pattern)
1384 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001385 filename = m.group(1)
1386 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001387 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001388
Tao Baodba59ee2018-01-09 13:21:02 -08001389 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001390
1391
Yifan Hong8a66a712019-04-04 15:37:57 -07001392def GetUserImage(which, tmpdir, input_zip,
1393 info_dict=None,
1394 allow_shared_blocks=None,
1395 hashtree_info_generator=None,
1396 reset_file_map=False):
1397 """Returns an Image object suitable for passing to BlockImageDiff.
1398
1399 This function loads the specified image from the given path. If the specified
1400 image is sparse, it also performs additional processing for OTA purpose. For
1401 example, it always adds block 0 to clobbered blocks list. It also detects
1402 files that cannot be reconstructed from the block list, for whom we should
1403 avoid applying imgdiff.
1404
1405 Args:
1406 which: The partition name.
1407 tmpdir: The directory that contains the prebuilt image and block map file.
1408 input_zip: The target-files ZIP archive.
1409 info_dict: The dict to be looked up for relevant info.
1410 allow_shared_blocks: If image is sparse, whether having shared blocks is
1411 allowed. If none, it is looked up from info_dict.
1412 hashtree_info_generator: If present and image is sparse, generates the
1413 hashtree_info for this sparse image.
1414 reset_file_map: If true and image is sparse, reset file map before returning
1415 the image.
1416 Returns:
1417 A Image object. If it is a sparse image and reset_file_map is False, the
1418 image will have file_map info loaded.
1419 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001420 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07001421 info_dict = LoadInfoDict(input_zip)
1422
1423 is_sparse = info_dict.get("extfs_sparse_flag")
1424
1425 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
1426 # shared blocks (i.e. some blocks will show up in multiple files' block
1427 # list). We can only allocate such shared blocks to the first "owner", and
1428 # disable imgdiff for all later occurrences.
1429 if allow_shared_blocks is None:
1430 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
1431
1432 if is_sparse:
1433 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1434 hashtree_info_generator)
1435 if reset_file_map:
1436 img.ResetFileMap()
1437 return img
1438 else:
1439 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
1440
1441
1442def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
1443 """Returns a Image object suitable for passing to BlockImageDiff.
1444
1445 This function loads the specified non-sparse image from the given path.
1446
1447 Args:
1448 which: The partition name.
1449 tmpdir: The directory that contains the prebuilt image and block map file.
1450 Returns:
1451 A Image object.
1452 """
1453 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1454 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1455
1456 # The image and map files must have been created prior to calling
1457 # ota_from_target_files.py (since LMP).
1458 assert os.path.exists(path) and os.path.exists(mappath)
1459
Tianjie Xu41976c72019-07-03 13:57:01 -07001460 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
1461
Yifan Hong8a66a712019-04-04 15:37:57 -07001462
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001463def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1464 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08001465 """Returns a SparseImage object suitable for passing to BlockImageDiff.
1466
1467 This function loads the specified sparse image from the given path, and
1468 performs additional processing for OTA purpose. For example, it always adds
1469 block 0 to clobbered blocks list. It also detects files that cannot be
1470 reconstructed from the block list, for whom we should avoid applying imgdiff.
1471
1472 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07001473 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08001474 tmpdir: The directory that contains the prebuilt image and block map file.
1475 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08001476 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001477 hashtree_info_generator: If present, generates the hashtree_info for this
1478 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08001479 Returns:
1480 A SparseImage object, with file_map info loaded.
1481 """
Tao Baoc765cca2018-01-31 17:32:40 -08001482 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1483 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1484
1485 # The image and map files must have been created prior to calling
1486 # ota_from_target_files.py (since LMP).
1487 assert os.path.exists(path) and os.path.exists(mappath)
1488
1489 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
1490 # it to clobbered_blocks so that it will be written to the target
1491 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
1492 clobbered_blocks = "0"
1493
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001494 image = sparse_img.SparseImage(
1495 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
1496 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08001497
1498 # block.map may contain less blocks, because mke2fs may skip allocating blocks
1499 # if they contain all zeros. We can't reconstruct such a file from its block
1500 # list. Tag such entries accordingly. (Bug: 65213616)
1501 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08001502 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07001503 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08001504 continue
1505
Tom Cherryd14b8952018-08-09 14:26:00 -07001506 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
1507 # filename listed in system.map may contain an additional leading slash
1508 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
1509 # results.
Tao Baoda30cfa2017-12-01 16:19:46 -08001510 arcname = entry.replace(which, which.upper(), 1).lstrip('/')
Tao Baod3554e62018-07-10 15:31:22 -07001511
Tom Cherryd14b8952018-08-09 14:26:00 -07001512 # Special handling another case, where files not under /system
1513 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
Tao Baod3554e62018-07-10 15:31:22 -07001514 if which == 'system' and not arcname.startswith('SYSTEM'):
1515 arcname = 'ROOT/' + arcname
1516
1517 assert arcname in input_zip.namelist(), \
1518 "Failed to find the ZIP entry for {}".format(entry)
1519
Tao Baoc765cca2018-01-31 17:32:40 -08001520 info = input_zip.getinfo(arcname)
1521 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08001522
1523 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08001524 # image, check the original block list to determine its completeness. Note
1525 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08001526 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08001527 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08001528
Tao Baoc765cca2018-01-31 17:32:40 -08001529 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
1530 ranges.extra['incomplete'] = True
1531
1532 return image
1533
1534
Doug Zongkereef39442009-04-02 12:14:19 -07001535def GetKeyPasswords(keylist):
1536 """Given a list of keys, prompt the user to enter passwords for
1537 those which require them. Return a {key: password} dict. password
1538 will be None if the key has no password."""
1539
Doug Zongker8ce7c252009-05-22 13:34:54 -07001540 no_passwords = []
1541 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07001542 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07001543 devnull = open("/dev/null", "w+b")
1544 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001545 # We don't need a password for things that aren't really keys.
1546 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001547 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07001548 continue
1549
T.R. Fullhart37e10522013-03-18 10:31:26 -07001550 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07001551 "-inform", "DER", "-nocrypt"],
1552 stdin=devnull.fileno(),
1553 stdout=devnull.fileno(),
1554 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07001555 p.communicate()
1556 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001557 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07001558 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001559 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001560 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
1561 "-inform", "DER", "-passin", "pass:"],
1562 stdin=devnull.fileno(),
1563 stdout=devnull.fileno(),
1564 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07001565 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07001566 if p.returncode == 0:
1567 # Encrypted key with empty string as password.
1568 key_passwords[k] = ''
1569 elif stderr.startswith('Error decrypting key'):
1570 # Definitely encrypted key.
1571 # It would have said "Error reading key" if it didn't parse correctly.
1572 need_passwords.append(k)
1573 else:
1574 # Potentially, a type of key that openssl doesn't understand.
1575 # We'll let the routines in signapk.jar handle it.
1576 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001577 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07001578
T.R. Fullhart37e10522013-03-18 10:31:26 -07001579 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08001580 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07001581 return key_passwords
1582
1583
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001584def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07001585 """Gets the minSdkVersion declared in the APK.
1586
changho.shin0f125362019-07-08 10:59:00 +09001587 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07001588 This can be both a decimal number (API Level) or a codename.
1589
1590 Args:
1591 apk_name: The APK filename.
1592
1593 Returns:
1594 The parsed SDK version string.
1595
1596 Raises:
1597 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001598 """
Tao Baof47bf0f2018-03-21 23:28:51 -07001599 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09001600 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07001601 stderr=subprocess.PIPE)
1602 stdoutdata, stderrdata = proc.communicate()
1603 if proc.returncode != 0:
1604 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09001605 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07001606 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001607
Tao Baof47bf0f2018-03-21 23:28:51 -07001608 for line in stdoutdata.split("\n"):
1609 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001610 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
1611 if m:
1612 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09001613 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001614
1615
1616def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07001617 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001618
Tao Baof47bf0f2018-03-21 23:28:51 -07001619 If minSdkVersion is set to a codename, it is translated to a number using the
1620 provided map.
1621
1622 Args:
1623 apk_name: The APK filename.
1624
1625 Returns:
1626 The parsed SDK version number.
1627
1628 Raises:
1629 ExternalError: On failing to get the min SDK version number.
1630 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001631 version = GetMinSdkVersion(apk_name)
1632 try:
1633 return int(version)
1634 except ValueError:
1635 # Not a decimal number. Codename?
1636 if version in codename_to_api_level_map:
1637 return codename_to_api_level_map[version]
1638 else:
Tao Baof47bf0f2018-03-21 23:28:51 -07001639 raise ExternalError(
1640 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
1641 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001642
1643
1644def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07001645 codename_to_api_level_map=None, whole_file=False,
1646 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07001647 """Sign the input_name zip/jar/apk, producing output_name. Use the
1648 given key and password (the latter may be None if the key does not
1649 have a password.
1650
Doug Zongker951495f2009-08-14 12:44:19 -07001651 If whole_file is true, use the "-w" option to SignApk to embed a
1652 signature that covers the whole file in the archive comment of the
1653 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001654
1655 min_api_level is the API Level (int) of the oldest platform this file may end
1656 up on. If not specified for an APK, the API Level is obtained by interpreting
1657 the minSdkVersion attribute of the APK's AndroidManifest.xml.
1658
1659 codename_to_api_level_map is needed to translate the codename which may be
1660 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07001661
1662 Caller may optionally specify extra args to be passed to SignApk, which
1663 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07001664 """
Tao Bao76def242017-11-21 09:25:31 -08001665 if codename_to_api_level_map is None:
1666 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07001667 if extra_signapk_args is None:
1668 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07001669
Alex Klyubin9667b182015-12-10 13:38:50 -08001670 java_library_path = os.path.join(
1671 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
1672
Tao Baoe95540e2016-11-08 12:08:53 -08001673 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
1674 ["-Djava.library.path=" + java_library_path,
1675 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07001676 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07001677 if whole_file:
1678 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001679
1680 min_sdk_version = min_api_level
1681 if min_sdk_version is None:
1682 if not whole_file:
1683 min_sdk_version = GetMinSdkVersionInt(
1684 input_name, codename_to_api_level_map)
1685 if min_sdk_version is not None:
1686 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
1687
T.R. Fullhart37e10522013-03-18 10:31:26 -07001688 cmd.extend([key + OPTIONS.public_key_suffix,
1689 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08001690 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07001691
Tao Bao73dd4f42018-10-04 16:25:33 -07001692 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07001693 if password is not None:
1694 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07001695 stdoutdata, _ = proc.communicate(password)
1696 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07001697 raise ExternalError(
1698 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07001699 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07001700
Doug Zongkereef39442009-04-02 12:14:19 -07001701
Doug Zongker37974732010-09-16 17:44:38 -07001702def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08001703 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07001704
Tao Bao9dd909e2017-11-14 11:27:32 -08001705 For non-AVB images, raise exception if the data is too big. Print a warning
1706 if the data is nearing the maximum size.
1707
1708 For AVB images, the actual image size should be identical to the limit.
1709
1710 Args:
1711 data: A string that contains all the data for the partition.
1712 target: The partition name. The ".img" suffix is optional.
1713 info_dict: The dict to be looked up for relevant info.
1714 """
Dan Albert8b72aef2015-03-23 19:13:21 -07001715 if target.endswith(".img"):
1716 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001717 mount_point = "/" + target
1718
Ying Wangf8824af2014-06-03 14:07:27 -07001719 fs_type = None
1720 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001721 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07001722 if mount_point == "/userdata":
1723 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001724 p = info_dict["fstab"][mount_point]
1725 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08001726 device = p.device
1727 if "/" in device:
1728 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08001729 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07001730 if not fs_type or not limit:
1731 return
Doug Zongkereef39442009-04-02 12:14:19 -07001732
Andrew Boie0f9aec82012-02-14 09:32:52 -08001733 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08001734 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
1735 # path.
1736 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
1737 if size != limit:
1738 raise ExternalError(
1739 "Mismatching image size for %s: expected %d actual %d" % (
1740 target, limit, size))
1741 else:
1742 pct = float(size) * 100.0 / limit
1743 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
1744 if pct >= 99.0:
1745 raise ExternalError(msg)
1746 elif pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07001747 logger.warning("\n WARNING: %s\n", msg)
1748 else:
1749 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07001750
1751
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001752def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08001753 """Parses the APK certs info from a given target-files zip.
1754
1755 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
1756 tuple with the following elements: (1) a dictionary that maps packages to
1757 certs (based on the "certificate" and "private_key" attributes in the file;
1758 (2) a string representing the extension of compressed APKs in the target files
1759 (e.g ".gz", ".bro").
1760
1761 Args:
1762 tf_zip: The input target_files ZipFile (already open).
1763
1764 Returns:
1765 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
1766 the extension string of compressed APKs (e.g. ".gz"), or None if there's
1767 no compressed APKs.
1768 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001769 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01001770 compressed_extension = None
1771
Tao Bao0f990332017-09-08 19:02:54 -07001772 # META/apkcerts.txt contains the info for _all_ the packages known at build
1773 # time. Filter out the ones that are not installed.
1774 installed_files = set()
1775 for name in tf_zip.namelist():
1776 basename = os.path.basename(name)
1777 if basename:
1778 installed_files.add(basename)
1779
Tao Baoda30cfa2017-12-01 16:19:46 -08001780 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001781 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001782 if not line:
1783 continue
Tao Bao818ddf52018-01-05 11:17:34 -08001784 m = re.match(
1785 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham19c3feb2020-03-20 18:31:43 -07001786 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*)")?'
1787 r'(\s+partition="(?P<PARTITION>.*)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08001788 line)
1789 if not m:
1790 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01001791
Tao Bao818ddf52018-01-05 11:17:34 -08001792 matches = m.groupdict()
1793 cert = matches["CERT"]
1794 privkey = matches["PRIVKEY"]
1795 name = matches["NAME"]
1796 this_compressed_extension = matches["COMPRESSED"]
1797
1798 public_key_suffix_len = len(OPTIONS.public_key_suffix)
1799 private_key_suffix_len = len(OPTIONS.private_key_suffix)
1800 if cert in SPECIAL_CERT_STRINGS and not privkey:
1801 certmap[name] = cert
1802 elif (cert.endswith(OPTIONS.public_key_suffix) and
1803 privkey.endswith(OPTIONS.private_key_suffix) and
1804 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
1805 certmap[name] = cert[:-public_key_suffix_len]
1806 else:
1807 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
1808
1809 if not this_compressed_extension:
1810 continue
1811
1812 # Only count the installed files.
1813 filename = name + '.' + this_compressed_extension
1814 if filename not in installed_files:
1815 continue
1816
1817 # Make sure that all the values in the compression map have the same
1818 # extension. We don't support multiple compression methods in the same
1819 # system image.
1820 if compressed_extension:
1821 if this_compressed_extension != compressed_extension:
1822 raise ValueError(
1823 "Multiple compressed extensions: {} vs {}".format(
1824 compressed_extension, this_compressed_extension))
1825 else:
1826 compressed_extension = this_compressed_extension
1827
1828 return (certmap,
1829 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001830
1831
Doug Zongkereef39442009-04-02 12:14:19 -07001832COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07001833Global options
1834
1835 -p (--path) <dir>
1836 Prepend <dir>/bin to the list of places to search for binaries run by this
1837 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07001838
Doug Zongker05d3dea2009-06-22 11:32:31 -07001839 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07001840 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07001841
Tao Bao30df8b42018-04-23 15:32:53 -07001842 -x (--extra) <key=value>
1843 Add a key/value pair to the 'extras' dict, which device-specific extension
1844 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08001845
Doug Zongkereef39442009-04-02 12:14:19 -07001846 -v (--verbose)
1847 Show command lines being executed.
1848
1849 -h (--help)
1850 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07001851
1852 --logfile <file>
1853 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07001854"""
1855
1856def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08001857 print(docstring.rstrip("\n"))
1858 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07001859
1860
1861def ParseOptions(argv,
1862 docstring,
1863 extra_opts="", extra_long_opts=(),
1864 extra_option_handler=None):
1865 """Parse the options in argv and return any arguments that aren't
1866 flags. docstring is the calling module's docstring, to be displayed
1867 for errors and -h. extra_opts and extra_long_opts are for flags
1868 defined by the caller, which are processed by passing them to
1869 extra_option_handler."""
1870
1871 try:
1872 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08001873 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08001874 ["help", "verbose", "path=", "signapk_path=",
1875 "signapk_shared_library_path=", "extra_signapk_args=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08001876 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07001877 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
1878 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Dan Austin52903642019-12-12 15:44:00 -08001879 "extra=", "logfile=", "aftl_server=", "aftl_key_path=",
1880 "aftl_manufacturer_key_path=", "aftl_signer_helper="] +
T.R. Fullhart37e10522013-03-18 10:31:26 -07001881 list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07001882 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07001883 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08001884 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07001885 sys.exit(2)
1886
Doug Zongkereef39442009-04-02 12:14:19 -07001887 for o, a in opts:
1888 if o in ("-h", "--help"):
1889 Usage(docstring)
1890 sys.exit()
1891 elif o in ("-v", "--verbose"):
1892 OPTIONS.verbose = True
1893 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07001894 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001895 elif o in ("--signapk_path",):
1896 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08001897 elif o in ("--signapk_shared_library_path",):
1898 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001899 elif o in ("--extra_signapk_args",):
1900 OPTIONS.extra_signapk_args = shlex.split(a)
1901 elif o in ("--java_path",):
1902 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07001903 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08001904 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08001905 elif o in ("--android_jar_path",):
1906 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001907 elif o in ("--public_key_suffix",):
1908 OPTIONS.public_key_suffix = a
1909 elif o in ("--private_key_suffix",):
1910 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08001911 elif o in ("--boot_signer_path",):
1912 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07001913 elif o in ("--boot_signer_args",):
1914 OPTIONS.boot_signer_args = shlex.split(a)
1915 elif o in ("--verity_signer_path",):
1916 OPTIONS.verity_signer_path = a
1917 elif o in ("--verity_signer_args",):
1918 OPTIONS.verity_signer_args = shlex.split(a)
Dan Austin52903642019-12-12 15:44:00 -08001919 elif o in ("--aftl_server",):
1920 OPTIONS.aftl_server = a
1921 elif o in ("--aftl_key_path",):
1922 OPTIONS.aftl_key_path = a
1923 elif o in ("--aftl_manufacturer_key_path",):
1924 OPTIONS.aftl_manufacturer_key_path = a
1925 elif o in ("--aftl_signer_helper",):
1926 OPTIONS.aftl_signer_helper = a
Doug Zongker05d3dea2009-06-22 11:32:31 -07001927 elif o in ("-s", "--device_specific"):
1928 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08001929 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08001930 key, value = a.split("=", 1)
1931 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07001932 elif o in ("--logfile",):
1933 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07001934 else:
1935 if extra_option_handler is None or not extra_option_handler(o, a):
1936 assert False, "unknown option \"%s\"" % (o,)
1937
Doug Zongker85448772014-09-09 14:59:20 -07001938 if OPTIONS.search_path:
1939 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
1940 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07001941
1942 return args
1943
1944
Tao Bao4c851b12016-09-19 13:54:38 -07001945def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07001946 """Make a temp file and add it to the list of things to be deleted
1947 when Cleanup() is called. Return the filename."""
1948 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
1949 os.close(fd)
1950 OPTIONS.tempfiles.append(fn)
1951 return fn
1952
1953
Tao Bao1c830bf2017-12-25 10:43:47 -08001954def MakeTempDir(prefix='tmp', suffix=''):
1955 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
1956
1957 Returns:
1958 The absolute pathname of the new directory.
1959 """
1960 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
1961 OPTIONS.tempfiles.append(dir_name)
1962 return dir_name
1963
1964
Doug Zongkereef39442009-04-02 12:14:19 -07001965def Cleanup():
1966 for i in OPTIONS.tempfiles:
1967 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08001968 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07001969 else:
1970 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08001971 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07001972
1973
1974class PasswordManager(object):
1975 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08001976 self.editor = os.getenv("EDITOR")
1977 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001978
1979 def GetPasswords(self, items):
1980 """Get passwords corresponding to each string in 'items',
1981 returning a dict. (The dict may have keys in addition to the
1982 values in 'items'.)
1983
1984 Uses the passwords in $ANDROID_PW_FILE if available, letting the
1985 user edit that file to add more needed passwords. If no editor is
1986 available, or $ANDROID_PW_FILE isn't define, prompts the user
1987 interactively in the ordinary way.
1988 """
1989
1990 current = self.ReadFile()
1991
1992 first = True
1993 while True:
1994 missing = []
1995 for i in items:
1996 if i not in current or not current[i]:
1997 missing.append(i)
1998 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07001999 if not missing:
2000 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002001
2002 for i in missing:
2003 current[i] = ""
2004
2005 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002006 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002007 if sys.version_info[0] >= 3:
2008 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002009 answer = raw_input("try to edit again? [y]> ").strip()
2010 if answer and answer[0] not in 'yY':
2011 raise RuntimeError("key passwords unavailable")
2012 first = False
2013
2014 current = self.UpdateAndReadFile(current)
2015
Dan Albert8b72aef2015-03-23 19:13:21 -07002016 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002017 """Prompt the user to enter a value (password) for each key in
2018 'current' whose value is fales. Returns a new dict with all the
2019 values.
2020 """
2021 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002022 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002023 if v:
2024 result[k] = v
2025 else:
2026 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002027 result[k] = getpass.getpass(
2028 "Enter password for %s key> " % k).strip()
2029 if result[k]:
2030 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002031 return result
2032
2033 def UpdateAndReadFile(self, current):
2034 if not self.editor or not self.pwfile:
2035 return self.PromptResult(current)
2036
2037 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002038 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002039 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2040 f.write("# (Additional spaces are harmless.)\n\n")
2041
2042 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002043 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002044 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002045 f.write("[[[ %s ]]] %s\n" % (v, k))
2046 if not v and first_line is None:
2047 # position cursor on first line with no password.
2048 first_line = i + 4
2049 f.close()
2050
Tao Bao986ee862018-10-04 15:46:16 -07002051 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002052
2053 return self.ReadFile()
2054
2055 def ReadFile(self):
2056 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002057 if self.pwfile is None:
2058 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002059 try:
2060 f = open(self.pwfile, "r")
2061 for line in f:
2062 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002063 if not line or line[0] == '#':
2064 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002065 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2066 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002067 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002068 else:
2069 result[m.group(2)] = m.group(1)
2070 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002071 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002072 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002073 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002074 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002075
2076
Dan Albert8e0178d2015-01-27 15:53:15 -08002077def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2078 compress_type=None):
2079 import datetime
2080
2081 # http://b/18015246
2082 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2083 # for files larger than 2GiB. We can work around this by adjusting their
2084 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2085 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2086 # it isn't clear to me exactly what circumstances cause this).
2087 # `zipfile.write()` must be used directly to work around this.
2088 #
2089 # This mess can be avoided if we port to python3.
2090 saved_zip64_limit = zipfile.ZIP64_LIMIT
2091 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2092
2093 if compress_type is None:
2094 compress_type = zip_file.compression
2095 if arcname is None:
2096 arcname = filename
2097
2098 saved_stat = os.stat(filename)
2099
2100 try:
2101 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2102 # file to be zipped and reset it when we're done.
2103 os.chmod(filename, perms)
2104
2105 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002106 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2107 # intentional. zip stores datetimes in local time without a time zone
2108 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2109 # in the zip archive.
2110 local_epoch = datetime.datetime.fromtimestamp(0)
2111 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002112 os.utime(filename, (timestamp, timestamp))
2113
2114 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2115 finally:
2116 os.chmod(filename, saved_stat.st_mode)
2117 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2118 zipfile.ZIP64_LIMIT = saved_zip64_limit
2119
2120
Tao Bao58c1b962015-05-20 09:32:18 -07002121def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002122 compress_type=None):
2123 """Wrap zipfile.writestr() function to work around the zip64 limit.
2124
2125 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2126 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2127 when calling crc32(bytes).
2128
2129 But it still works fine to write a shorter string into a large zip file.
2130 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2131 when we know the string won't be too long.
2132 """
2133
2134 saved_zip64_limit = zipfile.ZIP64_LIMIT
2135 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2136
2137 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2138 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002139 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002140 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002141 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002142 else:
Tao Baof3282b42015-04-01 11:21:55 -07002143 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002144 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2145 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2146 # such a case (since
2147 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2148 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2149 # permission bits. We follow the logic in Python 3 to get consistent
2150 # behavior between using the two versions.
2151 if not zinfo.external_attr:
2152 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002153
2154 # If compress_type is given, it overrides the value in zinfo.
2155 if compress_type is not None:
2156 zinfo.compress_type = compress_type
2157
Tao Bao58c1b962015-05-20 09:32:18 -07002158 # If perms is given, it has a priority.
2159 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002160 # If perms doesn't set the file type, mark it as a regular file.
2161 if perms & 0o770000 == 0:
2162 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002163 zinfo.external_attr = perms << 16
2164
Tao Baof3282b42015-04-01 11:21:55 -07002165 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002166 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2167
Dan Albert8b72aef2015-03-23 19:13:21 -07002168 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002169 zipfile.ZIP64_LIMIT = saved_zip64_limit
2170
2171
Tao Bao89d7ab22017-12-14 17:05:33 -08002172def ZipDelete(zip_filename, entries):
2173 """Deletes entries from a ZIP file.
2174
2175 Since deleting entries from a ZIP file is not supported, it shells out to
2176 'zip -d'.
2177
2178 Args:
2179 zip_filename: The name of the ZIP file.
2180 entries: The name of the entry, or the list of names to be deleted.
2181
2182 Raises:
2183 AssertionError: In case of non-zero return from 'zip'.
2184 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002185 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002186 entries = [entries]
2187 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002188 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002189
2190
Tao Baof3282b42015-04-01 11:21:55 -07002191def ZipClose(zip_file):
2192 # http://b/18015246
2193 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2194 # central directory.
2195 saved_zip64_limit = zipfile.ZIP64_LIMIT
2196 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2197
2198 zip_file.close()
2199
2200 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002201
2202
2203class DeviceSpecificParams(object):
2204 module = None
2205 def __init__(self, **kwargs):
2206 """Keyword arguments to the constructor become attributes of this
2207 object, which is passed to all functions in the device-specific
2208 module."""
Tao Bao38884282019-07-10 22:20:56 -07002209 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002210 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002211 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002212
2213 if self.module is None:
2214 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002215 if not path:
2216 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002217 try:
2218 if os.path.isdir(path):
2219 info = imp.find_module("releasetools", [path])
2220 else:
2221 d, f = os.path.split(path)
2222 b, x = os.path.splitext(f)
2223 if x == ".py":
2224 f = b
2225 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002226 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002227 self.module = imp.load_module("device_specific", *info)
2228 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002229 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002230
2231 def _DoCall(self, function_name, *args, **kwargs):
2232 """Call the named function in the device-specific module, passing
2233 the given args and kwargs. The first argument to the call will be
2234 the DeviceSpecific object itself. If there is no module, or the
2235 module does not define the function, return the value of the
2236 'default' kwarg (which itself defaults to None)."""
2237 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002238 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002239 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2240
2241 def FullOTA_Assertions(self):
2242 """Called after emitting the block of assertions at the top of a
2243 full OTA package. Implementations can add whatever additional
2244 assertions they like."""
2245 return self._DoCall("FullOTA_Assertions")
2246
Doug Zongkere5ff5902012-01-17 10:55:37 -08002247 def FullOTA_InstallBegin(self):
2248 """Called at the start of full OTA installation."""
2249 return self._DoCall("FullOTA_InstallBegin")
2250
Yifan Hong10c530d2018-12-27 17:34:18 -08002251 def FullOTA_GetBlockDifferences(self):
2252 """Called during full OTA installation and verification.
2253 Implementation should return a list of BlockDifference objects describing
2254 the update on each additional partitions.
2255 """
2256 return self._DoCall("FullOTA_GetBlockDifferences")
2257
Doug Zongker05d3dea2009-06-22 11:32:31 -07002258 def FullOTA_InstallEnd(self):
2259 """Called at the end of full OTA installation; typically this is
2260 used to install the image for the device's baseband processor."""
2261 return self._DoCall("FullOTA_InstallEnd")
2262
2263 def IncrementalOTA_Assertions(self):
2264 """Called after emitting the block of assertions at the top of an
2265 incremental OTA package. Implementations can add whatever
2266 additional assertions they like."""
2267 return self._DoCall("IncrementalOTA_Assertions")
2268
Doug Zongkere5ff5902012-01-17 10:55:37 -08002269 def IncrementalOTA_VerifyBegin(self):
2270 """Called at the start of the verification phase of incremental
2271 OTA installation; additional checks can be placed here to abort
2272 the script before any changes are made."""
2273 return self._DoCall("IncrementalOTA_VerifyBegin")
2274
Doug Zongker05d3dea2009-06-22 11:32:31 -07002275 def IncrementalOTA_VerifyEnd(self):
2276 """Called at the end of the verification phase of incremental OTA
2277 installation; additional checks can be placed here to abort the
2278 script before any changes are made."""
2279 return self._DoCall("IncrementalOTA_VerifyEnd")
2280
Doug Zongkere5ff5902012-01-17 10:55:37 -08002281 def IncrementalOTA_InstallBegin(self):
2282 """Called at the start of incremental OTA installation (after
2283 verification is complete)."""
2284 return self._DoCall("IncrementalOTA_InstallBegin")
2285
Yifan Hong10c530d2018-12-27 17:34:18 -08002286 def IncrementalOTA_GetBlockDifferences(self):
2287 """Called during incremental OTA installation and verification.
2288 Implementation should return a list of BlockDifference objects describing
2289 the update on each additional partitions.
2290 """
2291 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2292
Doug Zongker05d3dea2009-06-22 11:32:31 -07002293 def IncrementalOTA_InstallEnd(self):
2294 """Called at the end of incremental OTA installation; typically
2295 this is used to install the image for the device's baseband
2296 processor."""
2297 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002298
Tao Bao9bc6bb22015-11-09 16:58:28 -08002299 def VerifyOTA_Assertions(self):
2300 return self._DoCall("VerifyOTA_Assertions")
2301
Tao Bao76def242017-11-21 09:25:31 -08002302
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002303class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002304 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002305 self.name = name
2306 self.data = data
2307 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002308 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002309 self.sha1 = sha1(data).hexdigest()
2310
2311 @classmethod
2312 def FromLocalFile(cls, name, diskname):
2313 f = open(diskname, "rb")
2314 data = f.read()
2315 f.close()
2316 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002317
2318 def WriteToTemp(self):
2319 t = tempfile.NamedTemporaryFile()
2320 t.write(self.data)
2321 t.flush()
2322 return t
2323
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002324 def WriteToDir(self, d):
2325 with open(os.path.join(d, self.name), "wb") as fp:
2326 fp.write(self.data)
2327
Geremy Condra36bd3652014-02-06 19:45:10 -08002328 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002329 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002330
Tao Bao76def242017-11-21 09:25:31 -08002331
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002332DIFF_PROGRAM_BY_EXT = {
2333 ".gz" : "imgdiff",
2334 ".zip" : ["imgdiff", "-z"],
2335 ".jar" : ["imgdiff", "-z"],
2336 ".apk" : ["imgdiff", "-z"],
2337 ".img" : "imgdiff",
2338 }
2339
Tao Bao76def242017-11-21 09:25:31 -08002340
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002341class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002342 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002343 self.tf = tf
2344 self.sf = sf
2345 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002346 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002347
2348 def ComputePatch(self):
2349 """Compute the patch (as a string of data) needed to turn sf into
2350 tf. Returns the same tuple as GetPatch()."""
2351
2352 tf = self.tf
2353 sf = self.sf
2354
Doug Zongker24cd2802012-08-14 16:36:15 -07002355 if self.diff_program:
2356 diff_program = self.diff_program
2357 else:
2358 ext = os.path.splitext(tf.name)[1]
2359 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002360
2361 ttemp = tf.WriteToTemp()
2362 stemp = sf.WriteToTemp()
2363
2364 ext = os.path.splitext(tf.name)[1]
2365
2366 try:
2367 ptemp = tempfile.NamedTemporaryFile()
2368 if isinstance(diff_program, list):
2369 cmd = copy.copy(diff_program)
2370 else:
2371 cmd = [diff_program]
2372 cmd.append(stemp.name)
2373 cmd.append(ttemp.name)
2374 cmd.append(ptemp.name)
2375 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002376 err = []
2377 def run():
2378 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002379 if e:
2380 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002381 th = threading.Thread(target=run)
2382 th.start()
2383 th.join(timeout=300) # 5 mins
2384 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002385 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002386 p.terminate()
2387 th.join(5)
2388 if th.is_alive():
2389 p.kill()
2390 th.join()
2391
Tianjie Xua2a9f992018-01-05 15:15:54 -08002392 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002393 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002394 self.patch = None
2395 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002396 diff = ptemp.read()
2397 finally:
2398 ptemp.close()
2399 stemp.close()
2400 ttemp.close()
2401
2402 self.patch = diff
2403 return self.tf, self.sf, self.patch
2404
2405
2406 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08002407 """Returns a tuple of (target_file, source_file, patch_data).
2408
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002409 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08002410 computing the patch failed.
2411 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002412 return self.tf, self.sf, self.patch
2413
2414
2415def ComputeDifferences(diffs):
2416 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07002417 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002418
2419 # Do the largest files first, to try and reduce the long-pole effect.
2420 by_size = [(i.tf.size, i) for i in diffs]
2421 by_size.sort(reverse=True)
2422 by_size = [i[1] for i in by_size]
2423
2424 lock = threading.Lock()
2425 diff_iter = iter(by_size) # accessed under lock
2426
2427 def worker():
2428 try:
2429 lock.acquire()
2430 for d in diff_iter:
2431 lock.release()
2432 start = time.time()
2433 d.ComputePatch()
2434 dur = time.time() - start
2435 lock.acquire()
2436
2437 tf, sf, patch = d.GetPatch()
2438 if sf.name == tf.name:
2439 name = tf.name
2440 else:
2441 name = "%s (%s)" % (tf.name, sf.name)
2442 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07002443 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002444 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07002445 logger.info(
2446 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
2447 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002448 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07002449 except Exception:
2450 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002451 raise
2452
2453 # start worker threads; wait for them all to finish.
2454 threads = [threading.Thread(target=worker)
2455 for i in range(OPTIONS.worker_threads)]
2456 for th in threads:
2457 th.start()
2458 while threads:
2459 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07002460
2461
Dan Albert8b72aef2015-03-23 19:13:21 -07002462class BlockDifference(object):
2463 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07002464 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002465 self.tgt = tgt
2466 self.src = src
2467 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002468 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07002469 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002470
Tao Baodd2a5892015-03-12 12:32:37 -07002471 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08002472 version = max(
2473 int(i) for i in
2474 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08002475 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07002476 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07002477
Tianjie Xu41976c72019-07-03 13:57:01 -07002478 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
2479 version=self.version,
2480 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08002481 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002482 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08002483 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07002484 self.touched_src_ranges = b.touched_src_ranges
2485 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002486
Yifan Hong10c530d2018-12-27 17:34:18 -08002487 # On devices with dynamic partitions, for new partitions,
2488 # src is None but OPTIONS.source_info_dict is not.
2489 if OPTIONS.source_info_dict is None:
2490 is_dynamic_build = OPTIONS.info_dict.get(
2491 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002492 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07002493 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08002494 is_dynamic_build = OPTIONS.source_info_dict.get(
2495 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002496 is_dynamic_source = partition in shlex.split(
2497 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08002498
Yifan Hongbb2658d2019-01-25 12:30:58 -08002499 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08002500 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
2501
Yifan Hongbb2658d2019-01-25 12:30:58 -08002502 # For dynamic partitions builds, check partition list in both source
2503 # and target build because new partitions may be added, and existing
2504 # partitions may be removed.
2505 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
2506
Yifan Hong10c530d2018-12-27 17:34:18 -08002507 if is_dynamic:
2508 self.device = 'map_partition("%s")' % partition
2509 else:
2510 if OPTIONS.source_info_dict is None:
2511 _, device_path = GetTypeAndDevice("/" + partition, OPTIONS.info_dict)
2512 else:
2513 _, device_path = GetTypeAndDevice("/" + partition,
2514 OPTIONS.source_info_dict)
2515 self.device = '"%s"' % device_path
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002516
Tao Baod8d14be2016-02-04 14:26:02 -08002517 @property
2518 def required_cache(self):
2519 return self._required_cache
2520
Tao Bao76def242017-11-21 09:25:31 -08002521 def WriteScript(self, script, output_zip, progress=None,
2522 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002523 if not self.src:
2524 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08002525 script.Print("Patching %s image unconditionally..." % (self.partition,))
2526 else:
2527 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002528
Dan Albert8b72aef2015-03-23 19:13:21 -07002529 if progress:
2530 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002531 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08002532
2533 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08002534 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002535
Tao Bao9bc6bb22015-11-09 16:58:28 -08002536 def WriteStrictVerifyScript(self, script):
2537 """Verify all the blocks in the care_map, including clobbered blocks.
2538
2539 This differs from the WriteVerifyScript() function: a) it prints different
2540 error messages; b) it doesn't allow half-way updated images to pass the
2541 verification."""
2542
2543 partition = self.partition
2544 script.Print("Verifying %s..." % (partition,))
2545 ranges = self.tgt.care_map
2546 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002547 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002548 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
2549 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08002550 self.device, ranges_str,
2551 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08002552 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08002553 script.AppendExtra("")
2554
Tao Baod522bdc2016-04-12 15:53:16 -07002555 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00002556 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07002557
2558 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08002559 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00002560 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07002561
2562 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002563 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08002564 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07002565 ranges = self.touched_src_ranges
2566 expected_sha1 = self.touched_src_sha1
2567 else:
2568 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
2569 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07002570
2571 # No blocks to be checked, skipping.
2572 if not ranges:
2573 return
2574
Tao Bao5ece99d2015-05-12 11:42:31 -07002575 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002576 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002577 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08002578 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
2579 '"%s.patch.dat")) then' % (
2580 self.device, ranges_str, expected_sha1,
2581 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07002582 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07002583 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00002584
Tianjie Xufc3422a2015-12-15 11:53:59 -08002585 if self.version >= 4:
2586
2587 # Bug: 21124327
2588 # When generating incrementals for the system and vendor partitions in
2589 # version 4 or newer, explicitly check the first block (which contains
2590 # the superblock) of the partition to see if it's what we expect. If
2591 # this check fails, give an explicit log message about the partition
2592 # having been remounted R/W (the most likely explanation).
2593 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08002594 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08002595
2596 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07002597 if partition == "system":
2598 code = ErrorCode.SYSTEM_RECOVER_FAILURE
2599 else:
2600 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08002601 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08002602 'ifelse (block_image_recover({device}, "{ranges}") && '
2603 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08002604 'package_extract_file("{partition}.transfer.list"), '
2605 '"{partition}.new.dat", "{partition}.patch.dat"), '
2606 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07002607 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08002608 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07002609 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002610
Tao Baodd2a5892015-03-12 12:32:37 -07002611 # Abort the OTA update. Note that the incremental OTA cannot be applied
2612 # even if it may match the checksum of the target partition.
2613 # a) If version < 3, operations like move and erase will make changes
2614 # unconditionally and damage the partition.
2615 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08002616 else:
Tianjie Xu209db462016-05-24 17:34:52 -07002617 if partition == "system":
2618 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
2619 else:
2620 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
2621 script.AppendExtra((
2622 'abort("E%d: %s partition has unexpected contents");\n'
2623 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002624
Yifan Hong10c530d2018-12-27 17:34:18 -08002625 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07002626 partition = self.partition
2627 script.Print('Verifying the updated %s image...' % (partition,))
2628 # Unlike pre-install verification, clobbered_blocks should not be ignored.
2629 ranges = self.tgt.care_map
2630 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002631 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002632 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002633 self.device, ranges_str,
2634 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07002635
2636 # Bug: 20881595
2637 # Verify that extended blocks are really zeroed out.
2638 if self.tgt.extended:
2639 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002640 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002641 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002642 self.device, ranges_str,
2643 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07002644 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07002645 if partition == "system":
2646 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
2647 else:
2648 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07002649 script.AppendExtra(
2650 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002651 ' abort("E%d: %s partition has unexpected non-zero contents after '
2652 'OTA update");\n'
2653 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07002654 else:
2655 script.Print('Verified the updated %s image.' % (partition,))
2656
Tianjie Xu209db462016-05-24 17:34:52 -07002657 if partition == "system":
2658 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
2659 else:
2660 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
2661
Tao Bao5fcaaef2015-06-01 13:40:49 -07002662 script.AppendExtra(
2663 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002664 ' abort("E%d: %s partition has unexpected contents after OTA '
2665 'update");\n'
2666 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07002667
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002668 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08002669 ZipWrite(output_zip,
2670 '{}.transfer.list'.format(self.path),
2671 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002672
Tao Bao76def242017-11-21 09:25:31 -08002673 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
2674 # its size. Quailty 9 almost triples the compression time but doesn't
2675 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002676 # zip | brotli(quality 6) | brotli(quality 9)
2677 # compressed_size: 942M | 869M (~8% reduced) | 854M
2678 # compression_time: 75s | 265s | 719s
2679 # decompression_time: 15s | 25s | 25s
2680
2681 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01002682 brotli_cmd = ['brotli', '--quality=6',
2683 '--output={}.new.dat.br'.format(self.path),
2684 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002685 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07002686 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002687
2688 new_data_name = '{}.new.dat.br'.format(self.partition)
2689 ZipWrite(output_zip,
2690 '{}.new.dat.br'.format(self.path),
2691 new_data_name,
2692 compress_type=zipfile.ZIP_STORED)
2693 else:
2694 new_data_name = '{}.new.dat'.format(self.partition)
2695 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
2696
Dan Albert8e0178d2015-01-27 15:53:15 -08002697 ZipWrite(output_zip,
2698 '{}.patch.dat'.format(self.path),
2699 '{}.patch.dat'.format(self.partition),
2700 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002701
Tianjie Xu209db462016-05-24 17:34:52 -07002702 if self.partition == "system":
2703 code = ErrorCode.SYSTEM_UPDATE_FAILURE
2704 else:
2705 code = ErrorCode.VENDOR_UPDATE_FAILURE
2706
Yifan Hong10c530d2018-12-27 17:34:18 -08002707 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08002708 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002709 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002710 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002711 device=self.device, partition=self.partition,
2712 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07002713 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002714
Dan Albert8b72aef2015-03-23 19:13:21 -07002715 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00002716 data = source.ReadRangeSet(ranges)
2717 ctx = sha1()
2718
2719 for p in data:
2720 ctx.update(p)
2721
2722 return ctx.hexdigest()
2723
Tao Baoe9b61912015-07-09 17:37:49 -07002724 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
2725 """Return the hash value for all zero blocks."""
2726 zero_block = '\x00' * 4096
2727 ctx = sha1()
2728 for _ in range(num_blocks):
2729 ctx.update(zero_block)
2730
2731 return ctx.hexdigest()
2732
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002733
Tianjie Xu41976c72019-07-03 13:57:01 -07002734# Expose these two classes to support vendor-specific scripts
2735DataImage = images.DataImage
2736EmptyImage = images.EmptyImage
2737
Tao Bao76def242017-11-21 09:25:31 -08002738
Doug Zongker96a57e72010-09-26 14:57:41 -07002739# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07002740PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07002741 "ext4": "EMMC",
2742 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07002743 "f2fs": "EMMC",
2744 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07002745}
Doug Zongker96a57e72010-09-26 14:57:41 -07002746
Tao Bao76def242017-11-21 09:25:31 -08002747
Doug Zongker96a57e72010-09-26 14:57:41 -07002748def GetTypeAndDevice(mount_point, info):
2749 fstab = info["fstab"]
2750 if fstab:
Dan Albert8b72aef2015-03-23 19:13:21 -07002751 return (PARTITION_TYPES[fstab[mount_point].fs_type],
2752 fstab[mount_point].device)
Doug Zongker96a57e72010-09-26 14:57:41 -07002753 else:
Dan Albert8b72aef2015-03-23 19:13:21 -07002754 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002755
2756
2757def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08002758 """Parses and converts a PEM-encoded certificate into DER-encoded.
2759
2760 This gives the same result as `openssl x509 -in <filename> -outform DER`.
2761
2762 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08002763 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08002764 """
2765 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002766 save = False
2767 for line in data.split("\n"):
2768 if "--END CERTIFICATE--" in line:
2769 break
2770 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08002771 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002772 if "--BEGIN CERTIFICATE--" in line:
2773 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08002774 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002775 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08002776
Tao Bao04e1f012018-02-04 12:13:35 -08002777
2778def ExtractPublicKey(cert):
2779 """Extracts the public key (PEM-encoded) from the given certificate file.
2780
2781 Args:
2782 cert: The certificate filename.
2783
2784 Returns:
2785 The public key string.
2786
2787 Raises:
2788 AssertionError: On non-zero return from 'openssl'.
2789 """
2790 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
2791 # While openssl 1.1 writes the key into the given filename followed by '-out',
2792 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
2793 # stdout instead.
2794 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
2795 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
2796 pubkey, stderrdata = proc.communicate()
2797 assert proc.returncode == 0, \
2798 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
2799 return pubkey
2800
2801
Tao Bao1ac886e2019-06-26 11:58:22 -07002802def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07002803 """Extracts the AVB public key from the given public or private key.
2804
2805 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07002806 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07002807 key: The input key file, which should be PEM-encoded public or private key.
2808
2809 Returns:
2810 The path to the extracted AVB public key file.
2811 """
2812 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
2813 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07002814 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07002815 return output
2816
2817
Doug Zongker412c02f2014-02-13 10:58:24 -08002818def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
2819 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08002820 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08002821
Tao Bao6d5d6232018-03-09 17:04:42 -08002822 Most of the space in the boot and recovery images is just the kernel, which is
2823 identical for the two, so the resulting patch should be efficient. Add it to
2824 the output zip, along with a shell script that is run from init.rc on first
2825 boot to actually do the patching and install the new recovery image.
2826
2827 Args:
2828 input_dir: The top-level input directory of the target-files.zip.
2829 output_sink: The callback function that writes the result.
2830 recovery_img: File object for the recovery image.
2831 boot_img: File objects for the boot image.
2832 info_dict: A dict returned by common.LoadInfoDict() on the input
2833 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08002834 """
Doug Zongker412c02f2014-02-13 10:58:24 -08002835 if info_dict is None:
2836 info_dict = OPTIONS.info_dict
2837
Tao Bao6d5d6232018-03-09 17:04:42 -08002838 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002839 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
2840
2841 if board_uses_vendorimage:
2842 # In this case, the output sink is rooted at VENDOR
2843 recovery_img_path = "etc/recovery.img"
2844 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
2845 sh_dir = "bin"
2846 else:
2847 # In this case the output sink is rooted at SYSTEM
2848 recovery_img_path = "vendor/etc/recovery.img"
2849 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
2850 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08002851
Tao Baof2cffbd2015-07-22 12:33:18 -07002852 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002853 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07002854
2855 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08002856 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002857 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08002858 # With system-root-image, boot and recovery images will have mismatching
2859 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
2860 # to handle such a case.
2861 if system_root_image:
2862 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07002863 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08002864 assert not os.path.exists(path)
2865 else:
2866 diff_program = ["imgdiff"]
2867 if os.path.exists(path):
2868 diff_program.append("-b")
2869 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07002870 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08002871 else:
2872 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07002873
2874 d = Difference(recovery_img, boot_img, diff_program=diff_program)
2875 _, _, patch = d.ComputePatch()
2876 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08002877
Dan Albertebb19aa2015-03-27 19:11:53 -07002878 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07002879 # The following GetTypeAndDevice()s need to use the path in the target
2880 # info_dict instead of source_info_dict.
Dan Albertebb19aa2015-03-27 19:11:53 -07002881 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict)
2882 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict)
2883 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07002884 return
Doug Zongkerc9253822014-02-04 12:17:58 -08002885
Tao Baof2cffbd2015-07-22 12:33:18 -07002886 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002887
2888 # Note that we use /vendor to refer to the recovery resources. This will
2889 # work for a separate vendor partition mounted at /vendor or a
2890 # /system/vendor subdirectory on the system partition, for which init will
2891 # create a symlink from /vendor to /system/vendor.
2892
2893 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002894if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
2895 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002896 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07002897 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
2898 log -t recovery "Installing new recovery image: succeeded" || \\
2899 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07002900else
2901 log -t recovery "Recovery image already installed"
2902fi
2903""" % {'type': recovery_type,
2904 'device': recovery_device,
2905 'sha1': recovery_img.sha1,
2906 'size': recovery_img.size}
2907 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07002908 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002909if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
2910 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002911 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07002912 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
2913 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
2914 log -t recovery "Installing new recovery image: succeeded" || \\
2915 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08002916else
2917 log -t recovery "Recovery image already installed"
2918fi
Dan Albert8b72aef2015-03-23 19:13:21 -07002919""" % {'boot_size': boot_img.size,
2920 'boot_sha1': boot_img.sha1,
2921 'recovery_size': recovery_img.size,
2922 'recovery_sha1': recovery_img.sha1,
2923 'boot_type': boot_type,
2924 'boot_device': boot_device,
2925 'recovery_type': recovery_type,
2926 'recovery_device': recovery_device,
2927 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08002928
Bill Peckhame868aec2019-09-17 17:06:47 -07002929 # The install script location moved from /system/etc to /system/bin in the L
2930 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
2931 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07002932
Tao Bao32fcdab2018-10-12 10:30:39 -07002933 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08002934
Tao Baoda30cfa2017-12-01 16:19:46 -08002935 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08002936
2937
2938class DynamicPartitionUpdate(object):
2939 def __init__(self, src_group=None, tgt_group=None, progress=None,
2940 block_difference=None):
2941 self.src_group = src_group
2942 self.tgt_group = tgt_group
2943 self.progress = progress
2944 self.block_difference = block_difference
2945
2946 @property
2947 def src_size(self):
2948 if not self.block_difference:
2949 return 0
2950 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
2951
2952 @property
2953 def tgt_size(self):
2954 if not self.block_difference:
2955 return 0
2956 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
2957
2958 @staticmethod
2959 def _GetSparseImageSize(img):
2960 if not img:
2961 return 0
2962 return img.blocksize * img.total_blocks
2963
2964
2965class DynamicGroupUpdate(object):
2966 def __init__(self, src_size=None, tgt_size=None):
2967 # None: group does not exist. 0: no size limits.
2968 self.src_size = src_size
2969 self.tgt_size = tgt_size
2970
2971
2972class DynamicPartitionsDifference(object):
2973 def __init__(self, info_dict, block_diffs, progress_dict=None,
2974 source_info_dict=None):
2975 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07002976 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002977
2978 self._remove_all_before_apply = False
2979 if source_info_dict is None:
2980 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07002981 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002982
Tao Baof1113e92019-06-18 12:10:14 -07002983 block_diff_dict = collections.OrderedDict(
2984 [(e.partition, e) for e in block_diffs])
2985
Yifan Hong10c530d2018-12-27 17:34:18 -08002986 assert len(block_diff_dict) == len(block_diffs), \
2987 "Duplicated BlockDifference object for {}".format(
2988 [partition for partition, count in
2989 collections.Counter(e.partition for e in block_diffs).items()
2990 if count > 1])
2991
Yifan Hong79997e52019-01-23 16:56:19 -08002992 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08002993
2994 for p, block_diff in block_diff_dict.items():
2995 self._partition_updates[p] = DynamicPartitionUpdate()
2996 self._partition_updates[p].block_difference = block_diff
2997
2998 for p, progress in progress_dict.items():
2999 if p in self._partition_updates:
3000 self._partition_updates[p].progress = progress
3001
3002 tgt_groups = shlex.split(info_dict.get(
3003 "super_partition_groups", "").strip())
3004 src_groups = shlex.split(source_info_dict.get(
3005 "super_partition_groups", "").strip())
3006
3007 for g in tgt_groups:
3008 for p in shlex.split(info_dict.get(
3009 "super_%s_partition_list" % g, "").strip()):
3010 assert p in self._partition_updates, \
3011 "{} is in target super_{}_partition_list but no BlockDifference " \
3012 "object is provided.".format(p, g)
3013 self._partition_updates[p].tgt_group = g
3014
3015 for g in src_groups:
3016 for p in shlex.split(source_info_dict.get(
3017 "super_%s_partition_list" % g, "").strip()):
3018 assert p in self._partition_updates, \
3019 "{} is in source super_{}_partition_list but no BlockDifference " \
3020 "object is provided.".format(p, g)
3021 self._partition_updates[p].src_group = g
3022
Yifan Hong45433e42019-01-18 13:55:25 -08003023 target_dynamic_partitions = set(shlex.split(info_dict.get(
3024 "dynamic_partition_list", "").strip()))
3025 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3026 if u.tgt_size)
3027 assert block_diffs_with_target == target_dynamic_partitions, \
3028 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3029 list(target_dynamic_partitions), list(block_diffs_with_target))
3030
3031 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3032 "dynamic_partition_list", "").strip()))
3033 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3034 if u.src_size)
3035 assert block_diffs_with_source == source_dynamic_partitions, \
3036 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3037 list(source_dynamic_partitions), list(block_diffs_with_source))
3038
Yifan Hong10c530d2018-12-27 17:34:18 -08003039 if self._partition_updates:
3040 logger.info("Updating dynamic partitions %s",
3041 self._partition_updates.keys())
3042
Yifan Hong79997e52019-01-23 16:56:19 -08003043 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003044
3045 for g in tgt_groups:
3046 self._group_updates[g] = DynamicGroupUpdate()
3047 self._group_updates[g].tgt_size = int(info_dict.get(
3048 "super_%s_group_size" % g, "0").strip())
3049
3050 for g in src_groups:
3051 if g not in self._group_updates:
3052 self._group_updates[g] = DynamicGroupUpdate()
3053 self._group_updates[g].src_size = int(source_info_dict.get(
3054 "super_%s_group_size" % g, "0").strip())
3055
3056 self._Compute()
3057
3058 def WriteScript(self, script, output_zip, write_verify_script=False):
3059 script.Comment('--- Start patching dynamic partitions ---')
3060 for p, u in self._partition_updates.items():
3061 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3062 script.Comment('Patch partition %s' % p)
3063 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3064 write_verify_script=False)
3065
3066 op_list_path = MakeTempFile()
3067 with open(op_list_path, 'w') as f:
3068 for line in self._op_list:
3069 f.write('{}\n'.format(line))
3070
3071 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3072
3073 script.Comment('Update dynamic partition metadata')
3074 script.AppendExtra('assert(update_dynamic_partitions('
3075 'package_extract_file("dynamic_partitions_op_list")));')
3076
3077 if write_verify_script:
3078 for p, u in self._partition_updates.items():
3079 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3080 u.block_difference.WritePostInstallVerifyScript(script)
3081 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3082
3083 for p, u in self._partition_updates.items():
3084 if u.tgt_size and u.src_size <= u.tgt_size:
3085 script.Comment('Patch partition %s' % p)
3086 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3087 write_verify_script=write_verify_script)
3088 if write_verify_script:
3089 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3090
3091 script.Comment('--- End patching dynamic partitions ---')
3092
3093 def _Compute(self):
3094 self._op_list = list()
3095
3096 def append(line):
3097 self._op_list.append(line)
3098
3099 def comment(line):
3100 self._op_list.append("# %s" % line)
3101
3102 if self._remove_all_before_apply:
3103 comment('Remove all existing dynamic partitions and groups before '
3104 'applying full OTA')
3105 append('remove_all_groups')
3106
3107 for p, u in self._partition_updates.items():
3108 if u.src_group and not u.tgt_group:
3109 append('remove %s' % p)
3110
3111 for p, u in self._partition_updates.items():
3112 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3113 comment('Move partition %s from %s to default' % (p, u.src_group))
3114 append('move %s default' % p)
3115
3116 for p, u in self._partition_updates.items():
3117 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3118 comment('Shrink partition %s from %d to %d' %
3119 (p, u.src_size, u.tgt_size))
3120 append('resize %s %s' % (p, u.tgt_size))
3121
3122 for g, u in self._group_updates.items():
3123 if u.src_size is not None and u.tgt_size is None:
3124 append('remove_group %s' % g)
3125 if (u.src_size is not None and u.tgt_size is not None and
3126 u.src_size > u.tgt_size):
3127 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3128 append('resize_group %s %d' % (g, u.tgt_size))
3129
3130 for g, u in self._group_updates.items():
3131 if u.src_size is None and u.tgt_size is not None:
3132 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3133 append('add_group %s %d' % (g, u.tgt_size))
3134 if (u.src_size is not None and u.tgt_size is not None and
3135 u.src_size < u.tgt_size):
3136 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3137 append('resize_group %s %d' % (g, u.tgt_size))
3138
3139 for p, u in self._partition_updates.items():
3140 if u.tgt_group and not u.src_group:
3141 comment('Add partition %s to group %s' % (p, u.tgt_group))
3142 append('add %s %s' % (p, u.tgt_group))
3143
3144 for p, u in self._partition_updates.items():
3145 if u.tgt_size and u.src_size < u.tgt_size:
3146 comment('Grow partition %s from %d to %d' % (p, u.src_size, u.tgt_size))
3147 append('resize %s %d' % (p, u.tgt_size))
3148
3149 for p, u in self._partition_updates.items():
3150 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3151 comment('Move partition %s from default to %s' %
3152 (p, u.tgt_group))
3153 append('move %s %s' % (p, u.tgt_group))