blob: 498e48728bb1e9517bcf0220433de939f8023bbf [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080071 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070072 self.extra_signapk_args = []
73 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080074 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080075 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070076 self.public_key_suffix = ".x509.pem"
77 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070078 # use otatools built boot_signer by default
79 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070080 self.boot_signer_args = []
81 self.verity_signer_path = None
82 self.verity_signer_args = []
Tianjie0f307452020-04-01 12:20:21 -070083 self.aftl_tool_path = None
Dan Austin52903642019-12-12 15:44:00 -080084 self.aftl_server = None
85 self.aftl_key_path = None
86 self.aftl_manufacturer_key_path = None
87 self.aftl_signer_helper = None
Dan Albert8b72aef2015-03-23 19:13:21 -070088 self.verbose = False
89 self.tempfiles = []
90 self.device_specific = None
91 self.extras = {}
92 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070093 self.source_info_dict = None
94 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070095 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070096 # Stash size cannot exceed cache_size * threshold.
97 self.cache_size = None
98 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070099 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -0700100 self.host_tools = {}
Dan Albert8b72aef2015-03-23 19:13:21 -0700101
102
103OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700104
Tao Bao71197512018-10-11 14:08:45 -0700105# The block size that's used across the releasetools scripts.
106BLOCK_SIZE = 4096
107
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800108# Values for "certificate" in apkcerts that mean special things.
109SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
110
Tao Bao5cc0abb2019-03-21 10:18:05 -0700111# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
112# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800113# descriptor into vbmeta.img. When adding a new entry here, the
114# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
115# accordingly.
Andrew Sculle077cf72021-02-18 10:27:29 +0000116AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
117 'system', 'system_ext', 'vendor', 'vendor_boot',
118 'vendor_dlkm', 'odm_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800119
Tao Bao08c190f2019-06-03 23:07:58 -0700120# Chained VBMeta partitions.
121AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
122
Tianjie Xu861f4132018-09-12 11:49:33 -0700123# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400124PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700125 'system',
126 'vendor',
127 'product',
128 'system_ext',
129 'odm',
130 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700131 'odm_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400132]
Tianjie Xu861f4132018-09-12 11:49:33 -0700133
Yifan Hong5057b952021-01-07 14:09:57 -0800134# Partitions with a build.prop file
Yifan Hong10482a22021-01-07 14:38:41 -0800135PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800136
Yifan Hongc65a0542021-01-07 14:21:01 -0800137# See sysprop.mk. If file is moved, add new search paths here; don't remove
138# existing search paths.
139RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700140
Kelvin Zhang563750f2021-04-28 12:46:17 -0400141
Tianjie Xu209db462016-05-24 17:34:52 -0700142class ErrorCode(object):
143 """Define error_codes for failures that happen during the actual
144 update package installation.
145
146 Error codes 0-999 are reserved for failures before the package
147 installation (i.e. low battery, package verification failure).
148 Detailed code in 'bootable/recovery/error_code.h' """
149
150 SYSTEM_VERIFICATION_FAILURE = 1000
151 SYSTEM_UPDATE_FAILURE = 1001
152 SYSTEM_UNEXPECTED_CONTENTS = 1002
153 SYSTEM_NONZERO_CONTENTS = 1003
154 SYSTEM_RECOVER_FAILURE = 1004
155 VENDOR_VERIFICATION_FAILURE = 2000
156 VENDOR_UPDATE_FAILURE = 2001
157 VENDOR_UNEXPECTED_CONTENTS = 2002
158 VENDOR_NONZERO_CONTENTS = 2003
159 VENDOR_RECOVER_FAILURE = 2004
160 OEM_PROP_MISMATCH = 3000
161 FINGERPRINT_MISMATCH = 3001
162 THUMBPRINT_MISMATCH = 3002
163 OLDER_BUILD = 3003
164 DEVICE_MISMATCH = 3004
165 BAD_PATCH_FILE = 3005
166 INSUFFICIENT_CACHE_SPACE = 3006
167 TUNE_PARTITION_FAILURE = 3007
168 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800169
Tao Bao80921982018-03-21 21:02:19 -0700170
Dan Albert8b72aef2015-03-23 19:13:21 -0700171class ExternalError(RuntimeError):
172 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700173
174
Tao Bao32fcdab2018-10-12 10:30:39 -0700175def InitLogging():
176 DEFAULT_LOGGING_CONFIG = {
177 'version': 1,
178 'disable_existing_loggers': False,
179 'formatters': {
180 'standard': {
181 'format':
182 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
183 'datefmt': '%Y-%m-%d %H:%M:%S',
184 },
185 },
186 'handlers': {
187 'default': {
188 'class': 'logging.StreamHandler',
189 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700190 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700191 },
192 },
193 'loggers': {
194 '': {
195 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700196 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700197 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700198 }
199 }
200 }
201 env_config = os.getenv('LOGGING_CONFIG')
202 if env_config:
203 with open(env_config) as f:
204 config = json.load(f)
205 else:
206 config = DEFAULT_LOGGING_CONFIG
207
208 # Increase the logging level for verbose mode.
209 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700210 config = copy.deepcopy(config)
211 config['handlers']['default']['level'] = 'INFO'
212
213 if OPTIONS.logfile:
214 config = copy.deepcopy(config)
215 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400216 'class': 'logging.FileHandler',
217 'formatter': 'standard',
218 'level': 'INFO',
219 'mode': 'w',
220 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700221 }
222 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700223
224 logging.config.dictConfig(config)
225
226
Yifan Hong8e332ff2020-07-29 17:51:55 -0700227def SetHostToolLocation(tool_name, location):
228 OPTIONS.host_tools[tool_name] = location
229
Kelvin Zhang563750f2021-04-28 12:46:17 -0400230
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900231def FindHostToolPath(tool_name):
232 """Finds the path to the host tool.
233
234 Args:
235 tool_name: name of the tool to find
236 Returns:
237 path to the tool if found under either one of the host_tools map or under
238 the same directory as this binary is located at. If not found, tool_name
239 is returned.
240 """
241 if tool_name in OPTIONS.host_tools:
242 return OPTIONS.host_tools[tool_name]
243
244 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
245 tool_path = os.path.join(my_dir, tool_name)
246 if os.path.exists(tool_path):
247 return tool_path
248
249 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700250
Kelvin Zhang563750f2021-04-28 12:46:17 -0400251
Tao Bao39451582017-05-04 11:10:47 -0700252def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700253 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700254
Tao Bao73dd4f42018-10-04 16:25:33 -0700255 Args:
256 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700257 verbose: Whether the commands should be shown. Default to the global
258 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700259 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
260 stdin, etc. stdout and stderr will default to subprocess.PIPE and
261 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800262 universal_newlines will default to True, as most of the users in
263 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700264
265 Returns:
266 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700267 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700268 if 'stdout' not in kwargs and 'stderr' not in kwargs:
269 kwargs['stdout'] = subprocess.PIPE
270 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800271 if 'universal_newlines' not in kwargs:
272 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700273
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900274 if args:
275 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700276 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900277 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700278
Kelvin Zhang766eea72021-06-03 09:36:08 -0400279 if verbose is None:
280 verbose = OPTIONS.verbose
281
Tao Bao32fcdab2018-10-12 10:30:39 -0700282 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400283 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700284 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700285 return subprocess.Popen(args, **kwargs)
286
287
Tao Bao986ee862018-10-04 15:46:16 -0700288def RunAndCheckOutput(args, verbose=None, **kwargs):
289 """Runs the given command and returns the output.
290
291 Args:
292 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700293 verbose: Whether the commands should be shown. Default to the global
294 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700295 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
296 stdin, etc. stdout and stderr will default to subprocess.PIPE and
297 subprocess.STDOUT respectively unless caller specifies any of them.
298
299 Returns:
300 The output string.
301
302 Raises:
303 ExternalError: On non-zero exit from the command.
304 """
Tao Bao986ee862018-10-04 15:46:16 -0700305 proc = Run(args, verbose=verbose, **kwargs)
306 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800307 if output is None:
308 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700309 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400310 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700311 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700312 if proc.returncode != 0:
313 raise ExternalError(
314 "Failed to run command '{}' (exit code {}):\n{}".format(
315 args, proc.returncode, output))
316 return output
317
318
Tao Baoc765cca2018-01-31 17:32:40 -0800319def RoundUpTo4K(value):
320 rounded_up = value + 4095
321 return rounded_up - (rounded_up % 4096)
322
323
Ying Wang7e6d4e42010-12-13 16:25:36 -0800324def CloseInheritedPipes():
325 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
326 before doing other work."""
327 if platform.system() != "Darwin":
328 return
329 for d in range(3, 1025):
330 try:
331 stat = os.fstat(d)
332 if stat is not None:
333 pipebit = stat[0] & 0x1000
334 if pipebit != 0:
335 os.close(d)
336 except OSError:
337 pass
338
339
Tao Bao1c320f82019-10-04 23:25:12 -0700340class BuildInfo(object):
341 """A class that holds the information for a given build.
342
343 This class wraps up the property querying for a given source or target build.
344 It abstracts away the logic of handling OEM-specific properties, and caches
345 the commonly used properties such as fingerprint.
346
347 There are two types of info dicts: a) build-time info dict, which is generated
348 at build time (i.e. included in a target_files zip); b) OEM info dict that is
349 specified at package generation time (via command line argument
350 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
351 having "oem_fingerprint_properties" in build-time info dict), all the queries
352 would be answered based on build-time info dict only. Otherwise if using
353 OEM-specific properties, some of them will be calculated from two info dicts.
354
355 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800356 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700357
358 Attributes:
359 info_dict: The build-time info dict.
360 is_ab: Whether it's a build that uses A/B OTA.
361 oem_dicts: A list of OEM dicts.
362 oem_props: A list of OEM properties that should be read from OEM dicts; None
363 if the build doesn't use any OEM-specific property.
364 fingerprint: The fingerprint of the build, which would be calculated based
365 on OEM properties if applicable.
366 device: The device name, which could come from OEM dicts if applicable.
367 """
368
369 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
370 "ro.product.manufacturer", "ro.product.model",
371 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700372 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
373 "product", "odm", "vendor", "system_ext", "system"]
374 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
375 "product", "product_services", "odm", "vendor", "system"]
376 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700377
Tianjiefdda51d2021-05-05 14:46:35 -0700378 # The length of vbmeta digest to append to the fingerprint
379 _VBMETA_DIGEST_SIZE_USED = 8
380
381 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700382 """Initializes a BuildInfo instance with the given dicts.
383
384 Note that it only wraps up the given dicts, without making copies.
385
386 Arguments:
387 info_dict: The build-time info dict.
388 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
389 that it always uses the first dict to calculate the fingerprint or the
390 device name. The rest would be used for asserting OEM properties only
391 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700392 use_legacy_id: Use the legacy build id to construct the fingerprint. This
393 is used when we need a BuildInfo class, while the vbmeta digest is
394 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700395
396 Raises:
397 ValueError: On invalid inputs.
398 """
399 self.info_dict = info_dict
400 self.oem_dicts = oem_dicts
401
402 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700403 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700404
Hongguang Chend7c160f2020-05-03 21:24:26 -0700405 # Skip _oem_props if oem_dicts is None to use BuildInfo in
406 # sign_target_files_apks
407 if self.oem_dicts:
408 self._oem_props = info_dict.get("oem_fingerprint_properties")
409 else:
410 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700411
Daniel Normand5fe8622020-01-08 17:01:11 -0800412 def check_fingerprint(fingerprint):
413 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
414 raise ValueError(
415 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
416 "3.2.2. Build Parameters.".format(fingerprint))
417
Daniel Normand5fe8622020-01-08 17:01:11 -0800418 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800419 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800420 try:
421 fingerprint = self.CalculatePartitionFingerprint(partition)
422 check_fingerprint(fingerprint)
423 self._partition_fingerprints[partition] = fingerprint
424 except ExternalError:
425 continue
426 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800427 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800428 # need a fingerprint when creating the image.
429 self._partition_fingerprints[
430 "system_other"] = self._partition_fingerprints["system"]
431
Tao Bao1c320f82019-10-04 23:25:12 -0700432 # These two should be computed only after setting self._oem_props.
433 self._device = self.GetOemProperty("ro.product.device")
434 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800435 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700436
437 @property
438 def is_ab(self):
439 return self._is_ab
440
441 @property
442 def device(self):
443 return self._device
444
445 @property
446 def fingerprint(self):
447 return self._fingerprint
448
449 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400450 def is_vabc(self):
451 vendor_prop = self.info_dict.get("vendor.build.prop")
452 vabc_enabled = vendor_prop and \
453 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
454 return vabc_enabled
455
456 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400457 def vendor_suppressed_vabc(self):
458 vendor_prop = self.info_dict.get("vendor.build.prop")
459 vabc_suppressed = vendor_prop and \
460 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
461 return vabc_suppressed and vabc_suppressed.lower() == "true"
462
463 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700464 def oem_props(self):
465 return self._oem_props
466
467 def __getitem__(self, key):
468 return self.info_dict[key]
469
470 def __setitem__(self, key, value):
471 self.info_dict[key] = value
472
473 def get(self, key, default=None):
474 return self.info_dict.get(key, default)
475
476 def items(self):
477 return self.info_dict.items()
478
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000479 def _GetRawBuildProp(self, prop, partition):
480 prop_file = '{}.build.prop'.format(
481 partition) if partition else 'build.prop'
482 partition_props = self.info_dict.get(prop_file)
483 if not partition_props:
484 return None
485 return partition_props.GetProp(prop)
486
Daniel Normand5fe8622020-01-08 17:01:11 -0800487 def GetPartitionBuildProp(self, prop, partition):
488 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800489
490 # Boot image uses ro.[product.]bootimage instead of boot.
Kelvin Zhang563750f2021-04-28 12:46:17 -0400491 prop_partition = "bootimage" if partition == "boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800492
Daniel Normand5fe8622020-01-08 17:01:11 -0800493 # If provided a partition for this property, only look within that
494 # partition's build.prop.
495 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800496 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800497 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800498 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000499
500 prop_val = self._GetRawBuildProp(prop, partition)
501 if prop_val is not None:
502 return prop_val
503 raise ExternalError("couldn't find %s in %s.build.prop" %
504 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800505
Tao Bao1c320f82019-10-04 23:25:12 -0700506 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800507 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700508 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
509 return self._ResolveRoProductBuildProp(prop)
510
Tianjiefdda51d2021-05-05 14:46:35 -0700511 if prop == "ro.build.id":
512 return self._GetBuildId()
513
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000514 prop_val = self._GetRawBuildProp(prop, None)
515 if prop_val is not None:
516 return prop_val
517
518 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700519
520 def _ResolveRoProductBuildProp(self, prop):
521 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000522 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700523 if prop_val:
524 return prop_val
525
Steven Laver8e2086e2020-04-27 16:26:31 -0700526 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000527 source_order_val = self._GetRawBuildProp(
528 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700529 if source_order_val:
530 source_order = source_order_val.split(",")
531 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700532 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700533
534 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700535 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700536 raise ExternalError(
537 "Invalid ro.product.property_source_order '{}'".format(source_order))
538
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000539 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700540 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000541 "ro.product", "ro.product.{}".format(source_partition), 1)
542 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700543 if prop_val:
544 return prop_val
545
546 raise ExternalError("couldn't resolve {}".format(prop))
547
Steven Laver8e2086e2020-04-27 16:26:31 -0700548 def _GetRoProductPropsDefaultSourceOrder(self):
549 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
550 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000551 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700552 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000553 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700554 if android_version == "10":
555 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
556 # NOTE: float() conversion of android_version will have rounding error.
557 # We are checking for "9" or less, and using "< 10" is well outside of
558 # possible floating point rounding.
559 try:
560 android_version_val = float(android_version)
561 except ValueError:
562 android_version_val = 0
563 if android_version_val < 10:
564 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
565 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
566
Tianjieb37c5be2020-10-15 21:27:10 -0700567 def _GetPlatformVersion(self):
568 version_sdk = self.GetBuildProp("ro.build.version.sdk")
569 # init code switches to version_release_or_codename (see b/158483506). After
570 # API finalization, release_or_codename will be the same as release. This
571 # is the best effort to support pre-S dev stage builds.
572 if int(version_sdk) >= 30:
573 try:
574 return self.GetBuildProp("ro.build.version.release_or_codename")
575 except ExternalError:
576 logger.warning('Failed to find ro.build.version.release_or_codename')
577
578 return self.GetBuildProp("ro.build.version.release")
579
Tianjiefdda51d2021-05-05 14:46:35 -0700580 def _GetBuildId(self):
581 build_id = self._GetRawBuildProp("ro.build.id", None)
582 if build_id:
583 return build_id
584
585 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
586 if not legacy_build_id:
587 raise ExternalError("Couldn't find build id in property file")
588
589 if self.use_legacy_id:
590 return legacy_build_id
591
592 # Append the top 8 chars of vbmeta digest to the existing build id. The
593 # logic needs to match the one in init, so that OTA can deliver correctly.
594 avb_enable = self.info_dict.get("avb_enable") == "true"
595 if not avb_enable:
596 raise ExternalError("AVB isn't enabled when using legacy build id")
597
598 vbmeta_digest = self.info_dict.get("vbmeta_digest")
599 if not vbmeta_digest:
600 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
601 " id")
602 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
603 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
604
605 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
606 return legacy_build_id + '.' + digest_prefix
607
Tianjieb37c5be2020-10-15 21:27:10 -0700608 def _GetPartitionPlatformVersion(self, partition):
609 try:
610 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
611 partition)
612 except ExternalError:
613 return self.GetPartitionBuildProp("ro.build.version.release",
614 partition)
615
Tao Bao1c320f82019-10-04 23:25:12 -0700616 def GetOemProperty(self, key):
617 if self.oem_props is not None and key in self.oem_props:
618 return self.oem_dicts[0][key]
619 return self.GetBuildProp(key)
620
Daniel Normand5fe8622020-01-08 17:01:11 -0800621 def GetPartitionFingerprint(self, partition):
622 return self._partition_fingerprints.get(partition, None)
623
624 def CalculatePartitionFingerprint(self, partition):
625 try:
626 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
627 except ExternalError:
628 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
629 self.GetPartitionBuildProp("ro.product.brand", partition),
630 self.GetPartitionBuildProp("ro.product.name", partition),
631 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700632 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800633 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400634 self.GetPartitionBuildProp(
635 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800636 self.GetPartitionBuildProp("ro.build.type", partition),
637 self.GetPartitionBuildProp("ro.build.tags", partition))
638
Tao Bao1c320f82019-10-04 23:25:12 -0700639 def CalculateFingerprint(self):
640 if self.oem_props is None:
641 try:
642 return self.GetBuildProp("ro.build.fingerprint")
643 except ExternalError:
644 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
645 self.GetBuildProp("ro.product.brand"),
646 self.GetBuildProp("ro.product.name"),
647 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700648 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700649 self.GetBuildProp("ro.build.id"),
650 self.GetBuildProp("ro.build.version.incremental"),
651 self.GetBuildProp("ro.build.type"),
652 self.GetBuildProp("ro.build.tags"))
653 return "%s/%s/%s:%s" % (
654 self.GetOemProperty("ro.product.brand"),
655 self.GetOemProperty("ro.product.name"),
656 self.GetOemProperty("ro.product.device"),
657 self.GetBuildProp("ro.build.thumbprint"))
658
659 def WriteMountOemScript(self, script):
660 assert self.oem_props is not None
661 recovery_mount_options = self.info_dict.get("recovery_mount_options")
662 script.Mount("/oem", recovery_mount_options)
663
664 def WriteDeviceAssertions(self, script, oem_no_mount):
665 # Read the property directly if not using OEM properties.
666 if not self.oem_props:
667 script.AssertDevice(self.device)
668 return
669
670 # Otherwise assert OEM properties.
671 if not self.oem_dicts:
672 raise ExternalError(
673 "No OEM file provided to answer expected assertions")
674
675 for prop in self.oem_props.split():
676 values = []
677 for oem_dict in self.oem_dicts:
678 if prop in oem_dict:
679 values.append(oem_dict[prop])
680 if not values:
681 raise ExternalError(
682 "The OEM file is missing the property %s" % (prop,))
683 script.AssertOemProperty(prop, values, oem_no_mount)
684
685
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000686def ReadFromInputFile(input_file, fn):
687 """Reads the contents of fn from input zipfile or directory."""
688 if isinstance(input_file, zipfile.ZipFile):
689 return input_file.read(fn).decode()
690 else:
691 path = os.path.join(input_file, *fn.split("/"))
692 try:
693 with open(path) as f:
694 return f.read()
695 except IOError as e:
696 if e.errno == errno.ENOENT:
697 raise KeyError(fn)
698
699
Yifan Hong10482a22021-01-07 14:38:41 -0800700def ExtractFromInputFile(input_file, fn):
701 """Extracts the contents of fn from input zipfile or directory into a file."""
702 if isinstance(input_file, zipfile.ZipFile):
703 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500704 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800705 f.write(input_file.read(fn))
706 return tmp_file
707 else:
708 file = os.path.join(input_file, *fn.split("/"))
709 if not os.path.exists(file):
710 raise KeyError(fn)
711 return file
712
Kelvin Zhang563750f2021-04-28 12:46:17 -0400713
jiajia tangf3f842b2021-03-17 21:49:44 +0800714class RamdiskFormat(object):
715 LZ4 = 1
716 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800717
Kelvin Zhang563750f2021-04-28 12:46:17 -0400718
jiajia tang836f76b2021-04-02 14:48:26 +0800719def _GetRamdiskFormat(info_dict):
720 if info_dict.get('lz4_ramdisks') == 'true':
721 ramdisk_format = RamdiskFormat.LZ4
722 else:
723 ramdisk_format = RamdiskFormat.GZ
724 return ramdisk_format
725
Kelvin Zhang563750f2021-04-28 12:46:17 -0400726
Tao Bao410ad8b2018-08-24 12:08:38 -0700727def LoadInfoDict(input_file, repacking=False):
728 """Loads the key/value pairs from the given input target_files.
729
Tianjiea85bdf02020-07-29 11:56:19 -0700730 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700731 checks and returns the parsed key/value pairs for to the given build. It's
732 usually called early when working on input target_files files, e.g. when
733 generating OTAs, or signing builds. Note that the function may be called
734 against an old target_files file (i.e. from past dessert releases). So the
735 property parsing needs to be backward compatible.
736
737 In a `META/misc_info.txt`, a few properties are stored as links to the files
738 in the PRODUCT_OUT directory. It works fine with the build system. However,
739 they are no longer available when (re)generating images from target_files zip.
740 When `repacking` is True, redirect these properties to the actual files in the
741 unzipped directory.
742
743 Args:
744 input_file: The input target_files file, which could be an open
745 zipfile.ZipFile instance, or a str for the dir that contains the files
746 unzipped from a target_files file.
747 repacking: Whether it's trying repack an target_files file after loading the
748 info dict (default: False). If so, it will rewrite a few loaded
749 properties (e.g. selinux_fc, root_dir) to point to the actual files in
750 target_files file. When doing repacking, `input_file` must be a dir.
751
752 Returns:
753 A dict that contains the parsed key/value pairs.
754
755 Raises:
756 AssertionError: On invalid input arguments.
757 ValueError: On malformed input values.
758 """
759 if repacking:
760 assert isinstance(input_file, str), \
761 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700762
Doug Zongkerc9253822014-02-04 12:17:58 -0800763 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000764 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800765
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700766 try:
Michael Runge6e836112014-04-15 17:40:21 -0700767 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700768 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700769 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700770
Tao Bao410ad8b2018-08-24 12:08:38 -0700771 if "recovery_api_version" not in d:
772 raise ValueError("Failed to find 'recovery_api_version'")
773 if "fstab_version" not in d:
774 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800775
Tao Bao410ad8b2018-08-24 12:08:38 -0700776 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700777 # "selinux_fc" properties should point to the file_contexts files
778 # (file_contexts.bin) under META/.
779 for key in d:
780 if key.endswith("selinux_fc"):
781 fc_basename = os.path.basename(d[key])
782 fc_config = os.path.join(input_file, "META", fc_basename)
783 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700784
Daniel Norman72c626f2019-05-13 15:58:14 -0700785 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700786
Tom Cherryd14b8952018-08-09 14:26:00 -0700787 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700788 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700789 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700790 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700791
David Anderson0ec64ac2019-12-06 12:21:18 -0800792 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700793 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Yifan Hongf496f1b2020-07-15 16:52:59 -0700794 "vendor_dlkm", "odm_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800795 key_name = part_name + "_base_fs_file"
796 if key_name not in d:
797 continue
798 basename = os.path.basename(d[key_name])
799 base_fs_file = os.path.join(input_file, "META", basename)
800 if os.path.exists(base_fs_file):
801 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700802 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700803 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800804 "Failed to find %s base fs file: %s", part_name, base_fs_file)
805 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700806
Doug Zongker37974732010-09-16 17:44:38 -0700807 def makeint(key):
808 if key in d:
809 d[key] = int(d[key], 0)
810
811 makeint("recovery_api_version")
812 makeint("blocksize")
813 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700814 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700815 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700816 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700817 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800818 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700819
Steve Muckle903a1ca2020-05-07 17:32:10 -0700820 boot_images = "boot.img"
821 if "boot_images" in d:
822 boot_images = d["boot_images"]
823 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400824 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700825
Tao Bao765668f2019-10-04 22:03:00 -0700826 # Load recovery fstab if applicable.
827 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
jiajia tang836f76b2021-04-02 14:48:26 +0800828 ramdisk_format = _GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800829
Tianjie Xu861f4132018-09-12 11:49:33 -0700830 # Tries to load the build props for all partitions with care_map, including
831 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800832 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800833 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000834 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800835 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700836 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800837
Tao Bao3ed35d32019-10-07 20:48:48 -0700838 # Set up the salt (based on fingerprint) that will be used when adding AVB
839 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800840 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700841 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800842 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800843 fingerprint = build_info.GetPartitionFingerprint(partition)
844 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400845 d["avb_{}_salt".format(partition)] = sha256(
846 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700847
848 # Set the vbmeta digest if exists
849 try:
850 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
851 except KeyError:
852 pass
853
Kelvin Zhang39aea442020-08-17 11:04:25 -0400854 try:
855 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
856 except KeyError:
857 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700858 return d
859
Tao Baod1de6f32017-03-01 16:38:48 -0800860
Daniel Norman4cc9df62019-07-18 10:11:07 -0700861def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900862 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700863 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900864
Daniel Norman4cc9df62019-07-18 10:11:07 -0700865
866def LoadDictionaryFromFile(file_path):
867 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900868 return LoadDictionaryFromLines(lines)
869
870
Michael Runge6e836112014-04-15 17:40:21 -0700871def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700872 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700873 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700874 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700875 if not line or line.startswith("#"):
876 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700877 if "=" in line:
878 name, value = line.split("=", 1)
879 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700880 return d
881
Tao Baod1de6f32017-03-01 16:38:48 -0800882
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000883class PartitionBuildProps(object):
884 """The class holds the build prop of a particular partition.
885
886 This class loads the build.prop and holds the build properties for a given
887 partition. It also partially recognizes the 'import' statement in the
888 build.prop; and calculates alternative values of some specific build
889 properties during runtime.
890
891 Attributes:
892 input_file: a zipped target-file or an unzipped target-file directory.
893 partition: name of the partition.
894 props_allow_override: a list of build properties to search for the
895 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000896 build_props: a dict of build properties for the given partition.
897 prop_overrides: a set of props that are overridden by import.
898 placeholder_values: A dict of runtime variables' values to replace the
899 placeholders in the build.prop file. We expect exactly one value for
900 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800901 ramdisk_format: If name is "boot", the format of ramdisk inside the
902 boot image. Otherwise, its value is ignored.
903 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000904 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400905
Tianjie Xu9afb2212020-05-10 21:48:15 +0000906 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000907 self.input_file = input_file
908 self.partition = name
909 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000910 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000911 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000912 self.prop_overrides = set()
913 self.placeholder_values = {}
914 if placeholder_values:
915 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000916
917 @staticmethod
918 def FromDictionary(name, build_props):
919 """Constructs an instance from a build prop dictionary."""
920
921 props = PartitionBuildProps("unknown", name)
922 props.build_props = build_props.copy()
923 return props
924
925 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800926 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000927 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800928
929 if name == "boot":
Kelvin Zhang563750f2021-04-28 12:46:17 -0400930 data = PartitionBuildProps._ReadBootPropFile(
931 input_file, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800932 else:
933 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
934
935 props = PartitionBuildProps(input_file, name, placeholder_values)
936 props._LoadBuildProp(data)
937 return props
938
939 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800940 def _ReadBootPropFile(input_file, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800941 """
942 Read build.prop for boot image from input_file.
943 Return empty string if not found.
944 """
945 try:
946 boot_img = ExtractFromInputFile(input_file, 'IMAGES/boot.img')
947 except KeyError:
948 logger.warning('Failed to read IMAGES/boot.img')
949 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800950 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800951 if prop_file is None:
952 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500953 with open(prop_file, "r") as f:
954 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800955
956 @staticmethod
957 def _ReadPartitionPropFile(input_file, name):
958 """
959 Read build.prop for name from input_file.
960 Return empty string if not found.
961 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000962 data = ''
963 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
964 '{}/build.prop'.format(name.upper())]:
965 try:
966 data = ReadFromInputFile(input_file, prop_file)
967 break
968 except KeyError:
969 logger.warning('Failed to read %s', prop_file)
Yifan Hong10482a22021-01-07 14:38:41 -0800970 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000971
Yifan Hong125d0b62020-09-24 17:07:03 -0700972 @staticmethod
973 def FromBuildPropFile(name, build_prop_file):
974 """Constructs an instance from a build prop file."""
975
976 props = PartitionBuildProps("unknown", name)
977 with open(build_prop_file) as f:
978 props._LoadBuildProp(f.read())
979 return props
980
Tianjie Xu9afb2212020-05-10 21:48:15 +0000981 def _LoadBuildProp(self, data):
982 for line in data.split('\n'):
983 line = line.strip()
984 if not line or line.startswith("#"):
985 continue
986 if line.startswith("import"):
987 overrides = self._ImportParser(line)
988 duplicates = self.prop_overrides.intersection(overrides.keys())
989 if duplicates:
990 raise ValueError('prop {} is overridden multiple times'.format(
991 ','.join(duplicates)))
992 self.prop_overrides = self.prop_overrides.union(overrides.keys())
993 self.build_props.update(overrides)
994 elif "=" in line:
995 name, value = line.split("=", 1)
996 if name in self.prop_overrides:
997 raise ValueError('prop {} is set again after overridden by import '
998 'statement'.format(name))
999 self.build_props[name] = value
1000
1001 def _ImportParser(self, line):
1002 """Parses the build prop in a given import statement."""
1003
1004 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001005 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001006 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001007
1008 if len(tokens) == 3:
1009 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1010 return {}
1011
Tianjie Xu9afb2212020-05-10 21:48:15 +00001012 import_path = tokens[1]
1013 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
1014 raise ValueError('Unrecognized import path {}'.format(line))
1015
1016 # We only recognize a subset of import statement that the init process
1017 # supports. And we can loose the restriction based on how the dynamic
1018 # fingerprint is used in practice. The placeholder format should be
1019 # ${placeholder}, and its value should be provided by the caller through
1020 # the placeholder_values.
1021 for prop, value in self.placeholder_values.items():
1022 prop_place_holder = '${{{}}}'.format(prop)
1023 if prop_place_holder in import_path:
1024 import_path = import_path.replace(prop_place_holder, value)
1025 if '$' in import_path:
1026 logger.info('Unresolved place holder in import path %s', import_path)
1027 return {}
1028
1029 import_path = import_path.replace('/{}'.format(self.partition),
1030 self.partition.upper())
1031 logger.info('Parsing build props override from %s', import_path)
1032
1033 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1034 d = LoadDictionaryFromLines(lines)
1035 return {key: val for key, val in d.items()
1036 if key in self.props_allow_override}
1037
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001038 def GetProp(self, prop):
1039 return self.build_props.get(prop)
1040
1041
Tianjie Xucfa86222016-03-07 16:31:19 -08001042def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1043 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001044 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001045 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001046 self.mount_point = mount_point
1047 self.fs_type = fs_type
1048 self.device = device
1049 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001050 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001051 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001052
1053 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001054 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001055 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001056 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001057 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001058
Tao Baod1de6f32017-03-01 16:38:48 -08001059 assert fstab_version == 2
1060
1061 d = {}
1062 for line in data.split("\n"):
1063 line = line.strip()
1064 if not line or line.startswith("#"):
1065 continue
1066
1067 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1068 pieces = line.split()
1069 if len(pieces) != 5:
1070 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1071
1072 # Ignore entries that are managed by vold.
1073 options = pieces[4]
1074 if "voldmanaged=" in options:
1075 continue
1076
1077 # It's a good line, parse it.
1078 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001079 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001080 options = options.split(",")
1081 for i in options:
1082 if i.startswith("length="):
1083 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001084 elif i == "slotselect":
1085 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001086 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001087 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001088 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001089
Tao Baod1de6f32017-03-01 16:38:48 -08001090 mount_flags = pieces[3]
1091 # Honor the SELinux context if present.
1092 context = None
1093 for i in mount_flags.split(","):
1094 if i.startswith("context="):
1095 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001096
Tao Baod1de6f32017-03-01 16:38:48 -08001097 mount_point = pieces[1]
1098 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001099 device=pieces[0], length=length, context=context,
1100 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001101
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001102 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001103 # system. Other areas assume system is always at "/system" so point /system
1104 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001105 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001106 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001107 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001108 return d
1109
1110
Tao Bao765668f2019-10-04 22:03:00 -07001111def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1112 """Finds the path to recovery fstab and loads its contents."""
1113 # recovery fstab is only meaningful when installing an update via recovery
1114 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001115 if info_dict.get('ab_update') == 'true' and \
1116 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001117 return None
1118
1119 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1120 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1121 # cases, since it may load the info_dict from an old build (e.g. when
1122 # generating incremental OTAs from that build).
1123 system_root_image = info_dict.get('system_root_image') == 'true'
1124 if info_dict.get('no_recovery') != 'true':
1125 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1126 if isinstance(input_file, zipfile.ZipFile):
1127 if recovery_fstab_path not in input_file.namelist():
1128 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1129 else:
1130 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1131 if not os.path.exists(path):
1132 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1133 return LoadRecoveryFSTab(
1134 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1135 system_root_image)
1136
1137 if info_dict.get('recovery_as_boot') == 'true':
1138 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1139 if isinstance(input_file, zipfile.ZipFile):
1140 if recovery_fstab_path not in input_file.namelist():
1141 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1142 else:
1143 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1144 if not os.path.exists(path):
1145 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1146 return LoadRecoveryFSTab(
1147 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1148 system_root_image)
1149
1150 return None
1151
1152
Doug Zongker37974732010-09-16 17:44:38 -07001153def DumpInfoDict(d):
1154 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001155 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001156
Dan Albert8b72aef2015-03-23 19:13:21 -07001157
Daniel Norman55417142019-11-25 16:04:36 -08001158def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001159 """Merges dynamic partition info variables.
1160
1161 Args:
1162 framework_dict: The dictionary of dynamic partition info variables from the
1163 partial framework target files.
1164 vendor_dict: The dictionary of dynamic partition info variables from the
1165 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001166
1167 Returns:
1168 The merged dynamic partition info dictionary.
1169 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001170
1171 def uniq_concat(a, b):
1172 combined = set(a.split(" "))
1173 combined.update(set(b.split(" ")))
1174 combined = [item.strip() for item in combined if item.strip()]
1175 return " ".join(sorted(combined))
1176
1177 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhang563750f2021-04-28 12:46:17 -04001178 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001179 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1180
1181 merged_dict = {"use_dynamic_partitions": "true"}
1182
1183 merged_dict["dynamic_partition_list"] = uniq_concat(
1184 framework_dict.get("dynamic_partition_list", ""),
1185 vendor_dict.get("dynamic_partition_list", ""))
1186
1187 # Super block devices are defined by the vendor dict.
1188 if "super_block_devices" in vendor_dict:
1189 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
1190 for block_device in merged_dict["super_block_devices"].split(" "):
1191 key = "super_%s_device_size" % block_device
1192 if key not in vendor_dict:
1193 raise ValueError("Vendor dict does not contain required key %s." % key)
1194 merged_dict[key] = vendor_dict[key]
1195
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001196 # Partition groups and group sizes are defined by the vendor dict because
1197 # these values may vary for each board that uses a shared system image.
1198 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001199 for partition_group in merged_dict["super_partition_groups"].split(" "):
1200 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001201 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001202 if key not in vendor_dict:
1203 raise ValueError("Vendor dict does not contain required key %s." % key)
1204 merged_dict[key] = vendor_dict[key]
1205
1206 # Set the partition group's partition list using a concatenation of the
1207 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001208 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001209 merged_dict[key] = uniq_concat(
1210 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301211
Daniel Normanb0c75912020-09-24 14:30:21 -07001212 # Various other flags should be copied from the vendor dict, if defined.
1213 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1214 "super_metadata_device", "super_partition_error_limit",
1215 "super_partition_size"):
1216 if key in vendor_dict.keys():
1217 merged_dict[key] = vendor_dict[key]
1218
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001219 return merged_dict
1220
1221
Daniel Norman21c34f72020-11-11 17:25:50 -08001222def PartitionMapFromTargetFiles(target_files_dir):
1223 """Builds a map from partition -> path within an extracted target files directory."""
1224 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1225 possible_subdirs = {
1226 "system": ["SYSTEM"],
1227 "vendor": ["VENDOR", "SYSTEM/vendor"],
1228 "product": ["PRODUCT", "SYSTEM/product"],
1229 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1230 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1231 "vendor_dlkm": [
1232 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1233 ],
1234 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
1235 }
1236 partition_map = {}
1237 for partition, subdirs in possible_subdirs.items():
1238 for subdir in subdirs:
1239 if os.path.exists(os.path.join(target_files_dir, subdir)):
1240 partition_map[partition] = subdir
1241 break
1242 return partition_map
1243
1244
Daniel Normand3351562020-10-29 12:33:11 -07001245def SharedUidPartitionViolations(uid_dict, partition_groups):
1246 """Checks for APK sharedUserIds that cross partition group boundaries.
1247
1248 This uses a single or merged build's shareduid_violation_modules.json
1249 output file, as generated by find_shareduid_violation.py or
1250 core/tasks/find-shareduid-violation.mk.
1251
1252 An error is defined as a sharedUserId that is found in a set of partitions
1253 that span more than one partition group.
1254
1255 Args:
1256 uid_dict: A dictionary created by using the standard json module to read a
1257 complete shareduid_violation_modules.json file.
1258 partition_groups: A list of groups, where each group is a list of
1259 partitions.
1260
1261 Returns:
1262 A list of error messages.
1263 """
1264 errors = []
1265 for uid, partitions in uid_dict.items():
1266 found_in_groups = [
1267 group for group in partition_groups
1268 if set(partitions.keys()) & set(group)
1269 ]
1270 if len(found_in_groups) > 1:
1271 errors.append(
1272 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1273 % (uid, ",".join(sorted(partitions.keys()))))
1274 return errors
1275
1276
Daniel Norman21c34f72020-11-11 17:25:50 -08001277def RunHostInitVerifier(product_out, partition_map):
1278 """Runs host_init_verifier on the init rc files within partitions.
1279
1280 host_init_verifier searches the etc/init path within each partition.
1281
1282 Args:
1283 product_out: PRODUCT_OUT directory, containing partition directories.
1284 partition_map: A map of partition name -> relative path within product_out.
1285 """
1286 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1287 cmd = ["host_init_verifier"]
1288 for partition, path in partition_map.items():
1289 if partition not in allowed_partitions:
1290 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1291 partition)
1292 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1293 # Add --property-contexts if the file exists on the partition.
1294 property_contexts = "%s_property_contexts" % (
1295 "plat" if partition == "system" else partition)
1296 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1297 property_contexts)
1298 if os.path.exists(property_contexts_path):
1299 cmd.append("--property-contexts=%s" % property_contexts_path)
1300 # Add the passwd file if the file exists on the partition.
1301 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1302 if os.path.exists(passwd_path):
1303 cmd.extend(["-p", passwd_path])
1304 return RunAndCheckOutput(cmd)
1305
1306
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001307def AppendAVBSigningArgs(cmd, partition):
1308 """Append signing arguments for avbtool."""
1309 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1310 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001311 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1312 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1313 if os.path.exists(new_key_path):
1314 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001315 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1316 if key_path and algorithm:
1317 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001318 avb_salt = OPTIONS.info_dict.get("avb_salt")
1319 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001320 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001321 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001322
1323
Tao Bao765668f2019-10-04 22:03:00 -07001324def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001325 """Returns the VBMeta arguments for partition.
1326
1327 It sets up the VBMeta argument by including the partition descriptor from the
1328 given 'image', or by configuring the partition as a chained partition.
1329
1330 Args:
1331 partition: The name of the partition (e.g. "system").
1332 image: The path to the partition image.
1333 info_dict: A dict returned by common.LoadInfoDict(). Will use
1334 OPTIONS.info_dict if None has been given.
1335
1336 Returns:
1337 A list of VBMeta arguments.
1338 """
1339 if info_dict is None:
1340 info_dict = OPTIONS.info_dict
1341
1342 # Check if chain partition is used.
1343 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001344 if not key_path:
1345 return ["--include_descriptors_from_image", image]
1346
1347 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1348 # into vbmeta.img. The recovery image will be configured on an independent
1349 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1350 # See details at
1351 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001352 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001353 return []
1354
1355 # Otherwise chain the partition into vbmeta.
1356 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1357 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001358
1359
Tao Bao02a08592018-07-22 12:40:45 -07001360def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1361 """Constructs and returns the arg to build or verify a chained partition.
1362
1363 Args:
1364 partition: The partition name.
1365 info_dict: The info dict to look up the key info and rollback index
1366 location.
1367 key: The key to be used for building or verifying the partition. Defaults to
1368 the key listed in info_dict.
1369
1370 Returns:
1371 A string of form "partition:rollback_index_location:key" that can be used to
1372 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001373 """
1374 if key is None:
1375 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001376 if key and not os.path.exists(key) and OPTIONS.search_path:
1377 new_key_path = os.path.join(OPTIONS.search_path, key)
1378 if os.path.exists(new_key_path):
1379 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001380 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001381 rollback_index_location = info_dict[
1382 "avb_" + partition + "_rollback_index_location"]
1383 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1384
1385
Tianjie20dd8f22020-04-19 15:51:16 -07001386def ConstructAftlMakeImageCommands(output_image):
1387 """Constructs the command to append the aftl image to vbmeta."""
Tianjie Xueaed60c2020-03-12 00:33:28 -07001388
1389 # Ensure the other AFTL parameters are set as well.
Tianjie0f307452020-04-01 12:20:21 -07001390 assert OPTIONS.aftl_tool_path is not None, 'No aftl tool provided.'
Tianjie Xueaed60c2020-03-12 00:33:28 -07001391 assert OPTIONS.aftl_key_path is not None, 'No AFTL key provided.'
1392 assert OPTIONS.aftl_manufacturer_key_path is not None, \
1393 'No AFTL manufacturer key provided.'
1394
1395 vbmeta_image = MakeTempFile()
1396 os.rename(output_image, vbmeta_image)
Tianjiefdda51d2021-05-05 14:46:35 -07001397 build_info = BuildInfo(OPTIONS.info_dict, use_legacy_id=True)
Tianjie Xueaed60c2020-03-12 00:33:28 -07001398 version_incremental = build_info.GetBuildProp("ro.build.version.incremental")
Tianjie0f307452020-04-01 12:20:21 -07001399 aftltool = OPTIONS.aftl_tool_path
Tianjie20dd8f22020-04-19 15:51:16 -07001400 server_argument_list = [OPTIONS.aftl_server, OPTIONS.aftl_key_path]
Tianjie0f307452020-04-01 12:20:21 -07001401 aftl_cmd = [aftltool, "make_icp_from_vbmeta",
Tianjie Xueaed60c2020-03-12 00:33:28 -07001402 "--vbmeta_image_path", vbmeta_image,
1403 "--output", output_image,
1404 "--version_incremental", version_incremental,
Tianjie20dd8f22020-04-19 15:51:16 -07001405 "--transparency_log_servers", ','.join(server_argument_list),
Tianjie Xueaed60c2020-03-12 00:33:28 -07001406 "--manufacturer_key", OPTIONS.aftl_manufacturer_key_path,
1407 "--algorithm", "SHA256_RSA4096",
1408 "--padding", "4096"]
1409 if OPTIONS.aftl_signer_helper:
1410 aftl_cmd.extend(shlex.split(OPTIONS.aftl_signer_helper))
Tianjie20dd8f22020-04-19 15:51:16 -07001411 return aftl_cmd
1412
1413
1414def AddAftlInclusionProof(output_image):
1415 """Appends the aftl inclusion proof to the vbmeta image."""
1416
1417 aftl_cmd = ConstructAftlMakeImageCommands(output_image)
Tianjie Xueaed60c2020-03-12 00:33:28 -07001418 RunAndCheckOutput(aftl_cmd)
1419
1420 verify_cmd = ['aftltool', 'verify_image_icp', '--vbmeta_image_path',
1421 output_image, '--transparency_log_pub_keys',
1422 OPTIONS.aftl_key_path]
1423 RunAndCheckOutput(verify_cmd)
1424
1425
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001426def AppendGkiSigningArgs(cmd):
1427 """Append GKI signing arguments for mkbootimg."""
1428 # e.g., --gki_signing_key path/to/signing_key
1429 # --gki_signing_algorithm SHA256_RSA4096"
1430
1431 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
1432 # It's fine that a non-GKI boot.img has no gki_signing_key_path.
1433 if not key_path:
1434 return
1435
1436 if not os.path.exists(key_path) and OPTIONS.search_path:
1437 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1438 if os.path.exists(new_key_path):
1439 key_path = new_key_path
1440
1441 # Checks key_path exists, before appending --gki_signing_* args.
1442 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001443 raise ExternalError(
1444 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001445
1446 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
1447 if key_path and algorithm:
1448 cmd.extend(["--gki_signing_key", key_path,
1449 "--gki_signing_algorithm", algorithm])
1450
1451 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args")
1452 if signature_args:
1453 cmd.extend(["--gki_signing_signature_args", signature_args])
1454
1455
Daniel Norman276f0622019-07-26 14:13:51 -07001456def BuildVBMeta(image_path, partitions, name, needed_partitions):
1457 """Creates a VBMeta image.
1458
1459 It generates the requested VBMeta image. The requested image could be for
1460 top-level or chained VBMeta image, which is determined based on the name.
1461
1462 Args:
1463 image_path: The output path for the new VBMeta image.
1464 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001465 values. Only valid partition names are accepted, as partitions listed
1466 in common.AVB_PARTITIONS and custom partitions listed in
1467 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001468 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1469 needed_partitions: Partitions whose descriptors should be included into the
1470 generated VBMeta image.
1471
1472 Raises:
1473 AssertionError: On invalid input args.
1474 """
1475 avbtool = OPTIONS.info_dict["avb_avbtool"]
1476 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1477 AppendAVBSigningArgs(cmd, name)
1478
Hongguang Chenf23364d2020-04-27 18:36:36 -07001479 custom_partitions = OPTIONS.info_dict.get(
1480 "avb_custom_images_partition_list", "").strip().split()
1481
Daniel Norman276f0622019-07-26 14:13:51 -07001482 for partition, path in partitions.items():
1483 if partition not in needed_partitions:
1484 continue
1485 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001486 partition in AVB_VBMETA_PARTITIONS or
1487 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001488 'Unknown partition: {}'.format(partition)
1489 assert os.path.exists(path), \
1490 'Failed to find {} for {}'.format(path, partition)
1491 cmd.extend(GetAvbPartitionArg(partition, path))
1492
1493 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1494 if args and args.strip():
1495 split_args = shlex.split(args)
1496 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001497 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001498 # as a path relative to source tree, which may not be available at the
1499 # same location when running this script (we have the input target_files
1500 # zip only). For such cases, we additionally scan other locations (e.g.
1501 # IMAGES/, RADIO/, etc) before bailing out.
1502 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001503 chained_image = split_args[index + 1]
1504 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001505 continue
1506 found = False
1507 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1508 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001509 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001510 if os.path.exists(alt_path):
1511 split_args[index + 1] = alt_path
1512 found = True
1513 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001514 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001515 cmd.extend(split_args)
1516
1517 RunAndCheckOutput(cmd)
1518
Tianjie Xueaed60c2020-03-12 00:33:28 -07001519 # Generate the AFTL inclusion proof.
Dan Austin52903642019-12-12 15:44:00 -08001520 if OPTIONS.aftl_server is not None:
Tianjie Xueaed60c2020-03-12 00:33:28 -07001521 AddAftlInclusionProof(image_path)
1522
Daniel Norman276f0622019-07-26 14:13:51 -07001523
jiajia tang836f76b2021-04-02 14:48:26 +08001524def _MakeRamdisk(sourcedir, fs_config_file=None,
1525 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001526 ramdisk_img = tempfile.NamedTemporaryFile()
1527
1528 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1529 cmd = ["mkbootfs", "-f", fs_config_file,
1530 os.path.join(sourcedir, "RAMDISK")]
1531 else:
1532 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1533 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001534 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001535 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001536 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001537 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001538 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001539 else:
1540 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001541
1542 p2.wait()
1543 p1.wait()
1544 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001545 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001546
1547 return ramdisk_img
1548
1549
Steve Muckle9793cf62020-04-08 18:27:00 -07001550def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001551 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001552 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001553
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001554 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001555 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1556 we are building a two-step special image (i.e. building a recovery image to
1557 be loaded into /boot in two-step OTAs).
1558
1559 Return the image data, or None if sourcedir does not appear to contains files
1560 for building the requested image.
1561 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001562
Yifan Hong63c5ca12020-10-08 11:54:02 -07001563 if info_dict is None:
1564 info_dict = OPTIONS.info_dict
1565
Steve Muckle9793cf62020-04-08 18:27:00 -07001566 # "boot" or "recovery", without extension.
1567 partition_name = os.path.basename(sourcedir).lower()
1568
Yifan Hong63c5ca12020-10-08 11:54:02 -07001569 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001570 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001571 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1572 logger.info("Excluded kernel binary from recovery image.")
1573 else:
1574 kernel = "kernel"
Steve Muckle9793cf62020-04-08 18:27:00 -07001575 else:
1576 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001577 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001578 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001579 return None
1580
1581 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001582 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001583
Doug Zongkereef39442009-04-02 12:14:19 -07001584 img = tempfile.NamedTemporaryFile()
1585
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001586 if has_ramdisk:
jiajia tang836f76b2021-04-02 14:48:26 +08001587 ramdisk_format = _GetRamdiskFormat(info_dict)
1588 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1589 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001590
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001591 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1592 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1593
Yifan Hong63c5ca12020-10-08 11:54:02 -07001594 cmd = [mkbootimg]
1595 if kernel:
1596 cmd += ["--kernel", os.path.join(sourcedir, kernel)]
Doug Zongker38a649f2009-06-17 09:07:09 -07001597
Benoit Fradina45a8682014-07-14 21:00:43 +02001598 fn = os.path.join(sourcedir, "second")
1599 if os.access(fn, os.F_OK):
1600 cmd.append("--second")
1601 cmd.append(fn)
1602
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001603 fn = os.path.join(sourcedir, "dtb")
1604 if os.access(fn, os.F_OK):
1605 cmd.append("--dtb")
1606 cmd.append(fn)
1607
Doug Zongker171f1cd2009-06-15 22:36:37 -07001608 fn = os.path.join(sourcedir, "cmdline")
1609 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001610 cmd.append("--cmdline")
1611 cmd.append(open(fn).read().rstrip("\n"))
1612
1613 fn = os.path.join(sourcedir, "base")
1614 if os.access(fn, os.F_OK):
1615 cmd.append("--base")
1616 cmd.append(open(fn).read().rstrip("\n"))
1617
Ying Wang4de6b5b2010-08-25 14:29:34 -07001618 fn = os.path.join(sourcedir, "pagesize")
1619 if os.access(fn, os.F_OK):
1620 cmd.append("--pagesize")
1621 cmd.append(open(fn).read().rstrip("\n"))
1622
Steve Mucklef84668e2020-03-16 19:13:46 -07001623 if partition_name == "recovery":
1624 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301625 if not args:
1626 # Fall back to "mkbootimg_args" for recovery image
1627 # in case "recovery_mkbootimg_args" is not set.
1628 args = info_dict.get("mkbootimg_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001629 else:
1630 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001631 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001632 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001633
Tao Bao76def242017-11-21 09:25:31 -08001634 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +00001635 if args and args.strip():
1636 cmd.extend(shlex.split(args))
1637
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001638 if has_ramdisk:
1639 cmd.extend(["--ramdisk", ramdisk_img.name])
1640
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001641 AppendGkiSigningArgs(cmd)
1642
Tao Baod95e9fd2015-03-29 23:07:41 -07001643 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001644 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001645 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001646 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001647 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001648 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001649
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001650 if partition_name == "recovery":
1651 if info_dict.get("include_recovery_dtbo") == "true":
1652 fn = os.path.join(sourcedir, "recovery_dtbo")
1653 cmd.extend(["--recovery_dtbo", fn])
1654 if info_dict.get("include_recovery_acpio") == "true":
1655 fn = os.path.join(sourcedir, "recovery_acpio")
1656 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001657
Tao Bao986ee862018-10-04 15:46:16 -07001658 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001659
Tao Bao76def242017-11-21 09:25:31 -08001660 if (info_dict.get("boot_signer") == "true" and
Kelvin Zhang563750f2021-04-28 12:46:17 -04001661 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001662 # Hard-code the path as "/boot" for two-step special recovery image (which
1663 # will be loaded into /boot during the two-step OTA).
1664 if two_step_image:
1665 path = "/boot"
1666 else:
Tao Baobf70c312017-07-11 17:27:55 -07001667 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001668 cmd = [OPTIONS.boot_signer_path]
1669 cmd.extend(OPTIONS.boot_signer_args)
1670 cmd.extend([path, img.name,
1671 info_dict["verity_key"] + ".pk8",
1672 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001673 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001674
Tao Baod95e9fd2015-03-29 23:07:41 -07001675 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001676 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001677 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001678 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001679 # We have switched from the prebuilt futility binary to using the tool
1680 # (futility-host) built from the source. Override the setting in the old
1681 # TF.zip.
1682 futility = info_dict["futility"]
1683 if futility.startswith("prebuilts/"):
1684 futility = "futility-host"
1685 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001686 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001687 info_dict["vboot_key"] + ".vbprivk",
1688 info_dict["vboot_subkey"] + ".vbprivk",
1689 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001690 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001691 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001692
Tao Baof3282b42015-04-01 11:21:55 -07001693 # Clean up the temp files.
1694 img_unsigned.close()
1695 img_keyblock.close()
1696
David Zeuthen8fecb282017-12-01 16:24:01 -05001697 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001698 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001699 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001700 if partition_name == "recovery":
1701 part_size = info_dict["recovery_size"]
1702 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001703 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001704 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001705 "--partition_size", str(part_size), "--partition_name",
1706 partition_name]
1707 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001708 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001709 if args and args.strip():
1710 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001711 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001712
1713 img.seek(os.SEEK_SET, 0)
1714 data = img.read()
1715
1716 if has_ramdisk:
1717 ramdisk_img.close()
1718 img.close()
1719
1720 return data
1721
1722
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001723def _SignBootableImage(image_path, prebuilt_name, partition_name,
1724 info_dict=None):
1725 """Performs AVB signing for a prebuilt boot.img.
1726
1727 Args:
1728 image_path: The full path of the image, e.g., /path/to/boot.img.
1729 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
1730 boot-5.10.img, recovery.img.
1731 partition_name: The partition name, e.g., 'boot' or 'recovery'.
1732 info_dict: The information dict read from misc_info.txt.
1733 """
1734 if info_dict is None:
1735 info_dict = OPTIONS.info_dict
1736
1737 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1738 if info_dict.get("avb_enable") == "true":
1739 avbtool = info_dict["avb_avbtool"]
1740 if partition_name == "recovery":
1741 part_size = info_dict["recovery_size"]
1742 else:
1743 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1744
1745 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1746 "--partition_size", str(part_size), "--partition_name",
1747 partition_name]
1748 AppendAVBSigningArgs(cmd, partition_name)
1749 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1750 if args and args.strip():
1751 cmd.extend(shlex.split(args))
1752 RunAndCheckOutput(cmd)
1753
1754
Doug Zongkerd5131602012-08-02 14:46:42 -07001755def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001756 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001757 """Return a File object with the desired bootable image.
1758
1759 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1760 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1761 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001762
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001763 if info_dict is None:
1764 info_dict = OPTIONS.info_dict
1765
Doug Zongker55d93282011-01-25 17:03:34 -08001766 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1767 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001768 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001769 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001770
1771 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1772 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001773 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001774 return File.FromLocalFile(name, prebuilt_path)
1775
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001776 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1777 if os.path.exists(prebuilt_path):
1778 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1779 signed_img = MakeTempFile()
1780 shutil.copy(prebuilt_path, signed_img)
1781 partition_name = tree_subdir.lower()
1782 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1783 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001784
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001785 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001786
1787 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -08001788 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
1789 # for recovery.
1790 has_ramdisk = (info_dict.get("system_root_image") != "true" or
1791 prebuilt_name != "boot.img" or
1792 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001793
Doug Zongker6f1d0312014-08-22 08:07:12 -07001794 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001795 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001796 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001797 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001798 if data:
1799 return File(name, data)
1800 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001801
Doug Zongkereef39442009-04-02 12:14:19 -07001802
Steve Mucklee1b10862019-07-10 10:49:37 -07001803def _BuildVendorBootImage(sourcedir, info_dict=None):
1804 """Build a vendor boot image from the specified sourcedir.
1805
1806 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1807 turn them into a vendor boot image.
1808
1809 Return the image data, or None if sourcedir does not appear to contains files
1810 for building the requested image.
1811 """
1812
1813 if info_dict is None:
1814 info_dict = OPTIONS.info_dict
1815
1816 img = tempfile.NamedTemporaryFile()
1817
jiajia tang836f76b2021-04-02 14:48:26 +08001818 ramdisk_format = _GetRamdiskFormat(info_dict)
1819 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001820
1821 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1822 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1823
1824 cmd = [mkbootimg]
1825
1826 fn = os.path.join(sourcedir, "dtb")
1827 if os.access(fn, os.F_OK):
1828 cmd.append("--dtb")
1829 cmd.append(fn)
1830
1831 fn = os.path.join(sourcedir, "vendor_cmdline")
1832 if os.access(fn, os.F_OK):
1833 cmd.append("--vendor_cmdline")
1834 cmd.append(open(fn).read().rstrip("\n"))
1835
1836 fn = os.path.join(sourcedir, "base")
1837 if os.access(fn, os.F_OK):
1838 cmd.append("--base")
1839 cmd.append(open(fn).read().rstrip("\n"))
1840
1841 fn = os.path.join(sourcedir, "pagesize")
1842 if os.access(fn, os.F_OK):
1843 cmd.append("--pagesize")
1844 cmd.append(open(fn).read().rstrip("\n"))
1845
1846 args = info_dict.get("mkbootimg_args")
1847 if args and args.strip():
1848 cmd.extend(shlex.split(args))
1849
1850 args = info_dict.get("mkbootimg_version_args")
1851 if args and args.strip():
1852 cmd.extend(shlex.split(args))
1853
1854 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1855 cmd.extend(["--vendor_boot", img.name])
1856
Devin Moore50509012021-01-13 10:45:04 -08001857 fn = os.path.join(sourcedir, "vendor_bootconfig")
1858 if os.access(fn, os.F_OK):
1859 cmd.append("--vendor_bootconfig")
1860 cmd.append(fn)
1861
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001862 ramdisk_fragment_imgs = []
1863 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1864 if os.access(fn, os.F_OK):
1865 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1866 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001867 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1868 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001869 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001870 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1871 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001872 # Use prebuilt image if found, else create ramdisk from supplied files.
1873 if os.access(fn, os.F_OK):
1874 ramdisk_fragment_pathname = fn
1875 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001876 ramdisk_fragment_root = os.path.join(
1877 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001878 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1879 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001880 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1881 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1882 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1883
Steve Mucklee1b10862019-07-10 10:49:37 -07001884 RunAndCheckOutput(cmd)
1885
1886 # AVB: if enabled, calculate and add hash.
1887 if info_dict.get("avb_enable") == "true":
1888 avbtool = info_dict["avb_avbtool"]
1889 part_size = info_dict["vendor_boot_size"]
1890 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001891 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001892 AppendAVBSigningArgs(cmd, "vendor_boot")
1893 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1894 if args and args.strip():
1895 cmd.extend(shlex.split(args))
1896 RunAndCheckOutput(cmd)
1897
1898 img.seek(os.SEEK_SET, 0)
1899 data = img.read()
1900
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001901 for f in ramdisk_fragment_imgs:
1902 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001903 ramdisk_img.close()
1904 img.close()
1905
1906 return data
1907
1908
1909def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1910 info_dict=None):
1911 """Return a File object with the desired vendor boot image.
1912
1913 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1914 the source files in 'unpack_dir'/'tree_subdir'."""
1915
1916 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1917 if os.path.exists(prebuilt_path):
1918 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1919 return File.FromLocalFile(name, prebuilt_path)
1920
1921 logger.info("building image from target_files %s...", tree_subdir)
1922
1923 if info_dict is None:
1924 info_dict = OPTIONS.info_dict
1925
Kelvin Zhang0876c412020-06-23 15:06:58 -04001926 data = _BuildVendorBootImage(
1927 os.path.join(unpack_dir, tree_subdir), info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07001928 if data:
1929 return File(name, data)
1930 return None
1931
1932
Narayan Kamatha07bf042017-08-14 14:49:21 +01001933def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001934 """Gunzips the given gzip compressed file to a given output file."""
1935 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04001936 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001937 shutil.copyfileobj(in_file, out_file)
1938
1939
Tao Bao0ff15de2019-03-20 11:26:06 -07001940def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001941 """Unzips the archive to the given directory.
1942
1943 Args:
1944 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001945 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001946 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1947 archvie. Non-matching patterns will be filtered out. If there's no match
1948 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001949 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001950 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001951 if patterns is not None:
1952 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04001953 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07001954 names = input_zip.namelist()
1955 filtered = [
1956 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1957
1958 # There isn't any matching files. Don't unzip anything.
1959 if not filtered:
1960 return
1961 cmd.extend(filtered)
1962
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001963 RunAndCheckOutput(cmd)
1964
1965
Doug Zongker75f17362009-12-08 13:46:44 -08001966def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001967 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001968
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001969 Args:
1970 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1971 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1972
1973 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1974 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001975
Tao Bao1c830bf2017-12-25 10:43:47 -08001976 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001977 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001978 """
Doug Zongkereef39442009-04-02 12:14:19 -07001979
Tao Bao1c830bf2017-12-25 10:43:47 -08001980 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001981 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1982 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001983 UnzipToDir(m.group(1), tmp, pattern)
1984 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001985 filename = m.group(1)
1986 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001987 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001988
Tao Baodba59ee2018-01-09 13:21:02 -08001989 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001990
1991
Yifan Hong8a66a712019-04-04 15:37:57 -07001992def GetUserImage(which, tmpdir, input_zip,
1993 info_dict=None,
1994 allow_shared_blocks=None,
1995 hashtree_info_generator=None,
1996 reset_file_map=False):
1997 """Returns an Image object suitable for passing to BlockImageDiff.
1998
1999 This function loads the specified image from the given path. If the specified
2000 image is sparse, it also performs additional processing for OTA purpose. For
2001 example, it always adds block 0 to clobbered blocks list. It also detects
2002 files that cannot be reconstructed from the block list, for whom we should
2003 avoid applying imgdiff.
2004
2005 Args:
2006 which: The partition name.
2007 tmpdir: The directory that contains the prebuilt image and block map file.
2008 input_zip: The target-files ZIP archive.
2009 info_dict: The dict to be looked up for relevant info.
2010 allow_shared_blocks: If image is sparse, whether having shared blocks is
2011 allowed. If none, it is looked up from info_dict.
2012 hashtree_info_generator: If present and image is sparse, generates the
2013 hashtree_info for this sparse image.
2014 reset_file_map: If true and image is sparse, reset file map before returning
2015 the image.
2016 Returns:
2017 A Image object. If it is a sparse image and reset_file_map is False, the
2018 image will have file_map info loaded.
2019 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002020 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002021 info_dict = LoadInfoDict(input_zip)
2022
2023 is_sparse = info_dict.get("extfs_sparse_flag")
2024
2025 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2026 # shared blocks (i.e. some blocks will show up in multiple files' block
2027 # list). We can only allocate such shared blocks to the first "owner", and
2028 # disable imgdiff for all later occurrences.
2029 if allow_shared_blocks is None:
2030 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2031
2032 if is_sparse:
2033 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2034 hashtree_info_generator)
2035 if reset_file_map:
2036 img.ResetFileMap()
2037 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04002038 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07002039
2040
2041def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
2042 """Returns a Image object suitable for passing to BlockImageDiff.
2043
2044 This function loads the specified non-sparse image from the given path.
2045
2046 Args:
2047 which: The partition name.
2048 tmpdir: The directory that contains the prebuilt image and block map file.
2049 Returns:
2050 A Image object.
2051 """
2052 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2053 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2054
2055 # The image and map files must have been created prior to calling
2056 # ota_from_target_files.py (since LMP).
2057 assert os.path.exists(path) and os.path.exists(mappath)
2058
Tianjie Xu41976c72019-07-03 13:57:01 -07002059 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
2060
Yifan Hong8a66a712019-04-04 15:37:57 -07002061
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002062def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2063 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08002064 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2065
2066 This function loads the specified sparse image from the given path, and
2067 performs additional processing for OTA purpose. For example, it always adds
2068 block 0 to clobbered blocks list. It also detects files that cannot be
2069 reconstructed from the block list, for whom we should avoid applying imgdiff.
2070
2071 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002072 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002073 tmpdir: The directory that contains the prebuilt image and block map file.
2074 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002075 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002076 hashtree_info_generator: If present, generates the hashtree_info for this
2077 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08002078 Returns:
2079 A SparseImage object, with file_map info loaded.
2080 """
Tao Baoc765cca2018-01-31 17:32:40 -08002081 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2082 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2083
2084 # The image and map files must have been created prior to calling
2085 # ota_from_target_files.py (since LMP).
2086 assert os.path.exists(path) and os.path.exists(mappath)
2087
2088 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2089 # it to clobbered_blocks so that it will be written to the target
2090 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2091 clobbered_blocks = "0"
2092
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002093 image = sparse_img.SparseImage(
2094 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
2095 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08002096
2097 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2098 # if they contain all zeros. We can't reconstruct such a file from its block
2099 # list. Tag such entries accordingly. (Bug: 65213616)
2100 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002101 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002102 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002103 continue
2104
Tom Cherryd14b8952018-08-09 14:26:00 -07002105 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2106 # filename listed in system.map may contain an additional leading slash
2107 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2108 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002109 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002110 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002111 arcname = entry.lstrip('/')
2112 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002113 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002114 else:
2115 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002116
2117 assert arcname in input_zip.namelist(), \
2118 "Failed to find the ZIP entry for {}".format(entry)
2119
Tao Baoc765cca2018-01-31 17:32:40 -08002120 info = input_zip.getinfo(arcname)
2121 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002122
2123 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002124 # image, check the original block list to determine its completeness. Note
2125 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002126 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002127 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002128
Tao Baoc765cca2018-01-31 17:32:40 -08002129 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2130 ranges.extra['incomplete'] = True
2131
2132 return image
2133
2134
Doug Zongkereef39442009-04-02 12:14:19 -07002135def GetKeyPasswords(keylist):
2136 """Given a list of keys, prompt the user to enter passwords for
2137 those which require them. Return a {key: password} dict. password
2138 will be None if the key has no password."""
2139
Doug Zongker8ce7c252009-05-22 13:34:54 -07002140 no_passwords = []
2141 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002142 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002143 devnull = open("/dev/null", "w+b")
2144 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002145 # We don't need a password for things that aren't really keys.
2146 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002147 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002148 continue
2149
T.R. Fullhart37e10522013-03-18 10:31:26 -07002150 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002151 "-inform", "DER", "-nocrypt"],
2152 stdin=devnull.fileno(),
2153 stdout=devnull.fileno(),
2154 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002155 p.communicate()
2156 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002157 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002158 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002159 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002160 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2161 "-inform", "DER", "-passin", "pass:"],
2162 stdin=devnull.fileno(),
2163 stdout=devnull.fileno(),
2164 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002165 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002166 if p.returncode == 0:
2167 # Encrypted key with empty string as password.
2168 key_passwords[k] = ''
2169 elif stderr.startswith('Error decrypting key'):
2170 # Definitely encrypted key.
2171 # It would have said "Error reading key" if it didn't parse correctly.
2172 need_passwords.append(k)
2173 else:
2174 # Potentially, a type of key that openssl doesn't understand.
2175 # We'll let the routines in signapk.jar handle it.
2176 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002177 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002178
T.R. Fullhart37e10522013-03-18 10:31:26 -07002179 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002180 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002181 return key_passwords
2182
2183
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002184def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002185 """Gets the minSdkVersion declared in the APK.
2186
changho.shin0f125362019-07-08 10:59:00 +09002187 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07002188 This can be both a decimal number (API Level) or a codename.
2189
2190 Args:
2191 apk_name: The APK filename.
2192
2193 Returns:
2194 The parsed SDK version string.
2195
2196 Raises:
2197 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002198 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002199 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09002200 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002201 stderr=subprocess.PIPE)
2202 stdoutdata, stderrdata = proc.communicate()
2203 if proc.returncode != 0:
2204 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09002205 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07002206 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002207
Tao Baof47bf0f2018-03-21 23:28:51 -07002208 for line in stdoutdata.split("\n"):
2209 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002210 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2211 if m:
2212 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002213 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002214
2215
2216def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002217 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002218
Tao Baof47bf0f2018-03-21 23:28:51 -07002219 If minSdkVersion is set to a codename, it is translated to a number using the
2220 provided map.
2221
2222 Args:
2223 apk_name: The APK filename.
2224
2225 Returns:
2226 The parsed SDK version number.
2227
2228 Raises:
2229 ExternalError: On failing to get the min SDK version number.
2230 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002231 version = GetMinSdkVersion(apk_name)
2232 try:
2233 return int(version)
2234 except ValueError:
2235 # Not a decimal number. Codename?
2236 if version in codename_to_api_level_map:
2237 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002238 raise ExternalError(
2239 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2240 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002241
2242
2243def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002244 codename_to_api_level_map=None, whole_file=False,
2245 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002246 """Sign the input_name zip/jar/apk, producing output_name. Use the
2247 given key and password (the latter may be None if the key does not
2248 have a password.
2249
Doug Zongker951495f2009-08-14 12:44:19 -07002250 If whole_file is true, use the "-w" option to SignApk to embed a
2251 signature that covers the whole file in the archive comment of the
2252 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002253
2254 min_api_level is the API Level (int) of the oldest platform this file may end
2255 up on. If not specified for an APK, the API Level is obtained by interpreting
2256 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2257
2258 codename_to_api_level_map is needed to translate the codename which may be
2259 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002260
2261 Caller may optionally specify extra args to be passed to SignApk, which
2262 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002263 """
Tao Bao76def242017-11-21 09:25:31 -08002264 if codename_to_api_level_map is None:
2265 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002266 if extra_signapk_args is None:
2267 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002268
Alex Klyubin9667b182015-12-10 13:38:50 -08002269 java_library_path = os.path.join(
2270 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2271
Tao Baoe95540e2016-11-08 12:08:53 -08002272 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2273 ["-Djava.library.path=" + java_library_path,
2274 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002275 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002276 if whole_file:
2277 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002278
2279 min_sdk_version = min_api_level
2280 if min_sdk_version is None:
2281 if not whole_file:
2282 min_sdk_version = GetMinSdkVersionInt(
2283 input_name, codename_to_api_level_map)
2284 if min_sdk_version is not None:
2285 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2286
T.R. Fullhart37e10522013-03-18 10:31:26 -07002287 cmd.extend([key + OPTIONS.public_key_suffix,
2288 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002289 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002290
Tao Bao73dd4f42018-10-04 16:25:33 -07002291 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002292 if password is not None:
2293 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002294 stdoutdata, _ = proc.communicate(password)
2295 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002296 raise ExternalError(
2297 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002298 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002299
Doug Zongkereef39442009-04-02 12:14:19 -07002300
Doug Zongker37974732010-09-16 17:44:38 -07002301def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002302 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002303
Tao Bao9dd909e2017-11-14 11:27:32 -08002304 For non-AVB images, raise exception if the data is too big. Print a warning
2305 if the data is nearing the maximum size.
2306
2307 For AVB images, the actual image size should be identical to the limit.
2308
2309 Args:
2310 data: A string that contains all the data for the partition.
2311 target: The partition name. The ".img" suffix is optional.
2312 info_dict: The dict to be looked up for relevant info.
2313 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002314 if target.endswith(".img"):
2315 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002316 mount_point = "/" + target
2317
Ying Wangf8824af2014-06-03 14:07:27 -07002318 fs_type = None
2319 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002320 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002321 if mount_point == "/userdata":
2322 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002323 p = info_dict["fstab"][mount_point]
2324 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002325 device = p.device
2326 if "/" in device:
2327 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002328 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002329 if not fs_type or not limit:
2330 return
Doug Zongkereef39442009-04-02 12:14:19 -07002331
Andrew Boie0f9aec82012-02-14 09:32:52 -08002332 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002333 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2334 # path.
2335 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2336 if size != limit:
2337 raise ExternalError(
2338 "Mismatching image size for %s: expected %d actual %d" % (
2339 target, limit, size))
2340 else:
2341 pct = float(size) * 100.0 / limit
2342 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2343 if pct >= 99.0:
2344 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002345
2346 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002347 logger.warning("\n WARNING: %s\n", msg)
2348 else:
2349 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002350
2351
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002352def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002353 """Parses the APK certs info from a given target-files zip.
2354
2355 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2356 tuple with the following elements: (1) a dictionary that maps packages to
2357 certs (based on the "certificate" and "private_key" attributes in the file;
2358 (2) a string representing the extension of compressed APKs in the target files
2359 (e.g ".gz", ".bro").
2360
2361 Args:
2362 tf_zip: The input target_files ZipFile (already open).
2363
2364 Returns:
2365 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2366 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2367 no compressed APKs.
2368 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002369 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002370 compressed_extension = None
2371
Tao Bao0f990332017-09-08 19:02:54 -07002372 # META/apkcerts.txt contains the info for _all_ the packages known at build
2373 # time. Filter out the ones that are not installed.
2374 installed_files = set()
2375 for name in tf_zip.namelist():
2376 basename = os.path.basename(name)
2377 if basename:
2378 installed_files.add(basename)
2379
Tao Baoda30cfa2017-12-01 16:19:46 -08002380 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002381 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002382 if not line:
2383 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002384 m = re.match(
2385 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002386 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2387 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002388 line)
2389 if not m:
2390 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002391
Tao Bao818ddf52018-01-05 11:17:34 -08002392 matches = m.groupdict()
2393 cert = matches["CERT"]
2394 privkey = matches["PRIVKEY"]
2395 name = matches["NAME"]
2396 this_compressed_extension = matches["COMPRESSED"]
2397
2398 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2399 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2400 if cert in SPECIAL_CERT_STRINGS and not privkey:
2401 certmap[name] = cert
2402 elif (cert.endswith(OPTIONS.public_key_suffix) and
2403 privkey.endswith(OPTIONS.private_key_suffix) and
2404 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2405 certmap[name] = cert[:-public_key_suffix_len]
2406 else:
2407 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2408
2409 if not this_compressed_extension:
2410 continue
2411
2412 # Only count the installed files.
2413 filename = name + '.' + this_compressed_extension
2414 if filename not in installed_files:
2415 continue
2416
2417 # Make sure that all the values in the compression map have the same
2418 # extension. We don't support multiple compression methods in the same
2419 # system image.
2420 if compressed_extension:
2421 if this_compressed_extension != compressed_extension:
2422 raise ValueError(
2423 "Multiple compressed extensions: {} vs {}".format(
2424 compressed_extension, this_compressed_extension))
2425 else:
2426 compressed_extension = this_compressed_extension
2427
2428 return (certmap,
2429 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002430
2431
Doug Zongkereef39442009-04-02 12:14:19 -07002432COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002433Global options
2434
2435 -p (--path) <dir>
2436 Prepend <dir>/bin to the list of places to search for binaries run by this
2437 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002438
Doug Zongker05d3dea2009-06-22 11:32:31 -07002439 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002440 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002441
Tao Bao30df8b42018-04-23 15:32:53 -07002442 -x (--extra) <key=value>
2443 Add a key/value pair to the 'extras' dict, which device-specific extension
2444 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002445
Doug Zongkereef39442009-04-02 12:14:19 -07002446 -v (--verbose)
2447 Show command lines being executed.
2448
2449 -h (--help)
2450 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002451
2452 --logfile <file>
2453 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002454"""
2455
Kelvin Zhang0876c412020-06-23 15:06:58 -04002456
Doug Zongkereef39442009-04-02 12:14:19 -07002457def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002458 print(docstring.rstrip("\n"))
2459 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002460
2461
2462def ParseOptions(argv,
2463 docstring,
2464 extra_opts="", extra_long_opts=(),
2465 extra_option_handler=None):
2466 """Parse the options in argv and return any arguments that aren't
2467 flags. docstring is the calling module's docstring, to be displayed
2468 for errors and -h. extra_opts and extra_long_opts are for flags
2469 defined by the caller, which are processed by passing them to
2470 extra_option_handler."""
2471
2472 try:
2473 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002474 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002475 ["help", "verbose", "path=", "signapk_path=",
2476 "signapk_shared_library_path=", "extra_signapk_args=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002477 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002478 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2479 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Tianjie0f307452020-04-01 12:20:21 -07002480 "extra=", "logfile=", "aftl_tool_path=", "aftl_server=",
2481 "aftl_key_path=", "aftl_manufacturer_key_path=",
2482 "aftl_signer_helper="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002483 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002484 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002485 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002486 sys.exit(2)
2487
Doug Zongkereef39442009-04-02 12:14:19 -07002488 for o, a in opts:
2489 if o in ("-h", "--help"):
2490 Usage(docstring)
2491 sys.exit()
2492 elif o in ("-v", "--verbose"):
2493 OPTIONS.verbose = True
2494 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002495 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002496 elif o in ("--signapk_path",):
2497 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002498 elif o in ("--signapk_shared_library_path",):
2499 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002500 elif o in ("--extra_signapk_args",):
2501 OPTIONS.extra_signapk_args = shlex.split(a)
2502 elif o in ("--java_path",):
2503 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002504 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002505 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002506 elif o in ("--android_jar_path",):
2507 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002508 elif o in ("--public_key_suffix",):
2509 OPTIONS.public_key_suffix = a
2510 elif o in ("--private_key_suffix",):
2511 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002512 elif o in ("--boot_signer_path",):
2513 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002514 elif o in ("--boot_signer_args",):
2515 OPTIONS.boot_signer_args = shlex.split(a)
2516 elif o in ("--verity_signer_path",):
2517 OPTIONS.verity_signer_path = a
2518 elif o in ("--verity_signer_args",):
2519 OPTIONS.verity_signer_args = shlex.split(a)
Tianjie0f307452020-04-01 12:20:21 -07002520 elif o in ("--aftl_tool_path",):
2521 OPTIONS.aftl_tool_path = a
Dan Austin52903642019-12-12 15:44:00 -08002522 elif o in ("--aftl_server",):
2523 OPTIONS.aftl_server = a
2524 elif o in ("--aftl_key_path",):
2525 OPTIONS.aftl_key_path = a
2526 elif o in ("--aftl_manufacturer_key_path",):
2527 OPTIONS.aftl_manufacturer_key_path = a
2528 elif o in ("--aftl_signer_helper",):
2529 OPTIONS.aftl_signer_helper = a
Doug Zongker05d3dea2009-06-22 11:32:31 -07002530 elif o in ("-s", "--device_specific"):
2531 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002532 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002533 key, value = a.split("=", 1)
2534 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002535 elif o in ("--logfile",):
2536 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002537 else:
2538 if extra_option_handler is None or not extra_option_handler(o, a):
2539 assert False, "unknown option \"%s\"" % (o,)
2540
Doug Zongker85448772014-09-09 14:59:20 -07002541 if OPTIONS.search_path:
2542 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2543 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002544
2545 return args
2546
2547
Tao Bao4c851b12016-09-19 13:54:38 -07002548def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002549 """Make a temp file and add it to the list of things to be deleted
2550 when Cleanup() is called. Return the filename."""
2551 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2552 os.close(fd)
2553 OPTIONS.tempfiles.append(fn)
2554 return fn
2555
2556
Tao Bao1c830bf2017-12-25 10:43:47 -08002557def MakeTempDir(prefix='tmp', suffix=''):
2558 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2559
2560 Returns:
2561 The absolute pathname of the new directory.
2562 """
2563 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2564 OPTIONS.tempfiles.append(dir_name)
2565 return dir_name
2566
2567
Doug Zongkereef39442009-04-02 12:14:19 -07002568def Cleanup():
2569 for i in OPTIONS.tempfiles:
2570 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002571 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002572 else:
2573 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002574 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002575
2576
2577class PasswordManager(object):
2578 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002579 self.editor = os.getenv("EDITOR")
2580 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002581
2582 def GetPasswords(self, items):
2583 """Get passwords corresponding to each string in 'items',
2584 returning a dict. (The dict may have keys in addition to the
2585 values in 'items'.)
2586
2587 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2588 user edit that file to add more needed passwords. If no editor is
2589 available, or $ANDROID_PW_FILE isn't define, prompts the user
2590 interactively in the ordinary way.
2591 """
2592
2593 current = self.ReadFile()
2594
2595 first = True
2596 while True:
2597 missing = []
2598 for i in items:
2599 if i not in current or not current[i]:
2600 missing.append(i)
2601 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002602 if not missing:
2603 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002604
2605 for i in missing:
2606 current[i] = ""
2607
2608 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002609 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002610 if sys.version_info[0] >= 3:
2611 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002612 answer = raw_input("try to edit again? [y]> ").strip()
2613 if answer and answer[0] not in 'yY':
2614 raise RuntimeError("key passwords unavailable")
2615 first = False
2616
2617 current = self.UpdateAndReadFile(current)
2618
Kelvin Zhang0876c412020-06-23 15:06:58 -04002619 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002620 """Prompt the user to enter a value (password) for each key in
2621 'current' whose value is fales. Returns a new dict with all the
2622 values.
2623 """
2624 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002625 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002626 if v:
2627 result[k] = v
2628 else:
2629 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002630 result[k] = getpass.getpass(
2631 "Enter password for %s key> " % k).strip()
2632 if result[k]:
2633 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002634 return result
2635
2636 def UpdateAndReadFile(self, current):
2637 if not self.editor or not self.pwfile:
2638 return self.PromptResult(current)
2639
2640 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002641 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002642 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2643 f.write("# (Additional spaces are harmless.)\n\n")
2644
2645 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002646 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002647 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002648 f.write("[[[ %s ]]] %s\n" % (v, k))
2649 if not v and first_line is None:
2650 # position cursor on first line with no password.
2651 first_line = i + 4
2652 f.close()
2653
Tao Bao986ee862018-10-04 15:46:16 -07002654 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002655
2656 return self.ReadFile()
2657
2658 def ReadFile(self):
2659 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002660 if self.pwfile is None:
2661 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002662 try:
2663 f = open(self.pwfile, "r")
2664 for line in f:
2665 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002666 if not line or line[0] == '#':
2667 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002668 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2669 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002670 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002671 else:
2672 result[m.group(2)] = m.group(1)
2673 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002674 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002675 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002676 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002677 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002678
2679
Dan Albert8e0178d2015-01-27 15:53:15 -08002680def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2681 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002682
2683 # http://b/18015246
2684 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2685 # for files larger than 2GiB. We can work around this by adjusting their
2686 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2687 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2688 # it isn't clear to me exactly what circumstances cause this).
2689 # `zipfile.write()` must be used directly to work around this.
2690 #
2691 # This mess can be avoided if we port to python3.
2692 saved_zip64_limit = zipfile.ZIP64_LIMIT
2693 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2694
2695 if compress_type is None:
2696 compress_type = zip_file.compression
2697 if arcname is None:
2698 arcname = filename
2699
2700 saved_stat = os.stat(filename)
2701
2702 try:
2703 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2704 # file to be zipped and reset it when we're done.
2705 os.chmod(filename, perms)
2706
2707 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002708 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2709 # intentional. zip stores datetimes in local time without a time zone
2710 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2711 # in the zip archive.
2712 local_epoch = datetime.datetime.fromtimestamp(0)
2713 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002714 os.utime(filename, (timestamp, timestamp))
2715
2716 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2717 finally:
2718 os.chmod(filename, saved_stat.st_mode)
2719 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2720 zipfile.ZIP64_LIMIT = saved_zip64_limit
2721
2722
Tao Bao58c1b962015-05-20 09:32:18 -07002723def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002724 compress_type=None):
2725 """Wrap zipfile.writestr() function to work around the zip64 limit.
2726
2727 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2728 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2729 when calling crc32(bytes).
2730
2731 But it still works fine to write a shorter string into a large zip file.
2732 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2733 when we know the string won't be too long.
2734 """
2735
2736 saved_zip64_limit = zipfile.ZIP64_LIMIT
2737 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2738
2739 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2740 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002741 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002742 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002743 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002744 else:
Tao Baof3282b42015-04-01 11:21:55 -07002745 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002746 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2747 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2748 # such a case (since
2749 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2750 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2751 # permission bits. We follow the logic in Python 3 to get consistent
2752 # behavior between using the two versions.
2753 if not zinfo.external_attr:
2754 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002755
2756 # If compress_type is given, it overrides the value in zinfo.
2757 if compress_type is not None:
2758 zinfo.compress_type = compress_type
2759
Tao Bao58c1b962015-05-20 09:32:18 -07002760 # If perms is given, it has a priority.
2761 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002762 # If perms doesn't set the file type, mark it as a regular file.
2763 if perms & 0o770000 == 0:
2764 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002765 zinfo.external_attr = perms << 16
2766
Tao Baof3282b42015-04-01 11:21:55 -07002767 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002768 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2769
Dan Albert8b72aef2015-03-23 19:13:21 -07002770 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002771 zipfile.ZIP64_LIMIT = saved_zip64_limit
2772
2773
Tao Bao89d7ab22017-12-14 17:05:33 -08002774def ZipDelete(zip_filename, entries):
2775 """Deletes entries from a ZIP file.
2776
2777 Since deleting entries from a ZIP file is not supported, it shells out to
2778 'zip -d'.
2779
2780 Args:
2781 zip_filename: The name of the ZIP file.
2782 entries: The name of the entry, or the list of names to be deleted.
2783
2784 Raises:
2785 AssertionError: In case of non-zero return from 'zip'.
2786 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002787 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002788 entries = [entries]
2789 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002790 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002791
2792
Tao Baof3282b42015-04-01 11:21:55 -07002793def ZipClose(zip_file):
2794 # http://b/18015246
2795 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2796 # central directory.
2797 saved_zip64_limit = zipfile.ZIP64_LIMIT
2798 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2799
2800 zip_file.close()
2801
2802 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002803
2804
2805class DeviceSpecificParams(object):
2806 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002807
Doug Zongker05d3dea2009-06-22 11:32:31 -07002808 def __init__(self, **kwargs):
2809 """Keyword arguments to the constructor become attributes of this
2810 object, which is passed to all functions in the device-specific
2811 module."""
Tao Bao38884282019-07-10 22:20:56 -07002812 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002813 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002814 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002815
2816 if self.module is None:
2817 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002818 if not path:
2819 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002820 try:
2821 if os.path.isdir(path):
2822 info = imp.find_module("releasetools", [path])
2823 else:
2824 d, f = os.path.split(path)
2825 b, x = os.path.splitext(f)
2826 if x == ".py":
2827 f = b
2828 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002829 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002830 self.module = imp.load_module("device_specific", *info)
2831 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002832 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002833
2834 def _DoCall(self, function_name, *args, **kwargs):
2835 """Call the named function in the device-specific module, passing
2836 the given args and kwargs. The first argument to the call will be
2837 the DeviceSpecific object itself. If there is no module, or the
2838 module does not define the function, return the value of the
2839 'default' kwarg (which itself defaults to None)."""
2840 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002841 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002842 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2843
2844 def FullOTA_Assertions(self):
2845 """Called after emitting the block of assertions at the top of a
2846 full OTA package. Implementations can add whatever additional
2847 assertions they like."""
2848 return self._DoCall("FullOTA_Assertions")
2849
Doug Zongkere5ff5902012-01-17 10:55:37 -08002850 def FullOTA_InstallBegin(self):
2851 """Called at the start of full OTA installation."""
2852 return self._DoCall("FullOTA_InstallBegin")
2853
Yifan Hong10c530d2018-12-27 17:34:18 -08002854 def FullOTA_GetBlockDifferences(self):
2855 """Called during full OTA installation and verification.
2856 Implementation should return a list of BlockDifference objects describing
2857 the update on each additional partitions.
2858 """
2859 return self._DoCall("FullOTA_GetBlockDifferences")
2860
Doug Zongker05d3dea2009-06-22 11:32:31 -07002861 def FullOTA_InstallEnd(self):
2862 """Called at the end of full OTA installation; typically this is
2863 used to install the image for the device's baseband processor."""
2864 return self._DoCall("FullOTA_InstallEnd")
2865
2866 def IncrementalOTA_Assertions(self):
2867 """Called after emitting the block of assertions at the top of an
2868 incremental OTA package. Implementations can add whatever
2869 additional assertions they like."""
2870 return self._DoCall("IncrementalOTA_Assertions")
2871
Doug Zongkere5ff5902012-01-17 10:55:37 -08002872 def IncrementalOTA_VerifyBegin(self):
2873 """Called at the start of the verification phase of incremental
2874 OTA installation; additional checks can be placed here to abort
2875 the script before any changes are made."""
2876 return self._DoCall("IncrementalOTA_VerifyBegin")
2877
Doug Zongker05d3dea2009-06-22 11:32:31 -07002878 def IncrementalOTA_VerifyEnd(self):
2879 """Called at the end of the verification phase of incremental OTA
2880 installation; additional checks can be placed here to abort the
2881 script before any changes are made."""
2882 return self._DoCall("IncrementalOTA_VerifyEnd")
2883
Doug Zongkere5ff5902012-01-17 10:55:37 -08002884 def IncrementalOTA_InstallBegin(self):
2885 """Called at the start of incremental OTA installation (after
2886 verification is complete)."""
2887 return self._DoCall("IncrementalOTA_InstallBegin")
2888
Yifan Hong10c530d2018-12-27 17:34:18 -08002889 def IncrementalOTA_GetBlockDifferences(self):
2890 """Called during incremental OTA installation and verification.
2891 Implementation should return a list of BlockDifference objects describing
2892 the update on each additional partitions.
2893 """
2894 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2895
Doug Zongker05d3dea2009-06-22 11:32:31 -07002896 def IncrementalOTA_InstallEnd(self):
2897 """Called at the end of incremental OTA installation; typically
2898 this is used to install the image for the device's baseband
2899 processor."""
2900 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002901
Tao Bao9bc6bb22015-11-09 16:58:28 -08002902 def VerifyOTA_Assertions(self):
2903 return self._DoCall("VerifyOTA_Assertions")
2904
Tao Bao76def242017-11-21 09:25:31 -08002905
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002906class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002907 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002908 self.name = name
2909 self.data = data
2910 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002911 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002912 self.sha1 = sha1(data).hexdigest()
2913
2914 @classmethod
2915 def FromLocalFile(cls, name, diskname):
2916 f = open(diskname, "rb")
2917 data = f.read()
2918 f.close()
2919 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002920
2921 def WriteToTemp(self):
2922 t = tempfile.NamedTemporaryFile()
2923 t.write(self.data)
2924 t.flush()
2925 return t
2926
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002927 def WriteToDir(self, d):
2928 with open(os.path.join(d, self.name), "wb") as fp:
2929 fp.write(self.data)
2930
Geremy Condra36bd3652014-02-06 19:45:10 -08002931 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002932 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002933
Tao Bao76def242017-11-21 09:25:31 -08002934
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002935DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04002936 ".gz": "imgdiff",
2937 ".zip": ["imgdiff", "-z"],
2938 ".jar": ["imgdiff", "-z"],
2939 ".apk": ["imgdiff", "-z"],
2940 ".img": "imgdiff",
2941}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002942
Tao Bao76def242017-11-21 09:25:31 -08002943
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002944class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002945 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002946 self.tf = tf
2947 self.sf = sf
2948 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002949 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002950
2951 def ComputePatch(self):
2952 """Compute the patch (as a string of data) needed to turn sf into
2953 tf. Returns the same tuple as GetPatch()."""
2954
2955 tf = self.tf
2956 sf = self.sf
2957
Doug Zongker24cd2802012-08-14 16:36:15 -07002958 if self.diff_program:
2959 diff_program = self.diff_program
2960 else:
2961 ext = os.path.splitext(tf.name)[1]
2962 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002963
2964 ttemp = tf.WriteToTemp()
2965 stemp = sf.WriteToTemp()
2966
2967 ext = os.path.splitext(tf.name)[1]
2968
2969 try:
2970 ptemp = tempfile.NamedTemporaryFile()
2971 if isinstance(diff_program, list):
2972 cmd = copy.copy(diff_program)
2973 else:
2974 cmd = [diff_program]
2975 cmd.append(stemp.name)
2976 cmd.append(ttemp.name)
2977 cmd.append(ptemp.name)
2978 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002979 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04002980
Doug Zongkerf8340082014-08-05 10:39:37 -07002981 def run():
2982 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002983 if e:
2984 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002985 th = threading.Thread(target=run)
2986 th.start()
2987 th.join(timeout=300) # 5 mins
2988 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002989 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002990 p.terminate()
2991 th.join(5)
2992 if th.is_alive():
2993 p.kill()
2994 th.join()
2995
Tianjie Xua2a9f992018-01-05 15:15:54 -08002996 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002997 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002998 self.patch = None
2999 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003000 diff = ptemp.read()
3001 finally:
3002 ptemp.close()
3003 stemp.close()
3004 ttemp.close()
3005
3006 self.patch = diff
3007 return self.tf, self.sf, self.patch
3008
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003009 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003010 """Returns a tuple of (target_file, source_file, patch_data).
3011
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003012 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003013 computing the patch failed.
3014 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003015 return self.tf, self.sf, self.patch
3016
3017
3018def ComputeDifferences(diffs):
3019 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003020 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003021
3022 # Do the largest files first, to try and reduce the long-pole effect.
3023 by_size = [(i.tf.size, i) for i in diffs]
3024 by_size.sort(reverse=True)
3025 by_size = [i[1] for i in by_size]
3026
3027 lock = threading.Lock()
3028 diff_iter = iter(by_size) # accessed under lock
3029
3030 def worker():
3031 try:
3032 lock.acquire()
3033 for d in diff_iter:
3034 lock.release()
3035 start = time.time()
3036 d.ComputePatch()
3037 dur = time.time() - start
3038 lock.acquire()
3039
3040 tf, sf, patch = d.GetPatch()
3041 if sf.name == tf.name:
3042 name = tf.name
3043 else:
3044 name = "%s (%s)" % (tf.name, sf.name)
3045 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003046 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003047 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003048 logger.info(
3049 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3050 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003051 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003052 except Exception:
3053 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003054 raise
3055
3056 # start worker threads; wait for them all to finish.
3057 threads = [threading.Thread(target=worker)
3058 for i in range(OPTIONS.worker_threads)]
3059 for th in threads:
3060 th.start()
3061 while threads:
3062 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003063
3064
Dan Albert8b72aef2015-03-23 19:13:21 -07003065class BlockDifference(object):
3066 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003067 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003068 self.tgt = tgt
3069 self.src = src
3070 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003071 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003072 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003073
Tao Baodd2a5892015-03-12 12:32:37 -07003074 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003075 version = max(
3076 int(i) for i in
3077 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003078 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003079 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003080
Tianjie Xu41976c72019-07-03 13:57:01 -07003081 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3082 version=self.version,
3083 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003084 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003085 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003086 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003087 self.touched_src_ranges = b.touched_src_ranges
3088 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003089
Yifan Hong10c530d2018-12-27 17:34:18 -08003090 # On devices with dynamic partitions, for new partitions,
3091 # src is None but OPTIONS.source_info_dict is not.
3092 if OPTIONS.source_info_dict is None:
3093 is_dynamic_build = OPTIONS.info_dict.get(
3094 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003095 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003096 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003097 is_dynamic_build = OPTIONS.source_info_dict.get(
3098 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003099 is_dynamic_source = partition in shlex.split(
3100 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003101
Yifan Hongbb2658d2019-01-25 12:30:58 -08003102 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003103 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3104
Yifan Hongbb2658d2019-01-25 12:30:58 -08003105 # For dynamic partitions builds, check partition list in both source
3106 # and target build because new partitions may be added, and existing
3107 # partitions may be removed.
3108 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3109
Yifan Hong10c530d2018-12-27 17:34:18 -08003110 if is_dynamic:
3111 self.device = 'map_partition("%s")' % partition
3112 else:
3113 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003114 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3115 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003116 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003117 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3118 OPTIONS.source_info_dict)
3119 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003120
Tao Baod8d14be2016-02-04 14:26:02 -08003121 @property
3122 def required_cache(self):
3123 return self._required_cache
3124
Tao Bao76def242017-11-21 09:25:31 -08003125 def WriteScript(self, script, output_zip, progress=None,
3126 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003127 if not self.src:
3128 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003129 script.Print("Patching %s image unconditionally..." % (self.partition,))
3130 else:
3131 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003132
Dan Albert8b72aef2015-03-23 19:13:21 -07003133 if progress:
3134 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003135 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003136
3137 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003138 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003139
Tao Bao9bc6bb22015-11-09 16:58:28 -08003140 def WriteStrictVerifyScript(self, script):
3141 """Verify all the blocks in the care_map, including clobbered blocks.
3142
3143 This differs from the WriteVerifyScript() function: a) it prints different
3144 error messages; b) it doesn't allow half-way updated images to pass the
3145 verification."""
3146
3147 partition = self.partition
3148 script.Print("Verifying %s..." % (partition,))
3149 ranges = self.tgt.care_map
3150 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003151 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003152 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3153 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003154 self.device, ranges_str,
3155 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003156 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003157 script.AppendExtra("")
3158
Tao Baod522bdc2016-04-12 15:53:16 -07003159 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003160 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003161
3162 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003163 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003164 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003165
3166 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003167 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003168 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003169 ranges = self.touched_src_ranges
3170 expected_sha1 = self.touched_src_sha1
3171 else:
3172 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3173 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003174
3175 # No blocks to be checked, skipping.
3176 if not ranges:
3177 return
3178
Tao Bao5ece99d2015-05-12 11:42:31 -07003179 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003180 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003181 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003182 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3183 '"%s.patch.dat")) then' % (
3184 self.device, ranges_str, expected_sha1,
3185 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003186 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003187 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003188
Tianjie Xufc3422a2015-12-15 11:53:59 -08003189 if self.version >= 4:
3190
3191 # Bug: 21124327
3192 # When generating incrementals for the system and vendor partitions in
3193 # version 4 or newer, explicitly check the first block (which contains
3194 # the superblock) of the partition to see if it's what we expect. If
3195 # this check fails, give an explicit log message about the partition
3196 # having been remounted R/W (the most likely explanation).
3197 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003198 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003199
3200 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003201 if partition == "system":
3202 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3203 else:
3204 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003205 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003206 'ifelse (block_image_recover({device}, "{ranges}") && '
3207 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003208 'package_extract_file("{partition}.transfer.list"), '
3209 '"{partition}.new.dat", "{partition}.patch.dat"), '
3210 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003211 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003212 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003213 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003214
Tao Baodd2a5892015-03-12 12:32:37 -07003215 # Abort the OTA update. Note that the incremental OTA cannot be applied
3216 # even if it may match the checksum of the target partition.
3217 # a) If version < 3, operations like move and erase will make changes
3218 # unconditionally and damage the partition.
3219 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003220 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003221 if partition == "system":
3222 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3223 else:
3224 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3225 script.AppendExtra((
3226 'abort("E%d: %s partition has unexpected contents");\n'
3227 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003228
Yifan Hong10c530d2018-12-27 17:34:18 -08003229 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003230 partition = self.partition
3231 script.Print('Verifying the updated %s image...' % (partition,))
3232 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3233 ranges = self.tgt.care_map
3234 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003235 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003236 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003237 self.device, ranges_str,
3238 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003239
3240 # Bug: 20881595
3241 # Verify that extended blocks are really zeroed out.
3242 if self.tgt.extended:
3243 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003244 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003245 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003246 self.device, ranges_str,
3247 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003248 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003249 if partition == "system":
3250 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3251 else:
3252 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003253 script.AppendExtra(
3254 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003255 ' abort("E%d: %s partition has unexpected non-zero contents after '
3256 'OTA update");\n'
3257 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003258 else:
3259 script.Print('Verified the updated %s image.' % (partition,))
3260
Tianjie Xu209db462016-05-24 17:34:52 -07003261 if partition == "system":
3262 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3263 else:
3264 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3265
Tao Bao5fcaaef2015-06-01 13:40:49 -07003266 script.AppendExtra(
3267 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003268 ' abort("E%d: %s partition has unexpected contents after OTA '
3269 'update");\n'
3270 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003271
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003272 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003273 ZipWrite(output_zip,
3274 '{}.transfer.list'.format(self.path),
3275 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003276
Tao Bao76def242017-11-21 09:25:31 -08003277 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3278 # its size. Quailty 9 almost triples the compression time but doesn't
3279 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003280 # zip | brotli(quality 6) | brotli(quality 9)
3281 # compressed_size: 942M | 869M (~8% reduced) | 854M
3282 # compression_time: 75s | 265s | 719s
3283 # decompression_time: 15s | 25s | 25s
3284
3285 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003286 brotli_cmd = ['brotli', '--quality=6',
3287 '--output={}.new.dat.br'.format(self.path),
3288 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003289 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003290 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003291
3292 new_data_name = '{}.new.dat.br'.format(self.partition)
3293 ZipWrite(output_zip,
3294 '{}.new.dat.br'.format(self.path),
3295 new_data_name,
3296 compress_type=zipfile.ZIP_STORED)
3297 else:
3298 new_data_name = '{}.new.dat'.format(self.partition)
3299 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3300
Dan Albert8e0178d2015-01-27 15:53:15 -08003301 ZipWrite(output_zip,
3302 '{}.patch.dat'.format(self.path),
3303 '{}.patch.dat'.format(self.partition),
3304 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003305
Tianjie Xu209db462016-05-24 17:34:52 -07003306 if self.partition == "system":
3307 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3308 else:
3309 code = ErrorCode.VENDOR_UPDATE_FAILURE
3310
Yifan Hong10c530d2018-12-27 17:34:18 -08003311 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003312 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003313 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003314 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003315 device=self.device, partition=self.partition,
3316 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003317 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003318
Kelvin Zhang0876c412020-06-23 15:06:58 -04003319 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003320 data = source.ReadRangeSet(ranges)
3321 ctx = sha1()
3322
3323 for p in data:
3324 ctx.update(p)
3325
3326 return ctx.hexdigest()
3327
Kelvin Zhang0876c412020-06-23 15:06:58 -04003328 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003329 """Return the hash value for all zero blocks."""
3330 zero_block = '\x00' * 4096
3331 ctx = sha1()
3332 for _ in range(num_blocks):
3333 ctx.update(zero_block)
3334
3335 return ctx.hexdigest()
3336
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003337
Tianjie Xu41976c72019-07-03 13:57:01 -07003338# Expose these two classes to support vendor-specific scripts
3339DataImage = images.DataImage
3340EmptyImage = images.EmptyImage
3341
Tao Bao76def242017-11-21 09:25:31 -08003342
Doug Zongker96a57e72010-09-26 14:57:41 -07003343# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003344PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003345 "ext4": "EMMC",
3346 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003347 "f2fs": "EMMC",
3348 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003349}
Doug Zongker96a57e72010-09-26 14:57:41 -07003350
Kelvin Zhang0876c412020-06-23 15:06:58 -04003351
Yifan Hongbdb32012020-05-07 12:38:53 -07003352def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3353 """
3354 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3355 backwards compatibility. It aborts if the fstab entry has slotselect option
3356 (unless check_no_slot is explicitly set to False).
3357 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003358 fstab = info["fstab"]
3359 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003360 if check_no_slot:
3361 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003362 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003363 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3364 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003365 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003366
3367
Yifan Hongbdb32012020-05-07 12:38:53 -07003368def GetTypeAndDeviceExpr(mount_point, info):
3369 """
3370 Return the filesystem of the partition, and an edify expression that evaluates
3371 to the device at runtime.
3372 """
3373 fstab = info["fstab"]
3374 if fstab:
3375 p = fstab[mount_point]
3376 device_expr = '"%s"' % fstab[mount_point].device
3377 if p.slotselect:
3378 device_expr = 'add_slot_suffix(%s)' % device_expr
3379 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003380 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003381
3382
3383def GetEntryForDevice(fstab, device):
3384 """
3385 Returns:
3386 The first entry in fstab whose device is the given value.
3387 """
3388 if not fstab:
3389 return None
3390 for mount_point in fstab:
3391 if fstab[mount_point].device == device:
3392 return fstab[mount_point]
3393 return None
3394
Kelvin Zhang0876c412020-06-23 15:06:58 -04003395
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003396def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003397 """Parses and converts a PEM-encoded certificate into DER-encoded.
3398
3399 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3400
3401 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003402 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003403 """
3404 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003405 save = False
3406 for line in data.split("\n"):
3407 if "--END CERTIFICATE--" in line:
3408 break
3409 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003410 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003411 if "--BEGIN CERTIFICATE--" in line:
3412 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003413 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003414 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003415
Tao Bao04e1f012018-02-04 12:13:35 -08003416
3417def ExtractPublicKey(cert):
3418 """Extracts the public key (PEM-encoded) from the given certificate file.
3419
3420 Args:
3421 cert: The certificate filename.
3422
3423 Returns:
3424 The public key string.
3425
3426 Raises:
3427 AssertionError: On non-zero return from 'openssl'.
3428 """
3429 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3430 # While openssl 1.1 writes the key into the given filename followed by '-out',
3431 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3432 # stdout instead.
3433 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3434 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3435 pubkey, stderrdata = proc.communicate()
3436 assert proc.returncode == 0, \
3437 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3438 return pubkey
3439
3440
Tao Bao1ac886e2019-06-26 11:58:22 -07003441def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003442 """Extracts the AVB public key from the given public or private key.
3443
3444 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003445 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003446 key: The input key file, which should be PEM-encoded public or private key.
3447
3448 Returns:
3449 The path to the extracted AVB public key file.
3450 """
3451 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3452 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003453 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003454 return output
3455
3456
Doug Zongker412c02f2014-02-13 10:58:24 -08003457def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3458 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003459 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003460
Tao Bao6d5d6232018-03-09 17:04:42 -08003461 Most of the space in the boot and recovery images is just the kernel, which is
3462 identical for the two, so the resulting patch should be efficient. Add it to
3463 the output zip, along with a shell script that is run from init.rc on first
3464 boot to actually do the patching and install the new recovery image.
3465
3466 Args:
3467 input_dir: The top-level input directory of the target-files.zip.
3468 output_sink: The callback function that writes the result.
3469 recovery_img: File object for the recovery image.
3470 boot_img: File objects for the boot image.
3471 info_dict: A dict returned by common.LoadInfoDict() on the input
3472 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003473 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003474 if info_dict is None:
3475 info_dict = OPTIONS.info_dict
3476
Tao Bao6d5d6232018-03-09 17:04:42 -08003477 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003478 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3479
3480 if board_uses_vendorimage:
3481 # In this case, the output sink is rooted at VENDOR
3482 recovery_img_path = "etc/recovery.img"
3483 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3484 sh_dir = "bin"
3485 else:
3486 # In this case the output sink is rooted at SYSTEM
3487 recovery_img_path = "vendor/etc/recovery.img"
3488 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3489 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003490
Tao Baof2cffbd2015-07-22 12:33:18 -07003491 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003492 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003493
3494 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003495 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003496 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003497 # With system-root-image, boot and recovery images will have mismatching
3498 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3499 # to handle such a case.
3500 if system_root_image:
3501 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003502 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003503 assert not os.path.exists(path)
3504 else:
3505 diff_program = ["imgdiff"]
3506 if os.path.exists(path):
3507 diff_program.append("-b")
3508 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003509 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003510 else:
3511 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003512
3513 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3514 _, _, patch = d.ComputePatch()
3515 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003516
Dan Albertebb19aa2015-03-27 19:11:53 -07003517 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003518 # The following GetTypeAndDevice()s need to use the path in the target
3519 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003520 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3521 check_no_slot=False)
3522 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3523 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003524 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003525 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003526
Tao Baof2cffbd2015-07-22 12:33:18 -07003527 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003528
3529 # Note that we use /vendor to refer to the recovery resources. This will
3530 # work for a separate vendor partition mounted at /vendor or a
3531 # /system/vendor subdirectory on the system partition, for which init will
3532 # create a symlink from /vendor to /system/vendor.
3533
3534 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003535if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3536 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003537 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003538 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3539 log -t recovery "Installing new recovery image: succeeded" || \\
3540 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003541else
3542 log -t recovery "Recovery image already installed"
3543fi
3544""" % {'type': recovery_type,
3545 'device': recovery_device,
3546 'sha1': recovery_img.sha1,
3547 'size': recovery_img.size}
3548 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003549 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003550if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3551 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003552 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003553 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3554 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3555 log -t recovery "Installing new recovery image: succeeded" || \\
3556 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003557else
3558 log -t recovery "Recovery image already installed"
3559fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003560""" % {'boot_size': boot_img.size,
3561 'boot_sha1': boot_img.sha1,
3562 'recovery_size': recovery_img.size,
3563 'recovery_sha1': recovery_img.sha1,
3564 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003565 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003566 'recovery_type': recovery_type,
3567 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003568 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003569
Bill Peckhame868aec2019-09-17 17:06:47 -07003570 # The install script location moved from /system/etc to /system/bin in the L
3571 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3572 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003573
Tao Bao32fcdab2018-10-12 10:30:39 -07003574 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003575
Tao Baoda30cfa2017-12-01 16:19:46 -08003576 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003577
3578
3579class DynamicPartitionUpdate(object):
3580 def __init__(self, src_group=None, tgt_group=None, progress=None,
3581 block_difference=None):
3582 self.src_group = src_group
3583 self.tgt_group = tgt_group
3584 self.progress = progress
3585 self.block_difference = block_difference
3586
3587 @property
3588 def src_size(self):
3589 if not self.block_difference:
3590 return 0
3591 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3592
3593 @property
3594 def tgt_size(self):
3595 if not self.block_difference:
3596 return 0
3597 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3598
3599 @staticmethod
3600 def _GetSparseImageSize(img):
3601 if not img:
3602 return 0
3603 return img.blocksize * img.total_blocks
3604
3605
3606class DynamicGroupUpdate(object):
3607 def __init__(self, src_size=None, tgt_size=None):
3608 # None: group does not exist. 0: no size limits.
3609 self.src_size = src_size
3610 self.tgt_size = tgt_size
3611
3612
3613class DynamicPartitionsDifference(object):
3614 def __init__(self, info_dict, block_diffs, progress_dict=None,
3615 source_info_dict=None):
3616 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003617 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003618
3619 self._remove_all_before_apply = False
3620 if source_info_dict is None:
3621 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003622 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003623
Tao Baof1113e92019-06-18 12:10:14 -07003624 block_diff_dict = collections.OrderedDict(
3625 [(e.partition, e) for e in block_diffs])
3626
Yifan Hong10c530d2018-12-27 17:34:18 -08003627 assert len(block_diff_dict) == len(block_diffs), \
3628 "Duplicated BlockDifference object for {}".format(
3629 [partition for partition, count in
3630 collections.Counter(e.partition for e in block_diffs).items()
3631 if count > 1])
3632
Yifan Hong79997e52019-01-23 16:56:19 -08003633 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003634
3635 for p, block_diff in block_diff_dict.items():
3636 self._partition_updates[p] = DynamicPartitionUpdate()
3637 self._partition_updates[p].block_difference = block_diff
3638
3639 for p, progress in progress_dict.items():
3640 if p in self._partition_updates:
3641 self._partition_updates[p].progress = progress
3642
3643 tgt_groups = shlex.split(info_dict.get(
3644 "super_partition_groups", "").strip())
3645 src_groups = shlex.split(source_info_dict.get(
3646 "super_partition_groups", "").strip())
3647
3648 for g in tgt_groups:
3649 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003650 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003651 assert p in self._partition_updates, \
3652 "{} is in target super_{}_partition_list but no BlockDifference " \
3653 "object is provided.".format(p, g)
3654 self._partition_updates[p].tgt_group = g
3655
3656 for g in src_groups:
3657 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003658 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003659 assert p in self._partition_updates, \
3660 "{} is in source super_{}_partition_list but no BlockDifference " \
3661 "object is provided.".format(p, g)
3662 self._partition_updates[p].src_group = g
3663
Yifan Hong45433e42019-01-18 13:55:25 -08003664 target_dynamic_partitions = set(shlex.split(info_dict.get(
3665 "dynamic_partition_list", "").strip()))
3666 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3667 if u.tgt_size)
3668 assert block_diffs_with_target == target_dynamic_partitions, \
3669 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3670 list(target_dynamic_partitions), list(block_diffs_with_target))
3671
3672 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3673 "dynamic_partition_list", "").strip()))
3674 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3675 if u.src_size)
3676 assert block_diffs_with_source == source_dynamic_partitions, \
3677 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3678 list(source_dynamic_partitions), list(block_diffs_with_source))
3679
Yifan Hong10c530d2018-12-27 17:34:18 -08003680 if self._partition_updates:
3681 logger.info("Updating dynamic partitions %s",
3682 self._partition_updates.keys())
3683
Yifan Hong79997e52019-01-23 16:56:19 -08003684 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003685
3686 for g in tgt_groups:
3687 self._group_updates[g] = DynamicGroupUpdate()
3688 self._group_updates[g].tgt_size = int(info_dict.get(
3689 "super_%s_group_size" % g, "0").strip())
3690
3691 for g in src_groups:
3692 if g not in self._group_updates:
3693 self._group_updates[g] = DynamicGroupUpdate()
3694 self._group_updates[g].src_size = int(source_info_dict.get(
3695 "super_%s_group_size" % g, "0").strip())
3696
3697 self._Compute()
3698
3699 def WriteScript(self, script, output_zip, write_verify_script=False):
3700 script.Comment('--- Start patching dynamic partitions ---')
3701 for p, u in self._partition_updates.items():
3702 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3703 script.Comment('Patch partition %s' % p)
3704 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3705 write_verify_script=False)
3706
3707 op_list_path = MakeTempFile()
3708 with open(op_list_path, 'w') as f:
3709 for line in self._op_list:
3710 f.write('{}\n'.format(line))
3711
3712 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3713
3714 script.Comment('Update dynamic partition metadata')
3715 script.AppendExtra('assert(update_dynamic_partitions('
3716 'package_extract_file("dynamic_partitions_op_list")));')
3717
3718 if write_verify_script:
3719 for p, u in self._partition_updates.items():
3720 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3721 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003722 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003723
3724 for p, u in self._partition_updates.items():
3725 if u.tgt_size and u.src_size <= u.tgt_size:
3726 script.Comment('Patch partition %s' % p)
3727 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3728 write_verify_script=write_verify_script)
3729 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003730 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003731
3732 script.Comment('--- End patching dynamic partitions ---')
3733
3734 def _Compute(self):
3735 self._op_list = list()
3736
3737 def append(line):
3738 self._op_list.append(line)
3739
3740 def comment(line):
3741 self._op_list.append("# %s" % line)
3742
3743 if self._remove_all_before_apply:
3744 comment('Remove all existing dynamic partitions and groups before '
3745 'applying full OTA')
3746 append('remove_all_groups')
3747
3748 for p, u in self._partition_updates.items():
3749 if u.src_group and not u.tgt_group:
3750 append('remove %s' % p)
3751
3752 for p, u in self._partition_updates.items():
3753 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3754 comment('Move partition %s from %s to default' % (p, u.src_group))
3755 append('move %s default' % p)
3756
3757 for p, u in self._partition_updates.items():
3758 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3759 comment('Shrink partition %s from %d to %d' %
3760 (p, u.src_size, u.tgt_size))
3761 append('resize %s %s' % (p, u.tgt_size))
3762
3763 for g, u in self._group_updates.items():
3764 if u.src_size is not None and u.tgt_size is None:
3765 append('remove_group %s' % g)
3766 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003767 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003768 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3769 append('resize_group %s %d' % (g, u.tgt_size))
3770
3771 for g, u in self._group_updates.items():
3772 if u.src_size is None and u.tgt_size is not None:
3773 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3774 append('add_group %s %d' % (g, u.tgt_size))
3775 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003776 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003777 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3778 append('resize_group %s %d' % (g, u.tgt_size))
3779
3780 for p, u in self._partition_updates.items():
3781 if u.tgt_group and not u.src_group:
3782 comment('Add partition %s to group %s' % (p, u.tgt_group))
3783 append('add %s %s' % (p, u.tgt_group))
3784
3785 for p, u in self._partition_updates.items():
3786 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003787 comment('Grow partition %s from %d to %d' %
3788 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003789 append('resize %s %d' % (p, u.tgt_size))
3790
3791 for p, u in self._partition_updates.items():
3792 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3793 comment('Move partition %s from default to %s' %
3794 (p, u.tgt_group))
3795 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003796
3797
jiajia tangf3f842b2021-03-17 21:49:44 +08003798def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003799 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003800 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003801
3802 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003803 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003804
3805 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003806 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003807 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003808 tmp_dir = MakeTempDir('boot_', suffix='.img')
3809 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003810 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3811 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003812 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3813 if not os.path.isfile(ramdisk):
3814 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3815 return None
3816 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003817 if ramdisk_format == RamdiskFormat.LZ4:
3818 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3819 elif ramdisk_format == RamdiskFormat.GZ:
3820 with open(ramdisk, 'rb') as input_stream:
3821 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003822 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3823 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003824 p2.wait()
3825 else:
3826 logger.error('Only support lz4 or minigzip ramdisk format.')
3827 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003828
3829 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3830 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3831 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3832 # the host environment.
3833 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003834 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003835
Yifan Hongc65a0542021-01-07 14:21:01 -08003836 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3837 prop_file = os.path.join(extracted_ramdisk, search_path)
3838 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003839 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003840 logger.warning(
3841 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003842
Yifan Hong7dc51172021-01-12 11:27:39 -08003843 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003844
Yifan Hong85ac5012021-01-07 14:43:46 -08003845 except ExternalError as e:
3846 logger.warning('Unable to get boot image build props: %s', e)
3847 return None
3848
3849
3850def GetBootImageTimestamp(boot_img):
3851 """
3852 Get timestamp from ramdisk within the boot image
3853
3854 Args:
3855 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3856
3857 Return:
3858 An integer that corresponds to the timestamp of the boot image, or None
3859 if file has unknown format. Raise exception if an unexpected error has
3860 occurred.
3861 """
3862 prop_file = GetBootImageBuildProp(boot_img)
3863 if not prop_file:
3864 return None
3865
3866 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3867 if props is None:
3868 return None
3869
3870 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003871 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3872 if timestamp:
3873 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003874 logger.warning(
3875 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003876 return None
3877
3878 except ExternalError as e:
3879 logger.warning('Unable to get boot image timestamp: %s', e)
3880 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003881
3882
3883def GetCareMap(which, imgname):
3884 """Returns the care_map string for the given partition.
3885
3886 Args:
3887 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
3888 imgname: The filename of the image.
3889
3890 Returns:
3891 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
3892 RangeSet; or None.
3893 """
3894 assert which in PARTITIONS_WITH_CARE_MAP
3895
3896 # which + "_image_size" contains the size that the actual filesystem image
3897 # resides in, which is all that needs to be verified. The additional blocks in
3898 # the image file contain verity metadata, by reading which would trigger
3899 # invalid reads.
3900 image_size = OPTIONS.info_dict.get(which + "_image_size")
3901 if not image_size:
3902 return None
3903
3904 image_blocks = int(image_size) // 4096 - 1
3905 assert image_blocks > 0, "blocks for {} must be positive".format(which)
3906
3907 # For sparse images, we will only check the blocks that are listed in the care
3908 # map, i.e. the ones with meaningful data.
3909 if "extfs_sparse_flag" in OPTIONS.info_dict:
3910 simg = sparse_img.SparseImage(imgname)
3911 care_map_ranges = simg.care_map.intersect(
3912 rangelib.RangeSet("0-{}".format(image_blocks)))
3913
3914 # Otherwise for non-sparse images, we read all the blocks in the filesystem
3915 # image.
3916 else:
3917 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
3918
3919 return [which, care_map_ranges.to_string_raw()]
3920
3921
3922def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
3923 """Generates and adds care_map.pb for a/b partition that has care_map.
3924
3925 Args:
3926 output_file: The output zip file (needs to be already open),
3927 or file path to write care_map.pb.
3928 ab_partitions: The list of A/B partitions.
3929 image_paths: A map from the partition name to the image path.
3930 """
3931 if not output_file:
3932 raise ExternalError('Expected output_file for AddCareMapForAbOta')
3933
3934 care_map_list = []
3935 for partition in ab_partitions:
3936 partition = partition.strip()
3937 if partition not in PARTITIONS_WITH_CARE_MAP:
3938 continue
3939
3940 verity_block_device = "{}_verity_block_device".format(partition)
3941 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
3942 if (verity_block_device in OPTIONS.info_dict or
3943 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
3944 if partition not in image_paths:
3945 logger.warning('Potential partition with care_map missing from images: %s',
3946 partition)
3947 continue
3948 image_path = image_paths[partition]
3949 if not os.path.exists(image_path):
3950 raise ExternalError('Expected image at path {}'.format(image_path))
3951
3952 care_map = GetCareMap(partition, image_path)
3953 if not care_map:
3954 continue
3955 care_map_list += care_map
3956
3957 # adds fingerprint field to the care_map
3958 # TODO(xunchang) revisit the fingerprint calculation for care_map.
3959 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
3960 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
3961 "ro.{}.build.thumbprint".format(partition)]
3962
3963 present_props = [x for x in prop_name_list if
3964 partition_props and partition_props.GetProp(x)]
3965 if not present_props:
3966 logger.warning(
3967 "fingerprint is not present for partition %s", partition)
3968 property_id, fingerprint = "unknown", "unknown"
3969 else:
3970 property_id = present_props[0]
3971 fingerprint = partition_props.GetProp(property_id)
3972 care_map_list += [property_id, fingerprint]
3973
3974 if not care_map_list:
3975 return
3976
3977 # Converts the list into proto buf message by calling care_map_generator; and
3978 # writes the result to a temp file.
3979 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
3980 suffix=".txt")
3981 with open(temp_care_map_text, 'w') as text_file:
3982 text_file.write('\n'.join(care_map_list))
3983
3984 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
3985 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
3986 RunAndCheckOutput(care_map_gen_cmd)
3987
3988 if not isinstance(output_file, zipfile.ZipFile):
3989 shutil.copy(temp_care_map, output_file)
3990 return
3991 # output_file is a zip file
3992 care_map_path = "META/care_map.pb"
3993 if care_map_path in output_file.namelist():
3994 # Copy the temp file into the OPTIONS.input_tmp dir and update the
3995 # replace_updated_files_list used by add_img_to_target_files
3996 if not OPTIONS.replace_updated_files_list:
3997 OPTIONS.replace_updated_files_list = []
3998 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
3999 OPTIONS.replace_updated_files_list.append(care_map_path)
4000 else:
4001 ZipWrite(output_file, temp_care_map, arcname=care_map_path)