blob: 63fd85447eefee7723f701ca062d97c7fa86ee4f [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Abhishek Nigam1dfca462023-11-08 02:21:39 +000018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Abhishek Nigam1dfca462023-11-08 02:21:39 +000026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
Kelvin Zhange473ce92023-06-21 13:06:59 -070036import stat
Dennis Song6e5e44d2023-10-03 02:18:06 +000037import sys
Doug Zongkereef39442009-04-02 12:14:19 -070038import tempfile
Abhishek Nigam1dfca462023-11-08 02:21:39 +000039import threading
40import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070041import zipfile
Kelvin Zhangc68c6b92023-11-14 10:54:50 -080042
43from typing import Iterable, Callable
Dennis Song4aae62e2023-10-02 04:31:34 +000044from dataclasses import dataclass
Tao Bao12d87fc2018-01-31 12:18:52 -080045from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070046
Tianjie Xu41976c72019-07-03 13:57:01 -070047import images
Tao Baoc765cca2018-01-31 17:32:40 -080048import sparse_img
Abhishek Nigam1dfca462023-11-08 02:21:39 +000049from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070050
Tao Bao32fcdab2018-10-12 10:30:39 -070051logger = logging.getLogger(__name__)
52
Tao Bao986ee862018-10-04 15:46:16 -070053
Kelvin Zhangc68c6b92023-11-14 10:54:50 -080054@dataclass
55class OptionHandler:
56 extra_long_opts: Iterable[str]
57 handler: Callable
58
Dan Albert8b72aef2015-03-23 19:13:21 -070059class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070060
Dan Albert8b72aef2015-03-23 19:13:21 -070061 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070062 # Set up search path, in order to find framework/ and lib64/. At the time of
63 # running this function, user-supplied search path (`--path`) hasn't been
64 # available. So the value set here is the default, which might be overridden
65 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040066 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070067 if exec_path.endswith('.py'):
68 script_name = os.path.basename(exec_path)
69 # logger hasn't been initialized yet at this point. Use print to output
70 # warnings.
71 print(
72 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040073 'executable -- build and run `{}` directly.'.format(
74 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070075 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040076 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030077
Dan Albert8b72aef2015-03-23 19:13:21 -070078 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080079 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
80 if "ANDROID_HOST_OUT" in os.environ:
81 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080082 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070083 self.extra_signapk_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000084 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070085 self.java_path = "java" # Use the one on the path by default.
Sorin Basca05085832022-09-14 11:33:22 +010086 self.java_args = ["-Xmx4096m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080087 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070088 self.public_key_suffix = ".x509.pem"
89 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070090 # use otatools built boot_signer by default
Dan Albert8b72aef2015-03-23 19:13:21 -070091 self.verbose = False
92 self.tempfiles = []
93 self.device_specific = None
94 self.extras = {}
95 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070096 self.source_info_dict = None
97 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070098 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070099 # Stash size cannot exceed cache_size * threshold.
100 self.cache_size = None
101 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -0700102 self.logfile = None
Dan Albert8b72aef2015-03-23 19:13:21 -0700103
104
105OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700106
Tao Bao71197512018-10-11 14:08:45 -0700107# The block size that's used across the releasetools scripts.
108BLOCK_SIZE = 4096
109
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800110# Values for "certificate" in apkcerts that mean special things.
111SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
112
Tao Bao5cc0abb2019-03-21 10:18:05 -0700113# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
114# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800115# descriptor into vbmeta.img. When adding a new entry here, the
116# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
117# accordingly.
Dennis Song6e5e44d2023-10-03 02:18:06 +0000118AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw',
119 'recovery', 'system', 'system_ext', 'vendor', 'vendor_boot',
120 'vendor_kernel_boot', 'vendor_dlkm', 'odm_dlkm',
121 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800122
Tao Bao08c190f2019-06-03 23:07:58 -0700123# Chained VBMeta partitions.
124AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
125
Dennis Song6e5e44d2023-10-03 02:18:06 +0000126# avbtool arguments name
127AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG = '--include_descriptors_from_image'
128AVB_ARG_NAME_CHAIN_PARTITION = '--chain_partition'
129
Tianjie Xu861f4132018-09-12 11:49:33 -0700130# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400131PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700132 'system',
133 'vendor',
134 'product',
135 'system_ext',
136 'odm',
137 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700138 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000139 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400140]
Tianjie Xu861f4132018-09-12 11:49:33 -0700141
Yifan Hong5057b952021-01-07 14:09:57 -0800142# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000143PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800144
Yifan Hongc65a0542021-01-07 14:21:01 -0800145# See sysprop.mk. If file is moved, add new search paths here; don't remove
146# existing search paths.
147RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700148
Kelvin Zhang563750f2021-04-28 12:46:17 -0400149
Dennis Song4aae62e2023-10-02 04:31:34 +0000150@dataclass
151class AvbChainedPartitionArg:
152 """The required arguments for avbtool --chain_partition."""
153 partition: str
154 rollback_index_location: int
155 pubkey_path: str
156
157 def to_string(self):
158 """Convert to string command arguments."""
159 return '{}:{}:{}'.format(
160 self.partition, self.rollback_index_location, self.pubkey_path)
161
162
Abhishek Nigam1dfca462023-11-08 02:21:39 +0000163class ErrorCode(object):
164 """Define error_codes for failures that happen during the actual
165 update package installation.
166
167 Error codes 0-999 are reserved for failures before the package
168 installation (i.e. low battery, package verification failure).
169 Detailed code in 'bootable/recovery/error_code.h' """
170
171 SYSTEM_VERIFICATION_FAILURE = 1000
172 SYSTEM_UPDATE_FAILURE = 1001
173 SYSTEM_UNEXPECTED_CONTENTS = 1002
174 SYSTEM_NONZERO_CONTENTS = 1003
175 SYSTEM_RECOVER_FAILURE = 1004
176 VENDOR_VERIFICATION_FAILURE = 2000
177 VENDOR_UPDATE_FAILURE = 2001
178 VENDOR_UNEXPECTED_CONTENTS = 2002
179 VENDOR_NONZERO_CONTENTS = 2003
180 VENDOR_RECOVER_FAILURE = 2004
181 OEM_PROP_MISMATCH = 3000
182 FINGERPRINT_MISMATCH = 3001
183 THUMBPRINT_MISMATCH = 3002
184 OLDER_BUILD = 3003
185 DEVICE_MISMATCH = 3004
186 BAD_PATCH_FILE = 3005
187 INSUFFICIENT_CACHE_SPACE = 3006
188 TUNE_PARTITION_FAILURE = 3007
189 APPLY_PATCH_FAILURE = 3008
190
191
Dan Albert8b72aef2015-03-23 19:13:21 -0700192class ExternalError(RuntimeError):
193 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700194
195
Tao Bao32fcdab2018-10-12 10:30:39 -0700196def InitLogging():
197 DEFAULT_LOGGING_CONFIG = {
198 'version': 1,
199 'disable_existing_loggers': False,
200 'formatters': {
201 'standard': {
202 'format':
203 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
204 'datefmt': '%Y-%m-%d %H:%M:%S',
205 },
206 },
207 'handlers': {
208 'default': {
209 'class': 'logging.StreamHandler',
210 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700211 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700212 },
213 },
214 'loggers': {
215 '': {
216 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700217 'propagate': True,
Kelvin Zhang9d741282023-10-24 15:35:54 -0700218 'level': 'NOTSET',
Tao Bao32fcdab2018-10-12 10:30:39 -0700219 }
220 }
221 }
222 env_config = os.getenv('LOGGING_CONFIG')
223 if env_config:
224 with open(env_config) as f:
225 config = json.load(f)
226 else:
227 config = DEFAULT_LOGGING_CONFIG
228
229 # Increase the logging level for verbose mode.
230 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700231 config = copy.deepcopy(config)
232 config['handlers']['default']['level'] = 'INFO'
233
234 if OPTIONS.logfile:
235 config = copy.deepcopy(config)
236 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400237 'class': 'logging.FileHandler',
238 'formatter': 'standard',
239 'level': 'INFO',
240 'mode': 'w',
241 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700242 }
243 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700244
245 logging.config.dictConfig(config)
246
247
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900248def FindHostToolPath(tool_name):
249 """Finds the path to the host tool.
250
251 Args:
252 tool_name: name of the tool to find
253 Returns:
Cole Faust6833d7d2023-08-01 18:00:37 -0700254 path to the tool if found under the same directory as this binary is located at. If not found,
255 tool_name is returned.
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900256 """
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900257 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
258 tool_path = os.path.join(my_dir, tool_name)
259 if os.path.exists(tool_path):
260 return tool_path
261
262 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700263
Kelvin Zhang563750f2021-04-28 12:46:17 -0400264
Tao Bao39451582017-05-04 11:10:47 -0700265def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700266 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700267
Tao Bao73dd4f42018-10-04 16:25:33 -0700268 Args:
269 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700270 verbose: Whether the commands should be shown. Default to the global
271 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700272 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
273 stdin, etc. stdout and stderr will default to subprocess.PIPE and
274 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800275 universal_newlines will default to True, as most of the users in
276 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700277
278 Returns:
279 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700280 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700281 if 'stdout' not in kwargs and 'stderr' not in kwargs:
282 kwargs['stdout'] = subprocess.PIPE
283 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800284 if 'universal_newlines' not in kwargs:
285 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700286
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900287 if args:
288 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700289 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900290 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700291
Kelvin Zhang766eea72021-06-03 09:36:08 -0400292 if verbose is None:
293 verbose = OPTIONS.verbose
294
Tao Bao32fcdab2018-10-12 10:30:39 -0700295 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400296 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700297 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700298 return subprocess.Popen(args, **kwargs)
299
300
Tao Bao986ee862018-10-04 15:46:16 -0700301def RunAndCheckOutput(args, verbose=None, **kwargs):
302 """Runs the given command and returns the output.
303
304 Args:
305 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700306 verbose: Whether the commands should be shown. Default to the global
307 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700308 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
309 stdin, etc. stdout and stderr will default to subprocess.PIPE and
310 subprocess.STDOUT respectively unless caller specifies any of them.
311
312 Returns:
313 The output string.
314
315 Raises:
316 ExternalError: On non-zero exit from the command.
317 """
Kelvin Zhangc8ff84b2023-02-15 16:52:46 -0800318 if verbose is None:
319 verbose = OPTIONS.verbose
Tao Bao986ee862018-10-04 15:46:16 -0700320 proc = Run(args, verbose=verbose, **kwargs)
321 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800322 if output is None:
323 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700324 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400325 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700326 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700327 if proc.returncode != 0:
328 raise ExternalError(
329 "Failed to run command '{}' (exit code {}):\n{}".format(
330 args, proc.returncode, output))
331 return output
332
333
Tao Baoc765cca2018-01-31 17:32:40 -0800334def RoundUpTo4K(value):
335 rounded_up = value + 4095
336 return rounded_up - (rounded_up % 4096)
337
338
Ying Wang7e6d4e42010-12-13 16:25:36 -0800339def CloseInheritedPipes():
340 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
341 before doing other work."""
342 if platform.system() != "Darwin":
343 return
344 for d in range(3, 1025):
345 try:
346 stat = os.fstat(d)
347 if stat is not None:
348 pipebit = stat[0] & 0x1000
349 if pipebit != 0:
350 os.close(d)
351 except OSError:
352 pass
353
354
Tao Bao1c320f82019-10-04 23:25:12 -0700355class BuildInfo(object):
356 """A class that holds the information for a given build.
357
358 This class wraps up the property querying for a given source or target build.
359 It abstracts away the logic of handling OEM-specific properties, and caches
360 the commonly used properties such as fingerprint.
361
362 There are two types of info dicts: a) build-time info dict, which is generated
363 at build time (i.e. included in a target_files zip); b) OEM info dict that is
364 specified at package generation time (via command line argument
365 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
366 having "oem_fingerprint_properties" in build-time info dict), all the queries
367 would be answered based on build-time info dict only. Otherwise if using
368 OEM-specific properties, some of them will be calculated from two info dicts.
369
370 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800371 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700372
373 Attributes:
374 info_dict: The build-time info dict.
375 is_ab: Whether it's a build that uses A/B OTA.
376 oem_dicts: A list of OEM dicts.
377 oem_props: A list of OEM properties that should be read from OEM dicts; None
378 if the build doesn't use any OEM-specific property.
379 fingerprint: The fingerprint of the build, which would be calculated based
380 on OEM properties if applicable.
381 device: The device name, which could come from OEM dicts if applicable.
382 """
383
384 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
385 "ro.product.manufacturer", "ro.product.model",
386 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700387 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
388 "product", "odm", "vendor", "system_ext", "system"]
389 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
390 "product", "product_services", "odm", "vendor", "system"]
391 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700392
Tianjiefdda51d2021-05-05 14:46:35 -0700393 # The length of vbmeta digest to append to the fingerprint
394 _VBMETA_DIGEST_SIZE_USED = 8
395
396 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700397 """Initializes a BuildInfo instance with the given dicts.
398
399 Note that it only wraps up the given dicts, without making copies.
400
401 Arguments:
402 info_dict: The build-time info dict.
403 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
404 that it always uses the first dict to calculate the fingerprint or the
405 device name. The rest would be used for asserting OEM properties only
406 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700407 use_legacy_id: Use the legacy build id to construct the fingerprint. This
408 is used when we need a BuildInfo class, while the vbmeta digest is
409 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700410
411 Raises:
412 ValueError: On invalid inputs.
413 """
414 self.info_dict = info_dict
415 self.oem_dicts = oem_dicts
416
417 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700418 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700419
Hongguang Chend7c160f2020-05-03 21:24:26 -0700420 # Skip _oem_props if oem_dicts is None to use BuildInfo in
421 # sign_target_files_apks
422 if self.oem_dicts:
423 self._oem_props = info_dict.get("oem_fingerprint_properties")
424 else:
425 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700426
Daniel Normand5fe8622020-01-08 17:01:11 -0800427 def check_fingerprint(fingerprint):
428 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
429 raise ValueError(
430 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
431 "3.2.2. Build Parameters.".format(fingerprint))
432
Daniel Normand5fe8622020-01-08 17:01:11 -0800433 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800434 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800435 try:
436 fingerprint = self.CalculatePartitionFingerprint(partition)
437 check_fingerprint(fingerprint)
438 self._partition_fingerprints[partition] = fingerprint
439 except ExternalError:
440 continue
441 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800442 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800443 # need a fingerprint when creating the image.
444 self._partition_fingerprints[
445 "system_other"] = self._partition_fingerprints["system"]
446
Tao Bao1c320f82019-10-04 23:25:12 -0700447 # These two should be computed only after setting self._oem_props.
448 self._device = self.GetOemProperty("ro.product.device")
449 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800450 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700451
452 @property
453 def is_ab(self):
454 return self._is_ab
455
456 @property
457 def device(self):
458 return self._device
459
460 @property
461 def fingerprint(self):
462 return self._fingerprint
463
464 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400465 def is_vabc(self):
Kelvin Zhange634bde2023-04-28 23:59:43 -0700466 return self.info_dict.get("virtual_ab_compression") == "true"
Kelvin Zhang563750f2021-04-28 12:46:17 -0400467
468 @property
Kelvin Zhanga9a87ec2022-05-04 16:44:52 -0700469 def is_android_r(self):
470 system_prop = self.info_dict.get("system.build.prop")
471 return system_prop and system_prop.GetProp("ro.build.version.release") == "11"
472
473 @property
Kelvin Zhang2f9a9ae2023-09-27 09:33:52 -0700474 def is_release_key(self):
475 system_prop = self.info_dict.get("build.prop")
476 return system_prop and system_prop.GetProp("ro.build.tags") == "release-key"
477
478 @property
Kelvin Zhang8f830002023-08-16 13:16:48 -0700479 def vabc_compression_param(self):
480 return self.get("virtual_ab_compression_method", "")
481
482 @property
David Anderson1c596172023-04-14 16:01:55 -0700483 def vendor_api_level(self):
484 vendor_prop = self.info_dict.get("vendor.build.prop")
485 if not vendor_prop:
486 return -1
487
488 props = [
489 "ro.board.api_level",
490 "ro.board.first_api_level",
491 "ro.product.first_api_level",
492 ]
493 for prop in props:
494 value = vendor_prop.GetProp(prop)
495 try:
Kelvin Zhange634bde2023-04-28 23:59:43 -0700496 return int(value)
David Anderson1c596172023-04-14 16:01:55 -0700497 except:
Kelvin Zhange634bde2023-04-28 23:59:43 -0700498 pass
David Anderson1c596172023-04-14 16:01:55 -0700499 return -1
500
501 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700502 def is_vabc_xor(self):
503 vendor_prop = self.info_dict.get("vendor.build.prop")
504 vabc_xor_enabled = vendor_prop and \
505 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
506 return vabc_xor_enabled
507
508 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400509 def vendor_suppressed_vabc(self):
510 vendor_prop = self.info_dict.get("vendor.build.prop")
511 vabc_suppressed = vendor_prop and \
512 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
513 return vabc_suppressed and vabc_suppressed.lower() == "true"
514
515 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700516 def oem_props(self):
517 return self._oem_props
518
519 def __getitem__(self, key):
520 return self.info_dict[key]
521
522 def __setitem__(self, key, value):
523 self.info_dict[key] = value
524
525 def get(self, key, default=None):
526 return self.info_dict.get(key, default)
527
528 def items(self):
529 return self.info_dict.items()
530
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000531 def _GetRawBuildProp(self, prop, partition):
532 prop_file = '{}.build.prop'.format(
533 partition) if partition else 'build.prop'
534 partition_props = self.info_dict.get(prop_file)
535 if not partition_props:
536 return None
537 return partition_props.GetProp(prop)
538
Daniel Normand5fe8622020-01-08 17:01:11 -0800539 def GetPartitionBuildProp(self, prop, partition):
540 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800541
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000542 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
Devin Mooreb5195ff2022-02-11 18:44:26 +0000543 # This comes from the generic ramdisk
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000544 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800545
Daniel Normand5fe8622020-01-08 17:01:11 -0800546 # If provided a partition for this property, only look within that
547 # partition's build.prop.
548 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800549 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800550 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800551 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000552
553 prop_val = self._GetRawBuildProp(prop, partition)
554 if prop_val is not None:
555 return prop_val
556 raise ExternalError("couldn't find %s in %s.build.prop" %
557 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800558
Tao Bao1c320f82019-10-04 23:25:12 -0700559 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800560 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700561 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
562 return self._ResolveRoProductBuildProp(prop)
563
Tianjiefdda51d2021-05-05 14:46:35 -0700564 if prop == "ro.build.id":
565 return self._GetBuildId()
566
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000567 prop_val = self._GetRawBuildProp(prop, None)
568 if prop_val is not None:
569 return prop_val
570
571 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700572
573 def _ResolveRoProductBuildProp(self, prop):
574 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000575 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700576 if prop_val:
577 return prop_val
578
Steven Laver8e2086e2020-04-27 16:26:31 -0700579 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000580 source_order_val = self._GetRawBuildProp(
581 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700582 if source_order_val:
583 source_order = source_order_val.split(",")
584 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700585 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700586
587 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700588 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700589 raise ExternalError(
590 "Invalid ro.product.property_source_order '{}'".format(source_order))
591
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000592 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700593 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000594 "ro.product", "ro.product.{}".format(source_partition), 1)
595 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700596 if prop_val:
597 return prop_val
598
599 raise ExternalError("couldn't resolve {}".format(prop))
600
Steven Laver8e2086e2020-04-27 16:26:31 -0700601 def _GetRoProductPropsDefaultSourceOrder(self):
602 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
603 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000604 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700605 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000606 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700607 if android_version == "10":
608 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
609 # NOTE: float() conversion of android_version will have rounding error.
610 # We are checking for "9" or less, and using "< 10" is well outside of
611 # possible floating point rounding.
612 try:
613 android_version_val = float(android_version)
614 except ValueError:
615 android_version_val = 0
616 if android_version_val < 10:
617 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
618 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
619
Tianjieb37c5be2020-10-15 21:27:10 -0700620 def _GetPlatformVersion(self):
621 version_sdk = self.GetBuildProp("ro.build.version.sdk")
622 # init code switches to version_release_or_codename (see b/158483506). After
623 # API finalization, release_or_codename will be the same as release. This
624 # is the best effort to support pre-S dev stage builds.
625 if int(version_sdk) >= 30:
626 try:
627 return self.GetBuildProp("ro.build.version.release_or_codename")
628 except ExternalError:
629 logger.warning('Failed to find ro.build.version.release_or_codename')
630
631 return self.GetBuildProp("ro.build.version.release")
632
Tianjiefdda51d2021-05-05 14:46:35 -0700633 def _GetBuildId(self):
634 build_id = self._GetRawBuildProp("ro.build.id", None)
635 if build_id:
636 return build_id
637
638 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
639 if not legacy_build_id:
640 raise ExternalError("Couldn't find build id in property file")
641
642 if self.use_legacy_id:
643 return legacy_build_id
644
645 # Append the top 8 chars of vbmeta digest to the existing build id. The
646 # logic needs to match the one in init, so that OTA can deliver correctly.
647 avb_enable = self.info_dict.get("avb_enable") == "true"
648 if not avb_enable:
649 raise ExternalError("AVB isn't enabled when using legacy build id")
650
651 vbmeta_digest = self.info_dict.get("vbmeta_digest")
652 if not vbmeta_digest:
653 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
654 " id")
655 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
656 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
657
658 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
659 return legacy_build_id + '.' + digest_prefix
660
Tianjieb37c5be2020-10-15 21:27:10 -0700661 def _GetPartitionPlatformVersion(self, partition):
662 try:
663 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
664 partition)
665 except ExternalError:
666 return self.GetPartitionBuildProp("ro.build.version.release",
667 partition)
668
Tao Bao1c320f82019-10-04 23:25:12 -0700669 def GetOemProperty(self, key):
670 if self.oem_props is not None and key in self.oem_props:
671 return self.oem_dicts[0][key]
672 return self.GetBuildProp(key)
673
Daniel Normand5fe8622020-01-08 17:01:11 -0800674 def GetPartitionFingerprint(self, partition):
675 return self._partition_fingerprints.get(partition, None)
676
677 def CalculatePartitionFingerprint(self, partition):
678 try:
679 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
680 except ExternalError:
681 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
682 self.GetPartitionBuildProp("ro.product.brand", partition),
683 self.GetPartitionBuildProp("ro.product.name", partition),
684 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700685 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800686 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400687 self.GetPartitionBuildProp(
688 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800689 self.GetPartitionBuildProp("ro.build.type", partition),
690 self.GetPartitionBuildProp("ro.build.tags", partition))
691
Tao Bao1c320f82019-10-04 23:25:12 -0700692 def CalculateFingerprint(self):
693 if self.oem_props is None:
694 try:
695 return self.GetBuildProp("ro.build.fingerprint")
696 except ExternalError:
697 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
698 self.GetBuildProp("ro.product.brand"),
699 self.GetBuildProp("ro.product.name"),
700 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700701 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700702 self.GetBuildProp("ro.build.id"),
703 self.GetBuildProp("ro.build.version.incremental"),
704 self.GetBuildProp("ro.build.type"),
705 self.GetBuildProp("ro.build.tags"))
706 return "%s/%s/%s:%s" % (
707 self.GetOemProperty("ro.product.brand"),
708 self.GetOemProperty("ro.product.name"),
709 self.GetOemProperty("ro.product.device"),
710 self.GetBuildProp("ro.build.thumbprint"))
711
712 def WriteMountOemScript(self, script):
713 assert self.oem_props is not None
714 recovery_mount_options = self.info_dict.get("recovery_mount_options")
715 script.Mount("/oem", recovery_mount_options)
716
717 def WriteDeviceAssertions(self, script, oem_no_mount):
718 # Read the property directly if not using OEM properties.
719 if not self.oem_props:
720 script.AssertDevice(self.device)
721 return
722
723 # Otherwise assert OEM properties.
724 if not self.oem_dicts:
725 raise ExternalError(
726 "No OEM file provided to answer expected assertions")
727
728 for prop in self.oem_props.split():
729 values = []
730 for oem_dict in self.oem_dicts:
731 if prop in oem_dict:
732 values.append(oem_dict[prop])
733 if not values:
734 raise ExternalError(
735 "The OEM file is missing the property %s" % (prop,))
736 script.AssertOemProperty(prop, values, oem_no_mount)
737
738
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -0700739def DoesInputFileContain(input_file, fn):
740 """Check whether the input target_files.zip contain an entry `fn`"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000741 if isinstance(input_file, zipfile.ZipFile):
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -0700742 return fn in input_file.namelist()
Kelvin Zhang5ef25192022-10-19 11:25:22 -0700743 elif zipfile.is_zipfile(input_file):
744 with zipfile.ZipFile(input_file, "r", allowZip64=True) as zfp:
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -0700745 return fn in zfp.namelist()
746 else:
747 if not os.path.isdir(input_file):
748 raise ValueError(
749 "Invalid input_file, accepted inputs are ZipFile object, path to .zip file on disk, or path to extracted directory. Actual: " + input_file)
750 path = os.path.join(input_file, *fn.split("/"))
751 return os.path.exists(path)
752
753
754def ReadBytesFromInputFile(input_file, fn):
755 """Reads the bytes of fn from input zipfile or directory."""
756 if isinstance(input_file, zipfile.ZipFile):
757 return input_file.read(fn)
758 elif zipfile.is_zipfile(input_file):
759 with zipfile.ZipFile(input_file, "r", allowZip64=True) as zfp:
760 return zfp.read(fn)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000761 else:
Kelvin Zhang5ef25192022-10-19 11:25:22 -0700762 if not os.path.isdir(input_file):
763 raise ValueError(
764 "Invalid input_file, accepted inputs are ZipFile object, path to .zip file on disk, or path to extracted directory. Actual: " + input_file)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000765 path = os.path.join(input_file, *fn.split("/"))
766 try:
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -0700767 with open(path, "rb") as f:
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000768 return f.read()
769 except IOError as e:
770 if e.errno == errno.ENOENT:
771 raise KeyError(fn)
772
773
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -0700774def ReadFromInputFile(input_file, fn):
775 """Reads the str contents of fn from input zipfile or directory."""
776 return ReadBytesFromInputFile(input_file, fn).decode()
777
778
Kelvin Zhang6b10e152023-05-02 15:48:16 -0700779def WriteBytesToInputFile(input_file, fn, data):
780 """Write bytes |data| contents to fn of input zipfile or directory."""
781 if isinstance(input_file, zipfile.ZipFile):
782 with input_file.open(fn, "w") as entry_fp:
783 return entry_fp.write(data)
784 elif zipfile.is_zipfile(input_file):
785 with zipfile.ZipFile(input_file, "r", allowZip64=True) as zfp:
786 with zfp.open(fn, "w") as entry_fp:
787 return entry_fp.write(data)
788 else:
789 if not os.path.isdir(input_file):
790 raise ValueError(
791 "Invalid input_file, accepted inputs are ZipFile object, path to .zip file on disk, or path to extracted directory. Actual: " + input_file)
792 path = os.path.join(input_file, *fn.split("/"))
793 try:
794 with open(path, "wb") as f:
795 return f.write(data)
796 except IOError as e:
797 if e.errno == errno.ENOENT:
798 raise KeyError(fn)
799
800
801def WriteToInputFile(input_file, fn, str: str):
802 """Write str content to fn of input file or directory"""
803 return WriteBytesToInputFile(input_file, fn, str.encode())
804
805
Yifan Hong10482a22021-01-07 14:38:41 -0800806def ExtractFromInputFile(input_file, fn):
807 """Extracts the contents of fn from input zipfile or directory into a file."""
808 if isinstance(input_file, zipfile.ZipFile):
809 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500810 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800811 f.write(input_file.read(fn))
812 return tmp_file
Kelvin Zhangeb147e02022-10-21 10:53:21 -0700813 elif zipfile.is_zipfile(input_file):
814 with zipfile.ZipFile(input_file, "r", allowZip64=True) as zfp:
815 tmp_file = MakeTempFile(os.path.basename(fn))
816 with open(tmp_file, "wb") as fp:
817 fp.write(zfp.read(fn))
818 return tmp_file
Yifan Hong10482a22021-01-07 14:38:41 -0800819 else:
Kelvin Zhangeb147e02022-10-21 10:53:21 -0700820 if not os.path.isdir(input_file):
821 raise ValueError(
822 "Invalid input_file, accepted inputs are ZipFile object, path to .zip file on disk, or path to extracted directory. Actual: " + input_file)
Yifan Hong10482a22021-01-07 14:38:41 -0800823 file = os.path.join(input_file, *fn.split("/"))
824 if not os.path.exists(file):
825 raise KeyError(fn)
826 return file
827
Kelvin Zhang563750f2021-04-28 12:46:17 -0400828
jiajia tangf3f842b2021-03-17 21:49:44 +0800829class RamdiskFormat(object):
830 LZ4 = 1
831 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800832
Kelvin Zhang563750f2021-04-28 12:46:17 -0400833
TJ Rhoades6f488e92022-05-01 22:16:22 -0700834def GetRamdiskFormat(info_dict):
jiajia tang836f76b2021-04-02 14:48:26 +0800835 if info_dict.get('lz4_ramdisks') == 'true':
836 ramdisk_format = RamdiskFormat.LZ4
837 else:
838 ramdisk_format = RamdiskFormat.GZ
839 return ramdisk_format
840
Kelvin Zhang563750f2021-04-28 12:46:17 -0400841
Tao Bao410ad8b2018-08-24 12:08:38 -0700842def LoadInfoDict(input_file, repacking=False):
843 """Loads the key/value pairs from the given input target_files.
844
Tianjiea85bdf02020-07-29 11:56:19 -0700845 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700846 checks and returns the parsed key/value pairs for to the given build. It's
847 usually called early when working on input target_files files, e.g. when
848 generating OTAs, or signing builds. Note that the function may be called
849 against an old target_files file (i.e. from past dessert releases). So the
850 property parsing needs to be backward compatible.
851
852 In a `META/misc_info.txt`, a few properties are stored as links to the files
853 in the PRODUCT_OUT directory. It works fine with the build system. However,
854 they are no longer available when (re)generating images from target_files zip.
855 When `repacking` is True, redirect these properties to the actual files in the
856 unzipped directory.
857
858 Args:
859 input_file: The input target_files file, which could be an open
860 zipfile.ZipFile instance, or a str for the dir that contains the files
861 unzipped from a target_files file.
862 repacking: Whether it's trying repack an target_files file after loading the
863 info dict (default: False). If so, it will rewrite a few loaded
864 properties (e.g. selinux_fc, root_dir) to point to the actual files in
865 target_files file. When doing repacking, `input_file` must be a dir.
866
867 Returns:
868 A dict that contains the parsed key/value pairs.
869
870 Raises:
871 AssertionError: On invalid input arguments.
872 ValueError: On malformed input values.
873 """
874 if repacking:
875 assert isinstance(input_file, str), \
876 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700877
Doug Zongkerc9253822014-02-04 12:17:58 -0800878 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000879 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800880
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700881 try:
Michael Runge6e836112014-04-15 17:40:21 -0700882 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700883 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700884 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700885
Tao Bao410ad8b2018-08-24 12:08:38 -0700886 if "recovery_api_version" not in d:
887 raise ValueError("Failed to find 'recovery_api_version'")
888 if "fstab_version" not in d:
889 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800890
Tao Bao410ad8b2018-08-24 12:08:38 -0700891 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700892 # "selinux_fc" properties should point to the file_contexts files
893 # (file_contexts.bin) under META/.
894 for key in d:
895 if key.endswith("selinux_fc"):
896 fc_basename = os.path.basename(d[key])
897 fc_config = os.path.join(input_file, "META", fc_basename)
898 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700899
Daniel Norman72c626f2019-05-13 15:58:14 -0700900 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700901
Tom Cherryd14b8952018-08-09 14:26:00 -0700902 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700903 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700904 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700905 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700906
David Anderson0ec64ac2019-12-06 12:21:18 -0800907 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700908 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000909 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800910 key_name = part_name + "_base_fs_file"
911 if key_name not in d:
912 continue
913 basename = os.path.basename(d[key_name])
914 base_fs_file = os.path.join(input_file, "META", basename)
915 if os.path.exists(base_fs_file):
916 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700917 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700918 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800919 "Failed to find %s base fs file: %s", part_name, base_fs_file)
920 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700921
Doug Zongker37974732010-09-16 17:44:38 -0700922 def makeint(key):
923 if key in d:
924 d[key] = int(d[key], 0)
925
926 makeint("recovery_api_version")
927 makeint("blocksize")
928 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700929 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700930 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700931 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700932 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800933 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700934
Steve Muckle903a1ca2020-05-07 17:32:10 -0700935 boot_images = "boot.img"
936 if "boot_images" in d:
937 boot_images = d["boot_images"]
938 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400939 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700940
Tao Bao765668f2019-10-04 22:03:00 -0700941 # Load recovery fstab if applicable.
942 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
TJ Rhoades6f488e92022-05-01 22:16:22 -0700943 ramdisk_format = GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800944
Tianjie Xu861f4132018-09-12 11:49:33 -0700945 # Tries to load the build props for all partitions with care_map, including
946 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800947 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800948 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000949 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800950 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700951 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800952
Tao Bao12d87fc2018-01-31 12:18:52 -0800953 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700954 # Set the vbmeta digest if exists
955 try:
956 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
957 except KeyError:
958 pass
959
Kelvin Zhang39aea442020-08-17 11:04:25 -0400960 try:
961 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
962 except KeyError:
963 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700964 return d
965
Tao Baod1de6f32017-03-01 16:38:48 -0800966
Daniel Norman4cc9df62019-07-18 10:11:07 -0700967def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900968 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700969 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900970
Daniel Norman4cc9df62019-07-18 10:11:07 -0700971
972def LoadDictionaryFromFile(file_path):
973 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900974 return LoadDictionaryFromLines(lines)
975
976
Michael Runge6e836112014-04-15 17:40:21 -0700977def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700978 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700979 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700980 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700981 if not line or line.startswith("#"):
982 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700983 if "=" in line:
984 name, value = line.split("=", 1)
985 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700986 return d
987
Tao Baod1de6f32017-03-01 16:38:48 -0800988
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000989class PartitionBuildProps(object):
990 """The class holds the build prop of a particular partition.
991
992 This class loads the build.prop and holds the build properties for a given
993 partition. It also partially recognizes the 'import' statement in the
994 build.prop; and calculates alternative values of some specific build
995 properties during runtime.
996
997 Attributes:
998 input_file: a zipped target-file or an unzipped target-file directory.
999 partition: name of the partition.
1000 props_allow_override: a list of build properties to search for the
1001 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +00001002 build_props: a dict of build properties for the given partition.
1003 prop_overrides: a set of props that are overridden by import.
1004 placeholder_values: A dict of runtime variables' values to replace the
1005 placeholders in the build.prop file. We expect exactly one value for
1006 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +08001007 ramdisk_format: If name is "boot", the format of ramdisk inside the
1008 boot image. Otherwise, its value is ignored.
Elliott Hughes97ad1202023-06-20 16:41:58 -07001009 Use lz4 to decompress by default. If its value is gzip, use gzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001010 """
Kelvin Zhang0876c412020-06-23 15:06:58 -04001011
Tianjie Xu9afb2212020-05-10 21:48:15 +00001012 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001013 self.input_file = input_file
1014 self.partition = name
1015 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +00001016 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001017 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001018 self.prop_overrides = set()
1019 self.placeholder_values = {}
1020 if placeholder_values:
1021 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001022
1023 @staticmethod
1024 def FromDictionary(name, build_props):
1025 """Constructs an instance from a build prop dictionary."""
1026
1027 props = PartitionBuildProps("unknown", name)
1028 props.build_props = build_props.copy()
1029 return props
1030
1031 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +08001032 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001033 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -08001034
Devin Mooreafdd7c72021-12-13 22:04:08 +00001035 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001036 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +00001037 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -08001038 else:
1039 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
1040
1041 props = PartitionBuildProps(input_file, name, placeholder_values)
1042 props._LoadBuildProp(data)
1043 return props
1044
1045 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +00001046 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -08001047 """
1048 Read build.prop for boot image from input_file.
1049 Return empty string if not found.
1050 """
Devin Mooreafdd7c72021-12-13 22:04:08 +00001051 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -08001052 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +00001053 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -08001054 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +00001055 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -08001056 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +08001057 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -08001058 if prop_file is None:
1059 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -05001060 with open(prop_file, "r") as f:
1061 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -08001062
1063 @staticmethod
1064 def _ReadPartitionPropFile(input_file, name):
1065 """
1066 Read build.prop for name from input_file.
1067 Return empty string if not found.
1068 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001069 data = ''
1070 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
1071 '{}/build.prop'.format(name.upper())]:
1072 try:
1073 data = ReadFromInputFile(input_file, prop_file)
1074 break
1075 except KeyError:
1076 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -08001077 if data == '':
1078 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -08001079 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001080
Yifan Hong125d0b62020-09-24 17:07:03 -07001081 @staticmethod
1082 def FromBuildPropFile(name, build_prop_file):
1083 """Constructs an instance from a build prop file."""
1084
1085 props = PartitionBuildProps("unknown", name)
1086 with open(build_prop_file) as f:
1087 props._LoadBuildProp(f.read())
1088 return props
1089
Tianjie Xu9afb2212020-05-10 21:48:15 +00001090 def _LoadBuildProp(self, data):
1091 for line in data.split('\n'):
1092 line = line.strip()
1093 if not line or line.startswith("#"):
1094 continue
1095 if line.startswith("import"):
1096 overrides = self._ImportParser(line)
1097 duplicates = self.prop_overrides.intersection(overrides.keys())
1098 if duplicates:
1099 raise ValueError('prop {} is overridden multiple times'.format(
1100 ','.join(duplicates)))
1101 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1102 self.build_props.update(overrides)
1103 elif "=" in line:
1104 name, value = line.split("=", 1)
1105 if name in self.prop_overrides:
1106 raise ValueError('prop {} is set again after overridden by import '
1107 'statement'.format(name))
1108 self.build_props[name] = value
1109
1110 def _ImportParser(self, line):
1111 """Parses the build prop in a given import statement."""
1112
1113 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001114 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001115 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001116
1117 if len(tokens) == 3:
1118 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1119 return {}
1120
Tianjie Xu9afb2212020-05-10 21:48:15 +00001121 import_path = tokens[1]
1122 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001123 logger.warn('Unrecognized import path {}'.format(line))
1124 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001125
1126 # We only recognize a subset of import statement that the init process
1127 # supports. And we can loose the restriction based on how the dynamic
1128 # fingerprint is used in practice. The placeholder format should be
1129 # ${placeholder}, and its value should be provided by the caller through
1130 # the placeholder_values.
1131 for prop, value in self.placeholder_values.items():
1132 prop_place_holder = '${{{}}}'.format(prop)
1133 if prop_place_holder in import_path:
1134 import_path = import_path.replace(prop_place_holder, value)
1135 if '$' in import_path:
1136 logger.info('Unresolved place holder in import path %s', import_path)
1137 return {}
1138
1139 import_path = import_path.replace('/{}'.format(self.partition),
1140 self.partition.upper())
1141 logger.info('Parsing build props override from %s', import_path)
1142
1143 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1144 d = LoadDictionaryFromLines(lines)
1145 return {key: val for key, val in d.items()
1146 if key in self.props_allow_override}
1147
Kelvin Zhang5ef25192022-10-19 11:25:22 -07001148 def __getstate__(self):
1149 state = self.__dict__.copy()
1150 # Don't pickle baz
1151 if "input_file" in state and isinstance(state["input_file"], zipfile.ZipFile):
1152 state["input_file"] = state["input_file"].filename
1153 return state
1154
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001155 def GetProp(self, prop):
1156 return self.build_props.get(prop)
1157
1158
Yi-Yo Chiang18650c72022-10-12 18:29:14 +08001159def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001160 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001161 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001162 self.mount_point = mount_point
1163 self.fs_type = fs_type
1164 self.device = device
1165 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001166 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001167 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001168
1169 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001170 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001171 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001172 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001173 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001174
Tao Baod1de6f32017-03-01 16:38:48 -08001175 assert fstab_version == 2
1176
1177 d = {}
1178 for line in data.split("\n"):
1179 line = line.strip()
1180 if not line or line.startswith("#"):
1181 continue
1182
1183 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1184 pieces = line.split()
1185 if len(pieces) != 5:
1186 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1187
1188 # Ignore entries that are managed by vold.
1189 options = pieces[4]
1190 if "voldmanaged=" in options:
1191 continue
1192
1193 # It's a good line, parse it.
1194 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001195 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001196 options = options.split(",")
1197 for i in options:
1198 if i.startswith("length="):
1199 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001200 elif i == "slotselect":
1201 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001202 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001203 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001204 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001205
Tao Baod1de6f32017-03-01 16:38:48 -08001206 mount_flags = pieces[3]
1207 # Honor the SELinux context if present.
1208 context = None
1209 for i in mount_flags.split(","):
1210 if i.startswith("context="):
1211 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001212
Tao Baod1de6f32017-03-01 16:38:48 -08001213 mount_point = pieces[1]
1214 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001215 device=pieces[0], length=length, context=context,
1216 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001217
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001218 return d
1219
1220
Tao Bao765668f2019-10-04 22:03:00 -07001221def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1222 """Finds the path to recovery fstab and loads its contents."""
1223 # recovery fstab is only meaningful when installing an update via recovery
1224 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001225 if info_dict.get('ab_update') == 'true' and \
1226 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001227 return None
1228
1229 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1230 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1231 # cases, since it may load the info_dict from an old build (e.g. when
1232 # generating incremental OTAs from that build).
Tao Bao765668f2019-10-04 22:03:00 -07001233 if info_dict.get('no_recovery') != 'true':
1234 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
Kelvin Zhang2ab69862023-10-27 10:58:05 -07001235 if not DoesInputFileContain(input_file, recovery_fstab_path):
1236 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
Tao Bao765668f2019-10-04 22:03:00 -07001237 return LoadRecoveryFSTab(
Yi-Yo Chiang18650c72022-10-12 18:29:14 +08001238 read_helper, info_dict['fstab_version'], recovery_fstab_path)
Tao Bao765668f2019-10-04 22:03:00 -07001239
1240 if info_dict.get('recovery_as_boot') == 'true':
1241 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
Kelvin Zhang2ab69862023-10-27 10:58:05 -07001242 if not DoesInputFileContain(input_file, recovery_fstab_path):
1243 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
Tao Bao765668f2019-10-04 22:03:00 -07001244 return LoadRecoveryFSTab(
Yi-Yo Chiang18650c72022-10-12 18:29:14 +08001245 read_helper, info_dict['fstab_version'], recovery_fstab_path)
Tao Bao765668f2019-10-04 22:03:00 -07001246
1247 return None
1248
1249
Doug Zongker37974732010-09-16 17:44:38 -07001250def DumpInfoDict(d):
1251 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001252 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001253
Dan Albert8b72aef2015-03-23 19:13:21 -07001254
Daniel Norman55417142019-11-25 16:04:36 -08001255def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001256 """Merges dynamic partition info variables.
1257
1258 Args:
1259 framework_dict: The dictionary of dynamic partition info variables from the
1260 partial framework target files.
1261 vendor_dict: The dictionary of dynamic partition info variables from the
1262 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001263
1264 Returns:
1265 The merged dynamic partition info dictionary.
1266 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001267
1268 def uniq_concat(a, b):
jiajia tange5ddfcd2022-06-21 10:36:12 +08001269 combined = set(a.split())
1270 combined.update(set(b.split()))
Daniel Normanb0c75912020-09-24 14:30:21 -07001271 combined = [item.strip() for item in combined if item.strip()]
1272 return " ".join(sorted(combined))
1273
1274 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhangf294c872022-10-06 14:21:36 -07001275 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001276 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1277
1278 merged_dict = {"use_dynamic_partitions": "true"}
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001279 # For keys-value pairs that are the same, copy to merged dict
1280 for key in vendor_dict.keys():
1281 if key in framework_dict and framework_dict[key] == vendor_dict[key]:
1282 merged_dict[key] = vendor_dict[key]
Daniel Normanb0c75912020-09-24 14:30:21 -07001283
1284 merged_dict["dynamic_partition_list"] = uniq_concat(
1285 framework_dict.get("dynamic_partition_list", ""),
1286 vendor_dict.get("dynamic_partition_list", ""))
1287
1288 # Super block devices are defined by the vendor dict.
1289 if "super_block_devices" in vendor_dict:
1290 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001291 for block_device in merged_dict["super_block_devices"].split():
Daniel Normanb0c75912020-09-24 14:30:21 -07001292 key = "super_%s_device_size" % block_device
1293 if key not in vendor_dict:
1294 raise ValueError("Vendor dict does not contain required key %s." % key)
1295 merged_dict[key] = vendor_dict[key]
1296
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001297 # Partition groups and group sizes are defined by the vendor dict because
1298 # these values may vary for each board that uses a shared system image.
1299 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001300 for partition_group in merged_dict["super_partition_groups"].split():
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001301 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001302 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001303 if key not in vendor_dict:
1304 raise ValueError("Vendor dict does not contain required key %s." % key)
1305 merged_dict[key] = vendor_dict[key]
1306
1307 # Set the partition group's partition list using a concatenation of the
1308 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001309 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001310 merged_dict[key] = uniq_concat(
1311 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301312
Daniel Normanb0c75912020-09-24 14:30:21 -07001313 # Various other flags should be copied from the vendor dict, if defined.
1314 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1315 "super_metadata_device", "super_partition_error_limit",
1316 "super_partition_size"):
1317 if key in vendor_dict.keys():
1318 merged_dict[key] = vendor_dict[key]
1319
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001320 return merged_dict
1321
1322
Daniel Norman21c34f72020-11-11 17:25:50 -08001323def PartitionMapFromTargetFiles(target_files_dir):
1324 """Builds a map from partition -> path within an extracted target files directory."""
1325 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1326 possible_subdirs = {
1327 "system": ["SYSTEM"],
1328 "vendor": ["VENDOR", "SYSTEM/vendor"],
1329 "product": ["PRODUCT", "SYSTEM/product"],
1330 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1331 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1332 "vendor_dlkm": [
1333 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1334 ],
1335 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001336 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001337 }
1338 partition_map = {}
1339 for partition, subdirs in possible_subdirs.items():
1340 for subdir in subdirs:
1341 if os.path.exists(os.path.join(target_files_dir, subdir)):
1342 partition_map[partition] = subdir
1343 break
1344 return partition_map
1345
1346
Daniel Normand3351562020-10-29 12:33:11 -07001347def SharedUidPartitionViolations(uid_dict, partition_groups):
1348 """Checks for APK sharedUserIds that cross partition group boundaries.
1349
1350 This uses a single or merged build's shareduid_violation_modules.json
1351 output file, as generated by find_shareduid_violation.py or
1352 core/tasks/find-shareduid-violation.mk.
1353
1354 An error is defined as a sharedUserId that is found in a set of partitions
1355 that span more than one partition group.
1356
1357 Args:
1358 uid_dict: A dictionary created by using the standard json module to read a
1359 complete shareduid_violation_modules.json file.
1360 partition_groups: A list of groups, where each group is a list of
1361 partitions.
1362
1363 Returns:
1364 A list of error messages.
1365 """
1366 errors = []
1367 for uid, partitions in uid_dict.items():
1368 found_in_groups = [
1369 group for group in partition_groups
1370 if set(partitions.keys()) & set(group)
1371 ]
1372 if len(found_in_groups) > 1:
1373 errors.append(
1374 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1375 % (uid, ",".join(sorted(partitions.keys()))))
1376 return errors
1377
1378
Daniel Norman21c34f72020-11-11 17:25:50 -08001379def RunHostInitVerifier(product_out, partition_map):
1380 """Runs host_init_verifier on the init rc files within partitions.
1381
1382 host_init_verifier searches the etc/init path within each partition.
1383
1384 Args:
1385 product_out: PRODUCT_OUT directory, containing partition directories.
1386 partition_map: A map of partition name -> relative path within product_out.
1387 """
1388 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1389 cmd = ["host_init_verifier"]
1390 for partition, path in partition_map.items():
1391 if partition not in allowed_partitions:
1392 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1393 partition)
1394 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1395 # Add --property-contexts if the file exists on the partition.
1396 property_contexts = "%s_property_contexts" % (
1397 "plat" if partition == "system" else partition)
1398 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1399 property_contexts)
1400 if os.path.exists(property_contexts_path):
1401 cmd.append("--property-contexts=%s" % property_contexts_path)
1402 # Add the passwd file if the file exists on the partition.
1403 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1404 if os.path.exists(passwd_path):
1405 cmd.extend(["-p", passwd_path])
1406 return RunAndCheckOutput(cmd)
1407
1408
Kelvin Zhangde53f7d2023-10-03 12:21:28 -07001409def AppendAVBSigningArgs(cmd, partition, avb_salt=None):
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001410 """Append signing arguments for avbtool."""
1411 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
Kelvin Zhange634bde2023-04-28 23:59:43 -07001412 key_path = ResolveAVBSigningPathArgs(
1413 OPTIONS.info_dict.get("avb_" + partition + "_key_path"))
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001414 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1415 if key_path and algorithm:
1416 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Kelvin Zhangde53f7d2023-10-03 12:21:28 -07001417 if avb_salt is None:
1418 avb_salt = OPTIONS.info_dict.get("avb_salt")
Tao Bao2b6dfd62017-09-27 17:17:43 -07001419 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001420 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001421 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001422
1423
zhangyongpeng70756972023-04-12 15:31:33 +08001424def ResolveAVBSigningPathArgs(split_args):
1425
1426 def ResolveBinaryPath(path):
1427 if os.path.exists(path):
1428 return path
Kelvin Zhang97a5afe2023-06-27 10:30:48 -07001429 if OPTIONS.search_path:
1430 new_path = os.path.join(OPTIONS.search_path, path)
1431 if os.path.exists(new_path):
1432 return new_path
zhangyongpeng70756972023-04-12 15:31:33 +08001433 raise ExternalError(
Kelvin Zhang43df0802023-07-24 13:16:03 -07001434 "Failed to find {}".format(path))
zhangyongpeng70756972023-04-12 15:31:33 +08001435
1436 if not split_args:
1437 return split_args
1438
1439 if isinstance(split_args, list):
1440 for index, arg in enumerate(split_args[:-1]):
1441 if arg == '--signing_helper':
1442 signing_helper_path = split_args[index + 1]
1443 split_args[index + 1] = ResolveBinaryPath(signing_helper_path)
1444 break
1445 elif isinstance(split_args, str):
1446 split_args = ResolveBinaryPath(split_args)
1447
1448 return split_args
1449
1450
Tao Bao765668f2019-10-04 22:03:00 -07001451def GetAvbPartitionArg(partition, image, info_dict=None):
Dennis Song4aae62e2023-10-02 04:31:34 +00001452 """Returns the VBMeta arguments for one partition.
Daniel Norman276f0622019-07-26 14:13:51 -07001453
1454 It sets up the VBMeta argument by including the partition descriptor from the
1455 given 'image', or by configuring the partition as a chained partition.
1456
1457 Args:
1458 partition: The name of the partition (e.g. "system").
1459 image: The path to the partition image.
1460 info_dict: A dict returned by common.LoadInfoDict(). Will use
1461 OPTIONS.info_dict if None has been given.
1462
1463 Returns:
Dennis Song4aae62e2023-10-02 04:31:34 +00001464 A list of VBMeta arguments for one partition.
Daniel Norman276f0622019-07-26 14:13:51 -07001465 """
1466 if info_dict is None:
1467 info_dict = OPTIONS.info_dict
1468
1469 # Check if chain partition is used.
1470 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001471 if not key_path:
Dennis Song6e5e44d2023-10-03 02:18:06 +00001472 return [AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG, image]
cfig1aeef722019-09-20 22:45:06 +08001473
1474 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1475 # into vbmeta.img. The recovery image will be configured on an independent
1476 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1477 # See details at
1478 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001479 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001480 return []
1481
1482 # Otherwise chain the partition into vbmeta.
1483 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
Dennis Song6e5e44d2023-10-03 02:18:06 +00001484 return [AVB_ARG_NAME_CHAIN_PARTITION, chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001485
1486
Dennis Song4aae62e2023-10-02 04:31:34 +00001487def GetAvbPartitionsArg(partitions,
1488 resolve_rollback_index_location_conflict=False,
1489 info_dict=None):
1490 """Returns the VBMeta arguments for all AVB partitions.
1491
1492 It sets up the VBMeta argument by calling GetAvbPartitionArg of all
1493 partitions.
1494
1495 Args:
1496 partitions: A dict of all AVB partitions.
1497 resolve_rollback_index_location_conflict: If true, resolve conflicting avb
1498 rollback index locations by assigning the smallest unused value.
1499 info_dict: A dict returned by common.LoadInfoDict().
1500
1501 Returns:
1502 A list of VBMeta arguments for all partitions.
1503 """
1504 # An AVB partition will be linked into a vbmeta partition by either
1505 # AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG or AVB_ARG_NAME_CHAIN_PARTITION, there
1506 # should be no other cases.
1507 valid_args = {
1508 AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG: [],
1509 AVB_ARG_NAME_CHAIN_PARTITION: []
1510 }
1511
1512 for partition, path in partitions.items():
1513 avb_partition_arg = GetAvbPartitionArg(partition, path, info_dict)
1514 if not avb_partition_arg:
1515 continue
1516 arg_name, arg_value = avb_partition_arg
1517 assert arg_name in valid_args
1518 valid_args[arg_name].append(arg_value)
1519
1520 # Copy the arguments for non-chained AVB partitions directly without
1521 # intervention.
1522 avb_args = []
1523 for image in valid_args[AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG]:
1524 avb_args.extend([AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG, image])
1525
1526 # Handle chained AVB partitions. The rollback index location might be
1527 # adjusted if two partitions use the same value. This may happen when mixing
1528 # a shared system image with other vendor images.
1529 used_index_loc = set()
1530 for chained_partition_arg in valid_args[AVB_ARG_NAME_CHAIN_PARTITION]:
1531 if resolve_rollback_index_location_conflict:
1532 while chained_partition_arg.rollback_index_location in used_index_loc:
1533 chained_partition_arg.rollback_index_location += 1
1534
1535 used_index_loc.add(chained_partition_arg.rollback_index_location)
1536 avb_args.extend([AVB_ARG_NAME_CHAIN_PARTITION,
1537 chained_partition_arg.to_string()])
1538
1539 return avb_args
1540
1541
Tao Bao02a08592018-07-22 12:40:45 -07001542def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1543 """Constructs and returns the arg to build or verify a chained partition.
1544
1545 Args:
1546 partition: The partition name.
1547 info_dict: The info dict to look up the key info and rollback index
1548 location.
1549 key: The key to be used for building or verifying the partition. Defaults to
1550 the key listed in info_dict.
1551
1552 Returns:
Dennis Song4aae62e2023-10-02 04:31:34 +00001553 An AvbChainedPartitionArg object with rollback_index_location and
1554 pubkey_path that can be used to build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001555 """
1556 if key is None:
1557 key = info_dict["avb_" + partition + "_key_path"]
zhangyongpeng70756972023-04-12 15:31:33 +08001558 key = ResolveAVBSigningPathArgs(key)
Tao Bao1ac886e2019-06-26 11:58:22 -07001559 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001560 rollback_index_location = info_dict[
1561 "avb_" + partition + "_rollback_index_location"]
Dennis Song4aae62e2023-10-02 04:31:34 +00001562 return AvbChainedPartitionArg(
1563 partition=partition,
1564 rollback_index_location=int(rollback_index_location),
1565 pubkey_path=pubkey_path)
Tao Bao02a08592018-07-22 12:40:45 -07001566
1567
Yi-Yo Chiang92a517d2023-12-01 07:02:17 +00001568def _HasGkiCertificationArgs():
1569 return ("gki_signing_key_path" in OPTIONS.info_dict and
1570 "gki_signing_algorithm" in OPTIONS.info_dict)
1571
1572
1573def _GenerateGkiCertificate(image, image_name):
1574 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
1575 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
1576
1577 key_path = ResolveAVBSigningPathArgs(key_path)
1578
1579 # Checks key_path exists, before processing --gki_signing_* args.
1580 if not os.path.exists(key_path):
1581 raise ExternalError(
1582 'gki_signing_key_path: "{}" not found'.format(key_path))
1583
1584 output_certificate = tempfile.NamedTemporaryFile()
1585 cmd = [
1586 "generate_gki_certificate",
1587 "--name", image_name,
1588 "--algorithm", algorithm,
1589 "--key", key_path,
1590 "--output", output_certificate.name,
1591 image,
1592 ]
1593
1594 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1595 signature_args = signature_args.strip()
1596 if signature_args:
1597 cmd.extend(["--additional_avb_args", signature_args])
1598
1599 args = OPTIONS.info_dict.get("avb_boot_add_hash_footer_args", "")
1600 args = args.strip()
1601 if args:
1602 cmd.extend(["--additional_avb_args", args])
1603
1604 RunAndCheckOutput(cmd)
1605
1606 output_certificate.seek(os.SEEK_SET, 0)
1607 data = output_certificate.read()
1608 output_certificate.close()
1609 return data
1610
1611
Dennis Song4aae62e2023-10-02 04:31:34 +00001612def BuildVBMeta(image_path, partitions, name, needed_partitions,
1613 resolve_rollback_index_location_conflict=False):
Daniel Norman276f0622019-07-26 14:13:51 -07001614 """Creates a VBMeta image.
1615
1616 It generates the requested VBMeta image. The requested image could be for
1617 top-level or chained VBMeta image, which is determined based on the name.
1618
1619 Args:
1620 image_path: The output path for the new VBMeta image.
1621 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001622 values. Only valid partition names are accepted, as partitions listed
1623 in common.AVB_PARTITIONS and custom partitions listed in
1624 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001625 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1626 needed_partitions: Partitions whose descriptors should be included into the
1627 generated VBMeta image.
Dennis Song4aae62e2023-10-02 04:31:34 +00001628 resolve_rollback_index_location_conflict: If true, resolve conflicting avb
1629 rollback index locations by assigning the smallest unused value.
Daniel Norman276f0622019-07-26 14:13:51 -07001630
1631 Raises:
1632 AssertionError: On invalid input args.
1633 """
1634 avbtool = OPTIONS.info_dict["avb_avbtool"]
1635 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1636 AppendAVBSigningArgs(cmd, name)
1637
Hongguang Chenf23364d2020-04-27 18:36:36 -07001638 custom_partitions = OPTIONS.info_dict.get(
1639 "avb_custom_images_partition_list", "").strip().split()
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -07001640 custom_avb_partitions = ["vbmeta_" + part for part in OPTIONS.info_dict.get(
1641 "avb_custom_vbmeta_images_partition_list", "").strip().split()]
Hongguang Chenf23364d2020-04-27 18:36:36 -07001642
Dennis Song4aae62e2023-10-02 04:31:34 +00001643 avb_partitions = {}
Daniel Norman276f0622019-07-26 14:13:51 -07001644 for partition, path in partitions.items():
1645 if partition not in needed_partitions:
1646 continue
1647 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001648 partition in AVB_VBMETA_PARTITIONS or
Kelvin Zhangb81b4e32023-01-10 10:37:56 -08001649 partition in custom_avb_partitions or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001650 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001651 'Unknown partition: {}'.format(partition)
1652 assert os.path.exists(path), \
1653 'Failed to find {} for {}'.format(path, partition)
Dennis Song4aae62e2023-10-02 04:31:34 +00001654 avb_partitions[partition] = path
1655 cmd.extend(GetAvbPartitionsArg(avb_partitions,
1656 resolve_rollback_index_location_conflict))
Daniel Norman276f0622019-07-26 14:13:51 -07001657
1658 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1659 if args and args.strip():
1660 split_args = shlex.split(args)
1661 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001662 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001663 # as a path relative to source tree, which may not be available at the
1664 # same location when running this script (we have the input target_files
1665 # zip only). For such cases, we additionally scan other locations (e.g.
1666 # IMAGES/, RADIO/, etc) before bailing out.
Dennis Song6e5e44d2023-10-03 02:18:06 +00001667 if arg == AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG:
Tianjie Xueaed60c2020-03-12 00:33:28 -07001668 chained_image = split_args[index + 1]
1669 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001670 continue
1671 found = False
1672 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1673 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001674 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001675 if os.path.exists(alt_path):
1676 split_args[index + 1] = alt_path
1677 found = True
1678 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001679 assert found, 'Failed to find {}'.format(chained_image)
zhangyongpeng70756972023-04-12 15:31:33 +08001680
1681 split_args = ResolveAVBSigningPathArgs(split_args)
Daniel Norman276f0622019-07-26 14:13:51 -07001682 cmd.extend(split_args)
1683
1684 RunAndCheckOutput(cmd)
1685
1686
jiajia tang836f76b2021-04-02 14:48:26 +08001687def _MakeRamdisk(sourcedir, fs_config_file=None,
Vincent Donnefort6e861e92023-02-17 10:12:57 +00001688 dev_node_file=None,
jiajia tang836f76b2021-04-02 14:48:26 +08001689 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001690 ramdisk_img = tempfile.NamedTemporaryFile()
1691
Vincent Donnefort6e861e92023-02-17 10:12:57 +00001692 cmd = ["mkbootfs"]
1693
1694 if fs_config_file and os.access(fs_config_file, os.F_OK):
1695 cmd.extend(["-f", fs_config_file])
1696
1697 if dev_node_file and os.access(dev_node_file, os.F_OK):
1698 cmd.extend(["-n", dev_node_file])
1699
1700 cmd.append(os.path.join(sourcedir, "RAMDISK"))
1701
Steve Mucklee1b10862019-07-10 10:49:37 -07001702 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001703 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001704 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001705 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001706 elif ramdisk_format == RamdiskFormat.GZ:
Elliott Hughes97ad1202023-06-20 16:41:58 -07001707 p2 = Run(["gzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001708 else:
Elliott Hughes97ad1202023-06-20 16:41:58 -07001709 raise ValueError("Only support lz4 or gzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001710
1711 p2.wait()
1712 p1.wait()
1713 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001714 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001715
1716 return ramdisk_img
1717
1718
Vincent Donnefort6e861e92023-02-17 10:12:57 +00001719def _BuildBootableImage(image_name, sourcedir, fs_config_file,
1720 dev_node_file=None, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001721 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001722 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001723
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001724 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001725 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1726 we are building a two-step special image (i.e. building a recovery image to
1727 be loaded into /boot in two-step OTAs).
1728
1729 Return the image data, or None if sourcedir does not appear to contains files
1730 for building the requested image.
1731 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001732
Yifan Hong63c5ca12020-10-08 11:54:02 -07001733 if info_dict is None:
1734 info_dict = OPTIONS.info_dict
1735
Steve Muckle9793cf62020-04-08 18:27:00 -07001736 # "boot" or "recovery", without extension.
1737 partition_name = os.path.basename(sourcedir).lower()
1738
Yifan Hong63c5ca12020-10-08 11:54:02 -07001739 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001740 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001741 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1742 logger.info("Excluded kernel binary from recovery image.")
1743 else:
1744 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001745 elif partition_name == "init_boot":
1746 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001747 else:
1748 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001749 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001750 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001751 return None
1752
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001753 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1754
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001755 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001756 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001757
Doug Zongkereef39442009-04-02 12:14:19 -07001758 img = tempfile.NamedTemporaryFile()
1759
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001760 if has_ramdisk:
TJ Rhoades6f488e92022-05-01 22:16:22 -07001761 ramdisk_format = GetRamdiskFormat(info_dict)
Vincent Donnefort6e861e92023-02-17 10:12:57 +00001762 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file, dev_node_file,
jiajia tang836f76b2021-04-02 14:48:26 +08001763 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001764
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001765 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1766 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1767
Yifan Hong63c5ca12020-10-08 11:54:02 -07001768 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001769 if kernel_path is not None:
1770 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001771
Benoit Fradina45a8682014-07-14 21:00:43 +02001772 fn = os.path.join(sourcedir, "second")
1773 if os.access(fn, os.F_OK):
1774 cmd.append("--second")
1775 cmd.append(fn)
1776
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001777 fn = os.path.join(sourcedir, "dtb")
1778 if os.access(fn, os.F_OK):
1779 cmd.append("--dtb")
1780 cmd.append(fn)
1781
Doug Zongker171f1cd2009-06-15 22:36:37 -07001782 fn = os.path.join(sourcedir, "cmdline")
1783 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001784 cmd.append("--cmdline")
1785 cmd.append(open(fn).read().rstrip("\n"))
1786
1787 fn = os.path.join(sourcedir, "base")
1788 if os.access(fn, os.F_OK):
1789 cmd.append("--base")
1790 cmd.append(open(fn).read().rstrip("\n"))
1791
Ying Wang4de6b5b2010-08-25 14:29:34 -07001792 fn = os.path.join(sourcedir, "pagesize")
1793 if os.access(fn, os.F_OK):
1794 cmd.append("--pagesize")
1795 cmd.append(open(fn).read().rstrip("\n"))
1796
Steve Mucklef84668e2020-03-16 19:13:46 -07001797 if partition_name == "recovery":
1798 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301799 if not args:
1800 # Fall back to "mkbootimg_args" for recovery image
1801 # in case "recovery_mkbootimg_args" is not set.
1802 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001803 elif partition_name == "init_boot":
1804 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001805 else:
1806 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001807 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001808 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001809
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001810 args = info_dict.get("mkbootimg_version_args")
1811 if args and args.strip():
1812 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001813
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001814 if has_ramdisk:
1815 cmd.extend(["--ramdisk", ramdisk_img.name])
1816
Tao Baod95e9fd2015-03-29 23:07:41 -07001817 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001818 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001819 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001820 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001821 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001822 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001823
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001824 if partition_name == "recovery":
1825 if info_dict.get("include_recovery_dtbo") == "true":
1826 fn = os.path.join(sourcedir, "recovery_dtbo")
1827 cmd.extend(["--recovery_dtbo", fn])
1828 if info_dict.get("include_recovery_acpio") == "true":
1829 fn = os.path.join(sourcedir, "recovery_acpio")
1830 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001831
Tao Bao986ee862018-10-04 15:46:16 -07001832 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001833
Yi-Yo Chiang92a517d2023-12-01 07:02:17 +00001834 if _HasGkiCertificationArgs():
1835 if not os.path.exists(img.name):
1836 raise ValueError("Cannot find GKI boot.img")
1837 if kernel_path is None or not os.path.exists(kernel_path):
1838 raise ValueError("Cannot find GKI kernel.img")
1839
1840 # Certify GKI images.
1841 boot_signature_bytes = b''
1842 boot_signature_bytes += _GenerateGkiCertificate(img.name, "boot")
1843 boot_signature_bytes += _GenerateGkiCertificate(
1844 kernel_path, "generic_kernel")
1845
1846 BOOT_SIGNATURE_SIZE = 16 * 1024
1847 if len(boot_signature_bytes) > BOOT_SIGNATURE_SIZE:
1848 raise ValueError(
1849 f"GKI boot_signature size must be <= {BOOT_SIGNATURE_SIZE}")
1850 boot_signature_bytes += (
1851 b'\0' * (BOOT_SIGNATURE_SIZE - len(boot_signature_bytes)))
1852 assert len(boot_signature_bytes) == BOOT_SIGNATURE_SIZE
1853
1854 with open(img.name, 'ab') as f:
1855 f.write(boot_signature_bytes)
1856
Tao Baod95e9fd2015-03-29 23:07:41 -07001857 # Sign the image if vboot is non-empty.
hungweichen22e3b012022-08-19 06:35:43 +00001858 if info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001859 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001860 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001861 # We have switched from the prebuilt futility binary to using the tool
1862 # (futility-host) built from the source. Override the setting in the old
1863 # TF.zip.
1864 futility = info_dict["futility"]
1865 if futility.startswith("prebuilts/"):
1866 futility = "futility-host"
1867 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001868 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001869 info_dict["vboot_key"] + ".vbprivk",
1870 info_dict["vboot_subkey"] + ".vbprivk",
1871 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001872 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001873 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001874
Tao Baof3282b42015-04-01 11:21:55 -07001875 # Clean up the temp files.
1876 img_unsigned.close()
1877 img_keyblock.close()
1878
David Zeuthen8fecb282017-12-01 16:24:01 -05001879 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001880 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001881 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001882 if partition_name == "recovery":
1883 part_size = info_dict["recovery_size"]
1884 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001885 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001886 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001887 "--partition_size", str(part_size), "--partition_name",
1888 partition_name]
Kelvin Zhangde53f7d2023-10-03 12:21:28 -07001889 salt = None
1890 if kernel_path is not None:
1891 with open(kernel_path, "rb") as fp:
1892 salt = sha256(fp.read()).hexdigest()
1893 AppendAVBSigningArgs(cmd, partition_name, salt)
David Zeuthen8fecb282017-12-01 16:24:01 -05001894 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001895 if args and args.strip():
zhangyongpeng70756972023-04-12 15:31:33 +08001896 split_args = ResolveAVBSigningPathArgs(shlex.split(args))
1897 cmd.extend(split_args)
Tao Bao986ee862018-10-04 15:46:16 -07001898 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001899
1900 img.seek(os.SEEK_SET, 0)
1901 data = img.read()
1902
1903 if has_ramdisk:
1904 ramdisk_img.close()
1905 img.close()
1906
1907 return data
1908
1909
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001910def _SignBootableImage(image_path, prebuilt_name, partition_name,
1911 info_dict=None):
1912 """Performs AVB signing for a prebuilt boot.img.
1913
1914 Args:
1915 image_path: The full path of the image, e.g., /path/to/boot.img.
1916 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001917 boot-5.10.img, recovery.img or init_boot.img.
1918 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001919 info_dict: The information dict read from misc_info.txt.
1920 """
1921 if info_dict is None:
1922 info_dict = OPTIONS.info_dict
1923
1924 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1925 if info_dict.get("avb_enable") == "true":
1926 avbtool = info_dict["avb_avbtool"]
1927 if partition_name == "recovery":
1928 part_size = info_dict["recovery_size"]
1929 else:
1930 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1931
1932 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1933 "--partition_size", str(part_size), "--partition_name",
1934 partition_name]
Kelvin Zhang160762a2023-10-17 12:27:56 -07001935 # Use sha256 of the kernel as salt for reproducible builds
1936 with tempfile.TemporaryDirectory() as tmpdir:
1937 RunAndCheckOutput(["unpack_bootimg", "--boot_img", image_path, "--out", tmpdir])
1938 for filename in ["kernel", "ramdisk", "vendor_ramdisk00"]:
1939 path = os.path.join(tmpdir, filename)
1940 if os.path.exists(path) and os.path.getsize(path):
Kelvin Zhang9f9ac4e2023-11-01 10:12:03 -07001941 print("Using {} as salt for avb footer of {}".format(
1942 filename, partition_name))
Kelvin Zhang160762a2023-10-17 12:27:56 -07001943 with open(path, "rb") as fp:
1944 salt = sha256(fp.read()).hexdigest()
Kelvin Zhang9f9ac4e2023-11-01 10:12:03 -07001945 break
Kelvin Zhang160762a2023-10-17 12:27:56 -07001946 AppendAVBSigningArgs(cmd, partition_name, salt)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001947 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1948 if args and args.strip():
zhangyongpeng70756972023-04-12 15:31:33 +08001949 split_args = ResolveAVBSigningPathArgs(shlex.split(args))
1950 cmd.extend(split_args)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001951 RunAndCheckOutput(cmd)
1952
1953
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001954def HasRamdisk(partition_name, info_dict=None):
1955 """Returns true/false to see if a bootable image should have a ramdisk.
1956
1957 Args:
1958 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1959 info_dict: The information dict read from misc_info.txt.
1960 """
1961 if info_dict is None:
1962 info_dict = OPTIONS.info_dict
1963
1964 if partition_name != "boot":
1965 return True # init_boot.img or recovery.img has a ramdisk.
1966
1967 if info_dict.get("recovery_as_boot") == "true":
1968 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1969
Yi-Yo Chiang92a517d2023-12-01 07:02:17 +00001970 if info_dict.get("gki_boot_image_without_ramdisk") == "true":
1971 return False # A GKI boot.img has no ramdisk since Android-13.
1972
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001973 if info_dict.get("init_boot") == "true":
1974 # The ramdisk is moved to the init_boot.img, so there is NO
1975 # ramdisk in the boot.img or boot-<kernel version>.img.
1976 return False
1977
1978 return True
1979
1980
Doug Zongkerd5131602012-08-02 14:46:42 -07001981def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Vincent Donnefort6e861e92023-02-17 10:12:57 +00001982 info_dict=None, two_step_image=False,
1983 dev_nodes=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001984 """Return a File object with the desired bootable image.
1985
1986 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1987 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1988 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001989
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001990 if info_dict is None:
1991 info_dict = OPTIONS.info_dict
1992
Doug Zongker55d93282011-01-25 17:03:34 -08001993 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1994 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001995 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001996 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001997
1998 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1999 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07002000 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07002001 return File.FromLocalFile(name, prebuilt_path)
2002
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08002003 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08002004 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
2005 if os.path.exists(prebuilt_path):
2006 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
2007 signed_img = MakeTempFile()
2008 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08002009 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
2010 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07002011
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08002012 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07002013
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08002014 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07002015
Doug Zongker6f1d0312014-08-22 08:07:12 -07002016 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07002017 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04002018 os.path.join(unpack_dir, fs_config),
Vincent Donnefort6e861e92023-02-17 10:12:57 +00002019 os.path.join(unpack_dir, 'META/ramdisk_node_list')
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -07002020 if dev_nodes else None,
Tao Baod42e97e2016-11-30 12:11:57 -08002021 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07002022 if data:
2023 return File(name, data)
2024 return None
Doug Zongker55d93282011-01-25 17:03:34 -08002025
Doug Zongkereef39442009-04-02 12:14:19 -07002026
Lucas Wei03230252022-04-18 16:00:40 +08002027def _BuildVendorBootImage(sourcedir, partition_name, info_dict=None):
Steve Mucklee1b10862019-07-10 10:49:37 -07002028 """Build a vendor boot image from the specified sourcedir.
2029
2030 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
2031 turn them into a vendor boot image.
2032
2033 Return the image data, or None if sourcedir does not appear to contains files
2034 for building the requested image.
2035 """
2036
2037 if info_dict is None:
2038 info_dict = OPTIONS.info_dict
2039
2040 img = tempfile.NamedTemporaryFile()
2041
TJ Rhoades6f488e92022-05-01 22:16:22 -07002042 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08002043 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07002044
2045 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
2046 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
2047
2048 cmd = [mkbootimg]
2049
2050 fn = os.path.join(sourcedir, "dtb")
2051 if os.access(fn, os.F_OK):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002052 has_vendor_kernel_boot = (info_dict.get(
2053 "vendor_kernel_boot", "").lower() == "true")
Lucas Wei03230252022-04-18 16:00:40 +08002054
2055 # Pack dtb into vendor_kernel_boot if building vendor_kernel_boot.
2056 # Otherwise pack dtb into vendor_boot.
2057 if not has_vendor_kernel_boot or partition_name == "vendor_kernel_boot":
2058 cmd.append("--dtb")
2059 cmd.append(fn)
Steve Mucklee1b10862019-07-10 10:49:37 -07002060
2061 fn = os.path.join(sourcedir, "vendor_cmdline")
2062 if os.access(fn, os.F_OK):
2063 cmd.append("--vendor_cmdline")
2064 cmd.append(open(fn).read().rstrip("\n"))
2065
2066 fn = os.path.join(sourcedir, "base")
2067 if os.access(fn, os.F_OK):
2068 cmd.append("--base")
2069 cmd.append(open(fn).read().rstrip("\n"))
2070
2071 fn = os.path.join(sourcedir, "pagesize")
2072 if os.access(fn, os.F_OK):
2073 cmd.append("--pagesize")
2074 cmd.append(open(fn).read().rstrip("\n"))
2075
2076 args = info_dict.get("mkbootimg_args")
2077 if args and args.strip():
2078 cmd.extend(shlex.split(args))
2079
2080 args = info_dict.get("mkbootimg_version_args")
2081 if args and args.strip():
2082 cmd.extend(shlex.split(args))
2083
2084 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
2085 cmd.extend(["--vendor_boot", img.name])
2086
Devin Moore50509012021-01-13 10:45:04 -08002087 fn = os.path.join(sourcedir, "vendor_bootconfig")
2088 if os.access(fn, os.F_OK):
2089 cmd.append("--vendor_bootconfig")
2090 cmd.append(fn)
2091
Yo Chiangd21e7dc2020-12-10 18:42:47 +08002092 ramdisk_fragment_imgs = []
2093 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
2094 if os.access(fn, os.F_OK):
2095 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
2096 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04002097 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
2098 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08002099 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04002100 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
2101 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08002102 # Use prebuilt image if found, else create ramdisk from supplied files.
2103 if os.access(fn, os.F_OK):
2104 ramdisk_fragment_pathname = fn
2105 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04002106 ramdisk_fragment_root = os.path.join(
2107 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08002108 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
2109 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08002110 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
2111 ramdisk_fragment_pathname = ramdisk_fragment_img.name
2112 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
2113
Steve Mucklee1b10862019-07-10 10:49:37 -07002114 RunAndCheckOutput(cmd)
2115
2116 # AVB: if enabled, calculate and add hash.
2117 if info_dict.get("avb_enable") == "true":
2118 avbtool = info_dict["avb_avbtool"]
Lucas Wei03230252022-04-18 16:00:40 +08002119 part_size = info_dict[f'{partition_name}_size']
Steve Mucklee1b10862019-07-10 10:49:37 -07002120 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Lucas Wei03230252022-04-18 16:00:40 +08002121 "--partition_size", str(part_size), "--partition_name", partition_name]
2122 AppendAVBSigningArgs(cmd, partition_name)
2123 args = info_dict.get(f'avb_{partition_name}_add_hash_footer_args')
Steve Mucklee1b10862019-07-10 10:49:37 -07002124 if args and args.strip():
zhangyongpeng70756972023-04-12 15:31:33 +08002125 split_args = ResolveAVBSigningPathArgs(shlex.split(args))
2126 cmd.extend(split_args)
Steve Mucklee1b10862019-07-10 10:49:37 -07002127 RunAndCheckOutput(cmd)
2128
2129 img.seek(os.SEEK_SET, 0)
2130 data = img.read()
2131
Yo Chiangd21e7dc2020-12-10 18:42:47 +08002132 for f in ramdisk_fragment_imgs:
2133 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07002134 ramdisk_img.close()
2135 img.close()
2136
2137 return data
2138
2139
2140def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
2141 info_dict=None):
2142 """Return a File object with the desired vendor boot image.
2143
2144 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
2145 the source files in 'unpack_dir'/'tree_subdir'."""
2146
2147 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
2148 if os.path.exists(prebuilt_path):
2149 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
2150 return File.FromLocalFile(name, prebuilt_path)
2151
2152 logger.info("building image from target_files %s...", tree_subdir)
2153
2154 if info_dict is None:
2155 info_dict = OPTIONS.info_dict
2156
Kelvin Zhang0876c412020-06-23 15:06:58 -04002157 data = _BuildVendorBootImage(
Lucas Wei03230252022-04-18 16:00:40 +08002158 os.path.join(unpack_dir, tree_subdir), "vendor_boot", info_dict)
2159 if data:
2160 return File(name, data)
2161 return None
2162
2163
2164def GetVendorKernelBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
Kelvin Zhangf294c872022-10-06 14:21:36 -07002165 info_dict=None):
Lucas Wei03230252022-04-18 16:00:40 +08002166 """Return a File object with the desired vendor kernel boot image.
2167
2168 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
2169 the source files in 'unpack_dir'/'tree_subdir'."""
2170
2171 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
2172 if os.path.exists(prebuilt_path):
2173 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
2174 return File.FromLocalFile(name, prebuilt_path)
2175
2176 logger.info("building image from target_files %s...", tree_subdir)
2177
2178 if info_dict is None:
2179 info_dict = OPTIONS.info_dict
2180
2181 data = _BuildVendorBootImage(
2182 os.path.join(unpack_dir, tree_subdir), "vendor_kernel_boot", info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07002183 if data:
2184 return File(name, data)
2185 return None
2186
2187
Narayan Kamatha07bf042017-08-14 14:49:21 +01002188def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08002189 """Gunzips the given gzip compressed file to a given output file."""
2190 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04002191 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01002192 shutil.copyfileobj(in_file, out_file)
2193
2194
Kelvin Zhange473ce92023-06-21 13:06:59 -07002195def UnzipSingleFile(input_zip: zipfile.ZipFile, info: zipfile.ZipInfo, dirname: str):
2196 # According to https://stackoverflow.com/questions/434641/how-do-i-set-permissions-attributes-on-a-file-in-a-zip-file-using-pythons-zip/6297838#6297838
2197 # higher bits of |external_attr| are unix file permission and types
2198 unix_filetype = info.external_attr >> 16
Kelvin Zhang4cb28f62023-07-10 12:30:53 -07002199 file_perm = unix_filetype & 0o777
Kelvin Zhange473ce92023-06-21 13:06:59 -07002200
2201 def CheckMask(a, mask):
2202 return (a & mask) == mask
2203
2204 def IsSymlink(a):
2205 return CheckMask(a, stat.S_IFLNK)
Kelvin Zhang4cb28f62023-07-10 12:30:53 -07002206
2207 def IsDir(a):
2208 return CheckMask(a, stat.S_IFDIR)
Kelvin Zhange473ce92023-06-21 13:06:59 -07002209 # python3.11 zipfile implementation doesn't handle symlink correctly
2210 if not IsSymlink(unix_filetype):
Kelvin Zhang4cb28f62023-07-10 12:30:53 -07002211 target = input_zip.extract(info, dirname)
2212 # We want to ensure that the file is at least read/writable by owner and readable by all users
2213 if IsDir(unix_filetype):
2214 os.chmod(target, file_perm | 0o755)
2215 else:
2216 os.chmod(target, file_perm | 0o644)
2217 return target
Kelvin Zhange473ce92023-06-21 13:06:59 -07002218 if dirname is None:
2219 dirname = os.getcwd()
2220 target = os.path.join(dirname, info.filename)
2221 os.makedirs(os.path.dirname(target), exist_ok=True)
Kelvin Zhang4cb28f62023-07-10 12:30:53 -07002222 if os.path.exists(target):
2223 os.unlink(target)
Kelvin Zhange473ce92023-06-21 13:06:59 -07002224 os.symlink(input_zip.read(info).decode(), target)
Kelvin Zhang4cb28f62023-07-10 12:30:53 -07002225 return target
Kelvin Zhange473ce92023-06-21 13:06:59 -07002226
2227
Tao Bao0ff15de2019-03-20 11:26:06 -07002228def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002229 """Unzips the archive to the given directory.
2230
2231 Args:
2232 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002233 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07002234 patterns: Files to unzip from the archive. If omitted, will unzip the entire
2235 archvie. Non-matching patterns will be filtered out. If there's no match
2236 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002237 """
Kelvin Zhang7c9205b2023-06-05 09:58:16 -07002238 with zipfile.ZipFile(filename, allowZip64=True, mode="r") as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07002239 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang38d0c372023-06-14 12:53:29 -07002240 entries = input_zip.infolist()
2241 # b/283033491
2242 # Per https://en.wikipedia.org/wiki/ZIP_(file_format)#Central_directory_file_header
2243 # In zip64 mode, central directory record's header_offset field might be
2244 # set to 0xFFFFFFFF if header offset is > 2^32. In this case, the extra
2245 # fields will contain an 8 byte little endian integer at offset 20
2246 # to indicate the actual local header offset.
2247 # As of python3.11, python does not handle zip64 central directories
2248 # correctly, so we will manually do the parsing here.
Kelvin Zhang1e774242023-06-17 09:18:15 -07002249
2250 # ZIP64 central directory extra field has two required fields:
2251 # 2 bytes header ID and 2 bytes size field. Thes two require fields have
2252 # a total size of 4 bytes. Then it has three other 8 bytes field, followed
2253 # by a 4 byte disk number field. The last disk number field is not required
2254 # to be present, but if it is present, the total size of extra field will be
2255 # divisible by 8(because 2+2+4+8*n is always going to be multiple of 8)
2256 # Most extra fields are optional, but when they appear, their must appear
2257 # in the order defined by zip64 spec. Since file header offset is the 2nd
2258 # to last field in zip64 spec, it will only be at last 8 bytes or last 12-4
2259 # bytes, depending on whether disk number is present.
Kelvin Zhang38d0c372023-06-14 12:53:29 -07002260 for entry in entries:
Kelvin Zhang1e774242023-06-17 09:18:15 -07002261 if entry.header_offset == 0xFFFFFFFF:
2262 if len(entry.extra) % 8 == 0:
2263 entry.header_offset = int.from_bytes(entry.extra[-12:-4], "little")
2264 else:
2265 entry.header_offset = int.from_bytes(entry.extra[-8:], "little")
Kelvin Zhang7c9205b2023-06-05 09:58:16 -07002266 if patterns is not None:
Kelvin Zhang38d0c372023-06-14 12:53:29 -07002267 filtered = [info for info in entries if any(
2268 [fnmatch.fnmatch(info.filename, p) for p in patterns])]
Tao Bao0ff15de2019-03-20 11:26:06 -07002269
Kelvin Zhang7c9205b2023-06-05 09:58:16 -07002270 # There isn't any matching files. Don't unzip anything.
2271 if not filtered:
2272 return
Kelvin Zhange473ce92023-06-21 13:06:59 -07002273 for info in filtered:
2274 UnzipSingleFile(input_zip, info, dirname)
Kelvin Zhang7c9205b2023-06-05 09:58:16 -07002275 else:
Kelvin Zhange473ce92023-06-21 13:06:59 -07002276 for info in entries:
2277 UnzipSingleFile(input_zip, info, dirname)
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002278
2279
Daniel Norman78554ea2021-09-14 10:29:38 -07002280def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002281 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002282
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002283 Args:
2284 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2285 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2286
Daniel Norman78554ea2021-09-14 10:29:38 -07002287 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002288 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002289
Tao Bao1c830bf2017-12-25 10:43:47 -08002290 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002291 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002292 """
Doug Zongkereef39442009-04-02 12:14:19 -07002293
Tao Bao1c830bf2017-12-25 10:43:47 -08002294 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002295 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2296 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002297 UnzipToDir(m.group(1), tmp, patterns)
2298 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002299 filename = m.group(1)
2300 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002301 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002302
Tao Baodba59ee2018-01-09 13:21:02 -08002303 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002304
2305
Yifan Hong8a66a712019-04-04 15:37:57 -07002306def GetUserImage(which, tmpdir, input_zip,
2307 info_dict=None,
2308 allow_shared_blocks=None,
Yifan Hong8a66a712019-04-04 15:37:57 -07002309 reset_file_map=False):
2310 """Returns an Image object suitable for passing to BlockImageDiff.
2311
2312 This function loads the specified image from the given path. If the specified
2313 image is sparse, it also performs additional processing for OTA purpose. For
2314 example, it always adds block 0 to clobbered blocks list. It also detects
2315 files that cannot be reconstructed from the block list, for whom we should
2316 avoid applying imgdiff.
2317
2318 Args:
2319 which: The partition name.
2320 tmpdir: The directory that contains the prebuilt image and block map file.
2321 input_zip: The target-files ZIP archive.
2322 info_dict: The dict to be looked up for relevant info.
2323 allow_shared_blocks: If image is sparse, whether having shared blocks is
2324 allowed. If none, it is looked up from info_dict.
Yifan Hong8a66a712019-04-04 15:37:57 -07002325 reset_file_map: If true and image is sparse, reset file map before returning
2326 the image.
2327 Returns:
2328 A Image object. If it is a sparse image and reset_file_map is False, the
2329 image will have file_map info loaded.
2330 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002331 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002332 info_dict = LoadInfoDict(input_zip)
2333
Kelvin Zhang04521282023-03-02 09:42:52 -08002334 is_sparse = IsSparseImage(os.path.join(tmpdir, "IMAGES", which + ".img"))
Yifan Hong8a66a712019-04-04 15:37:57 -07002335
2336 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2337 # shared blocks (i.e. some blocks will show up in multiple files' block
2338 # list). We can only allocate such shared blocks to the first "owner", and
2339 # disable imgdiff for all later occurrences.
2340 if allow_shared_blocks is None:
2341 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2342
2343 if is_sparse:
hungweichencc9c05d2022-08-23 05:45:42 +00002344 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks)
Yifan Hong8a66a712019-04-04 15:37:57 -07002345 if reset_file_map:
2346 img.ResetFileMap()
2347 return img
hungweichencc9c05d2022-08-23 05:45:42 +00002348 return GetNonSparseImage(which, tmpdir)
Yifan Hong8a66a712019-04-04 15:37:57 -07002349
2350
hungweichencc9c05d2022-08-23 05:45:42 +00002351def GetNonSparseImage(which, tmpdir):
Yifan Hong8a66a712019-04-04 15:37:57 -07002352 """Returns a Image object suitable for passing to BlockImageDiff.
2353
2354 This function loads the specified non-sparse image from the given path.
2355
2356 Args:
2357 which: The partition name.
2358 tmpdir: The directory that contains the prebuilt image and block map file.
2359 Returns:
2360 A Image object.
2361 """
2362 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2363 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2364
2365 # The image and map files must have been created prior to calling
2366 # ota_from_target_files.py (since LMP).
2367 assert os.path.exists(path) and os.path.exists(mappath)
2368
hungweichencc9c05d2022-08-23 05:45:42 +00002369 return images.FileImage(path)
Tianjie Xu41976c72019-07-03 13:57:01 -07002370
Yifan Hong8a66a712019-04-04 15:37:57 -07002371
hungweichencc9c05d2022-08-23 05:45:42 +00002372def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks):
Tao Baoc765cca2018-01-31 17:32:40 -08002373 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2374
2375 This function loads the specified sparse image from the given path, and
2376 performs additional processing for OTA purpose. For example, it always adds
2377 block 0 to clobbered blocks list. It also detects files that cannot be
2378 reconstructed from the block list, for whom we should avoid applying imgdiff.
2379
2380 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002381 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002382 tmpdir: The directory that contains the prebuilt image and block map file.
2383 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002384 allow_shared_blocks: Whether having shared blocks is allowed.
Tao Baoc765cca2018-01-31 17:32:40 -08002385 Returns:
2386 A SparseImage object, with file_map info loaded.
2387 """
Tao Baoc765cca2018-01-31 17:32:40 -08002388 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2389 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2390
2391 # The image and map files must have been created prior to calling
2392 # ota_from_target_files.py (since LMP).
2393 assert os.path.exists(path) and os.path.exists(mappath)
2394
2395 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2396 # it to clobbered_blocks so that it will be written to the target
2397 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2398 clobbered_blocks = "0"
2399
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002400 image = sparse_img.SparseImage(
hungweichencc9c05d2022-08-23 05:45:42 +00002401 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks)
Tao Baoc765cca2018-01-31 17:32:40 -08002402
2403 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2404 # if they contain all zeros. We can't reconstruct such a file from its block
2405 # list. Tag such entries accordingly. (Bug: 65213616)
2406 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002407 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002408 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002409 continue
2410
Tom Cherryd14b8952018-08-09 14:26:00 -07002411 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2412 # filename listed in system.map may contain an additional leading slash
2413 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2414 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002415 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002416 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002417 arcname = entry.lstrip('/')
2418 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002419 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002420 else:
2421 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002422
2423 assert arcname in input_zip.namelist(), \
2424 "Failed to find the ZIP entry for {}".format(entry)
2425
Tao Baoc765cca2018-01-31 17:32:40 -08002426 info = input_zip.getinfo(arcname)
2427 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002428
2429 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002430 # image, check the original block list to determine its completeness. Note
2431 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002432 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002433 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002434
Tao Baoc765cca2018-01-31 17:32:40 -08002435 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2436 ranges.extra['incomplete'] = True
2437
2438 return image
2439
2440
Doug Zongkereef39442009-04-02 12:14:19 -07002441def GetKeyPasswords(keylist):
2442 """Given a list of keys, prompt the user to enter passwords for
2443 those which require them. Return a {key: password} dict. password
2444 will be None if the key has no password."""
2445
Doug Zongker8ce7c252009-05-22 13:34:54 -07002446 no_passwords = []
2447 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002448 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002449 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002450
2451 # sorted() can't compare strings to None, so convert Nones to strings
2452 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002453 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002454 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002455 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002456 continue
2457
T.R. Fullhart37e10522013-03-18 10:31:26 -07002458 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002459 "-inform", "DER", "-nocrypt"],
2460 stdin=devnull.fileno(),
2461 stdout=devnull.fileno(),
2462 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002463 p.communicate()
2464 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002465 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002466 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002467 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002468 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2469 "-inform", "DER", "-passin", "pass:"],
2470 stdin=devnull.fileno(),
2471 stdout=devnull.fileno(),
2472 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002473 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002474 if p.returncode == 0:
2475 # Encrypted key with empty string as password.
2476 key_passwords[k] = ''
2477 elif stderr.startswith('Error decrypting key'):
2478 # Definitely encrypted key.
2479 # It would have said "Error reading key" if it didn't parse correctly.
2480 need_passwords.append(k)
2481 else:
2482 # Potentially, a type of key that openssl doesn't understand.
2483 # We'll let the routines in signapk.jar handle it.
2484 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002485 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002486
T.R. Fullhart37e10522013-03-18 10:31:26 -07002487 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002488 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002489 return key_passwords
2490
2491
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002492def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002493 """Gets the minSdkVersion declared in the APK.
2494
Martin Stjernholm58472e82022-01-07 22:08:47 +00002495 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2496 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002497
2498 Args:
2499 apk_name: The APK filename.
2500
2501 Returns:
2502 The parsed SDK version string.
2503
2504 Raises:
2505 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002506 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002507 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002508 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002509 stderr=subprocess.PIPE)
2510 stdoutdata, stderrdata = proc.communicate()
2511 if proc.returncode != 0:
2512 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002513 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2514 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002515
Tao Baof47bf0f2018-03-21 23:28:51 -07002516 for line in stdoutdata.split("\n"):
James Wuc5e321a2023-08-01 17:45:35 +00002517 # Due to ag/24161708, looking for lines such as minSdkVersion:'23',minSdkVersion:'M'
2518 # or sdkVersion:'23', sdkVersion:'M'.
2519 m = re.match(r'(?:minSdkVersion|sdkVersion):\'([^\']*)\'', line)
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002520 if m:
2521 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002522 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002523
2524
2525def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002526 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002527
Tao Baof47bf0f2018-03-21 23:28:51 -07002528 If minSdkVersion is set to a codename, it is translated to a number using the
2529 provided map.
2530
2531 Args:
2532 apk_name: The APK filename.
2533
2534 Returns:
2535 The parsed SDK version number.
2536
2537 Raises:
2538 ExternalError: On failing to get the min SDK version number.
2539 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002540 version = GetMinSdkVersion(apk_name)
2541 try:
2542 return int(version)
2543 except ValueError:
Paul Duffina03f1262023-02-01 12:12:51 +00002544 # Not a decimal number.
2545 #
2546 # It could be either a straight codename, e.g.
2547 # UpsideDownCake
2548 #
2549 # Or a codename with API fingerprint SHA, e.g.
2550 # UpsideDownCake.e7d3947f14eb9dc4fec25ff6c5f8563e
2551 #
2552 # Extract the codename and try and map it to a version number.
2553 split = version.split(".")
2554 codename = split[0]
2555 if codename in codename_to_api_level_map:
2556 return codename_to_api_level_map[codename]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002557 raise ExternalError(
Paul Duffina03f1262023-02-01 12:12:51 +00002558 "Unknown codename: '{}' from minSdkVersion: '{}'. Known codenames: {}".format(
2559 codename, version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002560
2561
2562def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002563 codename_to_api_level_map=None, whole_file=False,
2564 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002565 """Sign the input_name zip/jar/apk, producing output_name. Use the
2566 given key and password (the latter may be None if the key does not
2567 have a password.
2568
Doug Zongker951495f2009-08-14 12:44:19 -07002569 If whole_file is true, use the "-w" option to SignApk to embed a
2570 signature that covers the whole file in the archive comment of the
2571 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002572
2573 min_api_level is the API Level (int) of the oldest platform this file may end
2574 up on. If not specified for an APK, the API Level is obtained by interpreting
2575 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2576
2577 codename_to_api_level_map is needed to translate the codename which may be
2578 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002579
2580 Caller may optionally specify extra args to be passed to SignApk, which
2581 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002582 """
Tao Bao76def242017-11-21 09:25:31 -08002583 if codename_to_api_level_map is None:
2584 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002585 if extra_signapk_args is None:
2586 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002587
Alex Klyubin9667b182015-12-10 13:38:50 -08002588 java_library_path = os.path.join(
2589 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2590
Tao Baoe95540e2016-11-08 12:08:53 -08002591 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2592 ["-Djava.library.path=" + java_library_path,
2593 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002594 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002595 if whole_file:
2596 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002597
2598 min_sdk_version = min_api_level
2599 if min_sdk_version is None:
2600 if not whole_file:
2601 min_sdk_version = GetMinSdkVersionInt(
2602 input_name, codename_to_api_level_map)
2603 if min_sdk_version is not None:
2604 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2605
T.R. Fullhart37e10522013-03-18 10:31:26 -07002606 cmd.extend([key + OPTIONS.public_key_suffix,
2607 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002608 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002609
Tao Bao73dd4f42018-10-04 16:25:33 -07002610 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002611 if password is not None:
2612 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002613 stdoutdata, _ = proc.communicate(password)
2614 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002615 raise ExternalError(
Kelvin Zhang197772f2022-04-26 15:15:11 -07002616 "Failed to run {}: return code {}:\n{}".format(cmd,
Kelvin Zhangf294c872022-10-06 14:21:36 -07002617 proc.returncode, stdoutdata))
2618
Doug Zongkereef39442009-04-02 12:14:19 -07002619
Doug Zongker37974732010-09-16 17:44:38 -07002620def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002621 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002622
Tao Bao9dd909e2017-11-14 11:27:32 -08002623 For non-AVB images, raise exception if the data is too big. Print a warning
2624 if the data is nearing the maximum size.
2625
2626 For AVB images, the actual image size should be identical to the limit.
2627
2628 Args:
2629 data: A string that contains all the data for the partition.
2630 target: The partition name. The ".img" suffix is optional.
2631 info_dict: The dict to be looked up for relevant info.
2632 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002633 if target.endswith(".img"):
2634 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002635 mount_point = "/" + target
2636
Ying Wangf8824af2014-06-03 14:07:27 -07002637 fs_type = None
2638 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002639 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002640 if mount_point == "/userdata":
2641 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002642 p = info_dict["fstab"][mount_point]
2643 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002644 device = p.device
2645 if "/" in device:
2646 device = device[device.rfind("/")+1:]
Kelvin Zhang8c9166a2023-10-31 13:42:15 -07002647 limit = info_dict.get(device + "_size", 0)
2648 if isinstance(limit, str):
2649 limit = int(limit, 0)
Dan Albert8b72aef2015-03-23 19:13:21 -07002650 if not fs_type or not limit:
2651 return
Doug Zongkereef39442009-04-02 12:14:19 -07002652
Andrew Boie0f9aec82012-02-14 09:32:52 -08002653 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002654 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2655 # path.
2656 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2657 if size != limit:
2658 raise ExternalError(
2659 "Mismatching image size for %s: expected %d actual %d" % (
2660 target, limit, size))
2661 else:
2662 pct = float(size) * 100.0 / limit
2663 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2664 if pct >= 99.0:
2665 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002666
2667 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002668 logger.warning("\n WARNING: %s\n", msg)
2669 else:
2670 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002671
2672
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002673def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002674 """Parses the APK certs info from a given target-files zip.
2675
2676 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2677 tuple with the following elements: (1) a dictionary that maps packages to
2678 certs (based on the "certificate" and "private_key" attributes in the file;
2679 (2) a string representing the extension of compressed APKs in the target files
2680 (e.g ".gz", ".bro").
2681
2682 Args:
2683 tf_zip: The input target_files ZipFile (already open).
2684
2685 Returns:
2686 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2687 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2688 no compressed APKs.
2689 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002690 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002691 compressed_extension = None
2692
Tao Bao0f990332017-09-08 19:02:54 -07002693 # META/apkcerts.txt contains the info for _all_ the packages known at build
2694 # time. Filter out the ones that are not installed.
2695 installed_files = set()
2696 for name in tf_zip.namelist():
2697 basename = os.path.basename(name)
2698 if basename:
2699 installed_files.add(basename)
2700
Tao Baoda30cfa2017-12-01 16:19:46 -08002701 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002702 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002703 if not line:
2704 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002705 m = re.match(
2706 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002707 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2708 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002709 line)
2710 if not m:
2711 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002712
Tao Bao818ddf52018-01-05 11:17:34 -08002713 matches = m.groupdict()
2714 cert = matches["CERT"]
2715 privkey = matches["PRIVKEY"]
2716 name = matches["NAME"]
2717 this_compressed_extension = matches["COMPRESSED"]
2718
2719 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2720 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2721 if cert in SPECIAL_CERT_STRINGS and not privkey:
2722 certmap[name] = cert
2723 elif (cert.endswith(OPTIONS.public_key_suffix) and
2724 privkey.endswith(OPTIONS.private_key_suffix) and
2725 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2726 certmap[name] = cert[:-public_key_suffix_len]
2727 else:
2728 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2729
2730 if not this_compressed_extension:
2731 continue
2732
2733 # Only count the installed files.
2734 filename = name + '.' + this_compressed_extension
2735 if filename not in installed_files:
2736 continue
2737
2738 # Make sure that all the values in the compression map have the same
2739 # extension. We don't support multiple compression methods in the same
2740 # system image.
2741 if compressed_extension:
2742 if this_compressed_extension != compressed_extension:
2743 raise ValueError(
2744 "Multiple compressed extensions: {} vs {}".format(
2745 compressed_extension, this_compressed_extension))
2746 else:
2747 compressed_extension = this_compressed_extension
2748
2749 return (certmap,
2750 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002751
2752
Doug Zongkereef39442009-04-02 12:14:19 -07002753COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002754Global options
2755
2756 -p (--path) <dir>
2757 Prepend <dir>/bin to the list of places to search for binaries run by this
2758 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002759
Doug Zongker05d3dea2009-06-22 11:32:31 -07002760 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002761 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002762
Tao Bao30df8b42018-04-23 15:32:53 -07002763 -x (--extra) <key=value>
2764 Add a key/value pair to the 'extras' dict, which device-specific extension
2765 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002766
Doug Zongkereef39442009-04-02 12:14:19 -07002767 -v (--verbose)
2768 Show command lines being executed.
2769
2770 -h (--help)
2771 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002772
2773 --logfile <file>
2774 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002775"""
2776
Kelvin Zhang0876c412020-06-23 15:06:58 -04002777
Doug Zongkereef39442009-04-02 12:14:19 -07002778def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002779 print(docstring.rstrip("\n"))
2780 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002781
2782
2783def ParseOptions(argv,
2784 docstring,
2785 extra_opts="", extra_long_opts=(),
Kelvin Zhangc68c6b92023-11-14 10:54:50 -08002786 extra_option_handler: Iterable[OptionHandler] = None):
Doug Zongkereef39442009-04-02 12:14:19 -07002787 """Parse the options in argv and return any arguments that aren't
2788 flags. docstring is the calling module's docstring, to be displayed
2789 for errors and -h. extra_opts and extra_long_opts are for flags
2790 defined by the caller, which are processed by passing them to
2791 extra_option_handler."""
Kelvin Zhangc68c6b92023-11-14 10:54:50 -08002792 extra_long_opts = list(extra_long_opts)
2793 if not isinstance(extra_option_handler, Iterable):
2794 extra_option_handler = [extra_option_handler]
2795
2796 for handler in extra_option_handler:
2797 if isinstance(handler, OptionHandler):
2798 extra_long_opts.extend(handler.extra_long_opts)
Doug Zongkereef39442009-04-02 12:14:19 -07002799
2800 try:
2801 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002802 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002803 ["help", "verbose", "path=", "signapk_path=",
Thiébaud Weksteen62865ca2023-10-18 11:08:47 +11002804 "signapk_shared_library_path=", "extra_signapk_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002805 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002806 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2807 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002808 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002809 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002810 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002811 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002812 sys.exit(2)
2813
Doug Zongkereef39442009-04-02 12:14:19 -07002814 for o, a in opts:
2815 if o in ("-h", "--help"):
2816 Usage(docstring)
2817 sys.exit()
2818 elif o in ("-v", "--verbose"):
2819 OPTIONS.verbose = True
2820 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002821 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002822 elif o in ("--signapk_path",):
2823 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002824 elif o in ("--signapk_shared_library_path",):
2825 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002826 elif o in ("--extra_signapk_args",):
2827 OPTIONS.extra_signapk_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002828 elif o in ("--aapt2_path",):
2829 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002830 elif o in ("--java_path",):
2831 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002832 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002833 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002834 elif o in ("--android_jar_path",):
2835 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002836 elif o in ("--public_key_suffix",):
2837 OPTIONS.public_key_suffix = a
2838 elif o in ("--private_key_suffix",):
2839 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002840 elif o in ("--boot_signer_path",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002841 raise ValueError(
2842 "--boot_signer_path is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002843 elif o in ("--boot_signer_args",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002844 raise ValueError(
2845 "--boot_signer_args is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002846 elif o in ("--verity_signer_path",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002847 raise ValueError(
2848 "--verity_signer_path is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002849 elif o in ("--verity_signer_args",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002850 raise ValueError(
2851 "--verity_signer_args is no longer supported, please switch to AVB")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002852 elif o in ("-s", "--device_specific"):
2853 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002854 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002855 key, value = a.split("=", 1)
2856 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002857 elif o in ("--logfile",):
2858 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002859 else:
Kelvin Zhangc68c6b92023-11-14 10:54:50 -08002860 if extra_option_handler is None:
2861 raise ValueError("unknown option \"%s\"" % (o,))
2862 success = False
2863 for handler in extra_option_handler:
2864 if isinstance(handler, OptionHandler):
2865 if handler.handler(o, a):
2866 success = True
2867 break
2868 elif handler(o, a):
2869 success = True
2870 if not success:
2871 raise ValueError("unknown option \"%s\"" % (o,))
2872
Doug Zongkereef39442009-04-02 12:14:19 -07002873
Doug Zongker85448772014-09-09 14:59:20 -07002874 if OPTIONS.search_path:
2875 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2876 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002877
2878 return args
2879
2880
Tao Bao4c851b12016-09-19 13:54:38 -07002881def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002882 """Make a temp file and add it to the list of things to be deleted
2883 when Cleanup() is called. Return the filename."""
2884 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2885 os.close(fd)
2886 OPTIONS.tempfiles.append(fn)
2887 return fn
2888
2889
Tao Bao1c830bf2017-12-25 10:43:47 -08002890def MakeTempDir(prefix='tmp', suffix=''):
2891 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2892
2893 Returns:
2894 The absolute pathname of the new directory.
2895 """
2896 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2897 OPTIONS.tempfiles.append(dir_name)
2898 return dir_name
2899
2900
Doug Zongkereef39442009-04-02 12:14:19 -07002901def Cleanup():
2902 for i in OPTIONS.tempfiles:
Kelvin Zhang22680912023-05-19 13:12:59 -07002903 if not os.path.exists(i):
2904 continue
Doug Zongkereef39442009-04-02 12:14:19 -07002905 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002906 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002907 else:
2908 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002909 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002910
2911
2912class PasswordManager(object):
2913 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002914 self.editor = os.getenv("EDITOR")
2915 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002916
2917 def GetPasswords(self, items):
2918 """Get passwords corresponding to each string in 'items',
2919 returning a dict. (The dict may have keys in addition to the
2920 values in 'items'.)
2921
2922 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2923 user edit that file to add more needed passwords. If no editor is
2924 available, or $ANDROID_PW_FILE isn't define, prompts the user
2925 interactively in the ordinary way.
2926 """
2927
2928 current = self.ReadFile()
2929
2930 first = True
2931 while True:
2932 missing = []
2933 for i in items:
2934 if i not in current or not current[i]:
2935 missing.append(i)
2936 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002937 if not missing:
2938 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002939
2940 for i in missing:
2941 current[i] = ""
2942
2943 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002944 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002945 if sys.version_info[0] >= 3:
2946 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002947 answer = raw_input("try to edit again? [y]> ").strip()
2948 if answer and answer[0] not in 'yY':
2949 raise RuntimeError("key passwords unavailable")
2950 first = False
2951
2952 current = self.UpdateAndReadFile(current)
2953
Kelvin Zhang0876c412020-06-23 15:06:58 -04002954 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002955 """Prompt the user to enter a value (password) for each key in
2956 'current' whose value is fales. Returns a new dict with all the
2957 values.
2958 """
2959 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002960 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002961 if v:
2962 result[k] = v
2963 else:
2964 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002965 result[k] = getpass.getpass(
2966 "Enter password for %s key> " % k).strip()
2967 if result[k]:
2968 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002969 return result
2970
2971 def UpdateAndReadFile(self, current):
2972 if not self.editor or not self.pwfile:
2973 return self.PromptResult(current)
2974
2975 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002976 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002977 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2978 f.write("# (Additional spaces are harmless.)\n\n")
2979
2980 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002981 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002982 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002983 f.write("[[[ %s ]]] %s\n" % (v, k))
2984 if not v and first_line is None:
2985 # position cursor on first line with no password.
2986 first_line = i + 4
2987 f.close()
2988
Tao Bao986ee862018-10-04 15:46:16 -07002989 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002990
2991 return self.ReadFile()
2992
2993 def ReadFile(self):
2994 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002995 if self.pwfile is None:
2996 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002997 try:
2998 f = open(self.pwfile, "r")
2999 for line in f:
3000 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07003001 if not line or line[0] == '#':
3002 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07003003 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
3004 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07003005 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07003006 else:
3007 result[m.group(2)] = m.group(1)
3008 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07003009 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07003010 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07003011 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07003012 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07003013
3014
Dan Albert8e0178d2015-01-27 15:53:15 -08003015def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
3016 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08003017
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003018 # http://b/18015246
3019 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
3020 # for files larger than 2GiB. We can work around this by adjusting their
3021 # limit. Note that `zipfile.writestr()` will not work for strings larger than
3022 # 2GiB. The Python interpreter sometimes rejects strings that large (though
3023 # it isn't clear to me exactly what circumstances cause this).
3024 # `zipfile.write()` must be used directly to work around this.
3025 #
3026 # This mess can be avoided if we port to python3.
3027 saved_zip64_limit = zipfile.ZIP64_LIMIT
3028 zipfile.ZIP64_LIMIT = (1 << 32) - 1
3029
Dan Albert8e0178d2015-01-27 15:53:15 -08003030 if compress_type is None:
3031 compress_type = zip_file.compression
3032 if arcname is None:
3033 arcname = filename
3034
3035 saved_stat = os.stat(filename)
3036
3037 try:
3038 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
3039 # file to be zipped and reset it when we're done.
3040 os.chmod(filename, perms)
3041
3042 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07003043 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
3044 # intentional. zip stores datetimes in local time without a time zone
3045 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
3046 # in the zip archive.
3047 local_epoch = datetime.datetime.fromtimestamp(0)
3048 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08003049 os.utime(filename, (timestamp, timestamp))
3050
3051 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
3052 finally:
3053 os.chmod(filename, saved_stat.st_mode)
3054 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003055 zipfile.ZIP64_LIMIT = saved_zip64_limit
Dan Albert8e0178d2015-01-27 15:53:15 -08003056
3057
Tao Bao58c1b962015-05-20 09:32:18 -07003058def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07003059 compress_type=None):
3060 """Wrap zipfile.writestr() function to work around the zip64 limit.
3061
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003062 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
Tao Baof3282b42015-04-01 11:21:55 -07003063 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
3064 when calling crc32(bytes).
3065
3066 But it still works fine to write a shorter string into a large zip file.
3067 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
3068 when we know the string won't be too long.
3069 """
3070
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003071 saved_zip64_limit = zipfile.ZIP64_LIMIT
3072 zipfile.ZIP64_LIMIT = (1 << 32) - 1
3073
Tao Baof3282b42015-04-01 11:21:55 -07003074 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
3075 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07003076 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07003077 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07003078 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08003079 else:
Tao Baof3282b42015-04-01 11:21:55 -07003080 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07003081 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
3082 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
3083 # such a case (since
3084 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
3085 # which seems to make more sense. Otherwise the entry will have 0o000 as the
3086 # permission bits. We follow the logic in Python 3 to get consistent
3087 # behavior between using the two versions.
3088 if not zinfo.external_attr:
3089 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07003090
3091 # If compress_type is given, it overrides the value in zinfo.
3092 if compress_type is not None:
3093 zinfo.compress_type = compress_type
3094
Tao Bao58c1b962015-05-20 09:32:18 -07003095 # If perms is given, it has a priority.
3096 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07003097 # If perms doesn't set the file type, mark it as a regular file.
3098 if perms & 0o770000 == 0:
3099 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07003100 zinfo.external_attr = perms << 16
3101
Tao Baof3282b42015-04-01 11:21:55 -07003102 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07003103 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
3104
Dan Albert8b72aef2015-03-23 19:13:21 -07003105 zip_file.writestr(zinfo, data)
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003106 zipfile.ZIP64_LIMIT = saved_zip64_limit
Tao Baof3282b42015-04-01 11:21:55 -07003107
3108
Kelvin Zhang1caead02022-09-23 10:06:03 -07003109def ZipDelete(zip_filename, entries, force=False):
Tao Bao89d7ab22017-12-14 17:05:33 -08003110 """Deletes entries from a ZIP file.
3111
Tao Bao89d7ab22017-12-14 17:05:33 -08003112 Args:
3113 zip_filename: The name of the ZIP file.
3114 entries: The name of the entry, or the list of names to be deleted.
Tao Bao89d7ab22017-12-14 17:05:33 -08003115 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07003116 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08003117 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08003118 # If list is empty, nothing to do
3119 if not entries:
3120 return
Wei Li8895f9e2022-10-10 17:13:17 -07003121
3122 with zipfile.ZipFile(zip_filename, 'r') as zin:
3123 if not force and len(set(zin.namelist()).intersection(entries)) == 0:
3124 raise ExternalError(
3125 "Failed to delete zip entries, name not matched: %s" % entries)
3126
3127 fd, new_zipfile = tempfile.mkstemp(dir=os.path.dirname(zip_filename))
3128 os.close(fd)
Kelvin Zhangc8ff84b2023-02-15 16:52:46 -08003129 cmd = ["zip2zip", "-i", zip_filename, "-o", new_zipfile]
3130 for entry in entries:
3131 cmd.append("-x")
3132 cmd.append(entry)
3133 RunAndCheckOutput(cmd)
Wei Li8895f9e2022-10-10 17:13:17 -07003134
Wei Li8895f9e2022-10-10 17:13:17 -07003135 os.replace(new_zipfile, zip_filename)
Tao Bao89d7ab22017-12-14 17:05:33 -08003136
3137
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003138def ZipClose(zip_file):
3139 # http://b/18015246
3140 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
3141 # central directory.
3142 saved_zip64_limit = zipfile.ZIP64_LIMIT
3143 zipfile.ZIP64_LIMIT = (1 << 32) - 1
3144
3145 zip_file.close()
3146
3147 zipfile.ZIP64_LIMIT = saved_zip64_limit
3148
3149
Abhishek Nigam1dfca462023-11-08 02:21:39 +00003150class DeviceSpecificParams(object):
3151 module = None
3152
3153 def __init__(self, **kwargs):
3154 """Keyword arguments to the constructor become attributes of this
3155 object, which is passed to all functions in the device-specific
3156 module."""
3157 for k, v in kwargs.items():
3158 setattr(self, k, v)
3159 self.extras = OPTIONS.extras
3160
3161 if self.module is None:
3162 path = OPTIONS.device_specific
3163 if not path:
3164 return
3165 try:
3166 if os.path.isdir(path):
3167 info = imp.find_module("releasetools", [path])
3168 else:
3169 d, f = os.path.split(path)
3170 b, x = os.path.splitext(f)
3171 if x == ".py":
3172 f = b
3173 info = imp.find_module(f, [d])
3174 logger.info("loaded device-specific extensions from %s", path)
3175 self.module = imp.load_module("device_specific", *info)
3176 except ImportError:
3177 logger.info("unable to load device-specific module; assuming none")
3178
3179 def _DoCall(self, function_name, *args, **kwargs):
3180 """Call the named function in the device-specific module, passing
3181 the given args and kwargs. The first argument to the call will be
3182 the DeviceSpecific object itself. If there is no module, or the
3183 module does not define the function, return the value of the
3184 'default' kwarg (which itself defaults to None)."""
3185 if self.module is None or not hasattr(self.module, function_name):
3186 return kwargs.get("default")
3187 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
3188
3189 def FullOTA_Assertions(self):
3190 """Called after emitting the block of assertions at the top of a
3191 full OTA package. Implementations can add whatever additional
3192 assertions they like."""
3193 return self._DoCall("FullOTA_Assertions")
3194
3195 def FullOTA_InstallBegin(self):
3196 """Called at the start of full OTA installation."""
3197 return self._DoCall("FullOTA_InstallBegin")
3198
3199 def FullOTA_GetBlockDifferences(self):
3200 """Called during full OTA installation and verification.
3201 Implementation should return a list of BlockDifference objects describing
3202 the update on each additional partitions.
3203 """
3204 return self._DoCall("FullOTA_GetBlockDifferences")
3205
3206 def FullOTA_InstallEnd(self):
3207 """Called at the end of full OTA installation; typically this is
3208 used to install the image for the device's baseband processor."""
3209 return self._DoCall("FullOTA_InstallEnd")
3210
3211 def IncrementalOTA_Assertions(self):
3212 """Called after emitting the block of assertions at the top of an
3213 incremental OTA package. Implementations can add whatever
3214 additional assertions they like."""
3215 return self._DoCall("IncrementalOTA_Assertions")
3216
3217 def IncrementalOTA_VerifyBegin(self):
3218 """Called at the start of the verification phase of incremental
3219 OTA installation; additional checks can be placed here to abort
3220 the script before any changes are made."""
3221 return self._DoCall("IncrementalOTA_VerifyBegin")
3222
3223 def IncrementalOTA_VerifyEnd(self):
3224 """Called at the end of the verification phase of incremental OTA
3225 installation; additional checks can be placed here to abort the
3226 script before any changes are made."""
3227 return self._DoCall("IncrementalOTA_VerifyEnd")
3228
3229 def IncrementalOTA_InstallBegin(self):
3230 """Called at the start of incremental OTA installation (after
3231 verification is complete)."""
3232 return self._DoCall("IncrementalOTA_InstallBegin")
3233
3234 def IncrementalOTA_GetBlockDifferences(self):
3235 """Called during incremental OTA installation and verification.
3236 Implementation should return a list of BlockDifference objects describing
3237 the update on each additional partitions.
3238 """
3239 return self._DoCall("IncrementalOTA_GetBlockDifferences")
3240
3241 def IncrementalOTA_InstallEnd(self):
3242 """Called at the end of incremental OTA installation; typically
3243 this is used to install the image for the device's baseband
3244 processor."""
3245 return self._DoCall("IncrementalOTA_InstallEnd")
3246
3247 def VerifyOTA_Assertions(self):
3248 return self._DoCall("VerifyOTA_Assertions")
3249
3250
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003251class File(object):
Tao Bao76def242017-11-21 09:25:31 -08003252 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003253 self.name = name
3254 self.data = data
3255 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09003256 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08003257 self.sha1 = sha1(data).hexdigest()
3258
3259 @classmethod
3260 def FromLocalFile(cls, name, diskname):
3261 f = open(diskname, "rb")
3262 data = f.read()
3263 f.close()
3264 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003265
3266 def WriteToTemp(self):
3267 t = tempfile.NamedTemporaryFile()
3268 t.write(self.data)
3269 t.flush()
3270 return t
3271
Dan Willemsen2ee00d52017-03-05 19:51:56 -08003272 def WriteToDir(self, d):
3273 with open(os.path.join(d, self.name), "wb") as fp:
3274 fp.write(self.data)
3275
Geremy Condra36bd3652014-02-06 19:45:10 -08003276 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07003277 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003278
Tao Bao76def242017-11-21 09:25:31 -08003279
Abhishek Nigam1dfca462023-11-08 02:21:39 +00003280DIFF_PROGRAM_BY_EXT = {
3281 ".gz": "imgdiff",
3282 ".zip": ["imgdiff", "-z"],
3283 ".jar": ["imgdiff", "-z"],
3284 ".apk": ["imgdiff", "-z"],
3285 ".img": "imgdiff",
3286}
3287
3288
3289class Difference(object):
3290 def __init__(self, tf, sf, diff_program=None):
3291 self.tf = tf
3292 self.sf = sf
3293 self.patch = None
3294 self.diff_program = diff_program
3295
3296 def ComputePatch(self):
3297 """Compute the patch (as a string of data) needed to turn sf into
3298 tf. Returns the same tuple as GetPatch()."""
3299
3300 tf = self.tf
3301 sf = self.sf
3302
3303 if self.diff_program:
3304 diff_program = self.diff_program
3305 else:
3306 ext = os.path.splitext(tf.name)[1]
3307 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
3308
3309 ttemp = tf.WriteToTemp()
3310 stemp = sf.WriteToTemp()
3311
3312 ext = os.path.splitext(tf.name)[1]
3313
3314 try:
3315 ptemp = tempfile.NamedTemporaryFile()
3316 if isinstance(diff_program, list):
3317 cmd = copy.copy(diff_program)
3318 else:
3319 cmd = [diff_program]
3320 cmd.append(stemp.name)
3321 cmd.append(ttemp.name)
3322 cmd.append(ptemp.name)
3323 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3324 err = []
3325
3326 def run():
3327 _, e = p.communicate()
3328 if e:
3329 err.append(e)
3330 th = threading.Thread(target=run)
3331 th.start()
3332 th.join(timeout=300) # 5 mins
3333 if th.is_alive():
3334 logger.warning("diff command timed out")
3335 p.terminate()
3336 th.join(5)
3337 if th.is_alive():
3338 p.kill()
3339 th.join()
3340
3341 if p.returncode != 0:
3342 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
3343 self.patch = None
3344 return None, None, None
3345 diff = ptemp.read()
3346 finally:
3347 ptemp.close()
3348 stemp.close()
3349 ttemp.close()
3350
3351 self.patch = diff
3352 return self.tf, self.sf, self.patch
3353
3354 def GetPatch(self):
3355 """Returns a tuple of (target_file, source_file, patch_data).
3356
3357 patch_data may be None if ComputePatch hasn't been called, or if
3358 computing the patch failed.
3359 """
3360 return self.tf, self.sf, self.patch
3361
3362
3363def ComputeDifferences(diffs):
3364 """Call ComputePatch on all the Difference objects in 'diffs'."""
3365 logger.info("%d diffs to compute", len(diffs))
3366
3367 # Do the largest files first, to try and reduce the long-pole effect.
3368 by_size = [(i.tf.size, i) for i in diffs]
3369 by_size.sort(reverse=True)
3370 by_size = [i[1] for i in by_size]
3371
3372 lock = threading.Lock()
3373 diff_iter = iter(by_size) # accessed under lock
3374
3375 def worker():
3376 try:
3377 lock.acquire()
3378 for d in diff_iter:
3379 lock.release()
3380 start = time.time()
3381 d.ComputePatch()
3382 dur = time.time() - start
3383 lock.acquire()
3384
3385 tf, sf, patch = d.GetPatch()
3386 if sf.name == tf.name:
3387 name = tf.name
3388 else:
3389 name = "%s (%s)" % (tf.name, sf.name)
3390 if patch is None:
3391 logger.error("patching failed! %40s", name)
3392 else:
3393 logger.info(
3394 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3395 tf.size, 100.0 * len(patch) / tf.size, name)
3396 lock.release()
3397 except Exception:
3398 logger.exception("Failed to compute diff from worker")
3399 raise
3400
3401 # start worker threads; wait for them all to finish.
3402 threads = [threading.Thread(target=worker)
3403 for i in range(OPTIONS.worker_threads)]
3404 for th in threads:
3405 th.start()
3406 while threads:
3407 threads.pop().join()
3408
3409
3410class BlockDifference(object):
3411 def __init__(self, partition, tgt, src=None, check_first_block=False,
3412 version=None, disable_imgdiff=False):
3413 self.tgt = tgt
3414 self.src = src
3415 self.partition = partition
3416 self.check_first_block = check_first_block
3417 self.disable_imgdiff = disable_imgdiff
3418
3419 if version is None:
3420 version = max(
3421 int(i) for i in
3422 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
3423 assert version >= 3
3424 self.version = version
3425
3426 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3427 version=self.version,
3428 disable_imgdiff=self.disable_imgdiff)
3429 self.path = os.path.join(MakeTempDir(), partition)
3430 b.Compute(self.path)
3431 self._required_cache = b.max_stashed_size
3432 self.touched_src_ranges = b.touched_src_ranges
3433 self.touched_src_sha1 = b.touched_src_sha1
3434
3435 # On devices with dynamic partitions, for new partitions,
3436 # src is None but OPTIONS.source_info_dict is not.
3437 if OPTIONS.source_info_dict is None:
3438 is_dynamic_build = OPTIONS.info_dict.get(
3439 "use_dynamic_partitions") == "true"
3440 is_dynamic_source = False
3441 else:
3442 is_dynamic_build = OPTIONS.source_info_dict.get(
3443 "use_dynamic_partitions") == "true"
3444 is_dynamic_source = partition in shlex.split(
3445 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
3446
3447 is_dynamic_target = partition in shlex.split(
3448 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3449
3450 # For dynamic partitions builds, check partition list in both source
3451 # and target build because new partitions may be added, and existing
3452 # partitions may be removed.
3453 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3454
3455 if is_dynamic:
3456 self.device = 'map_partition("%s")' % partition
3457 else:
3458 if OPTIONS.source_info_dict is None:
3459 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3460 OPTIONS.info_dict)
3461 else:
3462 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3463 OPTIONS.source_info_dict)
3464 self.device = device_expr
3465
3466 @property
3467 def required_cache(self):
3468 return self._required_cache
3469
3470 def WriteScript(self, script, output_zip, progress=None,
3471 write_verify_script=False):
3472 if not self.src:
3473 # write the output unconditionally
3474 script.Print("Patching %s image unconditionally..." % (self.partition,))
3475 else:
3476 script.Print("Patching %s image after verification." % (self.partition,))
3477
3478 if progress:
3479 script.ShowProgress(progress, 0)
3480 self._WriteUpdate(script, output_zip)
3481
3482 if write_verify_script:
3483 self.WritePostInstallVerifyScript(script)
3484
3485 def WriteStrictVerifyScript(self, script):
3486 """Verify all the blocks in the care_map, including clobbered blocks.
3487
3488 This differs from the WriteVerifyScript() function: a) it prints different
3489 error messages; b) it doesn't allow half-way updated images to pass the
3490 verification."""
3491
3492 partition = self.partition
3493 script.Print("Verifying %s..." % (partition,))
3494 ranges = self.tgt.care_map
3495 ranges_str = ranges.to_string_raw()
3496 script.AppendExtra(
3497 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3498 'ui_print("%s has unexpected contents.");' % (
3499 self.device, ranges_str,
3500 self.tgt.TotalSha1(include_clobbered_blocks=True),
3501 self.partition))
3502 script.AppendExtra("")
3503
3504 def WriteVerifyScript(self, script, touched_blocks_only=False):
3505 partition = self.partition
3506
3507 # full OTA
3508 if not self.src:
3509 script.Print("Image %s will be patched unconditionally." % (partition,))
3510
3511 # incremental OTA
3512 else:
3513 if touched_blocks_only:
3514 ranges = self.touched_src_ranges
3515 expected_sha1 = self.touched_src_sha1
3516 else:
3517 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3518 expected_sha1 = self.src.TotalSha1()
3519
3520 # No blocks to be checked, skipping.
3521 if not ranges:
3522 return
3523
3524 ranges_str = ranges.to_string_raw()
3525 script.AppendExtra(
3526 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
3527 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3528 '"%s.patch.dat")) then' % (
3529 self.device, ranges_str, expected_sha1,
3530 self.device, partition, partition, partition))
3531 script.Print('Verified %s image...' % (partition,))
3532 script.AppendExtra('else')
3533
3534 if self.version >= 4:
3535
3536 # Bug: 21124327
3537 # When generating incrementals for the system and vendor partitions in
3538 # version 4 or newer, explicitly check the first block (which contains
3539 # the superblock) of the partition to see if it's what we expect. If
3540 # this check fails, give an explicit log message about the partition
3541 # having been remounted R/W (the most likely explanation).
3542 if self.check_first_block:
3543 script.AppendExtra('check_first_block(%s);' % (self.device,))
3544
3545 # If version >= 4, try block recovery before abort update
3546 if partition == "system":
3547 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3548 else:
3549 code = ErrorCode.VENDOR_RECOVER_FAILURE
3550 script.AppendExtra((
3551 'ifelse (block_image_recover({device}, "{ranges}") && '
3552 'block_image_verify({device}, '
3553 'package_extract_file("{partition}.transfer.list"), '
3554 '"{partition}.new.dat", "{partition}.patch.dat"), '
3555 'ui_print("{partition} recovered successfully."), '
3556 'abort("E{code}: {partition} partition fails to recover"));\n'
3557 'endif;').format(device=self.device, ranges=ranges_str,
3558 partition=partition, code=code))
3559
3560 # Abort the OTA update. Note that the incremental OTA cannot be applied
3561 # even if it may match the checksum of the target partition.
3562 # a) If version < 3, operations like move and erase will make changes
3563 # unconditionally and damage the partition.
3564 # b) If version >= 3, it won't even reach here.
3565 else:
3566 if partition == "system":
3567 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3568 else:
3569 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3570 script.AppendExtra((
3571 'abort("E%d: %s partition has unexpected contents");\n'
3572 'endif;') % (code, partition))
3573
3574 def WritePostInstallVerifyScript(self, script):
3575 partition = self.partition
3576 script.Print('Verifying the updated %s image...' % (partition,))
3577 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3578 ranges = self.tgt.care_map
3579 ranges_str = ranges.to_string_raw()
3580 script.AppendExtra(
3581 'if range_sha1(%s, "%s") == "%s" then' % (
3582 self.device, ranges_str,
3583 self.tgt.TotalSha1(include_clobbered_blocks=True)))
3584
3585 # Bug: 20881595
3586 # Verify that extended blocks are really zeroed out.
3587 if self.tgt.extended:
3588 ranges_str = self.tgt.extended.to_string_raw()
3589 script.AppendExtra(
3590 'if range_sha1(%s, "%s") == "%s" then' % (
3591 self.device, ranges_str,
3592 self._HashZeroBlocks(self.tgt.extended.size())))
3593 script.Print('Verified the updated %s image.' % (partition,))
3594 if partition == "system":
3595 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3596 else:
3597 code = ErrorCode.VENDOR_NONZERO_CONTENTS
3598 script.AppendExtra(
3599 'else\n'
3600 ' abort("E%d: %s partition has unexpected non-zero contents after '
3601 'OTA update");\n'
3602 'endif;' % (code, partition))
3603 else:
3604 script.Print('Verified the updated %s image.' % (partition,))
3605
3606 if partition == "system":
3607 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3608 else:
3609 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3610
3611 script.AppendExtra(
3612 'else\n'
3613 ' abort("E%d: %s partition has unexpected contents after OTA '
3614 'update");\n'
3615 'endif;' % (code, partition))
3616
3617 def _WriteUpdate(self, script, output_zip):
3618 ZipWrite(output_zip,
3619 '{}.transfer.list'.format(self.path),
3620 '{}.transfer.list'.format(self.partition))
3621
3622 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3623 # its size. Quailty 9 almost triples the compression time but doesn't
3624 # further reduce the size too much. For a typical 1.8G system.new.dat
3625 # zip | brotli(quality 6) | brotli(quality 9)
3626 # compressed_size: 942M | 869M (~8% reduced) | 854M
3627 # compression_time: 75s | 265s | 719s
3628 # decompression_time: 15s | 25s | 25s
3629
3630 if not self.src:
3631 brotli_cmd = ['brotli', '--quality=6',
3632 '--output={}.new.dat.br'.format(self.path),
3633 '{}.new.dat'.format(self.path)]
3634 print("Compressing {}.new.dat with brotli".format(self.partition))
3635 RunAndCheckOutput(brotli_cmd)
3636
3637 new_data_name = '{}.new.dat.br'.format(self.partition)
3638 ZipWrite(output_zip,
3639 '{}.new.dat.br'.format(self.path),
3640 new_data_name,
3641 compress_type=zipfile.ZIP_STORED)
3642 else:
3643 new_data_name = '{}.new.dat'.format(self.partition)
3644 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3645
3646 ZipWrite(output_zip,
3647 '{}.patch.dat'.format(self.path),
3648 '{}.patch.dat'.format(self.partition),
3649 compress_type=zipfile.ZIP_STORED)
3650
3651 if self.partition == "system":
3652 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3653 else:
3654 code = ErrorCode.VENDOR_UPDATE_FAILURE
3655
3656 call = ('block_image_update({device}, '
3657 'package_extract_file("{partition}.transfer.list"), '
3658 '"{new_data_name}", "{partition}.patch.dat") ||\n'
3659 ' abort("E{code}: Failed to update {partition} image.");'.format(
3660 device=self.device, partition=self.partition,
3661 new_data_name=new_data_name, code=code))
3662 script.AppendExtra(script.WordWrap(call))
3663
3664 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
3665 data = source.ReadRangeSet(ranges)
3666 ctx = sha1()
3667
3668 for p in data:
3669 ctx.update(p)
3670
3671 return ctx.hexdigest()
3672
3673 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
3674 """Return the hash value for all zero blocks."""
3675 zero_block = '\x00' * 4096
3676 ctx = sha1()
3677 for _ in range(num_blocks):
3678 ctx.update(zero_block)
3679
3680 return ctx.hexdigest()
3681
3682
Tianjie Xu41976c72019-07-03 13:57:01 -07003683# Expose these two classes to support vendor-specific scripts
3684DataImage = images.DataImage
3685EmptyImage = images.EmptyImage
3686
Tao Bao76def242017-11-21 09:25:31 -08003687
Abhishek Nigam1dfca462023-11-08 02:21:39 +00003688# map recovery.fstab's fs_types to mount/format "partition types"
3689PARTITION_TYPES = {
3690 "ext4": "EMMC",
3691 "emmc": "EMMC",
3692 "f2fs": "EMMC",
3693 "squashfs": "EMMC",
3694 "erofs": "EMMC"
3695}
3696
3697
3698def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3699 """
3700 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3701 backwards compatibility. It aborts if the fstab entry has slotselect option
3702 (unless check_no_slot is explicitly set to False).
3703 """
3704 fstab = info["fstab"]
3705 if fstab:
3706 if check_no_slot:
3707 assert not fstab[mount_point].slotselect, \
3708 "Use GetTypeAndDeviceExpr instead"
3709 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3710 fstab[mount_point].device)
3711 raise KeyError
3712
3713
3714def GetTypeAndDeviceExpr(mount_point, info):
3715 """
3716 Return the filesystem of the partition, and an edify expression that evaluates
3717 to the device at runtime.
3718 """
3719 fstab = info["fstab"]
3720 if fstab:
3721 p = fstab[mount_point]
3722 device_expr = '"%s"' % fstab[mount_point].device
3723 if p.slotselect:
3724 device_expr = 'add_slot_suffix(%s)' % device_expr
3725 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
3726 raise KeyError
3727
Yifan Hongbdb32012020-05-07 12:38:53 -07003728
3729def GetEntryForDevice(fstab, device):
3730 """
3731 Returns:
3732 The first entry in fstab whose device is the given value.
3733 """
3734 if not fstab:
3735 return None
3736 for mount_point in fstab:
3737 if fstab[mount_point].device == device:
3738 return fstab[mount_point]
3739 return None
3740
Kelvin Zhang0876c412020-06-23 15:06:58 -04003741
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003742def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003743 """Parses and converts a PEM-encoded certificate into DER-encoded.
3744
3745 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3746
3747 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003748 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003749 """
3750 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003751 save = False
3752 for line in data.split("\n"):
3753 if "--END CERTIFICATE--" in line:
3754 break
3755 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003756 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003757 if "--BEGIN CERTIFICATE--" in line:
3758 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003759 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003760 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003761
Tao Bao04e1f012018-02-04 12:13:35 -08003762
3763def ExtractPublicKey(cert):
3764 """Extracts the public key (PEM-encoded) from the given certificate file.
3765
3766 Args:
3767 cert: The certificate filename.
3768
3769 Returns:
3770 The public key string.
3771
3772 Raises:
3773 AssertionError: On non-zero return from 'openssl'.
3774 """
3775 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3776 # While openssl 1.1 writes the key into the given filename followed by '-out',
3777 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3778 # stdout instead.
3779 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3780 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3781 pubkey, stderrdata = proc.communicate()
3782 assert proc.returncode == 0, \
3783 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3784 return pubkey
3785
3786
Tao Bao1ac886e2019-06-26 11:58:22 -07003787def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003788 """Extracts the AVB public key from the given public or private key.
3789
3790 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003791 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003792 key: The input key file, which should be PEM-encoded public or private key.
3793
3794 Returns:
3795 The path to the extracted AVB public key file.
3796 """
3797 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3798 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003799 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003800 return output
3801
3802
Abhishek Nigam1dfca462023-11-08 02:21:39 +00003803def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3804 info_dict=None):
3805 """Generates the recovery-from-boot patch and writes the script to output.
3806
3807 Most of the space in the boot and recovery images is just the kernel, which is
3808 identical for the two, so the resulting patch should be efficient. Add it to
3809 the output zip, along with a shell script that is run from init.rc on first
3810 boot to actually do the patching and install the new recovery image.
3811
3812 Args:
3813 input_dir: The top-level input directory of the target-files.zip.
3814 output_sink: The callback function that writes the result.
3815 recovery_img: File object for the recovery image.
3816 boot_img: File objects for the boot image.
3817 info_dict: A dict returned by common.LoadInfoDict() on the input
3818 target_files. Will use OPTIONS.info_dict if None has been given.
3819 """
3820 if info_dict is None:
3821 info_dict = OPTIONS.info_dict
3822
3823 full_recovery_image = info_dict.get("full_recovery_image") == "true"
3824 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3825
3826 if board_uses_vendorimage:
3827 # In this case, the output sink is rooted at VENDOR
3828 recovery_img_path = "etc/recovery.img"
3829 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3830 sh_dir = "bin"
3831 else:
3832 # In this case the output sink is rooted at SYSTEM
3833 recovery_img_path = "vendor/etc/recovery.img"
3834 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3835 sh_dir = "vendor/bin"
3836
3837 if full_recovery_image:
3838 output_sink(recovery_img_path, recovery_img.data)
3839
3840 else:
Abhishek Nigam1dfca462023-11-08 02:21:39 +00003841 include_recovery_dtbo = info_dict.get("include_recovery_dtbo") == "true"
3842 include_recovery_acpio = info_dict.get("include_recovery_acpio") == "true"
3843 path = os.path.join(input_dir, recovery_resource_dat_path)
Yi-Yo Chiang18650c72022-10-12 18:29:14 +08003844 # Use bsdiff to handle mismatching entries (Bug: 72731506)
3845 if include_recovery_dtbo or include_recovery_acpio:
Abhishek Nigam1dfca462023-11-08 02:21:39 +00003846 diff_program = ["bsdiff"]
3847 bonus_args = ""
3848 assert not os.path.exists(path)
3849 else:
3850 diff_program = ["imgdiff"]
3851 if os.path.exists(path):
3852 diff_program.append("-b")
3853 diff_program.append(path)
3854 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
3855 else:
3856 bonus_args = ""
3857
3858 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3859 _, _, patch = d.ComputePatch()
3860 output_sink("recovery-from-boot.p", patch)
3861
3862 try:
3863 # The following GetTypeAndDevice()s need to use the path in the target
3864 # info_dict instead of source_info_dict.
3865 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3866 check_no_slot=False)
3867 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3868 check_no_slot=False)
3869 except KeyError:
3870 return
3871
3872 if full_recovery_image:
3873
3874 # Note that we use /vendor to refer to the recovery resources. This will
3875 # work for a separate vendor partition mounted at /vendor or a
3876 # /system/vendor subdirectory on the system partition, for which init will
3877 # create a symlink from /vendor to /system/vendor.
3878
3879 sh = """#!/vendor/bin/sh
3880if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3881 applypatch \\
3882 --flash /vendor/etc/recovery.img \\
3883 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3884 log -t recovery "Installing new recovery image: succeeded" || \\
3885 log -t recovery "Installing new recovery image: failed"
3886else
3887 log -t recovery "Recovery image already installed"
3888fi
3889""" % {'type': recovery_type,
3890 'device': recovery_device,
3891 'sha1': recovery_img.sha1,
3892 'size': recovery_img.size}
3893 else:
3894 sh = """#!/vendor/bin/sh
3895if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3896 applypatch %(bonus_args)s \\
3897 --patch /vendor/recovery-from-boot.p \\
3898 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3899 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3900 log -t recovery "Installing new recovery image: succeeded" || \\
3901 log -t recovery "Installing new recovery image: failed"
3902else
3903 log -t recovery "Recovery image already installed"
3904fi
3905""" % {'boot_size': boot_img.size,
3906 'boot_sha1': boot_img.sha1,
3907 'recovery_size': recovery_img.size,
3908 'recovery_sha1': recovery_img.sha1,
3909 'boot_type': boot_type,
3910 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
3911 'recovery_type': recovery_type,
3912 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
3913 'bonus_args': bonus_args}
3914
3915 # The install script location moved from /system/etc to /system/bin in the L
3916 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3917 sh_location = os.path.join(sh_dir, "install-recovery.sh")
3918
3919 logger.info("putting script in %s", sh_location)
3920
3921 output_sink(sh_location, sh.encode())
3922
3923
3924class DynamicPartitionUpdate(object):
3925 def __init__(self, src_group=None, tgt_group=None, progress=None,
3926 block_difference=None):
3927 self.src_group = src_group
3928 self.tgt_group = tgt_group
3929 self.progress = progress
3930 self.block_difference = block_difference
3931
3932 @property
3933 def src_size(self):
3934 if not self.block_difference:
3935 return 0
3936 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3937
3938 @property
3939 def tgt_size(self):
3940 if not self.block_difference:
3941 return 0
3942 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3943
3944 @staticmethod
3945 def _GetSparseImageSize(img):
3946 if not img:
3947 return 0
3948 return img.blocksize * img.total_blocks
3949
3950
3951class DynamicGroupUpdate(object):
3952 def __init__(self, src_size=None, tgt_size=None):
3953 # None: group does not exist. 0: no size limits.
3954 self.src_size = src_size
3955 self.tgt_size = tgt_size
3956
3957
3958class DynamicPartitionsDifference(object):
3959 def __init__(self, info_dict, block_diffs, progress_dict=None,
3960 source_info_dict=None):
3961 if progress_dict is None:
3962 progress_dict = {}
3963
3964 self._remove_all_before_apply = False
3965 if source_info_dict is None:
3966 self._remove_all_before_apply = True
3967 source_info_dict = {}
3968
3969 block_diff_dict = collections.OrderedDict(
3970 [(e.partition, e) for e in block_diffs])
3971
3972 assert len(block_diff_dict) == len(block_diffs), \
3973 "Duplicated BlockDifference object for {}".format(
3974 [partition for partition, count in
3975 collections.Counter(e.partition for e in block_diffs).items()
3976 if count > 1])
3977
3978 self._partition_updates = collections.OrderedDict()
3979
3980 for p, block_diff in block_diff_dict.items():
3981 self._partition_updates[p] = DynamicPartitionUpdate()
3982 self._partition_updates[p].block_difference = block_diff
3983
3984 for p, progress in progress_dict.items():
3985 if p in self._partition_updates:
3986 self._partition_updates[p].progress = progress
3987
3988 tgt_groups = shlex.split(info_dict.get(
3989 "super_partition_groups", "").strip())
3990 src_groups = shlex.split(source_info_dict.get(
3991 "super_partition_groups", "").strip())
3992
3993 for g in tgt_groups:
3994 for p in shlex.split(info_dict.get(
3995 "super_%s_partition_list" % g, "").strip()):
3996 assert p in self._partition_updates, \
3997 "{} is in target super_{}_partition_list but no BlockDifference " \
3998 "object is provided.".format(p, g)
3999 self._partition_updates[p].tgt_group = g
4000
4001 for g in src_groups:
4002 for p in shlex.split(source_info_dict.get(
4003 "super_%s_partition_list" % g, "").strip()):
4004 assert p in self._partition_updates, \
4005 "{} is in source super_{}_partition_list but no BlockDifference " \
4006 "object is provided.".format(p, g)
4007 self._partition_updates[p].src_group = g
4008
4009 target_dynamic_partitions = set(shlex.split(info_dict.get(
4010 "dynamic_partition_list", "").strip()))
4011 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
4012 if u.tgt_size)
4013 assert block_diffs_with_target == target_dynamic_partitions, \
4014 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
4015 list(target_dynamic_partitions), list(block_diffs_with_target))
4016
4017 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
4018 "dynamic_partition_list", "").strip()))
4019 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
4020 if u.src_size)
4021 assert block_diffs_with_source == source_dynamic_partitions, \
4022 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
4023 list(source_dynamic_partitions), list(block_diffs_with_source))
4024
4025 if self._partition_updates:
4026 logger.info("Updating dynamic partitions %s",
4027 self._partition_updates.keys())
4028
4029 self._group_updates = collections.OrderedDict()
4030
4031 for g in tgt_groups:
4032 self._group_updates[g] = DynamicGroupUpdate()
4033 self._group_updates[g].tgt_size = int(info_dict.get(
4034 "super_%s_group_size" % g, "0").strip())
4035
4036 for g in src_groups:
4037 if g not in self._group_updates:
4038 self._group_updates[g] = DynamicGroupUpdate()
4039 self._group_updates[g].src_size = int(source_info_dict.get(
4040 "super_%s_group_size" % g, "0").strip())
4041
4042 self._Compute()
4043
4044 def WriteScript(self, script, output_zip, write_verify_script=False):
4045 script.Comment('--- Start patching dynamic partitions ---')
4046 for p, u in self._partition_updates.items():
4047 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
4048 script.Comment('Patch partition %s' % p)
4049 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
4050 write_verify_script=False)
4051
4052 op_list_path = MakeTempFile()
4053 with open(op_list_path, 'w') as f:
4054 for line in self._op_list:
4055 f.write('{}\n'.format(line))
4056
4057 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
4058
4059 script.Comment('Update dynamic partition metadata')
4060 script.AppendExtra('assert(update_dynamic_partitions('
4061 'package_extract_file("dynamic_partitions_op_list")));')
4062
4063 if write_verify_script:
4064 for p, u in self._partition_updates.items():
4065 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
4066 u.block_difference.WritePostInstallVerifyScript(script)
4067 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
4068
4069 for p, u in self._partition_updates.items():
4070 if u.tgt_size and u.src_size <= u.tgt_size:
4071 script.Comment('Patch partition %s' % p)
4072 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
4073 write_verify_script=write_verify_script)
4074 if write_verify_script:
4075 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
4076
4077 script.Comment('--- End patching dynamic partitions ---')
4078
4079 def _Compute(self):
4080 self._op_list = list()
4081
4082 def append(line):
4083 self._op_list.append(line)
4084
4085 def comment(line):
4086 self._op_list.append("# %s" % line)
4087
4088 if self._remove_all_before_apply:
4089 comment('Remove all existing dynamic partitions and groups before '
4090 'applying full OTA')
4091 append('remove_all_groups')
4092
4093 for p, u in self._partition_updates.items():
4094 if u.src_group and not u.tgt_group:
4095 append('remove %s' % p)
4096
4097 for p, u in self._partition_updates.items():
4098 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
4099 comment('Move partition %s from %s to default' % (p, u.src_group))
4100 append('move %s default' % p)
4101
4102 for p, u in self._partition_updates.items():
4103 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
4104 comment('Shrink partition %s from %d to %d' %
4105 (p, u.src_size, u.tgt_size))
4106 append('resize %s %s' % (p, u.tgt_size))
4107
4108 for g, u in self._group_updates.items():
4109 if u.src_size is not None and u.tgt_size is None:
4110 append('remove_group %s' % g)
4111 if (u.src_size is not None and u.tgt_size is not None and
4112 u.src_size > u.tgt_size):
4113 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
4114 append('resize_group %s %d' % (g, u.tgt_size))
4115
4116 for g, u in self._group_updates.items():
4117 if u.src_size is None and u.tgt_size is not None:
4118 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
4119 append('add_group %s %d' % (g, u.tgt_size))
4120 if (u.src_size is not None and u.tgt_size is not None and
4121 u.src_size < u.tgt_size):
4122 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
4123 append('resize_group %s %d' % (g, u.tgt_size))
4124
4125 for p, u in self._partition_updates.items():
4126 if u.tgt_group and not u.src_group:
4127 comment('Add partition %s to group %s' % (p, u.tgt_group))
4128 append('add %s %s' % (p, u.tgt_group))
4129
4130 for p, u in self._partition_updates.items():
4131 if u.tgt_size and u.src_size < u.tgt_size:
4132 comment('Grow partition %s from %d to %d' %
4133 (p, u.src_size, u.tgt_size))
4134 append('resize %s %d' % (p, u.tgt_size))
4135
4136 for p, u in self._partition_updates.items():
4137 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
4138 comment('Move partition %s from default to %s' %
4139 (p, u.tgt_group))
4140 append('move %s %s' % (p, u.tgt_group))
4141
4142
jiajia tangf3f842b2021-03-17 21:49:44 +08004143def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08004144 """
Yifan Hong85ac5012021-01-07 14:43:46 -08004145 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08004146
4147 Args:
Elliott Hughes97ad1202023-06-20 16:41:58 -07004148 boot_img: the boot image file. Ramdisk must be compressed with lz4 or gzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08004149
4150 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08004151 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08004152 """
Yifan Hongc65a0542021-01-07 14:21:01 -08004153 tmp_dir = MakeTempDir('boot_', suffix='.img')
4154 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04004155 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
4156 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08004157 ramdisk = os.path.join(tmp_dir, 'ramdisk')
4158 if not os.path.isfile(ramdisk):
4159 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
4160 return None
4161 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08004162 if ramdisk_format == RamdiskFormat.LZ4:
4163 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
4164 elif ramdisk_format == RamdiskFormat.GZ:
4165 with open(ramdisk, 'rb') as input_stream:
4166 with open(uncompressed_ramdisk, 'wb') as output_stream:
Elliott Hughes97ad1202023-06-20 16:41:58 -07004167 p2 = Run(['gzip', '-d'], stdin=input_stream.fileno(),
Kelvin Zhang563750f2021-04-28 12:46:17 -04004168 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08004169 p2.wait()
4170 else:
Elliott Hughes97ad1202023-06-20 16:41:58 -07004171 logger.error('Only support lz4 or gzip ramdisk format.')
jiajia tangf3f842b2021-03-17 21:49:44 +08004172 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08004173
4174 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
4175 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
4176 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
4177 # the host environment.
4178 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04004179 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08004180
Yifan Hongc65a0542021-01-07 14:21:01 -08004181 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
4182 prop_file = os.path.join(extracted_ramdisk, search_path)
4183 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08004184 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04004185 logger.warning(
4186 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08004187
Yifan Hong7dc51172021-01-12 11:27:39 -08004188 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08004189
Yifan Hong85ac5012021-01-07 14:43:46 -08004190 except ExternalError as e:
4191 logger.warning('Unable to get boot image build props: %s', e)
4192 return None
4193
4194
4195def GetBootImageTimestamp(boot_img):
4196 """
4197 Get timestamp from ramdisk within the boot image
4198
4199 Args:
4200 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
4201
4202 Return:
4203 An integer that corresponds to the timestamp of the boot image, or None
4204 if file has unknown format. Raise exception if an unexpected error has
4205 occurred.
4206 """
4207 prop_file = GetBootImageBuildProp(boot_img)
4208 if not prop_file:
4209 return None
4210
4211 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
4212 if props is None:
4213 return None
4214
4215 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08004216 timestamp = props.GetProp('ro.bootimage.build.date.utc')
4217 if timestamp:
4218 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04004219 logger.warning(
4220 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08004221 return None
4222
4223 except ExternalError as e:
4224 logger.warning('Unable to get boot image timestamp: %s', e)
4225 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04004226
4227
Kelvin Zhang26390482021-11-02 14:31:10 -07004228def IsSparseImage(filepath):
Kelvin Zhang1caead02022-09-23 10:06:03 -07004229 if not os.path.exists(filepath):
4230 return False
Kelvin Zhang26390482021-11-02 14:31:10 -07004231 with open(filepath, 'rb') as fp:
4232 # Magic for android sparse image format
4233 # https://source.android.com/devices/bootloader/images
4234 return fp.read(4) == b'\x3A\xFF\x26\xED'
Kelvin Zhangfcd731e2023-04-04 10:28:11 -07004235
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -07004236
Kelvin Zhang22680912023-05-19 13:12:59 -07004237def UnsparseImage(filepath, target_path=None):
4238 if not IsSparseImage(filepath):
4239 return
4240 if target_path is None:
4241 tmp_img = MakeTempFile(suffix=".img")
4242 RunAndCheckOutput(["simg2img", filepath, tmp_img])
4243 os.rename(tmp_img, filepath)
4244 else:
4245 RunAndCheckOutput(["simg2img", filepath, target_path])
4246
4247
Kelvin Zhangfcd731e2023-04-04 10:28:11 -07004248def ParseUpdateEngineConfig(path: str):
4249 """Parse the update_engine config stored in file `path`
4250 Args
4251 path: Path to update_engine_config.txt file in target_files
4252
4253 Returns
4254 A tuple of (major, minor) version number . E.g. (2, 8)
4255 """
4256 with open(path, "r") as fp:
4257 # update_engine_config.txt is only supposed to contain two lines,
4258 # PAYLOAD_MAJOR_VERSION and PAYLOAD_MINOR_VERSION. 1024 should be more than
4259 # sufficient. If the length is more than that, something is wrong.
4260 data = fp.read(1024)
4261 major = re.search(r"PAYLOAD_MAJOR_VERSION=(\d+)", data)
4262 if not major:
4263 raise ValueError(
4264 f"{path} is an invalid update_engine config, missing PAYLOAD_MAJOR_VERSION {data}")
4265 minor = re.search(r"PAYLOAD_MINOR_VERSION=(\d+)", data)
4266 if not minor:
4267 raise ValueError(
4268 f"{path} is an invalid update_engine config, missing PAYLOAD_MINOR_VERSION {data}")
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -07004269 return (int(major.group(1)), int(minor.group(1)))