blob: 5cf48102d3e1cb765dc10e068ef9a4cd23b688bb [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Doug Zongker8ce7c252009-05-22 13:34:54 -070020import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070021import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070022import getopt
23import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010024import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070025import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070026import json
27import logging
28import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070029import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080030import platform
Doug Zongkereef39442009-04-02 12:14:19 -070031import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070032import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070033import shutil
34import subprocess
35import sys
36import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070037import threading
38import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070039import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080040from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070041
Tianjie Xu41976c72019-07-03 13:57:01 -070042import images
Tao Baoc765cca2018-01-31 17:32:40 -080043import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070044from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070045
Tao Bao32fcdab2018-10-12 10:30:39 -070046logger = logging.getLogger(__name__)
47
Tao Bao986ee862018-10-04 15:46:16 -070048
Dan Albert8b72aef2015-03-23 19:13:21 -070049class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070052 # Set up search path, in order to find framework/ and lib64/. At the time of
53 # running this function, user-supplied search path (`--path`) hasn't been
54 # available. So the value set here is the default, which might be overridden
55 # by commandline flag later.
56 exec_path = sys.argv[0]
57 if exec_path.endswith('.py'):
58 script_name = os.path.basename(exec_path)
59 # logger hasn't been initialized yet at this point. Use print to output
60 # warnings.
61 print(
62 'Warning: releasetools script should be invoked as hermetic Python '
63 'executable -- build and run `{}` directly.'.format(script_name[:-3]),
64 file=sys.stderr)
Robin Lee34ea7392020-01-02 20:21:18 +010065 self.search_path = os.path.realpath(os.path.join(os.path.dirname(exec_path), '..'))
Pavel Salomatov32676552019-03-06 20:00:45 +030066
Dan Albert8b72aef2015-03-23 19:13:21 -070067 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080068 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070069 self.extra_signapk_args = []
70 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080071 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080072 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070073 self.public_key_suffix = ".x509.pem"
74 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070075 # use otatools built boot_signer by default
76 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070077 self.boot_signer_args = []
78 self.verity_signer_path = None
79 self.verity_signer_args = []
Tianjie0f307452020-04-01 12:20:21 -070080 self.aftl_tool_path = None
Dan Austin52903642019-12-12 15:44:00 -080081 self.aftl_server = None
82 self.aftl_key_path = None
83 self.aftl_manufacturer_key_path = None
84 self.aftl_signer_helper = None
Dan Albert8b72aef2015-03-23 19:13:21 -070085 self.verbose = False
86 self.tempfiles = []
87 self.device_specific = None
88 self.extras = {}
89 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070090 self.source_info_dict = None
91 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070092 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070093 # Stash size cannot exceed cache_size * threshold.
94 self.cache_size = None
95 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070096 self.logfile = None
Dan Albert8b72aef2015-03-23 19:13:21 -070097
98
99OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700100
Tao Bao71197512018-10-11 14:08:45 -0700101# The block size that's used across the releasetools scripts.
102BLOCK_SIZE = 4096
103
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800104# Values for "certificate" in apkcerts that mean special things.
105SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
106
Tao Bao5cc0abb2019-03-21 10:18:05 -0700107# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
108# that system_other is not in the list because we don't want to include its
109# descriptor into vbmeta.img.
Justin Yun6151e3f2019-06-25 15:58:13 +0900110AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'recovery', 'system',
Steve Mucklee1b10862019-07-10 10:49:37 -0700111 'system_ext', 'vendor', 'vendor_boot')
Tao Bao9dd909e2017-11-14 11:27:32 -0800112
Tao Bao08c190f2019-06-03 23:07:58 -0700113# Chained VBMeta partitions.
114AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
115
Tianjie Xu861f4132018-09-12 11:49:33 -0700116# Partitions that should have their care_map added to META/care_map.pb
Justin Yun6151e3f2019-06-25 15:58:13 +0900117PARTITIONS_WITH_CARE_MAP = ('system', 'vendor', 'product', 'system_ext', 'odm')
Tianjie Xu861f4132018-09-12 11:49:33 -0700118
119
Tianjie Xu209db462016-05-24 17:34:52 -0700120class ErrorCode(object):
121 """Define error_codes for failures that happen during the actual
122 update package installation.
123
124 Error codes 0-999 are reserved for failures before the package
125 installation (i.e. low battery, package verification failure).
126 Detailed code in 'bootable/recovery/error_code.h' """
127
128 SYSTEM_VERIFICATION_FAILURE = 1000
129 SYSTEM_UPDATE_FAILURE = 1001
130 SYSTEM_UNEXPECTED_CONTENTS = 1002
131 SYSTEM_NONZERO_CONTENTS = 1003
132 SYSTEM_RECOVER_FAILURE = 1004
133 VENDOR_VERIFICATION_FAILURE = 2000
134 VENDOR_UPDATE_FAILURE = 2001
135 VENDOR_UNEXPECTED_CONTENTS = 2002
136 VENDOR_NONZERO_CONTENTS = 2003
137 VENDOR_RECOVER_FAILURE = 2004
138 OEM_PROP_MISMATCH = 3000
139 FINGERPRINT_MISMATCH = 3001
140 THUMBPRINT_MISMATCH = 3002
141 OLDER_BUILD = 3003
142 DEVICE_MISMATCH = 3004
143 BAD_PATCH_FILE = 3005
144 INSUFFICIENT_CACHE_SPACE = 3006
145 TUNE_PARTITION_FAILURE = 3007
146 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800147
Tao Bao80921982018-03-21 21:02:19 -0700148
Dan Albert8b72aef2015-03-23 19:13:21 -0700149class ExternalError(RuntimeError):
150 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700151
152
Tao Bao32fcdab2018-10-12 10:30:39 -0700153def InitLogging():
154 DEFAULT_LOGGING_CONFIG = {
155 'version': 1,
156 'disable_existing_loggers': False,
157 'formatters': {
158 'standard': {
159 'format':
160 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
161 'datefmt': '%Y-%m-%d %H:%M:%S',
162 },
163 },
164 'handlers': {
165 'default': {
166 'class': 'logging.StreamHandler',
167 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700168 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700169 },
170 },
171 'loggers': {
172 '': {
173 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700174 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700175 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700176 }
177 }
178 }
179 env_config = os.getenv('LOGGING_CONFIG')
180 if env_config:
181 with open(env_config) as f:
182 config = json.load(f)
183 else:
184 config = DEFAULT_LOGGING_CONFIG
185
186 # Increase the logging level for verbose mode.
187 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700188 config = copy.deepcopy(config)
189 config['handlers']['default']['level'] = 'INFO'
190
191 if OPTIONS.logfile:
192 config = copy.deepcopy(config)
193 config['handlers']['logfile'] = {
194 'class': 'logging.FileHandler',
195 'formatter': 'standard',
196 'level': 'INFO',
197 'mode': 'w',
198 'filename': OPTIONS.logfile,
199 }
200 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700201
202 logging.config.dictConfig(config)
203
204
Tao Bao39451582017-05-04 11:10:47 -0700205def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700206 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700207
Tao Bao73dd4f42018-10-04 16:25:33 -0700208 Args:
209 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700210 verbose: Whether the commands should be shown. Default to the global
211 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700212 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
213 stdin, etc. stdout and stderr will default to subprocess.PIPE and
214 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800215 universal_newlines will default to True, as most of the users in
216 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700217
218 Returns:
219 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700220 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700221 if 'stdout' not in kwargs and 'stderr' not in kwargs:
222 kwargs['stdout'] = subprocess.PIPE
223 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800224 if 'universal_newlines' not in kwargs:
225 kwargs['universal_newlines'] = True
Tao Bao32fcdab2018-10-12 10:30:39 -0700226 # Don't log any if caller explicitly says so.
227 if verbose != False:
228 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700229 return subprocess.Popen(args, **kwargs)
230
231
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800232def RunAndWait(args, verbose=None, **kwargs):
Bill Peckham889b0c62019-02-21 18:53:37 -0800233 """Runs the given command waiting for it to complete.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800234
235 Args:
236 args: The command represented as a list of strings.
237 verbose: Whether the commands should be shown. Default to the global
238 verbosity if unspecified.
239 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
240 stdin, etc. stdout and stderr will default to subprocess.PIPE and
241 subprocess.STDOUT respectively unless caller specifies any of them.
242
Bill Peckham889b0c62019-02-21 18:53:37 -0800243 Raises:
244 ExternalError: On non-zero exit from the command.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800245 """
246 proc = Run(args, verbose=verbose, **kwargs)
247 proc.wait()
Bill Peckham889b0c62019-02-21 18:53:37 -0800248
249 if proc.returncode != 0:
250 raise ExternalError(
251 "Failed to run command '{}' (exit code {})".format(
252 args, proc.returncode))
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800253
254
Tao Bao986ee862018-10-04 15:46:16 -0700255def RunAndCheckOutput(args, verbose=None, **kwargs):
256 """Runs the given command and returns the output.
257
258 Args:
259 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700260 verbose: Whether the commands should be shown. Default to the global
261 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700262 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
263 stdin, etc. stdout and stderr will default to subprocess.PIPE and
264 subprocess.STDOUT respectively unless caller specifies any of them.
265
266 Returns:
267 The output string.
268
269 Raises:
270 ExternalError: On non-zero exit from the command.
271 """
Tao Bao986ee862018-10-04 15:46:16 -0700272 proc = Run(args, verbose=verbose, **kwargs)
273 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800274 if output is None:
275 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700276 # Don't log any if caller explicitly says so.
277 if verbose != False:
278 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700279 if proc.returncode != 0:
280 raise ExternalError(
281 "Failed to run command '{}' (exit code {}):\n{}".format(
282 args, proc.returncode, output))
283 return output
284
285
Tao Baoc765cca2018-01-31 17:32:40 -0800286def RoundUpTo4K(value):
287 rounded_up = value + 4095
288 return rounded_up - (rounded_up % 4096)
289
290
Ying Wang7e6d4e42010-12-13 16:25:36 -0800291def CloseInheritedPipes():
292 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
293 before doing other work."""
294 if platform.system() != "Darwin":
295 return
296 for d in range(3, 1025):
297 try:
298 stat = os.fstat(d)
299 if stat is not None:
300 pipebit = stat[0] & 0x1000
301 if pipebit != 0:
302 os.close(d)
303 except OSError:
304 pass
305
306
Tao Bao1c320f82019-10-04 23:25:12 -0700307class BuildInfo(object):
308 """A class that holds the information for a given build.
309
310 This class wraps up the property querying for a given source or target build.
311 It abstracts away the logic of handling OEM-specific properties, and caches
312 the commonly used properties such as fingerprint.
313
314 There are two types of info dicts: a) build-time info dict, which is generated
315 at build time (i.e. included in a target_files zip); b) OEM info dict that is
316 specified at package generation time (via command line argument
317 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
318 having "oem_fingerprint_properties" in build-time info dict), all the queries
319 would be answered based on build-time info dict only. Otherwise if using
320 OEM-specific properties, some of them will be calculated from two info dicts.
321
322 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800323 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700324
325 Attributes:
326 info_dict: The build-time info dict.
327 is_ab: Whether it's a build that uses A/B OTA.
328 oem_dicts: A list of OEM dicts.
329 oem_props: A list of OEM properties that should be read from OEM dicts; None
330 if the build doesn't use any OEM-specific property.
331 fingerprint: The fingerprint of the build, which would be calculated based
332 on OEM properties if applicable.
333 device: The device name, which could come from OEM dicts if applicable.
334 """
335
336 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
337 "ro.product.manufacturer", "ro.product.model",
338 "ro.product.name"]
339 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER = ["product", "odm", "vendor",
340 "system_ext", "system"]
341
Tao Bao3ed35d32019-10-07 20:48:48 -0700342 def __init__(self, info_dict, oem_dicts=None):
Tao Bao1c320f82019-10-04 23:25:12 -0700343 """Initializes a BuildInfo instance with the given dicts.
344
345 Note that it only wraps up the given dicts, without making copies.
346
347 Arguments:
348 info_dict: The build-time info dict.
349 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
350 that it always uses the first dict to calculate the fingerprint or the
351 device name. The rest would be used for asserting OEM properties only
352 (e.g. one package can be installed on one of these devices).
353
354 Raises:
355 ValueError: On invalid inputs.
356 """
357 self.info_dict = info_dict
358 self.oem_dicts = oem_dicts
359
360 self._is_ab = info_dict.get("ab_update") == "true"
361 self._oem_props = info_dict.get("oem_fingerprint_properties")
362
363 if self._oem_props:
364 assert oem_dicts, "OEM source required for this build"
365
Daniel Normand5fe8622020-01-08 17:01:11 -0800366 def check_fingerprint(fingerprint):
367 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
368 raise ValueError(
369 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
370 "3.2.2. Build Parameters.".format(fingerprint))
371
372
373 self._partition_fingerprints = {}
374 for partition in PARTITIONS_WITH_CARE_MAP:
375 try:
376 fingerprint = self.CalculatePartitionFingerprint(partition)
377 check_fingerprint(fingerprint)
378 self._partition_fingerprints[partition] = fingerprint
379 except ExternalError:
380 continue
381 if "system" in self._partition_fingerprints:
382 # system_other is not included in PARTITIONS_WITH_CARE_MAP, but does
383 # need a fingerprint when creating the image.
384 self._partition_fingerprints[
385 "system_other"] = self._partition_fingerprints["system"]
386
Tao Bao1c320f82019-10-04 23:25:12 -0700387 # These two should be computed only after setting self._oem_props.
388 self._device = self.GetOemProperty("ro.product.device")
389 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800390 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700391
392 @property
393 def is_ab(self):
394 return self._is_ab
395
396 @property
397 def device(self):
398 return self._device
399
400 @property
401 def fingerprint(self):
402 return self._fingerprint
403
404 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700405 def oem_props(self):
406 return self._oem_props
407
408 def __getitem__(self, key):
409 return self.info_dict[key]
410
411 def __setitem__(self, key, value):
412 self.info_dict[key] = value
413
414 def get(self, key, default=None):
415 return self.info_dict.get(key, default)
416
417 def items(self):
418 return self.info_dict.items()
419
Daniel Normand5fe8622020-01-08 17:01:11 -0800420 def GetPartitionBuildProp(self, prop, partition):
421 """Returns the inquired build property for the provided partition."""
422 # If provided a partition for this property, only look within that
423 # partition's build.prop.
424 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
425 prop = prop.replace("ro.product", "ro.product.{}".format(partition))
426 else:
427 prop = prop.replace("ro.", "ro.{}.".format(partition))
428 try:
429 return self.info_dict.get("{}.build.prop".format(partition), {})[prop]
430 except KeyError:
431 raise ExternalError("couldn't find %s in %s.build.prop" %
432 (prop, partition))
433
Tao Bao1c320f82019-10-04 23:25:12 -0700434 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800435 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700436 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
437 return self._ResolveRoProductBuildProp(prop)
438
439 try:
440 return self.info_dict.get("build.prop", {})[prop]
441 except KeyError:
442 raise ExternalError("couldn't find %s in build.prop" % (prop,))
443
444 def _ResolveRoProductBuildProp(self, prop):
445 """Resolves the inquired ro.product.* build property"""
446 prop_val = self.info_dict.get("build.prop", {}).get(prop)
447 if prop_val:
448 return prop_val
449
450 source_order_val = self.info_dict.get("build.prop", {}).get(
451 "ro.product.property_source_order")
452 if source_order_val:
453 source_order = source_order_val.split(",")
454 else:
455 source_order = BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
456
457 # Check that all sources in ro.product.property_source_order are valid
458 if any([x not in BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
459 for x in source_order]):
460 raise ExternalError(
461 "Invalid ro.product.property_source_order '{}'".format(source_order))
462
463 for source in source_order:
464 source_prop = prop.replace(
465 "ro.product", "ro.product.{}".format(source), 1)
466 prop_val = self.info_dict.get(
467 "{}.build.prop".format(source), {}).get(source_prop)
468 if prop_val:
469 return prop_val
470
471 raise ExternalError("couldn't resolve {}".format(prop))
472
Tao Bao1c320f82019-10-04 23:25:12 -0700473 def GetOemProperty(self, key):
474 if self.oem_props is not None and key in self.oem_props:
475 return self.oem_dicts[0][key]
476 return self.GetBuildProp(key)
477
Daniel Normand5fe8622020-01-08 17:01:11 -0800478 def GetPartitionFingerprint(self, partition):
479 return self._partition_fingerprints.get(partition, None)
480
481 def CalculatePartitionFingerprint(self, partition):
482 try:
483 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
484 except ExternalError:
485 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
486 self.GetPartitionBuildProp("ro.product.brand", partition),
487 self.GetPartitionBuildProp("ro.product.name", partition),
488 self.GetPartitionBuildProp("ro.product.device", partition),
489 self.GetPartitionBuildProp("ro.build.version.release", partition),
490 self.GetPartitionBuildProp("ro.build.id", partition),
491 self.GetPartitionBuildProp("ro.build.version.incremental", partition),
492 self.GetPartitionBuildProp("ro.build.type", partition),
493 self.GetPartitionBuildProp("ro.build.tags", partition))
494
Tao Bao1c320f82019-10-04 23:25:12 -0700495 def CalculateFingerprint(self):
496 if self.oem_props is None:
497 try:
498 return self.GetBuildProp("ro.build.fingerprint")
499 except ExternalError:
500 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
501 self.GetBuildProp("ro.product.brand"),
502 self.GetBuildProp("ro.product.name"),
503 self.GetBuildProp("ro.product.device"),
504 self.GetBuildProp("ro.build.version.release"),
505 self.GetBuildProp("ro.build.id"),
506 self.GetBuildProp("ro.build.version.incremental"),
507 self.GetBuildProp("ro.build.type"),
508 self.GetBuildProp("ro.build.tags"))
509 return "%s/%s/%s:%s" % (
510 self.GetOemProperty("ro.product.brand"),
511 self.GetOemProperty("ro.product.name"),
512 self.GetOemProperty("ro.product.device"),
513 self.GetBuildProp("ro.build.thumbprint"))
514
515 def WriteMountOemScript(self, script):
516 assert self.oem_props is not None
517 recovery_mount_options = self.info_dict.get("recovery_mount_options")
518 script.Mount("/oem", recovery_mount_options)
519
520 def WriteDeviceAssertions(self, script, oem_no_mount):
521 # Read the property directly if not using OEM properties.
522 if not self.oem_props:
523 script.AssertDevice(self.device)
524 return
525
526 # Otherwise assert OEM properties.
527 if not self.oem_dicts:
528 raise ExternalError(
529 "No OEM file provided to answer expected assertions")
530
531 for prop in self.oem_props.split():
532 values = []
533 for oem_dict in self.oem_dicts:
534 if prop in oem_dict:
535 values.append(oem_dict[prop])
536 if not values:
537 raise ExternalError(
538 "The OEM file is missing the property %s" % (prop,))
539 script.AssertOemProperty(prop, values, oem_no_mount)
540
541
Tao Bao410ad8b2018-08-24 12:08:38 -0700542def LoadInfoDict(input_file, repacking=False):
543 """Loads the key/value pairs from the given input target_files.
544
545 It reads `META/misc_info.txt` file in the target_files input, does sanity
546 checks and returns the parsed key/value pairs for to the given build. It's
547 usually called early when working on input target_files files, e.g. when
548 generating OTAs, or signing builds. Note that the function may be called
549 against an old target_files file (i.e. from past dessert releases). So the
550 property parsing needs to be backward compatible.
551
552 In a `META/misc_info.txt`, a few properties are stored as links to the files
553 in the PRODUCT_OUT directory. It works fine with the build system. However,
554 they are no longer available when (re)generating images from target_files zip.
555 When `repacking` is True, redirect these properties to the actual files in the
556 unzipped directory.
557
558 Args:
559 input_file: The input target_files file, which could be an open
560 zipfile.ZipFile instance, or a str for the dir that contains the files
561 unzipped from a target_files file.
562 repacking: Whether it's trying repack an target_files file after loading the
563 info dict (default: False). If so, it will rewrite a few loaded
564 properties (e.g. selinux_fc, root_dir) to point to the actual files in
565 target_files file. When doing repacking, `input_file` must be a dir.
566
567 Returns:
568 A dict that contains the parsed key/value pairs.
569
570 Raises:
571 AssertionError: On invalid input arguments.
572 ValueError: On malformed input values.
573 """
574 if repacking:
575 assert isinstance(input_file, str), \
576 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700577
Doug Zongkerc9253822014-02-04 12:17:58 -0800578 def read_helper(fn):
Dan Albert8b72aef2015-03-23 19:13:21 -0700579 if isinstance(input_file, zipfile.ZipFile):
Tao Baoda30cfa2017-12-01 16:19:46 -0800580 return input_file.read(fn).decode()
Doug Zongkerc9253822014-02-04 12:17:58 -0800581 else:
Dan Albert8b72aef2015-03-23 19:13:21 -0700582 path = os.path.join(input_file, *fn.split("/"))
Doug Zongkerc9253822014-02-04 12:17:58 -0800583 try:
584 with open(path) as f:
585 return f.read()
Dan Albert8b72aef2015-03-23 19:13:21 -0700586 except IOError as e:
Doug Zongkerc9253822014-02-04 12:17:58 -0800587 if e.errno == errno.ENOENT:
588 raise KeyError(fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800589
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700590 try:
Michael Runge6e836112014-04-15 17:40:21 -0700591 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700592 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700593 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700594
Tao Bao410ad8b2018-08-24 12:08:38 -0700595 if "recovery_api_version" not in d:
596 raise ValueError("Failed to find 'recovery_api_version'")
597 if "fstab_version" not in d:
598 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800599
Tao Bao410ad8b2018-08-24 12:08:38 -0700600 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700601 # "selinux_fc" properties should point to the file_contexts files
602 # (file_contexts.bin) under META/.
603 for key in d:
604 if key.endswith("selinux_fc"):
605 fc_basename = os.path.basename(d[key])
606 fc_config = os.path.join(input_file, "META", fc_basename)
607 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700608
Daniel Norman72c626f2019-05-13 15:58:14 -0700609 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700610
Tom Cherryd14b8952018-08-09 14:26:00 -0700611 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700612 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700613 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700614 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700615
David Anderson0ec64ac2019-12-06 12:21:18 -0800616 # Redirect {partition}_base_fs_file for each of the named partitions.
617 for part_name in ["system", "vendor", "system_ext", "product", "odm"]:
618 key_name = part_name + "_base_fs_file"
619 if key_name not in d:
620 continue
621 basename = os.path.basename(d[key_name])
622 base_fs_file = os.path.join(input_file, "META", basename)
623 if os.path.exists(base_fs_file):
624 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700625 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700626 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800627 "Failed to find %s base fs file: %s", part_name, base_fs_file)
628 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700629
Doug Zongker37974732010-09-16 17:44:38 -0700630 def makeint(key):
631 if key in d:
632 d[key] = int(d[key], 0)
633
634 makeint("recovery_api_version")
635 makeint("blocksize")
636 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700637 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700638 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700639 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700640 makeint("recovery_size")
641 makeint("boot_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800642 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700643
Tao Bao765668f2019-10-04 22:03:00 -0700644 # Load recovery fstab if applicable.
645 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
Tianjie Xucfa86222016-03-07 16:31:19 -0800646
Tianjie Xu861f4132018-09-12 11:49:33 -0700647 # Tries to load the build props for all partitions with care_map, including
648 # system and vendor.
649 for partition in PARTITIONS_WITH_CARE_MAP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800650 partition_prop = "{}.build.prop".format(partition)
651 d[partition_prop] = LoadBuildProp(
Tianjie Xu861f4132018-09-12 11:49:33 -0700652 read_helper, "{}/build.prop".format(partition.upper()))
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800653 # Some partition might use /<partition>/etc/build.prop as the new path.
654 # TODO: try new path first when majority of them switch to the new path.
655 if not d[partition_prop]:
656 d[partition_prop] = LoadBuildProp(
657 read_helper, "{}/etc/build.prop".format(partition.upper()))
Tianjie Xu861f4132018-09-12 11:49:33 -0700658 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800659
Tao Bao3ed35d32019-10-07 20:48:48 -0700660 # Set up the salt (based on fingerprint) that will be used when adding AVB
661 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800662 if d.get("avb_enable") == "true":
Tao Bao3ed35d32019-10-07 20:48:48 -0700663 build_info = BuildInfo(d)
Daniel Normand5fe8622020-01-08 17:01:11 -0800664 for partition in PARTITIONS_WITH_CARE_MAP:
665 fingerprint = build_info.GetPartitionFingerprint(partition)
666 if fingerprint:
667 d["avb_{}_salt".format(partition)] = sha256(fingerprint).hexdigest()
Tao Bao12d87fc2018-01-31 12:18:52 -0800668
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700669 return d
670
Tao Baod1de6f32017-03-01 16:38:48 -0800671
Tao Baobcd1d162017-08-26 13:10:26 -0700672def LoadBuildProp(read_helper, prop_file):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700673 try:
Tao Baobcd1d162017-08-26 13:10:26 -0700674 data = read_helper(prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700675 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700676 logger.warning("Failed to read %s", prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700677 data = ""
Michael Runge6e836112014-04-15 17:40:21 -0700678 return LoadDictionaryFromLines(data.split("\n"))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700679
Tao Baod1de6f32017-03-01 16:38:48 -0800680
Daniel Norman4cc9df62019-07-18 10:11:07 -0700681def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900682 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700683 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900684
Daniel Norman4cc9df62019-07-18 10:11:07 -0700685
686def LoadDictionaryFromFile(file_path):
687 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900688 return LoadDictionaryFromLines(lines)
689
690
Michael Runge6e836112014-04-15 17:40:21 -0700691def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700692 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700693 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700694 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700695 if not line or line.startswith("#"):
696 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700697 if "=" in line:
698 name, value = line.split("=", 1)
699 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700700 return d
701
Tao Baod1de6f32017-03-01 16:38:48 -0800702
Tianjie Xucfa86222016-03-07 16:31:19 -0800703def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
704 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700705 class Partition(object):
Tao Baod1de6f32017-03-01 16:38:48 -0800706 def __init__(self, mount_point, fs_type, device, length, context):
Dan Albert8b72aef2015-03-23 19:13:21 -0700707 self.mount_point = mount_point
708 self.fs_type = fs_type
709 self.device = device
710 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700711 self.context = context
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700712
713 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800714 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700715 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700716 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -0700717 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700718
Tao Baod1de6f32017-03-01 16:38:48 -0800719 assert fstab_version == 2
720
721 d = {}
722 for line in data.split("\n"):
723 line = line.strip()
724 if not line or line.startswith("#"):
725 continue
726
727 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
728 pieces = line.split()
729 if len(pieces) != 5:
730 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
731
732 # Ignore entries that are managed by vold.
733 options = pieces[4]
734 if "voldmanaged=" in options:
735 continue
736
737 # It's a good line, parse it.
738 length = 0
739 options = options.split(",")
740 for i in options:
741 if i.startswith("length="):
742 length = int(i[7:])
Doug Zongker086cbb02011-02-17 15:54:20 -0800743 else:
Tao Baod1de6f32017-03-01 16:38:48 -0800744 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -0700745 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800746
Tao Baod1de6f32017-03-01 16:38:48 -0800747 mount_flags = pieces[3]
748 # Honor the SELinux context if present.
749 context = None
750 for i in mount_flags.split(","):
751 if i.startswith("context="):
752 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -0800753
Tao Baod1de6f32017-03-01 16:38:48 -0800754 mount_point = pieces[1]
755 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
756 device=pieces[0], length=length, context=context)
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800757
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700758 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700759 # system. Other areas assume system is always at "/system" so point /system
760 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700761 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -0800762 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700763 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700764 return d
765
766
Tao Bao765668f2019-10-04 22:03:00 -0700767def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
768 """Finds the path to recovery fstab and loads its contents."""
769 # recovery fstab is only meaningful when installing an update via recovery
770 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
771 if info_dict.get('ab_update') == 'true':
772 return None
773
774 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
775 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
776 # cases, since it may load the info_dict from an old build (e.g. when
777 # generating incremental OTAs from that build).
778 system_root_image = info_dict.get('system_root_image') == 'true'
779 if info_dict.get('no_recovery') != 'true':
780 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
781 if isinstance(input_file, zipfile.ZipFile):
782 if recovery_fstab_path not in input_file.namelist():
783 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
784 else:
785 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
786 if not os.path.exists(path):
787 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
788 return LoadRecoveryFSTab(
789 read_helper, info_dict['fstab_version'], recovery_fstab_path,
790 system_root_image)
791
792 if info_dict.get('recovery_as_boot') == 'true':
793 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
794 if isinstance(input_file, zipfile.ZipFile):
795 if recovery_fstab_path not in input_file.namelist():
796 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
797 else:
798 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
799 if not os.path.exists(path):
800 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
801 return LoadRecoveryFSTab(
802 read_helper, info_dict['fstab_version'], recovery_fstab_path,
803 system_root_image)
804
805 return None
806
807
Doug Zongker37974732010-09-16 17:44:38 -0700808def DumpInfoDict(d):
809 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -0700810 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700811
Dan Albert8b72aef2015-03-23 19:13:21 -0700812
Daniel Norman55417142019-11-25 16:04:36 -0800813def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700814 """Merges dynamic partition info variables.
815
816 Args:
817 framework_dict: The dictionary of dynamic partition info variables from the
818 partial framework target files.
819 vendor_dict: The dictionary of dynamic partition info variables from the
820 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700821
822 Returns:
823 The merged dynamic partition info dictionary.
824 """
825 merged_dict = {}
826 # Partition groups and group sizes are defined by the vendor dict because
827 # these values may vary for each board that uses a shared system image.
828 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Norman55417142019-11-25 16:04:36 -0800829 framework_dynamic_partition_list = framework_dict.get(
830 "dynamic_partition_list", "")
831 vendor_dynamic_partition_list = vendor_dict.get("dynamic_partition_list", "")
832 merged_dict["dynamic_partition_list"] = ("%s %s" % (
833 framework_dynamic_partition_list, vendor_dynamic_partition_list)).strip()
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700834 for partition_group in merged_dict["super_partition_groups"].split(" "):
835 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -0800836 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700837 if key not in vendor_dict:
838 raise ValueError("Vendor dict does not contain required key %s." % key)
839 merged_dict[key] = vendor_dict[key]
840
841 # Set the partition group's partition list using a concatenation of the
842 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -0800843 key = "super_%s_partition_list" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700844 merged_dict[key] = (
845 "%s %s" %
846 (framework_dict.get(key, ""), vendor_dict.get(key, ""))).strip()
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +0530847
848 # Pick virtual ab related flags from vendor dict, if defined.
849 if "virtual_ab" in vendor_dict.keys():
850 merged_dict["virtual_ab"] = vendor_dict["virtual_ab"]
851 if "virtual_ab_retrofit" in vendor_dict.keys():
852 merged_dict["virtual_ab_retrofit"] = vendor_dict["virtual_ab_retrofit"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700853 return merged_dict
854
855
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800856def AppendAVBSigningArgs(cmd, partition):
857 """Append signing arguments for avbtool."""
858 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
859 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -0700860 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
861 new_key_path = os.path.join(OPTIONS.search_path, key_path)
862 if os.path.exists(new_key_path):
863 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800864 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
865 if key_path and algorithm:
866 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -0700867 avb_salt = OPTIONS.info_dict.get("avb_salt")
868 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -0700869 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -0700870 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800871
872
Tao Bao765668f2019-10-04 22:03:00 -0700873def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -0700874 """Returns the VBMeta arguments for partition.
875
876 It sets up the VBMeta argument by including the partition descriptor from the
877 given 'image', or by configuring the partition as a chained partition.
878
879 Args:
880 partition: The name of the partition (e.g. "system").
881 image: The path to the partition image.
882 info_dict: A dict returned by common.LoadInfoDict(). Will use
883 OPTIONS.info_dict if None has been given.
884
885 Returns:
886 A list of VBMeta arguments.
887 """
888 if info_dict is None:
889 info_dict = OPTIONS.info_dict
890
891 # Check if chain partition is used.
892 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +0800893 if not key_path:
894 return ["--include_descriptors_from_image", image]
895
896 # For a non-A/B device, we don't chain /recovery nor include its descriptor
897 # into vbmeta.img. The recovery image will be configured on an independent
898 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
899 # See details at
900 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -0700901 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +0800902 return []
903
904 # Otherwise chain the partition into vbmeta.
905 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
906 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -0700907
908
Tao Bao02a08592018-07-22 12:40:45 -0700909def GetAvbChainedPartitionArg(partition, info_dict, key=None):
910 """Constructs and returns the arg to build or verify a chained partition.
911
912 Args:
913 partition: The partition name.
914 info_dict: The info dict to look up the key info and rollback index
915 location.
916 key: The key to be used for building or verifying the partition. Defaults to
917 the key listed in info_dict.
918
919 Returns:
920 A string of form "partition:rollback_index_location:key" that can be used to
921 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -0700922 """
923 if key is None:
924 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -0700925 if key and not os.path.exists(key) and OPTIONS.search_path:
926 new_key_path = os.path.join(OPTIONS.search_path, key)
927 if os.path.exists(new_key_path):
928 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -0700929 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -0700930 rollback_index_location = info_dict[
931 "avb_" + partition + "_rollback_index_location"]
932 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
933
934
Tianjie20dd8f22020-04-19 15:51:16 -0700935def ConstructAftlMakeImageCommands(output_image):
936 """Constructs the command to append the aftl image to vbmeta."""
Tianjie Xueaed60c2020-03-12 00:33:28 -0700937
938 # Ensure the other AFTL parameters are set as well.
Tianjie0f307452020-04-01 12:20:21 -0700939 assert OPTIONS.aftl_tool_path is not None, 'No aftl tool provided.'
Tianjie Xueaed60c2020-03-12 00:33:28 -0700940 assert OPTIONS.aftl_key_path is not None, 'No AFTL key provided.'
941 assert OPTIONS.aftl_manufacturer_key_path is not None, \
942 'No AFTL manufacturer key provided.'
943
944 vbmeta_image = MakeTempFile()
945 os.rename(output_image, vbmeta_image)
946 build_info = BuildInfo(OPTIONS.info_dict)
947 version_incremental = build_info.GetBuildProp("ro.build.version.incremental")
Tianjie0f307452020-04-01 12:20:21 -0700948 aftltool = OPTIONS.aftl_tool_path
Tianjie20dd8f22020-04-19 15:51:16 -0700949 server_argument_list = [OPTIONS.aftl_server, OPTIONS.aftl_key_path]
Tianjie0f307452020-04-01 12:20:21 -0700950 aftl_cmd = [aftltool, "make_icp_from_vbmeta",
Tianjie Xueaed60c2020-03-12 00:33:28 -0700951 "--vbmeta_image_path", vbmeta_image,
952 "--output", output_image,
953 "--version_incremental", version_incremental,
Tianjie20dd8f22020-04-19 15:51:16 -0700954 "--transparency_log_servers", ','.join(server_argument_list),
Tianjie Xueaed60c2020-03-12 00:33:28 -0700955 "--manufacturer_key", OPTIONS.aftl_manufacturer_key_path,
956 "--algorithm", "SHA256_RSA4096",
957 "--padding", "4096"]
958 if OPTIONS.aftl_signer_helper:
959 aftl_cmd.extend(shlex.split(OPTIONS.aftl_signer_helper))
Tianjie20dd8f22020-04-19 15:51:16 -0700960 return aftl_cmd
961
962
963def AddAftlInclusionProof(output_image):
964 """Appends the aftl inclusion proof to the vbmeta image."""
965
966 aftl_cmd = ConstructAftlMakeImageCommands(output_image)
Tianjie Xueaed60c2020-03-12 00:33:28 -0700967 RunAndCheckOutput(aftl_cmd)
968
969 verify_cmd = ['aftltool', 'verify_image_icp', '--vbmeta_image_path',
970 output_image, '--transparency_log_pub_keys',
971 OPTIONS.aftl_key_path]
972 RunAndCheckOutput(verify_cmd)
973
974
Daniel Norman276f0622019-07-26 14:13:51 -0700975def BuildVBMeta(image_path, partitions, name, needed_partitions):
976 """Creates a VBMeta image.
977
978 It generates the requested VBMeta image. The requested image could be for
979 top-level or chained VBMeta image, which is determined based on the name.
980
981 Args:
982 image_path: The output path for the new VBMeta image.
983 partitions: A dict that's keyed by partition names with image paths as
984 values. Only valid partition names are accepted, as listed in
985 common.AVB_PARTITIONS.
986 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
987 needed_partitions: Partitions whose descriptors should be included into the
988 generated VBMeta image.
989
990 Raises:
991 AssertionError: On invalid input args.
992 """
993 avbtool = OPTIONS.info_dict["avb_avbtool"]
994 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
995 AppendAVBSigningArgs(cmd, name)
996
997 for partition, path in partitions.items():
998 if partition not in needed_partitions:
999 continue
1000 assert (partition in AVB_PARTITIONS or
1001 partition in AVB_VBMETA_PARTITIONS), \
1002 'Unknown partition: {}'.format(partition)
1003 assert os.path.exists(path), \
1004 'Failed to find {} for {}'.format(path, partition)
1005 cmd.extend(GetAvbPartitionArg(partition, path))
1006
1007 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1008 if args and args.strip():
1009 split_args = shlex.split(args)
1010 for index, arg in enumerate(split_args[:-1]):
1011 # Sanity check that the image file exists. Some images might be defined
1012 # as a path relative to source tree, which may not be available at the
1013 # same location when running this script (we have the input target_files
1014 # zip only). For such cases, we additionally scan other locations (e.g.
1015 # IMAGES/, RADIO/, etc) before bailing out.
1016 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001017 chained_image = split_args[index + 1]
1018 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001019 continue
1020 found = False
1021 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1022 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001023 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001024 if os.path.exists(alt_path):
1025 split_args[index + 1] = alt_path
1026 found = True
1027 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001028 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001029 cmd.extend(split_args)
1030
1031 RunAndCheckOutput(cmd)
1032
Tianjie Xueaed60c2020-03-12 00:33:28 -07001033 # Generate the AFTL inclusion proof.
Dan Austin52903642019-12-12 15:44:00 -08001034 if OPTIONS.aftl_server is not None:
Tianjie Xueaed60c2020-03-12 00:33:28 -07001035 AddAftlInclusionProof(image_path)
1036
Daniel Norman276f0622019-07-26 14:13:51 -07001037
Steve Mucklee1b10862019-07-10 10:49:37 -07001038def _MakeRamdisk(sourcedir, fs_config_file=None):
1039 ramdisk_img = tempfile.NamedTemporaryFile()
1040
1041 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1042 cmd = ["mkbootfs", "-f", fs_config_file,
1043 os.path.join(sourcedir, "RAMDISK")]
1044 else:
1045 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1046 p1 = Run(cmd, stdout=subprocess.PIPE)
1047 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
1048
1049 p2.wait()
1050 p1.wait()
1051 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
1052 assert p2.returncode == 0, "minigzip of %s ramdisk failed" % (sourcedir,)
1053
1054 return ramdisk_img
1055
1056
Steve Muckle9793cf62020-04-08 18:27:00 -07001057def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001058 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001059 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001060
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001061 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001062 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1063 we are building a two-step special image (i.e. building a recovery image to
1064 be loaded into /boot in two-step OTAs).
1065
1066 Return the image data, or None if sourcedir does not appear to contains files
1067 for building the requested image.
1068 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001069
Steve Muckle9793cf62020-04-08 18:27:00 -07001070 # "boot" or "recovery", without extension.
1071 partition_name = os.path.basename(sourcedir).lower()
1072
1073 if partition_name == "recovery":
1074 kernel = "kernel"
1075 else:
1076 kernel = image_name.replace("boot", "kernel")
1077 kernel = kernel.replace(".img","")
1078 if not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001079 return None
1080
1081 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001082 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001083
Doug Zongkerd5131602012-08-02 14:46:42 -07001084 if info_dict is None:
1085 info_dict = OPTIONS.info_dict
1086
Doug Zongkereef39442009-04-02 12:14:19 -07001087 img = tempfile.NamedTemporaryFile()
1088
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001089 if has_ramdisk:
Steve Mucklee1b10862019-07-10 10:49:37 -07001090 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file)
Doug Zongkereef39442009-04-02 12:14:19 -07001091
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001092 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1093 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1094
Steve Muckle9793cf62020-04-08 18:27:00 -07001095 cmd = [mkbootimg, "--kernel", os.path.join(sourcedir, kernel)]
Doug Zongker38a649f2009-06-17 09:07:09 -07001096
Benoit Fradina45a8682014-07-14 21:00:43 +02001097 fn = os.path.join(sourcedir, "second")
1098 if os.access(fn, os.F_OK):
1099 cmd.append("--second")
1100 cmd.append(fn)
1101
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001102 fn = os.path.join(sourcedir, "dtb")
1103 if os.access(fn, os.F_OK):
1104 cmd.append("--dtb")
1105 cmd.append(fn)
1106
Doug Zongker171f1cd2009-06-15 22:36:37 -07001107 fn = os.path.join(sourcedir, "cmdline")
1108 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001109 cmd.append("--cmdline")
1110 cmd.append(open(fn).read().rstrip("\n"))
1111
1112 fn = os.path.join(sourcedir, "base")
1113 if os.access(fn, os.F_OK):
1114 cmd.append("--base")
1115 cmd.append(open(fn).read().rstrip("\n"))
1116
Ying Wang4de6b5b2010-08-25 14:29:34 -07001117 fn = os.path.join(sourcedir, "pagesize")
1118 if os.access(fn, os.F_OK):
1119 cmd.append("--pagesize")
1120 cmd.append(open(fn).read().rstrip("\n"))
1121
Steve Mucklef84668e2020-03-16 19:13:46 -07001122 if partition_name == "recovery":
1123 args = info_dict.get("recovery_mkbootimg_args")
1124 else:
1125 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001126 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001127 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001128
Tao Bao76def242017-11-21 09:25:31 -08001129 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +00001130 if args and args.strip():
1131 cmd.extend(shlex.split(args))
1132
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001133 if has_ramdisk:
1134 cmd.extend(["--ramdisk", ramdisk_img.name])
1135
Tao Baod95e9fd2015-03-29 23:07:41 -07001136 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001137 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001138 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001139 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001140 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001141 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001142
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001143 if partition_name == "recovery":
1144 if info_dict.get("include_recovery_dtbo") == "true":
1145 fn = os.path.join(sourcedir, "recovery_dtbo")
1146 cmd.extend(["--recovery_dtbo", fn])
1147 if info_dict.get("include_recovery_acpio") == "true":
1148 fn = os.path.join(sourcedir, "recovery_acpio")
1149 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001150
Tao Bao986ee862018-10-04 15:46:16 -07001151 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001152
Tao Bao76def242017-11-21 09:25:31 -08001153 if (info_dict.get("boot_signer") == "true" and
1154 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001155 # Hard-code the path as "/boot" for two-step special recovery image (which
1156 # will be loaded into /boot during the two-step OTA).
1157 if two_step_image:
1158 path = "/boot"
1159 else:
Tao Baobf70c312017-07-11 17:27:55 -07001160 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001161 cmd = [OPTIONS.boot_signer_path]
1162 cmd.extend(OPTIONS.boot_signer_args)
1163 cmd.extend([path, img.name,
1164 info_dict["verity_key"] + ".pk8",
1165 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001166 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001167
Tao Baod95e9fd2015-03-29 23:07:41 -07001168 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001169 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001170 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001171 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001172 # We have switched from the prebuilt futility binary to using the tool
1173 # (futility-host) built from the source. Override the setting in the old
1174 # TF.zip.
1175 futility = info_dict["futility"]
1176 if futility.startswith("prebuilts/"):
1177 futility = "futility-host"
1178 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001179 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001180 info_dict["vboot_key"] + ".vbprivk",
1181 info_dict["vboot_subkey"] + ".vbprivk",
1182 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001183 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001184 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001185
Tao Baof3282b42015-04-01 11:21:55 -07001186 # Clean up the temp files.
1187 img_unsigned.close()
1188 img_keyblock.close()
1189
David Zeuthen8fecb282017-12-01 16:24:01 -05001190 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001191 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001192 avbtool = info_dict["avb_avbtool"]
David Zeuthen8fecb282017-12-01 16:24:01 -05001193 part_size = info_dict[partition_name + "_size"]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001194 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001195 "--partition_size", str(part_size), "--partition_name",
1196 partition_name]
1197 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001198 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001199 if args and args.strip():
1200 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001201 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001202
1203 img.seek(os.SEEK_SET, 0)
1204 data = img.read()
1205
1206 if has_ramdisk:
1207 ramdisk_img.close()
1208 img.close()
1209
1210 return data
1211
1212
Doug Zongkerd5131602012-08-02 14:46:42 -07001213def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001214 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001215 """Return a File object with the desired bootable image.
1216
1217 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1218 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1219 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001220
Doug Zongker55d93282011-01-25 17:03:34 -08001221 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1222 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001223 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001224 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001225
1226 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1227 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001228 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001229 return File.FromLocalFile(name, prebuilt_path)
1230
Tao Bao32fcdab2018-10-12 10:30:39 -07001231 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001232
1233 if info_dict is None:
1234 info_dict = OPTIONS.info_dict
1235
1236 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -08001237 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
1238 # for recovery.
1239 has_ramdisk = (info_dict.get("system_root_image") != "true" or
1240 prebuilt_name != "boot.img" or
1241 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001242
Doug Zongker6f1d0312014-08-22 08:07:12 -07001243 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001244 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001245 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001246 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001247 if data:
1248 return File(name, data)
1249 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001250
Doug Zongkereef39442009-04-02 12:14:19 -07001251
Steve Mucklee1b10862019-07-10 10:49:37 -07001252def _BuildVendorBootImage(sourcedir, info_dict=None):
1253 """Build a vendor boot image from the specified sourcedir.
1254
1255 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1256 turn them into a vendor boot image.
1257
1258 Return the image data, or None if sourcedir does not appear to contains files
1259 for building the requested image.
1260 """
1261
1262 if info_dict is None:
1263 info_dict = OPTIONS.info_dict
1264
1265 img = tempfile.NamedTemporaryFile()
1266
1267 ramdisk_img = _MakeRamdisk(sourcedir)
1268
1269 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1270 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1271
1272 cmd = [mkbootimg]
1273
1274 fn = os.path.join(sourcedir, "dtb")
1275 if os.access(fn, os.F_OK):
1276 cmd.append("--dtb")
1277 cmd.append(fn)
1278
1279 fn = os.path.join(sourcedir, "vendor_cmdline")
1280 if os.access(fn, os.F_OK):
1281 cmd.append("--vendor_cmdline")
1282 cmd.append(open(fn).read().rstrip("\n"))
1283
1284 fn = os.path.join(sourcedir, "base")
1285 if os.access(fn, os.F_OK):
1286 cmd.append("--base")
1287 cmd.append(open(fn).read().rstrip("\n"))
1288
1289 fn = os.path.join(sourcedir, "pagesize")
1290 if os.access(fn, os.F_OK):
1291 cmd.append("--pagesize")
1292 cmd.append(open(fn).read().rstrip("\n"))
1293
1294 args = info_dict.get("mkbootimg_args")
1295 if args and args.strip():
1296 cmd.extend(shlex.split(args))
1297
1298 args = info_dict.get("mkbootimg_version_args")
1299 if args and args.strip():
1300 cmd.extend(shlex.split(args))
1301
1302 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1303 cmd.extend(["--vendor_boot", img.name])
1304
1305 RunAndCheckOutput(cmd)
1306
1307 # AVB: if enabled, calculate and add hash.
1308 if info_dict.get("avb_enable") == "true":
1309 avbtool = info_dict["avb_avbtool"]
1310 part_size = info_dict["vendor_boot_size"]
1311 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001312 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001313 AppendAVBSigningArgs(cmd, "vendor_boot")
1314 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1315 if args and args.strip():
1316 cmd.extend(shlex.split(args))
1317 RunAndCheckOutput(cmd)
1318
1319 img.seek(os.SEEK_SET, 0)
1320 data = img.read()
1321
1322 ramdisk_img.close()
1323 img.close()
1324
1325 return data
1326
1327
1328def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1329 info_dict=None):
1330 """Return a File object with the desired vendor boot image.
1331
1332 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1333 the source files in 'unpack_dir'/'tree_subdir'."""
1334
1335 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1336 if os.path.exists(prebuilt_path):
1337 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1338 return File.FromLocalFile(name, prebuilt_path)
1339
1340 logger.info("building image from target_files %s...", tree_subdir)
1341
1342 if info_dict is None:
1343 info_dict = OPTIONS.info_dict
1344
1345 data = _BuildVendorBootImage(os.path.join(unpack_dir, tree_subdir), info_dict)
1346 if data:
1347 return File(name, data)
1348 return None
1349
1350
Narayan Kamatha07bf042017-08-14 14:49:21 +01001351def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001352 """Gunzips the given gzip compressed file to a given output file."""
1353 with gzip.open(in_filename, "rb") as in_file, \
1354 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001355 shutil.copyfileobj(in_file, out_file)
1356
1357
Tao Bao0ff15de2019-03-20 11:26:06 -07001358def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001359 """Unzips the archive to the given directory.
1360
1361 Args:
1362 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001363 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001364 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1365 archvie. Non-matching patterns will be filtered out. If there's no match
1366 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001367 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001368 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001369 if patterns is not None:
1370 # Filter out non-matching patterns. unzip will complain otherwise.
1371 with zipfile.ZipFile(filename) as input_zip:
1372 names = input_zip.namelist()
1373 filtered = [
1374 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1375
1376 # There isn't any matching files. Don't unzip anything.
1377 if not filtered:
1378 return
1379 cmd.extend(filtered)
1380
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001381 RunAndCheckOutput(cmd)
1382
1383
Doug Zongker75f17362009-12-08 13:46:44 -08001384def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001385 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001386
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001387 Args:
1388 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1389 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1390
1391 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1392 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001393
Tao Bao1c830bf2017-12-25 10:43:47 -08001394 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001395 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001396 """
Doug Zongkereef39442009-04-02 12:14:19 -07001397
Tao Bao1c830bf2017-12-25 10:43:47 -08001398 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001399 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1400 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001401 UnzipToDir(m.group(1), tmp, pattern)
1402 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001403 filename = m.group(1)
1404 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001405 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001406
Tao Baodba59ee2018-01-09 13:21:02 -08001407 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001408
1409
Yifan Hong8a66a712019-04-04 15:37:57 -07001410def GetUserImage(which, tmpdir, input_zip,
1411 info_dict=None,
1412 allow_shared_blocks=None,
1413 hashtree_info_generator=None,
1414 reset_file_map=False):
1415 """Returns an Image object suitable for passing to BlockImageDiff.
1416
1417 This function loads the specified image from the given path. If the specified
1418 image is sparse, it also performs additional processing for OTA purpose. For
1419 example, it always adds block 0 to clobbered blocks list. It also detects
1420 files that cannot be reconstructed from the block list, for whom we should
1421 avoid applying imgdiff.
1422
1423 Args:
1424 which: The partition name.
1425 tmpdir: The directory that contains the prebuilt image and block map file.
1426 input_zip: The target-files ZIP archive.
1427 info_dict: The dict to be looked up for relevant info.
1428 allow_shared_blocks: If image is sparse, whether having shared blocks is
1429 allowed. If none, it is looked up from info_dict.
1430 hashtree_info_generator: If present and image is sparse, generates the
1431 hashtree_info for this sparse image.
1432 reset_file_map: If true and image is sparse, reset file map before returning
1433 the image.
1434 Returns:
1435 A Image object. If it is a sparse image and reset_file_map is False, the
1436 image will have file_map info loaded.
1437 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001438 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07001439 info_dict = LoadInfoDict(input_zip)
1440
1441 is_sparse = info_dict.get("extfs_sparse_flag")
1442
1443 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
1444 # shared blocks (i.e. some blocks will show up in multiple files' block
1445 # list). We can only allocate such shared blocks to the first "owner", and
1446 # disable imgdiff for all later occurrences.
1447 if allow_shared_blocks is None:
1448 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
1449
1450 if is_sparse:
1451 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1452 hashtree_info_generator)
1453 if reset_file_map:
1454 img.ResetFileMap()
1455 return img
1456 else:
1457 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
1458
1459
1460def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
1461 """Returns a Image object suitable for passing to BlockImageDiff.
1462
1463 This function loads the specified non-sparse image from the given path.
1464
1465 Args:
1466 which: The partition name.
1467 tmpdir: The directory that contains the prebuilt image and block map file.
1468 Returns:
1469 A Image object.
1470 """
1471 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1472 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1473
1474 # The image and map files must have been created prior to calling
1475 # ota_from_target_files.py (since LMP).
1476 assert os.path.exists(path) and os.path.exists(mappath)
1477
Tianjie Xu41976c72019-07-03 13:57:01 -07001478 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
1479
Yifan Hong8a66a712019-04-04 15:37:57 -07001480
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001481def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1482 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08001483 """Returns a SparseImage object suitable for passing to BlockImageDiff.
1484
1485 This function loads the specified sparse image from the given path, and
1486 performs additional processing for OTA purpose. For example, it always adds
1487 block 0 to clobbered blocks list. It also detects files that cannot be
1488 reconstructed from the block list, for whom we should avoid applying imgdiff.
1489
1490 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07001491 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08001492 tmpdir: The directory that contains the prebuilt image and block map file.
1493 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08001494 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001495 hashtree_info_generator: If present, generates the hashtree_info for this
1496 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08001497 Returns:
1498 A SparseImage object, with file_map info loaded.
1499 """
Tao Baoc765cca2018-01-31 17:32:40 -08001500 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1501 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1502
1503 # The image and map files must have been created prior to calling
1504 # ota_from_target_files.py (since LMP).
1505 assert os.path.exists(path) and os.path.exists(mappath)
1506
1507 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
1508 # it to clobbered_blocks so that it will be written to the target
1509 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
1510 clobbered_blocks = "0"
1511
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001512 image = sparse_img.SparseImage(
1513 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
1514 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08001515
1516 # block.map may contain less blocks, because mke2fs may skip allocating blocks
1517 # if they contain all zeros. We can't reconstruct such a file from its block
1518 # list. Tag such entries accordingly. (Bug: 65213616)
1519 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08001520 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07001521 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08001522 continue
1523
Tom Cherryd14b8952018-08-09 14:26:00 -07001524 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
1525 # filename listed in system.map may contain an additional leading slash
1526 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
1527 # results.
Tao Baoda30cfa2017-12-01 16:19:46 -08001528 arcname = entry.replace(which, which.upper(), 1).lstrip('/')
Tao Baod3554e62018-07-10 15:31:22 -07001529
Tom Cherryd14b8952018-08-09 14:26:00 -07001530 # Special handling another case, where files not under /system
1531 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
Tao Baod3554e62018-07-10 15:31:22 -07001532 if which == 'system' and not arcname.startswith('SYSTEM'):
1533 arcname = 'ROOT/' + arcname
1534
1535 assert arcname in input_zip.namelist(), \
1536 "Failed to find the ZIP entry for {}".format(entry)
1537
Tao Baoc765cca2018-01-31 17:32:40 -08001538 info = input_zip.getinfo(arcname)
1539 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08001540
1541 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08001542 # image, check the original block list to determine its completeness. Note
1543 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08001544 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08001545 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08001546
Tao Baoc765cca2018-01-31 17:32:40 -08001547 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
1548 ranges.extra['incomplete'] = True
1549
1550 return image
1551
1552
Doug Zongkereef39442009-04-02 12:14:19 -07001553def GetKeyPasswords(keylist):
1554 """Given a list of keys, prompt the user to enter passwords for
1555 those which require them. Return a {key: password} dict. password
1556 will be None if the key has no password."""
1557
Doug Zongker8ce7c252009-05-22 13:34:54 -07001558 no_passwords = []
1559 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07001560 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07001561 devnull = open("/dev/null", "w+b")
1562 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001563 # We don't need a password for things that aren't really keys.
1564 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001565 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07001566 continue
1567
T.R. Fullhart37e10522013-03-18 10:31:26 -07001568 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07001569 "-inform", "DER", "-nocrypt"],
1570 stdin=devnull.fileno(),
1571 stdout=devnull.fileno(),
1572 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07001573 p.communicate()
1574 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001575 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07001576 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001577 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001578 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
1579 "-inform", "DER", "-passin", "pass:"],
1580 stdin=devnull.fileno(),
1581 stdout=devnull.fileno(),
1582 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07001583 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07001584 if p.returncode == 0:
1585 # Encrypted key with empty string as password.
1586 key_passwords[k] = ''
1587 elif stderr.startswith('Error decrypting key'):
1588 # Definitely encrypted key.
1589 # It would have said "Error reading key" if it didn't parse correctly.
1590 need_passwords.append(k)
1591 else:
1592 # Potentially, a type of key that openssl doesn't understand.
1593 # We'll let the routines in signapk.jar handle it.
1594 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001595 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07001596
T.R. Fullhart37e10522013-03-18 10:31:26 -07001597 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08001598 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07001599 return key_passwords
1600
1601
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001602def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07001603 """Gets the minSdkVersion declared in the APK.
1604
changho.shin0f125362019-07-08 10:59:00 +09001605 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07001606 This can be both a decimal number (API Level) or a codename.
1607
1608 Args:
1609 apk_name: The APK filename.
1610
1611 Returns:
1612 The parsed SDK version string.
1613
1614 Raises:
1615 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001616 """
Tao Baof47bf0f2018-03-21 23:28:51 -07001617 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09001618 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07001619 stderr=subprocess.PIPE)
1620 stdoutdata, stderrdata = proc.communicate()
1621 if proc.returncode != 0:
1622 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09001623 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07001624 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001625
Tao Baof47bf0f2018-03-21 23:28:51 -07001626 for line in stdoutdata.split("\n"):
1627 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001628 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
1629 if m:
1630 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09001631 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001632
1633
1634def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07001635 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001636
Tao Baof47bf0f2018-03-21 23:28:51 -07001637 If minSdkVersion is set to a codename, it is translated to a number using the
1638 provided map.
1639
1640 Args:
1641 apk_name: The APK filename.
1642
1643 Returns:
1644 The parsed SDK version number.
1645
1646 Raises:
1647 ExternalError: On failing to get the min SDK version number.
1648 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001649 version = GetMinSdkVersion(apk_name)
1650 try:
1651 return int(version)
1652 except ValueError:
1653 # Not a decimal number. Codename?
1654 if version in codename_to_api_level_map:
1655 return codename_to_api_level_map[version]
1656 else:
Tao Baof47bf0f2018-03-21 23:28:51 -07001657 raise ExternalError(
1658 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
1659 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001660
1661
1662def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07001663 codename_to_api_level_map=None, whole_file=False,
1664 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07001665 """Sign the input_name zip/jar/apk, producing output_name. Use the
1666 given key and password (the latter may be None if the key does not
1667 have a password.
1668
Doug Zongker951495f2009-08-14 12:44:19 -07001669 If whole_file is true, use the "-w" option to SignApk to embed a
1670 signature that covers the whole file in the archive comment of the
1671 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001672
1673 min_api_level is the API Level (int) of the oldest platform this file may end
1674 up on. If not specified for an APK, the API Level is obtained by interpreting
1675 the minSdkVersion attribute of the APK's AndroidManifest.xml.
1676
1677 codename_to_api_level_map is needed to translate the codename which may be
1678 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07001679
1680 Caller may optionally specify extra args to be passed to SignApk, which
1681 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07001682 """
Tao Bao76def242017-11-21 09:25:31 -08001683 if codename_to_api_level_map is None:
1684 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07001685 if extra_signapk_args is None:
1686 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07001687
Alex Klyubin9667b182015-12-10 13:38:50 -08001688 java_library_path = os.path.join(
1689 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
1690
Tao Baoe95540e2016-11-08 12:08:53 -08001691 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
1692 ["-Djava.library.path=" + java_library_path,
1693 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07001694 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07001695 if whole_file:
1696 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001697
1698 min_sdk_version = min_api_level
1699 if min_sdk_version is None:
1700 if not whole_file:
1701 min_sdk_version = GetMinSdkVersionInt(
1702 input_name, codename_to_api_level_map)
1703 if min_sdk_version is not None:
1704 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
1705
T.R. Fullhart37e10522013-03-18 10:31:26 -07001706 cmd.extend([key + OPTIONS.public_key_suffix,
1707 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08001708 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07001709
Tao Bao73dd4f42018-10-04 16:25:33 -07001710 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07001711 if password is not None:
1712 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07001713 stdoutdata, _ = proc.communicate(password)
1714 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07001715 raise ExternalError(
1716 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07001717 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07001718
Doug Zongkereef39442009-04-02 12:14:19 -07001719
Doug Zongker37974732010-09-16 17:44:38 -07001720def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08001721 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07001722
Tao Bao9dd909e2017-11-14 11:27:32 -08001723 For non-AVB images, raise exception if the data is too big. Print a warning
1724 if the data is nearing the maximum size.
1725
1726 For AVB images, the actual image size should be identical to the limit.
1727
1728 Args:
1729 data: A string that contains all the data for the partition.
1730 target: The partition name. The ".img" suffix is optional.
1731 info_dict: The dict to be looked up for relevant info.
1732 """
Dan Albert8b72aef2015-03-23 19:13:21 -07001733 if target.endswith(".img"):
1734 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001735 mount_point = "/" + target
1736
Ying Wangf8824af2014-06-03 14:07:27 -07001737 fs_type = None
1738 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001739 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07001740 if mount_point == "/userdata":
1741 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001742 p = info_dict["fstab"][mount_point]
1743 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08001744 device = p.device
1745 if "/" in device:
1746 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08001747 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07001748 if not fs_type or not limit:
1749 return
Doug Zongkereef39442009-04-02 12:14:19 -07001750
Andrew Boie0f9aec82012-02-14 09:32:52 -08001751 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08001752 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
1753 # path.
1754 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
1755 if size != limit:
1756 raise ExternalError(
1757 "Mismatching image size for %s: expected %d actual %d" % (
1758 target, limit, size))
1759 else:
1760 pct = float(size) * 100.0 / limit
1761 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
1762 if pct >= 99.0:
1763 raise ExternalError(msg)
1764 elif pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07001765 logger.warning("\n WARNING: %s\n", msg)
1766 else:
1767 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07001768
1769
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001770def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08001771 """Parses the APK certs info from a given target-files zip.
1772
1773 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
1774 tuple with the following elements: (1) a dictionary that maps packages to
1775 certs (based on the "certificate" and "private_key" attributes in the file;
1776 (2) a string representing the extension of compressed APKs in the target files
1777 (e.g ".gz", ".bro").
1778
1779 Args:
1780 tf_zip: The input target_files ZipFile (already open).
1781
1782 Returns:
1783 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
1784 the extension string of compressed APKs (e.g. ".gz"), or None if there's
1785 no compressed APKs.
1786 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001787 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01001788 compressed_extension = None
1789
Tao Bao0f990332017-09-08 19:02:54 -07001790 # META/apkcerts.txt contains the info for _all_ the packages known at build
1791 # time. Filter out the ones that are not installed.
1792 installed_files = set()
1793 for name in tf_zip.namelist():
1794 basename = os.path.basename(name)
1795 if basename:
1796 installed_files.add(basename)
1797
Tao Baoda30cfa2017-12-01 16:19:46 -08001798 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001799 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001800 if not line:
1801 continue
Tao Bao818ddf52018-01-05 11:17:34 -08001802 m = re.match(
1803 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07001804 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
1805 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08001806 line)
1807 if not m:
1808 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01001809
Tao Bao818ddf52018-01-05 11:17:34 -08001810 matches = m.groupdict()
1811 cert = matches["CERT"]
1812 privkey = matches["PRIVKEY"]
1813 name = matches["NAME"]
1814 this_compressed_extension = matches["COMPRESSED"]
1815
1816 public_key_suffix_len = len(OPTIONS.public_key_suffix)
1817 private_key_suffix_len = len(OPTIONS.private_key_suffix)
1818 if cert in SPECIAL_CERT_STRINGS and not privkey:
1819 certmap[name] = cert
1820 elif (cert.endswith(OPTIONS.public_key_suffix) and
1821 privkey.endswith(OPTIONS.private_key_suffix) and
1822 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
1823 certmap[name] = cert[:-public_key_suffix_len]
1824 else:
1825 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
1826
1827 if not this_compressed_extension:
1828 continue
1829
1830 # Only count the installed files.
1831 filename = name + '.' + this_compressed_extension
1832 if filename not in installed_files:
1833 continue
1834
1835 # Make sure that all the values in the compression map have the same
1836 # extension. We don't support multiple compression methods in the same
1837 # system image.
1838 if compressed_extension:
1839 if this_compressed_extension != compressed_extension:
1840 raise ValueError(
1841 "Multiple compressed extensions: {} vs {}".format(
1842 compressed_extension, this_compressed_extension))
1843 else:
1844 compressed_extension = this_compressed_extension
1845
1846 return (certmap,
1847 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001848
1849
Doug Zongkereef39442009-04-02 12:14:19 -07001850COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07001851Global options
1852
1853 -p (--path) <dir>
1854 Prepend <dir>/bin to the list of places to search for binaries run by this
1855 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07001856
Doug Zongker05d3dea2009-06-22 11:32:31 -07001857 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07001858 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07001859
Tao Bao30df8b42018-04-23 15:32:53 -07001860 -x (--extra) <key=value>
1861 Add a key/value pair to the 'extras' dict, which device-specific extension
1862 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08001863
Doug Zongkereef39442009-04-02 12:14:19 -07001864 -v (--verbose)
1865 Show command lines being executed.
1866
1867 -h (--help)
1868 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07001869
1870 --logfile <file>
1871 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07001872"""
1873
1874def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08001875 print(docstring.rstrip("\n"))
1876 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07001877
1878
1879def ParseOptions(argv,
1880 docstring,
1881 extra_opts="", extra_long_opts=(),
1882 extra_option_handler=None):
1883 """Parse the options in argv and return any arguments that aren't
1884 flags. docstring is the calling module's docstring, to be displayed
1885 for errors and -h. extra_opts and extra_long_opts are for flags
1886 defined by the caller, which are processed by passing them to
1887 extra_option_handler."""
1888
1889 try:
1890 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08001891 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08001892 ["help", "verbose", "path=", "signapk_path=",
1893 "signapk_shared_library_path=", "extra_signapk_args=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08001894 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07001895 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
1896 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Tianjie0f307452020-04-01 12:20:21 -07001897 "extra=", "logfile=", "aftl_tool_path=", "aftl_server=",
1898 "aftl_key_path=", "aftl_manufacturer_key_path=",
1899 "aftl_signer_helper="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07001900 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07001901 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08001902 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07001903 sys.exit(2)
1904
Doug Zongkereef39442009-04-02 12:14:19 -07001905 for o, a in opts:
1906 if o in ("-h", "--help"):
1907 Usage(docstring)
1908 sys.exit()
1909 elif o in ("-v", "--verbose"):
1910 OPTIONS.verbose = True
1911 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07001912 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001913 elif o in ("--signapk_path",):
1914 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08001915 elif o in ("--signapk_shared_library_path",):
1916 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001917 elif o in ("--extra_signapk_args",):
1918 OPTIONS.extra_signapk_args = shlex.split(a)
1919 elif o in ("--java_path",):
1920 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07001921 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08001922 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08001923 elif o in ("--android_jar_path",):
1924 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001925 elif o in ("--public_key_suffix",):
1926 OPTIONS.public_key_suffix = a
1927 elif o in ("--private_key_suffix",):
1928 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08001929 elif o in ("--boot_signer_path",):
1930 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07001931 elif o in ("--boot_signer_args",):
1932 OPTIONS.boot_signer_args = shlex.split(a)
1933 elif o in ("--verity_signer_path",):
1934 OPTIONS.verity_signer_path = a
1935 elif o in ("--verity_signer_args",):
1936 OPTIONS.verity_signer_args = shlex.split(a)
Tianjie0f307452020-04-01 12:20:21 -07001937 elif o in ("--aftl_tool_path",):
1938 OPTIONS.aftl_tool_path = a
Dan Austin52903642019-12-12 15:44:00 -08001939 elif o in ("--aftl_server",):
1940 OPTIONS.aftl_server = a
1941 elif o in ("--aftl_key_path",):
1942 OPTIONS.aftl_key_path = a
1943 elif o in ("--aftl_manufacturer_key_path",):
1944 OPTIONS.aftl_manufacturer_key_path = a
1945 elif o in ("--aftl_signer_helper",):
1946 OPTIONS.aftl_signer_helper = a
Doug Zongker05d3dea2009-06-22 11:32:31 -07001947 elif o in ("-s", "--device_specific"):
1948 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08001949 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08001950 key, value = a.split("=", 1)
1951 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07001952 elif o in ("--logfile",):
1953 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07001954 else:
1955 if extra_option_handler is None or not extra_option_handler(o, a):
1956 assert False, "unknown option \"%s\"" % (o,)
1957
Doug Zongker85448772014-09-09 14:59:20 -07001958 if OPTIONS.search_path:
1959 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
1960 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07001961
1962 return args
1963
1964
Tao Bao4c851b12016-09-19 13:54:38 -07001965def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07001966 """Make a temp file and add it to the list of things to be deleted
1967 when Cleanup() is called. Return the filename."""
1968 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
1969 os.close(fd)
1970 OPTIONS.tempfiles.append(fn)
1971 return fn
1972
1973
Tao Bao1c830bf2017-12-25 10:43:47 -08001974def MakeTempDir(prefix='tmp', suffix=''):
1975 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
1976
1977 Returns:
1978 The absolute pathname of the new directory.
1979 """
1980 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
1981 OPTIONS.tempfiles.append(dir_name)
1982 return dir_name
1983
1984
Doug Zongkereef39442009-04-02 12:14:19 -07001985def Cleanup():
1986 for i in OPTIONS.tempfiles:
1987 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08001988 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07001989 else:
1990 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08001991 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07001992
1993
1994class PasswordManager(object):
1995 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08001996 self.editor = os.getenv("EDITOR")
1997 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001998
1999 def GetPasswords(self, items):
2000 """Get passwords corresponding to each string in 'items',
2001 returning a dict. (The dict may have keys in addition to the
2002 values in 'items'.)
2003
2004 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2005 user edit that file to add more needed passwords. If no editor is
2006 available, or $ANDROID_PW_FILE isn't define, prompts the user
2007 interactively in the ordinary way.
2008 """
2009
2010 current = self.ReadFile()
2011
2012 first = True
2013 while True:
2014 missing = []
2015 for i in items:
2016 if i not in current or not current[i]:
2017 missing.append(i)
2018 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002019 if not missing:
2020 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002021
2022 for i in missing:
2023 current[i] = ""
2024
2025 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002026 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002027 if sys.version_info[0] >= 3:
2028 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002029 answer = raw_input("try to edit again? [y]> ").strip()
2030 if answer and answer[0] not in 'yY':
2031 raise RuntimeError("key passwords unavailable")
2032 first = False
2033
2034 current = self.UpdateAndReadFile(current)
2035
Dan Albert8b72aef2015-03-23 19:13:21 -07002036 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002037 """Prompt the user to enter a value (password) for each key in
2038 'current' whose value is fales. Returns a new dict with all the
2039 values.
2040 """
2041 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002042 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002043 if v:
2044 result[k] = v
2045 else:
2046 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002047 result[k] = getpass.getpass(
2048 "Enter password for %s key> " % k).strip()
2049 if result[k]:
2050 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002051 return result
2052
2053 def UpdateAndReadFile(self, current):
2054 if not self.editor or not self.pwfile:
2055 return self.PromptResult(current)
2056
2057 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002058 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002059 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2060 f.write("# (Additional spaces are harmless.)\n\n")
2061
2062 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002063 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002064 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002065 f.write("[[[ %s ]]] %s\n" % (v, k))
2066 if not v and first_line is None:
2067 # position cursor on first line with no password.
2068 first_line = i + 4
2069 f.close()
2070
Tao Bao986ee862018-10-04 15:46:16 -07002071 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002072
2073 return self.ReadFile()
2074
2075 def ReadFile(self):
2076 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002077 if self.pwfile is None:
2078 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002079 try:
2080 f = open(self.pwfile, "r")
2081 for line in f:
2082 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002083 if not line or line[0] == '#':
2084 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002085 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2086 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002087 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002088 else:
2089 result[m.group(2)] = m.group(1)
2090 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002091 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002092 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002093 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002094 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002095
2096
Dan Albert8e0178d2015-01-27 15:53:15 -08002097def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2098 compress_type=None):
2099 import datetime
2100
2101 # http://b/18015246
2102 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2103 # for files larger than 2GiB. We can work around this by adjusting their
2104 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2105 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2106 # it isn't clear to me exactly what circumstances cause this).
2107 # `zipfile.write()` must be used directly to work around this.
2108 #
2109 # This mess can be avoided if we port to python3.
2110 saved_zip64_limit = zipfile.ZIP64_LIMIT
2111 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2112
2113 if compress_type is None:
2114 compress_type = zip_file.compression
2115 if arcname is None:
2116 arcname = filename
2117
2118 saved_stat = os.stat(filename)
2119
2120 try:
2121 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2122 # file to be zipped and reset it when we're done.
2123 os.chmod(filename, perms)
2124
2125 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002126 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2127 # intentional. zip stores datetimes in local time without a time zone
2128 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2129 # in the zip archive.
2130 local_epoch = datetime.datetime.fromtimestamp(0)
2131 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002132 os.utime(filename, (timestamp, timestamp))
2133
2134 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2135 finally:
2136 os.chmod(filename, saved_stat.st_mode)
2137 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2138 zipfile.ZIP64_LIMIT = saved_zip64_limit
2139
2140
Tao Bao58c1b962015-05-20 09:32:18 -07002141def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002142 compress_type=None):
2143 """Wrap zipfile.writestr() function to work around the zip64 limit.
2144
2145 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2146 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2147 when calling crc32(bytes).
2148
2149 But it still works fine to write a shorter string into a large zip file.
2150 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2151 when we know the string won't be too long.
2152 """
2153
2154 saved_zip64_limit = zipfile.ZIP64_LIMIT
2155 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2156
2157 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2158 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002159 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002160 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002161 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002162 else:
Tao Baof3282b42015-04-01 11:21:55 -07002163 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002164 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2165 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2166 # such a case (since
2167 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2168 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2169 # permission bits. We follow the logic in Python 3 to get consistent
2170 # behavior between using the two versions.
2171 if not zinfo.external_attr:
2172 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002173
2174 # If compress_type is given, it overrides the value in zinfo.
2175 if compress_type is not None:
2176 zinfo.compress_type = compress_type
2177
Tao Bao58c1b962015-05-20 09:32:18 -07002178 # If perms is given, it has a priority.
2179 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002180 # If perms doesn't set the file type, mark it as a regular file.
2181 if perms & 0o770000 == 0:
2182 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002183 zinfo.external_attr = perms << 16
2184
Tao Baof3282b42015-04-01 11:21:55 -07002185 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002186 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2187
Dan Albert8b72aef2015-03-23 19:13:21 -07002188 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002189 zipfile.ZIP64_LIMIT = saved_zip64_limit
2190
2191
Tao Bao89d7ab22017-12-14 17:05:33 -08002192def ZipDelete(zip_filename, entries):
2193 """Deletes entries from a ZIP file.
2194
2195 Since deleting entries from a ZIP file is not supported, it shells out to
2196 'zip -d'.
2197
2198 Args:
2199 zip_filename: The name of the ZIP file.
2200 entries: The name of the entry, or the list of names to be deleted.
2201
2202 Raises:
2203 AssertionError: In case of non-zero return from 'zip'.
2204 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002205 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002206 entries = [entries]
2207 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002208 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002209
2210
Tao Baof3282b42015-04-01 11:21:55 -07002211def ZipClose(zip_file):
2212 # http://b/18015246
2213 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2214 # central directory.
2215 saved_zip64_limit = zipfile.ZIP64_LIMIT
2216 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2217
2218 zip_file.close()
2219
2220 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002221
2222
2223class DeviceSpecificParams(object):
2224 module = None
2225 def __init__(self, **kwargs):
2226 """Keyword arguments to the constructor become attributes of this
2227 object, which is passed to all functions in the device-specific
2228 module."""
Tao Bao38884282019-07-10 22:20:56 -07002229 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002230 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002231 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002232
2233 if self.module is None:
2234 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002235 if not path:
2236 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002237 try:
2238 if os.path.isdir(path):
2239 info = imp.find_module("releasetools", [path])
2240 else:
2241 d, f = os.path.split(path)
2242 b, x = os.path.splitext(f)
2243 if x == ".py":
2244 f = b
2245 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002246 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002247 self.module = imp.load_module("device_specific", *info)
2248 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002249 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002250
2251 def _DoCall(self, function_name, *args, **kwargs):
2252 """Call the named function in the device-specific module, passing
2253 the given args and kwargs. The first argument to the call will be
2254 the DeviceSpecific object itself. If there is no module, or the
2255 module does not define the function, return the value of the
2256 'default' kwarg (which itself defaults to None)."""
2257 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002258 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002259 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2260
2261 def FullOTA_Assertions(self):
2262 """Called after emitting the block of assertions at the top of a
2263 full OTA package. Implementations can add whatever additional
2264 assertions they like."""
2265 return self._DoCall("FullOTA_Assertions")
2266
Doug Zongkere5ff5902012-01-17 10:55:37 -08002267 def FullOTA_InstallBegin(self):
2268 """Called at the start of full OTA installation."""
2269 return self._DoCall("FullOTA_InstallBegin")
2270
Yifan Hong10c530d2018-12-27 17:34:18 -08002271 def FullOTA_GetBlockDifferences(self):
2272 """Called during full OTA installation and verification.
2273 Implementation should return a list of BlockDifference objects describing
2274 the update on each additional partitions.
2275 """
2276 return self._DoCall("FullOTA_GetBlockDifferences")
2277
Doug Zongker05d3dea2009-06-22 11:32:31 -07002278 def FullOTA_InstallEnd(self):
2279 """Called at the end of full OTA installation; typically this is
2280 used to install the image for the device's baseband processor."""
2281 return self._DoCall("FullOTA_InstallEnd")
2282
2283 def IncrementalOTA_Assertions(self):
2284 """Called after emitting the block of assertions at the top of an
2285 incremental OTA package. Implementations can add whatever
2286 additional assertions they like."""
2287 return self._DoCall("IncrementalOTA_Assertions")
2288
Doug Zongkere5ff5902012-01-17 10:55:37 -08002289 def IncrementalOTA_VerifyBegin(self):
2290 """Called at the start of the verification phase of incremental
2291 OTA installation; additional checks can be placed here to abort
2292 the script before any changes are made."""
2293 return self._DoCall("IncrementalOTA_VerifyBegin")
2294
Doug Zongker05d3dea2009-06-22 11:32:31 -07002295 def IncrementalOTA_VerifyEnd(self):
2296 """Called at the end of the verification phase of incremental OTA
2297 installation; additional checks can be placed here to abort the
2298 script before any changes are made."""
2299 return self._DoCall("IncrementalOTA_VerifyEnd")
2300
Doug Zongkere5ff5902012-01-17 10:55:37 -08002301 def IncrementalOTA_InstallBegin(self):
2302 """Called at the start of incremental OTA installation (after
2303 verification is complete)."""
2304 return self._DoCall("IncrementalOTA_InstallBegin")
2305
Yifan Hong10c530d2018-12-27 17:34:18 -08002306 def IncrementalOTA_GetBlockDifferences(self):
2307 """Called during incremental OTA installation and verification.
2308 Implementation should return a list of BlockDifference objects describing
2309 the update on each additional partitions.
2310 """
2311 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2312
Doug Zongker05d3dea2009-06-22 11:32:31 -07002313 def IncrementalOTA_InstallEnd(self):
2314 """Called at the end of incremental OTA installation; typically
2315 this is used to install the image for the device's baseband
2316 processor."""
2317 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002318
Tao Bao9bc6bb22015-11-09 16:58:28 -08002319 def VerifyOTA_Assertions(self):
2320 return self._DoCall("VerifyOTA_Assertions")
2321
Tao Bao76def242017-11-21 09:25:31 -08002322
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002323class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002324 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002325 self.name = name
2326 self.data = data
2327 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002328 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002329 self.sha1 = sha1(data).hexdigest()
2330
2331 @classmethod
2332 def FromLocalFile(cls, name, diskname):
2333 f = open(diskname, "rb")
2334 data = f.read()
2335 f.close()
2336 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002337
2338 def WriteToTemp(self):
2339 t = tempfile.NamedTemporaryFile()
2340 t.write(self.data)
2341 t.flush()
2342 return t
2343
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002344 def WriteToDir(self, d):
2345 with open(os.path.join(d, self.name), "wb") as fp:
2346 fp.write(self.data)
2347
Geremy Condra36bd3652014-02-06 19:45:10 -08002348 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002349 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002350
Tao Bao76def242017-11-21 09:25:31 -08002351
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002352DIFF_PROGRAM_BY_EXT = {
2353 ".gz" : "imgdiff",
2354 ".zip" : ["imgdiff", "-z"],
2355 ".jar" : ["imgdiff", "-z"],
2356 ".apk" : ["imgdiff", "-z"],
2357 ".img" : "imgdiff",
2358 }
2359
Tao Bao76def242017-11-21 09:25:31 -08002360
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002361class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002362 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002363 self.tf = tf
2364 self.sf = sf
2365 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002366 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002367
2368 def ComputePatch(self):
2369 """Compute the patch (as a string of data) needed to turn sf into
2370 tf. Returns the same tuple as GetPatch()."""
2371
2372 tf = self.tf
2373 sf = self.sf
2374
Doug Zongker24cd2802012-08-14 16:36:15 -07002375 if self.diff_program:
2376 diff_program = self.diff_program
2377 else:
2378 ext = os.path.splitext(tf.name)[1]
2379 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002380
2381 ttemp = tf.WriteToTemp()
2382 stemp = sf.WriteToTemp()
2383
2384 ext = os.path.splitext(tf.name)[1]
2385
2386 try:
2387 ptemp = tempfile.NamedTemporaryFile()
2388 if isinstance(diff_program, list):
2389 cmd = copy.copy(diff_program)
2390 else:
2391 cmd = [diff_program]
2392 cmd.append(stemp.name)
2393 cmd.append(ttemp.name)
2394 cmd.append(ptemp.name)
2395 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002396 err = []
2397 def run():
2398 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002399 if e:
2400 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002401 th = threading.Thread(target=run)
2402 th.start()
2403 th.join(timeout=300) # 5 mins
2404 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002405 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002406 p.terminate()
2407 th.join(5)
2408 if th.is_alive():
2409 p.kill()
2410 th.join()
2411
Tianjie Xua2a9f992018-01-05 15:15:54 -08002412 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002413 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002414 self.patch = None
2415 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002416 diff = ptemp.read()
2417 finally:
2418 ptemp.close()
2419 stemp.close()
2420 ttemp.close()
2421
2422 self.patch = diff
2423 return self.tf, self.sf, self.patch
2424
2425
2426 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08002427 """Returns a tuple of (target_file, source_file, patch_data).
2428
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002429 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08002430 computing the patch failed.
2431 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002432 return self.tf, self.sf, self.patch
2433
2434
2435def ComputeDifferences(diffs):
2436 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07002437 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002438
2439 # Do the largest files first, to try and reduce the long-pole effect.
2440 by_size = [(i.tf.size, i) for i in diffs]
2441 by_size.sort(reverse=True)
2442 by_size = [i[1] for i in by_size]
2443
2444 lock = threading.Lock()
2445 diff_iter = iter(by_size) # accessed under lock
2446
2447 def worker():
2448 try:
2449 lock.acquire()
2450 for d in diff_iter:
2451 lock.release()
2452 start = time.time()
2453 d.ComputePatch()
2454 dur = time.time() - start
2455 lock.acquire()
2456
2457 tf, sf, patch = d.GetPatch()
2458 if sf.name == tf.name:
2459 name = tf.name
2460 else:
2461 name = "%s (%s)" % (tf.name, sf.name)
2462 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07002463 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002464 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07002465 logger.info(
2466 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
2467 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002468 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07002469 except Exception:
2470 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002471 raise
2472
2473 # start worker threads; wait for them all to finish.
2474 threads = [threading.Thread(target=worker)
2475 for i in range(OPTIONS.worker_threads)]
2476 for th in threads:
2477 th.start()
2478 while threads:
2479 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07002480
2481
Dan Albert8b72aef2015-03-23 19:13:21 -07002482class BlockDifference(object):
2483 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07002484 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002485 self.tgt = tgt
2486 self.src = src
2487 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002488 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07002489 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002490
Tao Baodd2a5892015-03-12 12:32:37 -07002491 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08002492 version = max(
2493 int(i) for i in
2494 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08002495 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07002496 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07002497
Tianjie Xu41976c72019-07-03 13:57:01 -07002498 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
2499 version=self.version,
2500 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08002501 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002502 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08002503 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07002504 self.touched_src_ranges = b.touched_src_ranges
2505 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002506
Yifan Hong10c530d2018-12-27 17:34:18 -08002507 # On devices with dynamic partitions, for new partitions,
2508 # src is None but OPTIONS.source_info_dict is not.
2509 if OPTIONS.source_info_dict is None:
2510 is_dynamic_build = OPTIONS.info_dict.get(
2511 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002512 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07002513 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08002514 is_dynamic_build = OPTIONS.source_info_dict.get(
2515 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002516 is_dynamic_source = partition in shlex.split(
2517 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08002518
Yifan Hongbb2658d2019-01-25 12:30:58 -08002519 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08002520 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
2521
Yifan Hongbb2658d2019-01-25 12:30:58 -08002522 # For dynamic partitions builds, check partition list in both source
2523 # and target build because new partitions may be added, and existing
2524 # partitions may be removed.
2525 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
2526
Yifan Hong10c530d2018-12-27 17:34:18 -08002527 if is_dynamic:
2528 self.device = 'map_partition("%s")' % partition
2529 else:
2530 if OPTIONS.source_info_dict is None:
2531 _, device_path = GetTypeAndDevice("/" + partition, OPTIONS.info_dict)
2532 else:
2533 _, device_path = GetTypeAndDevice("/" + partition,
2534 OPTIONS.source_info_dict)
2535 self.device = '"%s"' % device_path
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002536
Tao Baod8d14be2016-02-04 14:26:02 -08002537 @property
2538 def required_cache(self):
2539 return self._required_cache
2540
Tao Bao76def242017-11-21 09:25:31 -08002541 def WriteScript(self, script, output_zip, progress=None,
2542 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002543 if not self.src:
2544 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08002545 script.Print("Patching %s image unconditionally..." % (self.partition,))
2546 else:
2547 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002548
Dan Albert8b72aef2015-03-23 19:13:21 -07002549 if progress:
2550 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002551 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08002552
2553 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08002554 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002555
Tao Bao9bc6bb22015-11-09 16:58:28 -08002556 def WriteStrictVerifyScript(self, script):
2557 """Verify all the blocks in the care_map, including clobbered blocks.
2558
2559 This differs from the WriteVerifyScript() function: a) it prints different
2560 error messages; b) it doesn't allow half-way updated images to pass the
2561 verification."""
2562
2563 partition = self.partition
2564 script.Print("Verifying %s..." % (partition,))
2565 ranges = self.tgt.care_map
2566 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002567 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002568 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
2569 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08002570 self.device, ranges_str,
2571 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08002572 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08002573 script.AppendExtra("")
2574
Tao Baod522bdc2016-04-12 15:53:16 -07002575 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00002576 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07002577
2578 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08002579 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00002580 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07002581
2582 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002583 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08002584 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07002585 ranges = self.touched_src_ranges
2586 expected_sha1 = self.touched_src_sha1
2587 else:
2588 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
2589 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07002590
2591 # No blocks to be checked, skipping.
2592 if not ranges:
2593 return
2594
Tao Bao5ece99d2015-05-12 11:42:31 -07002595 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002596 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002597 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08002598 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
2599 '"%s.patch.dat")) then' % (
2600 self.device, ranges_str, expected_sha1,
2601 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07002602 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07002603 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00002604
Tianjie Xufc3422a2015-12-15 11:53:59 -08002605 if self.version >= 4:
2606
2607 # Bug: 21124327
2608 # When generating incrementals for the system and vendor partitions in
2609 # version 4 or newer, explicitly check the first block (which contains
2610 # the superblock) of the partition to see if it's what we expect. If
2611 # this check fails, give an explicit log message about the partition
2612 # having been remounted R/W (the most likely explanation).
2613 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08002614 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08002615
2616 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07002617 if partition == "system":
2618 code = ErrorCode.SYSTEM_RECOVER_FAILURE
2619 else:
2620 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08002621 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08002622 'ifelse (block_image_recover({device}, "{ranges}") && '
2623 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08002624 'package_extract_file("{partition}.transfer.list"), '
2625 '"{partition}.new.dat", "{partition}.patch.dat"), '
2626 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07002627 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08002628 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07002629 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002630
Tao Baodd2a5892015-03-12 12:32:37 -07002631 # Abort the OTA update. Note that the incremental OTA cannot be applied
2632 # even if it may match the checksum of the target partition.
2633 # a) If version < 3, operations like move and erase will make changes
2634 # unconditionally and damage the partition.
2635 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08002636 else:
Tianjie Xu209db462016-05-24 17:34:52 -07002637 if partition == "system":
2638 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
2639 else:
2640 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
2641 script.AppendExtra((
2642 'abort("E%d: %s partition has unexpected contents");\n'
2643 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002644
Yifan Hong10c530d2018-12-27 17:34:18 -08002645 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07002646 partition = self.partition
2647 script.Print('Verifying the updated %s image...' % (partition,))
2648 # Unlike pre-install verification, clobbered_blocks should not be ignored.
2649 ranges = self.tgt.care_map
2650 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002651 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002652 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002653 self.device, ranges_str,
2654 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07002655
2656 # Bug: 20881595
2657 # Verify that extended blocks are really zeroed out.
2658 if self.tgt.extended:
2659 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002660 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002661 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002662 self.device, ranges_str,
2663 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07002664 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07002665 if partition == "system":
2666 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
2667 else:
2668 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07002669 script.AppendExtra(
2670 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002671 ' abort("E%d: %s partition has unexpected non-zero contents after '
2672 'OTA update");\n'
2673 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07002674 else:
2675 script.Print('Verified the updated %s image.' % (partition,))
2676
Tianjie Xu209db462016-05-24 17:34:52 -07002677 if partition == "system":
2678 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
2679 else:
2680 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
2681
Tao Bao5fcaaef2015-06-01 13:40:49 -07002682 script.AppendExtra(
2683 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002684 ' abort("E%d: %s partition has unexpected contents after OTA '
2685 'update");\n'
2686 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07002687
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002688 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08002689 ZipWrite(output_zip,
2690 '{}.transfer.list'.format(self.path),
2691 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002692
Tao Bao76def242017-11-21 09:25:31 -08002693 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
2694 # its size. Quailty 9 almost triples the compression time but doesn't
2695 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002696 # zip | brotli(quality 6) | brotli(quality 9)
2697 # compressed_size: 942M | 869M (~8% reduced) | 854M
2698 # compression_time: 75s | 265s | 719s
2699 # decompression_time: 15s | 25s | 25s
2700
2701 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01002702 brotli_cmd = ['brotli', '--quality=6',
2703 '--output={}.new.dat.br'.format(self.path),
2704 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002705 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07002706 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002707
2708 new_data_name = '{}.new.dat.br'.format(self.partition)
2709 ZipWrite(output_zip,
2710 '{}.new.dat.br'.format(self.path),
2711 new_data_name,
2712 compress_type=zipfile.ZIP_STORED)
2713 else:
2714 new_data_name = '{}.new.dat'.format(self.partition)
2715 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
2716
Dan Albert8e0178d2015-01-27 15:53:15 -08002717 ZipWrite(output_zip,
2718 '{}.patch.dat'.format(self.path),
2719 '{}.patch.dat'.format(self.partition),
2720 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002721
Tianjie Xu209db462016-05-24 17:34:52 -07002722 if self.partition == "system":
2723 code = ErrorCode.SYSTEM_UPDATE_FAILURE
2724 else:
2725 code = ErrorCode.VENDOR_UPDATE_FAILURE
2726
Yifan Hong10c530d2018-12-27 17:34:18 -08002727 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08002728 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002729 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002730 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002731 device=self.device, partition=self.partition,
2732 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07002733 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002734
Dan Albert8b72aef2015-03-23 19:13:21 -07002735 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00002736 data = source.ReadRangeSet(ranges)
2737 ctx = sha1()
2738
2739 for p in data:
2740 ctx.update(p)
2741
2742 return ctx.hexdigest()
2743
Tao Baoe9b61912015-07-09 17:37:49 -07002744 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
2745 """Return the hash value for all zero blocks."""
2746 zero_block = '\x00' * 4096
2747 ctx = sha1()
2748 for _ in range(num_blocks):
2749 ctx.update(zero_block)
2750
2751 return ctx.hexdigest()
2752
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002753
Tianjie Xu41976c72019-07-03 13:57:01 -07002754# Expose these two classes to support vendor-specific scripts
2755DataImage = images.DataImage
2756EmptyImage = images.EmptyImage
2757
Tao Bao76def242017-11-21 09:25:31 -08002758
Doug Zongker96a57e72010-09-26 14:57:41 -07002759# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07002760PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07002761 "ext4": "EMMC",
2762 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07002763 "f2fs": "EMMC",
2764 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07002765}
Doug Zongker96a57e72010-09-26 14:57:41 -07002766
Tao Bao76def242017-11-21 09:25:31 -08002767
Doug Zongker96a57e72010-09-26 14:57:41 -07002768def GetTypeAndDevice(mount_point, info):
2769 fstab = info["fstab"]
2770 if fstab:
Dan Albert8b72aef2015-03-23 19:13:21 -07002771 return (PARTITION_TYPES[fstab[mount_point].fs_type],
2772 fstab[mount_point].device)
Doug Zongker96a57e72010-09-26 14:57:41 -07002773 else:
Dan Albert8b72aef2015-03-23 19:13:21 -07002774 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002775
2776
2777def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08002778 """Parses and converts a PEM-encoded certificate into DER-encoded.
2779
2780 This gives the same result as `openssl x509 -in <filename> -outform DER`.
2781
2782 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08002783 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08002784 """
2785 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002786 save = False
2787 for line in data.split("\n"):
2788 if "--END CERTIFICATE--" in line:
2789 break
2790 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08002791 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002792 if "--BEGIN CERTIFICATE--" in line:
2793 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08002794 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002795 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08002796
Tao Bao04e1f012018-02-04 12:13:35 -08002797
2798def ExtractPublicKey(cert):
2799 """Extracts the public key (PEM-encoded) from the given certificate file.
2800
2801 Args:
2802 cert: The certificate filename.
2803
2804 Returns:
2805 The public key string.
2806
2807 Raises:
2808 AssertionError: On non-zero return from 'openssl'.
2809 """
2810 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
2811 # While openssl 1.1 writes the key into the given filename followed by '-out',
2812 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
2813 # stdout instead.
2814 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
2815 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
2816 pubkey, stderrdata = proc.communicate()
2817 assert proc.returncode == 0, \
2818 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
2819 return pubkey
2820
2821
Tao Bao1ac886e2019-06-26 11:58:22 -07002822def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07002823 """Extracts the AVB public key from the given public or private key.
2824
2825 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07002826 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07002827 key: The input key file, which should be PEM-encoded public or private key.
2828
2829 Returns:
2830 The path to the extracted AVB public key file.
2831 """
2832 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
2833 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07002834 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07002835 return output
2836
2837
Doug Zongker412c02f2014-02-13 10:58:24 -08002838def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
2839 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08002840 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08002841
Tao Bao6d5d6232018-03-09 17:04:42 -08002842 Most of the space in the boot and recovery images is just the kernel, which is
2843 identical for the two, so the resulting patch should be efficient. Add it to
2844 the output zip, along with a shell script that is run from init.rc on first
2845 boot to actually do the patching and install the new recovery image.
2846
2847 Args:
2848 input_dir: The top-level input directory of the target-files.zip.
2849 output_sink: The callback function that writes the result.
2850 recovery_img: File object for the recovery image.
2851 boot_img: File objects for the boot image.
2852 info_dict: A dict returned by common.LoadInfoDict() on the input
2853 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08002854 """
Doug Zongker412c02f2014-02-13 10:58:24 -08002855 if info_dict is None:
2856 info_dict = OPTIONS.info_dict
2857
Tao Bao6d5d6232018-03-09 17:04:42 -08002858 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002859 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
2860
2861 if board_uses_vendorimage:
2862 # In this case, the output sink is rooted at VENDOR
2863 recovery_img_path = "etc/recovery.img"
2864 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
2865 sh_dir = "bin"
2866 else:
2867 # In this case the output sink is rooted at SYSTEM
2868 recovery_img_path = "vendor/etc/recovery.img"
2869 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
2870 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08002871
Tao Baof2cffbd2015-07-22 12:33:18 -07002872 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002873 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07002874
2875 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08002876 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002877 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08002878 # With system-root-image, boot and recovery images will have mismatching
2879 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
2880 # to handle such a case.
2881 if system_root_image:
2882 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07002883 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08002884 assert not os.path.exists(path)
2885 else:
2886 diff_program = ["imgdiff"]
2887 if os.path.exists(path):
2888 diff_program.append("-b")
2889 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07002890 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08002891 else:
2892 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07002893
2894 d = Difference(recovery_img, boot_img, diff_program=diff_program)
2895 _, _, patch = d.ComputePatch()
2896 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08002897
Dan Albertebb19aa2015-03-27 19:11:53 -07002898 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07002899 # The following GetTypeAndDevice()s need to use the path in the target
2900 # info_dict instead of source_info_dict.
Dan Albertebb19aa2015-03-27 19:11:53 -07002901 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict)
2902 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict)
2903 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07002904 return
Doug Zongkerc9253822014-02-04 12:17:58 -08002905
Tao Baof2cffbd2015-07-22 12:33:18 -07002906 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002907
2908 # Note that we use /vendor to refer to the recovery resources. This will
2909 # work for a separate vendor partition mounted at /vendor or a
2910 # /system/vendor subdirectory on the system partition, for which init will
2911 # create a symlink from /vendor to /system/vendor.
2912
2913 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002914if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
2915 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002916 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07002917 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
2918 log -t recovery "Installing new recovery image: succeeded" || \\
2919 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07002920else
2921 log -t recovery "Recovery image already installed"
2922fi
2923""" % {'type': recovery_type,
2924 'device': recovery_device,
2925 'sha1': recovery_img.sha1,
2926 'size': recovery_img.size}
2927 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07002928 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002929if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
2930 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002931 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07002932 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
2933 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
2934 log -t recovery "Installing new recovery image: succeeded" || \\
2935 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08002936else
2937 log -t recovery "Recovery image already installed"
2938fi
Dan Albert8b72aef2015-03-23 19:13:21 -07002939""" % {'boot_size': boot_img.size,
2940 'boot_sha1': boot_img.sha1,
2941 'recovery_size': recovery_img.size,
2942 'recovery_sha1': recovery_img.sha1,
2943 'boot_type': boot_type,
2944 'boot_device': boot_device,
2945 'recovery_type': recovery_type,
2946 'recovery_device': recovery_device,
2947 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08002948
Bill Peckhame868aec2019-09-17 17:06:47 -07002949 # The install script location moved from /system/etc to /system/bin in the L
2950 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
2951 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07002952
Tao Bao32fcdab2018-10-12 10:30:39 -07002953 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08002954
Tao Baoda30cfa2017-12-01 16:19:46 -08002955 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08002956
2957
2958class DynamicPartitionUpdate(object):
2959 def __init__(self, src_group=None, tgt_group=None, progress=None,
2960 block_difference=None):
2961 self.src_group = src_group
2962 self.tgt_group = tgt_group
2963 self.progress = progress
2964 self.block_difference = block_difference
2965
2966 @property
2967 def src_size(self):
2968 if not self.block_difference:
2969 return 0
2970 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
2971
2972 @property
2973 def tgt_size(self):
2974 if not self.block_difference:
2975 return 0
2976 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
2977
2978 @staticmethod
2979 def _GetSparseImageSize(img):
2980 if not img:
2981 return 0
2982 return img.blocksize * img.total_blocks
2983
2984
2985class DynamicGroupUpdate(object):
2986 def __init__(self, src_size=None, tgt_size=None):
2987 # None: group does not exist. 0: no size limits.
2988 self.src_size = src_size
2989 self.tgt_size = tgt_size
2990
2991
2992class DynamicPartitionsDifference(object):
2993 def __init__(self, info_dict, block_diffs, progress_dict=None,
2994 source_info_dict=None):
2995 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07002996 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002997
2998 self._remove_all_before_apply = False
2999 if source_info_dict is None:
3000 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003001 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003002
Tao Baof1113e92019-06-18 12:10:14 -07003003 block_diff_dict = collections.OrderedDict(
3004 [(e.partition, e) for e in block_diffs])
3005
Yifan Hong10c530d2018-12-27 17:34:18 -08003006 assert len(block_diff_dict) == len(block_diffs), \
3007 "Duplicated BlockDifference object for {}".format(
3008 [partition for partition, count in
3009 collections.Counter(e.partition for e in block_diffs).items()
3010 if count > 1])
3011
Yifan Hong79997e52019-01-23 16:56:19 -08003012 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003013
3014 for p, block_diff in block_diff_dict.items():
3015 self._partition_updates[p] = DynamicPartitionUpdate()
3016 self._partition_updates[p].block_difference = block_diff
3017
3018 for p, progress in progress_dict.items():
3019 if p in self._partition_updates:
3020 self._partition_updates[p].progress = progress
3021
3022 tgt_groups = shlex.split(info_dict.get(
3023 "super_partition_groups", "").strip())
3024 src_groups = shlex.split(source_info_dict.get(
3025 "super_partition_groups", "").strip())
3026
3027 for g in tgt_groups:
3028 for p in shlex.split(info_dict.get(
3029 "super_%s_partition_list" % g, "").strip()):
3030 assert p in self._partition_updates, \
3031 "{} is in target super_{}_partition_list but no BlockDifference " \
3032 "object is provided.".format(p, g)
3033 self._partition_updates[p].tgt_group = g
3034
3035 for g in src_groups:
3036 for p in shlex.split(source_info_dict.get(
3037 "super_%s_partition_list" % g, "").strip()):
3038 assert p in self._partition_updates, \
3039 "{} is in source super_{}_partition_list but no BlockDifference " \
3040 "object is provided.".format(p, g)
3041 self._partition_updates[p].src_group = g
3042
Yifan Hong45433e42019-01-18 13:55:25 -08003043 target_dynamic_partitions = set(shlex.split(info_dict.get(
3044 "dynamic_partition_list", "").strip()))
3045 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3046 if u.tgt_size)
3047 assert block_diffs_with_target == target_dynamic_partitions, \
3048 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3049 list(target_dynamic_partitions), list(block_diffs_with_target))
3050
3051 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3052 "dynamic_partition_list", "").strip()))
3053 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3054 if u.src_size)
3055 assert block_diffs_with_source == source_dynamic_partitions, \
3056 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3057 list(source_dynamic_partitions), list(block_diffs_with_source))
3058
Yifan Hong10c530d2018-12-27 17:34:18 -08003059 if self._partition_updates:
3060 logger.info("Updating dynamic partitions %s",
3061 self._partition_updates.keys())
3062
Yifan Hong79997e52019-01-23 16:56:19 -08003063 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003064
3065 for g in tgt_groups:
3066 self._group_updates[g] = DynamicGroupUpdate()
3067 self._group_updates[g].tgt_size = int(info_dict.get(
3068 "super_%s_group_size" % g, "0").strip())
3069
3070 for g in src_groups:
3071 if g not in self._group_updates:
3072 self._group_updates[g] = DynamicGroupUpdate()
3073 self._group_updates[g].src_size = int(source_info_dict.get(
3074 "super_%s_group_size" % g, "0").strip())
3075
3076 self._Compute()
3077
3078 def WriteScript(self, script, output_zip, write_verify_script=False):
3079 script.Comment('--- Start patching dynamic partitions ---')
3080 for p, u in self._partition_updates.items():
3081 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3082 script.Comment('Patch partition %s' % p)
3083 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3084 write_verify_script=False)
3085
3086 op_list_path = MakeTempFile()
3087 with open(op_list_path, 'w') as f:
3088 for line in self._op_list:
3089 f.write('{}\n'.format(line))
3090
3091 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3092
3093 script.Comment('Update dynamic partition metadata')
3094 script.AppendExtra('assert(update_dynamic_partitions('
3095 'package_extract_file("dynamic_partitions_op_list")));')
3096
3097 if write_verify_script:
3098 for p, u in self._partition_updates.items():
3099 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3100 u.block_difference.WritePostInstallVerifyScript(script)
3101 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3102
3103 for p, u in self._partition_updates.items():
3104 if u.tgt_size and u.src_size <= u.tgt_size:
3105 script.Comment('Patch partition %s' % p)
3106 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3107 write_verify_script=write_verify_script)
3108 if write_verify_script:
3109 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3110
3111 script.Comment('--- End patching dynamic partitions ---')
3112
3113 def _Compute(self):
3114 self._op_list = list()
3115
3116 def append(line):
3117 self._op_list.append(line)
3118
3119 def comment(line):
3120 self._op_list.append("# %s" % line)
3121
3122 if self._remove_all_before_apply:
3123 comment('Remove all existing dynamic partitions and groups before '
3124 'applying full OTA')
3125 append('remove_all_groups')
3126
3127 for p, u in self._partition_updates.items():
3128 if u.src_group and not u.tgt_group:
3129 append('remove %s' % p)
3130
3131 for p, u in self._partition_updates.items():
3132 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3133 comment('Move partition %s from %s to default' % (p, u.src_group))
3134 append('move %s default' % p)
3135
3136 for p, u in self._partition_updates.items():
3137 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3138 comment('Shrink partition %s from %d to %d' %
3139 (p, u.src_size, u.tgt_size))
3140 append('resize %s %s' % (p, u.tgt_size))
3141
3142 for g, u in self._group_updates.items():
3143 if u.src_size is not None and u.tgt_size is None:
3144 append('remove_group %s' % g)
3145 if (u.src_size is not None and u.tgt_size is not None and
3146 u.src_size > u.tgt_size):
3147 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3148 append('resize_group %s %d' % (g, u.tgt_size))
3149
3150 for g, u in self._group_updates.items():
3151 if u.src_size is None and u.tgt_size is not None:
3152 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3153 append('add_group %s %d' % (g, u.tgt_size))
3154 if (u.src_size is not None and u.tgt_size is not None and
3155 u.src_size < u.tgt_size):
3156 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3157 append('resize_group %s %d' % (g, u.tgt_size))
3158
3159 for p, u in self._partition_updates.items():
3160 if u.tgt_group and not u.src_group:
3161 comment('Add partition %s to group %s' % (p, u.tgt_group))
3162 append('add %s %s' % (p, u.tgt_group))
3163
3164 for p, u in self._partition_updates.items():
3165 if u.tgt_size and u.src_size < u.tgt_size:
3166 comment('Grow partition %s from %d to %d' % (p, u.src_size, u.tgt_size))
3167 append('resize %s %d' % (p, u.tgt_size))
3168
3169 for p, u in self._partition_updates.items():
3170 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3171 comment('Move partition %s from default to %s' %
3172 (p, u.tgt_group))
3173 append('move %s %s' % (p, u.tgt_group))