blob: f4f9178dbb063f0a93202ba4973aefa6425b3172 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080071 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
72 if "ANDROID_HOST_OUT" in os.environ:
73 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080074 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070075 self.extra_signapk_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000076 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070077 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080078 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080079 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070080 self.public_key_suffix = ".x509.pem"
81 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070082 # use otatools built boot_signer by default
83 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070084 self.boot_signer_args = []
85 self.verity_signer_path = None
86 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070087 self.verbose = False
88 self.tempfiles = []
89 self.device_specific = None
90 self.extras = {}
91 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070092 self.source_info_dict = None
93 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070094 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070095 # Stash size cannot exceed cache_size * threshold.
96 self.cache_size = None
97 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070098 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -070099 self.host_tools = {}
Dan Albert8b72aef2015-03-23 19:13:21 -0700100
101
102OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700103
Tao Bao71197512018-10-11 14:08:45 -0700104# The block size that's used across the releasetools scripts.
105BLOCK_SIZE = 4096
106
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800107# Values for "certificate" in apkcerts that mean special things.
108SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
109
Tao Bao5cc0abb2019-03-21 10:18:05 -0700110# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
111# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800112# descriptor into vbmeta.img. When adding a new entry here, the
113# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
114# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000115AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Andrew Sculle077cf72021-02-18 10:27:29 +0000116 'system', 'system_ext', 'vendor', 'vendor_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000117 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800118
Tao Bao08c190f2019-06-03 23:07:58 -0700119# Chained VBMeta partitions.
120AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
121
Tianjie Xu861f4132018-09-12 11:49:33 -0700122# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400123PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700124 'system',
125 'vendor',
126 'product',
127 'system_ext',
128 'odm',
129 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700130 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000131 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400132]
Tianjie Xu861f4132018-09-12 11:49:33 -0700133
Yifan Hong5057b952021-01-07 14:09:57 -0800134# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000135PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800136
Yifan Hongc65a0542021-01-07 14:21:01 -0800137# See sysprop.mk. If file is moved, add new search paths here; don't remove
138# existing search paths.
139RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700140
Kelvin Zhang563750f2021-04-28 12:46:17 -0400141
Tianjie Xu209db462016-05-24 17:34:52 -0700142class ErrorCode(object):
143 """Define error_codes for failures that happen during the actual
144 update package installation.
145
146 Error codes 0-999 are reserved for failures before the package
147 installation (i.e. low battery, package verification failure).
148 Detailed code in 'bootable/recovery/error_code.h' """
149
150 SYSTEM_VERIFICATION_FAILURE = 1000
151 SYSTEM_UPDATE_FAILURE = 1001
152 SYSTEM_UNEXPECTED_CONTENTS = 1002
153 SYSTEM_NONZERO_CONTENTS = 1003
154 SYSTEM_RECOVER_FAILURE = 1004
155 VENDOR_VERIFICATION_FAILURE = 2000
156 VENDOR_UPDATE_FAILURE = 2001
157 VENDOR_UNEXPECTED_CONTENTS = 2002
158 VENDOR_NONZERO_CONTENTS = 2003
159 VENDOR_RECOVER_FAILURE = 2004
160 OEM_PROP_MISMATCH = 3000
161 FINGERPRINT_MISMATCH = 3001
162 THUMBPRINT_MISMATCH = 3002
163 OLDER_BUILD = 3003
164 DEVICE_MISMATCH = 3004
165 BAD_PATCH_FILE = 3005
166 INSUFFICIENT_CACHE_SPACE = 3006
167 TUNE_PARTITION_FAILURE = 3007
168 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800169
Tao Bao80921982018-03-21 21:02:19 -0700170
Dan Albert8b72aef2015-03-23 19:13:21 -0700171class ExternalError(RuntimeError):
172 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700173
174
Tao Bao32fcdab2018-10-12 10:30:39 -0700175def InitLogging():
176 DEFAULT_LOGGING_CONFIG = {
177 'version': 1,
178 'disable_existing_loggers': False,
179 'formatters': {
180 'standard': {
181 'format':
182 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
183 'datefmt': '%Y-%m-%d %H:%M:%S',
184 },
185 },
186 'handlers': {
187 'default': {
188 'class': 'logging.StreamHandler',
189 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700190 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700191 },
192 },
193 'loggers': {
194 '': {
195 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700196 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700197 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700198 }
199 }
200 }
201 env_config = os.getenv('LOGGING_CONFIG')
202 if env_config:
203 with open(env_config) as f:
204 config = json.load(f)
205 else:
206 config = DEFAULT_LOGGING_CONFIG
207
208 # Increase the logging level for verbose mode.
209 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700210 config = copy.deepcopy(config)
211 config['handlers']['default']['level'] = 'INFO'
212
213 if OPTIONS.logfile:
214 config = copy.deepcopy(config)
215 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400216 'class': 'logging.FileHandler',
217 'formatter': 'standard',
218 'level': 'INFO',
219 'mode': 'w',
220 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700221 }
222 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700223
224 logging.config.dictConfig(config)
225
226
Yifan Hong8e332ff2020-07-29 17:51:55 -0700227def SetHostToolLocation(tool_name, location):
228 OPTIONS.host_tools[tool_name] = location
229
Kelvin Zhang563750f2021-04-28 12:46:17 -0400230
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900231def FindHostToolPath(tool_name):
232 """Finds the path to the host tool.
233
234 Args:
235 tool_name: name of the tool to find
236 Returns:
237 path to the tool if found under either one of the host_tools map or under
238 the same directory as this binary is located at. If not found, tool_name
239 is returned.
240 """
241 if tool_name in OPTIONS.host_tools:
242 return OPTIONS.host_tools[tool_name]
243
244 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
245 tool_path = os.path.join(my_dir, tool_name)
246 if os.path.exists(tool_path):
247 return tool_path
248
249 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700250
Kelvin Zhang563750f2021-04-28 12:46:17 -0400251
Tao Bao39451582017-05-04 11:10:47 -0700252def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700253 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700254
Tao Bao73dd4f42018-10-04 16:25:33 -0700255 Args:
256 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700257 verbose: Whether the commands should be shown. Default to the global
258 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700259 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
260 stdin, etc. stdout and stderr will default to subprocess.PIPE and
261 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800262 universal_newlines will default to True, as most of the users in
263 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700264
265 Returns:
266 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700267 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700268 if 'stdout' not in kwargs and 'stderr' not in kwargs:
269 kwargs['stdout'] = subprocess.PIPE
270 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800271 if 'universal_newlines' not in kwargs:
272 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700273
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900274 if args:
275 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700276 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900277 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700278
Kelvin Zhang766eea72021-06-03 09:36:08 -0400279 if verbose is None:
280 verbose = OPTIONS.verbose
281
Tao Bao32fcdab2018-10-12 10:30:39 -0700282 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400283 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700284 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700285 return subprocess.Popen(args, **kwargs)
286
287
Tao Bao986ee862018-10-04 15:46:16 -0700288def RunAndCheckOutput(args, verbose=None, **kwargs):
289 """Runs the given command and returns the output.
290
291 Args:
292 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700293 verbose: Whether the commands should be shown. Default to the global
294 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700295 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
296 stdin, etc. stdout and stderr will default to subprocess.PIPE and
297 subprocess.STDOUT respectively unless caller specifies any of them.
298
299 Returns:
300 The output string.
301
302 Raises:
303 ExternalError: On non-zero exit from the command.
304 """
Tao Bao986ee862018-10-04 15:46:16 -0700305 proc = Run(args, verbose=verbose, **kwargs)
306 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800307 if output is None:
308 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700309 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400310 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700311 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700312 if proc.returncode != 0:
313 raise ExternalError(
314 "Failed to run command '{}' (exit code {}):\n{}".format(
315 args, proc.returncode, output))
316 return output
317
318
Tao Baoc765cca2018-01-31 17:32:40 -0800319def RoundUpTo4K(value):
320 rounded_up = value + 4095
321 return rounded_up - (rounded_up % 4096)
322
323
Ying Wang7e6d4e42010-12-13 16:25:36 -0800324def CloseInheritedPipes():
325 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
326 before doing other work."""
327 if platform.system() != "Darwin":
328 return
329 for d in range(3, 1025):
330 try:
331 stat = os.fstat(d)
332 if stat is not None:
333 pipebit = stat[0] & 0x1000
334 if pipebit != 0:
335 os.close(d)
336 except OSError:
337 pass
338
339
Tao Bao1c320f82019-10-04 23:25:12 -0700340class BuildInfo(object):
341 """A class that holds the information for a given build.
342
343 This class wraps up the property querying for a given source or target build.
344 It abstracts away the logic of handling OEM-specific properties, and caches
345 the commonly used properties such as fingerprint.
346
347 There are two types of info dicts: a) build-time info dict, which is generated
348 at build time (i.e. included in a target_files zip); b) OEM info dict that is
349 specified at package generation time (via command line argument
350 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
351 having "oem_fingerprint_properties" in build-time info dict), all the queries
352 would be answered based on build-time info dict only. Otherwise if using
353 OEM-specific properties, some of them will be calculated from two info dicts.
354
355 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800356 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700357
358 Attributes:
359 info_dict: The build-time info dict.
360 is_ab: Whether it's a build that uses A/B OTA.
361 oem_dicts: A list of OEM dicts.
362 oem_props: A list of OEM properties that should be read from OEM dicts; None
363 if the build doesn't use any OEM-specific property.
364 fingerprint: The fingerprint of the build, which would be calculated based
365 on OEM properties if applicable.
366 device: The device name, which could come from OEM dicts if applicable.
367 """
368
369 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
370 "ro.product.manufacturer", "ro.product.model",
371 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700372 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
373 "product", "odm", "vendor", "system_ext", "system"]
374 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
375 "product", "product_services", "odm", "vendor", "system"]
376 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700377
Tianjiefdda51d2021-05-05 14:46:35 -0700378 # The length of vbmeta digest to append to the fingerprint
379 _VBMETA_DIGEST_SIZE_USED = 8
380
381 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700382 """Initializes a BuildInfo instance with the given dicts.
383
384 Note that it only wraps up the given dicts, without making copies.
385
386 Arguments:
387 info_dict: The build-time info dict.
388 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
389 that it always uses the first dict to calculate the fingerprint or the
390 device name. The rest would be used for asserting OEM properties only
391 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700392 use_legacy_id: Use the legacy build id to construct the fingerprint. This
393 is used when we need a BuildInfo class, while the vbmeta digest is
394 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700395
396 Raises:
397 ValueError: On invalid inputs.
398 """
399 self.info_dict = info_dict
400 self.oem_dicts = oem_dicts
401
402 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700403 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700404
Hongguang Chend7c160f2020-05-03 21:24:26 -0700405 # Skip _oem_props if oem_dicts is None to use BuildInfo in
406 # sign_target_files_apks
407 if self.oem_dicts:
408 self._oem_props = info_dict.get("oem_fingerprint_properties")
409 else:
410 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700411
Daniel Normand5fe8622020-01-08 17:01:11 -0800412 def check_fingerprint(fingerprint):
413 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
414 raise ValueError(
415 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
416 "3.2.2. Build Parameters.".format(fingerprint))
417
Daniel Normand5fe8622020-01-08 17:01:11 -0800418 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800419 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800420 try:
421 fingerprint = self.CalculatePartitionFingerprint(partition)
422 check_fingerprint(fingerprint)
423 self._partition_fingerprints[partition] = fingerprint
424 except ExternalError:
425 continue
426 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800427 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800428 # need a fingerprint when creating the image.
429 self._partition_fingerprints[
430 "system_other"] = self._partition_fingerprints["system"]
431
Tao Bao1c320f82019-10-04 23:25:12 -0700432 # These two should be computed only after setting self._oem_props.
433 self._device = self.GetOemProperty("ro.product.device")
434 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800435 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700436
437 @property
438 def is_ab(self):
439 return self._is_ab
440
441 @property
442 def device(self):
443 return self._device
444
445 @property
446 def fingerprint(self):
447 return self._fingerprint
448
449 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400450 def is_vabc(self):
451 vendor_prop = self.info_dict.get("vendor.build.prop")
452 vabc_enabled = vendor_prop and \
453 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
454 return vabc_enabled
455
456 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700457 def is_vabc_xor(self):
458 vendor_prop = self.info_dict.get("vendor.build.prop")
459 vabc_xor_enabled = vendor_prop and \
460 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
461 return vabc_xor_enabled
462
463 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400464 def vendor_suppressed_vabc(self):
465 vendor_prop = self.info_dict.get("vendor.build.prop")
466 vabc_suppressed = vendor_prop and \
467 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
468 return vabc_suppressed and vabc_suppressed.lower() == "true"
469
470 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700471 def oem_props(self):
472 return self._oem_props
473
Kelvin Zhanga19fb312021-07-26 14:05:02 -0400474 @property
475 def avb_enabled(self):
476 return self.get("avb_enable") == "true"
477
Tao Bao1c320f82019-10-04 23:25:12 -0700478 def __getitem__(self, key):
479 return self.info_dict[key]
480
481 def __setitem__(self, key, value):
482 self.info_dict[key] = value
483
484 def get(self, key, default=None):
485 return self.info_dict.get(key, default)
486
487 def items(self):
488 return self.info_dict.items()
489
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000490 def _GetRawBuildProp(self, prop, partition):
491 prop_file = '{}.build.prop'.format(
492 partition) if partition else 'build.prop'
493 partition_props = self.info_dict.get(prop_file)
494 if not partition_props:
495 return None
496 return partition_props.GetProp(prop)
497
Daniel Normand5fe8622020-01-08 17:01:11 -0800498 def GetPartitionBuildProp(self, prop, partition):
499 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800500
501 # Boot image uses ro.[product.]bootimage instead of boot.
Kelvin Zhang563750f2021-04-28 12:46:17 -0400502 prop_partition = "bootimage" if partition == "boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800503
Daniel Normand5fe8622020-01-08 17:01:11 -0800504 # If provided a partition for this property, only look within that
505 # partition's build.prop.
506 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800507 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800508 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800509 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000510
511 prop_val = self._GetRawBuildProp(prop, partition)
512 if prop_val is not None:
513 return prop_val
514 raise ExternalError("couldn't find %s in %s.build.prop" %
515 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800516
Tao Bao1c320f82019-10-04 23:25:12 -0700517 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800518 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700519 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
520 return self._ResolveRoProductBuildProp(prop)
521
Tianjiefdda51d2021-05-05 14:46:35 -0700522 if prop == "ro.build.id":
523 return self._GetBuildId()
524
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000525 prop_val = self._GetRawBuildProp(prop, None)
526 if prop_val is not None:
527 return prop_val
528
529 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700530
531 def _ResolveRoProductBuildProp(self, prop):
532 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000533 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700534 if prop_val:
535 return prop_val
536
Steven Laver8e2086e2020-04-27 16:26:31 -0700537 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000538 source_order_val = self._GetRawBuildProp(
539 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700540 if source_order_val:
541 source_order = source_order_val.split(",")
542 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700543 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700544
545 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700546 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700547 raise ExternalError(
548 "Invalid ro.product.property_source_order '{}'".format(source_order))
549
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000550 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700551 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000552 "ro.product", "ro.product.{}".format(source_partition), 1)
553 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700554 if prop_val:
555 return prop_val
556
557 raise ExternalError("couldn't resolve {}".format(prop))
558
Steven Laver8e2086e2020-04-27 16:26:31 -0700559 def _GetRoProductPropsDefaultSourceOrder(self):
560 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
561 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000562 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700563 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000564 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700565 if android_version == "10":
566 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
567 # NOTE: float() conversion of android_version will have rounding error.
568 # We are checking for "9" or less, and using "< 10" is well outside of
569 # possible floating point rounding.
570 try:
571 android_version_val = float(android_version)
572 except ValueError:
573 android_version_val = 0
574 if android_version_val < 10:
575 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
576 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
577
Tianjieb37c5be2020-10-15 21:27:10 -0700578 def _GetPlatformVersion(self):
579 version_sdk = self.GetBuildProp("ro.build.version.sdk")
580 # init code switches to version_release_or_codename (see b/158483506). After
581 # API finalization, release_or_codename will be the same as release. This
582 # is the best effort to support pre-S dev stage builds.
583 if int(version_sdk) >= 30:
584 try:
585 return self.GetBuildProp("ro.build.version.release_or_codename")
586 except ExternalError:
587 logger.warning('Failed to find ro.build.version.release_or_codename')
588
589 return self.GetBuildProp("ro.build.version.release")
590
Tianjiefdda51d2021-05-05 14:46:35 -0700591 def _GetBuildId(self):
592 build_id = self._GetRawBuildProp("ro.build.id", None)
593 if build_id:
594 return build_id
595
596 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
597 if not legacy_build_id:
598 raise ExternalError("Couldn't find build id in property file")
599
600 if self.use_legacy_id:
601 return legacy_build_id
602
603 # Append the top 8 chars of vbmeta digest to the existing build id. The
604 # logic needs to match the one in init, so that OTA can deliver correctly.
605 avb_enable = self.info_dict.get("avb_enable") == "true"
606 if not avb_enable:
607 raise ExternalError("AVB isn't enabled when using legacy build id")
608
609 vbmeta_digest = self.info_dict.get("vbmeta_digest")
610 if not vbmeta_digest:
611 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
612 " id")
613 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
614 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
615
616 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
617 return legacy_build_id + '.' + digest_prefix
618
Tianjieb37c5be2020-10-15 21:27:10 -0700619 def _GetPartitionPlatformVersion(self, partition):
620 try:
621 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
622 partition)
623 except ExternalError:
624 return self.GetPartitionBuildProp("ro.build.version.release",
625 partition)
626
Tao Bao1c320f82019-10-04 23:25:12 -0700627 def GetOemProperty(self, key):
628 if self.oem_props is not None and key in self.oem_props:
629 return self.oem_dicts[0][key]
630 return self.GetBuildProp(key)
631
Daniel Normand5fe8622020-01-08 17:01:11 -0800632 def GetPartitionFingerprint(self, partition):
633 return self._partition_fingerprints.get(partition, None)
634
635 def CalculatePartitionFingerprint(self, partition):
636 try:
637 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
638 except ExternalError:
639 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
640 self.GetPartitionBuildProp("ro.product.brand", partition),
641 self.GetPartitionBuildProp("ro.product.name", partition),
642 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700643 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800644 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400645 self.GetPartitionBuildProp(
646 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800647 self.GetPartitionBuildProp("ro.build.type", partition),
648 self.GetPartitionBuildProp("ro.build.tags", partition))
649
Tao Bao1c320f82019-10-04 23:25:12 -0700650 def CalculateFingerprint(self):
651 if self.oem_props is None:
652 try:
653 return self.GetBuildProp("ro.build.fingerprint")
654 except ExternalError:
655 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
656 self.GetBuildProp("ro.product.brand"),
657 self.GetBuildProp("ro.product.name"),
658 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700659 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700660 self.GetBuildProp("ro.build.id"),
661 self.GetBuildProp("ro.build.version.incremental"),
662 self.GetBuildProp("ro.build.type"),
663 self.GetBuildProp("ro.build.tags"))
664 return "%s/%s/%s:%s" % (
665 self.GetOemProperty("ro.product.brand"),
666 self.GetOemProperty("ro.product.name"),
667 self.GetOemProperty("ro.product.device"),
668 self.GetBuildProp("ro.build.thumbprint"))
669
670 def WriteMountOemScript(self, script):
671 assert self.oem_props is not None
672 recovery_mount_options = self.info_dict.get("recovery_mount_options")
673 script.Mount("/oem", recovery_mount_options)
674
675 def WriteDeviceAssertions(self, script, oem_no_mount):
676 # Read the property directly if not using OEM properties.
677 if not self.oem_props:
678 script.AssertDevice(self.device)
679 return
680
681 # Otherwise assert OEM properties.
682 if not self.oem_dicts:
683 raise ExternalError(
684 "No OEM file provided to answer expected assertions")
685
686 for prop in self.oem_props.split():
687 values = []
688 for oem_dict in self.oem_dicts:
689 if prop in oem_dict:
690 values.append(oem_dict[prop])
691 if not values:
692 raise ExternalError(
693 "The OEM file is missing the property %s" % (prop,))
694 script.AssertOemProperty(prop, values, oem_no_mount)
695
696
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000697def ReadFromInputFile(input_file, fn):
698 """Reads the contents of fn from input zipfile or directory."""
699 if isinstance(input_file, zipfile.ZipFile):
700 return input_file.read(fn).decode()
701 else:
702 path = os.path.join(input_file, *fn.split("/"))
703 try:
704 with open(path) as f:
705 return f.read()
706 except IOError as e:
707 if e.errno == errno.ENOENT:
708 raise KeyError(fn)
709
710
Yifan Hong10482a22021-01-07 14:38:41 -0800711def ExtractFromInputFile(input_file, fn):
712 """Extracts the contents of fn from input zipfile or directory into a file."""
713 if isinstance(input_file, zipfile.ZipFile):
714 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500715 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800716 f.write(input_file.read(fn))
717 return tmp_file
718 else:
719 file = os.path.join(input_file, *fn.split("/"))
720 if not os.path.exists(file):
721 raise KeyError(fn)
722 return file
723
Kelvin Zhang563750f2021-04-28 12:46:17 -0400724
jiajia tangf3f842b2021-03-17 21:49:44 +0800725class RamdiskFormat(object):
726 LZ4 = 1
727 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800728
Kelvin Zhang563750f2021-04-28 12:46:17 -0400729
jiajia tang836f76b2021-04-02 14:48:26 +0800730def _GetRamdiskFormat(info_dict):
731 if info_dict.get('lz4_ramdisks') == 'true':
732 ramdisk_format = RamdiskFormat.LZ4
733 else:
734 ramdisk_format = RamdiskFormat.GZ
735 return ramdisk_format
736
Kelvin Zhang563750f2021-04-28 12:46:17 -0400737
Tao Bao410ad8b2018-08-24 12:08:38 -0700738def LoadInfoDict(input_file, repacking=False):
739 """Loads the key/value pairs from the given input target_files.
740
Tianjiea85bdf02020-07-29 11:56:19 -0700741 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700742 checks and returns the parsed key/value pairs for to the given build. It's
743 usually called early when working on input target_files files, e.g. when
744 generating OTAs, or signing builds. Note that the function may be called
745 against an old target_files file (i.e. from past dessert releases). So the
746 property parsing needs to be backward compatible.
747
748 In a `META/misc_info.txt`, a few properties are stored as links to the files
749 in the PRODUCT_OUT directory. It works fine with the build system. However,
750 they are no longer available when (re)generating images from target_files zip.
751 When `repacking` is True, redirect these properties to the actual files in the
752 unzipped directory.
753
754 Args:
755 input_file: The input target_files file, which could be an open
756 zipfile.ZipFile instance, or a str for the dir that contains the files
757 unzipped from a target_files file.
758 repacking: Whether it's trying repack an target_files file after loading the
759 info dict (default: False). If so, it will rewrite a few loaded
760 properties (e.g. selinux_fc, root_dir) to point to the actual files in
761 target_files file. When doing repacking, `input_file` must be a dir.
762
763 Returns:
764 A dict that contains the parsed key/value pairs.
765
766 Raises:
767 AssertionError: On invalid input arguments.
768 ValueError: On malformed input values.
769 """
770 if repacking:
771 assert isinstance(input_file, str), \
772 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700773
Doug Zongkerc9253822014-02-04 12:17:58 -0800774 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000775 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800776
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700777 try:
Michael Runge6e836112014-04-15 17:40:21 -0700778 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700779 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700780 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700781
Tao Bao410ad8b2018-08-24 12:08:38 -0700782 if "recovery_api_version" not in d:
783 raise ValueError("Failed to find 'recovery_api_version'")
784 if "fstab_version" not in d:
785 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800786
Tao Bao410ad8b2018-08-24 12:08:38 -0700787 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700788 # "selinux_fc" properties should point to the file_contexts files
789 # (file_contexts.bin) under META/.
790 for key in d:
791 if key.endswith("selinux_fc"):
792 fc_basename = os.path.basename(d[key])
793 fc_config = os.path.join(input_file, "META", fc_basename)
794 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700795
Daniel Norman72c626f2019-05-13 15:58:14 -0700796 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700797
Tom Cherryd14b8952018-08-09 14:26:00 -0700798 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700799 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700800 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700801 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700802
David Anderson0ec64ac2019-12-06 12:21:18 -0800803 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700804 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000805 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800806 key_name = part_name + "_base_fs_file"
807 if key_name not in d:
808 continue
809 basename = os.path.basename(d[key_name])
810 base_fs_file = os.path.join(input_file, "META", basename)
811 if os.path.exists(base_fs_file):
812 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700813 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700814 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800815 "Failed to find %s base fs file: %s", part_name, base_fs_file)
816 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700817
Doug Zongker37974732010-09-16 17:44:38 -0700818 def makeint(key):
819 if key in d:
820 d[key] = int(d[key], 0)
821
822 makeint("recovery_api_version")
823 makeint("blocksize")
824 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700825 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700826 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700827 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700828 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800829 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700830
Steve Muckle903a1ca2020-05-07 17:32:10 -0700831 boot_images = "boot.img"
832 if "boot_images" in d:
833 boot_images = d["boot_images"]
834 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400835 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700836
Tao Bao765668f2019-10-04 22:03:00 -0700837 # Load recovery fstab if applicable.
838 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
jiajia tang836f76b2021-04-02 14:48:26 +0800839 ramdisk_format = _GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800840
Tianjie Xu861f4132018-09-12 11:49:33 -0700841 # Tries to load the build props for all partitions with care_map, including
842 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800843 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800844 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000845 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800846 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700847 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800848
Tao Bao3ed35d32019-10-07 20:48:48 -0700849 # Set up the salt (based on fingerprint) that will be used when adding AVB
850 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800851 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700852 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800853 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800854 fingerprint = build_info.GetPartitionFingerprint(partition)
855 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400856 d["avb_{}_salt".format(partition)] = sha256(
857 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700858
859 # Set the vbmeta digest if exists
860 try:
861 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
862 except KeyError:
863 pass
864
Kelvin Zhang39aea442020-08-17 11:04:25 -0400865 try:
866 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
867 except KeyError:
868 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700869 return d
870
Tao Baod1de6f32017-03-01 16:38:48 -0800871
Daniel Norman4cc9df62019-07-18 10:11:07 -0700872def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900873 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700874 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900875
Daniel Norman4cc9df62019-07-18 10:11:07 -0700876
877def LoadDictionaryFromFile(file_path):
878 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900879 return LoadDictionaryFromLines(lines)
880
881
Michael Runge6e836112014-04-15 17:40:21 -0700882def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700883 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700884 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700885 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700886 if not line or line.startswith("#"):
887 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700888 if "=" in line:
889 name, value = line.split("=", 1)
890 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700891 return d
892
Tao Baod1de6f32017-03-01 16:38:48 -0800893
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000894class PartitionBuildProps(object):
895 """The class holds the build prop of a particular partition.
896
897 This class loads the build.prop and holds the build properties for a given
898 partition. It also partially recognizes the 'import' statement in the
899 build.prop; and calculates alternative values of some specific build
900 properties during runtime.
901
902 Attributes:
903 input_file: a zipped target-file or an unzipped target-file directory.
904 partition: name of the partition.
905 props_allow_override: a list of build properties to search for the
906 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000907 build_props: a dict of build properties for the given partition.
908 prop_overrides: a set of props that are overridden by import.
909 placeholder_values: A dict of runtime variables' values to replace the
910 placeholders in the build.prop file. We expect exactly one value for
911 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800912 ramdisk_format: If name is "boot", the format of ramdisk inside the
913 boot image. Otherwise, its value is ignored.
914 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000915 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400916
Tianjie Xu9afb2212020-05-10 21:48:15 +0000917 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000918 self.input_file = input_file
919 self.partition = name
920 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000921 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000922 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000923 self.prop_overrides = set()
924 self.placeholder_values = {}
925 if placeholder_values:
926 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000927
928 @staticmethod
929 def FromDictionary(name, build_props):
930 """Constructs an instance from a build prop dictionary."""
931
932 props = PartitionBuildProps("unknown", name)
933 props.build_props = build_props.copy()
934 return props
935
936 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800937 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000938 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800939
Devin Mooreafdd7c72021-12-13 22:04:08 +0000940 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400941 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000942 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800943 else:
944 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
945
946 props = PartitionBuildProps(input_file, name, placeholder_values)
947 props._LoadBuildProp(data)
948 return props
949
950 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000951 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800952 """
953 Read build.prop for boot image from input_file.
954 Return empty string if not found.
955 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000956 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800957 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000958 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800959 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000960 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800961 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800962 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800963 if prop_file is None:
964 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500965 with open(prop_file, "r") as f:
966 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800967
968 @staticmethod
969 def _ReadPartitionPropFile(input_file, name):
970 """
971 Read build.prop for name from input_file.
972 Return empty string if not found.
973 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000974 data = ''
975 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
976 '{}/build.prop'.format(name.upper())]:
977 try:
978 data = ReadFromInputFile(input_file, prop_file)
979 break
980 except KeyError:
981 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -0800982 if data == '':
983 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -0800984 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000985
Yifan Hong125d0b62020-09-24 17:07:03 -0700986 @staticmethod
987 def FromBuildPropFile(name, build_prop_file):
988 """Constructs an instance from a build prop file."""
989
990 props = PartitionBuildProps("unknown", name)
991 with open(build_prop_file) as f:
992 props._LoadBuildProp(f.read())
993 return props
994
Tianjie Xu9afb2212020-05-10 21:48:15 +0000995 def _LoadBuildProp(self, data):
996 for line in data.split('\n'):
997 line = line.strip()
998 if not line or line.startswith("#"):
999 continue
1000 if line.startswith("import"):
1001 overrides = self._ImportParser(line)
1002 duplicates = self.prop_overrides.intersection(overrides.keys())
1003 if duplicates:
1004 raise ValueError('prop {} is overridden multiple times'.format(
1005 ','.join(duplicates)))
1006 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1007 self.build_props.update(overrides)
1008 elif "=" in line:
1009 name, value = line.split("=", 1)
1010 if name in self.prop_overrides:
1011 raise ValueError('prop {} is set again after overridden by import '
1012 'statement'.format(name))
1013 self.build_props[name] = value
1014
1015 def _ImportParser(self, line):
1016 """Parses the build prop in a given import statement."""
1017
1018 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001019 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001020 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001021
1022 if len(tokens) == 3:
1023 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1024 return {}
1025
Tianjie Xu9afb2212020-05-10 21:48:15 +00001026 import_path = tokens[1]
1027 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
1028 raise ValueError('Unrecognized import path {}'.format(line))
1029
1030 # We only recognize a subset of import statement that the init process
1031 # supports. And we can loose the restriction based on how the dynamic
1032 # fingerprint is used in practice. The placeholder format should be
1033 # ${placeholder}, and its value should be provided by the caller through
1034 # the placeholder_values.
1035 for prop, value in self.placeholder_values.items():
1036 prop_place_holder = '${{{}}}'.format(prop)
1037 if prop_place_holder in import_path:
1038 import_path = import_path.replace(prop_place_holder, value)
1039 if '$' in import_path:
1040 logger.info('Unresolved place holder in import path %s', import_path)
1041 return {}
1042
1043 import_path = import_path.replace('/{}'.format(self.partition),
1044 self.partition.upper())
1045 logger.info('Parsing build props override from %s', import_path)
1046
1047 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1048 d = LoadDictionaryFromLines(lines)
1049 return {key: val for key, val in d.items()
1050 if key in self.props_allow_override}
1051
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001052 def GetProp(self, prop):
1053 return self.build_props.get(prop)
1054
1055
Tianjie Xucfa86222016-03-07 16:31:19 -08001056def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1057 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001058 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001059 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001060 self.mount_point = mount_point
1061 self.fs_type = fs_type
1062 self.device = device
1063 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001064 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001065 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001066
1067 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001068 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001069 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001070 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001071 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001072
Tao Baod1de6f32017-03-01 16:38:48 -08001073 assert fstab_version == 2
1074
1075 d = {}
1076 for line in data.split("\n"):
1077 line = line.strip()
1078 if not line or line.startswith("#"):
1079 continue
1080
1081 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1082 pieces = line.split()
1083 if len(pieces) != 5:
1084 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1085
1086 # Ignore entries that are managed by vold.
1087 options = pieces[4]
1088 if "voldmanaged=" in options:
1089 continue
1090
1091 # It's a good line, parse it.
1092 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001093 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001094 options = options.split(",")
1095 for i in options:
1096 if i.startswith("length="):
1097 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001098 elif i == "slotselect":
1099 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001100 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001101 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001102 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001103
Tao Baod1de6f32017-03-01 16:38:48 -08001104 mount_flags = pieces[3]
1105 # Honor the SELinux context if present.
1106 context = None
1107 for i in mount_flags.split(","):
1108 if i.startswith("context="):
1109 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001110
Tao Baod1de6f32017-03-01 16:38:48 -08001111 mount_point = pieces[1]
1112 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001113 device=pieces[0], length=length, context=context,
1114 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001115
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001116 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001117 # system. Other areas assume system is always at "/system" so point /system
1118 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001119 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001120 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001121 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001122 return d
1123
1124
Tao Bao765668f2019-10-04 22:03:00 -07001125def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1126 """Finds the path to recovery fstab and loads its contents."""
1127 # recovery fstab is only meaningful when installing an update via recovery
1128 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001129 if info_dict.get('ab_update') == 'true' and \
1130 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001131 return None
1132
1133 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1134 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1135 # cases, since it may load the info_dict from an old build (e.g. when
1136 # generating incremental OTAs from that build).
1137 system_root_image = info_dict.get('system_root_image') == 'true'
1138 if info_dict.get('no_recovery') != 'true':
1139 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1140 if isinstance(input_file, zipfile.ZipFile):
1141 if recovery_fstab_path not in input_file.namelist():
1142 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1143 else:
1144 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1145 if not os.path.exists(path):
1146 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1147 return LoadRecoveryFSTab(
1148 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1149 system_root_image)
1150
1151 if info_dict.get('recovery_as_boot') == 'true':
1152 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1153 if isinstance(input_file, zipfile.ZipFile):
1154 if recovery_fstab_path not in input_file.namelist():
1155 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1156 else:
1157 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1158 if not os.path.exists(path):
1159 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1160 return LoadRecoveryFSTab(
1161 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1162 system_root_image)
1163
1164 return None
1165
1166
Doug Zongker37974732010-09-16 17:44:38 -07001167def DumpInfoDict(d):
1168 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001169 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001170
Dan Albert8b72aef2015-03-23 19:13:21 -07001171
Daniel Norman55417142019-11-25 16:04:36 -08001172def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001173 """Merges dynamic partition info variables.
1174
1175 Args:
1176 framework_dict: The dictionary of dynamic partition info variables from the
1177 partial framework target files.
1178 vendor_dict: The dictionary of dynamic partition info variables from the
1179 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001180
1181 Returns:
1182 The merged dynamic partition info dictionary.
1183 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001184
1185 def uniq_concat(a, b):
1186 combined = set(a.split(" "))
1187 combined.update(set(b.split(" ")))
1188 combined = [item.strip() for item in combined if item.strip()]
1189 return " ".join(sorted(combined))
1190
1191 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhang563750f2021-04-28 12:46:17 -04001192 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001193 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1194
1195 merged_dict = {"use_dynamic_partitions": "true"}
1196
1197 merged_dict["dynamic_partition_list"] = uniq_concat(
1198 framework_dict.get("dynamic_partition_list", ""),
1199 vendor_dict.get("dynamic_partition_list", ""))
1200
1201 # Super block devices are defined by the vendor dict.
1202 if "super_block_devices" in vendor_dict:
1203 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
1204 for block_device in merged_dict["super_block_devices"].split(" "):
1205 key = "super_%s_device_size" % block_device
1206 if key not in vendor_dict:
1207 raise ValueError("Vendor dict does not contain required key %s." % key)
1208 merged_dict[key] = vendor_dict[key]
1209
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001210 # Partition groups and group sizes are defined by the vendor dict because
1211 # these values may vary for each board that uses a shared system image.
1212 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001213 for partition_group in merged_dict["super_partition_groups"].split(" "):
1214 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001215 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001216 if key not in vendor_dict:
1217 raise ValueError("Vendor dict does not contain required key %s." % key)
1218 merged_dict[key] = vendor_dict[key]
1219
1220 # Set the partition group's partition list using a concatenation of the
1221 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001222 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001223 merged_dict[key] = uniq_concat(
1224 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301225
Daniel Normanb0c75912020-09-24 14:30:21 -07001226 # Various other flags should be copied from the vendor dict, if defined.
1227 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1228 "super_metadata_device", "super_partition_error_limit",
1229 "super_partition_size"):
1230 if key in vendor_dict.keys():
1231 merged_dict[key] = vendor_dict[key]
1232
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001233 return merged_dict
1234
1235
Daniel Norman21c34f72020-11-11 17:25:50 -08001236def PartitionMapFromTargetFiles(target_files_dir):
1237 """Builds a map from partition -> path within an extracted target files directory."""
1238 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1239 possible_subdirs = {
1240 "system": ["SYSTEM"],
1241 "vendor": ["VENDOR", "SYSTEM/vendor"],
1242 "product": ["PRODUCT", "SYSTEM/product"],
1243 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1244 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1245 "vendor_dlkm": [
1246 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1247 ],
1248 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001249 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001250 }
1251 partition_map = {}
1252 for partition, subdirs in possible_subdirs.items():
1253 for subdir in subdirs:
1254 if os.path.exists(os.path.join(target_files_dir, subdir)):
1255 partition_map[partition] = subdir
1256 break
1257 return partition_map
1258
1259
Daniel Normand3351562020-10-29 12:33:11 -07001260def SharedUidPartitionViolations(uid_dict, partition_groups):
1261 """Checks for APK sharedUserIds that cross partition group boundaries.
1262
1263 This uses a single or merged build's shareduid_violation_modules.json
1264 output file, as generated by find_shareduid_violation.py or
1265 core/tasks/find-shareduid-violation.mk.
1266
1267 An error is defined as a sharedUserId that is found in a set of partitions
1268 that span more than one partition group.
1269
1270 Args:
1271 uid_dict: A dictionary created by using the standard json module to read a
1272 complete shareduid_violation_modules.json file.
1273 partition_groups: A list of groups, where each group is a list of
1274 partitions.
1275
1276 Returns:
1277 A list of error messages.
1278 """
1279 errors = []
1280 for uid, partitions in uid_dict.items():
1281 found_in_groups = [
1282 group for group in partition_groups
1283 if set(partitions.keys()) & set(group)
1284 ]
1285 if len(found_in_groups) > 1:
1286 errors.append(
1287 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1288 % (uid, ",".join(sorted(partitions.keys()))))
1289 return errors
1290
1291
Daniel Norman21c34f72020-11-11 17:25:50 -08001292def RunHostInitVerifier(product_out, partition_map):
1293 """Runs host_init_verifier on the init rc files within partitions.
1294
1295 host_init_verifier searches the etc/init path within each partition.
1296
1297 Args:
1298 product_out: PRODUCT_OUT directory, containing partition directories.
1299 partition_map: A map of partition name -> relative path within product_out.
1300 """
1301 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1302 cmd = ["host_init_verifier"]
1303 for partition, path in partition_map.items():
1304 if partition not in allowed_partitions:
1305 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1306 partition)
1307 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1308 # Add --property-contexts if the file exists on the partition.
1309 property_contexts = "%s_property_contexts" % (
1310 "plat" if partition == "system" else partition)
1311 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1312 property_contexts)
1313 if os.path.exists(property_contexts_path):
1314 cmd.append("--property-contexts=%s" % property_contexts_path)
1315 # Add the passwd file if the file exists on the partition.
1316 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1317 if os.path.exists(passwd_path):
1318 cmd.extend(["-p", passwd_path])
1319 return RunAndCheckOutput(cmd)
1320
1321
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001322def AppendAVBSigningArgs(cmd, partition):
1323 """Append signing arguments for avbtool."""
1324 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1325 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001326 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1327 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1328 if os.path.exists(new_key_path):
1329 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001330 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1331 if key_path and algorithm:
1332 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001333 avb_salt = OPTIONS.info_dict.get("avb_salt")
1334 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001335 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001336 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001337
1338
Tao Bao765668f2019-10-04 22:03:00 -07001339def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001340 """Returns the VBMeta arguments for partition.
1341
1342 It sets up the VBMeta argument by including the partition descriptor from the
1343 given 'image', or by configuring the partition as a chained partition.
1344
1345 Args:
1346 partition: The name of the partition (e.g. "system").
1347 image: The path to the partition image.
1348 info_dict: A dict returned by common.LoadInfoDict(). Will use
1349 OPTIONS.info_dict if None has been given.
1350
1351 Returns:
1352 A list of VBMeta arguments.
1353 """
1354 if info_dict is None:
1355 info_dict = OPTIONS.info_dict
1356
1357 # Check if chain partition is used.
1358 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001359 if not key_path:
1360 return ["--include_descriptors_from_image", image]
1361
1362 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1363 # into vbmeta.img. The recovery image will be configured on an independent
1364 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1365 # See details at
1366 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001367 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001368 return []
1369
1370 # Otherwise chain the partition into vbmeta.
1371 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1372 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001373
1374
Tao Bao02a08592018-07-22 12:40:45 -07001375def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1376 """Constructs and returns the arg to build or verify a chained partition.
1377
1378 Args:
1379 partition: The partition name.
1380 info_dict: The info dict to look up the key info and rollback index
1381 location.
1382 key: The key to be used for building or verifying the partition. Defaults to
1383 the key listed in info_dict.
1384
1385 Returns:
1386 A string of form "partition:rollback_index_location:key" that can be used to
1387 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001388 """
1389 if key is None:
1390 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001391 if key and not os.path.exists(key) and OPTIONS.search_path:
1392 new_key_path = os.path.join(OPTIONS.search_path, key)
1393 if os.path.exists(new_key_path):
1394 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001395 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001396 rollback_index_location = info_dict[
1397 "avb_" + partition + "_rollback_index_location"]
1398 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1399
1400
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001401def _HasGkiCertificationArgs():
1402 return ("gki_signing_key_path" in OPTIONS.info_dict and
1403 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001404
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001405
1406def _GenerateGkiCertificate(image, image_name, partition_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001407 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001408 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001409
1410 if not os.path.exists(key_path) and OPTIONS.search_path:
1411 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1412 if os.path.exists(new_key_path):
1413 key_path = new_key_path
1414
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001415 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001416 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001417 raise ExternalError(
1418 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001419
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001420 output_certificate = tempfile.NamedTemporaryFile()
1421 cmd = [
1422 "generate_gki_certificate",
1423 "--name", image_name,
1424 "--algorithm", algorithm,
1425 "--key", key_path,
1426 "--output", output_certificate.name,
1427 image,
1428 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001429
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001430 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1431 signature_args = signature_args.strip()
1432 if signature_args:
1433 cmd.extend(["--additional_avb_args", signature_args])
1434
1435 args = OPTIONS.info_dict.get(
1436 "avb_" + partition_name + "_add_hash_footer_args", "")
1437 args = args.strip()
1438 if args:
1439 cmd.extend(["--additional_avb_args", args])
1440
1441 RunAndCheckOutput(cmd)
1442
1443 output_certificate.seek(os.SEEK_SET, 0)
1444 data = output_certificate.read()
1445 output_certificate.close()
1446 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001447
1448
Daniel Norman276f0622019-07-26 14:13:51 -07001449def BuildVBMeta(image_path, partitions, name, needed_partitions):
1450 """Creates a VBMeta image.
1451
1452 It generates the requested VBMeta image. The requested image could be for
1453 top-level or chained VBMeta image, which is determined based on the name.
1454
1455 Args:
1456 image_path: The output path for the new VBMeta image.
1457 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001458 values. Only valid partition names are accepted, as partitions listed
1459 in common.AVB_PARTITIONS and custom partitions listed in
1460 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001461 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1462 needed_partitions: Partitions whose descriptors should be included into the
1463 generated VBMeta image.
1464
1465 Raises:
1466 AssertionError: On invalid input args.
1467 """
1468 avbtool = OPTIONS.info_dict["avb_avbtool"]
1469 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1470 AppendAVBSigningArgs(cmd, name)
1471
Hongguang Chenf23364d2020-04-27 18:36:36 -07001472 custom_partitions = OPTIONS.info_dict.get(
1473 "avb_custom_images_partition_list", "").strip().split()
1474
Daniel Norman276f0622019-07-26 14:13:51 -07001475 for partition, path in partitions.items():
1476 if partition not in needed_partitions:
1477 continue
1478 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001479 partition in AVB_VBMETA_PARTITIONS or
1480 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001481 'Unknown partition: {}'.format(partition)
1482 assert os.path.exists(path), \
1483 'Failed to find {} for {}'.format(path, partition)
1484 cmd.extend(GetAvbPartitionArg(partition, path))
1485
1486 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1487 if args and args.strip():
1488 split_args = shlex.split(args)
1489 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001490 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001491 # as a path relative to source tree, which may not be available at the
1492 # same location when running this script (we have the input target_files
1493 # zip only). For such cases, we additionally scan other locations (e.g.
1494 # IMAGES/, RADIO/, etc) before bailing out.
1495 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001496 chained_image = split_args[index + 1]
1497 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001498 continue
1499 found = False
1500 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1501 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001502 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001503 if os.path.exists(alt_path):
1504 split_args[index + 1] = alt_path
1505 found = True
1506 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001507 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001508 cmd.extend(split_args)
1509
1510 RunAndCheckOutput(cmd)
1511
1512
jiajia tang836f76b2021-04-02 14:48:26 +08001513def _MakeRamdisk(sourcedir, fs_config_file=None,
1514 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001515 ramdisk_img = tempfile.NamedTemporaryFile()
1516
1517 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1518 cmd = ["mkbootfs", "-f", fs_config_file,
1519 os.path.join(sourcedir, "RAMDISK")]
1520 else:
1521 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1522 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001523 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001524 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001525 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001526 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001527 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001528 else:
1529 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001530
1531 p2.wait()
1532 p1.wait()
1533 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001534 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001535
1536 return ramdisk_img
1537
1538
Steve Muckle9793cf62020-04-08 18:27:00 -07001539def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001540 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001541 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001542
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001543 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001544 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1545 we are building a two-step special image (i.e. building a recovery image to
1546 be loaded into /boot in two-step OTAs).
1547
1548 Return the image data, or None if sourcedir does not appear to contains files
1549 for building the requested image.
1550 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001551
Yifan Hong63c5ca12020-10-08 11:54:02 -07001552 if info_dict is None:
1553 info_dict = OPTIONS.info_dict
1554
Steve Muckle9793cf62020-04-08 18:27:00 -07001555 # "boot" or "recovery", without extension.
1556 partition_name = os.path.basename(sourcedir).lower()
1557
Yifan Hong63c5ca12020-10-08 11:54:02 -07001558 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001559 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001560 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1561 logger.info("Excluded kernel binary from recovery image.")
1562 else:
1563 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001564 elif partition_name == "init_boot":
1565 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001566 else:
1567 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001568 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001569 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001570 return None
1571
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001572 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1573
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001574 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001575 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001576
Doug Zongkereef39442009-04-02 12:14:19 -07001577 img = tempfile.NamedTemporaryFile()
1578
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001579 if has_ramdisk:
jiajia tang836f76b2021-04-02 14:48:26 +08001580 ramdisk_format = _GetRamdiskFormat(info_dict)
1581 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1582 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001583
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001584 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1585 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1586
Yifan Hong63c5ca12020-10-08 11:54:02 -07001587 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001588 if kernel_path is not None:
1589 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001590
Benoit Fradina45a8682014-07-14 21:00:43 +02001591 fn = os.path.join(sourcedir, "second")
1592 if os.access(fn, os.F_OK):
1593 cmd.append("--second")
1594 cmd.append(fn)
1595
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001596 fn = os.path.join(sourcedir, "dtb")
1597 if os.access(fn, os.F_OK):
1598 cmd.append("--dtb")
1599 cmd.append(fn)
1600
Doug Zongker171f1cd2009-06-15 22:36:37 -07001601 fn = os.path.join(sourcedir, "cmdline")
1602 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001603 cmd.append("--cmdline")
1604 cmd.append(open(fn).read().rstrip("\n"))
1605
1606 fn = os.path.join(sourcedir, "base")
1607 if os.access(fn, os.F_OK):
1608 cmd.append("--base")
1609 cmd.append(open(fn).read().rstrip("\n"))
1610
Ying Wang4de6b5b2010-08-25 14:29:34 -07001611 fn = os.path.join(sourcedir, "pagesize")
1612 if os.access(fn, os.F_OK):
1613 cmd.append("--pagesize")
1614 cmd.append(open(fn).read().rstrip("\n"))
1615
Steve Mucklef84668e2020-03-16 19:13:46 -07001616 if partition_name == "recovery":
1617 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301618 if not args:
1619 # Fall back to "mkbootimg_args" for recovery image
1620 # in case "recovery_mkbootimg_args" is not set.
1621 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001622 elif partition_name == "init_boot":
1623 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001624 else:
1625 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001626 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001627 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001628
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001629 boot_signature = None
1630 if _HasGkiCertificationArgs():
1631 # Certify GKI images.
1632 boot_signature_bytes = b''
1633 if kernel_path is not None:
1634 boot_signature_bytes += _GenerateGkiCertificate(
1635 kernel_path, "generic_kernel", "boot")
1636 if has_ramdisk:
1637 boot_signature_bytes += _GenerateGkiCertificate(
1638 ramdisk_img.name, "generic_ramdisk", "init_boot")
1639
1640 if len(boot_signature_bytes) > 0:
1641 boot_signature = tempfile.NamedTemporaryFile()
1642 boot_signature.write(boot_signature_bytes)
1643 boot_signature.flush()
1644 cmd.extend(["--boot_signature", boot_signature.name])
1645 else:
1646 # Certified GKI boot/init_boot image mustn't set 'mkbootimg_version_args'.
1647 args = info_dict.get("mkbootimg_version_args")
1648 if args and args.strip():
1649 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001650
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001651 if has_ramdisk:
1652 cmd.extend(["--ramdisk", ramdisk_img.name])
1653
Tao Baod95e9fd2015-03-29 23:07:41 -07001654 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001655 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001656 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001657 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001658 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001659 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001660
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001661 if partition_name == "recovery":
1662 if info_dict.get("include_recovery_dtbo") == "true":
1663 fn = os.path.join(sourcedir, "recovery_dtbo")
1664 cmd.extend(["--recovery_dtbo", fn])
1665 if info_dict.get("include_recovery_acpio") == "true":
1666 fn = os.path.join(sourcedir, "recovery_acpio")
1667 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001668
Tao Bao986ee862018-10-04 15:46:16 -07001669 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001670
Tao Bao76def242017-11-21 09:25:31 -08001671 if (info_dict.get("boot_signer") == "true" and
Kelvin Zhang563750f2021-04-28 12:46:17 -04001672 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001673 # Hard-code the path as "/boot" for two-step special recovery image (which
1674 # will be loaded into /boot during the two-step OTA).
1675 if two_step_image:
1676 path = "/boot"
1677 else:
Tao Baobf70c312017-07-11 17:27:55 -07001678 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001679 cmd = [OPTIONS.boot_signer_path]
1680 cmd.extend(OPTIONS.boot_signer_args)
1681 cmd.extend([path, img.name,
1682 info_dict["verity_key"] + ".pk8",
1683 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001684 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001685
Tao Baod95e9fd2015-03-29 23:07:41 -07001686 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001687 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001688 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001689 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001690 # We have switched from the prebuilt futility binary to using the tool
1691 # (futility-host) built from the source. Override the setting in the old
1692 # TF.zip.
1693 futility = info_dict["futility"]
1694 if futility.startswith("prebuilts/"):
1695 futility = "futility-host"
1696 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001697 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001698 info_dict["vboot_key"] + ".vbprivk",
1699 info_dict["vboot_subkey"] + ".vbprivk",
1700 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001701 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001702 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001703
Tao Baof3282b42015-04-01 11:21:55 -07001704 # Clean up the temp files.
1705 img_unsigned.close()
1706 img_keyblock.close()
1707
David Zeuthen8fecb282017-12-01 16:24:01 -05001708 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001709 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001710 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001711 if partition_name == "recovery":
1712 part_size = info_dict["recovery_size"]
1713 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001714 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001715 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001716 "--partition_size", str(part_size), "--partition_name",
1717 partition_name]
1718 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001719 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001720 if args and args.strip():
1721 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001722 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001723
1724 img.seek(os.SEEK_SET, 0)
1725 data = img.read()
1726
1727 if has_ramdisk:
1728 ramdisk_img.close()
1729 img.close()
1730
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001731 if boot_signature is not None:
1732 boot_signature.close()
1733
David Zeuthend995f4b2016-01-29 16:59:17 -05001734 return data
1735
1736
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001737def _SignBootableImage(image_path, prebuilt_name, partition_name,
1738 info_dict=None):
1739 """Performs AVB signing for a prebuilt boot.img.
1740
1741 Args:
1742 image_path: The full path of the image, e.g., /path/to/boot.img.
1743 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001744 boot-5.10.img, recovery.img or init_boot.img.
1745 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001746 info_dict: The information dict read from misc_info.txt.
1747 """
1748 if info_dict is None:
1749 info_dict = OPTIONS.info_dict
1750
1751 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1752 if info_dict.get("avb_enable") == "true":
1753 avbtool = info_dict["avb_avbtool"]
1754 if partition_name == "recovery":
1755 part_size = info_dict["recovery_size"]
1756 else:
1757 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1758
1759 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1760 "--partition_size", str(part_size), "--partition_name",
1761 partition_name]
1762 AppendAVBSigningArgs(cmd, partition_name)
1763 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1764 if args and args.strip():
1765 cmd.extend(shlex.split(args))
1766 RunAndCheckOutput(cmd)
1767
1768
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001769def HasRamdisk(partition_name, info_dict=None):
1770 """Returns true/false to see if a bootable image should have a ramdisk.
1771
1772 Args:
1773 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1774 info_dict: The information dict read from misc_info.txt.
1775 """
1776 if info_dict is None:
1777 info_dict = OPTIONS.info_dict
1778
1779 if partition_name != "boot":
1780 return True # init_boot.img or recovery.img has a ramdisk.
1781
1782 if info_dict.get("recovery_as_boot") == "true":
1783 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1784
1785 if info_dict.get("system_root_image") == "true":
1786 # The ramdisk content is merged into the system.img, so there is NO
1787 # ramdisk in the boot.img or boot-<kernel version>.img.
1788 return False
1789
1790 if info_dict.get("init_boot") == "true":
1791 # The ramdisk is moved to the init_boot.img, so there is NO
1792 # ramdisk in the boot.img or boot-<kernel version>.img.
1793 return False
1794
1795 return True
1796
1797
Doug Zongkerd5131602012-08-02 14:46:42 -07001798def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001799 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001800 """Return a File object with the desired bootable image.
1801
1802 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1803 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1804 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001805
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001806 if info_dict is None:
1807 info_dict = OPTIONS.info_dict
1808
Doug Zongker55d93282011-01-25 17:03:34 -08001809 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1810 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001811 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001812 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001813
1814 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1815 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001816 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001817 return File.FromLocalFile(name, prebuilt_path)
1818
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001819 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001820 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1821 if os.path.exists(prebuilt_path):
1822 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1823 signed_img = MakeTempFile()
1824 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001825 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1826 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001827
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001828 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001829
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001830 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001831
Doug Zongker6f1d0312014-08-22 08:07:12 -07001832 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001833 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001834 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001835 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001836 if data:
1837 return File(name, data)
1838 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001839
Doug Zongkereef39442009-04-02 12:14:19 -07001840
Steve Mucklee1b10862019-07-10 10:49:37 -07001841def _BuildVendorBootImage(sourcedir, info_dict=None):
1842 """Build a vendor boot image from the specified sourcedir.
1843
1844 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1845 turn them into a vendor boot image.
1846
1847 Return the image data, or None if sourcedir does not appear to contains files
1848 for building the requested image.
1849 """
1850
1851 if info_dict is None:
1852 info_dict = OPTIONS.info_dict
1853
1854 img = tempfile.NamedTemporaryFile()
1855
jiajia tang836f76b2021-04-02 14:48:26 +08001856 ramdisk_format = _GetRamdiskFormat(info_dict)
1857 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001858
1859 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1860 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1861
1862 cmd = [mkbootimg]
1863
1864 fn = os.path.join(sourcedir, "dtb")
1865 if os.access(fn, os.F_OK):
1866 cmd.append("--dtb")
1867 cmd.append(fn)
1868
1869 fn = os.path.join(sourcedir, "vendor_cmdline")
1870 if os.access(fn, os.F_OK):
1871 cmd.append("--vendor_cmdline")
1872 cmd.append(open(fn).read().rstrip("\n"))
1873
1874 fn = os.path.join(sourcedir, "base")
1875 if os.access(fn, os.F_OK):
1876 cmd.append("--base")
1877 cmd.append(open(fn).read().rstrip("\n"))
1878
1879 fn = os.path.join(sourcedir, "pagesize")
1880 if os.access(fn, os.F_OK):
1881 cmd.append("--pagesize")
1882 cmd.append(open(fn).read().rstrip("\n"))
1883
1884 args = info_dict.get("mkbootimg_args")
1885 if args and args.strip():
1886 cmd.extend(shlex.split(args))
1887
1888 args = info_dict.get("mkbootimg_version_args")
1889 if args and args.strip():
1890 cmd.extend(shlex.split(args))
1891
1892 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1893 cmd.extend(["--vendor_boot", img.name])
1894
Devin Moore50509012021-01-13 10:45:04 -08001895 fn = os.path.join(sourcedir, "vendor_bootconfig")
1896 if os.access(fn, os.F_OK):
1897 cmd.append("--vendor_bootconfig")
1898 cmd.append(fn)
1899
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001900 ramdisk_fragment_imgs = []
1901 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1902 if os.access(fn, os.F_OK):
1903 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1904 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001905 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1906 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001907 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001908 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1909 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001910 # Use prebuilt image if found, else create ramdisk from supplied files.
1911 if os.access(fn, os.F_OK):
1912 ramdisk_fragment_pathname = fn
1913 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001914 ramdisk_fragment_root = os.path.join(
1915 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001916 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1917 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001918 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1919 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1920 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1921
Steve Mucklee1b10862019-07-10 10:49:37 -07001922 RunAndCheckOutput(cmd)
1923
1924 # AVB: if enabled, calculate and add hash.
1925 if info_dict.get("avb_enable") == "true":
1926 avbtool = info_dict["avb_avbtool"]
1927 part_size = info_dict["vendor_boot_size"]
1928 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001929 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001930 AppendAVBSigningArgs(cmd, "vendor_boot")
1931 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1932 if args and args.strip():
1933 cmd.extend(shlex.split(args))
1934 RunAndCheckOutput(cmd)
1935
1936 img.seek(os.SEEK_SET, 0)
1937 data = img.read()
1938
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001939 for f in ramdisk_fragment_imgs:
1940 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001941 ramdisk_img.close()
1942 img.close()
1943
1944 return data
1945
1946
1947def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1948 info_dict=None):
1949 """Return a File object with the desired vendor boot image.
1950
1951 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1952 the source files in 'unpack_dir'/'tree_subdir'."""
1953
1954 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1955 if os.path.exists(prebuilt_path):
1956 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1957 return File.FromLocalFile(name, prebuilt_path)
1958
1959 logger.info("building image from target_files %s...", tree_subdir)
1960
1961 if info_dict is None:
1962 info_dict = OPTIONS.info_dict
1963
Kelvin Zhang0876c412020-06-23 15:06:58 -04001964 data = _BuildVendorBootImage(
1965 os.path.join(unpack_dir, tree_subdir), info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07001966 if data:
1967 return File(name, data)
1968 return None
1969
1970
Narayan Kamatha07bf042017-08-14 14:49:21 +01001971def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001972 """Gunzips the given gzip compressed file to a given output file."""
1973 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04001974 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001975 shutil.copyfileobj(in_file, out_file)
1976
1977
Tao Bao0ff15de2019-03-20 11:26:06 -07001978def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001979 """Unzips the archive to the given directory.
1980
1981 Args:
1982 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001983 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001984 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1985 archvie. Non-matching patterns will be filtered out. If there's no match
1986 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001987 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001988 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001989 if patterns is not None:
1990 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04001991 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07001992 names = input_zip.namelist()
1993 filtered = [
1994 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1995
1996 # There isn't any matching files. Don't unzip anything.
1997 if not filtered:
1998 return
1999 cmd.extend(filtered)
2000
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002001 RunAndCheckOutput(cmd)
2002
2003
Daniel Norman78554ea2021-09-14 10:29:38 -07002004def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002005 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002006
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002007 Args:
2008 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2009 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2010
Daniel Norman78554ea2021-09-14 10:29:38 -07002011 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002012 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002013
Tao Bao1c830bf2017-12-25 10:43:47 -08002014 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002015 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002016 """
Doug Zongkereef39442009-04-02 12:14:19 -07002017
Tao Bao1c830bf2017-12-25 10:43:47 -08002018 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002019 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2020 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002021 UnzipToDir(m.group(1), tmp, patterns)
2022 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002023 filename = m.group(1)
2024 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002025 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002026
Tao Baodba59ee2018-01-09 13:21:02 -08002027 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002028
2029
Yifan Hong8a66a712019-04-04 15:37:57 -07002030def GetUserImage(which, tmpdir, input_zip,
2031 info_dict=None,
2032 allow_shared_blocks=None,
2033 hashtree_info_generator=None,
2034 reset_file_map=False):
2035 """Returns an Image object suitable for passing to BlockImageDiff.
2036
2037 This function loads the specified image from the given path. If the specified
2038 image is sparse, it also performs additional processing for OTA purpose. For
2039 example, it always adds block 0 to clobbered blocks list. It also detects
2040 files that cannot be reconstructed from the block list, for whom we should
2041 avoid applying imgdiff.
2042
2043 Args:
2044 which: The partition name.
2045 tmpdir: The directory that contains the prebuilt image and block map file.
2046 input_zip: The target-files ZIP archive.
2047 info_dict: The dict to be looked up for relevant info.
2048 allow_shared_blocks: If image is sparse, whether having shared blocks is
2049 allowed. If none, it is looked up from info_dict.
2050 hashtree_info_generator: If present and image is sparse, generates the
2051 hashtree_info for this sparse image.
2052 reset_file_map: If true and image is sparse, reset file map before returning
2053 the image.
2054 Returns:
2055 A Image object. If it is a sparse image and reset_file_map is False, the
2056 image will have file_map info loaded.
2057 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002058 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002059 info_dict = LoadInfoDict(input_zip)
2060
2061 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002062 if info_dict.get(which + "_disable_sparse"):
2063 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002064
2065 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2066 # shared blocks (i.e. some blocks will show up in multiple files' block
2067 # list). We can only allocate such shared blocks to the first "owner", and
2068 # disable imgdiff for all later occurrences.
2069 if allow_shared_blocks is None:
2070 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2071
2072 if is_sparse:
2073 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2074 hashtree_info_generator)
2075 if reset_file_map:
2076 img.ResetFileMap()
2077 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04002078 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07002079
2080
2081def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
2082 """Returns a Image object suitable for passing to BlockImageDiff.
2083
2084 This function loads the specified non-sparse image from the given path.
2085
2086 Args:
2087 which: The partition name.
2088 tmpdir: The directory that contains the prebuilt image and block map file.
2089 Returns:
2090 A Image object.
2091 """
2092 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2093 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2094
2095 # The image and map files must have been created prior to calling
2096 # ota_from_target_files.py (since LMP).
2097 assert os.path.exists(path) and os.path.exists(mappath)
2098
Tianjie Xu41976c72019-07-03 13:57:01 -07002099 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
2100
Yifan Hong8a66a712019-04-04 15:37:57 -07002101
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002102def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2103 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08002104 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2105
2106 This function loads the specified sparse image from the given path, and
2107 performs additional processing for OTA purpose. For example, it always adds
2108 block 0 to clobbered blocks list. It also detects files that cannot be
2109 reconstructed from the block list, for whom we should avoid applying imgdiff.
2110
2111 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002112 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002113 tmpdir: The directory that contains the prebuilt image and block map file.
2114 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002115 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002116 hashtree_info_generator: If present, generates the hashtree_info for this
2117 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08002118 Returns:
2119 A SparseImage object, with file_map info loaded.
2120 """
Tao Baoc765cca2018-01-31 17:32:40 -08002121 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2122 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2123
2124 # The image and map files must have been created prior to calling
2125 # ota_from_target_files.py (since LMP).
2126 assert os.path.exists(path) and os.path.exists(mappath)
2127
2128 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2129 # it to clobbered_blocks so that it will be written to the target
2130 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2131 clobbered_blocks = "0"
2132
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002133 image = sparse_img.SparseImage(
2134 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
2135 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08002136
2137 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2138 # if they contain all zeros. We can't reconstruct such a file from its block
2139 # list. Tag such entries accordingly. (Bug: 65213616)
2140 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002141 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002142 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002143 continue
2144
Tom Cherryd14b8952018-08-09 14:26:00 -07002145 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2146 # filename listed in system.map may contain an additional leading slash
2147 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2148 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002149 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002150 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002151 arcname = entry.lstrip('/')
2152 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002153 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002154 else:
2155 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002156
2157 assert arcname in input_zip.namelist(), \
2158 "Failed to find the ZIP entry for {}".format(entry)
2159
Tao Baoc765cca2018-01-31 17:32:40 -08002160 info = input_zip.getinfo(arcname)
2161 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002162
2163 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002164 # image, check the original block list to determine its completeness. Note
2165 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002166 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002167 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002168
Tao Baoc765cca2018-01-31 17:32:40 -08002169 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2170 ranges.extra['incomplete'] = True
2171
2172 return image
2173
2174
Doug Zongkereef39442009-04-02 12:14:19 -07002175def GetKeyPasswords(keylist):
2176 """Given a list of keys, prompt the user to enter passwords for
2177 those which require them. Return a {key: password} dict. password
2178 will be None if the key has no password."""
2179
Doug Zongker8ce7c252009-05-22 13:34:54 -07002180 no_passwords = []
2181 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002182 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002183 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002184
2185 # sorted() can't compare strings to None, so convert Nones to strings
2186 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002187 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002188 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002189 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002190 continue
2191
T.R. Fullhart37e10522013-03-18 10:31:26 -07002192 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002193 "-inform", "DER", "-nocrypt"],
2194 stdin=devnull.fileno(),
2195 stdout=devnull.fileno(),
2196 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002197 p.communicate()
2198 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002199 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002200 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002201 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002202 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2203 "-inform", "DER", "-passin", "pass:"],
2204 stdin=devnull.fileno(),
2205 stdout=devnull.fileno(),
2206 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002207 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002208 if p.returncode == 0:
2209 # Encrypted key with empty string as password.
2210 key_passwords[k] = ''
2211 elif stderr.startswith('Error decrypting key'):
2212 # Definitely encrypted key.
2213 # It would have said "Error reading key" if it didn't parse correctly.
2214 need_passwords.append(k)
2215 else:
2216 # Potentially, a type of key that openssl doesn't understand.
2217 # We'll let the routines in signapk.jar handle it.
2218 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002219 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002220
T.R. Fullhart37e10522013-03-18 10:31:26 -07002221 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002222 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002223 return key_passwords
2224
2225
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002226def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002227 """Gets the minSdkVersion declared in the APK.
2228
Martin Stjernholm58472e82022-01-07 22:08:47 +00002229 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2230 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002231
2232 Args:
2233 apk_name: The APK filename.
2234
2235 Returns:
2236 The parsed SDK version string.
2237
2238 Raises:
2239 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002240 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002241 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002242 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002243 stderr=subprocess.PIPE)
2244 stdoutdata, stderrdata = proc.communicate()
2245 if proc.returncode != 0:
2246 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002247 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2248 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002249
Tao Baof47bf0f2018-03-21 23:28:51 -07002250 for line in stdoutdata.split("\n"):
2251 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002252 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2253 if m:
2254 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002255 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002256
2257
2258def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002259 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002260
Tao Baof47bf0f2018-03-21 23:28:51 -07002261 If minSdkVersion is set to a codename, it is translated to a number using the
2262 provided map.
2263
2264 Args:
2265 apk_name: The APK filename.
2266
2267 Returns:
2268 The parsed SDK version number.
2269
2270 Raises:
2271 ExternalError: On failing to get the min SDK version number.
2272 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002273 version = GetMinSdkVersion(apk_name)
2274 try:
2275 return int(version)
2276 except ValueError:
2277 # Not a decimal number. Codename?
2278 if version in codename_to_api_level_map:
2279 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002280 raise ExternalError(
2281 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2282 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002283
2284
2285def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002286 codename_to_api_level_map=None, whole_file=False,
2287 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002288 """Sign the input_name zip/jar/apk, producing output_name. Use the
2289 given key and password (the latter may be None if the key does not
2290 have a password.
2291
Doug Zongker951495f2009-08-14 12:44:19 -07002292 If whole_file is true, use the "-w" option to SignApk to embed a
2293 signature that covers the whole file in the archive comment of the
2294 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002295
2296 min_api_level is the API Level (int) of the oldest platform this file may end
2297 up on. If not specified for an APK, the API Level is obtained by interpreting
2298 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2299
2300 codename_to_api_level_map is needed to translate the codename which may be
2301 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002302
2303 Caller may optionally specify extra args to be passed to SignApk, which
2304 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002305 """
Tao Bao76def242017-11-21 09:25:31 -08002306 if codename_to_api_level_map is None:
2307 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002308 if extra_signapk_args is None:
2309 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002310
Alex Klyubin9667b182015-12-10 13:38:50 -08002311 java_library_path = os.path.join(
2312 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2313
Tao Baoe95540e2016-11-08 12:08:53 -08002314 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2315 ["-Djava.library.path=" + java_library_path,
2316 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002317 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002318 if whole_file:
2319 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002320
2321 min_sdk_version = min_api_level
2322 if min_sdk_version is None:
2323 if not whole_file:
2324 min_sdk_version = GetMinSdkVersionInt(
2325 input_name, codename_to_api_level_map)
2326 if min_sdk_version is not None:
2327 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2328
T.R. Fullhart37e10522013-03-18 10:31:26 -07002329 cmd.extend([key + OPTIONS.public_key_suffix,
2330 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002331 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002332
Tao Bao73dd4f42018-10-04 16:25:33 -07002333 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002334 if password is not None:
2335 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002336 stdoutdata, _ = proc.communicate(password)
2337 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002338 raise ExternalError(
2339 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002340 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002341
Doug Zongkereef39442009-04-02 12:14:19 -07002342
Doug Zongker37974732010-09-16 17:44:38 -07002343def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002344 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002345
Tao Bao9dd909e2017-11-14 11:27:32 -08002346 For non-AVB images, raise exception if the data is too big. Print a warning
2347 if the data is nearing the maximum size.
2348
2349 For AVB images, the actual image size should be identical to the limit.
2350
2351 Args:
2352 data: A string that contains all the data for the partition.
2353 target: The partition name. The ".img" suffix is optional.
2354 info_dict: The dict to be looked up for relevant info.
2355 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002356 if target.endswith(".img"):
2357 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002358 mount_point = "/" + target
2359
Ying Wangf8824af2014-06-03 14:07:27 -07002360 fs_type = None
2361 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002362 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002363 if mount_point == "/userdata":
2364 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002365 p = info_dict["fstab"][mount_point]
2366 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002367 device = p.device
2368 if "/" in device:
2369 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002370 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002371 if not fs_type or not limit:
2372 return
Doug Zongkereef39442009-04-02 12:14:19 -07002373
Andrew Boie0f9aec82012-02-14 09:32:52 -08002374 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002375 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2376 # path.
2377 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2378 if size != limit:
2379 raise ExternalError(
2380 "Mismatching image size for %s: expected %d actual %d" % (
2381 target, limit, size))
2382 else:
2383 pct = float(size) * 100.0 / limit
2384 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2385 if pct >= 99.0:
2386 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002387
2388 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002389 logger.warning("\n WARNING: %s\n", msg)
2390 else:
2391 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002392
2393
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002394def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002395 """Parses the APK certs info from a given target-files zip.
2396
2397 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2398 tuple with the following elements: (1) a dictionary that maps packages to
2399 certs (based on the "certificate" and "private_key" attributes in the file;
2400 (2) a string representing the extension of compressed APKs in the target files
2401 (e.g ".gz", ".bro").
2402
2403 Args:
2404 tf_zip: The input target_files ZipFile (already open).
2405
2406 Returns:
2407 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2408 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2409 no compressed APKs.
2410 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002411 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002412 compressed_extension = None
2413
Tao Bao0f990332017-09-08 19:02:54 -07002414 # META/apkcerts.txt contains the info for _all_ the packages known at build
2415 # time. Filter out the ones that are not installed.
2416 installed_files = set()
2417 for name in tf_zip.namelist():
2418 basename = os.path.basename(name)
2419 if basename:
2420 installed_files.add(basename)
2421
Tao Baoda30cfa2017-12-01 16:19:46 -08002422 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002423 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002424 if not line:
2425 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002426 m = re.match(
2427 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002428 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2429 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002430 line)
2431 if not m:
2432 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002433
Tao Bao818ddf52018-01-05 11:17:34 -08002434 matches = m.groupdict()
2435 cert = matches["CERT"]
2436 privkey = matches["PRIVKEY"]
2437 name = matches["NAME"]
2438 this_compressed_extension = matches["COMPRESSED"]
2439
2440 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2441 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2442 if cert in SPECIAL_CERT_STRINGS and not privkey:
2443 certmap[name] = cert
2444 elif (cert.endswith(OPTIONS.public_key_suffix) and
2445 privkey.endswith(OPTIONS.private_key_suffix) and
2446 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2447 certmap[name] = cert[:-public_key_suffix_len]
2448 else:
2449 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2450
2451 if not this_compressed_extension:
2452 continue
2453
2454 # Only count the installed files.
2455 filename = name + '.' + this_compressed_extension
2456 if filename not in installed_files:
2457 continue
2458
2459 # Make sure that all the values in the compression map have the same
2460 # extension. We don't support multiple compression methods in the same
2461 # system image.
2462 if compressed_extension:
2463 if this_compressed_extension != compressed_extension:
2464 raise ValueError(
2465 "Multiple compressed extensions: {} vs {}".format(
2466 compressed_extension, this_compressed_extension))
2467 else:
2468 compressed_extension = this_compressed_extension
2469
2470 return (certmap,
2471 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002472
2473
Doug Zongkereef39442009-04-02 12:14:19 -07002474COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002475Global options
2476
2477 -p (--path) <dir>
2478 Prepend <dir>/bin to the list of places to search for binaries run by this
2479 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002480
Doug Zongker05d3dea2009-06-22 11:32:31 -07002481 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002482 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002483
Tao Bao30df8b42018-04-23 15:32:53 -07002484 -x (--extra) <key=value>
2485 Add a key/value pair to the 'extras' dict, which device-specific extension
2486 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002487
Doug Zongkereef39442009-04-02 12:14:19 -07002488 -v (--verbose)
2489 Show command lines being executed.
2490
2491 -h (--help)
2492 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002493
2494 --logfile <file>
2495 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002496"""
2497
Kelvin Zhang0876c412020-06-23 15:06:58 -04002498
Doug Zongkereef39442009-04-02 12:14:19 -07002499def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002500 print(docstring.rstrip("\n"))
2501 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002502
2503
2504def ParseOptions(argv,
2505 docstring,
2506 extra_opts="", extra_long_opts=(),
2507 extra_option_handler=None):
2508 """Parse the options in argv and return any arguments that aren't
2509 flags. docstring is the calling module's docstring, to be displayed
2510 for errors and -h. extra_opts and extra_long_opts are for flags
2511 defined by the caller, which are processed by passing them to
2512 extra_option_handler."""
2513
2514 try:
2515 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002516 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002517 ["help", "verbose", "path=", "signapk_path=",
Martin Stjernholm58472e82022-01-07 22:08:47 +00002518 "signapk_shared_library_path=", "extra_signapk_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002519 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002520 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2521 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002522 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002523 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002524 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002525 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002526 sys.exit(2)
2527
Doug Zongkereef39442009-04-02 12:14:19 -07002528 for o, a in opts:
2529 if o in ("-h", "--help"):
2530 Usage(docstring)
2531 sys.exit()
2532 elif o in ("-v", "--verbose"):
2533 OPTIONS.verbose = True
2534 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002535 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002536 elif o in ("--signapk_path",):
2537 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002538 elif o in ("--signapk_shared_library_path",):
2539 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002540 elif o in ("--extra_signapk_args",):
2541 OPTIONS.extra_signapk_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002542 elif o in ("--aapt2_path",):
2543 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002544 elif o in ("--java_path",):
2545 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002546 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002547 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002548 elif o in ("--android_jar_path",):
2549 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002550 elif o in ("--public_key_suffix",):
2551 OPTIONS.public_key_suffix = a
2552 elif o in ("--private_key_suffix",):
2553 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002554 elif o in ("--boot_signer_path",):
2555 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002556 elif o in ("--boot_signer_args",):
2557 OPTIONS.boot_signer_args = shlex.split(a)
2558 elif o in ("--verity_signer_path",):
2559 OPTIONS.verity_signer_path = a
2560 elif o in ("--verity_signer_args",):
2561 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07002562 elif o in ("-s", "--device_specific"):
2563 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002564 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002565 key, value = a.split("=", 1)
2566 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002567 elif o in ("--logfile",):
2568 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002569 else:
2570 if extra_option_handler is None or not extra_option_handler(o, a):
2571 assert False, "unknown option \"%s\"" % (o,)
2572
Doug Zongker85448772014-09-09 14:59:20 -07002573 if OPTIONS.search_path:
2574 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2575 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002576
2577 return args
2578
2579
Tao Bao4c851b12016-09-19 13:54:38 -07002580def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002581 """Make a temp file and add it to the list of things to be deleted
2582 when Cleanup() is called. Return the filename."""
2583 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2584 os.close(fd)
2585 OPTIONS.tempfiles.append(fn)
2586 return fn
2587
2588
Tao Bao1c830bf2017-12-25 10:43:47 -08002589def MakeTempDir(prefix='tmp', suffix=''):
2590 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2591
2592 Returns:
2593 The absolute pathname of the new directory.
2594 """
2595 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2596 OPTIONS.tempfiles.append(dir_name)
2597 return dir_name
2598
2599
Doug Zongkereef39442009-04-02 12:14:19 -07002600def Cleanup():
2601 for i in OPTIONS.tempfiles:
2602 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002603 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002604 else:
2605 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002606 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002607
2608
2609class PasswordManager(object):
2610 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002611 self.editor = os.getenv("EDITOR")
2612 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002613
2614 def GetPasswords(self, items):
2615 """Get passwords corresponding to each string in 'items',
2616 returning a dict. (The dict may have keys in addition to the
2617 values in 'items'.)
2618
2619 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2620 user edit that file to add more needed passwords. If no editor is
2621 available, or $ANDROID_PW_FILE isn't define, prompts the user
2622 interactively in the ordinary way.
2623 """
2624
2625 current = self.ReadFile()
2626
2627 first = True
2628 while True:
2629 missing = []
2630 for i in items:
2631 if i not in current or not current[i]:
2632 missing.append(i)
2633 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002634 if not missing:
2635 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002636
2637 for i in missing:
2638 current[i] = ""
2639
2640 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002641 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002642 if sys.version_info[0] >= 3:
2643 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002644 answer = raw_input("try to edit again? [y]> ").strip()
2645 if answer and answer[0] not in 'yY':
2646 raise RuntimeError("key passwords unavailable")
2647 first = False
2648
2649 current = self.UpdateAndReadFile(current)
2650
Kelvin Zhang0876c412020-06-23 15:06:58 -04002651 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002652 """Prompt the user to enter a value (password) for each key in
2653 'current' whose value is fales. Returns a new dict with all the
2654 values.
2655 """
2656 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002657 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002658 if v:
2659 result[k] = v
2660 else:
2661 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002662 result[k] = getpass.getpass(
2663 "Enter password for %s key> " % k).strip()
2664 if result[k]:
2665 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002666 return result
2667
2668 def UpdateAndReadFile(self, current):
2669 if not self.editor or not self.pwfile:
2670 return self.PromptResult(current)
2671
2672 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002673 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002674 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2675 f.write("# (Additional spaces are harmless.)\n\n")
2676
2677 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002678 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002679 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002680 f.write("[[[ %s ]]] %s\n" % (v, k))
2681 if not v and first_line is None:
2682 # position cursor on first line with no password.
2683 first_line = i + 4
2684 f.close()
2685
Tao Bao986ee862018-10-04 15:46:16 -07002686 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002687
2688 return self.ReadFile()
2689
2690 def ReadFile(self):
2691 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002692 if self.pwfile is None:
2693 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002694 try:
2695 f = open(self.pwfile, "r")
2696 for line in f:
2697 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002698 if not line or line[0] == '#':
2699 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002700 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2701 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002702 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002703 else:
2704 result[m.group(2)] = m.group(1)
2705 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002706 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002707 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002708 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002709 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002710
2711
Dan Albert8e0178d2015-01-27 15:53:15 -08002712def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2713 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002714
2715 # http://b/18015246
2716 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2717 # for files larger than 2GiB. We can work around this by adjusting their
2718 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2719 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2720 # it isn't clear to me exactly what circumstances cause this).
2721 # `zipfile.write()` must be used directly to work around this.
2722 #
2723 # This mess can be avoided if we port to python3.
2724 saved_zip64_limit = zipfile.ZIP64_LIMIT
2725 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2726
2727 if compress_type is None:
2728 compress_type = zip_file.compression
2729 if arcname is None:
2730 arcname = filename
2731
2732 saved_stat = os.stat(filename)
2733
2734 try:
2735 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2736 # file to be zipped and reset it when we're done.
2737 os.chmod(filename, perms)
2738
2739 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002740 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2741 # intentional. zip stores datetimes in local time without a time zone
2742 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2743 # in the zip archive.
2744 local_epoch = datetime.datetime.fromtimestamp(0)
2745 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002746 os.utime(filename, (timestamp, timestamp))
2747
2748 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2749 finally:
2750 os.chmod(filename, saved_stat.st_mode)
2751 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2752 zipfile.ZIP64_LIMIT = saved_zip64_limit
2753
2754
Tao Bao58c1b962015-05-20 09:32:18 -07002755def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002756 compress_type=None):
2757 """Wrap zipfile.writestr() function to work around the zip64 limit.
2758
2759 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2760 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2761 when calling crc32(bytes).
2762
2763 But it still works fine to write a shorter string into a large zip file.
2764 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2765 when we know the string won't be too long.
2766 """
2767
2768 saved_zip64_limit = zipfile.ZIP64_LIMIT
2769 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2770
2771 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2772 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002773 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002774 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002775 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002776 else:
Tao Baof3282b42015-04-01 11:21:55 -07002777 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002778 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2779 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2780 # such a case (since
2781 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2782 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2783 # permission bits. We follow the logic in Python 3 to get consistent
2784 # behavior between using the two versions.
2785 if not zinfo.external_attr:
2786 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002787
2788 # If compress_type is given, it overrides the value in zinfo.
2789 if compress_type is not None:
2790 zinfo.compress_type = compress_type
2791
Tao Bao58c1b962015-05-20 09:32:18 -07002792 # If perms is given, it has a priority.
2793 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002794 # If perms doesn't set the file type, mark it as a regular file.
2795 if perms & 0o770000 == 0:
2796 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002797 zinfo.external_attr = perms << 16
2798
Tao Baof3282b42015-04-01 11:21:55 -07002799 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002800 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2801
Dan Albert8b72aef2015-03-23 19:13:21 -07002802 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002803 zipfile.ZIP64_LIMIT = saved_zip64_limit
2804
2805
Tao Bao89d7ab22017-12-14 17:05:33 -08002806def ZipDelete(zip_filename, entries):
2807 """Deletes entries from a ZIP file.
2808
2809 Since deleting entries from a ZIP file is not supported, it shells out to
2810 'zip -d'.
2811
2812 Args:
2813 zip_filename: The name of the ZIP file.
2814 entries: The name of the entry, or the list of names to be deleted.
2815
2816 Raises:
2817 AssertionError: In case of non-zero return from 'zip'.
2818 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002819 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002820 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002821 # If list is empty, nothing to do
2822 if not entries:
2823 return
Tao Bao89d7ab22017-12-14 17:05:33 -08002824 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002825 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002826
2827
Tao Baof3282b42015-04-01 11:21:55 -07002828def ZipClose(zip_file):
2829 # http://b/18015246
2830 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2831 # central directory.
2832 saved_zip64_limit = zipfile.ZIP64_LIMIT
2833 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2834
2835 zip_file.close()
2836
2837 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002838
2839
2840class DeviceSpecificParams(object):
2841 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002842
Doug Zongker05d3dea2009-06-22 11:32:31 -07002843 def __init__(self, **kwargs):
2844 """Keyword arguments to the constructor become attributes of this
2845 object, which is passed to all functions in the device-specific
2846 module."""
Tao Bao38884282019-07-10 22:20:56 -07002847 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002848 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002849 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002850
2851 if self.module is None:
2852 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002853 if not path:
2854 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002855 try:
2856 if os.path.isdir(path):
2857 info = imp.find_module("releasetools", [path])
2858 else:
2859 d, f = os.path.split(path)
2860 b, x = os.path.splitext(f)
2861 if x == ".py":
2862 f = b
2863 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002864 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002865 self.module = imp.load_module("device_specific", *info)
2866 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002867 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002868
2869 def _DoCall(self, function_name, *args, **kwargs):
2870 """Call the named function in the device-specific module, passing
2871 the given args and kwargs. The first argument to the call will be
2872 the DeviceSpecific object itself. If there is no module, or the
2873 module does not define the function, return the value of the
2874 'default' kwarg (which itself defaults to None)."""
2875 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002876 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002877 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2878
2879 def FullOTA_Assertions(self):
2880 """Called after emitting the block of assertions at the top of a
2881 full OTA package. Implementations can add whatever additional
2882 assertions they like."""
2883 return self._DoCall("FullOTA_Assertions")
2884
Doug Zongkere5ff5902012-01-17 10:55:37 -08002885 def FullOTA_InstallBegin(self):
2886 """Called at the start of full OTA installation."""
2887 return self._DoCall("FullOTA_InstallBegin")
2888
Yifan Hong10c530d2018-12-27 17:34:18 -08002889 def FullOTA_GetBlockDifferences(self):
2890 """Called during full OTA installation and verification.
2891 Implementation should return a list of BlockDifference objects describing
2892 the update on each additional partitions.
2893 """
2894 return self._DoCall("FullOTA_GetBlockDifferences")
2895
Doug Zongker05d3dea2009-06-22 11:32:31 -07002896 def FullOTA_InstallEnd(self):
2897 """Called at the end of full OTA installation; typically this is
2898 used to install the image for the device's baseband processor."""
2899 return self._DoCall("FullOTA_InstallEnd")
2900
2901 def IncrementalOTA_Assertions(self):
2902 """Called after emitting the block of assertions at the top of an
2903 incremental OTA package. Implementations can add whatever
2904 additional assertions they like."""
2905 return self._DoCall("IncrementalOTA_Assertions")
2906
Doug Zongkere5ff5902012-01-17 10:55:37 -08002907 def IncrementalOTA_VerifyBegin(self):
2908 """Called at the start of the verification phase of incremental
2909 OTA installation; additional checks can be placed here to abort
2910 the script before any changes are made."""
2911 return self._DoCall("IncrementalOTA_VerifyBegin")
2912
Doug Zongker05d3dea2009-06-22 11:32:31 -07002913 def IncrementalOTA_VerifyEnd(self):
2914 """Called at the end of the verification phase of incremental OTA
2915 installation; additional checks can be placed here to abort the
2916 script before any changes are made."""
2917 return self._DoCall("IncrementalOTA_VerifyEnd")
2918
Doug Zongkere5ff5902012-01-17 10:55:37 -08002919 def IncrementalOTA_InstallBegin(self):
2920 """Called at the start of incremental OTA installation (after
2921 verification is complete)."""
2922 return self._DoCall("IncrementalOTA_InstallBegin")
2923
Yifan Hong10c530d2018-12-27 17:34:18 -08002924 def IncrementalOTA_GetBlockDifferences(self):
2925 """Called during incremental OTA installation and verification.
2926 Implementation should return a list of BlockDifference objects describing
2927 the update on each additional partitions.
2928 """
2929 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2930
Doug Zongker05d3dea2009-06-22 11:32:31 -07002931 def IncrementalOTA_InstallEnd(self):
2932 """Called at the end of incremental OTA installation; typically
2933 this is used to install the image for the device's baseband
2934 processor."""
2935 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002936
Tao Bao9bc6bb22015-11-09 16:58:28 -08002937 def VerifyOTA_Assertions(self):
2938 return self._DoCall("VerifyOTA_Assertions")
2939
Tao Bao76def242017-11-21 09:25:31 -08002940
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002941class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002942 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002943 self.name = name
2944 self.data = data
2945 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002946 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002947 self.sha1 = sha1(data).hexdigest()
2948
2949 @classmethod
2950 def FromLocalFile(cls, name, diskname):
2951 f = open(diskname, "rb")
2952 data = f.read()
2953 f.close()
2954 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002955
2956 def WriteToTemp(self):
2957 t = tempfile.NamedTemporaryFile()
2958 t.write(self.data)
2959 t.flush()
2960 return t
2961
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002962 def WriteToDir(self, d):
2963 with open(os.path.join(d, self.name), "wb") as fp:
2964 fp.write(self.data)
2965
Geremy Condra36bd3652014-02-06 19:45:10 -08002966 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002967 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002968
Tao Bao76def242017-11-21 09:25:31 -08002969
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002970DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04002971 ".gz": "imgdiff",
2972 ".zip": ["imgdiff", "-z"],
2973 ".jar": ["imgdiff", "-z"],
2974 ".apk": ["imgdiff", "-z"],
2975 ".img": "imgdiff",
2976}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002977
Tao Bao76def242017-11-21 09:25:31 -08002978
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002979class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002980 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002981 self.tf = tf
2982 self.sf = sf
2983 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002984 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002985
2986 def ComputePatch(self):
2987 """Compute the patch (as a string of data) needed to turn sf into
2988 tf. Returns the same tuple as GetPatch()."""
2989
2990 tf = self.tf
2991 sf = self.sf
2992
Doug Zongker24cd2802012-08-14 16:36:15 -07002993 if self.diff_program:
2994 diff_program = self.diff_program
2995 else:
2996 ext = os.path.splitext(tf.name)[1]
2997 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002998
2999 ttemp = tf.WriteToTemp()
3000 stemp = sf.WriteToTemp()
3001
3002 ext = os.path.splitext(tf.name)[1]
3003
3004 try:
3005 ptemp = tempfile.NamedTemporaryFile()
3006 if isinstance(diff_program, list):
3007 cmd = copy.copy(diff_program)
3008 else:
3009 cmd = [diff_program]
3010 cmd.append(stemp.name)
3011 cmd.append(ttemp.name)
3012 cmd.append(ptemp.name)
3013 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003014 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003015
Doug Zongkerf8340082014-08-05 10:39:37 -07003016 def run():
3017 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003018 if e:
3019 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003020 th = threading.Thread(target=run)
3021 th.start()
3022 th.join(timeout=300) # 5 mins
3023 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003024 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003025 p.terminate()
3026 th.join(5)
3027 if th.is_alive():
3028 p.kill()
3029 th.join()
3030
Tianjie Xua2a9f992018-01-05 15:15:54 -08003031 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003032 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003033 self.patch = None
3034 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003035 diff = ptemp.read()
3036 finally:
3037 ptemp.close()
3038 stemp.close()
3039 ttemp.close()
3040
3041 self.patch = diff
3042 return self.tf, self.sf, self.patch
3043
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003044 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003045 """Returns a tuple of (target_file, source_file, patch_data).
3046
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003047 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003048 computing the patch failed.
3049 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003050 return self.tf, self.sf, self.patch
3051
3052
3053def ComputeDifferences(diffs):
3054 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003055 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003056
3057 # Do the largest files first, to try and reduce the long-pole effect.
3058 by_size = [(i.tf.size, i) for i in diffs]
3059 by_size.sort(reverse=True)
3060 by_size = [i[1] for i in by_size]
3061
3062 lock = threading.Lock()
3063 diff_iter = iter(by_size) # accessed under lock
3064
3065 def worker():
3066 try:
3067 lock.acquire()
3068 for d in diff_iter:
3069 lock.release()
3070 start = time.time()
3071 d.ComputePatch()
3072 dur = time.time() - start
3073 lock.acquire()
3074
3075 tf, sf, patch = d.GetPatch()
3076 if sf.name == tf.name:
3077 name = tf.name
3078 else:
3079 name = "%s (%s)" % (tf.name, sf.name)
3080 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003081 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003082 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003083 logger.info(
3084 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3085 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003086 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003087 except Exception:
3088 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003089 raise
3090
3091 # start worker threads; wait for them all to finish.
3092 threads = [threading.Thread(target=worker)
3093 for i in range(OPTIONS.worker_threads)]
3094 for th in threads:
3095 th.start()
3096 while threads:
3097 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003098
3099
Dan Albert8b72aef2015-03-23 19:13:21 -07003100class BlockDifference(object):
3101 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003102 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003103 self.tgt = tgt
3104 self.src = src
3105 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003106 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003107 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003108
Tao Baodd2a5892015-03-12 12:32:37 -07003109 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003110 version = max(
3111 int(i) for i in
3112 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003113 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003114 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003115
Tianjie Xu41976c72019-07-03 13:57:01 -07003116 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3117 version=self.version,
3118 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003119 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003120 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003121 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003122 self.touched_src_ranges = b.touched_src_ranges
3123 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003124
Yifan Hong10c530d2018-12-27 17:34:18 -08003125 # On devices with dynamic partitions, for new partitions,
3126 # src is None but OPTIONS.source_info_dict is not.
3127 if OPTIONS.source_info_dict is None:
3128 is_dynamic_build = OPTIONS.info_dict.get(
3129 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003130 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003131 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003132 is_dynamic_build = OPTIONS.source_info_dict.get(
3133 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003134 is_dynamic_source = partition in shlex.split(
3135 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003136
Yifan Hongbb2658d2019-01-25 12:30:58 -08003137 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003138 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3139
Yifan Hongbb2658d2019-01-25 12:30:58 -08003140 # For dynamic partitions builds, check partition list in both source
3141 # and target build because new partitions may be added, and existing
3142 # partitions may be removed.
3143 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3144
Yifan Hong10c530d2018-12-27 17:34:18 -08003145 if is_dynamic:
3146 self.device = 'map_partition("%s")' % partition
3147 else:
3148 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003149 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3150 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003151 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003152 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3153 OPTIONS.source_info_dict)
3154 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003155
Tao Baod8d14be2016-02-04 14:26:02 -08003156 @property
3157 def required_cache(self):
3158 return self._required_cache
3159
Tao Bao76def242017-11-21 09:25:31 -08003160 def WriteScript(self, script, output_zip, progress=None,
3161 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003162 if not self.src:
3163 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003164 script.Print("Patching %s image unconditionally..." % (self.partition,))
3165 else:
3166 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003167
Dan Albert8b72aef2015-03-23 19:13:21 -07003168 if progress:
3169 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003170 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003171
3172 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003173 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003174
Tao Bao9bc6bb22015-11-09 16:58:28 -08003175 def WriteStrictVerifyScript(self, script):
3176 """Verify all the blocks in the care_map, including clobbered blocks.
3177
3178 This differs from the WriteVerifyScript() function: a) it prints different
3179 error messages; b) it doesn't allow half-way updated images to pass the
3180 verification."""
3181
3182 partition = self.partition
3183 script.Print("Verifying %s..." % (partition,))
3184 ranges = self.tgt.care_map
3185 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003186 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003187 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3188 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003189 self.device, ranges_str,
3190 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003191 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003192 script.AppendExtra("")
3193
Tao Baod522bdc2016-04-12 15:53:16 -07003194 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003195 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003196
3197 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003198 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003199 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003200
3201 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003202 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003203 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003204 ranges = self.touched_src_ranges
3205 expected_sha1 = self.touched_src_sha1
3206 else:
3207 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3208 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003209
3210 # No blocks to be checked, skipping.
3211 if not ranges:
3212 return
3213
Tao Bao5ece99d2015-05-12 11:42:31 -07003214 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003215 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003216 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003217 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3218 '"%s.patch.dat")) then' % (
3219 self.device, ranges_str, expected_sha1,
3220 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003221 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003222 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003223
Tianjie Xufc3422a2015-12-15 11:53:59 -08003224 if self.version >= 4:
3225
3226 # Bug: 21124327
3227 # When generating incrementals for the system and vendor partitions in
3228 # version 4 or newer, explicitly check the first block (which contains
3229 # the superblock) of the partition to see if it's what we expect. If
3230 # this check fails, give an explicit log message about the partition
3231 # having been remounted R/W (the most likely explanation).
3232 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003233 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003234
3235 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003236 if partition == "system":
3237 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3238 else:
3239 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003240 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003241 'ifelse (block_image_recover({device}, "{ranges}") && '
3242 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003243 'package_extract_file("{partition}.transfer.list"), '
3244 '"{partition}.new.dat", "{partition}.patch.dat"), '
3245 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003246 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003247 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003248 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003249
Tao Baodd2a5892015-03-12 12:32:37 -07003250 # Abort the OTA update. Note that the incremental OTA cannot be applied
3251 # even if it may match the checksum of the target partition.
3252 # a) If version < 3, operations like move and erase will make changes
3253 # unconditionally and damage the partition.
3254 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003255 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003256 if partition == "system":
3257 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3258 else:
3259 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3260 script.AppendExtra((
3261 'abort("E%d: %s partition has unexpected contents");\n'
3262 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003263
Yifan Hong10c530d2018-12-27 17:34:18 -08003264 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003265 partition = self.partition
3266 script.Print('Verifying the updated %s image...' % (partition,))
3267 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3268 ranges = self.tgt.care_map
3269 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003270 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003271 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003272 self.device, ranges_str,
3273 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003274
3275 # Bug: 20881595
3276 # Verify that extended blocks are really zeroed out.
3277 if self.tgt.extended:
3278 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003279 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003280 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003281 self.device, ranges_str,
3282 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003283 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003284 if partition == "system":
3285 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3286 else:
3287 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003288 script.AppendExtra(
3289 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003290 ' abort("E%d: %s partition has unexpected non-zero contents after '
3291 'OTA update");\n'
3292 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003293 else:
3294 script.Print('Verified the updated %s image.' % (partition,))
3295
Tianjie Xu209db462016-05-24 17:34:52 -07003296 if partition == "system":
3297 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3298 else:
3299 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3300
Tao Bao5fcaaef2015-06-01 13:40:49 -07003301 script.AppendExtra(
3302 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003303 ' abort("E%d: %s partition has unexpected contents after OTA '
3304 'update");\n'
3305 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003306
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003307 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003308 ZipWrite(output_zip,
3309 '{}.transfer.list'.format(self.path),
3310 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003311
Tao Bao76def242017-11-21 09:25:31 -08003312 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3313 # its size. Quailty 9 almost triples the compression time but doesn't
3314 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003315 # zip | brotli(quality 6) | brotli(quality 9)
3316 # compressed_size: 942M | 869M (~8% reduced) | 854M
3317 # compression_time: 75s | 265s | 719s
3318 # decompression_time: 15s | 25s | 25s
3319
3320 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003321 brotli_cmd = ['brotli', '--quality=6',
3322 '--output={}.new.dat.br'.format(self.path),
3323 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003324 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003325 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003326
3327 new_data_name = '{}.new.dat.br'.format(self.partition)
3328 ZipWrite(output_zip,
3329 '{}.new.dat.br'.format(self.path),
3330 new_data_name,
3331 compress_type=zipfile.ZIP_STORED)
3332 else:
3333 new_data_name = '{}.new.dat'.format(self.partition)
3334 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3335
Dan Albert8e0178d2015-01-27 15:53:15 -08003336 ZipWrite(output_zip,
3337 '{}.patch.dat'.format(self.path),
3338 '{}.patch.dat'.format(self.partition),
3339 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003340
Tianjie Xu209db462016-05-24 17:34:52 -07003341 if self.partition == "system":
3342 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3343 else:
3344 code = ErrorCode.VENDOR_UPDATE_FAILURE
3345
Yifan Hong10c530d2018-12-27 17:34:18 -08003346 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003347 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003348 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003349 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003350 device=self.device, partition=self.partition,
3351 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003352 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003353
Kelvin Zhang0876c412020-06-23 15:06:58 -04003354 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003355 data = source.ReadRangeSet(ranges)
3356 ctx = sha1()
3357
3358 for p in data:
3359 ctx.update(p)
3360
3361 return ctx.hexdigest()
3362
Kelvin Zhang0876c412020-06-23 15:06:58 -04003363 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003364 """Return the hash value for all zero blocks."""
3365 zero_block = '\x00' * 4096
3366 ctx = sha1()
3367 for _ in range(num_blocks):
3368 ctx.update(zero_block)
3369
3370 return ctx.hexdigest()
3371
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003372
Tianjie Xu41976c72019-07-03 13:57:01 -07003373# Expose these two classes to support vendor-specific scripts
3374DataImage = images.DataImage
3375EmptyImage = images.EmptyImage
3376
Tao Bao76def242017-11-21 09:25:31 -08003377
Doug Zongker96a57e72010-09-26 14:57:41 -07003378# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003379PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003380 "ext4": "EMMC",
3381 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003382 "f2fs": "EMMC",
3383 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003384}
Doug Zongker96a57e72010-09-26 14:57:41 -07003385
Kelvin Zhang0876c412020-06-23 15:06:58 -04003386
Yifan Hongbdb32012020-05-07 12:38:53 -07003387def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3388 """
3389 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3390 backwards compatibility. It aborts if the fstab entry has slotselect option
3391 (unless check_no_slot is explicitly set to False).
3392 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003393 fstab = info["fstab"]
3394 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003395 if check_no_slot:
3396 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003397 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003398 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3399 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003400 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003401
3402
Yifan Hongbdb32012020-05-07 12:38:53 -07003403def GetTypeAndDeviceExpr(mount_point, info):
3404 """
3405 Return the filesystem of the partition, and an edify expression that evaluates
3406 to the device at runtime.
3407 """
3408 fstab = info["fstab"]
3409 if fstab:
3410 p = fstab[mount_point]
3411 device_expr = '"%s"' % fstab[mount_point].device
3412 if p.slotselect:
3413 device_expr = 'add_slot_suffix(%s)' % device_expr
3414 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003415 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003416
3417
3418def GetEntryForDevice(fstab, device):
3419 """
3420 Returns:
3421 The first entry in fstab whose device is the given value.
3422 """
3423 if not fstab:
3424 return None
3425 for mount_point in fstab:
3426 if fstab[mount_point].device == device:
3427 return fstab[mount_point]
3428 return None
3429
Kelvin Zhang0876c412020-06-23 15:06:58 -04003430
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003431def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003432 """Parses and converts a PEM-encoded certificate into DER-encoded.
3433
3434 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3435
3436 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003437 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003438 """
3439 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003440 save = False
3441 for line in data.split("\n"):
3442 if "--END CERTIFICATE--" in line:
3443 break
3444 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003445 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003446 if "--BEGIN CERTIFICATE--" in line:
3447 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003448 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003449 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003450
Tao Bao04e1f012018-02-04 12:13:35 -08003451
3452def ExtractPublicKey(cert):
3453 """Extracts the public key (PEM-encoded) from the given certificate file.
3454
3455 Args:
3456 cert: The certificate filename.
3457
3458 Returns:
3459 The public key string.
3460
3461 Raises:
3462 AssertionError: On non-zero return from 'openssl'.
3463 """
3464 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3465 # While openssl 1.1 writes the key into the given filename followed by '-out',
3466 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3467 # stdout instead.
3468 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3469 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3470 pubkey, stderrdata = proc.communicate()
3471 assert proc.returncode == 0, \
3472 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3473 return pubkey
3474
3475
Tao Bao1ac886e2019-06-26 11:58:22 -07003476def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003477 """Extracts the AVB public key from the given public or private key.
3478
3479 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003480 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003481 key: The input key file, which should be PEM-encoded public or private key.
3482
3483 Returns:
3484 The path to the extracted AVB public key file.
3485 """
3486 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3487 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003488 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003489 return output
3490
3491
Doug Zongker412c02f2014-02-13 10:58:24 -08003492def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3493 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003494 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003495
Tao Bao6d5d6232018-03-09 17:04:42 -08003496 Most of the space in the boot and recovery images is just the kernel, which is
3497 identical for the two, so the resulting patch should be efficient. Add it to
3498 the output zip, along with a shell script that is run from init.rc on first
3499 boot to actually do the patching and install the new recovery image.
3500
3501 Args:
3502 input_dir: The top-level input directory of the target-files.zip.
3503 output_sink: The callback function that writes the result.
3504 recovery_img: File object for the recovery image.
3505 boot_img: File objects for the boot image.
3506 info_dict: A dict returned by common.LoadInfoDict() on the input
3507 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003508 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003509 if info_dict is None:
3510 info_dict = OPTIONS.info_dict
3511
Tao Bao6d5d6232018-03-09 17:04:42 -08003512 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003513 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3514
3515 if board_uses_vendorimage:
3516 # In this case, the output sink is rooted at VENDOR
3517 recovery_img_path = "etc/recovery.img"
3518 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3519 sh_dir = "bin"
3520 else:
3521 # In this case the output sink is rooted at SYSTEM
3522 recovery_img_path = "vendor/etc/recovery.img"
3523 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3524 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003525
Tao Baof2cffbd2015-07-22 12:33:18 -07003526 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003527 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003528
3529 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003530 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003531 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003532 # With system-root-image, boot and recovery images will have mismatching
3533 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3534 # to handle such a case.
3535 if system_root_image:
3536 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003537 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003538 assert not os.path.exists(path)
3539 else:
3540 diff_program = ["imgdiff"]
3541 if os.path.exists(path):
3542 diff_program.append("-b")
3543 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003544 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003545 else:
3546 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003547
3548 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3549 _, _, patch = d.ComputePatch()
3550 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003551
Dan Albertebb19aa2015-03-27 19:11:53 -07003552 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003553 # The following GetTypeAndDevice()s need to use the path in the target
3554 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003555 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3556 check_no_slot=False)
3557 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3558 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003559 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003560 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003561
Tao Baof2cffbd2015-07-22 12:33:18 -07003562 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003563
3564 # Note that we use /vendor to refer to the recovery resources. This will
3565 # work for a separate vendor partition mounted at /vendor or a
3566 # /system/vendor subdirectory on the system partition, for which init will
3567 # create a symlink from /vendor to /system/vendor.
3568
3569 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003570if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3571 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003572 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003573 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3574 log -t recovery "Installing new recovery image: succeeded" || \\
3575 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003576else
3577 log -t recovery "Recovery image already installed"
3578fi
3579""" % {'type': recovery_type,
3580 'device': recovery_device,
3581 'sha1': recovery_img.sha1,
3582 'size': recovery_img.size}
3583 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003584 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003585if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3586 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003587 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003588 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3589 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3590 log -t recovery "Installing new recovery image: succeeded" || \\
3591 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003592else
3593 log -t recovery "Recovery image already installed"
3594fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003595""" % {'boot_size': boot_img.size,
3596 'boot_sha1': boot_img.sha1,
3597 'recovery_size': recovery_img.size,
3598 'recovery_sha1': recovery_img.sha1,
3599 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003600 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003601 'recovery_type': recovery_type,
3602 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003603 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003604
Bill Peckhame868aec2019-09-17 17:06:47 -07003605 # The install script location moved from /system/etc to /system/bin in the L
3606 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3607 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003608
Tao Bao32fcdab2018-10-12 10:30:39 -07003609 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003610
Tao Baoda30cfa2017-12-01 16:19:46 -08003611 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003612
3613
3614class DynamicPartitionUpdate(object):
3615 def __init__(self, src_group=None, tgt_group=None, progress=None,
3616 block_difference=None):
3617 self.src_group = src_group
3618 self.tgt_group = tgt_group
3619 self.progress = progress
3620 self.block_difference = block_difference
3621
3622 @property
3623 def src_size(self):
3624 if not self.block_difference:
3625 return 0
3626 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3627
3628 @property
3629 def tgt_size(self):
3630 if not self.block_difference:
3631 return 0
3632 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3633
3634 @staticmethod
3635 def _GetSparseImageSize(img):
3636 if not img:
3637 return 0
3638 return img.blocksize * img.total_blocks
3639
3640
3641class DynamicGroupUpdate(object):
3642 def __init__(self, src_size=None, tgt_size=None):
3643 # None: group does not exist. 0: no size limits.
3644 self.src_size = src_size
3645 self.tgt_size = tgt_size
3646
3647
3648class DynamicPartitionsDifference(object):
3649 def __init__(self, info_dict, block_diffs, progress_dict=None,
3650 source_info_dict=None):
3651 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003652 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003653
3654 self._remove_all_before_apply = False
3655 if source_info_dict is None:
3656 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003657 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003658
Tao Baof1113e92019-06-18 12:10:14 -07003659 block_diff_dict = collections.OrderedDict(
3660 [(e.partition, e) for e in block_diffs])
3661
Yifan Hong10c530d2018-12-27 17:34:18 -08003662 assert len(block_diff_dict) == len(block_diffs), \
3663 "Duplicated BlockDifference object for {}".format(
3664 [partition for partition, count in
3665 collections.Counter(e.partition for e in block_diffs).items()
3666 if count > 1])
3667
Yifan Hong79997e52019-01-23 16:56:19 -08003668 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003669
3670 for p, block_diff in block_diff_dict.items():
3671 self._partition_updates[p] = DynamicPartitionUpdate()
3672 self._partition_updates[p].block_difference = block_diff
3673
3674 for p, progress in progress_dict.items():
3675 if p in self._partition_updates:
3676 self._partition_updates[p].progress = progress
3677
3678 tgt_groups = shlex.split(info_dict.get(
3679 "super_partition_groups", "").strip())
3680 src_groups = shlex.split(source_info_dict.get(
3681 "super_partition_groups", "").strip())
3682
3683 for g in tgt_groups:
3684 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003685 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003686 assert p in self._partition_updates, \
3687 "{} is in target super_{}_partition_list but no BlockDifference " \
3688 "object is provided.".format(p, g)
3689 self._partition_updates[p].tgt_group = g
3690
3691 for g in src_groups:
3692 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003693 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003694 assert p in self._partition_updates, \
3695 "{} is in source super_{}_partition_list but no BlockDifference " \
3696 "object is provided.".format(p, g)
3697 self._partition_updates[p].src_group = g
3698
Yifan Hong45433e42019-01-18 13:55:25 -08003699 target_dynamic_partitions = set(shlex.split(info_dict.get(
3700 "dynamic_partition_list", "").strip()))
3701 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3702 if u.tgt_size)
3703 assert block_diffs_with_target == target_dynamic_partitions, \
3704 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3705 list(target_dynamic_partitions), list(block_diffs_with_target))
3706
3707 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3708 "dynamic_partition_list", "").strip()))
3709 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3710 if u.src_size)
3711 assert block_diffs_with_source == source_dynamic_partitions, \
3712 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3713 list(source_dynamic_partitions), list(block_diffs_with_source))
3714
Yifan Hong10c530d2018-12-27 17:34:18 -08003715 if self._partition_updates:
3716 logger.info("Updating dynamic partitions %s",
3717 self._partition_updates.keys())
3718
Yifan Hong79997e52019-01-23 16:56:19 -08003719 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003720
3721 for g in tgt_groups:
3722 self._group_updates[g] = DynamicGroupUpdate()
3723 self._group_updates[g].tgt_size = int(info_dict.get(
3724 "super_%s_group_size" % g, "0").strip())
3725
3726 for g in src_groups:
3727 if g not in self._group_updates:
3728 self._group_updates[g] = DynamicGroupUpdate()
3729 self._group_updates[g].src_size = int(source_info_dict.get(
3730 "super_%s_group_size" % g, "0").strip())
3731
3732 self._Compute()
3733
3734 def WriteScript(self, script, output_zip, write_verify_script=False):
3735 script.Comment('--- Start patching dynamic partitions ---')
3736 for p, u in self._partition_updates.items():
3737 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3738 script.Comment('Patch partition %s' % p)
3739 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3740 write_verify_script=False)
3741
3742 op_list_path = MakeTempFile()
3743 with open(op_list_path, 'w') as f:
3744 for line in self._op_list:
3745 f.write('{}\n'.format(line))
3746
3747 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3748
3749 script.Comment('Update dynamic partition metadata')
3750 script.AppendExtra('assert(update_dynamic_partitions('
3751 'package_extract_file("dynamic_partitions_op_list")));')
3752
3753 if write_verify_script:
3754 for p, u in self._partition_updates.items():
3755 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3756 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003757 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003758
3759 for p, u in self._partition_updates.items():
3760 if u.tgt_size and u.src_size <= u.tgt_size:
3761 script.Comment('Patch partition %s' % p)
3762 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3763 write_verify_script=write_verify_script)
3764 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003765 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003766
3767 script.Comment('--- End patching dynamic partitions ---')
3768
3769 def _Compute(self):
3770 self._op_list = list()
3771
3772 def append(line):
3773 self._op_list.append(line)
3774
3775 def comment(line):
3776 self._op_list.append("# %s" % line)
3777
3778 if self._remove_all_before_apply:
3779 comment('Remove all existing dynamic partitions and groups before '
3780 'applying full OTA')
3781 append('remove_all_groups')
3782
3783 for p, u in self._partition_updates.items():
3784 if u.src_group and not u.tgt_group:
3785 append('remove %s' % p)
3786
3787 for p, u in self._partition_updates.items():
3788 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3789 comment('Move partition %s from %s to default' % (p, u.src_group))
3790 append('move %s default' % p)
3791
3792 for p, u in self._partition_updates.items():
3793 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3794 comment('Shrink partition %s from %d to %d' %
3795 (p, u.src_size, u.tgt_size))
3796 append('resize %s %s' % (p, u.tgt_size))
3797
3798 for g, u in self._group_updates.items():
3799 if u.src_size is not None and u.tgt_size is None:
3800 append('remove_group %s' % g)
3801 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003802 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003803 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3804 append('resize_group %s %d' % (g, u.tgt_size))
3805
3806 for g, u in self._group_updates.items():
3807 if u.src_size is None and u.tgt_size is not None:
3808 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3809 append('add_group %s %d' % (g, u.tgt_size))
3810 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003811 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003812 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3813 append('resize_group %s %d' % (g, u.tgt_size))
3814
3815 for p, u in self._partition_updates.items():
3816 if u.tgt_group and not u.src_group:
3817 comment('Add partition %s to group %s' % (p, u.tgt_group))
3818 append('add %s %s' % (p, u.tgt_group))
3819
3820 for p, u in self._partition_updates.items():
3821 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003822 comment('Grow partition %s from %d to %d' %
3823 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003824 append('resize %s %d' % (p, u.tgt_size))
3825
3826 for p, u in self._partition_updates.items():
3827 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3828 comment('Move partition %s from default to %s' %
3829 (p, u.tgt_group))
3830 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003831
3832
jiajia tangf3f842b2021-03-17 21:49:44 +08003833def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003834 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003835 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003836
3837 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003838 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003839
3840 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003841 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003842 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003843 tmp_dir = MakeTempDir('boot_', suffix='.img')
3844 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003845 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3846 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003847 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3848 if not os.path.isfile(ramdisk):
3849 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3850 return None
3851 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003852 if ramdisk_format == RamdiskFormat.LZ4:
3853 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3854 elif ramdisk_format == RamdiskFormat.GZ:
3855 with open(ramdisk, 'rb') as input_stream:
3856 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003857 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3858 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003859 p2.wait()
3860 else:
3861 logger.error('Only support lz4 or minigzip ramdisk format.')
3862 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003863
3864 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3865 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3866 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3867 # the host environment.
3868 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003869 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003870
Yifan Hongc65a0542021-01-07 14:21:01 -08003871 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3872 prop_file = os.path.join(extracted_ramdisk, search_path)
3873 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003874 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003875 logger.warning(
3876 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003877
Yifan Hong7dc51172021-01-12 11:27:39 -08003878 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003879
Yifan Hong85ac5012021-01-07 14:43:46 -08003880 except ExternalError as e:
3881 logger.warning('Unable to get boot image build props: %s', e)
3882 return None
3883
3884
3885def GetBootImageTimestamp(boot_img):
3886 """
3887 Get timestamp from ramdisk within the boot image
3888
3889 Args:
3890 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3891
3892 Return:
3893 An integer that corresponds to the timestamp of the boot image, or None
3894 if file has unknown format. Raise exception if an unexpected error has
3895 occurred.
3896 """
3897 prop_file = GetBootImageBuildProp(boot_img)
3898 if not prop_file:
3899 return None
3900
3901 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3902 if props is None:
3903 return None
3904
3905 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003906 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3907 if timestamp:
3908 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003909 logger.warning(
3910 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003911 return None
3912
3913 except ExternalError as e:
3914 logger.warning('Unable to get boot image timestamp: %s', e)
3915 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003916
3917
3918def GetCareMap(which, imgname):
3919 """Returns the care_map string for the given partition.
3920
3921 Args:
3922 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
3923 imgname: The filename of the image.
3924
3925 Returns:
3926 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
3927 RangeSet; or None.
3928 """
3929 assert which in PARTITIONS_WITH_CARE_MAP
3930
3931 # which + "_image_size" contains the size that the actual filesystem image
3932 # resides in, which is all that needs to be verified. The additional blocks in
3933 # the image file contain verity metadata, by reading which would trigger
3934 # invalid reads.
3935 image_size = OPTIONS.info_dict.get(which + "_image_size")
3936 if not image_size:
3937 return None
3938
David Anderson9e95a022021-08-31 21:32:45 -07003939 disable_sparse = OPTIONS.info_dict.get(which + "_disable_sparse")
3940
Kelvin Zhang27324132021-03-22 15:38:38 -04003941 image_blocks = int(image_size) // 4096 - 1
Kelvin Zhang98ef7bb2022-01-07 14:41:46 -08003942 # It's OK for image_blocks to be 0, because care map ranges are inclusive.
3943 # So 0-0 means "just block 0", which is valid.
3944 assert image_blocks >= 0, "blocks for {} must be non-negative, image size: {}".format(
3945 which, image_size)
Kelvin Zhang27324132021-03-22 15:38:38 -04003946
3947 # For sparse images, we will only check the blocks that are listed in the care
3948 # map, i.e. the ones with meaningful data.
David Anderson9e95a022021-08-31 21:32:45 -07003949 if "extfs_sparse_flag" in OPTIONS.info_dict and not disable_sparse:
Kelvin Zhang27324132021-03-22 15:38:38 -04003950 simg = sparse_img.SparseImage(imgname)
3951 care_map_ranges = simg.care_map.intersect(
3952 rangelib.RangeSet("0-{}".format(image_blocks)))
3953
3954 # Otherwise for non-sparse images, we read all the blocks in the filesystem
3955 # image.
3956 else:
3957 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
3958
3959 return [which, care_map_ranges.to_string_raw()]
3960
3961
3962def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
3963 """Generates and adds care_map.pb for a/b partition that has care_map.
3964
3965 Args:
3966 output_file: The output zip file (needs to be already open),
3967 or file path to write care_map.pb.
3968 ab_partitions: The list of A/B partitions.
3969 image_paths: A map from the partition name to the image path.
3970 """
3971 if not output_file:
3972 raise ExternalError('Expected output_file for AddCareMapForAbOta')
3973
3974 care_map_list = []
3975 for partition in ab_partitions:
3976 partition = partition.strip()
3977 if partition not in PARTITIONS_WITH_CARE_MAP:
3978 continue
3979
3980 verity_block_device = "{}_verity_block_device".format(partition)
3981 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
3982 if (verity_block_device in OPTIONS.info_dict or
3983 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
3984 if partition not in image_paths:
3985 logger.warning('Potential partition with care_map missing from images: %s',
3986 partition)
3987 continue
3988 image_path = image_paths[partition]
3989 if not os.path.exists(image_path):
3990 raise ExternalError('Expected image at path {}'.format(image_path))
3991
3992 care_map = GetCareMap(partition, image_path)
3993 if not care_map:
3994 continue
3995 care_map_list += care_map
3996
3997 # adds fingerprint field to the care_map
3998 # TODO(xunchang) revisit the fingerprint calculation for care_map.
3999 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
4000 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
4001 "ro.{}.build.thumbprint".format(partition)]
4002
4003 present_props = [x for x in prop_name_list if
4004 partition_props and partition_props.GetProp(x)]
4005 if not present_props:
4006 logger.warning(
4007 "fingerprint is not present for partition %s", partition)
4008 property_id, fingerprint = "unknown", "unknown"
4009 else:
4010 property_id = present_props[0]
4011 fingerprint = partition_props.GetProp(property_id)
4012 care_map_list += [property_id, fingerprint]
4013
4014 if not care_map_list:
4015 return
4016
4017 # Converts the list into proto buf message by calling care_map_generator; and
4018 # writes the result to a temp file.
4019 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
4020 suffix=".txt")
4021 with open(temp_care_map_text, 'w') as text_file:
4022 text_file.write('\n'.join(care_map_list))
4023
4024 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
4025 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
4026 RunAndCheckOutput(care_map_gen_cmd)
4027
4028 if not isinstance(output_file, zipfile.ZipFile):
4029 shutil.copy(temp_care_map, output_file)
4030 return
4031 # output_file is a zip file
4032 care_map_path = "META/care_map.pb"
4033 if care_map_path in output_file.namelist():
4034 # Copy the temp file into the OPTIONS.input_tmp dir and update the
4035 # replace_updated_files_list used by add_img_to_target_files
4036 if not OPTIONS.replace_updated_files_list:
4037 OPTIONS.replace_updated_files_list = []
4038 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
4039 OPTIONS.replace_updated_files_list.append(care_map_path)
4040 else:
4041 ZipWrite(output_file, temp_care_map, arcname=care_map_path)
Kelvin Zhang26390482021-11-02 14:31:10 -07004042
4043
4044def IsSparseImage(filepath):
4045 with open(filepath, 'rb') as fp:
4046 # Magic for android sparse image format
4047 # https://source.android.com/devices/bootloader/images
4048 return fp.read(4) == b'\x3A\xFF\x26\xED'