blob: 107fad1373b57f6b6ea02205d29bdb9e90ffb093 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080071 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
72 if "ANDROID_HOST_OUT" in os.environ:
73 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080074 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070075 self.extra_signapk_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000076 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070077 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080078 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080079 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070080 self.public_key_suffix = ".x509.pem"
81 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070082 # use otatools built boot_signer by default
83 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070084 self.boot_signer_args = []
85 self.verity_signer_path = None
86 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070087 self.verbose = False
88 self.tempfiles = []
89 self.device_specific = None
90 self.extras = {}
91 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070092 self.source_info_dict = None
93 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070094 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070095 # Stash size cannot exceed cache_size * threshold.
96 self.cache_size = None
97 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070098 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -070099 self.host_tools = {}
Dan Albert8b72aef2015-03-23 19:13:21 -0700100
101
102OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700103
Tao Bao71197512018-10-11 14:08:45 -0700104# The block size that's used across the releasetools scripts.
105BLOCK_SIZE = 4096
106
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800107# Values for "certificate" in apkcerts that mean special things.
108SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
109
Tao Bao5cc0abb2019-03-21 10:18:05 -0700110# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
111# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800112# descriptor into vbmeta.img. When adding a new entry here, the
113# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
114# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000115AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Andrew Sculle077cf72021-02-18 10:27:29 +0000116 'system', 'system_ext', 'vendor', 'vendor_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000117 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800118
Tao Bao08c190f2019-06-03 23:07:58 -0700119# Chained VBMeta partitions.
120AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
121
Tianjie Xu861f4132018-09-12 11:49:33 -0700122# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400123PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700124 'system',
125 'vendor',
126 'product',
127 'system_ext',
128 'odm',
129 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700130 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000131 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400132]
Tianjie Xu861f4132018-09-12 11:49:33 -0700133
Yifan Hong5057b952021-01-07 14:09:57 -0800134# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000135PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800136
Yifan Hongc65a0542021-01-07 14:21:01 -0800137# See sysprop.mk. If file is moved, add new search paths here; don't remove
138# existing search paths.
139RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700140
Kelvin Zhang563750f2021-04-28 12:46:17 -0400141
Tianjie Xu209db462016-05-24 17:34:52 -0700142class ErrorCode(object):
143 """Define error_codes for failures that happen during the actual
144 update package installation.
145
146 Error codes 0-999 are reserved for failures before the package
147 installation (i.e. low battery, package verification failure).
148 Detailed code in 'bootable/recovery/error_code.h' """
149
150 SYSTEM_VERIFICATION_FAILURE = 1000
151 SYSTEM_UPDATE_FAILURE = 1001
152 SYSTEM_UNEXPECTED_CONTENTS = 1002
153 SYSTEM_NONZERO_CONTENTS = 1003
154 SYSTEM_RECOVER_FAILURE = 1004
155 VENDOR_VERIFICATION_FAILURE = 2000
156 VENDOR_UPDATE_FAILURE = 2001
157 VENDOR_UNEXPECTED_CONTENTS = 2002
158 VENDOR_NONZERO_CONTENTS = 2003
159 VENDOR_RECOVER_FAILURE = 2004
160 OEM_PROP_MISMATCH = 3000
161 FINGERPRINT_MISMATCH = 3001
162 THUMBPRINT_MISMATCH = 3002
163 OLDER_BUILD = 3003
164 DEVICE_MISMATCH = 3004
165 BAD_PATCH_FILE = 3005
166 INSUFFICIENT_CACHE_SPACE = 3006
167 TUNE_PARTITION_FAILURE = 3007
168 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800169
Tao Bao80921982018-03-21 21:02:19 -0700170
Dan Albert8b72aef2015-03-23 19:13:21 -0700171class ExternalError(RuntimeError):
172 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700173
174
Tao Bao32fcdab2018-10-12 10:30:39 -0700175def InitLogging():
176 DEFAULT_LOGGING_CONFIG = {
177 'version': 1,
178 'disable_existing_loggers': False,
179 'formatters': {
180 'standard': {
181 'format':
182 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
183 'datefmt': '%Y-%m-%d %H:%M:%S',
184 },
185 },
186 'handlers': {
187 'default': {
188 'class': 'logging.StreamHandler',
189 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700190 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700191 },
192 },
193 'loggers': {
194 '': {
195 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700196 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700197 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700198 }
199 }
200 }
201 env_config = os.getenv('LOGGING_CONFIG')
202 if env_config:
203 with open(env_config) as f:
204 config = json.load(f)
205 else:
206 config = DEFAULT_LOGGING_CONFIG
207
208 # Increase the logging level for verbose mode.
209 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700210 config = copy.deepcopy(config)
211 config['handlers']['default']['level'] = 'INFO'
212
213 if OPTIONS.logfile:
214 config = copy.deepcopy(config)
215 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400216 'class': 'logging.FileHandler',
217 'formatter': 'standard',
218 'level': 'INFO',
219 'mode': 'w',
220 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700221 }
222 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700223
224 logging.config.dictConfig(config)
225
226
Yifan Hong8e332ff2020-07-29 17:51:55 -0700227def SetHostToolLocation(tool_name, location):
228 OPTIONS.host_tools[tool_name] = location
229
Kelvin Zhang563750f2021-04-28 12:46:17 -0400230
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900231def FindHostToolPath(tool_name):
232 """Finds the path to the host tool.
233
234 Args:
235 tool_name: name of the tool to find
236 Returns:
237 path to the tool if found under either one of the host_tools map or under
238 the same directory as this binary is located at. If not found, tool_name
239 is returned.
240 """
241 if tool_name in OPTIONS.host_tools:
242 return OPTIONS.host_tools[tool_name]
243
244 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
245 tool_path = os.path.join(my_dir, tool_name)
246 if os.path.exists(tool_path):
247 return tool_path
248
249 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700250
Kelvin Zhang563750f2021-04-28 12:46:17 -0400251
Tao Bao39451582017-05-04 11:10:47 -0700252def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700253 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700254
Tao Bao73dd4f42018-10-04 16:25:33 -0700255 Args:
256 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700257 verbose: Whether the commands should be shown. Default to the global
258 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700259 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
260 stdin, etc. stdout and stderr will default to subprocess.PIPE and
261 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800262 universal_newlines will default to True, as most of the users in
263 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700264
265 Returns:
266 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700267 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700268 if 'stdout' not in kwargs and 'stderr' not in kwargs:
269 kwargs['stdout'] = subprocess.PIPE
270 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800271 if 'universal_newlines' not in kwargs:
272 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700273
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900274 if args:
275 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700276 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900277 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700278
Kelvin Zhang766eea72021-06-03 09:36:08 -0400279 if verbose is None:
280 verbose = OPTIONS.verbose
281
Tao Bao32fcdab2018-10-12 10:30:39 -0700282 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400283 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700284 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700285 return subprocess.Popen(args, **kwargs)
286
287
Tao Bao986ee862018-10-04 15:46:16 -0700288def RunAndCheckOutput(args, verbose=None, **kwargs):
289 """Runs the given command and returns the output.
290
291 Args:
292 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700293 verbose: Whether the commands should be shown. Default to the global
294 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700295 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
296 stdin, etc. stdout and stderr will default to subprocess.PIPE and
297 subprocess.STDOUT respectively unless caller specifies any of them.
298
299 Returns:
300 The output string.
301
302 Raises:
303 ExternalError: On non-zero exit from the command.
304 """
Tao Bao986ee862018-10-04 15:46:16 -0700305 proc = Run(args, verbose=verbose, **kwargs)
306 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800307 if output is None:
308 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700309 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400310 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700311 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700312 if proc.returncode != 0:
313 raise ExternalError(
314 "Failed to run command '{}' (exit code {}):\n{}".format(
315 args, proc.returncode, output))
316 return output
317
318
Tao Baoc765cca2018-01-31 17:32:40 -0800319def RoundUpTo4K(value):
320 rounded_up = value + 4095
321 return rounded_up - (rounded_up % 4096)
322
323
Ying Wang7e6d4e42010-12-13 16:25:36 -0800324def CloseInheritedPipes():
325 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
326 before doing other work."""
327 if platform.system() != "Darwin":
328 return
329 for d in range(3, 1025):
330 try:
331 stat = os.fstat(d)
332 if stat is not None:
333 pipebit = stat[0] & 0x1000
334 if pipebit != 0:
335 os.close(d)
336 except OSError:
337 pass
338
339
Tao Bao1c320f82019-10-04 23:25:12 -0700340class BuildInfo(object):
341 """A class that holds the information for a given build.
342
343 This class wraps up the property querying for a given source or target build.
344 It abstracts away the logic of handling OEM-specific properties, and caches
345 the commonly used properties such as fingerprint.
346
347 There are two types of info dicts: a) build-time info dict, which is generated
348 at build time (i.e. included in a target_files zip); b) OEM info dict that is
349 specified at package generation time (via command line argument
350 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
351 having "oem_fingerprint_properties" in build-time info dict), all the queries
352 would be answered based on build-time info dict only. Otherwise if using
353 OEM-specific properties, some of them will be calculated from two info dicts.
354
355 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800356 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700357
358 Attributes:
359 info_dict: The build-time info dict.
360 is_ab: Whether it's a build that uses A/B OTA.
361 oem_dicts: A list of OEM dicts.
362 oem_props: A list of OEM properties that should be read from OEM dicts; None
363 if the build doesn't use any OEM-specific property.
364 fingerprint: The fingerprint of the build, which would be calculated based
365 on OEM properties if applicable.
366 device: The device name, which could come from OEM dicts if applicable.
367 """
368
369 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
370 "ro.product.manufacturer", "ro.product.model",
371 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700372 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
373 "product", "odm", "vendor", "system_ext", "system"]
374 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
375 "product", "product_services", "odm", "vendor", "system"]
376 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700377
Tianjiefdda51d2021-05-05 14:46:35 -0700378 # The length of vbmeta digest to append to the fingerprint
379 _VBMETA_DIGEST_SIZE_USED = 8
380
381 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700382 """Initializes a BuildInfo instance with the given dicts.
383
384 Note that it only wraps up the given dicts, without making copies.
385
386 Arguments:
387 info_dict: The build-time info dict.
388 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
389 that it always uses the first dict to calculate the fingerprint or the
390 device name. The rest would be used for asserting OEM properties only
391 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700392 use_legacy_id: Use the legacy build id to construct the fingerprint. This
393 is used when we need a BuildInfo class, while the vbmeta digest is
394 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700395
396 Raises:
397 ValueError: On invalid inputs.
398 """
399 self.info_dict = info_dict
400 self.oem_dicts = oem_dicts
401
402 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700403 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700404
Hongguang Chend7c160f2020-05-03 21:24:26 -0700405 # Skip _oem_props if oem_dicts is None to use BuildInfo in
406 # sign_target_files_apks
407 if self.oem_dicts:
408 self._oem_props = info_dict.get("oem_fingerprint_properties")
409 else:
410 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700411
Daniel Normand5fe8622020-01-08 17:01:11 -0800412 def check_fingerprint(fingerprint):
413 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
414 raise ValueError(
415 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
416 "3.2.2. Build Parameters.".format(fingerprint))
417
Daniel Normand5fe8622020-01-08 17:01:11 -0800418 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800419 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800420 try:
421 fingerprint = self.CalculatePartitionFingerprint(partition)
422 check_fingerprint(fingerprint)
423 self._partition_fingerprints[partition] = fingerprint
424 except ExternalError:
425 continue
426 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800427 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800428 # need a fingerprint when creating the image.
429 self._partition_fingerprints[
430 "system_other"] = self._partition_fingerprints["system"]
431
Tao Bao1c320f82019-10-04 23:25:12 -0700432 # These two should be computed only after setting self._oem_props.
433 self._device = self.GetOemProperty("ro.product.device")
434 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800435 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700436
437 @property
438 def is_ab(self):
439 return self._is_ab
440
441 @property
442 def device(self):
443 return self._device
444
445 @property
446 def fingerprint(self):
447 return self._fingerprint
448
449 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400450 def is_vabc(self):
451 vendor_prop = self.info_dict.get("vendor.build.prop")
452 vabc_enabled = vendor_prop and \
453 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
454 return vabc_enabled
455
456 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700457 def is_vabc_xor(self):
458 vendor_prop = self.info_dict.get("vendor.build.prop")
459 vabc_xor_enabled = vendor_prop and \
460 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
461 return vabc_xor_enabled
462
463 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400464 def vendor_suppressed_vabc(self):
465 vendor_prop = self.info_dict.get("vendor.build.prop")
466 vabc_suppressed = vendor_prop and \
467 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
468 return vabc_suppressed and vabc_suppressed.lower() == "true"
469
470 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700471 def oem_props(self):
472 return self._oem_props
473
Kelvin Zhanga19fb312021-07-26 14:05:02 -0400474 @property
475 def avb_enabled(self):
476 return self.get("avb_enable") == "true"
477
Tao Bao1c320f82019-10-04 23:25:12 -0700478 def __getitem__(self, key):
479 return self.info_dict[key]
480
481 def __setitem__(self, key, value):
482 self.info_dict[key] = value
483
484 def get(self, key, default=None):
485 return self.info_dict.get(key, default)
486
487 def items(self):
488 return self.info_dict.items()
489
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000490 def _GetRawBuildProp(self, prop, partition):
491 prop_file = '{}.build.prop'.format(
492 partition) if partition else 'build.prop'
493 partition_props = self.info_dict.get(prop_file)
494 if not partition_props:
495 return None
496 return partition_props.GetProp(prop)
497
Daniel Normand5fe8622020-01-08 17:01:11 -0800498 def GetPartitionBuildProp(self, prop, partition):
499 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800500
Devin Mooreb5195ff2022-02-11 18:44:26 +0000501 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
502 # This comes from the generic ramdisk
503 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800504
Daniel Normand5fe8622020-01-08 17:01:11 -0800505 # If provided a partition for this property, only look within that
506 # partition's build.prop.
507 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800508 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800509 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800510 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000511
512 prop_val = self._GetRawBuildProp(prop, partition)
513 if prop_val is not None:
514 return prop_val
515 raise ExternalError("couldn't find %s in %s.build.prop" %
516 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800517
Tao Bao1c320f82019-10-04 23:25:12 -0700518 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800519 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700520 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
521 return self._ResolveRoProductBuildProp(prop)
522
Tianjiefdda51d2021-05-05 14:46:35 -0700523 if prop == "ro.build.id":
524 return self._GetBuildId()
525
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000526 prop_val = self._GetRawBuildProp(prop, None)
527 if prop_val is not None:
528 return prop_val
529
530 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700531
532 def _ResolveRoProductBuildProp(self, prop):
533 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000534 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700535 if prop_val:
536 return prop_val
537
Steven Laver8e2086e2020-04-27 16:26:31 -0700538 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000539 source_order_val = self._GetRawBuildProp(
540 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700541 if source_order_val:
542 source_order = source_order_val.split(",")
543 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700544 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700545
546 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700547 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700548 raise ExternalError(
549 "Invalid ro.product.property_source_order '{}'".format(source_order))
550
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000551 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700552 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000553 "ro.product", "ro.product.{}".format(source_partition), 1)
554 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700555 if prop_val:
556 return prop_val
557
558 raise ExternalError("couldn't resolve {}".format(prop))
559
Steven Laver8e2086e2020-04-27 16:26:31 -0700560 def _GetRoProductPropsDefaultSourceOrder(self):
561 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
562 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000563 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700564 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000565 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700566 if android_version == "10":
567 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
568 # NOTE: float() conversion of android_version will have rounding error.
569 # We are checking for "9" or less, and using "< 10" is well outside of
570 # possible floating point rounding.
571 try:
572 android_version_val = float(android_version)
573 except ValueError:
574 android_version_val = 0
575 if android_version_val < 10:
576 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
577 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
578
Tianjieb37c5be2020-10-15 21:27:10 -0700579 def _GetPlatformVersion(self):
580 version_sdk = self.GetBuildProp("ro.build.version.sdk")
581 # init code switches to version_release_or_codename (see b/158483506). After
582 # API finalization, release_or_codename will be the same as release. This
583 # is the best effort to support pre-S dev stage builds.
584 if int(version_sdk) >= 30:
585 try:
586 return self.GetBuildProp("ro.build.version.release_or_codename")
587 except ExternalError:
588 logger.warning('Failed to find ro.build.version.release_or_codename')
589
590 return self.GetBuildProp("ro.build.version.release")
591
Tianjiefdda51d2021-05-05 14:46:35 -0700592 def _GetBuildId(self):
593 build_id = self._GetRawBuildProp("ro.build.id", None)
594 if build_id:
595 return build_id
596
597 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
598 if not legacy_build_id:
599 raise ExternalError("Couldn't find build id in property file")
600
601 if self.use_legacy_id:
602 return legacy_build_id
603
604 # Append the top 8 chars of vbmeta digest to the existing build id. The
605 # logic needs to match the one in init, so that OTA can deliver correctly.
606 avb_enable = self.info_dict.get("avb_enable") == "true"
607 if not avb_enable:
608 raise ExternalError("AVB isn't enabled when using legacy build id")
609
610 vbmeta_digest = self.info_dict.get("vbmeta_digest")
611 if not vbmeta_digest:
612 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
613 " id")
614 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
615 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
616
617 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
618 return legacy_build_id + '.' + digest_prefix
619
Tianjieb37c5be2020-10-15 21:27:10 -0700620 def _GetPartitionPlatformVersion(self, partition):
621 try:
622 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
623 partition)
624 except ExternalError:
625 return self.GetPartitionBuildProp("ro.build.version.release",
626 partition)
627
Tao Bao1c320f82019-10-04 23:25:12 -0700628 def GetOemProperty(self, key):
629 if self.oem_props is not None and key in self.oem_props:
630 return self.oem_dicts[0][key]
631 return self.GetBuildProp(key)
632
Daniel Normand5fe8622020-01-08 17:01:11 -0800633 def GetPartitionFingerprint(self, partition):
634 return self._partition_fingerprints.get(partition, None)
635
636 def CalculatePartitionFingerprint(self, partition):
637 try:
638 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
639 except ExternalError:
640 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
641 self.GetPartitionBuildProp("ro.product.brand", partition),
642 self.GetPartitionBuildProp("ro.product.name", partition),
643 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700644 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800645 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400646 self.GetPartitionBuildProp(
647 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800648 self.GetPartitionBuildProp("ro.build.type", partition),
649 self.GetPartitionBuildProp("ro.build.tags", partition))
650
Tao Bao1c320f82019-10-04 23:25:12 -0700651 def CalculateFingerprint(self):
652 if self.oem_props is None:
653 try:
654 return self.GetBuildProp("ro.build.fingerprint")
655 except ExternalError:
656 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
657 self.GetBuildProp("ro.product.brand"),
658 self.GetBuildProp("ro.product.name"),
659 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700660 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700661 self.GetBuildProp("ro.build.id"),
662 self.GetBuildProp("ro.build.version.incremental"),
663 self.GetBuildProp("ro.build.type"),
664 self.GetBuildProp("ro.build.tags"))
665 return "%s/%s/%s:%s" % (
666 self.GetOemProperty("ro.product.brand"),
667 self.GetOemProperty("ro.product.name"),
668 self.GetOemProperty("ro.product.device"),
669 self.GetBuildProp("ro.build.thumbprint"))
670
671 def WriteMountOemScript(self, script):
672 assert self.oem_props is not None
673 recovery_mount_options = self.info_dict.get("recovery_mount_options")
674 script.Mount("/oem", recovery_mount_options)
675
676 def WriteDeviceAssertions(self, script, oem_no_mount):
677 # Read the property directly if not using OEM properties.
678 if not self.oem_props:
679 script.AssertDevice(self.device)
680 return
681
682 # Otherwise assert OEM properties.
683 if not self.oem_dicts:
684 raise ExternalError(
685 "No OEM file provided to answer expected assertions")
686
687 for prop in self.oem_props.split():
688 values = []
689 for oem_dict in self.oem_dicts:
690 if prop in oem_dict:
691 values.append(oem_dict[prop])
692 if not values:
693 raise ExternalError(
694 "The OEM file is missing the property %s" % (prop,))
695 script.AssertOemProperty(prop, values, oem_no_mount)
696
697
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000698def ReadFromInputFile(input_file, fn):
699 """Reads the contents of fn from input zipfile or directory."""
700 if isinstance(input_file, zipfile.ZipFile):
701 return input_file.read(fn).decode()
702 else:
703 path = os.path.join(input_file, *fn.split("/"))
704 try:
705 with open(path) as f:
706 return f.read()
707 except IOError as e:
708 if e.errno == errno.ENOENT:
709 raise KeyError(fn)
710
711
Yifan Hong10482a22021-01-07 14:38:41 -0800712def ExtractFromInputFile(input_file, fn):
713 """Extracts the contents of fn from input zipfile or directory into a file."""
714 if isinstance(input_file, zipfile.ZipFile):
715 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500716 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800717 f.write(input_file.read(fn))
718 return tmp_file
719 else:
720 file = os.path.join(input_file, *fn.split("/"))
721 if not os.path.exists(file):
722 raise KeyError(fn)
723 return file
724
Kelvin Zhang563750f2021-04-28 12:46:17 -0400725
jiajia tangf3f842b2021-03-17 21:49:44 +0800726class RamdiskFormat(object):
727 LZ4 = 1
728 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800729
Kelvin Zhang563750f2021-04-28 12:46:17 -0400730
jiajia tang836f76b2021-04-02 14:48:26 +0800731def _GetRamdiskFormat(info_dict):
732 if info_dict.get('lz4_ramdisks') == 'true':
733 ramdisk_format = RamdiskFormat.LZ4
734 else:
735 ramdisk_format = RamdiskFormat.GZ
736 return ramdisk_format
737
Kelvin Zhang563750f2021-04-28 12:46:17 -0400738
Tao Bao410ad8b2018-08-24 12:08:38 -0700739def LoadInfoDict(input_file, repacking=False):
740 """Loads the key/value pairs from the given input target_files.
741
Tianjiea85bdf02020-07-29 11:56:19 -0700742 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700743 checks and returns the parsed key/value pairs for to the given build. It's
744 usually called early when working on input target_files files, e.g. when
745 generating OTAs, or signing builds. Note that the function may be called
746 against an old target_files file (i.e. from past dessert releases). So the
747 property parsing needs to be backward compatible.
748
749 In a `META/misc_info.txt`, a few properties are stored as links to the files
750 in the PRODUCT_OUT directory. It works fine with the build system. However,
751 they are no longer available when (re)generating images from target_files zip.
752 When `repacking` is True, redirect these properties to the actual files in the
753 unzipped directory.
754
755 Args:
756 input_file: The input target_files file, which could be an open
757 zipfile.ZipFile instance, or a str for the dir that contains the files
758 unzipped from a target_files file.
759 repacking: Whether it's trying repack an target_files file after loading the
760 info dict (default: False). If so, it will rewrite a few loaded
761 properties (e.g. selinux_fc, root_dir) to point to the actual files in
762 target_files file. When doing repacking, `input_file` must be a dir.
763
764 Returns:
765 A dict that contains the parsed key/value pairs.
766
767 Raises:
768 AssertionError: On invalid input arguments.
769 ValueError: On malformed input values.
770 """
771 if repacking:
772 assert isinstance(input_file, str), \
773 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700774
Doug Zongkerc9253822014-02-04 12:17:58 -0800775 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000776 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800777
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700778 try:
Michael Runge6e836112014-04-15 17:40:21 -0700779 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700780 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700781 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700782
Tao Bao410ad8b2018-08-24 12:08:38 -0700783 if "recovery_api_version" not in d:
784 raise ValueError("Failed to find 'recovery_api_version'")
785 if "fstab_version" not in d:
786 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800787
Tao Bao410ad8b2018-08-24 12:08:38 -0700788 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700789 # "selinux_fc" properties should point to the file_contexts files
790 # (file_contexts.bin) under META/.
791 for key in d:
792 if key.endswith("selinux_fc"):
793 fc_basename = os.path.basename(d[key])
794 fc_config = os.path.join(input_file, "META", fc_basename)
795 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700796
Daniel Norman72c626f2019-05-13 15:58:14 -0700797 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700798
Tom Cherryd14b8952018-08-09 14:26:00 -0700799 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700800 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700801 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700802 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700803
David Anderson0ec64ac2019-12-06 12:21:18 -0800804 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700805 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000806 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800807 key_name = part_name + "_base_fs_file"
808 if key_name not in d:
809 continue
810 basename = os.path.basename(d[key_name])
811 base_fs_file = os.path.join(input_file, "META", basename)
812 if os.path.exists(base_fs_file):
813 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700814 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700815 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800816 "Failed to find %s base fs file: %s", part_name, base_fs_file)
817 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700818
Doug Zongker37974732010-09-16 17:44:38 -0700819 def makeint(key):
820 if key in d:
821 d[key] = int(d[key], 0)
822
823 makeint("recovery_api_version")
824 makeint("blocksize")
825 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700826 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700827 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700828 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700829 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800830 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700831
Steve Muckle903a1ca2020-05-07 17:32:10 -0700832 boot_images = "boot.img"
833 if "boot_images" in d:
834 boot_images = d["boot_images"]
835 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400836 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700837
Tao Bao765668f2019-10-04 22:03:00 -0700838 # Load recovery fstab if applicable.
839 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
jiajia tang836f76b2021-04-02 14:48:26 +0800840 ramdisk_format = _GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800841
Tianjie Xu861f4132018-09-12 11:49:33 -0700842 # Tries to load the build props for all partitions with care_map, including
843 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800844 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800845 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000846 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800847 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700848 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800849
Tao Bao3ed35d32019-10-07 20:48:48 -0700850 # Set up the salt (based on fingerprint) that will be used when adding AVB
851 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800852 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700853 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800854 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800855 fingerprint = build_info.GetPartitionFingerprint(partition)
856 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400857 d["avb_{}_salt".format(partition)] = sha256(
858 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700859
860 # Set the vbmeta digest if exists
861 try:
862 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
863 except KeyError:
864 pass
865
Kelvin Zhang39aea442020-08-17 11:04:25 -0400866 try:
867 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
868 except KeyError:
869 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700870 return d
871
Tao Baod1de6f32017-03-01 16:38:48 -0800872
Daniel Norman4cc9df62019-07-18 10:11:07 -0700873def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900874 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700875 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900876
Daniel Norman4cc9df62019-07-18 10:11:07 -0700877
878def LoadDictionaryFromFile(file_path):
879 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900880 return LoadDictionaryFromLines(lines)
881
882
Michael Runge6e836112014-04-15 17:40:21 -0700883def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700884 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700885 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700886 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700887 if not line or line.startswith("#"):
888 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700889 if "=" in line:
890 name, value = line.split("=", 1)
891 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700892 return d
893
Tao Baod1de6f32017-03-01 16:38:48 -0800894
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000895class PartitionBuildProps(object):
896 """The class holds the build prop of a particular partition.
897
898 This class loads the build.prop and holds the build properties for a given
899 partition. It also partially recognizes the 'import' statement in the
900 build.prop; and calculates alternative values of some specific build
901 properties during runtime.
902
903 Attributes:
904 input_file: a zipped target-file or an unzipped target-file directory.
905 partition: name of the partition.
906 props_allow_override: a list of build properties to search for the
907 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000908 build_props: a dict of build properties for the given partition.
909 prop_overrides: a set of props that are overridden by import.
910 placeholder_values: A dict of runtime variables' values to replace the
911 placeholders in the build.prop file. We expect exactly one value for
912 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800913 ramdisk_format: If name is "boot", the format of ramdisk inside the
914 boot image. Otherwise, its value is ignored.
915 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000916 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400917
Tianjie Xu9afb2212020-05-10 21:48:15 +0000918 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000919 self.input_file = input_file
920 self.partition = name
921 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000922 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000923 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000924 self.prop_overrides = set()
925 self.placeholder_values = {}
926 if placeholder_values:
927 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000928
929 @staticmethod
930 def FromDictionary(name, build_props):
931 """Constructs an instance from a build prop dictionary."""
932
933 props = PartitionBuildProps("unknown", name)
934 props.build_props = build_props.copy()
935 return props
936
937 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800938 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000939 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800940
Devin Mooreafdd7c72021-12-13 22:04:08 +0000941 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400942 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000943 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800944 else:
945 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
946
947 props = PartitionBuildProps(input_file, name, placeholder_values)
948 props._LoadBuildProp(data)
949 return props
950
951 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000952 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800953 """
954 Read build.prop for boot image from input_file.
955 Return empty string if not found.
956 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000957 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800958 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000959 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800960 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000961 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800962 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800963 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800964 if prop_file is None:
965 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500966 with open(prop_file, "r") as f:
967 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800968
969 @staticmethod
970 def _ReadPartitionPropFile(input_file, name):
971 """
972 Read build.prop for name from input_file.
973 Return empty string if not found.
974 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000975 data = ''
976 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
977 '{}/build.prop'.format(name.upper())]:
978 try:
979 data = ReadFromInputFile(input_file, prop_file)
980 break
981 except KeyError:
982 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -0800983 if data == '':
984 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -0800985 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000986
Yifan Hong125d0b62020-09-24 17:07:03 -0700987 @staticmethod
988 def FromBuildPropFile(name, build_prop_file):
989 """Constructs an instance from a build prop file."""
990
991 props = PartitionBuildProps("unknown", name)
992 with open(build_prop_file) as f:
993 props._LoadBuildProp(f.read())
994 return props
995
Tianjie Xu9afb2212020-05-10 21:48:15 +0000996 def _LoadBuildProp(self, data):
997 for line in data.split('\n'):
998 line = line.strip()
999 if not line or line.startswith("#"):
1000 continue
1001 if line.startswith("import"):
1002 overrides = self._ImportParser(line)
1003 duplicates = self.prop_overrides.intersection(overrides.keys())
1004 if duplicates:
1005 raise ValueError('prop {} is overridden multiple times'.format(
1006 ','.join(duplicates)))
1007 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1008 self.build_props.update(overrides)
1009 elif "=" in line:
1010 name, value = line.split("=", 1)
1011 if name in self.prop_overrides:
1012 raise ValueError('prop {} is set again after overridden by import '
1013 'statement'.format(name))
1014 self.build_props[name] = value
1015
1016 def _ImportParser(self, line):
1017 """Parses the build prop in a given import statement."""
1018
1019 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001020 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001021 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001022
1023 if len(tokens) == 3:
1024 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1025 return {}
1026
Tianjie Xu9afb2212020-05-10 21:48:15 +00001027 import_path = tokens[1]
1028 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001029 logger.warn('Unrecognized import path {}'.format(line))
1030 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001031
1032 # We only recognize a subset of import statement that the init process
1033 # supports. And we can loose the restriction based on how the dynamic
1034 # fingerprint is used in practice. The placeholder format should be
1035 # ${placeholder}, and its value should be provided by the caller through
1036 # the placeholder_values.
1037 for prop, value in self.placeholder_values.items():
1038 prop_place_holder = '${{{}}}'.format(prop)
1039 if prop_place_holder in import_path:
1040 import_path = import_path.replace(prop_place_holder, value)
1041 if '$' in import_path:
1042 logger.info('Unresolved place holder in import path %s', import_path)
1043 return {}
1044
1045 import_path = import_path.replace('/{}'.format(self.partition),
1046 self.partition.upper())
1047 logger.info('Parsing build props override from %s', import_path)
1048
1049 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1050 d = LoadDictionaryFromLines(lines)
1051 return {key: val for key, val in d.items()
1052 if key in self.props_allow_override}
1053
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001054 def GetProp(self, prop):
1055 return self.build_props.get(prop)
1056
1057
Tianjie Xucfa86222016-03-07 16:31:19 -08001058def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1059 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001060 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001061 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001062 self.mount_point = mount_point
1063 self.fs_type = fs_type
1064 self.device = device
1065 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001066 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001067 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001068
1069 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001070 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001071 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001072 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001073 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001074
Tao Baod1de6f32017-03-01 16:38:48 -08001075 assert fstab_version == 2
1076
1077 d = {}
1078 for line in data.split("\n"):
1079 line = line.strip()
1080 if not line or line.startswith("#"):
1081 continue
1082
1083 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1084 pieces = line.split()
1085 if len(pieces) != 5:
1086 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1087
1088 # Ignore entries that are managed by vold.
1089 options = pieces[4]
1090 if "voldmanaged=" in options:
1091 continue
1092
1093 # It's a good line, parse it.
1094 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001095 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001096 options = options.split(",")
1097 for i in options:
1098 if i.startswith("length="):
1099 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001100 elif i == "slotselect":
1101 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001102 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001103 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001104 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001105
Tao Baod1de6f32017-03-01 16:38:48 -08001106 mount_flags = pieces[3]
1107 # Honor the SELinux context if present.
1108 context = None
1109 for i in mount_flags.split(","):
1110 if i.startswith("context="):
1111 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001112
Tao Baod1de6f32017-03-01 16:38:48 -08001113 mount_point = pieces[1]
1114 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001115 device=pieces[0], length=length, context=context,
1116 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001117
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001118 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001119 # system. Other areas assume system is always at "/system" so point /system
1120 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001121 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001122 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001123 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001124 return d
1125
1126
Tao Bao765668f2019-10-04 22:03:00 -07001127def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1128 """Finds the path to recovery fstab and loads its contents."""
1129 # recovery fstab is only meaningful when installing an update via recovery
1130 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001131 if info_dict.get('ab_update') == 'true' and \
1132 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001133 return None
1134
1135 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1136 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1137 # cases, since it may load the info_dict from an old build (e.g. when
1138 # generating incremental OTAs from that build).
1139 system_root_image = info_dict.get('system_root_image') == 'true'
1140 if info_dict.get('no_recovery') != 'true':
1141 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1142 if isinstance(input_file, zipfile.ZipFile):
1143 if recovery_fstab_path not in input_file.namelist():
1144 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1145 else:
1146 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1147 if not os.path.exists(path):
1148 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1149 return LoadRecoveryFSTab(
1150 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1151 system_root_image)
1152
1153 if info_dict.get('recovery_as_boot') == 'true':
1154 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1155 if isinstance(input_file, zipfile.ZipFile):
1156 if recovery_fstab_path not in input_file.namelist():
1157 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1158 else:
1159 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1160 if not os.path.exists(path):
1161 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1162 return LoadRecoveryFSTab(
1163 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1164 system_root_image)
1165
1166 return None
1167
1168
Doug Zongker37974732010-09-16 17:44:38 -07001169def DumpInfoDict(d):
1170 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001171 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001172
Dan Albert8b72aef2015-03-23 19:13:21 -07001173
Daniel Norman55417142019-11-25 16:04:36 -08001174def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001175 """Merges dynamic partition info variables.
1176
1177 Args:
1178 framework_dict: The dictionary of dynamic partition info variables from the
1179 partial framework target files.
1180 vendor_dict: The dictionary of dynamic partition info variables from the
1181 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001182
1183 Returns:
1184 The merged dynamic partition info dictionary.
1185 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001186
1187 def uniq_concat(a, b):
1188 combined = set(a.split(" "))
1189 combined.update(set(b.split(" ")))
1190 combined = [item.strip() for item in combined if item.strip()]
1191 return " ".join(sorted(combined))
1192
1193 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhang563750f2021-04-28 12:46:17 -04001194 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001195 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1196
1197 merged_dict = {"use_dynamic_partitions": "true"}
1198
1199 merged_dict["dynamic_partition_list"] = uniq_concat(
1200 framework_dict.get("dynamic_partition_list", ""),
1201 vendor_dict.get("dynamic_partition_list", ""))
1202
1203 # Super block devices are defined by the vendor dict.
1204 if "super_block_devices" in vendor_dict:
1205 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
1206 for block_device in merged_dict["super_block_devices"].split(" "):
1207 key = "super_%s_device_size" % block_device
1208 if key not in vendor_dict:
1209 raise ValueError("Vendor dict does not contain required key %s." % key)
1210 merged_dict[key] = vendor_dict[key]
1211
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001212 # Partition groups and group sizes are defined by the vendor dict because
1213 # these values may vary for each board that uses a shared system image.
1214 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001215 for partition_group in merged_dict["super_partition_groups"].split(" "):
1216 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001217 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001218 if key not in vendor_dict:
1219 raise ValueError("Vendor dict does not contain required key %s." % key)
1220 merged_dict[key] = vendor_dict[key]
1221
1222 # Set the partition group's partition list using a concatenation of the
1223 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001224 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001225 merged_dict[key] = uniq_concat(
1226 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301227
Daniel Normanb0c75912020-09-24 14:30:21 -07001228 # Various other flags should be copied from the vendor dict, if defined.
1229 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1230 "super_metadata_device", "super_partition_error_limit",
1231 "super_partition_size"):
1232 if key in vendor_dict.keys():
1233 merged_dict[key] = vendor_dict[key]
1234
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001235 return merged_dict
1236
1237
Daniel Norman21c34f72020-11-11 17:25:50 -08001238def PartitionMapFromTargetFiles(target_files_dir):
1239 """Builds a map from partition -> path within an extracted target files directory."""
1240 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1241 possible_subdirs = {
1242 "system": ["SYSTEM"],
1243 "vendor": ["VENDOR", "SYSTEM/vendor"],
1244 "product": ["PRODUCT", "SYSTEM/product"],
1245 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1246 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1247 "vendor_dlkm": [
1248 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1249 ],
1250 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001251 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001252 }
1253 partition_map = {}
1254 for partition, subdirs in possible_subdirs.items():
1255 for subdir in subdirs:
1256 if os.path.exists(os.path.join(target_files_dir, subdir)):
1257 partition_map[partition] = subdir
1258 break
1259 return partition_map
1260
1261
Daniel Normand3351562020-10-29 12:33:11 -07001262def SharedUidPartitionViolations(uid_dict, partition_groups):
1263 """Checks for APK sharedUserIds that cross partition group boundaries.
1264
1265 This uses a single or merged build's shareduid_violation_modules.json
1266 output file, as generated by find_shareduid_violation.py or
1267 core/tasks/find-shareduid-violation.mk.
1268
1269 An error is defined as a sharedUserId that is found in a set of partitions
1270 that span more than one partition group.
1271
1272 Args:
1273 uid_dict: A dictionary created by using the standard json module to read a
1274 complete shareduid_violation_modules.json file.
1275 partition_groups: A list of groups, where each group is a list of
1276 partitions.
1277
1278 Returns:
1279 A list of error messages.
1280 """
1281 errors = []
1282 for uid, partitions in uid_dict.items():
1283 found_in_groups = [
1284 group for group in partition_groups
1285 if set(partitions.keys()) & set(group)
1286 ]
1287 if len(found_in_groups) > 1:
1288 errors.append(
1289 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1290 % (uid, ",".join(sorted(partitions.keys()))))
1291 return errors
1292
1293
Daniel Norman21c34f72020-11-11 17:25:50 -08001294def RunHostInitVerifier(product_out, partition_map):
1295 """Runs host_init_verifier on the init rc files within partitions.
1296
1297 host_init_verifier searches the etc/init path within each partition.
1298
1299 Args:
1300 product_out: PRODUCT_OUT directory, containing partition directories.
1301 partition_map: A map of partition name -> relative path within product_out.
1302 """
1303 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1304 cmd = ["host_init_verifier"]
1305 for partition, path in partition_map.items():
1306 if partition not in allowed_partitions:
1307 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1308 partition)
1309 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1310 # Add --property-contexts if the file exists on the partition.
1311 property_contexts = "%s_property_contexts" % (
1312 "plat" if partition == "system" else partition)
1313 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1314 property_contexts)
1315 if os.path.exists(property_contexts_path):
1316 cmd.append("--property-contexts=%s" % property_contexts_path)
1317 # Add the passwd file if the file exists on the partition.
1318 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1319 if os.path.exists(passwd_path):
1320 cmd.extend(["-p", passwd_path])
1321 return RunAndCheckOutput(cmd)
1322
1323
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001324def AppendAVBSigningArgs(cmd, partition):
1325 """Append signing arguments for avbtool."""
1326 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1327 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001328 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1329 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1330 if os.path.exists(new_key_path):
1331 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001332 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1333 if key_path and algorithm:
1334 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001335 avb_salt = OPTIONS.info_dict.get("avb_salt")
1336 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001337 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001338 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001339
1340
Tao Bao765668f2019-10-04 22:03:00 -07001341def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001342 """Returns the VBMeta arguments for partition.
1343
1344 It sets up the VBMeta argument by including the partition descriptor from the
1345 given 'image', or by configuring the partition as a chained partition.
1346
1347 Args:
1348 partition: The name of the partition (e.g. "system").
1349 image: The path to the partition image.
1350 info_dict: A dict returned by common.LoadInfoDict(). Will use
1351 OPTIONS.info_dict if None has been given.
1352
1353 Returns:
1354 A list of VBMeta arguments.
1355 """
1356 if info_dict is None:
1357 info_dict = OPTIONS.info_dict
1358
1359 # Check if chain partition is used.
1360 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001361 if not key_path:
1362 return ["--include_descriptors_from_image", image]
1363
1364 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1365 # into vbmeta.img. The recovery image will be configured on an independent
1366 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1367 # See details at
1368 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001369 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001370 return []
1371
1372 # Otherwise chain the partition into vbmeta.
1373 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1374 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001375
1376
Tao Bao02a08592018-07-22 12:40:45 -07001377def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1378 """Constructs and returns the arg to build or verify a chained partition.
1379
1380 Args:
1381 partition: The partition name.
1382 info_dict: The info dict to look up the key info and rollback index
1383 location.
1384 key: The key to be used for building or verifying the partition. Defaults to
1385 the key listed in info_dict.
1386
1387 Returns:
1388 A string of form "partition:rollback_index_location:key" that can be used to
1389 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001390 """
1391 if key is None:
1392 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001393 if key and not os.path.exists(key) and OPTIONS.search_path:
1394 new_key_path = os.path.join(OPTIONS.search_path, key)
1395 if os.path.exists(new_key_path):
1396 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001397 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001398 rollback_index_location = info_dict[
1399 "avb_" + partition + "_rollback_index_location"]
1400 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1401
1402
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001403def _HasGkiCertificationArgs():
1404 return ("gki_signing_key_path" in OPTIONS.info_dict and
1405 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001406
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001407
1408def _GenerateGkiCertificate(image, image_name, partition_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001409 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001410 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001411
1412 if not os.path.exists(key_path) and OPTIONS.search_path:
1413 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1414 if os.path.exists(new_key_path):
1415 key_path = new_key_path
1416
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001417 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001418 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001419 raise ExternalError(
1420 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001421
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001422 output_certificate = tempfile.NamedTemporaryFile()
1423 cmd = [
1424 "generate_gki_certificate",
1425 "--name", image_name,
1426 "--algorithm", algorithm,
1427 "--key", key_path,
1428 "--output", output_certificate.name,
1429 image,
1430 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001431
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001432 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1433 signature_args = signature_args.strip()
1434 if signature_args:
1435 cmd.extend(["--additional_avb_args", signature_args])
1436
1437 args = OPTIONS.info_dict.get(
1438 "avb_" + partition_name + "_add_hash_footer_args", "")
1439 args = args.strip()
1440 if args:
1441 cmd.extend(["--additional_avb_args", args])
1442
1443 RunAndCheckOutput(cmd)
1444
1445 output_certificate.seek(os.SEEK_SET, 0)
1446 data = output_certificate.read()
1447 output_certificate.close()
1448 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001449
1450
Daniel Norman276f0622019-07-26 14:13:51 -07001451def BuildVBMeta(image_path, partitions, name, needed_partitions):
1452 """Creates a VBMeta image.
1453
1454 It generates the requested VBMeta image. The requested image could be for
1455 top-level or chained VBMeta image, which is determined based on the name.
1456
1457 Args:
1458 image_path: The output path for the new VBMeta image.
1459 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001460 values. Only valid partition names are accepted, as partitions listed
1461 in common.AVB_PARTITIONS and custom partitions listed in
1462 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001463 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1464 needed_partitions: Partitions whose descriptors should be included into the
1465 generated VBMeta image.
1466
1467 Raises:
1468 AssertionError: On invalid input args.
1469 """
1470 avbtool = OPTIONS.info_dict["avb_avbtool"]
1471 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1472 AppendAVBSigningArgs(cmd, name)
1473
Hongguang Chenf23364d2020-04-27 18:36:36 -07001474 custom_partitions = OPTIONS.info_dict.get(
1475 "avb_custom_images_partition_list", "").strip().split()
1476
Daniel Norman276f0622019-07-26 14:13:51 -07001477 for partition, path in partitions.items():
1478 if partition not in needed_partitions:
1479 continue
1480 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001481 partition in AVB_VBMETA_PARTITIONS or
1482 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001483 'Unknown partition: {}'.format(partition)
1484 assert os.path.exists(path), \
1485 'Failed to find {} for {}'.format(path, partition)
1486 cmd.extend(GetAvbPartitionArg(partition, path))
1487
1488 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1489 if args and args.strip():
1490 split_args = shlex.split(args)
1491 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001492 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001493 # as a path relative to source tree, which may not be available at the
1494 # same location when running this script (we have the input target_files
1495 # zip only). For such cases, we additionally scan other locations (e.g.
1496 # IMAGES/, RADIO/, etc) before bailing out.
1497 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001498 chained_image = split_args[index + 1]
1499 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001500 continue
1501 found = False
1502 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1503 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001504 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001505 if os.path.exists(alt_path):
1506 split_args[index + 1] = alt_path
1507 found = True
1508 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001509 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001510 cmd.extend(split_args)
1511
1512 RunAndCheckOutput(cmd)
1513
1514
jiajia tang836f76b2021-04-02 14:48:26 +08001515def _MakeRamdisk(sourcedir, fs_config_file=None,
1516 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001517 ramdisk_img = tempfile.NamedTemporaryFile()
1518
1519 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1520 cmd = ["mkbootfs", "-f", fs_config_file,
1521 os.path.join(sourcedir, "RAMDISK")]
1522 else:
1523 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1524 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001525 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001526 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001527 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001528 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001529 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001530 else:
1531 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001532
1533 p2.wait()
1534 p1.wait()
1535 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001536 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001537
1538 return ramdisk_img
1539
1540
Steve Muckle9793cf62020-04-08 18:27:00 -07001541def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001542 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001543 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001544
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001545 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001546 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1547 we are building a two-step special image (i.e. building a recovery image to
1548 be loaded into /boot in two-step OTAs).
1549
1550 Return the image data, or None if sourcedir does not appear to contains files
1551 for building the requested image.
1552 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001553
Yifan Hong63c5ca12020-10-08 11:54:02 -07001554 if info_dict is None:
1555 info_dict = OPTIONS.info_dict
1556
Steve Muckle9793cf62020-04-08 18:27:00 -07001557 # "boot" or "recovery", without extension.
1558 partition_name = os.path.basename(sourcedir).lower()
1559
Yifan Hong63c5ca12020-10-08 11:54:02 -07001560 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001561 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001562 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1563 logger.info("Excluded kernel binary from recovery image.")
1564 else:
1565 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001566 elif partition_name == "init_boot":
1567 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001568 else:
1569 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001570 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001571 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001572 return None
1573
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001574 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1575
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001576 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001577 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001578
Doug Zongkereef39442009-04-02 12:14:19 -07001579 img = tempfile.NamedTemporaryFile()
1580
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001581 if has_ramdisk:
jiajia tang836f76b2021-04-02 14:48:26 +08001582 ramdisk_format = _GetRamdiskFormat(info_dict)
1583 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1584 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001585
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001586 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1587 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1588
Yifan Hong63c5ca12020-10-08 11:54:02 -07001589 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001590 if kernel_path is not None:
1591 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001592
Benoit Fradina45a8682014-07-14 21:00:43 +02001593 fn = os.path.join(sourcedir, "second")
1594 if os.access(fn, os.F_OK):
1595 cmd.append("--second")
1596 cmd.append(fn)
1597
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001598 fn = os.path.join(sourcedir, "dtb")
1599 if os.access(fn, os.F_OK):
1600 cmd.append("--dtb")
1601 cmd.append(fn)
1602
Doug Zongker171f1cd2009-06-15 22:36:37 -07001603 fn = os.path.join(sourcedir, "cmdline")
1604 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001605 cmd.append("--cmdline")
1606 cmd.append(open(fn).read().rstrip("\n"))
1607
1608 fn = os.path.join(sourcedir, "base")
1609 if os.access(fn, os.F_OK):
1610 cmd.append("--base")
1611 cmd.append(open(fn).read().rstrip("\n"))
1612
Ying Wang4de6b5b2010-08-25 14:29:34 -07001613 fn = os.path.join(sourcedir, "pagesize")
1614 if os.access(fn, os.F_OK):
1615 cmd.append("--pagesize")
1616 cmd.append(open(fn).read().rstrip("\n"))
1617
Steve Mucklef84668e2020-03-16 19:13:46 -07001618 if partition_name == "recovery":
1619 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301620 if not args:
1621 # Fall back to "mkbootimg_args" for recovery image
1622 # in case "recovery_mkbootimg_args" is not set.
1623 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001624 elif partition_name == "init_boot":
1625 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001626 else:
1627 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001628 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001629 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001630
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001631 boot_signature = None
1632 if _HasGkiCertificationArgs():
1633 # Certify GKI images.
1634 boot_signature_bytes = b''
1635 if kernel_path is not None:
1636 boot_signature_bytes += _GenerateGkiCertificate(
1637 kernel_path, "generic_kernel", "boot")
1638 if has_ramdisk:
1639 boot_signature_bytes += _GenerateGkiCertificate(
1640 ramdisk_img.name, "generic_ramdisk", "init_boot")
1641
1642 if len(boot_signature_bytes) > 0:
1643 boot_signature = tempfile.NamedTemporaryFile()
1644 boot_signature.write(boot_signature_bytes)
1645 boot_signature.flush()
1646 cmd.extend(["--boot_signature", boot_signature.name])
1647 else:
1648 # Certified GKI boot/init_boot image mustn't set 'mkbootimg_version_args'.
1649 args = info_dict.get("mkbootimg_version_args")
1650 if args and args.strip():
1651 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001652
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001653 if has_ramdisk:
1654 cmd.extend(["--ramdisk", ramdisk_img.name])
1655
Tao Baod95e9fd2015-03-29 23:07:41 -07001656 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001657 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001658 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001659 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001660 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001661 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001662
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001663 if partition_name == "recovery":
1664 if info_dict.get("include_recovery_dtbo") == "true":
1665 fn = os.path.join(sourcedir, "recovery_dtbo")
1666 cmd.extend(["--recovery_dtbo", fn])
1667 if info_dict.get("include_recovery_acpio") == "true":
1668 fn = os.path.join(sourcedir, "recovery_acpio")
1669 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001670
Tao Bao986ee862018-10-04 15:46:16 -07001671 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001672
Tao Bao76def242017-11-21 09:25:31 -08001673 if (info_dict.get("boot_signer") == "true" and
Kelvin Zhang563750f2021-04-28 12:46:17 -04001674 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001675 # Hard-code the path as "/boot" for two-step special recovery image (which
1676 # will be loaded into /boot during the two-step OTA).
1677 if two_step_image:
1678 path = "/boot"
1679 else:
Tao Baobf70c312017-07-11 17:27:55 -07001680 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001681 cmd = [OPTIONS.boot_signer_path]
1682 cmd.extend(OPTIONS.boot_signer_args)
1683 cmd.extend([path, img.name,
1684 info_dict["verity_key"] + ".pk8",
1685 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001686 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001687
Tao Baod95e9fd2015-03-29 23:07:41 -07001688 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001689 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001690 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001691 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001692 # We have switched from the prebuilt futility binary to using the tool
1693 # (futility-host) built from the source. Override the setting in the old
1694 # TF.zip.
1695 futility = info_dict["futility"]
1696 if futility.startswith("prebuilts/"):
1697 futility = "futility-host"
1698 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001699 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001700 info_dict["vboot_key"] + ".vbprivk",
1701 info_dict["vboot_subkey"] + ".vbprivk",
1702 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001703 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001704 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001705
Tao Baof3282b42015-04-01 11:21:55 -07001706 # Clean up the temp files.
1707 img_unsigned.close()
1708 img_keyblock.close()
1709
David Zeuthen8fecb282017-12-01 16:24:01 -05001710 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001711 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001712 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001713 if partition_name == "recovery":
1714 part_size = info_dict["recovery_size"]
1715 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001716 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001717 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001718 "--partition_size", str(part_size), "--partition_name",
1719 partition_name]
1720 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001721 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001722 if args and args.strip():
1723 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001724 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001725
1726 img.seek(os.SEEK_SET, 0)
1727 data = img.read()
1728
1729 if has_ramdisk:
1730 ramdisk_img.close()
1731 img.close()
1732
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001733 if boot_signature is not None:
1734 boot_signature.close()
1735
David Zeuthend995f4b2016-01-29 16:59:17 -05001736 return data
1737
1738
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001739def _SignBootableImage(image_path, prebuilt_name, partition_name,
1740 info_dict=None):
1741 """Performs AVB signing for a prebuilt boot.img.
1742
1743 Args:
1744 image_path: The full path of the image, e.g., /path/to/boot.img.
1745 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001746 boot-5.10.img, recovery.img or init_boot.img.
1747 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001748 info_dict: The information dict read from misc_info.txt.
1749 """
1750 if info_dict is None:
1751 info_dict = OPTIONS.info_dict
1752
1753 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1754 if info_dict.get("avb_enable") == "true":
1755 avbtool = info_dict["avb_avbtool"]
1756 if partition_name == "recovery":
1757 part_size = info_dict["recovery_size"]
1758 else:
1759 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1760
1761 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1762 "--partition_size", str(part_size), "--partition_name",
1763 partition_name]
1764 AppendAVBSigningArgs(cmd, partition_name)
1765 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1766 if args and args.strip():
1767 cmd.extend(shlex.split(args))
1768 RunAndCheckOutput(cmd)
1769
1770
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001771def HasRamdisk(partition_name, info_dict=None):
1772 """Returns true/false to see if a bootable image should have a ramdisk.
1773
1774 Args:
1775 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1776 info_dict: The information dict read from misc_info.txt.
1777 """
1778 if info_dict is None:
1779 info_dict = OPTIONS.info_dict
1780
1781 if partition_name != "boot":
1782 return True # init_boot.img or recovery.img has a ramdisk.
1783
1784 if info_dict.get("recovery_as_boot") == "true":
1785 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1786
1787 if info_dict.get("system_root_image") == "true":
1788 # The ramdisk content is merged into the system.img, so there is NO
1789 # ramdisk in the boot.img or boot-<kernel version>.img.
1790 return False
1791
1792 if info_dict.get("init_boot") == "true":
1793 # The ramdisk is moved to the init_boot.img, so there is NO
1794 # ramdisk in the boot.img or boot-<kernel version>.img.
1795 return False
1796
1797 return True
1798
1799
Doug Zongkerd5131602012-08-02 14:46:42 -07001800def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001801 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001802 """Return a File object with the desired bootable image.
1803
1804 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1805 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1806 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001807
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001808 if info_dict is None:
1809 info_dict = OPTIONS.info_dict
1810
Doug Zongker55d93282011-01-25 17:03:34 -08001811 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1812 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001813 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001814 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001815
1816 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1817 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001818 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001819 return File.FromLocalFile(name, prebuilt_path)
1820
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001821 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001822 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1823 if os.path.exists(prebuilt_path):
1824 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1825 signed_img = MakeTempFile()
1826 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001827 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1828 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001829
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001830 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001831
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001832 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001833
Doug Zongker6f1d0312014-08-22 08:07:12 -07001834 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001835 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001836 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001837 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001838 if data:
1839 return File(name, data)
1840 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001841
Doug Zongkereef39442009-04-02 12:14:19 -07001842
Steve Mucklee1b10862019-07-10 10:49:37 -07001843def _BuildVendorBootImage(sourcedir, info_dict=None):
1844 """Build a vendor boot image from the specified sourcedir.
1845
1846 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1847 turn them into a vendor boot image.
1848
1849 Return the image data, or None if sourcedir does not appear to contains files
1850 for building the requested image.
1851 """
1852
1853 if info_dict is None:
1854 info_dict = OPTIONS.info_dict
1855
1856 img = tempfile.NamedTemporaryFile()
1857
jiajia tang836f76b2021-04-02 14:48:26 +08001858 ramdisk_format = _GetRamdiskFormat(info_dict)
1859 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001860
1861 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1862 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1863
1864 cmd = [mkbootimg]
1865
1866 fn = os.path.join(sourcedir, "dtb")
1867 if os.access(fn, os.F_OK):
1868 cmd.append("--dtb")
1869 cmd.append(fn)
1870
1871 fn = os.path.join(sourcedir, "vendor_cmdline")
1872 if os.access(fn, os.F_OK):
1873 cmd.append("--vendor_cmdline")
1874 cmd.append(open(fn).read().rstrip("\n"))
1875
1876 fn = os.path.join(sourcedir, "base")
1877 if os.access(fn, os.F_OK):
1878 cmd.append("--base")
1879 cmd.append(open(fn).read().rstrip("\n"))
1880
1881 fn = os.path.join(sourcedir, "pagesize")
1882 if os.access(fn, os.F_OK):
1883 cmd.append("--pagesize")
1884 cmd.append(open(fn).read().rstrip("\n"))
1885
1886 args = info_dict.get("mkbootimg_args")
1887 if args and args.strip():
1888 cmd.extend(shlex.split(args))
1889
1890 args = info_dict.get("mkbootimg_version_args")
1891 if args and args.strip():
1892 cmd.extend(shlex.split(args))
1893
1894 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1895 cmd.extend(["--vendor_boot", img.name])
1896
Devin Moore50509012021-01-13 10:45:04 -08001897 fn = os.path.join(sourcedir, "vendor_bootconfig")
1898 if os.access(fn, os.F_OK):
1899 cmd.append("--vendor_bootconfig")
1900 cmd.append(fn)
1901
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001902 ramdisk_fragment_imgs = []
1903 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1904 if os.access(fn, os.F_OK):
1905 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1906 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001907 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1908 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001909 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001910 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1911 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001912 # Use prebuilt image if found, else create ramdisk from supplied files.
1913 if os.access(fn, os.F_OK):
1914 ramdisk_fragment_pathname = fn
1915 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001916 ramdisk_fragment_root = os.path.join(
1917 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001918 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1919 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001920 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1921 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1922 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1923
Steve Mucklee1b10862019-07-10 10:49:37 -07001924 RunAndCheckOutput(cmd)
1925
1926 # AVB: if enabled, calculate and add hash.
1927 if info_dict.get("avb_enable") == "true":
1928 avbtool = info_dict["avb_avbtool"]
1929 part_size = info_dict["vendor_boot_size"]
1930 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001931 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001932 AppendAVBSigningArgs(cmd, "vendor_boot")
1933 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1934 if args and args.strip():
1935 cmd.extend(shlex.split(args))
1936 RunAndCheckOutput(cmd)
1937
1938 img.seek(os.SEEK_SET, 0)
1939 data = img.read()
1940
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001941 for f in ramdisk_fragment_imgs:
1942 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001943 ramdisk_img.close()
1944 img.close()
1945
1946 return data
1947
1948
1949def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1950 info_dict=None):
1951 """Return a File object with the desired vendor boot image.
1952
1953 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1954 the source files in 'unpack_dir'/'tree_subdir'."""
1955
1956 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1957 if os.path.exists(prebuilt_path):
1958 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1959 return File.FromLocalFile(name, prebuilt_path)
1960
1961 logger.info("building image from target_files %s...", tree_subdir)
1962
1963 if info_dict is None:
1964 info_dict = OPTIONS.info_dict
1965
Kelvin Zhang0876c412020-06-23 15:06:58 -04001966 data = _BuildVendorBootImage(
1967 os.path.join(unpack_dir, tree_subdir), info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07001968 if data:
1969 return File(name, data)
1970 return None
1971
1972
Narayan Kamatha07bf042017-08-14 14:49:21 +01001973def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001974 """Gunzips the given gzip compressed file to a given output file."""
1975 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04001976 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001977 shutil.copyfileobj(in_file, out_file)
1978
1979
Tao Bao0ff15de2019-03-20 11:26:06 -07001980def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001981 """Unzips the archive to the given directory.
1982
1983 Args:
1984 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001985 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001986 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1987 archvie. Non-matching patterns will be filtered out. If there's no match
1988 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001989 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001990 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001991 if patterns is not None:
1992 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04001993 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07001994 names = input_zip.namelist()
1995 filtered = [
1996 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1997
1998 # There isn't any matching files. Don't unzip anything.
1999 if not filtered:
2000 return
2001 cmd.extend(filtered)
2002
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002003 RunAndCheckOutput(cmd)
2004
2005
Daniel Norman78554ea2021-09-14 10:29:38 -07002006def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002007 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002008
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002009 Args:
2010 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2011 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2012
Daniel Norman78554ea2021-09-14 10:29:38 -07002013 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002014 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002015
Tao Bao1c830bf2017-12-25 10:43:47 -08002016 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002017 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002018 """
Doug Zongkereef39442009-04-02 12:14:19 -07002019
Tao Bao1c830bf2017-12-25 10:43:47 -08002020 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002021 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2022 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002023 UnzipToDir(m.group(1), tmp, patterns)
2024 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002025 filename = m.group(1)
2026 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002027 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002028
Tao Baodba59ee2018-01-09 13:21:02 -08002029 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002030
2031
Yifan Hong8a66a712019-04-04 15:37:57 -07002032def GetUserImage(which, tmpdir, input_zip,
2033 info_dict=None,
2034 allow_shared_blocks=None,
2035 hashtree_info_generator=None,
2036 reset_file_map=False):
2037 """Returns an Image object suitable for passing to BlockImageDiff.
2038
2039 This function loads the specified image from the given path. If the specified
2040 image is sparse, it also performs additional processing for OTA purpose. For
2041 example, it always adds block 0 to clobbered blocks list. It also detects
2042 files that cannot be reconstructed from the block list, for whom we should
2043 avoid applying imgdiff.
2044
2045 Args:
2046 which: The partition name.
2047 tmpdir: The directory that contains the prebuilt image and block map file.
2048 input_zip: The target-files ZIP archive.
2049 info_dict: The dict to be looked up for relevant info.
2050 allow_shared_blocks: If image is sparse, whether having shared blocks is
2051 allowed. If none, it is looked up from info_dict.
2052 hashtree_info_generator: If present and image is sparse, generates the
2053 hashtree_info for this sparse image.
2054 reset_file_map: If true and image is sparse, reset file map before returning
2055 the image.
2056 Returns:
2057 A Image object. If it is a sparse image and reset_file_map is False, the
2058 image will have file_map info loaded.
2059 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002060 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002061 info_dict = LoadInfoDict(input_zip)
2062
2063 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002064 if info_dict.get(which + "_disable_sparse"):
2065 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002066
2067 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2068 # shared blocks (i.e. some blocks will show up in multiple files' block
2069 # list). We can only allocate such shared blocks to the first "owner", and
2070 # disable imgdiff for all later occurrences.
2071 if allow_shared_blocks is None:
2072 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2073
2074 if is_sparse:
2075 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2076 hashtree_info_generator)
2077 if reset_file_map:
2078 img.ResetFileMap()
2079 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04002080 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07002081
2082
2083def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
2084 """Returns a Image object suitable for passing to BlockImageDiff.
2085
2086 This function loads the specified non-sparse image from the given path.
2087
2088 Args:
2089 which: The partition name.
2090 tmpdir: The directory that contains the prebuilt image and block map file.
2091 Returns:
2092 A Image object.
2093 """
2094 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2095 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2096
2097 # The image and map files must have been created prior to calling
2098 # ota_from_target_files.py (since LMP).
2099 assert os.path.exists(path) and os.path.exists(mappath)
2100
Tianjie Xu41976c72019-07-03 13:57:01 -07002101 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
2102
Yifan Hong8a66a712019-04-04 15:37:57 -07002103
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002104def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2105 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08002106 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2107
2108 This function loads the specified sparse image from the given path, and
2109 performs additional processing for OTA purpose. For example, it always adds
2110 block 0 to clobbered blocks list. It also detects files that cannot be
2111 reconstructed from the block list, for whom we should avoid applying imgdiff.
2112
2113 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002114 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002115 tmpdir: The directory that contains the prebuilt image and block map file.
2116 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002117 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002118 hashtree_info_generator: If present, generates the hashtree_info for this
2119 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08002120 Returns:
2121 A SparseImage object, with file_map info loaded.
2122 """
Tao Baoc765cca2018-01-31 17:32:40 -08002123 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2124 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2125
2126 # The image and map files must have been created prior to calling
2127 # ota_from_target_files.py (since LMP).
2128 assert os.path.exists(path) and os.path.exists(mappath)
2129
2130 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2131 # it to clobbered_blocks so that it will be written to the target
2132 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2133 clobbered_blocks = "0"
2134
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002135 image = sparse_img.SparseImage(
2136 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
2137 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08002138
2139 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2140 # if they contain all zeros. We can't reconstruct such a file from its block
2141 # list. Tag such entries accordingly. (Bug: 65213616)
2142 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002143 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002144 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002145 continue
2146
Tom Cherryd14b8952018-08-09 14:26:00 -07002147 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2148 # filename listed in system.map may contain an additional leading slash
2149 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2150 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002151 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002152 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002153 arcname = entry.lstrip('/')
2154 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002155 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002156 else:
2157 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002158
2159 assert arcname in input_zip.namelist(), \
2160 "Failed to find the ZIP entry for {}".format(entry)
2161
Tao Baoc765cca2018-01-31 17:32:40 -08002162 info = input_zip.getinfo(arcname)
2163 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002164
2165 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002166 # image, check the original block list to determine its completeness. Note
2167 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002168 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002169 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002170
Tao Baoc765cca2018-01-31 17:32:40 -08002171 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2172 ranges.extra['incomplete'] = True
2173
2174 return image
2175
2176
Doug Zongkereef39442009-04-02 12:14:19 -07002177def GetKeyPasswords(keylist):
2178 """Given a list of keys, prompt the user to enter passwords for
2179 those which require them. Return a {key: password} dict. password
2180 will be None if the key has no password."""
2181
Doug Zongker8ce7c252009-05-22 13:34:54 -07002182 no_passwords = []
2183 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002184 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002185 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002186
2187 # sorted() can't compare strings to None, so convert Nones to strings
2188 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002189 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002190 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002191 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002192 continue
2193
T.R. Fullhart37e10522013-03-18 10:31:26 -07002194 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002195 "-inform", "DER", "-nocrypt"],
2196 stdin=devnull.fileno(),
2197 stdout=devnull.fileno(),
2198 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002199 p.communicate()
2200 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002201 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002202 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002203 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002204 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2205 "-inform", "DER", "-passin", "pass:"],
2206 stdin=devnull.fileno(),
2207 stdout=devnull.fileno(),
2208 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002209 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002210 if p.returncode == 0:
2211 # Encrypted key with empty string as password.
2212 key_passwords[k] = ''
2213 elif stderr.startswith('Error decrypting key'):
2214 # Definitely encrypted key.
2215 # It would have said "Error reading key" if it didn't parse correctly.
2216 need_passwords.append(k)
2217 else:
2218 # Potentially, a type of key that openssl doesn't understand.
2219 # We'll let the routines in signapk.jar handle it.
2220 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002221 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002222
T.R. Fullhart37e10522013-03-18 10:31:26 -07002223 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002224 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002225 return key_passwords
2226
2227
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002228def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002229 """Gets the minSdkVersion declared in the APK.
2230
Martin Stjernholm58472e82022-01-07 22:08:47 +00002231 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2232 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002233
2234 Args:
2235 apk_name: The APK filename.
2236
2237 Returns:
2238 The parsed SDK version string.
2239
2240 Raises:
2241 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002242 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002243 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002244 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002245 stderr=subprocess.PIPE)
2246 stdoutdata, stderrdata = proc.communicate()
2247 if proc.returncode != 0:
2248 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002249 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2250 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002251
Tao Baof47bf0f2018-03-21 23:28:51 -07002252 for line in stdoutdata.split("\n"):
2253 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002254 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2255 if m:
2256 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002257 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002258
2259
2260def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002261 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002262
Tao Baof47bf0f2018-03-21 23:28:51 -07002263 If minSdkVersion is set to a codename, it is translated to a number using the
2264 provided map.
2265
2266 Args:
2267 apk_name: The APK filename.
2268
2269 Returns:
2270 The parsed SDK version number.
2271
2272 Raises:
2273 ExternalError: On failing to get the min SDK version number.
2274 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002275 version = GetMinSdkVersion(apk_name)
2276 try:
2277 return int(version)
2278 except ValueError:
2279 # Not a decimal number. Codename?
2280 if version in codename_to_api_level_map:
2281 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002282 raise ExternalError(
2283 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2284 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002285
2286
2287def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002288 codename_to_api_level_map=None, whole_file=False,
2289 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002290 """Sign the input_name zip/jar/apk, producing output_name. Use the
2291 given key and password (the latter may be None if the key does not
2292 have a password.
2293
Doug Zongker951495f2009-08-14 12:44:19 -07002294 If whole_file is true, use the "-w" option to SignApk to embed a
2295 signature that covers the whole file in the archive comment of the
2296 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002297
2298 min_api_level is the API Level (int) of the oldest platform this file may end
2299 up on. If not specified for an APK, the API Level is obtained by interpreting
2300 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2301
2302 codename_to_api_level_map is needed to translate the codename which may be
2303 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002304
2305 Caller may optionally specify extra args to be passed to SignApk, which
2306 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002307 """
Tao Bao76def242017-11-21 09:25:31 -08002308 if codename_to_api_level_map is None:
2309 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002310 if extra_signapk_args is None:
2311 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002312
Alex Klyubin9667b182015-12-10 13:38:50 -08002313 java_library_path = os.path.join(
2314 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2315
Tao Baoe95540e2016-11-08 12:08:53 -08002316 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2317 ["-Djava.library.path=" + java_library_path,
2318 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002319 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002320 if whole_file:
2321 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002322
2323 min_sdk_version = min_api_level
2324 if min_sdk_version is None:
2325 if not whole_file:
2326 min_sdk_version = GetMinSdkVersionInt(
2327 input_name, codename_to_api_level_map)
2328 if min_sdk_version is not None:
2329 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2330
T.R. Fullhart37e10522013-03-18 10:31:26 -07002331 cmd.extend([key + OPTIONS.public_key_suffix,
2332 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002333 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002334
Tao Bao73dd4f42018-10-04 16:25:33 -07002335 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002336 if password is not None:
2337 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002338 stdoutdata, _ = proc.communicate(password)
2339 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002340 raise ExternalError(
2341 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002342 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002343
Doug Zongkereef39442009-04-02 12:14:19 -07002344
Doug Zongker37974732010-09-16 17:44:38 -07002345def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002346 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002347
Tao Bao9dd909e2017-11-14 11:27:32 -08002348 For non-AVB images, raise exception if the data is too big. Print a warning
2349 if the data is nearing the maximum size.
2350
2351 For AVB images, the actual image size should be identical to the limit.
2352
2353 Args:
2354 data: A string that contains all the data for the partition.
2355 target: The partition name. The ".img" suffix is optional.
2356 info_dict: The dict to be looked up for relevant info.
2357 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002358 if target.endswith(".img"):
2359 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002360 mount_point = "/" + target
2361
Ying Wangf8824af2014-06-03 14:07:27 -07002362 fs_type = None
2363 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002364 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002365 if mount_point == "/userdata":
2366 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002367 p = info_dict["fstab"][mount_point]
2368 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002369 device = p.device
2370 if "/" in device:
2371 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002372 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002373 if not fs_type or not limit:
2374 return
Doug Zongkereef39442009-04-02 12:14:19 -07002375
Andrew Boie0f9aec82012-02-14 09:32:52 -08002376 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002377 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2378 # path.
2379 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2380 if size != limit:
2381 raise ExternalError(
2382 "Mismatching image size for %s: expected %d actual %d" % (
2383 target, limit, size))
2384 else:
2385 pct = float(size) * 100.0 / limit
2386 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2387 if pct >= 99.0:
2388 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002389
2390 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002391 logger.warning("\n WARNING: %s\n", msg)
2392 else:
2393 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002394
2395
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002396def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002397 """Parses the APK certs info from a given target-files zip.
2398
2399 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2400 tuple with the following elements: (1) a dictionary that maps packages to
2401 certs (based on the "certificate" and "private_key" attributes in the file;
2402 (2) a string representing the extension of compressed APKs in the target files
2403 (e.g ".gz", ".bro").
2404
2405 Args:
2406 tf_zip: The input target_files ZipFile (already open).
2407
2408 Returns:
2409 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2410 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2411 no compressed APKs.
2412 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002413 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002414 compressed_extension = None
2415
Tao Bao0f990332017-09-08 19:02:54 -07002416 # META/apkcerts.txt contains the info for _all_ the packages known at build
2417 # time. Filter out the ones that are not installed.
2418 installed_files = set()
2419 for name in tf_zip.namelist():
2420 basename = os.path.basename(name)
2421 if basename:
2422 installed_files.add(basename)
2423
Tao Baoda30cfa2017-12-01 16:19:46 -08002424 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002425 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002426 if not line:
2427 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002428 m = re.match(
2429 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002430 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2431 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002432 line)
2433 if not m:
2434 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002435
Tao Bao818ddf52018-01-05 11:17:34 -08002436 matches = m.groupdict()
2437 cert = matches["CERT"]
2438 privkey = matches["PRIVKEY"]
2439 name = matches["NAME"]
2440 this_compressed_extension = matches["COMPRESSED"]
2441
2442 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2443 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2444 if cert in SPECIAL_CERT_STRINGS and not privkey:
2445 certmap[name] = cert
2446 elif (cert.endswith(OPTIONS.public_key_suffix) and
2447 privkey.endswith(OPTIONS.private_key_suffix) and
2448 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2449 certmap[name] = cert[:-public_key_suffix_len]
2450 else:
2451 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2452
2453 if not this_compressed_extension:
2454 continue
2455
2456 # Only count the installed files.
2457 filename = name + '.' + this_compressed_extension
2458 if filename not in installed_files:
2459 continue
2460
2461 # Make sure that all the values in the compression map have the same
2462 # extension. We don't support multiple compression methods in the same
2463 # system image.
2464 if compressed_extension:
2465 if this_compressed_extension != compressed_extension:
2466 raise ValueError(
2467 "Multiple compressed extensions: {} vs {}".format(
2468 compressed_extension, this_compressed_extension))
2469 else:
2470 compressed_extension = this_compressed_extension
2471
2472 return (certmap,
2473 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002474
2475
Doug Zongkereef39442009-04-02 12:14:19 -07002476COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002477Global options
2478
2479 -p (--path) <dir>
2480 Prepend <dir>/bin to the list of places to search for binaries run by this
2481 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002482
Doug Zongker05d3dea2009-06-22 11:32:31 -07002483 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002484 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002485
Tao Bao30df8b42018-04-23 15:32:53 -07002486 -x (--extra) <key=value>
2487 Add a key/value pair to the 'extras' dict, which device-specific extension
2488 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002489
Doug Zongkereef39442009-04-02 12:14:19 -07002490 -v (--verbose)
2491 Show command lines being executed.
2492
2493 -h (--help)
2494 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002495
2496 --logfile <file>
2497 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002498"""
2499
Kelvin Zhang0876c412020-06-23 15:06:58 -04002500
Doug Zongkereef39442009-04-02 12:14:19 -07002501def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002502 print(docstring.rstrip("\n"))
2503 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002504
2505
2506def ParseOptions(argv,
2507 docstring,
2508 extra_opts="", extra_long_opts=(),
2509 extra_option_handler=None):
2510 """Parse the options in argv and return any arguments that aren't
2511 flags. docstring is the calling module's docstring, to be displayed
2512 for errors and -h. extra_opts and extra_long_opts are for flags
2513 defined by the caller, which are processed by passing them to
2514 extra_option_handler."""
2515
2516 try:
2517 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002518 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002519 ["help", "verbose", "path=", "signapk_path=",
Martin Stjernholm58472e82022-01-07 22:08:47 +00002520 "signapk_shared_library_path=", "extra_signapk_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002521 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002522 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2523 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002524 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002525 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002526 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002527 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002528 sys.exit(2)
2529
Doug Zongkereef39442009-04-02 12:14:19 -07002530 for o, a in opts:
2531 if o in ("-h", "--help"):
2532 Usage(docstring)
2533 sys.exit()
2534 elif o in ("-v", "--verbose"):
2535 OPTIONS.verbose = True
2536 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002537 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002538 elif o in ("--signapk_path",):
2539 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002540 elif o in ("--signapk_shared_library_path",):
2541 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002542 elif o in ("--extra_signapk_args",):
2543 OPTIONS.extra_signapk_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002544 elif o in ("--aapt2_path",):
2545 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002546 elif o in ("--java_path",):
2547 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002548 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002549 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002550 elif o in ("--android_jar_path",):
2551 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002552 elif o in ("--public_key_suffix",):
2553 OPTIONS.public_key_suffix = a
2554 elif o in ("--private_key_suffix",):
2555 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002556 elif o in ("--boot_signer_path",):
2557 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002558 elif o in ("--boot_signer_args",):
2559 OPTIONS.boot_signer_args = shlex.split(a)
2560 elif o in ("--verity_signer_path",):
2561 OPTIONS.verity_signer_path = a
2562 elif o in ("--verity_signer_args",):
2563 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07002564 elif o in ("-s", "--device_specific"):
2565 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002566 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002567 key, value = a.split("=", 1)
2568 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002569 elif o in ("--logfile",):
2570 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002571 else:
2572 if extra_option_handler is None or not extra_option_handler(o, a):
2573 assert False, "unknown option \"%s\"" % (o,)
2574
Doug Zongker85448772014-09-09 14:59:20 -07002575 if OPTIONS.search_path:
2576 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2577 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002578
2579 return args
2580
2581
Tao Bao4c851b12016-09-19 13:54:38 -07002582def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002583 """Make a temp file and add it to the list of things to be deleted
2584 when Cleanup() is called. Return the filename."""
2585 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2586 os.close(fd)
2587 OPTIONS.tempfiles.append(fn)
2588 return fn
2589
2590
Tao Bao1c830bf2017-12-25 10:43:47 -08002591def MakeTempDir(prefix='tmp', suffix=''):
2592 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2593
2594 Returns:
2595 The absolute pathname of the new directory.
2596 """
2597 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2598 OPTIONS.tempfiles.append(dir_name)
2599 return dir_name
2600
2601
Doug Zongkereef39442009-04-02 12:14:19 -07002602def Cleanup():
2603 for i in OPTIONS.tempfiles:
2604 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002605 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002606 else:
2607 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002608 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002609
2610
2611class PasswordManager(object):
2612 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002613 self.editor = os.getenv("EDITOR")
2614 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002615
2616 def GetPasswords(self, items):
2617 """Get passwords corresponding to each string in 'items',
2618 returning a dict. (The dict may have keys in addition to the
2619 values in 'items'.)
2620
2621 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2622 user edit that file to add more needed passwords. If no editor is
2623 available, or $ANDROID_PW_FILE isn't define, prompts the user
2624 interactively in the ordinary way.
2625 """
2626
2627 current = self.ReadFile()
2628
2629 first = True
2630 while True:
2631 missing = []
2632 for i in items:
2633 if i not in current or not current[i]:
2634 missing.append(i)
2635 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002636 if not missing:
2637 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002638
2639 for i in missing:
2640 current[i] = ""
2641
2642 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002643 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002644 if sys.version_info[0] >= 3:
2645 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002646 answer = raw_input("try to edit again? [y]> ").strip()
2647 if answer and answer[0] not in 'yY':
2648 raise RuntimeError("key passwords unavailable")
2649 first = False
2650
2651 current = self.UpdateAndReadFile(current)
2652
Kelvin Zhang0876c412020-06-23 15:06:58 -04002653 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002654 """Prompt the user to enter a value (password) for each key in
2655 'current' whose value is fales. Returns a new dict with all the
2656 values.
2657 """
2658 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002659 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002660 if v:
2661 result[k] = v
2662 else:
2663 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002664 result[k] = getpass.getpass(
2665 "Enter password for %s key> " % k).strip()
2666 if result[k]:
2667 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002668 return result
2669
2670 def UpdateAndReadFile(self, current):
2671 if not self.editor or not self.pwfile:
2672 return self.PromptResult(current)
2673
2674 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002675 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002676 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2677 f.write("# (Additional spaces are harmless.)\n\n")
2678
2679 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002680 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002681 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002682 f.write("[[[ %s ]]] %s\n" % (v, k))
2683 if not v and first_line is None:
2684 # position cursor on first line with no password.
2685 first_line = i + 4
2686 f.close()
2687
Tao Bao986ee862018-10-04 15:46:16 -07002688 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002689
2690 return self.ReadFile()
2691
2692 def ReadFile(self):
2693 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002694 if self.pwfile is None:
2695 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002696 try:
2697 f = open(self.pwfile, "r")
2698 for line in f:
2699 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002700 if not line or line[0] == '#':
2701 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002702 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2703 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002704 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002705 else:
2706 result[m.group(2)] = m.group(1)
2707 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002708 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002709 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002710 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002711 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002712
2713
Dan Albert8e0178d2015-01-27 15:53:15 -08002714def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2715 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002716
2717 # http://b/18015246
2718 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2719 # for files larger than 2GiB. We can work around this by adjusting their
2720 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2721 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2722 # it isn't clear to me exactly what circumstances cause this).
2723 # `zipfile.write()` must be used directly to work around this.
2724 #
2725 # This mess can be avoided if we port to python3.
2726 saved_zip64_limit = zipfile.ZIP64_LIMIT
2727 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2728
2729 if compress_type is None:
2730 compress_type = zip_file.compression
2731 if arcname is None:
2732 arcname = filename
2733
2734 saved_stat = os.stat(filename)
2735
2736 try:
2737 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2738 # file to be zipped and reset it when we're done.
2739 os.chmod(filename, perms)
2740
2741 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002742 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2743 # intentional. zip stores datetimes in local time without a time zone
2744 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2745 # in the zip archive.
2746 local_epoch = datetime.datetime.fromtimestamp(0)
2747 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002748 os.utime(filename, (timestamp, timestamp))
2749
2750 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2751 finally:
2752 os.chmod(filename, saved_stat.st_mode)
2753 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2754 zipfile.ZIP64_LIMIT = saved_zip64_limit
2755
2756
Tao Bao58c1b962015-05-20 09:32:18 -07002757def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002758 compress_type=None):
2759 """Wrap zipfile.writestr() function to work around the zip64 limit.
2760
2761 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2762 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2763 when calling crc32(bytes).
2764
2765 But it still works fine to write a shorter string into a large zip file.
2766 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2767 when we know the string won't be too long.
2768 """
2769
2770 saved_zip64_limit = zipfile.ZIP64_LIMIT
2771 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2772
2773 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2774 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002775 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002776 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002777 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002778 else:
Tao Baof3282b42015-04-01 11:21:55 -07002779 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002780 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2781 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2782 # such a case (since
2783 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2784 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2785 # permission bits. We follow the logic in Python 3 to get consistent
2786 # behavior between using the two versions.
2787 if not zinfo.external_attr:
2788 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002789
2790 # If compress_type is given, it overrides the value in zinfo.
2791 if compress_type is not None:
2792 zinfo.compress_type = compress_type
2793
Tao Bao58c1b962015-05-20 09:32:18 -07002794 # If perms is given, it has a priority.
2795 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002796 # If perms doesn't set the file type, mark it as a regular file.
2797 if perms & 0o770000 == 0:
2798 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002799 zinfo.external_attr = perms << 16
2800
Tao Baof3282b42015-04-01 11:21:55 -07002801 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002802 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2803
Dan Albert8b72aef2015-03-23 19:13:21 -07002804 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002805 zipfile.ZIP64_LIMIT = saved_zip64_limit
2806
2807
Tao Bao89d7ab22017-12-14 17:05:33 -08002808def ZipDelete(zip_filename, entries):
2809 """Deletes entries from a ZIP file.
2810
2811 Since deleting entries from a ZIP file is not supported, it shells out to
2812 'zip -d'.
2813
2814 Args:
2815 zip_filename: The name of the ZIP file.
2816 entries: The name of the entry, or the list of names to be deleted.
2817
2818 Raises:
2819 AssertionError: In case of non-zero return from 'zip'.
2820 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002821 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002822 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002823 # If list is empty, nothing to do
2824 if not entries:
2825 return
Tao Bao89d7ab22017-12-14 17:05:33 -08002826 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002827 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002828
2829
Tao Baof3282b42015-04-01 11:21:55 -07002830def ZipClose(zip_file):
2831 # http://b/18015246
2832 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2833 # central directory.
2834 saved_zip64_limit = zipfile.ZIP64_LIMIT
2835 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2836
2837 zip_file.close()
2838
2839 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002840
2841
2842class DeviceSpecificParams(object):
2843 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002844
Doug Zongker05d3dea2009-06-22 11:32:31 -07002845 def __init__(self, **kwargs):
2846 """Keyword arguments to the constructor become attributes of this
2847 object, which is passed to all functions in the device-specific
2848 module."""
Tao Bao38884282019-07-10 22:20:56 -07002849 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002850 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002851 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002852
2853 if self.module is None:
2854 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002855 if not path:
2856 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002857 try:
2858 if os.path.isdir(path):
2859 info = imp.find_module("releasetools", [path])
2860 else:
2861 d, f = os.path.split(path)
2862 b, x = os.path.splitext(f)
2863 if x == ".py":
2864 f = b
2865 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002866 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002867 self.module = imp.load_module("device_specific", *info)
2868 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002869 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002870
2871 def _DoCall(self, function_name, *args, **kwargs):
2872 """Call the named function in the device-specific module, passing
2873 the given args and kwargs. The first argument to the call will be
2874 the DeviceSpecific object itself. If there is no module, or the
2875 module does not define the function, return the value of the
2876 'default' kwarg (which itself defaults to None)."""
2877 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002878 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002879 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2880
2881 def FullOTA_Assertions(self):
2882 """Called after emitting the block of assertions at the top of a
2883 full OTA package. Implementations can add whatever additional
2884 assertions they like."""
2885 return self._DoCall("FullOTA_Assertions")
2886
Doug Zongkere5ff5902012-01-17 10:55:37 -08002887 def FullOTA_InstallBegin(self):
2888 """Called at the start of full OTA installation."""
2889 return self._DoCall("FullOTA_InstallBegin")
2890
Yifan Hong10c530d2018-12-27 17:34:18 -08002891 def FullOTA_GetBlockDifferences(self):
2892 """Called during full OTA installation and verification.
2893 Implementation should return a list of BlockDifference objects describing
2894 the update on each additional partitions.
2895 """
2896 return self._DoCall("FullOTA_GetBlockDifferences")
2897
Doug Zongker05d3dea2009-06-22 11:32:31 -07002898 def FullOTA_InstallEnd(self):
2899 """Called at the end of full OTA installation; typically this is
2900 used to install the image for the device's baseband processor."""
2901 return self._DoCall("FullOTA_InstallEnd")
2902
2903 def IncrementalOTA_Assertions(self):
2904 """Called after emitting the block of assertions at the top of an
2905 incremental OTA package. Implementations can add whatever
2906 additional assertions they like."""
2907 return self._DoCall("IncrementalOTA_Assertions")
2908
Doug Zongkere5ff5902012-01-17 10:55:37 -08002909 def IncrementalOTA_VerifyBegin(self):
2910 """Called at the start of the verification phase of incremental
2911 OTA installation; additional checks can be placed here to abort
2912 the script before any changes are made."""
2913 return self._DoCall("IncrementalOTA_VerifyBegin")
2914
Doug Zongker05d3dea2009-06-22 11:32:31 -07002915 def IncrementalOTA_VerifyEnd(self):
2916 """Called at the end of the verification phase of incremental OTA
2917 installation; additional checks can be placed here to abort the
2918 script before any changes are made."""
2919 return self._DoCall("IncrementalOTA_VerifyEnd")
2920
Doug Zongkere5ff5902012-01-17 10:55:37 -08002921 def IncrementalOTA_InstallBegin(self):
2922 """Called at the start of incremental OTA installation (after
2923 verification is complete)."""
2924 return self._DoCall("IncrementalOTA_InstallBegin")
2925
Yifan Hong10c530d2018-12-27 17:34:18 -08002926 def IncrementalOTA_GetBlockDifferences(self):
2927 """Called during incremental OTA installation and verification.
2928 Implementation should return a list of BlockDifference objects describing
2929 the update on each additional partitions.
2930 """
2931 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2932
Doug Zongker05d3dea2009-06-22 11:32:31 -07002933 def IncrementalOTA_InstallEnd(self):
2934 """Called at the end of incremental OTA installation; typically
2935 this is used to install the image for the device's baseband
2936 processor."""
2937 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002938
Tao Bao9bc6bb22015-11-09 16:58:28 -08002939 def VerifyOTA_Assertions(self):
2940 return self._DoCall("VerifyOTA_Assertions")
2941
Tao Bao76def242017-11-21 09:25:31 -08002942
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002943class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002944 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002945 self.name = name
2946 self.data = data
2947 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002948 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002949 self.sha1 = sha1(data).hexdigest()
2950
2951 @classmethod
2952 def FromLocalFile(cls, name, diskname):
2953 f = open(diskname, "rb")
2954 data = f.read()
2955 f.close()
2956 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002957
2958 def WriteToTemp(self):
2959 t = tempfile.NamedTemporaryFile()
2960 t.write(self.data)
2961 t.flush()
2962 return t
2963
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002964 def WriteToDir(self, d):
2965 with open(os.path.join(d, self.name), "wb") as fp:
2966 fp.write(self.data)
2967
Geremy Condra36bd3652014-02-06 19:45:10 -08002968 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002969 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002970
Tao Bao76def242017-11-21 09:25:31 -08002971
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002972DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04002973 ".gz": "imgdiff",
2974 ".zip": ["imgdiff", "-z"],
2975 ".jar": ["imgdiff", "-z"],
2976 ".apk": ["imgdiff", "-z"],
2977 ".img": "imgdiff",
2978}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002979
Tao Bao76def242017-11-21 09:25:31 -08002980
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002981class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002982 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002983 self.tf = tf
2984 self.sf = sf
2985 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002986 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002987
2988 def ComputePatch(self):
2989 """Compute the patch (as a string of data) needed to turn sf into
2990 tf. Returns the same tuple as GetPatch()."""
2991
2992 tf = self.tf
2993 sf = self.sf
2994
Doug Zongker24cd2802012-08-14 16:36:15 -07002995 if self.diff_program:
2996 diff_program = self.diff_program
2997 else:
2998 ext = os.path.splitext(tf.name)[1]
2999 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003000
3001 ttemp = tf.WriteToTemp()
3002 stemp = sf.WriteToTemp()
3003
3004 ext = os.path.splitext(tf.name)[1]
3005
3006 try:
3007 ptemp = tempfile.NamedTemporaryFile()
3008 if isinstance(diff_program, list):
3009 cmd = copy.copy(diff_program)
3010 else:
3011 cmd = [diff_program]
3012 cmd.append(stemp.name)
3013 cmd.append(ttemp.name)
3014 cmd.append(ptemp.name)
3015 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003016 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003017
Doug Zongkerf8340082014-08-05 10:39:37 -07003018 def run():
3019 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003020 if e:
3021 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003022 th = threading.Thread(target=run)
3023 th.start()
3024 th.join(timeout=300) # 5 mins
3025 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003026 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003027 p.terminate()
3028 th.join(5)
3029 if th.is_alive():
3030 p.kill()
3031 th.join()
3032
Tianjie Xua2a9f992018-01-05 15:15:54 -08003033 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003034 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003035 self.patch = None
3036 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003037 diff = ptemp.read()
3038 finally:
3039 ptemp.close()
3040 stemp.close()
3041 ttemp.close()
3042
3043 self.patch = diff
3044 return self.tf, self.sf, self.patch
3045
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003046 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003047 """Returns a tuple of (target_file, source_file, patch_data).
3048
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003049 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003050 computing the patch failed.
3051 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003052 return self.tf, self.sf, self.patch
3053
3054
3055def ComputeDifferences(diffs):
3056 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003057 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003058
3059 # Do the largest files first, to try and reduce the long-pole effect.
3060 by_size = [(i.tf.size, i) for i in diffs]
3061 by_size.sort(reverse=True)
3062 by_size = [i[1] for i in by_size]
3063
3064 lock = threading.Lock()
3065 diff_iter = iter(by_size) # accessed under lock
3066
3067 def worker():
3068 try:
3069 lock.acquire()
3070 for d in diff_iter:
3071 lock.release()
3072 start = time.time()
3073 d.ComputePatch()
3074 dur = time.time() - start
3075 lock.acquire()
3076
3077 tf, sf, patch = d.GetPatch()
3078 if sf.name == tf.name:
3079 name = tf.name
3080 else:
3081 name = "%s (%s)" % (tf.name, sf.name)
3082 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003083 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003084 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003085 logger.info(
3086 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3087 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003088 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003089 except Exception:
3090 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003091 raise
3092
3093 # start worker threads; wait for them all to finish.
3094 threads = [threading.Thread(target=worker)
3095 for i in range(OPTIONS.worker_threads)]
3096 for th in threads:
3097 th.start()
3098 while threads:
3099 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003100
3101
Dan Albert8b72aef2015-03-23 19:13:21 -07003102class BlockDifference(object):
3103 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003104 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003105 self.tgt = tgt
3106 self.src = src
3107 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003108 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003109 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003110
Tao Baodd2a5892015-03-12 12:32:37 -07003111 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003112 version = max(
3113 int(i) for i in
3114 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003115 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003116 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003117
Tianjie Xu41976c72019-07-03 13:57:01 -07003118 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3119 version=self.version,
3120 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003121 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003122 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003123 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003124 self.touched_src_ranges = b.touched_src_ranges
3125 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003126
Yifan Hong10c530d2018-12-27 17:34:18 -08003127 # On devices with dynamic partitions, for new partitions,
3128 # src is None but OPTIONS.source_info_dict is not.
3129 if OPTIONS.source_info_dict is None:
3130 is_dynamic_build = OPTIONS.info_dict.get(
3131 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003132 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003133 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003134 is_dynamic_build = OPTIONS.source_info_dict.get(
3135 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003136 is_dynamic_source = partition in shlex.split(
3137 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003138
Yifan Hongbb2658d2019-01-25 12:30:58 -08003139 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003140 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3141
Yifan Hongbb2658d2019-01-25 12:30:58 -08003142 # For dynamic partitions builds, check partition list in both source
3143 # and target build because new partitions may be added, and existing
3144 # partitions may be removed.
3145 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3146
Yifan Hong10c530d2018-12-27 17:34:18 -08003147 if is_dynamic:
3148 self.device = 'map_partition("%s")' % partition
3149 else:
3150 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003151 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3152 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003153 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003154 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3155 OPTIONS.source_info_dict)
3156 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003157
Tao Baod8d14be2016-02-04 14:26:02 -08003158 @property
3159 def required_cache(self):
3160 return self._required_cache
3161
Tao Bao76def242017-11-21 09:25:31 -08003162 def WriteScript(self, script, output_zip, progress=None,
3163 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003164 if not self.src:
3165 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003166 script.Print("Patching %s image unconditionally..." % (self.partition,))
3167 else:
3168 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003169
Dan Albert8b72aef2015-03-23 19:13:21 -07003170 if progress:
3171 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003172 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003173
3174 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003175 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003176
Tao Bao9bc6bb22015-11-09 16:58:28 -08003177 def WriteStrictVerifyScript(self, script):
3178 """Verify all the blocks in the care_map, including clobbered blocks.
3179
3180 This differs from the WriteVerifyScript() function: a) it prints different
3181 error messages; b) it doesn't allow half-way updated images to pass the
3182 verification."""
3183
3184 partition = self.partition
3185 script.Print("Verifying %s..." % (partition,))
3186 ranges = self.tgt.care_map
3187 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003188 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003189 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3190 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003191 self.device, ranges_str,
3192 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003193 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003194 script.AppendExtra("")
3195
Tao Baod522bdc2016-04-12 15:53:16 -07003196 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003197 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003198
3199 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003200 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003201 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003202
3203 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003204 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003205 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003206 ranges = self.touched_src_ranges
3207 expected_sha1 = self.touched_src_sha1
3208 else:
3209 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3210 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003211
3212 # No blocks to be checked, skipping.
3213 if not ranges:
3214 return
3215
Tao Bao5ece99d2015-05-12 11:42:31 -07003216 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003217 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003218 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003219 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3220 '"%s.patch.dat")) then' % (
3221 self.device, ranges_str, expected_sha1,
3222 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003223 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003224 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003225
Tianjie Xufc3422a2015-12-15 11:53:59 -08003226 if self.version >= 4:
3227
3228 # Bug: 21124327
3229 # When generating incrementals for the system and vendor partitions in
3230 # version 4 or newer, explicitly check the first block (which contains
3231 # the superblock) of the partition to see if it's what we expect. If
3232 # this check fails, give an explicit log message about the partition
3233 # having been remounted R/W (the most likely explanation).
3234 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003235 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003236
3237 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003238 if partition == "system":
3239 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3240 else:
3241 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003242 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003243 'ifelse (block_image_recover({device}, "{ranges}") && '
3244 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003245 'package_extract_file("{partition}.transfer.list"), '
3246 '"{partition}.new.dat", "{partition}.patch.dat"), '
3247 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003248 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003249 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003250 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003251
Tao Baodd2a5892015-03-12 12:32:37 -07003252 # Abort the OTA update. Note that the incremental OTA cannot be applied
3253 # even if it may match the checksum of the target partition.
3254 # a) If version < 3, operations like move and erase will make changes
3255 # unconditionally and damage the partition.
3256 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003257 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003258 if partition == "system":
3259 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3260 else:
3261 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3262 script.AppendExtra((
3263 'abort("E%d: %s partition has unexpected contents");\n'
3264 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003265
Yifan Hong10c530d2018-12-27 17:34:18 -08003266 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003267 partition = self.partition
3268 script.Print('Verifying the updated %s image...' % (partition,))
3269 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3270 ranges = self.tgt.care_map
3271 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003272 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003273 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003274 self.device, ranges_str,
3275 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003276
3277 # Bug: 20881595
3278 # Verify that extended blocks are really zeroed out.
3279 if self.tgt.extended:
3280 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003281 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003282 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003283 self.device, ranges_str,
3284 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003285 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003286 if partition == "system":
3287 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3288 else:
3289 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003290 script.AppendExtra(
3291 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003292 ' abort("E%d: %s partition has unexpected non-zero contents after '
3293 'OTA update");\n'
3294 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003295 else:
3296 script.Print('Verified the updated %s image.' % (partition,))
3297
Tianjie Xu209db462016-05-24 17:34:52 -07003298 if partition == "system":
3299 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3300 else:
3301 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3302
Tao Bao5fcaaef2015-06-01 13:40:49 -07003303 script.AppendExtra(
3304 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003305 ' abort("E%d: %s partition has unexpected contents after OTA '
3306 'update");\n'
3307 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003308
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003309 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003310 ZipWrite(output_zip,
3311 '{}.transfer.list'.format(self.path),
3312 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003313
Tao Bao76def242017-11-21 09:25:31 -08003314 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3315 # its size. Quailty 9 almost triples the compression time but doesn't
3316 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003317 # zip | brotli(quality 6) | brotli(quality 9)
3318 # compressed_size: 942M | 869M (~8% reduced) | 854M
3319 # compression_time: 75s | 265s | 719s
3320 # decompression_time: 15s | 25s | 25s
3321
3322 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003323 brotli_cmd = ['brotli', '--quality=6',
3324 '--output={}.new.dat.br'.format(self.path),
3325 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003326 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003327 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003328
3329 new_data_name = '{}.new.dat.br'.format(self.partition)
3330 ZipWrite(output_zip,
3331 '{}.new.dat.br'.format(self.path),
3332 new_data_name,
3333 compress_type=zipfile.ZIP_STORED)
3334 else:
3335 new_data_name = '{}.new.dat'.format(self.partition)
3336 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3337
Dan Albert8e0178d2015-01-27 15:53:15 -08003338 ZipWrite(output_zip,
3339 '{}.patch.dat'.format(self.path),
3340 '{}.patch.dat'.format(self.partition),
3341 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003342
Tianjie Xu209db462016-05-24 17:34:52 -07003343 if self.partition == "system":
3344 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3345 else:
3346 code = ErrorCode.VENDOR_UPDATE_FAILURE
3347
Yifan Hong10c530d2018-12-27 17:34:18 -08003348 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003349 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003350 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003351 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003352 device=self.device, partition=self.partition,
3353 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003354 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003355
Kelvin Zhang0876c412020-06-23 15:06:58 -04003356 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003357 data = source.ReadRangeSet(ranges)
3358 ctx = sha1()
3359
3360 for p in data:
3361 ctx.update(p)
3362
3363 return ctx.hexdigest()
3364
Kelvin Zhang0876c412020-06-23 15:06:58 -04003365 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003366 """Return the hash value for all zero blocks."""
3367 zero_block = '\x00' * 4096
3368 ctx = sha1()
3369 for _ in range(num_blocks):
3370 ctx.update(zero_block)
3371
3372 return ctx.hexdigest()
3373
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003374
Tianjie Xu41976c72019-07-03 13:57:01 -07003375# Expose these two classes to support vendor-specific scripts
3376DataImage = images.DataImage
3377EmptyImage = images.EmptyImage
3378
Tao Bao76def242017-11-21 09:25:31 -08003379
Doug Zongker96a57e72010-09-26 14:57:41 -07003380# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003381PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003382 "ext4": "EMMC",
3383 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003384 "f2fs": "EMMC",
3385 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003386}
Doug Zongker96a57e72010-09-26 14:57:41 -07003387
Kelvin Zhang0876c412020-06-23 15:06:58 -04003388
Yifan Hongbdb32012020-05-07 12:38:53 -07003389def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3390 """
3391 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3392 backwards compatibility. It aborts if the fstab entry has slotselect option
3393 (unless check_no_slot is explicitly set to False).
3394 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003395 fstab = info["fstab"]
3396 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003397 if check_no_slot:
3398 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003399 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003400 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3401 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003402 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003403
3404
Yifan Hongbdb32012020-05-07 12:38:53 -07003405def GetTypeAndDeviceExpr(mount_point, info):
3406 """
3407 Return the filesystem of the partition, and an edify expression that evaluates
3408 to the device at runtime.
3409 """
3410 fstab = info["fstab"]
3411 if fstab:
3412 p = fstab[mount_point]
3413 device_expr = '"%s"' % fstab[mount_point].device
3414 if p.slotselect:
3415 device_expr = 'add_slot_suffix(%s)' % device_expr
3416 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003417 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003418
3419
3420def GetEntryForDevice(fstab, device):
3421 """
3422 Returns:
3423 The first entry in fstab whose device is the given value.
3424 """
3425 if not fstab:
3426 return None
3427 for mount_point in fstab:
3428 if fstab[mount_point].device == device:
3429 return fstab[mount_point]
3430 return None
3431
Kelvin Zhang0876c412020-06-23 15:06:58 -04003432
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003433def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003434 """Parses and converts a PEM-encoded certificate into DER-encoded.
3435
3436 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3437
3438 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003439 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003440 """
3441 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003442 save = False
3443 for line in data.split("\n"):
3444 if "--END CERTIFICATE--" in line:
3445 break
3446 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003447 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003448 if "--BEGIN CERTIFICATE--" in line:
3449 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003450 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003451 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003452
Tao Bao04e1f012018-02-04 12:13:35 -08003453
3454def ExtractPublicKey(cert):
3455 """Extracts the public key (PEM-encoded) from the given certificate file.
3456
3457 Args:
3458 cert: The certificate filename.
3459
3460 Returns:
3461 The public key string.
3462
3463 Raises:
3464 AssertionError: On non-zero return from 'openssl'.
3465 """
3466 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3467 # While openssl 1.1 writes the key into the given filename followed by '-out',
3468 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3469 # stdout instead.
3470 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3471 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3472 pubkey, stderrdata = proc.communicate()
3473 assert proc.returncode == 0, \
3474 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3475 return pubkey
3476
3477
Tao Bao1ac886e2019-06-26 11:58:22 -07003478def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003479 """Extracts the AVB public key from the given public or private key.
3480
3481 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003482 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003483 key: The input key file, which should be PEM-encoded public or private key.
3484
3485 Returns:
3486 The path to the extracted AVB public key file.
3487 """
3488 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3489 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003490 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003491 return output
3492
3493
Doug Zongker412c02f2014-02-13 10:58:24 -08003494def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3495 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003496 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003497
Tao Bao6d5d6232018-03-09 17:04:42 -08003498 Most of the space in the boot and recovery images is just the kernel, which is
3499 identical for the two, so the resulting patch should be efficient. Add it to
3500 the output zip, along with a shell script that is run from init.rc on first
3501 boot to actually do the patching and install the new recovery image.
3502
3503 Args:
3504 input_dir: The top-level input directory of the target-files.zip.
3505 output_sink: The callback function that writes the result.
3506 recovery_img: File object for the recovery image.
3507 boot_img: File objects for the boot image.
3508 info_dict: A dict returned by common.LoadInfoDict() on the input
3509 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003510 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003511 if info_dict is None:
3512 info_dict = OPTIONS.info_dict
3513
Tao Bao6d5d6232018-03-09 17:04:42 -08003514 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003515 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3516
3517 if board_uses_vendorimage:
3518 # In this case, the output sink is rooted at VENDOR
3519 recovery_img_path = "etc/recovery.img"
3520 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3521 sh_dir = "bin"
3522 else:
3523 # In this case the output sink is rooted at SYSTEM
3524 recovery_img_path = "vendor/etc/recovery.img"
3525 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3526 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003527
Tao Baof2cffbd2015-07-22 12:33:18 -07003528 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003529 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003530
3531 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003532 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003533 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003534 # With system-root-image, boot and recovery images will have mismatching
3535 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3536 # to handle such a case.
3537 if system_root_image:
3538 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003539 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003540 assert not os.path.exists(path)
3541 else:
3542 diff_program = ["imgdiff"]
3543 if os.path.exists(path):
3544 diff_program.append("-b")
3545 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003546 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003547 else:
3548 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003549
3550 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3551 _, _, patch = d.ComputePatch()
3552 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003553
Dan Albertebb19aa2015-03-27 19:11:53 -07003554 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003555 # The following GetTypeAndDevice()s need to use the path in the target
3556 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003557 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3558 check_no_slot=False)
3559 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3560 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003561 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003562 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003563
Tao Baof2cffbd2015-07-22 12:33:18 -07003564 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003565
3566 # Note that we use /vendor to refer to the recovery resources. This will
3567 # work for a separate vendor partition mounted at /vendor or a
3568 # /system/vendor subdirectory on the system partition, for which init will
3569 # create a symlink from /vendor to /system/vendor.
3570
3571 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003572if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3573 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003574 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003575 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3576 log -t recovery "Installing new recovery image: succeeded" || \\
3577 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003578else
3579 log -t recovery "Recovery image already installed"
3580fi
3581""" % {'type': recovery_type,
3582 'device': recovery_device,
3583 'sha1': recovery_img.sha1,
3584 'size': recovery_img.size}
3585 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003586 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003587if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3588 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003589 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003590 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3591 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3592 log -t recovery "Installing new recovery image: succeeded" || \\
3593 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003594else
3595 log -t recovery "Recovery image already installed"
3596fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003597""" % {'boot_size': boot_img.size,
3598 'boot_sha1': boot_img.sha1,
3599 'recovery_size': recovery_img.size,
3600 'recovery_sha1': recovery_img.sha1,
3601 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003602 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003603 'recovery_type': recovery_type,
3604 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003605 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003606
Bill Peckhame868aec2019-09-17 17:06:47 -07003607 # The install script location moved from /system/etc to /system/bin in the L
3608 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3609 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003610
Tao Bao32fcdab2018-10-12 10:30:39 -07003611 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003612
Tao Baoda30cfa2017-12-01 16:19:46 -08003613 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003614
3615
3616class DynamicPartitionUpdate(object):
3617 def __init__(self, src_group=None, tgt_group=None, progress=None,
3618 block_difference=None):
3619 self.src_group = src_group
3620 self.tgt_group = tgt_group
3621 self.progress = progress
3622 self.block_difference = block_difference
3623
3624 @property
3625 def src_size(self):
3626 if not self.block_difference:
3627 return 0
3628 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3629
3630 @property
3631 def tgt_size(self):
3632 if not self.block_difference:
3633 return 0
3634 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3635
3636 @staticmethod
3637 def _GetSparseImageSize(img):
3638 if not img:
3639 return 0
3640 return img.blocksize * img.total_blocks
3641
3642
3643class DynamicGroupUpdate(object):
3644 def __init__(self, src_size=None, tgt_size=None):
3645 # None: group does not exist. 0: no size limits.
3646 self.src_size = src_size
3647 self.tgt_size = tgt_size
3648
3649
3650class DynamicPartitionsDifference(object):
3651 def __init__(self, info_dict, block_diffs, progress_dict=None,
3652 source_info_dict=None):
3653 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003654 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003655
3656 self._remove_all_before_apply = False
3657 if source_info_dict is None:
3658 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003659 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003660
Tao Baof1113e92019-06-18 12:10:14 -07003661 block_diff_dict = collections.OrderedDict(
3662 [(e.partition, e) for e in block_diffs])
3663
Yifan Hong10c530d2018-12-27 17:34:18 -08003664 assert len(block_diff_dict) == len(block_diffs), \
3665 "Duplicated BlockDifference object for {}".format(
3666 [partition for partition, count in
3667 collections.Counter(e.partition for e in block_diffs).items()
3668 if count > 1])
3669
Yifan Hong79997e52019-01-23 16:56:19 -08003670 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003671
3672 for p, block_diff in block_diff_dict.items():
3673 self._partition_updates[p] = DynamicPartitionUpdate()
3674 self._partition_updates[p].block_difference = block_diff
3675
3676 for p, progress in progress_dict.items():
3677 if p in self._partition_updates:
3678 self._partition_updates[p].progress = progress
3679
3680 tgt_groups = shlex.split(info_dict.get(
3681 "super_partition_groups", "").strip())
3682 src_groups = shlex.split(source_info_dict.get(
3683 "super_partition_groups", "").strip())
3684
3685 for g in tgt_groups:
3686 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003687 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003688 assert p in self._partition_updates, \
3689 "{} is in target super_{}_partition_list but no BlockDifference " \
3690 "object is provided.".format(p, g)
3691 self._partition_updates[p].tgt_group = g
3692
3693 for g in src_groups:
3694 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003695 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003696 assert p in self._partition_updates, \
3697 "{} is in source super_{}_partition_list but no BlockDifference " \
3698 "object is provided.".format(p, g)
3699 self._partition_updates[p].src_group = g
3700
Yifan Hong45433e42019-01-18 13:55:25 -08003701 target_dynamic_partitions = set(shlex.split(info_dict.get(
3702 "dynamic_partition_list", "").strip()))
3703 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3704 if u.tgt_size)
3705 assert block_diffs_with_target == target_dynamic_partitions, \
3706 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3707 list(target_dynamic_partitions), list(block_diffs_with_target))
3708
3709 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3710 "dynamic_partition_list", "").strip()))
3711 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3712 if u.src_size)
3713 assert block_diffs_with_source == source_dynamic_partitions, \
3714 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3715 list(source_dynamic_partitions), list(block_diffs_with_source))
3716
Yifan Hong10c530d2018-12-27 17:34:18 -08003717 if self._partition_updates:
3718 logger.info("Updating dynamic partitions %s",
3719 self._partition_updates.keys())
3720
Yifan Hong79997e52019-01-23 16:56:19 -08003721 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003722
3723 for g in tgt_groups:
3724 self._group_updates[g] = DynamicGroupUpdate()
3725 self._group_updates[g].tgt_size = int(info_dict.get(
3726 "super_%s_group_size" % g, "0").strip())
3727
3728 for g in src_groups:
3729 if g not in self._group_updates:
3730 self._group_updates[g] = DynamicGroupUpdate()
3731 self._group_updates[g].src_size = int(source_info_dict.get(
3732 "super_%s_group_size" % g, "0").strip())
3733
3734 self._Compute()
3735
3736 def WriteScript(self, script, output_zip, write_verify_script=False):
3737 script.Comment('--- Start patching dynamic partitions ---')
3738 for p, u in self._partition_updates.items():
3739 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3740 script.Comment('Patch partition %s' % p)
3741 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3742 write_verify_script=False)
3743
3744 op_list_path = MakeTempFile()
3745 with open(op_list_path, 'w') as f:
3746 for line in self._op_list:
3747 f.write('{}\n'.format(line))
3748
3749 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3750
3751 script.Comment('Update dynamic partition metadata')
3752 script.AppendExtra('assert(update_dynamic_partitions('
3753 'package_extract_file("dynamic_partitions_op_list")));')
3754
3755 if write_verify_script:
3756 for p, u in self._partition_updates.items():
3757 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3758 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003759 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003760
3761 for p, u in self._partition_updates.items():
3762 if u.tgt_size and u.src_size <= u.tgt_size:
3763 script.Comment('Patch partition %s' % p)
3764 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3765 write_verify_script=write_verify_script)
3766 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003767 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003768
3769 script.Comment('--- End patching dynamic partitions ---')
3770
3771 def _Compute(self):
3772 self._op_list = list()
3773
3774 def append(line):
3775 self._op_list.append(line)
3776
3777 def comment(line):
3778 self._op_list.append("# %s" % line)
3779
3780 if self._remove_all_before_apply:
3781 comment('Remove all existing dynamic partitions and groups before '
3782 'applying full OTA')
3783 append('remove_all_groups')
3784
3785 for p, u in self._partition_updates.items():
3786 if u.src_group and not u.tgt_group:
3787 append('remove %s' % p)
3788
3789 for p, u in self._partition_updates.items():
3790 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3791 comment('Move partition %s from %s to default' % (p, u.src_group))
3792 append('move %s default' % p)
3793
3794 for p, u in self._partition_updates.items():
3795 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3796 comment('Shrink partition %s from %d to %d' %
3797 (p, u.src_size, u.tgt_size))
3798 append('resize %s %s' % (p, u.tgt_size))
3799
3800 for g, u in self._group_updates.items():
3801 if u.src_size is not None and u.tgt_size is None:
3802 append('remove_group %s' % g)
3803 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003804 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003805 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3806 append('resize_group %s %d' % (g, u.tgt_size))
3807
3808 for g, u in self._group_updates.items():
3809 if u.src_size is None and u.tgt_size is not None:
3810 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3811 append('add_group %s %d' % (g, u.tgt_size))
3812 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003813 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003814 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3815 append('resize_group %s %d' % (g, u.tgt_size))
3816
3817 for p, u in self._partition_updates.items():
3818 if u.tgt_group and not u.src_group:
3819 comment('Add partition %s to group %s' % (p, u.tgt_group))
3820 append('add %s %s' % (p, u.tgt_group))
3821
3822 for p, u in self._partition_updates.items():
3823 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003824 comment('Grow partition %s from %d to %d' %
3825 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003826 append('resize %s %d' % (p, u.tgt_size))
3827
3828 for p, u in self._partition_updates.items():
3829 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3830 comment('Move partition %s from default to %s' %
3831 (p, u.tgt_group))
3832 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003833
3834
jiajia tangf3f842b2021-03-17 21:49:44 +08003835def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003836 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003837 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003838
3839 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003840 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003841
3842 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003843 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003844 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003845 tmp_dir = MakeTempDir('boot_', suffix='.img')
3846 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003847 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3848 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003849 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3850 if not os.path.isfile(ramdisk):
3851 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3852 return None
3853 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003854 if ramdisk_format == RamdiskFormat.LZ4:
3855 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3856 elif ramdisk_format == RamdiskFormat.GZ:
3857 with open(ramdisk, 'rb') as input_stream:
3858 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003859 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3860 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003861 p2.wait()
3862 else:
3863 logger.error('Only support lz4 or minigzip ramdisk format.')
3864 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003865
3866 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3867 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3868 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3869 # the host environment.
3870 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003871 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003872
Yifan Hongc65a0542021-01-07 14:21:01 -08003873 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3874 prop_file = os.path.join(extracted_ramdisk, search_path)
3875 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003876 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003877 logger.warning(
3878 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003879
Yifan Hong7dc51172021-01-12 11:27:39 -08003880 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003881
Yifan Hong85ac5012021-01-07 14:43:46 -08003882 except ExternalError as e:
3883 logger.warning('Unable to get boot image build props: %s', e)
3884 return None
3885
3886
3887def GetBootImageTimestamp(boot_img):
3888 """
3889 Get timestamp from ramdisk within the boot image
3890
3891 Args:
3892 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3893
3894 Return:
3895 An integer that corresponds to the timestamp of the boot image, or None
3896 if file has unknown format. Raise exception if an unexpected error has
3897 occurred.
3898 """
3899 prop_file = GetBootImageBuildProp(boot_img)
3900 if not prop_file:
3901 return None
3902
3903 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3904 if props is None:
3905 return None
3906
3907 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003908 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3909 if timestamp:
3910 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003911 logger.warning(
3912 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003913 return None
3914
3915 except ExternalError as e:
3916 logger.warning('Unable to get boot image timestamp: %s', e)
3917 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003918
3919
3920def GetCareMap(which, imgname):
3921 """Returns the care_map string for the given partition.
3922
3923 Args:
3924 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
3925 imgname: The filename of the image.
3926
3927 Returns:
3928 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
3929 RangeSet; or None.
3930 """
3931 assert which in PARTITIONS_WITH_CARE_MAP
3932
3933 # which + "_image_size" contains the size that the actual filesystem image
3934 # resides in, which is all that needs to be verified. The additional blocks in
3935 # the image file contain verity metadata, by reading which would trigger
3936 # invalid reads.
3937 image_size = OPTIONS.info_dict.get(which + "_image_size")
3938 if not image_size:
3939 return None
3940
David Anderson9e95a022021-08-31 21:32:45 -07003941 disable_sparse = OPTIONS.info_dict.get(which + "_disable_sparse")
3942
Kelvin Zhang27324132021-03-22 15:38:38 -04003943 image_blocks = int(image_size) // 4096 - 1
Kelvin Zhang98ef7bb2022-01-07 14:41:46 -08003944 # It's OK for image_blocks to be 0, because care map ranges are inclusive.
3945 # So 0-0 means "just block 0", which is valid.
3946 assert image_blocks >= 0, "blocks for {} must be non-negative, image size: {}".format(
3947 which, image_size)
Kelvin Zhang27324132021-03-22 15:38:38 -04003948
3949 # For sparse images, we will only check the blocks that are listed in the care
3950 # map, i.e. the ones with meaningful data.
David Anderson9e95a022021-08-31 21:32:45 -07003951 if "extfs_sparse_flag" in OPTIONS.info_dict and not disable_sparse:
Kelvin Zhang27324132021-03-22 15:38:38 -04003952 simg = sparse_img.SparseImage(imgname)
3953 care_map_ranges = simg.care_map.intersect(
3954 rangelib.RangeSet("0-{}".format(image_blocks)))
3955
3956 # Otherwise for non-sparse images, we read all the blocks in the filesystem
3957 # image.
3958 else:
3959 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
3960
3961 return [which, care_map_ranges.to_string_raw()]
3962
3963
3964def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
3965 """Generates and adds care_map.pb for a/b partition that has care_map.
3966
3967 Args:
3968 output_file: The output zip file (needs to be already open),
3969 or file path to write care_map.pb.
3970 ab_partitions: The list of A/B partitions.
3971 image_paths: A map from the partition name to the image path.
3972 """
3973 if not output_file:
3974 raise ExternalError('Expected output_file for AddCareMapForAbOta')
3975
3976 care_map_list = []
3977 for partition in ab_partitions:
3978 partition = partition.strip()
3979 if partition not in PARTITIONS_WITH_CARE_MAP:
3980 continue
3981
3982 verity_block_device = "{}_verity_block_device".format(partition)
3983 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
3984 if (verity_block_device in OPTIONS.info_dict or
3985 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
3986 if partition not in image_paths:
3987 logger.warning('Potential partition with care_map missing from images: %s',
3988 partition)
3989 continue
3990 image_path = image_paths[partition]
3991 if not os.path.exists(image_path):
3992 raise ExternalError('Expected image at path {}'.format(image_path))
3993
3994 care_map = GetCareMap(partition, image_path)
3995 if not care_map:
3996 continue
3997 care_map_list += care_map
3998
3999 # adds fingerprint field to the care_map
4000 # TODO(xunchang) revisit the fingerprint calculation for care_map.
4001 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
4002 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
4003 "ro.{}.build.thumbprint".format(partition)]
4004
4005 present_props = [x for x in prop_name_list if
4006 partition_props and partition_props.GetProp(x)]
4007 if not present_props:
4008 logger.warning(
4009 "fingerprint is not present for partition %s", partition)
4010 property_id, fingerprint = "unknown", "unknown"
4011 else:
4012 property_id = present_props[0]
4013 fingerprint = partition_props.GetProp(property_id)
4014 care_map_list += [property_id, fingerprint]
4015
4016 if not care_map_list:
4017 return
4018
4019 # Converts the list into proto buf message by calling care_map_generator; and
4020 # writes the result to a temp file.
4021 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
4022 suffix=".txt")
4023 with open(temp_care_map_text, 'w') as text_file:
4024 text_file.write('\n'.join(care_map_list))
4025
4026 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
4027 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
4028 RunAndCheckOutput(care_map_gen_cmd)
4029
4030 if not isinstance(output_file, zipfile.ZipFile):
4031 shutil.copy(temp_care_map, output_file)
4032 return
4033 # output_file is a zip file
4034 care_map_path = "META/care_map.pb"
4035 if care_map_path in output_file.namelist():
4036 # Copy the temp file into the OPTIONS.input_tmp dir and update the
4037 # replace_updated_files_list used by add_img_to_target_files
4038 if not OPTIONS.replace_updated_files_list:
4039 OPTIONS.replace_updated_files_list = []
4040 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
4041 OPTIONS.replace_updated_files_list.append(care_map_path)
4042 else:
4043 ZipWrite(output_file, temp_care_map, arcname=care_map_path)
Kelvin Zhang26390482021-11-02 14:31:10 -07004044
4045
4046def IsSparseImage(filepath):
4047 with open(filepath, 'rb') as fp:
4048 # Magic for android sparse image format
4049 # https://source.android.com/devices/bootloader/images
4050 return fp.read(4) == b'\x3A\xFF\x26\xED'