blob: 917e4dc820c09853a130a54dcb107418b94eab80 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080071 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
72 if "ANDROID_HOST_OUT" in os.environ:
73 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080074 self.signapk_shared_library_path = "lib64" # Relative to search_path
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020075 self.sign_sepolicy_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070076 self.extra_signapk_args = []
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020077 self.extra_sign_sepolicy_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000078 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070079 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080080 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080081 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070082 self.public_key_suffix = ".x509.pem"
83 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070084 # use otatools built boot_signer by default
85 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070086 self.boot_signer_args = []
87 self.verity_signer_path = None
88 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070089 self.verbose = False
90 self.tempfiles = []
91 self.device_specific = None
92 self.extras = {}
93 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070094 self.source_info_dict = None
95 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070096 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070097 # Stash size cannot exceed cache_size * threshold.
98 self.cache_size = None
99 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -0700100 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -0700101 self.host_tools = {}
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +0200102 self.sepolicy_name = 'sepolicy.apex'
Dan Albert8b72aef2015-03-23 19:13:21 -0700103
104
105OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700106
Tao Bao71197512018-10-11 14:08:45 -0700107# The block size that's used across the releasetools scripts.
108BLOCK_SIZE = 4096
109
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800110# Values for "certificate" in apkcerts that mean special things.
111SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
112
Tao Bao5cc0abb2019-03-21 10:18:05 -0700113# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
114# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800115# descriptor into vbmeta.img. When adding a new entry here, the
116# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
117# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000118AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Lucas Wei03230252022-04-18 16:00:40 +0800119 'system', 'system_ext', 'vendor', 'vendor_boot', 'vendor_kernel_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000120 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800121
Tao Bao08c190f2019-06-03 23:07:58 -0700122# Chained VBMeta partitions.
123AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
124
Tianjie Xu861f4132018-09-12 11:49:33 -0700125# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400126PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700127 'system',
128 'vendor',
129 'product',
130 'system_ext',
131 'odm',
132 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700133 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000134 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400135]
Tianjie Xu861f4132018-09-12 11:49:33 -0700136
Yifan Hong5057b952021-01-07 14:09:57 -0800137# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000138PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800139
Yifan Hongc65a0542021-01-07 14:21:01 -0800140# See sysprop.mk. If file is moved, add new search paths here; don't remove
141# existing search paths.
142RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700143
Kelvin Zhang563750f2021-04-28 12:46:17 -0400144
Tianjie Xu209db462016-05-24 17:34:52 -0700145class ErrorCode(object):
146 """Define error_codes for failures that happen during the actual
147 update package installation.
148
149 Error codes 0-999 are reserved for failures before the package
150 installation (i.e. low battery, package verification failure).
151 Detailed code in 'bootable/recovery/error_code.h' """
152
153 SYSTEM_VERIFICATION_FAILURE = 1000
154 SYSTEM_UPDATE_FAILURE = 1001
155 SYSTEM_UNEXPECTED_CONTENTS = 1002
156 SYSTEM_NONZERO_CONTENTS = 1003
157 SYSTEM_RECOVER_FAILURE = 1004
158 VENDOR_VERIFICATION_FAILURE = 2000
159 VENDOR_UPDATE_FAILURE = 2001
160 VENDOR_UNEXPECTED_CONTENTS = 2002
161 VENDOR_NONZERO_CONTENTS = 2003
162 VENDOR_RECOVER_FAILURE = 2004
163 OEM_PROP_MISMATCH = 3000
164 FINGERPRINT_MISMATCH = 3001
165 THUMBPRINT_MISMATCH = 3002
166 OLDER_BUILD = 3003
167 DEVICE_MISMATCH = 3004
168 BAD_PATCH_FILE = 3005
169 INSUFFICIENT_CACHE_SPACE = 3006
170 TUNE_PARTITION_FAILURE = 3007
171 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800172
Tao Bao80921982018-03-21 21:02:19 -0700173
Dan Albert8b72aef2015-03-23 19:13:21 -0700174class ExternalError(RuntimeError):
175 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700176
177
Tao Bao32fcdab2018-10-12 10:30:39 -0700178def InitLogging():
179 DEFAULT_LOGGING_CONFIG = {
180 'version': 1,
181 'disable_existing_loggers': False,
182 'formatters': {
183 'standard': {
184 'format':
185 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
186 'datefmt': '%Y-%m-%d %H:%M:%S',
187 },
188 },
189 'handlers': {
190 'default': {
191 'class': 'logging.StreamHandler',
192 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700193 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700194 },
195 },
196 'loggers': {
197 '': {
198 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700199 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700200 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700201 }
202 }
203 }
204 env_config = os.getenv('LOGGING_CONFIG')
205 if env_config:
206 with open(env_config) as f:
207 config = json.load(f)
208 else:
209 config = DEFAULT_LOGGING_CONFIG
210
211 # Increase the logging level for verbose mode.
212 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700213 config = copy.deepcopy(config)
214 config['handlers']['default']['level'] = 'INFO'
215
216 if OPTIONS.logfile:
217 config = copy.deepcopy(config)
218 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400219 'class': 'logging.FileHandler',
220 'formatter': 'standard',
221 'level': 'INFO',
222 'mode': 'w',
223 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700224 }
225 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700226
227 logging.config.dictConfig(config)
228
229
Yifan Hong8e332ff2020-07-29 17:51:55 -0700230def SetHostToolLocation(tool_name, location):
231 OPTIONS.host_tools[tool_name] = location
232
Kelvin Zhang563750f2021-04-28 12:46:17 -0400233
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900234def FindHostToolPath(tool_name):
235 """Finds the path to the host tool.
236
237 Args:
238 tool_name: name of the tool to find
239 Returns:
240 path to the tool if found under either one of the host_tools map or under
241 the same directory as this binary is located at. If not found, tool_name
242 is returned.
243 """
244 if tool_name in OPTIONS.host_tools:
245 return OPTIONS.host_tools[tool_name]
246
247 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
248 tool_path = os.path.join(my_dir, tool_name)
249 if os.path.exists(tool_path):
250 return tool_path
251
252 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700253
Kelvin Zhang563750f2021-04-28 12:46:17 -0400254
Tao Bao39451582017-05-04 11:10:47 -0700255def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700256 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700257
Tao Bao73dd4f42018-10-04 16:25:33 -0700258 Args:
259 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700260 verbose: Whether the commands should be shown. Default to the global
261 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700262 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
263 stdin, etc. stdout and stderr will default to subprocess.PIPE and
264 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800265 universal_newlines will default to True, as most of the users in
266 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700267
268 Returns:
269 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700270 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700271 if 'stdout' not in kwargs and 'stderr' not in kwargs:
272 kwargs['stdout'] = subprocess.PIPE
273 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800274 if 'universal_newlines' not in kwargs:
275 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700276
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900277 if args:
278 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700279 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900280 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700281
Kelvin Zhang766eea72021-06-03 09:36:08 -0400282 if verbose is None:
283 verbose = OPTIONS.verbose
284
Tao Bao32fcdab2018-10-12 10:30:39 -0700285 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400286 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700287 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700288 return subprocess.Popen(args, **kwargs)
289
290
Tao Bao986ee862018-10-04 15:46:16 -0700291def RunAndCheckOutput(args, verbose=None, **kwargs):
292 """Runs the given command and returns the output.
293
294 Args:
295 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700296 verbose: Whether the commands should be shown. Default to the global
297 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700298 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
299 stdin, etc. stdout and stderr will default to subprocess.PIPE and
300 subprocess.STDOUT respectively unless caller specifies any of them.
301
302 Returns:
303 The output string.
304
305 Raises:
306 ExternalError: On non-zero exit from the command.
307 """
Tao Bao986ee862018-10-04 15:46:16 -0700308 proc = Run(args, verbose=verbose, **kwargs)
309 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800310 if output is None:
311 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700312 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400313 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700314 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700315 if proc.returncode != 0:
316 raise ExternalError(
317 "Failed to run command '{}' (exit code {}):\n{}".format(
318 args, proc.returncode, output))
319 return output
320
321
Tao Baoc765cca2018-01-31 17:32:40 -0800322def RoundUpTo4K(value):
323 rounded_up = value + 4095
324 return rounded_up - (rounded_up % 4096)
325
326
Ying Wang7e6d4e42010-12-13 16:25:36 -0800327def CloseInheritedPipes():
328 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
329 before doing other work."""
330 if platform.system() != "Darwin":
331 return
332 for d in range(3, 1025):
333 try:
334 stat = os.fstat(d)
335 if stat is not None:
336 pipebit = stat[0] & 0x1000
337 if pipebit != 0:
338 os.close(d)
339 except OSError:
340 pass
341
342
Tao Bao1c320f82019-10-04 23:25:12 -0700343class BuildInfo(object):
344 """A class that holds the information for a given build.
345
346 This class wraps up the property querying for a given source or target build.
347 It abstracts away the logic of handling OEM-specific properties, and caches
348 the commonly used properties such as fingerprint.
349
350 There are two types of info dicts: a) build-time info dict, which is generated
351 at build time (i.e. included in a target_files zip); b) OEM info dict that is
352 specified at package generation time (via command line argument
353 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
354 having "oem_fingerprint_properties" in build-time info dict), all the queries
355 would be answered based on build-time info dict only. Otherwise if using
356 OEM-specific properties, some of them will be calculated from two info dicts.
357
358 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800359 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700360
361 Attributes:
362 info_dict: The build-time info dict.
363 is_ab: Whether it's a build that uses A/B OTA.
364 oem_dicts: A list of OEM dicts.
365 oem_props: A list of OEM properties that should be read from OEM dicts; None
366 if the build doesn't use any OEM-specific property.
367 fingerprint: The fingerprint of the build, which would be calculated based
368 on OEM properties if applicable.
369 device: The device name, which could come from OEM dicts if applicable.
370 """
371
372 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
373 "ro.product.manufacturer", "ro.product.model",
374 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700375 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
376 "product", "odm", "vendor", "system_ext", "system"]
377 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
378 "product", "product_services", "odm", "vendor", "system"]
379 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700380
Tianjiefdda51d2021-05-05 14:46:35 -0700381 # The length of vbmeta digest to append to the fingerprint
382 _VBMETA_DIGEST_SIZE_USED = 8
383
384 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700385 """Initializes a BuildInfo instance with the given dicts.
386
387 Note that it only wraps up the given dicts, without making copies.
388
389 Arguments:
390 info_dict: The build-time info dict.
391 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
392 that it always uses the first dict to calculate the fingerprint or the
393 device name. The rest would be used for asserting OEM properties only
394 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700395 use_legacy_id: Use the legacy build id to construct the fingerprint. This
396 is used when we need a BuildInfo class, while the vbmeta digest is
397 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700398
399 Raises:
400 ValueError: On invalid inputs.
401 """
402 self.info_dict = info_dict
403 self.oem_dicts = oem_dicts
404
405 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700406 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700407
Hongguang Chend7c160f2020-05-03 21:24:26 -0700408 # Skip _oem_props if oem_dicts is None to use BuildInfo in
409 # sign_target_files_apks
410 if self.oem_dicts:
411 self._oem_props = info_dict.get("oem_fingerprint_properties")
412 else:
413 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700414
Daniel Normand5fe8622020-01-08 17:01:11 -0800415 def check_fingerprint(fingerprint):
416 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
417 raise ValueError(
418 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
419 "3.2.2. Build Parameters.".format(fingerprint))
420
Daniel Normand5fe8622020-01-08 17:01:11 -0800421 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800422 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800423 try:
424 fingerprint = self.CalculatePartitionFingerprint(partition)
425 check_fingerprint(fingerprint)
426 self._partition_fingerprints[partition] = fingerprint
427 except ExternalError:
428 continue
429 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800430 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800431 # need a fingerprint when creating the image.
432 self._partition_fingerprints[
433 "system_other"] = self._partition_fingerprints["system"]
434
Tao Bao1c320f82019-10-04 23:25:12 -0700435 # These two should be computed only after setting self._oem_props.
436 self._device = self.GetOemProperty("ro.product.device")
437 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800438 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700439
440 @property
441 def is_ab(self):
442 return self._is_ab
443
444 @property
445 def device(self):
446 return self._device
447
448 @property
449 def fingerprint(self):
450 return self._fingerprint
451
452 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400453 def is_vabc(self):
454 vendor_prop = self.info_dict.get("vendor.build.prop")
455 vabc_enabled = vendor_prop and \
456 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
457 return vabc_enabled
458
459 @property
Kelvin Zhanga9a87ec2022-05-04 16:44:52 -0700460 def is_android_r(self):
461 system_prop = self.info_dict.get("system.build.prop")
462 return system_prop and system_prop.GetProp("ro.build.version.release") == "11"
463
464 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700465 def is_vabc_xor(self):
466 vendor_prop = self.info_dict.get("vendor.build.prop")
467 vabc_xor_enabled = vendor_prop and \
468 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
469 return vabc_xor_enabled
470
471 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400472 def vendor_suppressed_vabc(self):
473 vendor_prop = self.info_dict.get("vendor.build.prop")
474 vabc_suppressed = vendor_prop and \
475 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
476 return vabc_suppressed and vabc_suppressed.lower() == "true"
477
478 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700479 def oem_props(self):
480 return self._oem_props
481
482 def __getitem__(self, key):
483 return self.info_dict[key]
484
485 def __setitem__(self, key, value):
486 self.info_dict[key] = value
487
488 def get(self, key, default=None):
489 return self.info_dict.get(key, default)
490
491 def items(self):
492 return self.info_dict.items()
493
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000494 def _GetRawBuildProp(self, prop, partition):
495 prop_file = '{}.build.prop'.format(
496 partition) if partition else 'build.prop'
497 partition_props = self.info_dict.get(prop_file)
498 if not partition_props:
499 return None
500 return partition_props.GetProp(prop)
501
Daniel Normand5fe8622020-01-08 17:01:11 -0800502 def GetPartitionBuildProp(self, prop, partition):
503 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800504
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000505 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
Devin Mooreb5195ff2022-02-11 18:44:26 +0000506 # This comes from the generic ramdisk
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000507 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800508
Daniel Normand5fe8622020-01-08 17:01:11 -0800509 # If provided a partition for this property, only look within that
510 # partition's build.prop.
511 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800512 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800513 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800514 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000515
516 prop_val = self._GetRawBuildProp(prop, partition)
517 if prop_val is not None:
518 return prop_val
519 raise ExternalError("couldn't find %s in %s.build.prop" %
520 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800521
Tao Bao1c320f82019-10-04 23:25:12 -0700522 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800523 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700524 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
525 return self._ResolveRoProductBuildProp(prop)
526
Tianjiefdda51d2021-05-05 14:46:35 -0700527 if prop == "ro.build.id":
528 return self._GetBuildId()
529
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000530 prop_val = self._GetRawBuildProp(prop, None)
531 if prop_val is not None:
532 return prop_val
533
534 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700535
536 def _ResolveRoProductBuildProp(self, prop):
537 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000538 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700539 if prop_val:
540 return prop_val
541
Steven Laver8e2086e2020-04-27 16:26:31 -0700542 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000543 source_order_val = self._GetRawBuildProp(
544 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700545 if source_order_val:
546 source_order = source_order_val.split(",")
547 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700548 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700549
550 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700551 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700552 raise ExternalError(
553 "Invalid ro.product.property_source_order '{}'".format(source_order))
554
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000555 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700556 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000557 "ro.product", "ro.product.{}".format(source_partition), 1)
558 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700559 if prop_val:
560 return prop_val
561
562 raise ExternalError("couldn't resolve {}".format(prop))
563
Steven Laver8e2086e2020-04-27 16:26:31 -0700564 def _GetRoProductPropsDefaultSourceOrder(self):
565 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
566 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000567 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700568 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000569 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700570 if android_version == "10":
571 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
572 # NOTE: float() conversion of android_version will have rounding error.
573 # We are checking for "9" or less, and using "< 10" is well outside of
574 # possible floating point rounding.
575 try:
576 android_version_val = float(android_version)
577 except ValueError:
578 android_version_val = 0
579 if android_version_val < 10:
580 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
581 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
582
Tianjieb37c5be2020-10-15 21:27:10 -0700583 def _GetPlatformVersion(self):
584 version_sdk = self.GetBuildProp("ro.build.version.sdk")
585 # init code switches to version_release_or_codename (see b/158483506). After
586 # API finalization, release_or_codename will be the same as release. This
587 # is the best effort to support pre-S dev stage builds.
588 if int(version_sdk) >= 30:
589 try:
590 return self.GetBuildProp("ro.build.version.release_or_codename")
591 except ExternalError:
592 logger.warning('Failed to find ro.build.version.release_or_codename')
593
594 return self.GetBuildProp("ro.build.version.release")
595
Tianjiefdda51d2021-05-05 14:46:35 -0700596 def _GetBuildId(self):
597 build_id = self._GetRawBuildProp("ro.build.id", None)
598 if build_id:
599 return build_id
600
601 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
602 if not legacy_build_id:
603 raise ExternalError("Couldn't find build id in property file")
604
605 if self.use_legacy_id:
606 return legacy_build_id
607
608 # Append the top 8 chars of vbmeta digest to the existing build id. The
609 # logic needs to match the one in init, so that OTA can deliver correctly.
610 avb_enable = self.info_dict.get("avb_enable") == "true"
611 if not avb_enable:
612 raise ExternalError("AVB isn't enabled when using legacy build id")
613
614 vbmeta_digest = self.info_dict.get("vbmeta_digest")
615 if not vbmeta_digest:
616 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
617 " id")
618 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
619 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
620
621 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
622 return legacy_build_id + '.' + digest_prefix
623
Tianjieb37c5be2020-10-15 21:27:10 -0700624 def _GetPartitionPlatformVersion(self, partition):
625 try:
626 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
627 partition)
628 except ExternalError:
629 return self.GetPartitionBuildProp("ro.build.version.release",
630 partition)
631
Tao Bao1c320f82019-10-04 23:25:12 -0700632 def GetOemProperty(self, key):
633 if self.oem_props is not None and key in self.oem_props:
634 return self.oem_dicts[0][key]
635 return self.GetBuildProp(key)
636
Daniel Normand5fe8622020-01-08 17:01:11 -0800637 def GetPartitionFingerprint(self, partition):
638 return self._partition_fingerprints.get(partition, None)
639
640 def CalculatePartitionFingerprint(self, partition):
641 try:
642 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
643 except ExternalError:
644 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
645 self.GetPartitionBuildProp("ro.product.brand", partition),
646 self.GetPartitionBuildProp("ro.product.name", partition),
647 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700648 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800649 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400650 self.GetPartitionBuildProp(
651 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800652 self.GetPartitionBuildProp("ro.build.type", partition),
653 self.GetPartitionBuildProp("ro.build.tags", partition))
654
Tao Bao1c320f82019-10-04 23:25:12 -0700655 def CalculateFingerprint(self):
656 if self.oem_props is None:
657 try:
658 return self.GetBuildProp("ro.build.fingerprint")
659 except ExternalError:
660 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
661 self.GetBuildProp("ro.product.brand"),
662 self.GetBuildProp("ro.product.name"),
663 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700664 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700665 self.GetBuildProp("ro.build.id"),
666 self.GetBuildProp("ro.build.version.incremental"),
667 self.GetBuildProp("ro.build.type"),
668 self.GetBuildProp("ro.build.tags"))
669 return "%s/%s/%s:%s" % (
670 self.GetOemProperty("ro.product.brand"),
671 self.GetOemProperty("ro.product.name"),
672 self.GetOemProperty("ro.product.device"),
673 self.GetBuildProp("ro.build.thumbprint"))
674
675 def WriteMountOemScript(self, script):
676 assert self.oem_props is not None
677 recovery_mount_options = self.info_dict.get("recovery_mount_options")
678 script.Mount("/oem", recovery_mount_options)
679
680 def WriteDeviceAssertions(self, script, oem_no_mount):
681 # Read the property directly if not using OEM properties.
682 if not self.oem_props:
683 script.AssertDevice(self.device)
684 return
685
686 # Otherwise assert OEM properties.
687 if not self.oem_dicts:
688 raise ExternalError(
689 "No OEM file provided to answer expected assertions")
690
691 for prop in self.oem_props.split():
692 values = []
693 for oem_dict in self.oem_dicts:
694 if prop in oem_dict:
695 values.append(oem_dict[prop])
696 if not values:
697 raise ExternalError(
698 "The OEM file is missing the property %s" % (prop,))
699 script.AssertOemProperty(prop, values, oem_no_mount)
700
701
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000702def ReadFromInputFile(input_file, fn):
703 """Reads the contents of fn from input zipfile or directory."""
704 if isinstance(input_file, zipfile.ZipFile):
705 return input_file.read(fn).decode()
706 else:
707 path = os.path.join(input_file, *fn.split("/"))
708 try:
709 with open(path) as f:
710 return f.read()
711 except IOError as e:
712 if e.errno == errno.ENOENT:
713 raise KeyError(fn)
714
715
Yifan Hong10482a22021-01-07 14:38:41 -0800716def ExtractFromInputFile(input_file, fn):
717 """Extracts the contents of fn from input zipfile or directory into a file."""
718 if isinstance(input_file, zipfile.ZipFile):
719 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500720 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800721 f.write(input_file.read(fn))
722 return tmp_file
723 else:
724 file = os.path.join(input_file, *fn.split("/"))
725 if not os.path.exists(file):
726 raise KeyError(fn)
727 return file
728
Kelvin Zhang563750f2021-04-28 12:46:17 -0400729
jiajia tangf3f842b2021-03-17 21:49:44 +0800730class RamdiskFormat(object):
731 LZ4 = 1
732 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800733
Kelvin Zhang563750f2021-04-28 12:46:17 -0400734
TJ Rhoades6f488e92022-05-01 22:16:22 -0700735def GetRamdiskFormat(info_dict):
jiajia tang836f76b2021-04-02 14:48:26 +0800736 if info_dict.get('lz4_ramdisks') == 'true':
737 ramdisk_format = RamdiskFormat.LZ4
738 else:
739 ramdisk_format = RamdiskFormat.GZ
740 return ramdisk_format
741
Kelvin Zhang563750f2021-04-28 12:46:17 -0400742
Tao Bao410ad8b2018-08-24 12:08:38 -0700743def LoadInfoDict(input_file, repacking=False):
744 """Loads the key/value pairs from the given input target_files.
745
Tianjiea85bdf02020-07-29 11:56:19 -0700746 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700747 checks and returns the parsed key/value pairs for to the given build. It's
748 usually called early when working on input target_files files, e.g. when
749 generating OTAs, or signing builds. Note that the function may be called
750 against an old target_files file (i.e. from past dessert releases). So the
751 property parsing needs to be backward compatible.
752
753 In a `META/misc_info.txt`, a few properties are stored as links to the files
754 in the PRODUCT_OUT directory. It works fine with the build system. However,
755 they are no longer available when (re)generating images from target_files zip.
756 When `repacking` is True, redirect these properties to the actual files in the
757 unzipped directory.
758
759 Args:
760 input_file: The input target_files file, which could be an open
761 zipfile.ZipFile instance, or a str for the dir that contains the files
762 unzipped from a target_files file.
763 repacking: Whether it's trying repack an target_files file after loading the
764 info dict (default: False). If so, it will rewrite a few loaded
765 properties (e.g. selinux_fc, root_dir) to point to the actual files in
766 target_files file. When doing repacking, `input_file` must be a dir.
767
768 Returns:
769 A dict that contains the parsed key/value pairs.
770
771 Raises:
772 AssertionError: On invalid input arguments.
773 ValueError: On malformed input values.
774 """
775 if repacking:
776 assert isinstance(input_file, str), \
777 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700778
Doug Zongkerc9253822014-02-04 12:17:58 -0800779 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000780 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800781
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700782 try:
Michael Runge6e836112014-04-15 17:40:21 -0700783 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700784 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700785 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700786
Tao Bao410ad8b2018-08-24 12:08:38 -0700787 if "recovery_api_version" not in d:
788 raise ValueError("Failed to find 'recovery_api_version'")
789 if "fstab_version" not in d:
790 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800791
Tao Bao410ad8b2018-08-24 12:08:38 -0700792 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700793 # "selinux_fc" properties should point to the file_contexts files
794 # (file_contexts.bin) under META/.
795 for key in d:
796 if key.endswith("selinux_fc"):
797 fc_basename = os.path.basename(d[key])
798 fc_config = os.path.join(input_file, "META", fc_basename)
799 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700800
Daniel Norman72c626f2019-05-13 15:58:14 -0700801 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700802
Tom Cherryd14b8952018-08-09 14:26:00 -0700803 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700804 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700805 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700806 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700807
David Anderson0ec64ac2019-12-06 12:21:18 -0800808 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700809 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000810 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800811 key_name = part_name + "_base_fs_file"
812 if key_name not in d:
813 continue
814 basename = os.path.basename(d[key_name])
815 base_fs_file = os.path.join(input_file, "META", basename)
816 if os.path.exists(base_fs_file):
817 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700818 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700819 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800820 "Failed to find %s base fs file: %s", part_name, base_fs_file)
821 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700822
Doug Zongker37974732010-09-16 17:44:38 -0700823 def makeint(key):
824 if key in d:
825 d[key] = int(d[key], 0)
826
827 makeint("recovery_api_version")
828 makeint("blocksize")
829 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700830 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700831 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700832 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700833 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800834 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700835
Steve Muckle903a1ca2020-05-07 17:32:10 -0700836 boot_images = "boot.img"
837 if "boot_images" in d:
838 boot_images = d["boot_images"]
839 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400840 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700841
Tao Bao765668f2019-10-04 22:03:00 -0700842 # Load recovery fstab if applicable.
843 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
TJ Rhoades6f488e92022-05-01 22:16:22 -0700844 ramdisk_format = GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800845
Tianjie Xu861f4132018-09-12 11:49:33 -0700846 # Tries to load the build props for all partitions with care_map, including
847 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800848 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800849 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000850 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800851 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700852 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800853
Tao Bao3ed35d32019-10-07 20:48:48 -0700854 # Set up the salt (based on fingerprint) that will be used when adding AVB
855 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800856 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700857 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800858 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800859 fingerprint = build_info.GetPartitionFingerprint(partition)
860 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400861 d["avb_{}_salt".format(partition)] = sha256(
862 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700863
864 # Set the vbmeta digest if exists
865 try:
866 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
867 except KeyError:
868 pass
869
Kelvin Zhang39aea442020-08-17 11:04:25 -0400870 try:
871 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
872 except KeyError:
873 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700874 return d
875
Tao Baod1de6f32017-03-01 16:38:48 -0800876
Daniel Norman4cc9df62019-07-18 10:11:07 -0700877def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900878 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700879 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900880
Daniel Norman4cc9df62019-07-18 10:11:07 -0700881
882def LoadDictionaryFromFile(file_path):
883 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900884 return LoadDictionaryFromLines(lines)
885
886
Michael Runge6e836112014-04-15 17:40:21 -0700887def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700888 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700889 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700890 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700891 if not line or line.startswith("#"):
892 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700893 if "=" in line:
894 name, value = line.split("=", 1)
895 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700896 return d
897
Tao Baod1de6f32017-03-01 16:38:48 -0800898
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000899class PartitionBuildProps(object):
900 """The class holds the build prop of a particular partition.
901
902 This class loads the build.prop and holds the build properties for a given
903 partition. It also partially recognizes the 'import' statement in the
904 build.prop; and calculates alternative values of some specific build
905 properties during runtime.
906
907 Attributes:
908 input_file: a zipped target-file or an unzipped target-file directory.
909 partition: name of the partition.
910 props_allow_override: a list of build properties to search for the
911 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000912 build_props: a dict of build properties for the given partition.
913 prop_overrides: a set of props that are overridden by import.
914 placeholder_values: A dict of runtime variables' values to replace the
915 placeholders in the build.prop file. We expect exactly one value for
916 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800917 ramdisk_format: If name is "boot", the format of ramdisk inside the
918 boot image. Otherwise, its value is ignored.
919 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000920 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400921
Tianjie Xu9afb2212020-05-10 21:48:15 +0000922 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000923 self.input_file = input_file
924 self.partition = name
925 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000926 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000927 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000928 self.prop_overrides = set()
929 self.placeholder_values = {}
930 if placeholder_values:
931 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000932
933 @staticmethod
934 def FromDictionary(name, build_props):
935 """Constructs an instance from a build prop dictionary."""
936
937 props = PartitionBuildProps("unknown", name)
938 props.build_props = build_props.copy()
939 return props
940
941 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800942 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000943 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800944
Devin Mooreafdd7c72021-12-13 22:04:08 +0000945 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400946 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000947 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800948 else:
949 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
950
951 props = PartitionBuildProps(input_file, name, placeholder_values)
952 props._LoadBuildProp(data)
953 return props
954
955 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000956 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800957 """
958 Read build.prop for boot image from input_file.
959 Return empty string if not found.
960 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000961 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800962 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000963 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800964 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000965 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800966 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800967 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800968 if prop_file is None:
969 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500970 with open(prop_file, "r") as f:
971 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800972
973 @staticmethod
974 def _ReadPartitionPropFile(input_file, name):
975 """
976 Read build.prop for name from input_file.
977 Return empty string if not found.
978 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000979 data = ''
980 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
981 '{}/build.prop'.format(name.upper())]:
982 try:
983 data = ReadFromInputFile(input_file, prop_file)
984 break
985 except KeyError:
986 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -0800987 if data == '':
988 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -0800989 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000990
Yifan Hong125d0b62020-09-24 17:07:03 -0700991 @staticmethod
992 def FromBuildPropFile(name, build_prop_file):
993 """Constructs an instance from a build prop file."""
994
995 props = PartitionBuildProps("unknown", name)
996 with open(build_prop_file) as f:
997 props._LoadBuildProp(f.read())
998 return props
999
Tianjie Xu9afb2212020-05-10 21:48:15 +00001000 def _LoadBuildProp(self, data):
1001 for line in data.split('\n'):
1002 line = line.strip()
1003 if not line or line.startswith("#"):
1004 continue
1005 if line.startswith("import"):
1006 overrides = self._ImportParser(line)
1007 duplicates = self.prop_overrides.intersection(overrides.keys())
1008 if duplicates:
1009 raise ValueError('prop {} is overridden multiple times'.format(
1010 ','.join(duplicates)))
1011 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1012 self.build_props.update(overrides)
1013 elif "=" in line:
1014 name, value = line.split("=", 1)
1015 if name in self.prop_overrides:
1016 raise ValueError('prop {} is set again after overridden by import '
1017 'statement'.format(name))
1018 self.build_props[name] = value
1019
1020 def _ImportParser(self, line):
1021 """Parses the build prop in a given import statement."""
1022
1023 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001024 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001025 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001026
1027 if len(tokens) == 3:
1028 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1029 return {}
1030
Tianjie Xu9afb2212020-05-10 21:48:15 +00001031 import_path = tokens[1]
1032 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001033 logger.warn('Unrecognized import path {}'.format(line))
1034 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001035
1036 # We only recognize a subset of import statement that the init process
1037 # supports. And we can loose the restriction based on how the dynamic
1038 # fingerprint is used in practice. The placeholder format should be
1039 # ${placeholder}, and its value should be provided by the caller through
1040 # the placeholder_values.
1041 for prop, value in self.placeholder_values.items():
1042 prop_place_holder = '${{{}}}'.format(prop)
1043 if prop_place_holder in import_path:
1044 import_path = import_path.replace(prop_place_holder, value)
1045 if '$' in import_path:
1046 logger.info('Unresolved place holder in import path %s', import_path)
1047 return {}
1048
1049 import_path = import_path.replace('/{}'.format(self.partition),
1050 self.partition.upper())
1051 logger.info('Parsing build props override from %s', import_path)
1052
1053 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1054 d = LoadDictionaryFromLines(lines)
1055 return {key: val for key, val in d.items()
1056 if key in self.props_allow_override}
1057
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001058 def GetProp(self, prop):
1059 return self.build_props.get(prop)
1060
1061
Tianjie Xucfa86222016-03-07 16:31:19 -08001062def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1063 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001064 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001065 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001066 self.mount_point = mount_point
1067 self.fs_type = fs_type
1068 self.device = device
1069 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001070 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001071 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001072
1073 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001074 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001075 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001076 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001077 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001078
Tao Baod1de6f32017-03-01 16:38:48 -08001079 assert fstab_version == 2
1080
1081 d = {}
1082 for line in data.split("\n"):
1083 line = line.strip()
1084 if not line or line.startswith("#"):
1085 continue
1086
1087 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1088 pieces = line.split()
1089 if len(pieces) != 5:
1090 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1091
1092 # Ignore entries that are managed by vold.
1093 options = pieces[4]
1094 if "voldmanaged=" in options:
1095 continue
1096
1097 # It's a good line, parse it.
1098 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001099 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001100 options = options.split(",")
1101 for i in options:
1102 if i.startswith("length="):
1103 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001104 elif i == "slotselect":
1105 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001106 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001107 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001108 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001109
Tao Baod1de6f32017-03-01 16:38:48 -08001110 mount_flags = pieces[3]
1111 # Honor the SELinux context if present.
1112 context = None
1113 for i in mount_flags.split(","):
1114 if i.startswith("context="):
1115 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001116
Tao Baod1de6f32017-03-01 16:38:48 -08001117 mount_point = pieces[1]
1118 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001119 device=pieces[0], length=length, context=context,
1120 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001121
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001122 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001123 # system. Other areas assume system is always at "/system" so point /system
1124 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001125 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001126 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001127 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001128 return d
1129
1130
Tao Bao765668f2019-10-04 22:03:00 -07001131def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1132 """Finds the path to recovery fstab and loads its contents."""
1133 # recovery fstab is only meaningful when installing an update via recovery
1134 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001135 if info_dict.get('ab_update') == 'true' and \
1136 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001137 return None
1138
1139 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1140 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1141 # cases, since it may load the info_dict from an old build (e.g. when
1142 # generating incremental OTAs from that build).
1143 system_root_image = info_dict.get('system_root_image') == 'true'
1144 if info_dict.get('no_recovery') != 'true':
1145 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1146 if isinstance(input_file, zipfile.ZipFile):
1147 if recovery_fstab_path not in input_file.namelist():
1148 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1149 else:
1150 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1151 if not os.path.exists(path):
1152 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1153 return LoadRecoveryFSTab(
1154 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1155 system_root_image)
1156
1157 if info_dict.get('recovery_as_boot') == 'true':
1158 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1159 if isinstance(input_file, zipfile.ZipFile):
1160 if recovery_fstab_path not in input_file.namelist():
1161 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1162 else:
1163 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1164 if not os.path.exists(path):
1165 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1166 return LoadRecoveryFSTab(
1167 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1168 system_root_image)
1169
1170 return None
1171
1172
Doug Zongker37974732010-09-16 17:44:38 -07001173def DumpInfoDict(d):
1174 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001175 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001176
Dan Albert8b72aef2015-03-23 19:13:21 -07001177
Daniel Norman55417142019-11-25 16:04:36 -08001178def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001179 """Merges dynamic partition info variables.
1180
1181 Args:
1182 framework_dict: The dictionary of dynamic partition info variables from the
1183 partial framework target files.
1184 vendor_dict: The dictionary of dynamic partition info variables from the
1185 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001186
1187 Returns:
1188 The merged dynamic partition info dictionary.
1189 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001190
1191 def uniq_concat(a, b):
jiajia tange5ddfcd2022-06-21 10:36:12 +08001192 combined = set(a.split())
1193 combined.update(set(b.split()))
Daniel Normanb0c75912020-09-24 14:30:21 -07001194 combined = [item.strip() for item in combined if item.strip()]
1195 return " ".join(sorted(combined))
1196
1197 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001198 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001199 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1200
1201 merged_dict = {"use_dynamic_partitions": "true"}
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001202 # For keys-value pairs that are the same, copy to merged dict
1203 for key in vendor_dict.keys():
1204 if key in framework_dict and framework_dict[key] == vendor_dict[key]:
1205 merged_dict[key] = vendor_dict[key]
Daniel Normanb0c75912020-09-24 14:30:21 -07001206
1207 merged_dict["dynamic_partition_list"] = uniq_concat(
1208 framework_dict.get("dynamic_partition_list", ""),
1209 vendor_dict.get("dynamic_partition_list", ""))
1210
1211 # Super block devices are defined by the vendor dict.
1212 if "super_block_devices" in vendor_dict:
1213 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001214 for block_device in merged_dict["super_block_devices"].split():
Daniel Normanb0c75912020-09-24 14:30:21 -07001215 key = "super_%s_device_size" % block_device
1216 if key not in vendor_dict:
1217 raise ValueError("Vendor dict does not contain required key %s." % key)
1218 merged_dict[key] = vendor_dict[key]
1219
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001220 # Partition groups and group sizes are defined by the vendor dict because
1221 # these values may vary for each board that uses a shared system image.
1222 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001223 for partition_group in merged_dict["super_partition_groups"].split():
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001224 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001225 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001226 if key not in vendor_dict:
1227 raise ValueError("Vendor dict does not contain required key %s." % key)
1228 merged_dict[key] = vendor_dict[key]
1229
1230 # Set the partition group's partition list using a concatenation of the
1231 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001232 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001233 merged_dict[key] = uniq_concat(
1234 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301235
Daniel Normanb0c75912020-09-24 14:30:21 -07001236 # Various other flags should be copied from the vendor dict, if defined.
1237 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1238 "super_metadata_device", "super_partition_error_limit",
1239 "super_partition_size"):
1240 if key in vendor_dict.keys():
1241 merged_dict[key] = vendor_dict[key]
1242
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001243 return merged_dict
1244
1245
Daniel Norman21c34f72020-11-11 17:25:50 -08001246def PartitionMapFromTargetFiles(target_files_dir):
1247 """Builds a map from partition -> path within an extracted target files directory."""
1248 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1249 possible_subdirs = {
1250 "system": ["SYSTEM"],
1251 "vendor": ["VENDOR", "SYSTEM/vendor"],
1252 "product": ["PRODUCT", "SYSTEM/product"],
1253 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1254 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1255 "vendor_dlkm": [
1256 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1257 ],
1258 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001259 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001260 }
1261 partition_map = {}
1262 for partition, subdirs in possible_subdirs.items():
1263 for subdir in subdirs:
1264 if os.path.exists(os.path.join(target_files_dir, subdir)):
1265 partition_map[partition] = subdir
1266 break
1267 return partition_map
1268
1269
Daniel Normand3351562020-10-29 12:33:11 -07001270def SharedUidPartitionViolations(uid_dict, partition_groups):
1271 """Checks for APK sharedUserIds that cross partition group boundaries.
1272
1273 This uses a single or merged build's shareduid_violation_modules.json
1274 output file, as generated by find_shareduid_violation.py or
1275 core/tasks/find-shareduid-violation.mk.
1276
1277 An error is defined as a sharedUserId that is found in a set of partitions
1278 that span more than one partition group.
1279
1280 Args:
1281 uid_dict: A dictionary created by using the standard json module to read a
1282 complete shareduid_violation_modules.json file.
1283 partition_groups: A list of groups, where each group is a list of
1284 partitions.
1285
1286 Returns:
1287 A list of error messages.
1288 """
1289 errors = []
1290 for uid, partitions in uid_dict.items():
1291 found_in_groups = [
1292 group for group in partition_groups
1293 if set(partitions.keys()) & set(group)
1294 ]
1295 if len(found_in_groups) > 1:
1296 errors.append(
1297 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1298 % (uid, ",".join(sorted(partitions.keys()))))
1299 return errors
1300
1301
Daniel Norman21c34f72020-11-11 17:25:50 -08001302def RunHostInitVerifier(product_out, partition_map):
1303 """Runs host_init_verifier on the init rc files within partitions.
1304
1305 host_init_verifier searches the etc/init path within each partition.
1306
1307 Args:
1308 product_out: PRODUCT_OUT directory, containing partition directories.
1309 partition_map: A map of partition name -> relative path within product_out.
1310 """
1311 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1312 cmd = ["host_init_verifier"]
1313 for partition, path in partition_map.items():
1314 if partition not in allowed_partitions:
1315 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1316 partition)
1317 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1318 # Add --property-contexts if the file exists on the partition.
1319 property_contexts = "%s_property_contexts" % (
1320 "plat" if partition == "system" else partition)
1321 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1322 property_contexts)
1323 if os.path.exists(property_contexts_path):
1324 cmd.append("--property-contexts=%s" % property_contexts_path)
1325 # Add the passwd file if the file exists on the partition.
1326 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1327 if os.path.exists(passwd_path):
1328 cmd.extend(["-p", passwd_path])
1329 return RunAndCheckOutput(cmd)
1330
1331
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001332def AppendAVBSigningArgs(cmd, partition):
1333 """Append signing arguments for avbtool."""
1334 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1335 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001336 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1337 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1338 if os.path.exists(new_key_path):
1339 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001340 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1341 if key_path and algorithm:
1342 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001343 avb_salt = OPTIONS.info_dict.get("avb_salt")
1344 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001345 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001346 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001347
1348
Tao Bao765668f2019-10-04 22:03:00 -07001349def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001350 """Returns the VBMeta arguments for partition.
1351
1352 It sets up the VBMeta argument by including the partition descriptor from the
1353 given 'image', or by configuring the partition as a chained partition.
1354
1355 Args:
1356 partition: The name of the partition (e.g. "system").
1357 image: The path to the partition image.
1358 info_dict: A dict returned by common.LoadInfoDict(). Will use
1359 OPTIONS.info_dict if None has been given.
1360
1361 Returns:
1362 A list of VBMeta arguments.
1363 """
1364 if info_dict is None:
1365 info_dict = OPTIONS.info_dict
1366
1367 # Check if chain partition is used.
1368 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001369 if not key_path:
1370 return ["--include_descriptors_from_image", image]
1371
1372 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1373 # into vbmeta.img. The recovery image will be configured on an independent
1374 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1375 # See details at
1376 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001377 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001378 return []
1379
1380 # Otherwise chain the partition into vbmeta.
1381 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1382 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001383
1384
Tao Bao02a08592018-07-22 12:40:45 -07001385def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1386 """Constructs and returns the arg to build or verify a chained partition.
1387
1388 Args:
1389 partition: The partition name.
1390 info_dict: The info dict to look up the key info and rollback index
1391 location.
1392 key: The key to be used for building or verifying the partition. Defaults to
1393 the key listed in info_dict.
1394
1395 Returns:
1396 A string of form "partition:rollback_index_location:key" that can be used to
1397 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001398 """
1399 if key is None:
1400 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001401 if key and not os.path.exists(key) and OPTIONS.search_path:
1402 new_key_path = os.path.join(OPTIONS.search_path, key)
1403 if os.path.exists(new_key_path):
1404 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001405 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001406 rollback_index_location = info_dict[
1407 "avb_" + partition + "_rollback_index_location"]
1408 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1409
1410
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001411def _HasGkiCertificationArgs():
1412 return ("gki_signing_key_path" in OPTIONS.info_dict and
1413 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001414
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001415
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001416def _GenerateGkiCertificate(image, image_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001417 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001418 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001419
1420 if not os.path.exists(key_path) and OPTIONS.search_path:
1421 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1422 if os.path.exists(new_key_path):
1423 key_path = new_key_path
1424
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001425 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001426 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001427 raise ExternalError(
1428 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001429
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001430 output_certificate = tempfile.NamedTemporaryFile()
1431 cmd = [
1432 "generate_gki_certificate",
1433 "--name", image_name,
1434 "--algorithm", algorithm,
1435 "--key", key_path,
1436 "--output", output_certificate.name,
1437 image,
1438 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001439
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001440 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1441 signature_args = signature_args.strip()
1442 if signature_args:
1443 cmd.extend(["--additional_avb_args", signature_args])
1444
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001445 args = OPTIONS.info_dict.get("avb_boot_add_hash_footer_args", "")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001446 args = args.strip()
1447 if args:
1448 cmd.extend(["--additional_avb_args", args])
1449
1450 RunAndCheckOutput(cmd)
1451
1452 output_certificate.seek(os.SEEK_SET, 0)
1453 data = output_certificate.read()
1454 output_certificate.close()
1455 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001456
1457
Daniel Norman276f0622019-07-26 14:13:51 -07001458def BuildVBMeta(image_path, partitions, name, needed_partitions):
1459 """Creates a VBMeta image.
1460
1461 It generates the requested VBMeta image. The requested image could be for
1462 top-level or chained VBMeta image, which is determined based on the name.
1463
1464 Args:
1465 image_path: The output path for the new VBMeta image.
1466 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001467 values. Only valid partition names are accepted, as partitions listed
1468 in common.AVB_PARTITIONS and custom partitions listed in
1469 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001470 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1471 needed_partitions: Partitions whose descriptors should be included into the
1472 generated VBMeta image.
1473
1474 Raises:
1475 AssertionError: On invalid input args.
1476 """
1477 avbtool = OPTIONS.info_dict["avb_avbtool"]
1478 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1479 AppendAVBSigningArgs(cmd, name)
1480
Hongguang Chenf23364d2020-04-27 18:36:36 -07001481 custom_partitions = OPTIONS.info_dict.get(
1482 "avb_custom_images_partition_list", "").strip().split()
1483
Daniel Norman276f0622019-07-26 14:13:51 -07001484 for partition, path in partitions.items():
1485 if partition not in needed_partitions:
1486 continue
1487 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001488 partition in AVB_VBMETA_PARTITIONS or
1489 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001490 'Unknown partition: {}'.format(partition)
1491 assert os.path.exists(path), \
1492 'Failed to find {} for {}'.format(path, partition)
1493 cmd.extend(GetAvbPartitionArg(partition, path))
1494
1495 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1496 if args and args.strip():
1497 split_args = shlex.split(args)
1498 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001499 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001500 # as a path relative to source tree, which may not be available at the
1501 # same location when running this script (we have the input target_files
1502 # zip only). For such cases, we additionally scan other locations (e.g.
1503 # IMAGES/, RADIO/, etc) before bailing out.
1504 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001505 chained_image = split_args[index + 1]
1506 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001507 continue
1508 found = False
1509 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1510 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001511 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001512 if os.path.exists(alt_path):
1513 split_args[index + 1] = alt_path
1514 found = True
1515 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001516 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001517 cmd.extend(split_args)
1518
1519 RunAndCheckOutput(cmd)
1520
1521
jiajia tang836f76b2021-04-02 14:48:26 +08001522def _MakeRamdisk(sourcedir, fs_config_file=None,
1523 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001524 ramdisk_img = tempfile.NamedTemporaryFile()
1525
1526 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1527 cmd = ["mkbootfs", "-f", fs_config_file,
1528 os.path.join(sourcedir, "RAMDISK")]
1529 else:
1530 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1531 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001532 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001533 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001534 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001535 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001536 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001537 else:
1538 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001539
1540 p2.wait()
1541 p1.wait()
1542 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001543 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001544
1545 return ramdisk_img
1546
1547
Steve Muckle9793cf62020-04-08 18:27:00 -07001548def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001549 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001550 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001551
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001552 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001553 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1554 we are building a two-step special image (i.e. building a recovery image to
1555 be loaded into /boot in two-step OTAs).
1556
1557 Return the image data, or None if sourcedir does not appear to contains files
1558 for building the requested image.
1559 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001560
Yifan Hong63c5ca12020-10-08 11:54:02 -07001561 if info_dict is None:
1562 info_dict = OPTIONS.info_dict
1563
Steve Muckle9793cf62020-04-08 18:27:00 -07001564 # "boot" or "recovery", without extension.
1565 partition_name = os.path.basename(sourcedir).lower()
1566
Yifan Hong63c5ca12020-10-08 11:54:02 -07001567 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001568 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001569 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1570 logger.info("Excluded kernel binary from recovery image.")
1571 else:
1572 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001573 elif partition_name == "init_boot":
1574 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001575 else:
1576 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001577 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001578 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001579 return None
1580
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001581 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1582
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001583 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001584 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001585
Doug Zongkereef39442009-04-02 12:14:19 -07001586 img = tempfile.NamedTemporaryFile()
1587
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001588 if has_ramdisk:
TJ Rhoades6f488e92022-05-01 22:16:22 -07001589 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001590 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1591 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001592
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001593 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1594 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1595
Yifan Hong63c5ca12020-10-08 11:54:02 -07001596 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001597 if kernel_path is not None:
1598 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001599
Benoit Fradina45a8682014-07-14 21:00:43 +02001600 fn = os.path.join(sourcedir, "second")
1601 if os.access(fn, os.F_OK):
1602 cmd.append("--second")
1603 cmd.append(fn)
1604
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001605 fn = os.path.join(sourcedir, "dtb")
1606 if os.access(fn, os.F_OK):
1607 cmd.append("--dtb")
1608 cmd.append(fn)
1609
Doug Zongker171f1cd2009-06-15 22:36:37 -07001610 fn = os.path.join(sourcedir, "cmdline")
1611 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001612 cmd.append("--cmdline")
1613 cmd.append(open(fn).read().rstrip("\n"))
1614
1615 fn = os.path.join(sourcedir, "base")
1616 if os.access(fn, os.F_OK):
1617 cmd.append("--base")
1618 cmd.append(open(fn).read().rstrip("\n"))
1619
Ying Wang4de6b5b2010-08-25 14:29:34 -07001620 fn = os.path.join(sourcedir, "pagesize")
1621 if os.access(fn, os.F_OK):
1622 cmd.append("--pagesize")
1623 cmd.append(open(fn).read().rstrip("\n"))
1624
Steve Mucklef84668e2020-03-16 19:13:46 -07001625 if partition_name == "recovery":
1626 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301627 if not args:
1628 # Fall back to "mkbootimg_args" for recovery image
1629 # in case "recovery_mkbootimg_args" is not set.
1630 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001631 elif partition_name == "init_boot":
1632 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001633 else:
1634 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001635 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001636 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001637
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001638 args = info_dict.get("mkbootimg_version_args")
1639 if args and args.strip():
1640 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001641
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001642 if has_ramdisk:
1643 cmd.extend(["--ramdisk", ramdisk_img.name])
1644
Tao Baod95e9fd2015-03-29 23:07:41 -07001645 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001646 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001647 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001648 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001649 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001650 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001651
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001652 if partition_name == "recovery":
1653 if info_dict.get("include_recovery_dtbo") == "true":
1654 fn = os.path.join(sourcedir, "recovery_dtbo")
1655 cmd.extend(["--recovery_dtbo", fn])
1656 if info_dict.get("include_recovery_acpio") == "true":
1657 fn = os.path.join(sourcedir, "recovery_acpio")
1658 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001659
Tao Bao986ee862018-10-04 15:46:16 -07001660 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001661
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001662 if _HasGkiCertificationArgs():
1663 if not os.path.exists(img.name):
1664 raise ValueError("Cannot find GKI boot.img")
1665 if kernel_path is None or not os.path.exists(kernel_path):
1666 raise ValueError("Cannot find GKI kernel.img")
1667
1668 # Certify GKI images.
1669 boot_signature_bytes = b''
1670 boot_signature_bytes += _GenerateGkiCertificate(img.name, "boot")
1671 boot_signature_bytes += _GenerateGkiCertificate(
1672 kernel_path, "generic_kernel")
1673
1674 BOOT_SIGNATURE_SIZE = 16 * 1024
1675 if len(boot_signature_bytes) > BOOT_SIGNATURE_SIZE:
1676 raise ValueError(
1677 f"GKI boot_signature size must be <= {BOOT_SIGNATURE_SIZE}")
1678 boot_signature_bytes += (
1679 b'\0' * (BOOT_SIGNATURE_SIZE - len(boot_signature_bytes)))
1680 assert len(boot_signature_bytes) == BOOT_SIGNATURE_SIZE
1681
1682 with open(img.name, 'ab') as f:
1683 f.write(boot_signature_bytes)
1684
Tao Bao76def242017-11-21 09:25:31 -08001685 if (info_dict.get("boot_signer") == "true" and
Kelvin Zhang563750f2021-04-28 12:46:17 -04001686 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001687 # Hard-code the path as "/boot" for two-step special recovery image (which
1688 # will be loaded into /boot during the two-step OTA).
1689 if two_step_image:
1690 path = "/boot"
1691 else:
Tao Baobf70c312017-07-11 17:27:55 -07001692 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001693 cmd = [OPTIONS.boot_signer_path]
1694 cmd.extend(OPTIONS.boot_signer_args)
1695 cmd.extend([path, img.name,
1696 info_dict["verity_key"] + ".pk8",
1697 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001698 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001699
Tao Baod95e9fd2015-03-29 23:07:41 -07001700 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001701 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001702 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001703 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001704 # We have switched from the prebuilt futility binary to using the tool
1705 # (futility-host) built from the source. Override the setting in the old
1706 # TF.zip.
1707 futility = info_dict["futility"]
1708 if futility.startswith("prebuilts/"):
1709 futility = "futility-host"
1710 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001711 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001712 info_dict["vboot_key"] + ".vbprivk",
1713 info_dict["vboot_subkey"] + ".vbprivk",
1714 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001715 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001716 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001717
Tao Baof3282b42015-04-01 11:21:55 -07001718 # Clean up the temp files.
1719 img_unsigned.close()
1720 img_keyblock.close()
1721
David Zeuthen8fecb282017-12-01 16:24:01 -05001722 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001723 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001724 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001725 if partition_name == "recovery":
1726 part_size = info_dict["recovery_size"]
1727 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001728 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001729 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001730 "--partition_size", str(part_size), "--partition_name",
1731 partition_name]
1732 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001733 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001734 if args and args.strip():
1735 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001736 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001737
1738 img.seek(os.SEEK_SET, 0)
1739 data = img.read()
1740
1741 if has_ramdisk:
1742 ramdisk_img.close()
1743 img.close()
1744
1745 return data
1746
1747
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001748def _SignBootableImage(image_path, prebuilt_name, partition_name,
1749 info_dict=None):
1750 """Performs AVB signing for a prebuilt boot.img.
1751
1752 Args:
1753 image_path: The full path of the image, e.g., /path/to/boot.img.
1754 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001755 boot-5.10.img, recovery.img or init_boot.img.
1756 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001757 info_dict: The information dict read from misc_info.txt.
1758 """
1759 if info_dict is None:
1760 info_dict = OPTIONS.info_dict
1761
1762 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1763 if info_dict.get("avb_enable") == "true":
1764 avbtool = info_dict["avb_avbtool"]
1765 if partition_name == "recovery":
1766 part_size = info_dict["recovery_size"]
1767 else:
1768 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1769
1770 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1771 "--partition_size", str(part_size), "--partition_name",
1772 partition_name]
1773 AppendAVBSigningArgs(cmd, partition_name)
1774 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1775 if args and args.strip():
1776 cmd.extend(shlex.split(args))
1777 RunAndCheckOutput(cmd)
1778
1779
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001780def HasRamdisk(partition_name, info_dict=None):
1781 """Returns true/false to see if a bootable image should have a ramdisk.
1782
1783 Args:
1784 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1785 info_dict: The information dict read from misc_info.txt.
1786 """
1787 if info_dict is None:
1788 info_dict = OPTIONS.info_dict
1789
1790 if partition_name != "boot":
1791 return True # init_boot.img or recovery.img has a ramdisk.
1792
1793 if info_dict.get("recovery_as_boot") == "true":
1794 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1795
Bowgo Tsai85578e02022-04-19 10:50:59 +08001796 if info_dict.get("gki_boot_image_without_ramdisk") == "true":
1797 return False # A GKI boot.img has no ramdisk since Android-13.
1798
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001799 if info_dict.get("system_root_image") == "true":
1800 # The ramdisk content is merged into the system.img, so there is NO
1801 # ramdisk in the boot.img or boot-<kernel version>.img.
1802 return False
1803
1804 if info_dict.get("init_boot") == "true":
1805 # The ramdisk is moved to the init_boot.img, so there is NO
1806 # ramdisk in the boot.img or boot-<kernel version>.img.
1807 return False
1808
1809 return True
1810
1811
Doug Zongkerd5131602012-08-02 14:46:42 -07001812def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001813 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001814 """Return a File object with the desired bootable image.
1815
1816 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1817 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1818 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001819
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001820 if info_dict is None:
1821 info_dict = OPTIONS.info_dict
1822
Doug Zongker55d93282011-01-25 17:03:34 -08001823 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1824 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001825 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001826 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001827
1828 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1829 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001830 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001831 return File.FromLocalFile(name, prebuilt_path)
1832
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001833 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001834 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1835 if os.path.exists(prebuilt_path):
1836 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1837 signed_img = MakeTempFile()
1838 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001839 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1840 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001841
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001842 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001843
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001844 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001845
Doug Zongker6f1d0312014-08-22 08:07:12 -07001846 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001847 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001848 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001849 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001850 if data:
1851 return File(name, data)
1852 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001853
Doug Zongkereef39442009-04-02 12:14:19 -07001854
Lucas Wei03230252022-04-18 16:00:40 +08001855def _BuildVendorBootImage(sourcedir, partition_name, info_dict=None):
Steve Mucklee1b10862019-07-10 10:49:37 -07001856 """Build a vendor boot image from the specified sourcedir.
1857
1858 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1859 turn them into a vendor boot image.
1860
1861 Return the image data, or None if sourcedir does not appear to contains files
1862 for building the requested image.
1863 """
1864
1865 if info_dict is None:
1866 info_dict = OPTIONS.info_dict
1867
1868 img = tempfile.NamedTemporaryFile()
1869
TJ Rhoades6f488e92022-05-01 22:16:22 -07001870 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001871 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001872
1873 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1874 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1875
1876 cmd = [mkbootimg]
1877
1878 fn = os.path.join(sourcedir, "dtb")
1879 if os.access(fn, os.F_OK):
Lucas Wei03230252022-04-18 16:00:40 +08001880 has_vendor_kernel_boot = (info_dict.get("vendor_kernel_boot", "").lower() == "true")
1881
1882 # Pack dtb into vendor_kernel_boot if building vendor_kernel_boot.
1883 # Otherwise pack dtb into vendor_boot.
1884 if not has_vendor_kernel_boot or partition_name == "vendor_kernel_boot":
1885 cmd.append("--dtb")
1886 cmd.append(fn)
Steve Mucklee1b10862019-07-10 10:49:37 -07001887
1888 fn = os.path.join(sourcedir, "vendor_cmdline")
1889 if os.access(fn, os.F_OK):
1890 cmd.append("--vendor_cmdline")
1891 cmd.append(open(fn).read().rstrip("\n"))
1892
1893 fn = os.path.join(sourcedir, "base")
1894 if os.access(fn, os.F_OK):
1895 cmd.append("--base")
1896 cmd.append(open(fn).read().rstrip("\n"))
1897
1898 fn = os.path.join(sourcedir, "pagesize")
1899 if os.access(fn, os.F_OK):
1900 cmd.append("--pagesize")
1901 cmd.append(open(fn).read().rstrip("\n"))
1902
1903 args = info_dict.get("mkbootimg_args")
1904 if args and args.strip():
1905 cmd.extend(shlex.split(args))
1906
1907 args = info_dict.get("mkbootimg_version_args")
1908 if args and args.strip():
1909 cmd.extend(shlex.split(args))
1910
1911 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1912 cmd.extend(["--vendor_boot", img.name])
1913
Devin Moore50509012021-01-13 10:45:04 -08001914 fn = os.path.join(sourcedir, "vendor_bootconfig")
1915 if os.access(fn, os.F_OK):
1916 cmd.append("--vendor_bootconfig")
1917 cmd.append(fn)
1918
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001919 ramdisk_fragment_imgs = []
1920 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1921 if os.access(fn, os.F_OK):
1922 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1923 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001924 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1925 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001926 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001927 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1928 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001929 # Use prebuilt image if found, else create ramdisk from supplied files.
1930 if os.access(fn, os.F_OK):
1931 ramdisk_fragment_pathname = fn
1932 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001933 ramdisk_fragment_root = os.path.join(
1934 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001935 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1936 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001937 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1938 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1939 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1940
Steve Mucklee1b10862019-07-10 10:49:37 -07001941 RunAndCheckOutput(cmd)
1942
1943 # AVB: if enabled, calculate and add hash.
1944 if info_dict.get("avb_enable") == "true":
1945 avbtool = info_dict["avb_avbtool"]
Lucas Wei03230252022-04-18 16:00:40 +08001946 part_size = info_dict[f'{partition_name}_size']
Steve Mucklee1b10862019-07-10 10:49:37 -07001947 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Lucas Wei03230252022-04-18 16:00:40 +08001948 "--partition_size", str(part_size), "--partition_name", partition_name]
1949 AppendAVBSigningArgs(cmd, partition_name)
1950 args = info_dict.get(f'avb_{partition_name}_add_hash_footer_args')
Steve Mucklee1b10862019-07-10 10:49:37 -07001951 if args and args.strip():
1952 cmd.extend(shlex.split(args))
1953 RunAndCheckOutput(cmd)
1954
1955 img.seek(os.SEEK_SET, 0)
1956 data = img.read()
1957
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001958 for f in ramdisk_fragment_imgs:
1959 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001960 ramdisk_img.close()
1961 img.close()
1962
1963 return data
1964
1965
1966def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1967 info_dict=None):
1968 """Return a File object with the desired vendor boot image.
1969
1970 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1971 the source files in 'unpack_dir'/'tree_subdir'."""
1972
1973 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1974 if os.path.exists(prebuilt_path):
1975 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1976 return File.FromLocalFile(name, prebuilt_path)
1977
1978 logger.info("building image from target_files %s...", tree_subdir)
1979
1980 if info_dict is None:
1981 info_dict = OPTIONS.info_dict
1982
Kelvin Zhang0876c412020-06-23 15:06:58 -04001983 data = _BuildVendorBootImage(
Lucas Wei03230252022-04-18 16:00:40 +08001984 os.path.join(unpack_dir, tree_subdir), "vendor_boot", info_dict)
1985 if data:
1986 return File(name, data)
1987 return None
1988
1989
1990def GetVendorKernelBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1991 info_dict=None):
1992 """Return a File object with the desired vendor kernel boot image.
1993
1994 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1995 the source files in 'unpack_dir'/'tree_subdir'."""
1996
1997 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1998 if os.path.exists(prebuilt_path):
1999 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
2000 return File.FromLocalFile(name, prebuilt_path)
2001
2002 logger.info("building image from target_files %s...", tree_subdir)
2003
2004 if info_dict is None:
2005 info_dict = OPTIONS.info_dict
2006
2007 data = _BuildVendorBootImage(
2008 os.path.join(unpack_dir, tree_subdir), "vendor_kernel_boot", info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07002009 if data:
2010 return File(name, data)
2011 return None
2012
2013
Narayan Kamatha07bf042017-08-14 14:49:21 +01002014def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08002015 """Gunzips the given gzip compressed file to a given output file."""
2016 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04002017 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01002018 shutil.copyfileobj(in_file, out_file)
2019
2020
Tao Bao0ff15de2019-03-20 11:26:06 -07002021def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002022 """Unzips the archive to the given directory.
2023
2024 Args:
2025 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002026 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07002027 patterns: Files to unzip from the archive. If omitted, will unzip the entire
2028 archvie. Non-matching patterns will be filtered out. If there's no match
2029 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002030 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002031 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07002032 if patterns is not None:
2033 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04002034 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07002035 names = input_zip.namelist()
2036 filtered = [
2037 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
2038
2039 # There isn't any matching files. Don't unzip anything.
2040 if not filtered:
2041 return
2042 cmd.extend(filtered)
2043
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002044 RunAndCheckOutput(cmd)
2045
2046
Daniel Norman78554ea2021-09-14 10:29:38 -07002047def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002048 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002049
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002050 Args:
2051 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2052 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2053
Daniel Norman78554ea2021-09-14 10:29:38 -07002054 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002055 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002056
Tao Bao1c830bf2017-12-25 10:43:47 -08002057 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002058 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002059 """
Doug Zongkereef39442009-04-02 12:14:19 -07002060
Tao Bao1c830bf2017-12-25 10:43:47 -08002061 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002062 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2063 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002064 UnzipToDir(m.group(1), tmp, patterns)
2065 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002066 filename = m.group(1)
2067 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002068 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002069
Tao Baodba59ee2018-01-09 13:21:02 -08002070 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002071
2072
Yifan Hong8a66a712019-04-04 15:37:57 -07002073def GetUserImage(which, tmpdir, input_zip,
2074 info_dict=None,
2075 allow_shared_blocks=None,
2076 hashtree_info_generator=None,
2077 reset_file_map=False):
2078 """Returns an Image object suitable for passing to BlockImageDiff.
2079
2080 This function loads the specified image from the given path. If the specified
2081 image is sparse, it also performs additional processing for OTA purpose. For
2082 example, it always adds block 0 to clobbered blocks list. It also detects
2083 files that cannot be reconstructed from the block list, for whom we should
2084 avoid applying imgdiff.
2085
2086 Args:
2087 which: The partition name.
2088 tmpdir: The directory that contains the prebuilt image and block map file.
2089 input_zip: The target-files ZIP archive.
2090 info_dict: The dict to be looked up for relevant info.
2091 allow_shared_blocks: If image is sparse, whether having shared blocks is
2092 allowed. If none, it is looked up from info_dict.
2093 hashtree_info_generator: If present and image is sparse, generates the
2094 hashtree_info for this sparse image.
2095 reset_file_map: If true and image is sparse, reset file map before returning
2096 the image.
2097 Returns:
2098 A Image object. If it is a sparse image and reset_file_map is False, the
2099 image will have file_map info loaded.
2100 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002101 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002102 info_dict = LoadInfoDict(input_zip)
2103
2104 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002105 if info_dict.get(which + "_disable_sparse"):
2106 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002107
2108 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2109 # shared blocks (i.e. some blocks will show up in multiple files' block
2110 # list). We can only allocate such shared blocks to the first "owner", and
2111 # disable imgdiff for all later occurrences.
2112 if allow_shared_blocks is None:
2113 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2114
2115 if is_sparse:
2116 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2117 hashtree_info_generator)
2118 if reset_file_map:
2119 img.ResetFileMap()
2120 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04002121 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07002122
2123
2124def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
2125 """Returns a Image object suitable for passing to BlockImageDiff.
2126
2127 This function loads the specified non-sparse image from the given path.
2128
2129 Args:
2130 which: The partition name.
2131 tmpdir: The directory that contains the prebuilt image and block map file.
2132 Returns:
2133 A Image object.
2134 """
2135 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2136 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2137
2138 # The image and map files must have been created prior to calling
2139 # ota_from_target_files.py (since LMP).
2140 assert os.path.exists(path) and os.path.exists(mappath)
2141
Tianjie Xu41976c72019-07-03 13:57:01 -07002142 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
2143
Yifan Hong8a66a712019-04-04 15:37:57 -07002144
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002145def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2146 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08002147 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2148
2149 This function loads the specified sparse image from the given path, and
2150 performs additional processing for OTA purpose. For example, it always adds
2151 block 0 to clobbered blocks list. It also detects files that cannot be
2152 reconstructed from the block list, for whom we should avoid applying imgdiff.
2153
2154 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002155 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002156 tmpdir: The directory that contains the prebuilt image and block map file.
2157 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002158 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002159 hashtree_info_generator: If present, generates the hashtree_info for this
2160 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08002161 Returns:
2162 A SparseImage object, with file_map info loaded.
2163 """
Tao Baoc765cca2018-01-31 17:32:40 -08002164 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2165 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2166
2167 # The image and map files must have been created prior to calling
2168 # ota_from_target_files.py (since LMP).
2169 assert os.path.exists(path) and os.path.exists(mappath)
2170
2171 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2172 # it to clobbered_blocks so that it will be written to the target
2173 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2174 clobbered_blocks = "0"
2175
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002176 image = sparse_img.SparseImage(
2177 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
2178 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08002179
2180 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2181 # if they contain all zeros. We can't reconstruct such a file from its block
2182 # list. Tag such entries accordingly. (Bug: 65213616)
2183 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002184 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002185 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002186 continue
2187
Tom Cherryd14b8952018-08-09 14:26:00 -07002188 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2189 # filename listed in system.map may contain an additional leading slash
2190 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2191 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002192 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002193 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002194 arcname = entry.lstrip('/')
2195 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002196 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002197 else:
2198 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002199
2200 assert arcname in input_zip.namelist(), \
2201 "Failed to find the ZIP entry for {}".format(entry)
2202
Tao Baoc765cca2018-01-31 17:32:40 -08002203 info = input_zip.getinfo(arcname)
2204 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002205
2206 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002207 # image, check the original block list to determine its completeness. Note
2208 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002209 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002210 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002211
Tao Baoc765cca2018-01-31 17:32:40 -08002212 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2213 ranges.extra['incomplete'] = True
2214
2215 return image
2216
2217
Doug Zongkereef39442009-04-02 12:14:19 -07002218def GetKeyPasswords(keylist):
2219 """Given a list of keys, prompt the user to enter passwords for
2220 those which require them. Return a {key: password} dict. password
2221 will be None if the key has no password."""
2222
Doug Zongker8ce7c252009-05-22 13:34:54 -07002223 no_passwords = []
2224 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002225 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002226 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002227
2228 # sorted() can't compare strings to None, so convert Nones to strings
2229 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002230 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002231 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002232 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002233 continue
2234
T.R. Fullhart37e10522013-03-18 10:31:26 -07002235 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002236 "-inform", "DER", "-nocrypt"],
2237 stdin=devnull.fileno(),
2238 stdout=devnull.fileno(),
2239 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002240 p.communicate()
2241 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002242 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002243 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002244 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002245 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2246 "-inform", "DER", "-passin", "pass:"],
2247 stdin=devnull.fileno(),
2248 stdout=devnull.fileno(),
2249 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002250 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002251 if p.returncode == 0:
2252 # Encrypted key with empty string as password.
2253 key_passwords[k] = ''
2254 elif stderr.startswith('Error decrypting key'):
2255 # Definitely encrypted key.
2256 # It would have said "Error reading key" if it didn't parse correctly.
2257 need_passwords.append(k)
2258 else:
2259 # Potentially, a type of key that openssl doesn't understand.
2260 # We'll let the routines in signapk.jar handle it.
2261 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002262 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002263
T.R. Fullhart37e10522013-03-18 10:31:26 -07002264 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002265 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002266 return key_passwords
2267
2268
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002269def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002270 """Gets the minSdkVersion declared in the APK.
2271
Martin Stjernholm58472e82022-01-07 22:08:47 +00002272 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2273 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002274
2275 Args:
2276 apk_name: The APK filename.
2277
2278 Returns:
2279 The parsed SDK version string.
2280
2281 Raises:
2282 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002283 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002284 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002285 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002286 stderr=subprocess.PIPE)
2287 stdoutdata, stderrdata = proc.communicate()
2288 if proc.returncode != 0:
2289 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002290 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2291 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002292
Tao Baof47bf0f2018-03-21 23:28:51 -07002293 for line in stdoutdata.split("\n"):
2294 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002295 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2296 if m:
2297 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002298 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002299
2300
2301def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002302 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002303
Tao Baof47bf0f2018-03-21 23:28:51 -07002304 If minSdkVersion is set to a codename, it is translated to a number using the
2305 provided map.
2306
2307 Args:
2308 apk_name: The APK filename.
2309
2310 Returns:
2311 The parsed SDK version number.
2312
2313 Raises:
2314 ExternalError: On failing to get the min SDK version number.
2315 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002316 version = GetMinSdkVersion(apk_name)
2317 try:
2318 return int(version)
2319 except ValueError:
2320 # Not a decimal number. Codename?
2321 if version in codename_to_api_level_map:
2322 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002323 raise ExternalError(
2324 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2325 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002326
2327
2328def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002329 codename_to_api_level_map=None, whole_file=False,
2330 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002331 """Sign the input_name zip/jar/apk, producing output_name. Use the
2332 given key and password (the latter may be None if the key does not
2333 have a password.
2334
Doug Zongker951495f2009-08-14 12:44:19 -07002335 If whole_file is true, use the "-w" option to SignApk to embed a
2336 signature that covers the whole file in the archive comment of the
2337 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002338
2339 min_api_level is the API Level (int) of the oldest platform this file may end
2340 up on. If not specified for an APK, the API Level is obtained by interpreting
2341 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2342
2343 codename_to_api_level_map is needed to translate the codename which may be
2344 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002345
2346 Caller may optionally specify extra args to be passed to SignApk, which
2347 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002348 """
Tao Bao76def242017-11-21 09:25:31 -08002349 if codename_to_api_level_map is None:
2350 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002351 if extra_signapk_args is None:
2352 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002353
Alex Klyubin9667b182015-12-10 13:38:50 -08002354 java_library_path = os.path.join(
2355 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2356
Tao Baoe95540e2016-11-08 12:08:53 -08002357 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2358 ["-Djava.library.path=" + java_library_path,
2359 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002360 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002361 if whole_file:
2362 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002363
2364 min_sdk_version = min_api_level
2365 if min_sdk_version is None:
2366 if not whole_file:
2367 min_sdk_version = GetMinSdkVersionInt(
2368 input_name, codename_to_api_level_map)
2369 if min_sdk_version is not None:
2370 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2371
T.R. Fullhart37e10522013-03-18 10:31:26 -07002372 cmd.extend([key + OPTIONS.public_key_suffix,
2373 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002374 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002375
Tao Bao73dd4f42018-10-04 16:25:33 -07002376 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002377 if password is not None:
2378 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002379 stdoutdata, _ = proc.communicate(password)
2380 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002381 raise ExternalError(
2382 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002383 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002384
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002385def SignSePolicy(sepolicy, key, password):
2386 """Sign the sepolicy zip, producing an fsverity .fsv_sig and
2387 an RSA .sig signature files.
2388 """
2389
2390 if OPTIONS.sign_sepolicy_path is None:
2391 return False
2392
2393 java_library_path = os.path.join(
2394 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2395
2396 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2397 ["-Djava.library.path=" + java_library_path,
2398 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.sign_sepolicy_path)] +
2399 OPTIONS.extra_sign_sepolicy_args)
2400
2401 cmd.extend([key + OPTIONS.public_key_suffix,
2402 key + OPTIONS.private_key_suffix,
2403 sepolicy])
2404
2405 proc = Run(cmd, stdin=subprocess.PIPE)
2406 if password is not None:
2407 password += "\n"
2408 stdoutdata, _ = proc.communicate(password)
2409 if proc.returncode != 0:
2410 raise ExternalError(
2411 "Failed to run sign sepolicy: return code {}:\n{}".format(
2412 proc.returncode, stdoutdata))
2413 return True
Doug Zongkereef39442009-04-02 12:14:19 -07002414
Doug Zongker37974732010-09-16 17:44:38 -07002415def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002416 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002417
Tao Bao9dd909e2017-11-14 11:27:32 -08002418 For non-AVB images, raise exception if the data is too big. Print a warning
2419 if the data is nearing the maximum size.
2420
2421 For AVB images, the actual image size should be identical to the limit.
2422
2423 Args:
2424 data: A string that contains all the data for the partition.
2425 target: The partition name. The ".img" suffix is optional.
2426 info_dict: The dict to be looked up for relevant info.
2427 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002428 if target.endswith(".img"):
2429 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002430 mount_point = "/" + target
2431
Ying Wangf8824af2014-06-03 14:07:27 -07002432 fs_type = None
2433 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002434 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002435 if mount_point == "/userdata":
2436 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002437 p = info_dict["fstab"][mount_point]
2438 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002439 device = p.device
2440 if "/" in device:
2441 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002442 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002443 if not fs_type or not limit:
2444 return
Doug Zongkereef39442009-04-02 12:14:19 -07002445
Andrew Boie0f9aec82012-02-14 09:32:52 -08002446 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002447 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2448 # path.
2449 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2450 if size != limit:
2451 raise ExternalError(
2452 "Mismatching image size for %s: expected %d actual %d" % (
2453 target, limit, size))
2454 else:
2455 pct = float(size) * 100.0 / limit
2456 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2457 if pct >= 99.0:
2458 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002459
2460 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002461 logger.warning("\n WARNING: %s\n", msg)
2462 else:
2463 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002464
2465
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002466def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002467 """Parses the APK certs info from a given target-files zip.
2468
2469 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2470 tuple with the following elements: (1) a dictionary that maps packages to
2471 certs (based on the "certificate" and "private_key" attributes in the file;
2472 (2) a string representing the extension of compressed APKs in the target files
2473 (e.g ".gz", ".bro").
2474
2475 Args:
2476 tf_zip: The input target_files ZipFile (already open).
2477
2478 Returns:
2479 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2480 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2481 no compressed APKs.
2482 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002483 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002484 compressed_extension = None
2485
Tao Bao0f990332017-09-08 19:02:54 -07002486 # META/apkcerts.txt contains the info for _all_ the packages known at build
2487 # time. Filter out the ones that are not installed.
2488 installed_files = set()
2489 for name in tf_zip.namelist():
2490 basename = os.path.basename(name)
2491 if basename:
2492 installed_files.add(basename)
2493
Tao Baoda30cfa2017-12-01 16:19:46 -08002494 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002495 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002496 if not line:
2497 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002498 m = re.match(
2499 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002500 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2501 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002502 line)
2503 if not m:
2504 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002505
Tao Bao818ddf52018-01-05 11:17:34 -08002506 matches = m.groupdict()
2507 cert = matches["CERT"]
2508 privkey = matches["PRIVKEY"]
2509 name = matches["NAME"]
2510 this_compressed_extension = matches["COMPRESSED"]
2511
2512 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2513 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2514 if cert in SPECIAL_CERT_STRINGS and not privkey:
2515 certmap[name] = cert
2516 elif (cert.endswith(OPTIONS.public_key_suffix) and
2517 privkey.endswith(OPTIONS.private_key_suffix) and
2518 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2519 certmap[name] = cert[:-public_key_suffix_len]
2520 else:
2521 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2522
2523 if not this_compressed_extension:
2524 continue
2525
2526 # Only count the installed files.
2527 filename = name + '.' + this_compressed_extension
2528 if filename not in installed_files:
2529 continue
2530
2531 # Make sure that all the values in the compression map have the same
2532 # extension. We don't support multiple compression methods in the same
2533 # system image.
2534 if compressed_extension:
2535 if this_compressed_extension != compressed_extension:
2536 raise ValueError(
2537 "Multiple compressed extensions: {} vs {}".format(
2538 compressed_extension, this_compressed_extension))
2539 else:
2540 compressed_extension = this_compressed_extension
2541
2542 return (certmap,
2543 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002544
2545
Doug Zongkereef39442009-04-02 12:14:19 -07002546COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002547Global options
2548
2549 -p (--path) <dir>
2550 Prepend <dir>/bin to the list of places to search for binaries run by this
2551 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002552
Doug Zongker05d3dea2009-06-22 11:32:31 -07002553 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002554 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002555
Tao Bao30df8b42018-04-23 15:32:53 -07002556 -x (--extra) <key=value>
2557 Add a key/value pair to the 'extras' dict, which device-specific extension
2558 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002559
Doug Zongkereef39442009-04-02 12:14:19 -07002560 -v (--verbose)
2561 Show command lines being executed.
2562
2563 -h (--help)
2564 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002565
2566 --logfile <file>
2567 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002568"""
2569
Kelvin Zhang0876c412020-06-23 15:06:58 -04002570
Doug Zongkereef39442009-04-02 12:14:19 -07002571def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002572 print(docstring.rstrip("\n"))
2573 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002574
2575
2576def ParseOptions(argv,
2577 docstring,
2578 extra_opts="", extra_long_opts=(),
2579 extra_option_handler=None):
2580 """Parse the options in argv and return any arguments that aren't
2581 flags. docstring is the calling module's docstring, to be displayed
2582 for errors and -h. extra_opts and extra_long_opts are for flags
2583 defined by the caller, which are processed by passing them to
2584 extra_option_handler."""
2585
2586 try:
2587 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002588 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002589 ["help", "verbose", "path=", "signapk_path=",
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002590 "signapk_shared_library_path=", "extra_signapk_args=",
2591 "sign_sepolicy_path=", "extra_sign_sepolicy_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002592 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002593 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2594 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002595 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002596 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002597 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002598 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002599 sys.exit(2)
2600
Doug Zongkereef39442009-04-02 12:14:19 -07002601 for o, a in opts:
2602 if o in ("-h", "--help"):
2603 Usage(docstring)
2604 sys.exit()
2605 elif o in ("-v", "--verbose"):
2606 OPTIONS.verbose = True
2607 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002608 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002609 elif o in ("--signapk_path",):
2610 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002611 elif o in ("--signapk_shared_library_path",):
2612 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002613 elif o in ("--extra_signapk_args",):
2614 OPTIONS.extra_signapk_args = shlex.split(a)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002615 elif o in ("--sign_sepolicy_path",):
2616 OPTIONS.sign_sepolicy_path = a
2617 elif o in ("--extra_sign_sepolicy_args",):
2618 OPTIONS.extra_sign_sepolicy_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002619 elif o in ("--aapt2_path",):
2620 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002621 elif o in ("--java_path",):
2622 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002623 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002624 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002625 elif o in ("--android_jar_path",):
2626 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002627 elif o in ("--public_key_suffix",):
2628 OPTIONS.public_key_suffix = a
2629 elif o in ("--private_key_suffix",):
2630 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002631 elif o in ("--boot_signer_path",):
2632 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002633 elif o in ("--boot_signer_args",):
2634 OPTIONS.boot_signer_args = shlex.split(a)
2635 elif o in ("--verity_signer_path",):
2636 OPTIONS.verity_signer_path = a
2637 elif o in ("--verity_signer_args",):
2638 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07002639 elif o in ("-s", "--device_specific"):
2640 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002641 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002642 key, value = a.split("=", 1)
2643 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002644 elif o in ("--logfile",):
2645 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002646 else:
2647 if extra_option_handler is None or not extra_option_handler(o, a):
2648 assert False, "unknown option \"%s\"" % (o,)
2649
Doug Zongker85448772014-09-09 14:59:20 -07002650 if OPTIONS.search_path:
2651 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2652 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002653
2654 return args
2655
2656
Tao Bao4c851b12016-09-19 13:54:38 -07002657def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002658 """Make a temp file and add it to the list of things to be deleted
2659 when Cleanup() is called. Return the filename."""
2660 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2661 os.close(fd)
2662 OPTIONS.tempfiles.append(fn)
2663 return fn
2664
2665
Tao Bao1c830bf2017-12-25 10:43:47 -08002666def MakeTempDir(prefix='tmp', suffix=''):
2667 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2668
2669 Returns:
2670 The absolute pathname of the new directory.
2671 """
2672 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2673 OPTIONS.tempfiles.append(dir_name)
2674 return dir_name
2675
2676
Doug Zongkereef39442009-04-02 12:14:19 -07002677def Cleanup():
2678 for i in OPTIONS.tempfiles:
2679 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002680 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002681 else:
2682 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002683 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002684
2685
2686class PasswordManager(object):
2687 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002688 self.editor = os.getenv("EDITOR")
2689 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002690
2691 def GetPasswords(self, items):
2692 """Get passwords corresponding to each string in 'items',
2693 returning a dict. (The dict may have keys in addition to the
2694 values in 'items'.)
2695
2696 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2697 user edit that file to add more needed passwords. If no editor is
2698 available, or $ANDROID_PW_FILE isn't define, prompts the user
2699 interactively in the ordinary way.
2700 """
2701
2702 current = self.ReadFile()
2703
2704 first = True
2705 while True:
2706 missing = []
2707 for i in items:
2708 if i not in current or not current[i]:
2709 missing.append(i)
2710 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002711 if not missing:
2712 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002713
2714 for i in missing:
2715 current[i] = ""
2716
2717 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002718 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002719 if sys.version_info[0] >= 3:
2720 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002721 answer = raw_input("try to edit again? [y]> ").strip()
2722 if answer and answer[0] not in 'yY':
2723 raise RuntimeError("key passwords unavailable")
2724 first = False
2725
2726 current = self.UpdateAndReadFile(current)
2727
Kelvin Zhang0876c412020-06-23 15:06:58 -04002728 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002729 """Prompt the user to enter a value (password) for each key in
2730 'current' whose value is fales. Returns a new dict with all the
2731 values.
2732 """
2733 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002734 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002735 if v:
2736 result[k] = v
2737 else:
2738 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002739 result[k] = getpass.getpass(
2740 "Enter password for %s key> " % k).strip()
2741 if result[k]:
2742 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002743 return result
2744
2745 def UpdateAndReadFile(self, current):
2746 if not self.editor or not self.pwfile:
2747 return self.PromptResult(current)
2748
2749 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002750 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002751 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2752 f.write("# (Additional spaces are harmless.)\n\n")
2753
2754 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002755 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002756 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002757 f.write("[[[ %s ]]] %s\n" % (v, k))
2758 if not v and first_line is None:
2759 # position cursor on first line with no password.
2760 first_line = i + 4
2761 f.close()
2762
Tao Bao986ee862018-10-04 15:46:16 -07002763 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002764
2765 return self.ReadFile()
2766
2767 def ReadFile(self):
2768 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002769 if self.pwfile is None:
2770 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002771 try:
2772 f = open(self.pwfile, "r")
2773 for line in f:
2774 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002775 if not line or line[0] == '#':
2776 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002777 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2778 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002779 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002780 else:
2781 result[m.group(2)] = m.group(1)
2782 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002783 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002784 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002785 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002786 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002787
2788
Dan Albert8e0178d2015-01-27 15:53:15 -08002789def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2790 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002791
2792 # http://b/18015246
2793 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2794 # for files larger than 2GiB. We can work around this by adjusting their
2795 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2796 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2797 # it isn't clear to me exactly what circumstances cause this).
2798 # `zipfile.write()` must be used directly to work around this.
2799 #
2800 # This mess can be avoided if we port to python3.
2801 saved_zip64_limit = zipfile.ZIP64_LIMIT
2802 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2803
2804 if compress_type is None:
2805 compress_type = zip_file.compression
2806 if arcname is None:
2807 arcname = filename
2808
2809 saved_stat = os.stat(filename)
2810
2811 try:
2812 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2813 # file to be zipped and reset it when we're done.
2814 os.chmod(filename, perms)
2815
2816 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002817 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2818 # intentional. zip stores datetimes in local time without a time zone
2819 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2820 # in the zip archive.
2821 local_epoch = datetime.datetime.fromtimestamp(0)
2822 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002823 os.utime(filename, (timestamp, timestamp))
2824
2825 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2826 finally:
2827 os.chmod(filename, saved_stat.st_mode)
2828 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2829 zipfile.ZIP64_LIMIT = saved_zip64_limit
2830
2831
Tao Bao58c1b962015-05-20 09:32:18 -07002832def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002833 compress_type=None):
2834 """Wrap zipfile.writestr() function to work around the zip64 limit.
2835
2836 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2837 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2838 when calling crc32(bytes).
2839
2840 But it still works fine to write a shorter string into a large zip file.
2841 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2842 when we know the string won't be too long.
2843 """
2844
2845 saved_zip64_limit = zipfile.ZIP64_LIMIT
2846 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2847
2848 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2849 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002850 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002851 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002852 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002853 else:
Tao Baof3282b42015-04-01 11:21:55 -07002854 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002855 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2856 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2857 # such a case (since
2858 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2859 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2860 # permission bits. We follow the logic in Python 3 to get consistent
2861 # behavior between using the two versions.
2862 if not zinfo.external_attr:
2863 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002864
2865 # If compress_type is given, it overrides the value in zinfo.
2866 if compress_type is not None:
2867 zinfo.compress_type = compress_type
2868
Tao Bao58c1b962015-05-20 09:32:18 -07002869 # If perms is given, it has a priority.
2870 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002871 # If perms doesn't set the file type, mark it as a regular file.
2872 if perms & 0o770000 == 0:
2873 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002874 zinfo.external_attr = perms << 16
2875
Tao Baof3282b42015-04-01 11:21:55 -07002876 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002877 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2878
Dan Albert8b72aef2015-03-23 19:13:21 -07002879 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002880 zipfile.ZIP64_LIMIT = saved_zip64_limit
2881
2882
Tao Bao89d7ab22017-12-14 17:05:33 -08002883def ZipDelete(zip_filename, entries):
2884 """Deletes entries from a ZIP file.
2885
2886 Since deleting entries from a ZIP file is not supported, it shells out to
2887 'zip -d'.
2888
2889 Args:
2890 zip_filename: The name of the ZIP file.
2891 entries: The name of the entry, or the list of names to be deleted.
2892
2893 Raises:
2894 AssertionError: In case of non-zero return from 'zip'.
2895 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002896 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002897 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002898 # If list is empty, nothing to do
2899 if not entries:
2900 return
Tao Bao89d7ab22017-12-14 17:05:33 -08002901 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002902 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002903
2904
Tao Baof3282b42015-04-01 11:21:55 -07002905def ZipClose(zip_file):
2906 # http://b/18015246
2907 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2908 # central directory.
2909 saved_zip64_limit = zipfile.ZIP64_LIMIT
2910 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2911
2912 zip_file.close()
2913
2914 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002915
2916
2917class DeviceSpecificParams(object):
2918 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002919
Doug Zongker05d3dea2009-06-22 11:32:31 -07002920 def __init__(self, **kwargs):
2921 """Keyword arguments to the constructor become attributes of this
2922 object, which is passed to all functions in the device-specific
2923 module."""
Tao Bao38884282019-07-10 22:20:56 -07002924 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002925 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002926 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002927
2928 if self.module is None:
2929 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002930 if not path:
2931 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002932 try:
2933 if os.path.isdir(path):
2934 info = imp.find_module("releasetools", [path])
2935 else:
2936 d, f = os.path.split(path)
2937 b, x = os.path.splitext(f)
2938 if x == ".py":
2939 f = b
2940 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002941 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002942 self.module = imp.load_module("device_specific", *info)
2943 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002944 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002945
2946 def _DoCall(self, function_name, *args, **kwargs):
2947 """Call the named function in the device-specific module, passing
2948 the given args and kwargs. The first argument to the call will be
2949 the DeviceSpecific object itself. If there is no module, or the
2950 module does not define the function, return the value of the
2951 'default' kwarg (which itself defaults to None)."""
2952 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002953 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002954 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2955
2956 def FullOTA_Assertions(self):
2957 """Called after emitting the block of assertions at the top of a
2958 full OTA package. Implementations can add whatever additional
2959 assertions they like."""
2960 return self._DoCall("FullOTA_Assertions")
2961
Doug Zongkere5ff5902012-01-17 10:55:37 -08002962 def FullOTA_InstallBegin(self):
2963 """Called at the start of full OTA installation."""
2964 return self._DoCall("FullOTA_InstallBegin")
2965
Yifan Hong10c530d2018-12-27 17:34:18 -08002966 def FullOTA_GetBlockDifferences(self):
2967 """Called during full OTA installation and verification.
2968 Implementation should return a list of BlockDifference objects describing
2969 the update on each additional partitions.
2970 """
2971 return self._DoCall("FullOTA_GetBlockDifferences")
2972
Doug Zongker05d3dea2009-06-22 11:32:31 -07002973 def FullOTA_InstallEnd(self):
2974 """Called at the end of full OTA installation; typically this is
2975 used to install the image for the device's baseband processor."""
2976 return self._DoCall("FullOTA_InstallEnd")
2977
2978 def IncrementalOTA_Assertions(self):
2979 """Called after emitting the block of assertions at the top of an
2980 incremental OTA package. Implementations can add whatever
2981 additional assertions they like."""
2982 return self._DoCall("IncrementalOTA_Assertions")
2983
Doug Zongkere5ff5902012-01-17 10:55:37 -08002984 def IncrementalOTA_VerifyBegin(self):
2985 """Called at the start of the verification phase of incremental
2986 OTA installation; additional checks can be placed here to abort
2987 the script before any changes are made."""
2988 return self._DoCall("IncrementalOTA_VerifyBegin")
2989
Doug Zongker05d3dea2009-06-22 11:32:31 -07002990 def IncrementalOTA_VerifyEnd(self):
2991 """Called at the end of the verification phase of incremental OTA
2992 installation; additional checks can be placed here to abort the
2993 script before any changes are made."""
2994 return self._DoCall("IncrementalOTA_VerifyEnd")
2995
Doug Zongkere5ff5902012-01-17 10:55:37 -08002996 def IncrementalOTA_InstallBegin(self):
2997 """Called at the start of incremental OTA installation (after
2998 verification is complete)."""
2999 return self._DoCall("IncrementalOTA_InstallBegin")
3000
Yifan Hong10c530d2018-12-27 17:34:18 -08003001 def IncrementalOTA_GetBlockDifferences(self):
3002 """Called during incremental OTA installation and verification.
3003 Implementation should return a list of BlockDifference objects describing
3004 the update on each additional partitions.
3005 """
3006 return self._DoCall("IncrementalOTA_GetBlockDifferences")
3007
Doug Zongker05d3dea2009-06-22 11:32:31 -07003008 def IncrementalOTA_InstallEnd(self):
3009 """Called at the end of incremental OTA installation; typically
3010 this is used to install the image for the device's baseband
3011 processor."""
3012 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003013
Tao Bao9bc6bb22015-11-09 16:58:28 -08003014 def VerifyOTA_Assertions(self):
3015 return self._DoCall("VerifyOTA_Assertions")
3016
Tao Bao76def242017-11-21 09:25:31 -08003017
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003018class File(object):
Tao Bao76def242017-11-21 09:25:31 -08003019 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003020 self.name = name
3021 self.data = data
3022 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09003023 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08003024 self.sha1 = sha1(data).hexdigest()
3025
3026 @classmethod
3027 def FromLocalFile(cls, name, diskname):
3028 f = open(diskname, "rb")
3029 data = f.read()
3030 f.close()
3031 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003032
3033 def WriteToTemp(self):
3034 t = tempfile.NamedTemporaryFile()
3035 t.write(self.data)
3036 t.flush()
3037 return t
3038
Dan Willemsen2ee00d52017-03-05 19:51:56 -08003039 def WriteToDir(self, d):
3040 with open(os.path.join(d, self.name), "wb") as fp:
3041 fp.write(self.data)
3042
Geremy Condra36bd3652014-02-06 19:45:10 -08003043 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07003044 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003045
Tao Bao76def242017-11-21 09:25:31 -08003046
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003047DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04003048 ".gz": "imgdiff",
3049 ".zip": ["imgdiff", "-z"],
3050 ".jar": ["imgdiff", "-z"],
3051 ".apk": ["imgdiff", "-z"],
3052 ".img": "imgdiff",
3053}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003054
Tao Bao76def242017-11-21 09:25:31 -08003055
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003056class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07003057 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003058 self.tf = tf
3059 self.sf = sf
3060 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07003061 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003062
3063 def ComputePatch(self):
3064 """Compute the patch (as a string of data) needed to turn sf into
3065 tf. Returns the same tuple as GetPatch()."""
3066
3067 tf = self.tf
3068 sf = self.sf
3069
Doug Zongker24cd2802012-08-14 16:36:15 -07003070 if self.diff_program:
3071 diff_program = self.diff_program
3072 else:
3073 ext = os.path.splitext(tf.name)[1]
3074 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003075
3076 ttemp = tf.WriteToTemp()
3077 stemp = sf.WriteToTemp()
3078
3079 ext = os.path.splitext(tf.name)[1]
3080
3081 try:
3082 ptemp = tempfile.NamedTemporaryFile()
3083 if isinstance(diff_program, list):
3084 cmd = copy.copy(diff_program)
3085 else:
3086 cmd = [diff_program]
3087 cmd.append(stemp.name)
3088 cmd.append(ttemp.name)
3089 cmd.append(ptemp.name)
3090 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003091 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003092
Doug Zongkerf8340082014-08-05 10:39:37 -07003093 def run():
3094 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003095 if e:
3096 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003097 th = threading.Thread(target=run)
3098 th.start()
3099 th.join(timeout=300) # 5 mins
3100 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003101 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003102 p.terminate()
3103 th.join(5)
3104 if th.is_alive():
3105 p.kill()
3106 th.join()
3107
Tianjie Xua2a9f992018-01-05 15:15:54 -08003108 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003109 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003110 self.patch = None
3111 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003112 diff = ptemp.read()
3113 finally:
3114 ptemp.close()
3115 stemp.close()
3116 ttemp.close()
3117
3118 self.patch = diff
3119 return self.tf, self.sf, self.patch
3120
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003121 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003122 """Returns a tuple of (target_file, source_file, patch_data).
3123
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003124 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003125 computing the patch failed.
3126 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003127 return self.tf, self.sf, self.patch
3128
3129
3130def ComputeDifferences(diffs):
3131 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003132 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003133
3134 # Do the largest files first, to try and reduce the long-pole effect.
3135 by_size = [(i.tf.size, i) for i in diffs]
3136 by_size.sort(reverse=True)
3137 by_size = [i[1] for i in by_size]
3138
3139 lock = threading.Lock()
3140 diff_iter = iter(by_size) # accessed under lock
3141
3142 def worker():
3143 try:
3144 lock.acquire()
3145 for d in diff_iter:
3146 lock.release()
3147 start = time.time()
3148 d.ComputePatch()
3149 dur = time.time() - start
3150 lock.acquire()
3151
3152 tf, sf, patch = d.GetPatch()
3153 if sf.name == tf.name:
3154 name = tf.name
3155 else:
3156 name = "%s (%s)" % (tf.name, sf.name)
3157 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003158 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003159 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003160 logger.info(
3161 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3162 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003163 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003164 except Exception:
3165 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003166 raise
3167
3168 # start worker threads; wait for them all to finish.
3169 threads = [threading.Thread(target=worker)
3170 for i in range(OPTIONS.worker_threads)]
3171 for th in threads:
3172 th.start()
3173 while threads:
3174 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003175
3176
Dan Albert8b72aef2015-03-23 19:13:21 -07003177class BlockDifference(object):
3178 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003179 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003180 self.tgt = tgt
3181 self.src = src
3182 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003183 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003184 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003185
Tao Baodd2a5892015-03-12 12:32:37 -07003186 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003187 version = max(
3188 int(i) for i in
3189 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003190 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003191 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003192
Tianjie Xu41976c72019-07-03 13:57:01 -07003193 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3194 version=self.version,
3195 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003196 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003197 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003198 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003199 self.touched_src_ranges = b.touched_src_ranges
3200 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003201
Yifan Hong10c530d2018-12-27 17:34:18 -08003202 # On devices with dynamic partitions, for new partitions,
3203 # src is None but OPTIONS.source_info_dict is not.
3204 if OPTIONS.source_info_dict is None:
3205 is_dynamic_build = OPTIONS.info_dict.get(
3206 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003207 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003208 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003209 is_dynamic_build = OPTIONS.source_info_dict.get(
3210 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003211 is_dynamic_source = partition in shlex.split(
3212 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003213
Yifan Hongbb2658d2019-01-25 12:30:58 -08003214 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003215 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3216
Yifan Hongbb2658d2019-01-25 12:30:58 -08003217 # For dynamic partitions builds, check partition list in both source
3218 # and target build because new partitions may be added, and existing
3219 # partitions may be removed.
3220 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3221
Yifan Hong10c530d2018-12-27 17:34:18 -08003222 if is_dynamic:
3223 self.device = 'map_partition("%s")' % partition
3224 else:
3225 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003226 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3227 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003228 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003229 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3230 OPTIONS.source_info_dict)
3231 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003232
Tao Baod8d14be2016-02-04 14:26:02 -08003233 @property
3234 def required_cache(self):
3235 return self._required_cache
3236
Tao Bao76def242017-11-21 09:25:31 -08003237 def WriteScript(self, script, output_zip, progress=None,
3238 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003239 if not self.src:
3240 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003241 script.Print("Patching %s image unconditionally..." % (self.partition,))
3242 else:
3243 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003244
Dan Albert8b72aef2015-03-23 19:13:21 -07003245 if progress:
3246 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003247 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003248
3249 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003250 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003251
Tao Bao9bc6bb22015-11-09 16:58:28 -08003252 def WriteStrictVerifyScript(self, script):
3253 """Verify all the blocks in the care_map, including clobbered blocks.
3254
3255 This differs from the WriteVerifyScript() function: a) it prints different
3256 error messages; b) it doesn't allow half-way updated images to pass the
3257 verification."""
3258
3259 partition = self.partition
3260 script.Print("Verifying %s..." % (partition,))
3261 ranges = self.tgt.care_map
3262 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003263 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003264 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3265 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003266 self.device, ranges_str,
3267 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003268 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003269 script.AppendExtra("")
3270
Tao Baod522bdc2016-04-12 15:53:16 -07003271 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003272 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003273
3274 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003275 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003276 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003277
3278 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003279 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003280 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003281 ranges = self.touched_src_ranges
3282 expected_sha1 = self.touched_src_sha1
3283 else:
3284 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3285 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003286
3287 # No blocks to be checked, skipping.
3288 if not ranges:
3289 return
3290
Tao Bao5ece99d2015-05-12 11:42:31 -07003291 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003292 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003293 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003294 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3295 '"%s.patch.dat")) then' % (
3296 self.device, ranges_str, expected_sha1,
3297 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003298 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003299 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003300
Tianjie Xufc3422a2015-12-15 11:53:59 -08003301 if self.version >= 4:
3302
3303 # Bug: 21124327
3304 # When generating incrementals for the system and vendor partitions in
3305 # version 4 or newer, explicitly check the first block (which contains
3306 # the superblock) of the partition to see if it's what we expect. If
3307 # this check fails, give an explicit log message about the partition
3308 # having been remounted R/W (the most likely explanation).
3309 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003310 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003311
3312 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003313 if partition == "system":
3314 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3315 else:
3316 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003317 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003318 'ifelse (block_image_recover({device}, "{ranges}") && '
3319 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003320 'package_extract_file("{partition}.transfer.list"), '
3321 '"{partition}.new.dat", "{partition}.patch.dat"), '
3322 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003323 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003324 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003325 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003326
Tao Baodd2a5892015-03-12 12:32:37 -07003327 # Abort the OTA update. Note that the incremental OTA cannot be applied
3328 # even if it may match the checksum of the target partition.
3329 # a) If version < 3, operations like move and erase will make changes
3330 # unconditionally and damage the partition.
3331 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003332 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003333 if partition == "system":
3334 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3335 else:
3336 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3337 script.AppendExtra((
3338 'abort("E%d: %s partition has unexpected contents");\n'
3339 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003340
Yifan Hong10c530d2018-12-27 17:34:18 -08003341 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003342 partition = self.partition
3343 script.Print('Verifying the updated %s image...' % (partition,))
3344 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3345 ranges = self.tgt.care_map
3346 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003347 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003348 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003349 self.device, ranges_str,
3350 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003351
3352 # Bug: 20881595
3353 # Verify that extended blocks are really zeroed out.
3354 if self.tgt.extended:
3355 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003356 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003357 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003358 self.device, ranges_str,
3359 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003360 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003361 if partition == "system":
3362 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3363 else:
3364 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003365 script.AppendExtra(
3366 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003367 ' abort("E%d: %s partition has unexpected non-zero contents after '
3368 'OTA update");\n'
3369 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003370 else:
3371 script.Print('Verified the updated %s image.' % (partition,))
3372
Tianjie Xu209db462016-05-24 17:34:52 -07003373 if partition == "system":
3374 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3375 else:
3376 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3377
Tao Bao5fcaaef2015-06-01 13:40:49 -07003378 script.AppendExtra(
3379 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003380 ' abort("E%d: %s partition has unexpected contents after OTA '
3381 'update");\n'
3382 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003383
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003384 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003385 ZipWrite(output_zip,
3386 '{}.transfer.list'.format(self.path),
3387 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003388
Tao Bao76def242017-11-21 09:25:31 -08003389 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3390 # its size. Quailty 9 almost triples the compression time but doesn't
3391 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003392 # zip | brotli(quality 6) | brotli(quality 9)
3393 # compressed_size: 942M | 869M (~8% reduced) | 854M
3394 # compression_time: 75s | 265s | 719s
3395 # decompression_time: 15s | 25s | 25s
3396
3397 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003398 brotli_cmd = ['brotli', '--quality=6',
3399 '--output={}.new.dat.br'.format(self.path),
3400 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003401 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003402 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003403
3404 new_data_name = '{}.new.dat.br'.format(self.partition)
3405 ZipWrite(output_zip,
3406 '{}.new.dat.br'.format(self.path),
3407 new_data_name,
3408 compress_type=zipfile.ZIP_STORED)
3409 else:
3410 new_data_name = '{}.new.dat'.format(self.partition)
3411 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3412
Dan Albert8e0178d2015-01-27 15:53:15 -08003413 ZipWrite(output_zip,
3414 '{}.patch.dat'.format(self.path),
3415 '{}.patch.dat'.format(self.partition),
3416 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003417
Tianjie Xu209db462016-05-24 17:34:52 -07003418 if self.partition == "system":
3419 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3420 else:
3421 code = ErrorCode.VENDOR_UPDATE_FAILURE
3422
Yifan Hong10c530d2018-12-27 17:34:18 -08003423 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003424 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003425 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003426 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003427 device=self.device, partition=self.partition,
3428 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003429 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003430
Kelvin Zhang0876c412020-06-23 15:06:58 -04003431 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003432 data = source.ReadRangeSet(ranges)
3433 ctx = sha1()
3434
3435 for p in data:
3436 ctx.update(p)
3437
3438 return ctx.hexdigest()
3439
Kelvin Zhang0876c412020-06-23 15:06:58 -04003440 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003441 """Return the hash value for all zero blocks."""
3442 zero_block = '\x00' * 4096
3443 ctx = sha1()
3444 for _ in range(num_blocks):
3445 ctx.update(zero_block)
3446
3447 return ctx.hexdigest()
3448
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003449
Tianjie Xu41976c72019-07-03 13:57:01 -07003450# Expose these two classes to support vendor-specific scripts
3451DataImage = images.DataImage
3452EmptyImage = images.EmptyImage
3453
Tao Bao76def242017-11-21 09:25:31 -08003454
Doug Zongker96a57e72010-09-26 14:57:41 -07003455# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003456PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003457 "ext4": "EMMC",
3458 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003459 "f2fs": "EMMC",
3460 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003461}
Doug Zongker96a57e72010-09-26 14:57:41 -07003462
Kelvin Zhang0876c412020-06-23 15:06:58 -04003463
Yifan Hongbdb32012020-05-07 12:38:53 -07003464def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3465 """
3466 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3467 backwards compatibility. It aborts if the fstab entry has slotselect option
3468 (unless check_no_slot is explicitly set to False).
3469 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003470 fstab = info["fstab"]
3471 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003472 if check_no_slot:
3473 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003474 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003475 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3476 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003477 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003478
3479
Yifan Hongbdb32012020-05-07 12:38:53 -07003480def GetTypeAndDeviceExpr(mount_point, info):
3481 """
3482 Return the filesystem of the partition, and an edify expression that evaluates
3483 to the device at runtime.
3484 """
3485 fstab = info["fstab"]
3486 if fstab:
3487 p = fstab[mount_point]
3488 device_expr = '"%s"' % fstab[mount_point].device
3489 if p.slotselect:
3490 device_expr = 'add_slot_suffix(%s)' % device_expr
3491 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003492 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003493
3494
3495def GetEntryForDevice(fstab, device):
3496 """
3497 Returns:
3498 The first entry in fstab whose device is the given value.
3499 """
3500 if not fstab:
3501 return None
3502 for mount_point in fstab:
3503 if fstab[mount_point].device == device:
3504 return fstab[mount_point]
3505 return None
3506
Kelvin Zhang0876c412020-06-23 15:06:58 -04003507
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003508def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003509 """Parses and converts a PEM-encoded certificate into DER-encoded.
3510
3511 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3512
3513 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003514 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003515 """
3516 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003517 save = False
3518 for line in data.split("\n"):
3519 if "--END CERTIFICATE--" in line:
3520 break
3521 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003522 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003523 if "--BEGIN CERTIFICATE--" in line:
3524 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003525 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003526 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003527
Tao Bao04e1f012018-02-04 12:13:35 -08003528
3529def ExtractPublicKey(cert):
3530 """Extracts the public key (PEM-encoded) from the given certificate file.
3531
3532 Args:
3533 cert: The certificate filename.
3534
3535 Returns:
3536 The public key string.
3537
3538 Raises:
3539 AssertionError: On non-zero return from 'openssl'.
3540 """
3541 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3542 # While openssl 1.1 writes the key into the given filename followed by '-out',
3543 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3544 # stdout instead.
3545 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3546 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3547 pubkey, stderrdata = proc.communicate()
3548 assert proc.returncode == 0, \
3549 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3550 return pubkey
3551
3552
Tao Bao1ac886e2019-06-26 11:58:22 -07003553def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003554 """Extracts the AVB public key from the given public or private key.
3555
3556 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003557 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003558 key: The input key file, which should be PEM-encoded public or private key.
3559
3560 Returns:
3561 The path to the extracted AVB public key file.
3562 """
3563 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3564 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003565 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003566 return output
3567
3568
Doug Zongker412c02f2014-02-13 10:58:24 -08003569def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3570 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003571 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003572
Tao Bao6d5d6232018-03-09 17:04:42 -08003573 Most of the space in the boot and recovery images is just the kernel, which is
3574 identical for the two, so the resulting patch should be efficient. Add it to
3575 the output zip, along with a shell script that is run from init.rc on first
3576 boot to actually do the patching and install the new recovery image.
3577
3578 Args:
3579 input_dir: The top-level input directory of the target-files.zip.
3580 output_sink: The callback function that writes the result.
3581 recovery_img: File object for the recovery image.
3582 boot_img: File objects for the boot image.
3583 info_dict: A dict returned by common.LoadInfoDict() on the input
3584 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003585 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003586 if info_dict is None:
3587 info_dict = OPTIONS.info_dict
3588
Tao Bao6d5d6232018-03-09 17:04:42 -08003589 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003590 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3591
3592 if board_uses_vendorimage:
3593 # In this case, the output sink is rooted at VENDOR
3594 recovery_img_path = "etc/recovery.img"
3595 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3596 sh_dir = "bin"
3597 else:
3598 # In this case the output sink is rooted at SYSTEM
3599 recovery_img_path = "vendor/etc/recovery.img"
3600 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3601 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003602
Tao Baof2cffbd2015-07-22 12:33:18 -07003603 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003604 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003605
3606 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003607 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003608 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003609 # With system-root-image, boot and recovery images will have mismatching
3610 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3611 # to handle such a case.
3612 if system_root_image:
3613 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003614 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003615 assert not os.path.exists(path)
3616 else:
3617 diff_program = ["imgdiff"]
3618 if os.path.exists(path):
3619 diff_program.append("-b")
3620 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003621 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003622 else:
3623 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003624
3625 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3626 _, _, patch = d.ComputePatch()
3627 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003628
Dan Albertebb19aa2015-03-27 19:11:53 -07003629 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003630 # The following GetTypeAndDevice()s need to use the path in the target
3631 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003632 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3633 check_no_slot=False)
3634 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3635 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003636 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003637 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003638
Tao Baof2cffbd2015-07-22 12:33:18 -07003639 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003640
3641 # Note that we use /vendor to refer to the recovery resources. This will
3642 # work for a separate vendor partition mounted at /vendor or a
3643 # /system/vendor subdirectory on the system partition, for which init will
3644 # create a symlink from /vendor to /system/vendor.
3645
3646 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003647if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3648 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003649 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003650 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3651 log -t recovery "Installing new recovery image: succeeded" || \\
3652 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003653else
3654 log -t recovery "Recovery image already installed"
3655fi
3656""" % {'type': recovery_type,
3657 'device': recovery_device,
3658 'sha1': recovery_img.sha1,
3659 'size': recovery_img.size}
3660 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003661 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003662if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3663 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003664 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003665 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3666 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3667 log -t recovery "Installing new recovery image: succeeded" || \\
3668 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003669else
3670 log -t recovery "Recovery image already installed"
3671fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003672""" % {'boot_size': boot_img.size,
3673 'boot_sha1': boot_img.sha1,
3674 'recovery_size': recovery_img.size,
3675 'recovery_sha1': recovery_img.sha1,
3676 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003677 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003678 'recovery_type': recovery_type,
3679 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003680 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003681
Bill Peckhame868aec2019-09-17 17:06:47 -07003682 # The install script location moved from /system/etc to /system/bin in the L
3683 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3684 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003685
Tao Bao32fcdab2018-10-12 10:30:39 -07003686 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003687
Tao Baoda30cfa2017-12-01 16:19:46 -08003688 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003689
3690
3691class DynamicPartitionUpdate(object):
3692 def __init__(self, src_group=None, tgt_group=None, progress=None,
3693 block_difference=None):
3694 self.src_group = src_group
3695 self.tgt_group = tgt_group
3696 self.progress = progress
3697 self.block_difference = block_difference
3698
3699 @property
3700 def src_size(self):
3701 if not self.block_difference:
3702 return 0
3703 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3704
3705 @property
3706 def tgt_size(self):
3707 if not self.block_difference:
3708 return 0
3709 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3710
3711 @staticmethod
3712 def _GetSparseImageSize(img):
3713 if not img:
3714 return 0
3715 return img.blocksize * img.total_blocks
3716
3717
3718class DynamicGroupUpdate(object):
3719 def __init__(self, src_size=None, tgt_size=None):
3720 # None: group does not exist. 0: no size limits.
3721 self.src_size = src_size
3722 self.tgt_size = tgt_size
3723
3724
3725class DynamicPartitionsDifference(object):
3726 def __init__(self, info_dict, block_diffs, progress_dict=None,
3727 source_info_dict=None):
3728 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003729 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003730
3731 self._remove_all_before_apply = False
3732 if source_info_dict is None:
3733 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003734 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003735
Tao Baof1113e92019-06-18 12:10:14 -07003736 block_diff_dict = collections.OrderedDict(
3737 [(e.partition, e) for e in block_diffs])
3738
Yifan Hong10c530d2018-12-27 17:34:18 -08003739 assert len(block_diff_dict) == len(block_diffs), \
3740 "Duplicated BlockDifference object for {}".format(
3741 [partition for partition, count in
3742 collections.Counter(e.partition for e in block_diffs).items()
3743 if count > 1])
3744
Yifan Hong79997e52019-01-23 16:56:19 -08003745 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003746
3747 for p, block_diff in block_diff_dict.items():
3748 self._partition_updates[p] = DynamicPartitionUpdate()
3749 self._partition_updates[p].block_difference = block_diff
3750
3751 for p, progress in progress_dict.items():
3752 if p in self._partition_updates:
3753 self._partition_updates[p].progress = progress
3754
3755 tgt_groups = shlex.split(info_dict.get(
3756 "super_partition_groups", "").strip())
3757 src_groups = shlex.split(source_info_dict.get(
3758 "super_partition_groups", "").strip())
3759
3760 for g in tgt_groups:
3761 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003762 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003763 assert p in self._partition_updates, \
3764 "{} is in target super_{}_partition_list but no BlockDifference " \
3765 "object is provided.".format(p, g)
3766 self._partition_updates[p].tgt_group = g
3767
3768 for g in src_groups:
3769 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003770 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003771 assert p in self._partition_updates, \
3772 "{} is in source super_{}_partition_list but no BlockDifference " \
3773 "object is provided.".format(p, g)
3774 self._partition_updates[p].src_group = g
3775
Yifan Hong45433e42019-01-18 13:55:25 -08003776 target_dynamic_partitions = set(shlex.split(info_dict.get(
3777 "dynamic_partition_list", "").strip()))
3778 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3779 if u.tgt_size)
3780 assert block_diffs_with_target == target_dynamic_partitions, \
3781 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3782 list(target_dynamic_partitions), list(block_diffs_with_target))
3783
3784 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3785 "dynamic_partition_list", "").strip()))
3786 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3787 if u.src_size)
3788 assert block_diffs_with_source == source_dynamic_partitions, \
3789 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3790 list(source_dynamic_partitions), list(block_diffs_with_source))
3791
Yifan Hong10c530d2018-12-27 17:34:18 -08003792 if self._partition_updates:
3793 logger.info("Updating dynamic partitions %s",
3794 self._partition_updates.keys())
3795
Yifan Hong79997e52019-01-23 16:56:19 -08003796 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003797
3798 for g in tgt_groups:
3799 self._group_updates[g] = DynamicGroupUpdate()
3800 self._group_updates[g].tgt_size = int(info_dict.get(
3801 "super_%s_group_size" % g, "0").strip())
3802
3803 for g in src_groups:
3804 if g not in self._group_updates:
3805 self._group_updates[g] = DynamicGroupUpdate()
3806 self._group_updates[g].src_size = int(source_info_dict.get(
3807 "super_%s_group_size" % g, "0").strip())
3808
3809 self._Compute()
3810
3811 def WriteScript(self, script, output_zip, write_verify_script=False):
3812 script.Comment('--- Start patching dynamic partitions ---')
3813 for p, u in self._partition_updates.items():
3814 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3815 script.Comment('Patch partition %s' % p)
3816 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3817 write_verify_script=False)
3818
3819 op_list_path = MakeTempFile()
3820 with open(op_list_path, 'w') as f:
3821 for line in self._op_list:
3822 f.write('{}\n'.format(line))
3823
3824 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3825
3826 script.Comment('Update dynamic partition metadata')
3827 script.AppendExtra('assert(update_dynamic_partitions('
3828 'package_extract_file("dynamic_partitions_op_list")));')
3829
3830 if write_verify_script:
3831 for p, u in self._partition_updates.items():
3832 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3833 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003834 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003835
3836 for p, u in self._partition_updates.items():
3837 if u.tgt_size and u.src_size <= u.tgt_size:
3838 script.Comment('Patch partition %s' % p)
3839 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3840 write_verify_script=write_verify_script)
3841 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003842 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003843
3844 script.Comment('--- End patching dynamic partitions ---')
3845
3846 def _Compute(self):
3847 self._op_list = list()
3848
3849 def append(line):
3850 self._op_list.append(line)
3851
3852 def comment(line):
3853 self._op_list.append("# %s" % line)
3854
3855 if self._remove_all_before_apply:
3856 comment('Remove all existing dynamic partitions and groups before '
3857 'applying full OTA')
3858 append('remove_all_groups')
3859
3860 for p, u in self._partition_updates.items():
3861 if u.src_group and not u.tgt_group:
3862 append('remove %s' % p)
3863
3864 for p, u in self._partition_updates.items():
3865 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3866 comment('Move partition %s from %s to default' % (p, u.src_group))
3867 append('move %s default' % p)
3868
3869 for p, u in self._partition_updates.items():
3870 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3871 comment('Shrink partition %s from %d to %d' %
3872 (p, u.src_size, u.tgt_size))
3873 append('resize %s %s' % (p, u.tgt_size))
3874
3875 for g, u in self._group_updates.items():
3876 if u.src_size is not None and u.tgt_size is None:
3877 append('remove_group %s' % g)
3878 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003879 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003880 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3881 append('resize_group %s %d' % (g, u.tgt_size))
3882
3883 for g, u in self._group_updates.items():
3884 if u.src_size is None and u.tgt_size is not None:
3885 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3886 append('add_group %s %d' % (g, u.tgt_size))
3887 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003888 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003889 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3890 append('resize_group %s %d' % (g, u.tgt_size))
3891
3892 for p, u in self._partition_updates.items():
3893 if u.tgt_group and not u.src_group:
3894 comment('Add partition %s to group %s' % (p, u.tgt_group))
3895 append('add %s %s' % (p, u.tgt_group))
3896
3897 for p, u in self._partition_updates.items():
3898 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003899 comment('Grow partition %s from %d to %d' %
3900 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003901 append('resize %s %d' % (p, u.tgt_size))
3902
3903 for p, u in self._partition_updates.items():
3904 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3905 comment('Move partition %s from default to %s' %
3906 (p, u.tgt_group))
3907 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003908
3909
jiajia tangf3f842b2021-03-17 21:49:44 +08003910def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003911 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003912 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003913
3914 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003915 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003916
3917 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003918 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003919 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003920 tmp_dir = MakeTempDir('boot_', suffix='.img')
3921 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003922 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3923 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003924 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3925 if not os.path.isfile(ramdisk):
3926 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3927 return None
3928 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003929 if ramdisk_format == RamdiskFormat.LZ4:
3930 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3931 elif ramdisk_format == RamdiskFormat.GZ:
3932 with open(ramdisk, 'rb') as input_stream:
3933 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003934 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3935 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003936 p2.wait()
3937 else:
3938 logger.error('Only support lz4 or minigzip ramdisk format.')
3939 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003940
3941 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3942 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3943 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3944 # the host environment.
3945 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003946 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003947
Yifan Hongc65a0542021-01-07 14:21:01 -08003948 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3949 prop_file = os.path.join(extracted_ramdisk, search_path)
3950 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003951 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003952 logger.warning(
3953 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003954
Yifan Hong7dc51172021-01-12 11:27:39 -08003955 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003956
Yifan Hong85ac5012021-01-07 14:43:46 -08003957 except ExternalError as e:
3958 logger.warning('Unable to get boot image build props: %s', e)
3959 return None
3960
3961
3962def GetBootImageTimestamp(boot_img):
3963 """
3964 Get timestamp from ramdisk within the boot image
3965
3966 Args:
3967 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3968
3969 Return:
3970 An integer that corresponds to the timestamp of the boot image, or None
3971 if file has unknown format. Raise exception if an unexpected error has
3972 occurred.
3973 """
3974 prop_file = GetBootImageBuildProp(boot_img)
3975 if not prop_file:
3976 return None
3977
3978 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3979 if props is None:
3980 return None
3981
3982 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003983 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3984 if timestamp:
3985 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003986 logger.warning(
3987 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003988 return None
3989
3990 except ExternalError as e:
3991 logger.warning('Unable to get boot image timestamp: %s', e)
3992 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003993
3994
3995def GetCareMap(which, imgname):
3996 """Returns the care_map string for the given partition.
3997
3998 Args:
3999 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
4000 imgname: The filename of the image.
4001
4002 Returns:
4003 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
4004 RangeSet; or None.
4005 """
4006 assert which in PARTITIONS_WITH_CARE_MAP
4007
4008 # which + "_image_size" contains the size that the actual filesystem image
4009 # resides in, which is all that needs to be verified. The additional blocks in
4010 # the image file contain verity metadata, by reading which would trigger
4011 # invalid reads.
4012 image_size = OPTIONS.info_dict.get(which + "_image_size")
4013 if not image_size:
4014 return None
4015
David Anderson9e95a022021-08-31 21:32:45 -07004016 disable_sparse = OPTIONS.info_dict.get(which + "_disable_sparse")
4017
Kelvin Zhang27324132021-03-22 15:38:38 -04004018 image_blocks = int(image_size) // 4096 - 1
Kelvin Zhang98ef7bb2022-01-07 14:41:46 -08004019 # It's OK for image_blocks to be 0, because care map ranges are inclusive.
4020 # So 0-0 means "just block 0", which is valid.
4021 assert image_blocks >= 0, "blocks for {} must be non-negative, image size: {}".format(
4022 which, image_size)
Kelvin Zhang27324132021-03-22 15:38:38 -04004023
4024 # For sparse images, we will only check the blocks that are listed in the care
4025 # map, i.e. the ones with meaningful data.
David Anderson9e95a022021-08-31 21:32:45 -07004026 if "extfs_sparse_flag" in OPTIONS.info_dict and not disable_sparse:
Kelvin Zhang27324132021-03-22 15:38:38 -04004027 simg = sparse_img.SparseImage(imgname)
4028 care_map_ranges = simg.care_map.intersect(
4029 rangelib.RangeSet("0-{}".format(image_blocks)))
4030
4031 # Otherwise for non-sparse images, we read all the blocks in the filesystem
4032 # image.
4033 else:
4034 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
4035
4036 return [which, care_map_ranges.to_string_raw()]
4037
4038
4039def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
4040 """Generates and adds care_map.pb for a/b partition that has care_map.
4041
4042 Args:
4043 output_file: The output zip file (needs to be already open),
4044 or file path to write care_map.pb.
4045 ab_partitions: The list of A/B partitions.
4046 image_paths: A map from the partition name to the image path.
4047 """
4048 if not output_file:
4049 raise ExternalError('Expected output_file for AddCareMapForAbOta')
4050
4051 care_map_list = []
4052 for partition in ab_partitions:
4053 partition = partition.strip()
4054 if partition not in PARTITIONS_WITH_CARE_MAP:
4055 continue
4056
4057 verity_block_device = "{}_verity_block_device".format(partition)
4058 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
4059 if (verity_block_device in OPTIONS.info_dict or
4060 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
4061 if partition not in image_paths:
4062 logger.warning('Potential partition with care_map missing from images: %s',
4063 partition)
4064 continue
4065 image_path = image_paths[partition]
4066 if not os.path.exists(image_path):
4067 raise ExternalError('Expected image at path {}'.format(image_path))
4068
4069 care_map = GetCareMap(partition, image_path)
4070 if not care_map:
4071 continue
4072 care_map_list += care_map
4073
4074 # adds fingerprint field to the care_map
4075 # TODO(xunchang) revisit the fingerprint calculation for care_map.
4076 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
4077 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
4078 "ro.{}.build.thumbprint".format(partition)]
4079
4080 present_props = [x for x in prop_name_list if
4081 partition_props and partition_props.GetProp(x)]
4082 if not present_props:
4083 logger.warning(
4084 "fingerprint is not present for partition %s", partition)
4085 property_id, fingerprint = "unknown", "unknown"
4086 else:
4087 property_id = present_props[0]
4088 fingerprint = partition_props.GetProp(property_id)
4089 care_map_list += [property_id, fingerprint]
4090
4091 if not care_map_list:
4092 return
4093
4094 # Converts the list into proto buf message by calling care_map_generator; and
4095 # writes the result to a temp file.
4096 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
4097 suffix=".txt")
4098 with open(temp_care_map_text, 'w') as text_file:
4099 text_file.write('\n'.join(care_map_list))
4100
4101 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
4102 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
4103 RunAndCheckOutput(care_map_gen_cmd)
4104
4105 if not isinstance(output_file, zipfile.ZipFile):
4106 shutil.copy(temp_care_map, output_file)
4107 return
4108 # output_file is a zip file
4109 care_map_path = "META/care_map.pb"
4110 if care_map_path in output_file.namelist():
4111 # Copy the temp file into the OPTIONS.input_tmp dir and update the
4112 # replace_updated_files_list used by add_img_to_target_files
4113 if not OPTIONS.replace_updated_files_list:
4114 OPTIONS.replace_updated_files_list = []
4115 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
4116 OPTIONS.replace_updated_files_list.append(care_map_path)
4117 else:
4118 ZipWrite(output_file, temp_care_map, arcname=care_map_path)
Kelvin Zhang26390482021-11-02 14:31:10 -07004119
4120
4121def IsSparseImage(filepath):
4122 with open(filepath, 'rb') as fp:
4123 # Magic for android sparse image format
4124 # https://source.android.com/devices/bootloader/images
4125 return fp.read(4) == b'\x3A\xFF\x26\xED'