blob: 5196f6321eb1a56da4963289ab2c67431a209d04 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080071 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
72 if "ANDROID_HOST_OUT" in os.environ:
73 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080074 self.signapk_shared_library_path = "lib64" # Relative to search_path
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020075 self.sign_sepolicy_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070076 self.extra_signapk_args = []
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020077 self.extra_sign_sepolicy_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000078 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070079 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080080 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080081 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070082 self.public_key_suffix = ".x509.pem"
83 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070084 # use otatools built boot_signer by default
85 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070086 self.boot_signer_args = []
87 self.verity_signer_path = None
88 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070089 self.verbose = False
90 self.tempfiles = []
91 self.device_specific = None
92 self.extras = {}
93 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070094 self.source_info_dict = None
95 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070096 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070097 # Stash size cannot exceed cache_size * threshold.
98 self.cache_size = None
99 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -0700100 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -0700101 self.host_tools = {}
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +0200102 self.sepolicy_name = 'sepolicy.apex'
Dan Albert8b72aef2015-03-23 19:13:21 -0700103
104
105OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700106
Tao Bao71197512018-10-11 14:08:45 -0700107# The block size that's used across the releasetools scripts.
108BLOCK_SIZE = 4096
109
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800110# Values for "certificate" in apkcerts that mean special things.
111SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
112
Tao Bao5cc0abb2019-03-21 10:18:05 -0700113# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
114# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800115# descriptor into vbmeta.img. When adding a new entry here, the
116# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
117# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000118AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Lucas Wei03230252022-04-18 16:00:40 +0800119 'system', 'system_ext', 'vendor', 'vendor_boot', 'vendor_kernel_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000120 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800121
Tao Bao08c190f2019-06-03 23:07:58 -0700122# Chained VBMeta partitions.
123AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
124
Tianjie Xu861f4132018-09-12 11:49:33 -0700125# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400126PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700127 'system',
128 'vendor',
129 'product',
130 'system_ext',
131 'odm',
132 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700133 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000134 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400135]
Tianjie Xu861f4132018-09-12 11:49:33 -0700136
Yifan Hong5057b952021-01-07 14:09:57 -0800137# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000138PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800139
Yifan Hongc65a0542021-01-07 14:21:01 -0800140# See sysprop.mk. If file is moved, add new search paths here; don't remove
141# existing search paths.
142RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700143
Kelvin Zhang563750f2021-04-28 12:46:17 -0400144
Tianjie Xu209db462016-05-24 17:34:52 -0700145class ErrorCode(object):
146 """Define error_codes for failures that happen during the actual
147 update package installation.
148
149 Error codes 0-999 are reserved for failures before the package
150 installation (i.e. low battery, package verification failure).
151 Detailed code in 'bootable/recovery/error_code.h' """
152
153 SYSTEM_VERIFICATION_FAILURE = 1000
154 SYSTEM_UPDATE_FAILURE = 1001
155 SYSTEM_UNEXPECTED_CONTENTS = 1002
156 SYSTEM_NONZERO_CONTENTS = 1003
157 SYSTEM_RECOVER_FAILURE = 1004
158 VENDOR_VERIFICATION_FAILURE = 2000
159 VENDOR_UPDATE_FAILURE = 2001
160 VENDOR_UNEXPECTED_CONTENTS = 2002
161 VENDOR_NONZERO_CONTENTS = 2003
162 VENDOR_RECOVER_FAILURE = 2004
163 OEM_PROP_MISMATCH = 3000
164 FINGERPRINT_MISMATCH = 3001
165 THUMBPRINT_MISMATCH = 3002
166 OLDER_BUILD = 3003
167 DEVICE_MISMATCH = 3004
168 BAD_PATCH_FILE = 3005
169 INSUFFICIENT_CACHE_SPACE = 3006
170 TUNE_PARTITION_FAILURE = 3007
171 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800172
Tao Bao80921982018-03-21 21:02:19 -0700173
Dan Albert8b72aef2015-03-23 19:13:21 -0700174class ExternalError(RuntimeError):
175 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700176
177
Tao Bao32fcdab2018-10-12 10:30:39 -0700178def InitLogging():
179 DEFAULT_LOGGING_CONFIG = {
180 'version': 1,
181 'disable_existing_loggers': False,
182 'formatters': {
183 'standard': {
184 'format':
185 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
186 'datefmt': '%Y-%m-%d %H:%M:%S',
187 },
188 },
189 'handlers': {
190 'default': {
191 'class': 'logging.StreamHandler',
192 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700193 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700194 },
195 },
196 'loggers': {
197 '': {
198 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700199 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700200 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700201 }
202 }
203 }
204 env_config = os.getenv('LOGGING_CONFIG')
205 if env_config:
206 with open(env_config) as f:
207 config = json.load(f)
208 else:
209 config = DEFAULT_LOGGING_CONFIG
210
211 # Increase the logging level for verbose mode.
212 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700213 config = copy.deepcopy(config)
214 config['handlers']['default']['level'] = 'INFO'
215
216 if OPTIONS.logfile:
217 config = copy.deepcopy(config)
218 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400219 'class': 'logging.FileHandler',
220 'formatter': 'standard',
221 'level': 'INFO',
222 'mode': 'w',
223 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700224 }
225 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700226
227 logging.config.dictConfig(config)
228
229
Yifan Hong8e332ff2020-07-29 17:51:55 -0700230def SetHostToolLocation(tool_name, location):
231 OPTIONS.host_tools[tool_name] = location
232
Kelvin Zhang563750f2021-04-28 12:46:17 -0400233
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900234def FindHostToolPath(tool_name):
235 """Finds the path to the host tool.
236
237 Args:
238 tool_name: name of the tool to find
239 Returns:
240 path to the tool if found under either one of the host_tools map or under
241 the same directory as this binary is located at. If not found, tool_name
242 is returned.
243 """
244 if tool_name in OPTIONS.host_tools:
245 return OPTIONS.host_tools[tool_name]
246
247 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
248 tool_path = os.path.join(my_dir, tool_name)
249 if os.path.exists(tool_path):
250 return tool_path
251
252 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700253
Kelvin Zhang563750f2021-04-28 12:46:17 -0400254
Tao Bao39451582017-05-04 11:10:47 -0700255def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700256 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700257
Tao Bao73dd4f42018-10-04 16:25:33 -0700258 Args:
259 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700260 verbose: Whether the commands should be shown. Default to the global
261 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700262 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
263 stdin, etc. stdout and stderr will default to subprocess.PIPE and
264 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800265 universal_newlines will default to True, as most of the users in
266 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700267
268 Returns:
269 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700270 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700271 if 'stdout' not in kwargs and 'stderr' not in kwargs:
272 kwargs['stdout'] = subprocess.PIPE
273 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800274 if 'universal_newlines' not in kwargs:
275 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700276
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900277 if args:
278 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700279 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900280 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700281
Kelvin Zhang766eea72021-06-03 09:36:08 -0400282 if verbose is None:
283 verbose = OPTIONS.verbose
284
Tao Bao32fcdab2018-10-12 10:30:39 -0700285 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400286 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700287 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700288 return subprocess.Popen(args, **kwargs)
289
290
Tao Bao986ee862018-10-04 15:46:16 -0700291def RunAndCheckOutput(args, verbose=None, **kwargs):
292 """Runs the given command and returns the output.
293
294 Args:
295 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700296 verbose: Whether the commands should be shown. Default to the global
297 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700298 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
299 stdin, etc. stdout and stderr will default to subprocess.PIPE and
300 subprocess.STDOUT respectively unless caller specifies any of them.
301
302 Returns:
303 The output string.
304
305 Raises:
306 ExternalError: On non-zero exit from the command.
307 """
Tao Bao986ee862018-10-04 15:46:16 -0700308 proc = Run(args, verbose=verbose, **kwargs)
309 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800310 if output is None:
311 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700312 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400313 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700314 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700315 if proc.returncode != 0:
316 raise ExternalError(
317 "Failed to run command '{}' (exit code {}):\n{}".format(
318 args, proc.returncode, output))
319 return output
320
321
Tao Baoc765cca2018-01-31 17:32:40 -0800322def RoundUpTo4K(value):
323 rounded_up = value + 4095
324 return rounded_up - (rounded_up % 4096)
325
326
Ying Wang7e6d4e42010-12-13 16:25:36 -0800327def CloseInheritedPipes():
328 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
329 before doing other work."""
330 if platform.system() != "Darwin":
331 return
332 for d in range(3, 1025):
333 try:
334 stat = os.fstat(d)
335 if stat is not None:
336 pipebit = stat[0] & 0x1000
337 if pipebit != 0:
338 os.close(d)
339 except OSError:
340 pass
341
342
Tao Bao1c320f82019-10-04 23:25:12 -0700343class BuildInfo(object):
344 """A class that holds the information for a given build.
345
346 This class wraps up the property querying for a given source or target build.
347 It abstracts away the logic of handling OEM-specific properties, and caches
348 the commonly used properties such as fingerprint.
349
350 There are two types of info dicts: a) build-time info dict, which is generated
351 at build time (i.e. included in a target_files zip); b) OEM info dict that is
352 specified at package generation time (via command line argument
353 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
354 having "oem_fingerprint_properties" in build-time info dict), all the queries
355 would be answered based on build-time info dict only. Otherwise if using
356 OEM-specific properties, some of them will be calculated from two info dicts.
357
358 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800359 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700360
361 Attributes:
362 info_dict: The build-time info dict.
363 is_ab: Whether it's a build that uses A/B OTA.
364 oem_dicts: A list of OEM dicts.
365 oem_props: A list of OEM properties that should be read from OEM dicts; None
366 if the build doesn't use any OEM-specific property.
367 fingerprint: The fingerprint of the build, which would be calculated based
368 on OEM properties if applicable.
369 device: The device name, which could come from OEM dicts if applicable.
370 """
371
372 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
373 "ro.product.manufacturer", "ro.product.model",
374 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700375 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
376 "product", "odm", "vendor", "system_ext", "system"]
377 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
378 "product", "product_services", "odm", "vendor", "system"]
379 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700380
Tianjiefdda51d2021-05-05 14:46:35 -0700381 # The length of vbmeta digest to append to the fingerprint
382 _VBMETA_DIGEST_SIZE_USED = 8
383
384 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700385 """Initializes a BuildInfo instance with the given dicts.
386
387 Note that it only wraps up the given dicts, without making copies.
388
389 Arguments:
390 info_dict: The build-time info dict.
391 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
392 that it always uses the first dict to calculate the fingerprint or the
393 device name. The rest would be used for asserting OEM properties only
394 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700395 use_legacy_id: Use the legacy build id to construct the fingerprint. This
396 is used when we need a BuildInfo class, while the vbmeta digest is
397 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700398
399 Raises:
400 ValueError: On invalid inputs.
401 """
402 self.info_dict = info_dict
403 self.oem_dicts = oem_dicts
404
405 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700406 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700407
Hongguang Chend7c160f2020-05-03 21:24:26 -0700408 # Skip _oem_props if oem_dicts is None to use BuildInfo in
409 # sign_target_files_apks
410 if self.oem_dicts:
411 self._oem_props = info_dict.get("oem_fingerprint_properties")
412 else:
413 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700414
Daniel Normand5fe8622020-01-08 17:01:11 -0800415 def check_fingerprint(fingerprint):
416 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
417 raise ValueError(
418 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
419 "3.2.2. Build Parameters.".format(fingerprint))
420
Daniel Normand5fe8622020-01-08 17:01:11 -0800421 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800422 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800423 try:
424 fingerprint = self.CalculatePartitionFingerprint(partition)
425 check_fingerprint(fingerprint)
426 self._partition_fingerprints[partition] = fingerprint
427 except ExternalError:
428 continue
429 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800430 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800431 # need a fingerprint when creating the image.
432 self._partition_fingerprints[
433 "system_other"] = self._partition_fingerprints["system"]
434
Tao Bao1c320f82019-10-04 23:25:12 -0700435 # These two should be computed only after setting self._oem_props.
436 self._device = self.GetOemProperty("ro.product.device")
437 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800438 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700439
440 @property
441 def is_ab(self):
442 return self._is_ab
443
444 @property
445 def device(self):
446 return self._device
447
448 @property
449 def fingerprint(self):
450 return self._fingerprint
451
452 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400453 def is_vabc(self):
454 vendor_prop = self.info_dict.get("vendor.build.prop")
455 vabc_enabled = vendor_prop and \
456 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
457 return vabc_enabled
458
459 @property
Kelvin Zhanga9a87ec2022-05-04 16:44:52 -0700460 def is_android_r(self):
461 system_prop = self.info_dict.get("system.build.prop")
462 return system_prop and system_prop.GetProp("ro.build.version.release") == "11"
463
464 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700465 def is_vabc_xor(self):
466 vendor_prop = self.info_dict.get("vendor.build.prop")
467 vabc_xor_enabled = vendor_prop and \
468 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
469 return vabc_xor_enabled
470
471 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400472 def vendor_suppressed_vabc(self):
473 vendor_prop = self.info_dict.get("vendor.build.prop")
474 vabc_suppressed = vendor_prop and \
475 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
476 return vabc_suppressed and vabc_suppressed.lower() == "true"
477
478 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700479 def oem_props(self):
480 return self._oem_props
481
482 def __getitem__(self, key):
483 return self.info_dict[key]
484
485 def __setitem__(self, key, value):
486 self.info_dict[key] = value
487
488 def get(self, key, default=None):
489 return self.info_dict.get(key, default)
490
491 def items(self):
492 return self.info_dict.items()
493
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000494 def _GetRawBuildProp(self, prop, partition):
495 prop_file = '{}.build.prop'.format(
496 partition) if partition else 'build.prop'
497 partition_props = self.info_dict.get(prop_file)
498 if not partition_props:
499 return None
500 return partition_props.GetProp(prop)
501
Daniel Normand5fe8622020-01-08 17:01:11 -0800502 def GetPartitionBuildProp(self, prop, partition):
503 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800504
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000505 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
Devin Mooreb5195ff2022-02-11 18:44:26 +0000506 # This comes from the generic ramdisk
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000507 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800508
Daniel Normand5fe8622020-01-08 17:01:11 -0800509 # If provided a partition for this property, only look within that
510 # partition's build.prop.
511 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800512 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800513 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800514 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000515
516 prop_val = self._GetRawBuildProp(prop, partition)
517 if prop_val is not None:
518 return prop_val
519 raise ExternalError("couldn't find %s in %s.build.prop" %
520 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800521
Tao Bao1c320f82019-10-04 23:25:12 -0700522 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800523 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700524 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
525 return self._ResolveRoProductBuildProp(prop)
526
Tianjiefdda51d2021-05-05 14:46:35 -0700527 if prop == "ro.build.id":
528 return self._GetBuildId()
529
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000530 prop_val = self._GetRawBuildProp(prop, None)
531 if prop_val is not None:
532 return prop_val
533
534 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700535
536 def _ResolveRoProductBuildProp(self, prop):
537 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000538 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700539 if prop_val:
540 return prop_val
541
Steven Laver8e2086e2020-04-27 16:26:31 -0700542 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000543 source_order_val = self._GetRawBuildProp(
544 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700545 if source_order_val:
546 source_order = source_order_val.split(",")
547 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700548 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700549
550 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700551 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700552 raise ExternalError(
553 "Invalid ro.product.property_source_order '{}'".format(source_order))
554
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000555 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700556 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000557 "ro.product", "ro.product.{}".format(source_partition), 1)
558 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700559 if prop_val:
560 return prop_val
561
562 raise ExternalError("couldn't resolve {}".format(prop))
563
Steven Laver8e2086e2020-04-27 16:26:31 -0700564 def _GetRoProductPropsDefaultSourceOrder(self):
565 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
566 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000567 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700568 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000569 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700570 if android_version == "10":
571 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
572 # NOTE: float() conversion of android_version will have rounding error.
573 # We are checking for "9" or less, and using "< 10" is well outside of
574 # possible floating point rounding.
575 try:
576 android_version_val = float(android_version)
577 except ValueError:
578 android_version_val = 0
579 if android_version_val < 10:
580 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
581 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
582
Tianjieb37c5be2020-10-15 21:27:10 -0700583 def _GetPlatformVersion(self):
584 version_sdk = self.GetBuildProp("ro.build.version.sdk")
585 # init code switches to version_release_or_codename (see b/158483506). After
586 # API finalization, release_or_codename will be the same as release. This
587 # is the best effort to support pre-S dev stage builds.
588 if int(version_sdk) >= 30:
589 try:
590 return self.GetBuildProp("ro.build.version.release_or_codename")
591 except ExternalError:
592 logger.warning('Failed to find ro.build.version.release_or_codename')
593
594 return self.GetBuildProp("ro.build.version.release")
595
Tianjiefdda51d2021-05-05 14:46:35 -0700596 def _GetBuildId(self):
597 build_id = self._GetRawBuildProp("ro.build.id", None)
598 if build_id:
599 return build_id
600
601 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
602 if not legacy_build_id:
603 raise ExternalError("Couldn't find build id in property file")
604
605 if self.use_legacy_id:
606 return legacy_build_id
607
608 # Append the top 8 chars of vbmeta digest to the existing build id. The
609 # logic needs to match the one in init, so that OTA can deliver correctly.
610 avb_enable = self.info_dict.get("avb_enable") == "true"
611 if not avb_enable:
612 raise ExternalError("AVB isn't enabled when using legacy build id")
613
614 vbmeta_digest = self.info_dict.get("vbmeta_digest")
615 if not vbmeta_digest:
616 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
617 " id")
618 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
619 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
620
621 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
622 return legacy_build_id + '.' + digest_prefix
623
Tianjieb37c5be2020-10-15 21:27:10 -0700624 def _GetPartitionPlatformVersion(self, partition):
625 try:
626 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
627 partition)
628 except ExternalError:
629 return self.GetPartitionBuildProp("ro.build.version.release",
630 partition)
631
Tao Bao1c320f82019-10-04 23:25:12 -0700632 def GetOemProperty(self, key):
633 if self.oem_props is not None and key in self.oem_props:
634 return self.oem_dicts[0][key]
635 return self.GetBuildProp(key)
636
Daniel Normand5fe8622020-01-08 17:01:11 -0800637 def GetPartitionFingerprint(self, partition):
638 return self._partition_fingerprints.get(partition, None)
639
640 def CalculatePartitionFingerprint(self, partition):
641 try:
642 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
643 except ExternalError:
644 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
645 self.GetPartitionBuildProp("ro.product.brand", partition),
646 self.GetPartitionBuildProp("ro.product.name", partition),
647 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700648 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800649 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400650 self.GetPartitionBuildProp(
651 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800652 self.GetPartitionBuildProp("ro.build.type", partition),
653 self.GetPartitionBuildProp("ro.build.tags", partition))
654
Tao Bao1c320f82019-10-04 23:25:12 -0700655 def CalculateFingerprint(self):
656 if self.oem_props is None:
657 try:
658 return self.GetBuildProp("ro.build.fingerprint")
659 except ExternalError:
660 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
661 self.GetBuildProp("ro.product.brand"),
662 self.GetBuildProp("ro.product.name"),
663 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700664 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700665 self.GetBuildProp("ro.build.id"),
666 self.GetBuildProp("ro.build.version.incremental"),
667 self.GetBuildProp("ro.build.type"),
668 self.GetBuildProp("ro.build.tags"))
669 return "%s/%s/%s:%s" % (
670 self.GetOemProperty("ro.product.brand"),
671 self.GetOemProperty("ro.product.name"),
672 self.GetOemProperty("ro.product.device"),
673 self.GetBuildProp("ro.build.thumbprint"))
674
675 def WriteMountOemScript(self, script):
676 assert self.oem_props is not None
677 recovery_mount_options = self.info_dict.get("recovery_mount_options")
678 script.Mount("/oem", recovery_mount_options)
679
680 def WriteDeviceAssertions(self, script, oem_no_mount):
681 # Read the property directly if not using OEM properties.
682 if not self.oem_props:
683 script.AssertDevice(self.device)
684 return
685
686 # Otherwise assert OEM properties.
687 if not self.oem_dicts:
688 raise ExternalError(
689 "No OEM file provided to answer expected assertions")
690
691 for prop in self.oem_props.split():
692 values = []
693 for oem_dict in self.oem_dicts:
694 if prop in oem_dict:
695 values.append(oem_dict[prop])
696 if not values:
697 raise ExternalError(
698 "The OEM file is missing the property %s" % (prop,))
699 script.AssertOemProperty(prop, values, oem_no_mount)
700
701
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000702def ReadFromInputFile(input_file, fn):
703 """Reads the contents of fn from input zipfile or directory."""
704 if isinstance(input_file, zipfile.ZipFile):
705 return input_file.read(fn).decode()
706 else:
707 path = os.path.join(input_file, *fn.split("/"))
708 try:
709 with open(path) as f:
710 return f.read()
711 except IOError as e:
712 if e.errno == errno.ENOENT:
713 raise KeyError(fn)
714
715
Yifan Hong10482a22021-01-07 14:38:41 -0800716def ExtractFromInputFile(input_file, fn):
717 """Extracts the contents of fn from input zipfile or directory into a file."""
718 if isinstance(input_file, zipfile.ZipFile):
719 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500720 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800721 f.write(input_file.read(fn))
722 return tmp_file
723 else:
724 file = os.path.join(input_file, *fn.split("/"))
725 if not os.path.exists(file):
726 raise KeyError(fn)
727 return file
728
Kelvin Zhang563750f2021-04-28 12:46:17 -0400729
jiajia tangf3f842b2021-03-17 21:49:44 +0800730class RamdiskFormat(object):
731 LZ4 = 1
732 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800733
Kelvin Zhang563750f2021-04-28 12:46:17 -0400734
TJ Rhoades6f488e92022-05-01 22:16:22 -0700735def GetRamdiskFormat(info_dict):
jiajia tang836f76b2021-04-02 14:48:26 +0800736 if info_dict.get('lz4_ramdisks') == 'true':
737 ramdisk_format = RamdiskFormat.LZ4
738 else:
739 ramdisk_format = RamdiskFormat.GZ
740 return ramdisk_format
741
Kelvin Zhang563750f2021-04-28 12:46:17 -0400742
Tao Bao410ad8b2018-08-24 12:08:38 -0700743def LoadInfoDict(input_file, repacking=False):
744 """Loads the key/value pairs from the given input target_files.
745
Tianjiea85bdf02020-07-29 11:56:19 -0700746 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700747 checks and returns the parsed key/value pairs for to the given build. It's
748 usually called early when working on input target_files files, e.g. when
749 generating OTAs, or signing builds. Note that the function may be called
750 against an old target_files file (i.e. from past dessert releases). So the
751 property parsing needs to be backward compatible.
752
753 In a `META/misc_info.txt`, a few properties are stored as links to the files
754 in the PRODUCT_OUT directory. It works fine with the build system. However,
755 they are no longer available when (re)generating images from target_files zip.
756 When `repacking` is True, redirect these properties to the actual files in the
757 unzipped directory.
758
759 Args:
760 input_file: The input target_files file, which could be an open
761 zipfile.ZipFile instance, or a str for the dir that contains the files
762 unzipped from a target_files file.
763 repacking: Whether it's trying repack an target_files file after loading the
764 info dict (default: False). If so, it will rewrite a few loaded
765 properties (e.g. selinux_fc, root_dir) to point to the actual files in
766 target_files file. When doing repacking, `input_file` must be a dir.
767
768 Returns:
769 A dict that contains the parsed key/value pairs.
770
771 Raises:
772 AssertionError: On invalid input arguments.
773 ValueError: On malformed input values.
774 """
775 if repacking:
776 assert isinstance(input_file, str), \
777 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700778
Doug Zongkerc9253822014-02-04 12:17:58 -0800779 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000780 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800781
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700782 try:
Michael Runge6e836112014-04-15 17:40:21 -0700783 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700784 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700785 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700786
Tao Bao410ad8b2018-08-24 12:08:38 -0700787 if "recovery_api_version" not in d:
788 raise ValueError("Failed to find 'recovery_api_version'")
789 if "fstab_version" not in d:
790 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800791
Tao Bao410ad8b2018-08-24 12:08:38 -0700792 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700793 # "selinux_fc" properties should point to the file_contexts files
794 # (file_contexts.bin) under META/.
795 for key in d:
796 if key.endswith("selinux_fc"):
797 fc_basename = os.path.basename(d[key])
798 fc_config = os.path.join(input_file, "META", fc_basename)
799 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700800
Daniel Norman72c626f2019-05-13 15:58:14 -0700801 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700802
Tom Cherryd14b8952018-08-09 14:26:00 -0700803 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700804 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700805 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700806 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700807
David Anderson0ec64ac2019-12-06 12:21:18 -0800808 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700809 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000810 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800811 key_name = part_name + "_base_fs_file"
812 if key_name not in d:
813 continue
814 basename = os.path.basename(d[key_name])
815 base_fs_file = os.path.join(input_file, "META", basename)
816 if os.path.exists(base_fs_file):
817 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700818 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700819 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800820 "Failed to find %s base fs file: %s", part_name, base_fs_file)
821 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700822
Doug Zongker37974732010-09-16 17:44:38 -0700823 def makeint(key):
824 if key in d:
825 d[key] = int(d[key], 0)
826
827 makeint("recovery_api_version")
828 makeint("blocksize")
829 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700830 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700831 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700832 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700833 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800834 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700835
Steve Muckle903a1ca2020-05-07 17:32:10 -0700836 boot_images = "boot.img"
837 if "boot_images" in d:
838 boot_images = d["boot_images"]
839 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400840 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700841
Tao Bao765668f2019-10-04 22:03:00 -0700842 # Load recovery fstab if applicable.
843 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
TJ Rhoades6f488e92022-05-01 22:16:22 -0700844 ramdisk_format = GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800845
Tianjie Xu861f4132018-09-12 11:49:33 -0700846 # Tries to load the build props for all partitions with care_map, including
847 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800848 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800849 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000850 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800851 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700852 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800853
Tao Bao3ed35d32019-10-07 20:48:48 -0700854 # Set up the salt (based on fingerprint) that will be used when adding AVB
855 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800856 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700857 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800858 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800859 fingerprint = build_info.GetPartitionFingerprint(partition)
860 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400861 d["avb_{}_salt".format(partition)] = sha256(
862 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700863
Yong Ma253b1062022-08-18 09:53:27 +0000864 # Set up the salt for partitions without build.prop
865 if build_info.fingerprint:
866 d["avb_salt"] = sha256(build_info.fingerprint.encode()).hexdigest()
867
Tianjiefdda51d2021-05-05 14:46:35 -0700868 # Set the vbmeta digest if exists
869 try:
870 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
871 except KeyError:
872 pass
873
Kelvin Zhang39aea442020-08-17 11:04:25 -0400874 try:
875 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
876 except KeyError:
877 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700878 return d
879
Tao Baod1de6f32017-03-01 16:38:48 -0800880
Daniel Norman4cc9df62019-07-18 10:11:07 -0700881def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900882 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700883 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900884
Daniel Norman4cc9df62019-07-18 10:11:07 -0700885
886def LoadDictionaryFromFile(file_path):
887 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900888 return LoadDictionaryFromLines(lines)
889
890
Michael Runge6e836112014-04-15 17:40:21 -0700891def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700892 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700893 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700894 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700895 if not line or line.startswith("#"):
896 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700897 if "=" in line:
898 name, value = line.split("=", 1)
899 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700900 return d
901
Tao Baod1de6f32017-03-01 16:38:48 -0800902
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000903class PartitionBuildProps(object):
904 """The class holds the build prop of a particular partition.
905
906 This class loads the build.prop and holds the build properties for a given
907 partition. It also partially recognizes the 'import' statement in the
908 build.prop; and calculates alternative values of some specific build
909 properties during runtime.
910
911 Attributes:
912 input_file: a zipped target-file or an unzipped target-file directory.
913 partition: name of the partition.
914 props_allow_override: a list of build properties to search for the
915 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000916 build_props: a dict of build properties for the given partition.
917 prop_overrides: a set of props that are overridden by import.
918 placeholder_values: A dict of runtime variables' values to replace the
919 placeholders in the build.prop file. We expect exactly one value for
920 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800921 ramdisk_format: If name is "boot", the format of ramdisk inside the
922 boot image. Otherwise, its value is ignored.
923 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000924 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400925
Tianjie Xu9afb2212020-05-10 21:48:15 +0000926 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000927 self.input_file = input_file
928 self.partition = name
929 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000930 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000931 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000932 self.prop_overrides = set()
933 self.placeholder_values = {}
934 if placeholder_values:
935 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000936
937 @staticmethod
938 def FromDictionary(name, build_props):
939 """Constructs an instance from a build prop dictionary."""
940
941 props = PartitionBuildProps("unknown", name)
942 props.build_props = build_props.copy()
943 return props
944
945 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800946 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000947 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800948
Devin Mooreafdd7c72021-12-13 22:04:08 +0000949 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400950 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000951 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800952 else:
953 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
954
955 props = PartitionBuildProps(input_file, name, placeholder_values)
956 props._LoadBuildProp(data)
957 return props
958
959 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000960 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800961 """
962 Read build.prop for boot image from input_file.
963 Return empty string if not found.
964 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000965 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800966 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000967 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800968 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000969 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800970 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800971 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800972 if prop_file is None:
973 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500974 with open(prop_file, "r") as f:
975 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800976
977 @staticmethod
978 def _ReadPartitionPropFile(input_file, name):
979 """
980 Read build.prop for name from input_file.
981 Return empty string if not found.
982 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000983 data = ''
984 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
985 '{}/build.prop'.format(name.upper())]:
986 try:
987 data = ReadFromInputFile(input_file, prop_file)
988 break
989 except KeyError:
990 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -0800991 if data == '':
992 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -0800993 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000994
Yifan Hong125d0b62020-09-24 17:07:03 -0700995 @staticmethod
996 def FromBuildPropFile(name, build_prop_file):
997 """Constructs an instance from a build prop file."""
998
999 props = PartitionBuildProps("unknown", name)
1000 with open(build_prop_file) as f:
1001 props._LoadBuildProp(f.read())
1002 return props
1003
Tianjie Xu9afb2212020-05-10 21:48:15 +00001004 def _LoadBuildProp(self, data):
1005 for line in data.split('\n'):
1006 line = line.strip()
1007 if not line or line.startswith("#"):
1008 continue
1009 if line.startswith("import"):
1010 overrides = self._ImportParser(line)
1011 duplicates = self.prop_overrides.intersection(overrides.keys())
1012 if duplicates:
1013 raise ValueError('prop {} is overridden multiple times'.format(
1014 ','.join(duplicates)))
1015 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1016 self.build_props.update(overrides)
1017 elif "=" in line:
1018 name, value = line.split("=", 1)
1019 if name in self.prop_overrides:
1020 raise ValueError('prop {} is set again after overridden by import '
1021 'statement'.format(name))
1022 self.build_props[name] = value
1023
1024 def _ImportParser(self, line):
1025 """Parses the build prop in a given import statement."""
1026
1027 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001028 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001029 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001030
1031 if len(tokens) == 3:
1032 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1033 return {}
1034
Tianjie Xu9afb2212020-05-10 21:48:15 +00001035 import_path = tokens[1]
1036 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001037 logger.warn('Unrecognized import path {}'.format(line))
1038 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001039
1040 # We only recognize a subset of import statement that the init process
1041 # supports. And we can loose the restriction based on how the dynamic
1042 # fingerprint is used in practice. The placeholder format should be
1043 # ${placeholder}, and its value should be provided by the caller through
1044 # the placeholder_values.
1045 for prop, value in self.placeholder_values.items():
1046 prop_place_holder = '${{{}}}'.format(prop)
1047 if prop_place_holder in import_path:
1048 import_path = import_path.replace(prop_place_holder, value)
1049 if '$' in import_path:
1050 logger.info('Unresolved place holder in import path %s', import_path)
1051 return {}
1052
1053 import_path = import_path.replace('/{}'.format(self.partition),
1054 self.partition.upper())
1055 logger.info('Parsing build props override from %s', import_path)
1056
1057 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1058 d = LoadDictionaryFromLines(lines)
1059 return {key: val for key, val in d.items()
1060 if key in self.props_allow_override}
1061
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001062 def GetProp(self, prop):
1063 return self.build_props.get(prop)
1064
1065
Tianjie Xucfa86222016-03-07 16:31:19 -08001066def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1067 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001068 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001069 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001070 self.mount_point = mount_point
1071 self.fs_type = fs_type
1072 self.device = device
1073 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001074 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001075 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001076
1077 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001078 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001079 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001080 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001081 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001082
Tao Baod1de6f32017-03-01 16:38:48 -08001083 assert fstab_version == 2
1084
1085 d = {}
1086 for line in data.split("\n"):
1087 line = line.strip()
1088 if not line or line.startswith("#"):
1089 continue
1090
1091 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1092 pieces = line.split()
1093 if len(pieces) != 5:
1094 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1095
1096 # Ignore entries that are managed by vold.
1097 options = pieces[4]
1098 if "voldmanaged=" in options:
1099 continue
1100
1101 # It's a good line, parse it.
1102 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001103 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001104 options = options.split(",")
1105 for i in options:
1106 if i.startswith("length="):
1107 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001108 elif i == "slotselect":
1109 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001110 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001111 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001112 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001113
Tao Baod1de6f32017-03-01 16:38:48 -08001114 mount_flags = pieces[3]
1115 # Honor the SELinux context if present.
1116 context = None
1117 for i in mount_flags.split(","):
1118 if i.startswith("context="):
1119 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001120
Tao Baod1de6f32017-03-01 16:38:48 -08001121 mount_point = pieces[1]
1122 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001123 device=pieces[0], length=length, context=context,
1124 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001125
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001126 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001127 # system. Other areas assume system is always at "/system" so point /system
1128 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001129 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001130 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001131 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001132 return d
1133
1134
Tao Bao765668f2019-10-04 22:03:00 -07001135def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1136 """Finds the path to recovery fstab and loads its contents."""
1137 # recovery fstab is only meaningful when installing an update via recovery
1138 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001139 if info_dict.get('ab_update') == 'true' and \
1140 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001141 return None
1142
1143 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1144 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1145 # cases, since it may load the info_dict from an old build (e.g. when
1146 # generating incremental OTAs from that build).
1147 system_root_image = info_dict.get('system_root_image') == 'true'
1148 if info_dict.get('no_recovery') != 'true':
1149 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1150 if isinstance(input_file, zipfile.ZipFile):
1151 if recovery_fstab_path not in input_file.namelist():
1152 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1153 else:
1154 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1155 if not os.path.exists(path):
1156 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1157 return LoadRecoveryFSTab(
1158 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1159 system_root_image)
1160
1161 if info_dict.get('recovery_as_boot') == 'true':
1162 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1163 if isinstance(input_file, zipfile.ZipFile):
1164 if recovery_fstab_path not in input_file.namelist():
1165 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1166 else:
1167 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1168 if not os.path.exists(path):
1169 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1170 return LoadRecoveryFSTab(
1171 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1172 system_root_image)
1173
1174 return None
1175
1176
Doug Zongker37974732010-09-16 17:44:38 -07001177def DumpInfoDict(d):
1178 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001179 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001180
Dan Albert8b72aef2015-03-23 19:13:21 -07001181
Daniel Norman55417142019-11-25 16:04:36 -08001182def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001183 """Merges dynamic partition info variables.
1184
1185 Args:
1186 framework_dict: The dictionary of dynamic partition info variables from the
1187 partial framework target files.
1188 vendor_dict: The dictionary of dynamic partition info variables from the
1189 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001190
1191 Returns:
1192 The merged dynamic partition info dictionary.
1193 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001194
1195 def uniq_concat(a, b):
jiajia tange5ddfcd2022-06-21 10:36:12 +08001196 combined = set(a.split())
1197 combined.update(set(b.split()))
Daniel Normanb0c75912020-09-24 14:30:21 -07001198 combined = [item.strip() for item in combined if item.strip()]
1199 return " ".join(sorted(combined))
1200
1201 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001202 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001203 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1204
1205 merged_dict = {"use_dynamic_partitions": "true"}
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001206 # For keys-value pairs that are the same, copy to merged dict
1207 for key in vendor_dict.keys():
1208 if key in framework_dict and framework_dict[key] == vendor_dict[key]:
1209 merged_dict[key] = vendor_dict[key]
Daniel Normanb0c75912020-09-24 14:30:21 -07001210
1211 merged_dict["dynamic_partition_list"] = uniq_concat(
1212 framework_dict.get("dynamic_partition_list", ""),
1213 vendor_dict.get("dynamic_partition_list", ""))
1214
1215 # Super block devices are defined by the vendor dict.
1216 if "super_block_devices" in vendor_dict:
1217 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001218 for block_device in merged_dict["super_block_devices"].split():
Daniel Normanb0c75912020-09-24 14:30:21 -07001219 key = "super_%s_device_size" % block_device
1220 if key not in vendor_dict:
1221 raise ValueError("Vendor dict does not contain required key %s." % key)
1222 merged_dict[key] = vendor_dict[key]
1223
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001224 # Partition groups and group sizes are defined by the vendor dict because
1225 # these values may vary for each board that uses a shared system image.
1226 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001227 for partition_group in merged_dict["super_partition_groups"].split():
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001228 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001229 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001230 if key not in vendor_dict:
1231 raise ValueError("Vendor dict does not contain required key %s." % key)
1232 merged_dict[key] = vendor_dict[key]
1233
1234 # Set the partition group's partition list using a concatenation of the
1235 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001236 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001237 merged_dict[key] = uniq_concat(
1238 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301239
Daniel Normanb0c75912020-09-24 14:30:21 -07001240 # Various other flags should be copied from the vendor dict, if defined.
1241 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1242 "super_metadata_device", "super_partition_error_limit",
1243 "super_partition_size"):
1244 if key in vendor_dict.keys():
1245 merged_dict[key] = vendor_dict[key]
1246
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001247 return merged_dict
1248
1249
Daniel Norman21c34f72020-11-11 17:25:50 -08001250def PartitionMapFromTargetFiles(target_files_dir):
1251 """Builds a map from partition -> path within an extracted target files directory."""
1252 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1253 possible_subdirs = {
1254 "system": ["SYSTEM"],
1255 "vendor": ["VENDOR", "SYSTEM/vendor"],
1256 "product": ["PRODUCT", "SYSTEM/product"],
1257 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1258 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1259 "vendor_dlkm": [
1260 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1261 ],
1262 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001263 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001264 }
1265 partition_map = {}
1266 for partition, subdirs in possible_subdirs.items():
1267 for subdir in subdirs:
1268 if os.path.exists(os.path.join(target_files_dir, subdir)):
1269 partition_map[partition] = subdir
1270 break
1271 return partition_map
1272
1273
Daniel Normand3351562020-10-29 12:33:11 -07001274def SharedUidPartitionViolations(uid_dict, partition_groups):
1275 """Checks for APK sharedUserIds that cross partition group boundaries.
1276
1277 This uses a single or merged build's shareduid_violation_modules.json
1278 output file, as generated by find_shareduid_violation.py or
1279 core/tasks/find-shareduid-violation.mk.
1280
1281 An error is defined as a sharedUserId that is found in a set of partitions
1282 that span more than one partition group.
1283
1284 Args:
1285 uid_dict: A dictionary created by using the standard json module to read a
1286 complete shareduid_violation_modules.json file.
1287 partition_groups: A list of groups, where each group is a list of
1288 partitions.
1289
1290 Returns:
1291 A list of error messages.
1292 """
1293 errors = []
1294 for uid, partitions in uid_dict.items():
1295 found_in_groups = [
1296 group for group in partition_groups
1297 if set(partitions.keys()) & set(group)
1298 ]
1299 if len(found_in_groups) > 1:
1300 errors.append(
1301 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1302 % (uid, ",".join(sorted(partitions.keys()))))
1303 return errors
1304
1305
Daniel Norman21c34f72020-11-11 17:25:50 -08001306def RunHostInitVerifier(product_out, partition_map):
1307 """Runs host_init_verifier on the init rc files within partitions.
1308
1309 host_init_verifier searches the etc/init path within each partition.
1310
1311 Args:
1312 product_out: PRODUCT_OUT directory, containing partition directories.
1313 partition_map: A map of partition name -> relative path within product_out.
1314 """
1315 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1316 cmd = ["host_init_verifier"]
1317 for partition, path in partition_map.items():
1318 if partition not in allowed_partitions:
1319 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1320 partition)
1321 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1322 # Add --property-contexts if the file exists on the partition.
1323 property_contexts = "%s_property_contexts" % (
1324 "plat" if partition == "system" else partition)
1325 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1326 property_contexts)
1327 if os.path.exists(property_contexts_path):
1328 cmd.append("--property-contexts=%s" % property_contexts_path)
1329 # Add the passwd file if the file exists on the partition.
1330 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1331 if os.path.exists(passwd_path):
1332 cmd.extend(["-p", passwd_path])
1333 return RunAndCheckOutput(cmd)
1334
1335
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001336def AppendAVBSigningArgs(cmd, partition):
1337 """Append signing arguments for avbtool."""
1338 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1339 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001340 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1341 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1342 if os.path.exists(new_key_path):
1343 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001344 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1345 if key_path and algorithm:
1346 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001347 avb_salt = OPTIONS.info_dict.get("avb_salt")
1348 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001349 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001350 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001351
1352
Tao Bao765668f2019-10-04 22:03:00 -07001353def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001354 """Returns the VBMeta arguments for partition.
1355
1356 It sets up the VBMeta argument by including the partition descriptor from the
1357 given 'image', or by configuring the partition as a chained partition.
1358
1359 Args:
1360 partition: The name of the partition (e.g. "system").
1361 image: The path to the partition image.
1362 info_dict: A dict returned by common.LoadInfoDict(). Will use
1363 OPTIONS.info_dict if None has been given.
1364
1365 Returns:
1366 A list of VBMeta arguments.
1367 """
1368 if info_dict is None:
1369 info_dict = OPTIONS.info_dict
1370
1371 # Check if chain partition is used.
1372 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001373 if not key_path:
1374 return ["--include_descriptors_from_image", image]
1375
1376 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1377 # into vbmeta.img. The recovery image will be configured on an independent
1378 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1379 # See details at
1380 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001381 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001382 return []
1383
1384 # Otherwise chain the partition into vbmeta.
1385 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1386 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001387
1388
Tao Bao02a08592018-07-22 12:40:45 -07001389def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1390 """Constructs and returns the arg to build or verify a chained partition.
1391
1392 Args:
1393 partition: The partition name.
1394 info_dict: The info dict to look up the key info and rollback index
1395 location.
1396 key: The key to be used for building or verifying the partition. Defaults to
1397 the key listed in info_dict.
1398
1399 Returns:
1400 A string of form "partition:rollback_index_location:key" that can be used to
1401 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001402 """
1403 if key is None:
1404 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001405 if key and not os.path.exists(key) and OPTIONS.search_path:
1406 new_key_path = os.path.join(OPTIONS.search_path, key)
1407 if os.path.exists(new_key_path):
1408 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001409 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001410 rollback_index_location = info_dict[
1411 "avb_" + partition + "_rollback_index_location"]
1412 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1413
1414
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001415def _HasGkiCertificationArgs():
1416 return ("gki_signing_key_path" in OPTIONS.info_dict and
1417 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001418
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001419
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001420def _GenerateGkiCertificate(image, image_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001421 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001422 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001423
1424 if not os.path.exists(key_path) and OPTIONS.search_path:
1425 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1426 if os.path.exists(new_key_path):
1427 key_path = new_key_path
1428
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001429 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001430 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001431 raise ExternalError(
1432 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001433
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001434 output_certificate = tempfile.NamedTemporaryFile()
1435 cmd = [
1436 "generate_gki_certificate",
1437 "--name", image_name,
1438 "--algorithm", algorithm,
1439 "--key", key_path,
1440 "--output", output_certificate.name,
1441 image,
1442 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001443
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001444 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1445 signature_args = signature_args.strip()
1446 if signature_args:
1447 cmd.extend(["--additional_avb_args", signature_args])
1448
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001449 args = OPTIONS.info_dict.get("avb_boot_add_hash_footer_args", "")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001450 args = args.strip()
1451 if args:
1452 cmd.extend(["--additional_avb_args", args])
1453
1454 RunAndCheckOutput(cmd)
1455
1456 output_certificate.seek(os.SEEK_SET, 0)
1457 data = output_certificate.read()
1458 output_certificate.close()
1459 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001460
1461
Daniel Norman276f0622019-07-26 14:13:51 -07001462def BuildVBMeta(image_path, partitions, name, needed_partitions):
1463 """Creates a VBMeta image.
1464
1465 It generates the requested VBMeta image. The requested image could be for
1466 top-level or chained VBMeta image, which is determined based on the name.
1467
1468 Args:
1469 image_path: The output path for the new VBMeta image.
1470 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001471 values. Only valid partition names are accepted, as partitions listed
1472 in common.AVB_PARTITIONS and custom partitions listed in
1473 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001474 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1475 needed_partitions: Partitions whose descriptors should be included into the
1476 generated VBMeta image.
1477
1478 Raises:
1479 AssertionError: On invalid input args.
1480 """
1481 avbtool = OPTIONS.info_dict["avb_avbtool"]
1482 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1483 AppendAVBSigningArgs(cmd, name)
1484
Hongguang Chenf23364d2020-04-27 18:36:36 -07001485 custom_partitions = OPTIONS.info_dict.get(
1486 "avb_custom_images_partition_list", "").strip().split()
1487
Daniel Norman276f0622019-07-26 14:13:51 -07001488 for partition, path in partitions.items():
1489 if partition not in needed_partitions:
1490 continue
1491 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001492 partition in AVB_VBMETA_PARTITIONS or
1493 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001494 'Unknown partition: {}'.format(partition)
1495 assert os.path.exists(path), \
1496 'Failed to find {} for {}'.format(path, partition)
1497 cmd.extend(GetAvbPartitionArg(partition, path))
1498
1499 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1500 if args and args.strip():
1501 split_args = shlex.split(args)
1502 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001503 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001504 # as a path relative to source tree, which may not be available at the
1505 # same location when running this script (we have the input target_files
1506 # zip only). For such cases, we additionally scan other locations (e.g.
1507 # IMAGES/, RADIO/, etc) before bailing out.
1508 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001509 chained_image = split_args[index + 1]
1510 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001511 continue
1512 found = False
1513 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1514 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001515 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001516 if os.path.exists(alt_path):
1517 split_args[index + 1] = alt_path
1518 found = True
1519 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001520 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001521 cmd.extend(split_args)
1522
1523 RunAndCheckOutput(cmd)
1524
1525
jiajia tang836f76b2021-04-02 14:48:26 +08001526def _MakeRamdisk(sourcedir, fs_config_file=None,
1527 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001528 ramdisk_img = tempfile.NamedTemporaryFile()
1529
1530 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1531 cmd = ["mkbootfs", "-f", fs_config_file,
1532 os.path.join(sourcedir, "RAMDISK")]
1533 else:
1534 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1535 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001536 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001537 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001538 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001539 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001540 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001541 else:
1542 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001543
1544 p2.wait()
1545 p1.wait()
1546 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001547 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001548
1549 return ramdisk_img
1550
1551
Steve Muckle9793cf62020-04-08 18:27:00 -07001552def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001553 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001554 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001555
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001556 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001557 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1558 we are building a two-step special image (i.e. building a recovery image to
1559 be loaded into /boot in two-step OTAs).
1560
1561 Return the image data, or None if sourcedir does not appear to contains files
1562 for building the requested image.
1563 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001564
Yifan Hong63c5ca12020-10-08 11:54:02 -07001565 if info_dict is None:
1566 info_dict = OPTIONS.info_dict
1567
Steve Muckle9793cf62020-04-08 18:27:00 -07001568 # "boot" or "recovery", without extension.
1569 partition_name = os.path.basename(sourcedir).lower()
1570
Yifan Hong63c5ca12020-10-08 11:54:02 -07001571 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001572 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001573 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1574 logger.info("Excluded kernel binary from recovery image.")
1575 else:
1576 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001577 elif partition_name == "init_boot":
1578 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001579 else:
1580 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001581 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001582 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001583 return None
1584
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001585 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1586
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001587 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001588 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001589
Doug Zongkereef39442009-04-02 12:14:19 -07001590 img = tempfile.NamedTemporaryFile()
1591
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001592 if has_ramdisk:
TJ Rhoades6f488e92022-05-01 22:16:22 -07001593 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001594 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1595 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001596
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001597 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1598 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1599
Yifan Hong63c5ca12020-10-08 11:54:02 -07001600 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001601 if kernel_path is not None:
1602 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001603
Benoit Fradina45a8682014-07-14 21:00:43 +02001604 fn = os.path.join(sourcedir, "second")
1605 if os.access(fn, os.F_OK):
1606 cmd.append("--second")
1607 cmd.append(fn)
1608
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001609 fn = os.path.join(sourcedir, "dtb")
1610 if os.access(fn, os.F_OK):
1611 cmd.append("--dtb")
1612 cmd.append(fn)
1613
Doug Zongker171f1cd2009-06-15 22:36:37 -07001614 fn = os.path.join(sourcedir, "cmdline")
1615 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001616 cmd.append("--cmdline")
1617 cmd.append(open(fn).read().rstrip("\n"))
1618
1619 fn = os.path.join(sourcedir, "base")
1620 if os.access(fn, os.F_OK):
1621 cmd.append("--base")
1622 cmd.append(open(fn).read().rstrip("\n"))
1623
Ying Wang4de6b5b2010-08-25 14:29:34 -07001624 fn = os.path.join(sourcedir, "pagesize")
1625 if os.access(fn, os.F_OK):
1626 cmd.append("--pagesize")
1627 cmd.append(open(fn).read().rstrip("\n"))
1628
Steve Mucklef84668e2020-03-16 19:13:46 -07001629 if partition_name == "recovery":
1630 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301631 if not args:
1632 # Fall back to "mkbootimg_args" for recovery image
1633 # in case "recovery_mkbootimg_args" is not set.
1634 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001635 elif partition_name == "init_boot":
1636 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001637 else:
1638 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001639 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001640 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001641
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001642 args = info_dict.get("mkbootimg_version_args")
1643 if args and args.strip():
1644 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001645
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001646 if has_ramdisk:
1647 cmd.extend(["--ramdisk", ramdisk_img.name])
1648
Tao Baod95e9fd2015-03-29 23:07:41 -07001649 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001650 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001651 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001652 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001653 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001654 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001655
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001656 if partition_name == "recovery":
1657 if info_dict.get("include_recovery_dtbo") == "true":
1658 fn = os.path.join(sourcedir, "recovery_dtbo")
1659 cmd.extend(["--recovery_dtbo", fn])
1660 if info_dict.get("include_recovery_acpio") == "true":
1661 fn = os.path.join(sourcedir, "recovery_acpio")
1662 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001663
Tao Bao986ee862018-10-04 15:46:16 -07001664 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001665
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001666 if _HasGkiCertificationArgs():
1667 if not os.path.exists(img.name):
1668 raise ValueError("Cannot find GKI boot.img")
1669 if kernel_path is None or not os.path.exists(kernel_path):
1670 raise ValueError("Cannot find GKI kernel.img")
1671
1672 # Certify GKI images.
1673 boot_signature_bytes = b''
1674 boot_signature_bytes += _GenerateGkiCertificate(img.name, "boot")
1675 boot_signature_bytes += _GenerateGkiCertificate(
1676 kernel_path, "generic_kernel")
1677
1678 BOOT_SIGNATURE_SIZE = 16 * 1024
1679 if len(boot_signature_bytes) > BOOT_SIGNATURE_SIZE:
1680 raise ValueError(
1681 f"GKI boot_signature size must be <= {BOOT_SIGNATURE_SIZE}")
1682 boot_signature_bytes += (
1683 b'\0' * (BOOT_SIGNATURE_SIZE - len(boot_signature_bytes)))
1684 assert len(boot_signature_bytes) == BOOT_SIGNATURE_SIZE
1685
1686 with open(img.name, 'ab') as f:
1687 f.write(boot_signature_bytes)
1688
Tao Bao76def242017-11-21 09:25:31 -08001689 if (info_dict.get("boot_signer") == "true" and
Kelvin Zhang563750f2021-04-28 12:46:17 -04001690 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001691 # Hard-code the path as "/boot" for two-step special recovery image (which
1692 # will be loaded into /boot during the two-step OTA).
1693 if two_step_image:
1694 path = "/boot"
1695 else:
Tao Baobf70c312017-07-11 17:27:55 -07001696 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001697 cmd = [OPTIONS.boot_signer_path]
1698 cmd.extend(OPTIONS.boot_signer_args)
1699 cmd.extend([path, img.name,
1700 info_dict["verity_key"] + ".pk8",
1701 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001702 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001703
Tao Baod95e9fd2015-03-29 23:07:41 -07001704 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001705 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001706 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001707 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001708 # We have switched from the prebuilt futility binary to using the tool
1709 # (futility-host) built from the source. Override the setting in the old
1710 # TF.zip.
1711 futility = info_dict["futility"]
1712 if futility.startswith("prebuilts/"):
1713 futility = "futility-host"
1714 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001715 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001716 info_dict["vboot_key"] + ".vbprivk",
1717 info_dict["vboot_subkey"] + ".vbprivk",
1718 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001719 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001720 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001721
Tao Baof3282b42015-04-01 11:21:55 -07001722 # Clean up the temp files.
1723 img_unsigned.close()
1724 img_keyblock.close()
1725
David Zeuthen8fecb282017-12-01 16:24:01 -05001726 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001727 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001728 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001729 if partition_name == "recovery":
1730 part_size = info_dict["recovery_size"]
1731 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001732 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001733 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001734 "--partition_size", str(part_size), "--partition_name",
1735 partition_name]
1736 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001737 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001738 if args and args.strip():
1739 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001740 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001741
1742 img.seek(os.SEEK_SET, 0)
1743 data = img.read()
1744
1745 if has_ramdisk:
1746 ramdisk_img.close()
1747 img.close()
1748
1749 return data
1750
1751
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001752def _SignBootableImage(image_path, prebuilt_name, partition_name,
1753 info_dict=None):
1754 """Performs AVB signing for a prebuilt boot.img.
1755
1756 Args:
1757 image_path: The full path of the image, e.g., /path/to/boot.img.
1758 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001759 boot-5.10.img, recovery.img or init_boot.img.
1760 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001761 info_dict: The information dict read from misc_info.txt.
1762 """
1763 if info_dict is None:
1764 info_dict = OPTIONS.info_dict
1765
1766 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1767 if info_dict.get("avb_enable") == "true":
1768 avbtool = info_dict["avb_avbtool"]
1769 if partition_name == "recovery":
1770 part_size = info_dict["recovery_size"]
1771 else:
1772 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1773
1774 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1775 "--partition_size", str(part_size), "--partition_name",
1776 partition_name]
1777 AppendAVBSigningArgs(cmd, partition_name)
1778 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1779 if args and args.strip():
1780 cmd.extend(shlex.split(args))
1781 RunAndCheckOutput(cmd)
1782
1783
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001784def HasRamdisk(partition_name, info_dict=None):
1785 """Returns true/false to see if a bootable image should have a ramdisk.
1786
1787 Args:
1788 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1789 info_dict: The information dict read from misc_info.txt.
1790 """
1791 if info_dict is None:
1792 info_dict = OPTIONS.info_dict
1793
1794 if partition_name != "boot":
1795 return True # init_boot.img or recovery.img has a ramdisk.
1796
1797 if info_dict.get("recovery_as_boot") == "true":
1798 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1799
Bowgo Tsai85578e02022-04-19 10:50:59 +08001800 if info_dict.get("gki_boot_image_without_ramdisk") == "true":
1801 return False # A GKI boot.img has no ramdisk since Android-13.
1802
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001803 if info_dict.get("system_root_image") == "true":
1804 # The ramdisk content is merged into the system.img, so there is NO
1805 # ramdisk in the boot.img or boot-<kernel version>.img.
1806 return False
1807
1808 if info_dict.get("init_boot") == "true":
1809 # The ramdisk is moved to the init_boot.img, so there is NO
1810 # ramdisk in the boot.img or boot-<kernel version>.img.
1811 return False
1812
1813 return True
1814
1815
Doug Zongkerd5131602012-08-02 14:46:42 -07001816def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001817 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001818 """Return a File object with the desired bootable image.
1819
1820 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1821 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1822 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001823
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001824 if info_dict is None:
1825 info_dict = OPTIONS.info_dict
1826
Doug Zongker55d93282011-01-25 17:03:34 -08001827 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1828 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001829 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001830 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001831
1832 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1833 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001834 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001835 return File.FromLocalFile(name, prebuilt_path)
1836
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001837 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001838 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1839 if os.path.exists(prebuilt_path):
1840 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1841 signed_img = MakeTempFile()
1842 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001843 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1844 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001845
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001846 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001847
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001848 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001849
Doug Zongker6f1d0312014-08-22 08:07:12 -07001850 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001851 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001852 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001853 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001854 if data:
1855 return File(name, data)
1856 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001857
Doug Zongkereef39442009-04-02 12:14:19 -07001858
Lucas Wei03230252022-04-18 16:00:40 +08001859def _BuildVendorBootImage(sourcedir, partition_name, info_dict=None):
Steve Mucklee1b10862019-07-10 10:49:37 -07001860 """Build a vendor boot image from the specified sourcedir.
1861
1862 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1863 turn them into a vendor boot image.
1864
1865 Return the image data, or None if sourcedir does not appear to contains files
1866 for building the requested image.
1867 """
1868
1869 if info_dict is None:
1870 info_dict = OPTIONS.info_dict
1871
1872 img = tempfile.NamedTemporaryFile()
1873
TJ Rhoades6f488e92022-05-01 22:16:22 -07001874 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001875 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001876
1877 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1878 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1879
1880 cmd = [mkbootimg]
1881
1882 fn = os.path.join(sourcedir, "dtb")
1883 if os.access(fn, os.F_OK):
Lucas Wei03230252022-04-18 16:00:40 +08001884 has_vendor_kernel_boot = (info_dict.get("vendor_kernel_boot", "").lower() == "true")
1885
1886 # Pack dtb into vendor_kernel_boot if building vendor_kernel_boot.
1887 # Otherwise pack dtb into vendor_boot.
1888 if not has_vendor_kernel_boot or partition_name == "vendor_kernel_boot":
1889 cmd.append("--dtb")
1890 cmd.append(fn)
Steve Mucklee1b10862019-07-10 10:49:37 -07001891
1892 fn = os.path.join(sourcedir, "vendor_cmdline")
1893 if os.access(fn, os.F_OK):
1894 cmd.append("--vendor_cmdline")
1895 cmd.append(open(fn).read().rstrip("\n"))
1896
1897 fn = os.path.join(sourcedir, "base")
1898 if os.access(fn, os.F_OK):
1899 cmd.append("--base")
1900 cmd.append(open(fn).read().rstrip("\n"))
1901
1902 fn = os.path.join(sourcedir, "pagesize")
1903 if os.access(fn, os.F_OK):
1904 cmd.append("--pagesize")
1905 cmd.append(open(fn).read().rstrip("\n"))
1906
1907 args = info_dict.get("mkbootimg_args")
1908 if args and args.strip():
1909 cmd.extend(shlex.split(args))
1910
1911 args = info_dict.get("mkbootimg_version_args")
1912 if args and args.strip():
1913 cmd.extend(shlex.split(args))
1914
1915 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1916 cmd.extend(["--vendor_boot", img.name])
1917
Devin Moore50509012021-01-13 10:45:04 -08001918 fn = os.path.join(sourcedir, "vendor_bootconfig")
1919 if os.access(fn, os.F_OK):
1920 cmd.append("--vendor_bootconfig")
1921 cmd.append(fn)
1922
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001923 ramdisk_fragment_imgs = []
1924 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1925 if os.access(fn, os.F_OK):
1926 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1927 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001928 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1929 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001930 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001931 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1932 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001933 # Use prebuilt image if found, else create ramdisk from supplied files.
1934 if os.access(fn, os.F_OK):
1935 ramdisk_fragment_pathname = fn
1936 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001937 ramdisk_fragment_root = os.path.join(
1938 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001939 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1940 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001941 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1942 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1943 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1944
Steve Mucklee1b10862019-07-10 10:49:37 -07001945 RunAndCheckOutput(cmd)
1946
1947 # AVB: if enabled, calculate and add hash.
1948 if info_dict.get("avb_enable") == "true":
1949 avbtool = info_dict["avb_avbtool"]
Lucas Wei03230252022-04-18 16:00:40 +08001950 part_size = info_dict[f'{partition_name}_size']
Steve Mucklee1b10862019-07-10 10:49:37 -07001951 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Lucas Wei03230252022-04-18 16:00:40 +08001952 "--partition_size", str(part_size), "--partition_name", partition_name]
1953 AppendAVBSigningArgs(cmd, partition_name)
1954 args = info_dict.get(f'avb_{partition_name}_add_hash_footer_args')
Steve Mucklee1b10862019-07-10 10:49:37 -07001955 if args and args.strip():
1956 cmd.extend(shlex.split(args))
1957 RunAndCheckOutput(cmd)
1958
1959 img.seek(os.SEEK_SET, 0)
1960 data = img.read()
1961
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001962 for f in ramdisk_fragment_imgs:
1963 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001964 ramdisk_img.close()
1965 img.close()
1966
1967 return data
1968
1969
1970def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1971 info_dict=None):
1972 """Return a File object with the desired vendor boot image.
1973
1974 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1975 the source files in 'unpack_dir'/'tree_subdir'."""
1976
1977 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1978 if os.path.exists(prebuilt_path):
1979 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1980 return File.FromLocalFile(name, prebuilt_path)
1981
1982 logger.info("building image from target_files %s...", tree_subdir)
1983
1984 if info_dict is None:
1985 info_dict = OPTIONS.info_dict
1986
Kelvin Zhang0876c412020-06-23 15:06:58 -04001987 data = _BuildVendorBootImage(
Lucas Wei03230252022-04-18 16:00:40 +08001988 os.path.join(unpack_dir, tree_subdir), "vendor_boot", info_dict)
1989 if data:
1990 return File(name, data)
1991 return None
1992
1993
1994def GetVendorKernelBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1995 info_dict=None):
1996 """Return a File object with the desired vendor kernel boot image.
1997
1998 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1999 the source files in 'unpack_dir'/'tree_subdir'."""
2000
2001 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
2002 if os.path.exists(prebuilt_path):
2003 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
2004 return File.FromLocalFile(name, prebuilt_path)
2005
2006 logger.info("building image from target_files %s...", tree_subdir)
2007
2008 if info_dict is None:
2009 info_dict = OPTIONS.info_dict
2010
2011 data = _BuildVendorBootImage(
2012 os.path.join(unpack_dir, tree_subdir), "vendor_kernel_boot", info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07002013 if data:
2014 return File(name, data)
2015 return None
2016
2017
Narayan Kamatha07bf042017-08-14 14:49:21 +01002018def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08002019 """Gunzips the given gzip compressed file to a given output file."""
2020 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04002021 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01002022 shutil.copyfileobj(in_file, out_file)
2023
2024
Tao Bao0ff15de2019-03-20 11:26:06 -07002025def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002026 """Unzips the archive to the given directory.
2027
2028 Args:
2029 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002030 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07002031 patterns: Files to unzip from the archive. If omitted, will unzip the entire
2032 archvie. Non-matching patterns will be filtered out. If there's no match
2033 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002034 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002035 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07002036 if patterns is not None:
2037 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04002038 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07002039 names = input_zip.namelist()
2040 filtered = [
2041 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
2042
2043 # There isn't any matching files. Don't unzip anything.
2044 if not filtered:
2045 return
2046 cmd.extend(filtered)
2047
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002048 RunAndCheckOutput(cmd)
2049
2050
Daniel Norman78554ea2021-09-14 10:29:38 -07002051def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002052 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002053
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002054 Args:
2055 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2056 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2057
Daniel Norman78554ea2021-09-14 10:29:38 -07002058 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002059 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002060
Tao Bao1c830bf2017-12-25 10:43:47 -08002061 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002062 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002063 """
Doug Zongkereef39442009-04-02 12:14:19 -07002064
Tao Bao1c830bf2017-12-25 10:43:47 -08002065 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002066 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2067 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002068 UnzipToDir(m.group(1), tmp, patterns)
2069 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002070 filename = m.group(1)
2071 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002072 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002073
Tao Baodba59ee2018-01-09 13:21:02 -08002074 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002075
2076
Yifan Hong8a66a712019-04-04 15:37:57 -07002077def GetUserImage(which, tmpdir, input_zip,
2078 info_dict=None,
2079 allow_shared_blocks=None,
2080 hashtree_info_generator=None,
2081 reset_file_map=False):
2082 """Returns an Image object suitable for passing to BlockImageDiff.
2083
2084 This function loads the specified image from the given path. If the specified
2085 image is sparse, it also performs additional processing for OTA purpose. For
2086 example, it always adds block 0 to clobbered blocks list. It also detects
2087 files that cannot be reconstructed from the block list, for whom we should
2088 avoid applying imgdiff.
2089
2090 Args:
2091 which: The partition name.
2092 tmpdir: The directory that contains the prebuilt image and block map file.
2093 input_zip: The target-files ZIP archive.
2094 info_dict: The dict to be looked up for relevant info.
2095 allow_shared_blocks: If image is sparse, whether having shared blocks is
2096 allowed. If none, it is looked up from info_dict.
2097 hashtree_info_generator: If present and image is sparse, generates the
2098 hashtree_info for this sparse image.
2099 reset_file_map: If true and image is sparse, reset file map before returning
2100 the image.
2101 Returns:
2102 A Image object. If it is a sparse image and reset_file_map is False, the
2103 image will have file_map info loaded.
2104 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002105 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002106 info_dict = LoadInfoDict(input_zip)
2107
2108 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002109 if info_dict.get(which + "_disable_sparse"):
2110 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002111
2112 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2113 # shared blocks (i.e. some blocks will show up in multiple files' block
2114 # list). We can only allocate such shared blocks to the first "owner", and
2115 # disable imgdiff for all later occurrences.
2116 if allow_shared_blocks is None:
2117 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2118
2119 if is_sparse:
2120 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2121 hashtree_info_generator)
2122 if reset_file_map:
2123 img.ResetFileMap()
2124 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04002125 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07002126
2127
2128def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
2129 """Returns a Image object suitable for passing to BlockImageDiff.
2130
2131 This function loads the specified non-sparse image from the given path.
2132
2133 Args:
2134 which: The partition name.
2135 tmpdir: The directory that contains the prebuilt image and block map file.
2136 Returns:
2137 A Image object.
2138 """
2139 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2140 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2141
2142 # The image and map files must have been created prior to calling
2143 # ota_from_target_files.py (since LMP).
2144 assert os.path.exists(path) and os.path.exists(mappath)
2145
Tianjie Xu41976c72019-07-03 13:57:01 -07002146 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
2147
Yifan Hong8a66a712019-04-04 15:37:57 -07002148
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002149def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2150 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08002151 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2152
2153 This function loads the specified sparse image from the given path, and
2154 performs additional processing for OTA purpose. For example, it always adds
2155 block 0 to clobbered blocks list. It also detects files that cannot be
2156 reconstructed from the block list, for whom we should avoid applying imgdiff.
2157
2158 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002159 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002160 tmpdir: The directory that contains the prebuilt image and block map file.
2161 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002162 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002163 hashtree_info_generator: If present, generates the hashtree_info for this
2164 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08002165 Returns:
2166 A SparseImage object, with file_map info loaded.
2167 """
Tao Baoc765cca2018-01-31 17:32:40 -08002168 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2169 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2170
2171 # The image and map files must have been created prior to calling
2172 # ota_from_target_files.py (since LMP).
2173 assert os.path.exists(path) and os.path.exists(mappath)
2174
2175 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2176 # it to clobbered_blocks so that it will be written to the target
2177 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2178 clobbered_blocks = "0"
2179
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002180 image = sparse_img.SparseImage(
2181 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
2182 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08002183
2184 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2185 # if they contain all zeros. We can't reconstruct such a file from its block
2186 # list. Tag such entries accordingly. (Bug: 65213616)
2187 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002188 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002189 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002190 continue
2191
Tom Cherryd14b8952018-08-09 14:26:00 -07002192 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2193 # filename listed in system.map may contain an additional leading slash
2194 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2195 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002196 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002197 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002198 arcname = entry.lstrip('/')
2199 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002200 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002201 else:
2202 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002203
2204 assert arcname in input_zip.namelist(), \
2205 "Failed to find the ZIP entry for {}".format(entry)
2206
Tao Baoc765cca2018-01-31 17:32:40 -08002207 info = input_zip.getinfo(arcname)
2208 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002209
2210 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002211 # image, check the original block list to determine its completeness. Note
2212 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002213 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002214 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002215
Tao Baoc765cca2018-01-31 17:32:40 -08002216 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2217 ranges.extra['incomplete'] = True
2218
2219 return image
2220
2221
Doug Zongkereef39442009-04-02 12:14:19 -07002222def GetKeyPasswords(keylist):
2223 """Given a list of keys, prompt the user to enter passwords for
2224 those which require them. Return a {key: password} dict. password
2225 will be None if the key has no password."""
2226
Doug Zongker8ce7c252009-05-22 13:34:54 -07002227 no_passwords = []
2228 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002229 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002230 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002231
2232 # sorted() can't compare strings to None, so convert Nones to strings
2233 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002234 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002235 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002236 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002237 continue
2238
T.R. Fullhart37e10522013-03-18 10:31:26 -07002239 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002240 "-inform", "DER", "-nocrypt"],
2241 stdin=devnull.fileno(),
2242 stdout=devnull.fileno(),
2243 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002244 p.communicate()
2245 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002246 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002247 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002248 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002249 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2250 "-inform", "DER", "-passin", "pass:"],
2251 stdin=devnull.fileno(),
2252 stdout=devnull.fileno(),
2253 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002254 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002255 if p.returncode == 0:
2256 # Encrypted key with empty string as password.
2257 key_passwords[k] = ''
2258 elif stderr.startswith('Error decrypting key'):
2259 # Definitely encrypted key.
2260 # It would have said "Error reading key" if it didn't parse correctly.
2261 need_passwords.append(k)
2262 else:
2263 # Potentially, a type of key that openssl doesn't understand.
2264 # We'll let the routines in signapk.jar handle it.
2265 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002266 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002267
T.R. Fullhart37e10522013-03-18 10:31:26 -07002268 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002269 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002270 return key_passwords
2271
2272
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002273def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002274 """Gets the minSdkVersion declared in the APK.
2275
Martin Stjernholm58472e82022-01-07 22:08:47 +00002276 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2277 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002278
2279 Args:
2280 apk_name: The APK filename.
2281
2282 Returns:
2283 The parsed SDK version string.
2284
2285 Raises:
2286 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002287 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002288 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002289 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002290 stderr=subprocess.PIPE)
2291 stdoutdata, stderrdata = proc.communicate()
2292 if proc.returncode != 0:
2293 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002294 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2295 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002296
Tao Baof47bf0f2018-03-21 23:28:51 -07002297 for line in stdoutdata.split("\n"):
2298 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002299 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2300 if m:
2301 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002302 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002303
2304
2305def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002306 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002307
Tao Baof47bf0f2018-03-21 23:28:51 -07002308 If minSdkVersion is set to a codename, it is translated to a number using the
2309 provided map.
2310
2311 Args:
2312 apk_name: The APK filename.
2313
2314 Returns:
2315 The parsed SDK version number.
2316
2317 Raises:
2318 ExternalError: On failing to get the min SDK version number.
2319 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002320 version = GetMinSdkVersion(apk_name)
2321 try:
2322 return int(version)
2323 except ValueError:
2324 # Not a decimal number. Codename?
2325 if version in codename_to_api_level_map:
2326 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002327 raise ExternalError(
2328 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2329 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002330
2331
2332def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002333 codename_to_api_level_map=None, whole_file=False,
2334 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002335 """Sign the input_name zip/jar/apk, producing output_name. Use the
2336 given key and password (the latter may be None if the key does not
2337 have a password.
2338
Doug Zongker951495f2009-08-14 12:44:19 -07002339 If whole_file is true, use the "-w" option to SignApk to embed a
2340 signature that covers the whole file in the archive comment of the
2341 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002342
2343 min_api_level is the API Level (int) of the oldest platform this file may end
2344 up on. If not specified for an APK, the API Level is obtained by interpreting
2345 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2346
2347 codename_to_api_level_map is needed to translate the codename which may be
2348 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002349
2350 Caller may optionally specify extra args to be passed to SignApk, which
2351 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002352 """
Tao Bao76def242017-11-21 09:25:31 -08002353 if codename_to_api_level_map is None:
2354 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002355 if extra_signapk_args is None:
2356 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002357
Alex Klyubin9667b182015-12-10 13:38:50 -08002358 java_library_path = os.path.join(
2359 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2360
Tao Baoe95540e2016-11-08 12:08:53 -08002361 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2362 ["-Djava.library.path=" + java_library_path,
2363 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002364 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002365 if whole_file:
2366 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002367
2368 min_sdk_version = min_api_level
2369 if min_sdk_version is None:
2370 if not whole_file:
2371 min_sdk_version = GetMinSdkVersionInt(
2372 input_name, codename_to_api_level_map)
2373 if min_sdk_version is not None:
2374 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2375
T.R. Fullhart37e10522013-03-18 10:31:26 -07002376 cmd.extend([key + OPTIONS.public_key_suffix,
2377 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002378 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002379
Tao Bao73dd4f42018-10-04 16:25:33 -07002380 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002381 if password is not None:
2382 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002383 stdoutdata, _ = proc.communicate(password)
2384 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002385 raise ExternalError(
2386 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002387 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002388
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002389def SignSePolicy(sepolicy, key, password):
2390 """Sign the sepolicy zip, producing an fsverity .fsv_sig and
2391 an RSA .sig signature files.
2392 """
2393
2394 if OPTIONS.sign_sepolicy_path is None:
2395 return False
2396
2397 java_library_path = os.path.join(
2398 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2399
2400 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2401 ["-Djava.library.path=" + java_library_path,
2402 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.sign_sepolicy_path)] +
2403 OPTIONS.extra_sign_sepolicy_args)
2404
2405 cmd.extend([key + OPTIONS.public_key_suffix,
2406 key + OPTIONS.private_key_suffix,
2407 sepolicy])
2408
2409 proc = Run(cmd, stdin=subprocess.PIPE)
2410 if password is not None:
2411 password += "\n"
2412 stdoutdata, _ = proc.communicate(password)
2413 if proc.returncode != 0:
2414 raise ExternalError(
2415 "Failed to run sign sepolicy: return code {}:\n{}".format(
2416 proc.returncode, stdoutdata))
2417 return True
Doug Zongkereef39442009-04-02 12:14:19 -07002418
Doug Zongker37974732010-09-16 17:44:38 -07002419def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002420 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002421
Tao Bao9dd909e2017-11-14 11:27:32 -08002422 For non-AVB images, raise exception if the data is too big. Print a warning
2423 if the data is nearing the maximum size.
2424
2425 For AVB images, the actual image size should be identical to the limit.
2426
2427 Args:
2428 data: A string that contains all the data for the partition.
2429 target: The partition name. The ".img" suffix is optional.
2430 info_dict: The dict to be looked up for relevant info.
2431 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002432 if target.endswith(".img"):
2433 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002434 mount_point = "/" + target
2435
Ying Wangf8824af2014-06-03 14:07:27 -07002436 fs_type = None
2437 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002438 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002439 if mount_point == "/userdata":
2440 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002441 p = info_dict["fstab"][mount_point]
2442 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002443 device = p.device
2444 if "/" in device:
2445 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002446 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002447 if not fs_type or not limit:
2448 return
Doug Zongkereef39442009-04-02 12:14:19 -07002449
Andrew Boie0f9aec82012-02-14 09:32:52 -08002450 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002451 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2452 # path.
2453 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2454 if size != limit:
2455 raise ExternalError(
2456 "Mismatching image size for %s: expected %d actual %d" % (
2457 target, limit, size))
2458 else:
2459 pct = float(size) * 100.0 / limit
2460 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2461 if pct >= 99.0:
2462 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002463
2464 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002465 logger.warning("\n WARNING: %s\n", msg)
2466 else:
2467 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002468
2469
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002470def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002471 """Parses the APK certs info from a given target-files zip.
2472
2473 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2474 tuple with the following elements: (1) a dictionary that maps packages to
2475 certs (based on the "certificate" and "private_key" attributes in the file;
2476 (2) a string representing the extension of compressed APKs in the target files
2477 (e.g ".gz", ".bro").
2478
2479 Args:
2480 tf_zip: The input target_files ZipFile (already open).
2481
2482 Returns:
2483 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2484 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2485 no compressed APKs.
2486 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002487 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002488 compressed_extension = None
2489
Tao Bao0f990332017-09-08 19:02:54 -07002490 # META/apkcerts.txt contains the info for _all_ the packages known at build
2491 # time. Filter out the ones that are not installed.
2492 installed_files = set()
2493 for name in tf_zip.namelist():
2494 basename = os.path.basename(name)
2495 if basename:
2496 installed_files.add(basename)
2497
Tao Baoda30cfa2017-12-01 16:19:46 -08002498 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002499 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002500 if not line:
2501 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002502 m = re.match(
2503 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002504 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2505 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002506 line)
2507 if not m:
2508 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002509
Tao Bao818ddf52018-01-05 11:17:34 -08002510 matches = m.groupdict()
2511 cert = matches["CERT"]
2512 privkey = matches["PRIVKEY"]
2513 name = matches["NAME"]
2514 this_compressed_extension = matches["COMPRESSED"]
2515
2516 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2517 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2518 if cert in SPECIAL_CERT_STRINGS and not privkey:
2519 certmap[name] = cert
2520 elif (cert.endswith(OPTIONS.public_key_suffix) and
2521 privkey.endswith(OPTIONS.private_key_suffix) and
2522 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2523 certmap[name] = cert[:-public_key_suffix_len]
2524 else:
2525 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2526
2527 if not this_compressed_extension:
2528 continue
2529
2530 # Only count the installed files.
2531 filename = name + '.' + this_compressed_extension
2532 if filename not in installed_files:
2533 continue
2534
2535 # Make sure that all the values in the compression map have the same
2536 # extension. We don't support multiple compression methods in the same
2537 # system image.
2538 if compressed_extension:
2539 if this_compressed_extension != compressed_extension:
2540 raise ValueError(
2541 "Multiple compressed extensions: {} vs {}".format(
2542 compressed_extension, this_compressed_extension))
2543 else:
2544 compressed_extension = this_compressed_extension
2545
2546 return (certmap,
2547 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002548
2549
Doug Zongkereef39442009-04-02 12:14:19 -07002550COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002551Global options
2552
2553 -p (--path) <dir>
2554 Prepend <dir>/bin to the list of places to search for binaries run by this
2555 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002556
Doug Zongker05d3dea2009-06-22 11:32:31 -07002557 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002558 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002559
Tao Bao30df8b42018-04-23 15:32:53 -07002560 -x (--extra) <key=value>
2561 Add a key/value pair to the 'extras' dict, which device-specific extension
2562 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002563
Doug Zongkereef39442009-04-02 12:14:19 -07002564 -v (--verbose)
2565 Show command lines being executed.
2566
2567 -h (--help)
2568 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002569
2570 --logfile <file>
2571 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002572"""
2573
Kelvin Zhang0876c412020-06-23 15:06:58 -04002574
Doug Zongkereef39442009-04-02 12:14:19 -07002575def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002576 print(docstring.rstrip("\n"))
2577 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002578
2579
2580def ParseOptions(argv,
2581 docstring,
2582 extra_opts="", extra_long_opts=(),
2583 extra_option_handler=None):
2584 """Parse the options in argv and return any arguments that aren't
2585 flags. docstring is the calling module's docstring, to be displayed
2586 for errors and -h. extra_opts and extra_long_opts are for flags
2587 defined by the caller, which are processed by passing them to
2588 extra_option_handler."""
2589
2590 try:
2591 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002592 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002593 ["help", "verbose", "path=", "signapk_path=",
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002594 "signapk_shared_library_path=", "extra_signapk_args=",
2595 "sign_sepolicy_path=", "extra_sign_sepolicy_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002596 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002597 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2598 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002599 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002600 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002601 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002602 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002603 sys.exit(2)
2604
Doug Zongkereef39442009-04-02 12:14:19 -07002605 for o, a in opts:
2606 if o in ("-h", "--help"):
2607 Usage(docstring)
2608 sys.exit()
2609 elif o in ("-v", "--verbose"):
2610 OPTIONS.verbose = True
2611 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002612 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002613 elif o in ("--signapk_path",):
2614 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002615 elif o in ("--signapk_shared_library_path",):
2616 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002617 elif o in ("--extra_signapk_args",):
2618 OPTIONS.extra_signapk_args = shlex.split(a)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002619 elif o in ("--sign_sepolicy_path",):
2620 OPTIONS.sign_sepolicy_path = a
2621 elif o in ("--extra_sign_sepolicy_args",):
2622 OPTIONS.extra_sign_sepolicy_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002623 elif o in ("--aapt2_path",):
2624 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002625 elif o in ("--java_path",):
2626 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002627 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002628 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002629 elif o in ("--android_jar_path",):
2630 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002631 elif o in ("--public_key_suffix",):
2632 OPTIONS.public_key_suffix = a
2633 elif o in ("--private_key_suffix",):
2634 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002635 elif o in ("--boot_signer_path",):
2636 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002637 elif o in ("--boot_signer_args",):
2638 OPTIONS.boot_signer_args = shlex.split(a)
2639 elif o in ("--verity_signer_path",):
2640 OPTIONS.verity_signer_path = a
2641 elif o in ("--verity_signer_args",):
2642 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07002643 elif o in ("-s", "--device_specific"):
2644 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002645 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002646 key, value = a.split("=", 1)
2647 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002648 elif o in ("--logfile",):
2649 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002650 else:
2651 if extra_option_handler is None or not extra_option_handler(o, a):
2652 assert False, "unknown option \"%s\"" % (o,)
2653
Doug Zongker85448772014-09-09 14:59:20 -07002654 if OPTIONS.search_path:
2655 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2656 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002657
2658 return args
2659
2660
Tao Bao4c851b12016-09-19 13:54:38 -07002661def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002662 """Make a temp file and add it to the list of things to be deleted
2663 when Cleanup() is called. Return the filename."""
2664 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2665 os.close(fd)
2666 OPTIONS.tempfiles.append(fn)
2667 return fn
2668
2669
Tao Bao1c830bf2017-12-25 10:43:47 -08002670def MakeTempDir(prefix='tmp', suffix=''):
2671 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2672
2673 Returns:
2674 The absolute pathname of the new directory.
2675 """
2676 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2677 OPTIONS.tempfiles.append(dir_name)
2678 return dir_name
2679
2680
Doug Zongkereef39442009-04-02 12:14:19 -07002681def Cleanup():
2682 for i in OPTIONS.tempfiles:
2683 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002684 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002685 else:
2686 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002687 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002688
2689
2690class PasswordManager(object):
2691 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002692 self.editor = os.getenv("EDITOR")
2693 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002694
2695 def GetPasswords(self, items):
2696 """Get passwords corresponding to each string in 'items',
2697 returning a dict. (The dict may have keys in addition to the
2698 values in 'items'.)
2699
2700 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2701 user edit that file to add more needed passwords. If no editor is
2702 available, or $ANDROID_PW_FILE isn't define, prompts the user
2703 interactively in the ordinary way.
2704 """
2705
2706 current = self.ReadFile()
2707
2708 first = True
2709 while True:
2710 missing = []
2711 for i in items:
2712 if i not in current or not current[i]:
2713 missing.append(i)
2714 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002715 if not missing:
2716 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002717
2718 for i in missing:
2719 current[i] = ""
2720
2721 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002722 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002723 if sys.version_info[0] >= 3:
2724 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002725 answer = raw_input("try to edit again? [y]> ").strip()
2726 if answer and answer[0] not in 'yY':
2727 raise RuntimeError("key passwords unavailable")
2728 first = False
2729
2730 current = self.UpdateAndReadFile(current)
2731
Kelvin Zhang0876c412020-06-23 15:06:58 -04002732 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002733 """Prompt the user to enter a value (password) for each key in
2734 'current' whose value is fales. Returns a new dict with all the
2735 values.
2736 """
2737 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002738 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002739 if v:
2740 result[k] = v
2741 else:
2742 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002743 result[k] = getpass.getpass(
2744 "Enter password for %s key> " % k).strip()
2745 if result[k]:
2746 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002747 return result
2748
2749 def UpdateAndReadFile(self, current):
2750 if not self.editor or not self.pwfile:
2751 return self.PromptResult(current)
2752
2753 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002754 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002755 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2756 f.write("# (Additional spaces are harmless.)\n\n")
2757
2758 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002759 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002760 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002761 f.write("[[[ %s ]]] %s\n" % (v, k))
2762 if not v and first_line is None:
2763 # position cursor on first line with no password.
2764 first_line = i + 4
2765 f.close()
2766
Tao Bao986ee862018-10-04 15:46:16 -07002767 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002768
2769 return self.ReadFile()
2770
2771 def ReadFile(self):
2772 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002773 if self.pwfile is None:
2774 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002775 try:
2776 f = open(self.pwfile, "r")
2777 for line in f:
2778 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002779 if not line or line[0] == '#':
2780 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002781 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2782 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002783 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002784 else:
2785 result[m.group(2)] = m.group(1)
2786 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002787 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002788 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002789 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002790 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002791
2792
Dan Albert8e0178d2015-01-27 15:53:15 -08002793def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2794 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002795
2796 # http://b/18015246
2797 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2798 # for files larger than 2GiB. We can work around this by adjusting their
2799 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2800 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2801 # it isn't clear to me exactly what circumstances cause this).
2802 # `zipfile.write()` must be used directly to work around this.
2803 #
2804 # This mess can be avoided if we port to python3.
2805 saved_zip64_limit = zipfile.ZIP64_LIMIT
2806 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2807
2808 if compress_type is None:
2809 compress_type = zip_file.compression
2810 if arcname is None:
2811 arcname = filename
2812
2813 saved_stat = os.stat(filename)
2814
2815 try:
2816 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2817 # file to be zipped and reset it when we're done.
2818 os.chmod(filename, perms)
2819
2820 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002821 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2822 # intentional. zip stores datetimes in local time without a time zone
2823 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2824 # in the zip archive.
2825 local_epoch = datetime.datetime.fromtimestamp(0)
2826 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002827 os.utime(filename, (timestamp, timestamp))
2828
2829 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2830 finally:
2831 os.chmod(filename, saved_stat.st_mode)
2832 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2833 zipfile.ZIP64_LIMIT = saved_zip64_limit
2834
2835
Tao Bao58c1b962015-05-20 09:32:18 -07002836def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002837 compress_type=None):
2838 """Wrap zipfile.writestr() function to work around the zip64 limit.
2839
2840 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2841 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2842 when calling crc32(bytes).
2843
2844 But it still works fine to write a shorter string into a large zip file.
2845 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2846 when we know the string won't be too long.
2847 """
2848
2849 saved_zip64_limit = zipfile.ZIP64_LIMIT
2850 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2851
2852 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2853 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002854 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002855 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002856 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002857 else:
Tao Baof3282b42015-04-01 11:21:55 -07002858 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002859 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2860 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2861 # such a case (since
2862 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2863 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2864 # permission bits. We follow the logic in Python 3 to get consistent
2865 # behavior between using the two versions.
2866 if not zinfo.external_attr:
2867 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002868
2869 # If compress_type is given, it overrides the value in zinfo.
2870 if compress_type is not None:
2871 zinfo.compress_type = compress_type
2872
Tao Bao58c1b962015-05-20 09:32:18 -07002873 # If perms is given, it has a priority.
2874 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002875 # If perms doesn't set the file type, mark it as a regular file.
2876 if perms & 0o770000 == 0:
2877 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002878 zinfo.external_attr = perms << 16
2879
Tao Baof3282b42015-04-01 11:21:55 -07002880 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002881 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2882
Dan Albert8b72aef2015-03-23 19:13:21 -07002883 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002884 zipfile.ZIP64_LIMIT = saved_zip64_limit
2885
2886
Tao Bao89d7ab22017-12-14 17:05:33 -08002887def ZipDelete(zip_filename, entries):
2888 """Deletes entries from a ZIP file.
2889
2890 Since deleting entries from a ZIP file is not supported, it shells out to
2891 'zip -d'.
2892
2893 Args:
2894 zip_filename: The name of the ZIP file.
2895 entries: The name of the entry, or the list of names to be deleted.
2896
2897 Raises:
2898 AssertionError: In case of non-zero return from 'zip'.
2899 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002900 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002901 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002902 # If list is empty, nothing to do
2903 if not entries:
2904 return
Tao Bao89d7ab22017-12-14 17:05:33 -08002905 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002906 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002907
2908
Tao Baof3282b42015-04-01 11:21:55 -07002909def ZipClose(zip_file):
2910 # http://b/18015246
2911 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2912 # central directory.
2913 saved_zip64_limit = zipfile.ZIP64_LIMIT
2914 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2915
2916 zip_file.close()
2917
2918 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002919
2920
2921class DeviceSpecificParams(object):
2922 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002923
Doug Zongker05d3dea2009-06-22 11:32:31 -07002924 def __init__(self, **kwargs):
2925 """Keyword arguments to the constructor become attributes of this
2926 object, which is passed to all functions in the device-specific
2927 module."""
Tao Bao38884282019-07-10 22:20:56 -07002928 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002929 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002930 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002931
2932 if self.module is None:
2933 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002934 if not path:
2935 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002936 try:
2937 if os.path.isdir(path):
2938 info = imp.find_module("releasetools", [path])
2939 else:
2940 d, f = os.path.split(path)
2941 b, x = os.path.splitext(f)
2942 if x == ".py":
2943 f = b
2944 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002945 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002946 self.module = imp.load_module("device_specific", *info)
2947 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002948 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002949
2950 def _DoCall(self, function_name, *args, **kwargs):
2951 """Call the named function in the device-specific module, passing
2952 the given args and kwargs. The first argument to the call will be
2953 the DeviceSpecific object itself. If there is no module, or the
2954 module does not define the function, return the value of the
2955 'default' kwarg (which itself defaults to None)."""
2956 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002957 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002958 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2959
2960 def FullOTA_Assertions(self):
2961 """Called after emitting the block of assertions at the top of a
2962 full OTA package. Implementations can add whatever additional
2963 assertions they like."""
2964 return self._DoCall("FullOTA_Assertions")
2965
Doug Zongkere5ff5902012-01-17 10:55:37 -08002966 def FullOTA_InstallBegin(self):
2967 """Called at the start of full OTA installation."""
2968 return self._DoCall("FullOTA_InstallBegin")
2969
Yifan Hong10c530d2018-12-27 17:34:18 -08002970 def FullOTA_GetBlockDifferences(self):
2971 """Called during full OTA installation and verification.
2972 Implementation should return a list of BlockDifference objects describing
2973 the update on each additional partitions.
2974 """
2975 return self._DoCall("FullOTA_GetBlockDifferences")
2976
Doug Zongker05d3dea2009-06-22 11:32:31 -07002977 def FullOTA_InstallEnd(self):
2978 """Called at the end of full OTA installation; typically this is
2979 used to install the image for the device's baseband processor."""
2980 return self._DoCall("FullOTA_InstallEnd")
2981
2982 def IncrementalOTA_Assertions(self):
2983 """Called after emitting the block of assertions at the top of an
2984 incremental OTA package. Implementations can add whatever
2985 additional assertions they like."""
2986 return self._DoCall("IncrementalOTA_Assertions")
2987
Doug Zongkere5ff5902012-01-17 10:55:37 -08002988 def IncrementalOTA_VerifyBegin(self):
2989 """Called at the start of the verification phase of incremental
2990 OTA installation; additional checks can be placed here to abort
2991 the script before any changes are made."""
2992 return self._DoCall("IncrementalOTA_VerifyBegin")
2993
Doug Zongker05d3dea2009-06-22 11:32:31 -07002994 def IncrementalOTA_VerifyEnd(self):
2995 """Called at the end of the verification phase of incremental OTA
2996 installation; additional checks can be placed here to abort the
2997 script before any changes are made."""
2998 return self._DoCall("IncrementalOTA_VerifyEnd")
2999
Doug Zongkere5ff5902012-01-17 10:55:37 -08003000 def IncrementalOTA_InstallBegin(self):
3001 """Called at the start of incremental OTA installation (after
3002 verification is complete)."""
3003 return self._DoCall("IncrementalOTA_InstallBegin")
3004
Yifan Hong10c530d2018-12-27 17:34:18 -08003005 def IncrementalOTA_GetBlockDifferences(self):
3006 """Called during incremental OTA installation and verification.
3007 Implementation should return a list of BlockDifference objects describing
3008 the update on each additional partitions.
3009 """
3010 return self._DoCall("IncrementalOTA_GetBlockDifferences")
3011
Doug Zongker05d3dea2009-06-22 11:32:31 -07003012 def IncrementalOTA_InstallEnd(self):
3013 """Called at the end of incremental OTA installation; typically
3014 this is used to install the image for the device's baseband
3015 processor."""
3016 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003017
Tao Bao9bc6bb22015-11-09 16:58:28 -08003018 def VerifyOTA_Assertions(self):
3019 return self._DoCall("VerifyOTA_Assertions")
3020
Tao Bao76def242017-11-21 09:25:31 -08003021
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003022class File(object):
Tao Bao76def242017-11-21 09:25:31 -08003023 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003024 self.name = name
3025 self.data = data
3026 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09003027 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08003028 self.sha1 = sha1(data).hexdigest()
3029
3030 @classmethod
3031 def FromLocalFile(cls, name, diskname):
3032 f = open(diskname, "rb")
3033 data = f.read()
3034 f.close()
3035 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003036
3037 def WriteToTemp(self):
3038 t = tempfile.NamedTemporaryFile()
3039 t.write(self.data)
3040 t.flush()
3041 return t
3042
Dan Willemsen2ee00d52017-03-05 19:51:56 -08003043 def WriteToDir(self, d):
3044 with open(os.path.join(d, self.name), "wb") as fp:
3045 fp.write(self.data)
3046
Geremy Condra36bd3652014-02-06 19:45:10 -08003047 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07003048 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003049
Tao Bao76def242017-11-21 09:25:31 -08003050
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003051DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04003052 ".gz": "imgdiff",
3053 ".zip": ["imgdiff", "-z"],
3054 ".jar": ["imgdiff", "-z"],
3055 ".apk": ["imgdiff", "-z"],
3056 ".img": "imgdiff",
3057}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003058
Tao Bao76def242017-11-21 09:25:31 -08003059
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003060class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07003061 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003062 self.tf = tf
3063 self.sf = sf
3064 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07003065 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003066
3067 def ComputePatch(self):
3068 """Compute the patch (as a string of data) needed to turn sf into
3069 tf. Returns the same tuple as GetPatch()."""
3070
3071 tf = self.tf
3072 sf = self.sf
3073
Doug Zongker24cd2802012-08-14 16:36:15 -07003074 if self.diff_program:
3075 diff_program = self.diff_program
3076 else:
3077 ext = os.path.splitext(tf.name)[1]
3078 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003079
3080 ttemp = tf.WriteToTemp()
3081 stemp = sf.WriteToTemp()
3082
3083 ext = os.path.splitext(tf.name)[1]
3084
3085 try:
3086 ptemp = tempfile.NamedTemporaryFile()
3087 if isinstance(diff_program, list):
3088 cmd = copy.copy(diff_program)
3089 else:
3090 cmd = [diff_program]
3091 cmd.append(stemp.name)
3092 cmd.append(ttemp.name)
3093 cmd.append(ptemp.name)
3094 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003095 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003096
Doug Zongkerf8340082014-08-05 10:39:37 -07003097 def run():
3098 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003099 if e:
3100 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003101 th = threading.Thread(target=run)
3102 th.start()
3103 th.join(timeout=300) # 5 mins
3104 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003105 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003106 p.terminate()
3107 th.join(5)
3108 if th.is_alive():
3109 p.kill()
3110 th.join()
3111
Tianjie Xua2a9f992018-01-05 15:15:54 -08003112 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003113 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003114 self.patch = None
3115 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003116 diff = ptemp.read()
3117 finally:
3118 ptemp.close()
3119 stemp.close()
3120 ttemp.close()
3121
3122 self.patch = diff
3123 return self.tf, self.sf, self.patch
3124
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003125 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003126 """Returns a tuple of (target_file, source_file, patch_data).
3127
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003128 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003129 computing the patch failed.
3130 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003131 return self.tf, self.sf, self.patch
3132
3133
3134def ComputeDifferences(diffs):
3135 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003136 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003137
3138 # Do the largest files first, to try and reduce the long-pole effect.
3139 by_size = [(i.tf.size, i) for i in diffs]
3140 by_size.sort(reverse=True)
3141 by_size = [i[1] for i in by_size]
3142
3143 lock = threading.Lock()
3144 diff_iter = iter(by_size) # accessed under lock
3145
3146 def worker():
3147 try:
3148 lock.acquire()
3149 for d in diff_iter:
3150 lock.release()
3151 start = time.time()
3152 d.ComputePatch()
3153 dur = time.time() - start
3154 lock.acquire()
3155
3156 tf, sf, patch = d.GetPatch()
3157 if sf.name == tf.name:
3158 name = tf.name
3159 else:
3160 name = "%s (%s)" % (tf.name, sf.name)
3161 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003162 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003163 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003164 logger.info(
3165 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3166 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003167 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003168 except Exception:
3169 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003170 raise
3171
3172 # start worker threads; wait for them all to finish.
3173 threads = [threading.Thread(target=worker)
3174 for i in range(OPTIONS.worker_threads)]
3175 for th in threads:
3176 th.start()
3177 while threads:
3178 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003179
3180
Dan Albert8b72aef2015-03-23 19:13:21 -07003181class BlockDifference(object):
3182 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003183 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003184 self.tgt = tgt
3185 self.src = src
3186 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003187 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003188 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003189
Tao Baodd2a5892015-03-12 12:32:37 -07003190 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003191 version = max(
3192 int(i) for i in
3193 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003194 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003195 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003196
Tianjie Xu41976c72019-07-03 13:57:01 -07003197 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3198 version=self.version,
3199 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003200 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003201 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003202 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003203 self.touched_src_ranges = b.touched_src_ranges
3204 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003205
Yifan Hong10c530d2018-12-27 17:34:18 -08003206 # On devices with dynamic partitions, for new partitions,
3207 # src is None but OPTIONS.source_info_dict is not.
3208 if OPTIONS.source_info_dict is None:
3209 is_dynamic_build = OPTIONS.info_dict.get(
3210 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003211 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003212 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003213 is_dynamic_build = OPTIONS.source_info_dict.get(
3214 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003215 is_dynamic_source = partition in shlex.split(
3216 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003217
Yifan Hongbb2658d2019-01-25 12:30:58 -08003218 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003219 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3220
Yifan Hongbb2658d2019-01-25 12:30:58 -08003221 # For dynamic partitions builds, check partition list in both source
3222 # and target build because new partitions may be added, and existing
3223 # partitions may be removed.
3224 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3225
Yifan Hong10c530d2018-12-27 17:34:18 -08003226 if is_dynamic:
3227 self.device = 'map_partition("%s")' % partition
3228 else:
3229 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003230 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3231 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003232 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003233 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3234 OPTIONS.source_info_dict)
3235 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003236
Tao Baod8d14be2016-02-04 14:26:02 -08003237 @property
3238 def required_cache(self):
3239 return self._required_cache
3240
Tao Bao76def242017-11-21 09:25:31 -08003241 def WriteScript(self, script, output_zip, progress=None,
3242 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003243 if not self.src:
3244 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003245 script.Print("Patching %s image unconditionally..." % (self.partition,))
3246 else:
3247 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003248
Dan Albert8b72aef2015-03-23 19:13:21 -07003249 if progress:
3250 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003251 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003252
3253 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003254 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003255
Tao Bao9bc6bb22015-11-09 16:58:28 -08003256 def WriteStrictVerifyScript(self, script):
3257 """Verify all the blocks in the care_map, including clobbered blocks.
3258
3259 This differs from the WriteVerifyScript() function: a) it prints different
3260 error messages; b) it doesn't allow half-way updated images to pass the
3261 verification."""
3262
3263 partition = self.partition
3264 script.Print("Verifying %s..." % (partition,))
3265 ranges = self.tgt.care_map
3266 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003267 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003268 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3269 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003270 self.device, ranges_str,
3271 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003272 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003273 script.AppendExtra("")
3274
Tao Baod522bdc2016-04-12 15:53:16 -07003275 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003276 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003277
3278 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003279 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003280 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003281
3282 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003283 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003284 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003285 ranges = self.touched_src_ranges
3286 expected_sha1 = self.touched_src_sha1
3287 else:
3288 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3289 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003290
3291 # No blocks to be checked, skipping.
3292 if not ranges:
3293 return
3294
Tao Bao5ece99d2015-05-12 11:42:31 -07003295 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003296 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003297 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003298 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3299 '"%s.patch.dat")) then' % (
3300 self.device, ranges_str, expected_sha1,
3301 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003302 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003303 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003304
Tianjie Xufc3422a2015-12-15 11:53:59 -08003305 if self.version >= 4:
3306
3307 # Bug: 21124327
3308 # When generating incrementals for the system and vendor partitions in
3309 # version 4 or newer, explicitly check the first block (which contains
3310 # the superblock) of the partition to see if it's what we expect. If
3311 # this check fails, give an explicit log message about the partition
3312 # having been remounted R/W (the most likely explanation).
3313 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003314 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003315
3316 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003317 if partition == "system":
3318 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3319 else:
3320 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003321 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003322 'ifelse (block_image_recover({device}, "{ranges}") && '
3323 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003324 'package_extract_file("{partition}.transfer.list"), '
3325 '"{partition}.new.dat", "{partition}.patch.dat"), '
3326 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003327 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003328 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003329 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003330
Tao Baodd2a5892015-03-12 12:32:37 -07003331 # Abort the OTA update. Note that the incremental OTA cannot be applied
3332 # even if it may match the checksum of the target partition.
3333 # a) If version < 3, operations like move and erase will make changes
3334 # unconditionally and damage the partition.
3335 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003336 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003337 if partition == "system":
3338 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3339 else:
3340 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3341 script.AppendExtra((
3342 'abort("E%d: %s partition has unexpected contents");\n'
3343 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003344
Yifan Hong10c530d2018-12-27 17:34:18 -08003345 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003346 partition = self.partition
3347 script.Print('Verifying the updated %s image...' % (partition,))
3348 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3349 ranges = self.tgt.care_map
3350 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003351 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003352 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003353 self.device, ranges_str,
3354 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003355
3356 # Bug: 20881595
3357 # Verify that extended blocks are really zeroed out.
3358 if self.tgt.extended:
3359 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003360 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003361 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003362 self.device, ranges_str,
3363 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003364 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003365 if partition == "system":
3366 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3367 else:
3368 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003369 script.AppendExtra(
3370 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003371 ' abort("E%d: %s partition has unexpected non-zero contents after '
3372 'OTA update");\n'
3373 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003374 else:
3375 script.Print('Verified the updated %s image.' % (partition,))
3376
Tianjie Xu209db462016-05-24 17:34:52 -07003377 if partition == "system":
3378 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3379 else:
3380 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3381
Tao Bao5fcaaef2015-06-01 13:40:49 -07003382 script.AppendExtra(
3383 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003384 ' abort("E%d: %s partition has unexpected contents after OTA '
3385 'update");\n'
3386 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003387
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003388 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003389 ZipWrite(output_zip,
3390 '{}.transfer.list'.format(self.path),
3391 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003392
Tao Bao76def242017-11-21 09:25:31 -08003393 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3394 # its size. Quailty 9 almost triples the compression time but doesn't
3395 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003396 # zip | brotli(quality 6) | brotli(quality 9)
3397 # compressed_size: 942M | 869M (~8% reduced) | 854M
3398 # compression_time: 75s | 265s | 719s
3399 # decompression_time: 15s | 25s | 25s
3400
3401 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003402 brotli_cmd = ['brotli', '--quality=6',
3403 '--output={}.new.dat.br'.format(self.path),
3404 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003405 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003406 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003407
3408 new_data_name = '{}.new.dat.br'.format(self.partition)
3409 ZipWrite(output_zip,
3410 '{}.new.dat.br'.format(self.path),
3411 new_data_name,
3412 compress_type=zipfile.ZIP_STORED)
3413 else:
3414 new_data_name = '{}.new.dat'.format(self.partition)
3415 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3416
Dan Albert8e0178d2015-01-27 15:53:15 -08003417 ZipWrite(output_zip,
3418 '{}.patch.dat'.format(self.path),
3419 '{}.patch.dat'.format(self.partition),
3420 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003421
Tianjie Xu209db462016-05-24 17:34:52 -07003422 if self.partition == "system":
3423 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3424 else:
3425 code = ErrorCode.VENDOR_UPDATE_FAILURE
3426
Yifan Hong10c530d2018-12-27 17:34:18 -08003427 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003428 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003429 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003430 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003431 device=self.device, partition=self.partition,
3432 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003433 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003434
Kelvin Zhang0876c412020-06-23 15:06:58 -04003435 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003436 data = source.ReadRangeSet(ranges)
3437 ctx = sha1()
3438
3439 for p in data:
3440 ctx.update(p)
3441
3442 return ctx.hexdigest()
3443
Kelvin Zhang0876c412020-06-23 15:06:58 -04003444 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003445 """Return the hash value for all zero blocks."""
3446 zero_block = '\x00' * 4096
3447 ctx = sha1()
3448 for _ in range(num_blocks):
3449 ctx.update(zero_block)
3450
3451 return ctx.hexdigest()
3452
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003453
Tianjie Xu41976c72019-07-03 13:57:01 -07003454# Expose these two classes to support vendor-specific scripts
3455DataImage = images.DataImage
3456EmptyImage = images.EmptyImage
3457
Tao Bao76def242017-11-21 09:25:31 -08003458
Doug Zongker96a57e72010-09-26 14:57:41 -07003459# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003460PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003461 "ext4": "EMMC",
3462 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003463 "f2fs": "EMMC",
3464 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003465}
Doug Zongker96a57e72010-09-26 14:57:41 -07003466
Kelvin Zhang0876c412020-06-23 15:06:58 -04003467
Yifan Hongbdb32012020-05-07 12:38:53 -07003468def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3469 """
3470 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3471 backwards compatibility. It aborts if the fstab entry has slotselect option
3472 (unless check_no_slot is explicitly set to False).
3473 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003474 fstab = info["fstab"]
3475 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003476 if check_no_slot:
3477 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003478 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003479 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3480 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003481 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003482
3483
Yifan Hongbdb32012020-05-07 12:38:53 -07003484def GetTypeAndDeviceExpr(mount_point, info):
3485 """
3486 Return the filesystem of the partition, and an edify expression that evaluates
3487 to the device at runtime.
3488 """
3489 fstab = info["fstab"]
3490 if fstab:
3491 p = fstab[mount_point]
3492 device_expr = '"%s"' % fstab[mount_point].device
3493 if p.slotselect:
3494 device_expr = 'add_slot_suffix(%s)' % device_expr
3495 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003496 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003497
3498
3499def GetEntryForDevice(fstab, device):
3500 """
3501 Returns:
3502 The first entry in fstab whose device is the given value.
3503 """
3504 if not fstab:
3505 return None
3506 for mount_point in fstab:
3507 if fstab[mount_point].device == device:
3508 return fstab[mount_point]
3509 return None
3510
Kelvin Zhang0876c412020-06-23 15:06:58 -04003511
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003512def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003513 """Parses and converts a PEM-encoded certificate into DER-encoded.
3514
3515 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3516
3517 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003518 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003519 """
3520 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003521 save = False
3522 for line in data.split("\n"):
3523 if "--END CERTIFICATE--" in line:
3524 break
3525 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003526 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003527 if "--BEGIN CERTIFICATE--" in line:
3528 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003529 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003530 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003531
Tao Bao04e1f012018-02-04 12:13:35 -08003532
3533def ExtractPublicKey(cert):
3534 """Extracts the public key (PEM-encoded) from the given certificate file.
3535
3536 Args:
3537 cert: The certificate filename.
3538
3539 Returns:
3540 The public key string.
3541
3542 Raises:
3543 AssertionError: On non-zero return from 'openssl'.
3544 """
3545 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3546 # While openssl 1.1 writes the key into the given filename followed by '-out',
3547 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3548 # stdout instead.
3549 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3550 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3551 pubkey, stderrdata = proc.communicate()
3552 assert proc.returncode == 0, \
3553 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3554 return pubkey
3555
3556
Tao Bao1ac886e2019-06-26 11:58:22 -07003557def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003558 """Extracts the AVB public key from the given public or private key.
3559
3560 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003561 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003562 key: The input key file, which should be PEM-encoded public or private key.
3563
3564 Returns:
3565 The path to the extracted AVB public key file.
3566 """
3567 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3568 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003569 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003570 return output
3571
3572
Doug Zongker412c02f2014-02-13 10:58:24 -08003573def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3574 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003575 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003576
Tao Bao6d5d6232018-03-09 17:04:42 -08003577 Most of the space in the boot and recovery images is just the kernel, which is
3578 identical for the two, so the resulting patch should be efficient. Add it to
3579 the output zip, along with a shell script that is run from init.rc on first
3580 boot to actually do the patching and install the new recovery image.
3581
3582 Args:
3583 input_dir: The top-level input directory of the target-files.zip.
3584 output_sink: The callback function that writes the result.
3585 recovery_img: File object for the recovery image.
3586 boot_img: File objects for the boot image.
3587 info_dict: A dict returned by common.LoadInfoDict() on the input
3588 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003589 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003590 if info_dict is None:
3591 info_dict = OPTIONS.info_dict
3592
Tao Bao6d5d6232018-03-09 17:04:42 -08003593 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003594 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3595
3596 if board_uses_vendorimage:
3597 # In this case, the output sink is rooted at VENDOR
3598 recovery_img_path = "etc/recovery.img"
3599 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3600 sh_dir = "bin"
3601 else:
3602 # In this case the output sink is rooted at SYSTEM
3603 recovery_img_path = "vendor/etc/recovery.img"
3604 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3605 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003606
Tao Baof2cffbd2015-07-22 12:33:18 -07003607 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003608 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003609
3610 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003611 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003612 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003613 # With system-root-image, boot and recovery images will have mismatching
3614 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3615 # to handle such a case.
3616 if system_root_image:
3617 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003618 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003619 assert not os.path.exists(path)
3620 else:
3621 diff_program = ["imgdiff"]
3622 if os.path.exists(path):
3623 diff_program.append("-b")
3624 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003625 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003626 else:
3627 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003628
3629 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3630 _, _, patch = d.ComputePatch()
3631 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003632
Dan Albertebb19aa2015-03-27 19:11:53 -07003633 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003634 # The following GetTypeAndDevice()s need to use the path in the target
3635 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003636 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3637 check_no_slot=False)
3638 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3639 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003640 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003641 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003642
Tao Baof2cffbd2015-07-22 12:33:18 -07003643 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003644
3645 # Note that we use /vendor to refer to the recovery resources. This will
3646 # work for a separate vendor partition mounted at /vendor or a
3647 # /system/vendor subdirectory on the system partition, for which init will
3648 # create a symlink from /vendor to /system/vendor.
3649
3650 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003651if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3652 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003653 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003654 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3655 log -t recovery "Installing new recovery image: succeeded" || \\
3656 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003657else
3658 log -t recovery "Recovery image already installed"
3659fi
3660""" % {'type': recovery_type,
3661 'device': recovery_device,
3662 'sha1': recovery_img.sha1,
3663 'size': recovery_img.size}
3664 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003665 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003666if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3667 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003668 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003669 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3670 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3671 log -t recovery "Installing new recovery image: succeeded" || \\
3672 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003673else
3674 log -t recovery "Recovery image already installed"
3675fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003676""" % {'boot_size': boot_img.size,
3677 'boot_sha1': boot_img.sha1,
3678 'recovery_size': recovery_img.size,
3679 'recovery_sha1': recovery_img.sha1,
3680 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003681 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003682 'recovery_type': recovery_type,
3683 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003684 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003685
Bill Peckhame868aec2019-09-17 17:06:47 -07003686 # The install script location moved from /system/etc to /system/bin in the L
3687 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3688 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003689
Tao Bao32fcdab2018-10-12 10:30:39 -07003690 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003691
Tao Baoda30cfa2017-12-01 16:19:46 -08003692 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003693
3694
3695class DynamicPartitionUpdate(object):
3696 def __init__(self, src_group=None, tgt_group=None, progress=None,
3697 block_difference=None):
3698 self.src_group = src_group
3699 self.tgt_group = tgt_group
3700 self.progress = progress
3701 self.block_difference = block_difference
3702
3703 @property
3704 def src_size(self):
3705 if not self.block_difference:
3706 return 0
3707 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3708
3709 @property
3710 def tgt_size(self):
3711 if not self.block_difference:
3712 return 0
3713 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3714
3715 @staticmethod
3716 def _GetSparseImageSize(img):
3717 if not img:
3718 return 0
3719 return img.blocksize * img.total_blocks
3720
3721
3722class DynamicGroupUpdate(object):
3723 def __init__(self, src_size=None, tgt_size=None):
3724 # None: group does not exist. 0: no size limits.
3725 self.src_size = src_size
3726 self.tgt_size = tgt_size
3727
3728
3729class DynamicPartitionsDifference(object):
3730 def __init__(self, info_dict, block_diffs, progress_dict=None,
3731 source_info_dict=None):
3732 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003733 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003734
3735 self._remove_all_before_apply = False
3736 if source_info_dict is None:
3737 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003738 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003739
Tao Baof1113e92019-06-18 12:10:14 -07003740 block_diff_dict = collections.OrderedDict(
3741 [(e.partition, e) for e in block_diffs])
3742
Yifan Hong10c530d2018-12-27 17:34:18 -08003743 assert len(block_diff_dict) == len(block_diffs), \
3744 "Duplicated BlockDifference object for {}".format(
3745 [partition for partition, count in
3746 collections.Counter(e.partition for e in block_diffs).items()
3747 if count > 1])
3748
Yifan Hong79997e52019-01-23 16:56:19 -08003749 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003750
3751 for p, block_diff in block_diff_dict.items():
3752 self._partition_updates[p] = DynamicPartitionUpdate()
3753 self._partition_updates[p].block_difference = block_diff
3754
3755 for p, progress in progress_dict.items():
3756 if p in self._partition_updates:
3757 self._partition_updates[p].progress = progress
3758
3759 tgt_groups = shlex.split(info_dict.get(
3760 "super_partition_groups", "").strip())
3761 src_groups = shlex.split(source_info_dict.get(
3762 "super_partition_groups", "").strip())
3763
3764 for g in tgt_groups:
3765 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003766 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003767 assert p in self._partition_updates, \
3768 "{} is in target super_{}_partition_list but no BlockDifference " \
3769 "object is provided.".format(p, g)
3770 self._partition_updates[p].tgt_group = g
3771
3772 for g in src_groups:
3773 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003774 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003775 assert p in self._partition_updates, \
3776 "{} is in source super_{}_partition_list but no BlockDifference " \
3777 "object is provided.".format(p, g)
3778 self._partition_updates[p].src_group = g
3779
Yifan Hong45433e42019-01-18 13:55:25 -08003780 target_dynamic_partitions = set(shlex.split(info_dict.get(
3781 "dynamic_partition_list", "").strip()))
3782 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3783 if u.tgt_size)
3784 assert block_diffs_with_target == target_dynamic_partitions, \
3785 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3786 list(target_dynamic_partitions), list(block_diffs_with_target))
3787
3788 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3789 "dynamic_partition_list", "").strip()))
3790 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3791 if u.src_size)
3792 assert block_diffs_with_source == source_dynamic_partitions, \
3793 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3794 list(source_dynamic_partitions), list(block_diffs_with_source))
3795
Yifan Hong10c530d2018-12-27 17:34:18 -08003796 if self._partition_updates:
3797 logger.info("Updating dynamic partitions %s",
3798 self._partition_updates.keys())
3799
Yifan Hong79997e52019-01-23 16:56:19 -08003800 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003801
3802 for g in tgt_groups:
3803 self._group_updates[g] = DynamicGroupUpdate()
3804 self._group_updates[g].tgt_size = int(info_dict.get(
3805 "super_%s_group_size" % g, "0").strip())
3806
3807 for g in src_groups:
3808 if g not in self._group_updates:
3809 self._group_updates[g] = DynamicGroupUpdate()
3810 self._group_updates[g].src_size = int(source_info_dict.get(
3811 "super_%s_group_size" % g, "0").strip())
3812
3813 self._Compute()
3814
3815 def WriteScript(self, script, output_zip, write_verify_script=False):
3816 script.Comment('--- Start patching dynamic partitions ---')
3817 for p, u in self._partition_updates.items():
3818 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3819 script.Comment('Patch partition %s' % p)
3820 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3821 write_verify_script=False)
3822
3823 op_list_path = MakeTempFile()
3824 with open(op_list_path, 'w') as f:
3825 for line in self._op_list:
3826 f.write('{}\n'.format(line))
3827
3828 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3829
3830 script.Comment('Update dynamic partition metadata')
3831 script.AppendExtra('assert(update_dynamic_partitions('
3832 'package_extract_file("dynamic_partitions_op_list")));')
3833
3834 if write_verify_script:
3835 for p, u in self._partition_updates.items():
3836 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3837 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003838 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003839
3840 for p, u in self._partition_updates.items():
3841 if u.tgt_size and u.src_size <= u.tgt_size:
3842 script.Comment('Patch partition %s' % p)
3843 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3844 write_verify_script=write_verify_script)
3845 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003846 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003847
3848 script.Comment('--- End patching dynamic partitions ---')
3849
3850 def _Compute(self):
3851 self._op_list = list()
3852
3853 def append(line):
3854 self._op_list.append(line)
3855
3856 def comment(line):
3857 self._op_list.append("# %s" % line)
3858
3859 if self._remove_all_before_apply:
3860 comment('Remove all existing dynamic partitions and groups before '
3861 'applying full OTA')
3862 append('remove_all_groups')
3863
3864 for p, u in self._partition_updates.items():
3865 if u.src_group and not u.tgt_group:
3866 append('remove %s' % p)
3867
3868 for p, u in self._partition_updates.items():
3869 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3870 comment('Move partition %s from %s to default' % (p, u.src_group))
3871 append('move %s default' % p)
3872
3873 for p, u in self._partition_updates.items():
3874 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3875 comment('Shrink partition %s from %d to %d' %
3876 (p, u.src_size, u.tgt_size))
3877 append('resize %s %s' % (p, u.tgt_size))
3878
3879 for g, u in self._group_updates.items():
3880 if u.src_size is not None and u.tgt_size is None:
3881 append('remove_group %s' % g)
3882 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003883 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003884 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3885 append('resize_group %s %d' % (g, u.tgt_size))
3886
3887 for g, u in self._group_updates.items():
3888 if u.src_size is None and u.tgt_size is not None:
3889 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3890 append('add_group %s %d' % (g, u.tgt_size))
3891 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003892 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003893 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3894 append('resize_group %s %d' % (g, u.tgt_size))
3895
3896 for p, u in self._partition_updates.items():
3897 if u.tgt_group and not u.src_group:
3898 comment('Add partition %s to group %s' % (p, u.tgt_group))
3899 append('add %s %s' % (p, u.tgt_group))
3900
3901 for p, u in self._partition_updates.items():
3902 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003903 comment('Grow partition %s from %d to %d' %
3904 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003905 append('resize %s %d' % (p, u.tgt_size))
3906
3907 for p, u in self._partition_updates.items():
3908 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3909 comment('Move partition %s from default to %s' %
3910 (p, u.tgt_group))
3911 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003912
3913
jiajia tangf3f842b2021-03-17 21:49:44 +08003914def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003915 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003916 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003917
3918 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003919 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003920
3921 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003922 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003923 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003924 tmp_dir = MakeTempDir('boot_', suffix='.img')
3925 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003926 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3927 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003928 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3929 if not os.path.isfile(ramdisk):
3930 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3931 return None
3932 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003933 if ramdisk_format == RamdiskFormat.LZ4:
3934 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3935 elif ramdisk_format == RamdiskFormat.GZ:
3936 with open(ramdisk, 'rb') as input_stream:
3937 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003938 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3939 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003940 p2.wait()
3941 else:
3942 logger.error('Only support lz4 or minigzip ramdisk format.')
3943 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003944
3945 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3946 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3947 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3948 # the host environment.
3949 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003950 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003951
Yifan Hongc65a0542021-01-07 14:21:01 -08003952 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3953 prop_file = os.path.join(extracted_ramdisk, search_path)
3954 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003955 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003956 logger.warning(
3957 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003958
Yifan Hong7dc51172021-01-12 11:27:39 -08003959 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003960
Yifan Hong85ac5012021-01-07 14:43:46 -08003961 except ExternalError as e:
3962 logger.warning('Unable to get boot image build props: %s', e)
3963 return None
3964
3965
3966def GetBootImageTimestamp(boot_img):
3967 """
3968 Get timestamp from ramdisk within the boot image
3969
3970 Args:
3971 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3972
3973 Return:
3974 An integer that corresponds to the timestamp of the boot image, or None
3975 if file has unknown format. Raise exception if an unexpected error has
3976 occurred.
3977 """
3978 prop_file = GetBootImageBuildProp(boot_img)
3979 if not prop_file:
3980 return None
3981
3982 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3983 if props is None:
3984 return None
3985
3986 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003987 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3988 if timestamp:
3989 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003990 logger.warning(
3991 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003992 return None
3993
3994 except ExternalError as e:
3995 logger.warning('Unable to get boot image timestamp: %s', e)
3996 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003997
3998
3999def GetCareMap(which, imgname):
4000 """Returns the care_map string for the given partition.
4001
4002 Args:
4003 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
4004 imgname: The filename of the image.
4005
4006 Returns:
4007 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
4008 RangeSet; or None.
4009 """
4010 assert which in PARTITIONS_WITH_CARE_MAP
4011
4012 # which + "_image_size" contains the size that the actual filesystem image
4013 # resides in, which is all that needs to be verified. The additional blocks in
4014 # the image file contain verity metadata, by reading which would trigger
4015 # invalid reads.
4016 image_size = OPTIONS.info_dict.get(which + "_image_size")
4017 if not image_size:
4018 return None
4019
David Anderson9e95a022021-08-31 21:32:45 -07004020 disable_sparse = OPTIONS.info_dict.get(which + "_disable_sparse")
4021
Kelvin Zhang27324132021-03-22 15:38:38 -04004022 image_blocks = int(image_size) // 4096 - 1
Kelvin Zhang98ef7bb2022-01-07 14:41:46 -08004023 # It's OK for image_blocks to be 0, because care map ranges are inclusive.
4024 # So 0-0 means "just block 0", which is valid.
4025 assert image_blocks >= 0, "blocks for {} must be non-negative, image size: {}".format(
4026 which, image_size)
Kelvin Zhang27324132021-03-22 15:38:38 -04004027
4028 # For sparse images, we will only check the blocks that are listed in the care
4029 # map, i.e. the ones with meaningful data.
David Anderson9e95a022021-08-31 21:32:45 -07004030 if "extfs_sparse_flag" in OPTIONS.info_dict and not disable_sparse:
Kelvin Zhang27324132021-03-22 15:38:38 -04004031 simg = sparse_img.SparseImage(imgname)
4032 care_map_ranges = simg.care_map.intersect(
4033 rangelib.RangeSet("0-{}".format(image_blocks)))
4034
4035 # Otherwise for non-sparse images, we read all the blocks in the filesystem
4036 # image.
4037 else:
4038 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
4039
4040 return [which, care_map_ranges.to_string_raw()]
4041
4042
4043def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
4044 """Generates and adds care_map.pb for a/b partition that has care_map.
4045
4046 Args:
4047 output_file: The output zip file (needs to be already open),
4048 or file path to write care_map.pb.
4049 ab_partitions: The list of A/B partitions.
4050 image_paths: A map from the partition name to the image path.
4051 """
4052 if not output_file:
4053 raise ExternalError('Expected output_file for AddCareMapForAbOta')
4054
4055 care_map_list = []
4056 for partition in ab_partitions:
4057 partition = partition.strip()
4058 if partition not in PARTITIONS_WITH_CARE_MAP:
4059 continue
4060
4061 verity_block_device = "{}_verity_block_device".format(partition)
4062 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
4063 if (verity_block_device in OPTIONS.info_dict or
4064 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
4065 if partition not in image_paths:
4066 logger.warning('Potential partition with care_map missing from images: %s',
4067 partition)
4068 continue
4069 image_path = image_paths[partition]
4070 if not os.path.exists(image_path):
4071 raise ExternalError('Expected image at path {}'.format(image_path))
4072
4073 care_map = GetCareMap(partition, image_path)
4074 if not care_map:
4075 continue
4076 care_map_list += care_map
4077
4078 # adds fingerprint field to the care_map
4079 # TODO(xunchang) revisit the fingerprint calculation for care_map.
4080 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
4081 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
4082 "ro.{}.build.thumbprint".format(partition)]
4083
4084 present_props = [x for x in prop_name_list if
4085 partition_props and partition_props.GetProp(x)]
4086 if not present_props:
4087 logger.warning(
4088 "fingerprint is not present for partition %s", partition)
4089 property_id, fingerprint = "unknown", "unknown"
4090 else:
4091 property_id = present_props[0]
4092 fingerprint = partition_props.GetProp(property_id)
4093 care_map_list += [property_id, fingerprint]
4094
4095 if not care_map_list:
4096 return
4097
4098 # Converts the list into proto buf message by calling care_map_generator; and
4099 # writes the result to a temp file.
4100 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
4101 suffix=".txt")
4102 with open(temp_care_map_text, 'w') as text_file:
4103 text_file.write('\n'.join(care_map_list))
4104
4105 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
4106 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
4107 RunAndCheckOutput(care_map_gen_cmd)
4108
4109 if not isinstance(output_file, zipfile.ZipFile):
4110 shutil.copy(temp_care_map, output_file)
4111 return
4112 # output_file is a zip file
4113 care_map_path = "META/care_map.pb"
4114 if care_map_path in output_file.namelist():
4115 # Copy the temp file into the OPTIONS.input_tmp dir and update the
4116 # replace_updated_files_list used by add_img_to_target_files
4117 if not OPTIONS.replace_updated_files_list:
4118 OPTIONS.replace_updated_files_list = []
4119 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
4120 OPTIONS.replace_updated_files_list.append(care_map_path)
4121 else:
4122 ZipWrite(output_file, temp_care_map, arcname=care_map_path)
Kelvin Zhang26390482021-11-02 14:31:10 -07004123
4124
4125def IsSparseImage(filepath):
4126 with open(filepath, 'rb') as fp:
4127 # Magic for android sparse image format
4128 # https://source.android.com/devices/bootloader/images
4129 return fp.read(4) == b'\x3A\xFF\x26\xED'