blob: ffcd74868da7ce5c8641e48799687b1cd1fec143 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Doug Zongker8ce7c252009-05-22 13:34:54 -070020import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070021import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070022import getopt
23import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010024import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070025import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070026import json
27import logging
28import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070029import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080030import platform
Doug Zongkereef39442009-04-02 12:14:19 -070031import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070032import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070033import shutil
34import subprocess
35import sys
36import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070037import threading
38import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070039import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080040from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070041
Tianjie Xu41976c72019-07-03 13:57:01 -070042import images
Tao Baoc765cca2018-01-31 17:32:40 -080043import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070044from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070045
Tao Bao32fcdab2018-10-12 10:30:39 -070046logger = logging.getLogger(__name__)
47
Tao Bao986ee862018-10-04 15:46:16 -070048
Dan Albert8b72aef2015-03-23 19:13:21 -070049class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070052 # Set up search path, in order to find framework/ and lib64/. At the time of
53 # running this function, user-supplied search path (`--path`) hasn't been
54 # available. So the value set here is the default, which might be overridden
55 # by commandline flag later.
56 exec_path = sys.argv[0]
57 if exec_path.endswith('.py'):
58 script_name = os.path.basename(exec_path)
59 # logger hasn't been initialized yet at this point. Use print to output
60 # warnings.
61 print(
62 'Warning: releasetools script should be invoked as hermetic Python '
63 'executable -- build and run `{}` directly.'.format(script_name[:-3]),
64 file=sys.stderr)
65 self.search_path = os.path.realpath(os.path.join(exec_path, '..'))
Pavel Salomatov32676552019-03-06 20:00:45 +030066
Dan Albert8b72aef2015-03-23 19:13:21 -070067 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080068 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070069 self.extra_signapk_args = []
70 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080071 self.java_args = ["-Xmx2048m"] # The default JVM args.
Dan Albert8b72aef2015-03-23 19:13:21 -070072 self.public_key_suffix = ".x509.pem"
73 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070074 # use otatools built boot_signer by default
75 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070076 self.boot_signer_args = []
77 self.verity_signer_path = None
78 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070079 self.verbose = False
80 self.tempfiles = []
81 self.device_specific = None
82 self.extras = {}
83 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070084 self.source_info_dict = None
85 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070086 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070087 # Stash size cannot exceed cache_size * threshold.
88 self.cache_size = None
89 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070090 self.logfile = None
Dan Albert8b72aef2015-03-23 19:13:21 -070091
92
93OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -070094
Tao Bao71197512018-10-11 14:08:45 -070095# The block size that's used across the releasetools scripts.
96BLOCK_SIZE = 4096
97
Doug Zongkerf6a53aa2009-12-15 15:06:55 -080098# Values for "certificate" in apkcerts that mean special things.
99SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
100
Tao Bao5cc0abb2019-03-21 10:18:05 -0700101# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
102# that system_other is not in the list because we don't want to include its
103# descriptor into vbmeta.img.
Justin Yun6151e3f2019-06-25 15:58:13 +0900104AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'recovery', 'system',
Steve Mucklee1b10862019-07-10 10:49:37 -0700105 'system_ext', 'vendor', 'vendor_boot')
Tao Bao9dd909e2017-11-14 11:27:32 -0800106
Tao Bao08c190f2019-06-03 23:07:58 -0700107# Chained VBMeta partitions.
108AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
109
Tianjie Xu861f4132018-09-12 11:49:33 -0700110# Partitions that should have their care_map added to META/care_map.pb
Justin Yun6151e3f2019-06-25 15:58:13 +0900111PARTITIONS_WITH_CARE_MAP = ('system', 'vendor', 'product', 'system_ext', 'odm')
Tianjie Xu861f4132018-09-12 11:49:33 -0700112
113
Tianjie Xu209db462016-05-24 17:34:52 -0700114class ErrorCode(object):
115 """Define error_codes for failures that happen during the actual
116 update package installation.
117
118 Error codes 0-999 are reserved for failures before the package
119 installation (i.e. low battery, package verification failure).
120 Detailed code in 'bootable/recovery/error_code.h' """
121
122 SYSTEM_VERIFICATION_FAILURE = 1000
123 SYSTEM_UPDATE_FAILURE = 1001
124 SYSTEM_UNEXPECTED_CONTENTS = 1002
125 SYSTEM_NONZERO_CONTENTS = 1003
126 SYSTEM_RECOVER_FAILURE = 1004
127 VENDOR_VERIFICATION_FAILURE = 2000
128 VENDOR_UPDATE_FAILURE = 2001
129 VENDOR_UNEXPECTED_CONTENTS = 2002
130 VENDOR_NONZERO_CONTENTS = 2003
131 VENDOR_RECOVER_FAILURE = 2004
132 OEM_PROP_MISMATCH = 3000
133 FINGERPRINT_MISMATCH = 3001
134 THUMBPRINT_MISMATCH = 3002
135 OLDER_BUILD = 3003
136 DEVICE_MISMATCH = 3004
137 BAD_PATCH_FILE = 3005
138 INSUFFICIENT_CACHE_SPACE = 3006
139 TUNE_PARTITION_FAILURE = 3007
140 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800141
Tao Bao80921982018-03-21 21:02:19 -0700142
Dan Albert8b72aef2015-03-23 19:13:21 -0700143class ExternalError(RuntimeError):
144 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700145
146
Tao Bao32fcdab2018-10-12 10:30:39 -0700147def InitLogging():
148 DEFAULT_LOGGING_CONFIG = {
149 'version': 1,
150 'disable_existing_loggers': False,
151 'formatters': {
152 'standard': {
153 'format':
154 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
155 'datefmt': '%Y-%m-%d %H:%M:%S',
156 },
157 },
158 'handlers': {
159 'default': {
160 'class': 'logging.StreamHandler',
161 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700162 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700163 },
164 },
165 'loggers': {
166 '': {
167 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700168 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700169 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700170 }
171 }
172 }
173 env_config = os.getenv('LOGGING_CONFIG')
174 if env_config:
175 with open(env_config) as f:
176 config = json.load(f)
177 else:
178 config = DEFAULT_LOGGING_CONFIG
179
180 # Increase the logging level for verbose mode.
181 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700182 config = copy.deepcopy(config)
183 config['handlers']['default']['level'] = 'INFO'
184
185 if OPTIONS.logfile:
186 config = copy.deepcopy(config)
187 config['handlers']['logfile'] = {
188 'class': 'logging.FileHandler',
189 'formatter': 'standard',
190 'level': 'INFO',
191 'mode': 'w',
192 'filename': OPTIONS.logfile,
193 }
194 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700195
196 logging.config.dictConfig(config)
197
198
Tao Bao39451582017-05-04 11:10:47 -0700199def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700200 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700201
Tao Bao73dd4f42018-10-04 16:25:33 -0700202 Args:
203 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700204 verbose: Whether the commands should be shown. Default to the global
205 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700206 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
207 stdin, etc. stdout and stderr will default to subprocess.PIPE and
208 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800209 universal_newlines will default to True, as most of the users in
210 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700211
212 Returns:
213 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700214 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700215 if 'stdout' not in kwargs and 'stderr' not in kwargs:
216 kwargs['stdout'] = subprocess.PIPE
217 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800218 if 'universal_newlines' not in kwargs:
219 kwargs['universal_newlines'] = True
Tao Bao32fcdab2018-10-12 10:30:39 -0700220 # Don't log any if caller explicitly says so.
221 if verbose != False:
222 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700223 return subprocess.Popen(args, **kwargs)
224
225
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800226def RunAndWait(args, verbose=None, **kwargs):
Bill Peckham889b0c62019-02-21 18:53:37 -0800227 """Runs the given command waiting for it to complete.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800228
229 Args:
230 args: The command represented as a list of strings.
231 verbose: Whether the commands should be shown. Default to the global
232 verbosity if unspecified.
233 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
234 stdin, etc. stdout and stderr will default to subprocess.PIPE and
235 subprocess.STDOUT respectively unless caller specifies any of them.
236
Bill Peckham889b0c62019-02-21 18:53:37 -0800237 Raises:
238 ExternalError: On non-zero exit from the command.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800239 """
240 proc = Run(args, verbose=verbose, **kwargs)
241 proc.wait()
Bill Peckham889b0c62019-02-21 18:53:37 -0800242
243 if proc.returncode != 0:
244 raise ExternalError(
245 "Failed to run command '{}' (exit code {})".format(
246 args, proc.returncode))
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800247
248
Tao Bao986ee862018-10-04 15:46:16 -0700249def RunAndCheckOutput(args, verbose=None, **kwargs):
250 """Runs the given command and returns the output.
251
252 Args:
253 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700254 verbose: Whether the commands should be shown. Default to the global
255 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700256 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
257 stdin, etc. stdout and stderr will default to subprocess.PIPE and
258 subprocess.STDOUT respectively unless caller specifies any of them.
259
260 Returns:
261 The output string.
262
263 Raises:
264 ExternalError: On non-zero exit from the command.
265 """
Tao Bao986ee862018-10-04 15:46:16 -0700266 proc = Run(args, verbose=verbose, **kwargs)
267 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800268 if output is None:
269 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700270 # Don't log any if caller explicitly says so.
271 if verbose != False:
272 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700273 if proc.returncode != 0:
274 raise ExternalError(
275 "Failed to run command '{}' (exit code {}):\n{}".format(
276 args, proc.returncode, output))
277 return output
278
279
Tao Baoc765cca2018-01-31 17:32:40 -0800280def RoundUpTo4K(value):
281 rounded_up = value + 4095
282 return rounded_up - (rounded_up % 4096)
283
284
Ying Wang7e6d4e42010-12-13 16:25:36 -0800285def CloseInheritedPipes():
286 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
287 before doing other work."""
288 if platform.system() != "Darwin":
289 return
290 for d in range(3, 1025):
291 try:
292 stat = os.fstat(d)
293 if stat is not None:
294 pipebit = stat[0] & 0x1000
295 if pipebit != 0:
296 os.close(d)
297 except OSError:
298 pass
299
300
Tao Bao1c320f82019-10-04 23:25:12 -0700301class BuildInfo(object):
302 """A class that holds the information for a given build.
303
304 This class wraps up the property querying for a given source or target build.
305 It abstracts away the logic of handling OEM-specific properties, and caches
306 the commonly used properties such as fingerprint.
307
308 There are two types of info dicts: a) build-time info dict, which is generated
309 at build time (i.e. included in a target_files zip); b) OEM info dict that is
310 specified at package generation time (via command line argument
311 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
312 having "oem_fingerprint_properties" in build-time info dict), all the queries
313 would be answered based on build-time info dict only. Otherwise if using
314 OEM-specific properties, some of them will be calculated from two info dicts.
315
316 Users can query properties similarly as using a dict() (e.g. info['fstab']),
317 or to query build properties via GetBuildProp() or GetVendorBuildProp().
318
319 Attributes:
320 info_dict: The build-time info dict.
321 is_ab: Whether it's a build that uses A/B OTA.
322 oem_dicts: A list of OEM dicts.
323 oem_props: A list of OEM properties that should be read from OEM dicts; None
324 if the build doesn't use any OEM-specific property.
325 fingerprint: The fingerprint of the build, which would be calculated based
326 on OEM properties if applicable.
327 device: The device name, which could come from OEM dicts if applicable.
328 """
329
330 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
331 "ro.product.manufacturer", "ro.product.model",
332 "ro.product.name"]
333 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER = ["product", "odm", "vendor",
334 "system_ext", "system"]
335
Tao Bao3ed35d32019-10-07 20:48:48 -0700336 def __init__(self, info_dict, oem_dicts=None):
Tao Bao1c320f82019-10-04 23:25:12 -0700337 """Initializes a BuildInfo instance with the given dicts.
338
339 Note that it only wraps up the given dicts, without making copies.
340
341 Arguments:
342 info_dict: The build-time info dict.
343 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
344 that it always uses the first dict to calculate the fingerprint or the
345 device name. The rest would be used for asserting OEM properties only
346 (e.g. one package can be installed on one of these devices).
347
348 Raises:
349 ValueError: On invalid inputs.
350 """
351 self.info_dict = info_dict
352 self.oem_dicts = oem_dicts
353
354 self._is_ab = info_dict.get("ab_update") == "true"
355 self._oem_props = info_dict.get("oem_fingerprint_properties")
356
357 if self._oem_props:
358 assert oem_dicts, "OEM source required for this build"
359
360 # These two should be computed only after setting self._oem_props.
361 self._device = self.GetOemProperty("ro.product.device")
362 self._fingerprint = self.CalculateFingerprint()
363
364 # Sanity check the build fingerprint.
365 if (' ' in self._fingerprint or
366 any(ord(ch) > 127 for ch in self._fingerprint)):
367 raise ValueError(
368 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
369 '3.2.2. Build Parameters.'.format(self._fingerprint))
370
371 @property
372 def is_ab(self):
373 return self._is_ab
374
375 @property
376 def device(self):
377 return self._device
378
379 @property
380 def fingerprint(self):
381 return self._fingerprint
382
383 @property
384 def vendor_fingerprint(self):
385 return self._fingerprint_of("vendor")
386
387 @property
388 def product_fingerprint(self):
389 return self._fingerprint_of("product")
390
391 @property
392 def odm_fingerprint(self):
393 return self._fingerprint_of("odm")
394
395 def _fingerprint_of(self, partition):
396 if partition + ".build.prop" not in self.info_dict:
397 return None
398 build_prop = self.info_dict[partition + ".build.prop"]
399 if "ro." + partition + ".build.fingerprint" in build_prop:
400 return build_prop["ro." + partition + ".build.fingerprint"]
401 if "ro." + partition + ".build.thumbprint" in build_prop:
402 return build_prop["ro." + partition + ".build.thumbprint"]
403 return None
404
405 @property
406 def oem_props(self):
407 return self._oem_props
408
409 def __getitem__(self, key):
410 return self.info_dict[key]
411
412 def __setitem__(self, key, value):
413 self.info_dict[key] = value
414
415 def get(self, key, default=None):
416 return self.info_dict.get(key, default)
417
418 def items(self):
419 return self.info_dict.items()
420
421 def GetBuildProp(self, prop):
422 """Returns the inquired build property."""
423 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
424 return self._ResolveRoProductBuildProp(prop)
425
426 try:
427 return self.info_dict.get("build.prop", {})[prop]
428 except KeyError:
429 raise ExternalError("couldn't find %s in build.prop" % (prop,))
430
431 def _ResolveRoProductBuildProp(self, prop):
432 """Resolves the inquired ro.product.* build property"""
433 prop_val = self.info_dict.get("build.prop", {}).get(prop)
434 if prop_val:
435 return prop_val
436
437 source_order_val = self.info_dict.get("build.prop", {}).get(
438 "ro.product.property_source_order")
439 if source_order_val:
440 source_order = source_order_val.split(",")
441 else:
442 source_order = BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
443
444 # Check that all sources in ro.product.property_source_order are valid
445 if any([x not in BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
446 for x in source_order]):
447 raise ExternalError(
448 "Invalid ro.product.property_source_order '{}'".format(source_order))
449
450 for source in source_order:
451 source_prop = prop.replace(
452 "ro.product", "ro.product.{}".format(source), 1)
453 prop_val = self.info_dict.get(
454 "{}.build.prop".format(source), {}).get(source_prop)
455 if prop_val:
456 return prop_val
457
458 raise ExternalError("couldn't resolve {}".format(prop))
459
460 def GetVendorBuildProp(self, prop):
461 """Returns the inquired vendor build property."""
462 try:
463 return self.info_dict.get("vendor.build.prop", {})[prop]
464 except KeyError:
465 raise ExternalError(
466 "couldn't find %s in vendor.build.prop" % (prop,))
467
468 def GetOemProperty(self, key):
469 if self.oem_props is not None and key in self.oem_props:
470 return self.oem_dicts[0][key]
471 return self.GetBuildProp(key)
472
473 def CalculateFingerprint(self):
474 if self.oem_props is None:
475 try:
476 return self.GetBuildProp("ro.build.fingerprint")
477 except ExternalError:
478 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
479 self.GetBuildProp("ro.product.brand"),
480 self.GetBuildProp("ro.product.name"),
481 self.GetBuildProp("ro.product.device"),
482 self.GetBuildProp("ro.build.version.release"),
483 self.GetBuildProp("ro.build.id"),
484 self.GetBuildProp("ro.build.version.incremental"),
485 self.GetBuildProp("ro.build.type"),
486 self.GetBuildProp("ro.build.tags"))
487 return "%s/%s/%s:%s" % (
488 self.GetOemProperty("ro.product.brand"),
489 self.GetOemProperty("ro.product.name"),
490 self.GetOemProperty("ro.product.device"),
491 self.GetBuildProp("ro.build.thumbprint"))
492
493 def WriteMountOemScript(self, script):
494 assert self.oem_props is not None
495 recovery_mount_options = self.info_dict.get("recovery_mount_options")
496 script.Mount("/oem", recovery_mount_options)
497
498 def WriteDeviceAssertions(self, script, oem_no_mount):
499 # Read the property directly if not using OEM properties.
500 if not self.oem_props:
501 script.AssertDevice(self.device)
502 return
503
504 # Otherwise assert OEM properties.
505 if not self.oem_dicts:
506 raise ExternalError(
507 "No OEM file provided to answer expected assertions")
508
509 for prop in self.oem_props.split():
510 values = []
511 for oem_dict in self.oem_dicts:
512 if prop in oem_dict:
513 values.append(oem_dict[prop])
514 if not values:
515 raise ExternalError(
516 "The OEM file is missing the property %s" % (prop,))
517 script.AssertOemProperty(prop, values, oem_no_mount)
518
519
Tao Bao410ad8b2018-08-24 12:08:38 -0700520def LoadInfoDict(input_file, repacking=False):
521 """Loads the key/value pairs from the given input target_files.
522
523 It reads `META/misc_info.txt` file in the target_files input, does sanity
524 checks and returns the parsed key/value pairs for to the given build. It's
525 usually called early when working on input target_files files, e.g. when
526 generating OTAs, or signing builds. Note that the function may be called
527 against an old target_files file (i.e. from past dessert releases). So the
528 property parsing needs to be backward compatible.
529
530 In a `META/misc_info.txt`, a few properties are stored as links to the files
531 in the PRODUCT_OUT directory. It works fine with the build system. However,
532 they are no longer available when (re)generating images from target_files zip.
533 When `repacking` is True, redirect these properties to the actual files in the
534 unzipped directory.
535
536 Args:
537 input_file: The input target_files file, which could be an open
538 zipfile.ZipFile instance, or a str for the dir that contains the files
539 unzipped from a target_files file.
540 repacking: Whether it's trying repack an target_files file after loading the
541 info dict (default: False). If so, it will rewrite a few loaded
542 properties (e.g. selinux_fc, root_dir) to point to the actual files in
543 target_files file. When doing repacking, `input_file` must be a dir.
544
545 Returns:
546 A dict that contains the parsed key/value pairs.
547
548 Raises:
549 AssertionError: On invalid input arguments.
550 ValueError: On malformed input values.
551 """
552 if repacking:
553 assert isinstance(input_file, str), \
554 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700555
Doug Zongkerc9253822014-02-04 12:17:58 -0800556 def read_helper(fn):
Dan Albert8b72aef2015-03-23 19:13:21 -0700557 if isinstance(input_file, zipfile.ZipFile):
Tao Baoda30cfa2017-12-01 16:19:46 -0800558 return input_file.read(fn).decode()
Doug Zongkerc9253822014-02-04 12:17:58 -0800559 else:
Dan Albert8b72aef2015-03-23 19:13:21 -0700560 path = os.path.join(input_file, *fn.split("/"))
Doug Zongkerc9253822014-02-04 12:17:58 -0800561 try:
562 with open(path) as f:
563 return f.read()
Dan Albert8b72aef2015-03-23 19:13:21 -0700564 except IOError as e:
Doug Zongkerc9253822014-02-04 12:17:58 -0800565 if e.errno == errno.ENOENT:
566 raise KeyError(fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800567
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700568 try:
Michael Runge6e836112014-04-15 17:40:21 -0700569 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700570 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700571 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700572
Tao Bao410ad8b2018-08-24 12:08:38 -0700573 if "recovery_api_version" not in d:
574 raise ValueError("Failed to find 'recovery_api_version'")
575 if "fstab_version" not in d:
576 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800577
Tao Bao410ad8b2018-08-24 12:08:38 -0700578 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700579 # "selinux_fc" properties should point to the file_contexts files
580 # (file_contexts.bin) under META/.
581 for key in d:
582 if key.endswith("selinux_fc"):
583 fc_basename = os.path.basename(d[key])
584 fc_config = os.path.join(input_file, "META", fc_basename)
585 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700586
Daniel Norman72c626f2019-05-13 15:58:14 -0700587 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700588
Tom Cherryd14b8952018-08-09 14:26:00 -0700589 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700590 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700591 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700592 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700593
Tao Baof54216f2016-03-29 15:12:37 -0700594 # Redirect {system,vendor}_base_fs_file.
595 if "system_base_fs_file" in d:
596 basename = os.path.basename(d["system_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700597 system_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700598 if os.path.exists(system_base_fs_file):
599 d["system_base_fs_file"] = system_base_fs_file
600 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700601 logger.warning(
602 "Failed to find system base fs file: %s", system_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700603 del d["system_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700604
605 if "vendor_base_fs_file" in d:
606 basename = os.path.basename(d["vendor_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700607 vendor_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700608 if os.path.exists(vendor_base_fs_file):
609 d["vendor_base_fs_file"] = vendor_base_fs_file
610 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700611 logger.warning(
612 "Failed to find vendor base fs file: %s", vendor_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700613 del d["vendor_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700614
Doug Zongker37974732010-09-16 17:44:38 -0700615 def makeint(key):
616 if key in d:
617 d[key] = int(d[key], 0)
618
619 makeint("recovery_api_version")
620 makeint("blocksize")
621 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700622 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700623 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700624 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700625 makeint("recovery_size")
626 makeint("boot_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800627 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700628
Tao Bao765668f2019-10-04 22:03:00 -0700629 # Load recovery fstab if applicable.
630 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
Tianjie Xucfa86222016-03-07 16:31:19 -0800631
Tianjie Xu861f4132018-09-12 11:49:33 -0700632 # Tries to load the build props for all partitions with care_map, including
633 # system and vendor.
634 for partition in PARTITIONS_WITH_CARE_MAP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800635 partition_prop = "{}.build.prop".format(partition)
636 d[partition_prop] = LoadBuildProp(
Tianjie Xu861f4132018-09-12 11:49:33 -0700637 read_helper, "{}/build.prop".format(partition.upper()))
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800638 # Some partition might use /<partition>/etc/build.prop as the new path.
639 # TODO: try new path first when majority of them switch to the new path.
640 if not d[partition_prop]:
641 d[partition_prop] = LoadBuildProp(
642 read_helper, "{}/etc/build.prop".format(partition.upper()))
Tianjie Xu861f4132018-09-12 11:49:33 -0700643 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800644
Tao Bao3ed35d32019-10-07 20:48:48 -0700645 # Set up the salt (based on fingerprint) that will be used when adding AVB
646 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800647 if d.get("avb_enable") == "true":
Tao Bao3ed35d32019-10-07 20:48:48 -0700648 build_info = BuildInfo(d)
649 d["avb_salt"] = sha256(build_info.fingerprint).hexdigest()
Tao Bao12d87fc2018-01-31 12:18:52 -0800650
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700651 return d
652
Tao Baod1de6f32017-03-01 16:38:48 -0800653
Tao Baobcd1d162017-08-26 13:10:26 -0700654def LoadBuildProp(read_helper, prop_file):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700655 try:
Tao Baobcd1d162017-08-26 13:10:26 -0700656 data = read_helper(prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700657 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700658 logger.warning("Failed to read %s", prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700659 data = ""
Michael Runge6e836112014-04-15 17:40:21 -0700660 return LoadDictionaryFromLines(data.split("\n"))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700661
Tao Baod1de6f32017-03-01 16:38:48 -0800662
Daniel Norman4cc9df62019-07-18 10:11:07 -0700663def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900664 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700665 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900666
Daniel Norman4cc9df62019-07-18 10:11:07 -0700667
668def LoadDictionaryFromFile(file_path):
669 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900670 return LoadDictionaryFromLines(lines)
671
672
Michael Runge6e836112014-04-15 17:40:21 -0700673def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700674 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700675 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700676 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700677 if not line or line.startswith("#"):
678 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700679 if "=" in line:
680 name, value = line.split("=", 1)
681 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700682 return d
683
Tao Baod1de6f32017-03-01 16:38:48 -0800684
Tianjie Xucfa86222016-03-07 16:31:19 -0800685def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
686 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700687 class Partition(object):
Tao Baod1de6f32017-03-01 16:38:48 -0800688 def __init__(self, mount_point, fs_type, device, length, context):
Dan Albert8b72aef2015-03-23 19:13:21 -0700689 self.mount_point = mount_point
690 self.fs_type = fs_type
691 self.device = device
692 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700693 self.context = context
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700694
695 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800696 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700697 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700698 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -0700699 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700700
Tao Baod1de6f32017-03-01 16:38:48 -0800701 assert fstab_version == 2
702
703 d = {}
704 for line in data.split("\n"):
705 line = line.strip()
706 if not line or line.startswith("#"):
707 continue
708
709 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
710 pieces = line.split()
711 if len(pieces) != 5:
712 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
713
714 # Ignore entries that are managed by vold.
715 options = pieces[4]
716 if "voldmanaged=" in options:
717 continue
718
719 # It's a good line, parse it.
720 length = 0
721 options = options.split(",")
722 for i in options:
723 if i.startswith("length="):
724 length = int(i[7:])
Doug Zongker086cbb02011-02-17 15:54:20 -0800725 else:
Tao Baod1de6f32017-03-01 16:38:48 -0800726 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -0700727 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800728
Tao Baod1de6f32017-03-01 16:38:48 -0800729 mount_flags = pieces[3]
730 # Honor the SELinux context if present.
731 context = None
732 for i in mount_flags.split(","):
733 if i.startswith("context="):
734 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -0800735
Tao Baod1de6f32017-03-01 16:38:48 -0800736 mount_point = pieces[1]
737 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
738 device=pieces[0], length=length, context=context)
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800739
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700740 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700741 # system. Other areas assume system is always at "/system" so point /system
742 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700743 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -0800744 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700745 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700746 return d
747
748
Tao Bao765668f2019-10-04 22:03:00 -0700749def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
750 """Finds the path to recovery fstab and loads its contents."""
751 # recovery fstab is only meaningful when installing an update via recovery
752 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
753 if info_dict.get('ab_update') == 'true':
754 return None
755
756 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
757 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
758 # cases, since it may load the info_dict from an old build (e.g. when
759 # generating incremental OTAs from that build).
760 system_root_image = info_dict.get('system_root_image') == 'true'
761 if info_dict.get('no_recovery') != 'true':
762 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
763 if isinstance(input_file, zipfile.ZipFile):
764 if recovery_fstab_path not in input_file.namelist():
765 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
766 else:
767 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
768 if not os.path.exists(path):
769 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
770 return LoadRecoveryFSTab(
771 read_helper, info_dict['fstab_version'], recovery_fstab_path,
772 system_root_image)
773
774 if info_dict.get('recovery_as_boot') == 'true':
775 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
776 if isinstance(input_file, zipfile.ZipFile):
777 if recovery_fstab_path not in input_file.namelist():
778 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
779 else:
780 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
781 if not os.path.exists(path):
782 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
783 return LoadRecoveryFSTab(
784 read_helper, info_dict['fstab_version'], recovery_fstab_path,
785 system_root_image)
786
787 return None
788
789
Doug Zongker37974732010-09-16 17:44:38 -0700790def DumpInfoDict(d):
791 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -0700792 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700793
Dan Albert8b72aef2015-03-23 19:13:21 -0700794
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700795def MergeDynamicPartitionInfoDicts(framework_dict,
796 vendor_dict,
797 include_dynamic_partition_list=True,
798 size_prefix="",
799 size_suffix="",
800 list_prefix="",
801 list_suffix=""):
802 """Merges dynamic partition info variables.
803
804 Args:
805 framework_dict: The dictionary of dynamic partition info variables from the
806 partial framework target files.
807 vendor_dict: The dictionary of dynamic partition info variables from the
808 partial vendor target files.
809 include_dynamic_partition_list: If true, merges the dynamic_partition_list
810 variable. Not all use cases need this variable merged.
811 size_prefix: The prefix in partition group size variables that precedes the
812 name of the partition group. For example, partition group 'group_a' with
813 corresponding size variable 'super_group_a_group_size' would have the
814 size_prefix 'super_'.
815 size_suffix: Similar to size_prefix but for the variable's suffix. For
816 example, 'super_group_a_group_size' would have size_suffix '_group_size'.
817 list_prefix: Similar to size_prefix but for the partition group's
818 partition_list variable.
819 list_suffix: Similar to size_suffix but for the partition group's
820 partition_list variable.
821
822 Returns:
823 The merged dynamic partition info dictionary.
824 """
825 merged_dict = {}
826 # Partition groups and group sizes are defined by the vendor dict because
827 # these values may vary for each board that uses a shared system image.
828 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
829 if include_dynamic_partition_list:
830 framework_dynamic_partition_list = framework_dict.get(
831 "dynamic_partition_list", "")
832 vendor_dynamic_partition_list = vendor_dict.get("dynamic_partition_list",
833 "")
834 merged_dict["dynamic_partition_list"] = (
835 "%s %s" % (framework_dynamic_partition_list,
836 vendor_dynamic_partition_list)).strip()
837 for partition_group in merged_dict["super_partition_groups"].split(" "):
838 # Set the partition group's size using the value from the vendor dict.
839 key = "%s%s%s" % (size_prefix, partition_group, size_suffix)
840 if key not in vendor_dict:
841 raise ValueError("Vendor dict does not contain required key %s." % key)
842 merged_dict[key] = vendor_dict[key]
843
844 # Set the partition group's partition list using a concatenation of the
845 # framework and vendor partition lists.
846 key = "%s%s%s" % (list_prefix, partition_group, list_suffix)
847 merged_dict[key] = (
848 "%s %s" %
849 (framework_dict.get(key, ""), vendor_dict.get(key, ""))).strip()
850 return merged_dict
851
852
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800853def AppendAVBSigningArgs(cmd, partition):
854 """Append signing arguments for avbtool."""
855 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
856 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -0700857 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
858 new_key_path = os.path.join(OPTIONS.search_path, key_path)
859 if os.path.exists(new_key_path):
860 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800861 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
862 if key_path and algorithm:
863 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -0700864 avb_salt = OPTIONS.info_dict.get("avb_salt")
865 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -0700866 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -0700867 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800868
869
Tao Bao765668f2019-10-04 22:03:00 -0700870def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -0700871 """Returns the VBMeta arguments for partition.
872
873 It sets up the VBMeta argument by including the partition descriptor from the
874 given 'image', or by configuring the partition as a chained partition.
875
876 Args:
877 partition: The name of the partition (e.g. "system").
878 image: The path to the partition image.
879 info_dict: A dict returned by common.LoadInfoDict(). Will use
880 OPTIONS.info_dict if None has been given.
881
882 Returns:
883 A list of VBMeta arguments.
884 """
885 if info_dict is None:
886 info_dict = OPTIONS.info_dict
887
888 # Check if chain partition is used.
889 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +0800890 if not key_path:
891 return ["--include_descriptors_from_image", image]
892
893 # For a non-A/B device, we don't chain /recovery nor include its descriptor
894 # into vbmeta.img. The recovery image will be configured on an independent
895 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
896 # See details at
897 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -0700898 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +0800899 return []
900
901 # Otherwise chain the partition into vbmeta.
902 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
903 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -0700904
905
Tao Bao02a08592018-07-22 12:40:45 -0700906def GetAvbChainedPartitionArg(partition, info_dict, key=None):
907 """Constructs and returns the arg to build or verify a chained partition.
908
909 Args:
910 partition: The partition name.
911 info_dict: The info dict to look up the key info and rollback index
912 location.
913 key: The key to be used for building or verifying the partition. Defaults to
914 the key listed in info_dict.
915
916 Returns:
917 A string of form "partition:rollback_index_location:key" that can be used to
918 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -0700919 """
920 if key is None:
921 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -0700922 if key and not os.path.exists(key) and OPTIONS.search_path:
923 new_key_path = os.path.join(OPTIONS.search_path, key)
924 if os.path.exists(new_key_path):
925 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -0700926 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -0700927 rollback_index_location = info_dict[
928 "avb_" + partition + "_rollback_index_location"]
929 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
930
931
Daniel Norman276f0622019-07-26 14:13:51 -0700932def BuildVBMeta(image_path, partitions, name, needed_partitions):
933 """Creates a VBMeta image.
934
935 It generates the requested VBMeta image. The requested image could be for
936 top-level or chained VBMeta image, which is determined based on the name.
937
938 Args:
939 image_path: The output path for the new VBMeta image.
940 partitions: A dict that's keyed by partition names with image paths as
941 values. Only valid partition names are accepted, as listed in
942 common.AVB_PARTITIONS.
943 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
944 needed_partitions: Partitions whose descriptors should be included into the
945 generated VBMeta image.
946
947 Raises:
948 AssertionError: On invalid input args.
949 """
950 avbtool = OPTIONS.info_dict["avb_avbtool"]
951 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
952 AppendAVBSigningArgs(cmd, name)
953
954 for partition, path in partitions.items():
955 if partition not in needed_partitions:
956 continue
957 assert (partition in AVB_PARTITIONS or
958 partition in AVB_VBMETA_PARTITIONS), \
959 'Unknown partition: {}'.format(partition)
960 assert os.path.exists(path), \
961 'Failed to find {} for {}'.format(path, partition)
962 cmd.extend(GetAvbPartitionArg(partition, path))
963
964 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
965 if args and args.strip():
966 split_args = shlex.split(args)
967 for index, arg in enumerate(split_args[:-1]):
968 # Sanity check that the image file exists. Some images might be defined
969 # as a path relative to source tree, which may not be available at the
970 # same location when running this script (we have the input target_files
971 # zip only). For such cases, we additionally scan other locations (e.g.
972 # IMAGES/, RADIO/, etc) before bailing out.
973 if arg == '--include_descriptors_from_image':
974 image_path = split_args[index + 1]
975 if os.path.exists(image_path):
976 continue
977 found = False
978 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
979 alt_path = os.path.join(
980 OPTIONS.input_tmp, dir_name, os.path.basename(image_path))
981 if os.path.exists(alt_path):
982 split_args[index + 1] = alt_path
983 found = True
984 break
985 assert found, 'Failed to find {}'.format(image_path)
986 cmd.extend(split_args)
987
988 RunAndCheckOutput(cmd)
989
990
Steve Mucklee1b10862019-07-10 10:49:37 -0700991def _MakeRamdisk(sourcedir, fs_config_file=None):
992 ramdisk_img = tempfile.NamedTemporaryFile()
993
994 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
995 cmd = ["mkbootfs", "-f", fs_config_file,
996 os.path.join(sourcedir, "RAMDISK")]
997 else:
998 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
999 p1 = Run(cmd, stdout=subprocess.PIPE)
1000 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
1001
1002 p2.wait()
1003 p1.wait()
1004 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
1005 assert p2.returncode == 0, "minigzip of %s ramdisk failed" % (sourcedir,)
1006
1007 return ramdisk_img
1008
1009
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001010def _BuildBootableImage(sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001011 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001012 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001013
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001014 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001015 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1016 we are building a two-step special image (i.e. building a recovery image to
1017 be loaded into /boot in two-step OTAs).
1018
1019 Return the image data, or None if sourcedir does not appear to contains files
1020 for building the requested image.
1021 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001022
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001023 if not os.access(os.path.join(sourcedir, "kernel"), os.F_OK):
1024 return None
1025
1026 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001027 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001028
Doug Zongkerd5131602012-08-02 14:46:42 -07001029 if info_dict is None:
1030 info_dict = OPTIONS.info_dict
1031
Doug Zongkereef39442009-04-02 12:14:19 -07001032 img = tempfile.NamedTemporaryFile()
1033
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001034 if has_ramdisk:
Steve Mucklee1b10862019-07-10 10:49:37 -07001035 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file)
Doug Zongkereef39442009-04-02 12:14:19 -07001036
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001037 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1038 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1039
1040 cmd = [mkbootimg, "--kernel", os.path.join(sourcedir, "kernel")]
Doug Zongker38a649f2009-06-17 09:07:09 -07001041
Benoit Fradina45a8682014-07-14 21:00:43 +02001042 fn = os.path.join(sourcedir, "second")
1043 if os.access(fn, os.F_OK):
1044 cmd.append("--second")
1045 cmd.append(fn)
1046
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001047 fn = os.path.join(sourcedir, "dtb")
1048 if os.access(fn, os.F_OK):
1049 cmd.append("--dtb")
1050 cmd.append(fn)
1051
Doug Zongker171f1cd2009-06-15 22:36:37 -07001052 fn = os.path.join(sourcedir, "cmdline")
1053 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001054 cmd.append("--cmdline")
1055 cmd.append(open(fn).read().rstrip("\n"))
1056
1057 fn = os.path.join(sourcedir, "base")
1058 if os.access(fn, os.F_OK):
1059 cmd.append("--base")
1060 cmd.append(open(fn).read().rstrip("\n"))
1061
Ying Wang4de6b5b2010-08-25 14:29:34 -07001062 fn = os.path.join(sourcedir, "pagesize")
1063 if os.access(fn, os.F_OK):
1064 cmd.append("--pagesize")
1065 cmd.append(open(fn).read().rstrip("\n"))
1066
Tao Bao76def242017-11-21 09:25:31 -08001067 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001068 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001069 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001070
Tao Bao76def242017-11-21 09:25:31 -08001071 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +00001072 if args and args.strip():
1073 cmd.extend(shlex.split(args))
1074
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001075 if has_ramdisk:
1076 cmd.extend(["--ramdisk", ramdisk_img.name])
1077
Tao Baod95e9fd2015-03-29 23:07:41 -07001078 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001079 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001080 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001081 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001082 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001083 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001084
Tao Baobf70c312017-07-11 17:27:55 -07001085 # "boot" or "recovery", without extension.
1086 partition_name = os.path.basename(sourcedir).lower()
1087
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001088 if partition_name == "recovery":
1089 if info_dict.get("include_recovery_dtbo") == "true":
1090 fn = os.path.join(sourcedir, "recovery_dtbo")
1091 cmd.extend(["--recovery_dtbo", fn])
1092 if info_dict.get("include_recovery_acpio") == "true":
1093 fn = os.path.join(sourcedir, "recovery_acpio")
1094 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001095
Tao Bao986ee862018-10-04 15:46:16 -07001096 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001097
Tao Bao76def242017-11-21 09:25:31 -08001098 if (info_dict.get("boot_signer") == "true" and
1099 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001100 # Hard-code the path as "/boot" for two-step special recovery image (which
1101 # will be loaded into /boot during the two-step OTA).
1102 if two_step_image:
1103 path = "/boot"
1104 else:
Tao Baobf70c312017-07-11 17:27:55 -07001105 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001106 cmd = [OPTIONS.boot_signer_path]
1107 cmd.extend(OPTIONS.boot_signer_args)
1108 cmd.extend([path, img.name,
1109 info_dict["verity_key"] + ".pk8",
1110 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001111 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001112
Tao Baod95e9fd2015-03-29 23:07:41 -07001113 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001114 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001115 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001116 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001117 # We have switched from the prebuilt futility binary to using the tool
1118 # (futility-host) built from the source. Override the setting in the old
1119 # TF.zip.
1120 futility = info_dict["futility"]
1121 if futility.startswith("prebuilts/"):
1122 futility = "futility-host"
1123 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001124 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001125 info_dict["vboot_key"] + ".vbprivk",
1126 info_dict["vboot_subkey"] + ".vbprivk",
1127 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001128 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001129 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001130
Tao Baof3282b42015-04-01 11:21:55 -07001131 # Clean up the temp files.
1132 img_unsigned.close()
1133 img_keyblock.close()
1134
David Zeuthen8fecb282017-12-01 16:24:01 -05001135 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001136 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001137 avbtool = info_dict["avb_avbtool"]
David Zeuthen8fecb282017-12-01 16:24:01 -05001138 part_size = info_dict[partition_name + "_size"]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001139 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001140 "--partition_size", str(part_size), "--partition_name",
1141 partition_name]
1142 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001143 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001144 if args and args.strip():
1145 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001146 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001147
1148 img.seek(os.SEEK_SET, 0)
1149 data = img.read()
1150
1151 if has_ramdisk:
1152 ramdisk_img.close()
1153 img.close()
1154
1155 return data
1156
1157
Doug Zongkerd5131602012-08-02 14:46:42 -07001158def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001159 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001160 """Return a File object with the desired bootable image.
1161
1162 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1163 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1164 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001165
Doug Zongker55d93282011-01-25 17:03:34 -08001166 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1167 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001168 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001169 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001170
1171 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1172 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001173 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001174 return File.FromLocalFile(name, prebuilt_path)
1175
Tao Bao32fcdab2018-10-12 10:30:39 -07001176 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001177
1178 if info_dict is None:
1179 info_dict = OPTIONS.info_dict
1180
1181 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -08001182 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
1183 # for recovery.
1184 has_ramdisk = (info_dict.get("system_root_image") != "true" or
1185 prebuilt_name != "boot.img" or
1186 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001187
Doug Zongker6f1d0312014-08-22 08:07:12 -07001188 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001189 data = _BuildBootableImage(os.path.join(unpack_dir, tree_subdir),
1190 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001191 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001192 if data:
1193 return File(name, data)
1194 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001195
Doug Zongkereef39442009-04-02 12:14:19 -07001196
Steve Mucklee1b10862019-07-10 10:49:37 -07001197def _BuildVendorBootImage(sourcedir, info_dict=None):
1198 """Build a vendor boot image from the specified sourcedir.
1199
1200 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1201 turn them into a vendor boot image.
1202
1203 Return the image data, or None if sourcedir does not appear to contains files
1204 for building the requested image.
1205 """
1206
1207 if info_dict is None:
1208 info_dict = OPTIONS.info_dict
1209
1210 img = tempfile.NamedTemporaryFile()
1211
1212 ramdisk_img = _MakeRamdisk(sourcedir)
1213
1214 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1215 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1216
1217 cmd = [mkbootimg]
1218
1219 fn = os.path.join(sourcedir, "dtb")
1220 if os.access(fn, os.F_OK):
1221 cmd.append("--dtb")
1222 cmd.append(fn)
1223
1224 fn = os.path.join(sourcedir, "vendor_cmdline")
1225 if os.access(fn, os.F_OK):
1226 cmd.append("--vendor_cmdline")
1227 cmd.append(open(fn).read().rstrip("\n"))
1228
1229 fn = os.path.join(sourcedir, "base")
1230 if os.access(fn, os.F_OK):
1231 cmd.append("--base")
1232 cmd.append(open(fn).read().rstrip("\n"))
1233
1234 fn = os.path.join(sourcedir, "pagesize")
1235 if os.access(fn, os.F_OK):
1236 cmd.append("--pagesize")
1237 cmd.append(open(fn).read().rstrip("\n"))
1238
1239 args = info_dict.get("mkbootimg_args")
1240 if args and args.strip():
1241 cmd.extend(shlex.split(args))
1242
1243 args = info_dict.get("mkbootimg_version_args")
1244 if args and args.strip():
1245 cmd.extend(shlex.split(args))
1246
1247 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1248 cmd.extend(["--vendor_boot", img.name])
1249
1250 RunAndCheckOutput(cmd)
1251
1252 # AVB: if enabled, calculate and add hash.
1253 if info_dict.get("avb_enable") == "true":
1254 avbtool = info_dict["avb_avbtool"]
1255 part_size = info_dict["vendor_boot_size"]
1256 cmd = [avbtool, "add_hash_footer", "--image", img.name,
1257 "--partition_size", str(part_size), "--partition_name vendor_boot"]
1258 AppendAVBSigningArgs(cmd, "vendor_boot")
1259 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1260 if args and args.strip():
1261 cmd.extend(shlex.split(args))
1262 RunAndCheckOutput(cmd)
1263
1264 img.seek(os.SEEK_SET, 0)
1265 data = img.read()
1266
1267 ramdisk_img.close()
1268 img.close()
1269
1270 return data
1271
1272
1273def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1274 info_dict=None):
1275 """Return a File object with the desired vendor boot image.
1276
1277 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1278 the source files in 'unpack_dir'/'tree_subdir'."""
1279
1280 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1281 if os.path.exists(prebuilt_path):
1282 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1283 return File.FromLocalFile(name, prebuilt_path)
1284
1285 logger.info("building image from target_files %s...", tree_subdir)
1286
1287 if info_dict is None:
1288 info_dict = OPTIONS.info_dict
1289
1290 data = _BuildVendorBootImage(os.path.join(unpack_dir, tree_subdir), info_dict)
1291 if data:
1292 return File(name, data)
1293 return None
1294
1295
Narayan Kamatha07bf042017-08-14 14:49:21 +01001296def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001297 """Gunzips the given gzip compressed file to a given output file."""
1298 with gzip.open(in_filename, "rb") as in_file, \
1299 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001300 shutil.copyfileobj(in_file, out_file)
1301
1302
Tao Bao0ff15de2019-03-20 11:26:06 -07001303def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001304 """Unzips the archive to the given directory.
1305
1306 Args:
1307 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001308 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001309 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1310 archvie. Non-matching patterns will be filtered out. If there's no match
1311 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001312 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001313 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001314 if patterns is not None:
1315 # Filter out non-matching patterns. unzip will complain otherwise.
1316 with zipfile.ZipFile(filename) as input_zip:
1317 names = input_zip.namelist()
1318 filtered = [
1319 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1320
1321 # There isn't any matching files. Don't unzip anything.
1322 if not filtered:
1323 return
1324 cmd.extend(filtered)
1325
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001326 RunAndCheckOutput(cmd)
1327
1328
Doug Zongker75f17362009-12-08 13:46:44 -08001329def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001330 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001331
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001332 Args:
1333 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1334 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1335
1336 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1337 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001338
Tao Bao1c830bf2017-12-25 10:43:47 -08001339 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001340 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001341 """
Doug Zongkereef39442009-04-02 12:14:19 -07001342
Tao Bao1c830bf2017-12-25 10:43:47 -08001343 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001344 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1345 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001346 UnzipToDir(m.group(1), tmp, pattern)
1347 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001348 filename = m.group(1)
1349 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001350 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001351
Tao Baodba59ee2018-01-09 13:21:02 -08001352 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001353
1354
Yifan Hong8a66a712019-04-04 15:37:57 -07001355def GetUserImage(which, tmpdir, input_zip,
1356 info_dict=None,
1357 allow_shared_blocks=None,
1358 hashtree_info_generator=None,
1359 reset_file_map=False):
1360 """Returns an Image object suitable for passing to BlockImageDiff.
1361
1362 This function loads the specified image from the given path. If the specified
1363 image is sparse, it also performs additional processing for OTA purpose. For
1364 example, it always adds block 0 to clobbered blocks list. It also detects
1365 files that cannot be reconstructed from the block list, for whom we should
1366 avoid applying imgdiff.
1367
1368 Args:
1369 which: The partition name.
1370 tmpdir: The directory that contains the prebuilt image and block map file.
1371 input_zip: The target-files ZIP archive.
1372 info_dict: The dict to be looked up for relevant info.
1373 allow_shared_blocks: If image is sparse, whether having shared blocks is
1374 allowed. If none, it is looked up from info_dict.
1375 hashtree_info_generator: If present and image is sparse, generates the
1376 hashtree_info for this sparse image.
1377 reset_file_map: If true and image is sparse, reset file map before returning
1378 the image.
1379 Returns:
1380 A Image object. If it is a sparse image and reset_file_map is False, the
1381 image will have file_map info loaded.
1382 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001383 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07001384 info_dict = LoadInfoDict(input_zip)
1385
1386 is_sparse = info_dict.get("extfs_sparse_flag")
1387
1388 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
1389 # shared blocks (i.e. some blocks will show up in multiple files' block
1390 # list). We can only allocate such shared blocks to the first "owner", and
1391 # disable imgdiff for all later occurrences.
1392 if allow_shared_blocks is None:
1393 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
1394
1395 if is_sparse:
1396 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1397 hashtree_info_generator)
1398 if reset_file_map:
1399 img.ResetFileMap()
1400 return img
1401 else:
1402 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
1403
1404
1405def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
1406 """Returns a Image object suitable for passing to BlockImageDiff.
1407
1408 This function loads the specified non-sparse image from the given path.
1409
1410 Args:
1411 which: The partition name.
1412 tmpdir: The directory that contains the prebuilt image and block map file.
1413 Returns:
1414 A Image object.
1415 """
1416 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1417 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1418
1419 # The image and map files must have been created prior to calling
1420 # ota_from_target_files.py (since LMP).
1421 assert os.path.exists(path) and os.path.exists(mappath)
1422
Tianjie Xu41976c72019-07-03 13:57:01 -07001423 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
1424
Yifan Hong8a66a712019-04-04 15:37:57 -07001425
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001426def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1427 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08001428 """Returns a SparseImage object suitable for passing to BlockImageDiff.
1429
1430 This function loads the specified sparse image from the given path, and
1431 performs additional processing for OTA purpose. For example, it always adds
1432 block 0 to clobbered blocks list. It also detects files that cannot be
1433 reconstructed from the block list, for whom we should avoid applying imgdiff.
1434
1435 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07001436 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08001437 tmpdir: The directory that contains the prebuilt image and block map file.
1438 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08001439 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001440 hashtree_info_generator: If present, generates the hashtree_info for this
1441 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08001442 Returns:
1443 A SparseImage object, with file_map info loaded.
1444 """
Tao Baoc765cca2018-01-31 17:32:40 -08001445 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1446 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1447
1448 # The image and map files must have been created prior to calling
1449 # ota_from_target_files.py (since LMP).
1450 assert os.path.exists(path) and os.path.exists(mappath)
1451
1452 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
1453 # it to clobbered_blocks so that it will be written to the target
1454 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
1455 clobbered_blocks = "0"
1456
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001457 image = sparse_img.SparseImage(
1458 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
1459 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08001460
1461 # block.map may contain less blocks, because mke2fs may skip allocating blocks
1462 # if they contain all zeros. We can't reconstruct such a file from its block
1463 # list. Tag such entries accordingly. (Bug: 65213616)
1464 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08001465 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07001466 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08001467 continue
1468
Tom Cherryd14b8952018-08-09 14:26:00 -07001469 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
1470 # filename listed in system.map may contain an additional leading slash
1471 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
1472 # results.
Tao Baoda30cfa2017-12-01 16:19:46 -08001473 arcname = entry.replace(which, which.upper(), 1).lstrip('/')
Tao Baod3554e62018-07-10 15:31:22 -07001474
Tom Cherryd14b8952018-08-09 14:26:00 -07001475 # Special handling another case, where files not under /system
1476 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
Tao Baod3554e62018-07-10 15:31:22 -07001477 if which == 'system' and not arcname.startswith('SYSTEM'):
1478 arcname = 'ROOT/' + arcname
1479
1480 assert arcname in input_zip.namelist(), \
1481 "Failed to find the ZIP entry for {}".format(entry)
1482
Tao Baoc765cca2018-01-31 17:32:40 -08001483 info = input_zip.getinfo(arcname)
1484 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08001485
1486 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08001487 # image, check the original block list to determine its completeness. Note
1488 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08001489 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08001490 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08001491
Tao Baoc765cca2018-01-31 17:32:40 -08001492 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
1493 ranges.extra['incomplete'] = True
1494
1495 return image
1496
1497
Doug Zongkereef39442009-04-02 12:14:19 -07001498def GetKeyPasswords(keylist):
1499 """Given a list of keys, prompt the user to enter passwords for
1500 those which require them. Return a {key: password} dict. password
1501 will be None if the key has no password."""
1502
Doug Zongker8ce7c252009-05-22 13:34:54 -07001503 no_passwords = []
1504 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07001505 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07001506 devnull = open("/dev/null", "w+b")
1507 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001508 # We don't need a password for things that aren't really keys.
1509 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001510 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07001511 continue
1512
T.R. Fullhart37e10522013-03-18 10:31:26 -07001513 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07001514 "-inform", "DER", "-nocrypt"],
1515 stdin=devnull.fileno(),
1516 stdout=devnull.fileno(),
1517 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07001518 p.communicate()
1519 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001520 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07001521 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001522 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001523 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
1524 "-inform", "DER", "-passin", "pass:"],
1525 stdin=devnull.fileno(),
1526 stdout=devnull.fileno(),
1527 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07001528 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07001529 if p.returncode == 0:
1530 # Encrypted key with empty string as password.
1531 key_passwords[k] = ''
1532 elif stderr.startswith('Error decrypting key'):
1533 # Definitely encrypted key.
1534 # It would have said "Error reading key" if it didn't parse correctly.
1535 need_passwords.append(k)
1536 else:
1537 # Potentially, a type of key that openssl doesn't understand.
1538 # We'll let the routines in signapk.jar handle it.
1539 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001540 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07001541
T.R. Fullhart37e10522013-03-18 10:31:26 -07001542 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08001543 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07001544 return key_passwords
1545
1546
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001547def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07001548 """Gets the minSdkVersion declared in the APK.
1549
changho.shin0f125362019-07-08 10:59:00 +09001550 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07001551 This can be both a decimal number (API Level) or a codename.
1552
1553 Args:
1554 apk_name: The APK filename.
1555
1556 Returns:
1557 The parsed SDK version string.
1558
1559 Raises:
1560 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001561 """
Tao Baof47bf0f2018-03-21 23:28:51 -07001562 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09001563 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07001564 stderr=subprocess.PIPE)
1565 stdoutdata, stderrdata = proc.communicate()
1566 if proc.returncode != 0:
1567 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09001568 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07001569 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001570
Tao Baof47bf0f2018-03-21 23:28:51 -07001571 for line in stdoutdata.split("\n"):
1572 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001573 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
1574 if m:
1575 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09001576 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001577
1578
1579def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07001580 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001581
Tao Baof47bf0f2018-03-21 23:28:51 -07001582 If minSdkVersion is set to a codename, it is translated to a number using the
1583 provided map.
1584
1585 Args:
1586 apk_name: The APK filename.
1587
1588 Returns:
1589 The parsed SDK version number.
1590
1591 Raises:
1592 ExternalError: On failing to get the min SDK version number.
1593 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001594 version = GetMinSdkVersion(apk_name)
1595 try:
1596 return int(version)
1597 except ValueError:
1598 # Not a decimal number. Codename?
1599 if version in codename_to_api_level_map:
1600 return codename_to_api_level_map[version]
1601 else:
Tao Baof47bf0f2018-03-21 23:28:51 -07001602 raise ExternalError(
1603 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
1604 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001605
1606
1607def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07001608 codename_to_api_level_map=None, whole_file=False,
1609 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07001610 """Sign the input_name zip/jar/apk, producing output_name. Use the
1611 given key and password (the latter may be None if the key does not
1612 have a password.
1613
Doug Zongker951495f2009-08-14 12:44:19 -07001614 If whole_file is true, use the "-w" option to SignApk to embed a
1615 signature that covers the whole file in the archive comment of the
1616 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001617
1618 min_api_level is the API Level (int) of the oldest platform this file may end
1619 up on. If not specified for an APK, the API Level is obtained by interpreting
1620 the minSdkVersion attribute of the APK's AndroidManifest.xml.
1621
1622 codename_to_api_level_map is needed to translate the codename which may be
1623 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07001624
1625 Caller may optionally specify extra args to be passed to SignApk, which
1626 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07001627 """
Tao Bao76def242017-11-21 09:25:31 -08001628 if codename_to_api_level_map is None:
1629 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07001630 if extra_signapk_args is None:
1631 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07001632
Alex Klyubin9667b182015-12-10 13:38:50 -08001633 java_library_path = os.path.join(
1634 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
1635
Tao Baoe95540e2016-11-08 12:08:53 -08001636 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
1637 ["-Djava.library.path=" + java_library_path,
1638 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07001639 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07001640 if whole_file:
1641 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001642
1643 min_sdk_version = min_api_level
1644 if min_sdk_version is None:
1645 if not whole_file:
1646 min_sdk_version = GetMinSdkVersionInt(
1647 input_name, codename_to_api_level_map)
1648 if min_sdk_version is not None:
1649 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
1650
T.R. Fullhart37e10522013-03-18 10:31:26 -07001651 cmd.extend([key + OPTIONS.public_key_suffix,
1652 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08001653 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07001654
Tao Bao73dd4f42018-10-04 16:25:33 -07001655 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07001656 if password is not None:
1657 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07001658 stdoutdata, _ = proc.communicate(password)
1659 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07001660 raise ExternalError(
1661 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07001662 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07001663
Doug Zongkereef39442009-04-02 12:14:19 -07001664
Doug Zongker37974732010-09-16 17:44:38 -07001665def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08001666 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07001667
Tao Bao9dd909e2017-11-14 11:27:32 -08001668 For non-AVB images, raise exception if the data is too big. Print a warning
1669 if the data is nearing the maximum size.
1670
1671 For AVB images, the actual image size should be identical to the limit.
1672
1673 Args:
1674 data: A string that contains all the data for the partition.
1675 target: The partition name. The ".img" suffix is optional.
1676 info_dict: The dict to be looked up for relevant info.
1677 """
Dan Albert8b72aef2015-03-23 19:13:21 -07001678 if target.endswith(".img"):
1679 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001680 mount_point = "/" + target
1681
Ying Wangf8824af2014-06-03 14:07:27 -07001682 fs_type = None
1683 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001684 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07001685 if mount_point == "/userdata":
1686 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001687 p = info_dict["fstab"][mount_point]
1688 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08001689 device = p.device
1690 if "/" in device:
1691 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08001692 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07001693 if not fs_type or not limit:
1694 return
Doug Zongkereef39442009-04-02 12:14:19 -07001695
Andrew Boie0f9aec82012-02-14 09:32:52 -08001696 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08001697 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
1698 # path.
1699 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
1700 if size != limit:
1701 raise ExternalError(
1702 "Mismatching image size for %s: expected %d actual %d" % (
1703 target, limit, size))
1704 else:
1705 pct = float(size) * 100.0 / limit
1706 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
1707 if pct >= 99.0:
1708 raise ExternalError(msg)
1709 elif pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07001710 logger.warning("\n WARNING: %s\n", msg)
1711 else:
1712 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07001713
1714
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001715def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08001716 """Parses the APK certs info from a given target-files zip.
1717
1718 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
1719 tuple with the following elements: (1) a dictionary that maps packages to
1720 certs (based on the "certificate" and "private_key" attributes in the file;
1721 (2) a string representing the extension of compressed APKs in the target files
1722 (e.g ".gz", ".bro").
1723
1724 Args:
1725 tf_zip: The input target_files ZipFile (already open).
1726
1727 Returns:
1728 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
1729 the extension string of compressed APKs (e.g. ".gz"), or None if there's
1730 no compressed APKs.
1731 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001732 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01001733 compressed_extension = None
1734
Tao Bao0f990332017-09-08 19:02:54 -07001735 # META/apkcerts.txt contains the info for _all_ the packages known at build
1736 # time. Filter out the ones that are not installed.
1737 installed_files = set()
1738 for name in tf_zip.namelist():
1739 basename = os.path.basename(name)
1740 if basename:
1741 installed_files.add(basename)
1742
Tao Baoda30cfa2017-12-01 16:19:46 -08001743 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001744 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001745 if not line:
1746 continue
Tao Bao818ddf52018-01-05 11:17:34 -08001747 m = re.match(
1748 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
1749 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*)")?$',
1750 line)
1751 if not m:
1752 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01001753
Tao Bao818ddf52018-01-05 11:17:34 -08001754 matches = m.groupdict()
1755 cert = matches["CERT"]
1756 privkey = matches["PRIVKEY"]
1757 name = matches["NAME"]
1758 this_compressed_extension = matches["COMPRESSED"]
1759
1760 public_key_suffix_len = len(OPTIONS.public_key_suffix)
1761 private_key_suffix_len = len(OPTIONS.private_key_suffix)
1762 if cert in SPECIAL_CERT_STRINGS and not privkey:
1763 certmap[name] = cert
1764 elif (cert.endswith(OPTIONS.public_key_suffix) and
1765 privkey.endswith(OPTIONS.private_key_suffix) and
1766 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
1767 certmap[name] = cert[:-public_key_suffix_len]
1768 else:
1769 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
1770
1771 if not this_compressed_extension:
1772 continue
1773
1774 # Only count the installed files.
1775 filename = name + '.' + this_compressed_extension
1776 if filename not in installed_files:
1777 continue
1778
1779 # Make sure that all the values in the compression map have the same
1780 # extension. We don't support multiple compression methods in the same
1781 # system image.
1782 if compressed_extension:
1783 if this_compressed_extension != compressed_extension:
1784 raise ValueError(
1785 "Multiple compressed extensions: {} vs {}".format(
1786 compressed_extension, this_compressed_extension))
1787 else:
1788 compressed_extension = this_compressed_extension
1789
1790 return (certmap,
1791 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001792
1793
Doug Zongkereef39442009-04-02 12:14:19 -07001794COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07001795Global options
1796
1797 -p (--path) <dir>
1798 Prepend <dir>/bin to the list of places to search for binaries run by this
1799 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07001800
Doug Zongker05d3dea2009-06-22 11:32:31 -07001801 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07001802 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07001803
Tao Bao30df8b42018-04-23 15:32:53 -07001804 -x (--extra) <key=value>
1805 Add a key/value pair to the 'extras' dict, which device-specific extension
1806 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08001807
Doug Zongkereef39442009-04-02 12:14:19 -07001808 -v (--verbose)
1809 Show command lines being executed.
1810
1811 -h (--help)
1812 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07001813
1814 --logfile <file>
1815 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07001816"""
1817
1818def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08001819 print(docstring.rstrip("\n"))
1820 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07001821
1822
1823def ParseOptions(argv,
1824 docstring,
1825 extra_opts="", extra_long_opts=(),
1826 extra_option_handler=None):
1827 """Parse the options in argv and return any arguments that aren't
1828 flags. docstring is the calling module's docstring, to be displayed
1829 for errors and -h. extra_opts and extra_long_opts are for flags
1830 defined by the caller, which are processed by passing them to
1831 extra_option_handler."""
1832
1833 try:
1834 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08001835 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08001836 ["help", "verbose", "path=", "signapk_path=",
1837 "signapk_shared_library_path=", "extra_signapk_args=",
Baligh Uddinbdc2e312014-09-05 17:36:20 -07001838 "java_path=", "java_args=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07001839 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
1840 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Yifan Hong30910932019-10-25 20:36:55 -07001841 "extra=", "logfile="] +
T.R. Fullhart37e10522013-03-18 10:31:26 -07001842 list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07001843 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07001844 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08001845 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07001846 sys.exit(2)
1847
Doug Zongkereef39442009-04-02 12:14:19 -07001848 for o, a in opts:
1849 if o in ("-h", "--help"):
1850 Usage(docstring)
1851 sys.exit()
1852 elif o in ("-v", "--verbose"):
1853 OPTIONS.verbose = True
1854 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07001855 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001856 elif o in ("--signapk_path",):
1857 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08001858 elif o in ("--signapk_shared_library_path",):
1859 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001860 elif o in ("--extra_signapk_args",):
1861 OPTIONS.extra_signapk_args = shlex.split(a)
1862 elif o in ("--java_path",):
1863 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07001864 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08001865 OPTIONS.java_args = shlex.split(a)
T.R. Fullhart37e10522013-03-18 10:31:26 -07001866 elif o in ("--public_key_suffix",):
1867 OPTIONS.public_key_suffix = a
1868 elif o in ("--private_key_suffix",):
1869 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08001870 elif o in ("--boot_signer_path",):
1871 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07001872 elif o in ("--boot_signer_args",):
1873 OPTIONS.boot_signer_args = shlex.split(a)
1874 elif o in ("--verity_signer_path",):
1875 OPTIONS.verity_signer_path = a
1876 elif o in ("--verity_signer_args",):
1877 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07001878 elif o in ("-s", "--device_specific"):
1879 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08001880 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08001881 key, value = a.split("=", 1)
1882 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07001883 elif o in ("--logfile",):
1884 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07001885 else:
1886 if extra_option_handler is None or not extra_option_handler(o, a):
1887 assert False, "unknown option \"%s\"" % (o,)
1888
Doug Zongker85448772014-09-09 14:59:20 -07001889 if OPTIONS.search_path:
1890 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
1891 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07001892
1893 return args
1894
1895
Tao Bao4c851b12016-09-19 13:54:38 -07001896def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07001897 """Make a temp file and add it to the list of things to be deleted
1898 when Cleanup() is called. Return the filename."""
1899 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
1900 os.close(fd)
1901 OPTIONS.tempfiles.append(fn)
1902 return fn
1903
1904
Tao Bao1c830bf2017-12-25 10:43:47 -08001905def MakeTempDir(prefix='tmp', suffix=''):
1906 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
1907
1908 Returns:
1909 The absolute pathname of the new directory.
1910 """
1911 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
1912 OPTIONS.tempfiles.append(dir_name)
1913 return dir_name
1914
1915
Doug Zongkereef39442009-04-02 12:14:19 -07001916def Cleanup():
1917 for i in OPTIONS.tempfiles:
1918 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08001919 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07001920 else:
1921 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08001922 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07001923
1924
1925class PasswordManager(object):
1926 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08001927 self.editor = os.getenv("EDITOR")
1928 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001929
1930 def GetPasswords(self, items):
1931 """Get passwords corresponding to each string in 'items',
1932 returning a dict. (The dict may have keys in addition to the
1933 values in 'items'.)
1934
1935 Uses the passwords in $ANDROID_PW_FILE if available, letting the
1936 user edit that file to add more needed passwords. If no editor is
1937 available, or $ANDROID_PW_FILE isn't define, prompts the user
1938 interactively in the ordinary way.
1939 """
1940
1941 current = self.ReadFile()
1942
1943 first = True
1944 while True:
1945 missing = []
1946 for i in items:
1947 if i not in current or not current[i]:
1948 missing.append(i)
1949 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07001950 if not missing:
1951 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07001952
1953 for i in missing:
1954 current[i] = ""
1955
1956 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001957 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08001958 if sys.version_info[0] >= 3:
1959 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07001960 answer = raw_input("try to edit again? [y]> ").strip()
1961 if answer and answer[0] not in 'yY':
1962 raise RuntimeError("key passwords unavailable")
1963 first = False
1964
1965 current = self.UpdateAndReadFile(current)
1966
Dan Albert8b72aef2015-03-23 19:13:21 -07001967 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07001968 """Prompt the user to enter a value (password) for each key in
1969 'current' whose value is fales. Returns a new dict with all the
1970 values.
1971 """
1972 result = {}
Tao Bao38884282019-07-10 22:20:56 -07001973 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07001974 if v:
1975 result[k] = v
1976 else:
1977 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07001978 result[k] = getpass.getpass(
1979 "Enter password for %s key> " % k).strip()
1980 if result[k]:
1981 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07001982 return result
1983
1984 def UpdateAndReadFile(self, current):
1985 if not self.editor or not self.pwfile:
1986 return self.PromptResult(current)
1987
1988 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07001989 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07001990 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
1991 f.write("# (Additional spaces are harmless.)\n\n")
1992
1993 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07001994 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07001995 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07001996 f.write("[[[ %s ]]] %s\n" % (v, k))
1997 if not v and first_line is None:
1998 # position cursor on first line with no password.
1999 first_line = i + 4
2000 f.close()
2001
Tao Bao986ee862018-10-04 15:46:16 -07002002 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002003
2004 return self.ReadFile()
2005
2006 def ReadFile(self):
2007 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002008 if self.pwfile is None:
2009 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002010 try:
2011 f = open(self.pwfile, "r")
2012 for line in f:
2013 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002014 if not line or line[0] == '#':
2015 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002016 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2017 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002018 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002019 else:
2020 result[m.group(2)] = m.group(1)
2021 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002022 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002023 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002024 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002025 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002026
2027
Dan Albert8e0178d2015-01-27 15:53:15 -08002028def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2029 compress_type=None):
2030 import datetime
2031
2032 # http://b/18015246
2033 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2034 # for files larger than 2GiB. We can work around this by adjusting their
2035 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2036 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2037 # it isn't clear to me exactly what circumstances cause this).
2038 # `zipfile.write()` must be used directly to work around this.
2039 #
2040 # This mess can be avoided if we port to python3.
2041 saved_zip64_limit = zipfile.ZIP64_LIMIT
2042 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2043
2044 if compress_type is None:
2045 compress_type = zip_file.compression
2046 if arcname is None:
2047 arcname = filename
2048
2049 saved_stat = os.stat(filename)
2050
2051 try:
2052 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2053 # file to be zipped and reset it when we're done.
2054 os.chmod(filename, perms)
2055
2056 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002057 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2058 # intentional. zip stores datetimes in local time without a time zone
2059 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2060 # in the zip archive.
2061 local_epoch = datetime.datetime.fromtimestamp(0)
2062 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002063 os.utime(filename, (timestamp, timestamp))
2064
2065 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2066 finally:
2067 os.chmod(filename, saved_stat.st_mode)
2068 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2069 zipfile.ZIP64_LIMIT = saved_zip64_limit
2070
2071
Tao Bao58c1b962015-05-20 09:32:18 -07002072def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002073 compress_type=None):
2074 """Wrap zipfile.writestr() function to work around the zip64 limit.
2075
2076 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2077 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2078 when calling crc32(bytes).
2079
2080 But it still works fine to write a shorter string into a large zip file.
2081 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2082 when we know the string won't be too long.
2083 """
2084
2085 saved_zip64_limit = zipfile.ZIP64_LIMIT
2086 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2087
2088 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2089 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002090 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002091 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002092 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002093 else:
Tao Baof3282b42015-04-01 11:21:55 -07002094 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002095 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2096 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2097 # such a case (since
2098 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2099 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2100 # permission bits. We follow the logic in Python 3 to get consistent
2101 # behavior between using the two versions.
2102 if not zinfo.external_attr:
2103 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002104
2105 # If compress_type is given, it overrides the value in zinfo.
2106 if compress_type is not None:
2107 zinfo.compress_type = compress_type
2108
Tao Bao58c1b962015-05-20 09:32:18 -07002109 # If perms is given, it has a priority.
2110 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002111 # If perms doesn't set the file type, mark it as a regular file.
2112 if perms & 0o770000 == 0:
2113 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002114 zinfo.external_attr = perms << 16
2115
Tao Baof3282b42015-04-01 11:21:55 -07002116 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002117 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2118
Dan Albert8b72aef2015-03-23 19:13:21 -07002119 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002120 zipfile.ZIP64_LIMIT = saved_zip64_limit
2121
2122
Tao Bao89d7ab22017-12-14 17:05:33 -08002123def ZipDelete(zip_filename, entries):
2124 """Deletes entries from a ZIP file.
2125
2126 Since deleting entries from a ZIP file is not supported, it shells out to
2127 'zip -d'.
2128
2129 Args:
2130 zip_filename: The name of the ZIP file.
2131 entries: The name of the entry, or the list of names to be deleted.
2132
2133 Raises:
2134 AssertionError: In case of non-zero return from 'zip'.
2135 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002136 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002137 entries = [entries]
2138 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002139 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002140
2141
Tao Baof3282b42015-04-01 11:21:55 -07002142def ZipClose(zip_file):
2143 # http://b/18015246
2144 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2145 # central directory.
2146 saved_zip64_limit = zipfile.ZIP64_LIMIT
2147 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2148
2149 zip_file.close()
2150
2151 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002152
2153
2154class DeviceSpecificParams(object):
2155 module = None
2156 def __init__(self, **kwargs):
2157 """Keyword arguments to the constructor become attributes of this
2158 object, which is passed to all functions in the device-specific
2159 module."""
Tao Bao38884282019-07-10 22:20:56 -07002160 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002161 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002162 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002163
2164 if self.module is None:
2165 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002166 if not path:
2167 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002168 try:
2169 if os.path.isdir(path):
2170 info = imp.find_module("releasetools", [path])
2171 else:
2172 d, f = os.path.split(path)
2173 b, x = os.path.splitext(f)
2174 if x == ".py":
2175 f = b
2176 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002177 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002178 self.module = imp.load_module("device_specific", *info)
2179 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002180 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002181
2182 def _DoCall(self, function_name, *args, **kwargs):
2183 """Call the named function in the device-specific module, passing
2184 the given args and kwargs. The first argument to the call will be
2185 the DeviceSpecific object itself. If there is no module, or the
2186 module does not define the function, return the value of the
2187 'default' kwarg (which itself defaults to None)."""
2188 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002189 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002190 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2191
2192 def FullOTA_Assertions(self):
2193 """Called after emitting the block of assertions at the top of a
2194 full OTA package. Implementations can add whatever additional
2195 assertions they like."""
2196 return self._DoCall("FullOTA_Assertions")
2197
Doug Zongkere5ff5902012-01-17 10:55:37 -08002198 def FullOTA_InstallBegin(self):
2199 """Called at the start of full OTA installation."""
2200 return self._DoCall("FullOTA_InstallBegin")
2201
Yifan Hong10c530d2018-12-27 17:34:18 -08002202 def FullOTA_GetBlockDifferences(self):
2203 """Called during full OTA installation and verification.
2204 Implementation should return a list of BlockDifference objects describing
2205 the update on each additional partitions.
2206 """
2207 return self._DoCall("FullOTA_GetBlockDifferences")
2208
Doug Zongker05d3dea2009-06-22 11:32:31 -07002209 def FullOTA_InstallEnd(self):
2210 """Called at the end of full OTA installation; typically this is
2211 used to install the image for the device's baseband processor."""
2212 return self._DoCall("FullOTA_InstallEnd")
2213
2214 def IncrementalOTA_Assertions(self):
2215 """Called after emitting the block of assertions at the top of an
2216 incremental OTA package. Implementations can add whatever
2217 additional assertions they like."""
2218 return self._DoCall("IncrementalOTA_Assertions")
2219
Doug Zongkere5ff5902012-01-17 10:55:37 -08002220 def IncrementalOTA_VerifyBegin(self):
2221 """Called at the start of the verification phase of incremental
2222 OTA installation; additional checks can be placed here to abort
2223 the script before any changes are made."""
2224 return self._DoCall("IncrementalOTA_VerifyBegin")
2225
Doug Zongker05d3dea2009-06-22 11:32:31 -07002226 def IncrementalOTA_VerifyEnd(self):
2227 """Called at the end of the verification phase of incremental OTA
2228 installation; additional checks can be placed here to abort the
2229 script before any changes are made."""
2230 return self._DoCall("IncrementalOTA_VerifyEnd")
2231
Doug Zongkere5ff5902012-01-17 10:55:37 -08002232 def IncrementalOTA_InstallBegin(self):
2233 """Called at the start of incremental OTA installation (after
2234 verification is complete)."""
2235 return self._DoCall("IncrementalOTA_InstallBegin")
2236
Yifan Hong10c530d2018-12-27 17:34:18 -08002237 def IncrementalOTA_GetBlockDifferences(self):
2238 """Called during incremental OTA installation and verification.
2239 Implementation should return a list of BlockDifference objects describing
2240 the update on each additional partitions.
2241 """
2242 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2243
Doug Zongker05d3dea2009-06-22 11:32:31 -07002244 def IncrementalOTA_InstallEnd(self):
2245 """Called at the end of incremental OTA installation; typically
2246 this is used to install the image for the device's baseband
2247 processor."""
2248 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002249
Tao Bao9bc6bb22015-11-09 16:58:28 -08002250 def VerifyOTA_Assertions(self):
2251 return self._DoCall("VerifyOTA_Assertions")
2252
Tao Bao76def242017-11-21 09:25:31 -08002253
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002254class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002255 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002256 self.name = name
2257 self.data = data
2258 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002259 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002260 self.sha1 = sha1(data).hexdigest()
2261
2262 @classmethod
2263 def FromLocalFile(cls, name, diskname):
2264 f = open(diskname, "rb")
2265 data = f.read()
2266 f.close()
2267 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002268
2269 def WriteToTemp(self):
2270 t = tempfile.NamedTemporaryFile()
2271 t.write(self.data)
2272 t.flush()
2273 return t
2274
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002275 def WriteToDir(self, d):
2276 with open(os.path.join(d, self.name), "wb") as fp:
2277 fp.write(self.data)
2278
Geremy Condra36bd3652014-02-06 19:45:10 -08002279 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002280 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002281
Tao Bao76def242017-11-21 09:25:31 -08002282
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002283DIFF_PROGRAM_BY_EXT = {
2284 ".gz" : "imgdiff",
2285 ".zip" : ["imgdiff", "-z"],
2286 ".jar" : ["imgdiff", "-z"],
2287 ".apk" : ["imgdiff", "-z"],
2288 ".img" : "imgdiff",
2289 }
2290
Tao Bao76def242017-11-21 09:25:31 -08002291
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002292class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002293 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002294 self.tf = tf
2295 self.sf = sf
2296 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002297 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002298
2299 def ComputePatch(self):
2300 """Compute the patch (as a string of data) needed to turn sf into
2301 tf. Returns the same tuple as GetPatch()."""
2302
2303 tf = self.tf
2304 sf = self.sf
2305
Doug Zongker24cd2802012-08-14 16:36:15 -07002306 if self.diff_program:
2307 diff_program = self.diff_program
2308 else:
2309 ext = os.path.splitext(tf.name)[1]
2310 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002311
2312 ttemp = tf.WriteToTemp()
2313 stemp = sf.WriteToTemp()
2314
2315 ext = os.path.splitext(tf.name)[1]
2316
2317 try:
2318 ptemp = tempfile.NamedTemporaryFile()
2319 if isinstance(diff_program, list):
2320 cmd = copy.copy(diff_program)
2321 else:
2322 cmd = [diff_program]
2323 cmd.append(stemp.name)
2324 cmd.append(ttemp.name)
2325 cmd.append(ptemp.name)
2326 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002327 err = []
2328 def run():
2329 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002330 if e:
2331 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002332 th = threading.Thread(target=run)
2333 th.start()
2334 th.join(timeout=300) # 5 mins
2335 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002336 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002337 p.terminate()
2338 th.join(5)
2339 if th.is_alive():
2340 p.kill()
2341 th.join()
2342
Tianjie Xua2a9f992018-01-05 15:15:54 -08002343 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002344 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002345 self.patch = None
2346 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002347 diff = ptemp.read()
2348 finally:
2349 ptemp.close()
2350 stemp.close()
2351 ttemp.close()
2352
2353 self.patch = diff
2354 return self.tf, self.sf, self.patch
2355
2356
2357 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08002358 """Returns a tuple of (target_file, source_file, patch_data).
2359
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002360 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08002361 computing the patch failed.
2362 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002363 return self.tf, self.sf, self.patch
2364
2365
2366def ComputeDifferences(diffs):
2367 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07002368 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002369
2370 # Do the largest files first, to try and reduce the long-pole effect.
2371 by_size = [(i.tf.size, i) for i in diffs]
2372 by_size.sort(reverse=True)
2373 by_size = [i[1] for i in by_size]
2374
2375 lock = threading.Lock()
2376 diff_iter = iter(by_size) # accessed under lock
2377
2378 def worker():
2379 try:
2380 lock.acquire()
2381 for d in diff_iter:
2382 lock.release()
2383 start = time.time()
2384 d.ComputePatch()
2385 dur = time.time() - start
2386 lock.acquire()
2387
2388 tf, sf, patch = d.GetPatch()
2389 if sf.name == tf.name:
2390 name = tf.name
2391 else:
2392 name = "%s (%s)" % (tf.name, sf.name)
2393 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07002394 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002395 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07002396 logger.info(
2397 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
2398 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002399 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07002400 except Exception:
2401 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002402 raise
2403
2404 # start worker threads; wait for them all to finish.
2405 threads = [threading.Thread(target=worker)
2406 for i in range(OPTIONS.worker_threads)]
2407 for th in threads:
2408 th.start()
2409 while threads:
2410 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07002411
2412
Dan Albert8b72aef2015-03-23 19:13:21 -07002413class BlockDifference(object):
2414 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07002415 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002416 self.tgt = tgt
2417 self.src = src
2418 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002419 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07002420 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002421
Tao Baodd2a5892015-03-12 12:32:37 -07002422 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08002423 version = max(
2424 int(i) for i in
2425 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08002426 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07002427 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07002428
Tianjie Xu41976c72019-07-03 13:57:01 -07002429 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
2430 version=self.version,
2431 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08002432 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002433 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08002434 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07002435 self.touched_src_ranges = b.touched_src_ranges
2436 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002437
Yifan Hong10c530d2018-12-27 17:34:18 -08002438 # On devices with dynamic partitions, for new partitions,
2439 # src is None but OPTIONS.source_info_dict is not.
2440 if OPTIONS.source_info_dict is None:
2441 is_dynamic_build = OPTIONS.info_dict.get(
2442 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002443 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07002444 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08002445 is_dynamic_build = OPTIONS.source_info_dict.get(
2446 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002447 is_dynamic_source = partition in shlex.split(
2448 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08002449
Yifan Hongbb2658d2019-01-25 12:30:58 -08002450 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08002451 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
2452
Yifan Hongbb2658d2019-01-25 12:30:58 -08002453 # For dynamic partitions builds, check partition list in both source
2454 # and target build because new partitions may be added, and existing
2455 # partitions may be removed.
2456 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
2457
Yifan Hong10c530d2018-12-27 17:34:18 -08002458 if is_dynamic:
2459 self.device = 'map_partition("%s")' % partition
2460 else:
2461 if OPTIONS.source_info_dict is None:
2462 _, device_path = GetTypeAndDevice("/" + partition, OPTIONS.info_dict)
2463 else:
2464 _, device_path = GetTypeAndDevice("/" + partition,
2465 OPTIONS.source_info_dict)
2466 self.device = '"%s"' % device_path
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002467
Tao Baod8d14be2016-02-04 14:26:02 -08002468 @property
2469 def required_cache(self):
2470 return self._required_cache
2471
Tao Bao76def242017-11-21 09:25:31 -08002472 def WriteScript(self, script, output_zip, progress=None,
2473 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002474 if not self.src:
2475 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08002476 script.Print("Patching %s image unconditionally..." % (self.partition,))
2477 else:
2478 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002479
Dan Albert8b72aef2015-03-23 19:13:21 -07002480 if progress:
2481 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002482 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08002483
2484 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08002485 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002486
Tao Bao9bc6bb22015-11-09 16:58:28 -08002487 def WriteStrictVerifyScript(self, script):
2488 """Verify all the blocks in the care_map, including clobbered blocks.
2489
2490 This differs from the WriteVerifyScript() function: a) it prints different
2491 error messages; b) it doesn't allow half-way updated images to pass the
2492 verification."""
2493
2494 partition = self.partition
2495 script.Print("Verifying %s..." % (partition,))
2496 ranges = self.tgt.care_map
2497 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002498 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002499 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
2500 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08002501 self.device, ranges_str,
2502 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08002503 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08002504 script.AppendExtra("")
2505
Tao Baod522bdc2016-04-12 15:53:16 -07002506 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00002507 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07002508
2509 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08002510 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00002511 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07002512
2513 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002514 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08002515 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07002516 ranges = self.touched_src_ranges
2517 expected_sha1 = self.touched_src_sha1
2518 else:
2519 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
2520 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07002521
2522 # No blocks to be checked, skipping.
2523 if not ranges:
2524 return
2525
Tao Bao5ece99d2015-05-12 11:42:31 -07002526 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002527 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002528 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08002529 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
2530 '"%s.patch.dat")) then' % (
2531 self.device, ranges_str, expected_sha1,
2532 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07002533 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07002534 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00002535
Tianjie Xufc3422a2015-12-15 11:53:59 -08002536 if self.version >= 4:
2537
2538 # Bug: 21124327
2539 # When generating incrementals for the system and vendor partitions in
2540 # version 4 or newer, explicitly check the first block (which contains
2541 # the superblock) of the partition to see if it's what we expect. If
2542 # this check fails, give an explicit log message about the partition
2543 # having been remounted R/W (the most likely explanation).
2544 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08002545 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08002546
2547 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07002548 if partition == "system":
2549 code = ErrorCode.SYSTEM_RECOVER_FAILURE
2550 else:
2551 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08002552 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08002553 'ifelse (block_image_recover({device}, "{ranges}") && '
2554 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08002555 'package_extract_file("{partition}.transfer.list"), '
2556 '"{partition}.new.dat", "{partition}.patch.dat"), '
2557 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07002558 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08002559 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07002560 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002561
Tao Baodd2a5892015-03-12 12:32:37 -07002562 # Abort the OTA update. Note that the incremental OTA cannot be applied
2563 # even if it may match the checksum of the target partition.
2564 # a) If version < 3, operations like move and erase will make changes
2565 # unconditionally and damage the partition.
2566 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08002567 else:
Tianjie Xu209db462016-05-24 17:34:52 -07002568 if partition == "system":
2569 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
2570 else:
2571 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
2572 script.AppendExtra((
2573 'abort("E%d: %s partition has unexpected contents");\n'
2574 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002575
Yifan Hong10c530d2018-12-27 17:34:18 -08002576 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07002577 partition = self.partition
2578 script.Print('Verifying the updated %s image...' % (partition,))
2579 # Unlike pre-install verification, clobbered_blocks should not be ignored.
2580 ranges = self.tgt.care_map
2581 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002582 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002583 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002584 self.device, ranges_str,
2585 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07002586
2587 # Bug: 20881595
2588 # Verify that extended blocks are really zeroed out.
2589 if self.tgt.extended:
2590 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002591 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002592 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002593 self.device, ranges_str,
2594 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07002595 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07002596 if partition == "system":
2597 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
2598 else:
2599 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07002600 script.AppendExtra(
2601 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002602 ' abort("E%d: %s partition has unexpected non-zero contents after '
2603 'OTA update");\n'
2604 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07002605 else:
2606 script.Print('Verified the updated %s image.' % (partition,))
2607
Tianjie Xu209db462016-05-24 17:34:52 -07002608 if partition == "system":
2609 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
2610 else:
2611 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
2612
Tao Bao5fcaaef2015-06-01 13:40:49 -07002613 script.AppendExtra(
2614 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002615 ' abort("E%d: %s partition has unexpected contents after OTA '
2616 'update");\n'
2617 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07002618
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002619 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08002620 ZipWrite(output_zip,
2621 '{}.transfer.list'.format(self.path),
2622 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002623
Tao Bao76def242017-11-21 09:25:31 -08002624 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
2625 # its size. Quailty 9 almost triples the compression time but doesn't
2626 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002627 # zip | brotli(quality 6) | brotli(quality 9)
2628 # compressed_size: 942M | 869M (~8% reduced) | 854M
2629 # compression_time: 75s | 265s | 719s
2630 # decompression_time: 15s | 25s | 25s
2631
2632 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01002633 brotli_cmd = ['brotli', '--quality=6',
2634 '--output={}.new.dat.br'.format(self.path),
2635 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002636 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07002637 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002638
2639 new_data_name = '{}.new.dat.br'.format(self.partition)
2640 ZipWrite(output_zip,
2641 '{}.new.dat.br'.format(self.path),
2642 new_data_name,
2643 compress_type=zipfile.ZIP_STORED)
2644 else:
2645 new_data_name = '{}.new.dat'.format(self.partition)
2646 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
2647
Dan Albert8e0178d2015-01-27 15:53:15 -08002648 ZipWrite(output_zip,
2649 '{}.patch.dat'.format(self.path),
2650 '{}.patch.dat'.format(self.partition),
2651 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002652
Tianjie Xu209db462016-05-24 17:34:52 -07002653 if self.partition == "system":
2654 code = ErrorCode.SYSTEM_UPDATE_FAILURE
2655 else:
2656 code = ErrorCode.VENDOR_UPDATE_FAILURE
2657
Yifan Hong10c530d2018-12-27 17:34:18 -08002658 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08002659 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002660 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002661 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002662 device=self.device, partition=self.partition,
2663 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07002664 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002665
Dan Albert8b72aef2015-03-23 19:13:21 -07002666 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00002667 data = source.ReadRangeSet(ranges)
2668 ctx = sha1()
2669
2670 for p in data:
2671 ctx.update(p)
2672
2673 return ctx.hexdigest()
2674
Tao Baoe9b61912015-07-09 17:37:49 -07002675 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
2676 """Return the hash value for all zero blocks."""
2677 zero_block = '\x00' * 4096
2678 ctx = sha1()
2679 for _ in range(num_blocks):
2680 ctx.update(zero_block)
2681
2682 return ctx.hexdigest()
2683
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002684
Tianjie Xu41976c72019-07-03 13:57:01 -07002685# Expose these two classes to support vendor-specific scripts
2686DataImage = images.DataImage
2687EmptyImage = images.EmptyImage
2688
Tao Bao76def242017-11-21 09:25:31 -08002689
Doug Zongker96a57e72010-09-26 14:57:41 -07002690# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07002691PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07002692 "ext4": "EMMC",
2693 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07002694 "f2fs": "EMMC",
2695 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07002696}
Doug Zongker96a57e72010-09-26 14:57:41 -07002697
Tao Bao76def242017-11-21 09:25:31 -08002698
Doug Zongker96a57e72010-09-26 14:57:41 -07002699def GetTypeAndDevice(mount_point, info):
2700 fstab = info["fstab"]
2701 if fstab:
Dan Albert8b72aef2015-03-23 19:13:21 -07002702 return (PARTITION_TYPES[fstab[mount_point].fs_type],
2703 fstab[mount_point].device)
Doug Zongker96a57e72010-09-26 14:57:41 -07002704 else:
Dan Albert8b72aef2015-03-23 19:13:21 -07002705 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002706
2707
2708def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08002709 """Parses and converts a PEM-encoded certificate into DER-encoded.
2710
2711 This gives the same result as `openssl x509 -in <filename> -outform DER`.
2712
2713 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08002714 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08002715 """
2716 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002717 save = False
2718 for line in data.split("\n"):
2719 if "--END CERTIFICATE--" in line:
2720 break
2721 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08002722 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002723 if "--BEGIN CERTIFICATE--" in line:
2724 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08002725 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002726 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08002727
Tao Bao04e1f012018-02-04 12:13:35 -08002728
2729def ExtractPublicKey(cert):
2730 """Extracts the public key (PEM-encoded) from the given certificate file.
2731
2732 Args:
2733 cert: The certificate filename.
2734
2735 Returns:
2736 The public key string.
2737
2738 Raises:
2739 AssertionError: On non-zero return from 'openssl'.
2740 """
2741 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
2742 # While openssl 1.1 writes the key into the given filename followed by '-out',
2743 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
2744 # stdout instead.
2745 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
2746 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
2747 pubkey, stderrdata = proc.communicate()
2748 assert proc.returncode == 0, \
2749 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
2750 return pubkey
2751
2752
Tao Bao1ac886e2019-06-26 11:58:22 -07002753def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07002754 """Extracts the AVB public key from the given public or private key.
2755
2756 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07002757 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07002758 key: The input key file, which should be PEM-encoded public or private key.
2759
2760 Returns:
2761 The path to the extracted AVB public key file.
2762 """
2763 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
2764 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07002765 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07002766 return output
2767
2768
Doug Zongker412c02f2014-02-13 10:58:24 -08002769def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
2770 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08002771 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08002772
Tao Bao6d5d6232018-03-09 17:04:42 -08002773 Most of the space in the boot and recovery images is just the kernel, which is
2774 identical for the two, so the resulting patch should be efficient. Add it to
2775 the output zip, along with a shell script that is run from init.rc on first
2776 boot to actually do the patching and install the new recovery image.
2777
2778 Args:
2779 input_dir: The top-level input directory of the target-files.zip.
2780 output_sink: The callback function that writes the result.
2781 recovery_img: File object for the recovery image.
2782 boot_img: File objects for the boot image.
2783 info_dict: A dict returned by common.LoadInfoDict() on the input
2784 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08002785 """
Doug Zongker412c02f2014-02-13 10:58:24 -08002786 if info_dict is None:
2787 info_dict = OPTIONS.info_dict
2788
Tao Bao6d5d6232018-03-09 17:04:42 -08002789 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002790 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
2791
2792 if board_uses_vendorimage:
2793 # In this case, the output sink is rooted at VENDOR
2794 recovery_img_path = "etc/recovery.img"
2795 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
2796 sh_dir = "bin"
2797 else:
2798 # In this case the output sink is rooted at SYSTEM
2799 recovery_img_path = "vendor/etc/recovery.img"
2800 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
2801 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08002802
Tao Baof2cffbd2015-07-22 12:33:18 -07002803 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002804 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07002805
2806 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08002807 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002808 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08002809 # With system-root-image, boot and recovery images will have mismatching
2810 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
2811 # to handle such a case.
2812 if system_root_image:
2813 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07002814 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08002815 assert not os.path.exists(path)
2816 else:
2817 diff_program = ["imgdiff"]
2818 if os.path.exists(path):
2819 diff_program.append("-b")
2820 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07002821 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08002822 else:
2823 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07002824
2825 d = Difference(recovery_img, boot_img, diff_program=diff_program)
2826 _, _, patch = d.ComputePatch()
2827 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08002828
Dan Albertebb19aa2015-03-27 19:11:53 -07002829 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07002830 # The following GetTypeAndDevice()s need to use the path in the target
2831 # info_dict instead of source_info_dict.
Dan Albertebb19aa2015-03-27 19:11:53 -07002832 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict)
2833 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict)
2834 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07002835 return
Doug Zongkerc9253822014-02-04 12:17:58 -08002836
Tao Baof2cffbd2015-07-22 12:33:18 -07002837 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002838
2839 # Note that we use /vendor to refer to the recovery resources. This will
2840 # work for a separate vendor partition mounted at /vendor or a
2841 # /system/vendor subdirectory on the system partition, for which init will
2842 # create a symlink from /vendor to /system/vendor.
2843
2844 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002845if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
2846 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002847 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07002848 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
2849 log -t recovery "Installing new recovery image: succeeded" || \\
2850 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07002851else
2852 log -t recovery "Recovery image already installed"
2853fi
2854""" % {'type': recovery_type,
2855 'device': recovery_device,
2856 'sha1': recovery_img.sha1,
2857 'size': recovery_img.size}
2858 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07002859 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002860if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
2861 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002862 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07002863 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
2864 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
2865 log -t recovery "Installing new recovery image: succeeded" || \\
2866 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08002867else
2868 log -t recovery "Recovery image already installed"
2869fi
Dan Albert8b72aef2015-03-23 19:13:21 -07002870""" % {'boot_size': boot_img.size,
2871 'boot_sha1': boot_img.sha1,
2872 'recovery_size': recovery_img.size,
2873 'recovery_sha1': recovery_img.sha1,
2874 'boot_type': boot_type,
2875 'boot_device': boot_device,
2876 'recovery_type': recovery_type,
2877 'recovery_device': recovery_device,
2878 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08002879
Bill Peckhame868aec2019-09-17 17:06:47 -07002880 # The install script location moved from /system/etc to /system/bin in the L
2881 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
2882 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07002883
Tao Bao32fcdab2018-10-12 10:30:39 -07002884 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08002885
Tao Baoda30cfa2017-12-01 16:19:46 -08002886 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08002887
2888
2889class DynamicPartitionUpdate(object):
2890 def __init__(self, src_group=None, tgt_group=None, progress=None,
2891 block_difference=None):
2892 self.src_group = src_group
2893 self.tgt_group = tgt_group
2894 self.progress = progress
2895 self.block_difference = block_difference
2896
2897 @property
2898 def src_size(self):
2899 if not self.block_difference:
2900 return 0
2901 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
2902
2903 @property
2904 def tgt_size(self):
2905 if not self.block_difference:
2906 return 0
2907 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
2908
2909 @staticmethod
2910 def _GetSparseImageSize(img):
2911 if not img:
2912 return 0
2913 return img.blocksize * img.total_blocks
2914
2915
2916class DynamicGroupUpdate(object):
2917 def __init__(self, src_size=None, tgt_size=None):
2918 # None: group does not exist. 0: no size limits.
2919 self.src_size = src_size
2920 self.tgt_size = tgt_size
2921
2922
2923class DynamicPartitionsDifference(object):
2924 def __init__(self, info_dict, block_diffs, progress_dict=None,
2925 source_info_dict=None):
2926 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07002927 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002928
2929 self._remove_all_before_apply = False
2930 if source_info_dict is None:
2931 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07002932 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002933
Tao Baof1113e92019-06-18 12:10:14 -07002934 block_diff_dict = collections.OrderedDict(
2935 [(e.partition, e) for e in block_diffs])
2936
Yifan Hong10c530d2018-12-27 17:34:18 -08002937 assert len(block_diff_dict) == len(block_diffs), \
2938 "Duplicated BlockDifference object for {}".format(
2939 [partition for partition, count in
2940 collections.Counter(e.partition for e in block_diffs).items()
2941 if count > 1])
2942
Yifan Hong79997e52019-01-23 16:56:19 -08002943 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08002944
2945 for p, block_diff in block_diff_dict.items():
2946 self._partition_updates[p] = DynamicPartitionUpdate()
2947 self._partition_updates[p].block_difference = block_diff
2948
2949 for p, progress in progress_dict.items():
2950 if p in self._partition_updates:
2951 self._partition_updates[p].progress = progress
2952
2953 tgt_groups = shlex.split(info_dict.get(
2954 "super_partition_groups", "").strip())
2955 src_groups = shlex.split(source_info_dict.get(
2956 "super_partition_groups", "").strip())
2957
2958 for g in tgt_groups:
2959 for p in shlex.split(info_dict.get(
2960 "super_%s_partition_list" % g, "").strip()):
2961 assert p in self._partition_updates, \
2962 "{} is in target super_{}_partition_list but no BlockDifference " \
2963 "object is provided.".format(p, g)
2964 self._partition_updates[p].tgt_group = g
2965
2966 for g in src_groups:
2967 for p in shlex.split(source_info_dict.get(
2968 "super_%s_partition_list" % g, "").strip()):
2969 assert p in self._partition_updates, \
2970 "{} is in source super_{}_partition_list but no BlockDifference " \
2971 "object is provided.".format(p, g)
2972 self._partition_updates[p].src_group = g
2973
Yifan Hong45433e42019-01-18 13:55:25 -08002974 target_dynamic_partitions = set(shlex.split(info_dict.get(
2975 "dynamic_partition_list", "").strip()))
2976 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
2977 if u.tgt_size)
2978 assert block_diffs_with_target == target_dynamic_partitions, \
2979 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
2980 list(target_dynamic_partitions), list(block_diffs_with_target))
2981
2982 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
2983 "dynamic_partition_list", "").strip()))
2984 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
2985 if u.src_size)
2986 assert block_diffs_with_source == source_dynamic_partitions, \
2987 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
2988 list(source_dynamic_partitions), list(block_diffs_with_source))
2989
Yifan Hong10c530d2018-12-27 17:34:18 -08002990 if self._partition_updates:
2991 logger.info("Updating dynamic partitions %s",
2992 self._partition_updates.keys())
2993
Yifan Hong79997e52019-01-23 16:56:19 -08002994 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08002995
2996 for g in tgt_groups:
2997 self._group_updates[g] = DynamicGroupUpdate()
2998 self._group_updates[g].tgt_size = int(info_dict.get(
2999 "super_%s_group_size" % g, "0").strip())
3000
3001 for g in src_groups:
3002 if g not in self._group_updates:
3003 self._group_updates[g] = DynamicGroupUpdate()
3004 self._group_updates[g].src_size = int(source_info_dict.get(
3005 "super_%s_group_size" % g, "0").strip())
3006
3007 self._Compute()
3008
3009 def WriteScript(self, script, output_zip, write_verify_script=False):
3010 script.Comment('--- Start patching dynamic partitions ---')
3011 for p, u in self._partition_updates.items():
3012 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3013 script.Comment('Patch partition %s' % p)
3014 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3015 write_verify_script=False)
3016
3017 op_list_path = MakeTempFile()
3018 with open(op_list_path, 'w') as f:
3019 for line in self._op_list:
3020 f.write('{}\n'.format(line))
3021
3022 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3023
3024 script.Comment('Update dynamic partition metadata')
3025 script.AppendExtra('assert(update_dynamic_partitions('
3026 'package_extract_file("dynamic_partitions_op_list")));')
3027
3028 if write_verify_script:
3029 for p, u in self._partition_updates.items():
3030 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3031 u.block_difference.WritePostInstallVerifyScript(script)
3032 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3033
3034 for p, u in self._partition_updates.items():
3035 if u.tgt_size and u.src_size <= u.tgt_size:
3036 script.Comment('Patch partition %s' % p)
3037 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3038 write_verify_script=write_verify_script)
3039 if write_verify_script:
3040 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3041
3042 script.Comment('--- End patching dynamic partitions ---')
3043
3044 def _Compute(self):
3045 self._op_list = list()
3046
3047 def append(line):
3048 self._op_list.append(line)
3049
3050 def comment(line):
3051 self._op_list.append("# %s" % line)
3052
3053 if self._remove_all_before_apply:
3054 comment('Remove all existing dynamic partitions and groups before '
3055 'applying full OTA')
3056 append('remove_all_groups')
3057
3058 for p, u in self._partition_updates.items():
3059 if u.src_group and not u.tgt_group:
3060 append('remove %s' % p)
3061
3062 for p, u in self._partition_updates.items():
3063 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3064 comment('Move partition %s from %s to default' % (p, u.src_group))
3065 append('move %s default' % p)
3066
3067 for p, u in self._partition_updates.items():
3068 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3069 comment('Shrink partition %s from %d to %d' %
3070 (p, u.src_size, u.tgt_size))
3071 append('resize %s %s' % (p, u.tgt_size))
3072
3073 for g, u in self._group_updates.items():
3074 if u.src_size is not None and u.tgt_size is None:
3075 append('remove_group %s' % g)
3076 if (u.src_size is not None and u.tgt_size is not None and
3077 u.src_size > u.tgt_size):
3078 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3079 append('resize_group %s %d' % (g, u.tgt_size))
3080
3081 for g, u in self._group_updates.items():
3082 if u.src_size is None and u.tgt_size is not None:
3083 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3084 append('add_group %s %d' % (g, u.tgt_size))
3085 if (u.src_size is not None and u.tgt_size is not None and
3086 u.src_size < u.tgt_size):
3087 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3088 append('resize_group %s %d' % (g, u.tgt_size))
3089
3090 for p, u in self._partition_updates.items():
3091 if u.tgt_group and not u.src_group:
3092 comment('Add partition %s to group %s' % (p, u.tgt_group))
3093 append('add %s %s' % (p, u.tgt_group))
3094
3095 for p, u in self._partition_updates.items():
3096 if u.tgt_size and u.src_size < u.tgt_size:
3097 comment('Grow partition %s from %d to %d' % (p, u.src_size, u.tgt_size))
3098 append('resize %s %d' % (p, u.tgt_size))
3099
3100 for p, u in self._partition_updates.items():
3101 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3102 comment('Move partition %s from default to %s' %
3103 (p, u.tgt_group))
3104 append('move %s %s' % (p, u.tgt_group))