blob: 0deb9f9683ac8a812fd2c78470c9bbd1a60936a9 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Doug Zongker8ce7c252009-05-22 13:34:54 -070020import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070021import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070022import getopt
23import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010024import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070025import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070026import json
27import logging
28import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070029import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080030import platform
Doug Zongkereef39442009-04-02 12:14:19 -070031import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070032import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070033import shutil
34import subprocess
35import sys
36import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070037import threading
38import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070039import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080040from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070041
Tianjie Xu41976c72019-07-03 13:57:01 -070042import images
Tao Baoc765cca2018-01-31 17:32:40 -080043import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070044from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070045
Tao Bao32fcdab2018-10-12 10:30:39 -070046logger = logging.getLogger(__name__)
47
Tao Bao986ee862018-10-04 15:46:16 -070048
Dan Albert8b72aef2015-03-23 19:13:21 -070049class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070052 # Set up search path, in order to find framework/ and lib64/. At the time of
53 # running this function, user-supplied search path (`--path`) hasn't been
54 # available. So the value set here is the default, which might be overridden
55 # by commandline flag later.
56 exec_path = sys.argv[0]
57 if exec_path.endswith('.py'):
58 script_name = os.path.basename(exec_path)
59 # logger hasn't been initialized yet at this point. Use print to output
60 # warnings.
61 print(
62 'Warning: releasetools script should be invoked as hermetic Python '
63 'executable -- build and run `{}` directly.'.format(script_name[:-3]),
64 file=sys.stderr)
65 self.search_path = os.path.realpath(os.path.join(exec_path, '..'))
Pavel Salomatov32676552019-03-06 20:00:45 +030066
Dan Albert8b72aef2015-03-23 19:13:21 -070067 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080068 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070069 self.extra_signapk_args = []
70 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080071 self.java_args = ["-Xmx2048m"] # The default JVM args.
Dan Albert8b72aef2015-03-23 19:13:21 -070072 self.public_key_suffix = ".x509.pem"
73 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070074 # use otatools built boot_signer by default
75 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070076 self.boot_signer_args = []
77 self.verity_signer_path = None
78 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070079 self.verbose = False
80 self.tempfiles = []
81 self.device_specific = None
82 self.extras = {}
83 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070084 self.source_info_dict = None
85 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070086 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070087 # Stash size cannot exceed cache_size * threshold.
88 self.cache_size = None
89 self.stash_threshold = 0.8
Dan Albert8b72aef2015-03-23 19:13:21 -070090
91
92OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -070093
Tao Bao71197512018-10-11 14:08:45 -070094# The block size that's used across the releasetools scripts.
95BLOCK_SIZE = 4096
96
Doug Zongkerf6a53aa2009-12-15 15:06:55 -080097# Values for "certificate" in apkcerts that mean special things.
98SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
99
Tao Bao5cc0abb2019-03-21 10:18:05 -0700100# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
101# that system_other is not in the list because we don't want to include its
102# descriptor into vbmeta.img.
Justin Yun6151e3f2019-06-25 15:58:13 +0900103AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'recovery', 'system',
Steve Mucklee1b10862019-07-10 10:49:37 -0700104 'system_ext', 'vendor', 'vendor_boot')
Tao Bao9dd909e2017-11-14 11:27:32 -0800105
Tao Bao08c190f2019-06-03 23:07:58 -0700106# Chained VBMeta partitions.
107AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
108
Tianjie Xu861f4132018-09-12 11:49:33 -0700109# Partitions that should have their care_map added to META/care_map.pb
Justin Yun6151e3f2019-06-25 15:58:13 +0900110PARTITIONS_WITH_CARE_MAP = ('system', 'vendor', 'product', 'system_ext', 'odm')
Tianjie Xu861f4132018-09-12 11:49:33 -0700111
112
Tianjie Xu209db462016-05-24 17:34:52 -0700113class ErrorCode(object):
114 """Define error_codes for failures that happen during the actual
115 update package installation.
116
117 Error codes 0-999 are reserved for failures before the package
118 installation (i.e. low battery, package verification failure).
119 Detailed code in 'bootable/recovery/error_code.h' """
120
121 SYSTEM_VERIFICATION_FAILURE = 1000
122 SYSTEM_UPDATE_FAILURE = 1001
123 SYSTEM_UNEXPECTED_CONTENTS = 1002
124 SYSTEM_NONZERO_CONTENTS = 1003
125 SYSTEM_RECOVER_FAILURE = 1004
126 VENDOR_VERIFICATION_FAILURE = 2000
127 VENDOR_UPDATE_FAILURE = 2001
128 VENDOR_UNEXPECTED_CONTENTS = 2002
129 VENDOR_NONZERO_CONTENTS = 2003
130 VENDOR_RECOVER_FAILURE = 2004
131 OEM_PROP_MISMATCH = 3000
132 FINGERPRINT_MISMATCH = 3001
133 THUMBPRINT_MISMATCH = 3002
134 OLDER_BUILD = 3003
135 DEVICE_MISMATCH = 3004
136 BAD_PATCH_FILE = 3005
137 INSUFFICIENT_CACHE_SPACE = 3006
138 TUNE_PARTITION_FAILURE = 3007
139 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800140
Tao Bao80921982018-03-21 21:02:19 -0700141
Dan Albert8b72aef2015-03-23 19:13:21 -0700142class ExternalError(RuntimeError):
143 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700144
145
Tao Bao32fcdab2018-10-12 10:30:39 -0700146def InitLogging():
147 DEFAULT_LOGGING_CONFIG = {
148 'version': 1,
149 'disable_existing_loggers': False,
150 'formatters': {
151 'standard': {
152 'format':
153 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
154 'datefmt': '%Y-%m-%d %H:%M:%S',
155 },
156 },
157 'handlers': {
158 'default': {
159 'class': 'logging.StreamHandler',
160 'formatter': 'standard',
161 },
162 },
163 'loggers': {
164 '': {
165 'handlers': ['default'],
166 'level': 'WARNING',
167 'propagate': True,
168 }
169 }
170 }
171 env_config = os.getenv('LOGGING_CONFIG')
172 if env_config:
173 with open(env_config) as f:
174 config = json.load(f)
175 else:
176 config = DEFAULT_LOGGING_CONFIG
177
178 # Increase the logging level for verbose mode.
179 if OPTIONS.verbose:
180 config = copy.deepcopy(DEFAULT_LOGGING_CONFIG)
181 config['loggers']['']['level'] = 'INFO'
182
183 logging.config.dictConfig(config)
184
185
Tao Bao39451582017-05-04 11:10:47 -0700186def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700187 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700188
Tao Bao73dd4f42018-10-04 16:25:33 -0700189 Args:
190 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700191 verbose: Whether the commands should be shown. Default to the global
192 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700193 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
194 stdin, etc. stdout and stderr will default to subprocess.PIPE and
195 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800196 universal_newlines will default to True, as most of the users in
197 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700198
199 Returns:
200 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700201 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700202 if 'stdout' not in kwargs and 'stderr' not in kwargs:
203 kwargs['stdout'] = subprocess.PIPE
204 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800205 if 'universal_newlines' not in kwargs:
206 kwargs['universal_newlines'] = True
Tao Bao32fcdab2018-10-12 10:30:39 -0700207 # Don't log any if caller explicitly says so.
208 if verbose != False:
209 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700210 return subprocess.Popen(args, **kwargs)
211
212
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800213def RunAndWait(args, verbose=None, **kwargs):
Bill Peckham889b0c62019-02-21 18:53:37 -0800214 """Runs the given command waiting for it to complete.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800215
216 Args:
217 args: The command represented as a list of strings.
218 verbose: Whether the commands should be shown. Default to the global
219 verbosity if unspecified.
220 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
221 stdin, etc. stdout and stderr will default to subprocess.PIPE and
222 subprocess.STDOUT respectively unless caller specifies any of them.
223
Bill Peckham889b0c62019-02-21 18:53:37 -0800224 Raises:
225 ExternalError: On non-zero exit from the command.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800226 """
227 proc = Run(args, verbose=verbose, **kwargs)
228 proc.wait()
Bill Peckham889b0c62019-02-21 18:53:37 -0800229
230 if proc.returncode != 0:
231 raise ExternalError(
232 "Failed to run command '{}' (exit code {})".format(
233 args, proc.returncode))
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800234
235
Tao Bao986ee862018-10-04 15:46:16 -0700236def RunAndCheckOutput(args, verbose=None, **kwargs):
237 """Runs the given command and returns the output.
238
239 Args:
240 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700241 verbose: Whether the commands should be shown. Default to the global
242 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700243 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
244 stdin, etc. stdout and stderr will default to subprocess.PIPE and
245 subprocess.STDOUT respectively unless caller specifies any of them.
246
247 Returns:
248 The output string.
249
250 Raises:
251 ExternalError: On non-zero exit from the command.
252 """
Tao Bao986ee862018-10-04 15:46:16 -0700253 proc = Run(args, verbose=verbose, **kwargs)
254 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800255 if output is None:
256 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700257 # Don't log any if caller explicitly says so.
258 if verbose != False:
259 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700260 if proc.returncode != 0:
261 raise ExternalError(
262 "Failed to run command '{}' (exit code {}):\n{}".format(
263 args, proc.returncode, output))
264 return output
265
266
Tao Baoc765cca2018-01-31 17:32:40 -0800267def RoundUpTo4K(value):
268 rounded_up = value + 4095
269 return rounded_up - (rounded_up % 4096)
270
271
Ying Wang7e6d4e42010-12-13 16:25:36 -0800272def CloseInheritedPipes():
273 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
274 before doing other work."""
275 if platform.system() != "Darwin":
276 return
277 for d in range(3, 1025):
278 try:
279 stat = os.fstat(d)
280 if stat is not None:
281 pipebit = stat[0] & 0x1000
282 if pipebit != 0:
283 os.close(d)
284 except OSError:
285 pass
286
287
Tao Bao1c320f82019-10-04 23:25:12 -0700288class BuildInfo(object):
289 """A class that holds the information for a given build.
290
291 This class wraps up the property querying for a given source or target build.
292 It abstracts away the logic of handling OEM-specific properties, and caches
293 the commonly used properties such as fingerprint.
294
295 There are two types of info dicts: a) build-time info dict, which is generated
296 at build time (i.e. included in a target_files zip); b) OEM info dict that is
297 specified at package generation time (via command line argument
298 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
299 having "oem_fingerprint_properties" in build-time info dict), all the queries
300 would be answered based on build-time info dict only. Otherwise if using
301 OEM-specific properties, some of them will be calculated from two info dicts.
302
303 Users can query properties similarly as using a dict() (e.g. info['fstab']),
304 or to query build properties via GetBuildProp() or GetVendorBuildProp().
305
306 Attributes:
307 info_dict: The build-time info dict.
308 is_ab: Whether it's a build that uses A/B OTA.
309 oem_dicts: A list of OEM dicts.
310 oem_props: A list of OEM properties that should be read from OEM dicts; None
311 if the build doesn't use any OEM-specific property.
312 fingerprint: The fingerprint of the build, which would be calculated based
313 on OEM properties if applicable.
314 device: The device name, which could come from OEM dicts if applicable.
315 """
316
317 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
318 "ro.product.manufacturer", "ro.product.model",
319 "ro.product.name"]
320 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER = ["product", "odm", "vendor",
321 "system_ext", "system"]
322
Tao Bao3ed35d32019-10-07 20:48:48 -0700323 def __init__(self, info_dict, oem_dicts=None):
Tao Bao1c320f82019-10-04 23:25:12 -0700324 """Initializes a BuildInfo instance with the given dicts.
325
326 Note that it only wraps up the given dicts, without making copies.
327
328 Arguments:
329 info_dict: The build-time info dict.
330 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
331 that it always uses the first dict to calculate the fingerprint or the
332 device name. The rest would be used for asserting OEM properties only
333 (e.g. one package can be installed on one of these devices).
334
335 Raises:
336 ValueError: On invalid inputs.
337 """
338 self.info_dict = info_dict
339 self.oem_dicts = oem_dicts
340
341 self._is_ab = info_dict.get("ab_update") == "true"
342 self._oem_props = info_dict.get("oem_fingerprint_properties")
343
344 if self._oem_props:
345 assert oem_dicts, "OEM source required for this build"
346
347 # These two should be computed only after setting self._oem_props.
348 self._device = self.GetOemProperty("ro.product.device")
349 self._fingerprint = self.CalculateFingerprint()
350
351 # Sanity check the build fingerprint.
352 if (' ' in self._fingerprint or
353 any(ord(ch) > 127 for ch in self._fingerprint)):
354 raise ValueError(
355 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
356 '3.2.2. Build Parameters.'.format(self._fingerprint))
357
358 @property
359 def is_ab(self):
360 return self._is_ab
361
362 @property
363 def device(self):
364 return self._device
365
366 @property
367 def fingerprint(self):
368 return self._fingerprint
369
370 @property
371 def vendor_fingerprint(self):
372 return self._fingerprint_of("vendor")
373
374 @property
375 def product_fingerprint(self):
376 return self._fingerprint_of("product")
377
378 @property
379 def odm_fingerprint(self):
380 return self._fingerprint_of("odm")
381
382 def _fingerprint_of(self, partition):
383 if partition + ".build.prop" not in self.info_dict:
384 return None
385 build_prop = self.info_dict[partition + ".build.prop"]
386 if "ro." + partition + ".build.fingerprint" in build_prop:
387 return build_prop["ro." + partition + ".build.fingerprint"]
388 if "ro." + partition + ".build.thumbprint" in build_prop:
389 return build_prop["ro." + partition + ".build.thumbprint"]
390 return None
391
392 @property
393 def oem_props(self):
394 return self._oem_props
395
396 def __getitem__(self, key):
397 return self.info_dict[key]
398
399 def __setitem__(self, key, value):
400 self.info_dict[key] = value
401
402 def get(self, key, default=None):
403 return self.info_dict.get(key, default)
404
405 def items(self):
406 return self.info_dict.items()
407
408 def GetBuildProp(self, prop):
409 """Returns the inquired build property."""
410 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
411 return self._ResolveRoProductBuildProp(prop)
412
413 try:
414 return self.info_dict.get("build.prop", {})[prop]
415 except KeyError:
416 raise ExternalError("couldn't find %s in build.prop" % (prop,))
417
418 def _ResolveRoProductBuildProp(self, prop):
419 """Resolves the inquired ro.product.* build property"""
420 prop_val = self.info_dict.get("build.prop", {}).get(prop)
421 if prop_val:
422 return prop_val
423
424 source_order_val = self.info_dict.get("build.prop", {}).get(
425 "ro.product.property_source_order")
426 if source_order_val:
427 source_order = source_order_val.split(",")
428 else:
429 source_order = BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
430
431 # Check that all sources in ro.product.property_source_order are valid
432 if any([x not in BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
433 for x in source_order]):
434 raise ExternalError(
435 "Invalid ro.product.property_source_order '{}'".format(source_order))
436
437 for source in source_order:
438 source_prop = prop.replace(
439 "ro.product", "ro.product.{}".format(source), 1)
440 prop_val = self.info_dict.get(
441 "{}.build.prop".format(source), {}).get(source_prop)
442 if prop_val:
443 return prop_val
444
445 raise ExternalError("couldn't resolve {}".format(prop))
446
447 def GetVendorBuildProp(self, prop):
448 """Returns the inquired vendor build property."""
449 try:
450 return self.info_dict.get("vendor.build.prop", {})[prop]
451 except KeyError:
452 raise ExternalError(
453 "couldn't find %s in vendor.build.prop" % (prop,))
454
455 def GetOemProperty(self, key):
456 if self.oem_props is not None and key in self.oem_props:
457 return self.oem_dicts[0][key]
458 return self.GetBuildProp(key)
459
460 def CalculateFingerprint(self):
461 if self.oem_props is None:
462 try:
463 return self.GetBuildProp("ro.build.fingerprint")
464 except ExternalError:
465 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
466 self.GetBuildProp("ro.product.brand"),
467 self.GetBuildProp("ro.product.name"),
468 self.GetBuildProp("ro.product.device"),
469 self.GetBuildProp("ro.build.version.release"),
470 self.GetBuildProp("ro.build.id"),
471 self.GetBuildProp("ro.build.version.incremental"),
472 self.GetBuildProp("ro.build.type"),
473 self.GetBuildProp("ro.build.tags"))
474 return "%s/%s/%s:%s" % (
475 self.GetOemProperty("ro.product.brand"),
476 self.GetOemProperty("ro.product.name"),
477 self.GetOemProperty("ro.product.device"),
478 self.GetBuildProp("ro.build.thumbprint"))
479
480 def WriteMountOemScript(self, script):
481 assert self.oem_props is not None
482 recovery_mount_options = self.info_dict.get("recovery_mount_options")
483 script.Mount("/oem", recovery_mount_options)
484
485 def WriteDeviceAssertions(self, script, oem_no_mount):
486 # Read the property directly if not using OEM properties.
487 if not self.oem_props:
488 script.AssertDevice(self.device)
489 return
490
491 # Otherwise assert OEM properties.
492 if not self.oem_dicts:
493 raise ExternalError(
494 "No OEM file provided to answer expected assertions")
495
496 for prop in self.oem_props.split():
497 values = []
498 for oem_dict in self.oem_dicts:
499 if prop in oem_dict:
500 values.append(oem_dict[prop])
501 if not values:
502 raise ExternalError(
503 "The OEM file is missing the property %s" % (prop,))
504 script.AssertOemProperty(prop, values, oem_no_mount)
505
506
Tao Bao410ad8b2018-08-24 12:08:38 -0700507def LoadInfoDict(input_file, repacking=False):
508 """Loads the key/value pairs from the given input target_files.
509
510 It reads `META/misc_info.txt` file in the target_files input, does sanity
511 checks and returns the parsed key/value pairs for to the given build. It's
512 usually called early when working on input target_files files, e.g. when
513 generating OTAs, or signing builds. Note that the function may be called
514 against an old target_files file (i.e. from past dessert releases). So the
515 property parsing needs to be backward compatible.
516
517 In a `META/misc_info.txt`, a few properties are stored as links to the files
518 in the PRODUCT_OUT directory. It works fine with the build system. However,
519 they are no longer available when (re)generating images from target_files zip.
520 When `repacking` is True, redirect these properties to the actual files in the
521 unzipped directory.
522
523 Args:
524 input_file: The input target_files file, which could be an open
525 zipfile.ZipFile instance, or a str for the dir that contains the files
526 unzipped from a target_files file.
527 repacking: Whether it's trying repack an target_files file after loading the
528 info dict (default: False). If so, it will rewrite a few loaded
529 properties (e.g. selinux_fc, root_dir) to point to the actual files in
530 target_files file. When doing repacking, `input_file` must be a dir.
531
532 Returns:
533 A dict that contains the parsed key/value pairs.
534
535 Raises:
536 AssertionError: On invalid input arguments.
537 ValueError: On malformed input values.
538 """
539 if repacking:
540 assert isinstance(input_file, str), \
541 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700542
Doug Zongkerc9253822014-02-04 12:17:58 -0800543 def read_helper(fn):
Dan Albert8b72aef2015-03-23 19:13:21 -0700544 if isinstance(input_file, zipfile.ZipFile):
Tao Baoda30cfa2017-12-01 16:19:46 -0800545 return input_file.read(fn).decode()
Doug Zongkerc9253822014-02-04 12:17:58 -0800546 else:
Dan Albert8b72aef2015-03-23 19:13:21 -0700547 path = os.path.join(input_file, *fn.split("/"))
Doug Zongkerc9253822014-02-04 12:17:58 -0800548 try:
549 with open(path) as f:
550 return f.read()
Dan Albert8b72aef2015-03-23 19:13:21 -0700551 except IOError as e:
Doug Zongkerc9253822014-02-04 12:17:58 -0800552 if e.errno == errno.ENOENT:
553 raise KeyError(fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800554
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700555 try:
Michael Runge6e836112014-04-15 17:40:21 -0700556 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700557 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700558 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700559
Tao Bao410ad8b2018-08-24 12:08:38 -0700560 if "recovery_api_version" not in d:
561 raise ValueError("Failed to find 'recovery_api_version'")
562 if "fstab_version" not in d:
563 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800564
Tao Bao410ad8b2018-08-24 12:08:38 -0700565 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700566 # "selinux_fc" properties should point to the file_contexts files
567 # (file_contexts.bin) under META/.
568 for key in d:
569 if key.endswith("selinux_fc"):
570 fc_basename = os.path.basename(d[key])
571 fc_config = os.path.join(input_file, "META", fc_basename)
572 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700573
Daniel Norman72c626f2019-05-13 15:58:14 -0700574 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700575
Tom Cherryd14b8952018-08-09 14:26:00 -0700576 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700577 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700578 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700579 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700580
Tao Baof54216f2016-03-29 15:12:37 -0700581 # Redirect {system,vendor}_base_fs_file.
582 if "system_base_fs_file" in d:
583 basename = os.path.basename(d["system_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700584 system_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700585 if os.path.exists(system_base_fs_file):
586 d["system_base_fs_file"] = system_base_fs_file
587 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700588 logger.warning(
589 "Failed to find system base fs file: %s", system_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700590 del d["system_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700591
592 if "vendor_base_fs_file" in d:
593 basename = os.path.basename(d["vendor_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700594 vendor_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700595 if os.path.exists(vendor_base_fs_file):
596 d["vendor_base_fs_file"] = vendor_base_fs_file
597 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700598 logger.warning(
599 "Failed to find vendor base fs file: %s", vendor_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700600 del d["vendor_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700601
Doug Zongker37974732010-09-16 17:44:38 -0700602 def makeint(key):
603 if key in d:
604 d[key] = int(d[key], 0)
605
606 makeint("recovery_api_version")
607 makeint("blocksize")
608 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700609 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700610 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700611 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700612 makeint("recovery_size")
613 makeint("boot_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800614 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700615
Tao Bao765668f2019-10-04 22:03:00 -0700616 # Load recovery fstab if applicable.
617 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
Tianjie Xucfa86222016-03-07 16:31:19 -0800618
Tianjie Xu861f4132018-09-12 11:49:33 -0700619 # Tries to load the build props for all partitions with care_map, including
620 # system and vendor.
621 for partition in PARTITIONS_WITH_CARE_MAP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800622 partition_prop = "{}.build.prop".format(partition)
623 d[partition_prop] = LoadBuildProp(
Tianjie Xu861f4132018-09-12 11:49:33 -0700624 read_helper, "{}/build.prop".format(partition.upper()))
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800625 # Some partition might use /<partition>/etc/build.prop as the new path.
626 # TODO: try new path first when majority of them switch to the new path.
627 if not d[partition_prop]:
628 d[partition_prop] = LoadBuildProp(
629 read_helper, "{}/etc/build.prop".format(partition.upper()))
Tianjie Xu861f4132018-09-12 11:49:33 -0700630 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800631
Tao Bao3ed35d32019-10-07 20:48:48 -0700632 # Set up the salt (based on fingerprint) that will be used when adding AVB
633 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800634 if d.get("avb_enable") == "true":
Tao Bao3ed35d32019-10-07 20:48:48 -0700635 build_info = BuildInfo(d)
636 d["avb_salt"] = sha256(build_info.fingerprint).hexdigest()
Tao Bao12d87fc2018-01-31 12:18:52 -0800637
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700638 return d
639
Tao Baod1de6f32017-03-01 16:38:48 -0800640
Tao Baobcd1d162017-08-26 13:10:26 -0700641def LoadBuildProp(read_helper, prop_file):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700642 try:
Tao Baobcd1d162017-08-26 13:10:26 -0700643 data = read_helper(prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700644 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700645 logger.warning("Failed to read %s", prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700646 data = ""
Michael Runge6e836112014-04-15 17:40:21 -0700647 return LoadDictionaryFromLines(data.split("\n"))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700648
Tao Baod1de6f32017-03-01 16:38:48 -0800649
Daniel Norman4cc9df62019-07-18 10:11:07 -0700650def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900651 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700652 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900653
Daniel Norman4cc9df62019-07-18 10:11:07 -0700654
655def LoadDictionaryFromFile(file_path):
656 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900657 return LoadDictionaryFromLines(lines)
658
659
Michael Runge6e836112014-04-15 17:40:21 -0700660def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700661 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700662 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700663 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700664 if not line or line.startswith("#"):
665 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700666 if "=" in line:
667 name, value = line.split("=", 1)
668 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700669 return d
670
Tao Baod1de6f32017-03-01 16:38:48 -0800671
Tianjie Xucfa86222016-03-07 16:31:19 -0800672def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
673 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700674 class Partition(object):
Tao Baod1de6f32017-03-01 16:38:48 -0800675 def __init__(self, mount_point, fs_type, device, length, context):
Dan Albert8b72aef2015-03-23 19:13:21 -0700676 self.mount_point = mount_point
677 self.fs_type = fs_type
678 self.device = device
679 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700680 self.context = context
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700681
682 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800683 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700684 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700685 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -0700686 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700687
Tao Baod1de6f32017-03-01 16:38:48 -0800688 assert fstab_version == 2
689
690 d = {}
691 for line in data.split("\n"):
692 line = line.strip()
693 if not line or line.startswith("#"):
694 continue
695
696 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
697 pieces = line.split()
698 if len(pieces) != 5:
699 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
700
701 # Ignore entries that are managed by vold.
702 options = pieces[4]
703 if "voldmanaged=" in options:
704 continue
705
706 # It's a good line, parse it.
707 length = 0
708 options = options.split(",")
709 for i in options:
710 if i.startswith("length="):
711 length = int(i[7:])
Doug Zongker086cbb02011-02-17 15:54:20 -0800712 else:
Tao Baod1de6f32017-03-01 16:38:48 -0800713 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -0700714 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800715
Tao Baod1de6f32017-03-01 16:38:48 -0800716 mount_flags = pieces[3]
717 # Honor the SELinux context if present.
718 context = None
719 for i in mount_flags.split(","):
720 if i.startswith("context="):
721 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -0800722
Tao Baod1de6f32017-03-01 16:38:48 -0800723 mount_point = pieces[1]
724 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
725 device=pieces[0], length=length, context=context)
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800726
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700727 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700728 # system. Other areas assume system is always at "/system" so point /system
729 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700730 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -0800731 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700732 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700733 return d
734
735
Tao Bao765668f2019-10-04 22:03:00 -0700736def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
737 """Finds the path to recovery fstab and loads its contents."""
738 # recovery fstab is only meaningful when installing an update via recovery
739 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
740 if info_dict.get('ab_update') == 'true':
741 return None
742
743 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
744 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
745 # cases, since it may load the info_dict from an old build (e.g. when
746 # generating incremental OTAs from that build).
747 system_root_image = info_dict.get('system_root_image') == 'true'
748 if info_dict.get('no_recovery') != 'true':
749 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
750 if isinstance(input_file, zipfile.ZipFile):
751 if recovery_fstab_path not in input_file.namelist():
752 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
753 else:
754 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
755 if not os.path.exists(path):
756 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
757 return LoadRecoveryFSTab(
758 read_helper, info_dict['fstab_version'], recovery_fstab_path,
759 system_root_image)
760
761 if info_dict.get('recovery_as_boot') == 'true':
762 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
763 if isinstance(input_file, zipfile.ZipFile):
764 if recovery_fstab_path not in input_file.namelist():
765 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
766 else:
767 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
768 if not os.path.exists(path):
769 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
770 return LoadRecoveryFSTab(
771 read_helper, info_dict['fstab_version'], recovery_fstab_path,
772 system_root_image)
773
774 return None
775
776
Doug Zongker37974732010-09-16 17:44:38 -0700777def DumpInfoDict(d):
778 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -0700779 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700780
Dan Albert8b72aef2015-03-23 19:13:21 -0700781
Daniel Norman55417142019-11-25 16:04:36 -0800782def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700783 """Merges dynamic partition info variables.
784
785 Args:
786 framework_dict: The dictionary of dynamic partition info variables from the
787 partial framework target files.
788 vendor_dict: The dictionary of dynamic partition info variables from the
789 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700790
791 Returns:
792 The merged dynamic partition info dictionary.
793 """
794 merged_dict = {}
795 # Partition groups and group sizes are defined by the vendor dict because
796 # these values may vary for each board that uses a shared system image.
797 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Norman55417142019-11-25 16:04:36 -0800798 framework_dynamic_partition_list = framework_dict.get(
799 "dynamic_partition_list", "")
800 vendor_dynamic_partition_list = vendor_dict.get("dynamic_partition_list", "")
801 merged_dict["dynamic_partition_list"] = ("%s %s" % (
802 framework_dynamic_partition_list, vendor_dynamic_partition_list)).strip()
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700803 for partition_group in merged_dict["super_partition_groups"].split(" "):
804 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -0800805 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700806 if key not in vendor_dict:
807 raise ValueError("Vendor dict does not contain required key %s." % key)
808 merged_dict[key] = vendor_dict[key]
809
810 # Set the partition group's partition list using a concatenation of the
811 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -0800812 key = "super_%s_partition_list" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700813 merged_dict[key] = (
814 "%s %s" %
815 (framework_dict.get(key, ""), vendor_dict.get(key, ""))).strip()
816 return merged_dict
817
818
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800819def AppendAVBSigningArgs(cmd, partition):
820 """Append signing arguments for avbtool."""
821 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
822 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -0700823 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
824 new_key_path = os.path.join(OPTIONS.search_path, key_path)
825 if os.path.exists(new_key_path):
826 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800827 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
828 if key_path and algorithm:
829 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -0700830 avb_salt = OPTIONS.info_dict.get("avb_salt")
831 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -0700832 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -0700833 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800834
835
Tao Bao765668f2019-10-04 22:03:00 -0700836def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -0700837 """Returns the VBMeta arguments for partition.
838
839 It sets up the VBMeta argument by including the partition descriptor from the
840 given 'image', or by configuring the partition as a chained partition.
841
842 Args:
843 partition: The name of the partition (e.g. "system").
844 image: The path to the partition image.
845 info_dict: A dict returned by common.LoadInfoDict(). Will use
846 OPTIONS.info_dict if None has been given.
847
848 Returns:
849 A list of VBMeta arguments.
850 """
851 if info_dict is None:
852 info_dict = OPTIONS.info_dict
853
854 # Check if chain partition is used.
855 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +0800856 if not key_path:
857 return ["--include_descriptors_from_image", image]
858
859 # For a non-A/B device, we don't chain /recovery nor include its descriptor
860 # into vbmeta.img. The recovery image will be configured on an independent
861 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
862 # See details at
863 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -0700864 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +0800865 return []
866
867 # Otherwise chain the partition into vbmeta.
868 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
869 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -0700870
871
Tao Bao02a08592018-07-22 12:40:45 -0700872def GetAvbChainedPartitionArg(partition, info_dict, key=None):
873 """Constructs and returns the arg to build or verify a chained partition.
874
875 Args:
876 partition: The partition name.
877 info_dict: The info dict to look up the key info and rollback index
878 location.
879 key: The key to be used for building or verifying the partition. Defaults to
880 the key listed in info_dict.
881
882 Returns:
883 A string of form "partition:rollback_index_location:key" that can be used to
884 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -0700885 """
886 if key is None:
887 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -0700888 if key and not os.path.exists(key) and OPTIONS.search_path:
889 new_key_path = os.path.join(OPTIONS.search_path, key)
890 if os.path.exists(new_key_path):
891 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -0700892 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -0700893 rollback_index_location = info_dict[
894 "avb_" + partition + "_rollback_index_location"]
895 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
896
897
Daniel Norman276f0622019-07-26 14:13:51 -0700898def BuildVBMeta(image_path, partitions, name, needed_partitions):
899 """Creates a VBMeta image.
900
901 It generates the requested VBMeta image. The requested image could be for
902 top-level or chained VBMeta image, which is determined based on the name.
903
904 Args:
905 image_path: The output path for the new VBMeta image.
906 partitions: A dict that's keyed by partition names with image paths as
907 values. Only valid partition names are accepted, as listed in
908 common.AVB_PARTITIONS.
909 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
910 needed_partitions: Partitions whose descriptors should be included into the
911 generated VBMeta image.
912
913 Raises:
914 AssertionError: On invalid input args.
915 """
916 avbtool = OPTIONS.info_dict["avb_avbtool"]
917 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
918 AppendAVBSigningArgs(cmd, name)
919
920 for partition, path in partitions.items():
921 if partition not in needed_partitions:
922 continue
923 assert (partition in AVB_PARTITIONS or
924 partition in AVB_VBMETA_PARTITIONS), \
925 'Unknown partition: {}'.format(partition)
926 assert os.path.exists(path), \
927 'Failed to find {} for {}'.format(path, partition)
928 cmd.extend(GetAvbPartitionArg(partition, path))
929
930 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
931 if args and args.strip():
932 split_args = shlex.split(args)
933 for index, arg in enumerate(split_args[:-1]):
934 # Sanity check that the image file exists. Some images might be defined
935 # as a path relative to source tree, which may not be available at the
936 # same location when running this script (we have the input target_files
937 # zip only). For such cases, we additionally scan other locations (e.g.
938 # IMAGES/, RADIO/, etc) before bailing out.
939 if arg == '--include_descriptors_from_image':
940 image_path = split_args[index + 1]
941 if os.path.exists(image_path):
942 continue
943 found = False
944 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
945 alt_path = os.path.join(
946 OPTIONS.input_tmp, dir_name, os.path.basename(image_path))
947 if os.path.exists(alt_path):
948 split_args[index + 1] = alt_path
949 found = True
950 break
951 assert found, 'Failed to find {}'.format(image_path)
952 cmd.extend(split_args)
953
954 RunAndCheckOutput(cmd)
955
956
Steve Mucklee1b10862019-07-10 10:49:37 -0700957def _MakeRamdisk(sourcedir, fs_config_file=None):
958 ramdisk_img = tempfile.NamedTemporaryFile()
959
960 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
961 cmd = ["mkbootfs", "-f", fs_config_file,
962 os.path.join(sourcedir, "RAMDISK")]
963 else:
964 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
965 p1 = Run(cmd, stdout=subprocess.PIPE)
966 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
967
968 p2.wait()
969 p1.wait()
970 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
971 assert p2.returncode == 0, "minigzip of %s ramdisk failed" % (sourcedir,)
972
973 return ramdisk_img
974
975
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700976def _BuildBootableImage(sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -0800977 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700978 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -0700979
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700980 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -0800981 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
982 we are building a two-step special image (i.e. building a recovery image to
983 be loaded into /boot in two-step OTAs).
984
985 Return the image data, or None if sourcedir does not appear to contains files
986 for building the requested image.
987 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700988
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700989 if not os.access(os.path.join(sourcedir, "kernel"), os.F_OK):
990 return None
991
992 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -0700993 return None
Doug Zongkereef39442009-04-02 12:14:19 -0700994
Doug Zongkerd5131602012-08-02 14:46:42 -0700995 if info_dict is None:
996 info_dict = OPTIONS.info_dict
997
Doug Zongkereef39442009-04-02 12:14:19 -0700998 img = tempfile.NamedTemporaryFile()
999
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001000 if has_ramdisk:
Steve Mucklee1b10862019-07-10 10:49:37 -07001001 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file)
Doug Zongkereef39442009-04-02 12:14:19 -07001002
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001003 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1004 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1005
1006 cmd = [mkbootimg, "--kernel", os.path.join(sourcedir, "kernel")]
Doug Zongker38a649f2009-06-17 09:07:09 -07001007
Benoit Fradina45a8682014-07-14 21:00:43 +02001008 fn = os.path.join(sourcedir, "second")
1009 if os.access(fn, os.F_OK):
1010 cmd.append("--second")
1011 cmd.append(fn)
1012
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001013 fn = os.path.join(sourcedir, "dtb")
1014 if os.access(fn, os.F_OK):
1015 cmd.append("--dtb")
1016 cmd.append(fn)
1017
Doug Zongker171f1cd2009-06-15 22:36:37 -07001018 fn = os.path.join(sourcedir, "cmdline")
1019 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001020 cmd.append("--cmdline")
1021 cmd.append(open(fn).read().rstrip("\n"))
1022
1023 fn = os.path.join(sourcedir, "base")
1024 if os.access(fn, os.F_OK):
1025 cmd.append("--base")
1026 cmd.append(open(fn).read().rstrip("\n"))
1027
Ying Wang4de6b5b2010-08-25 14:29:34 -07001028 fn = os.path.join(sourcedir, "pagesize")
1029 if os.access(fn, os.F_OK):
1030 cmd.append("--pagesize")
1031 cmd.append(open(fn).read().rstrip("\n"))
1032
Tao Bao76def242017-11-21 09:25:31 -08001033 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001034 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001035 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001036
Tao Bao76def242017-11-21 09:25:31 -08001037 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +00001038 if args and args.strip():
1039 cmd.extend(shlex.split(args))
1040
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001041 if has_ramdisk:
1042 cmd.extend(["--ramdisk", ramdisk_img.name])
1043
Tao Baod95e9fd2015-03-29 23:07:41 -07001044 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001045 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001046 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001047 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001048 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001049 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001050
Tao Baobf70c312017-07-11 17:27:55 -07001051 # "boot" or "recovery", without extension.
1052 partition_name = os.path.basename(sourcedir).lower()
1053
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001054 if partition_name == "recovery":
1055 if info_dict.get("include_recovery_dtbo") == "true":
1056 fn = os.path.join(sourcedir, "recovery_dtbo")
1057 cmd.extend(["--recovery_dtbo", fn])
1058 if info_dict.get("include_recovery_acpio") == "true":
1059 fn = os.path.join(sourcedir, "recovery_acpio")
1060 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001061
Tao Bao986ee862018-10-04 15:46:16 -07001062 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001063
Tao Bao76def242017-11-21 09:25:31 -08001064 if (info_dict.get("boot_signer") == "true" and
1065 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001066 # Hard-code the path as "/boot" for two-step special recovery image (which
1067 # will be loaded into /boot during the two-step OTA).
1068 if two_step_image:
1069 path = "/boot"
1070 else:
Tao Baobf70c312017-07-11 17:27:55 -07001071 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001072 cmd = [OPTIONS.boot_signer_path]
1073 cmd.extend(OPTIONS.boot_signer_args)
1074 cmd.extend([path, img.name,
1075 info_dict["verity_key"] + ".pk8",
1076 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001077 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001078
Tao Baod95e9fd2015-03-29 23:07:41 -07001079 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001080 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001081 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001082 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001083 # We have switched from the prebuilt futility binary to using the tool
1084 # (futility-host) built from the source. Override the setting in the old
1085 # TF.zip.
1086 futility = info_dict["futility"]
1087 if futility.startswith("prebuilts/"):
1088 futility = "futility-host"
1089 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001090 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001091 info_dict["vboot_key"] + ".vbprivk",
1092 info_dict["vboot_subkey"] + ".vbprivk",
1093 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001094 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001095 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001096
Tao Baof3282b42015-04-01 11:21:55 -07001097 # Clean up the temp files.
1098 img_unsigned.close()
1099 img_keyblock.close()
1100
David Zeuthen8fecb282017-12-01 16:24:01 -05001101 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001102 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001103 avbtool = info_dict["avb_avbtool"]
David Zeuthen8fecb282017-12-01 16:24:01 -05001104 part_size = info_dict[partition_name + "_size"]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001105 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001106 "--partition_size", str(part_size), "--partition_name",
1107 partition_name]
1108 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001109 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001110 if args and args.strip():
1111 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001112 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001113
1114 img.seek(os.SEEK_SET, 0)
1115 data = img.read()
1116
1117 if has_ramdisk:
1118 ramdisk_img.close()
1119 img.close()
1120
1121 return data
1122
1123
Doug Zongkerd5131602012-08-02 14:46:42 -07001124def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001125 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001126 """Return a File object with the desired bootable image.
1127
1128 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1129 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1130 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001131
Doug Zongker55d93282011-01-25 17:03:34 -08001132 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1133 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001134 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001135 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001136
1137 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1138 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001139 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001140 return File.FromLocalFile(name, prebuilt_path)
1141
Tao Bao32fcdab2018-10-12 10:30:39 -07001142 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001143
1144 if info_dict is None:
1145 info_dict = OPTIONS.info_dict
1146
1147 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -08001148 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
1149 # for recovery.
1150 has_ramdisk = (info_dict.get("system_root_image") != "true" or
1151 prebuilt_name != "boot.img" or
1152 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001153
Doug Zongker6f1d0312014-08-22 08:07:12 -07001154 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001155 data = _BuildBootableImage(os.path.join(unpack_dir, tree_subdir),
1156 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001157 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001158 if data:
1159 return File(name, data)
1160 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001161
Doug Zongkereef39442009-04-02 12:14:19 -07001162
Steve Mucklee1b10862019-07-10 10:49:37 -07001163def _BuildVendorBootImage(sourcedir, info_dict=None):
1164 """Build a vendor boot image from the specified sourcedir.
1165
1166 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1167 turn them into a vendor boot image.
1168
1169 Return the image data, or None if sourcedir does not appear to contains files
1170 for building the requested image.
1171 """
1172
1173 if info_dict is None:
1174 info_dict = OPTIONS.info_dict
1175
1176 img = tempfile.NamedTemporaryFile()
1177
1178 ramdisk_img = _MakeRamdisk(sourcedir)
1179
1180 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1181 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1182
1183 cmd = [mkbootimg]
1184
1185 fn = os.path.join(sourcedir, "dtb")
1186 if os.access(fn, os.F_OK):
1187 cmd.append("--dtb")
1188 cmd.append(fn)
1189
1190 fn = os.path.join(sourcedir, "vendor_cmdline")
1191 if os.access(fn, os.F_OK):
1192 cmd.append("--vendor_cmdline")
1193 cmd.append(open(fn).read().rstrip("\n"))
1194
1195 fn = os.path.join(sourcedir, "base")
1196 if os.access(fn, os.F_OK):
1197 cmd.append("--base")
1198 cmd.append(open(fn).read().rstrip("\n"))
1199
1200 fn = os.path.join(sourcedir, "pagesize")
1201 if os.access(fn, os.F_OK):
1202 cmd.append("--pagesize")
1203 cmd.append(open(fn).read().rstrip("\n"))
1204
1205 args = info_dict.get("mkbootimg_args")
1206 if args and args.strip():
1207 cmd.extend(shlex.split(args))
1208
1209 args = info_dict.get("mkbootimg_version_args")
1210 if args and args.strip():
1211 cmd.extend(shlex.split(args))
1212
1213 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1214 cmd.extend(["--vendor_boot", img.name])
1215
1216 RunAndCheckOutput(cmd)
1217
1218 # AVB: if enabled, calculate and add hash.
1219 if info_dict.get("avb_enable") == "true":
1220 avbtool = info_dict["avb_avbtool"]
1221 part_size = info_dict["vendor_boot_size"]
1222 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001223 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001224 AppendAVBSigningArgs(cmd, "vendor_boot")
1225 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1226 if args and args.strip():
1227 cmd.extend(shlex.split(args))
1228 RunAndCheckOutput(cmd)
1229
1230 img.seek(os.SEEK_SET, 0)
1231 data = img.read()
1232
1233 ramdisk_img.close()
1234 img.close()
1235
1236 return data
1237
1238
1239def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1240 info_dict=None):
1241 """Return a File object with the desired vendor boot image.
1242
1243 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1244 the source files in 'unpack_dir'/'tree_subdir'."""
1245
1246 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1247 if os.path.exists(prebuilt_path):
1248 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1249 return File.FromLocalFile(name, prebuilt_path)
1250
1251 logger.info("building image from target_files %s...", tree_subdir)
1252
1253 if info_dict is None:
1254 info_dict = OPTIONS.info_dict
1255
1256 data = _BuildVendorBootImage(os.path.join(unpack_dir, tree_subdir), info_dict)
1257 if data:
1258 return File(name, data)
1259 return None
1260
1261
Narayan Kamatha07bf042017-08-14 14:49:21 +01001262def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001263 """Gunzips the given gzip compressed file to a given output file."""
1264 with gzip.open(in_filename, "rb") as in_file, \
1265 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001266 shutil.copyfileobj(in_file, out_file)
1267
1268
Tao Bao0ff15de2019-03-20 11:26:06 -07001269def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001270 """Unzips the archive to the given directory.
1271
1272 Args:
1273 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001274 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001275 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1276 archvie. Non-matching patterns will be filtered out. If there's no match
1277 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001278 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001279 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001280 if patterns is not None:
1281 # Filter out non-matching patterns. unzip will complain otherwise.
1282 with zipfile.ZipFile(filename) as input_zip:
1283 names = input_zip.namelist()
1284 filtered = [
1285 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1286
1287 # There isn't any matching files. Don't unzip anything.
1288 if not filtered:
1289 return
1290 cmd.extend(filtered)
1291
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001292 RunAndCheckOutput(cmd)
1293
1294
Doug Zongker75f17362009-12-08 13:46:44 -08001295def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001296 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001297
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001298 Args:
1299 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1300 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1301
1302 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1303 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001304
Tao Bao1c830bf2017-12-25 10:43:47 -08001305 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001306 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001307 """
Doug Zongkereef39442009-04-02 12:14:19 -07001308
Tao Bao1c830bf2017-12-25 10:43:47 -08001309 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001310 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1311 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001312 UnzipToDir(m.group(1), tmp, pattern)
1313 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001314 filename = m.group(1)
1315 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001316 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001317
Tao Baodba59ee2018-01-09 13:21:02 -08001318 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001319
1320
Yifan Hong8a66a712019-04-04 15:37:57 -07001321def GetUserImage(which, tmpdir, input_zip,
1322 info_dict=None,
1323 allow_shared_blocks=None,
1324 hashtree_info_generator=None,
1325 reset_file_map=False):
1326 """Returns an Image object suitable for passing to BlockImageDiff.
1327
1328 This function loads the specified image from the given path. If the specified
1329 image is sparse, it also performs additional processing for OTA purpose. For
1330 example, it always adds block 0 to clobbered blocks list. It also detects
1331 files that cannot be reconstructed from the block list, for whom we should
1332 avoid applying imgdiff.
1333
1334 Args:
1335 which: The partition name.
1336 tmpdir: The directory that contains the prebuilt image and block map file.
1337 input_zip: The target-files ZIP archive.
1338 info_dict: The dict to be looked up for relevant info.
1339 allow_shared_blocks: If image is sparse, whether having shared blocks is
1340 allowed. If none, it is looked up from info_dict.
1341 hashtree_info_generator: If present and image is sparse, generates the
1342 hashtree_info for this sparse image.
1343 reset_file_map: If true and image is sparse, reset file map before returning
1344 the image.
1345 Returns:
1346 A Image object. If it is a sparse image and reset_file_map is False, the
1347 image will have file_map info loaded.
1348 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001349 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07001350 info_dict = LoadInfoDict(input_zip)
1351
1352 is_sparse = info_dict.get("extfs_sparse_flag")
1353
1354 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
1355 # shared blocks (i.e. some blocks will show up in multiple files' block
1356 # list). We can only allocate such shared blocks to the first "owner", and
1357 # disable imgdiff for all later occurrences.
1358 if allow_shared_blocks is None:
1359 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
1360
1361 if is_sparse:
1362 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1363 hashtree_info_generator)
1364 if reset_file_map:
1365 img.ResetFileMap()
1366 return img
1367 else:
1368 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
1369
1370
1371def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
1372 """Returns a Image object suitable for passing to BlockImageDiff.
1373
1374 This function loads the specified non-sparse image from the given path.
1375
1376 Args:
1377 which: The partition name.
1378 tmpdir: The directory that contains the prebuilt image and block map file.
1379 Returns:
1380 A Image object.
1381 """
1382 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1383 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1384
1385 # The image and map files must have been created prior to calling
1386 # ota_from_target_files.py (since LMP).
1387 assert os.path.exists(path) and os.path.exists(mappath)
1388
Tianjie Xu41976c72019-07-03 13:57:01 -07001389 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
1390
Yifan Hong8a66a712019-04-04 15:37:57 -07001391
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001392def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1393 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08001394 """Returns a SparseImage object suitable for passing to BlockImageDiff.
1395
1396 This function loads the specified sparse image from the given path, and
1397 performs additional processing for OTA purpose. For example, it always adds
1398 block 0 to clobbered blocks list. It also detects files that cannot be
1399 reconstructed from the block list, for whom we should avoid applying imgdiff.
1400
1401 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07001402 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08001403 tmpdir: The directory that contains the prebuilt image and block map file.
1404 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08001405 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001406 hashtree_info_generator: If present, generates the hashtree_info for this
1407 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08001408 Returns:
1409 A SparseImage object, with file_map info loaded.
1410 """
Tao Baoc765cca2018-01-31 17:32:40 -08001411 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1412 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1413
1414 # The image and map files must have been created prior to calling
1415 # ota_from_target_files.py (since LMP).
1416 assert os.path.exists(path) and os.path.exists(mappath)
1417
1418 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
1419 # it to clobbered_blocks so that it will be written to the target
1420 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
1421 clobbered_blocks = "0"
1422
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001423 image = sparse_img.SparseImage(
1424 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
1425 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08001426
1427 # block.map may contain less blocks, because mke2fs may skip allocating blocks
1428 # if they contain all zeros. We can't reconstruct such a file from its block
1429 # list. Tag such entries accordingly. (Bug: 65213616)
1430 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08001431 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07001432 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08001433 continue
1434
Tom Cherryd14b8952018-08-09 14:26:00 -07001435 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
1436 # filename listed in system.map may contain an additional leading slash
1437 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
1438 # results.
Tao Baoda30cfa2017-12-01 16:19:46 -08001439 arcname = entry.replace(which, which.upper(), 1).lstrip('/')
Tao Baod3554e62018-07-10 15:31:22 -07001440
Tom Cherryd14b8952018-08-09 14:26:00 -07001441 # Special handling another case, where files not under /system
1442 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
Tao Baod3554e62018-07-10 15:31:22 -07001443 if which == 'system' and not arcname.startswith('SYSTEM'):
1444 arcname = 'ROOT/' + arcname
1445
1446 assert arcname in input_zip.namelist(), \
1447 "Failed to find the ZIP entry for {}".format(entry)
1448
Tao Baoc765cca2018-01-31 17:32:40 -08001449 info = input_zip.getinfo(arcname)
1450 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08001451
1452 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08001453 # image, check the original block list to determine its completeness. Note
1454 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08001455 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08001456 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08001457
Tao Baoc765cca2018-01-31 17:32:40 -08001458 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
1459 ranges.extra['incomplete'] = True
1460
1461 return image
1462
1463
Doug Zongkereef39442009-04-02 12:14:19 -07001464def GetKeyPasswords(keylist):
1465 """Given a list of keys, prompt the user to enter passwords for
1466 those which require them. Return a {key: password} dict. password
1467 will be None if the key has no password."""
1468
Doug Zongker8ce7c252009-05-22 13:34:54 -07001469 no_passwords = []
1470 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07001471 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07001472 devnull = open("/dev/null", "w+b")
1473 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001474 # We don't need a password for things that aren't really keys.
1475 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001476 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07001477 continue
1478
T.R. Fullhart37e10522013-03-18 10:31:26 -07001479 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07001480 "-inform", "DER", "-nocrypt"],
1481 stdin=devnull.fileno(),
1482 stdout=devnull.fileno(),
1483 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07001484 p.communicate()
1485 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001486 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07001487 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001488 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001489 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
1490 "-inform", "DER", "-passin", "pass:"],
1491 stdin=devnull.fileno(),
1492 stdout=devnull.fileno(),
1493 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07001494 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07001495 if p.returncode == 0:
1496 # Encrypted key with empty string as password.
1497 key_passwords[k] = ''
1498 elif stderr.startswith('Error decrypting key'):
1499 # Definitely encrypted key.
1500 # It would have said "Error reading key" if it didn't parse correctly.
1501 need_passwords.append(k)
1502 else:
1503 # Potentially, a type of key that openssl doesn't understand.
1504 # We'll let the routines in signapk.jar handle it.
1505 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001506 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07001507
T.R. Fullhart37e10522013-03-18 10:31:26 -07001508 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08001509 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07001510 return key_passwords
1511
1512
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001513def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07001514 """Gets the minSdkVersion declared in the APK.
1515
changho.shin0f125362019-07-08 10:59:00 +09001516 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07001517 This can be both a decimal number (API Level) or a codename.
1518
1519 Args:
1520 apk_name: The APK filename.
1521
1522 Returns:
1523 The parsed SDK version string.
1524
1525 Raises:
1526 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001527 """
Tao Baof47bf0f2018-03-21 23:28:51 -07001528 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09001529 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07001530 stderr=subprocess.PIPE)
1531 stdoutdata, stderrdata = proc.communicate()
1532 if proc.returncode != 0:
1533 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09001534 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07001535 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001536
Tao Baof47bf0f2018-03-21 23:28:51 -07001537 for line in stdoutdata.split("\n"):
1538 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001539 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
1540 if m:
1541 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09001542 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001543
1544
1545def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07001546 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001547
Tao Baof47bf0f2018-03-21 23:28:51 -07001548 If minSdkVersion is set to a codename, it is translated to a number using the
1549 provided map.
1550
1551 Args:
1552 apk_name: The APK filename.
1553
1554 Returns:
1555 The parsed SDK version number.
1556
1557 Raises:
1558 ExternalError: On failing to get the min SDK version number.
1559 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001560 version = GetMinSdkVersion(apk_name)
1561 try:
1562 return int(version)
1563 except ValueError:
1564 # Not a decimal number. Codename?
1565 if version in codename_to_api_level_map:
1566 return codename_to_api_level_map[version]
1567 else:
Tao Baof47bf0f2018-03-21 23:28:51 -07001568 raise ExternalError(
1569 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
1570 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001571
1572
1573def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07001574 codename_to_api_level_map=None, whole_file=False,
1575 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07001576 """Sign the input_name zip/jar/apk, producing output_name. Use the
1577 given key and password (the latter may be None if the key does not
1578 have a password.
1579
Doug Zongker951495f2009-08-14 12:44:19 -07001580 If whole_file is true, use the "-w" option to SignApk to embed a
1581 signature that covers the whole file in the archive comment of the
1582 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001583
1584 min_api_level is the API Level (int) of the oldest platform this file may end
1585 up on. If not specified for an APK, the API Level is obtained by interpreting
1586 the minSdkVersion attribute of the APK's AndroidManifest.xml.
1587
1588 codename_to_api_level_map is needed to translate the codename which may be
1589 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07001590
1591 Caller may optionally specify extra args to be passed to SignApk, which
1592 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07001593 """
Tao Bao76def242017-11-21 09:25:31 -08001594 if codename_to_api_level_map is None:
1595 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07001596 if extra_signapk_args is None:
1597 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07001598
Alex Klyubin9667b182015-12-10 13:38:50 -08001599 java_library_path = os.path.join(
1600 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
1601
Tao Baoe95540e2016-11-08 12:08:53 -08001602 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
1603 ["-Djava.library.path=" + java_library_path,
1604 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07001605 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07001606 if whole_file:
1607 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001608
1609 min_sdk_version = min_api_level
1610 if min_sdk_version is None:
1611 if not whole_file:
1612 min_sdk_version = GetMinSdkVersionInt(
1613 input_name, codename_to_api_level_map)
1614 if min_sdk_version is not None:
1615 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
1616
T.R. Fullhart37e10522013-03-18 10:31:26 -07001617 cmd.extend([key + OPTIONS.public_key_suffix,
1618 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08001619 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07001620
Tao Bao73dd4f42018-10-04 16:25:33 -07001621 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07001622 if password is not None:
1623 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07001624 stdoutdata, _ = proc.communicate(password)
1625 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07001626 raise ExternalError(
1627 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07001628 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07001629
Doug Zongkereef39442009-04-02 12:14:19 -07001630
Doug Zongker37974732010-09-16 17:44:38 -07001631def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08001632 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07001633
Tao Bao9dd909e2017-11-14 11:27:32 -08001634 For non-AVB images, raise exception if the data is too big. Print a warning
1635 if the data is nearing the maximum size.
1636
1637 For AVB images, the actual image size should be identical to the limit.
1638
1639 Args:
1640 data: A string that contains all the data for the partition.
1641 target: The partition name. The ".img" suffix is optional.
1642 info_dict: The dict to be looked up for relevant info.
1643 """
Dan Albert8b72aef2015-03-23 19:13:21 -07001644 if target.endswith(".img"):
1645 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001646 mount_point = "/" + target
1647
Ying Wangf8824af2014-06-03 14:07:27 -07001648 fs_type = None
1649 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001650 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07001651 if mount_point == "/userdata":
1652 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001653 p = info_dict["fstab"][mount_point]
1654 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08001655 device = p.device
1656 if "/" in device:
1657 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08001658 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07001659 if not fs_type or not limit:
1660 return
Doug Zongkereef39442009-04-02 12:14:19 -07001661
Andrew Boie0f9aec82012-02-14 09:32:52 -08001662 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08001663 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
1664 # path.
1665 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
1666 if size != limit:
1667 raise ExternalError(
1668 "Mismatching image size for %s: expected %d actual %d" % (
1669 target, limit, size))
1670 else:
1671 pct = float(size) * 100.0 / limit
1672 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
1673 if pct >= 99.0:
1674 raise ExternalError(msg)
1675 elif pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07001676 logger.warning("\n WARNING: %s\n", msg)
1677 else:
1678 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07001679
1680
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001681def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08001682 """Parses the APK certs info from a given target-files zip.
1683
1684 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
1685 tuple with the following elements: (1) a dictionary that maps packages to
1686 certs (based on the "certificate" and "private_key" attributes in the file;
1687 (2) a string representing the extension of compressed APKs in the target files
1688 (e.g ".gz", ".bro").
1689
1690 Args:
1691 tf_zip: The input target_files ZipFile (already open).
1692
1693 Returns:
1694 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
1695 the extension string of compressed APKs (e.g. ".gz"), or None if there's
1696 no compressed APKs.
1697 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001698 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01001699 compressed_extension = None
1700
Tao Bao0f990332017-09-08 19:02:54 -07001701 # META/apkcerts.txt contains the info for _all_ the packages known at build
1702 # time. Filter out the ones that are not installed.
1703 installed_files = set()
1704 for name in tf_zip.namelist():
1705 basename = os.path.basename(name)
1706 if basename:
1707 installed_files.add(basename)
1708
Tao Baoda30cfa2017-12-01 16:19:46 -08001709 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001710 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001711 if not line:
1712 continue
Tao Bao818ddf52018-01-05 11:17:34 -08001713 m = re.match(
1714 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
1715 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*)")?$',
1716 line)
1717 if not m:
1718 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01001719
Tao Bao818ddf52018-01-05 11:17:34 -08001720 matches = m.groupdict()
1721 cert = matches["CERT"]
1722 privkey = matches["PRIVKEY"]
1723 name = matches["NAME"]
1724 this_compressed_extension = matches["COMPRESSED"]
1725
1726 public_key_suffix_len = len(OPTIONS.public_key_suffix)
1727 private_key_suffix_len = len(OPTIONS.private_key_suffix)
1728 if cert in SPECIAL_CERT_STRINGS and not privkey:
1729 certmap[name] = cert
1730 elif (cert.endswith(OPTIONS.public_key_suffix) and
1731 privkey.endswith(OPTIONS.private_key_suffix) and
1732 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
1733 certmap[name] = cert[:-public_key_suffix_len]
1734 else:
1735 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
1736
1737 if not this_compressed_extension:
1738 continue
1739
1740 # Only count the installed files.
1741 filename = name + '.' + this_compressed_extension
1742 if filename not in installed_files:
1743 continue
1744
1745 # Make sure that all the values in the compression map have the same
1746 # extension. We don't support multiple compression methods in the same
1747 # system image.
1748 if compressed_extension:
1749 if this_compressed_extension != compressed_extension:
1750 raise ValueError(
1751 "Multiple compressed extensions: {} vs {}".format(
1752 compressed_extension, this_compressed_extension))
1753 else:
1754 compressed_extension = this_compressed_extension
1755
1756 return (certmap,
1757 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001758
1759
Doug Zongkereef39442009-04-02 12:14:19 -07001760COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07001761Global options
1762
1763 -p (--path) <dir>
1764 Prepend <dir>/bin to the list of places to search for binaries run by this
1765 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07001766
Doug Zongker05d3dea2009-06-22 11:32:31 -07001767 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07001768 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07001769
Tao Bao30df8b42018-04-23 15:32:53 -07001770 -x (--extra) <key=value>
1771 Add a key/value pair to the 'extras' dict, which device-specific extension
1772 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08001773
Doug Zongkereef39442009-04-02 12:14:19 -07001774 -v (--verbose)
1775 Show command lines being executed.
1776
1777 -h (--help)
1778 Display this usage message and exit.
1779"""
1780
1781def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08001782 print(docstring.rstrip("\n"))
1783 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07001784
1785
1786def ParseOptions(argv,
1787 docstring,
1788 extra_opts="", extra_long_opts=(),
1789 extra_option_handler=None):
1790 """Parse the options in argv and return any arguments that aren't
1791 flags. docstring is the calling module's docstring, to be displayed
1792 for errors and -h. extra_opts and extra_long_opts are for flags
1793 defined by the caller, which are processed by passing them to
1794 extra_option_handler."""
1795
1796 try:
1797 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08001798 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08001799 ["help", "verbose", "path=", "signapk_path=",
1800 "signapk_shared_library_path=", "extra_signapk_args=",
Baligh Uddinbdc2e312014-09-05 17:36:20 -07001801 "java_path=", "java_args=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07001802 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
1803 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Baligh Uddine2048682014-11-20 09:52:05 -08001804 "extra="] +
T.R. Fullhart37e10522013-03-18 10:31:26 -07001805 list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07001806 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07001807 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08001808 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07001809 sys.exit(2)
1810
Doug Zongkereef39442009-04-02 12:14:19 -07001811 for o, a in opts:
1812 if o in ("-h", "--help"):
1813 Usage(docstring)
1814 sys.exit()
1815 elif o in ("-v", "--verbose"):
1816 OPTIONS.verbose = True
1817 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07001818 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001819 elif o in ("--signapk_path",):
1820 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08001821 elif o in ("--signapk_shared_library_path",):
1822 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001823 elif o in ("--extra_signapk_args",):
1824 OPTIONS.extra_signapk_args = shlex.split(a)
1825 elif o in ("--java_path",):
1826 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07001827 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08001828 OPTIONS.java_args = shlex.split(a)
T.R. Fullhart37e10522013-03-18 10:31:26 -07001829 elif o in ("--public_key_suffix",):
1830 OPTIONS.public_key_suffix = a
1831 elif o in ("--private_key_suffix",):
1832 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08001833 elif o in ("--boot_signer_path",):
1834 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07001835 elif o in ("--boot_signer_args",):
1836 OPTIONS.boot_signer_args = shlex.split(a)
1837 elif o in ("--verity_signer_path",):
1838 OPTIONS.verity_signer_path = a
1839 elif o in ("--verity_signer_args",):
1840 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07001841 elif o in ("-s", "--device_specific"):
1842 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08001843 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08001844 key, value = a.split("=", 1)
1845 OPTIONS.extras[key] = value
Doug Zongkereef39442009-04-02 12:14:19 -07001846 else:
1847 if extra_option_handler is None or not extra_option_handler(o, a):
1848 assert False, "unknown option \"%s\"" % (o,)
1849
Doug Zongker85448772014-09-09 14:59:20 -07001850 if OPTIONS.search_path:
1851 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
1852 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07001853
1854 return args
1855
1856
Tao Bao4c851b12016-09-19 13:54:38 -07001857def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07001858 """Make a temp file and add it to the list of things to be deleted
1859 when Cleanup() is called. Return the filename."""
1860 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
1861 os.close(fd)
1862 OPTIONS.tempfiles.append(fn)
1863 return fn
1864
1865
Tao Bao1c830bf2017-12-25 10:43:47 -08001866def MakeTempDir(prefix='tmp', suffix=''):
1867 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
1868
1869 Returns:
1870 The absolute pathname of the new directory.
1871 """
1872 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
1873 OPTIONS.tempfiles.append(dir_name)
1874 return dir_name
1875
1876
Doug Zongkereef39442009-04-02 12:14:19 -07001877def Cleanup():
1878 for i in OPTIONS.tempfiles:
1879 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08001880 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07001881 else:
1882 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08001883 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07001884
1885
1886class PasswordManager(object):
1887 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08001888 self.editor = os.getenv("EDITOR")
1889 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001890
1891 def GetPasswords(self, items):
1892 """Get passwords corresponding to each string in 'items',
1893 returning a dict. (The dict may have keys in addition to the
1894 values in 'items'.)
1895
1896 Uses the passwords in $ANDROID_PW_FILE if available, letting the
1897 user edit that file to add more needed passwords. If no editor is
1898 available, or $ANDROID_PW_FILE isn't define, prompts the user
1899 interactively in the ordinary way.
1900 """
1901
1902 current = self.ReadFile()
1903
1904 first = True
1905 while True:
1906 missing = []
1907 for i in items:
1908 if i not in current or not current[i]:
1909 missing.append(i)
1910 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07001911 if not missing:
1912 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07001913
1914 for i in missing:
1915 current[i] = ""
1916
1917 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001918 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08001919 if sys.version_info[0] >= 3:
1920 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07001921 answer = raw_input("try to edit again? [y]> ").strip()
1922 if answer and answer[0] not in 'yY':
1923 raise RuntimeError("key passwords unavailable")
1924 first = False
1925
1926 current = self.UpdateAndReadFile(current)
1927
Dan Albert8b72aef2015-03-23 19:13:21 -07001928 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07001929 """Prompt the user to enter a value (password) for each key in
1930 'current' whose value is fales. Returns a new dict with all the
1931 values.
1932 """
1933 result = {}
Tao Bao38884282019-07-10 22:20:56 -07001934 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07001935 if v:
1936 result[k] = v
1937 else:
1938 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07001939 result[k] = getpass.getpass(
1940 "Enter password for %s key> " % k).strip()
1941 if result[k]:
1942 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07001943 return result
1944
1945 def UpdateAndReadFile(self, current):
1946 if not self.editor or not self.pwfile:
1947 return self.PromptResult(current)
1948
1949 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07001950 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07001951 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
1952 f.write("# (Additional spaces are harmless.)\n\n")
1953
1954 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07001955 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07001956 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07001957 f.write("[[[ %s ]]] %s\n" % (v, k))
1958 if not v and first_line is None:
1959 # position cursor on first line with no password.
1960 first_line = i + 4
1961 f.close()
1962
Tao Bao986ee862018-10-04 15:46:16 -07001963 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07001964
1965 return self.ReadFile()
1966
1967 def ReadFile(self):
1968 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07001969 if self.pwfile is None:
1970 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07001971 try:
1972 f = open(self.pwfile, "r")
1973 for line in f:
1974 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001975 if not line or line[0] == '#':
1976 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07001977 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
1978 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07001979 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07001980 else:
1981 result[m.group(2)] = m.group(1)
1982 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07001983 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001984 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07001985 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001986 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07001987
1988
Dan Albert8e0178d2015-01-27 15:53:15 -08001989def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
1990 compress_type=None):
1991 import datetime
1992
1993 # http://b/18015246
1994 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
1995 # for files larger than 2GiB. We can work around this by adjusting their
1996 # limit. Note that `zipfile.writestr()` will not work for strings larger than
1997 # 2GiB. The Python interpreter sometimes rejects strings that large (though
1998 # it isn't clear to me exactly what circumstances cause this).
1999 # `zipfile.write()` must be used directly to work around this.
2000 #
2001 # This mess can be avoided if we port to python3.
2002 saved_zip64_limit = zipfile.ZIP64_LIMIT
2003 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2004
2005 if compress_type is None:
2006 compress_type = zip_file.compression
2007 if arcname is None:
2008 arcname = filename
2009
2010 saved_stat = os.stat(filename)
2011
2012 try:
2013 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2014 # file to be zipped and reset it when we're done.
2015 os.chmod(filename, perms)
2016
2017 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002018 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2019 # intentional. zip stores datetimes in local time without a time zone
2020 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2021 # in the zip archive.
2022 local_epoch = datetime.datetime.fromtimestamp(0)
2023 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002024 os.utime(filename, (timestamp, timestamp))
2025
2026 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2027 finally:
2028 os.chmod(filename, saved_stat.st_mode)
2029 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2030 zipfile.ZIP64_LIMIT = saved_zip64_limit
2031
2032
Tao Bao58c1b962015-05-20 09:32:18 -07002033def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002034 compress_type=None):
2035 """Wrap zipfile.writestr() function to work around the zip64 limit.
2036
2037 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2038 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2039 when calling crc32(bytes).
2040
2041 But it still works fine to write a shorter string into a large zip file.
2042 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2043 when we know the string won't be too long.
2044 """
2045
2046 saved_zip64_limit = zipfile.ZIP64_LIMIT
2047 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2048
2049 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2050 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002051 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002052 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002053 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002054 else:
Tao Baof3282b42015-04-01 11:21:55 -07002055 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002056 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2057 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2058 # such a case (since
2059 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2060 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2061 # permission bits. We follow the logic in Python 3 to get consistent
2062 # behavior between using the two versions.
2063 if not zinfo.external_attr:
2064 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002065
2066 # If compress_type is given, it overrides the value in zinfo.
2067 if compress_type is not None:
2068 zinfo.compress_type = compress_type
2069
Tao Bao58c1b962015-05-20 09:32:18 -07002070 # If perms is given, it has a priority.
2071 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002072 # If perms doesn't set the file type, mark it as a regular file.
2073 if perms & 0o770000 == 0:
2074 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002075 zinfo.external_attr = perms << 16
2076
Tao Baof3282b42015-04-01 11:21:55 -07002077 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002078 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2079
Dan Albert8b72aef2015-03-23 19:13:21 -07002080 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002081 zipfile.ZIP64_LIMIT = saved_zip64_limit
2082
2083
Tao Bao89d7ab22017-12-14 17:05:33 -08002084def ZipDelete(zip_filename, entries):
2085 """Deletes entries from a ZIP file.
2086
2087 Since deleting entries from a ZIP file is not supported, it shells out to
2088 'zip -d'.
2089
2090 Args:
2091 zip_filename: The name of the ZIP file.
2092 entries: The name of the entry, or the list of names to be deleted.
2093
2094 Raises:
2095 AssertionError: In case of non-zero return from 'zip'.
2096 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002097 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002098 entries = [entries]
2099 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002100 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002101
2102
Tao Baof3282b42015-04-01 11:21:55 -07002103def ZipClose(zip_file):
2104 # http://b/18015246
2105 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2106 # central directory.
2107 saved_zip64_limit = zipfile.ZIP64_LIMIT
2108 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2109
2110 zip_file.close()
2111
2112 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002113
2114
2115class DeviceSpecificParams(object):
2116 module = None
2117 def __init__(self, **kwargs):
2118 """Keyword arguments to the constructor become attributes of this
2119 object, which is passed to all functions in the device-specific
2120 module."""
Tao Bao38884282019-07-10 22:20:56 -07002121 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002122 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002123 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002124
2125 if self.module is None:
2126 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002127 if not path:
2128 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002129 try:
2130 if os.path.isdir(path):
2131 info = imp.find_module("releasetools", [path])
2132 else:
2133 d, f = os.path.split(path)
2134 b, x = os.path.splitext(f)
2135 if x == ".py":
2136 f = b
2137 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002138 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002139 self.module = imp.load_module("device_specific", *info)
2140 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002141 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002142
2143 def _DoCall(self, function_name, *args, **kwargs):
2144 """Call the named function in the device-specific module, passing
2145 the given args and kwargs. The first argument to the call will be
2146 the DeviceSpecific object itself. If there is no module, or the
2147 module does not define the function, return the value of the
2148 'default' kwarg (which itself defaults to None)."""
2149 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002150 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002151 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2152
2153 def FullOTA_Assertions(self):
2154 """Called after emitting the block of assertions at the top of a
2155 full OTA package. Implementations can add whatever additional
2156 assertions they like."""
2157 return self._DoCall("FullOTA_Assertions")
2158
Doug Zongkere5ff5902012-01-17 10:55:37 -08002159 def FullOTA_InstallBegin(self):
2160 """Called at the start of full OTA installation."""
2161 return self._DoCall("FullOTA_InstallBegin")
2162
Yifan Hong10c530d2018-12-27 17:34:18 -08002163 def FullOTA_GetBlockDifferences(self):
2164 """Called during full OTA installation and verification.
2165 Implementation should return a list of BlockDifference objects describing
2166 the update on each additional partitions.
2167 """
2168 return self._DoCall("FullOTA_GetBlockDifferences")
2169
Doug Zongker05d3dea2009-06-22 11:32:31 -07002170 def FullOTA_InstallEnd(self):
2171 """Called at the end of full OTA installation; typically this is
2172 used to install the image for the device's baseband processor."""
2173 return self._DoCall("FullOTA_InstallEnd")
2174
2175 def IncrementalOTA_Assertions(self):
2176 """Called after emitting the block of assertions at the top of an
2177 incremental OTA package. Implementations can add whatever
2178 additional assertions they like."""
2179 return self._DoCall("IncrementalOTA_Assertions")
2180
Doug Zongkere5ff5902012-01-17 10:55:37 -08002181 def IncrementalOTA_VerifyBegin(self):
2182 """Called at the start of the verification phase of incremental
2183 OTA installation; additional checks can be placed here to abort
2184 the script before any changes are made."""
2185 return self._DoCall("IncrementalOTA_VerifyBegin")
2186
Doug Zongker05d3dea2009-06-22 11:32:31 -07002187 def IncrementalOTA_VerifyEnd(self):
2188 """Called at the end of the verification phase of incremental OTA
2189 installation; additional checks can be placed here to abort the
2190 script before any changes are made."""
2191 return self._DoCall("IncrementalOTA_VerifyEnd")
2192
Doug Zongkere5ff5902012-01-17 10:55:37 -08002193 def IncrementalOTA_InstallBegin(self):
2194 """Called at the start of incremental OTA installation (after
2195 verification is complete)."""
2196 return self._DoCall("IncrementalOTA_InstallBegin")
2197
Yifan Hong10c530d2018-12-27 17:34:18 -08002198 def IncrementalOTA_GetBlockDifferences(self):
2199 """Called during incremental OTA installation and verification.
2200 Implementation should return a list of BlockDifference objects describing
2201 the update on each additional partitions.
2202 """
2203 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2204
Doug Zongker05d3dea2009-06-22 11:32:31 -07002205 def IncrementalOTA_InstallEnd(self):
2206 """Called at the end of incremental OTA installation; typically
2207 this is used to install the image for the device's baseband
2208 processor."""
2209 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002210
Tao Bao9bc6bb22015-11-09 16:58:28 -08002211 def VerifyOTA_Assertions(self):
2212 return self._DoCall("VerifyOTA_Assertions")
2213
Tao Bao76def242017-11-21 09:25:31 -08002214
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002215class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002216 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002217 self.name = name
2218 self.data = data
2219 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002220 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002221 self.sha1 = sha1(data).hexdigest()
2222
2223 @classmethod
2224 def FromLocalFile(cls, name, diskname):
2225 f = open(diskname, "rb")
2226 data = f.read()
2227 f.close()
2228 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002229
2230 def WriteToTemp(self):
2231 t = tempfile.NamedTemporaryFile()
2232 t.write(self.data)
2233 t.flush()
2234 return t
2235
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002236 def WriteToDir(self, d):
2237 with open(os.path.join(d, self.name), "wb") as fp:
2238 fp.write(self.data)
2239
Geremy Condra36bd3652014-02-06 19:45:10 -08002240 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002241 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002242
Tao Bao76def242017-11-21 09:25:31 -08002243
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002244DIFF_PROGRAM_BY_EXT = {
2245 ".gz" : "imgdiff",
2246 ".zip" : ["imgdiff", "-z"],
2247 ".jar" : ["imgdiff", "-z"],
2248 ".apk" : ["imgdiff", "-z"],
2249 ".img" : "imgdiff",
2250 }
2251
Tao Bao76def242017-11-21 09:25:31 -08002252
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002253class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002254 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002255 self.tf = tf
2256 self.sf = sf
2257 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002258 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002259
2260 def ComputePatch(self):
2261 """Compute the patch (as a string of data) needed to turn sf into
2262 tf. Returns the same tuple as GetPatch()."""
2263
2264 tf = self.tf
2265 sf = self.sf
2266
Doug Zongker24cd2802012-08-14 16:36:15 -07002267 if self.diff_program:
2268 diff_program = self.diff_program
2269 else:
2270 ext = os.path.splitext(tf.name)[1]
2271 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002272
2273 ttemp = tf.WriteToTemp()
2274 stemp = sf.WriteToTemp()
2275
2276 ext = os.path.splitext(tf.name)[1]
2277
2278 try:
2279 ptemp = tempfile.NamedTemporaryFile()
2280 if isinstance(diff_program, list):
2281 cmd = copy.copy(diff_program)
2282 else:
2283 cmd = [diff_program]
2284 cmd.append(stemp.name)
2285 cmd.append(ttemp.name)
2286 cmd.append(ptemp.name)
2287 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002288 err = []
2289 def run():
2290 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002291 if e:
2292 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002293 th = threading.Thread(target=run)
2294 th.start()
2295 th.join(timeout=300) # 5 mins
2296 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002297 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002298 p.terminate()
2299 th.join(5)
2300 if th.is_alive():
2301 p.kill()
2302 th.join()
2303
Tianjie Xua2a9f992018-01-05 15:15:54 -08002304 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002305 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002306 self.patch = None
2307 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002308 diff = ptemp.read()
2309 finally:
2310 ptemp.close()
2311 stemp.close()
2312 ttemp.close()
2313
2314 self.patch = diff
2315 return self.tf, self.sf, self.patch
2316
2317
2318 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08002319 """Returns a tuple of (target_file, source_file, patch_data).
2320
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002321 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08002322 computing the patch failed.
2323 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002324 return self.tf, self.sf, self.patch
2325
2326
2327def ComputeDifferences(diffs):
2328 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07002329 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002330
2331 # Do the largest files first, to try and reduce the long-pole effect.
2332 by_size = [(i.tf.size, i) for i in diffs]
2333 by_size.sort(reverse=True)
2334 by_size = [i[1] for i in by_size]
2335
2336 lock = threading.Lock()
2337 diff_iter = iter(by_size) # accessed under lock
2338
2339 def worker():
2340 try:
2341 lock.acquire()
2342 for d in diff_iter:
2343 lock.release()
2344 start = time.time()
2345 d.ComputePatch()
2346 dur = time.time() - start
2347 lock.acquire()
2348
2349 tf, sf, patch = d.GetPatch()
2350 if sf.name == tf.name:
2351 name = tf.name
2352 else:
2353 name = "%s (%s)" % (tf.name, sf.name)
2354 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07002355 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002356 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07002357 logger.info(
2358 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
2359 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002360 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07002361 except Exception:
2362 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002363 raise
2364
2365 # start worker threads; wait for them all to finish.
2366 threads = [threading.Thread(target=worker)
2367 for i in range(OPTIONS.worker_threads)]
2368 for th in threads:
2369 th.start()
2370 while threads:
2371 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07002372
2373
Dan Albert8b72aef2015-03-23 19:13:21 -07002374class BlockDifference(object):
2375 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07002376 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002377 self.tgt = tgt
2378 self.src = src
2379 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002380 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07002381 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002382
Tao Baodd2a5892015-03-12 12:32:37 -07002383 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08002384 version = max(
2385 int(i) for i in
2386 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08002387 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07002388 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07002389
Tianjie Xu41976c72019-07-03 13:57:01 -07002390 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
2391 version=self.version,
2392 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08002393 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002394 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08002395 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07002396 self.touched_src_ranges = b.touched_src_ranges
2397 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002398
Yifan Hong10c530d2018-12-27 17:34:18 -08002399 # On devices with dynamic partitions, for new partitions,
2400 # src is None but OPTIONS.source_info_dict is not.
2401 if OPTIONS.source_info_dict is None:
2402 is_dynamic_build = OPTIONS.info_dict.get(
2403 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002404 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07002405 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08002406 is_dynamic_build = OPTIONS.source_info_dict.get(
2407 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002408 is_dynamic_source = partition in shlex.split(
2409 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08002410
Yifan Hongbb2658d2019-01-25 12:30:58 -08002411 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08002412 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
2413
Yifan Hongbb2658d2019-01-25 12:30:58 -08002414 # For dynamic partitions builds, check partition list in both source
2415 # and target build because new partitions may be added, and existing
2416 # partitions may be removed.
2417 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
2418
Yifan Hong10c530d2018-12-27 17:34:18 -08002419 if is_dynamic:
2420 self.device = 'map_partition("%s")' % partition
2421 else:
2422 if OPTIONS.source_info_dict is None:
2423 _, device_path = GetTypeAndDevice("/" + partition, OPTIONS.info_dict)
2424 else:
2425 _, device_path = GetTypeAndDevice("/" + partition,
2426 OPTIONS.source_info_dict)
2427 self.device = '"%s"' % device_path
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002428
Tao Baod8d14be2016-02-04 14:26:02 -08002429 @property
2430 def required_cache(self):
2431 return self._required_cache
2432
Tao Bao76def242017-11-21 09:25:31 -08002433 def WriteScript(self, script, output_zip, progress=None,
2434 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002435 if not self.src:
2436 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08002437 script.Print("Patching %s image unconditionally..." % (self.partition,))
2438 else:
2439 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002440
Dan Albert8b72aef2015-03-23 19:13:21 -07002441 if progress:
2442 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002443 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08002444
2445 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08002446 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002447
Tao Bao9bc6bb22015-11-09 16:58:28 -08002448 def WriteStrictVerifyScript(self, script):
2449 """Verify all the blocks in the care_map, including clobbered blocks.
2450
2451 This differs from the WriteVerifyScript() function: a) it prints different
2452 error messages; b) it doesn't allow half-way updated images to pass the
2453 verification."""
2454
2455 partition = self.partition
2456 script.Print("Verifying %s..." % (partition,))
2457 ranges = self.tgt.care_map
2458 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002459 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002460 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
2461 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08002462 self.device, ranges_str,
2463 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08002464 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08002465 script.AppendExtra("")
2466
Tao Baod522bdc2016-04-12 15:53:16 -07002467 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00002468 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07002469
2470 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08002471 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00002472 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07002473
2474 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002475 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08002476 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07002477 ranges = self.touched_src_ranges
2478 expected_sha1 = self.touched_src_sha1
2479 else:
2480 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
2481 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07002482
2483 # No blocks to be checked, skipping.
2484 if not ranges:
2485 return
2486
Tao Bao5ece99d2015-05-12 11:42:31 -07002487 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002488 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002489 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08002490 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
2491 '"%s.patch.dat")) then' % (
2492 self.device, ranges_str, expected_sha1,
2493 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07002494 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07002495 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00002496
Tianjie Xufc3422a2015-12-15 11:53:59 -08002497 if self.version >= 4:
2498
2499 # Bug: 21124327
2500 # When generating incrementals for the system and vendor partitions in
2501 # version 4 or newer, explicitly check the first block (which contains
2502 # the superblock) of the partition to see if it's what we expect. If
2503 # this check fails, give an explicit log message about the partition
2504 # having been remounted R/W (the most likely explanation).
2505 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08002506 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08002507
2508 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07002509 if partition == "system":
2510 code = ErrorCode.SYSTEM_RECOVER_FAILURE
2511 else:
2512 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08002513 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08002514 'ifelse (block_image_recover({device}, "{ranges}") && '
2515 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08002516 'package_extract_file("{partition}.transfer.list"), '
2517 '"{partition}.new.dat", "{partition}.patch.dat"), '
2518 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07002519 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08002520 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07002521 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002522
Tao Baodd2a5892015-03-12 12:32:37 -07002523 # Abort the OTA update. Note that the incremental OTA cannot be applied
2524 # even if it may match the checksum of the target partition.
2525 # a) If version < 3, operations like move and erase will make changes
2526 # unconditionally and damage the partition.
2527 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08002528 else:
Tianjie Xu209db462016-05-24 17:34:52 -07002529 if partition == "system":
2530 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
2531 else:
2532 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
2533 script.AppendExtra((
2534 'abort("E%d: %s partition has unexpected contents");\n'
2535 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002536
Yifan Hong10c530d2018-12-27 17:34:18 -08002537 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07002538 partition = self.partition
2539 script.Print('Verifying the updated %s image...' % (partition,))
2540 # Unlike pre-install verification, clobbered_blocks should not be ignored.
2541 ranges = self.tgt.care_map
2542 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002543 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002544 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002545 self.device, ranges_str,
2546 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07002547
2548 # Bug: 20881595
2549 # Verify that extended blocks are really zeroed out.
2550 if self.tgt.extended:
2551 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002552 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002553 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002554 self.device, ranges_str,
2555 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07002556 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07002557 if partition == "system":
2558 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
2559 else:
2560 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07002561 script.AppendExtra(
2562 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002563 ' abort("E%d: %s partition has unexpected non-zero contents after '
2564 'OTA update");\n'
2565 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07002566 else:
2567 script.Print('Verified the updated %s image.' % (partition,))
2568
Tianjie Xu209db462016-05-24 17:34:52 -07002569 if partition == "system":
2570 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
2571 else:
2572 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
2573
Tao Bao5fcaaef2015-06-01 13:40:49 -07002574 script.AppendExtra(
2575 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002576 ' abort("E%d: %s partition has unexpected contents after OTA '
2577 'update");\n'
2578 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07002579
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002580 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08002581 ZipWrite(output_zip,
2582 '{}.transfer.list'.format(self.path),
2583 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002584
Tao Bao76def242017-11-21 09:25:31 -08002585 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
2586 # its size. Quailty 9 almost triples the compression time but doesn't
2587 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002588 # zip | brotli(quality 6) | brotli(quality 9)
2589 # compressed_size: 942M | 869M (~8% reduced) | 854M
2590 # compression_time: 75s | 265s | 719s
2591 # decompression_time: 15s | 25s | 25s
2592
2593 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01002594 brotli_cmd = ['brotli', '--quality=6',
2595 '--output={}.new.dat.br'.format(self.path),
2596 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002597 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07002598 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002599
2600 new_data_name = '{}.new.dat.br'.format(self.partition)
2601 ZipWrite(output_zip,
2602 '{}.new.dat.br'.format(self.path),
2603 new_data_name,
2604 compress_type=zipfile.ZIP_STORED)
2605 else:
2606 new_data_name = '{}.new.dat'.format(self.partition)
2607 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
2608
Dan Albert8e0178d2015-01-27 15:53:15 -08002609 ZipWrite(output_zip,
2610 '{}.patch.dat'.format(self.path),
2611 '{}.patch.dat'.format(self.partition),
2612 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002613
Tianjie Xu209db462016-05-24 17:34:52 -07002614 if self.partition == "system":
2615 code = ErrorCode.SYSTEM_UPDATE_FAILURE
2616 else:
2617 code = ErrorCode.VENDOR_UPDATE_FAILURE
2618
Yifan Hong10c530d2018-12-27 17:34:18 -08002619 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08002620 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002621 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002622 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002623 device=self.device, partition=self.partition,
2624 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07002625 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002626
Dan Albert8b72aef2015-03-23 19:13:21 -07002627 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00002628 data = source.ReadRangeSet(ranges)
2629 ctx = sha1()
2630
2631 for p in data:
2632 ctx.update(p)
2633
2634 return ctx.hexdigest()
2635
Tao Baoe9b61912015-07-09 17:37:49 -07002636 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
2637 """Return the hash value for all zero blocks."""
2638 zero_block = '\x00' * 4096
2639 ctx = sha1()
2640 for _ in range(num_blocks):
2641 ctx.update(zero_block)
2642
2643 return ctx.hexdigest()
2644
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002645
Tianjie Xu41976c72019-07-03 13:57:01 -07002646# Expose these two classes to support vendor-specific scripts
2647DataImage = images.DataImage
2648EmptyImage = images.EmptyImage
2649
Tao Bao76def242017-11-21 09:25:31 -08002650
Doug Zongker96a57e72010-09-26 14:57:41 -07002651# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07002652PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07002653 "ext4": "EMMC",
2654 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07002655 "f2fs": "EMMC",
2656 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07002657}
Doug Zongker96a57e72010-09-26 14:57:41 -07002658
Tao Bao76def242017-11-21 09:25:31 -08002659
Doug Zongker96a57e72010-09-26 14:57:41 -07002660def GetTypeAndDevice(mount_point, info):
2661 fstab = info["fstab"]
2662 if fstab:
Dan Albert8b72aef2015-03-23 19:13:21 -07002663 return (PARTITION_TYPES[fstab[mount_point].fs_type],
2664 fstab[mount_point].device)
Doug Zongker96a57e72010-09-26 14:57:41 -07002665 else:
Dan Albert8b72aef2015-03-23 19:13:21 -07002666 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002667
2668
2669def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08002670 """Parses and converts a PEM-encoded certificate into DER-encoded.
2671
2672 This gives the same result as `openssl x509 -in <filename> -outform DER`.
2673
2674 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08002675 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08002676 """
2677 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002678 save = False
2679 for line in data.split("\n"):
2680 if "--END CERTIFICATE--" in line:
2681 break
2682 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08002683 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002684 if "--BEGIN CERTIFICATE--" in line:
2685 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08002686 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002687 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08002688
Tao Bao04e1f012018-02-04 12:13:35 -08002689
2690def ExtractPublicKey(cert):
2691 """Extracts the public key (PEM-encoded) from the given certificate file.
2692
2693 Args:
2694 cert: The certificate filename.
2695
2696 Returns:
2697 The public key string.
2698
2699 Raises:
2700 AssertionError: On non-zero return from 'openssl'.
2701 """
2702 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
2703 # While openssl 1.1 writes the key into the given filename followed by '-out',
2704 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
2705 # stdout instead.
2706 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
2707 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
2708 pubkey, stderrdata = proc.communicate()
2709 assert proc.returncode == 0, \
2710 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
2711 return pubkey
2712
2713
Tao Bao1ac886e2019-06-26 11:58:22 -07002714def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07002715 """Extracts the AVB public key from the given public or private key.
2716
2717 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07002718 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07002719 key: The input key file, which should be PEM-encoded public or private key.
2720
2721 Returns:
2722 The path to the extracted AVB public key file.
2723 """
2724 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
2725 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07002726 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07002727 return output
2728
2729
Doug Zongker412c02f2014-02-13 10:58:24 -08002730def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
2731 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08002732 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08002733
Tao Bao6d5d6232018-03-09 17:04:42 -08002734 Most of the space in the boot and recovery images is just the kernel, which is
2735 identical for the two, so the resulting patch should be efficient. Add it to
2736 the output zip, along with a shell script that is run from init.rc on first
2737 boot to actually do the patching and install the new recovery image.
2738
2739 Args:
2740 input_dir: The top-level input directory of the target-files.zip.
2741 output_sink: The callback function that writes the result.
2742 recovery_img: File object for the recovery image.
2743 boot_img: File objects for the boot image.
2744 info_dict: A dict returned by common.LoadInfoDict() on the input
2745 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08002746 """
Doug Zongker412c02f2014-02-13 10:58:24 -08002747 if info_dict is None:
2748 info_dict = OPTIONS.info_dict
2749
Tao Bao6d5d6232018-03-09 17:04:42 -08002750 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002751 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
2752
2753 if board_uses_vendorimage:
2754 # In this case, the output sink is rooted at VENDOR
2755 recovery_img_path = "etc/recovery.img"
2756 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
2757 sh_dir = "bin"
2758 else:
2759 # In this case the output sink is rooted at SYSTEM
2760 recovery_img_path = "vendor/etc/recovery.img"
2761 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
2762 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08002763
Tao Baof2cffbd2015-07-22 12:33:18 -07002764 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002765 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07002766
2767 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08002768 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002769 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08002770 # With system-root-image, boot and recovery images will have mismatching
2771 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
2772 # to handle such a case.
2773 if system_root_image:
2774 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07002775 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08002776 assert not os.path.exists(path)
2777 else:
2778 diff_program = ["imgdiff"]
2779 if os.path.exists(path):
2780 diff_program.append("-b")
2781 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07002782 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08002783 else:
2784 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07002785
2786 d = Difference(recovery_img, boot_img, diff_program=diff_program)
2787 _, _, patch = d.ComputePatch()
2788 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08002789
Dan Albertebb19aa2015-03-27 19:11:53 -07002790 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07002791 # The following GetTypeAndDevice()s need to use the path in the target
2792 # info_dict instead of source_info_dict.
Dan Albertebb19aa2015-03-27 19:11:53 -07002793 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict)
2794 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict)
2795 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07002796 return
Doug Zongkerc9253822014-02-04 12:17:58 -08002797
Tao Baof2cffbd2015-07-22 12:33:18 -07002798 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002799
2800 # Note that we use /vendor to refer to the recovery resources. This will
2801 # work for a separate vendor partition mounted at /vendor or a
2802 # /system/vendor subdirectory on the system partition, for which init will
2803 # create a symlink from /vendor to /system/vendor.
2804
2805 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002806if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
2807 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002808 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07002809 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
2810 log -t recovery "Installing new recovery image: succeeded" || \\
2811 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07002812else
2813 log -t recovery "Recovery image already installed"
2814fi
2815""" % {'type': recovery_type,
2816 'device': recovery_device,
2817 'sha1': recovery_img.sha1,
2818 'size': recovery_img.size}
2819 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07002820 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002821if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
2822 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002823 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07002824 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
2825 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
2826 log -t recovery "Installing new recovery image: succeeded" || \\
2827 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08002828else
2829 log -t recovery "Recovery image already installed"
2830fi
Dan Albert8b72aef2015-03-23 19:13:21 -07002831""" % {'boot_size': boot_img.size,
2832 'boot_sha1': boot_img.sha1,
2833 'recovery_size': recovery_img.size,
2834 'recovery_sha1': recovery_img.sha1,
2835 'boot_type': boot_type,
2836 'boot_device': boot_device,
2837 'recovery_type': recovery_type,
2838 'recovery_device': recovery_device,
2839 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08002840
Bill Peckhame868aec2019-09-17 17:06:47 -07002841 # The install script location moved from /system/etc to /system/bin in the L
2842 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
2843 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07002844
Tao Bao32fcdab2018-10-12 10:30:39 -07002845 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08002846
Tao Baoda30cfa2017-12-01 16:19:46 -08002847 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08002848
2849
2850class DynamicPartitionUpdate(object):
2851 def __init__(self, src_group=None, tgt_group=None, progress=None,
2852 block_difference=None):
2853 self.src_group = src_group
2854 self.tgt_group = tgt_group
2855 self.progress = progress
2856 self.block_difference = block_difference
2857
2858 @property
2859 def src_size(self):
2860 if not self.block_difference:
2861 return 0
2862 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
2863
2864 @property
2865 def tgt_size(self):
2866 if not self.block_difference:
2867 return 0
2868 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
2869
2870 @staticmethod
2871 def _GetSparseImageSize(img):
2872 if not img:
2873 return 0
2874 return img.blocksize * img.total_blocks
2875
2876
2877class DynamicGroupUpdate(object):
2878 def __init__(self, src_size=None, tgt_size=None):
2879 # None: group does not exist. 0: no size limits.
2880 self.src_size = src_size
2881 self.tgt_size = tgt_size
2882
2883
2884class DynamicPartitionsDifference(object):
2885 def __init__(self, info_dict, block_diffs, progress_dict=None,
2886 source_info_dict=None):
2887 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07002888 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002889
2890 self._remove_all_before_apply = False
2891 if source_info_dict is None:
2892 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07002893 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002894
Tao Baof1113e92019-06-18 12:10:14 -07002895 block_diff_dict = collections.OrderedDict(
2896 [(e.partition, e) for e in block_diffs])
2897
Yifan Hong10c530d2018-12-27 17:34:18 -08002898 assert len(block_diff_dict) == len(block_diffs), \
2899 "Duplicated BlockDifference object for {}".format(
2900 [partition for partition, count in
2901 collections.Counter(e.partition for e in block_diffs).items()
2902 if count > 1])
2903
Yifan Hong79997e52019-01-23 16:56:19 -08002904 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08002905
2906 for p, block_diff in block_diff_dict.items():
2907 self._partition_updates[p] = DynamicPartitionUpdate()
2908 self._partition_updates[p].block_difference = block_diff
2909
2910 for p, progress in progress_dict.items():
2911 if p in self._partition_updates:
2912 self._partition_updates[p].progress = progress
2913
2914 tgt_groups = shlex.split(info_dict.get(
2915 "super_partition_groups", "").strip())
2916 src_groups = shlex.split(source_info_dict.get(
2917 "super_partition_groups", "").strip())
2918
2919 for g in tgt_groups:
2920 for p in shlex.split(info_dict.get(
2921 "super_%s_partition_list" % g, "").strip()):
2922 assert p in self._partition_updates, \
2923 "{} is in target super_{}_partition_list but no BlockDifference " \
2924 "object is provided.".format(p, g)
2925 self._partition_updates[p].tgt_group = g
2926
2927 for g in src_groups:
2928 for p in shlex.split(source_info_dict.get(
2929 "super_%s_partition_list" % g, "").strip()):
2930 assert p in self._partition_updates, \
2931 "{} is in source super_{}_partition_list but no BlockDifference " \
2932 "object is provided.".format(p, g)
2933 self._partition_updates[p].src_group = g
2934
Yifan Hong45433e42019-01-18 13:55:25 -08002935 target_dynamic_partitions = set(shlex.split(info_dict.get(
2936 "dynamic_partition_list", "").strip()))
2937 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
2938 if u.tgt_size)
2939 assert block_diffs_with_target == target_dynamic_partitions, \
2940 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
2941 list(target_dynamic_partitions), list(block_diffs_with_target))
2942
2943 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
2944 "dynamic_partition_list", "").strip()))
2945 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
2946 if u.src_size)
2947 assert block_diffs_with_source == source_dynamic_partitions, \
2948 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
2949 list(source_dynamic_partitions), list(block_diffs_with_source))
2950
Yifan Hong10c530d2018-12-27 17:34:18 -08002951 if self._partition_updates:
2952 logger.info("Updating dynamic partitions %s",
2953 self._partition_updates.keys())
2954
Yifan Hong79997e52019-01-23 16:56:19 -08002955 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08002956
2957 for g in tgt_groups:
2958 self._group_updates[g] = DynamicGroupUpdate()
2959 self._group_updates[g].tgt_size = int(info_dict.get(
2960 "super_%s_group_size" % g, "0").strip())
2961
2962 for g in src_groups:
2963 if g not in self._group_updates:
2964 self._group_updates[g] = DynamicGroupUpdate()
2965 self._group_updates[g].src_size = int(source_info_dict.get(
2966 "super_%s_group_size" % g, "0").strip())
2967
2968 self._Compute()
2969
2970 def WriteScript(self, script, output_zip, write_verify_script=False):
2971 script.Comment('--- Start patching dynamic partitions ---')
2972 for p, u in self._partition_updates.items():
2973 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
2974 script.Comment('Patch partition %s' % p)
2975 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
2976 write_verify_script=False)
2977
2978 op_list_path = MakeTempFile()
2979 with open(op_list_path, 'w') as f:
2980 for line in self._op_list:
2981 f.write('{}\n'.format(line))
2982
2983 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
2984
2985 script.Comment('Update dynamic partition metadata')
2986 script.AppendExtra('assert(update_dynamic_partitions('
2987 'package_extract_file("dynamic_partitions_op_list")));')
2988
2989 if write_verify_script:
2990 for p, u in self._partition_updates.items():
2991 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
2992 u.block_difference.WritePostInstallVerifyScript(script)
2993 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
2994
2995 for p, u in self._partition_updates.items():
2996 if u.tgt_size and u.src_size <= u.tgt_size:
2997 script.Comment('Patch partition %s' % p)
2998 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
2999 write_verify_script=write_verify_script)
3000 if write_verify_script:
3001 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3002
3003 script.Comment('--- End patching dynamic partitions ---')
3004
3005 def _Compute(self):
3006 self._op_list = list()
3007
3008 def append(line):
3009 self._op_list.append(line)
3010
3011 def comment(line):
3012 self._op_list.append("# %s" % line)
3013
3014 if self._remove_all_before_apply:
3015 comment('Remove all existing dynamic partitions and groups before '
3016 'applying full OTA')
3017 append('remove_all_groups')
3018
3019 for p, u in self._partition_updates.items():
3020 if u.src_group and not u.tgt_group:
3021 append('remove %s' % p)
3022
3023 for p, u in self._partition_updates.items():
3024 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3025 comment('Move partition %s from %s to default' % (p, u.src_group))
3026 append('move %s default' % p)
3027
3028 for p, u in self._partition_updates.items():
3029 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3030 comment('Shrink partition %s from %d to %d' %
3031 (p, u.src_size, u.tgt_size))
3032 append('resize %s %s' % (p, u.tgt_size))
3033
3034 for g, u in self._group_updates.items():
3035 if u.src_size is not None and u.tgt_size is None:
3036 append('remove_group %s' % g)
3037 if (u.src_size is not None and u.tgt_size is not None and
3038 u.src_size > u.tgt_size):
3039 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3040 append('resize_group %s %d' % (g, u.tgt_size))
3041
3042 for g, u in self._group_updates.items():
3043 if u.src_size is None and u.tgt_size is not None:
3044 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3045 append('add_group %s %d' % (g, u.tgt_size))
3046 if (u.src_size is not None and u.tgt_size is not None and
3047 u.src_size < u.tgt_size):
3048 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3049 append('resize_group %s %d' % (g, u.tgt_size))
3050
3051 for p, u in self._partition_updates.items():
3052 if u.tgt_group and not u.src_group:
3053 comment('Add partition %s to group %s' % (p, u.tgt_group))
3054 append('add %s %s' % (p, u.tgt_group))
3055
3056 for p, u in self._partition_updates.items():
3057 if u.tgt_size and u.src_size < u.tgt_size:
3058 comment('Grow partition %s from %d to %d' % (p, u.src_size, u.tgt_size))
3059 append('resize %s %d' % (p, u.tgt_size))
3060
3061 for p, u in self._partition_updates.items():
3062 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3063 comment('Move partition %s from default to %s' %
3064 (p, u.tgt_group))
3065 append('move %s %s' % (p, u.tgt_group))