blob: e7fd204aa3c897dad6370aa8147fe8198db9a8c0 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080071 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
72 if "ANDROID_HOST_OUT" in os.environ:
73 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080074 self.signapk_shared_library_path = "lib64" # Relative to search_path
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020075 self.sign_sepolicy_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070076 self.extra_signapk_args = []
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020077 self.extra_sign_sepolicy_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000078 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070079 self.java_path = "java" # Use the one on the path by default.
Sorin Basca05085832022-09-14 11:33:22 +010080 self.java_args = ["-Xmx4096m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080081 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070082 self.public_key_suffix = ".x509.pem"
83 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070084 # use otatools built boot_signer by default
Dan Albert8b72aef2015-03-23 19:13:21 -070085 self.verbose = False
86 self.tempfiles = []
87 self.device_specific = None
88 self.extras = {}
89 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070090 self.source_info_dict = None
91 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070092 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070093 # Stash size cannot exceed cache_size * threshold.
94 self.cache_size = None
95 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070096 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -070097 self.host_tools = {}
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020098 self.sepolicy_name = 'sepolicy.apex'
Dan Albert8b72aef2015-03-23 19:13:21 -070099
100
101OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700102
Tao Bao71197512018-10-11 14:08:45 -0700103# The block size that's used across the releasetools scripts.
104BLOCK_SIZE = 4096
105
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800106# Values for "certificate" in apkcerts that mean special things.
107SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
108
Tao Bao5cc0abb2019-03-21 10:18:05 -0700109# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
110# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800111# descriptor into vbmeta.img. When adding a new entry here, the
112# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
113# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000114AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Lucas Wei03230252022-04-18 16:00:40 +0800115 'system', 'system_ext', 'vendor', 'vendor_boot', 'vendor_kernel_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000116 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800117
Tao Bao08c190f2019-06-03 23:07:58 -0700118# Chained VBMeta partitions.
119AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
120
Tianjie Xu861f4132018-09-12 11:49:33 -0700121# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400122PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700123 'system',
124 'vendor',
125 'product',
126 'system_ext',
127 'odm',
128 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700129 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000130 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400131]
Tianjie Xu861f4132018-09-12 11:49:33 -0700132
Yifan Hong5057b952021-01-07 14:09:57 -0800133# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000134PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800135
Yifan Hongc65a0542021-01-07 14:21:01 -0800136# See sysprop.mk. If file is moved, add new search paths here; don't remove
137# existing search paths.
138RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700139
Kelvin Zhang563750f2021-04-28 12:46:17 -0400140
Tianjie Xu209db462016-05-24 17:34:52 -0700141class ErrorCode(object):
142 """Define error_codes for failures that happen during the actual
143 update package installation.
144
145 Error codes 0-999 are reserved for failures before the package
146 installation (i.e. low battery, package verification failure).
147 Detailed code in 'bootable/recovery/error_code.h' """
148
149 SYSTEM_VERIFICATION_FAILURE = 1000
150 SYSTEM_UPDATE_FAILURE = 1001
151 SYSTEM_UNEXPECTED_CONTENTS = 1002
152 SYSTEM_NONZERO_CONTENTS = 1003
153 SYSTEM_RECOVER_FAILURE = 1004
154 VENDOR_VERIFICATION_FAILURE = 2000
155 VENDOR_UPDATE_FAILURE = 2001
156 VENDOR_UNEXPECTED_CONTENTS = 2002
157 VENDOR_NONZERO_CONTENTS = 2003
158 VENDOR_RECOVER_FAILURE = 2004
159 OEM_PROP_MISMATCH = 3000
160 FINGERPRINT_MISMATCH = 3001
161 THUMBPRINT_MISMATCH = 3002
162 OLDER_BUILD = 3003
163 DEVICE_MISMATCH = 3004
164 BAD_PATCH_FILE = 3005
165 INSUFFICIENT_CACHE_SPACE = 3006
166 TUNE_PARTITION_FAILURE = 3007
167 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800168
Tao Bao80921982018-03-21 21:02:19 -0700169
Dan Albert8b72aef2015-03-23 19:13:21 -0700170class ExternalError(RuntimeError):
171 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700172
173
Tao Bao32fcdab2018-10-12 10:30:39 -0700174def InitLogging():
175 DEFAULT_LOGGING_CONFIG = {
176 'version': 1,
177 'disable_existing_loggers': False,
178 'formatters': {
179 'standard': {
180 'format':
181 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
182 'datefmt': '%Y-%m-%d %H:%M:%S',
183 },
184 },
185 'handlers': {
186 'default': {
187 'class': 'logging.StreamHandler',
188 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700189 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700190 },
191 },
192 'loggers': {
193 '': {
194 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700195 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700196 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700197 }
198 }
199 }
200 env_config = os.getenv('LOGGING_CONFIG')
201 if env_config:
202 with open(env_config) as f:
203 config = json.load(f)
204 else:
205 config = DEFAULT_LOGGING_CONFIG
206
207 # Increase the logging level for verbose mode.
208 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700209 config = copy.deepcopy(config)
210 config['handlers']['default']['level'] = 'INFO'
211
212 if OPTIONS.logfile:
213 config = copy.deepcopy(config)
214 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400215 'class': 'logging.FileHandler',
216 'formatter': 'standard',
217 'level': 'INFO',
218 'mode': 'w',
219 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700220 }
221 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700222
223 logging.config.dictConfig(config)
224
225
Yifan Hong8e332ff2020-07-29 17:51:55 -0700226def SetHostToolLocation(tool_name, location):
227 OPTIONS.host_tools[tool_name] = location
228
Kelvin Zhang563750f2021-04-28 12:46:17 -0400229
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900230def FindHostToolPath(tool_name):
231 """Finds the path to the host tool.
232
233 Args:
234 tool_name: name of the tool to find
235 Returns:
236 path to the tool if found under either one of the host_tools map or under
237 the same directory as this binary is located at. If not found, tool_name
238 is returned.
239 """
240 if tool_name in OPTIONS.host_tools:
241 return OPTIONS.host_tools[tool_name]
242
243 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
244 tool_path = os.path.join(my_dir, tool_name)
245 if os.path.exists(tool_path):
246 return tool_path
247
248 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700249
Kelvin Zhang563750f2021-04-28 12:46:17 -0400250
Tao Bao39451582017-05-04 11:10:47 -0700251def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700252 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700253
Tao Bao73dd4f42018-10-04 16:25:33 -0700254 Args:
255 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700256 verbose: Whether the commands should be shown. Default to the global
257 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700258 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
259 stdin, etc. stdout and stderr will default to subprocess.PIPE and
260 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800261 universal_newlines will default to True, as most of the users in
262 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700263
264 Returns:
265 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700266 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700267 if 'stdout' not in kwargs and 'stderr' not in kwargs:
268 kwargs['stdout'] = subprocess.PIPE
269 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800270 if 'universal_newlines' not in kwargs:
271 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700272
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900273 if args:
274 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700275 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900276 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700277
Kelvin Zhang766eea72021-06-03 09:36:08 -0400278 if verbose is None:
279 verbose = OPTIONS.verbose
280
Tao Bao32fcdab2018-10-12 10:30:39 -0700281 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400282 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700283 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700284 return subprocess.Popen(args, **kwargs)
285
286
Tao Bao986ee862018-10-04 15:46:16 -0700287def RunAndCheckOutput(args, verbose=None, **kwargs):
288 """Runs the given command and returns the output.
289
290 Args:
291 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700292 verbose: Whether the commands should be shown. Default to the global
293 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700294 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
295 stdin, etc. stdout and stderr will default to subprocess.PIPE and
296 subprocess.STDOUT respectively unless caller specifies any of them.
297
298 Returns:
299 The output string.
300
301 Raises:
302 ExternalError: On non-zero exit from the command.
303 """
Tao Bao986ee862018-10-04 15:46:16 -0700304 proc = Run(args, verbose=verbose, **kwargs)
305 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800306 if output is None:
307 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700308 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400309 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700310 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700311 if proc.returncode != 0:
312 raise ExternalError(
313 "Failed to run command '{}' (exit code {}):\n{}".format(
314 args, proc.returncode, output))
315 return output
316
317
Tao Baoc765cca2018-01-31 17:32:40 -0800318def RoundUpTo4K(value):
319 rounded_up = value + 4095
320 return rounded_up - (rounded_up % 4096)
321
322
Ying Wang7e6d4e42010-12-13 16:25:36 -0800323def CloseInheritedPipes():
324 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
325 before doing other work."""
326 if platform.system() != "Darwin":
327 return
328 for d in range(3, 1025):
329 try:
330 stat = os.fstat(d)
331 if stat is not None:
332 pipebit = stat[0] & 0x1000
333 if pipebit != 0:
334 os.close(d)
335 except OSError:
336 pass
337
338
Tao Bao1c320f82019-10-04 23:25:12 -0700339class BuildInfo(object):
340 """A class that holds the information for a given build.
341
342 This class wraps up the property querying for a given source or target build.
343 It abstracts away the logic of handling OEM-specific properties, and caches
344 the commonly used properties such as fingerprint.
345
346 There are two types of info dicts: a) build-time info dict, which is generated
347 at build time (i.e. included in a target_files zip); b) OEM info dict that is
348 specified at package generation time (via command line argument
349 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
350 having "oem_fingerprint_properties" in build-time info dict), all the queries
351 would be answered based on build-time info dict only. Otherwise if using
352 OEM-specific properties, some of them will be calculated from two info dicts.
353
354 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800355 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700356
357 Attributes:
358 info_dict: The build-time info dict.
359 is_ab: Whether it's a build that uses A/B OTA.
360 oem_dicts: A list of OEM dicts.
361 oem_props: A list of OEM properties that should be read from OEM dicts; None
362 if the build doesn't use any OEM-specific property.
363 fingerprint: The fingerprint of the build, which would be calculated based
364 on OEM properties if applicable.
365 device: The device name, which could come from OEM dicts if applicable.
366 """
367
368 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
369 "ro.product.manufacturer", "ro.product.model",
370 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700371 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
372 "product", "odm", "vendor", "system_ext", "system"]
373 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
374 "product", "product_services", "odm", "vendor", "system"]
375 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700376
Tianjiefdda51d2021-05-05 14:46:35 -0700377 # The length of vbmeta digest to append to the fingerprint
378 _VBMETA_DIGEST_SIZE_USED = 8
379
380 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700381 """Initializes a BuildInfo instance with the given dicts.
382
383 Note that it only wraps up the given dicts, without making copies.
384
385 Arguments:
386 info_dict: The build-time info dict.
387 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
388 that it always uses the first dict to calculate the fingerprint or the
389 device name. The rest would be used for asserting OEM properties only
390 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700391 use_legacy_id: Use the legacy build id to construct the fingerprint. This
392 is used when we need a BuildInfo class, while the vbmeta digest is
393 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700394
395 Raises:
396 ValueError: On invalid inputs.
397 """
398 self.info_dict = info_dict
399 self.oem_dicts = oem_dicts
400
401 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700402 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700403
Hongguang Chend7c160f2020-05-03 21:24:26 -0700404 # Skip _oem_props if oem_dicts is None to use BuildInfo in
405 # sign_target_files_apks
406 if self.oem_dicts:
407 self._oem_props = info_dict.get("oem_fingerprint_properties")
408 else:
409 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700410
Daniel Normand5fe8622020-01-08 17:01:11 -0800411 def check_fingerprint(fingerprint):
412 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
413 raise ValueError(
414 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
415 "3.2.2. Build Parameters.".format(fingerprint))
416
Daniel Normand5fe8622020-01-08 17:01:11 -0800417 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800418 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800419 try:
420 fingerprint = self.CalculatePartitionFingerprint(partition)
421 check_fingerprint(fingerprint)
422 self._partition_fingerprints[partition] = fingerprint
423 except ExternalError:
424 continue
425 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800426 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800427 # need a fingerprint when creating the image.
428 self._partition_fingerprints[
429 "system_other"] = self._partition_fingerprints["system"]
430
Tao Bao1c320f82019-10-04 23:25:12 -0700431 # These two should be computed only after setting self._oem_props.
432 self._device = self.GetOemProperty("ro.product.device")
433 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800434 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700435
436 @property
437 def is_ab(self):
438 return self._is_ab
439
440 @property
441 def device(self):
442 return self._device
443
444 @property
445 def fingerprint(self):
446 return self._fingerprint
447
448 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400449 def is_vabc(self):
450 vendor_prop = self.info_dict.get("vendor.build.prop")
451 vabc_enabled = vendor_prop and \
452 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
453 return vabc_enabled
454
455 @property
Kelvin Zhanga9a87ec2022-05-04 16:44:52 -0700456 def is_android_r(self):
457 system_prop = self.info_dict.get("system.build.prop")
458 return system_prop and system_prop.GetProp("ro.build.version.release") == "11"
459
460 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700461 def is_vabc_xor(self):
462 vendor_prop = self.info_dict.get("vendor.build.prop")
463 vabc_xor_enabled = vendor_prop and \
464 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
465 return vabc_xor_enabled
466
467 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400468 def vendor_suppressed_vabc(self):
469 vendor_prop = self.info_dict.get("vendor.build.prop")
470 vabc_suppressed = vendor_prop and \
471 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
472 return vabc_suppressed and vabc_suppressed.lower() == "true"
473
474 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700475 def oem_props(self):
476 return self._oem_props
477
478 def __getitem__(self, key):
479 return self.info_dict[key]
480
481 def __setitem__(self, key, value):
482 self.info_dict[key] = value
483
484 def get(self, key, default=None):
485 return self.info_dict.get(key, default)
486
487 def items(self):
488 return self.info_dict.items()
489
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000490 def _GetRawBuildProp(self, prop, partition):
491 prop_file = '{}.build.prop'.format(
492 partition) if partition else 'build.prop'
493 partition_props = self.info_dict.get(prop_file)
494 if not partition_props:
495 return None
496 return partition_props.GetProp(prop)
497
Daniel Normand5fe8622020-01-08 17:01:11 -0800498 def GetPartitionBuildProp(self, prop, partition):
499 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800500
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000501 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
Devin Mooreb5195ff2022-02-11 18:44:26 +0000502 # This comes from the generic ramdisk
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000503 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800504
Daniel Normand5fe8622020-01-08 17:01:11 -0800505 # If provided a partition for this property, only look within that
506 # partition's build.prop.
507 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800508 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800509 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800510 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000511
512 prop_val = self._GetRawBuildProp(prop, partition)
513 if prop_val is not None:
514 return prop_val
515 raise ExternalError("couldn't find %s in %s.build.prop" %
516 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800517
Tao Bao1c320f82019-10-04 23:25:12 -0700518 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800519 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700520 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
521 return self._ResolveRoProductBuildProp(prop)
522
Tianjiefdda51d2021-05-05 14:46:35 -0700523 if prop == "ro.build.id":
524 return self._GetBuildId()
525
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000526 prop_val = self._GetRawBuildProp(prop, None)
527 if prop_val is not None:
528 return prop_val
529
530 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700531
532 def _ResolveRoProductBuildProp(self, prop):
533 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000534 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700535 if prop_val:
536 return prop_val
537
Steven Laver8e2086e2020-04-27 16:26:31 -0700538 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000539 source_order_val = self._GetRawBuildProp(
540 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700541 if source_order_val:
542 source_order = source_order_val.split(",")
543 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700544 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700545
546 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700547 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700548 raise ExternalError(
549 "Invalid ro.product.property_source_order '{}'".format(source_order))
550
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000551 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700552 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000553 "ro.product", "ro.product.{}".format(source_partition), 1)
554 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700555 if prop_val:
556 return prop_val
557
558 raise ExternalError("couldn't resolve {}".format(prop))
559
Steven Laver8e2086e2020-04-27 16:26:31 -0700560 def _GetRoProductPropsDefaultSourceOrder(self):
561 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
562 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000563 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700564 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000565 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700566 if android_version == "10":
567 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
568 # NOTE: float() conversion of android_version will have rounding error.
569 # We are checking for "9" or less, and using "< 10" is well outside of
570 # possible floating point rounding.
571 try:
572 android_version_val = float(android_version)
573 except ValueError:
574 android_version_val = 0
575 if android_version_val < 10:
576 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
577 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
578
Tianjieb37c5be2020-10-15 21:27:10 -0700579 def _GetPlatformVersion(self):
580 version_sdk = self.GetBuildProp("ro.build.version.sdk")
581 # init code switches to version_release_or_codename (see b/158483506). After
582 # API finalization, release_or_codename will be the same as release. This
583 # is the best effort to support pre-S dev stage builds.
584 if int(version_sdk) >= 30:
585 try:
586 return self.GetBuildProp("ro.build.version.release_or_codename")
587 except ExternalError:
588 logger.warning('Failed to find ro.build.version.release_or_codename')
589
590 return self.GetBuildProp("ro.build.version.release")
591
Tianjiefdda51d2021-05-05 14:46:35 -0700592 def _GetBuildId(self):
593 build_id = self._GetRawBuildProp("ro.build.id", None)
594 if build_id:
595 return build_id
596
597 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
598 if not legacy_build_id:
599 raise ExternalError("Couldn't find build id in property file")
600
601 if self.use_legacy_id:
602 return legacy_build_id
603
604 # Append the top 8 chars of vbmeta digest to the existing build id. The
605 # logic needs to match the one in init, so that OTA can deliver correctly.
606 avb_enable = self.info_dict.get("avb_enable") == "true"
607 if not avb_enable:
608 raise ExternalError("AVB isn't enabled when using legacy build id")
609
610 vbmeta_digest = self.info_dict.get("vbmeta_digest")
611 if not vbmeta_digest:
612 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
613 " id")
614 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
615 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
616
617 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
618 return legacy_build_id + '.' + digest_prefix
619
Tianjieb37c5be2020-10-15 21:27:10 -0700620 def _GetPartitionPlatformVersion(self, partition):
621 try:
622 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
623 partition)
624 except ExternalError:
625 return self.GetPartitionBuildProp("ro.build.version.release",
626 partition)
627
Tao Bao1c320f82019-10-04 23:25:12 -0700628 def GetOemProperty(self, key):
629 if self.oem_props is not None and key in self.oem_props:
630 return self.oem_dicts[0][key]
631 return self.GetBuildProp(key)
632
Daniel Normand5fe8622020-01-08 17:01:11 -0800633 def GetPartitionFingerprint(self, partition):
634 return self._partition_fingerprints.get(partition, None)
635
636 def CalculatePartitionFingerprint(self, partition):
637 try:
638 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
639 except ExternalError:
640 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
641 self.GetPartitionBuildProp("ro.product.brand", partition),
642 self.GetPartitionBuildProp("ro.product.name", partition),
643 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700644 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800645 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400646 self.GetPartitionBuildProp(
647 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800648 self.GetPartitionBuildProp("ro.build.type", partition),
649 self.GetPartitionBuildProp("ro.build.tags", partition))
650
Tao Bao1c320f82019-10-04 23:25:12 -0700651 def CalculateFingerprint(self):
652 if self.oem_props is None:
653 try:
654 return self.GetBuildProp("ro.build.fingerprint")
655 except ExternalError:
656 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
657 self.GetBuildProp("ro.product.brand"),
658 self.GetBuildProp("ro.product.name"),
659 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700660 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700661 self.GetBuildProp("ro.build.id"),
662 self.GetBuildProp("ro.build.version.incremental"),
663 self.GetBuildProp("ro.build.type"),
664 self.GetBuildProp("ro.build.tags"))
665 return "%s/%s/%s:%s" % (
666 self.GetOemProperty("ro.product.brand"),
667 self.GetOemProperty("ro.product.name"),
668 self.GetOemProperty("ro.product.device"),
669 self.GetBuildProp("ro.build.thumbprint"))
670
671 def WriteMountOemScript(self, script):
672 assert self.oem_props is not None
673 recovery_mount_options = self.info_dict.get("recovery_mount_options")
674 script.Mount("/oem", recovery_mount_options)
675
676 def WriteDeviceAssertions(self, script, oem_no_mount):
677 # Read the property directly if not using OEM properties.
678 if not self.oem_props:
679 script.AssertDevice(self.device)
680 return
681
682 # Otherwise assert OEM properties.
683 if not self.oem_dicts:
684 raise ExternalError(
685 "No OEM file provided to answer expected assertions")
686
687 for prop in self.oem_props.split():
688 values = []
689 for oem_dict in self.oem_dicts:
690 if prop in oem_dict:
691 values.append(oem_dict[prop])
692 if not values:
693 raise ExternalError(
694 "The OEM file is missing the property %s" % (prop,))
695 script.AssertOemProperty(prop, values, oem_no_mount)
696
697
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000698def ReadFromInputFile(input_file, fn):
699 """Reads the contents of fn from input zipfile or directory."""
700 if isinstance(input_file, zipfile.ZipFile):
701 return input_file.read(fn).decode()
702 else:
703 path = os.path.join(input_file, *fn.split("/"))
704 try:
705 with open(path) as f:
706 return f.read()
707 except IOError as e:
708 if e.errno == errno.ENOENT:
709 raise KeyError(fn)
710
711
Yifan Hong10482a22021-01-07 14:38:41 -0800712def ExtractFromInputFile(input_file, fn):
713 """Extracts the contents of fn from input zipfile or directory into a file."""
714 if isinstance(input_file, zipfile.ZipFile):
715 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500716 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800717 f.write(input_file.read(fn))
718 return tmp_file
719 else:
720 file = os.path.join(input_file, *fn.split("/"))
721 if not os.path.exists(file):
722 raise KeyError(fn)
723 return file
724
Kelvin Zhang563750f2021-04-28 12:46:17 -0400725
jiajia tangf3f842b2021-03-17 21:49:44 +0800726class RamdiskFormat(object):
727 LZ4 = 1
728 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800729
Kelvin Zhang563750f2021-04-28 12:46:17 -0400730
TJ Rhoades6f488e92022-05-01 22:16:22 -0700731def GetRamdiskFormat(info_dict):
jiajia tang836f76b2021-04-02 14:48:26 +0800732 if info_dict.get('lz4_ramdisks') == 'true':
733 ramdisk_format = RamdiskFormat.LZ4
734 else:
735 ramdisk_format = RamdiskFormat.GZ
736 return ramdisk_format
737
Kelvin Zhang563750f2021-04-28 12:46:17 -0400738
Tao Bao410ad8b2018-08-24 12:08:38 -0700739def LoadInfoDict(input_file, repacking=False):
740 """Loads the key/value pairs from the given input target_files.
741
Tianjiea85bdf02020-07-29 11:56:19 -0700742 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700743 checks and returns the parsed key/value pairs for to the given build. It's
744 usually called early when working on input target_files files, e.g. when
745 generating OTAs, or signing builds. Note that the function may be called
746 against an old target_files file (i.e. from past dessert releases). So the
747 property parsing needs to be backward compatible.
748
749 In a `META/misc_info.txt`, a few properties are stored as links to the files
750 in the PRODUCT_OUT directory. It works fine with the build system. However,
751 they are no longer available when (re)generating images from target_files zip.
752 When `repacking` is True, redirect these properties to the actual files in the
753 unzipped directory.
754
755 Args:
756 input_file: The input target_files file, which could be an open
757 zipfile.ZipFile instance, or a str for the dir that contains the files
758 unzipped from a target_files file.
759 repacking: Whether it's trying repack an target_files file after loading the
760 info dict (default: False). If so, it will rewrite a few loaded
761 properties (e.g. selinux_fc, root_dir) to point to the actual files in
762 target_files file. When doing repacking, `input_file` must be a dir.
763
764 Returns:
765 A dict that contains the parsed key/value pairs.
766
767 Raises:
768 AssertionError: On invalid input arguments.
769 ValueError: On malformed input values.
770 """
771 if repacking:
772 assert isinstance(input_file, str), \
773 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700774
Doug Zongkerc9253822014-02-04 12:17:58 -0800775 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000776 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800777
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700778 try:
Michael Runge6e836112014-04-15 17:40:21 -0700779 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700780 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700781 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700782
Tao Bao410ad8b2018-08-24 12:08:38 -0700783 if "recovery_api_version" not in d:
784 raise ValueError("Failed to find 'recovery_api_version'")
785 if "fstab_version" not in d:
786 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800787
Tao Bao410ad8b2018-08-24 12:08:38 -0700788 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700789 # "selinux_fc" properties should point to the file_contexts files
790 # (file_contexts.bin) under META/.
791 for key in d:
792 if key.endswith("selinux_fc"):
793 fc_basename = os.path.basename(d[key])
794 fc_config = os.path.join(input_file, "META", fc_basename)
795 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700796
Daniel Norman72c626f2019-05-13 15:58:14 -0700797 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700798
Tom Cherryd14b8952018-08-09 14:26:00 -0700799 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700800 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700801 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700802 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700803
David Anderson0ec64ac2019-12-06 12:21:18 -0800804 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700805 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000806 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800807 key_name = part_name + "_base_fs_file"
808 if key_name not in d:
809 continue
810 basename = os.path.basename(d[key_name])
811 base_fs_file = os.path.join(input_file, "META", basename)
812 if os.path.exists(base_fs_file):
813 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700814 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700815 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800816 "Failed to find %s base fs file: %s", part_name, base_fs_file)
817 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700818
Doug Zongker37974732010-09-16 17:44:38 -0700819 def makeint(key):
820 if key in d:
821 d[key] = int(d[key], 0)
822
823 makeint("recovery_api_version")
824 makeint("blocksize")
825 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700826 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700827 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700828 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700829 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800830 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700831
Steve Muckle903a1ca2020-05-07 17:32:10 -0700832 boot_images = "boot.img"
833 if "boot_images" in d:
834 boot_images = d["boot_images"]
835 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400836 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700837
Tao Bao765668f2019-10-04 22:03:00 -0700838 # Load recovery fstab if applicable.
839 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
TJ Rhoades6f488e92022-05-01 22:16:22 -0700840 ramdisk_format = GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800841
Tianjie Xu861f4132018-09-12 11:49:33 -0700842 # Tries to load the build props for all partitions with care_map, including
843 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800844 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800845 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000846 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800847 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700848 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800849
Tao Bao3ed35d32019-10-07 20:48:48 -0700850 # Set up the salt (based on fingerprint) that will be used when adding AVB
851 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800852 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700853 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800854 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800855 fingerprint = build_info.GetPartitionFingerprint(partition)
856 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400857 d["avb_{}_salt".format(partition)] = sha256(
858 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700859
Yong Ma253b1062022-08-18 09:53:27 +0000860 # Set up the salt for partitions without build.prop
861 if build_info.fingerprint:
862 d["avb_salt"] = sha256(build_info.fingerprint.encode()).hexdigest()
863
Tianjiefdda51d2021-05-05 14:46:35 -0700864 # Set the vbmeta digest if exists
865 try:
866 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
867 except KeyError:
868 pass
869
Kelvin Zhang39aea442020-08-17 11:04:25 -0400870 try:
871 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
872 except KeyError:
873 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700874 return d
875
Tao Baod1de6f32017-03-01 16:38:48 -0800876
Daniel Norman4cc9df62019-07-18 10:11:07 -0700877def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900878 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700879 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900880
Daniel Norman4cc9df62019-07-18 10:11:07 -0700881
882def LoadDictionaryFromFile(file_path):
883 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900884 return LoadDictionaryFromLines(lines)
885
886
Michael Runge6e836112014-04-15 17:40:21 -0700887def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700888 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700889 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700890 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700891 if not line or line.startswith("#"):
892 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700893 if "=" in line:
894 name, value = line.split("=", 1)
895 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700896 return d
897
Tao Baod1de6f32017-03-01 16:38:48 -0800898
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000899class PartitionBuildProps(object):
900 """The class holds the build prop of a particular partition.
901
902 This class loads the build.prop and holds the build properties for a given
903 partition. It also partially recognizes the 'import' statement in the
904 build.prop; and calculates alternative values of some specific build
905 properties during runtime.
906
907 Attributes:
908 input_file: a zipped target-file or an unzipped target-file directory.
909 partition: name of the partition.
910 props_allow_override: a list of build properties to search for the
911 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000912 build_props: a dict of build properties for the given partition.
913 prop_overrides: a set of props that are overridden by import.
914 placeholder_values: A dict of runtime variables' values to replace the
915 placeholders in the build.prop file. We expect exactly one value for
916 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800917 ramdisk_format: If name is "boot", the format of ramdisk inside the
918 boot image. Otherwise, its value is ignored.
919 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000920 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400921
Tianjie Xu9afb2212020-05-10 21:48:15 +0000922 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000923 self.input_file = input_file
924 self.partition = name
925 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000926 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000927 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000928 self.prop_overrides = set()
929 self.placeholder_values = {}
930 if placeholder_values:
931 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000932
933 @staticmethod
934 def FromDictionary(name, build_props):
935 """Constructs an instance from a build prop dictionary."""
936
937 props = PartitionBuildProps("unknown", name)
938 props.build_props = build_props.copy()
939 return props
940
941 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800942 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000943 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800944
Devin Mooreafdd7c72021-12-13 22:04:08 +0000945 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400946 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000947 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800948 else:
949 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
950
951 props = PartitionBuildProps(input_file, name, placeholder_values)
952 props._LoadBuildProp(data)
953 return props
954
955 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000956 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800957 """
958 Read build.prop for boot image from input_file.
959 Return empty string if not found.
960 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000961 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800962 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000963 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800964 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000965 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800966 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800967 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800968 if prop_file is None:
969 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500970 with open(prop_file, "r") as f:
971 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800972
973 @staticmethod
974 def _ReadPartitionPropFile(input_file, name):
975 """
976 Read build.prop for name from input_file.
977 Return empty string if not found.
978 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000979 data = ''
980 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
981 '{}/build.prop'.format(name.upper())]:
982 try:
983 data = ReadFromInputFile(input_file, prop_file)
984 break
985 except KeyError:
986 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -0800987 if data == '':
988 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -0800989 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000990
Yifan Hong125d0b62020-09-24 17:07:03 -0700991 @staticmethod
992 def FromBuildPropFile(name, build_prop_file):
993 """Constructs an instance from a build prop file."""
994
995 props = PartitionBuildProps("unknown", name)
996 with open(build_prop_file) as f:
997 props._LoadBuildProp(f.read())
998 return props
999
Tianjie Xu9afb2212020-05-10 21:48:15 +00001000 def _LoadBuildProp(self, data):
1001 for line in data.split('\n'):
1002 line = line.strip()
1003 if not line or line.startswith("#"):
1004 continue
1005 if line.startswith("import"):
1006 overrides = self._ImportParser(line)
1007 duplicates = self.prop_overrides.intersection(overrides.keys())
1008 if duplicates:
1009 raise ValueError('prop {} is overridden multiple times'.format(
1010 ','.join(duplicates)))
1011 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1012 self.build_props.update(overrides)
1013 elif "=" in line:
1014 name, value = line.split("=", 1)
1015 if name in self.prop_overrides:
1016 raise ValueError('prop {} is set again after overridden by import '
1017 'statement'.format(name))
1018 self.build_props[name] = value
1019
1020 def _ImportParser(self, line):
1021 """Parses the build prop in a given import statement."""
1022
1023 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001024 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001025 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001026
1027 if len(tokens) == 3:
1028 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1029 return {}
1030
Tianjie Xu9afb2212020-05-10 21:48:15 +00001031 import_path = tokens[1]
1032 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001033 logger.warn('Unrecognized import path {}'.format(line))
1034 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001035
1036 # We only recognize a subset of import statement that the init process
1037 # supports. And we can loose the restriction based on how the dynamic
1038 # fingerprint is used in practice. The placeholder format should be
1039 # ${placeholder}, and its value should be provided by the caller through
1040 # the placeholder_values.
1041 for prop, value in self.placeholder_values.items():
1042 prop_place_holder = '${{{}}}'.format(prop)
1043 if prop_place_holder in import_path:
1044 import_path = import_path.replace(prop_place_holder, value)
1045 if '$' in import_path:
1046 logger.info('Unresolved place holder in import path %s', import_path)
1047 return {}
1048
1049 import_path = import_path.replace('/{}'.format(self.partition),
1050 self.partition.upper())
1051 logger.info('Parsing build props override from %s', import_path)
1052
1053 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1054 d = LoadDictionaryFromLines(lines)
1055 return {key: val for key, val in d.items()
1056 if key in self.props_allow_override}
1057
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001058 def GetProp(self, prop):
1059 return self.build_props.get(prop)
1060
1061
Tianjie Xucfa86222016-03-07 16:31:19 -08001062def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1063 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001064 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001065 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001066 self.mount_point = mount_point
1067 self.fs_type = fs_type
1068 self.device = device
1069 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001070 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001071 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001072
1073 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001074 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001075 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001076 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001077 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001078
Tao Baod1de6f32017-03-01 16:38:48 -08001079 assert fstab_version == 2
1080
1081 d = {}
1082 for line in data.split("\n"):
1083 line = line.strip()
1084 if not line or line.startswith("#"):
1085 continue
1086
1087 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1088 pieces = line.split()
1089 if len(pieces) != 5:
1090 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1091
1092 # Ignore entries that are managed by vold.
1093 options = pieces[4]
1094 if "voldmanaged=" in options:
1095 continue
1096
1097 # It's a good line, parse it.
1098 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001099 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001100 options = options.split(",")
1101 for i in options:
1102 if i.startswith("length="):
1103 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001104 elif i == "slotselect":
1105 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001106 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001107 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001108 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001109
Tao Baod1de6f32017-03-01 16:38:48 -08001110 mount_flags = pieces[3]
1111 # Honor the SELinux context if present.
1112 context = None
1113 for i in mount_flags.split(","):
1114 if i.startswith("context="):
1115 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001116
Tao Baod1de6f32017-03-01 16:38:48 -08001117 mount_point = pieces[1]
1118 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001119 device=pieces[0], length=length, context=context,
1120 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001121
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001122 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001123 # system. Other areas assume system is always at "/system" so point /system
1124 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001125 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001126 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001127 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001128 return d
1129
1130
Tao Bao765668f2019-10-04 22:03:00 -07001131def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1132 """Finds the path to recovery fstab and loads its contents."""
1133 # recovery fstab is only meaningful when installing an update via recovery
1134 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001135 if info_dict.get('ab_update') == 'true' and \
1136 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001137 return None
1138
1139 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1140 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1141 # cases, since it may load the info_dict from an old build (e.g. when
1142 # generating incremental OTAs from that build).
1143 system_root_image = info_dict.get('system_root_image') == 'true'
1144 if info_dict.get('no_recovery') != 'true':
1145 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1146 if isinstance(input_file, zipfile.ZipFile):
1147 if recovery_fstab_path not in input_file.namelist():
1148 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1149 else:
1150 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1151 if not os.path.exists(path):
1152 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1153 return LoadRecoveryFSTab(
1154 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1155 system_root_image)
1156
1157 if info_dict.get('recovery_as_boot') == 'true':
1158 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1159 if isinstance(input_file, zipfile.ZipFile):
1160 if recovery_fstab_path not in input_file.namelist():
1161 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1162 else:
1163 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1164 if not os.path.exists(path):
1165 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1166 return LoadRecoveryFSTab(
1167 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1168 system_root_image)
1169
1170 return None
1171
1172
Doug Zongker37974732010-09-16 17:44:38 -07001173def DumpInfoDict(d):
1174 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001175 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001176
Dan Albert8b72aef2015-03-23 19:13:21 -07001177
Daniel Norman55417142019-11-25 16:04:36 -08001178def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001179 """Merges dynamic partition info variables.
1180
1181 Args:
1182 framework_dict: The dictionary of dynamic partition info variables from the
1183 partial framework target files.
1184 vendor_dict: The dictionary of dynamic partition info variables from the
1185 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001186
1187 Returns:
1188 The merged dynamic partition info dictionary.
1189 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001190
1191 def uniq_concat(a, b):
jiajia tange5ddfcd2022-06-21 10:36:12 +08001192 combined = set(a.split())
1193 combined.update(set(b.split()))
Daniel Normanb0c75912020-09-24 14:30:21 -07001194 combined = [item.strip() for item in combined if item.strip()]
1195 return " ".join(sorted(combined))
1196
1197 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhangf294c872022-10-06 14:21:36 -07001198 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001199 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1200
1201 merged_dict = {"use_dynamic_partitions": "true"}
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001202 # For keys-value pairs that are the same, copy to merged dict
1203 for key in vendor_dict.keys():
1204 if key in framework_dict and framework_dict[key] == vendor_dict[key]:
1205 merged_dict[key] = vendor_dict[key]
Daniel Normanb0c75912020-09-24 14:30:21 -07001206
1207 merged_dict["dynamic_partition_list"] = uniq_concat(
1208 framework_dict.get("dynamic_partition_list", ""),
1209 vendor_dict.get("dynamic_partition_list", ""))
1210
1211 # Super block devices are defined by the vendor dict.
1212 if "super_block_devices" in vendor_dict:
1213 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001214 for block_device in merged_dict["super_block_devices"].split():
Daniel Normanb0c75912020-09-24 14:30:21 -07001215 key = "super_%s_device_size" % block_device
1216 if key not in vendor_dict:
1217 raise ValueError("Vendor dict does not contain required key %s." % key)
1218 merged_dict[key] = vendor_dict[key]
1219
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001220 # Partition groups and group sizes are defined by the vendor dict because
1221 # these values may vary for each board that uses a shared system image.
1222 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001223 for partition_group in merged_dict["super_partition_groups"].split():
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001224 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001225 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001226 if key not in vendor_dict:
1227 raise ValueError("Vendor dict does not contain required key %s." % key)
1228 merged_dict[key] = vendor_dict[key]
1229
1230 # Set the partition group's partition list using a concatenation of the
1231 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001232 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001233 merged_dict[key] = uniq_concat(
1234 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301235
Daniel Normanb0c75912020-09-24 14:30:21 -07001236 # Various other flags should be copied from the vendor dict, if defined.
1237 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1238 "super_metadata_device", "super_partition_error_limit",
1239 "super_partition_size"):
1240 if key in vendor_dict.keys():
1241 merged_dict[key] = vendor_dict[key]
1242
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001243 return merged_dict
1244
1245
Daniel Norman21c34f72020-11-11 17:25:50 -08001246def PartitionMapFromTargetFiles(target_files_dir):
1247 """Builds a map from partition -> path within an extracted target files directory."""
1248 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1249 possible_subdirs = {
1250 "system": ["SYSTEM"],
1251 "vendor": ["VENDOR", "SYSTEM/vendor"],
1252 "product": ["PRODUCT", "SYSTEM/product"],
1253 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1254 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1255 "vendor_dlkm": [
1256 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1257 ],
1258 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001259 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001260 }
1261 partition_map = {}
1262 for partition, subdirs in possible_subdirs.items():
1263 for subdir in subdirs:
1264 if os.path.exists(os.path.join(target_files_dir, subdir)):
1265 partition_map[partition] = subdir
1266 break
1267 return partition_map
1268
1269
Daniel Normand3351562020-10-29 12:33:11 -07001270def SharedUidPartitionViolations(uid_dict, partition_groups):
1271 """Checks for APK sharedUserIds that cross partition group boundaries.
1272
1273 This uses a single or merged build's shareduid_violation_modules.json
1274 output file, as generated by find_shareduid_violation.py or
1275 core/tasks/find-shareduid-violation.mk.
1276
1277 An error is defined as a sharedUserId that is found in a set of partitions
1278 that span more than one partition group.
1279
1280 Args:
1281 uid_dict: A dictionary created by using the standard json module to read a
1282 complete shareduid_violation_modules.json file.
1283 partition_groups: A list of groups, where each group is a list of
1284 partitions.
1285
1286 Returns:
1287 A list of error messages.
1288 """
1289 errors = []
1290 for uid, partitions in uid_dict.items():
1291 found_in_groups = [
1292 group for group in partition_groups
1293 if set(partitions.keys()) & set(group)
1294 ]
1295 if len(found_in_groups) > 1:
1296 errors.append(
1297 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1298 % (uid, ",".join(sorted(partitions.keys()))))
1299 return errors
1300
1301
Daniel Norman21c34f72020-11-11 17:25:50 -08001302def RunHostInitVerifier(product_out, partition_map):
1303 """Runs host_init_verifier on the init rc files within partitions.
1304
1305 host_init_verifier searches the etc/init path within each partition.
1306
1307 Args:
1308 product_out: PRODUCT_OUT directory, containing partition directories.
1309 partition_map: A map of partition name -> relative path within product_out.
1310 """
1311 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1312 cmd = ["host_init_verifier"]
1313 for partition, path in partition_map.items():
1314 if partition not in allowed_partitions:
1315 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1316 partition)
1317 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1318 # Add --property-contexts if the file exists on the partition.
1319 property_contexts = "%s_property_contexts" % (
1320 "plat" if partition == "system" else partition)
1321 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1322 property_contexts)
1323 if os.path.exists(property_contexts_path):
1324 cmd.append("--property-contexts=%s" % property_contexts_path)
1325 # Add the passwd file if the file exists on the partition.
1326 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1327 if os.path.exists(passwd_path):
1328 cmd.extend(["-p", passwd_path])
1329 return RunAndCheckOutput(cmd)
1330
1331
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001332def AppendAVBSigningArgs(cmd, partition):
1333 """Append signing arguments for avbtool."""
1334 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1335 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001336 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1337 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1338 if os.path.exists(new_key_path):
1339 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001340 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1341 if key_path and algorithm:
1342 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001343 avb_salt = OPTIONS.info_dict.get("avb_salt")
1344 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001345 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001346 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001347
1348
Tao Bao765668f2019-10-04 22:03:00 -07001349def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001350 """Returns the VBMeta arguments for partition.
1351
1352 It sets up the VBMeta argument by including the partition descriptor from the
1353 given 'image', or by configuring the partition as a chained partition.
1354
1355 Args:
1356 partition: The name of the partition (e.g. "system").
1357 image: The path to the partition image.
1358 info_dict: A dict returned by common.LoadInfoDict(). Will use
1359 OPTIONS.info_dict if None has been given.
1360
1361 Returns:
1362 A list of VBMeta arguments.
1363 """
1364 if info_dict is None:
1365 info_dict = OPTIONS.info_dict
1366
1367 # Check if chain partition is used.
1368 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001369 if not key_path:
1370 return ["--include_descriptors_from_image", image]
1371
1372 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1373 # into vbmeta.img. The recovery image will be configured on an independent
1374 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1375 # See details at
1376 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001377 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001378 return []
1379
1380 # Otherwise chain the partition into vbmeta.
1381 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1382 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001383
1384
Tao Bao02a08592018-07-22 12:40:45 -07001385def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1386 """Constructs and returns the arg to build or verify a chained partition.
1387
1388 Args:
1389 partition: The partition name.
1390 info_dict: The info dict to look up the key info and rollback index
1391 location.
1392 key: The key to be used for building or verifying the partition. Defaults to
1393 the key listed in info_dict.
1394
1395 Returns:
1396 A string of form "partition:rollback_index_location:key" that can be used to
1397 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001398 """
1399 if key is None:
1400 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001401 if key and not os.path.exists(key) and OPTIONS.search_path:
1402 new_key_path = os.path.join(OPTIONS.search_path, key)
1403 if os.path.exists(new_key_path):
1404 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001405 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001406 rollback_index_location = info_dict[
1407 "avb_" + partition + "_rollback_index_location"]
1408 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1409
1410
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001411def _HasGkiCertificationArgs():
1412 return ("gki_signing_key_path" in OPTIONS.info_dict and
1413 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001414
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001415
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001416def _GenerateGkiCertificate(image, image_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001417 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001418 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001419
1420 if not os.path.exists(key_path) and OPTIONS.search_path:
1421 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1422 if os.path.exists(new_key_path):
1423 key_path = new_key_path
1424
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001425 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001426 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001427 raise ExternalError(
1428 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001429
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001430 output_certificate = tempfile.NamedTemporaryFile()
1431 cmd = [
1432 "generate_gki_certificate",
1433 "--name", image_name,
1434 "--algorithm", algorithm,
1435 "--key", key_path,
1436 "--output", output_certificate.name,
1437 image,
1438 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001439
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001440 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1441 signature_args = signature_args.strip()
1442 if signature_args:
1443 cmd.extend(["--additional_avb_args", signature_args])
1444
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001445 args = OPTIONS.info_dict.get("avb_boot_add_hash_footer_args", "")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001446 args = args.strip()
1447 if args:
1448 cmd.extend(["--additional_avb_args", args])
1449
1450 RunAndCheckOutput(cmd)
1451
1452 output_certificate.seek(os.SEEK_SET, 0)
1453 data = output_certificate.read()
1454 output_certificate.close()
1455 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001456
1457
Daniel Norman276f0622019-07-26 14:13:51 -07001458def BuildVBMeta(image_path, partitions, name, needed_partitions):
1459 """Creates a VBMeta image.
1460
1461 It generates the requested VBMeta image. The requested image could be for
1462 top-level or chained VBMeta image, which is determined based on the name.
1463
1464 Args:
1465 image_path: The output path for the new VBMeta image.
1466 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001467 values. Only valid partition names are accepted, as partitions listed
1468 in common.AVB_PARTITIONS and custom partitions listed in
1469 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001470 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1471 needed_partitions: Partitions whose descriptors should be included into the
1472 generated VBMeta image.
1473
1474 Raises:
1475 AssertionError: On invalid input args.
1476 """
1477 avbtool = OPTIONS.info_dict["avb_avbtool"]
1478 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1479 AppendAVBSigningArgs(cmd, name)
1480
Hongguang Chenf23364d2020-04-27 18:36:36 -07001481 custom_partitions = OPTIONS.info_dict.get(
1482 "avb_custom_images_partition_list", "").strip().split()
1483
Daniel Norman276f0622019-07-26 14:13:51 -07001484 for partition, path in partitions.items():
1485 if partition not in needed_partitions:
1486 continue
1487 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001488 partition in AVB_VBMETA_PARTITIONS or
1489 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001490 'Unknown partition: {}'.format(partition)
1491 assert os.path.exists(path), \
1492 'Failed to find {} for {}'.format(path, partition)
1493 cmd.extend(GetAvbPartitionArg(partition, path))
1494
1495 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1496 if args and args.strip():
1497 split_args = shlex.split(args)
1498 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001499 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001500 # as a path relative to source tree, which may not be available at the
1501 # same location when running this script (we have the input target_files
1502 # zip only). For such cases, we additionally scan other locations (e.g.
1503 # IMAGES/, RADIO/, etc) before bailing out.
1504 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001505 chained_image = split_args[index + 1]
1506 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001507 continue
1508 found = False
1509 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1510 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001511 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001512 if os.path.exists(alt_path):
1513 split_args[index + 1] = alt_path
1514 found = True
1515 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001516 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001517 cmd.extend(split_args)
1518
1519 RunAndCheckOutput(cmd)
1520
1521
jiajia tang836f76b2021-04-02 14:48:26 +08001522def _MakeRamdisk(sourcedir, fs_config_file=None,
1523 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001524 ramdisk_img = tempfile.NamedTemporaryFile()
1525
1526 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1527 cmd = ["mkbootfs", "-f", fs_config_file,
1528 os.path.join(sourcedir, "RAMDISK")]
1529 else:
1530 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1531 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001532 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001533 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001534 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001535 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001536 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001537 else:
1538 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001539
1540 p2.wait()
1541 p1.wait()
1542 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001543 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001544
1545 return ramdisk_img
1546
1547
Steve Muckle9793cf62020-04-08 18:27:00 -07001548def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001549 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001550 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001551
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001552 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001553 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1554 we are building a two-step special image (i.e. building a recovery image to
1555 be loaded into /boot in two-step OTAs).
1556
1557 Return the image data, or None if sourcedir does not appear to contains files
1558 for building the requested image.
1559 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001560
Yifan Hong63c5ca12020-10-08 11:54:02 -07001561 if info_dict is None:
1562 info_dict = OPTIONS.info_dict
1563
Steve Muckle9793cf62020-04-08 18:27:00 -07001564 # "boot" or "recovery", without extension.
1565 partition_name = os.path.basename(sourcedir).lower()
1566
Yifan Hong63c5ca12020-10-08 11:54:02 -07001567 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001568 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001569 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1570 logger.info("Excluded kernel binary from recovery image.")
1571 else:
1572 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001573 elif partition_name == "init_boot":
1574 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001575 else:
1576 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001577 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001578 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001579 return None
1580
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001581 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1582
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001583 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001584 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001585
Doug Zongkereef39442009-04-02 12:14:19 -07001586 img = tempfile.NamedTemporaryFile()
1587
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001588 if has_ramdisk:
TJ Rhoades6f488e92022-05-01 22:16:22 -07001589 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001590 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1591 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001592
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001593 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1594 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1595
Yifan Hong63c5ca12020-10-08 11:54:02 -07001596 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001597 if kernel_path is not None:
1598 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001599
Benoit Fradina45a8682014-07-14 21:00:43 +02001600 fn = os.path.join(sourcedir, "second")
1601 if os.access(fn, os.F_OK):
1602 cmd.append("--second")
1603 cmd.append(fn)
1604
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001605 fn = os.path.join(sourcedir, "dtb")
1606 if os.access(fn, os.F_OK):
1607 cmd.append("--dtb")
1608 cmd.append(fn)
1609
Doug Zongker171f1cd2009-06-15 22:36:37 -07001610 fn = os.path.join(sourcedir, "cmdline")
1611 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001612 cmd.append("--cmdline")
1613 cmd.append(open(fn).read().rstrip("\n"))
1614
1615 fn = os.path.join(sourcedir, "base")
1616 if os.access(fn, os.F_OK):
1617 cmd.append("--base")
1618 cmd.append(open(fn).read().rstrip("\n"))
1619
Ying Wang4de6b5b2010-08-25 14:29:34 -07001620 fn = os.path.join(sourcedir, "pagesize")
1621 if os.access(fn, os.F_OK):
1622 cmd.append("--pagesize")
1623 cmd.append(open(fn).read().rstrip("\n"))
1624
Steve Mucklef84668e2020-03-16 19:13:46 -07001625 if partition_name == "recovery":
1626 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301627 if not args:
1628 # Fall back to "mkbootimg_args" for recovery image
1629 # in case "recovery_mkbootimg_args" is not set.
1630 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001631 elif partition_name == "init_boot":
1632 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001633 else:
1634 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001635 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001636 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001637
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001638 args = info_dict.get("mkbootimg_version_args")
1639 if args and args.strip():
1640 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001641
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001642 if has_ramdisk:
1643 cmd.extend(["--ramdisk", ramdisk_img.name])
1644
Tao Baod95e9fd2015-03-29 23:07:41 -07001645 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001646 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001647 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001648 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001649 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001650 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001651
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001652 if partition_name == "recovery":
1653 if info_dict.get("include_recovery_dtbo") == "true":
1654 fn = os.path.join(sourcedir, "recovery_dtbo")
1655 cmd.extend(["--recovery_dtbo", fn])
1656 if info_dict.get("include_recovery_acpio") == "true":
1657 fn = os.path.join(sourcedir, "recovery_acpio")
1658 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001659
Tao Bao986ee862018-10-04 15:46:16 -07001660 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001661
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001662 if _HasGkiCertificationArgs():
1663 if not os.path.exists(img.name):
1664 raise ValueError("Cannot find GKI boot.img")
1665 if kernel_path is None or not os.path.exists(kernel_path):
1666 raise ValueError("Cannot find GKI kernel.img")
1667
1668 # Certify GKI images.
1669 boot_signature_bytes = b''
1670 boot_signature_bytes += _GenerateGkiCertificate(img.name, "boot")
1671 boot_signature_bytes += _GenerateGkiCertificate(
1672 kernel_path, "generic_kernel")
1673
1674 BOOT_SIGNATURE_SIZE = 16 * 1024
1675 if len(boot_signature_bytes) > BOOT_SIGNATURE_SIZE:
1676 raise ValueError(
1677 f"GKI boot_signature size must be <= {BOOT_SIGNATURE_SIZE}")
1678 boot_signature_bytes += (
1679 b'\0' * (BOOT_SIGNATURE_SIZE - len(boot_signature_bytes)))
1680 assert len(boot_signature_bytes) == BOOT_SIGNATURE_SIZE
1681
1682 with open(img.name, 'ab') as f:
1683 f.write(boot_signature_bytes)
1684
Tao Baod95e9fd2015-03-29 23:07:41 -07001685 # Sign the image if vboot is non-empty.
hungweichen22e3b012022-08-19 06:35:43 +00001686 if info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001687 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001688 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001689 # We have switched from the prebuilt futility binary to using the tool
1690 # (futility-host) built from the source. Override the setting in the old
1691 # TF.zip.
1692 futility = info_dict["futility"]
1693 if futility.startswith("prebuilts/"):
1694 futility = "futility-host"
1695 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001696 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001697 info_dict["vboot_key"] + ".vbprivk",
1698 info_dict["vboot_subkey"] + ".vbprivk",
1699 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001700 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001701 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001702
Tao Baof3282b42015-04-01 11:21:55 -07001703 # Clean up the temp files.
1704 img_unsigned.close()
1705 img_keyblock.close()
1706
David Zeuthen8fecb282017-12-01 16:24:01 -05001707 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001708 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001709 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001710 if partition_name == "recovery":
1711 part_size = info_dict["recovery_size"]
1712 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001713 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001714 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001715 "--partition_size", str(part_size), "--partition_name",
1716 partition_name]
1717 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001718 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001719 if args and args.strip():
1720 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001721 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001722
1723 img.seek(os.SEEK_SET, 0)
1724 data = img.read()
1725
1726 if has_ramdisk:
1727 ramdisk_img.close()
1728 img.close()
1729
1730 return data
1731
1732
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001733def _SignBootableImage(image_path, prebuilt_name, partition_name,
1734 info_dict=None):
1735 """Performs AVB signing for a prebuilt boot.img.
1736
1737 Args:
1738 image_path: The full path of the image, e.g., /path/to/boot.img.
1739 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001740 boot-5.10.img, recovery.img or init_boot.img.
1741 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001742 info_dict: The information dict read from misc_info.txt.
1743 """
1744 if info_dict is None:
1745 info_dict = OPTIONS.info_dict
1746
1747 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1748 if info_dict.get("avb_enable") == "true":
1749 avbtool = info_dict["avb_avbtool"]
1750 if partition_name == "recovery":
1751 part_size = info_dict["recovery_size"]
1752 else:
1753 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1754
1755 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1756 "--partition_size", str(part_size), "--partition_name",
1757 partition_name]
1758 AppendAVBSigningArgs(cmd, partition_name)
1759 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1760 if args and args.strip():
1761 cmd.extend(shlex.split(args))
1762 RunAndCheckOutput(cmd)
1763
1764
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001765def HasRamdisk(partition_name, info_dict=None):
1766 """Returns true/false to see if a bootable image should have a ramdisk.
1767
1768 Args:
1769 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1770 info_dict: The information dict read from misc_info.txt.
1771 """
1772 if info_dict is None:
1773 info_dict = OPTIONS.info_dict
1774
1775 if partition_name != "boot":
1776 return True # init_boot.img or recovery.img has a ramdisk.
1777
1778 if info_dict.get("recovery_as_boot") == "true":
1779 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1780
Bowgo Tsai85578e02022-04-19 10:50:59 +08001781 if info_dict.get("gki_boot_image_without_ramdisk") == "true":
1782 return False # A GKI boot.img has no ramdisk since Android-13.
1783
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001784 if info_dict.get("system_root_image") == "true":
1785 # The ramdisk content is merged into the system.img, so there is NO
1786 # ramdisk in the boot.img or boot-<kernel version>.img.
1787 return False
1788
1789 if info_dict.get("init_boot") == "true":
1790 # The ramdisk is moved to the init_boot.img, so there is NO
1791 # ramdisk in the boot.img or boot-<kernel version>.img.
1792 return False
1793
1794 return True
1795
1796
Doug Zongkerd5131602012-08-02 14:46:42 -07001797def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001798 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001799 """Return a File object with the desired bootable image.
1800
1801 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1802 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1803 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001804
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001805 if info_dict is None:
1806 info_dict = OPTIONS.info_dict
1807
Doug Zongker55d93282011-01-25 17:03:34 -08001808 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1809 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001810 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001811 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001812
1813 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1814 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001815 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001816 return File.FromLocalFile(name, prebuilt_path)
1817
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001818 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001819 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1820 if os.path.exists(prebuilt_path):
1821 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1822 signed_img = MakeTempFile()
1823 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001824 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1825 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001826
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001827 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001828
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001829 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001830
Doug Zongker6f1d0312014-08-22 08:07:12 -07001831 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001832 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001833 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001834 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001835 if data:
1836 return File(name, data)
1837 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001838
Doug Zongkereef39442009-04-02 12:14:19 -07001839
Lucas Wei03230252022-04-18 16:00:40 +08001840def _BuildVendorBootImage(sourcedir, partition_name, info_dict=None):
Steve Mucklee1b10862019-07-10 10:49:37 -07001841 """Build a vendor boot image from the specified sourcedir.
1842
1843 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1844 turn them into a vendor boot image.
1845
1846 Return the image data, or None if sourcedir does not appear to contains files
1847 for building the requested image.
1848 """
1849
1850 if info_dict is None:
1851 info_dict = OPTIONS.info_dict
1852
1853 img = tempfile.NamedTemporaryFile()
1854
TJ Rhoades6f488e92022-05-01 22:16:22 -07001855 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001856 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001857
1858 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1859 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1860
1861 cmd = [mkbootimg]
1862
1863 fn = os.path.join(sourcedir, "dtb")
1864 if os.access(fn, os.F_OK):
Kelvin Zhangf294c872022-10-06 14:21:36 -07001865 has_vendor_kernel_boot = (info_dict.get(
1866 "vendor_kernel_boot", "").lower() == "true")
Lucas Wei03230252022-04-18 16:00:40 +08001867
1868 # Pack dtb into vendor_kernel_boot if building vendor_kernel_boot.
1869 # Otherwise pack dtb into vendor_boot.
1870 if not has_vendor_kernel_boot or partition_name == "vendor_kernel_boot":
1871 cmd.append("--dtb")
1872 cmd.append(fn)
Steve Mucklee1b10862019-07-10 10:49:37 -07001873
1874 fn = os.path.join(sourcedir, "vendor_cmdline")
1875 if os.access(fn, os.F_OK):
1876 cmd.append("--vendor_cmdline")
1877 cmd.append(open(fn).read().rstrip("\n"))
1878
1879 fn = os.path.join(sourcedir, "base")
1880 if os.access(fn, os.F_OK):
1881 cmd.append("--base")
1882 cmd.append(open(fn).read().rstrip("\n"))
1883
1884 fn = os.path.join(sourcedir, "pagesize")
1885 if os.access(fn, os.F_OK):
1886 cmd.append("--pagesize")
1887 cmd.append(open(fn).read().rstrip("\n"))
1888
1889 args = info_dict.get("mkbootimg_args")
1890 if args and args.strip():
1891 cmd.extend(shlex.split(args))
1892
1893 args = info_dict.get("mkbootimg_version_args")
1894 if args and args.strip():
1895 cmd.extend(shlex.split(args))
1896
1897 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1898 cmd.extend(["--vendor_boot", img.name])
1899
Devin Moore50509012021-01-13 10:45:04 -08001900 fn = os.path.join(sourcedir, "vendor_bootconfig")
1901 if os.access(fn, os.F_OK):
1902 cmd.append("--vendor_bootconfig")
1903 cmd.append(fn)
1904
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001905 ramdisk_fragment_imgs = []
1906 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1907 if os.access(fn, os.F_OK):
1908 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1909 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001910 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1911 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001912 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001913 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1914 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001915 # Use prebuilt image if found, else create ramdisk from supplied files.
1916 if os.access(fn, os.F_OK):
1917 ramdisk_fragment_pathname = fn
1918 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001919 ramdisk_fragment_root = os.path.join(
1920 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001921 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1922 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001923 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1924 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1925 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1926
Steve Mucklee1b10862019-07-10 10:49:37 -07001927 RunAndCheckOutput(cmd)
1928
1929 # AVB: if enabled, calculate and add hash.
1930 if info_dict.get("avb_enable") == "true":
1931 avbtool = info_dict["avb_avbtool"]
Lucas Wei03230252022-04-18 16:00:40 +08001932 part_size = info_dict[f'{partition_name}_size']
Steve Mucklee1b10862019-07-10 10:49:37 -07001933 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Lucas Wei03230252022-04-18 16:00:40 +08001934 "--partition_size", str(part_size), "--partition_name", partition_name]
1935 AppendAVBSigningArgs(cmd, partition_name)
1936 args = info_dict.get(f'avb_{partition_name}_add_hash_footer_args')
Steve Mucklee1b10862019-07-10 10:49:37 -07001937 if args and args.strip():
1938 cmd.extend(shlex.split(args))
1939 RunAndCheckOutput(cmd)
1940
1941 img.seek(os.SEEK_SET, 0)
1942 data = img.read()
1943
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001944 for f in ramdisk_fragment_imgs:
1945 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001946 ramdisk_img.close()
1947 img.close()
1948
1949 return data
1950
1951
1952def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1953 info_dict=None):
1954 """Return a File object with the desired vendor boot image.
1955
1956 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1957 the source files in 'unpack_dir'/'tree_subdir'."""
1958
1959 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1960 if os.path.exists(prebuilt_path):
1961 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1962 return File.FromLocalFile(name, prebuilt_path)
1963
1964 logger.info("building image from target_files %s...", tree_subdir)
1965
1966 if info_dict is None:
1967 info_dict = OPTIONS.info_dict
1968
Kelvin Zhang0876c412020-06-23 15:06:58 -04001969 data = _BuildVendorBootImage(
Lucas Wei03230252022-04-18 16:00:40 +08001970 os.path.join(unpack_dir, tree_subdir), "vendor_boot", info_dict)
1971 if data:
1972 return File(name, data)
1973 return None
1974
1975
1976def GetVendorKernelBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
Kelvin Zhangf294c872022-10-06 14:21:36 -07001977 info_dict=None):
Lucas Wei03230252022-04-18 16:00:40 +08001978 """Return a File object with the desired vendor kernel boot image.
1979
1980 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1981 the source files in 'unpack_dir'/'tree_subdir'."""
1982
1983 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1984 if os.path.exists(prebuilt_path):
1985 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1986 return File.FromLocalFile(name, prebuilt_path)
1987
1988 logger.info("building image from target_files %s...", tree_subdir)
1989
1990 if info_dict is None:
1991 info_dict = OPTIONS.info_dict
1992
1993 data = _BuildVendorBootImage(
1994 os.path.join(unpack_dir, tree_subdir), "vendor_kernel_boot", info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07001995 if data:
1996 return File(name, data)
1997 return None
1998
1999
Narayan Kamatha07bf042017-08-14 14:49:21 +01002000def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08002001 """Gunzips the given gzip compressed file to a given output file."""
2002 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04002003 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01002004 shutil.copyfileobj(in_file, out_file)
2005
2006
Tao Bao0ff15de2019-03-20 11:26:06 -07002007def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002008 """Unzips the archive to the given directory.
2009
2010 Args:
2011 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002012 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07002013 patterns: Files to unzip from the archive. If omitted, will unzip the entire
2014 archvie. Non-matching patterns will be filtered out. If there's no match
2015 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002016 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002017 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07002018 if patterns is not None:
2019 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04002020 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07002021 names = input_zip.namelist()
2022 filtered = [
2023 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
2024
2025 # There isn't any matching files. Don't unzip anything.
2026 if not filtered:
2027 return
2028 cmd.extend(filtered)
2029
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002030 RunAndCheckOutput(cmd)
2031
2032
Daniel Norman78554ea2021-09-14 10:29:38 -07002033def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002034 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002035
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002036 Args:
2037 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2038 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2039
Daniel Norman78554ea2021-09-14 10:29:38 -07002040 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002041 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002042
Tao Bao1c830bf2017-12-25 10:43:47 -08002043 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002044 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002045 """
Doug Zongkereef39442009-04-02 12:14:19 -07002046
Tao Bao1c830bf2017-12-25 10:43:47 -08002047 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002048 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2049 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002050 UnzipToDir(m.group(1), tmp, patterns)
2051 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002052 filename = m.group(1)
2053 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002054 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002055
Tao Baodba59ee2018-01-09 13:21:02 -08002056 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002057
2058
Yifan Hong8a66a712019-04-04 15:37:57 -07002059def GetUserImage(which, tmpdir, input_zip,
2060 info_dict=None,
2061 allow_shared_blocks=None,
Yifan Hong8a66a712019-04-04 15:37:57 -07002062 reset_file_map=False):
2063 """Returns an Image object suitable for passing to BlockImageDiff.
2064
2065 This function loads the specified image from the given path. If the specified
2066 image is sparse, it also performs additional processing for OTA purpose. For
2067 example, it always adds block 0 to clobbered blocks list. It also detects
2068 files that cannot be reconstructed from the block list, for whom we should
2069 avoid applying imgdiff.
2070
2071 Args:
2072 which: The partition name.
2073 tmpdir: The directory that contains the prebuilt image and block map file.
2074 input_zip: The target-files ZIP archive.
2075 info_dict: The dict to be looked up for relevant info.
2076 allow_shared_blocks: If image is sparse, whether having shared blocks is
2077 allowed. If none, it is looked up from info_dict.
Yifan Hong8a66a712019-04-04 15:37:57 -07002078 reset_file_map: If true and image is sparse, reset file map before returning
2079 the image.
2080 Returns:
2081 A Image object. If it is a sparse image and reset_file_map is False, the
2082 image will have file_map info loaded.
2083 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002084 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002085 info_dict = LoadInfoDict(input_zip)
2086
2087 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002088 if info_dict.get(which + "_disable_sparse"):
2089 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002090
2091 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2092 # shared blocks (i.e. some blocks will show up in multiple files' block
2093 # list). We can only allocate such shared blocks to the first "owner", and
2094 # disable imgdiff for all later occurrences.
2095 if allow_shared_blocks is None:
2096 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2097
2098 if is_sparse:
hungweichencc9c05d2022-08-23 05:45:42 +00002099 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks)
Yifan Hong8a66a712019-04-04 15:37:57 -07002100 if reset_file_map:
2101 img.ResetFileMap()
2102 return img
hungweichencc9c05d2022-08-23 05:45:42 +00002103 return GetNonSparseImage(which, tmpdir)
Yifan Hong8a66a712019-04-04 15:37:57 -07002104
2105
hungweichencc9c05d2022-08-23 05:45:42 +00002106def GetNonSparseImage(which, tmpdir):
Yifan Hong8a66a712019-04-04 15:37:57 -07002107 """Returns a Image object suitable for passing to BlockImageDiff.
2108
2109 This function loads the specified non-sparse image from the given path.
2110
2111 Args:
2112 which: The partition name.
2113 tmpdir: The directory that contains the prebuilt image and block map file.
2114 Returns:
2115 A Image object.
2116 """
2117 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2118 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2119
2120 # The image and map files must have been created prior to calling
2121 # ota_from_target_files.py (since LMP).
2122 assert os.path.exists(path) and os.path.exists(mappath)
2123
hungweichencc9c05d2022-08-23 05:45:42 +00002124 return images.FileImage(path)
Tianjie Xu41976c72019-07-03 13:57:01 -07002125
Yifan Hong8a66a712019-04-04 15:37:57 -07002126
hungweichencc9c05d2022-08-23 05:45:42 +00002127def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks):
Tao Baoc765cca2018-01-31 17:32:40 -08002128 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2129
2130 This function loads the specified sparse image from the given path, and
2131 performs additional processing for OTA purpose. For example, it always adds
2132 block 0 to clobbered blocks list. It also detects files that cannot be
2133 reconstructed from the block list, for whom we should avoid applying imgdiff.
2134
2135 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002136 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002137 tmpdir: The directory that contains the prebuilt image and block map file.
2138 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002139 allow_shared_blocks: Whether having shared blocks is allowed.
Tao Baoc765cca2018-01-31 17:32:40 -08002140 Returns:
2141 A SparseImage object, with file_map info loaded.
2142 """
Tao Baoc765cca2018-01-31 17:32:40 -08002143 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2144 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2145
2146 # The image and map files must have been created prior to calling
2147 # ota_from_target_files.py (since LMP).
2148 assert os.path.exists(path) and os.path.exists(mappath)
2149
2150 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2151 # it to clobbered_blocks so that it will be written to the target
2152 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2153 clobbered_blocks = "0"
2154
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002155 image = sparse_img.SparseImage(
hungweichencc9c05d2022-08-23 05:45:42 +00002156 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks)
Tao Baoc765cca2018-01-31 17:32:40 -08002157
2158 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2159 # if they contain all zeros. We can't reconstruct such a file from its block
2160 # list. Tag such entries accordingly. (Bug: 65213616)
2161 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002162 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002163 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002164 continue
2165
Tom Cherryd14b8952018-08-09 14:26:00 -07002166 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2167 # filename listed in system.map may contain an additional leading slash
2168 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2169 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002170 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002171 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002172 arcname = entry.lstrip('/')
2173 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002174 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002175 else:
2176 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002177
2178 assert arcname in input_zip.namelist(), \
2179 "Failed to find the ZIP entry for {}".format(entry)
2180
Tao Baoc765cca2018-01-31 17:32:40 -08002181 info = input_zip.getinfo(arcname)
2182 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002183
2184 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002185 # image, check the original block list to determine its completeness. Note
2186 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002187 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002188 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002189
Tao Baoc765cca2018-01-31 17:32:40 -08002190 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2191 ranges.extra['incomplete'] = True
2192
2193 return image
2194
2195
Doug Zongkereef39442009-04-02 12:14:19 -07002196def GetKeyPasswords(keylist):
2197 """Given a list of keys, prompt the user to enter passwords for
2198 those which require them. Return a {key: password} dict. password
2199 will be None if the key has no password."""
2200
Doug Zongker8ce7c252009-05-22 13:34:54 -07002201 no_passwords = []
2202 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002203 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002204 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002205
2206 # sorted() can't compare strings to None, so convert Nones to strings
2207 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002208 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002209 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002210 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002211 continue
2212
T.R. Fullhart37e10522013-03-18 10:31:26 -07002213 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002214 "-inform", "DER", "-nocrypt"],
2215 stdin=devnull.fileno(),
2216 stdout=devnull.fileno(),
2217 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002218 p.communicate()
2219 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002220 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002221 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002222 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002223 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2224 "-inform", "DER", "-passin", "pass:"],
2225 stdin=devnull.fileno(),
2226 stdout=devnull.fileno(),
2227 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002228 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002229 if p.returncode == 0:
2230 # Encrypted key with empty string as password.
2231 key_passwords[k] = ''
2232 elif stderr.startswith('Error decrypting key'):
2233 # Definitely encrypted key.
2234 # It would have said "Error reading key" if it didn't parse correctly.
2235 need_passwords.append(k)
2236 else:
2237 # Potentially, a type of key that openssl doesn't understand.
2238 # We'll let the routines in signapk.jar handle it.
2239 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002240 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002241
T.R. Fullhart37e10522013-03-18 10:31:26 -07002242 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002243 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002244 return key_passwords
2245
2246
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002247def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002248 """Gets the minSdkVersion declared in the APK.
2249
Martin Stjernholm58472e82022-01-07 22:08:47 +00002250 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2251 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002252
2253 Args:
2254 apk_name: The APK filename.
2255
2256 Returns:
2257 The parsed SDK version string.
2258
2259 Raises:
2260 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002261 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002262 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002263 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002264 stderr=subprocess.PIPE)
2265 stdoutdata, stderrdata = proc.communicate()
2266 if proc.returncode != 0:
2267 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002268 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2269 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002270
Tao Baof47bf0f2018-03-21 23:28:51 -07002271 for line in stdoutdata.split("\n"):
2272 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002273 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2274 if m:
2275 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002276 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002277
2278
2279def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002280 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002281
Tao Baof47bf0f2018-03-21 23:28:51 -07002282 If minSdkVersion is set to a codename, it is translated to a number using the
2283 provided map.
2284
2285 Args:
2286 apk_name: The APK filename.
2287
2288 Returns:
2289 The parsed SDK version number.
2290
2291 Raises:
2292 ExternalError: On failing to get the min SDK version number.
2293 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002294 version = GetMinSdkVersion(apk_name)
2295 try:
2296 return int(version)
2297 except ValueError:
2298 # Not a decimal number. Codename?
2299 if version in codename_to_api_level_map:
2300 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002301 raise ExternalError(
2302 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2303 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002304
2305
2306def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002307 codename_to_api_level_map=None, whole_file=False,
2308 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002309 """Sign the input_name zip/jar/apk, producing output_name. Use the
2310 given key and password (the latter may be None if the key does not
2311 have a password.
2312
Doug Zongker951495f2009-08-14 12:44:19 -07002313 If whole_file is true, use the "-w" option to SignApk to embed a
2314 signature that covers the whole file in the archive comment of the
2315 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002316
2317 min_api_level is the API Level (int) of the oldest platform this file may end
2318 up on. If not specified for an APK, the API Level is obtained by interpreting
2319 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2320
2321 codename_to_api_level_map is needed to translate the codename which may be
2322 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002323
2324 Caller may optionally specify extra args to be passed to SignApk, which
2325 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002326 """
Tao Bao76def242017-11-21 09:25:31 -08002327 if codename_to_api_level_map is None:
2328 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002329 if extra_signapk_args is None:
2330 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002331
Alex Klyubin9667b182015-12-10 13:38:50 -08002332 java_library_path = os.path.join(
2333 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2334
Tao Baoe95540e2016-11-08 12:08:53 -08002335 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2336 ["-Djava.library.path=" + java_library_path,
2337 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002338 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002339 if whole_file:
2340 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002341
2342 min_sdk_version = min_api_level
2343 if min_sdk_version is None:
2344 if not whole_file:
2345 min_sdk_version = GetMinSdkVersionInt(
2346 input_name, codename_to_api_level_map)
2347 if min_sdk_version is not None:
2348 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2349
T.R. Fullhart37e10522013-03-18 10:31:26 -07002350 cmd.extend([key + OPTIONS.public_key_suffix,
2351 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002352 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002353
Tao Bao73dd4f42018-10-04 16:25:33 -07002354 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002355 if password is not None:
2356 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002357 stdoutdata, _ = proc.communicate(password)
2358 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002359 raise ExternalError(
Kelvin Zhang197772f2022-04-26 15:15:11 -07002360 "Failed to run {}: return code {}:\n{}".format(cmd,
Kelvin Zhangf294c872022-10-06 14:21:36 -07002361 proc.returncode, stdoutdata))
2362
Doug Zongkereef39442009-04-02 12:14:19 -07002363
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002364def SignSePolicy(sepolicy, key, password):
2365 """Sign the sepolicy zip, producing an fsverity .fsv_sig and
2366 an RSA .sig signature files.
2367 """
2368
2369 if OPTIONS.sign_sepolicy_path is None:
Melisa Carranza Zuniga7ef13792022-08-23 19:09:12 +02002370 logger.info("No sign_sepolicy_path specified, %s was not signed", sepolicy)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002371 return False
2372
2373 java_library_path = os.path.join(
2374 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2375
2376 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
Kelvin Zhangf294c872022-10-06 14:21:36 -07002377 ["-Djava.library.path=" + java_library_path,
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002378 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.sign_sepolicy_path)] +
Kelvin Zhangf294c872022-10-06 14:21:36 -07002379 OPTIONS.extra_sign_sepolicy_args)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002380
2381 cmd.extend([key + OPTIONS.public_key_suffix,
2382 key + OPTIONS.private_key_suffix,
Melisa Carranza Zuniga7ef13792022-08-23 19:09:12 +02002383 sepolicy, os.path.dirname(sepolicy)])
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002384
2385 proc = Run(cmd, stdin=subprocess.PIPE)
2386 if password is not None:
2387 password += "\n"
2388 stdoutdata, _ = proc.communicate(password)
2389 if proc.returncode != 0:
2390 raise ExternalError(
2391 "Failed to run sign sepolicy: return code {}:\n{}".format(
2392 proc.returncode, stdoutdata))
2393 return True
Doug Zongkereef39442009-04-02 12:14:19 -07002394
Kelvin Zhangf294c872022-10-06 14:21:36 -07002395
Doug Zongker37974732010-09-16 17:44:38 -07002396def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002397 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002398
Tao Bao9dd909e2017-11-14 11:27:32 -08002399 For non-AVB images, raise exception if the data is too big. Print a warning
2400 if the data is nearing the maximum size.
2401
2402 For AVB images, the actual image size should be identical to the limit.
2403
2404 Args:
2405 data: A string that contains all the data for the partition.
2406 target: The partition name. The ".img" suffix is optional.
2407 info_dict: The dict to be looked up for relevant info.
2408 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002409 if target.endswith(".img"):
2410 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002411 mount_point = "/" + target
2412
Ying Wangf8824af2014-06-03 14:07:27 -07002413 fs_type = None
2414 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002415 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002416 if mount_point == "/userdata":
2417 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002418 p = info_dict["fstab"][mount_point]
2419 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002420 device = p.device
2421 if "/" in device:
2422 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002423 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002424 if not fs_type or not limit:
2425 return
Doug Zongkereef39442009-04-02 12:14:19 -07002426
Andrew Boie0f9aec82012-02-14 09:32:52 -08002427 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002428 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2429 # path.
2430 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2431 if size != limit:
2432 raise ExternalError(
2433 "Mismatching image size for %s: expected %d actual %d" % (
2434 target, limit, size))
2435 else:
2436 pct = float(size) * 100.0 / limit
2437 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2438 if pct >= 99.0:
2439 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002440
2441 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002442 logger.warning("\n WARNING: %s\n", msg)
2443 else:
2444 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002445
2446
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002447def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002448 """Parses the APK certs info from a given target-files zip.
2449
2450 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2451 tuple with the following elements: (1) a dictionary that maps packages to
2452 certs (based on the "certificate" and "private_key" attributes in the file;
2453 (2) a string representing the extension of compressed APKs in the target files
2454 (e.g ".gz", ".bro").
2455
2456 Args:
2457 tf_zip: The input target_files ZipFile (already open).
2458
2459 Returns:
2460 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2461 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2462 no compressed APKs.
2463 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002464 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002465 compressed_extension = None
2466
Tao Bao0f990332017-09-08 19:02:54 -07002467 # META/apkcerts.txt contains the info for _all_ the packages known at build
2468 # time. Filter out the ones that are not installed.
2469 installed_files = set()
2470 for name in tf_zip.namelist():
2471 basename = os.path.basename(name)
2472 if basename:
2473 installed_files.add(basename)
2474
Tao Baoda30cfa2017-12-01 16:19:46 -08002475 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002476 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002477 if not line:
2478 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002479 m = re.match(
2480 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002481 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2482 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002483 line)
2484 if not m:
2485 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002486
Tao Bao818ddf52018-01-05 11:17:34 -08002487 matches = m.groupdict()
2488 cert = matches["CERT"]
2489 privkey = matches["PRIVKEY"]
2490 name = matches["NAME"]
2491 this_compressed_extension = matches["COMPRESSED"]
2492
2493 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2494 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2495 if cert in SPECIAL_CERT_STRINGS and not privkey:
2496 certmap[name] = cert
2497 elif (cert.endswith(OPTIONS.public_key_suffix) and
2498 privkey.endswith(OPTIONS.private_key_suffix) and
2499 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2500 certmap[name] = cert[:-public_key_suffix_len]
2501 else:
2502 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2503
2504 if not this_compressed_extension:
2505 continue
2506
2507 # Only count the installed files.
2508 filename = name + '.' + this_compressed_extension
2509 if filename not in installed_files:
2510 continue
2511
2512 # Make sure that all the values in the compression map have the same
2513 # extension. We don't support multiple compression methods in the same
2514 # system image.
2515 if compressed_extension:
2516 if this_compressed_extension != compressed_extension:
2517 raise ValueError(
2518 "Multiple compressed extensions: {} vs {}".format(
2519 compressed_extension, this_compressed_extension))
2520 else:
2521 compressed_extension = this_compressed_extension
2522
2523 return (certmap,
2524 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002525
2526
Doug Zongkereef39442009-04-02 12:14:19 -07002527COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002528Global options
2529
2530 -p (--path) <dir>
2531 Prepend <dir>/bin to the list of places to search for binaries run by this
2532 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002533
Doug Zongker05d3dea2009-06-22 11:32:31 -07002534 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002535 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002536
Tao Bao30df8b42018-04-23 15:32:53 -07002537 -x (--extra) <key=value>
2538 Add a key/value pair to the 'extras' dict, which device-specific extension
2539 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002540
Doug Zongkereef39442009-04-02 12:14:19 -07002541 -v (--verbose)
2542 Show command lines being executed.
2543
2544 -h (--help)
2545 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002546
2547 --logfile <file>
2548 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002549"""
2550
Kelvin Zhang0876c412020-06-23 15:06:58 -04002551
Doug Zongkereef39442009-04-02 12:14:19 -07002552def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002553 print(docstring.rstrip("\n"))
2554 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002555
2556
2557def ParseOptions(argv,
2558 docstring,
2559 extra_opts="", extra_long_opts=(),
2560 extra_option_handler=None):
2561 """Parse the options in argv and return any arguments that aren't
2562 flags. docstring is the calling module's docstring, to be displayed
2563 for errors and -h. extra_opts and extra_long_opts are for flags
2564 defined by the caller, which are processed by passing them to
2565 extra_option_handler."""
2566
2567 try:
2568 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002569 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002570 ["help", "verbose", "path=", "signapk_path=",
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002571 "signapk_shared_library_path=", "extra_signapk_args=",
2572 "sign_sepolicy_path=", "extra_sign_sepolicy_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002573 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002574 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2575 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002576 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002577 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002578 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002579 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002580 sys.exit(2)
2581
Doug Zongkereef39442009-04-02 12:14:19 -07002582 for o, a in opts:
2583 if o in ("-h", "--help"):
2584 Usage(docstring)
2585 sys.exit()
2586 elif o in ("-v", "--verbose"):
2587 OPTIONS.verbose = True
2588 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002589 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002590 elif o in ("--signapk_path",):
2591 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002592 elif o in ("--signapk_shared_library_path",):
2593 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002594 elif o in ("--extra_signapk_args",):
2595 OPTIONS.extra_signapk_args = shlex.split(a)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002596 elif o in ("--sign_sepolicy_path",):
2597 OPTIONS.sign_sepolicy_path = a
2598 elif o in ("--extra_sign_sepolicy_args",):
2599 OPTIONS.extra_sign_sepolicy_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002600 elif o in ("--aapt2_path",):
2601 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002602 elif o in ("--java_path",):
2603 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002604 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002605 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002606 elif o in ("--android_jar_path",):
2607 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002608 elif o in ("--public_key_suffix",):
2609 OPTIONS.public_key_suffix = a
2610 elif o in ("--private_key_suffix",):
2611 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002612 elif o in ("--boot_signer_path",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002613 raise ValueError(
2614 "--boot_signer_path is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002615 elif o in ("--boot_signer_args",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002616 raise ValueError(
2617 "--boot_signer_args is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002618 elif o in ("--verity_signer_path",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002619 raise ValueError(
2620 "--verity_signer_path is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002621 elif o in ("--verity_signer_args",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002622 raise ValueError(
2623 "--verity_signer_args is no longer supported, please switch to AVB")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002624 elif o in ("-s", "--device_specific"):
2625 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002626 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002627 key, value = a.split("=", 1)
2628 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002629 elif o in ("--logfile",):
2630 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002631 else:
2632 if extra_option_handler is None or not extra_option_handler(o, a):
2633 assert False, "unknown option \"%s\"" % (o,)
2634
Doug Zongker85448772014-09-09 14:59:20 -07002635 if OPTIONS.search_path:
2636 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2637 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002638
2639 return args
2640
2641
Tao Bao4c851b12016-09-19 13:54:38 -07002642def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002643 """Make a temp file and add it to the list of things to be deleted
2644 when Cleanup() is called. Return the filename."""
2645 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2646 os.close(fd)
2647 OPTIONS.tempfiles.append(fn)
2648 return fn
2649
2650
Tao Bao1c830bf2017-12-25 10:43:47 -08002651def MakeTempDir(prefix='tmp', suffix=''):
2652 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2653
2654 Returns:
2655 The absolute pathname of the new directory.
2656 """
2657 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2658 OPTIONS.tempfiles.append(dir_name)
2659 return dir_name
2660
2661
Doug Zongkereef39442009-04-02 12:14:19 -07002662def Cleanup():
2663 for i in OPTIONS.tempfiles:
2664 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002665 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002666 else:
2667 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002668 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002669
2670
2671class PasswordManager(object):
2672 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002673 self.editor = os.getenv("EDITOR")
2674 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002675
2676 def GetPasswords(self, items):
2677 """Get passwords corresponding to each string in 'items',
2678 returning a dict. (The dict may have keys in addition to the
2679 values in 'items'.)
2680
2681 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2682 user edit that file to add more needed passwords. If no editor is
2683 available, or $ANDROID_PW_FILE isn't define, prompts the user
2684 interactively in the ordinary way.
2685 """
2686
2687 current = self.ReadFile()
2688
2689 first = True
2690 while True:
2691 missing = []
2692 for i in items:
2693 if i not in current or not current[i]:
2694 missing.append(i)
2695 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002696 if not missing:
2697 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002698
2699 for i in missing:
2700 current[i] = ""
2701
2702 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002703 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002704 if sys.version_info[0] >= 3:
2705 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002706 answer = raw_input("try to edit again? [y]> ").strip()
2707 if answer and answer[0] not in 'yY':
2708 raise RuntimeError("key passwords unavailable")
2709 first = False
2710
2711 current = self.UpdateAndReadFile(current)
2712
Kelvin Zhang0876c412020-06-23 15:06:58 -04002713 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002714 """Prompt the user to enter a value (password) for each key in
2715 'current' whose value is fales. Returns a new dict with all the
2716 values.
2717 """
2718 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002719 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002720 if v:
2721 result[k] = v
2722 else:
2723 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002724 result[k] = getpass.getpass(
2725 "Enter password for %s key> " % k).strip()
2726 if result[k]:
2727 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002728 return result
2729
2730 def UpdateAndReadFile(self, current):
2731 if not self.editor or not self.pwfile:
2732 return self.PromptResult(current)
2733
2734 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002735 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002736 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2737 f.write("# (Additional spaces are harmless.)\n\n")
2738
2739 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002740 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002741 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002742 f.write("[[[ %s ]]] %s\n" % (v, k))
2743 if not v and first_line is None:
2744 # position cursor on first line with no password.
2745 first_line = i + 4
2746 f.close()
2747
Tao Bao986ee862018-10-04 15:46:16 -07002748 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002749
2750 return self.ReadFile()
2751
2752 def ReadFile(self):
2753 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002754 if self.pwfile is None:
2755 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002756 try:
2757 f = open(self.pwfile, "r")
2758 for line in f:
2759 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002760 if not line or line[0] == '#':
2761 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002762 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2763 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002764 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002765 else:
2766 result[m.group(2)] = m.group(1)
2767 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002768 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002769 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002770 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002771 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002772
2773
Dan Albert8e0178d2015-01-27 15:53:15 -08002774def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2775 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002776
2777 # http://b/18015246
2778 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2779 # for files larger than 2GiB. We can work around this by adjusting their
2780 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2781 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2782 # it isn't clear to me exactly what circumstances cause this).
2783 # `zipfile.write()` must be used directly to work around this.
2784 #
2785 # This mess can be avoided if we port to python3.
2786 saved_zip64_limit = zipfile.ZIP64_LIMIT
2787 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2788
2789 if compress_type is None:
2790 compress_type = zip_file.compression
2791 if arcname is None:
2792 arcname = filename
2793
2794 saved_stat = os.stat(filename)
2795
2796 try:
2797 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2798 # file to be zipped and reset it when we're done.
2799 os.chmod(filename, perms)
2800
2801 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002802 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2803 # intentional. zip stores datetimes in local time without a time zone
2804 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2805 # in the zip archive.
2806 local_epoch = datetime.datetime.fromtimestamp(0)
2807 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002808 os.utime(filename, (timestamp, timestamp))
2809
2810 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2811 finally:
2812 os.chmod(filename, saved_stat.st_mode)
2813 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2814 zipfile.ZIP64_LIMIT = saved_zip64_limit
2815
2816
Tao Bao58c1b962015-05-20 09:32:18 -07002817def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002818 compress_type=None):
2819 """Wrap zipfile.writestr() function to work around the zip64 limit.
2820
2821 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2822 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2823 when calling crc32(bytes).
2824
2825 But it still works fine to write a shorter string into a large zip file.
2826 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2827 when we know the string won't be too long.
2828 """
2829
2830 saved_zip64_limit = zipfile.ZIP64_LIMIT
2831 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2832
2833 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2834 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002835 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002836 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002837 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002838 else:
Tao Baof3282b42015-04-01 11:21:55 -07002839 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002840 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2841 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2842 # such a case (since
2843 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2844 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2845 # permission bits. We follow the logic in Python 3 to get consistent
2846 # behavior between using the two versions.
2847 if not zinfo.external_attr:
2848 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002849
2850 # If compress_type is given, it overrides the value in zinfo.
2851 if compress_type is not None:
2852 zinfo.compress_type = compress_type
2853
Tao Bao58c1b962015-05-20 09:32:18 -07002854 # If perms is given, it has a priority.
2855 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002856 # If perms doesn't set the file type, mark it as a regular file.
2857 if perms & 0o770000 == 0:
2858 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002859 zinfo.external_attr = perms << 16
2860
Tao Baof3282b42015-04-01 11:21:55 -07002861 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002862 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2863
Dan Albert8b72aef2015-03-23 19:13:21 -07002864 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002865 zipfile.ZIP64_LIMIT = saved_zip64_limit
2866
2867
Kelvin Zhang1caead02022-09-23 10:06:03 -07002868def ZipDelete(zip_filename, entries, force=False):
Tao Bao89d7ab22017-12-14 17:05:33 -08002869 """Deletes entries from a ZIP file.
2870
Tao Bao89d7ab22017-12-14 17:05:33 -08002871 Args:
2872 zip_filename: The name of the ZIP file.
2873 entries: The name of the entry, or the list of names to be deleted.
Tao Bao89d7ab22017-12-14 17:05:33 -08002874 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002875 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002876 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002877 # If list is empty, nothing to do
2878 if not entries:
2879 return
Wei Li8895f9e2022-10-10 17:13:17 -07002880
2881 with zipfile.ZipFile(zip_filename, 'r') as zin:
2882 if not force and len(set(zin.namelist()).intersection(entries)) == 0:
2883 raise ExternalError(
2884 "Failed to delete zip entries, name not matched: %s" % entries)
2885
2886 fd, new_zipfile = tempfile.mkstemp(dir=os.path.dirname(zip_filename))
2887 os.close(fd)
2888
2889 with zipfile.ZipFile(new_zipfile, 'w') as zout:
2890 for item in zin.infolist():
2891 if item.filename in entries:
2892 continue
2893 buffer = zin.read(item.filename)
2894 zout.writestr(item, buffer)
2895
2896 os.replace(new_zipfile, zip_filename)
Tao Bao89d7ab22017-12-14 17:05:33 -08002897
2898
Tao Baof3282b42015-04-01 11:21:55 -07002899def ZipClose(zip_file):
2900 # http://b/18015246
2901 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2902 # central directory.
2903 saved_zip64_limit = zipfile.ZIP64_LIMIT
2904 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2905
2906 zip_file.close()
2907
2908 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002909
2910
2911class DeviceSpecificParams(object):
2912 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002913
Doug Zongker05d3dea2009-06-22 11:32:31 -07002914 def __init__(self, **kwargs):
2915 """Keyword arguments to the constructor become attributes of this
2916 object, which is passed to all functions in the device-specific
2917 module."""
Tao Bao38884282019-07-10 22:20:56 -07002918 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002919 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002920 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002921
2922 if self.module is None:
2923 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002924 if not path:
2925 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002926 try:
2927 if os.path.isdir(path):
2928 info = imp.find_module("releasetools", [path])
2929 else:
2930 d, f = os.path.split(path)
2931 b, x = os.path.splitext(f)
2932 if x == ".py":
2933 f = b
2934 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002935 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002936 self.module = imp.load_module("device_specific", *info)
2937 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002938 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002939
2940 def _DoCall(self, function_name, *args, **kwargs):
2941 """Call the named function in the device-specific module, passing
2942 the given args and kwargs. The first argument to the call will be
2943 the DeviceSpecific object itself. If there is no module, or the
2944 module does not define the function, return the value of the
2945 'default' kwarg (which itself defaults to None)."""
2946 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002947 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002948 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2949
2950 def FullOTA_Assertions(self):
2951 """Called after emitting the block of assertions at the top of a
2952 full OTA package. Implementations can add whatever additional
2953 assertions they like."""
2954 return self._DoCall("FullOTA_Assertions")
2955
Doug Zongkere5ff5902012-01-17 10:55:37 -08002956 def FullOTA_InstallBegin(self):
2957 """Called at the start of full OTA installation."""
2958 return self._DoCall("FullOTA_InstallBegin")
2959
Yifan Hong10c530d2018-12-27 17:34:18 -08002960 def FullOTA_GetBlockDifferences(self):
2961 """Called during full OTA installation and verification.
2962 Implementation should return a list of BlockDifference objects describing
2963 the update on each additional partitions.
2964 """
2965 return self._DoCall("FullOTA_GetBlockDifferences")
2966
Doug Zongker05d3dea2009-06-22 11:32:31 -07002967 def FullOTA_InstallEnd(self):
2968 """Called at the end of full OTA installation; typically this is
2969 used to install the image for the device's baseband processor."""
2970 return self._DoCall("FullOTA_InstallEnd")
2971
2972 def IncrementalOTA_Assertions(self):
2973 """Called after emitting the block of assertions at the top of an
2974 incremental OTA package. Implementations can add whatever
2975 additional assertions they like."""
2976 return self._DoCall("IncrementalOTA_Assertions")
2977
Doug Zongkere5ff5902012-01-17 10:55:37 -08002978 def IncrementalOTA_VerifyBegin(self):
2979 """Called at the start of the verification phase of incremental
2980 OTA installation; additional checks can be placed here to abort
2981 the script before any changes are made."""
2982 return self._DoCall("IncrementalOTA_VerifyBegin")
2983
Doug Zongker05d3dea2009-06-22 11:32:31 -07002984 def IncrementalOTA_VerifyEnd(self):
2985 """Called at the end of the verification phase of incremental OTA
2986 installation; additional checks can be placed here to abort the
2987 script before any changes are made."""
2988 return self._DoCall("IncrementalOTA_VerifyEnd")
2989
Doug Zongkere5ff5902012-01-17 10:55:37 -08002990 def IncrementalOTA_InstallBegin(self):
2991 """Called at the start of incremental OTA installation (after
2992 verification is complete)."""
2993 return self._DoCall("IncrementalOTA_InstallBegin")
2994
Yifan Hong10c530d2018-12-27 17:34:18 -08002995 def IncrementalOTA_GetBlockDifferences(self):
2996 """Called during incremental OTA installation and verification.
2997 Implementation should return a list of BlockDifference objects describing
2998 the update on each additional partitions.
2999 """
3000 return self._DoCall("IncrementalOTA_GetBlockDifferences")
3001
Doug Zongker05d3dea2009-06-22 11:32:31 -07003002 def IncrementalOTA_InstallEnd(self):
3003 """Called at the end of incremental OTA installation; typically
3004 this is used to install the image for the device's baseband
3005 processor."""
3006 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003007
Tao Bao9bc6bb22015-11-09 16:58:28 -08003008 def VerifyOTA_Assertions(self):
3009 return self._DoCall("VerifyOTA_Assertions")
3010
Tao Bao76def242017-11-21 09:25:31 -08003011
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003012class File(object):
Tao Bao76def242017-11-21 09:25:31 -08003013 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003014 self.name = name
3015 self.data = data
3016 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09003017 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08003018 self.sha1 = sha1(data).hexdigest()
3019
3020 @classmethod
3021 def FromLocalFile(cls, name, diskname):
3022 f = open(diskname, "rb")
3023 data = f.read()
3024 f.close()
3025 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003026
3027 def WriteToTemp(self):
3028 t = tempfile.NamedTemporaryFile()
3029 t.write(self.data)
3030 t.flush()
3031 return t
3032
Dan Willemsen2ee00d52017-03-05 19:51:56 -08003033 def WriteToDir(self, d):
3034 with open(os.path.join(d, self.name), "wb") as fp:
3035 fp.write(self.data)
3036
Geremy Condra36bd3652014-02-06 19:45:10 -08003037 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07003038 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003039
Tao Bao76def242017-11-21 09:25:31 -08003040
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003041DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04003042 ".gz": "imgdiff",
3043 ".zip": ["imgdiff", "-z"],
3044 ".jar": ["imgdiff", "-z"],
3045 ".apk": ["imgdiff", "-z"],
3046 ".img": "imgdiff",
3047}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003048
Tao Bao76def242017-11-21 09:25:31 -08003049
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003050class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07003051 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003052 self.tf = tf
3053 self.sf = sf
3054 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07003055 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003056
3057 def ComputePatch(self):
3058 """Compute the patch (as a string of data) needed to turn sf into
3059 tf. Returns the same tuple as GetPatch()."""
3060
3061 tf = self.tf
3062 sf = self.sf
3063
Doug Zongker24cd2802012-08-14 16:36:15 -07003064 if self.diff_program:
3065 diff_program = self.diff_program
3066 else:
3067 ext = os.path.splitext(tf.name)[1]
3068 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003069
3070 ttemp = tf.WriteToTemp()
3071 stemp = sf.WriteToTemp()
3072
3073 ext = os.path.splitext(tf.name)[1]
3074
3075 try:
3076 ptemp = tempfile.NamedTemporaryFile()
3077 if isinstance(diff_program, list):
3078 cmd = copy.copy(diff_program)
3079 else:
3080 cmd = [diff_program]
3081 cmd.append(stemp.name)
3082 cmd.append(ttemp.name)
3083 cmd.append(ptemp.name)
3084 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003085 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003086
Doug Zongkerf8340082014-08-05 10:39:37 -07003087 def run():
3088 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003089 if e:
3090 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003091 th = threading.Thread(target=run)
3092 th.start()
3093 th.join(timeout=300) # 5 mins
3094 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003095 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003096 p.terminate()
3097 th.join(5)
3098 if th.is_alive():
3099 p.kill()
3100 th.join()
3101
Tianjie Xua2a9f992018-01-05 15:15:54 -08003102 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003103 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003104 self.patch = None
3105 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003106 diff = ptemp.read()
3107 finally:
3108 ptemp.close()
3109 stemp.close()
3110 ttemp.close()
3111
3112 self.patch = diff
3113 return self.tf, self.sf, self.patch
3114
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003115 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003116 """Returns a tuple of (target_file, source_file, patch_data).
3117
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003118 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003119 computing the patch failed.
3120 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003121 return self.tf, self.sf, self.patch
3122
3123
3124def ComputeDifferences(diffs):
3125 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003126 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003127
3128 # Do the largest files first, to try and reduce the long-pole effect.
3129 by_size = [(i.tf.size, i) for i in diffs]
3130 by_size.sort(reverse=True)
3131 by_size = [i[1] for i in by_size]
3132
3133 lock = threading.Lock()
3134 diff_iter = iter(by_size) # accessed under lock
3135
3136 def worker():
3137 try:
3138 lock.acquire()
3139 for d in diff_iter:
3140 lock.release()
3141 start = time.time()
3142 d.ComputePatch()
3143 dur = time.time() - start
3144 lock.acquire()
3145
3146 tf, sf, patch = d.GetPatch()
3147 if sf.name == tf.name:
3148 name = tf.name
3149 else:
3150 name = "%s (%s)" % (tf.name, sf.name)
3151 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003152 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003153 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003154 logger.info(
3155 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3156 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003157 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003158 except Exception:
3159 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003160 raise
3161
3162 # start worker threads; wait for them all to finish.
3163 threads = [threading.Thread(target=worker)
3164 for i in range(OPTIONS.worker_threads)]
3165 for th in threads:
3166 th.start()
3167 while threads:
3168 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003169
3170
Dan Albert8b72aef2015-03-23 19:13:21 -07003171class BlockDifference(object):
3172 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003173 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003174 self.tgt = tgt
3175 self.src = src
3176 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003177 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003178 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003179
Tao Baodd2a5892015-03-12 12:32:37 -07003180 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003181 version = max(
3182 int(i) for i in
3183 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003184 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003185 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003186
Tianjie Xu41976c72019-07-03 13:57:01 -07003187 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3188 version=self.version,
3189 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003190 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003191 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003192 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003193 self.touched_src_ranges = b.touched_src_ranges
3194 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003195
Yifan Hong10c530d2018-12-27 17:34:18 -08003196 # On devices with dynamic partitions, for new partitions,
3197 # src is None but OPTIONS.source_info_dict is not.
3198 if OPTIONS.source_info_dict is None:
3199 is_dynamic_build = OPTIONS.info_dict.get(
3200 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003201 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003202 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003203 is_dynamic_build = OPTIONS.source_info_dict.get(
3204 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003205 is_dynamic_source = partition in shlex.split(
3206 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003207
Yifan Hongbb2658d2019-01-25 12:30:58 -08003208 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003209 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3210
Yifan Hongbb2658d2019-01-25 12:30:58 -08003211 # For dynamic partitions builds, check partition list in both source
3212 # and target build because new partitions may be added, and existing
3213 # partitions may be removed.
3214 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3215
Yifan Hong10c530d2018-12-27 17:34:18 -08003216 if is_dynamic:
3217 self.device = 'map_partition("%s")' % partition
3218 else:
3219 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003220 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3221 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003222 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003223 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3224 OPTIONS.source_info_dict)
3225 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003226
Tao Baod8d14be2016-02-04 14:26:02 -08003227 @property
3228 def required_cache(self):
3229 return self._required_cache
3230
Tao Bao76def242017-11-21 09:25:31 -08003231 def WriteScript(self, script, output_zip, progress=None,
3232 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003233 if not self.src:
3234 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003235 script.Print("Patching %s image unconditionally..." % (self.partition,))
3236 else:
3237 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003238
Dan Albert8b72aef2015-03-23 19:13:21 -07003239 if progress:
3240 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003241 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003242
3243 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003244 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003245
Tao Bao9bc6bb22015-11-09 16:58:28 -08003246 def WriteStrictVerifyScript(self, script):
3247 """Verify all the blocks in the care_map, including clobbered blocks.
3248
3249 This differs from the WriteVerifyScript() function: a) it prints different
3250 error messages; b) it doesn't allow half-way updated images to pass the
3251 verification."""
3252
3253 partition = self.partition
3254 script.Print("Verifying %s..." % (partition,))
3255 ranges = self.tgt.care_map
3256 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003257 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003258 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3259 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003260 self.device, ranges_str,
3261 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003262 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003263 script.AppendExtra("")
3264
Tao Baod522bdc2016-04-12 15:53:16 -07003265 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003266 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003267
3268 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003269 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003270 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003271
3272 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003273 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003274 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003275 ranges = self.touched_src_ranges
3276 expected_sha1 = self.touched_src_sha1
3277 else:
3278 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3279 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003280
3281 # No blocks to be checked, skipping.
3282 if not ranges:
3283 return
3284
Tao Bao5ece99d2015-05-12 11:42:31 -07003285 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003286 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003287 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003288 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3289 '"%s.patch.dat")) then' % (
3290 self.device, ranges_str, expected_sha1,
3291 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003292 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003293 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003294
Tianjie Xufc3422a2015-12-15 11:53:59 -08003295 if self.version >= 4:
3296
3297 # Bug: 21124327
3298 # When generating incrementals for the system and vendor partitions in
3299 # version 4 or newer, explicitly check the first block (which contains
3300 # the superblock) of the partition to see if it's what we expect. If
3301 # this check fails, give an explicit log message about the partition
3302 # having been remounted R/W (the most likely explanation).
3303 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003304 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003305
3306 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003307 if partition == "system":
3308 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3309 else:
3310 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003311 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003312 'ifelse (block_image_recover({device}, "{ranges}") && '
3313 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003314 'package_extract_file("{partition}.transfer.list"), '
3315 '"{partition}.new.dat", "{partition}.patch.dat"), '
3316 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003317 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003318 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003319 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003320
Tao Baodd2a5892015-03-12 12:32:37 -07003321 # Abort the OTA update. Note that the incremental OTA cannot be applied
3322 # even if it may match the checksum of the target partition.
3323 # a) If version < 3, operations like move and erase will make changes
3324 # unconditionally and damage the partition.
3325 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003326 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003327 if partition == "system":
3328 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3329 else:
3330 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3331 script.AppendExtra((
3332 'abort("E%d: %s partition has unexpected contents");\n'
3333 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003334
Yifan Hong10c530d2018-12-27 17:34:18 -08003335 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003336 partition = self.partition
3337 script.Print('Verifying the updated %s image...' % (partition,))
3338 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3339 ranges = self.tgt.care_map
3340 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003341 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003342 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003343 self.device, ranges_str,
3344 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003345
3346 # Bug: 20881595
3347 # Verify that extended blocks are really zeroed out.
3348 if self.tgt.extended:
3349 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003350 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003351 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003352 self.device, ranges_str,
3353 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003354 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003355 if partition == "system":
3356 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3357 else:
3358 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003359 script.AppendExtra(
3360 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003361 ' abort("E%d: %s partition has unexpected non-zero contents after '
3362 'OTA update");\n'
3363 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003364 else:
3365 script.Print('Verified the updated %s image.' % (partition,))
3366
Tianjie Xu209db462016-05-24 17:34:52 -07003367 if partition == "system":
3368 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3369 else:
3370 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3371
Tao Bao5fcaaef2015-06-01 13:40:49 -07003372 script.AppendExtra(
3373 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003374 ' abort("E%d: %s partition has unexpected contents after OTA '
3375 'update");\n'
3376 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003377
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003378 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003379 ZipWrite(output_zip,
3380 '{}.transfer.list'.format(self.path),
3381 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003382
Tao Bao76def242017-11-21 09:25:31 -08003383 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3384 # its size. Quailty 9 almost triples the compression time but doesn't
3385 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003386 # zip | brotli(quality 6) | brotli(quality 9)
3387 # compressed_size: 942M | 869M (~8% reduced) | 854M
3388 # compression_time: 75s | 265s | 719s
3389 # decompression_time: 15s | 25s | 25s
3390
3391 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003392 brotli_cmd = ['brotli', '--quality=6',
3393 '--output={}.new.dat.br'.format(self.path),
3394 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003395 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003396 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003397
3398 new_data_name = '{}.new.dat.br'.format(self.partition)
3399 ZipWrite(output_zip,
3400 '{}.new.dat.br'.format(self.path),
3401 new_data_name,
3402 compress_type=zipfile.ZIP_STORED)
3403 else:
3404 new_data_name = '{}.new.dat'.format(self.partition)
3405 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3406
Dan Albert8e0178d2015-01-27 15:53:15 -08003407 ZipWrite(output_zip,
3408 '{}.patch.dat'.format(self.path),
3409 '{}.patch.dat'.format(self.partition),
3410 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003411
Tianjie Xu209db462016-05-24 17:34:52 -07003412 if self.partition == "system":
3413 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3414 else:
3415 code = ErrorCode.VENDOR_UPDATE_FAILURE
3416
Yifan Hong10c530d2018-12-27 17:34:18 -08003417 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003418 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003419 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003420 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003421 device=self.device, partition=self.partition,
3422 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003423 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003424
Kelvin Zhang0876c412020-06-23 15:06:58 -04003425 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003426 data = source.ReadRangeSet(ranges)
3427 ctx = sha1()
3428
3429 for p in data:
3430 ctx.update(p)
3431
3432 return ctx.hexdigest()
3433
Kelvin Zhang0876c412020-06-23 15:06:58 -04003434 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003435 """Return the hash value for all zero blocks."""
3436 zero_block = '\x00' * 4096
3437 ctx = sha1()
3438 for _ in range(num_blocks):
3439 ctx.update(zero_block)
3440
3441 return ctx.hexdigest()
3442
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003443
Tianjie Xu41976c72019-07-03 13:57:01 -07003444# Expose these two classes to support vendor-specific scripts
3445DataImage = images.DataImage
3446EmptyImage = images.EmptyImage
3447
Tao Bao76def242017-11-21 09:25:31 -08003448
Doug Zongker96a57e72010-09-26 14:57:41 -07003449# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003450PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003451 "ext4": "EMMC",
3452 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003453 "f2fs": "EMMC",
Tim Zimmermanna06f8332022-10-01 11:56:57 +02003454 "squashfs": "EMMC",
3455 "erofs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003456}
Doug Zongker96a57e72010-09-26 14:57:41 -07003457
Kelvin Zhang0876c412020-06-23 15:06:58 -04003458
Yifan Hongbdb32012020-05-07 12:38:53 -07003459def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3460 """
3461 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3462 backwards compatibility. It aborts if the fstab entry has slotselect option
3463 (unless check_no_slot is explicitly set to False).
3464 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003465 fstab = info["fstab"]
3466 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003467 if check_no_slot:
3468 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003469 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003470 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3471 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003472 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003473
3474
Yifan Hongbdb32012020-05-07 12:38:53 -07003475def GetTypeAndDeviceExpr(mount_point, info):
3476 """
3477 Return the filesystem of the partition, and an edify expression that evaluates
3478 to the device at runtime.
3479 """
3480 fstab = info["fstab"]
3481 if fstab:
3482 p = fstab[mount_point]
3483 device_expr = '"%s"' % fstab[mount_point].device
3484 if p.slotselect:
3485 device_expr = 'add_slot_suffix(%s)' % device_expr
3486 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003487 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003488
3489
3490def GetEntryForDevice(fstab, device):
3491 """
3492 Returns:
3493 The first entry in fstab whose device is the given value.
3494 """
3495 if not fstab:
3496 return None
3497 for mount_point in fstab:
3498 if fstab[mount_point].device == device:
3499 return fstab[mount_point]
3500 return None
3501
Kelvin Zhang0876c412020-06-23 15:06:58 -04003502
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003503def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003504 """Parses and converts a PEM-encoded certificate into DER-encoded.
3505
3506 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3507
3508 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003509 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003510 """
3511 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003512 save = False
3513 for line in data.split("\n"):
3514 if "--END CERTIFICATE--" in line:
3515 break
3516 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003517 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003518 if "--BEGIN CERTIFICATE--" in line:
3519 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003520 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003521 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003522
Tao Bao04e1f012018-02-04 12:13:35 -08003523
3524def ExtractPublicKey(cert):
3525 """Extracts the public key (PEM-encoded) from the given certificate file.
3526
3527 Args:
3528 cert: The certificate filename.
3529
3530 Returns:
3531 The public key string.
3532
3533 Raises:
3534 AssertionError: On non-zero return from 'openssl'.
3535 """
3536 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3537 # While openssl 1.1 writes the key into the given filename followed by '-out',
3538 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3539 # stdout instead.
3540 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3541 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3542 pubkey, stderrdata = proc.communicate()
3543 assert proc.returncode == 0, \
3544 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3545 return pubkey
3546
3547
Tao Bao1ac886e2019-06-26 11:58:22 -07003548def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003549 """Extracts the AVB public key from the given public or private key.
3550
3551 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003552 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003553 key: The input key file, which should be PEM-encoded public or private key.
3554
3555 Returns:
3556 The path to the extracted AVB public key file.
3557 """
3558 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3559 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003560 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003561 return output
3562
3563
Doug Zongker412c02f2014-02-13 10:58:24 -08003564def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3565 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003566 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003567
Tao Bao6d5d6232018-03-09 17:04:42 -08003568 Most of the space in the boot and recovery images is just the kernel, which is
3569 identical for the two, so the resulting patch should be efficient. Add it to
3570 the output zip, along with a shell script that is run from init.rc on first
3571 boot to actually do the patching and install the new recovery image.
3572
3573 Args:
3574 input_dir: The top-level input directory of the target-files.zip.
3575 output_sink: The callback function that writes the result.
3576 recovery_img: File object for the recovery image.
3577 boot_img: File objects for the boot image.
3578 info_dict: A dict returned by common.LoadInfoDict() on the input
3579 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003580 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003581 if info_dict is None:
3582 info_dict = OPTIONS.info_dict
3583
Tao Bao6d5d6232018-03-09 17:04:42 -08003584 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003585 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3586
3587 if board_uses_vendorimage:
3588 # In this case, the output sink is rooted at VENDOR
3589 recovery_img_path = "etc/recovery.img"
3590 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3591 sh_dir = "bin"
3592 else:
3593 # In this case the output sink is rooted at SYSTEM
3594 recovery_img_path = "vendor/etc/recovery.img"
3595 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3596 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003597
Tao Baof2cffbd2015-07-22 12:33:18 -07003598 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003599 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003600
3601 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003602 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003603 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003604 # With system-root-image, boot and recovery images will have mismatching
3605 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3606 # to handle such a case.
3607 if system_root_image:
3608 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003609 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003610 assert not os.path.exists(path)
3611 else:
3612 diff_program = ["imgdiff"]
3613 if os.path.exists(path):
3614 diff_program.append("-b")
3615 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003616 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003617 else:
3618 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003619
3620 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3621 _, _, patch = d.ComputePatch()
3622 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003623
Dan Albertebb19aa2015-03-27 19:11:53 -07003624 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003625 # The following GetTypeAndDevice()s need to use the path in the target
3626 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003627 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3628 check_no_slot=False)
3629 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3630 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003631 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003632 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003633
Tao Baof2cffbd2015-07-22 12:33:18 -07003634 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003635
3636 # Note that we use /vendor to refer to the recovery resources. This will
3637 # work for a separate vendor partition mounted at /vendor or a
3638 # /system/vendor subdirectory on the system partition, for which init will
3639 # create a symlink from /vendor to /system/vendor.
3640
3641 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003642if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3643 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003644 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003645 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3646 log -t recovery "Installing new recovery image: succeeded" || \\
3647 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003648else
3649 log -t recovery "Recovery image already installed"
3650fi
3651""" % {'type': recovery_type,
3652 'device': recovery_device,
3653 'sha1': recovery_img.sha1,
3654 'size': recovery_img.size}
3655 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003656 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003657if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3658 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003659 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003660 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3661 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3662 log -t recovery "Installing new recovery image: succeeded" || \\
3663 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003664else
3665 log -t recovery "Recovery image already installed"
3666fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003667""" % {'boot_size': boot_img.size,
3668 'boot_sha1': boot_img.sha1,
3669 'recovery_size': recovery_img.size,
3670 'recovery_sha1': recovery_img.sha1,
3671 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003672 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003673 'recovery_type': recovery_type,
3674 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003675 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003676
Bill Peckhame868aec2019-09-17 17:06:47 -07003677 # The install script location moved from /system/etc to /system/bin in the L
3678 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3679 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003680
Tao Bao32fcdab2018-10-12 10:30:39 -07003681 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003682
Tao Baoda30cfa2017-12-01 16:19:46 -08003683 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003684
3685
3686class DynamicPartitionUpdate(object):
3687 def __init__(self, src_group=None, tgt_group=None, progress=None,
3688 block_difference=None):
3689 self.src_group = src_group
3690 self.tgt_group = tgt_group
3691 self.progress = progress
3692 self.block_difference = block_difference
3693
3694 @property
3695 def src_size(self):
3696 if not self.block_difference:
3697 return 0
3698 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3699
3700 @property
3701 def tgt_size(self):
3702 if not self.block_difference:
3703 return 0
3704 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3705
3706 @staticmethod
3707 def _GetSparseImageSize(img):
3708 if not img:
3709 return 0
3710 return img.blocksize * img.total_blocks
3711
3712
3713class DynamicGroupUpdate(object):
3714 def __init__(self, src_size=None, tgt_size=None):
3715 # None: group does not exist. 0: no size limits.
3716 self.src_size = src_size
3717 self.tgt_size = tgt_size
3718
3719
3720class DynamicPartitionsDifference(object):
3721 def __init__(self, info_dict, block_diffs, progress_dict=None,
3722 source_info_dict=None):
3723 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003724 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003725
3726 self._remove_all_before_apply = False
3727 if source_info_dict is None:
3728 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003729 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003730
Tao Baof1113e92019-06-18 12:10:14 -07003731 block_diff_dict = collections.OrderedDict(
3732 [(e.partition, e) for e in block_diffs])
3733
Yifan Hong10c530d2018-12-27 17:34:18 -08003734 assert len(block_diff_dict) == len(block_diffs), \
3735 "Duplicated BlockDifference object for {}".format(
3736 [partition for partition, count in
3737 collections.Counter(e.partition for e in block_diffs).items()
3738 if count > 1])
3739
Yifan Hong79997e52019-01-23 16:56:19 -08003740 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003741
3742 for p, block_diff in block_diff_dict.items():
3743 self._partition_updates[p] = DynamicPartitionUpdate()
3744 self._partition_updates[p].block_difference = block_diff
3745
3746 for p, progress in progress_dict.items():
3747 if p in self._partition_updates:
3748 self._partition_updates[p].progress = progress
3749
3750 tgt_groups = shlex.split(info_dict.get(
3751 "super_partition_groups", "").strip())
3752 src_groups = shlex.split(source_info_dict.get(
3753 "super_partition_groups", "").strip())
3754
3755 for g in tgt_groups:
3756 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003757 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003758 assert p in self._partition_updates, \
3759 "{} is in target super_{}_partition_list but no BlockDifference " \
3760 "object is provided.".format(p, g)
3761 self._partition_updates[p].tgt_group = g
3762
3763 for g in src_groups:
3764 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003765 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003766 assert p in self._partition_updates, \
3767 "{} is in source super_{}_partition_list but no BlockDifference " \
3768 "object is provided.".format(p, g)
3769 self._partition_updates[p].src_group = g
3770
Yifan Hong45433e42019-01-18 13:55:25 -08003771 target_dynamic_partitions = set(shlex.split(info_dict.get(
3772 "dynamic_partition_list", "").strip()))
3773 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3774 if u.tgt_size)
3775 assert block_diffs_with_target == target_dynamic_partitions, \
3776 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3777 list(target_dynamic_partitions), list(block_diffs_with_target))
3778
3779 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3780 "dynamic_partition_list", "").strip()))
3781 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3782 if u.src_size)
3783 assert block_diffs_with_source == source_dynamic_partitions, \
3784 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3785 list(source_dynamic_partitions), list(block_diffs_with_source))
3786
Yifan Hong10c530d2018-12-27 17:34:18 -08003787 if self._partition_updates:
3788 logger.info("Updating dynamic partitions %s",
3789 self._partition_updates.keys())
3790
Yifan Hong79997e52019-01-23 16:56:19 -08003791 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003792
3793 for g in tgt_groups:
3794 self._group_updates[g] = DynamicGroupUpdate()
3795 self._group_updates[g].tgt_size = int(info_dict.get(
3796 "super_%s_group_size" % g, "0").strip())
3797
3798 for g in src_groups:
3799 if g not in self._group_updates:
3800 self._group_updates[g] = DynamicGroupUpdate()
3801 self._group_updates[g].src_size = int(source_info_dict.get(
3802 "super_%s_group_size" % g, "0").strip())
3803
3804 self._Compute()
3805
3806 def WriteScript(self, script, output_zip, write_verify_script=False):
3807 script.Comment('--- Start patching dynamic partitions ---')
3808 for p, u in self._partition_updates.items():
3809 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3810 script.Comment('Patch partition %s' % p)
3811 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3812 write_verify_script=False)
3813
3814 op_list_path = MakeTempFile()
3815 with open(op_list_path, 'w') as f:
3816 for line in self._op_list:
3817 f.write('{}\n'.format(line))
3818
3819 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3820
3821 script.Comment('Update dynamic partition metadata')
3822 script.AppendExtra('assert(update_dynamic_partitions('
3823 'package_extract_file("dynamic_partitions_op_list")));')
3824
3825 if write_verify_script:
3826 for p, u in self._partition_updates.items():
3827 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3828 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003829 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003830
3831 for p, u in self._partition_updates.items():
3832 if u.tgt_size and u.src_size <= u.tgt_size:
3833 script.Comment('Patch partition %s' % p)
3834 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3835 write_verify_script=write_verify_script)
3836 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003837 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003838
3839 script.Comment('--- End patching dynamic partitions ---')
3840
3841 def _Compute(self):
3842 self._op_list = list()
3843
3844 def append(line):
3845 self._op_list.append(line)
3846
3847 def comment(line):
3848 self._op_list.append("# %s" % line)
3849
3850 if self._remove_all_before_apply:
3851 comment('Remove all existing dynamic partitions and groups before '
3852 'applying full OTA')
3853 append('remove_all_groups')
3854
3855 for p, u in self._partition_updates.items():
3856 if u.src_group and not u.tgt_group:
3857 append('remove %s' % p)
3858
3859 for p, u in self._partition_updates.items():
3860 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3861 comment('Move partition %s from %s to default' % (p, u.src_group))
3862 append('move %s default' % p)
3863
3864 for p, u in self._partition_updates.items():
3865 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3866 comment('Shrink partition %s from %d to %d' %
3867 (p, u.src_size, u.tgt_size))
3868 append('resize %s %s' % (p, u.tgt_size))
3869
3870 for g, u in self._group_updates.items():
3871 if u.src_size is not None and u.tgt_size is None:
3872 append('remove_group %s' % g)
3873 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003874 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003875 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3876 append('resize_group %s %d' % (g, u.tgt_size))
3877
3878 for g, u in self._group_updates.items():
3879 if u.src_size is None and u.tgt_size is not None:
3880 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3881 append('add_group %s %d' % (g, u.tgt_size))
3882 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003883 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003884 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3885 append('resize_group %s %d' % (g, u.tgt_size))
3886
3887 for p, u in self._partition_updates.items():
3888 if u.tgt_group and not u.src_group:
3889 comment('Add partition %s to group %s' % (p, u.tgt_group))
3890 append('add %s %s' % (p, u.tgt_group))
3891
3892 for p, u in self._partition_updates.items():
3893 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003894 comment('Grow partition %s from %d to %d' %
3895 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003896 append('resize %s %d' % (p, u.tgt_size))
3897
3898 for p, u in self._partition_updates.items():
3899 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3900 comment('Move partition %s from default to %s' %
3901 (p, u.tgt_group))
3902 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003903
3904
jiajia tangf3f842b2021-03-17 21:49:44 +08003905def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003906 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003907 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003908
3909 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003910 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003911
3912 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003913 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003914 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003915 tmp_dir = MakeTempDir('boot_', suffix='.img')
3916 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003917 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3918 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003919 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3920 if not os.path.isfile(ramdisk):
3921 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3922 return None
3923 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003924 if ramdisk_format == RamdiskFormat.LZ4:
3925 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3926 elif ramdisk_format == RamdiskFormat.GZ:
3927 with open(ramdisk, 'rb') as input_stream:
3928 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003929 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3930 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003931 p2.wait()
3932 else:
3933 logger.error('Only support lz4 or minigzip ramdisk format.')
3934 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003935
3936 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3937 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3938 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3939 # the host environment.
3940 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003941 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003942
Yifan Hongc65a0542021-01-07 14:21:01 -08003943 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3944 prop_file = os.path.join(extracted_ramdisk, search_path)
3945 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003946 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003947 logger.warning(
3948 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003949
Yifan Hong7dc51172021-01-12 11:27:39 -08003950 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003951
Yifan Hong85ac5012021-01-07 14:43:46 -08003952 except ExternalError as e:
3953 logger.warning('Unable to get boot image build props: %s', e)
3954 return None
3955
3956
3957def GetBootImageTimestamp(boot_img):
3958 """
3959 Get timestamp from ramdisk within the boot image
3960
3961 Args:
3962 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3963
3964 Return:
3965 An integer that corresponds to the timestamp of the boot image, or None
3966 if file has unknown format. Raise exception if an unexpected error has
3967 occurred.
3968 """
3969 prop_file = GetBootImageBuildProp(boot_img)
3970 if not prop_file:
3971 return None
3972
3973 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3974 if props is None:
3975 return None
3976
3977 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003978 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3979 if timestamp:
3980 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003981 logger.warning(
3982 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003983 return None
3984
3985 except ExternalError as e:
3986 logger.warning('Unable to get boot image timestamp: %s', e)
3987 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003988
3989
Kelvin Zhang26390482021-11-02 14:31:10 -07003990def IsSparseImage(filepath):
Kelvin Zhang1caead02022-09-23 10:06:03 -07003991 if not os.path.exists(filepath):
3992 return False
Kelvin Zhang26390482021-11-02 14:31:10 -07003993 with open(filepath, 'rb') as fp:
3994 # Magic for android sparse image format
3995 # https://source.android.com/devices/bootloader/images
3996 return fp.read(4) == b'\x3A\xFF\x26\xED'