blob: 526135616851d11edf09ca07d694f23fd1fb3bfc [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080071 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
72 if "ANDROID_HOST_OUT" in os.environ:
73 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080074 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070075 self.extra_signapk_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000076 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070077 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080078 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080079 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070080 self.public_key_suffix = ".x509.pem"
81 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070082 # use otatools built boot_signer by default
83 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070084 self.boot_signer_args = []
85 self.verity_signer_path = None
86 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070087 self.verbose = False
88 self.tempfiles = []
89 self.device_specific = None
90 self.extras = {}
91 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070092 self.source_info_dict = None
93 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070094 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070095 # Stash size cannot exceed cache_size * threshold.
96 self.cache_size = None
97 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070098 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -070099 self.host_tools = {}
Melisa Carranza Zunigae6d4fb52022-03-07 14:56:26 +0100100 self.sepolicy_name = 'sepolicy.apex'
Dan Albert8b72aef2015-03-23 19:13:21 -0700101
102
103OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700104
Tao Bao71197512018-10-11 14:08:45 -0700105# The block size that's used across the releasetools scripts.
106BLOCK_SIZE = 4096
107
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800108# Values for "certificate" in apkcerts that mean special things.
109SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
110
Tao Bao5cc0abb2019-03-21 10:18:05 -0700111# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
112# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800113# descriptor into vbmeta.img. When adding a new entry here, the
114# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
115# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000116AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Lucas Wei03230252022-04-18 16:00:40 +0800117 'system', 'system_ext', 'vendor', 'vendor_boot', 'vendor_kernel_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000118 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800119
Tao Bao08c190f2019-06-03 23:07:58 -0700120# Chained VBMeta partitions.
121AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
122
Tianjie Xu861f4132018-09-12 11:49:33 -0700123# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400124PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700125 'system',
126 'vendor',
127 'product',
128 'system_ext',
129 'odm',
130 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700131 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000132 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400133]
Tianjie Xu861f4132018-09-12 11:49:33 -0700134
Yifan Hong5057b952021-01-07 14:09:57 -0800135# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000136PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800137
Yifan Hongc65a0542021-01-07 14:21:01 -0800138# See sysprop.mk. If file is moved, add new search paths here; don't remove
139# existing search paths.
140RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700141
Kelvin Zhang563750f2021-04-28 12:46:17 -0400142
Tianjie Xu209db462016-05-24 17:34:52 -0700143class ErrorCode(object):
144 """Define error_codes for failures that happen during the actual
145 update package installation.
146
147 Error codes 0-999 are reserved for failures before the package
148 installation (i.e. low battery, package verification failure).
149 Detailed code in 'bootable/recovery/error_code.h' """
150
151 SYSTEM_VERIFICATION_FAILURE = 1000
152 SYSTEM_UPDATE_FAILURE = 1001
153 SYSTEM_UNEXPECTED_CONTENTS = 1002
154 SYSTEM_NONZERO_CONTENTS = 1003
155 SYSTEM_RECOVER_FAILURE = 1004
156 VENDOR_VERIFICATION_FAILURE = 2000
157 VENDOR_UPDATE_FAILURE = 2001
158 VENDOR_UNEXPECTED_CONTENTS = 2002
159 VENDOR_NONZERO_CONTENTS = 2003
160 VENDOR_RECOVER_FAILURE = 2004
161 OEM_PROP_MISMATCH = 3000
162 FINGERPRINT_MISMATCH = 3001
163 THUMBPRINT_MISMATCH = 3002
164 OLDER_BUILD = 3003
165 DEVICE_MISMATCH = 3004
166 BAD_PATCH_FILE = 3005
167 INSUFFICIENT_CACHE_SPACE = 3006
168 TUNE_PARTITION_FAILURE = 3007
169 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800170
Tao Bao80921982018-03-21 21:02:19 -0700171
Dan Albert8b72aef2015-03-23 19:13:21 -0700172class ExternalError(RuntimeError):
173 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700174
175
Tao Bao32fcdab2018-10-12 10:30:39 -0700176def InitLogging():
177 DEFAULT_LOGGING_CONFIG = {
178 'version': 1,
179 'disable_existing_loggers': False,
180 'formatters': {
181 'standard': {
182 'format':
183 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
184 'datefmt': '%Y-%m-%d %H:%M:%S',
185 },
186 },
187 'handlers': {
188 'default': {
189 'class': 'logging.StreamHandler',
190 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700191 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700192 },
193 },
194 'loggers': {
195 '': {
196 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700197 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700198 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700199 }
200 }
201 }
202 env_config = os.getenv('LOGGING_CONFIG')
203 if env_config:
204 with open(env_config) as f:
205 config = json.load(f)
206 else:
207 config = DEFAULT_LOGGING_CONFIG
208
209 # Increase the logging level for verbose mode.
210 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700211 config = copy.deepcopy(config)
212 config['handlers']['default']['level'] = 'INFO'
213
214 if OPTIONS.logfile:
215 config = copy.deepcopy(config)
216 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400217 'class': 'logging.FileHandler',
218 'formatter': 'standard',
219 'level': 'INFO',
220 'mode': 'w',
221 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700222 }
223 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700224
225 logging.config.dictConfig(config)
226
227
Yifan Hong8e332ff2020-07-29 17:51:55 -0700228def SetHostToolLocation(tool_name, location):
229 OPTIONS.host_tools[tool_name] = location
230
Kelvin Zhang563750f2021-04-28 12:46:17 -0400231
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900232def FindHostToolPath(tool_name):
233 """Finds the path to the host tool.
234
235 Args:
236 tool_name: name of the tool to find
237 Returns:
238 path to the tool if found under either one of the host_tools map or under
239 the same directory as this binary is located at. If not found, tool_name
240 is returned.
241 """
242 if tool_name in OPTIONS.host_tools:
243 return OPTIONS.host_tools[tool_name]
244
245 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
246 tool_path = os.path.join(my_dir, tool_name)
247 if os.path.exists(tool_path):
248 return tool_path
249
250 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700251
Kelvin Zhang563750f2021-04-28 12:46:17 -0400252
Tao Bao39451582017-05-04 11:10:47 -0700253def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700254 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700255
Tao Bao73dd4f42018-10-04 16:25:33 -0700256 Args:
257 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700258 verbose: Whether the commands should be shown. Default to the global
259 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700260 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
261 stdin, etc. stdout and stderr will default to subprocess.PIPE and
262 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800263 universal_newlines will default to True, as most of the users in
264 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700265
266 Returns:
267 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700268 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700269 if 'stdout' not in kwargs and 'stderr' not in kwargs:
270 kwargs['stdout'] = subprocess.PIPE
271 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800272 if 'universal_newlines' not in kwargs:
273 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700274
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900275 if args:
276 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700277 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900278 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700279
Kelvin Zhang766eea72021-06-03 09:36:08 -0400280 if verbose is None:
281 verbose = OPTIONS.verbose
282
Tao Bao32fcdab2018-10-12 10:30:39 -0700283 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400284 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700285 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700286 return subprocess.Popen(args, **kwargs)
287
288
Tao Bao986ee862018-10-04 15:46:16 -0700289def RunAndCheckOutput(args, verbose=None, **kwargs):
290 """Runs the given command and returns the output.
291
292 Args:
293 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700294 verbose: Whether the commands should be shown. Default to the global
295 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700296 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
297 stdin, etc. stdout and stderr will default to subprocess.PIPE and
298 subprocess.STDOUT respectively unless caller specifies any of them.
299
300 Returns:
301 The output string.
302
303 Raises:
304 ExternalError: On non-zero exit from the command.
305 """
Tao Bao986ee862018-10-04 15:46:16 -0700306 proc = Run(args, verbose=verbose, **kwargs)
307 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800308 if output is None:
309 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700310 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400311 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700312 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700313 if proc.returncode != 0:
314 raise ExternalError(
315 "Failed to run command '{}' (exit code {}):\n{}".format(
316 args, proc.returncode, output))
317 return output
318
319
Tao Baoc765cca2018-01-31 17:32:40 -0800320def RoundUpTo4K(value):
321 rounded_up = value + 4095
322 return rounded_up - (rounded_up % 4096)
323
324
Ying Wang7e6d4e42010-12-13 16:25:36 -0800325def CloseInheritedPipes():
326 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
327 before doing other work."""
328 if platform.system() != "Darwin":
329 return
330 for d in range(3, 1025):
331 try:
332 stat = os.fstat(d)
333 if stat is not None:
334 pipebit = stat[0] & 0x1000
335 if pipebit != 0:
336 os.close(d)
337 except OSError:
338 pass
339
340
Tao Bao1c320f82019-10-04 23:25:12 -0700341class BuildInfo(object):
342 """A class that holds the information for a given build.
343
344 This class wraps up the property querying for a given source or target build.
345 It abstracts away the logic of handling OEM-specific properties, and caches
346 the commonly used properties such as fingerprint.
347
348 There are two types of info dicts: a) build-time info dict, which is generated
349 at build time (i.e. included in a target_files zip); b) OEM info dict that is
350 specified at package generation time (via command line argument
351 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
352 having "oem_fingerprint_properties" in build-time info dict), all the queries
353 would be answered based on build-time info dict only. Otherwise if using
354 OEM-specific properties, some of them will be calculated from two info dicts.
355
356 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800357 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700358
359 Attributes:
360 info_dict: The build-time info dict.
361 is_ab: Whether it's a build that uses A/B OTA.
362 oem_dicts: A list of OEM dicts.
363 oem_props: A list of OEM properties that should be read from OEM dicts; None
364 if the build doesn't use any OEM-specific property.
365 fingerprint: The fingerprint of the build, which would be calculated based
366 on OEM properties if applicable.
367 device: The device name, which could come from OEM dicts if applicable.
368 """
369
370 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
371 "ro.product.manufacturer", "ro.product.model",
372 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700373 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
374 "product", "odm", "vendor", "system_ext", "system"]
375 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
376 "product", "product_services", "odm", "vendor", "system"]
377 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700378
Tianjiefdda51d2021-05-05 14:46:35 -0700379 # The length of vbmeta digest to append to the fingerprint
380 _VBMETA_DIGEST_SIZE_USED = 8
381
382 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700383 """Initializes a BuildInfo instance with the given dicts.
384
385 Note that it only wraps up the given dicts, without making copies.
386
387 Arguments:
388 info_dict: The build-time info dict.
389 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
390 that it always uses the first dict to calculate the fingerprint or the
391 device name. The rest would be used for asserting OEM properties only
392 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700393 use_legacy_id: Use the legacy build id to construct the fingerprint. This
394 is used when we need a BuildInfo class, while the vbmeta digest is
395 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700396
397 Raises:
398 ValueError: On invalid inputs.
399 """
400 self.info_dict = info_dict
401 self.oem_dicts = oem_dicts
402
403 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700404 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700405
Hongguang Chend7c160f2020-05-03 21:24:26 -0700406 # Skip _oem_props if oem_dicts is None to use BuildInfo in
407 # sign_target_files_apks
408 if self.oem_dicts:
409 self._oem_props = info_dict.get("oem_fingerprint_properties")
410 else:
411 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700412
Daniel Normand5fe8622020-01-08 17:01:11 -0800413 def check_fingerprint(fingerprint):
414 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
415 raise ValueError(
416 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
417 "3.2.2. Build Parameters.".format(fingerprint))
418
Daniel Normand5fe8622020-01-08 17:01:11 -0800419 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800420 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800421 try:
422 fingerprint = self.CalculatePartitionFingerprint(partition)
423 check_fingerprint(fingerprint)
424 self._partition_fingerprints[partition] = fingerprint
425 except ExternalError:
426 continue
427 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800428 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800429 # need a fingerprint when creating the image.
430 self._partition_fingerprints[
431 "system_other"] = self._partition_fingerprints["system"]
432
Tao Bao1c320f82019-10-04 23:25:12 -0700433 # These two should be computed only after setting self._oem_props.
434 self._device = self.GetOemProperty("ro.product.device")
435 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800436 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700437
438 @property
439 def is_ab(self):
440 return self._is_ab
441
442 @property
443 def device(self):
444 return self._device
445
446 @property
447 def fingerprint(self):
448 return self._fingerprint
449
450 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400451 def is_vabc(self):
452 vendor_prop = self.info_dict.get("vendor.build.prop")
453 vabc_enabled = vendor_prop and \
454 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
455 return vabc_enabled
456
457 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700458 def is_vabc_xor(self):
459 vendor_prop = self.info_dict.get("vendor.build.prop")
460 vabc_xor_enabled = vendor_prop and \
461 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
462 return vabc_xor_enabled
463
464 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400465 def vendor_suppressed_vabc(self):
466 vendor_prop = self.info_dict.get("vendor.build.prop")
467 vabc_suppressed = vendor_prop and \
468 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
469 return vabc_suppressed and vabc_suppressed.lower() == "true"
470
471 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700472 def oem_props(self):
473 return self._oem_props
474
475 def __getitem__(self, key):
476 return self.info_dict[key]
477
478 def __setitem__(self, key, value):
479 self.info_dict[key] = value
480
481 def get(self, key, default=None):
482 return self.info_dict.get(key, default)
483
484 def items(self):
485 return self.info_dict.items()
486
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000487 def _GetRawBuildProp(self, prop, partition):
488 prop_file = '{}.build.prop'.format(
489 partition) if partition else 'build.prop'
490 partition_props = self.info_dict.get(prop_file)
491 if not partition_props:
492 return None
493 return partition_props.GetProp(prop)
494
Daniel Normand5fe8622020-01-08 17:01:11 -0800495 def GetPartitionBuildProp(self, prop, partition):
496 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800497
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000498 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
Devin Mooreb5195ff2022-02-11 18:44:26 +0000499 # This comes from the generic ramdisk
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000500 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800501
Daniel Normand5fe8622020-01-08 17:01:11 -0800502 # If provided a partition for this property, only look within that
503 # partition's build.prop.
504 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800505 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800506 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800507 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000508
509 prop_val = self._GetRawBuildProp(prop, partition)
510 if prop_val is not None:
511 return prop_val
512 raise ExternalError("couldn't find %s in %s.build.prop" %
513 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800514
Tao Bao1c320f82019-10-04 23:25:12 -0700515 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800516 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700517 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
518 return self._ResolveRoProductBuildProp(prop)
519
Tianjiefdda51d2021-05-05 14:46:35 -0700520 if prop == "ro.build.id":
521 return self._GetBuildId()
522
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000523 prop_val = self._GetRawBuildProp(prop, None)
524 if prop_val is not None:
525 return prop_val
526
527 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700528
529 def _ResolveRoProductBuildProp(self, prop):
530 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000531 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700532 if prop_val:
533 return prop_val
534
Steven Laver8e2086e2020-04-27 16:26:31 -0700535 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000536 source_order_val = self._GetRawBuildProp(
537 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700538 if source_order_val:
539 source_order = source_order_val.split(",")
540 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700541 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700542
543 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700544 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700545 raise ExternalError(
546 "Invalid ro.product.property_source_order '{}'".format(source_order))
547
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000548 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700549 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000550 "ro.product", "ro.product.{}".format(source_partition), 1)
551 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700552 if prop_val:
553 return prop_val
554
555 raise ExternalError("couldn't resolve {}".format(prop))
556
Steven Laver8e2086e2020-04-27 16:26:31 -0700557 def _GetRoProductPropsDefaultSourceOrder(self):
558 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
559 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000560 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700561 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000562 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700563 if android_version == "10":
564 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
565 # NOTE: float() conversion of android_version will have rounding error.
566 # We are checking for "9" or less, and using "< 10" is well outside of
567 # possible floating point rounding.
568 try:
569 android_version_val = float(android_version)
570 except ValueError:
571 android_version_val = 0
572 if android_version_val < 10:
573 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
574 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
575
Tianjieb37c5be2020-10-15 21:27:10 -0700576 def _GetPlatformVersion(self):
577 version_sdk = self.GetBuildProp("ro.build.version.sdk")
578 # init code switches to version_release_or_codename (see b/158483506). After
579 # API finalization, release_or_codename will be the same as release. This
580 # is the best effort to support pre-S dev stage builds.
581 if int(version_sdk) >= 30:
582 try:
583 return self.GetBuildProp("ro.build.version.release_or_codename")
584 except ExternalError:
585 logger.warning('Failed to find ro.build.version.release_or_codename')
586
587 return self.GetBuildProp("ro.build.version.release")
588
Tianjiefdda51d2021-05-05 14:46:35 -0700589 def _GetBuildId(self):
590 build_id = self._GetRawBuildProp("ro.build.id", None)
591 if build_id:
592 return build_id
593
594 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
595 if not legacy_build_id:
596 raise ExternalError("Couldn't find build id in property file")
597
598 if self.use_legacy_id:
599 return legacy_build_id
600
601 # Append the top 8 chars of vbmeta digest to the existing build id. The
602 # logic needs to match the one in init, so that OTA can deliver correctly.
603 avb_enable = self.info_dict.get("avb_enable") == "true"
604 if not avb_enable:
605 raise ExternalError("AVB isn't enabled when using legacy build id")
606
607 vbmeta_digest = self.info_dict.get("vbmeta_digest")
608 if not vbmeta_digest:
609 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
610 " id")
611 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
612 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
613
614 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
615 return legacy_build_id + '.' + digest_prefix
616
Tianjieb37c5be2020-10-15 21:27:10 -0700617 def _GetPartitionPlatformVersion(self, partition):
618 try:
619 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
620 partition)
621 except ExternalError:
622 return self.GetPartitionBuildProp("ro.build.version.release",
623 partition)
624
Tao Bao1c320f82019-10-04 23:25:12 -0700625 def GetOemProperty(self, key):
626 if self.oem_props is not None and key in self.oem_props:
627 return self.oem_dicts[0][key]
628 return self.GetBuildProp(key)
629
Daniel Normand5fe8622020-01-08 17:01:11 -0800630 def GetPartitionFingerprint(self, partition):
631 return self._partition_fingerprints.get(partition, None)
632
633 def CalculatePartitionFingerprint(self, partition):
634 try:
635 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
636 except ExternalError:
637 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
638 self.GetPartitionBuildProp("ro.product.brand", partition),
639 self.GetPartitionBuildProp("ro.product.name", partition),
640 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700641 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800642 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400643 self.GetPartitionBuildProp(
644 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800645 self.GetPartitionBuildProp("ro.build.type", partition),
646 self.GetPartitionBuildProp("ro.build.tags", partition))
647
Tao Bao1c320f82019-10-04 23:25:12 -0700648 def CalculateFingerprint(self):
649 if self.oem_props is None:
650 try:
651 return self.GetBuildProp("ro.build.fingerprint")
652 except ExternalError:
653 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
654 self.GetBuildProp("ro.product.brand"),
655 self.GetBuildProp("ro.product.name"),
656 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700657 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700658 self.GetBuildProp("ro.build.id"),
659 self.GetBuildProp("ro.build.version.incremental"),
660 self.GetBuildProp("ro.build.type"),
661 self.GetBuildProp("ro.build.tags"))
662 return "%s/%s/%s:%s" % (
663 self.GetOemProperty("ro.product.brand"),
664 self.GetOemProperty("ro.product.name"),
665 self.GetOemProperty("ro.product.device"),
666 self.GetBuildProp("ro.build.thumbprint"))
667
668 def WriteMountOemScript(self, script):
669 assert self.oem_props is not None
670 recovery_mount_options = self.info_dict.get("recovery_mount_options")
671 script.Mount("/oem", recovery_mount_options)
672
673 def WriteDeviceAssertions(self, script, oem_no_mount):
674 # Read the property directly if not using OEM properties.
675 if not self.oem_props:
676 script.AssertDevice(self.device)
677 return
678
679 # Otherwise assert OEM properties.
680 if not self.oem_dicts:
681 raise ExternalError(
682 "No OEM file provided to answer expected assertions")
683
684 for prop in self.oem_props.split():
685 values = []
686 for oem_dict in self.oem_dicts:
687 if prop in oem_dict:
688 values.append(oem_dict[prop])
689 if not values:
690 raise ExternalError(
691 "The OEM file is missing the property %s" % (prop,))
692 script.AssertOemProperty(prop, values, oem_no_mount)
693
694
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000695def ReadFromInputFile(input_file, fn):
696 """Reads the contents of fn from input zipfile or directory."""
697 if isinstance(input_file, zipfile.ZipFile):
698 return input_file.read(fn).decode()
699 else:
700 path = os.path.join(input_file, *fn.split("/"))
701 try:
702 with open(path) as f:
703 return f.read()
704 except IOError as e:
705 if e.errno == errno.ENOENT:
706 raise KeyError(fn)
707
708
Yifan Hong10482a22021-01-07 14:38:41 -0800709def ExtractFromInputFile(input_file, fn):
710 """Extracts the contents of fn from input zipfile or directory into a file."""
711 if isinstance(input_file, zipfile.ZipFile):
712 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500713 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800714 f.write(input_file.read(fn))
715 return tmp_file
716 else:
717 file = os.path.join(input_file, *fn.split("/"))
718 if not os.path.exists(file):
719 raise KeyError(fn)
720 return file
721
Kelvin Zhang563750f2021-04-28 12:46:17 -0400722
jiajia tangf3f842b2021-03-17 21:49:44 +0800723class RamdiskFormat(object):
724 LZ4 = 1
725 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800726
Kelvin Zhang563750f2021-04-28 12:46:17 -0400727
TJ Rhoades6f488e92022-05-01 22:16:22 -0700728def GetRamdiskFormat(info_dict):
jiajia tang836f76b2021-04-02 14:48:26 +0800729 if info_dict.get('lz4_ramdisks') == 'true':
730 ramdisk_format = RamdiskFormat.LZ4
731 else:
732 ramdisk_format = RamdiskFormat.GZ
733 return ramdisk_format
734
Kelvin Zhang563750f2021-04-28 12:46:17 -0400735
Tao Bao410ad8b2018-08-24 12:08:38 -0700736def LoadInfoDict(input_file, repacking=False):
737 """Loads the key/value pairs from the given input target_files.
738
Tianjiea85bdf02020-07-29 11:56:19 -0700739 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700740 checks and returns the parsed key/value pairs for to the given build. It's
741 usually called early when working on input target_files files, e.g. when
742 generating OTAs, or signing builds. Note that the function may be called
743 against an old target_files file (i.e. from past dessert releases). So the
744 property parsing needs to be backward compatible.
745
746 In a `META/misc_info.txt`, a few properties are stored as links to the files
747 in the PRODUCT_OUT directory. It works fine with the build system. However,
748 they are no longer available when (re)generating images from target_files zip.
749 When `repacking` is True, redirect these properties to the actual files in the
750 unzipped directory.
751
752 Args:
753 input_file: The input target_files file, which could be an open
754 zipfile.ZipFile instance, or a str for the dir that contains the files
755 unzipped from a target_files file.
756 repacking: Whether it's trying repack an target_files file after loading the
757 info dict (default: False). If so, it will rewrite a few loaded
758 properties (e.g. selinux_fc, root_dir) to point to the actual files in
759 target_files file. When doing repacking, `input_file` must be a dir.
760
761 Returns:
762 A dict that contains the parsed key/value pairs.
763
764 Raises:
765 AssertionError: On invalid input arguments.
766 ValueError: On malformed input values.
767 """
768 if repacking:
769 assert isinstance(input_file, str), \
770 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700771
Doug Zongkerc9253822014-02-04 12:17:58 -0800772 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000773 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800774
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700775 try:
Michael Runge6e836112014-04-15 17:40:21 -0700776 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700777 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700778 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700779
Tao Bao410ad8b2018-08-24 12:08:38 -0700780 if "recovery_api_version" not in d:
781 raise ValueError("Failed to find 'recovery_api_version'")
782 if "fstab_version" not in d:
783 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800784
Tao Bao410ad8b2018-08-24 12:08:38 -0700785 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700786 # "selinux_fc" properties should point to the file_contexts files
787 # (file_contexts.bin) under META/.
788 for key in d:
789 if key.endswith("selinux_fc"):
790 fc_basename = os.path.basename(d[key])
791 fc_config = os.path.join(input_file, "META", fc_basename)
792 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700793
Daniel Norman72c626f2019-05-13 15:58:14 -0700794 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700795
Tom Cherryd14b8952018-08-09 14:26:00 -0700796 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700797 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700798 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700799 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700800
David Anderson0ec64ac2019-12-06 12:21:18 -0800801 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700802 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000803 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800804 key_name = part_name + "_base_fs_file"
805 if key_name not in d:
806 continue
807 basename = os.path.basename(d[key_name])
808 base_fs_file = os.path.join(input_file, "META", basename)
809 if os.path.exists(base_fs_file):
810 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700811 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700812 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800813 "Failed to find %s base fs file: %s", part_name, base_fs_file)
814 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700815
Doug Zongker37974732010-09-16 17:44:38 -0700816 def makeint(key):
817 if key in d:
818 d[key] = int(d[key], 0)
819
820 makeint("recovery_api_version")
821 makeint("blocksize")
822 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700823 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700824 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700825 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700826 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800827 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700828
Steve Muckle903a1ca2020-05-07 17:32:10 -0700829 boot_images = "boot.img"
830 if "boot_images" in d:
831 boot_images = d["boot_images"]
832 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400833 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700834
Tao Bao765668f2019-10-04 22:03:00 -0700835 # Load recovery fstab if applicable.
836 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
TJ Rhoades6f488e92022-05-01 22:16:22 -0700837 ramdisk_format = GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800838
Tianjie Xu861f4132018-09-12 11:49:33 -0700839 # Tries to load the build props for all partitions with care_map, including
840 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800841 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800842 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000843 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800844 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700845 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800846
Tao Bao3ed35d32019-10-07 20:48:48 -0700847 # Set up the salt (based on fingerprint) that will be used when adding AVB
848 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800849 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700850 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800851 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800852 fingerprint = build_info.GetPartitionFingerprint(partition)
853 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400854 d["avb_{}_salt".format(partition)] = sha256(
855 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700856
857 # Set the vbmeta digest if exists
858 try:
859 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
860 except KeyError:
861 pass
862
Kelvin Zhang39aea442020-08-17 11:04:25 -0400863 try:
864 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
865 except KeyError:
866 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700867 return d
868
Tao Baod1de6f32017-03-01 16:38:48 -0800869
Daniel Norman4cc9df62019-07-18 10:11:07 -0700870def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900871 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700872 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900873
Daniel Norman4cc9df62019-07-18 10:11:07 -0700874
875def LoadDictionaryFromFile(file_path):
876 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900877 return LoadDictionaryFromLines(lines)
878
879
Michael Runge6e836112014-04-15 17:40:21 -0700880def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700881 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700882 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700883 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700884 if not line or line.startswith("#"):
885 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700886 if "=" in line:
887 name, value = line.split("=", 1)
888 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700889 return d
890
Tao Baod1de6f32017-03-01 16:38:48 -0800891
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000892class PartitionBuildProps(object):
893 """The class holds the build prop of a particular partition.
894
895 This class loads the build.prop and holds the build properties for a given
896 partition. It also partially recognizes the 'import' statement in the
897 build.prop; and calculates alternative values of some specific build
898 properties during runtime.
899
900 Attributes:
901 input_file: a zipped target-file or an unzipped target-file directory.
902 partition: name of the partition.
903 props_allow_override: a list of build properties to search for the
904 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000905 build_props: a dict of build properties for the given partition.
906 prop_overrides: a set of props that are overridden by import.
907 placeholder_values: A dict of runtime variables' values to replace the
908 placeholders in the build.prop file. We expect exactly one value for
909 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800910 ramdisk_format: If name is "boot", the format of ramdisk inside the
911 boot image. Otherwise, its value is ignored.
912 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000913 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400914
Tianjie Xu9afb2212020-05-10 21:48:15 +0000915 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000916 self.input_file = input_file
917 self.partition = name
918 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000919 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000920 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000921 self.prop_overrides = set()
922 self.placeholder_values = {}
923 if placeholder_values:
924 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000925
926 @staticmethod
927 def FromDictionary(name, build_props):
928 """Constructs an instance from a build prop dictionary."""
929
930 props = PartitionBuildProps("unknown", name)
931 props.build_props = build_props.copy()
932 return props
933
934 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800935 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000936 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800937
Devin Mooreafdd7c72021-12-13 22:04:08 +0000938 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400939 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000940 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800941 else:
942 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
943
944 props = PartitionBuildProps(input_file, name, placeholder_values)
945 props._LoadBuildProp(data)
946 return props
947
948 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000949 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800950 """
951 Read build.prop for boot image from input_file.
952 Return empty string if not found.
953 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000954 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800955 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000956 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800957 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000958 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800959 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800960 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800961 if prop_file is None:
962 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500963 with open(prop_file, "r") as f:
964 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800965
966 @staticmethod
967 def _ReadPartitionPropFile(input_file, name):
968 """
969 Read build.prop for name from input_file.
970 Return empty string if not found.
971 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000972 data = ''
973 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
974 '{}/build.prop'.format(name.upper())]:
975 try:
976 data = ReadFromInputFile(input_file, prop_file)
977 break
978 except KeyError:
979 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -0800980 if data == '':
981 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -0800982 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000983
Yifan Hong125d0b62020-09-24 17:07:03 -0700984 @staticmethod
985 def FromBuildPropFile(name, build_prop_file):
986 """Constructs an instance from a build prop file."""
987
988 props = PartitionBuildProps("unknown", name)
989 with open(build_prop_file) as f:
990 props._LoadBuildProp(f.read())
991 return props
992
Tianjie Xu9afb2212020-05-10 21:48:15 +0000993 def _LoadBuildProp(self, data):
994 for line in data.split('\n'):
995 line = line.strip()
996 if not line or line.startswith("#"):
997 continue
998 if line.startswith("import"):
999 overrides = self._ImportParser(line)
1000 duplicates = self.prop_overrides.intersection(overrides.keys())
1001 if duplicates:
1002 raise ValueError('prop {} is overridden multiple times'.format(
1003 ','.join(duplicates)))
1004 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1005 self.build_props.update(overrides)
1006 elif "=" in line:
1007 name, value = line.split("=", 1)
1008 if name in self.prop_overrides:
1009 raise ValueError('prop {} is set again after overridden by import '
1010 'statement'.format(name))
1011 self.build_props[name] = value
1012
1013 def _ImportParser(self, line):
1014 """Parses the build prop in a given import statement."""
1015
1016 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001017 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001018 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001019
1020 if len(tokens) == 3:
1021 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1022 return {}
1023
Tianjie Xu9afb2212020-05-10 21:48:15 +00001024 import_path = tokens[1]
1025 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001026 logger.warn('Unrecognized import path {}'.format(line))
1027 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001028
1029 # We only recognize a subset of import statement that the init process
1030 # supports. And we can loose the restriction based on how the dynamic
1031 # fingerprint is used in practice. The placeholder format should be
1032 # ${placeholder}, and its value should be provided by the caller through
1033 # the placeholder_values.
1034 for prop, value in self.placeholder_values.items():
1035 prop_place_holder = '${{{}}}'.format(prop)
1036 if prop_place_holder in import_path:
1037 import_path = import_path.replace(prop_place_holder, value)
1038 if '$' in import_path:
1039 logger.info('Unresolved place holder in import path %s', import_path)
1040 return {}
1041
1042 import_path = import_path.replace('/{}'.format(self.partition),
1043 self.partition.upper())
1044 logger.info('Parsing build props override from %s', import_path)
1045
1046 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1047 d = LoadDictionaryFromLines(lines)
1048 return {key: val for key, val in d.items()
1049 if key in self.props_allow_override}
1050
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001051 def GetProp(self, prop):
1052 return self.build_props.get(prop)
1053
1054
Tianjie Xucfa86222016-03-07 16:31:19 -08001055def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1056 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001057 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001058 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001059 self.mount_point = mount_point
1060 self.fs_type = fs_type
1061 self.device = device
1062 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001063 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001064 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001065
1066 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001067 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001068 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001069 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001070 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001071
Tao Baod1de6f32017-03-01 16:38:48 -08001072 assert fstab_version == 2
1073
1074 d = {}
1075 for line in data.split("\n"):
1076 line = line.strip()
1077 if not line or line.startswith("#"):
1078 continue
1079
1080 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1081 pieces = line.split()
1082 if len(pieces) != 5:
1083 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1084
1085 # Ignore entries that are managed by vold.
1086 options = pieces[4]
1087 if "voldmanaged=" in options:
1088 continue
1089
1090 # It's a good line, parse it.
1091 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001092 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001093 options = options.split(",")
1094 for i in options:
1095 if i.startswith("length="):
1096 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001097 elif i == "slotselect":
1098 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001099 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001100 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001101 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001102
Tao Baod1de6f32017-03-01 16:38:48 -08001103 mount_flags = pieces[3]
1104 # Honor the SELinux context if present.
1105 context = None
1106 for i in mount_flags.split(","):
1107 if i.startswith("context="):
1108 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001109
Tao Baod1de6f32017-03-01 16:38:48 -08001110 mount_point = pieces[1]
1111 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001112 device=pieces[0], length=length, context=context,
1113 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001114
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001115 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001116 # system. Other areas assume system is always at "/system" so point /system
1117 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001118 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001119 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001120 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001121 return d
1122
1123
Tao Bao765668f2019-10-04 22:03:00 -07001124def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1125 """Finds the path to recovery fstab and loads its contents."""
1126 # recovery fstab is only meaningful when installing an update via recovery
1127 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001128 if info_dict.get('ab_update') == 'true' and \
1129 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001130 return None
1131
1132 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1133 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1134 # cases, since it may load the info_dict from an old build (e.g. when
1135 # generating incremental OTAs from that build).
1136 system_root_image = info_dict.get('system_root_image') == 'true'
1137 if info_dict.get('no_recovery') != 'true':
1138 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1139 if isinstance(input_file, zipfile.ZipFile):
1140 if recovery_fstab_path not in input_file.namelist():
1141 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1142 else:
1143 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1144 if not os.path.exists(path):
1145 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1146 return LoadRecoveryFSTab(
1147 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1148 system_root_image)
1149
1150 if info_dict.get('recovery_as_boot') == 'true':
1151 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1152 if isinstance(input_file, zipfile.ZipFile):
1153 if recovery_fstab_path not in input_file.namelist():
1154 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1155 else:
1156 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1157 if not os.path.exists(path):
1158 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1159 return LoadRecoveryFSTab(
1160 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1161 system_root_image)
1162
1163 return None
1164
1165
Doug Zongker37974732010-09-16 17:44:38 -07001166def DumpInfoDict(d):
1167 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001168 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001169
Dan Albert8b72aef2015-03-23 19:13:21 -07001170
Daniel Norman55417142019-11-25 16:04:36 -08001171def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001172 """Merges dynamic partition info variables.
1173
1174 Args:
1175 framework_dict: The dictionary of dynamic partition info variables from the
1176 partial framework target files.
1177 vendor_dict: The dictionary of dynamic partition info variables from the
1178 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001179
1180 Returns:
1181 The merged dynamic partition info dictionary.
1182 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001183
1184 def uniq_concat(a, b):
1185 combined = set(a.split(" "))
1186 combined.update(set(b.split(" ")))
1187 combined = [item.strip() for item in combined if item.strip()]
1188 return " ".join(sorted(combined))
1189
1190 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhang563750f2021-04-28 12:46:17 -04001191 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001192 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1193
1194 merged_dict = {"use_dynamic_partitions": "true"}
1195
1196 merged_dict["dynamic_partition_list"] = uniq_concat(
1197 framework_dict.get("dynamic_partition_list", ""),
1198 vendor_dict.get("dynamic_partition_list", ""))
1199
1200 # Super block devices are defined by the vendor dict.
1201 if "super_block_devices" in vendor_dict:
1202 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
1203 for block_device in merged_dict["super_block_devices"].split(" "):
1204 key = "super_%s_device_size" % block_device
1205 if key not in vendor_dict:
1206 raise ValueError("Vendor dict does not contain required key %s." % key)
1207 merged_dict[key] = vendor_dict[key]
1208
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001209 # Partition groups and group sizes are defined by the vendor dict because
1210 # these values may vary for each board that uses a shared system image.
1211 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001212 for partition_group in merged_dict["super_partition_groups"].split(" "):
1213 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001214 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001215 if key not in vendor_dict:
1216 raise ValueError("Vendor dict does not contain required key %s." % key)
1217 merged_dict[key] = vendor_dict[key]
1218
1219 # Set the partition group's partition list using a concatenation of the
1220 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001221 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001222 merged_dict[key] = uniq_concat(
1223 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301224
Daniel Normanb0c75912020-09-24 14:30:21 -07001225 # Various other flags should be copied from the vendor dict, if defined.
1226 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1227 "super_metadata_device", "super_partition_error_limit",
1228 "super_partition_size"):
1229 if key in vendor_dict.keys():
1230 merged_dict[key] = vendor_dict[key]
1231
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001232 return merged_dict
1233
1234
Daniel Norman21c34f72020-11-11 17:25:50 -08001235def PartitionMapFromTargetFiles(target_files_dir):
1236 """Builds a map from partition -> path within an extracted target files directory."""
1237 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1238 possible_subdirs = {
1239 "system": ["SYSTEM"],
1240 "vendor": ["VENDOR", "SYSTEM/vendor"],
1241 "product": ["PRODUCT", "SYSTEM/product"],
1242 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1243 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1244 "vendor_dlkm": [
1245 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1246 ],
1247 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001248 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001249 }
1250 partition_map = {}
1251 for partition, subdirs in possible_subdirs.items():
1252 for subdir in subdirs:
1253 if os.path.exists(os.path.join(target_files_dir, subdir)):
1254 partition_map[partition] = subdir
1255 break
1256 return partition_map
1257
1258
Daniel Normand3351562020-10-29 12:33:11 -07001259def SharedUidPartitionViolations(uid_dict, partition_groups):
1260 """Checks for APK sharedUserIds that cross partition group boundaries.
1261
1262 This uses a single or merged build's shareduid_violation_modules.json
1263 output file, as generated by find_shareduid_violation.py or
1264 core/tasks/find-shareduid-violation.mk.
1265
1266 An error is defined as a sharedUserId that is found in a set of partitions
1267 that span more than one partition group.
1268
1269 Args:
1270 uid_dict: A dictionary created by using the standard json module to read a
1271 complete shareduid_violation_modules.json file.
1272 partition_groups: A list of groups, where each group is a list of
1273 partitions.
1274
1275 Returns:
1276 A list of error messages.
1277 """
1278 errors = []
1279 for uid, partitions in uid_dict.items():
1280 found_in_groups = [
1281 group for group in partition_groups
1282 if set(partitions.keys()) & set(group)
1283 ]
1284 if len(found_in_groups) > 1:
1285 errors.append(
1286 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1287 % (uid, ",".join(sorted(partitions.keys()))))
1288 return errors
1289
1290
Daniel Norman21c34f72020-11-11 17:25:50 -08001291def RunHostInitVerifier(product_out, partition_map):
1292 """Runs host_init_verifier on the init rc files within partitions.
1293
1294 host_init_verifier searches the etc/init path within each partition.
1295
1296 Args:
1297 product_out: PRODUCT_OUT directory, containing partition directories.
1298 partition_map: A map of partition name -> relative path within product_out.
1299 """
1300 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1301 cmd = ["host_init_verifier"]
1302 for partition, path in partition_map.items():
1303 if partition not in allowed_partitions:
1304 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1305 partition)
1306 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1307 # Add --property-contexts if the file exists on the partition.
1308 property_contexts = "%s_property_contexts" % (
1309 "plat" if partition == "system" else partition)
1310 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1311 property_contexts)
1312 if os.path.exists(property_contexts_path):
1313 cmd.append("--property-contexts=%s" % property_contexts_path)
1314 # Add the passwd file if the file exists on the partition.
1315 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1316 if os.path.exists(passwd_path):
1317 cmd.extend(["-p", passwd_path])
1318 return RunAndCheckOutput(cmd)
1319
1320
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001321def AppendAVBSigningArgs(cmd, partition):
1322 """Append signing arguments for avbtool."""
1323 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1324 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001325 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1326 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1327 if os.path.exists(new_key_path):
1328 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001329 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1330 if key_path and algorithm:
1331 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001332 avb_salt = OPTIONS.info_dict.get("avb_salt")
1333 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001334 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001335 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001336
1337
Tao Bao765668f2019-10-04 22:03:00 -07001338def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001339 """Returns the VBMeta arguments for partition.
1340
1341 It sets up the VBMeta argument by including the partition descriptor from the
1342 given 'image', or by configuring the partition as a chained partition.
1343
1344 Args:
1345 partition: The name of the partition (e.g. "system").
1346 image: The path to the partition image.
1347 info_dict: A dict returned by common.LoadInfoDict(). Will use
1348 OPTIONS.info_dict if None has been given.
1349
1350 Returns:
1351 A list of VBMeta arguments.
1352 """
1353 if info_dict is None:
1354 info_dict = OPTIONS.info_dict
1355
1356 # Check if chain partition is used.
1357 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001358 if not key_path:
1359 return ["--include_descriptors_from_image", image]
1360
1361 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1362 # into vbmeta.img. The recovery image will be configured on an independent
1363 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1364 # See details at
1365 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001366 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001367 return []
1368
1369 # Otherwise chain the partition into vbmeta.
1370 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1371 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001372
1373
Tao Bao02a08592018-07-22 12:40:45 -07001374def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1375 """Constructs and returns the arg to build or verify a chained partition.
1376
1377 Args:
1378 partition: The partition name.
1379 info_dict: The info dict to look up the key info and rollback index
1380 location.
1381 key: The key to be used for building or verifying the partition. Defaults to
1382 the key listed in info_dict.
1383
1384 Returns:
1385 A string of form "partition:rollback_index_location:key" that can be used to
1386 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001387 """
1388 if key is None:
1389 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001390 if key and not os.path.exists(key) and OPTIONS.search_path:
1391 new_key_path = os.path.join(OPTIONS.search_path, key)
1392 if os.path.exists(new_key_path):
1393 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001394 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001395 rollback_index_location = info_dict[
1396 "avb_" + partition + "_rollback_index_location"]
1397 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1398
1399
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001400def _HasGkiCertificationArgs():
1401 return ("gki_signing_key_path" in OPTIONS.info_dict and
1402 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001403
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001404
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001405def _GenerateGkiCertificate(image, image_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001406 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001407 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001408
1409 if not os.path.exists(key_path) and OPTIONS.search_path:
1410 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1411 if os.path.exists(new_key_path):
1412 key_path = new_key_path
1413
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001414 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001415 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001416 raise ExternalError(
1417 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001418
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001419 output_certificate = tempfile.NamedTemporaryFile()
1420 cmd = [
1421 "generate_gki_certificate",
1422 "--name", image_name,
1423 "--algorithm", algorithm,
1424 "--key", key_path,
1425 "--output", output_certificate.name,
1426 image,
1427 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001428
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001429 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1430 signature_args = signature_args.strip()
1431 if signature_args:
1432 cmd.extend(["--additional_avb_args", signature_args])
1433
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001434 args = OPTIONS.info_dict.get("avb_boot_add_hash_footer_args", "")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001435 args = args.strip()
1436 if args:
1437 cmd.extend(["--additional_avb_args", args])
1438
1439 RunAndCheckOutput(cmd)
1440
1441 output_certificate.seek(os.SEEK_SET, 0)
1442 data = output_certificate.read()
1443 output_certificate.close()
1444 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001445
1446
Daniel Norman276f0622019-07-26 14:13:51 -07001447def BuildVBMeta(image_path, partitions, name, needed_partitions):
1448 """Creates a VBMeta image.
1449
1450 It generates the requested VBMeta image. The requested image could be for
1451 top-level or chained VBMeta image, which is determined based on the name.
1452
1453 Args:
1454 image_path: The output path for the new VBMeta image.
1455 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001456 values. Only valid partition names are accepted, as partitions listed
1457 in common.AVB_PARTITIONS and custom partitions listed in
1458 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001459 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1460 needed_partitions: Partitions whose descriptors should be included into the
1461 generated VBMeta image.
1462
1463 Raises:
1464 AssertionError: On invalid input args.
1465 """
1466 avbtool = OPTIONS.info_dict["avb_avbtool"]
1467 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1468 AppendAVBSigningArgs(cmd, name)
1469
Hongguang Chenf23364d2020-04-27 18:36:36 -07001470 custom_partitions = OPTIONS.info_dict.get(
1471 "avb_custom_images_partition_list", "").strip().split()
1472
Daniel Norman276f0622019-07-26 14:13:51 -07001473 for partition, path in partitions.items():
1474 if partition not in needed_partitions:
1475 continue
1476 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001477 partition in AVB_VBMETA_PARTITIONS or
1478 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001479 'Unknown partition: {}'.format(partition)
1480 assert os.path.exists(path), \
1481 'Failed to find {} for {}'.format(path, partition)
1482 cmd.extend(GetAvbPartitionArg(partition, path))
1483
1484 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1485 if args and args.strip():
1486 split_args = shlex.split(args)
1487 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001488 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001489 # as a path relative to source tree, which may not be available at the
1490 # same location when running this script (we have the input target_files
1491 # zip only). For such cases, we additionally scan other locations (e.g.
1492 # IMAGES/, RADIO/, etc) before bailing out.
1493 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001494 chained_image = split_args[index + 1]
1495 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001496 continue
1497 found = False
1498 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1499 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001500 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001501 if os.path.exists(alt_path):
1502 split_args[index + 1] = alt_path
1503 found = True
1504 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001505 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001506 cmd.extend(split_args)
1507
1508 RunAndCheckOutput(cmd)
1509
1510
jiajia tang836f76b2021-04-02 14:48:26 +08001511def _MakeRamdisk(sourcedir, fs_config_file=None,
1512 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001513 ramdisk_img = tempfile.NamedTemporaryFile()
1514
1515 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1516 cmd = ["mkbootfs", "-f", fs_config_file,
1517 os.path.join(sourcedir, "RAMDISK")]
1518 else:
1519 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1520 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001521 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001522 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001523 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001524 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001525 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001526 else:
1527 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001528
1529 p2.wait()
1530 p1.wait()
1531 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001532 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001533
1534 return ramdisk_img
1535
1536
Steve Muckle9793cf62020-04-08 18:27:00 -07001537def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001538 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001539 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001540
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001541 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001542 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1543 we are building a two-step special image (i.e. building a recovery image to
1544 be loaded into /boot in two-step OTAs).
1545
1546 Return the image data, or None if sourcedir does not appear to contains files
1547 for building the requested image.
1548 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001549
Yifan Hong63c5ca12020-10-08 11:54:02 -07001550 if info_dict is None:
1551 info_dict = OPTIONS.info_dict
1552
Steve Muckle9793cf62020-04-08 18:27:00 -07001553 # "boot" or "recovery", without extension.
1554 partition_name = os.path.basename(sourcedir).lower()
1555
Yifan Hong63c5ca12020-10-08 11:54:02 -07001556 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001557 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001558 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1559 logger.info("Excluded kernel binary from recovery image.")
1560 else:
1561 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001562 elif partition_name == "init_boot":
1563 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001564 else:
1565 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001566 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001567 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001568 return None
1569
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001570 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1571
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001572 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001573 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001574
Doug Zongkereef39442009-04-02 12:14:19 -07001575 img = tempfile.NamedTemporaryFile()
1576
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001577 if has_ramdisk:
TJ Rhoades6f488e92022-05-01 22:16:22 -07001578 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001579 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1580 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001581
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001582 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1583 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1584
Yifan Hong63c5ca12020-10-08 11:54:02 -07001585 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001586 if kernel_path is not None:
1587 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001588
Benoit Fradina45a8682014-07-14 21:00:43 +02001589 fn = os.path.join(sourcedir, "second")
1590 if os.access(fn, os.F_OK):
1591 cmd.append("--second")
1592 cmd.append(fn)
1593
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001594 fn = os.path.join(sourcedir, "dtb")
1595 if os.access(fn, os.F_OK):
1596 cmd.append("--dtb")
1597 cmd.append(fn)
1598
Doug Zongker171f1cd2009-06-15 22:36:37 -07001599 fn = os.path.join(sourcedir, "cmdline")
1600 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001601 cmd.append("--cmdline")
1602 cmd.append(open(fn).read().rstrip("\n"))
1603
1604 fn = os.path.join(sourcedir, "base")
1605 if os.access(fn, os.F_OK):
1606 cmd.append("--base")
1607 cmd.append(open(fn).read().rstrip("\n"))
1608
Ying Wang4de6b5b2010-08-25 14:29:34 -07001609 fn = os.path.join(sourcedir, "pagesize")
1610 if os.access(fn, os.F_OK):
1611 cmd.append("--pagesize")
1612 cmd.append(open(fn).read().rstrip("\n"))
1613
Steve Mucklef84668e2020-03-16 19:13:46 -07001614 if partition_name == "recovery":
1615 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301616 if not args:
1617 # Fall back to "mkbootimg_args" for recovery image
1618 # in case "recovery_mkbootimg_args" is not set.
1619 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001620 elif partition_name == "init_boot":
1621 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001622 else:
1623 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001624 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001625 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001626
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001627 args = info_dict.get("mkbootimg_version_args")
1628 if args and args.strip():
1629 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001630
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001631 if has_ramdisk:
1632 cmd.extend(["--ramdisk", ramdisk_img.name])
1633
Tao Baod95e9fd2015-03-29 23:07:41 -07001634 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001635 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001636 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001637 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001638 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001639 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001640
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001641 if partition_name == "recovery":
1642 if info_dict.get("include_recovery_dtbo") == "true":
1643 fn = os.path.join(sourcedir, "recovery_dtbo")
1644 cmd.extend(["--recovery_dtbo", fn])
1645 if info_dict.get("include_recovery_acpio") == "true":
1646 fn = os.path.join(sourcedir, "recovery_acpio")
1647 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001648
Tao Bao986ee862018-10-04 15:46:16 -07001649 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001650
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001651 if _HasGkiCertificationArgs():
1652 if not os.path.exists(img.name):
1653 raise ValueError("Cannot find GKI boot.img")
1654 if kernel_path is None or not os.path.exists(kernel_path):
1655 raise ValueError("Cannot find GKI kernel.img")
1656
1657 # Certify GKI images.
1658 boot_signature_bytes = b''
1659 boot_signature_bytes += _GenerateGkiCertificate(img.name, "boot")
1660 boot_signature_bytes += _GenerateGkiCertificate(
1661 kernel_path, "generic_kernel")
1662
1663 BOOT_SIGNATURE_SIZE = 16 * 1024
1664 if len(boot_signature_bytes) > BOOT_SIGNATURE_SIZE:
1665 raise ValueError(
1666 f"GKI boot_signature size must be <= {BOOT_SIGNATURE_SIZE}")
1667 boot_signature_bytes += (
1668 b'\0' * (BOOT_SIGNATURE_SIZE - len(boot_signature_bytes)))
1669 assert len(boot_signature_bytes) == BOOT_SIGNATURE_SIZE
1670
1671 with open(img.name, 'ab') as f:
1672 f.write(boot_signature_bytes)
1673
Tao Bao76def242017-11-21 09:25:31 -08001674 if (info_dict.get("boot_signer") == "true" and
Kelvin Zhang563750f2021-04-28 12:46:17 -04001675 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001676 # Hard-code the path as "/boot" for two-step special recovery image (which
1677 # will be loaded into /boot during the two-step OTA).
1678 if two_step_image:
1679 path = "/boot"
1680 else:
Tao Baobf70c312017-07-11 17:27:55 -07001681 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001682 cmd = [OPTIONS.boot_signer_path]
1683 cmd.extend(OPTIONS.boot_signer_args)
1684 cmd.extend([path, img.name,
1685 info_dict["verity_key"] + ".pk8",
1686 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001687 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001688
Tao Baod95e9fd2015-03-29 23:07:41 -07001689 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001690 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001691 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001692 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001693 # We have switched from the prebuilt futility binary to using the tool
1694 # (futility-host) built from the source. Override the setting in the old
1695 # TF.zip.
1696 futility = info_dict["futility"]
1697 if futility.startswith("prebuilts/"):
1698 futility = "futility-host"
1699 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001700 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001701 info_dict["vboot_key"] + ".vbprivk",
1702 info_dict["vboot_subkey"] + ".vbprivk",
1703 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001704 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001705 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001706
Tao Baof3282b42015-04-01 11:21:55 -07001707 # Clean up the temp files.
1708 img_unsigned.close()
1709 img_keyblock.close()
1710
David Zeuthen8fecb282017-12-01 16:24:01 -05001711 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001712 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001713 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001714 if partition_name == "recovery":
1715 part_size = info_dict["recovery_size"]
1716 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001717 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001718 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001719 "--partition_size", str(part_size), "--partition_name",
1720 partition_name]
1721 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001722 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001723 if args and args.strip():
1724 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001725 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001726
1727 img.seek(os.SEEK_SET, 0)
1728 data = img.read()
1729
1730 if has_ramdisk:
1731 ramdisk_img.close()
1732 img.close()
1733
1734 return data
1735
1736
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001737def _SignBootableImage(image_path, prebuilt_name, partition_name,
1738 info_dict=None):
1739 """Performs AVB signing for a prebuilt boot.img.
1740
1741 Args:
1742 image_path: The full path of the image, e.g., /path/to/boot.img.
1743 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001744 boot-5.10.img, recovery.img or init_boot.img.
1745 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001746 info_dict: The information dict read from misc_info.txt.
1747 """
1748 if info_dict is None:
1749 info_dict = OPTIONS.info_dict
1750
1751 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1752 if info_dict.get("avb_enable") == "true":
1753 avbtool = info_dict["avb_avbtool"]
1754 if partition_name == "recovery":
1755 part_size = info_dict["recovery_size"]
1756 else:
1757 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1758
1759 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1760 "--partition_size", str(part_size), "--partition_name",
1761 partition_name]
1762 AppendAVBSigningArgs(cmd, partition_name)
1763 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1764 if args and args.strip():
1765 cmd.extend(shlex.split(args))
1766 RunAndCheckOutput(cmd)
1767
1768
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001769def HasRamdisk(partition_name, info_dict=None):
1770 """Returns true/false to see if a bootable image should have a ramdisk.
1771
1772 Args:
1773 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1774 info_dict: The information dict read from misc_info.txt.
1775 """
1776 if info_dict is None:
1777 info_dict = OPTIONS.info_dict
1778
1779 if partition_name != "boot":
1780 return True # init_boot.img or recovery.img has a ramdisk.
1781
1782 if info_dict.get("recovery_as_boot") == "true":
1783 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1784
Bowgo Tsai85578e02022-04-19 10:50:59 +08001785 if info_dict.get("gki_boot_image_without_ramdisk") == "true":
1786 return False # A GKI boot.img has no ramdisk since Android-13.
1787
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001788 if info_dict.get("system_root_image") == "true":
1789 # The ramdisk content is merged into the system.img, so there is NO
1790 # ramdisk in the boot.img or boot-<kernel version>.img.
1791 return False
1792
1793 if info_dict.get("init_boot") == "true":
1794 # The ramdisk is moved to the init_boot.img, so there is NO
1795 # ramdisk in the boot.img or boot-<kernel version>.img.
1796 return False
1797
1798 return True
1799
1800
Doug Zongkerd5131602012-08-02 14:46:42 -07001801def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001802 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001803 """Return a File object with the desired bootable image.
1804
1805 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1806 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1807 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001808
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001809 if info_dict is None:
1810 info_dict = OPTIONS.info_dict
1811
Doug Zongker55d93282011-01-25 17:03:34 -08001812 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1813 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001814 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001815 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001816
1817 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1818 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001819 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001820 return File.FromLocalFile(name, prebuilt_path)
1821
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001822 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001823 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1824 if os.path.exists(prebuilt_path):
1825 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1826 signed_img = MakeTempFile()
1827 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001828 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1829 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001830
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001831 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001832
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001833 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001834
Doug Zongker6f1d0312014-08-22 08:07:12 -07001835 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001836 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001837 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001838 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001839 if data:
1840 return File(name, data)
1841 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001842
Doug Zongkereef39442009-04-02 12:14:19 -07001843
Lucas Wei03230252022-04-18 16:00:40 +08001844def _BuildVendorBootImage(sourcedir, partition_name, info_dict=None):
Steve Mucklee1b10862019-07-10 10:49:37 -07001845 """Build a vendor boot image from the specified sourcedir.
1846
1847 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1848 turn them into a vendor boot image.
1849
1850 Return the image data, or None if sourcedir does not appear to contains files
1851 for building the requested image.
1852 """
1853
1854 if info_dict is None:
1855 info_dict = OPTIONS.info_dict
1856
1857 img = tempfile.NamedTemporaryFile()
1858
TJ Rhoades6f488e92022-05-01 22:16:22 -07001859 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001860 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001861
1862 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1863 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1864
1865 cmd = [mkbootimg]
1866
1867 fn = os.path.join(sourcedir, "dtb")
1868 if os.access(fn, os.F_OK):
Lucas Wei03230252022-04-18 16:00:40 +08001869 has_vendor_kernel_boot = (info_dict.get("vendor_kernel_boot", "").lower() == "true")
1870
1871 # Pack dtb into vendor_kernel_boot if building vendor_kernel_boot.
1872 # Otherwise pack dtb into vendor_boot.
1873 if not has_vendor_kernel_boot or partition_name == "vendor_kernel_boot":
1874 cmd.append("--dtb")
1875 cmd.append(fn)
Steve Mucklee1b10862019-07-10 10:49:37 -07001876
1877 fn = os.path.join(sourcedir, "vendor_cmdline")
1878 if os.access(fn, os.F_OK):
1879 cmd.append("--vendor_cmdline")
1880 cmd.append(open(fn).read().rstrip("\n"))
1881
1882 fn = os.path.join(sourcedir, "base")
1883 if os.access(fn, os.F_OK):
1884 cmd.append("--base")
1885 cmd.append(open(fn).read().rstrip("\n"))
1886
1887 fn = os.path.join(sourcedir, "pagesize")
1888 if os.access(fn, os.F_OK):
1889 cmd.append("--pagesize")
1890 cmd.append(open(fn).read().rstrip("\n"))
1891
1892 args = info_dict.get("mkbootimg_args")
1893 if args and args.strip():
1894 cmd.extend(shlex.split(args))
1895
1896 args = info_dict.get("mkbootimg_version_args")
1897 if args and args.strip():
1898 cmd.extend(shlex.split(args))
1899
1900 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1901 cmd.extend(["--vendor_boot", img.name])
1902
Devin Moore50509012021-01-13 10:45:04 -08001903 fn = os.path.join(sourcedir, "vendor_bootconfig")
1904 if os.access(fn, os.F_OK):
1905 cmd.append("--vendor_bootconfig")
1906 cmd.append(fn)
1907
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001908 ramdisk_fragment_imgs = []
1909 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1910 if os.access(fn, os.F_OK):
1911 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1912 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001913 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1914 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001915 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001916 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1917 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001918 # Use prebuilt image if found, else create ramdisk from supplied files.
1919 if os.access(fn, os.F_OK):
1920 ramdisk_fragment_pathname = fn
1921 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001922 ramdisk_fragment_root = os.path.join(
1923 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001924 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1925 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001926 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1927 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1928 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1929
Steve Mucklee1b10862019-07-10 10:49:37 -07001930 RunAndCheckOutput(cmd)
1931
1932 # AVB: if enabled, calculate and add hash.
1933 if info_dict.get("avb_enable") == "true":
1934 avbtool = info_dict["avb_avbtool"]
Lucas Wei03230252022-04-18 16:00:40 +08001935 part_size = info_dict[f'{partition_name}_size']
Steve Mucklee1b10862019-07-10 10:49:37 -07001936 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Lucas Wei03230252022-04-18 16:00:40 +08001937 "--partition_size", str(part_size), "--partition_name", partition_name]
1938 AppendAVBSigningArgs(cmd, partition_name)
1939 args = info_dict.get(f'avb_{partition_name}_add_hash_footer_args')
Steve Mucklee1b10862019-07-10 10:49:37 -07001940 if args and args.strip():
1941 cmd.extend(shlex.split(args))
1942 RunAndCheckOutput(cmd)
1943
1944 img.seek(os.SEEK_SET, 0)
1945 data = img.read()
1946
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001947 for f in ramdisk_fragment_imgs:
1948 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001949 ramdisk_img.close()
1950 img.close()
1951
1952 return data
1953
1954
1955def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1956 info_dict=None):
1957 """Return a File object with the desired vendor boot image.
1958
1959 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1960 the source files in 'unpack_dir'/'tree_subdir'."""
1961
1962 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1963 if os.path.exists(prebuilt_path):
1964 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1965 return File.FromLocalFile(name, prebuilt_path)
1966
1967 logger.info("building image from target_files %s...", tree_subdir)
1968
1969 if info_dict is None:
1970 info_dict = OPTIONS.info_dict
1971
Kelvin Zhang0876c412020-06-23 15:06:58 -04001972 data = _BuildVendorBootImage(
Lucas Wei03230252022-04-18 16:00:40 +08001973 os.path.join(unpack_dir, tree_subdir), "vendor_boot", info_dict)
1974 if data:
1975 return File(name, data)
1976 return None
1977
1978
1979def GetVendorKernelBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1980 info_dict=None):
1981 """Return a File object with the desired vendor kernel boot image.
1982
1983 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1984 the source files in 'unpack_dir'/'tree_subdir'."""
1985
1986 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1987 if os.path.exists(prebuilt_path):
1988 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1989 return File.FromLocalFile(name, prebuilt_path)
1990
1991 logger.info("building image from target_files %s...", tree_subdir)
1992
1993 if info_dict is None:
1994 info_dict = OPTIONS.info_dict
1995
1996 data = _BuildVendorBootImage(
1997 os.path.join(unpack_dir, tree_subdir), "vendor_kernel_boot", info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07001998 if data:
1999 return File(name, data)
2000 return None
2001
2002
Narayan Kamatha07bf042017-08-14 14:49:21 +01002003def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08002004 """Gunzips the given gzip compressed file to a given output file."""
2005 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04002006 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01002007 shutil.copyfileobj(in_file, out_file)
2008
2009
Tao Bao0ff15de2019-03-20 11:26:06 -07002010def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002011 """Unzips the archive to the given directory.
2012
2013 Args:
2014 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002015 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07002016 patterns: Files to unzip from the archive. If omitted, will unzip the entire
2017 archvie. Non-matching patterns will be filtered out. If there's no match
2018 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002019 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002020 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07002021 if patterns is not None:
2022 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04002023 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07002024 names = input_zip.namelist()
2025 filtered = [
2026 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
2027
2028 # There isn't any matching files. Don't unzip anything.
2029 if not filtered:
2030 return
2031 cmd.extend(filtered)
2032
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002033 RunAndCheckOutput(cmd)
2034
2035
Daniel Norman78554ea2021-09-14 10:29:38 -07002036def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002037 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002038
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002039 Args:
2040 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2041 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2042
Daniel Norman78554ea2021-09-14 10:29:38 -07002043 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002044 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002045
Tao Bao1c830bf2017-12-25 10:43:47 -08002046 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002047 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002048 """
Doug Zongkereef39442009-04-02 12:14:19 -07002049
Tao Bao1c830bf2017-12-25 10:43:47 -08002050 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002051 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2052 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002053 UnzipToDir(m.group(1), tmp, patterns)
2054 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002055 filename = m.group(1)
2056 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002057 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002058
Tao Baodba59ee2018-01-09 13:21:02 -08002059 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002060
2061
Yifan Hong8a66a712019-04-04 15:37:57 -07002062def GetUserImage(which, tmpdir, input_zip,
2063 info_dict=None,
2064 allow_shared_blocks=None,
2065 hashtree_info_generator=None,
2066 reset_file_map=False):
2067 """Returns an Image object suitable for passing to BlockImageDiff.
2068
2069 This function loads the specified image from the given path. If the specified
2070 image is sparse, it also performs additional processing for OTA purpose. For
2071 example, it always adds block 0 to clobbered blocks list. It also detects
2072 files that cannot be reconstructed from the block list, for whom we should
2073 avoid applying imgdiff.
2074
2075 Args:
2076 which: The partition name.
2077 tmpdir: The directory that contains the prebuilt image and block map file.
2078 input_zip: The target-files ZIP archive.
2079 info_dict: The dict to be looked up for relevant info.
2080 allow_shared_blocks: If image is sparse, whether having shared blocks is
2081 allowed. If none, it is looked up from info_dict.
2082 hashtree_info_generator: If present and image is sparse, generates the
2083 hashtree_info for this sparse image.
2084 reset_file_map: If true and image is sparse, reset file map before returning
2085 the image.
2086 Returns:
2087 A Image object. If it is a sparse image and reset_file_map is False, the
2088 image will have file_map info loaded.
2089 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002090 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002091 info_dict = LoadInfoDict(input_zip)
2092
2093 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002094 if info_dict.get(which + "_disable_sparse"):
2095 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002096
2097 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2098 # shared blocks (i.e. some blocks will show up in multiple files' block
2099 # list). We can only allocate such shared blocks to the first "owner", and
2100 # disable imgdiff for all later occurrences.
2101 if allow_shared_blocks is None:
2102 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2103
2104 if is_sparse:
2105 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2106 hashtree_info_generator)
2107 if reset_file_map:
2108 img.ResetFileMap()
2109 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04002110 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07002111
2112
2113def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
2114 """Returns a Image object suitable for passing to BlockImageDiff.
2115
2116 This function loads the specified non-sparse image from the given path.
2117
2118 Args:
2119 which: The partition name.
2120 tmpdir: The directory that contains the prebuilt image and block map file.
2121 Returns:
2122 A Image object.
2123 """
2124 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2125 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2126
2127 # The image and map files must have been created prior to calling
2128 # ota_from_target_files.py (since LMP).
2129 assert os.path.exists(path) and os.path.exists(mappath)
2130
Tianjie Xu41976c72019-07-03 13:57:01 -07002131 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
2132
Yifan Hong8a66a712019-04-04 15:37:57 -07002133
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002134def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2135 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08002136 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2137
2138 This function loads the specified sparse image from the given path, and
2139 performs additional processing for OTA purpose. For example, it always adds
2140 block 0 to clobbered blocks list. It also detects files that cannot be
2141 reconstructed from the block list, for whom we should avoid applying imgdiff.
2142
2143 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002144 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002145 tmpdir: The directory that contains the prebuilt image and block map file.
2146 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002147 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002148 hashtree_info_generator: If present, generates the hashtree_info for this
2149 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08002150 Returns:
2151 A SparseImage object, with file_map info loaded.
2152 """
Tao Baoc765cca2018-01-31 17:32:40 -08002153 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2154 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2155
2156 # The image and map files must have been created prior to calling
2157 # ota_from_target_files.py (since LMP).
2158 assert os.path.exists(path) and os.path.exists(mappath)
2159
2160 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2161 # it to clobbered_blocks so that it will be written to the target
2162 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2163 clobbered_blocks = "0"
2164
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002165 image = sparse_img.SparseImage(
2166 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
2167 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08002168
2169 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2170 # if they contain all zeros. We can't reconstruct such a file from its block
2171 # list. Tag such entries accordingly. (Bug: 65213616)
2172 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002173 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002174 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002175 continue
2176
Tom Cherryd14b8952018-08-09 14:26:00 -07002177 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2178 # filename listed in system.map may contain an additional leading slash
2179 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2180 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002181 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002182 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002183 arcname = entry.lstrip('/')
2184 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002185 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002186 else:
2187 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002188
2189 assert arcname in input_zip.namelist(), \
2190 "Failed to find the ZIP entry for {}".format(entry)
2191
Tao Baoc765cca2018-01-31 17:32:40 -08002192 info = input_zip.getinfo(arcname)
2193 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002194
2195 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002196 # image, check the original block list to determine its completeness. Note
2197 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002198 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002199 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002200
Tao Baoc765cca2018-01-31 17:32:40 -08002201 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2202 ranges.extra['incomplete'] = True
2203
2204 return image
2205
2206
Doug Zongkereef39442009-04-02 12:14:19 -07002207def GetKeyPasswords(keylist):
2208 """Given a list of keys, prompt the user to enter passwords for
2209 those which require them. Return a {key: password} dict. password
2210 will be None if the key has no password."""
2211
Doug Zongker8ce7c252009-05-22 13:34:54 -07002212 no_passwords = []
2213 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002214 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002215 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002216
2217 # sorted() can't compare strings to None, so convert Nones to strings
2218 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002219 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002220 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002221 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002222 continue
2223
T.R. Fullhart37e10522013-03-18 10:31:26 -07002224 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002225 "-inform", "DER", "-nocrypt"],
2226 stdin=devnull.fileno(),
2227 stdout=devnull.fileno(),
2228 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002229 p.communicate()
2230 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002231 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002232 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002233 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002234 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2235 "-inform", "DER", "-passin", "pass:"],
2236 stdin=devnull.fileno(),
2237 stdout=devnull.fileno(),
2238 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002239 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002240 if p.returncode == 0:
2241 # Encrypted key with empty string as password.
2242 key_passwords[k] = ''
2243 elif stderr.startswith('Error decrypting key'):
2244 # Definitely encrypted key.
2245 # It would have said "Error reading key" if it didn't parse correctly.
2246 need_passwords.append(k)
2247 else:
2248 # Potentially, a type of key that openssl doesn't understand.
2249 # We'll let the routines in signapk.jar handle it.
2250 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002251 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002252
T.R. Fullhart37e10522013-03-18 10:31:26 -07002253 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002254 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002255 return key_passwords
2256
2257
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002258def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002259 """Gets the minSdkVersion declared in the APK.
2260
Martin Stjernholm58472e82022-01-07 22:08:47 +00002261 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2262 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002263
2264 Args:
2265 apk_name: The APK filename.
2266
2267 Returns:
2268 The parsed SDK version string.
2269
2270 Raises:
2271 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002272 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002273 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002274 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002275 stderr=subprocess.PIPE)
2276 stdoutdata, stderrdata = proc.communicate()
2277 if proc.returncode != 0:
2278 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002279 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2280 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002281
Tao Baof47bf0f2018-03-21 23:28:51 -07002282 for line in stdoutdata.split("\n"):
2283 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002284 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2285 if m:
2286 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002287 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002288
2289
2290def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002291 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002292
Tao Baof47bf0f2018-03-21 23:28:51 -07002293 If minSdkVersion is set to a codename, it is translated to a number using the
2294 provided map.
2295
2296 Args:
2297 apk_name: The APK filename.
2298
2299 Returns:
2300 The parsed SDK version number.
2301
2302 Raises:
2303 ExternalError: On failing to get the min SDK version number.
2304 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002305 version = GetMinSdkVersion(apk_name)
2306 try:
2307 return int(version)
2308 except ValueError:
2309 # Not a decimal number. Codename?
2310 if version in codename_to_api_level_map:
2311 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002312 raise ExternalError(
2313 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2314 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002315
2316
2317def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002318 codename_to_api_level_map=None, whole_file=False,
2319 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002320 """Sign the input_name zip/jar/apk, producing output_name. Use the
2321 given key and password (the latter may be None if the key does not
2322 have a password.
2323
Doug Zongker951495f2009-08-14 12:44:19 -07002324 If whole_file is true, use the "-w" option to SignApk to embed a
2325 signature that covers the whole file in the archive comment of the
2326 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002327
2328 min_api_level is the API Level (int) of the oldest platform this file may end
2329 up on. If not specified for an APK, the API Level is obtained by interpreting
2330 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2331
2332 codename_to_api_level_map is needed to translate the codename which may be
2333 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002334
2335 Caller may optionally specify extra args to be passed to SignApk, which
2336 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002337 """
Tao Bao76def242017-11-21 09:25:31 -08002338 if codename_to_api_level_map is None:
2339 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002340 if extra_signapk_args is None:
2341 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002342
Alex Klyubin9667b182015-12-10 13:38:50 -08002343 java_library_path = os.path.join(
2344 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2345
Tao Baoe95540e2016-11-08 12:08:53 -08002346 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2347 ["-Djava.library.path=" + java_library_path,
2348 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002349 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002350 if whole_file:
2351 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002352
2353 min_sdk_version = min_api_level
2354 if min_sdk_version is None:
2355 if not whole_file:
2356 min_sdk_version = GetMinSdkVersionInt(
2357 input_name, codename_to_api_level_map)
2358 if min_sdk_version is not None:
2359 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2360
T.R. Fullhart37e10522013-03-18 10:31:26 -07002361 cmd.extend([key + OPTIONS.public_key_suffix,
2362 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002363 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002364
Tao Bao73dd4f42018-10-04 16:25:33 -07002365 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002366 if password is not None:
2367 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002368 stdoutdata, _ = proc.communicate(password)
2369 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002370 raise ExternalError(
2371 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002372 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002373
Doug Zongkereef39442009-04-02 12:14:19 -07002374
Doug Zongker37974732010-09-16 17:44:38 -07002375def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002376 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002377
Tao Bao9dd909e2017-11-14 11:27:32 -08002378 For non-AVB images, raise exception if the data is too big. Print a warning
2379 if the data is nearing the maximum size.
2380
2381 For AVB images, the actual image size should be identical to the limit.
2382
2383 Args:
2384 data: A string that contains all the data for the partition.
2385 target: The partition name. The ".img" suffix is optional.
2386 info_dict: The dict to be looked up for relevant info.
2387 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002388 if target.endswith(".img"):
2389 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002390 mount_point = "/" + target
2391
Ying Wangf8824af2014-06-03 14:07:27 -07002392 fs_type = None
2393 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002394 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002395 if mount_point == "/userdata":
2396 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002397 p = info_dict["fstab"][mount_point]
2398 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002399 device = p.device
2400 if "/" in device:
2401 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002402 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002403 if not fs_type or not limit:
2404 return
Doug Zongkereef39442009-04-02 12:14:19 -07002405
Andrew Boie0f9aec82012-02-14 09:32:52 -08002406 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002407 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2408 # path.
2409 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2410 if size != limit:
2411 raise ExternalError(
2412 "Mismatching image size for %s: expected %d actual %d" % (
2413 target, limit, size))
2414 else:
2415 pct = float(size) * 100.0 / limit
2416 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2417 if pct >= 99.0:
2418 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002419
2420 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002421 logger.warning("\n WARNING: %s\n", msg)
2422 else:
2423 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002424
2425
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002426def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002427 """Parses the APK certs info from a given target-files zip.
2428
2429 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2430 tuple with the following elements: (1) a dictionary that maps packages to
2431 certs (based on the "certificate" and "private_key" attributes in the file;
2432 (2) a string representing the extension of compressed APKs in the target files
2433 (e.g ".gz", ".bro").
2434
2435 Args:
2436 tf_zip: The input target_files ZipFile (already open).
2437
2438 Returns:
2439 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2440 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2441 no compressed APKs.
2442 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002443 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002444 compressed_extension = None
2445
Tao Bao0f990332017-09-08 19:02:54 -07002446 # META/apkcerts.txt contains the info for _all_ the packages known at build
2447 # time. Filter out the ones that are not installed.
2448 installed_files = set()
2449 for name in tf_zip.namelist():
2450 basename = os.path.basename(name)
2451 if basename:
2452 installed_files.add(basename)
2453
Tao Baoda30cfa2017-12-01 16:19:46 -08002454 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002455 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002456 if not line:
2457 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002458 m = re.match(
2459 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002460 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2461 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002462 line)
2463 if not m:
2464 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002465
Tao Bao818ddf52018-01-05 11:17:34 -08002466 matches = m.groupdict()
2467 cert = matches["CERT"]
2468 privkey = matches["PRIVKEY"]
2469 name = matches["NAME"]
2470 this_compressed_extension = matches["COMPRESSED"]
2471
2472 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2473 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2474 if cert in SPECIAL_CERT_STRINGS and not privkey:
2475 certmap[name] = cert
2476 elif (cert.endswith(OPTIONS.public_key_suffix) and
2477 privkey.endswith(OPTIONS.private_key_suffix) and
2478 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2479 certmap[name] = cert[:-public_key_suffix_len]
2480 else:
2481 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2482
2483 if not this_compressed_extension:
2484 continue
2485
2486 # Only count the installed files.
2487 filename = name + '.' + this_compressed_extension
2488 if filename not in installed_files:
2489 continue
2490
2491 # Make sure that all the values in the compression map have the same
2492 # extension. We don't support multiple compression methods in the same
2493 # system image.
2494 if compressed_extension:
2495 if this_compressed_extension != compressed_extension:
2496 raise ValueError(
2497 "Multiple compressed extensions: {} vs {}".format(
2498 compressed_extension, this_compressed_extension))
2499 else:
2500 compressed_extension = this_compressed_extension
2501
2502 return (certmap,
2503 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002504
2505
Doug Zongkereef39442009-04-02 12:14:19 -07002506COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002507Global options
2508
2509 -p (--path) <dir>
2510 Prepend <dir>/bin to the list of places to search for binaries run by this
2511 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002512
Doug Zongker05d3dea2009-06-22 11:32:31 -07002513 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002514 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002515
Tao Bao30df8b42018-04-23 15:32:53 -07002516 -x (--extra) <key=value>
2517 Add a key/value pair to the 'extras' dict, which device-specific extension
2518 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002519
Doug Zongkereef39442009-04-02 12:14:19 -07002520 -v (--verbose)
2521 Show command lines being executed.
2522
2523 -h (--help)
2524 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002525
2526 --logfile <file>
2527 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002528"""
2529
Kelvin Zhang0876c412020-06-23 15:06:58 -04002530
Doug Zongkereef39442009-04-02 12:14:19 -07002531def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002532 print(docstring.rstrip("\n"))
2533 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002534
2535
2536def ParseOptions(argv,
2537 docstring,
2538 extra_opts="", extra_long_opts=(),
2539 extra_option_handler=None):
2540 """Parse the options in argv and return any arguments that aren't
2541 flags. docstring is the calling module's docstring, to be displayed
2542 for errors and -h. extra_opts and extra_long_opts are for flags
2543 defined by the caller, which are processed by passing them to
2544 extra_option_handler."""
2545
2546 try:
2547 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002548 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002549 ["help", "verbose", "path=", "signapk_path=",
Martin Stjernholm58472e82022-01-07 22:08:47 +00002550 "signapk_shared_library_path=", "extra_signapk_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002551 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002552 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2553 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002554 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002555 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002556 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002557 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002558 sys.exit(2)
2559
Doug Zongkereef39442009-04-02 12:14:19 -07002560 for o, a in opts:
2561 if o in ("-h", "--help"):
2562 Usage(docstring)
2563 sys.exit()
2564 elif o in ("-v", "--verbose"):
2565 OPTIONS.verbose = True
2566 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002567 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002568 elif o in ("--signapk_path",):
2569 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002570 elif o in ("--signapk_shared_library_path",):
2571 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002572 elif o in ("--extra_signapk_args",):
2573 OPTIONS.extra_signapk_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002574 elif o in ("--aapt2_path",):
2575 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002576 elif o in ("--java_path",):
2577 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002578 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002579 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002580 elif o in ("--android_jar_path",):
2581 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002582 elif o in ("--public_key_suffix",):
2583 OPTIONS.public_key_suffix = a
2584 elif o in ("--private_key_suffix",):
2585 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002586 elif o in ("--boot_signer_path",):
2587 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002588 elif o in ("--boot_signer_args",):
2589 OPTIONS.boot_signer_args = shlex.split(a)
2590 elif o in ("--verity_signer_path",):
2591 OPTIONS.verity_signer_path = a
2592 elif o in ("--verity_signer_args",):
2593 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07002594 elif o in ("-s", "--device_specific"):
2595 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002596 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002597 key, value = a.split("=", 1)
2598 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002599 elif o in ("--logfile",):
2600 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002601 else:
2602 if extra_option_handler is None or not extra_option_handler(o, a):
2603 assert False, "unknown option \"%s\"" % (o,)
2604
Doug Zongker85448772014-09-09 14:59:20 -07002605 if OPTIONS.search_path:
2606 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2607 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002608
2609 return args
2610
2611
Tao Bao4c851b12016-09-19 13:54:38 -07002612def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002613 """Make a temp file and add it to the list of things to be deleted
2614 when Cleanup() is called. Return the filename."""
2615 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2616 os.close(fd)
2617 OPTIONS.tempfiles.append(fn)
2618 return fn
2619
2620
Tao Bao1c830bf2017-12-25 10:43:47 -08002621def MakeTempDir(prefix='tmp', suffix=''):
2622 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2623
2624 Returns:
2625 The absolute pathname of the new directory.
2626 """
2627 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2628 OPTIONS.tempfiles.append(dir_name)
2629 return dir_name
2630
2631
Doug Zongkereef39442009-04-02 12:14:19 -07002632def Cleanup():
2633 for i in OPTIONS.tempfiles:
2634 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002635 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002636 else:
2637 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002638 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002639
2640
2641class PasswordManager(object):
2642 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002643 self.editor = os.getenv("EDITOR")
2644 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002645
2646 def GetPasswords(self, items):
2647 """Get passwords corresponding to each string in 'items',
2648 returning a dict. (The dict may have keys in addition to the
2649 values in 'items'.)
2650
2651 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2652 user edit that file to add more needed passwords. If no editor is
2653 available, or $ANDROID_PW_FILE isn't define, prompts the user
2654 interactively in the ordinary way.
2655 """
2656
2657 current = self.ReadFile()
2658
2659 first = True
2660 while True:
2661 missing = []
2662 for i in items:
2663 if i not in current or not current[i]:
2664 missing.append(i)
2665 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002666 if not missing:
2667 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002668
2669 for i in missing:
2670 current[i] = ""
2671
2672 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002673 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002674 if sys.version_info[0] >= 3:
2675 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002676 answer = raw_input("try to edit again? [y]> ").strip()
2677 if answer and answer[0] not in 'yY':
2678 raise RuntimeError("key passwords unavailable")
2679 first = False
2680
2681 current = self.UpdateAndReadFile(current)
2682
Kelvin Zhang0876c412020-06-23 15:06:58 -04002683 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002684 """Prompt the user to enter a value (password) for each key in
2685 'current' whose value is fales. Returns a new dict with all the
2686 values.
2687 """
2688 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002689 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002690 if v:
2691 result[k] = v
2692 else:
2693 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002694 result[k] = getpass.getpass(
2695 "Enter password for %s key> " % k).strip()
2696 if result[k]:
2697 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002698 return result
2699
2700 def UpdateAndReadFile(self, current):
2701 if not self.editor or not self.pwfile:
2702 return self.PromptResult(current)
2703
2704 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002705 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002706 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2707 f.write("# (Additional spaces are harmless.)\n\n")
2708
2709 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002710 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002711 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002712 f.write("[[[ %s ]]] %s\n" % (v, k))
2713 if not v and first_line is None:
2714 # position cursor on first line with no password.
2715 first_line = i + 4
2716 f.close()
2717
Tao Bao986ee862018-10-04 15:46:16 -07002718 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002719
2720 return self.ReadFile()
2721
2722 def ReadFile(self):
2723 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002724 if self.pwfile is None:
2725 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002726 try:
2727 f = open(self.pwfile, "r")
2728 for line in f:
2729 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002730 if not line or line[0] == '#':
2731 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002732 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2733 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002734 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002735 else:
2736 result[m.group(2)] = m.group(1)
2737 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002738 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002739 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002740 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002741 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002742
2743
Dan Albert8e0178d2015-01-27 15:53:15 -08002744def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2745 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002746
2747 # http://b/18015246
2748 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2749 # for files larger than 2GiB. We can work around this by adjusting their
2750 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2751 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2752 # it isn't clear to me exactly what circumstances cause this).
2753 # `zipfile.write()` must be used directly to work around this.
2754 #
2755 # This mess can be avoided if we port to python3.
2756 saved_zip64_limit = zipfile.ZIP64_LIMIT
2757 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2758
2759 if compress_type is None:
2760 compress_type = zip_file.compression
2761 if arcname is None:
2762 arcname = filename
2763
2764 saved_stat = os.stat(filename)
2765
2766 try:
2767 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2768 # file to be zipped and reset it when we're done.
2769 os.chmod(filename, perms)
2770
2771 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002772 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2773 # intentional. zip stores datetimes in local time without a time zone
2774 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2775 # in the zip archive.
2776 local_epoch = datetime.datetime.fromtimestamp(0)
2777 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002778 os.utime(filename, (timestamp, timestamp))
2779
2780 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2781 finally:
2782 os.chmod(filename, saved_stat.st_mode)
2783 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2784 zipfile.ZIP64_LIMIT = saved_zip64_limit
2785
2786
Tao Bao58c1b962015-05-20 09:32:18 -07002787def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002788 compress_type=None):
2789 """Wrap zipfile.writestr() function to work around the zip64 limit.
2790
2791 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2792 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2793 when calling crc32(bytes).
2794
2795 But it still works fine to write a shorter string into a large zip file.
2796 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2797 when we know the string won't be too long.
2798 """
2799
2800 saved_zip64_limit = zipfile.ZIP64_LIMIT
2801 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2802
2803 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2804 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002805 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002806 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002807 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002808 else:
Tao Baof3282b42015-04-01 11:21:55 -07002809 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002810 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2811 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2812 # such a case (since
2813 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2814 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2815 # permission bits. We follow the logic in Python 3 to get consistent
2816 # behavior between using the two versions.
2817 if not zinfo.external_attr:
2818 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002819
2820 # If compress_type is given, it overrides the value in zinfo.
2821 if compress_type is not None:
2822 zinfo.compress_type = compress_type
2823
Tao Bao58c1b962015-05-20 09:32:18 -07002824 # If perms is given, it has a priority.
2825 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002826 # If perms doesn't set the file type, mark it as a regular file.
2827 if perms & 0o770000 == 0:
2828 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002829 zinfo.external_attr = perms << 16
2830
Tao Baof3282b42015-04-01 11:21:55 -07002831 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002832 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2833
Dan Albert8b72aef2015-03-23 19:13:21 -07002834 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002835 zipfile.ZIP64_LIMIT = saved_zip64_limit
2836
2837
Tao Bao89d7ab22017-12-14 17:05:33 -08002838def ZipDelete(zip_filename, entries):
2839 """Deletes entries from a ZIP file.
2840
2841 Since deleting entries from a ZIP file is not supported, it shells out to
2842 'zip -d'.
2843
2844 Args:
2845 zip_filename: The name of the ZIP file.
2846 entries: The name of the entry, or the list of names to be deleted.
2847
2848 Raises:
2849 AssertionError: In case of non-zero return from 'zip'.
2850 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002851 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002852 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002853 # If list is empty, nothing to do
2854 if not entries:
2855 return
Tao Bao89d7ab22017-12-14 17:05:33 -08002856 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002857 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002858
2859
Tao Baof3282b42015-04-01 11:21:55 -07002860def ZipClose(zip_file):
2861 # http://b/18015246
2862 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2863 # central directory.
2864 saved_zip64_limit = zipfile.ZIP64_LIMIT
2865 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2866
2867 zip_file.close()
2868
2869 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002870
2871
2872class DeviceSpecificParams(object):
2873 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002874
Doug Zongker05d3dea2009-06-22 11:32:31 -07002875 def __init__(self, **kwargs):
2876 """Keyword arguments to the constructor become attributes of this
2877 object, which is passed to all functions in the device-specific
2878 module."""
Tao Bao38884282019-07-10 22:20:56 -07002879 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002880 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002881 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002882
2883 if self.module is None:
2884 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002885 if not path:
2886 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002887 try:
2888 if os.path.isdir(path):
2889 info = imp.find_module("releasetools", [path])
2890 else:
2891 d, f = os.path.split(path)
2892 b, x = os.path.splitext(f)
2893 if x == ".py":
2894 f = b
2895 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002896 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002897 self.module = imp.load_module("device_specific", *info)
2898 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002899 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002900
2901 def _DoCall(self, function_name, *args, **kwargs):
2902 """Call the named function in the device-specific module, passing
2903 the given args and kwargs. The first argument to the call will be
2904 the DeviceSpecific object itself. If there is no module, or the
2905 module does not define the function, return the value of the
2906 'default' kwarg (which itself defaults to None)."""
2907 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002908 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002909 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2910
2911 def FullOTA_Assertions(self):
2912 """Called after emitting the block of assertions at the top of a
2913 full OTA package. Implementations can add whatever additional
2914 assertions they like."""
2915 return self._DoCall("FullOTA_Assertions")
2916
Doug Zongkere5ff5902012-01-17 10:55:37 -08002917 def FullOTA_InstallBegin(self):
2918 """Called at the start of full OTA installation."""
2919 return self._DoCall("FullOTA_InstallBegin")
2920
Yifan Hong10c530d2018-12-27 17:34:18 -08002921 def FullOTA_GetBlockDifferences(self):
2922 """Called during full OTA installation and verification.
2923 Implementation should return a list of BlockDifference objects describing
2924 the update on each additional partitions.
2925 """
2926 return self._DoCall("FullOTA_GetBlockDifferences")
2927
Doug Zongker05d3dea2009-06-22 11:32:31 -07002928 def FullOTA_InstallEnd(self):
2929 """Called at the end of full OTA installation; typically this is
2930 used to install the image for the device's baseband processor."""
2931 return self._DoCall("FullOTA_InstallEnd")
2932
2933 def IncrementalOTA_Assertions(self):
2934 """Called after emitting the block of assertions at the top of an
2935 incremental OTA package. Implementations can add whatever
2936 additional assertions they like."""
2937 return self._DoCall("IncrementalOTA_Assertions")
2938
Doug Zongkere5ff5902012-01-17 10:55:37 -08002939 def IncrementalOTA_VerifyBegin(self):
2940 """Called at the start of the verification phase of incremental
2941 OTA installation; additional checks can be placed here to abort
2942 the script before any changes are made."""
2943 return self._DoCall("IncrementalOTA_VerifyBegin")
2944
Doug Zongker05d3dea2009-06-22 11:32:31 -07002945 def IncrementalOTA_VerifyEnd(self):
2946 """Called at the end of the verification phase of incremental OTA
2947 installation; additional checks can be placed here to abort the
2948 script before any changes are made."""
2949 return self._DoCall("IncrementalOTA_VerifyEnd")
2950
Doug Zongkere5ff5902012-01-17 10:55:37 -08002951 def IncrementalOTA_InstallBegin(self):
2952 """Called at the start of incremental OTA installation (after
2953 verification is complete)."""
2954 return self._DoCall("IncrementalOTA_InstallBegin")
2955
Yifan Hong10c530d2018-12-27 17:34:18 -08002956 def IncrementalOTA_GetBlockDifferences(self):
2957 """Called during incremental OTA installation and verification.
2958 Implementation should return a list of BlockDifference objects describing
2959 the update on each additional partitions.
2960 """
2961 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2962
Doug Zongker05d3dea2009-06-22 11:32:31 -07002963 def IncrementalOTA_InstallEnd(self):
2964 """Called at the end of incremental OTA installation; typically
2965 this is used to install the image for the device's baseband
2966 processor."""
2967 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002968
Tao Bao9bc6bb22015-11-09 16:58:28 -08002969 def VerifyOTA_Assertions(self):
2970 return self._DoCall("VerifyOTA_Assertions")
2971
Tao Bao76def242017-11-21 09:25:31 -08002972
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002973class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002974 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002975 self.name = name
2976 self.data = data
2977 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002978 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002979 self.sha1 = sha1(data).hexdigest()
2980
2981 @classmethod
2982 def FromLocalFile(cls, name, diskname):
2983 f = open(diskname, "rb")
2984 data = f.read()
2985 f.close()
2986 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002987
2988 def WriteToTemp(self):
2989 t = tempfile.NamedTemporaryFile()
2990 t.write(self.data)
2991 t.flush()
2992 return t
2993
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002994 def WriteToDir(self, d):
2995 with open(os.path.join(d, self.name), "wb") as fp:
2996 fp.write(self.data)
2997
Geremy Condra36bd3652014-02-06 19:45:10 -08002998 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002999 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003000
Tao Bao76def242017-11-21 09:25:31 -08003001
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003002DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04003003 ".gz": "imgdiff",
3004 ".zip": ["imgdiff", "-z"],
3005 ".jar": ["imgdiff", "-z"],
3006 ".apk": ["imgdiff", "-z"],
3007 ".img": "imgdiff",
3008}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003009
Tao Bao76def242017-11-21 09:25:31 -08003010
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003011class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07003012 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003013 self.tf = tf
3014 self.sf = sf
3015 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07003016 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003017
3018 def ComputePatch(self):
3019 """Compute the patch (as a string of data) needed to turn sf into
3020 tf. Returns the same tuple as GetPatch()."""
3021
3022 tf = self.tf
3023 sf = self.sf
3024
Doug Zongker24cd2802012-08-14 16:36:15 -07003025 if self.diff_program:
3026 diff_program = self.diff_program
3027 else:
3028 ext = os.path.splitext(tf.name)[1]
3029 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003030
3031 ttemp = tf.WriteToTemp()
3032 stemp = sf.WriteToTemp()
3033
3034 ext = os.path.splitext(tf.name)[1]
3035
3036 try:
3037 ptemp = tempfile.NamedTemporaryFile()
3038 if isinstance(diff_program, list):
3039 cmd = copy.copy(diff_program)
3040 else:
3041 cmd = [diff_program]
3042 cmd.append(stemp.name)
3043 cmd.append(ttemp.name)
3044 cmd.append(ptemp.name)
3045 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003046 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003047
Doug Zongkerf8340082014-08-05 10:39:37 -07003048 def run():
3049 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003050 if e:
3051 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003052 th = threading.Thread(target=run)
3053 th.start()
3054 th.join(timeout=300) # 5 mins
3055 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003056 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003057 p.terminate()
3058 th.join(5)
3059 if th.is_alive():
3060 p.kill()
3061 th.join()
3062
Tianjie Xua2a9f992018-01-05 15:15:54 -08003063 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003064 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003065 self.patch = None
3066 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003067 diff = ptemp.read()
3068 finally:
3069 ptemp.close()
3070 stemp.close()
3071 ttemp.close()
3072
3073 self.patch = diff
3074 return self.tf, self.sf, self.patch
3075
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003076 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003077 """Returns a tuple of (target_file, source_file, patch_data).
3078
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003079 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003080 computing the patch failed.
3081 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003082 return self.tf, self.sf, self.patch
3083
3084
3085def ComputeDifferences(diffs):
3086 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003087 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003088
3089 # Do the largest files first, to try and reduce the long-pole effect.
3090 by_size = [(i.tf.size, i) for i in diffs]
3091 by_size.sort(reverse=True)
3092 by_size = [i[1] for i in by_size]
3093
3094 lock = threading.Lock()
3095 diff_iter = iter(by_size) # accessed under lock
3096
3097 def worker():
3098 try:
3099 lock.acquire()
3100 for d in diff_iter:
3101 lock.release()
3102 start = time.time()
3103 d.ComputePatch()
3104 dur = time.time() - start
3105 lock.acquire()
3106
3107 tf, sf, patch = d.GetPatch()
3108 if sf.name == tf.name:
3109 name = tf.name
3110 else:
3111 name = "%s (%s)" % (tf.name, sf.name)
3112 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003113 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003114 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003115 logger.info(
3116 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3117 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003118 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003119 except Exception:
3120 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003121 raise
3122
3123 # start worker threads; wait for them all to finish.
3124 threads = [threading.Thread(target=worker)
3125 for i in range(OPTIONS.worker_threads)]
3126 for th in threads:
3127 th.start()
3128 while threads:
3129 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003130
3131
Dan Albert8b72aef2015-03-23 19:13:21 -07003132class BlockDifference(object):
3133 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003134 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003135 self.tgt = tgt
3136 self.src = src
3137 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003138 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003139 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003140
Tao Baodd2a5892015-03-12 12:32:37 -07003141 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003142 version = max(
3143 int(i) for i in
3144 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003145 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003146 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003147
Tianjie Xu41976c72019-07-03 13:57:01 -07003148 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3149 version=self.version,
3150 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003151 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003152 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003153 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003154 self.touched_src_ranges = b.touched_src_ranges
3155 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003156
Yifan Hong10c530d2018-12-27 17:34:18 -08003157 # On devices with dynamic partitions, for new partitions,
3158 # src is None but OPTIONS.source_info_dict is not.
3159 if OPTIONS.source_info_dict is None:
3160 is_dynamic_build = OPTIONS.info_dict.get(
3161 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003162 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003163 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003164 is_dynamic_build = OPTIONS.source_info_dict.get(
3165 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003166 is_dynamic_source = partition in shlex.split(
3167 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003168
Yifan Hongbb2658d2019-01-25 12:30:58 -08003169 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003170 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3171
Yifan Hongbb2658d2019-01-25 12:30:58 -08003172 # For dynamic partitions builds, check partition list in both source
3173 # and target build because new partitions may be added, and existing
3174 # partitions may be removed.
3175 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3176
Yifan Hong10c530d2018-12-27 17:34:18 -08003177 if is_dynamic:
3178 self.device = 'map_partition("%s")' % partition
3179 else:
3180 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003181 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3182 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003183 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003184 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3185 OPTIONS.source_info_dict)
3186 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003187
Tao Baod8d14be2016-02-04 14:26:02 -08003188 @property
3189 def required_cache(self):
3190 return self._required_cache
3191
Tao Bao76def242017-11-21 09:25:31 -08003192 def WriteScript(self, script, output_zip, progress=None,
3193 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003194 if not self.src:
3195 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003196 script.Print("Patching %s image unconditionally..." % (self.partition,))
3197 else:
3198 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003199
Dan Albert8b72aef2015-03-23 19:13:21 -07003200 if progress:
3201 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003202 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003203
3204 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003205 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003206
Tao Bao9bc6bb22015-11-09 16:58:28 -08003207 def WriteStrictVerifyScript(self, script):
3208 """Verify all the blocks in the care_map, including clobbered blocks.
3209
3210 This differs from the WriteVerifyScript() function: a) it prints different
3211 error messages; b) it doesn't allow half-way updated images to pass the
3212 verification."""
3213
3214 partition = self.partition
3215 script.Print("Verifying %s..." % (partition,))
3216 ranges = self.tgt.care_map
3217 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003218 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003219 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3220 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003221 self.device, ranges_str,
3222 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003223 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003224 script.AppendExtra("")
3225
Tao Baod522bdc2016-04-12 15:53:16 -07003226 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003227 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003228
3229 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003230 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003231 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003232
3233 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003234 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003235 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003236 ranges = self.touched_src_ranges
3237 expected_sha1 = self.touched_src_sha1
3238 else:
3239 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3240 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003241
3242 # No blocks to be checked, skipping.
3243 if not ranges:
3244 return
3245
Tao Bao5ece99d2015-05-12 11:42:31 -07003246 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003247 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003248 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003249 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3250 '"%s.patch.dat")) then' % (
3251 self.device, ranges_str, expected_sha1,
3252 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003253 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003254 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003255
Tianjie Xufc3422a2015-12-15 11:53:59 -08003256 if self.version >= 4:
3257
3258 # Bug: 21124327
3259 # When generating incrementals for the system and vendor partitions in
3260 # version 4 or newer, explicitly check the first block (which contains
3261 # the superblock) of the partition to see if it's what we expect. If
3262 # this check fails, give an explicit log message about the partition
3263 # having been remounted R/W (the most likely explanation).
3264 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003265 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003266
3267 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003268 if partition == "system":
3269 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3270 else:
3271 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003272 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003273 'ifelse (block_image_recover({device}, "{ranges}") && '
3274 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003275 'package_extract_file("{partition}.transfer.list"), '
3276 '"{partition}.new.dat", "{partition}.patch.dat"), '
3277 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003278 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003279 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003280 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003281
Tao Baodd2a5892015-03-12 12:32:37 -07003282 # Abort the OTA update. Note that the incremental OTA cannot be applied
3283 # even if it may match the checksum of the target partition.
3284 # a) If version < 3, operations like move and erase will make changes
3285 # unconditionally and damage the partition.
3286 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003287 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003288 if partition == "system":
3289 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3290 else:
3291 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3292 script.AppendExtra((
3293 'abort("E%d: %s partition has unexpected contents");\n'
3294 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003295
Yifan Hong10c530d2018-12-27 17:34:18 -08003296 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003297 partition = self.partition
3298 script.Print('Verifying the updated %s image...' % (partition,))
3299 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3300 ranges = self.tgt.care_map
3301 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003302 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003303 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003304 self.device, ranges_str,
3305 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003306
3307 # Bug: 20881595
3308 # Verify that extended blocks are really zeroed out.
3309 if self.tgt.extended:
3310 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003311 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003312 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003313 self.device, ranges_str,
3314 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003315 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003316 if partition == "system":
3317 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3318 else:
3319 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003320 script.AppendExtra(
3321 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003322 ' abort("E%d: %s partition has unexpected non-zero contents after '
3323 'OTA update");\n'
3324 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003325 else:
3326 script.Print('Verified the updated %s image.' % (partition,))
3327
Tianjie Xu209db462016-05-24 17:34:52 -07003328 if partition == "system":
3329 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3330 else:
3331 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3332
Tao Bao5fcaaef2015-06-01 13:40:49 -07003333 script.AppendExtra(
3334 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003335 ' abort("E%d: %s partition has unexpected contents after OTA '
3336 'update");\n'
3337 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003338
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003339 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003340 ZipWrite(output_zip,
3341 '{}.transfer.list'.format(self.path),
3342 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003343
Tao Bao76def242017-11-21 09:25:31 -08003344 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3345 # its size. Quailty 9 almost triples the compression time but doesn't
3346 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003347 # zip | brotli(quality 6) | brotli(quality 9)
3348 # compressed_size: 942M | 869M (~8% reduced) | 854M
3349 # compression_time: 75s | 265s | 719s
3350 # decompression_time: 15s | 25s | 25s
3351
3352 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003353 brotli_cmd = ['brotli', '--quality=6',
3354 '--output={}.new.dat.br'.format(self.path),
3355 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003356 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003357 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003358
3359 new_data_name = '{}.new.dat.br'.format(self.partition)
3360 ZipWrite(output_zip,
3361 '{}.new.dat.br'.format(self.path),
3362 new_data_name,
3363 compress_type=zipfile.ZIP_STORED)
3364 else:
3365 new_data_name = '{}.new.dat'.format(self.partition)
3366 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3367
Dan Albert8e0178d2015-01-27 15:53:15 -08003368 ZipWrite(output_zip,
3369 '{}.patch.dat'.format(self.path),
3370 '{}.patch.dat'.format(self.partition),
3371 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003372
Tianjie Xu209db462016-05-24 17:34:52 -07003373 if self.partition == "system":
3374 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3375 else:
3376 code = ErrorCode.VENDOR_UPDATE_FAILURE
3377
Yifan Hong10c530d2018-12-27 17:34:18 -08003378 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003379 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003380 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003381 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003382 device=self.device, partition=self.partition,
3383 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003384 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003385
Kelvin Zhang0876c412020-06-23 15:06:58 -04003386 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003387 data = source.ReadRangeSet(ranges)
3388 ctx = sha1()
3389
3390 for p in data:
3391 ctx.update(p)
3392
3393 return ctx.hexdigest()
3394
Kelvin Zhang0876c412020-06-23 15:06:58 -04003395 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003396 """Return the hash value for all zero blocks."""
3397 zero_block = '\x00' * 4096
3398 ctx = sha1()
3399 for _ in range(num_blocks):
3400 ctx.update(zero_block)
3401
3402 return ctx.hexdigest()
3403
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003404
Tianjie Xu41976c72019-07-03 13:57:01 -07003405# Expose these two classes to support vendor-specific scripts
3406DataImage = images.DataImage
3407EmptyImage = images.EmptyImage
3408
Tao Bao76def242017-11-21 09:25:31 -08003409
Doug Zongker96a57e72010-09-26 14:57:41 -07003410# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003411PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003412 "ext4": "EMMC",
3413 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003414 "f2fs": "EMMC",
3415 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003416}
Doug Zongker96a57e72010-09-26 14:57:41 -07003417
Kelvin Zhang0876c412020-06-23 15:06:58 -04003418
Yifan Hongbdb32012020-05-07 12:38:53 -07003419def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3420 """
3421 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3422 backwards compatibility. It aborts if the fstab entry has slotselect option
3423 (unless check_no_slot is explicitly set to False).
3424 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003425 fstab = info["fstab"]
3426 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003427 if check_no_slot:
3428 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003429 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003430 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3431 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003432 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003433
3434
Yifan Hongbdb32012020-05-07 12:38:53 -07003435def GetTypeAndDeviceExpr(mount_point, info):
3436 """
3437 Return the filesystem of the partition, and an edify expression that evaluates
3438 to the device at runtime.
3439 """
3440 fstab = info["fstab"]
3441 if fstab:
3442 p = fstab[mount_point]
3443 device_expr = '"%s"' % fstab[mount_point].device
3444 if p.slotselect:
3445 device_expr = 'add_slot_suffix(%s)' % device_expr
3446 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003447 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003448
3449
3450def GetEntryForDevice(fstab, device):
3451 """
3452 Returns:
3453 The first entry in fstab whose device is the given value.
3454 """
3455 if not fstab:
3456 return None
3457 for mount_point in fstab:
3458 if fstab[mount_point].device == device:
3459 return fstab[mount_point]
3460 return None
3461
Kelvin Zhang0876c412020-06-23 15:06:58 -04003462
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003463def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003464 """Parses and converts a PEM-encoded certificate into DER-encoded.
3465
3466 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3467
3468 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003469 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003470 """
3471 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003472 save = False
3473 for line in data.split("\n"):
3474 if "--END CERTIFICATE--" in line:
3475 break
3476 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003477 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003478 if "--BEGIN CERTIFICATE--" in line:
3479 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003480 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003481 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003482
Tao Bao04e1f012018-02-04 12:13:35 -08003483
3484def ExtractPublicKey(cert):
3485 """Extracts the public key (PEM-encoded) from the given certificate file.
3486
3487 Args:
3488 cert: The certificate filename.
3489
3490 Returns:
3491 The public key string.
3492
3493 Raises:
3494 AssertionError: On non-zero return from 'openssl'.
3495 """
3496 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3497 # While openssl 1.1 writes the key into the given filename followed by '-out',
3498 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3499 # stdout instead.
3500 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3501 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3502 pubkey, stderrdata = proc.communicate()
3503 assert proc.returncode == 0, \
3504 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3505 return pubkey
3506
3507
Tao Bao1ac886e2019-06-26 11:58:22 -07003508def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003509 """Extracts the AVB public key from the given public or private key.
3510
3511 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003512 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003513 key: The input key file, which should be PEM-encoded public or private key.
3514
3515 Returns:
3516 The path to the extracted AVB public key file.
3517 """
3518 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3519 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003520 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003521 return output
3522
3523
Doug Zongker412c02f2014-02-13 10:58:24 -08003524def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3525 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003526 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003527
Tao Bao6d5d6232018-03-09 17:04:42 -08003528 Most of the space in the boot and recovery images is just the kernel, which is
3529 identical for the two, so the resulting patch should be efficient. Add it to
3530 the output zip, along with a shell script that is run from init.rc on first
3531 boot to actually do the patching and install the new recovery image.
3532
3533 Args:
3534 input_dir: The top-level input directory of the target-files.zip.
3535 output_sink: The callback function that writes the result.
3536 recovery_img: File object for the recovery image.
3537 boot_img: File objects for the boot image.
3538 info_dict: A dict returned by common.LoadInfoDict() on the input
3539 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003540 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003541 if info_dict is None:
3542 info_dict = OPTIONS.info_dict
3543
Tao Bao6d5d6232018-03-09 17:04:42 -08003544 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003545 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3546
3547 if board_uses_vendorimage:
3548 # In this case, the output sink is rooted at VENDOR
3549 recovery_img_path = "etc/recovery.img"
3550 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3551 sh_dir = "bin"
3552 else:
3553 # In this case the output sink is rooted at SYSTEM
3554 recovery_img_path = "vendor/etc/recovery.img"
3555 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3556 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003557
Tao Baof2cffbd2015-07-22 12:33:18 -07003558 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003559 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003560
3561 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003562 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003563 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003564 # With system-root-image, boot and recovery images will have mismatching
3565 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3566 # to handle such a case.
3567 if system_root_image:
3568 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003569 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003570 assert not os.path.exists(path)
3571 else:
3572 diff_program = ["imgdiff"]
3573 if os.path.exists(path):
3574 diff_program.append("-b")
3575 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003576 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003577 else:
3578 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003579
3580 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3581 _, _, patch = d.ComputePatch()
3582 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003583
Dan Albertebb19aa2015-03-27 19:11:53 -07003584 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003585 # The following GetTypeAndDevice()s need to use the path in the target
3586 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003587 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3588 check_no_slot=False)
3589 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3590 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003591 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003592 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003593
Tao Baof2cffbd2015-07-22 12:33:18 -07003594 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003595
3596 # Note that we use /vendor to refer to the recovery resources. This will
3597 # work for a separate vendor partition mounted at /vendor or a
3598 # /system/vendor subdirectory on the system partition, for which init will
3599 # create a symlink from /vendor to /system/vendor.
3600
3601 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003602if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3603 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003604 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003605 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3606 log -t recovery "Installing new recovery image: succeeded" || \\
3607 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003608else
3609 log -t recovery "Recovery image already installed"
3610fi
3611""" % {'type': recovery_type,
3612 'device': recovery_device,
3613 'sha1': recovery_img.sha1,
3614 'size': recovery_img.size}
3615 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003616 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003617if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3618 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003619 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003620 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3621 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3622 log -t recovery "Installing new recovery image: succeeded" || \\
3623 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003624else
3625 log -t recovery "Recovery image already installed"
3626fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003627""" % {'boot_size': boot_img.size,
3628 'boot_sha1': boot_img.sha1,
3629 'recovery_size': recovery_img.size,
3630 'recovery_sha1': recovery_img.sha1,
3631 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003632 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003633 'recovery_type': recovery_type,
3634 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003635 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003636
Bill Peckhame868aec2019-09-17 17:06:47 -07003637 # The install script location moved from /system/etc to /system/bin in the L
3638 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3639 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003640
Tao Bao32fcdab2018-10-12 10:30:39 -07003641 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003642
Tao Baoda30cfa2017-12-01 16:19:46 -08003643 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003644
3645
3646class DynamicPartitionUpdate(object):
3647 def __init__(self, src_group=None, tgt_group=None, progress=None,
3648 block_difference=None):
3649 self.src_group = src_group
3650 self.tgt_group = tgt_group
3651 self.progress = progress
3652 self.block_difference = block_difference
3653
3654 @property
3655 def src_size(self):
3656 if not self.block_difference:
3657 return 0
3658 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3659
3660 @property
3661 def tgt_size(self):
3662 if not self.block_difference:
3663 return 0
3664 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3665
3666 @staticmethod
3667 def _GetSparseImageSize(img):
3668 if not img:
3669 return 0
3670 return img.blocksize * img.total_blocks
3671
3672
3673class DynamicGroupUpdate(object):
3674 def __init__(self, src_size=None, tgt_size=None):
3675 # None: group does not exist. 0: no size limits.
3676 self.src_size = src_size
3677 self.tgt_size = tgt_size
3678
3679
3680class DynamicPartitionsDifference(object):
3681 def __init__(self, info_dict, block_diffs, progress_dict=None,
3682 source_info_dict=None):
3683 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003684 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003685
3686 self._remove_all_before_apply = False
3687 if source_info_dict is None:
3688 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003689 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003690
Tao Baof1113e92019-06-18 12:10:14 -07003691 block_diff_dict = collections.OrderedDict(
3692 [(e.partition, e) for e in block_diffs])
3693
Yifan Hong10c530d2018-12-27 17:34:18 -08003694 assert len(block_diff_dict) == len(block_diffs), \
3695 "Duplicated BlockDifference object for {}".format(
3696 [partition for partition, count in
3697 collections.Counter(e.partition for e in block_diffs).items()
3698 if count > 1])
3699
Yifan Hong79997e52019-01-23 16:56:19 -08003700 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003701
3702 for p, block_diff in block_diff_dict.items():
3703 self._partition_updates[p] = DynamicPartitionUpdate()
3704 self._partition_updates[p].block_difference = block_diff
3705
3706 for p, progress in progress_dict.items():
3707 if p in self._partition_updates:
3708 self._partition_updates[p].progress = progress
3709
3710 tgt_groups = shlex.split(info_dict.get(
3711 "super_partition_groups", "").strip())
3712 src_groups = shlex.split(source_info_dict.get(
3713 "super_partition_groups", "").strip())
3714
3715 for g in tgt_groups:
3716 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003717 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003718 assert p in self._partition_updates, \
3719 "{} is in target super_{}_partition_list but no BlockDifference " \
3720 "object is provided.".format(p, g)
3721 self._partition_updates[p].tgt_group = g
3722
3723 for g in src_groups:
3724 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003725 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003726 assert p in self._partition_updates, \
3727 "{} is in source super_{}_partition_list but no BlockDifference " \
3728 "object is provided.".format(p, g)
3729 self._partition_updates[p].src_group = g
3730
Yifan Hong45433e42019-01-18 13:55:25 -08003731 target_dynamic_partitions = set(shlex.split(info_dict.get(
3732 "dynamic_partition_list", "").strip()))
3733 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3734 if u.tgt_size)
3735 assert block_diffs_with_target == target_dynamic_partitions, \
3736 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3737 list(target_dynamic_partitions), list(block_diffs_with_target))
3738
3739 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3740 "dynamic_partition_list", "").strip()))
3741 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3742 if u.src_size)
3743 assert block_diffs_with_source == source_dynamic_partitions, \
3744 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3745 list(source_dynamic_partitions), list(block_diffs_with_source))
3746
Yifan Hong10c530d2018-12-27 17:34:18 -08003747 if self._partition_updates:
3748 logger.info("Updating dynamic partitions %s",
3749 self._partition_updates.keys())
3750
Yifan Hong79997e52019-01-23 16:56:19 -08003751 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003752
3753 for g in tgt_groups:
3754 self._group_updates[g] = DynamicGroupUpdate()
3755 self._group_updates[g].tgt_size = int(info_dict.get(
3756 "super_%s_group_size" % g, "0").strip())
3757
3758 for g in src_groups:
3759 if g not in self._group_updates:
3760 self._group_updates[g] = DynamicGroupUpdate()
3761 self._group_updates[g].src_size = int(source_info_dict.get(
3762 "super_%s_group_size" % g, "0").strip())
3763
3764 self._Compute()
3765
3766 def WriteScript(self, script, output_zip, write_verify_script=False):
3767 script.Comment('--- Start patching dynamic partitions ---')
3768 for p, u in self._partition_updates.items():
3769 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3770 script.Comment('Patch partition %s' % p)
3771 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3772 write_verify_script=False)
3773
3774 op_list_path = MakeTempFile()
3775 with open(op_list_path, 'w') as f:
3776 for line in self._op_list:
3777 f.write('{}\n'.format(line))
3778
3779 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3780
3781 script.Comment('Update dynamic partition metadata')
3782 script.AppendExtra('assert(update_dynamic_partitions('
3783 'package_extract_file("dynamic_partitions_op_list")));')
3784
3785 if write_verify_script:
3786 for p, u in self._partition_updates.items():
3787 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3788 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003789 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003790
3791 for p, u in self._partition_updates.items():
3792 if u.tgt_size and u.src_size <= u.tgt_size:
3793 script.Comment('Patch partition %s' % p)
3794 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3795 write_verify_script=write_verify_script)
3796 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003797 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003798
3799 script.Comment('--- End patching dynamic partitions ---')
3800
3801 def _Compute(self):
3802 self._op_list = list()
3803
3804 def append(line):
3805 self._op_list.append(line)
3806
3807 def comment(line):
3808 self._op_list.append("# %s" % line)
3809
3810 if self._remove_all_before_apply:
3811 comment('Remove all existing dynamic partitions and groups before '
3812 'applying full OTA')
3813 append('remove_all_groups')
3814
3815 for p, u in self._partition_updates.items():
3816 if u.src_group and not u.tgt_group:
3817 append('remove %s' % p)
3818
3819 for p, u in self._partition_updates.items():
3820 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3821 comment('Move partition %s from %s to default' % (p, u.src_group))
3822 append('move %s default' % p)
3823
3824 for p, u in self._partition_updates.items():
3825 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3826 comment('Shrink partition %s from %d to %d' %
3827 (p, u.src_size, u.tgt_size))
3828 append('resize %s %s' % (p, u.tgt_size))
3829
3830 for g, u in self._group_updates.items():
3831 if u.src_size is not None and u.tgt_size is None:
3832 append('remove_group %s' % g)
3833 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003834 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003835 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3836 append('resize_group %s %d' % (g, u.tgt_size))
3837
3838 for g, u in self._group_updates.items():
3839 if u.src_size is None and u.tgt_size is not None:
3840 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3841 append('add_group %s %d' % (g, u.tgt_size))
3842 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003843 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003844 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3845 append('resize_group %s %d' % (g, u.tgt_size))
3846
3847 for p, u in self._partition_updates.items():
3848 if u.tgt_group and not u.src_group:
3849 comment('Add partition %s to group %s' % (p, u.tgt_group))
3850 append('add %s %s' % (p, u.tgt_group))
3851
3852 for p, u in self._partition_updates.items():
3853 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003854 comment('Grow partition %s from %d to %d' %
3855 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003856 append('resize %s %d' % (p, u.tgt_size))
3857
3858 for p, u in self._partition_updates.items():
3859 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3860 comment('Move partition %s from default to %s' %
3861 (p, u.tgt_group))
3862 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003863
3864
jiajia tangf3f842b2021-03-17 21:49:44 +08003865def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003866 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003867 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003868
3869 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003870 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003871
3872 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003873 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003874 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003875 tmp_dir = MakeTempDir('boot_', suffix='.img')
3876 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003877 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3878 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003879 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3880 if not os.path.isfile(ramdisk):
3881 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3882 return None
3883 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003884 if ramdisk_format == RamdiskFormat.LZ4:
3885 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3886 elif ramdisk_format == RamdiskFormat.GZ:
3887 with open(ramdisk, 'rb') as input_stream:
3888 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003889 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3890 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003891 p2.wait()
3892 else:
3893 logger.error('Only support lz4 or minigzip ramdisk format.')
3894 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003895
3896 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3897 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3898 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3899 # the host environment.
3900 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003901 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003902
Yifan Hongc65a0542021-01-07 14:21:01 -08003903 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3904 prop_file = os.path.join(extracted_ramdisk, search_path)
3905 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003906 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003907 logger.warning(
3908 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003909
Yifan Hong7dc51172021-01-12 11:27:39 -08003910 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003911
Yifan Hong85ac5012021-01-07 14:43:46 -08003912 except ExternalError as e:
3913 logger.warning('Unable to get boot image build props: %s', e)
3914 return None
3915
3916
3917def GetBootImageTimestamp(boot_img):
3918 """
3919 Get timestamp from ramdisk within the boot image
3920
3921 Args:
3922 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3923
3924 Return:
3925 An integer that corresponds to the timestamp of the boot image, or None
3926 if file has unknown format. Raise exception if an unexpected error has
3927 occurred.
3928 """
3929 prop_file = GetBootImageBuildProp(boot_img)
3930 if not prop_file:
3931 return None
3932
3933 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3934 if props is None:
3935 return None
3936
3937 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003938 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3939 if timestamp:
3940 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003941 logger.warning(
3942 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003943 return None
3944
3945 except ExternalError as e:
3946 logger.warning('Unable to get boot image timestamp: %s', e)
3947 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003948
3949
3950def GetCareMap(which, imgname):
3951 """Returns the care_map string for the given partition.
3952
3953 Args:
3954 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
3955 imgname: The filename of the image.
3956
3957 Returns:
3958 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
3959 RangeSet; or None.
3960 """
3961 assert which in PARTITIONS_WITH_CARE_MAP
3962
3963 # which + "_image_size" contains the size that the actual filesystem image
3964 # resides in, which is all that needs to be verified. The additional blocks in
3965 # the image file contain verity metadata, by reading which would trigger
3966 # invalid reads.
3967 image_size = OPTIONS.info_dict.get(which + "_image_size")
3968 if not image_size:
3969 return None
3970
David Anderson9e95a022021-08-31 21:32:45 -07003971 disable_sparse = OPTIONS.info_dict.get(which + "_disable_sparse")
3972
Kelvin Zhang27324132021-03-22 15:38:38 -04003973 image_blocks = int(image_size) // 4096 - 1
Kelvin Zhang98ef7bb2022-01-07 14:41:46 -08003974 # It's OK for image_blocks to be 0, because care map ranges are inclusive.
3975 # So 0-0 means "just block 0", which is valid.
3976 assert image_blocks >= 0, "blocks for {} must be non-negative, image size: {}".format(
3977 which, image_size)
Kelvin Zhang27324132021-03-22 15:38:38 -04003978
3979 # For sparse images, we will only check the blocks that are listed in the care
3980 # map, i.e. the ones with meaningful data.
David Anderson9e95a022021-08-31 21:32:45 -07003981 if "extfs_sparse_flag" in OPTIONS.info_dict and not disable_sparse:
Kelvin Zhang27324132021-03-22 15:38:38 -04003982 simg = sparse_img.SparseImage(imgname)
3983 care_map_ranges = simg.care_map.intersect(
3984 rangelib.RangeSet("0-{}".format(image_blocks)))
3985
3986 # Otherwise for non-sparse images, we read all the blocks in the filesystem
3987 # image.
3988 else:
3989 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
3990
3991 return [which, care_map_ranges.to_string_raw()]
3992
3993
3994def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
3995 """Generates and adds care_map.pb for a/b partition that has care_map.
3996
3997 Args:
3998 output_file: The output zip file (needs to be already open),
3999 or file path to write care_map.pb.
4000 ab_partitions: The list of A/B partitions.
4001 image_paths: A map from the partition name to the image path.
4002 """
4003 if not output_file:
4004 raise ExternalError('Expected output_file for AddCareMapForAbOta')
4005
4006 care_map_list = []
4007 for partition in ab_partitions:
4008 partition = partition.strip()
4009 if partition not in PARTITIONS_WITH_CARE_MAP:
4010 continue
4011
4012 verity_block_device = "{}_verity_block_device".format(partition)
4013 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
4014 if (verity_block_device in OPTIONS.info_dict or
4015 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
4016 if partition not in image_paths:
4017 logger.warning('Potential partition with care_map missing from images: %s',
4018 partition)
4019 continue
4020 image_path = image_paths[partition]
4021 if not os.path.exists(image_path):
4022 raise ExternalError('Expected image at path {}'.format(image_path))
4023
4024 care_map = GetCareMap(partition, image_path)
4025 if not care_map:
4026 continue
4027 care_map_list += care_map
4028
4029 # adds fingerprint field to the care_map
4030 # TODO(xunchang) revisit the fingerprint calculation for care_map.
4031 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
4032 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
4033 "ro.{}.build.thumbprint".format(partition)]
4034
4035 present_props = [x for x in prop_name_list if
4036 partition_props and partition_props.GetProp(x)]
4037 if not present_props:
4038 logger.warning(
4039 "fingerprint is not present for partition %s", partition)
4040 property_id, fingerprint = "unknown", "unknown"
4041 else:
4042 property_id = present_props[0]
4043 fingerprint = partition_props.GetProp(property_id)
4044 care_map_list += [property_id, fingerprint]
4045
4046 if not care_map_list:
4047 return
4048
4049 # Converts the list into proto buf message by calling care_map_generator; and
4050 # writes the result to a temp file.
4051 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
4052 suffix=".txt")
4053 with open(temp_care_map_text, 'w') as text_file:
4054 text_file.write('\n'.join(care_map_list))
4055
4056 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
4057 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
4058 RunAndCheckOutput(care_map_gen_cmd)
4059
4060 if not isinstance(output_file, zipfile.ZipFile):
4061 shutil.copy(temp_care_map, output_file)
4062 return
4063 # output_file is a zip file
4064 care_map_path = "META/care_map.pb"
4065 if care_map_path in output_file.namelist():
4066 # Copy the temp file into the OPTIONS.input_tmp dir and update the
4067 # replace_updated_files_list used by add_img_to_target_files
4068 if not OPTIONS.replace_updated_files_list:
4069 OPTIONS.replace_updated_files_list = []
4070 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
4071 OPTIONS.replace_updated_files_list.append(care_map_path)
4072 else:
4073 ZipWrite(output_file, temp_care_map, arcname=care_map_path)
Kelvin Zhang26390482021-11-02 14:31:10 -07004074
4075
4076def IsSparseImage(filepath):
4077 with open(filepath, 'rb') as fp:
4078 # Magic for android sparse image format
4079 # https://source.android.com/devices/bootloader/images
4080 return fp.read(4) == b'\x3A\xFF\x26\xED'