blob: 37c03abf4a85a91c18786f6ad90dc395b217e8d6 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Doug Zongker8ce7c252009-05-22 13:34:54 -070020import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070021import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070022import getopt
23import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010024import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070025import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070026import json
27import logging
28import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070029import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080030import platform
Doug Zongkereef39442009-04-02 12:14:19 -070031import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070032import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070033import shutil
34import subprocess
35import sys
36import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070037import threading
38import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070039import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080040from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070041
Tianjie Xu41976c72019-07-03 13:57:01 -070042import images
Tao Baoc765cca2018-01-31 17:32:40 -080043import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070044from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070045
Tao Bao32fcdab2018-10-12 10:30:39 -070046logger = logging.getLogger(__name__)
47
Tao Bao986ee862018-10-04 15:46:16 -070048
Dan Albert8b72aef2015-03-23 19:13:21 -070049class Options(object):
50 def __init__(self):
Pavel Salomatov32676552019-03-06 20:00:45 +030051 base_out_path = os.getenv('OUT_DIR_COMMON_BASE')
52 if base_out_path is None:
53 base_search_path = "out"
54 else:
Tao Bao2cc0ca12019-03-15 10:44:43 -070055 base_search_path = os.path.join(base_out_path,
56 os.path.basename(os.getcwd()))
Pavel Salomatov32676552019-03-06 20:00:45 +030057
Tao Baoa3705452019-06-24 15:33:41 -070058 # Python >= 3.3 returns 'linux', whereas Python 2.7 gives 'linux2'.
Dan Albert8b72aef2015-03-23 19:13:21 -070059 platform_search_path = {
Tao Baoa3705452019-06-24 15:33:41 -070060 "linux": os.path.join(base_search_path, "host/linux-x86"),
Pavel Salomatov32676552019-03-06 20:00:45 +030061 "linux2": os.path.join(base_search_path, "host/linux-x86"),
62 "darwin": os.path.join(base_search_path, "host/darwin-x86"),
Doug Zongker85448772014-09-09 14:59:20 -070063 }
Doug Zongker85448772014-09-09 14:59:20 -070064
Tao Bao76def242017-11-21 09:25:31 -080065 self.search_path = platform_search_path.get(sys.platform)
Dan Albert8b72aef2015-03-23 19:13:21 -070066 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080067 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070068 self.extra_signapk_args = []
69 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080070 self.java_args = ["-Xmx2048m"] # The default JVM args.
Dan Albert8b72aef2015-03-23 19:13:21 -070071 self.public_key_suffix = ".x509.pem"
72 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070073 # use otatools built boot_signer by default
74 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070075 self.boot_signer_args = []
76 self.verity_signer_path = None
77 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070078 self.verbose = False
79 self.tempfiles = []
80 self.device_specific = None
81 self.extras = {}
82 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070083 self.source_info_dict = None
84 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070085 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070086 # Stash size cannot exceed cache_size * threshold.
87 self.cache_size = None
88 self.stash_threshold = 0.8
Dan Albert8b72aef2015-03-23 19:13:21 -070089
90
91OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -070092
Tao Bao71197512018-10-11 14:08:45 -070093# The block size that's used across the releasetools scripts.
94BLOCK_SIZE = 4096
95
Doug Zongkerf6a53aa2009-12-15 15:06:55 -080096# Values for "certificate" in apkcerts that mean special things.
97SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
98
Tao Bao5cc0abb2019-03-21 10:18:05 -070099# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
100# that system_other is not in the list because we don't want to include its
101# descriptor into vbmeta.img.
Justin Yun6151e3f2019-06-25 15:58:13 +0900102AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'recovery', 'system',
Steve Mucklee1b10862019-07-10 10:49:37 -0700103 'system_ext', 'vendor', 'vendor_boot')
Tao Bao9dd909e2017-11-14 11:27:32 -0800104
Tao Bao08c190f2019-06-03 23:07:58 -0700105# Chained VBMeta partitions.
106AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
107
Tianjie Xu861f4132018-09-12 11:49:33 -0700108# Partitions that should have their care_map added to META/care_map.pb
Justin Yun6151e3f2019-06-25 15:58:13 +0900109PARTITIONS_WITH_CARE_MAP = ('system', 'vendor', 'product', 'system_ext', 'odm')
Tianjie Xu861f4132018-09-12 11:49:33 -0700110
111
Tianjie Xu209db462016-05-24 17:34:52 -0700112class ErrorCode(object):
113 """Define error_codes for failures that happen during the actual
114 update package installation.
115
116 Error codes 0-999 are reserved for failures before the package
117 installation (i.e. low battery, package verification failure).
118 Detailed code in 'bootable/recovery/error_code.h' """
119
120 SYSTEM_VERIFICATION_FAILURE = 1000
121 SYSTEM_UPDATE_FAILURE = 1001
122 SYSTEM_UNEXPECTED_CONTENTS = 1002
123 SYSTEM_NONZERO_CONTENTS = 1003
124 SYSTEM_RECOVER_FAILURE = 1004
125 VENDOR_VERIFICATION_FAILURE = 2000
126 VENDOR_UPDATE_FAILURE = 2001
127 VENDOR_UNEXPECTED_CONTENTS = 2002
128 VENDOR_NONZERO_CONTENTS = 2003
129 VENDOR_RECOVER_FAILURE = 2004
130 OEM_PROP_MISMATCH = 3000
131 FINGERPRINT_MISMATCH = 3001
132 THUMBPRINT_MISMATCH = 3002
133 OLDER_BUILD = 3003
134 DEVICE_MISMATCH = 3004
135 BAD_PATCH_FILE = 3005
136 INSUFFICIENT_CACHE_SPACE = 3006
137 TUNE_PARTITION_FAILURE = 3007
138 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800139
Tao Bao80921982018-03-21 21:02:19 -0700140
Dan Albert8b72aef2015-03-23 19:13:21 -0700141class ExternalError(RuntimeError):
142 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700143
144
Tao Bao32fcdab2018-10-12 10:30:39 -0700145def InitLogging():
146 DEFAULT_LOGGING_CONFIG = {
147 'version': 1,
148 'disable_existing_loggers': False,
149 'formatters': {
150 'standard': {
151 'format':
152 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
153 'datefmt': '%Y-%m-%d %H:%M:%S',
154 },
155 },
156 'handlers': {
157 'default': {
158 'class': 'logging.StreamHandler',
159 'formatter': 'standard',
160 },
161 },
162 'loggers': {
163 '': {
164 'handlers': ['default'],
165 'level': 'WARNING',
166 'propagate': True,
167 }
168 }
169 }
170 env_config = os.getenv('LOGGING_CONFIG')
171 if env_config:
172 with open(env_config) as f:
173 config = json.load(f)
174 else:
175 config = DEFAULT_LOGGING_CONFIG
176
177 # Increase the logging level for verbose mode.
178 if OPTIONS.verbose:
179 config = copy.deepcopy(DEFAULT_LOGGING_CONFIG)
180 config['loggers']['']['level'] = 'INFO'
181
182 logging.config.dictConfig(config)
183
184
Tao Bao39451582017-05-04 11:10:47 -0700185def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700186 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700187
Tao Bao73dd4f42018-10-04 16:25:33 -0700188 Args:
189 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700190 verbose: Whether the commands should be shown. Default to the global
191 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700192 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
193 stdin, etc. stdout and stderr will default to subprocess.PIPE and
194 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800195 universal_newlines will default to True, as most of the users in
196 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700197
198 Returns:
199 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700200 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700201 if 'stdout' not in kwargs and 'stderr' not in kwargs:
202 kwargs['stdout'] = subprocess.PIPE
203 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800204 if 'universal_newlines' not in kwargs:
205 kwargs['universal_newlines'] = True
Tao Bao32fcdab2018-10-12 10:30:39 -0700206 # Don't log any if caller explicitly says so.
207 if verbose != False:
208 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700209 return subprocess.Popen(args, **kwargs)
210
211
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800212def RunAndWait(args, verbose=None, **kwargs):
Bill Peckham889b0c62019-02-21 18:53:37 -0800213 """Runs the given command waiting for it to complete.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800214
215 Args:
216 args: The command represented as a list of strings.
217 verbose: Whether the commands should be shown. Default to the global
218 verbosity if unspecified.
219 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
220 stdin, etc. stdout and stderr will default to subprocess.PIPE and
221 subprocess.STDOUT respectively unless caller specifies any of them.
222
Bill Peckham889b0c62019-02-21 18:53:37 -0800223 Raises:
224 ExternalError: On non-zero exit from the command.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800225 """
226 proc = Run(args, verbose=verbose, **kwargs)
227 proc.wait()
Bill Peckham889b0c62019-02-21 18:53:37 -0800228
229 if proc.returncode != 0:
230 raise ExternalError(
231 "Failed to run command '{}' (exit code {})".format(
232 args, proc.returncode))
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800233
234
Tao Bao986ee862018-10-04 15:46:16 -0700235def RunAndCheckOutput(args, verbose=None, **kwargs):
236 """Runs the given command and returns the output.
237
238 Args:
239 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700240 verbose: Whether the commands should be shown. Default to the global
241 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700242 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
243 stdin, etc. stdout and stderr will default to subprocess.PIPE and
244 subprocess.STDOUT respectively unless caller specifies any of them.
245
246 Returns:
247 The output string.
248
249 Raises:
250 ExternalError: On non-zero exit from the command.
251 """
Tao Bao986ee862018-10-04 15:46:16 -0700252 proc = Run(args, verbose=verbose, **kwargs)
253 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800254 if output is None:
255 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700256 # Don't log any if caller explicitly says so.
257 if verbose != False:
258 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700259 if proc.returncode != 0:
260 raise ExternalError(
261 "Failed to run command '{}' (exit code {}):\n{}".format(
262 args, proc.returncode, output))
263 return output
264
265
Tao Baoc765cca2018-01-31 17:32:40 -0800266def RoundUpTo4K(value):
267 rounded_up = value + 4095
268 return rounded_up - (rounded_up % 4096)
269
270
Ying Wang7e6d4e42010-12-13 16:25:36 -0800271def CloseInheritedPipes():
272 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
273 before doing other work."""
274 if platform.system() != "Darwin":
275 return
276 for d in range(3, 1025):
277 try:
278 stat = os.fstat(d)
279 if stat is not None:
280 pipebit = stat[0] & 0x1000
281 if pipebit != 0:
282 os.close(d)
283 except OSError:
284 pass
285
286
Tao Bao410ad8b2018-08-24 12:08:38 -0700287def LoadInfoDict(input_file, repacking=False):
288 """Loads the key/value pairs from the given input target_files.
289
290 It reads `META/misc_info.txt` file in the target_files input, does sanity
291 checks and returns the parsed key/value pairs for to the given build. It's
292 usually called early when working on input target_files files, e.g. when
293 generating OTAs, or signing builds. Note that the function may be called
294 against an old target_files file (i.e. from past dessert releases). So the
295 property parsing needs to be backward compatible.
296
297 In a `META/misc_info.txt`, a few properties are stored as links to the files
298 in the PRODUCT_OUT directory. It works fine with the build system. However,
299 they are no longer available when (re)generating images from target_files zip.
300 When `repacking` is True, redirect these properties to the actual files in the
301 unzipped directory.
302
303 Args:
304 input_file: The input target_files file, which could be an open
305 zipfile.ZipFile instance, or a str for the dir that contains the files
306 unzipped from a target_files file.
307 repacking: Whether it's trying repack an target_files file after loading the
308 info dict (default: False). If so, it will rewrite a few loaded
309 properties (e.g. selinux_fc, root_dir) to point to the actual files in
310 target_files file. When doing repacking, `input_file` must be a dir.
311
312 Returns:
313 A dict that contains the parsed key/value pairs.
314
315 Raises:
316 AssertionError: On invalid input arguments.
317 ValueError: On malformed input values.
318 """
319 if repacking:
320 assert isinstance(input_file, str), \
321 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700322
Doug Zongkerc9253822014-02-04 12:17:58 -0800323 def read_helper(fn):
Dan Albert8b72aef2015-03-23 19:13:21 -0700324 if isinstance(input_file, zipfile.ZipFile):
Tao Baoda30cfa2017-12-01 16:19:46 -0800325 return input_file.read(fn).decode()
Doug Zongkerc9253822014-02-04 12:17:58 -0800326 else:
Dan Albert8b72aef2015-03-23 19:13:21 -0700327 path = os.path.join(input_file, *fn.split("/"))
Doug Zongkerc9253822014-02-04 12:17:58 -0800328 try:
329 with open(path) as f:
330 return f.read()
Dan Albert8b72aef2015-03-23 19:13:21 -0700331 except IOError as e:
Doug Zongkerc9253822014-02-04 12:17:58 -0800332 if e.errno == errno.ENOENT:
333 raise KeyError(fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800334
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700335 try:
Michael Runge6e836112014-04-15 17:40:21 -0700336 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700337 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700338 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700339
Tao Bao410ad8b2018-08-24 12:08:38 -0700340 if "recovery_api_version" not in d:
341 raise ValueError("Failed to find 'recovery_api_version'")
342 if "fstab_version" not in d:
343 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800344
Tao Bao410ad8b2018-08-24 12:08:38 -0700345 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700346 # "selinux_fc" properties should point to the file_contexts files
347 # (file_contexts.bin) under META/.
348 for key in d:
349 if key.endswith("selinux_fc"):
350 fc_basename = os.path.basename(d[key])
351 fc_config = os.path.join(input_file, "META", fc_basename)
352 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700353
Daniel Norman72c626f2019-05-13 15:58:14 -0700354 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700355
Tom Cherryd14b8952018-08-09 14:26:00 -0700356 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700357 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700358 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700359 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700360
Tao Baof54216f2016-03-29 15:12:37 -0700361 # Redirect {system,vendor}_base_fs_file.
362 if "system_base_fs_file" in d:
363 basename = os.path.basename(d["system_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700364 system_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700365 if os.path.exists(system_base_fs_file):
366 d["system_base_fs_file"] = system_base_fs_file
367 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700368 logger.warning(
369 "Failed to find system base fs file: %s", system_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700370 del d["system_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700371
372 if "vendor_base_fs_file" in d:
373 basename = os.path.basename(d["vendor_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700374 vendor_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700375 if os.path.exists(vendor_base_fs_file):
376 d["vendor_base_fs_file"] = vendor_base_fs_file
377 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700378 logger.warning(
379 "Failed to find vendor base fs file: %s", vendor_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700380 del d["vendor_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700381
Doug Zongker37974732010-09-16 17:44:38 -0700382 def makeint(key):
383 if key in d:
384 d[key] = int(d[key], 0)
385
386 makeint("recovery_api_version")
387 makeint("blocksize")
388 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700389 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700390 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700391 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700392 makeint("recovery_size")
393 makeint("boot_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800394 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700395
Tao Bao765668f2019-10-04 22:03:00 -0700396 # Load recovery fstab if applicable.
397 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
Tianjie Xucfa86222016-03-07 16:31:19 -0800398
Tianjie Xu861f4132018-09-12 11:49:33 -0700399 # Tries to load the build props for all partitions with care_map, including
400 # system and vendor.
401 for partition in PARTITIONS_WITH_CARE_MAP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800402 partition_prop = "{}.build.prop".format(partition)
403 d[partition_prop] = LoadBuildProp(
Tianjie Xu861f4132018-09-12 11:49:33 -0700404 read_helper, "{}/build.prop".format(partition.upper()))
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800405 # Some partition might use /<partition>/etc/build.prop as the new path.
406 # TODO: try new path first when majority of them switch to the new path.
407 if not d[partition_prop]:
408 d[partition_prop] = LoadBuildProp(
409 read_helper, "{}/etc/build.prop".format(partition.upper()))
Tianjie Xu861f4132018-09-12 11:49:33 -0700410 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800411
412 # Set up the salt (based on fingerprint or thumbprint) that will be used when
413 # adding AVB footer.
414 if d.get("avb_enable") == "true":
415 fp = None
416 if "build.prop" in d:
417 build_prop = d["build.prop"]
418 if "ro.build.fingerprint" in build_prop:
419 fp = build_prop["ro.build.fingerprint"]
420 elif "ro.build.thumbprint" in build_prop:
421 fp = build_prop["ro.build.thumbprint"]
422 if fp:
423 d["avb_salt"] = sha256(fp).hexdigest()
424
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700425 return d
426
Tao Baod1de6f32017-03-01 16:38:48 -0800427
Tao Baobcd1d162017-08-26 13:10:26 -0700428def LoadBuildProp(read_helper, prop_file):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700429 try:
Tao Baobcd1d162017-08-26 13:10:26 -0700430 data = read_helper(prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700431 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700432 logger.warning("Failed to read %s", prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700433 data = ""
Michael Runge6e836112014-04-15 17:40:21 -0700434 return LoadDictionaryFromLines(data.split("\n"))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700435
Tao Baod1de6f32017-03-01 16:38:48 -0800436
Daniel Norman4cc9df62019-07-18 10:11:07 -0700437def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900438 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700439 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900440
Daniel Norman4cc9df62019-07-18 10:11:07 -0700441
442def LoadDictionaryFromFile(file_path):
443 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900444 return LoadDictionaryFromLines(lines)
445
446
Michael Runge6e836112014-04-15 17:40:21 -0700447def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700448 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700449 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700450 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700451 if not line or line.startswith("#"):
452 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700453 if "=" in line:
454 name, value = line.split("=", 1)
455 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700456 return d
457
Tao Baod1de6f32017-03-01 16:38:48 -0800458
Tianjie Xucfa86222016-03-07 16:31:19 -0800459def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
460 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700461 class Partition(object):
Tao Baod1de6f32017-03-01 16:38:48 -0800462 def __init__(self, mount_point, fs_type, device, length, context):
Dan Albert8b72aef2015-03-23 19:13:21 -0700463 self.mount_point = mount_point
464 self.fs_type = fs_type
465 self.device = device
466 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700467 self.context = context
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700468
469 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800470 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700471 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700472 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -0700473 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700474
Tao Baod1de6f32017-03-01 16:38:48 -0800475 assert fstab_version == 2
476
477 d = {}
478 for line in data.split("\n"):
479 line = line.strip()
480 if not line or line.startswith("#"):
481 continue
482
483 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
484 pieces = line.split()
485 if len(pieces) != 5:
486 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
487
488 # Ignore entries that are managed by vold.
489 options = pieces[4]
490 if "voldmanaged=" in options:
491 continue
492
493 # It's a good line, parse it.
494 length = 0
495 options = options.split(",")
496 for i in options:
497 if i.startswith("length="):
498 length = int(i[7:])
Doug Zongker086cbb02011-02-17 15:54:20 -0800499 else:
Tao Baod1de6f32017-03-01 16:38:48 -0800500 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -0700501 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800502
Tao Baod1de6f32017-03-01 16:38:48 -0800503 mount_flags = pieces[3]
504 # Honor the SELinux context if present.
505 context = None
506 for i in mount_flags.split(","):
507 if i.startswith("context="):
508 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -0800509
Tao Baod1de6f32017-03-01 16:38:48 -0800510 mount_point = pieces[1]
511 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
512 device=pieces[0], length=length, context=context)
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800513
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700514 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700515 # system. Other areas assume system is always at "/system" so point /system
516 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700517 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -0800518 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700519 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700520 return d
521
522
Tao Bao765668f2019-10-04 22:03:00 -0700523def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
524 """Finds the path to recovery fstab and loads its contents."""
525 # recovery fstab is only meaningful when installing an update via recovery
526 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
527 if info_dict.get('ab_update') == 'true':
528 return None
529
530 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
531 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
532 # cases, since it may load the info_dict from an old build (e.g. when
533 # generating incremental OTAs from that build).
534 system_root_image = info_dict.get('system_root_image') == 'true'
535 if info_dict.get('no_recovery') != 'true':
536 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
537 if isinstance(input_file, zipfile.ZipFile):
538 if recovery_fstab_path not in input_file.namelist():
539 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
540 else:
541 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
542 if not os.path.exists(path):
543 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
544 return LoadRecoveryFSTab(
545 read_helper, info_dict['fstab_version'], recovery_fstab_path,
546 system_root_image)
547
548 if info_dict.get('recovery_as_boot') == 'true':
549 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
550 if isinstance(input_file, zipfile.ZipFile):
551 if recovery_fstab_path not in input_file.namelist():
552 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
553 else:
554 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
555 if not os.path.exists(path):
556 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
557 return LoadRecoveryFSTab(
558 read_helper, info_dict['fstab_version'], recovery_fstab_path,
559 system_root_image)
560
561 return None
562
563
Doug Zongker37974732010-09-16 17:44:38 -0700564def DumpInfoDict(d):
565 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -0700566 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700567
Dan Albert8b72aef2015-03-23 19:13:21 -0700568
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700569def MergeDynamicPartitionInfoDicts(framework_dict,
570 vendor_dict,
571 include_dynamic_partition_list=True,
572 size_prefix="",
573 size_suffix="",
574 list_prefix="",
575 list_suffix=""):
576 """Merges dynamic partition info variables.
577
578 Args:
579 framework_dict: The dictionary of dynamic partition info variables from the
580 partial framework target files.
581 vendor_dict: The dictionary of dynamic partition info variables from the
582 partial vendor target files.
583 include_dynamic_partition_list: If true, merges the dynamic_partition_list
584 variable. Not all use cases need this variable merged.
585 size_prefix: The prefix in partition group size variables that precedes the
586 name of the partition group. For example, partition group 'group_a' with
587 corresponding size variable 'super_group_a_group_size' would have the
588 size_prefix 'super_'.
589 size_suffix: Similar to size_prefix but for the variable's suffix. For
590 example, 'super_group_a_group_size' would have size_suffix '_group_size'.
591 list_prefix: Similar to size_prefix but for the partition group's
592 partition_list variable.
593 list_suffix: Similar to size_suffix but for the partition group's
594 partition_list variable.
595
596 Returns:
597 The merged dynamic partition info dictionary.
598 """
599 merged_dict = {}
600 # Partition groups and group sizes are defined by the vendor dict because
601 # these values may vary for each board that uses a shared system image.
602 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
603 if include_dynamic_partition_list:
604 framework_dynamic_partition_list = framework_dict.get(
605 "dynamic_partition_list", "")
606 vendor_dynamic_partition_list = vendor_dict.get("dynamic_partition_list",
607 "")
608 merged_dict["dynamic_partition_list"] = (
609 "%s %s" % (framework_dynamic_partition_list,
610 vendor_dynamic_partition_list)).strip()
611 for partition_group in merged_dict["super_partition_groups"].split(" "):
612 # Set the partition group's size using the value from the vendor dict.
613 key = "%s%s%s" % (size_prefix, partition_group, size_suffix)
614 if key not in vendor_dict:
615 raise ValueError("Vendor dict does not contain required key %s." % key)
616 merged_dict[key] = vendor_dict[key]
617
618 # Set the partition group's partition list using a concatenation of the
619 # framework and vendor partition lists.
620 key = "%s%s%s" % (list_prefix, partition_group, list_suffix)
621 merged_dict[key] = (
622 "%s %s" %
623 (framework_dict.get(key, ""), vendor_dict.get(key, ""))).strip()
624 return merged_dict
625
626
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800627def AppendAVBSigningArgs(cmd, partition):
628 """Append signing arguments for avbtool."""
629 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
630 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -0700631 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
632 new_key_path = os.path.join(OPTIONS.search_path, key_path)
633 if os.path.exists(new_key_path):
634 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800635 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
636 if key_path and algorithm:
637 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -0700638 avb_salt = OPTIONS.info_dict.get("avb_salt")
639 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -0700640 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -0700641 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800642
643
Tao Bao765668f2019-10-04 22:03:00 -0700644def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -0700645 """Returns the VBMeta arguments for partition.
646
647 It sets up the VBMeta argument by including the partition descriptor from the
648 given 'image', or by configuring the partition as a chained partition.
649
650 Args:
651 partition: The name of the partition (e.g. "system").
652 image: The path to the partition image.
653 info_dict: A dict returned by common.LoadInfoDict(). Will use
654 OPTIONS.info_dict if None has been given.
655
656 Returns:
657 A list of VBMeta arguments.
658 """
659 if info_dict is None:
660 info_dict = OPTIONS.info_dict
661
662 # Check if chain partition is used.
663 key_path = info_dict.get("avb_" + partition + "_key_path")
664 if key_path:
665 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
666 return ["--chain_partition", chained_partition_arg]
667 else:
668 return ["--include_descriptors_from_image", image]
669
670
Tao Bao02a08592018-07-22 12:40:45 -0700671def GetAvbChainedPartitionArg(partition, info_dict, key=None):
672 """Constructs and returns the arg to build or verify a chained partition.
673
674 Args:
675 partition: The partition name.
676 info_dict: The info dict to look up the key info and rollback index
677 location.
678 key: The key to be used for building or verifying the partition. Defaults to
679 the key listed in info_dict.
680
681 Returns:
682 A string of form "partition:rollback_index_location:key" that can be used to
683 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -0700684 """
685 if key is None:
686 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -0700687 if key and not os.path.exists(key) and OPTIONS.search_path:
688 new_key_path = os.path.join(OPTIONS.search_path, key)
689 if os.path.exists(new_key_path):
690 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -0700691 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -0700692 rollback_index_location = info_dict[
693 "avb_" + partition + "_rollback_index_location"]
694 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
695
696
Daniel Norman276f0622019-07-26 14:13:51 -0700697def BuildVBMeta(image_path, partitions, name, needed_partitions):
698 """Creates a VBMeta image.
699
700 It generates the requested VBMeta image. The requested image could be for
701 top-level or chained VBMeta image, which is determined based on the name.
702
703 Args:
704 image_path: The output path for the new VBMeta image.
705 partitions: A dict that's keyed by partition names with image paths as
706 values. Only valid partition names are accepted, as listed in
707 common.AVB_PARTITIONS.
708 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
709 needed_partitions: Partitions whose descriptors should be included into the
710 generated VBMeta image.
711
712 Raises:
713 AssertionError: On invalid input args.
714 """
715 avbtool = OPTIONS.info_dict["avb_avbtool"]
716 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
717 AppendAVBSigningArgs(cmd, name)
718
719 for partition, path in partitions.items():
720 if partition not in needed_partitions:
721 continue
722 assert (partition in AVB_PARTITIONS or
723 partition in AVB_VBMETA_PARTITIONS), \
724 'Unknown partition: {}'.format(partition)
725 assert os.path.exists(path), \
726 'Failed to find {} for {}'.format(path, partition)
727 cmd.extend(GetAvbPartitionArg(partition, path))
728
729 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
730 if args and args.strip():
731 split_args = shlex.split(args)
732 for index, arg in enumerate(split_args[:-1]):
733 # Sanity check that the image file exists. Some images might be defined
734 # as a path relative to source tree, which may not be available at the
735 # same location when running this script (we have the input target_files
736 # zip only). For such cases, we additionally scan other locations (e.g.
737 # IMAGES/, RADIO/, etc) before bailing out.
738 if arg == '--include_descriptors_from_image':
739 image_path = split_args[index + 1]
740 if os.path.exists(image_path):
741 continue
742 found = False
743 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
744 alt_path = os.path.join(
745 OPTIONS.input_tmp, dir_name, os.path.basename(image_path))
746 if os.path.exists(alt_path):
747 split_args[index + 1] = alt_path
748 found = True
749 break
750 assert found, 'Failed to find {}'.format(image_path)
751 cmd.extend(split_args)
752
753 RunAndCheckOutput(cmd)
754
755
Steve Mucklee1b10862019-07-10 10:49:37 -0700756def _MakeRamdisk(sourcedir, fs_config_file=None):
757 ramdisk_img = tempfile.NamedTemporaryFile()
758
759 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
760 cmd = ["mkbootfs", "-f", fs_config_file,
761 os.path.join(sourcedir, "RAMDISK")]
762 else:
763 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
764 p1 = Run(cmd, stdout=subprocess.PIPE)
765 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
766
767 p2.wait()
768 p1.wait()
769 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
770 assert p2.returncode == 0, "minigzip of %s ramdisk failed" % (sourcedir,)
771
772 return ramdisk_img
773
774
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700775def _BuildBootableImage(sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -0800776 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700777 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -0700778
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700779 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -0800780 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
781 we are building a two-step special image (i.e. building a recovery image to
782 be loaded into /boot in two-step OTAs).
783
784 Return the image data, or None if sourcedir does not appear to contains files
785 for building the requested image.
786 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700787
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700788 if not os.access(os.path.join(sourcedir, "kernel"), os.F_OK):
789 return None
790
791 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -0700792 return None
Doug Zongkereef39442009-04-02 12:14:19 -0700793
Doug Zongkerd5131602012-08-02 14:46:42 -0700794 if info_dict is None:
795 info_dict = OPTIONS.info_dict
796
Doug Zongkereef39442009-04-02 12:14:19 -0700797 img = tempfile.NamedTemporaryFile()
798
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700799 if has_ramdisk:
Steve Mucklee1b10862019-07-10 10:49:37 -0700800 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file)
Doug Zongkereef39442009-04-02 12:14:19 -0700801
Bjorn Andersson612e2cd2012-11-25 16:53:44 -0800802 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
803 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
804
805 cmd = [mkbootimg, "--kernel", os.path.join(sourcedir, "kernel")]
Doug Zongker38a649f2009-06-17 09:07:09 -0700806
Benoit Fradina45a8682014-07-14 21:00:43 +0200807 fn = os.path.join(sourcedir, "second")
808 if os.access(fn, os.F_OK):
809 cmd.append("--second")
810 cmd.append(fn)
811
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -0800812 fn = os.path.join(sourcedir, "dtb")
813 if os.access(fn, os.F_OK):
814 cmd.append("--dtb")
815 cmd.append(fn)
816
Doug Zongker171f1cd2009-06-15 22:36:37 -0700817 fn = os.path.join(sourcedir, "cmdline")
818 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -0700819 cmd.append("--cmdline")
820 cmd.append(open(fn).read().rstrip("\n"))
821
822 fn = os.path.join(sourcedir, "base")
823 if os.access(fn, os.F_OK):
824 cmd.append("--base")
825 cmd.append(open(fn).read().rstrip("\n"))
826
Ying Wang4de6b5b2010-08-25 14:29:34 -0700827 fn = os.path.join(sourcedir, "pagesize")
828 if os.access(fn, os.F_OK):
829 cmd.append("--pagesize")
830 cmd.append(open(fn).read().rstrip("\n"))
831
Tao Bao76def242017-11-21 09:25:31 -0800832 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -0700833 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -0700834 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -0700835
Tao Bao76def242017-11-21 09:25:31 -0800836 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +0000837 if args and args.strip():
838 cmd.extend(shlex.split(args))
839
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700840 if has_ramdisk:
841 cmd.extend(["--ramdisk", ramdisk_img.name])
842
Tao Baod95e9fd2015-03-29 23:07:41 -0700843 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -0800844 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -0700845 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700846 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -0700847 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700848 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -0700849
Tao Baobf70c312017-07-11 17:27:55 -0700850 # "boot" or "recovery", without extension.
851 partition_name = os.path.basename(sourcedir).lower()
852
Chen, ZhiminX752439b2018-09-23 22:10:47 +0800853 if partition_name == "recovery":
854 if info_dict.get("include_recovery_dtbo") == "true":
855 fn = os.path.join(sourcedir, "recovery_dtbo")
856 cmd.extend(["--recovery_dtbo", fn])
857 if info_dict.get("include_recovery_acpio") == "true":
858 fn = os.path.join(sourcedir, "recovery_acpio")
859 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -0700860
Tao Bao986ee862018-10-04 15:46:16 -0700861 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -0700862
Tao Bao76def242017-11-21 09:25:31 -0800863 if (info_dict.get("boot_signer") == "true" and
864 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -0800865 # Hard-code the path as "/boot" for two-step special recovery image (which
866 # will be loaded into /boot during the two-step OTA).
867 if two_step_image:
868 path = "/boot"
869 else:
Tao Baobf70c312017-07-11 17:27:55 -0700870 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -0700871 cmd = [OPTIONS.boot_signer_path]
872 cmd.extend(OPTIONS.boot_signer_args)
873 cmd.extend([path, img.name,
874 info_dict["verity_key"] + ".pk8",
875 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -0700876 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -0700877
Tao Baod95e9fd2015-03-29 23:07:41 -0700878 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -0800879 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -0700880 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -0700881 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -0800882 # We have switched from the prebuilt futility binary to using the tool
883 # (futility-host) built from the source. Override the setting in the old
884 # TF.zip.
885 futility = info_dict["futility"]
886 if futility.startswith("prebuilts/"):
887 futility = "futility-host"
888 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -0700889 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -0700890 info_dict["vboot_key"] + ".vbprivk",
891 info_dict["vboot_subkey"] + ".vbprivk",
892 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -0700893 img.name]
Tao Bao986ee862018-10-04 15:46:16 -0700894 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -0700895
Tao Baof3282b42015-04-01 11:21:55 -0700896 # Clean up the temp files.
897 img_unsigned.close()
898 img_keyblock.close()
899
David Zeuthen8fecb282017-12-01 16:24:01 -0500900 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800901 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -0700902 avbtool = info_dict["avb_avbtool"]
David Zeuthen8fecb282017-12-01 16:24:01 -0500903 part_size = info_dict[partition_name + "_size"]
David Zeuthen2ce63ed2016-09-15 13:43:54 -0400904 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -0700905 "--partition_size", str(part_size), "--partition_name",
906 partition_name]
907 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -0500908 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -0400909 if args and args.strip():
910 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -0700911 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -0500912
913 img.seek(os.SEEK_SET, 0)
914 data = img.read()
915
916 if has_ramdisk:
917 ramdisk_img.close()
918 img.close()
919
920 return data
921
922
Doug Zongkerd5131602012-08-02 14:46:42 -0700923def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -0800924 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700925 """Return a File object with the desired bootable image.
926
927 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
928 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
929 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -0700930
Doug Zongker55d93282011-01-25 17:03:34 -0800931 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
932 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -0700933 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -0800934 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -0700935
936 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
937 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -0700938 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -0700939 return File.FromLocalFile(name, prebuilt_path)
940
Tao Bao32fcdab2018-10-12 10:30:39 -0700941 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700942
943 if info_dict is None:
944 info_dict = OPTIONS.info_dict
945
946 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -0800947 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
948 # for recovery.
949 has_ramdisk = (info_dict.get("system_root_image") != "true" or
950 prebuilt_name != "boot.img" or
951 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700952
Doug Zongker6f1d0312014-08-22 08:07:12 -0700953 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
David Zeuthen2ce63ed2016-09-15 13:43:54 -0400954 data = _BuildBootableImage(os.path.join(unpack_dir, tree_subdir),
955 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -0800956 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -0700957 if data:
958 return File(name, data)
959 return None
Doug Zongker55d93282011-01-25 17:03:34 -0800960
Doug Zongkereef39442009-04-02 12:14:19 -0700961
Steve Mucklee1b10862019-07-10 10:49:37 -0700962def _BuildVendorBootImage(sourcedir, info_dict=None):
963 """Build a vendor boot image from the specified sourcedir.
964
965 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
966 turn them into a vendor boot image.
967
968 Return the image data, or None if sourcedir does not appear to contains files
969 for building the requested image.
970 """
971
972 if info_dict is None:
973 info_dict = OPTIONS.info_dict
974
975 img = tempfile.NamedTemporaryFile()
976
977 ramdisk_img = _MakeRamdisk(sourcedir)
978
979 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
980 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
981
982 cmd = [mkbootimg]
983
984 fn = os.path.join(sourcedir, "dtb")
985 if os.access(fn, os.F_OK):
986 cmd.append("--dtb")
987 cmd.append(fn)
988
989 fn = os.path.join(sourcedir, "vendor_cmdline")
990 if os.access(fn, os.F_OK):
991 cmd.append("--vendor_cmdline")
992 cmd.append(open(fn).read().rstrip("\n"))
993
994 fn = os.path.join(sourcedir, "base")
995 if os.access(fn, os.F_OK):
996 cmd.append("--base")
997 cmd.append(open(fn).read().rstrip("\n"))
998
999 fn = os.path.join(sourcedir, "pagesize")
1000 if os.access(fn, os.F_OK):
1001 cmd.append("--pagesize")
1002 cmd.append(open(fn).read().rstrip("\n"))
1003
1004 args = info_dict.get("mkbootimg_args")
1005 if args and args.strip():
1006 cmd.extend(shlex.split(args))
1007
1008 args = info_dict.get("mkbootimg_version_args")
1009 if args and args.strip():
1010 cmd.extend(shlex.split(args))
1011
1012 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1013 cmd.extend(["--vendor_boot", img.name])
1014
1015 RunAndCheckOutput(cmd)
1016
1017 # AVB: if enabled, calculate and add hash.
1018 if info_dict.get("avb_enable") == "true":
1019 avbtool = info_dict["avb_avbtool"]
1020 part_size = info_dict["vendor_boot_size"]
1021 cmd = [avbtool, "add_hash_footer", "--image", img.name,
1022 "--partition_size", str(part_size), "--partition_name vendor_boot"]
1023 AppendAVBSigningArgs(cmd, "vendor_boot")
1024 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1025 if args and args.strip():
1026 cmd.extend(shlex.split(args))
1027 RunAndCheckOutput(cmd)
1028
1029 img.seek(os.SEEK_SET, 0)
1030 data = img.read()
1031
1032 ramdisk_img.close()
1033 img.close()
1034
1035 return data
1036
1037
1038def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1039 info_dict=None):
1040 """Return a File object with the desired vendor boot image.
1041
1042 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1043 the source files in 'unpack_dir'/'tree_subdir'."""
1044
1045 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1046 if os.path.exists(prebuilt_path):
1047 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1048 return File.FromLocalFile(name, prebuilt_path)
1049
1050 logger.info("building image from target_files %s...", tree_subdir)
1051
1052 if info_dict is None:
1053 info_dict = OPTIONS.info_dict
1054
1055 data = _BuildVendorBootImage(os.path.join(unpack_dir, tree_subdir), info_dict)
1056 if data:
1057 return File(name, data)
1058 return None
1059
1060
Narayan Kamatha07bf042017-08-14 14:49:21 +01001061def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001062 """Gunzips the given gzip compressed file to a given output file."""
1063 with gzip.open(in_filename, "rb") as in_file, \
1064 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001065 shutil.copyfileobj(in_file, out_file)
1066
1067
Tao Bao0ff15de2019-03-20 11:26:06 -07001068def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001069 """Unzips the archive to the given directory.
1070
1071 Args:
1072 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001073 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001074 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1075 archvie. Non-matching patterns will be filtered out. If there's no match
1076 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001077 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001078 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001079 if patterns is not None:
1080 # Filter out non-matching patterns. unzip will complain otherwise.
1081 with zipfile.ZipFile(filename) as input_zip:
1082 names = input_zip.namelist()
1083 filtered = [
1084 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1085
1086 # There isn't any matching files. Don't unzip anything.
1087 if not filtered:
1088 return
1089 cmd.extend(filtered)
1090
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001091 RunAndCheckOutput(cmd)
1092
1093
Doug Zongker75f17362009-12-08 13:46:44 -08001094def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001095 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001096
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001097 Args:
1098 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1099 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1100
1101 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1102 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001103
Tao Bao1c830bf2017-12-25 10:43:47 -08001104 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001105 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001106 """
Doug Zongkereef39442009-04-02 12:14:19 -07001107
Tao Bao1c830bf2017-12-25 10:43:47 -08001108 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001109 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1110 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001111 UnzipToDir(m.group(1), tmp, pattern)
1112 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001113 filename = m.group(1)
1114 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001115 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001116
Tao Baodba59ee2018-01-09 13:21:02 -08001117 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001118
1119
Yifan Hong8a66a712019-04-04 15:37:57 -07001120def GetUserImage(which, tmpdir, input_zip,
1121 info_dict=None,
1122 allow_shared_blocks=None,
1123 hashtree_info_generator=None,
1124 reset_file_map=False):
1125 """Returns an Image object suitable for passing to BlockImageDiff.
1126
1127 This function loads the specified image from the given path. If the specified
1128 image is sparse, it also performs additional processing for OTA purpose. For
1129 example, it always adds block 0 to clobbered blocks list. It also detects
1130 files that cannot be reconstructed from the block list, for whom we should
1131 avoid applying imgdiff.
1132
1133 Args:
1134 which: The partition name.
1135 tmpdir: The directory that contains the prebuilt image and block map file.
1136 input_zip: The target-files ZIP archive.
1137 info_dict: The dict to be looked up for relevant info.
1138 allow_shared_blocks: If image is sparse, whether having shared blocks is
1139 allowed. If none, it is looked up from info_dict.
1140 hashtree_info_generator: If present and image is sparse, generates the
1141 hashtree_info for this sparse image.
1142 reset_file_map: If true and image is sparse, reset file map before returning
1143 the image.
1144 Returns:
1145 A Image object. If it is a sparse image and reset_file_map is False, the
1146 image will have file_map info loaded.
1147 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001148 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07001149 info_dict = LoadInfoDict(input_zip)
1150
1151 is_sparse = info_dict.get("extfs_sparse_flag")
1152
1153 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
1154 # shared blocks (i.e. some blocks will show up in multiple files' block
1155 # list). We can only allocate such shared blocks to the first "owner", and
1156 # disable imgdiff for all later occurrences.
1157 if allow_shared_blocks is None:
1158 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
1159
1160 if is_sparse:
1161 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1162 hashtree_info_generator)
1163 if reset_file_map:
1164 img.ResetFileMap()
1165 return img
1166 else:
1167 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
1168
1169
1170def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
1171 """Returns a Image object suitable for passing to BlockImageDiff.
1172
1173 This function loads the specified non-sparse image from the given path.
1174
1175 Args:
1176 which: The partition name.
1177 tmpdir: The directory that contains the prebuilt image and block map file.
1178 Returns:
1179 A Image object.
1180 """
1181 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1182 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1183
1184 # The image and map files must have been created prior to calling
1185 # ota_from_target_files.py (since LMP).
1186 assert os.path.exists(path) and os.path.exists(mappath)
1187
Tianjie Xu41976c72019-07-03 13:57:01 -07001188 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
1189
Yifan Hong8a66a712019-04-04 15:37:57 -07001190
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001191def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1192 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08001193 """Returns a SparseImage object suitable for passing to BlockImageDiff.
1194
1195 This function loads the specified sparse image from the given path, and
1196 performs additional processing for OTA purpose. For example, it always adds
1197 block 0 to clobbered blocks list. It also detects files that cannot be
1198 reconstructed from the block list, for whom we should avoid applying imgdiff.
1199
1200 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07001201 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08001202 tmpdir: The directory that contains the prebuilt image and block map file.
1203 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08001204 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001205 hashtree_info_generator: If present, generates the hashtree_info for this
1206 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08001207 Returns:
1208 A SparseImage object, with file_map info loaded.
1209 """
Tao Baoc765cca2018-01-31 17:32:40 -08001210 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1211 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1212
1213 # The image and map files must have been created prior to calling
1214 # ota_from_target_files.py (since LMP).
1215 assert os.path.exists(path) and os.path.exists(mappath)
1216
1217 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
1218 # it to clobbered_blocks so that it will be written to the target
1219 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
1220 clobbered_blocks = "0"
1221
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001222 image = sparse_img.SparseImage(
1223 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
1224 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08001225
1226 # block.map may contain less blocks, because mke2fs may skip allocating blocks
1227 # if they contain all zeros. We can't reconstruct such a file from its block
1228 # list. Tag such entries accordingly. (Bug: 65213616)
1229 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08001230 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07001231 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08001232 continue
1233
Tom Cherryd14b8952018-08-09 14:26:00 -07001234 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
1235 # filename listed in system.map may contain an additional leading slash
1236 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
1237 # results.
Tao Baoda30cfa2017-12-01 16:19:46 -08001238 arcname = entry.replace(which, which.upper(), 1).lstrip('/')
Tao Baod3554e62018-07-10 15:31:22 -07001239
Tom Cherryd14b8952018-08-09 14:26:00 -07001240 # Special handling another case, where files not under /system
1241 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
Tao Baod3554e62018-07-10 15:31:22 -07001242 if which == 'system' and not arcname.startswith('SYSTEM'):
1243 arcname = 'ROOT/' + arcname
1244
1245 assert arcname in input_zip.namelist(), \
1246 "Failed to find the ZIP entry for {}".format(entry)
1247
Tao Baoc765cca2018-01-31 17:32:40 -08001248 info = input_zip.getinfo(arcname)
1249 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08001250
1251 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08001252 # image, check the original block list to determine its completeness. Note
1253 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08001254 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08001255 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08001256
Tao Baoc765cca2018-01-31 17:32:40 -08001257 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
1258 ranges.extra['incomplete'] = True
1259
1260 return image
1261
1262
Doug Zongkereef39442009-04-02 12:14:19 -07001263def GetKeyPasswords(keylist):
1264 """Given a list of keys, prompt the user to enter passwords for
1265 those which require them. Return a {key: password} dict. password
1266 will be None if the key has no password."""
1267
Doug Zongker8ce7c252009-05-22 13:34:54 -07001268 no_passwords = []
1269 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07001270 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07001271 devnull = open("/dev/null", "w+b")
1272 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001273 # We don't need a password for things that aren't really keys.
1274 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001275 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07001276 continue
1277
T.R. Fullhart37e10522013-03-18 10:31:26 -07001278 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07001279 "-inform", "DER", "-nocrypt"],
1280 stdin=devnull.fileno(),
1281 stdout=devnull.fileno(),
1282 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07001283 p.communicate()
1284 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001285 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07001286 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001287 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001288 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
1289 "-inform", "DER", "-passin", "pass:"],
1290 stdin=devnull.fileno(),
1291 stdout=devnull.fileno(),
1292 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07001293 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07001294 if p.returncode == 0:
1295 # Encrypted key with empty string as password.
1296 key_passwords[k] = ''
1297 elif stderr.startswith('Error decrypting key'):
1298 # Definitely encrypted key.
1299 # It would have said "Error reading key" if it didn't parse correctly.
1300 need_passwords.append(k)
1301 else:
1302 # Potentially, a type of key that openssl doesn't understand.
1303 # We'll let the routines in signapk.jar handle it.
1304 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001305 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07001306
T.R. Fullhart37e10522013-03-18 10:31:26 -07001307 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08001308 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07001309 return key_passwords
1310
1311
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001312def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07001313 """Gets the minSdkVersion declared in the APK.
1314
changho.shin0f125362019-07-08 10:59:00 +09001315 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07001316 This can be both a decimal number (API Level) or a codename.
1317
1318 Args:
1319 apk_name: The APK filename.
1320
1321 Returns:
1322 The parsed SDK version string.
1323
1324 Raises:
1325 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001326 """
Tao Baof47bf0f2018-03-21 23:28:51 -07001327 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09001328 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07001329 stderr=subprocess.PIPE)
1330 stdoutdata, stderrdata = proc.communicate()
1331 if proc.returncode != 0:
1332 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09001333 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07001334 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001335
Tao Baof47bf0f2018-03-21 23:28:51 -07001336 for line in stdoutdata.split("\n"):
1337 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001338 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
1339 if m:
1340 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09001341 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001342
1343
1344def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07001345 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001346
Tao Baof47bf0f2018-03-21 23:28:51 -07001347 If minSdkVersion is set to a codename, it is translated to a number using the
1348 provided map.
1349
1350 Args:
1351 apk_name: The APK filename.
1352
1353 Returns:
1354 The parsed SDK version number.
1355
1356 Raises:
1357 ExternalError: On failing to get the min SDK version number.
1358 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001359 version = GetMinSdkVersion(apk_name)
1360 try:
1361 return int(version)
1362 except ValueError:
1363 # Not a decimal number. Codename?
1364 if version in codename_to_api_level_map:
1365 return codename_to_api_level_map[version]
1366 else:
Tao Baof47bf0f2018-03-21 23:28:51 -07001367 raise ExternalError(
1368 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
1369 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001370
1371
1372def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07001373 codename_to_api_level_map=None, whole_file=False,
1374 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07001375 """Sign the input_name zip/jar/apk, producing output_name. Use the
1376 given key and password (the latter may be None if the key does not
1377 have a password.
1378
Doug Zongker951495f2009-08-14 12:44:19 -07001379 If whole_file is true, use the "-w" option to SignApk to embed a
1380 signature that covers the whole file in the archive comment of the
1381 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001382
1383 min_api_level is the API Level (int) of the oldest platform this file may end
1384 up on. If not specified for an APK, the API Level is obtained by interpreting
1385 the minSdkVersion attribute of the APK's AndroidManifest.xml.
1386
1387 codename_to_api_level_map is needed to translate the codename which may be
1388 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07001389
1390 Caller may optionally specify extra args to be passed to SignApk, which
1391 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07001392 """
Tao Bao76def242017-11-21 09:25:31 -08001393 if codename_to_api_level_map is None:
1394 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07001395 if extra_signapk_args is None:
1396 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07001397
Alex Klyubin9667b182015-12-10 13:38:50 -08001398 java_library_path = os.path.join(
1399 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
1400
Tao Baoe95540e2016-11-08 12:08:53 -08001401 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
1402 ["-Djava.library.path=" + java_library_path,
1403 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07001404 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07001405 if whole_file:
1406 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001407
1408 min_sdk_version = min_api_level
1409 if min_sdk_version is None:
1410 if not whole_file:
1411 min_sdk_version = GetMinSdkVersionInt(
1412 input_name, codename_to_api_level_map)
1413 if min_sdk_version is not None:
1414 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
1415
T.R. Fullhart37e10522013-03-18 10:31:26 -07001416 cmd.extend([key + OPTIONS.public_key_suffix,
1417 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08001418 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07001419
Tao Bao73dd4f42018-10-04 16:25:33 -07001420 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07001421 if password is not None:
1422 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07001423 stdoutdata, _ = proc.communicate(password)
1424 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07001425 raise ExternalError(
1426 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07001427 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07001428
Doug Zongkereef39442009-04-02 12:14:19 -07001429
Doug Zongker37974732010-09-16 17:44:38 -07001430def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08001431 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07001432
Tao Bao9dd909e2017-11-14 11:27:32 -08001433 For non-AVB images, raise exception if the data is too big. Print a warning
1434 if the data is nearing the maximum size.
1435
1436 For AVB images, the actual image size should be identical to the limit.
1437
1438 Args:
1439 data: A string that contains all the data for the partition.
1440 target: The partition name. The ".img" suffix is optional.
1441 info_dict: The dict to be looked up for relevant info.
1442 """
Dan Albert8b72aef2015-03-23 19:13:21 -07001443 if target.endswith(".img"):
1444 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001445 mount_point = "/" + target
1446
Ying Wangf8824af2014-06-03 14:07:27 -07001447 fs_type = None
1448 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001449 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07001450 if mount_point == "/userdata":
1451 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001452 p = info_dict["fstab"][mount_point]
1453 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08001454 device = p.device
1455 if "/" in device:
1456 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08001457 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07001458 if not fs_type or not limit:
1459 return
Doug Zongkereef39442009-04-02 12:14:19 -07001460
Andrew Boie0f9aec82012-02-14 09:32:52 -08001461 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08001462 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
1463 # path.
1464 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
1465 if size != limit:
1466 raise ExternalError(
1467 "Mismatching image size for %s: expected %d actual %d" % (
1468 target, limit, size))
1469 else:
1470 pct = float(size) * 100.0 / limit
1471 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
1472 if pct >= 99.0:
1473 raise ExternalError(msg)
1474 elif pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07001475 logger.warning("\n WARNING: %s\n", msg)
1476 else:
1477 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07001478
1479
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001480def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08001481 """Parses the APK certs info from a given target-files zip.
1482
1483 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
1484 tuple with the following elements: (1) a dictionary that maps packages to
1485 certs (based on the "certificate" and "private_key" attributes in the file;
1486 (2) a string representing the extension of compressed APKs in the target files
1487 (e.g ".gz", ".bro").
1488
1489 Args:
1490 tf_zip: The input target_files ZipFile (already open).
1491
1492 Returns:
1493 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
1494 the extension string of compressed APKs (e.g. ".gz"), or None if there's
1495 no compressed APKs.
1496 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001497 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01001498 compressed_extension = None
1499
Tao Bao0f990332017-09-08 19:02:54 -07001500 # META/apkcerts.txt contains the info for _all_ the packages known at build
1501 # time. Filter out the ones that are not installed.
1502 installed_files = set()
1503 for name in tf_zip.namelist():
1504 basename = os.path.basename(name)
1505 if basename:
1506 installed_files.add(basename)
1507
Tao Baoda30cfa2017-12-01 16:19:46 -08001508 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001509 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001510 if not line:
1511 continue
Tao Bao818ddf52018-01-05 11:17:34 -08001512 m = re.match(
1513 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
1514 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*)")?$',
1515 line)
1516 if not m:
1517 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01001518
Tao Bao818ddf52018-01-05 11:17:34 -08001519 matches = m.groupdict()
1520 cert = matches["CERT"]
1521 privkey = matches["PRIVKEY"]
1522 name = matches["NAME"]
1523 this_compressed_extension = matches["COMPRESSED"]
1524
1525 public_key_suffix_len = len(OPTIONS.public_key_suffix)
1526 private_key_suffix_len = len(OPTIONS.private_key_suffix)
1527 if cert in SPECIAL_CERT_STRINGS and not privkey:
1528 certmap[name] = cert
1529 elif (cert.endswith(OPTIONS.public_key_suffix) and
1530 privkey.endswith(OPTIONS.private_key_suffix) and
1531 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
1532 certmap[name] = cert[:-public_key_suffix_len]
1533 else:
1534 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
1535
1536 if not this_compressed_extension:
1537 continue
1538
1539 # Only count the installed files.
1540 filename = name + '.' + this_compressed_extension
1541 if filename not in installed_files:
1542 continue
1543
1544 # Make sure that all the values in the compression map have the same
1545 # extension. We don't support multiple compression methods in the same
1546 # system image.
1547 if compressed_extension:
1548 if this_compressed_extension != compressed_extension:
1549 raise ValueError(
1550 "Multiple compressed extensions: {} vs {}".format(
1551 compressed_extension, this_compressed_extension))
1552 else:
1553 compressed_extension = this_compressed_extension
1554
1555 return (certmap,
1556 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001557
1558
Doug Zongkereef39442009-04-02 12:14:19 -07001559COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07001560Global options
1561
1562 -p (--path) <dir>
1563 Prepend <dir>/bin to the list of places to search for binaries run by this
1564 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07001565
Doug Zongker05d3dea2009-06-22 11:32:31 -07001566 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07001567 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07001568
Tao Bao30df8b42018-04-23 15:32:53 -07001569 -x (--extra) <key=value>
1570 Add a key/value pair to the 'extras' dict, which device-specific extension
1571 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08001572
Doug Zongkereef39442009-04-02 12:14:19 -07001573 -v (--verbose)
1574 Show command lines being executed.
1575
1576 -h (--help)
1577 Display this usage message and exit.
1578"""
1579
1580def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08001581 print(docstring.rstrip("\n"))
1582 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07001583
1584
1585def ParseOptions(argv,
1586 docstring,
1587 extra_opts="", extra_long_opts=(),
1588 extra_option_handler=None):
1589 """Parse the options in argv and return any arguments that aren't
1590 flags. docstring is the calling module's docstring, to be displayed
1591 for errors and -h. extra_opts and extra_long_opts are for flags
1592 defined by the caller, which are processed by passing them to
1593 extra_option_handler."""
1594
1595 try:
1596 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08001597 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08001598 ["help", "verbose", "path=", "signapk_path=",
1599 "signapk_shared_library_path=", "extra_signapk_args=",
Baligh Uddinbdc2e312014-09-05 17:36:20 -07001600 "java_path=", "java_args=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07001601 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
1602 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Baligh Uddine2048682014-11-20 09:52:05 -08001603 "extra="] +
T.R. Fullhart37e10522013-03-18 10:31:26 -07001604 list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07001605 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07001606 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08001607 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07001608 sys.exit(2)
1609
Doug Zongkereef39442009-04-02 12:14:19 -07001610 for o, a in opts:
1611 if o in ("-h", "--help"):
1612 Usage(docstring)
1613 sys.exit()
1614 elif o in ("-v", "--verbose"):
1615 OPTIONS.verbose = True
1616 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07001617 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001618 elif o in ("--signapk_path",):
1619 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08001620 elif o in ("--signapk_shared_library_path",):
1621 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001622 elif o in ("--extra_signapk_args",):
1623 OPTIONS.extra_signapk_args = shlex.split(a)
1624 elif o in ("--java_path",):
1625 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07001626 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08001627 OPTIONS.java_args = shlex.split(a)
T.R. Fullhart37e10522013-03-18 10:31:26 -07001628 elif o in ("--public_key_suffix",):
1629 OPTIONS.public_key_suffix = a
1630 elif o in ("--private_key_suffix",):
1631 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08001632 elif o in ("--boot_signer_path",):
1633 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07001634 elif o in ("--boot_signer_args",):
1635 OPTIONS.boot_signer_args = shlex.split(a)
1636 elif o in ("--verity_signer_path",):
1637 OPTIONS.verity_signer_path = a
1638 elif o in ("--verity_signer_args",):
1639 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07001640 elif o in ("-s", "--device_specific"):
1641 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08001642 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08001643 key, value = a.split("=", 1)
1644 OPTIONS.extras[key] = value
Doug Zongkereef39442009-04-02 12:14:19 -07001645 else:
1646 if extra_option_handler is None or not extra_option_handler(o, a):
1647 assert False, "unknown option \"%s\"" % (o,)
1648
Doug Zongker85448772014-09-09 14:59:20 -07001649 if OPTIONS.search_path:
1650 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
1651 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07001652
1653 return args
1654
1655
Tao Bao4c851b12016-09-19 13:54:38 -07001656def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07001657 """Make a temp file and add it to the list of things to be deleted
1658 when Cleanup() is called. Return the filename."""
1659 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
1660 os.close(fd)
1661 OPTIONS.tempfiles.append(fn)
1662 return fn
1663
1664
Tao Bao1c830bf2017-12-25 10:43:47 -08001665def MakeTempDir(prefix='tmp', suffix=''):
1666 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
1667
1668 Returns:
1669 The absolute pathname of the new directory.
1670 """
1671 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
1672 OPTIONS.tempfiles.append(dir_name)
1673 return dir_name
1674
1675
Doug Zongkereef39442009-04-02 12:14:19 -07001676def Cleanup():
1677 for i in OPTIONS.tempfiles:
1678 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08001679 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07001680 else:
1681 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08001682 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07001683
1684
1685class PasswordManager(object):
1686 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08001687 self.editor = os.getenv("EDITOR")
1688 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001689
1690 def GetPasswords(self, items):
1691 """Get passwords corresponding to each string in 'items',
1692 returning a dict. (The dict may have keys in addition to the
1693 values in 'items'.)
1694
1695 Uses the passwords in $ANDROID_PW_FILE if available, letting the
1696 user edit that file to add more needed passwords. If no editor is
1697 available, or $ANDROID_PW_FILE isn't define, prompts the user
1698 interactively in the ordinary way.
1699 """
1700
1701 current = self.ReadFile()
1702
1703 first = True
1704 while True:
1705 missing = []
1706 for i in items:
1707 if i not in current or not current[i]:
1708 missing.append(i)
1709 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07001710 if not missing:
1711 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07001712
1713 for i in missing:
1714 current[i] = ""
1715
1716 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001717 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08001718 if sys.version_info[0] >= 3:
1719 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07001720 answer = raw_input("try to edit again? [y]> ").strip()
1721 if answer and answer[0] not in 'yY':
1722 raise RuntimeError("key passwords unavailable")
1723 first = False
1724
1725 current = self.UpdateAndReadFile(current)
1726
Dan Albert8b72aef2015-03-23 19:13:21 -07001727 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07001728 """Prompt the user to enter a value (password) for each key in
1729 'current' whose value is fales. Returns a new dict with all the
1730 values.
1731 """
1732 result = {}
Tao Bao38884282019-07-10 22:20:56 -07001733 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07001734 if v:
1735 result[k] = v
1736 else:
1737 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07001738 result[k] = getpass.getpass(
1739 "Enter password for %s key> " % k).strip()
1740 if result[k]:
1741 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07001742 return result
1743
1744 def UpdateAndReadFile(self, current):
1745 if not self.editor or not self.pwfile:
1746 return self.PromptResult(current)
1747
1748 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07001749 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07001750 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
1751 f.write("# (Additional spaces are harmless.)\n\n")
1752
1753 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07001754 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07001755 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07001756 f.write("[[[ %s ]]] %s\n" % (v, k))
1757 if not v and first_line is None:
1758 # position cursor on first line with no password.
1759 first_line = i + 4
1760 f.close()
1761
Tao Bao986ee862018-10-04 15:46:16 -07001762 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07001763
1764 return self.ReadFile()
1765
1766 def ReadFile(self):
1767 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07001768 if self.pwfile is None:
1769 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07001770 try:
1771 f = open(self.pwfile, "r")
1772 for line in f:
1773 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001774 if not line or line[0] == '#':
1775 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07001776 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
1777 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07001778 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07001779 else:
1780 result[m.group(2)] = m.group(1)
1781 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07001782 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001783 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07001784 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001785 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07001786
1787
Dan Albert8e0178d2015-01-27 15:53:15 -08001788def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
1789 compress_type=None):
1790 import datetime
1791
1792 # http://b/18015246
1793 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
1794 # for files larger than 2GiB. We can work around this by adjusting their
1795 # limit. Note that `zipfile.writestr()` will not work for strings larger than
1796 # 2GiB. The Python interpreter sometimes rejects strings that large (though
1797 # it isn't clear to me exactly what circumstances cause this).
1798 # `zipfile.write()` must be used directly to work around this.
1799 #
1800 # This mess can be avoided if we port to python3.
1801 saved_zip64_limit = zipfile.ZIP64_LIMIT
1802 zipfile.ZIP64_LIMIT = (1 << 32) - 1
1803
1804 if compress_type is None:
1805 compress_type = zip_file.compression
1806 if arcname is None:
1807 arcname = filename
1808
1809 saved_stat = os.stat(filename)
1810
1811 try:
1812 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
1813 # file to be zipped and reset it when we're done.
1814 os.chmod(filename, perms)
1815
1816 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07001817 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
1818 # intentional. zip stores datetimes in local time without a time zone
1819 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
1820 # in the zip archive.
1821 local_epoch = datetime.datetime.fromtimestamp(0)
1822 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08001823 os.utime(filename, (timestamp, timestamp))
1824
1825 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
1826 finally:
1827 os.chmod(filename, saved_stat.st_mode)
1828 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
1829 zipfile.ZIP64_LIMIT = saved_zip64_limit
1830
1831
Tao Bao58c1b962015-05-20 09:32:18 -07001832def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07001833 compress_type=None):
1834 """Wrap zipfile.writestr() function to work around the zip64 limit.
1835
1836 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
1837 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
1838 when calling crc32(bytes).
1839
1840 But it still works fine to write a shorter string into a large zip file.
1841 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
1842 when we know the string won't be too long.
1843 """
1844
1845 saved_zip64_limit = zipfile.ZIP64_LIMIT
1846 zipfile.ZIP64_LIMIT = (1 << 32) - 1
1847
1848 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
1849 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07001850 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07001851 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07001852 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08001853 else:
Tao Baof3282b42015-04-01 11:21:55 -07001854 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07001855 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
1856 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
1857 # such a case (since
1858 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
1859 # which seems to make more sense. Otherwise the entry will have 0o000 as the
1860 # permission bits. We follow the logic in Python 3 to get consistent
1861 # behavior between using the two versions.
1862 if not zinfo.external_attr:
1863 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07001864
1865 # If compress_type is given, it overrides the value in zinfo.
1866 if compress_type is not None:
1867 zinfo.compress_type = compress_type
1868
Tao Bao58c1b962015-05-20 09:32:18 -07001869 # If perms is given, it has a priority.
1870 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07001871 # If perms doesn't set the file type, mark it as a regular file.
1872 if perms & 0o770000 == 0:
1873 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07001874 zinfo.external_attr = perms << 16
1875
Tao Baof3282b42015-04-01 11:21:55 -07001876 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07001877 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
1878
Dan Albert8b72aef2015-03-23 19:13:21 -07001879 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07001880 zipfile.ZIP64_LIMIT = saved_zip64_limit
1881
1882
Tao Bao89d7ab22017-12-14 17:05:33 -08001883def ZipDelete(zip_filename, entries):
1884 """Deletes entries from a ZIP file.
1885
1886 Since deleting entries from a ZIP file is not supported, it shells out to
1887 'zip -d'.
1888
1889 Args:
1890 zip_filename: The name of the ZIP file.
1891 entries: The name of the entry, or the list of names to be deleted.
1892
1893 Raises:
1894 AssertionError: In case of non-zero return from 'zip'.
1895 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001896 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08001897 entries = [entries]
1898 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07001899 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08001900
1901
Tao Baof3282b42015-04-01 11:21:55 -07001902def ZipClose(zip_file):
1903 # http://b/18015246
1904 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
1905 # central directory.
1906 saved_zip64_limit = zipfile.ZIP64_LIMIT
1907 zipfile.ZIP64_LIMIT = (1 << 32) - 1
1908
1909 zip_file.close()
1910
1911 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07001912
1913
1914class DeviceSpecificParams(object):
1915 module = None
1916 def __init__(self, **kwargs):
1917 """Keyword arguments to the constructor become attributes of this
1918 object, which is passed to all functions in the device-specific
1919 module."""
Tao Bao38884282019-07-10 22:20:56 -07001920 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07001921 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08001922 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07001923
1924 if self.module is None:
1925 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07001926 if not path:
1927 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07001928 try:
1929 if os.path.isdir(path):
1930 info = imp.find_module("releasetools", [path])
1931 else:
1932 d, f = os.path.split(path)
1933 b, x = os.path.splitext(f)
1934 if x == ".py":
1935 f = b
1936 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07001937 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07001938 self.module = imp.load_module("device_specific", *info)
1939 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001940 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07001941
1942 def _DoCall(self, function_name, *args, **kwargs):
1943 """Call the named function in the device-specific module, passing
1944 the given args and kwargs. The first argument to the call will be
1945 the DeviceSpecific object itself. If there is no module, or the
1946 module does not define the function, return the value of the
1947 'default' kwarg (which itself defaults to None)."""
1948 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08001949 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07001950 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
1951
1952 def FullOTA_Assertions(self):
1953 """Called after emitting the block of assertions at the top of a
1954 full OTA package. Implementations can add whatever additional
1955 assertions they like."""
1956 return self._DoCall("FullOTA_Assertions")
1957
Doug Zongkere5ff5902012-01-17 10:55:37 -08001958 def FullOTA_InstallBegin(self):
1959 """Called at the start of full OTA installation."""
1960 return self._DoCall("FullOTA_InstallBegin")
1961
Yifan Hong10c530d2018-12-27 17:34:18 -08001962 def FullOTA_GetBlockDifferences(self):
1963 """Called during full OTA installation and verification.
1964 Implementation should return a list of BlockDifference objects describing
1965 the update on each additional partitions.
1966 """
1967 return self._DoCall("FullOTA_GetBlockDifferences")
1968
Doug Zongker05d3dea2009-06-22 11:32:31 -07001969 def FullOTA_InstallEnd(self):
1970 """Called at the end of full OTA installation; typically this is
1971 used to install the image for the device's baseband processor."""
1972 return self._DoCall("FullOTA_InstallEnd")
1973
1974 def IncrementalOTA_Assertions(self):
1975 """Called after emitting the block of assertions at the top of an
1976 incremental OTA package. Implementations can add whatever
1977 additional assertions they like."""
1978 return self._DoCall("IncrementalOTA_Assertions")
1979
Doug Zongkere5ff5902012-01-17 10:55:37 -08001980 def IncrementalOTA_VerifyBegin(self):
1981 """Called at the start of the verification phase of incremental
1982 OTA installation; additional checks can be placed here to abort
1983 the script before any changes are made."""
1984 return self._DoCall("IncrementalOTA_VerifyBegin")
1985
Doug Zongker05d3dea2009-06-22 11:32:31 -07001986 def IncrementalOTA_VerifyEnd(self):
1987 """Called at the end of the verification phase of incremental OTA
1988 installation; additional checks can be placed here to abort the
1989 script before any changes are made."""
1990 return self._DoCall("IncrementalOTA_VerifyEnd")
1991
Doug Zongkere5ff5902012-01-17 10:55:37 -08001992 def IncrementalOTA_InstallBegin(self):
1993 """Called at the start of incremental OTA installation (after
1994 verification is complete)."""
1995 return self._DoCall("IncrementalOTA_InstallBegin")
1996
Yifan Hong10c530d2018-12-27 17:34:18 -08001997 def IncrementalOTA_GetBlockDifferences(self):
1998 """Called during incremental OTA installation and verification.
1999 Implementation should return a list of BlockDifference objects describing
2000 the update on each additional partitions.
2001 """
2002 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2003
Doug Zongker05d3dea2009-06-22 11:32:31 -07002004 def IncrementalOTA_InstallEnd(self):
2005 """Called at the end of incremental OTA installation; typically
2006 this is used to install the image for the device's baseband
2007 processor."""
2008 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002009
Tao Bao9bc6bb22015-11-09 16:58:28 -08002010 def VerifyOTA_Assertions(self):
2011 return self._DoCall("VerifyOTA_Assertions")
2012
Tao Bao76def242017-11-21 09:25:31 -08002013
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002014class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002015 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002016 self.name = name
2017 self.data = data
2018 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002019 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002020 self.sha1 = sha1(data).hexdigest()
2021
2022 @classmethod
2023 def FromLocalFile(cls, name, diskname):
2024 f = open(diskname, "rb")
2025 data = f.read()
2026 f.close()
2027 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002028
2029 def WriteToTemp(self):
2030 t = tempfile.NamedTemporaryFile()
2031 t.write(self.data)
2032 t.flush()
2033 return t
2034
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002035 def WriteToDir(self, d):
2036 with open(os.path.join(d, self.name), "wb") as fp:
2037 fp.write(self.data)
2038
Geremy Condra36bd3652014-02-06 19:45:10 -08002039 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002040 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002041
Tao Bao76def242017-11-21 09:25:31 -08002042
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002043DIFF_PROGRAM_BY_EXT = {
2044 ".gz" : "imgdiff",
2045 ".zip" : ["imgdiff", "-z"],
2046 ".jar" : ["imgdiff", "-z"],
2047 ".apk" : ["imgdiff", "-z"],
2048 ".img" : "imgdiff",
2049 }
2050
Tao Bao76def242017-11-21 09:25:31 -08002051
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002052class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002053 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002054 self.tf = tf
2055 self.sf = sf
2056 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002057 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002058
2059 def ComputePatch(self):
2060 """Compute the patch (as a string of data) needed to turn sf into
2061 tf. Returns the same tuple as GetPatch()."""
2062
2063 tf = self.tf
2064 sf = self.sf
2065
Doug Zongker24cd2802012-08-14 16:36:15 -07002066 if self.diff_program:
2067 diff_program = self.diff_program
2068 else:
2069 ext = os.path.splitext(tf.name)[1]
2070 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002071
2072 ttemp = tf.WriteToTemp()
2073 stemp = sf.WriteToTemp()
2074
2075 ext = os.path.splitext(tf.name)[1]
2076
2077 try:
2078 ptemp = tempfile.NamedTemporaryFile()
2079 if isinstance(diff_program, list):
2080 cmd = copy.copy(diff_program)
2081 else:
2082 cmd = [diff_program]
2083 cmd.append(stemp.name)
2084 cmd.append(ttemp.name)
2085 cmd.append(ptemp.name)
2086 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002087 err = []
2088 def run():
2089 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002090 if e:
2091 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002092 th = threading.Thread(target=run)
2093 th.start()
2094 th.join(timeout=300) # 5 mins
2095 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002096 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002097 p.terminate()
2098 th.join(5)
2099 if th.is_alive():
2100 p.kill()
2101 th.join()
2102
Tianjie Xua2a9f992018-01-05 15:15:54 -08002103 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002104 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002105 self.patch = None
2106 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002107 diff = ptemp.read()
2108 finally:
2109 ptemp.close()
2110 stemp.close()
2111 ttemp.close()
2112
2113 self.patch = diff
2114 return self.tf, self.sf, self.patch
2115
2116
2117 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08002118 """Returns a tuple of (target_file, source_file, patch_data).
2119
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002120 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08002121 computing the patch failed.
2122 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002123 return self.tf, self.sf, self.patch
2124
2125
2126def ComputeDifferences(diffs):
2127 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07002128 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002129
2130 # Do the largest files first, to try and reduce the long-pole effect.
2131 by_size = [(i.tf.size, i) for i in diffs]
2132 by_size.sort(reverse=True)
2133 by_size = [i[1] for i in by_size]
2134
2135 lock = threading.Lock()
2136 diff_iter = iter(by_size) # accessed under lock
2137
2138 def worker():
2139 try:
2140 lock.acquire()
2141 for d in diff_iter:
2142 lock.release()
2143 start = time.time()
2144 d.ComputePatch()
2145 dur = time.time() - start
2146 lock.acquire()
2147
2148 tf, sf, patch = d.GetPatch()
2149 if sf.name == tf.name:
2150 name = tf.name
2151 else:
2152 name = "%s (%s)" % (tf.name, sf.name)
2153 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07002154 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002155 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07002156 logger.info(
2157 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
2158 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002159 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07002160 except Exception:
2161 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002162 raise
2163
2164 # start worker threads; wait for them all to finish.
2165 threads = [threading.Thread(target=worker)
2166 for i in range(OPTIONS.worker_threads)]
2167 for th in threads:
2168 th.start()
2169 while threads:
2170 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07002171
2172
Dan Albert8b72aef2015-03-23 19:13:21 -07002173class BlockDifference(object):
2174 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07002175 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002176 self.tgt = tgt
2177 self.src = src
2178 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002179 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07002180 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002181
Tao Baodd2a5892015-03-12 12:32:37 -07002182 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08002183 version = max(
2184 int(i) for i in
2185 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08002186 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07002187 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07002188
Tianjie Xu41976c72019-07-03 13:57:01 -07002189 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
2190 version=self.version,
2191 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08002192 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002193 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08002194 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07002195 self.touched_src_ranges = b.touched_src_ranges
2196 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002197
Yifan Hong10c530d2018-12-27 17:34:18 -08002198 # On devices with dynamic partitions, for new partitions,
2199 # src is None but OPTIONS.source_info_dict is not.
2200 if OPTIONS.source_info_dict is None:
2201 is_dynamic_build = OPTIONS.info_dict.get(
2202 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002203 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07002204 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08002205 is_dynamic_build = OPTIONS.source_info_dict.get(
2206 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002207 is_dynamic_source = partition in shlex.split(
2208 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08002209
Yifan Hongbb2658d2019-01-25 12:30:58 -08002210 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08002211 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
2212
Yifan Hongbb2658d2019-01-25 12:30:58 -08002213 # For dynamic partitions builds, check partition list in both source
2214 # and target build because new partitions may be added, and existing
2215 # partitions may be removed.
2216 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
2217
Yifan Hong10c530d2018-12-27 17:34:18 -08002218 if is_dynamic:
2219 self.device = 'map_partition("%s")' % partition
2220 else:
2221 if OPTIONS.source_info_dict is None:
2222 _, device_path = GetTypeAndDevice("/" + partition, OPTIONS.info_dict)
2223 else:
2224 _, device_path = GetTypeAndDevice("/" + partition,
2225 OPTIONS.source_info_dict)
2226 self.device = '"%s"' % device_path
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002227
Tao Baod8d14be2016-02-04 14:26:02 -08002228 @property
2229 def required_cache(self):
2230 return self._required_cache
2231
Tao Bao76def242017-11-21 09:25:31 -08002232 def WriteScript(self, script, output_zip, progress=None,
2233 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002234 if not self.src:
2235 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08002236 script.Print("Patching %s image unconditionally..." % (self.partition,))
2237 else:
2238 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002239
Dan Albert8b72aef2015-03-23 19:13:21 -07002240 if progress:
2241 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002242 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08002243
2244 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08002245 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002246
Tao Bao9bc6bb22015-11-09 16:58:28 -08002247 def WriteStrictVerifyScript(self, script):
2248 """Verify all the blocks in the care_map, including clobbered blocks.
2249
2250 This differs from the WriteVerifyScript() function: a) it prints different
2251 error messages; b) it doesn't allow half-way updated images to pass the
2252 verification."""
2253
2254 partition = self.partition
2255 script.Print("Verifying %s..." % (partition,))
2256 ranges = self.tgt.care_map
2257 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002258 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002259 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
2260 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08002261 self.device, ranges_str,
2262 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08002263 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08002264 script.AppendExtra("")
2265
Tao Baod522bdc2016-04-12 15:53:16 -07002266 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00002267 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07002268
2269 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08002270 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00002271 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07002272
2273 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002274 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08002275 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07002276 ranges = self.touched_src_ranges
2277 expected_sha1 = self.touched_src_sha1
2278 else:
2279 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
2280 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07002281
2282 # No blocks to be checked, skipping.
2283 if not ranges:
2284 return
2285
Tao Bao5ece99d2015-05-12 11:42:31 -07002286 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002287 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002288 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08002289 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
2290 '"%s.patch.dat")) then' % (
2291 self.device, ranges_str, expected_sha1,
2292 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07002293 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07002294 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00002295
Tianjie Xufc3422a2015-12-15 11:53:59 -08002296 if self.version >= 4:
2297
2298 # Bug: 21124327
2299 # When generating incrementals for the system and vendor partitions in
2300 # version 4 or newer, explicitly check the first block (which contains
2301 # the superblock) of the partition to see if it's what we expect. If
2302 # this check fails, give an explicit log message about the partition
2303 # having been remounted R/W (the most likely explanation).
2304 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08002305 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08002306
2307 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07002308 if partition == "system":
2309 code = ErrorCode.SYSTEM_RECOVER_FAILURE
2310 else:
2311 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08002312 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08002313 'ifelse (block_image_recover({device}, "{ranges}") && '
2314 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08002315 'package_extract_file("{partition}.transfer.list"), '
2316 '"{partition}.new.dat", "{partition}.patch.dat"), '
2317 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07002318 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08002319 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07002320 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002321
Tao Baodd2a5892015-03-12 12:32:37 -07002322 # Abort the OTA update. Note that the incremental OTA cannot be applied
2323 # even if it may match the checksum of the target partition.
2324 # a) If version < 3, operations like move and erase will make changes
2325 # unconditionally and damage the partition.
2326 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08002327 else:
Tianjie Xu209db462016-05-24 17:34:52 -07002328 if partition == "system":
2329 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
2330 else:
2331 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
2332 script.AppendExtra((
2333 'abort("E%d: %s partition has unexpected contents");\n'
2334 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002335
Yifan Hong10c530d2018-12-27 17:34:18 -08002336 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07002337 partition = self.partition
2338 script.Print('Verifying the updated %s image...' % (partition,))
2339 # Unlike pre-install verification, clobbered_blocks should not be ignored.
2340 ranges = self.tgt.care_map
2341 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002342 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002343 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002344 self.device, ranges_str,
2345 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07002346
2347 # Bug: 20881595
2348 # Verify that extended blocks are really zeroed out.
2349 if self.tgt.extended:
2350 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002351 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002352 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002353 self.device, ranges_str,
2354 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07002355 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07002356 if partition == "system":
2357 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
2358 else:
2359 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07002360 script.AppendExtra(
2361 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002362 ' abort("E%d: %s partition has unexpected non-zero contents after '
2363 'OTA update");\n'
2364 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07002365 else:
2366 script.Print('Verified the updated %s image.' % (partition,))
2367
Tianjie Xu209db462016-05-24 17:34:52 -07002368 if partition == "system":
2369 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
2370 else:
2371 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
2372
Tao Bao5fcaaef2015-06-01 13:40:49 -07002373 script.AppendExtra(
2374 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002375 ' abort("E%d: %s partition has unexpected contents after OTA '
2376 'update");\n'
2377 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07002378
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002379 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08002380 ZipWrite(output_zip,
2381 '{}.transfer.list'.format(self.path),
2382 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002383
Tao Bao76def242017-11-21 09:25:31 -08002384 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
2385 # its size. Quailty 9 almost triples the compression time but doesn't
2386 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002387 # zip | brotli(quality 6) | brotli(quality 9)
2388 # compressed_size: 942M | 869M (~8% reduced) | 854M
2389 # compression_time: 75s | 265s | 719s
2390 # decompression_time: 15s | 25s | 25s
2391
2392 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01002393 brotli_cmd = ['brotli', '--quality=6',
2394 '--output={}.new.dat.br'.format(self.path),
2395 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002396 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07002397 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002398
2399 new_data_name = '{}.new.dat.br'.format(self.partition)
2400 ZipWrite(output_zip,
2401 '{}.new.dat.br'.format(self.path),
2402 new_data_name,
2403 compress_type=zipfile.ZIP_STORED)
2404 else:
2405 new_data_name = '{}.new.dat'.format(self.partition)
2406 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
2407
Dan Albert8e0178d2015-01-27 15:53:15 -08002408 ZipWrite(output_zip,
2409 '{}.patch.dat'.format(self.path),
2410 '{}.patch.dat'.format(self.partition),
2411 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002412
Tianjie Xu209db462016-05-24 17:34:52 -07002413 if self.partition == "system":
2414 code = ErrorCode.SYSTEM_UPDATE_FAILURE
2415 else:
2416 code = ErrorCode.VENDOR_UPDATE_FAILURE
2417
Yifan Hong10c530d2018-12-27 17:34:18 -08002418 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08002419 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002420 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002421 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002422 device=self.device, partition=self.partition,
2423 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07002424 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002425
Dan Albert8b72aef2015-03-23 19:13:21 -07002426 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00002427 data = source.ReadRangeSet(ranges)
2428 ctx = sha1()
2429
2430 for p in data:
2431 ctx.update(p)
2432
2433 return ctx.hexdigest()
2434
Tao Baoe9b61912015-07-09 17:37:49 -07002435 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
2436 """Return the hash value for all zero blocks."""
2437 zero_block = '\x00' * 4096
2438 ctx = sha1()
2439 for _ in range(num_blocks):
2440 ctx.update(zero_block)
2441
2442 return ctx.hexdigest()
2443
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002444
Tianjie Xu41976c72019-07-03 13:57:01 -07002445# Expose these two classes to support vendor-specific scripts
2446DataImage = images.DataImage
2447EmptyImage = images.EmptyImage
2448
Tao Bao76def242017-11-21 09:25:31 -08002449
Doug Zongker96a57e72010-09-26 14:57:41 -07002450# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07002451PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07002452 "ext4": "EMMC",
2453 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07002454 "f2fs": "EMMC",
2455 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07002456}
Doug Zongker96a57e72010-09-26 14:57:41 -07002457
Tao Bao76def242017-11-21 09:25:31 -08002458
Doug Zongker96a57e72010-09-26 14:57:41 -07002459def GetTypeAndDevice(mount_point, info):
2460 fstab = info["fstab"]
2461 if fstab:
Dan Albert8b72aef2015-03-23 19:13:21 -07002462 return (PARTITION_TYPES[fstab[mount_point].fs_type],
2463 fstab[mount_point].device)
Doug Zongker96a57e72010-09-26 14:57:41 -07002464 else:
Dan Albert8b72aef2015-03-23 19:13:21 -07002465 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002466
2467
2468def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08002469 """Parses and converts a PEM-encoded certificate into DER-encoded.
2470
2471 This gives the same result as `openssl x509 -in <filename> -outform DER`.
2472
2473 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08002474 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08002475 """
2476 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002477 save = False
2478 for line in data.split("\n"):
2479 if "--END CERTIFICATE--" in line:
2480 break
2481 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08002482 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002483 if "--BEGIN CERTIFICATE--" in line:
2484 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08002485 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002486 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08002487
Tao Bao04e1f012018-02-04 12:13:35 -08002488
2489def ExtractPublicKey(cert):
2490 """Extracts the public key (PEM-encoded) from the given certificate file.
2491
2492 Args:
2493 cert: The certificate filename.
2494
2495 Returns:
2496 The public key string.
2497
2498 Raises:
2499 AssertionError: On non-zero return from 'openssl'.
2500 """
2501 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
2502 # While openssl 1.1 writes the key into the given filename followed by '-out',
2503 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
2504 # stdout instead.
2505 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
2506 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
2507 pubkey, stderrdata = proc.communicate()
2508 assert proc.returncode == 0, \
2509 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
2510 return pubkey
2511
2512
Tao Bao1ac886e2019-06-26 11:58:22 -07002513def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07002514 """Extracts the AVB public key from the given public or private key.
2515
2516 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07002517 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07002518 key: The input key file, which should be PEM-encoded public or private key.
2519
2520 Returns:
2521 The path to the extracted AVB public key file.
2522 """
2523 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
2524 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07002525 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07002526 return output
2527
2528
Doug Zongker412c02f2014-02-13 10:58:24 -08002529def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
2530 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08002531 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08002532
Tao Bao6d5d6232018-03-09 17:04:42 -08002533 Most of the space in the boot and recovery images is just the kernel, which is
2534 identical for the two, so the resulting patch should be efficient. Add it to
2535 the output zip, along with a shell script that is run from init.rc on first
2536 boot to actually do the patching and install the new recovery image.
2537
2538 Args:
2539 input_dir: The top-level input directory of the target-files.zip.
2540 output_sink: The callback function that writes the result.
2541 recovery_img: File object for the recovery image.
2542 boot_img: File objects for the boot image.
2543 info_dict: A dict returned by common.LoadInfoDict() on the input
2544 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08002545 """
Doug Zongker412c02f2014-02-13 10:58:24 -08002546 if info_dict is None:
2547 info_dict = OPTIONS.info_dict
2548
Tao Bao6d5d6232018-03-09 17:04:42 -08002549 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002550 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
2551
2552 if board_uses_vendorimage:
2553 # In this case, the output sink is rooted at VENDOR
2554 recovery_img_path = "etc/recovery.img"
2555 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
2556 sh_dir = "bin"
2557 else:
2558 # In this case the output sink is rooted at SYSTEM
2559 recovery_img_path = "vendor/etc/recovery.img"
2560 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
2561 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08002562
Tao Baof2cffbd2015-07-22 12:33:18 -07002563 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002564 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07002565
2566 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08002567 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002568 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08002569 # With system-root-image, boot and recovery images will have mismatching
2570 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
2571 # to handle such a case.
2572 if system_root_image:
2573 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07002574 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08002575 assert not os.path.exists(path)
2576 else:
2577 diff_program = ["imgdiff"]
2578 if os.path.exists(path):
2579 diff_program.append("-b")
2580 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07002581 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08002582 else:
2583 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07002584
2585 d = Difference(recovery_img, boot_img, diff_program=diff_program)
2586 _, _, patch = d.ComputePatch()
2587 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08002588
Dan Albertebb19aa2015-03-27 19:11:53 -07002589 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07002590 # The following GetTypeAndDevice()s need to use the path in the target
2591 # info_dict instead of source_info_dict.
Dan Albertebb19aa2015-03-27 19:11:53 -07002592 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict)
2593 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict)
2594 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07002595 return
Doug Zongkerc9253822014-02-04 12:17:58 -08002596
Tao Baof2cffbd2015-07-22 12:33:18 -07002597 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002598
2599 # Note that we use /vendor to refer to the recovery resources. This will
2600 # work for a separate vendor partition mounted at /vendor or a
2601 # /system/vendor subdirectory on the system partition, for which init will
2602 # create a symlink from /vendor to /system/vendor.
2603
2604 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002605if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
2606 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002607 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07002608 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
2609 log -t recovery "Installing new recovery image: succeeded" || \\
2610 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07002611else
2612 log -t recovery "Recovery image already installed"
2613fi
2614""" % {'type': recovery_type,
2615 'device': recovery_device,
2616 'sha1': recovery_img.sha1,
2617 'size': recovery_img.size}
2618 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07002619 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002620if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
2621 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002622 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07002623 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
2624 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
2625 log -t recovery "Installing new recovery image: succeeded" || \\
2626 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08002627else
2628 log -t recovery "Recovery image already installed"
2629fi
Dan Albert8b72aef2015-03-23 19:13:21 -07002630""" % {'boot_size': boot_img.size,
2631 'boot_sha1': boot_img.sha1,
2632 'recovery_size': recovery_img.size,
2633 'recovery_sha1': recovery_img.sha1,
2634 'boot_type': boot_type,
2635 'boot_device': boot_device,
2636 'recovery_type': recovery_type,
2637 'recovery_device': recovery_device,
2638 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08002639
Bill Peckhame868aec2019-09-17 17:06:47 -07002640 # The install script location moved from /system/etc to /system/bin in the L
2641 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
2642 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07002643
Tao Bao32fcdab2018-10-12 10:30:39 -07002644 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08002645
Tao Baoda30cfa2017-12-01 16:19:46 -08002646 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08002647
2648
2649class DynamicPartitionUpdate(object):
2650 def __init__(self, src_group=None, tgt_group=None, progress=None,
2651 block_difference=None):
2652 self.src_group = src_group
2653 self.tgt_group = tgt_group
2654 self.progress = progress
2655 self.block_difference = block_difference
2656
2657 @property
2658 def src_size(self):
2659 if not self.block_difference:
2660 return 0
2661 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
2662
2663 @property
2664 def tgt_size(self):
2665 if not self.block_difference:
2666 return 0
2667 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
2668
2669 @staticmethod
2670 def _GetSparseImageSize(img):
2671 if not img:
2672 return 0
2673 return img.blocksize * img.total_blocks
2674
2675
2676class DynamicGroupUpdate(object):
2677 def __init__(self, src_size=None, tgt_size=None):
2678 # None: group does not exist. 0: no size limits.
2679 self.src_size = src_size
2680 self.tgt_size = tgt_size
2681
2682
2683class DynamicPartitionsDifference(object):
2684 def __init__(self, info_dict, block_diffs, progress_dict=None,
2685 source_info_dict=None):
2686 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07002687 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002688
2689 self._remove_all_before_apply = False
2690 if source_info_dict is None:
2691 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07002692 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002693
Tao Baof1113e92019-06-18 12:10:14 -07002694 block_diff_dict = collections.OrderedDict(
2695 [(e.partition, e) for e in block_diffs])
2696
Yifan Hong10c530d2018-12-27 17:34:18 -08002697 assert len(block_diff_dict) == len(block_diffs), \
2698 "Duplicated BlockDifference object for {}".format(
2699 [partition for partition, count in
2700 collections.Counter(e.partition for e in block_diffs).items()
2701 if count > 1])
2702
Yifan Hong79997e52019-01-23 16:56:19 -08002703 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08002704
2705 for p, block_diff in block_diff_dict.items():
2706 self._partition_updates[p] = DynamicPartitionUpdate()
2707 self._partition_updates[p].block_difference = block_diff
2708
2709 for p, progress in progress_dict.items():
2710 if p in self._partition_updates:
2711 self._partition_updates[p].progress = progress
2712
2713 tgt_groups = shlex.split(info_dict.get(
2714 "super_partition_groups", "").strip())
2715 src_groups = shlex.split(source_info_dict.get(
2716 "super_partition_groups", "").strip())
2717
2718 for g in tgt_groups:
2719 for p in shlex.split(info_dict.get(
2720 "super_%s_partition_list" % g, "").strip()):
2721 assert p in self._partition_updates, \
2722 "{} is in target super_{}_partition_list but no BlockDifference " \
2723 "object is provided.".format(p, g)
2724 self._partition_updates[p].tgt_group = g
2725
2726 for g in src_groups:
2727 for p in shlex.split(source_info_dict.get(
2728 "super_%s_partition_list" % g, "").strip()):
2729 assert p in self._partition_updates, \
2730 "{} is in source super_{}_partition_list but no BlockDifference " \
2731 "object is provided.".format(p, g)
2732 self._partition_updates[p].src_group = g
2733
Yifan Hong45433e42019-01-18 13:55:25 -08002734 target_dynamic_partitions = set(shlex.split(info_dict.get(
2735 "dynamic_partition_list", "").strip()))
2736 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
2737 if u.tgt_size)
2738 assert block_diffs_with_target == target_dynamic_partitions, \
2739 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
2740 list(target_dynamic_partitions), list(block_diffs_with_target))
2741
2742 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
2743 "dynamic_partition_list", "").strip()))
2744 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
2745 if u.src_size)
2746 assert block_diffs_with_source == source_dynamic_partitions, \
2747 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
2748 list(source_dynamic_partitions), list(block_diffs_with_source))
2749
Yifan Hong10c530d2018-12-27 17:34:18 -08002750 if self._partition_updates:
2751 logger.info("Updating dynamic partitions %s",
2752 self._partition_updates.keys())
2753
Yifan Hong79997e52019-01-23 16:56:19 -08002754 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08002755
2756 for g in tgt_groups:
2757 self._group_updates[g] = DynamicGroupUpdate()
2758 self._group_updates[g].tgt_size = int(info_dict.get(
2759 "super_%s_group_size" % g, "0").strip())
2760
2761 for g in src_groups:
2762 if g not in self._group_updates:
2763 self._group_updates[g] = DynamicGroupUpdate()
2764 self._group_updates[g].src_size = int(source_info_dict.get(
2765 "super_%s_group_size" % g, "0").strip())
2766
2767 self._Compute()
2768
2769 def WriteScript(self, script, output_zip, write_verify_script=False):
2770 script.Comment('--- Start patching dynamic partitions ---')
2771 for p, u in self._partition_updates.items():
2772 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
2773 script.Comment('Patch partition %s' % p)
2774 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
2775 write_verify_script=False)
2776
2777 op_list_path = MakeTempFile()
2778 with open(op_list_path, 'w') as f:
2779 for line in self._op_list:
2780 f.write('{}\n'.format(line))
2781
2782 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
2783
2784 script.Comment('Update dynamic partition metadata')
2785 script.AppendExtra('assert(update_dynamic_partitions('
2786 'package_extract_file("dynamic_partitions_op_list")));')
2787
2788 if write_verify_script:
2789 for p, u in self._partition_updates.items():
2790 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
2791 u.block_difference.WritePostInstallVerifyScript(script)
2792 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
2793
2794 for p, u in self._partition_updates.items():
2795 if u.tgt_size and u.src_size <= u.tgt_size:
2796 script.Comment('Patch partition %s' % p)
2797 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
2798 write_verify_script=write_verify_script)
2799 if write_verify_script:
2800 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
2801
2802 script.Comment('--- End patching dynamic partitions ---')
2803
2804 def _Compute(self):
2805 self._op_list = list()
2806
2807 def append(line):
2808 self._op_list.append(line)
2809
2810 def comment(line):
2811 self._op_list.append("# %s" % line)
2812
2813 if self._remove_all_before_apply:
2814 comment('Remove all existing dynamic partitions and groups before '
2815 'applying full OTA')
2816 append('remove_all_groups')
2817
2818 for p, u in self._partition_updates.items():
2819 if u.src_group and not u.tgt_group:
2820 append('remove %s' % p)
2821
2822 for p, u in self._partition_updates.items():
2823 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
2824 comment('Move partition %s from %s to default' % (p, u.src_group))
2825 append('move %s default' % p)
2826
2827 for p, u in self._partition_updates.items():
2828 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
2829 comment('Shrink partition %s from %d to %d' %
2830 (p, u.src_size, u.tgt_size))
2831 append('resize %s %s' % (p, u.tgt_size))
2832
2833 for g, u in self._group_updates.items():
2834 if u.src_size is not None and u.tgt_size is None:
2835 append('remove_group %s' % g)
2836 if (u.src_size is not None and u.tgt_size is not None and
2837 u.src_size > u.tgt_size):
2838 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
2839 append('resize_group %s %d' % (g, u.tgt_size))
2840
2841 for g, u in self._group_updates.items():
2842 if u.src_size is None and u.tgt_size is not None:
2843 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
2844 append('add_group %s %d' % (g, u.tgt_size))
2845 if (u.src_size is not None and u.tgt_size is not None and
2846 u.src_size < u.tgt_size):
2847 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
2848 append('resize_group %s %d' % (g, u.tgt_size))
2849
2850 for p, u in self._partition_updates.items():
2851 if u.tgt_group and not u.src_group:
2852 comment('Add partition %s to group %s' % (p, u.tgt_group))
2853 append('add %s %s' % (p, u.tgt_group))
2854
2855 for p, u in self._partition_updates.items():
2856 if u.tgt_size and u.src_size < u.tgt_size:
2857 comment('Grow partition %s from %d to %d' % (p, u.src_size, u.tgt_size))
2858 append('resize %s %d' % (p, u.tgt_size))
2859
2860 for p, u in self._partition_updates.items():
2861 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
2862 comment('Move partition %s from default to %s' %
2863 (p, u.tgt_group))
2864 append('move %s %s' % (p, u.tgt_group))