blob: ac2ed97d51976b5fdb90f5c460ed4fb56ac58195 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080071 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
72 if "ANDROID_HOST_OUT" in os.environ:
73 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080074 self.signapk_shared_library_path = "lib64" # Relative to search_path
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020075 self.sign_sepolicy_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070076 self.extra_signapk_args = []
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020077 self.extra_sign_sepolicy_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000078 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070079 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080080 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080081 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070082 self.public_key_suffix = ".x509.pem"
83 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070084 # use otatools built boot_signer by default
85 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070086 self.boot_signer_args = []
87 self.verity_signer_path = None
88 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070089 self.verbose = False
90 self.tempfiles = []
91 self.device_specific = None
92 self.extras = {}
93 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070094 self.source_info_dict = None
95 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070096 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070097 # Stash size cannot exceed cache_size * threshold.
98 self.cache_size = None
99 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -0700100 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -0700101 self.host_tools = {}
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +0200102 self.sepolicy_name = 'sepolicy.apex'
Dan Albert8b72aef2015-03-23 19:13:21 -0700103
104
105OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700106
Tao Bao71197512018-10-11 14:08:45 -0700107# The block size that's used across the releasetools scripts.
108BLOCK_SIZE = 4096
109
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800110# Values for "certificate" in apkcerts that mean special things.
111SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
112
Tao Bao5cc0abb2019-03-21 10:18:05 -0700113# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
114# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800115# descriptor into vbmeta.img. When adding a new entry here, the
116# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
117# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000118AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Lucas Wei03230252022-04-18 16:00:40 +0800119 'system', 'system_ext', 'vendor', 'vendor_boot', 'vendor_kernel_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000120 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800121
Tao Bao08c190f2019-06-03 23:07:58 -0700122# Chained VBMeta partitions.
123AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
124
Tianjie Xu861f4132018-09-12 11:49:33 -0700125# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400126PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700127 'system',
128 'vendor',
129 'product',
130 'system_ext',
131 'odm',
132 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700133 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000134 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400135]
Tianjie Xu861f4132018-09-12 11:49:33 -0700136
Yifan Hong5057b952021-01-07 14:09:57 -0800137# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000138PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800139
Yifan Hongc65a0542021-01-07 14:21:01 -0800140# See sysprop.mk. If file is moved, add new search paths here; don't remove
141# existing search paths.
142RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700143
Kelvin Zhang563750f2021-04-28 12:46:17 -0400144
Tianjie Xu209db462016-05-24 17:34:52 -0700145class ErrorCode(object):
146 """Define error_codes for failures that happen during the actual
147 update package installation.
148
149 Error codes 0-999 are reserved for failures before the package
150 installation (i.e. low battery, package verification failure).
151 Detailed code in 'bootable/recovery/error_code.h' """
152
153 SYSTEM_VERIFICATION_FAILURE = 1000
154 SYSTEM_UPDATE_FAILURE = 1001
155 SYSTEM_UNEXPECTED_CONTENTS = 1002
156 SYSTEM_NONZERO_CONTENTS = 1003
157 SYSTEM_RECOVER_FAILURE = 1004
158 VENDOR_VERIFICATION_FAILURE = 2000
159 VENDOR_UPDATE_FAILURE = 2001
160 VENDOR_UNEXPECTED_CONTENTS = 2002
161 VENDOR_NONZERO_CONTENTS = 2003
162 VENDOR_RECOVER_FAILURE = 2004
163 OEM_PROP_MISMATCH = 3000
164 FINGERPRINT_MISMATCH = 3001
165 THUMBPRINT_MISMATCH = 3002
166 OLDER_BUILD = 3003
167 DEVICE_MISMATCH = 3004
168 BAD_PATCH_FILE = 3005
169 INSUFFICIENT_CACHE_SPACE = 3006
170 TUNE_PARTITION_FAILURE = 3007
171 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800172
Tao Bao80921982018-03-21 21:02:19 -0700173
Dan Albert8b72aef2015-03-23 19:13:21 -0700174class ExternalError(RuntimeError):
175 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700176
177
Tao Bao32fcdab2018-10-12 10:30:39 -0700178def InitLogging():
179 DEFAULT_LOGGING_CONFIG = {
180 'version': 1,
181 'disable_existing_loggers': False,
182 'formatters': {
183 'standard': {
184 'format':
185 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
186 'datefmt': '%Y-%m-%d %H:%M:%S',
187 },
188 },
189 'handlers': {
190 'default': {
191 'class': 'logging.StreamHandler',
192 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700193 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700194 },
195 },
196 'loggers': {
197 '': {
198 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700199 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700200 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700201 }
202 }
203 }
204 env_config = os.getenv('LOGGING_CONFIG')
205 if env_config:
206 with open(env_config) as f:
207 config = json.load(f)
208 else:
209 config = DEFAULT_LOGGING_CONFIG
210
211 # Increase the logging level for verbose mode.
212 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700213 config = copy.deepcopy(config)
214 config['handlers']['default']['level'] = 'INFO'
215
216 if OPTIONS.logfile:
217 config = copy.deepcopy(config)
218 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400219 'class': 'logging.FileHandler',
220 'formatter': 'standard',
221 'level': 'INFO',
222 'mode': 'w',
223 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700224 }
225 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700226
227 logging.config.dictConfig(config)
228
229
Yifan Hong8e332ff2020-07-29 17:51:55 -0700230def SetHostToolLocation(tool_name, location):
231 OPTIONS.host_tools[tool_name] = location
232
Kelvin Zhang563750f2021-04-28 12:46:17 -0400233
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900234def FindHostToolPath(tool_name):
235 """Finds the path to the host tool.
236
237 Args:
238 tool_name: name of the tool to find
239 Returns:
240 path to the tool if found under either one of the host_tools map or under
241 the same directory as this binary is located at. If not found, tool_name
242 is returned.
243 """
244 if tool_name in OPTIONS.host_tools:
245 return OPTIONS.host_tools[tool_name]
246
247 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
248 tool_path = os.path.join(my_dir, tool_name)
249 if os.path.exists(tool_path):
250 return tool_path
251
252 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700253
Kelvin Zhang563750f2021-04-28 12:46:17 -0400254
Tao Bao39451582017-05-04 11:10:47 -0700255def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700256 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700257
Tao Bao73dd4f42018-10-04 16:25:33 -0700258 Args:
259 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700260 verbose: Whether the commands should be shown. Default to the global
261 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700262 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
263 stdin, etc. stdout and stderr will default to subprocess.PIPE and
264 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800265 universal_newlines will default to True, as most of the users in
266 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700267
268 Returns:
269 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700270 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700271 if 'stdout' not in kwargs and 'stderr' not in kwargs:
272 kwargs['stdout'] = subprocess.PIPE
273 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800274 if 'universal_newlines' not in kwargs:
275 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700276
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900277 if args:
278 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700279 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900280 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700281
Kelvin Zhang766eea72021-06-03 09:36:08 -0400282 if verbose is None:
283 verbose = OPTIONS.verbose
284
Tao Bao32fcdab2018-10-12 10:30:39 -0700285 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400286 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700287 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700288 return subprocess.Popen(args, **kwargs)
289
290
Tao Bao986ee862018-10-04 15:46:16 -0700291def RunAndCheckOutput(args, verbose=None, **kwargs):
292 """Runs the given command and returns the output.
293
294 Args:
295 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700296 verbose: Whether the commands should be shown. Default to the global
297 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700298 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
299 stdin, etc. stdout and stderr will default to subprocess.PIPE and
300 subprocess.STDOUT respectively unless caller specifies any of them.
301
302 Returns:
303 The output string.
304
305 Raises:
306 ExternalError: On non-zero exit from the command.
307 """
Tao Bao986ee862018-10-04 15:46:16 -0700308 proc = Run(args, verbose=verbose, **kwargs)
309 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800310 if output is None:
311 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700312 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400313 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700314 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700315 if proc.returncode != 0:
316 raise ExternalError(
317 "Failed to run command '{}' (exit code {}):\n{}".format(
318 args, proc.returncode, output))
319 return output
320
321
Tao Baoc765cca2018-01-31 17:32:40 -0800322def RoundUpTo4K(value):
323 rounded_up = value + 4095
324 return rounded_up - (rounded_up % 4096)
325
326
Ying Wang7e6d4e42010-12-13 16:25:36 -0800327def CloseInheritedPipes():
328 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
329 before doing other work."""
330 if platform.system() != "Darwin":
331 return
332 for d in range(3, 1025):
333 try:
334 stat = os.fstat(d)
335 if stat is not None:
336 pipebit = stat[0] & 0x1000
337 if pipebit != 0:
338 os.close(d)
339 except OSError:
340 pass
341
342
Tao Bao1c320f82019-10-04 23:25:12 -0700343class BuildInfo(object):
344 """A class that holds the information for a given build.
345
346 This class wraps up the property querying for a given source or target build.
347 It abstracts away the logic of handling OEM-specific properties, and caches
348 the commonly used properties such as fingerprint.
349
350 There are two types of info dicts: a) build-time info dict, which is generated
351 at build time (i.e. included in a target_files zip); b) OEM info dict that is
352 specified at package generation time (via command line argument
353 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
354 having "oem_fingerprint_properties" in build-time info dict), all the queries
355 would be answered based on build-time info dict only. Otherwise if using
356 OEM-specific properties, some of them will be calculated from two info dicts.
357
358 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800359 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700360
361 Attributes:
362 info_dict: The build-time info dict.
363 is_ab: Whether it's a build that uses A/B OTA.
364 oem_dicts: A list of OEM dicts.
365 oem_props: A list of OEM properties that should be read from OEM dicts; None
366 if the build doesn't use any OEM-specific property.
367 fingerprint: The fingerprint of the build, which would be calculated based
368 on OEM properties if applicable.
369 device: The device name, which could come from OEM dicts if applicable.
370 """
371
372 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
373 "ro.product.manufacturer", "ro.product.model",
374 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700375 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
376 "product", "odm", "vendor", "system_ext", "system"]
377 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
378 "product", "product_services", "odm", "vendor", "system"]
379 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700380
Tianjiefdda51d2021-05-05 14:46:35 -0700381 # The length of vbmeta digest to append to the fingerprint
382 _VBMETA_DIGEST_SIZE_USED = 8
383
384 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700385 """Initializes a BuildInfo instance with the given dicts.
386
387 Note that it only wraps up the given dicts, without making copies.
388
389 Arguments:
390 info_dict: The build-time info dict.
391 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
392 that it always uses the first dict to calculate the fingerprint or the
393 device name. The rest would be used for asserting OEM properties only
394 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700395 use_legacy_id: Use the legacy build id to construct the fingerprint. This
396 is used when we need a BuildInfo class, while the vbmeta digest is
397 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700398
399 Raises:
400 ValueError: On invalid inputs.
401 """
402 self.info_dict = info_dict
403 self.oem_dicts = oem_dicts
404
405 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700406 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700407
Hongguang Chend7c160f2020-05-03 21:24:26 -0700408 # Skip _oem_props if oem_dicts is None to use BuildInfo in
409 # sign_target_files_apks
410 if self.oem_dicts:
411 self._oem_props = info_dict.get("oem_fingerprint_properties")
412 else:
413 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700414
Daniel Normand5fe8622020-01-08 17:01:11 -0800415 def check_fingerprint(fingerprint):
416 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
417 raise ValueError(
418 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
419 "3.2.2. Build Parameters.".format(fingerprint))
420
Daniel Normand5fe8622020-01-08 17:01:11 -0800421 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800422 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800423 try:
424 fingerprint = self.CalculatePartitionFingerprint(partition)
425 check_fingerprint(fingerprint)
426 self._partition_fingerprints[partition] = fingerprint
427 except ExternalError:
428 continue
429 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800430 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800431 # need a fingerprint when creating the image.
432 self._partition_fingerprints[
433 "system_other"] = self._partition_fingerprints["system"]
434
Tao Bao1c320f82019-10-04 23:25:12 -0700435 # These two should be computed only after setting self._oem_props.
436 self._device = self.GetOemProperty("ro.product.device")
437 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800438 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700439
440 @property
441 def is_ab(self):
442 return self._is_ab
443
444 @property
445 def device(self):
446 return self._device
447
448 @property
449 def fingerprint(self):
450 return self._fingerprint
451
452 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400453 def is_vabc(self):
454 vendor_prop = self.info_dict.get("vendor.build.prop")
455 vabc_enabled = vendor_prop and \
456 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
457 return vabc_enabled
458
459 @property
Kelvin Zhanga9a87ec2022-05-04 16:44:52 -0700460 def is_android_r(self):
461 system_prop = self.info_dict.get("system.build.prop")
462 return system_prop and system_prop.GetProp("ro.build.version.release") == "11"
463
464 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700465 def is_vabc_xor(self):
466 vendor_prop = self.info_dict.get("vendor.build.prop")
467 vabc_xor_enabled = vendor_prop and \
468 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
469 return vabc_xor_enabled
470
471 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400472 def vendor_suppressed_vabc(self):
473 vendor_prop = self.info_dict.get("vendor.build.prop")
474 vabc_suppressed = vendor_prop and \
475 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
476 return vabc_suppressed and vabc_suppressed.lower() == "true"
477
478 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700479 def oem_props(self):
480 return self._oem_props
481
482 def __getitem__(self, key):
483 return self.info_dict[key]
484
485 def __setitem__(self, key, value):
486 self.info_dict[key] = value
487
488 def get(self, key, default=None):
489 return self.info_dict.get(key, default)
490
491 def items(self):
492 return self.info_dict.items()
493
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000494 def _GetRawBuildProp(self, prop, partition):
495 prop_file = '{}.build.prop'.format(
496 partition) if partition else 'build.prop'
497 partition_props = self.info_dict.get(prop_file)
498 if not partition_props:
499 return None
500 return partition_props.GetProp(prop)
501
Daniel Normand5fe8622020-01-08 17:01:11 -0800502 def GetPartitionBuildProp(self, prop, partition):
503 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800504
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000505 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
Devin Mooreb5195ff2022-02-11 18:44:26 +0000506 # This comes from the generic ramdisk
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000507 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800508
Daniel Normand5fe8622020-01-08 17:01:11 -0800509 # If provided a partition for this property, only look within that
510 # partition's build.prop.
511 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800512 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800513 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800514 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000515
516 prop_val = self._GetRawBuildProp(prop, partition)
517 if prop_val is not None:
518 return prop_val
519 raise ExternalError("couldn't find %s in %s.build.prop" %
520 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800521
Tao Bao1c320f82019-10-04 23:25:12 -0700522 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800523 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700524 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
525 return self._ResolveRoProductBuildProp(prop)
526
Tianjiefdda51d2021-05-05 14:46:35 -0700527 if prop == "ro.build.id":
528 return self._GetBuildId()
529
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000530 prop_val = self._GetRawBuildProp(prop, None)
531 if prop_val is not None:
532 return prop_val
533
534 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700535
536 def _ResolveRoProductBuildProp(self, prop):
537 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000538 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700539 if prop_val:
540 return prop_val
541
Steven Laver8e2086e2020-04-27 16:26:31 -0700542 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000543 source_order_val = self._GetRawBuildProp(
544 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700545 if source_order_val:
546 source_order = source_order_val.split(",")
547 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700548 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700549
550 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700551 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700552 raise ExternalError(
553 "Invalid ro.product.property_source_order '{}'".format(source_order))
554
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000555 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700556 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000557 "ro.product", "ro.product.{}".format(source_partition), 1)
558 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700559 if prop_val:
560 return prop_val
561
562 raise ExternalError("couldn't resolve {}".format(prop))
563
Steven Laver8e2086e2020-04-27 16:26:31 -0700564 def _GetRoProductPropsDefaultSourceOrder(self):
565 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
566 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000567 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700568 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000569 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700570 if android_version == "10":
571 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
572 # NOTE: float() conversion of android_version will have rounding error.
573 # We are checking for "9" or less, and using "< 10" is well outside of
574 # possible floating point rounding.
575 try:
576 android_version_val = float(android_version)
577 except ValueError:
578 android_version_val = 0
579 if android_version_val < 10:
580 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
581 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
582
Tianjieb37c5be2020-10-15 21:27:10 -0700583 def _GetPlatformVersion(self):
584 version_sdk = self.GetBuildProp("ro.build.version.sdk")
585 # init code switches to version_release_or_codename (see b/158483506). After
586 # API finalization, release_or_codename will be the same as release. This
587 # is the best effort to support pre-S dev stage builds.
588 if int(version_sdk) >= 30:
589 try:
590 return self.GetBuildProp("ro.build.version.release_or_codename")
591 except ExternalError:
592 logger.warning('Failed to find ro.build.version.release_or_codename')
593
594 return self.GetBuildProp("ro.build.version.release")
595
Tianjiefdda51d2021-05-05 14:46:35 -0700596 def _GetBuildId(self):
597 build_id = self._GetRawBuildProp("ro.build.id", None)
598 if build_id:
599 return build_id
600
601 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
602 if not legacy_build_id:
603 raise ExternalError("Couldn't find build id in property file")
604
605 if self.use_legacy_id:
606 return legacy_build_id
607
608 # Append the top 8 chars of vbmeta digest to the existing build id. The
609 # logic needs to match the one in init, so that OTA can deliver correctly.
610 avb_enable = self.info_dict.get("avb_enable") == "true"
611 if not avb_enable:
612 raise ExternalError("AVB isn't enabled when using legacy build id")
613
614 vbmeta_digest = self.info_dict.get("vbmeta_digest")
615 if not vbmeta_digest:
616 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
617 " id")
618 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
619 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
620
621 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
622 return legacy_build_id + '.' + digest_prefix
623
Tianjieb37c5be2020-10-15 21:27:10 -0700624 def _GetPartitionPlatformVersion(self, partition):
625 try:
626 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
627 partition)
628 except ExternalError:
629 return self.GetPartitionBuildProp("ro.build.version.release",
630 partition)
631
Tao Bao1c320f82019-10-04 23:25:12 -0700632 def GetOemProperty(self, key):
633 if self.oem_props is not None and key in self.oem_props:
634 return self.oem_dicts[0][key]
635 return self.GetBuildProp(key)
636
Daniel Normand5fe8622020-01-08 17:01:11 -0800637 def GetPartitionFingerprint(self, partition):
638 return self._partition_fingerprints.get(partition, None)
639
640 def CalculatePartitionFingerprint(self, partition):
641 try:
642 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
643 except ExternalError:
644 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
645 self.GetPartitionBuildProp("ro.product.brand", partition),
646 self.GetPartitionBuildProp("ro.product.name", partition),
647 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700648 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800649 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400650 self.GetPartitionBuildProp(
651 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800652 self.GetPartitionBuildProp("ro.build.type", partition),
653 self.GetPartitionBuildProp("ro.build.tags", partition))
654
Tao Bao1c320f82019-10-04 23:25:12 -0700655 def CalculateFingerprint(self):
656 if self.oem_props is None:
657 try:
658 return self.GetBuildProp("ro.build.fingerprint")
659 except ExternalError:
660 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
661 self.GetBuildProp("ro.product.brand"),
662 self.GetBuildProp("ro.product.name"),
663 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700664 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700665 self.GetBuildProp("ro.build.id"),
666 self.GetBuildProp("ro.build.version.incremental"),
667 self.GetBuildProp("ro.build.type"),
668 self.GetBuildProp("ro.build.tags"))
669 return "%s/%s/%s:%s" % (
670 self.GetOemProperty("ro.product.brand"),
671 self.GetOemProperty("ro.product.name"),
672 self.GetOemProperty("ro.product.device"),
673 self.GetBuildProp("ro.build.thumbprint"))
674
675 def WriteMountOemScript(self, script):
676 assert self.oem_props is not None
677 recovery_mount_options = self.info_dict.get("recovery_mount_options")
678 script.Mount("/oem", recovery_mount_options)
679
680 def WriteDeviceAssertions(self, script, oem_no_mount):
681 # Read the property directly if not using OEM properties.
682 if not self.oem_props:
683 script.AssertDevice(self.device)
684 return
685
686 # Otherwise assert OEM properties.
687 if not self.oem_dicts:
688 raise ExternalError(
689 "No OEM file provided to answer expected assertions")
690
691 for prop in self.oem_props.split():
692 values = []
693 for oem_dict in self.oem_dicts:
694 if prop in oem_dict:
695 values.append(oem_dict[prop])
696 if not values:
697 raise ExternalError(
698 "The OEM file is missing the property %s" % (prop,))
699 script.AssertOemProperty(prop, values, oem_no_mount)
700
701
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000702def ReadFromInputFile(input_file, fn):
703 """Reads the contents of fn from input zipfile or directory."""
704 if isinstance(input_file, zipfile.ZipFile):
705 return input_file.read(fn).decode()
706 else:
707 path = os.path.join(input_file, *fn.split("/"))
708 try:
709 with open(path) as f:
710 return f.read()
711 except IOError as e:
712 if e.errno == errno.ENOENT:
713 raise KeyError(fn)
714
715
Yifan Hong10482a22021-01-07 14:38:41 -0800716def ExtractFromInputFile(input_file, fn):
717 """Extracts the contents of fn from input zipfile or directory into a file."""
718 if isinstance(input_file, zipfile.ZipFile):
719 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500720 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800721 f.write(input_file.read(fn))
722 return tmp_file
723 else:
724 file = os.path.join(input_file, *fn.split("/"))
725 if not os.path.exists(file):
726 raise KeyError(fn)
727 return file
728
Kelvin Zhang563750f2021-04-28 12:46:17 -0400729
jiajia tangf3f842b2021-03-17 21:49:44 +0800730class RamdiskFormat(object):
731 LZ4 = 1
732 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800733
Kelvin Zhang563750f2021-04-28 12:46:17 -0400734
TJ Rhoades6f488e92022-05-01 22:16:22 -0700735def GetRamdiskFormat(info_dict):
jiajia tang836f76b2021-04-02 14:48:26 +0800736 if info_dict.get('lz4_ramdisks') == 'true':
737 ramdisk_format = RamdiskFormat.LZ4
738 else:
739 ramdisk_format = RamdiskFormat.GZ
740 return ramdisk_format
741
Kelvin Zhang563750f2021-04-28 12:46:17 -0400742
Tao Bao410ad8b2018-08-24 12:08:38 -0700743def LoadInfoDict(input_file, repacking=False):
744 """Loads the key/value pairs from the given input target_files.
745
Tianjiea85bdf02020-07-29 11:56:19 -0700746 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700747 checks and returns the parsed key/value pairs for to the given build. It's
748 usually called early when working on input target_files files, e.g. when
749 generating OTAs, or signing builds. Note that the function may be called
750 against an old target_files file (i.e. from past dessert releases). So the
751 property parsing needs to be backward compatible.
752
753 In a `META/misc_info.txt`, a few properties are stored as links to the files
754 in the PRODUCT_OUT directory. It works fine with the build system. However,
755 they are no longer available when (re)generating images from target_files zip.
756 When `repacking` is True, redirect these properties to the actual files in the
757 unzipped directory.
758
759 Args:
760 input_file: The input target_files file, which could be an open
761 zipfile.ZipFile instance, or a str for the dir that contains the files
762 unzipped from a target_files file.
763 repacking: Whether it's trying repack an target_files file after loading the
764 info dict (default: False). If so, it will rewrite a few loaded
765 properties (e.g. selinux_fc, root_dir) to point to the actual files in
766 target_files file. When doing repacking, `input_file` must be a dir.
767
768 Returns:
769 A dict that contains the parsed key/value pairs.
770
771 Raises:
772 AssertionError: On invalid input arguments.
773 ValueError: On malformed input values.
774 """
775 if repacking:
776 assert isinstance(input_file, str), \
777 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700778
Doug Zongkerc9253822014-02-04 12:17:58 -0800779 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000780 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800781
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700782 try:
Michael Runge6e836112014-04-15 17:40:21 -0700783 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700784 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700785 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700786
Tao Bao410ad8b2018-08-24 12:08:38 -0700787 if "recovery_api_version" not in d:
788 raise ValueError("Failed to find 'recovery_api_version'")
789 if "fstab_version" not in d:
790 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800791
Tao Bao410ad8b2018-08-24 12:08:38 -0700792 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700793 # "selinux_fc" properties should point to the file_contexts files
794 # (file_contexts.bin) under META/.
795 for key in d:
796 if key.endswith("selinux_fc"):
797 fc_basename = os.path.basename(d[key])
798 fc_config = os.path.join(input_file, "META", fc_basename)
799 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700800
Daniel Norman72c626f2019-05-13 15:58:14 -0700801 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700802
Tom Cherryd14b8952018-08-09 14:26:00 -0700803 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700804 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700805 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700806 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700807
David Anderson0ec64ac2019-12-06 12:21:18 -0800808 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700809 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000810 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800811 key_name = part_name + "_base_fs_file"
812 if key_name not in d:
813 continue
814 basename = os.path.basename(d[key_name])
815 base_fs_file = os.path.join(input_file, "META", basename)
816 if os.path.exists(base_fs_file):
817 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700818 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700819 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800820 "Failed to find %s base fs file: %s", part_name, base_fs_file)
821 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700822
Doug Zongker37974732010-09-16 17:44:38 -0700823 def makeint(key):
824 if key in d:
825 d[key] = int(d[key], 0)
826
827 makeint("recovery_api_version")
828 makeint("blocksize")
829 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700830 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700831 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700832 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700833 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800834 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700835
Steve Muckle903a1ca2020-05-07 17:32:10 -0700836 boot_images = "boot.img"
837 if "boot_images" in d:
838 boot_images = d["boot_images"]
839 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400840 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700841
Tao Bao765668f2019-10-04 22:03:00 -0700842 # Load recovery fstab if applicable.
843 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
TJ Rhoades6f488e92022-05-01 22:16:22 -0700844 ramdisk_format = GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800845
Tianjie Xu861f4132018-09-12 11:49:33 -0700846 # Tries to load the build props for all partitions with care_map, including
847 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800848 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800849 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000850 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800851 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700852 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800853
Tao Bao3ed35d32019-10-07 20:48:48 -0700854 # Set up the salt (based on fingerprint) that will be used when adding AVB
855 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800856 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700857 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800858 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800859 fingerprint = build_info.GetPartitionFingerprint(partition)
860 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400861 d["avb_{}_salt".format(partition)] = sha256(
862 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700863
Yong Ma253b1062022-08-18 09:53:27 +0000864 # Set up the salt for partitions without build.prop
865 if build_info.fingerprint:
866 d["avb_salt"] = sha256(build_info.fingerprint.encode()).hexdigest()
867
Tianjiefdda51d2021-05-05 14:46:35 -0700868 # Set the vbmeta digest if exists
869 try:
870 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
871 except KeyError:
872 pass
873
Kelvin Zhang39aea442020-08-17 11:04:25 -0400874 try:
875 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
876 except KeyError:
877 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700878 return d
879
Tao Baod1de6f32017-03-01 16:38:48 -0800880
Daniel Norman4cc9df62019-07-18 10:11:07 -0700881def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900882 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700883 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900884
Daniel Norman4cc9df62019-07-18 10:11:07 -0700885
886def LoadDictionaryFromFile(file_path):
887 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900888 return LoadDictionaryFromLines(lines)
889
890
Michael Runge6e836112014-04-15 17:40:21 -0700891def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700892 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700893 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700894 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700895 if not line or line.startswith("#"):
896 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700897 if "=" in line:
898 name, value = line.split("=", 1)
899 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700900 return d
901
Tao Baod1de6f32017-03-01 16:38:48 -0800902
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000903class PartitionBuildProps(object):
904 """The class holds the build prop of a particular partition.
905
906 This class loads the build.prop and holds the build properties for a given
907 partition. It also partially recognizes the 'import' statement in the
908 build.prop; and calculates alternative values of some specific build
909 properties during runtime.
910
911 Attributes:
912 input_file: a zipped target-file or an unzipped target-file directory.
913 partition: name of the partition.
914 props_allow_override: a list of build properties to search for the
915 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000916 build_props: a dict of build properties for the given partition.
917 prop_overrides: a set of props that are overridden by import.
918 placeholder_values: A dict of runtime variables' values to replace the
919 placeholders in the build.prop file. We expect exactly one value for
920 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800921 ramdisk_format: If name is "boot", the format of ramdisk inside the
922 boot image. Otherwise, its value is ignored.
923 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000924 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400925
Tianjie Xu9afb2212020-05-10 21:48:15 +0000926 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000927 self.input_file = input_file
928 self.partition = name
929 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000930 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000931 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000932 self.prop_overrides = set()
933 self.placeholder_values = {}
934 if placeholder_values:
935 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000936
937 @staticmethod
938 def FromDictionary(name, build_props):
939 """Constructs an instance from a build prop dictionary."""
940
941 props = PartitionBuildProps("unknown", name)
942 props.build_props = build_props.copy()
943 return props
944
945 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800946 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000947 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800948
Devin Mooreafdd7c72021-12-13 22:04:08 +0000949 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400950 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000951 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800952 else:
953 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
954
955 props = PartitionBuildProps(input_file, name, placeholder_values)
956 props._LoadBuildProp(data)
957 return props
958
959 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000960 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800961 """
962 Read build.prop for boot image from input_file.
963 Return empty string if not found.
964 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000965 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800966 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000967 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800968 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000969 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800970 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800971 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800972 if prop_file is None:
973 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500974 with open(prop_file, "r") as f:
975 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800976
977 @staticmethod
978 def _ReadPartitionPropFile(input_file, name):
979 """
980 Read build.prop for name from input_file.
981 Return empty string if not found.
982 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000983 data = ''
984 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
985 '{}/build.prop'.format(name.upper())]:
986 try:
987 data = ReadFromInputFile(input_file, prop_file)
988 break
989 except KeyError:
990 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -0800991 if data == '':
992 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -0800993 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000994
Yifan Hong125d0b62020-09-24 17:07:03 -0700995 @staticmethod
996 def FromBuildPropFile(name, build_prop_file):
997 """Constructs an instance from a build prop file."""
998
999 props = PartitionBuildProps("unknown", name)
1000 with open(build_prop_file) as f:
1001 props._LoadBuildProp(f.read())
1002 return props
1003
Tianjie Xu9afb2212020-05-10 21:48:15 +00001004 def _LoadBuildProp(self, data):
1005 for line in data.split('\n'):
1006 line = line.strip()
1007 if not line or line.startswith("#"):
1008 continue
1009 if line.startswith("import"):
1010 overrides = self._ImportParser(line)
1011 duplicates = self.prop_overrides.intersection(overrides.keys())
1012 if duplicates:
1013 raise ValueError('prop {} is overridden multiple times'.format(
1014 ','.join(duplicates)))
1015 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1016 self.build_props.update(overrides)
1017 elif "=" in line:
1018 name, value = line.split("=", 1)
1019 if name in self.prop_overrides:
1020 raise ValueError('prop {} is set again after overridden by import '
1021 'statement'.format(name))
1022 self.build_props[name] = value
1023
1024 def _ImportParser(self, line):
1025 """Parses the build prop in a given import statement."""
1026
1027 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001028 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001029 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001030
1031 if len(tokens) == 3:
1032 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1033 return {}
1034
Tianjie Xu9afb2212020-05-10 21:48:15 +00001035 import_path = tokens[1]
1036 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001037 logger.warn('Unrecognized import path {}'.format(line))
1038 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001039
1040 # We only recognize a subset of import statement that the init process
1041 # supports. And we can loose the restriction based on how the dynamic
1042 # fingerprint is used in practice. The placeholder format should be
1043 # ${placeholder}, and its value should be provided by the caller through
1044 # the placeholder_values.
1045 for prop, value in self.placeholder_values.items():
1046 prop_place_holder = '${{{}}}'.format(prop)
1047 if prop_place_holder in import_path:
1048 import_path = import_path.replace(prop_place_holder, value)
1049 if '$' in import_path:
1050 logger.info('Unresolved place holder in import path %s', import_path)
1051 return {}
1052
1053 import_path = import_path.replace('/{}'.format(self.partition),
1054 self.partition.upper())
1055 logger.info('Parsing build props override from %s', import_path)
1056
1057 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1058 d = LoadDictionaryFromLines(lines)
1059 return {key: val for key, val in d.items()
1060 if key in self.props_allow_override}
1061
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001062 def GetProp(self, prop):
1063 return self.build_props.get(prop)
1064
1065
Tianjie Xucfa86222016-03-07 16:31:19 -08001066def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1067 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001068 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001069 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001070 self.mount_point = mount_point
1071 self.fs_type = fs_type
1072 self.device = device
1073 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001074 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001075 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001076
1077 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001078 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001079 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001080 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001081 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001082
Tao Baod1de6f32017-03-01 16:38:48 -08001083 assert fstab_version == 2
1084
1085 d = {}
1086 for line in data.split("\n"):
1087 line = line.strip()
1088 if not line or line.startswith("#"):
1089 continue
1090
1091 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1092 pieces = line.split()
1093 if len(pieces) != 5:
1094 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1095
1096 # Ignore entries that are managed by vold.
1097 options = pieces[4]
1098 if "voldmanaged=" in options:
1099 continue
1100
1101 # It's a good line, parse it.
1102 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001103 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001104 options = options.split(",")
1105 for i in options:
1106 if i.startswith("length="):
1107 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001108 elif i == "slotselect":
1109 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001110 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001111 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001112 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001113
Tao Baod1de6f32017-03-01 16:38:48 -08001114 mount_flags = pieces[3]
1115 # Honor the SELinux context if present.
1116 context = None
1117 for i in mount_flags.split(","):
1118 if i.startswith("context="):
1119 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001120
Tao Baod1de6f32017-03-01 16:38:48 -08001121 mount_point = pieces[1]
1122 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001123 device=pieces[0], length=length, context=context,
1124 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001125
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001126 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001127 # system. Other areas assume system is always at "/system" so point /system
1128 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001129 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001130 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001131 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001132 return d
1133
1134
Tao Bao765668f2019-10-04 22:03:00 -07001135def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1136 """Finds the path to recovery fstab and loads its contents."""
1137 # recovery fstab is only meaningful when installing an update via recovery
1138 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001139 if info_dict.get('ab_update') == 'true' and \
1140 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001141 return None
1142
1143 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1144 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1145 # cases, since it may load the info_dict from an old build (e.g. when
1146 # generating incremental OTAs from that build).
1147 system_root_image = info_dict.get('system_root_image') == 'true'
1148 if info_dict.get('no_recovery') != 'true':
1149 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1150 if isinstance(input_file, zipfile.ZipFile):
1151 if recovery_fstab_path not in input_file.namelist():
1152 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1153 else:
1154 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1155 if not os.path.exists(path):
1156 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1157 return LoadRecoveryFSTab(
1158 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1159 system_root_image)
1160
1161 if info_dict.get('recovery_as_boot') == 'true':
1162 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1163 if isinstance(input_file, zipfile.ZipFile):
1164 if recovery_fstab_path not in input_file.namelist():
1165 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1166 else:
1167 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1168 if not os.path.exists(path):
1169 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1170 return LoadRecoveryFSTab(
1171 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1172 system_root_image)
1173
1174 return None
1175
1176
Doug Zongker37974732010-09-16 17:44:38 -07001177def DumpInfoDict(d):
1178 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001179 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001180
Dan Albert8b72aef2015-03-23 19:13:21 -07001181
Daniel Norman55417142019-11-25 16:04:36 -08001182def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001183 """Merges dynamic partition info variables.
1184
1185 Args:
1186 framework_dict: The dictionary of dynamic partition info variables from the
1187 partial framework target files.
1188 vendor_dict: The dictionary of dynamic partition info variables from the
1189 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001190
1191 Returns:
1192 The merged dynamic partition info dictionary.
1193 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001194
1195 def uniq_concat(a, b):
jiajia tange5ddfcd2022-06-21 10:36:12 +08001196 combined = set(a.split())
1197 combined.update(set(b.split()))
Daniel Normanb0c75912020-09-24 14:30:21 -07001198 combined = [item.strip() for item in combined if item.strip()]
1199 return " ".join(sorted(combined))
1200
1201 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001202 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001203 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1204
1205 merged_dict = {"use_dynamic_partitions": "true"}
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001206 # For keys-value pairs that are the same, copy to merged dict
1207 for key in vendor_dict.keys():
1208 if key in framework_dict and framework_dict[key] == vendor_dict[key]:
1209 merged_dict[key] = vendor_dict[key]
Daniel Normanb0c75912020-09-24 14:30:21 -07001210
1211 merged_dict["dynamic_partition_list"] = uniq_concat(
1212 framework_dict.get("dynamic_partition_list", ""),
1213 vendor_dict.get("dynamic_partition_list", ""))
1214
1215 # Super block devices are defined by the vendor dict.
1216 if "super_block_devices" in vendor_dict:
1217 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001218 for block_device in merged_dict["super_block_devices"].split():
Daniel Normanb0c75912020-09-24 14:30:21 -07001219 key = "super_%s_device_size" % block_device
1220 if key not in vendor_dict:
1221 raise ValueError("Vendor dict does not contain required key %s." % key)
1222 merged_dict[key] = vendor_dict[key]
1223
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001224 # Partition groups and group sizes are defined by the vendor dict because
1225 # these values may vary for each board that uses a shared system image.
1226 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001227 for partition_group in merged_dict["super_partition_groups"].split():
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001228 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001229 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001230 if key not in vendor_dict:
1231 raise ValueError("Vendor dict does not contain required key %s." % key)
1232 merged_dict[key] = vendor_dict[key]
1233
1234 # Set the partition group's partition list using a concatenation of the
1235 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001236 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001237 merged_dict[key] = uniq_concat(
1238 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301239
Daniel Normanb0c75912020-09-24 14:30:21 -07001240 # Various other flags should be copied from the vendor dict, if defined.
1241 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1242 "super_metadata_device", "super_partition_error_limit",
1243 "super_partition_size"):
1244 if key in vendor_dict.keys():
1245 merged_dict[key] = vendor_dict[key]
1246
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001247 return merged_dict
1248
1249
Daniel Norman21c34f72020-11-11 17:25:50 -08001250def PartitionMapFromTargetFiles(target_files_dir):
1251 """Builds a map from partition -> path within an extracted target files directory."""
1252 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1253 possible_subdirs = {
1254 "system": ["SYSTEM"],
1255 "vendor": ["VENDOR", "SYSTEM/vendor"],
1256 "product": ["PRODUCT", "SYSTEM/product"],
1257 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1258 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1259 "vendor_dlkm": [
1260 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1261 ],
1262 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001263 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001264 }
1265 partition_map = {}
1266 for partition, subdirs in possible_subdirs.items():
1267 for subdir in subdirs:
1268 if os.path.exists(os.path.join(target_files_dir, subdir)):
1269 partition_map[partition] = subdir
1270 break
1271 return partition_map
1272
1273
Daniel Normand3351562020-10-29 12:33:11 -07001274def SharedUidPartitionViolations(uid_dict, partition_groups):
1275 """Checks for APK sharedUserIds that cross partition group boundaries.
1276
1277 This uses a single or merged build's shareduid_violation_modules.json
1278 output file, as generated by find_shareduid_violation.py or
1279 core/tasks/find-shareduid-violation.mk.
1280
1281 An error is defined as a sharedUserId that is found in a set of partitions
1282 that span more than one partition group.
1283
1284 Args:
1285 uid_dict: A dictionary created by using the standard json module to read a
1286 complete shareduid_violation_modules.json file.
1287 partition_groups: A list of groups, where each group is a list of
1288 partitions.
1289
1290 Returns:
1291 A list of error messages.
1292 """
1293 errors = []
1294 for uid, partitions in uid_dict.items():
1295 found_in_groups = [
1296 group for group in partition_groups
1297 if set(partitions.keys()) & set(group)
1298 ]
1299 if len(found_in_groups) > 1:
1300 errors.append(
1301 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1302 % (uid, ",".join(sorted(partitions.keys()))))
1303 return errors
1304
1305
Daniel Norman21c34f72020-11-11 17:25:50 -08001306def RunHostInitVerifier(product_out, partition_map):
1307 """Runs host_init_verifier on the init rc files within partitions.
1308
1309 host_init_verifier searches the etc/init path within each partition.
1310
1311 Args:
1312 product_out: PRODUCT_OUT directory, containing partition directories.
1313 partition_map: A map of partition name -> relative path within product_out.
1314 """
1315 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1316 cmd = ["host_init_verifier"]
1317 for partition, path in partition_map.items():
1318 if partition not in allowed_partitions:
1319 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1320 partition)
1321 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1322 # Add --property-contexts if the file exists on the partition.
1323 property_contexts = "%s_property_contexts" % (
1324 "plat" if partition == "system" else partition)
1325 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1326 property_contexts)
1327 if os.path.exists(property_contexts_path):
1328 cmd.append("--property-contexts=%s" % property_contexts_path)
1329 # Add the passwd file if the file exists on the partition.
1330 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1331 if os.path.exists(passwd_path):
1332 cmd.extend(["-p", passwd_path])
1333 return RunAndCheckOutput(cmd)
1334
1335
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001336def AppendAVBSigningArgs(cmd, partition):
1337 """Append signing arguments for avbtool."""
1338 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1339 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001340 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1341 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1342 if os.path.exists(new_key_path):
1343 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001344 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1345 if key_path and algorithm:
1346 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001347 avb_salt = OPTIONS.info_dict.get("avb_salt")
1348 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001349 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001350 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001351
1352
Tao Bao765668f2019-10-04 22:03:00 -07001353def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001354 """Returns the VBMeta arguments for partition.
1355
1356 It sets up the VBMeta argument by including the partition descriptor from the
1357 given 'image', or by configuring the partition as a chained partition.
1358
1359 Args:
1360 partition: The name of the partition (e.g. "system").
1361 image: The path to the partition image.
1362 info_dict: A dict returned by common.LoadInfoDict(). Will use
1363 OPTIONS.info_dict if None has been given.
1364
1365 Returns:
1366 A list of VBMeta arguments.
1367 """
1368 if info_dict is None:
1369 info_dict = OPTIONS.info_dict
1370
1371 # Check if chain partition is used.
1372 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001373 if not key_path:
1374 return ["--include_descriptors_from_image", image]
1375
1376 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1377 # into vbmeta.img. The recovery image will be configured on an independent
1378 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1379 # See details at
1380 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001381 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001382 return []
1383
1384 # Otherwise chain the partition into vbmeta.
1385 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1386 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001387
1388
Tao Bao02a08592018-07-22 12:40:45 -07001389def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1390 """Constructs and returns the arg to build or verify a chained partition.
1391
1392 Args:
1393 partition: The partition name.
1394 info_dict: The info dict to look up the key info and rollback index
1395 location.
1396 key: The key to be used for building or verifying the partition. Defaults to
1397 the key listed in info_dict.
1398
1399 Returns:
1400 A string of form "partition:rollback_index_location:key" that can be used to
1401 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001402 """
1403 if key is None:
1404 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001405 if key and not os.path.exists(key) and OPTIONS.search_path:
1406 new_key_path = os.path.join(OPTIONS.search_path, key)
1407 if os.path.exists(new_key_path):
1408 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001409 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001410 rollback_index_location = info_dict[
1411 "avb_" + partition + "_rollback_index_location"]
1412 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1413
1414
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001415def _HasGkiCertificationArgs():
1416 return ("gki_signing_key_path" in OPTIONS.info_dict and
1417 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001418
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001419
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001420def _GenerateGkiCertificate(image, image_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001421 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001422 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001423
1424 if not os.path.exists(key_path) and OPTIONS.search_path:
1425 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1426 if os.path.exists(new_key_path):
1427 key_path = new_key_path
1428
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001429 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001430 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001431 raise ExternalError(
1432 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001433
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001434 output_certificate = tempfile.NamedTemporaryFile()
1435 cmd = [
1436 "generate_gki_certificate",
1437 "--name", image_name,
1438 "--algorithm", algorithm,
1439 "--key", key_path,
1440 "--output", output_certificate.name,
1441 image,
1442 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001443
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001444 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1445 signature_args = signature_args.strip()
1446 if signature_args:
1447 cmd.extend(["--additional_avb_args", signature_args])
1448
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001449 args = OPTIONS.info_dict.get("avb_boot_add_hash_footer_args", "")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001450 args = args.strip()
1451 if args:
1452 cmd.extend(["--additional_avb_args", args])
1453
1454 RunAndCheckOutput(cmd)
1455
1456 output_certificate.seek(os.SEEK_SET, 0)
1457 data = output_certificate.read()
1458 output_certificate.close()
1459 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001460
1461
Daniel Norman276f0622019-07-26 14:13:51 -07001462def BuildVBMeta(image_path, partitions, name, needed_partitions):
1463 """Creates a VBMeta image.
1464
1465 It generates the requested VBMeta image. The requested image could be for
1466 top-level or chained VBMeta image, which is determined based on the name.
1467
1468 Args:
1469 image_path: The output path for the new VBMeta image.
1470 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001471 values. Only valid partition names are accepted, as partitions listed
1472 in common.AVB_PARTITIONS and custom partitions listed in
1473 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001474 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1475 needed_partitions: Partitions whose descriptors should be included into the
1476 generated VBMeta image.
1477
1478 Raises:
1479 AssertionError: On invalid input args.
1480 """
1481 avbtool = OPTIONS.info_dict["avb_avbtool"]
1482 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1483 AppendAVBSigningArgs(cmd, name)
1484
Hongguang Chenf23364d2020-04-27 18:36:36 -07001485 custom_partitions = OPTIONS.info_dict.get(
1486 "avb_custom_images_partition_list", "").strip().split()
1487
Daniel Norman276f0622019-07-26 14:13:51 -07001488 for partition, path in partitions.items():
1489 if partition not in needed_partitions:
1490 continue
1491 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001492 partition in AVB_VBMETA_PARTITIONS or
1493 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001494 'Unknown partition: {}'.format(partition)
1495 assert os.path.exists(path), \
1496 'Failed to find {} for {}'.format(path, partition)
1497 cmd.extend(GetAvbPartitionArg(partition, path))
1498
1499 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1500 if args and args.strip():
1501 split_args = shlex.split(args)
1502 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001503 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001504 # as a path relative to source tree, which may not be available at the
1505 # same location when running this script (we have the input target_files
1506 # zip only). For such cases, we additionally scan other locations (e.g.
1507 # IMAGES/, RADIO/, etc) before bailing out.
1508 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001509 chained_image = split_args[index + 1]
1510 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001511 continue
1512 found = False
1513 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1514 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001515 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001516 if os.path.exists(alt_path):
1517 split_args[index + 1] = alt_path
1518 found = True
1519 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001520 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001521 cmd.extend(split_args)
1522
1523 RunAndCheckOutput(cmd)
1524
1525
jiajia tang836f76b2021-04-02 14:48:26 +08001526def _MakeRamdisk(sourcedir, fs_config_file=None,
1527 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001528 ramdisk_img = tempfile.NamedTemporaryFile()
1529
1530 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1531 cmd = ["mkbootfs", "-f", fs_config_file,
1532 os.path.join(sourcedir, "RAMDISK")]
1533 else:
1534 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1535 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001536 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001537 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001538 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001539 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001540 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001541 else:
1542 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001543
1544 p2.wait()
1545 p1.wait()
1546 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001547 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001548
1549 return ramdisk_img
1550
1551
Steve Muckle9793cf62020-04-08 18:27:00 -07001552def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001553 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001554 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001555
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001556 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001557 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1558 we are building a two-step special image (i.e. building a recovery image to
1559 be loaded into /boot in two-step OTAs).
1560
1561 Return the image data, or None if sourcedir does not appear to contains files
1562 for building the requested image.
1563 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001564
Yifan Hong63c5ca12020-10-08 11:54:02 -07001565 if info_dict is None:
1566 info_dict = OPTIONS.info_dict
1567
Steve Muckle9793cf62020-04-08 18:27:00 -07001568 # "boot" or "recovery", without extension.
1569 partition_name = os.path.basename(sourcedir).lower()
1570
Yifan Hong63c5ca12020-10-08 11:54:02 -07001571 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001572 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001573 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1574 logger.info("Excluded kernel binary from recovery image.")
1575 else:
1576 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001577 elif partition_name == "init_boot":
1578 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001579 else:
1580 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001581 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001582 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001583 return None
1584
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001585 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1586
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001587 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001588 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001589
Doug Zongkereef39442009-04-02 12:14:19 -07001590 img = tempfile.NamedTemporaryFile()
1591
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001592 if has_ramdisk:
TJ Rhoades6f488e92022-05-01 22:16:22 -07001593 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001594 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1595 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001596
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001597 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1598 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1599
Yifan Hong63c5ca12020-10-08 11:54:02 -07001600 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001601 if kernel_path is not None:
1602 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001603
Benoit Fradina45a8682014-07-14 21:00:43 +02001604 fn = os.path.join(sourcedir, "second")
1605 if os.access(fn, os.F_OK):
1606 cmd.append("--second")
1607 cmd.append(fn)
1608
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001609 fn = os.path.join(sourcedir, "dtb")
1610 if os.access(fn, os.F_OK):
1611 cmd.append("--dtb")
1612 cmd.append(fn)
1613
Doug Zongker171f1cd2009-06-15 22:36:37 -07001614 fn = os.path.join(sourcedir, "cmdline")
1615 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001616 cmd.append("--cmdline")
1617 cmd.append(open(fn).read().rstrip("\n"))
1618
1619 fn = os.path.join(sourcedir, "base")
1620 if os.access(fn, os.F_OK):
1621 cmd.append("--base")
1622 cmd.append(open(fn).read().rstrip("\n"))
1623
Ying Wang4de6b5b2010-08-25 14:29:34 -07001624 fn = os.path.join(sourcedir, "pagesize")
1625 if os.access(fn, os.F_OK):
1626 cmd.append("--pagesize")
1627 cmd.append(open(fn).read().rstrip("\n"))
1628
Steve Mucklef84668e2020-03-16 19:13:46 -07001629 if partition_name == "recovery":
1630 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301631 if not args:
1632 # Fall back to "mkbootimg_args" for recovery image
1633 # in case "recovery_mkbootimg_args" is not set.
1634 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001635 elif partition_name == "init_boot":
1636 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001637 else:
1638 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001639 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001640 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001641
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001642 args = info_dict.get("mkbootimg_version_args")
1643 if args and args.strip():
1644 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001645
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001646 if has_ramdisk:
1647 cmd.extend(["--ramdisk", ramdisk_img.name])
1648
Tao Baod95e9fd2015-03-29 23:07:41 -07001649 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001650 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001651 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001652 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001653 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001654 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001655
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001656 if partition_name == "recovery":
1657 if info_dict.get("include_recovery_dtbo") == "true":
1658 fn = os.path.join(sourcedir, "recovery_dtbo")
1659 cmd.extend(["--recovery_dtbo", fn])
1660 if info_dict.get("include_recovery_acpio") == "true":
1661 fn = os.path.join(sourcedir, "recovery_acpio")
1662 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001663
Tao Bao986ee862018-10-04 15:46:16 -07001664 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001665
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001666 if _HasGkiCertificationArgs():
1667 if not os.path.exists(img.name):
1668 raise ValueError("Cannot find GKI boot.img")
1669 if kernel_path is None or not os.path.exists(kernel_path):
1670 raise ValueError("Cannot find GKI kernel.img")
1671
1672 # Certify GKI images.
1673 boot_signature_bytes = b''
1674 boot_signature_bytes += _GenerateGkiCertificate(img.name, "boot")
1675 boot_signature_bytes += _GenerateGkiCertificate(
1676 kernel_path, "generic_kernel")
1677
1678 BOOT_SIGNATURE_SIZE = 16 * 1024
1679 if len(boot_signature_bytes) > BOOT_SIGNATURE_SIZE:
1680 raise ValueError(
1681 f"GKI boot_signature size must be <= {BOOT_SIGNATURE_SIZE}")
1682 boot_signature_bytes += (
1683 b'\0' * (BOOT_SIGNATURE_SIZE - len(boot_signature_bytes)))
1684 assert len(boot_signature_bytes) == BOOT_SIGNATURE_SIZE
1685
1686 with open(img.name, 'ab') as f:
1687 f.write(boot_signature_bytes)
1688
Tao Bao76def242017-11-21 09:25:31 -08001689 if (info_dict.get("boot_signer") == "true" and
Kelvin Zhang563750f2021-04-28 12:46:17 -04001690 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001691 # Hard-code the path as "/boot" for two-step special recovery image (which
1692 # will be loaded into /boot during the two-step OTA).
1693 if two_step_image:
1694 path = "/boot"
1695 else:
Tao Baobf70c312017-07-11 17:27:55 -07001696 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001697 cmd = [OPTIONS.boot_signer_path]
1698 cmd.extend(OPTIONS.boot_signer_args)
1699 cmd.extend([path, img.name,
1700 info_dict["verity_key"] + ".pk8",
1701 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001702 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001703
Tao Baod95e9fd2015-03-29 23:07:41 -07001704 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001705 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001706 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001707 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001708 # We have switched from the prebuilt futility binary to using the tool
1709 # (futility-host) built from the source. Override the setting in the old
1710 # TF.zip.
1711 futility = info_dict["futility"]
1712 if futility.startswith("prebuilts/"):
1713 futility = "futility-host"
1714 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001715 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001716 info_dict["vboot_key"] + ".vbprivk",
1717 info_dict["vboot_subkey"] + ".vbprivk",
1718 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001719 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001720 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001721
Tao Baof3282b42015-04-01 11:21:55 -07001722 # Clean up the temp files.
1723 img_unsigned.close()
1724 img_keyblock.close()
1725
David Zeuthen8fecb282017-12-01 16:24:01 -05001726 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001727 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001728 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001729 if partition_name == "recovery":
1730 part_size = info_dict["recovery_size"]
1731 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001732 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001733 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001734 "--partition_size", str(part_size), "--partition_name",
1735 partition_name]
1736 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001737 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001738 if args and args.strip():
1739 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001740 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001741
1742 img.seek(os.SEEK_SET, 0)
1743 data = img.read()
1744
1745 if has_ramdisk:
1746 ramdisk_img.close()
1747 img.close()
1748
1749 return data
1750
1751
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001752def _SignBootableImage(image_path, prebuilt_name, partition_name,
1753 info_dict=None):
1754 """Performs AVB signing for a prebuilt boot.img.
1755
1756 Args:
1757 image_path: The full path of the image, e.g., /path/to/boot.img.
1758 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001759 boot-5.10.img, recovery.img or init_boot.img.
1760 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001761 info_dict: The information dict read from misc_info.txt.
1762 """
1763 if info_dict is None:
1764 info_dict = OPTIONS.info_dict
1765
1766 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1767 if info_dict.get("avb_enable") == "true":
1768 avbtool = info_dict["avb_avbtool"]
1769 if partition_name == "recovery":
1770 part_size = info_dict["recovery_size"]
1771 else:
1772 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1773
1774 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1775 "--partition_size", str(part_size), "--partition_name",
1776 partition_name]
1777 AppendAVBSigningArgs(cmd, partition_name)
1778 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1779 if args and args.strip():
1780 cmd.extend(shlex.split(args))
1781 RunAndCheckOutput(cmd)
1782
1783
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001784def HasRamdisk(partition_name, info_dict=None):
1785 """Returns true/false to see if a bootable image should have a ramdisk.
1786
1787 Args:
1788 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1789 info_dict: The information dict read from misc_info.txt.
1790 """
1791 if info_dict is None:
1792 info_dict = OPTIONS.info_dict
1793
1794 if partition_name != "boot":
1795 return True # init_boot.img or recovery.img has a ramdisk.
1796
1797 if info_dict.get("recovery_as_boot") == "true":
1798 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1799
Bowgo Tsai85578e02022-04-19 10:50:59 +08001800 if info_dict.get("gki_boot_image_without_ramdisk") == "true":
1801 return False # A GKI boot.img has no ramdisk since Android-13.
1802
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001803 if info_dict.get("system_root_image") == "true":
1804 # The ramdisk content is merged into the system.img, so there is NO
1805 # ramdisk in the boot.img or boot-<kernel version>.img.
1806 return False
1807
1808 if info_dict.get("init_boot") == "true":
1809 # The ramdisk is moved to the init_boot.img, so there is NO
1810 # ramdisk in the boot.img or boot-<kernel version>.img.
1811 return False
1812
1813 return True
1814
1815
Doug Zongkerd5131602012-08-02 14:46:42 -07001816def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001817 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001818 """Return a File object with the desired bootable image.
1819
1820 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1821 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1822 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001823
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001824 if info_dict is None:
1825 info_dict = OPTIONS.info_dict
1826
Doug Zongker55d93282011-01-25 17:03:34 -08001827 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1828 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001829 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001830 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001831
1832 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1833 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001834 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001835 return File.FromLocalFile(name, prebuilt_path)
1836
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001837 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001838 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1839 if os.path.exists(prebuilt_path):
1840 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1841 signed_img = MakeTempFile()
1842 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001843 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1844 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001845
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001846 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001847
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001848 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001849
Doug Zongker6f1d0312014-08-22 08:07:12 -07001850 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001851 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001852 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001853 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001854 if data:
1855 return File(name, data)
1856 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001857
Doug Zongkereef39442009-04-02 12:14:19 -07001858
Lucas Wei03230252022-04-18 16:00:40 +08001859def _BuildVendorBootImage(sourcedir, partition_name, info_dict=None):
Steve Mucklee1b10862019-07-10 10:49:37 -07001860 """Build a vendor boot image from the specified sourcedir.
1861
1862 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1863 turn them into a vendor boot image.
1864
1865 Return the image data, or None if sourcedir does not appear to contains files
1866 for building the requested image.
1867 """
1868
1869 if info_dict is None:
1870 info_dict = OPTIONS.info_dict
1871
1872 img = tempfile.NamedTemporaryFile()
1873
TJ Rhoades6f488e92022-05-01 22:16:22 -07001874 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001875 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001876
1877 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1878 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1879
1880 cmd = [mkbootimg]
1881
1882 fn = os.path.join(sourcedir, "dtb")
1883 if os.access(fn, os.F_OK):
Lucas Wei03230252022-04-18 16:00:40 +08001884 has_vendor_kernel_boot = (info_dict.get("vendor_kernel_boot", "").lower() == "true")
1885
1886 # Pack dtb into vendor_kernel_boot if building vendor_kernel_boot.
1887 # Otherwise pack dtb into vendor_boot.
1888 if not has_vendor_kernel_boot or partition_name == "vendor_kernel_boot":
1889 cmd.append("--dtb")
1890 cmd.append(fn)
Steve Mucklee1b10862019-07-10 10:49:37 -07001891
1892 fn = os.path.join(sourcedir, "vendor_cmdline")
1893 if os.access(fn, os.F_OK):
1894 cmd.append("--vendor_cmdline")
1895 cmd.append(open(fn).read().rstrip("\n"))
1896
1897 fn = os.path.join(sourcedir, "base")
1898 if os.access(fn, os.F_OK):
1899 cmd.append("--base")
1900 cmd.append(open(fn).read().rstrip("\n"))
1901
1902 fn = os.path.join(sourcedir, "pagesize")
1903 if os.access(fn, os.F_OK):
1904 cmd.append("--pagesize")
1905 cmd.append(open(fn).read().rstrip("\n"))
1906
1907 args = info_dict.get("mkbootimg_args")
1908 if args and args.strip():
1909 cmd.extend(shlex.split(args))
1910
1911 args = info_dict.get("mkbootimg_version_args")
1912 if args and args.strip():
1913 cmd.extend(shlex.split(args))
1914
1915 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1916 cmd.extend(["--vendor_boot", img.name])
1917
Devin Moore50509012021-01-13 10:45:04 -08001918 fn = os.path.join(sourcedir, "vendor_bootconfig")
1919 if os.access(fn, os.F_OK):
1920 cmd.append("--vendor_bootconfig")
1921 cmd.append(fn)
1922
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001923 ramdisk_fragment_imgs = []
1924 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1925 if os.access(fn, os.F_OK):
1926 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1927 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001928 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1929 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001930 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001931 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1932 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001933 # Use prebuilt image if found, else create ramdisk from supplied files.
1934 if os.access(fn, os.F_OK):
1935 ramdisk_fragment_pathname = fn
1936 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001937 ramdisk_fragment_root = os.path.join(
1938 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001939 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1940 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001941 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1942 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1943 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1944
Steve Mucklee1b10862019-07-10 10:49:37 -07001945 RunAndCheckOutput(cmd)
1946
1947 # AVB: if enabled, calculate and add hash.
1948 if info_dict.get("avb_enable") == "true":
1949 avbtool = info_dict["avb_avbtool"]
Lucas Wei03230252022-04-18 16:00:40 +08001950 part_size = info_dict[f'{partition_name}_size']
Steve Mucklee1b10862019-07-10 10:49:37 -07001951 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Lucas Wei03230252022-04-18 16:00:40 +08001952 "--partition_size", str(part_size), "--partition_name", partition_name]
1953 AppendAVBSigningArgs(cmd, partition_name)
1954 args = info_dict.get(f'avb_{partition_name}_add_hash_footer_args')
Steve Mucklee1b10862019-07-10 10:49:37 -07001955 if args and args.strip():
1956 cmd.extend(shlex.split(args))
1957 RunAndCheckOutput(cmd)
1958
1959 img.seek(os.SEEK_SET, 0)
1960 data = img.read()
1961
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001962 for f in ramdisk_fragment_imgs:
1963 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001964 ramdisk_img.close()
1965 img.close()
1966
1967 return data
1968
1969
1970def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1971 info_dict=None):
1972 """Return a File object with the desired vendor boot image.
1973
1974 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1975 the source files in 'unpack_dir'/'tree_subdir'."""
1976
1977 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1978 if os.path.exists(prebuilt_path):
1979 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1980 return File.FromLocalFile(name, prebuilt_path)
1981
1982 logger.info("building image from target_files %s...", tree_subdir)
1983
1984 if info_dict is None:
1985 info_dict = OPTIONS.info_dict
1986
Kelvin Zhang0876c412020-06-23 15:06:58 -04001987 data = _BuildVendorBootImage(
Lucas Wei03230252022-04-18 16:00:40 +08001988 os.path.join(unpack_dir, tree_subdir), "vendor_boot", info_dict)
1989 if data:
1990 return File(name, data)
1991 return None
1992
1993
1994def GetVendorKernelBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1995 info_dict=None):
1996 """Return a File object with the desired vendor kernel boot image.
1997
1998 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1999 the source files in 'unpack_dir'/'tree_subdir'."""
2000
2001 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
2002 if os.path.exists(prebuilt_path):
2003 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
2004 return File.FromLocalFile(name, prebuilt_path)
2005
2006 logger.info("building image from target_files %s...", tree_subdir)
2007
2008 if info_dict is None:
2009 info_dict = OPTIONS.info_dict
2010
2011 data = _BuildVendorBootImage(
2012 os.path.join(unpack_dir, tree_subdir), "vendor_kernel_boot", info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07002013 if data:
2014 return File(name, data)
2015 return None
2016
2017
Narayan Kamatha07bf042017-08-14 14:49:21 +01002018def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08002019 """Gunzips the given gzip compressed file to a given output file."""
2020 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04002021 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01002022 shutil.copyfileobj(in_file, out_file)
2023
2024
Tao Bao0ff15de2019-03-20 11:26:06 -07002025def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002026 """Unzips the archive to the given directory.
2027
2028 Args:
2029 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002030 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07002031 patterns: Files to unzip from the archive. If omitted, will unzip the entire
2032 archvie. Non-matching patterns will be filtered out. If there's no match
2033 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002034 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002035 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07002036 if patterns is not None:
2037 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04002038 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07002039 names = input_zip.namelist()
2040 filtered = [
2041 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
2042
2043 # There isn't any matching files. Don't unzip anything.
2044 if not filtered:
2045 return
2046 cmd.extend(filtered)
2047
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002048 RunAndCheckOutput(cmd)
2049
2050
Daniel Norman78554ea2021-09-14 10:29:38 -07002051def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002052 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002053
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002054 Args:
2055 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2056 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2057
Daniel Norman78554ea2021-09-14 10:29:38 -07002058 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002059 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002060
Tao Bao1c830bf2017-12-25 10:43:47 -08002061 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002062 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002063 """
Doug Zongkereef39442009-04-02 12:14:19 -07002064
Tao Bao1c830bf2017-12-25 10:43:47 -08002065 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002066 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2067 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002068 UnzipToDir(m.group(1), tmp, patterns)
2069 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002070 filename = m.group(1)
2071 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002072 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002073
Tao Baodba59ee2018-01-09 13:21:02 -08002074 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002075
2076
Yifan Hong8a66a712019-04-04 15:37:57 -07002077def GetUserImage(which, tmpdir, input_zip,
2078 info_dict=None,
2079 allow_shared_blocks=None,
2080 hashtree_info_generator=None,
2081 reset_file_map=False):
2082 """Returns an Image object suitable for passing to BlockImageDiff.
2083
2084 This function loads the specified image from the given path. If the specified
2085 image is sparse, it also performs additional processing for OTA purpose. For
2086 example, it always adds block 0 to clobbered blocks list. It also detects
2087 files that cannot be reconstructed from the block list, for whom we should
2088 avoid applying imgdiff.
2089
2090 Args:
2091 which: The partition name.
2092 tmpdir: The directory that contains the prebuilt image and block map file.
2093 input_zip: The target-files ZIP archive.
2094 info_dict: The dict to be looked up for relevant info.
2095 allow_shared_blocks: If image is sparse, whether having shared blocks is
2096 allowed. If none, it is looked up from info_dict.
2097 hashtree_info_generator: If present and image is sparse, generates the
2098 hashtree_info for this sparse image.
2099 reset_file_map: If true and image is sparse, reset file map before returning
2100 the image.
2101 Returns:
2102 A Image object. If it is a sparse image and reset_file_map is False, the
2103 image will have file_map info loaded.
2104 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002105 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002106 info_dict = LoadInfoDict(input_zip)
2107
2108 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002109 if info_dict.get(which + "_disable_sparse"):
2110 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002111
2112 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2113 # shared blocks (i.e. some blocks will show up in multiple files' block
2114 # list). We can only allocate such shared blocks to the first "owner", and
2115 # disable imgdiff for all later occurrences.
2116 if allow_shared_blocks is None:
2117 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2118
2119 if is_sparse:
2120 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2121 hashtree_info_generator)
2122 if reset_file_map:
2123 img.ResetFileMap()
2124 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04002125 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07002126
2127
2128def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
2129 """Returns a Image object suitable for passing to BlockImageDiff.
2130
2131 This function loads the specified non-sparse image from the given path.
2132
2133 Args:
2134 which: The partition name.
2135 tmpdir: The directory that contains the prebuilt image and block map file.
2136 Returns:
2137 A Image object.
2138 """
2139 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2140 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2141
2142 # The image and map files must have been created prior to calling
2143 # ota_from_target_files.py (since LMP).
2144 assert os.path.exists(path) and os.path.exists(mappath)
2145
Tianjie Xu41976c72019-07-03 13:57:01 -07002146 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
2147
Yifan Hong8a66a712019-04-04 15:37:57 -07002148
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002149def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2150 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08002151 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2152
2153 This function loads the specified sparse image from the given path, and
2154 performs additional processing for OTA purpose. For example, it always adds
2155 block 0 to clobbered blocks list. It also detects files that cannot be
2156 reconstructed from the block list, for whom we should avoid applying imgdiff.
2157
2158 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002159 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002160 tmpdir: The directory that contains the prebuilt image and block map file.
2161 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002162 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002163 hashtree_info_generator: If present, generates the hashtree_info for this
2164 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08002165 Returns:
2166 A SparseImage object, with file_map info loaded.
2167 """
Tao Baoc765cca2018-01-31 17:32:40 -08002168 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2169 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2170
2171 # The image and map files must have been created prior to calling
2172 # ota_from_target_files.py (since LMP).
2173 assert os.path.exists(path) and os.path.exists(mappath)
2174
2175 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2176 # it to clobbered_blocks so that it will be written to the target
2177 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2178 clobbered_blocks = "0"
2179
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002180 image = sparse_img.SparseImage(
2181 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
2182 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08002183
2184 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2185 # if they contain all zeros. We can't reconstruct such a file from its block
2186 # list. Tag such entries accordingly. (Bug: 65213616)
2187 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002188 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002189 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002190 continue
2191
Tom Cherryd14b8952018-08-09 14:26:00 -07002192 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2193 # filename listed in system.map may contain an additional leading slash
2194 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2195 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002196 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002197 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002198 arcname = entry.lstrip('/')
2199 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002200 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002201 else:
2202 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002203
2204 assert arcname in input_zip.namelist(), \
2205 "Failed to find the ZIP entry for {}".format(entry)
2206
Tao Baoc765cca2018-01-31 17:32:40 -08002207 info = input_zip.getinfo(arcname)
2208 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002209
2210 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002211 # image, check the original block list to determine its completeness. Note
2212 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002213 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002214 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002215
Tao Baoc765cca2018-01-31 17:32:40 -08002216 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2217 ranges.extra['incomplete'] = True
2218
2219 return image
2220
2221
Doug Zongkereef39442009-04-02 12:14:19 -07002222def GetKeyPasswords(keylist):
2223 """Given a list of keys, prompt the user to enter passwords for
2224 those which require them. Return a {key: password} dict. password
2225 will be None if the key has no password."""
2226
Doug Zongker8ce7c252009-05-22 13:34:54 -07002227 no_passwords = []
2228 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002229 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002230 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002231
2232 # sorted() can't compare strings to None, so convert Nones to strings
2233 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002234 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002235 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002236 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002237 continue
2238
T.R. Fullhart37e10522013-03-18 10:31:26 -07002239 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002240 "-inform", "DER", "-nocrypt"],
2241 stdin=devnull.fileno(),
2242 stdout=devnull.fileno(),
2243 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002244 p.communicate()
2245 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002246 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002247 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002248 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002249 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2250 "-inform", "DER", "-passin", "pass:"],
2251 stdin=devnull.fileno(),
2252 stdout=devnull.fileno(),
2253 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002254 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002255 if p.returncode == 0:
2256 # Encrypted key with empty string as password.
2257 key_passwords[k] = ''
2258 elif stderr.startswith('Error decrypting key'):
2259 # Definitely encrypted key.
2260 # It would have said "Error reading key" if it didn't parse correctly.
2261 need_passwords.append(k)
2262 else:
2263 # Potentially, a type of key that openssl doesn't understand.
2264 # We'll let the routines in signapk.jar handle it.
2265 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002266 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002267
T.R. Fullhart37e10522013-03-18 10:31:26 -07002268 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002269 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002270 return key_passwords
2271
2272
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002273def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002274 """Gets the minSdkVersion declared in the APK.
2275
Martin Stjernholm58472e82022-01-07 22:08:47 +00002276 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2277 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002278
2279 Args:
2280 apk_name: The APK filename.
2281
2282 Returns:
2283 The parsed SDK version string.
2284
2285 Raises:
2286 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002287 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002288 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002289 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002290 stderr=subprocess.PIPE)
2291 stdoutdata, stderrdata = proc.communicate()
2292 if proc.returncode != 0:
2293 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002294 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2295 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002296
Tao Baof47bf0f2018-03-21 23:28:51 -07002297 for line in stdoutdata.split("\n"):
2298 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002299 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2300 if m:
2301 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002302 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002303
2304
2305def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002306 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002307
Tao Baof47bf0f2018-03-21 23:28:51 -07002308 If minSdkVersion is set to a codename, it is translated to a number using the
2309 provided map.
2310
2311 Args:
2312 apk_name: The APK filename.
2313
2314 Returns:
2315 The parsed SDK version number.
2316
2317 Raises:
2318 ExternalError: On failing to get the min SDK version number.
2319 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002320 version = GetMinSdkVersion(apk_name)
2321 try:
2322 return int(version)
2323 except ValueError:
2324 # Not a decimal number. Codename?
2325 if version in codename_to_api_level_map:
2326 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002327 raise ExternalError(
2328 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2329 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002330
2331
2332def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002333 codename_to_api_level_map=None, whole_file=False,
2334 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002335 """Sign the input_name zip/jar/apk, producing output_name. Use the
2336 given key and password (the latter may be None if the key does not
2337 have a password.
2338
Doug Zongker951495f2009-08-14 12:44:19 -07002339 If whole_file is true, use the "-w" option to SignApk to embed a
2340 signature that covers the whole file in the archive comment of the
2341 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002342
2343 min_api_level is the API Level (int) of the oldest platform this file may end
2344 up on. If not specified for an APK, the API Level is obtained by interpreting
2345 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2346
2347 codename_to_api_level_map is needed to translate the codename which may be
2348 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002349
2350 Caller may optionally specify extra args to be passed to SignApk, which
2351 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002352 """
Tao Bao76def242017-11-21 09:25:31 -08002353 if codename_to_api_level_map is None:
2354 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002355 if extra_signapk_args is None:
2356 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002357
Alex Klyubin9667b182015-12-10 13:38:50 -08002358 java_library_path = os.path.join(
2359 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2360
Tao Baoe95540e2016-11-08 12:08:53 -08002361 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2362 ["-Djava.library.path=" + java_library_path,
2363 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002364 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002365 if whole_file:
2366 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002367
2368 min_sdk_version = min_api_level
2369 if min_sdk_version is None:
2370 if not whole_file:
2371 min_sdk_version = GetMinSdkVersionInt(
2372 input_name, codename_to_api_level_map)
2373 if min_sdk_version is not None:
2374 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2375
T.R. Fullhart37e10522013-03-18 10:31:26 -07002376 cmd.extend([key + OPTIONS.public_key_suffix,
2377 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002378 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002379
Tao Bao73dd4f42018-10-04 16:25:33 -07002380 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002381 if password is not None:
2382 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002383 stdoutdata, _ = proc.communicate(password)
2384 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002385 raise ExternalError(
2386 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002387 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002388
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002389def SignSePolicy(sepolicy, key, password):
2390 """Sign the sepolicy zip, producing an fsverity .fsv_sig and
2391 an RSA .sig signature files.
2392 """
2393
2394 if OPTIONS.sign_sepolicy_path is None:
Melisa Carranza Zuniga7ef13792022-08-23 19:09:12 +02002395 logger.info("No sign_sepolicy_path specified, %s was not signed", sepolicy)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002396 return False
2397
2398 java_library_path = os.path.join(
2399 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2400
2401 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2402 ["-Djava.library.path=" + java_library_path,
2403 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.sign_sepolicy_path)] +
2404 OPTIONS.extra_sign_sepolicy_args)
2405
2406 cmd.extend([key + OPTIONS.public_key_suffix,
2407 key + OPTIONS.private_key_suffix,
Melisa Carranza Zuniga7ef13792022-08-23 19:09:12 +02002408 sepolicy, os.path.dirname(sepolicy)])
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002409
2410 proc = Run(cmd, stdin=subprocess.PIPE)
2411 if password is not None:
2412 password += "\n"
2413 stdoutdata, _ = proc.communicate(password)
2414 if proc.returncode != 0:
2415 raise ExternalError(
2416 "Failed to run sign sepolicy: return code {}:\n{}".format(
2417 proc.returncode, stdoutdata))
2418 return True
Doug Zongkereef39442009-04-02 12:14:19 -07002419
Doug Zongker37974732010-09-16 17:44:38 -07002420def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002421 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002422
Tao Bao9dd909e2017-11-14 11:27:32 -08002423 For non-AVB images, raise exception if the data is too big. Print a warning
2424 if the data is nearing the maximum size.
2425
2426 For AVB images, the actual image size should be identical to the limit.
2427
2428 Args:
2429 data: A string that contains all the data for the partition.
2430 target: The partition name. The ".img" suffix is optional.
2431 info_dict: The dict to be looked up for relevant info.
2432 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002433 if target.endswith(".img"):
2434 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002435 mount_point = "/" + target
2436
Ying Wangf8824af2014-06-03 14:07:27 -07002437 fs_type = None
2438 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002439 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002440 if mount_point == "/userdata":
2441 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002442 p = info_dict["fstab"][mount_point]
2443 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002444 device = p.device
2445 if "/" in device:
2446 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002447 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002448 if not fs_type or not limit:
2449 return
Doug Zongkereef39442009-04-02 12:14:19 -07002450
Andrew Boie0f9aec82012-02-14 09:32:52 -08002451 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002452 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2453 # path.
2454 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2455 if size != limit:
2456 raise ExternalError(
2457 "Mismatching image size for %s: expected %d actual %d" % (
2458 target, limit, size))
2459 else:
2460 pct = float(size) * 100.0 / limit
2461 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2462 if pct >= 99.0:
2463 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002464
2465 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002466 logger.warning("\n WARNING: %s\n", msg)
2467 else:
2468 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002469
2470
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002471def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002472 """Parses the APK certs info from a given target-files zip.
2473
2474 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2475 tuple with the following elements: (1) a dictionary that maps packages to
2476 certs (based on the "certificate" and "private_key" attributes in the file;
2477 (2) a string representing the extension of compressed APKs in the target files
2478 (e.g ".gz", ".bro").
2479
2480 Args:
2481 tf_zip: The input target_files ZipFile (already open).
2482
2483 Returns:
2484 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2485 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2486 no compressed APKs.
2487 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002488 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002489 compressed_extension = None
2490
Tao Bao0f990332017-09-08 19:02:54 -07002491 # META/apkcerts.txt contains the info for _all_ the packages known at build
2492 # time. Filter out the ones that are not installed.
2493 installed_files = set()
2494 for name in tf_zip.namelist():
2495 basename = os.path.basename(name)
2496 if basename:
2497 installed_files.add(basename)
2498
Tao Baoda30cfa2017-12-01 16:19:46 -08002499 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002500 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002501 if not line:
2502 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002503 m = re.match(
2504 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002505 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2506 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002507 line)
2508 if not m:
2509 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002510
Tao Bao818ddf52018-01-05 11:17:34 -08002511 matches = m.groupdict()
2512 cert = matches["CERT"]
2513 privkey = matches["PRIVKEY"]
2514 name = matches["NAME"]
2515 this_compressed_extension = matches["COMPRESSED"]
2516
2517 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2518 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2519 if cert in SPECIAL_CERT_STRINGS and not privkey:
2520 certmap[name] = cert
2521 elif (cert.endswith(OPTIONS.public_key_suffix) and
2522 privkey.endswith(OPTIONS.private_key_suffix) and
2523 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2524 certmap[name] = cert[:-public_key_suffix_len]
2525 else:
2526 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2527
2528 if not this_compressed_extension:
2529 continue
2530
2531 # Only count the installed files.
2532 filename = name + '.' + this_compressed_extension
2533 if filename not in installed_files:
2534 continue
2535
2536 # Make sure that all the values in the compression map have the same
2537 # extension. We don't support multiple compression methods in the same
2538 # system image.
2539 if compressed_extension:
2540 if this_compressed_extension != compressed_extension:
2541 raise ValueError(
2542 "Multiple compressed extensions: {} vs {}".format(
2543 compressed_extension, this_compressed_extension))
2544 else:
2545 compressed_extension = this_compressed_extension
2546
2547 return (certmap,
2548 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002549
2550
Doug Zongkereef39442009-04-02 12:14:19 -07002551COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002552Global options
2553
2554 -p (--path) <dir>
2555 Prepend <dir>/bin to the list of places to search for binaries run by this
2556 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002557
Doug Zongker05d3dea2009-06-22 11:32:31 -07002558 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002559 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002560
Tao Bao30df8b42018-04-23 15:32:53 -07002561 -x (--extra) <key=value>
2562 Add a key/value pair to the 'extras' dict, which device-specific extension
2563 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002564
Doug Zongkereef39442009-04-02 12:14:19 -07002565 -v (--verbose)
2566 Show command lines being executed.
2567
2568 -h (--help)
2569 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002570
2571 --logfile <file>
2572 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002573"""
2574
Kelvin Zhang0876c412020-06-23 15:06:58 -04002575
Doug Zongkereef39442009-04-02 12:14:19 -07002576def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002577 print(docstring.rstrip("\n"))
2578 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002579
2580
2581def ParseOptions(argv,
2582 docstring,
2583 extra_opts="", extra_long_opts=(),
2584 extra_option_handler=None):
2585 """Parse the options in argv and return any arguments that aren't
2586 flags. docstring is the calling module's docstring, to be displayed
2587 for errors and -h. extra_opts and extra_long_opts are for flags
2588 defined by the caller, which are processed by passing them to
2589 extra_option_handler."""
2590
2591 try:
2592 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002593 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002594 ["help", "verbose", "path=", "signapk_path=",
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002595 "signapk_shared_library_path=", "extra_signapk_args=",
2596 "sign_sepolicy_path=", "extra_sign_sepolicy_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002597 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002598 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2599 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002600 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002601 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002602 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002603 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002604 sys.exit(2)
2605
Doug Zongkereef39442009-04-02 12:14:19 -07002606 for o, a in opts:
2607 if o in ("-h", "--help"):
2608 Usage(docstring)
2609 sys.exit()
2610 elif o in ("-v", "--verbose"):
2611 OPTIONS.verbose = True
2612 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002613 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002614 elif o in ("--signapk_path",):
2615 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002616 elif o in ("--signapk_shared_library_path",):
2617 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002618 elif o in ("--extra_signapk_args",):
2619 OPTIONS.extra_signapk_args = shlex.split(a)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002620 elif o in ("--sign_sepolicy_path",):
2621 OPTIONS.sign_sepolicy_path = a
2622 elif o in ("--extra_sign_sepolicy_args",):
2623 OPTIONS.extra_sign_sepolicy_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002624 elif o in ("--aapt2_path",):
2625 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002626 elif o in ("--java_path",):
2627 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002628 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002629 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002630 elif o in ("--android_jar_path",):
2631 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002632 elif o in ("--public_key_suffix",):
2633 OPTIONS.public_key_suffix = a
2634 elif o in ("--private_key_suffix",):
2635 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002636 elif o in ("--boot_signer_path",):
2637 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002638 elif o in ("--boot_signer_args",):
2639 OPTIONS.boot_signer_args = shlex.split(a)
2640 elif o in ("--verity_signer_path",):
2641 OPTIONS.verity_signer_path = a
2642 elif o in ("--verity_signer_args",):
2643 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07002644 elif o in ("-s", "--device_specific"):
2645 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002646 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002647 key, value = a.split("=", 1)
2648 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002649 elif o in ("--logfile",):
2650 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002651 else:
2652 if extra_option_handler is None or not extra_option_handler(o, a):
2653 assert False, "unknown option \"%s\"" % (o,)
2654
Doug Zongker85448772014-09-09 14:59:20 -07002655 if OPTIONS.search_path:
2656 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2657 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002658
2659 return args
2660
2661
Tao Bao4c851b12016-09-19 13:54:38 -07002662def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002663 """Make a temp file and add it to the list of things to be deleted
2664 when Cleanup() is called. Return the filename."""
2665 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2666 os.close(fd)
2667 OPTIONS.tempfiles.append(fn)
2668 return fn
2669
2670
Tao Bao1c830bf2017-12-25 10:43:47 -08002671def MakeTempDir(prefix='tmp', suffix=''):
2672 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2673
2674 Returns:
2675 The absolute pathname of the new directory.
2676 """
2677 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2678 OPTIONS.tempfiles.append(dir_name)
2679 return dir_name
2680
2681
Doug Zongkereef39442009-04-02 12:14:19 -07002682def Cleanup():
2683 for i in OPTIONS.tempfiles:
2684 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002685 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002686 else:
2687 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002688 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002689
2690
2691class PasswordManager(object):
2692 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002693 self.editor = os.getenv("EDITOR")
2694 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002695
2696 def GetPasswords(self, items):
2697 """Get passwords corresponding to each string in 'items',
2698 returning a dict. (The dict may have keys in addition to the
2699 values in 'items'.)
2700
2701 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2702 user edit that file to add more needed passwords. If no editor is
2703 available, or $ANDROID_PW_FILE isn't define, prompts the user
2704 interactively in the ordinary way.
2705 """
2706
2707 current = self.ReadFile()
2708
2709 first = True
2710 while True:
2711 missing = []
2712 for i in items:
2713 if i not in current or not current[i]:
2714 missing.append(i)
2715 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002716 if not missing:
2717 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002718
2719 for i in missing:
2720 current[i] = ""
2721
2722 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002723 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002724 if sys.version_info[0] >= 3:
2725 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002726 answer = raw_input("try to edit again? [y]> ").strip()
2727 if answer and answer[0] not in 'yY':
2728 raise RuntimeError("key passwords unavailable")
2729 first = False
2730
2731 current = self.UpdateAndReadFile(current)
2732
Kelvin Zhang0876c412020-06-23 15:06:58 -04002733 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002734 """Prompt the user to enter a value (password) for each key in
2735 'current' whose value is fales. Returns a new dict with all the
2736 values.
2737 """
2738 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002739 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002740 if v:
2741 result[k] = v
2742 else:
2743 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002744 result[k] = getpass.getpass(
2745 "Enter password for %s key> " % k).strip()
2746 if result[k]:
2747 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002748 return result
2749
2750 def UpdateAndReadFile(self, current):
2751 if not self.editor or not self.pwfile:
2752 return self.PromptResult(current)
2753
2754 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002755 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002756 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2757 f.write("# (Additional spaces are harmless.)\n\n")
2758
2759 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002760 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002761 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002762 f.write("[[[ %s ]]] %s\n" % (v, k))
2763 if not v and first_line is None:
2764 # position cursor on first line with no password.
2765 first_line = i + 4
2766 f.close()
2767
Tao Bao986ee862018-10-04 15:46:16 -07002768 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002769
2770 return self.ReadFile()
2771
2772 def ReadFile(self):
2773 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002774 if self.pwfile is None:
2775 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002776 try:
2777 f = open(self.pwfile, "r")
2778 for line in f:
2779 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002780 if not line or line[0] == '#':
2781 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002782 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2783 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002784 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002785 else:
2786 result[m.group(2)] = m.group(1)
2787 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002788 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002789 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002790 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002791 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002792
2793
Dan Albert8e0178d2015-01-27 15:53:15 -08002794def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2795 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002796
2797 # http://b/18015246
2798 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2799 # for files larger than 2GiB. We can work around this by adjusting their
2800 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2801 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2802 # it isn't clear to me exactly what circumstances cause this).
2803 # `zipfile.write()` must be used directly to work around this.
2804 #
2805 # This mess can be avoided if we port to python3.
2806 saved_zip64_limit = zipfile.ZIP64_LIMIT
2807 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2808
2809 if compress_type is None:
2810 compress_type = zip_file.compression
2811 if arcname is None:
2812 arcname = filename
2813
2814 saved_stat = os.stat(filename)
2815
2816 try:
2817 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2818 # file to be zipped and reset it when we're done.
2819 os.chmod(filename, perms)
2820
2821 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002822 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2823 # intentional. zip stores datetimes in local time without a time zone
2824 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2825 # in the zip archive.
2826 local_epoch = datetime.datetime.fromtimestamp(0)
2827 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002828 os.utime(filename, (timestamp, timestamp))
2829
2830 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2831 finally:
2832 os.chmod(filename, saved_stat.st_mode)
2833 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2834 zipfile.ZIP64_LIMIT = saved_zip64_limit
2835
2836
Tao Bao58c1b962015-05-20 09:32:18 -07002837def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002838 compress_type=None):
2839 """Wrap zipfile.writestr() function to work around the zip64 limit.
2840
2841 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2842 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2843 when calling crc32(bytes).
2844
2845 But it still works fine to write a shorter string into a large zip file.
2846 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2847 when we know the string won't be too long.
2848 """
2849
2850 saved_zip64_limit = zipfile.ZIP64_LIMIT
2851 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2852
2853 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2854 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002855 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002856 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002857 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002858 else:
Tao Baof3282b42015-04-01 11:21:55 -07002859 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002860 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2861 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2862 # such a case (since
2863 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2864 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2865 # permission bits. We follow the logic in Python 3 to get consistent
2866 # behavior between using the two versions.
2867 if not zinfo.external_attr:
2868 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002869
2870 # If compress_type is given, it overrides the value in zinfo.
2871 if compress_type is not None:
2872 zinfo.compress_type = compress_type
2873
Tao Bao58c1b962015-05-20 09:32:18 -07002874 # If perms is given, it has a priority.
2875 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002876 # If perms doesn't set the file type, mark it as a regular file.
2877 if perms & 0o770000 == 0:
2878 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002879 zinfo.external_attr = perms << 16
2880
Tao Baof3282b42015-04-01 11:21:55 -07002881 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002882 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2883
Dan Albert8b72aef2015-03-23 19:13:21 -07002884 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002885 zipfile.ZIP64_LIMIT = saved_zip64_limit
2886
2887
Tao Bao89d7ab22017-12-14 17:05:33 -08002888def ZipDelete(zip_filename, entries):
2889 """Deletes entries from a ZIP file.
2890
2891 Since deleting entries from a ZIP file is not supported, it shells out to
2892 'zip -d'.
2893
2894 Args:
2895 zip_filename: The name of the ZIP file.
2896 entries: The name of the entry, or the list of names to be deleted.
2897
2898 Raises:
2899 AssertionError: In case of non-zero return from 'zip'.
2900 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002901 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002902 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002903 # If list is empty, nothing to do
2904 if not entries:
2905 return
Tao Bao89d7ab22017-12-14 17:05:33 -08002906 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002907 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002908
2909
Tao Baof3282b42015-04-01 11:21:55 -07002910def ZipClose(zip_file):
2911 # http://b/18015246
2912 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2913 # central directory.
2914 saved_zip64_limit = zipfile.ZIP64_LIMIT
2915 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2916
2917 zip_file.close()
2918
2919 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002920
2921
2922class DeviceSpecificParams(object):
2923 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002924
Doug Zongker05d3dea2009-06-22 11:32:31 -07002925 def __init__(self, **kwargs):
2926 """Keyword arguments to the constructor become attributes of this
2927 object, which is passed to all functions in the device-specific
2928 module."""
Tao Bao38884282019-07-10 22:20:56 -07002929 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002930 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002931 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002932
2933 if self.module is None:
2934 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002935 if not path:
2936 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002937 try:
2938 if os.path.isdir(path):
2939 info = imp.find_module("releasetools", [path])
2940 else:
2941 d, f = os.path.split(path)
2942 b, x = os.path.splitext(f)
2943 if x == ".py":
2944 f = b
2945 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002946 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002947 self.module = imp.load_module("device_specific", *info)
2948 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002949 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002950
2951 def _DoCall(self, function_name, *args, **kwargs):
2952 """Call the named function in the device-specific module, passing
2953 the given args and kwargs. The first argument to the call will be
2954 the DeviceSpecific object itself. If there is no module, or the
2955 module does not define the function, return the value of the
2956 'default' kwarg (which itself defaults to None)."""
2957 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002958 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002959 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2960
2961 def FullOTA_Assertions(self):
2962 """Called after emitting the block of assertions at the top of a
2963 full OTA package. Implementations can add whatever additional
2964 assertions they like."""
2965 return self._DoCall("FullOTA_Assertions")
2966
Doug Zongkere5ff5902012-01-17 10:55:37 -08002967 def FullOTA_InstallBegin(self):
2968 """Called at the start of full OTA installation."""
2969 return self._DoCall("FullOTA_InstallBegin")
2970
Yifan Hong10c530d2018-12-27 17:34:18 -08002971 def FullOTA_GetBlockDifferences(self):
2972 """Called during full OTA installation and verification.
2973 Implementation should return a list of BlockDifference objects describing
2974 the update on each additional partitions.
2975 """
2976 return self._DoCall("FullOTA_GetBlockDifferences")
2977
Doug Zongker05d3dea2009-06-22 11:32:31 -07002978 def FullOTA_InstallEnd(self):
2979 """Called at the end of full OTA installation; typically this is
2980 used to install the image for the device's baseband processor."""
2981 return self._DoCall("FullOTA_InstallEnd")
2982
2983 def IncrementalOTA_Assertions(self):
2984 """Called after emitting the block of assertions at the top of an
2985 incremental OTA package. Implementations can add whatever
2986 additional assertions they like."""
2987 return self._DoCall("IncrementalOTA_Assertions")
2988
Doug Zongkere5ff5902012-01-17 10:55:37 -08002989 def IncrementalOTA_VerifyBegin(self):
2990 """Called at the start of the verification phase of incremental
2991 OTA installation; additional checks can be placed here to abort
2992 the script before any changes are made."""
2993 return self._DoCall("IncrementalOTA_VerifyBegin")
2994
Doug Zongker05d3dea2009-06-22 11:32:31 -07002995 def IncrementalOTA_VerifyEnd(self):
2996 """Called at the end of the verification phase of incremental OTA
2997 installation; additional checks can be placed here to abort the
2998 script before any changes are made."""
2999 return self._DoCall("IncrementalOTA_VerifyEnd")
3000
Doug Zongkere5ff5902012-01-17 10:55:37 -08003001 def IncrementalOTA_InstallBegin(self):
3002 """Called at the start of incremental OTA installation (after
3003 verification is complete)."""
3004 return self._DoCall("IncrementalOTA_InstallBegin")
3005
Yifan Hong10c530d2018-12-27 17:34:18 -08003006 def IncrementalOTA_GetBlockDifferences(self):
3007 """Called during incremental OTA installation and verification.
3008 Implementation should return a list of BlockDifference objects describing
3009 the update on each additional partitions.
3010 """
3011 return self._DoCall("IncrementalOTA_GetBlockDifferences")
3012
Doug Zongker05d3dea2009-06-22 11:32:31 -07003013 def IncrementalOTA_InstallEnd(self):
3014 """Called at the end of incremental OTA installation; typically
3015 this is used to install the image for the device's baseband
3016 processor."""
3017 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003018
Tao Bao9bc6bb22015-11-09 16:58:28 -08003019 def VerifyOTA_Assertions(self):
3020 return self._DoCall("VerifyOTA_Assertions")
3021
Tao Bao76def242017-11-21 09:25:31 -08003022
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003023class File(object):
Tao Bao76def242017-11-21 09:25:31 -08003024 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003025 self.name = name
3026 self.data = data
3027 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09003028 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08003029 self.sha1 = sha1(data).hexdigest()
3030
3031 @classmethod
3032 def FromLocalFile(cls, name, diskname):
3033 f = open(diskname, "rb")
3034 data = f.read()
3035 f.close()
3036 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003037
3038 def WriteToTemp(self):
3039 t = tempfile.NamedTemporaryFile()
3040 t.write(self.data)
3041 t.flush()
3042 return t
3043
Dan Willemsen2ee00d52017-03-05 19:51:56 -08003044 def WriteToDir(self, d):
3045 with open(os.path.join(d, self.name), "wb") as fp:
3046 fp.write(self.data)
3047
Geremy Condra36bd3652014-02-06 19:45:10 -08003048 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07003049 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003050
Tao Bao76def242017-11-21 09:25:31 -08003051
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003052DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04003053 ".gz": "imgdiff",
3054 ".zip": ["imgdiff", "-z"],
3055 ".jar": ["imgdiff", "-z"],
3056 ".apk": ["imgdiff", "-z"],
3057 ".img": "imgdiff",
3058}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003059
Tao Bao76def242017-11-21 09:25:31 -08003060
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003061class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07003062 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003063 self.tf = tf
3064 self.sf = sf
3065 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07003066 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003067
3068 def ComputePatch(self):
3069 """Compute the patch (as a string of data) needed to turn sf into
3070 tf. Returns the same tuple as GetPatch()."""
3071
3072 tf = self.tf
3073 sf = self.sf
3074
Doug Zongker24cd2802012-08-14 16:36:15 -07003075 if self.diff_program:
3076 diff_program = self.diff_program
3077 else:
3078 ext = os.path.splitext(tf.name)[1]
3079 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003080
3081 ttemp = tf.WriteToTemp()
3082 stemp = sf.WriteToTemp()
3083
3084 ext = os.path.splitext(tf.name)[1]
3085
3086 try:
3087 ptemp = tempfile.NamedTemporaryFile()
3088 if isinstance(diff_program, list):
3089 cmd = copy.copy(diff_program)
3090 else:
3091 cmd = [diff_program]
3092 cmd.append(stemp.name)
3093 cmd.append(ttemp.name)
3094 cmd.append(ptemp.name)
3095 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003096 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003097
Doug Zongkerf8340082014-08-05 10:39:37 -07003098 def run():
3099 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003100 if e:
3101 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003102 th = threading.Thread(target=run)
3103 th.start()
3104 th.join(timeout=300) # 5 mins
3105 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003106 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003107 p.terminate()
3108 th.join(5)
3109 if th.is_alive():
3110 p.kill()
3111 th.join()
3112
Tianjie Xua2a9f992018-01-05 15:15:54 -08003113 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003114 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003115 self.patch = None
3116 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003117 diff = ptemp.read()
3118 finally:
3119 ptemp.close()
3120 stemp.close()
3121 ttemp.close()
3122
3123 self.patch = diff
3124 return self.tf, self.sf, self.patch
3125
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003126 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003127 """Returns a tuple of (target_file, source_file, patch_data).
3128
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003129 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003130 computing the patch failed.
3131 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003132 return self.tf, self.sf, self.patch
3133
3134
3135def ComputeDifferences(diffs):
3136 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003137 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003138
3139 # Do the largest files first, to try and reduce the long-pole effect.
3140 by_size = [(i.tf.size, i) for i in diffs]
3141 by_size.sort(reverse=True)
3142 by_size = [i[1] for i in by_size]
3143
3144 lock = threading.Lock()
3145 diff_iter = iter(by_size) # accessed under lock
3146
3147 def worker():
3148 try:
3149 lock.acquire()
3150 for d in diff_iter:
3151 lock.release()
3152 start = time.time()
3153 d.ComputePatch()
3154 dur = time.time() - start
3155 lock.acquire()
3156
3157 tf, sf, patch = d.GetPatch()
3158 if sf.name == tf.name:
3159 name = tf.name
3160 else:
3161 name = "%s (%s)" % (tf.name, sf.name)
3162 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003163 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003164 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003165 logger.info(
3166 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3167 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003168 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003169 except Exception:
3170 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003171 raise
3172
3173 # start worker threads; wait for them all to finish.
3174 threads = [threading.Thread(target=worker)
3175 for i in range(OPTIONS.worker_threads)]
3176 for th in threads:
3177 th.start()
3178 while threads:
3179 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003180
3181
Dan Albert8b72aef2015-03-23 19:13:21 -07003182class BlockDifference(object):
3183 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003184 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003185 self.tgt = tgt
3186 self.src = src
3187 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003188 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003189 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003190
Tao Baodd2a5892015-03-12 12:32:37 -07003191 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003192 version = max(
3193 int(i) for i in
3194 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003195 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003196 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003197
Tianjie Xu41976c72019-07-03 13:57:01 -07003198 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3199 version=self.version,
3200 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003201 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003202 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003203 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003204 self.touched_src_ranges = b.touched_src_ranges
3205 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003206
Yifan Hong10c530d2018-12-27 17:34:18 -08003207 # On devices with dynamic partitions, for new partitions,
3208 # src is None but OPTIONS.source_info_dict is not.
3209 if OPTIONS.source_info_dict is None:
3210 is_dynamic_build = OPTIONS.info_dict.get(
3211 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003212 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003213 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003214 is_dynamic_build = OPTIONS.source_info_dict.get(
3215 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003216 is_dynamic_source = partition in shlex.split(
3217 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003218
Yifan Hongbb2658d2019-01-25 12:30:58 -08003219 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003220 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3221
Yifan Hongbb2658d2019-01-25 12:30:58 -08003222 # For dynamic partitions builds, check partition list in both source
3223 # and target build because new partitions may be added, and existing
3224 # partitions may be removed.
3225 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3226
Yifan Hong10c530d2018-12-27 17:34:18 -08003227 if is_dynamic:
3228 self.device = 'map_partition("%s")' % partition
3229 else:
3230 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003231 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3232 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003233 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003234 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3235 OPTIONS.source_info_dict)
3236 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003237
Tao Baod8d14be2016-02-04 14:26:02 -08003238 @property
3239 def required_cache(self):
3240 return self._required_cache
3241
Tao Bao76def242017-11-21 09:25:31 -08003242 def WriteScript(self, script, output_zip, progress=None,
3243 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003244 if not self.src:
3245 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003246 script.Print("Patching %s image unconditionally..." % (self.partition,))
3247 else:
3248 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003249
Dan Albert8b72aef2015-03-23 19:13:21 -07003250 if progress:
3251 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003252 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003253
3254 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003255 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003256
Tao Bao9bc6bb22015-11-09 16:58:28 -08003257 def WriteStrictVerifyScript(self, script):
3258 """Verify all the blocks in the care_map, including clobbered blocks.
3259
3260 This differs from the WriteVerifyScript() function: a) it prints different
3261 error messages; b) it doesn't allow half-way updated images to pass the
3262 verification."""
3263
3264 partition = self.partition
3265 script.Print("Verifying %s..." % (partition,))
3266 ranges = self.tgt.care_map
3267 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003268 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003269 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3270 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003271 self.device, ranges_str,
3272 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003273 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003274 script.AppendExtra("")
3275
Tao Baod522bdc2016-04-12 15:53:16 -07003276 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003277 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003278
3279 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003280 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003281 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003282
3283 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003284 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003285 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003286 ranges = self.touched_src_ranges
3287 expected_sha1 = self.touched_src_sha1
3288 else:
3289 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3290 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003291
3292 # No blocks to be checked, skipping.
3293 if not ranges:
3294 return
3295
Tao Bao5ece99d2015-05-12 11:42:31 -07003296 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003297 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003298 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003299 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3300 '"%s.patch.dat")) then' % (
3301 self.device, ranges_str, expected_sha1,
3302 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003303 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003304 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003305
Tianjie Xufc3422a2015-12-15 11:53:59 -08003306 if self.version >= 4:
3307
3308 # Bug: 21124327
3309 # When generating incrementals for the system and vendor partitions in
3310 # version 4 or newer, explicitly check the first block (which contains
3311 # the superblock) of the partition to see if it's what we expect. If
3312 # this check fails, give an explicit log message about the partition
3313 # having been remounted R/W (the most likely explanation).
3314 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003315 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003316
3317 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003318 if partition == "system":
3319 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3320 else:
3321 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003322 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003323 'ifelse (block_image_recover({device}, "{ranges}") && '
3324 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003325 'package_extract_file("{partition}.transfer.list"), '
3326 '"{partition}.new.dat", "{partition}.patch.dat"), '
3327 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003328 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003329 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003330 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003331
Tao Baodd2a5892015-03-12 12:32:37 -07003332 # Abort the OTA update. Note that the incremental OTA cannot be applied
3333 # even if it may match the checksum of the target partition.
3334 # a) If version < 3, operations like move and erase will make changes
3335 # unconditionally and damage the partition.
3336 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003337 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003338 if partition == "system":
3339 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3340 else:
3341 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3342 script.AppendExtra((
3343 'abort("E%d: %s partition has unexpected contents");\n'
3344 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003345
Yifan Hong10c530d2018-12-27 17:34:18 -08003346 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003347 partition = self.partition
3348 script.Print('Verifying the updated %s image...' % (partition,))
3349 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3350 ranges = self.tgt.care_map
3351 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003352 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003353 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003354 self.device, ranges_str,
3355 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003356
3357 # Bug: 20881595
3358 # Verify that extended blocks are really zeroed out.
3359 if self.tgt.extended:
3360 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003361 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003362 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003363 self.device, ranges_str,
3364 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003365 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003366 if partition == "system":
3367 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3368 else:
3369 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003370 script.AppendExtra(
3371 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003372 ' abort("E%d: %s partition has unexpected non-zero contents after '
3373 'OTA update");\n'
3374 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003375 else:
3376 script.Print('Verified the updated %s image.' % (partition,))
3377
Tianjie Xu209db462016-05-24 17:34:52 -07003378 if partition == "system":
3379 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3380 else:
3381 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3382
Tao Bao5fcaaef2015-06-01 13:40:49 -07003383 script.AppendExtra(
3384 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003385 ' abort("E%d: %s partition has unexpected contents after OTA '
3386 'update");\n'
3387 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003388
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003389 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003390 ZipWrite(output_zip,
3391 '{}.transfer.list'.format(self.path),
3392 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003393
Tao Bao76def242017-11-21 09:25:31 -08003394 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3395 # its size. Quailty 9 almost triples the compression time but doesn't
3396 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003397 # zip | brotli(quality 6) | brotli(quality 9)
3398 # compressed_size: 942M | 869M (~8% reduced) | 854M
3399 # compression_time: 75s | 265s | 719s
3400 # decompression_time: 15s | 25s | 25s
3401
3402 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003403 brotli_cmd = ['brotli', '--quality=6',
3404 '--output={}.new.dat.br'.format(self.path),
3405 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003406 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003407 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003408
3409 new_data_name = '{}.new.dat.br'.format(self.partition)
3410 ZipWrite(output_zip,
3411 '{}.new.dat.br'.format(self.path),
3412 new_data_name,
3413 compress_type=zipfile.ZIP_STORED)
3414 else:
3415 new_data_name = '{}.new.dat'.format(self.partition)
3416 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3417
Dan Albert8e0178d2015-01-27 15:53:15 -08003418 ZipWrite(output_zip,
3419 '{}.patch.dat'.format(self.path),
3420 '{}.patch.dat'.format(self.partition),
3421 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003422
Tianjie Xu209db462016-05-24 17:34:52 -07003423 if self.partition == "system":
3424 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3425 else:
3426 code = ErrorCode.VENDOR_UPDATE_FAILURE
3427
Yifan Hong10c530d2018-12-27 17:34:18 -08003428 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003429 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003430 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003431 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003432 device=self.device, partition=self.partition,
3433 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003434 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003435
Kelvin Zhang0876c412020-06-23 15:06:58 -04003436 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003437 data = source.ReadRangeSet(ranges)
3438 ctx = sha1()
3439
3440 for p in data:
3441 ctx.update(p)
3442
3443 return ctx.hexdigest()
3444
Kelvin Zhang0876c412020-06-23 15:06:58 -04003445 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003446 """Return the hash value for all zero blocks."""
3447 zero_block = '\x00' * 4096
3448 ctx = sha1()
3449 for _ in range(num_blocks):
3450 ctx.update(zero_block)
3451
3452 return ctx.hexdigest()
3453
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003454
Tianjie Xu41976c72019-07-03 13:57:01 -07003455# Expose these two classes to support vendor-specific scripts
3456DataImage = images.DataImage
3457EmptyImage = images.EmptyImage
3458
Tao Bao76def242017-11-21 09:25:31 -08003459
Doug Zongker96a57e72010-09-26 14:57:41 -07003460# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003461PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003462 "ext4": "EMMC",
3463 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003464 "f2fs": "EMMC",
3465 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003466}
Doug Zongker96a57e72010-09-26 14:57:41 -07003467
Kelvin Zhang0876c412020-06-23 15:06:58 -04003468
Yifan Hongbdb32012020-05-07 12:38:53 -07003469def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3470 """
3471 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3472 backwards compatibility. It aborts if the fstab entry has slotselect option
3473 (unless check_no_slot is explicitly set to False).
3474 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003475 fstab = info["fstab"]
3476 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003477 if check_no_slot:
3478 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003479 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003480 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3481 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003482 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003483
3484
Yifan Hongbdb32012020-05-07 12:38:53 -07003485def GetTypeAndDeviceExpr(mount_point, info):
3486 """
3487 Return the filesystem of the partition, and an edify expression that evaluates
3488 to the device at runtime.
3489 """
3490 fstab = info["fstab"]
3491 if fstab:
3492 p = fstab[mount_point]
3493 device_expr = '"%s"' % fstab[mount_point].device
3494 if p.slotselect:
3495 device_expr = 'add_slot_suffix(%s)' % device_expr
3496 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003497 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003498
3499
3500def GetEntryForDevice(fstab, device):
3501 """
3502 Returns:
3503 The first entry in fstab whose device is the given value.
3504 """
3505 if not fstab:
3506 return None
3507 for mount_point in fstab:
3508 if fstab[mount_point].device == device:
3509 return fstab[mount_point]
3510 return None
3511
Kelvin Zhang0876c412020-06-23 15:06:58 -04003512
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003513def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003514 """Parses and converts a PEM-encoded certificate into DER-encoded.
3515
3516 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3517
3518 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003519 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003520 """
3521 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003522 save = False
3523 for line in data.split("\n"):
3524 if "--END CERTIFICATE--" in line:
3525 break
3526 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003527 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003528 if "--BEGIN CERTIFICATE--" in line:
3529 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003530 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003531 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003532
Tao Bao04e1f012018-02-04 12:13:35 -08003533
3534def ExtractPublicKey(cert):
3535 """Extracts the public key (PEM-encoded) from the given certificate file.
3536
3537 Args:
3538 cert: The certificate filename.
3539
3540 Returns:
3541 The public key string.
3542
3543 Raises:
3544 AssertionError: On non-zero return from 'openssl'.
3545 """
3546 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3547 # While openssl 1.1 writes the key into the given filename followed by '-out',
3548 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3549 # stdout instead.
3550 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3551 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3552 pubkey, stderrdata = proc.communicate()
3553 assert proc.returncode == 0, \
3554 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3555 return pubkey
3556
3557
Tao Bao1ac886e2019-06-26 11:58:22 -07003558def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003559 """Extracts the AVB public key from the given public or private key.
3560
3561 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003562 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003563 key: The input key file, which should be PEM-encoded public or private key.
3564
3565 Returns:
3566 The path to the extracted AVB public key file.
3567 """
3568 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3569 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003570 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003571 return output
3572
3573
Doug Zongker412c02f2014-02-13 10:58:24 -08003574def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3575 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003576 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003577
Tao Bao6d5d6232018-03-09 17:04:42 -08003578 Most of the space in the boot and recovery images is just the kernel, which is
3579 identical for the two, so the resulting patch should be efficient. Add it to
3580 the output zip, along with a shell script that is run from init.rc on first
3581 boot to actually do the patching and install the new recovery image.
3582
3583 Args:
3584 input_dir: The top-level input directory of the target-files.zip.
3585 output_sink: The callback function that writes the result.
3586 recovery_img: File object for the recovery image.
3587 boot_img: File objects for the boot image.
3588 info_dict: A dict returned by common.LoadInfoDict() on the input
3589 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003590 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003591 if info_dict is None:
3592 info_dict = OPTIONS.info_dict
3593
Tao Bao6d5d6232018-03-09 17:04:42 -08003594 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003595 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3596
3597 if board_uses_vendorimage:
3598 # In this case, the output sink is rooted at VENDOR
3599 recovery_img_path = "etc/recovery.img"
3600 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3601 sh_dir = "bin"
3602 else:
3603 # In this case the output sink is rooted at SYSTEM
3604 recovery_img_path = "vendor/etc/recovery.img"
3605 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3606 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003607
Tao Baof2cffbd2015-07-22 12:33:18 -07003608 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003609 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003610
3611 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003612 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003613 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003614 # With system-root-image, boot and recovery images will have mismatching
3615 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3616 # to handle such a case.
3617 if system_root_image:
3618 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003619 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003620 assert not os.path.exists(path)
3621 else:
3622 diff_program = ["imgdiff"]
3623 if os.path.exists(path):
3624 diff_program.append("-b")
3625 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003626 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003627 else:
3628 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003629
3630 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3631 _, _, patch = d.ComputePatch()
3632 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003633
Dan Albertebb19aa2015-03-27 19:11:53 -07003634 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003635 # The following GetTypeAndDevice()s need to use the path in the target
3636 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003637 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3638 check_no_slot=False)
3639 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3640 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003641 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003642 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003643
Tao Baof2cffbd2015-07-22 12:33:18 -07003644 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003645
3646 # Note that we use /vendor to refer to the recovery resources. This will
3647 # work for a separate vendor partition mounted at /vendor or a
3648 # /system/vendor subdirectory on the system partition, for which init will
3649 # create a symlink from /vendor to /system/vendor.
3650
3651 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003652if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3653 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003654 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003655 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3656 log -t recovery "Installing new recovery image: succeeded" || \\
3657 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003658else
3659 log -t recovery "Recovery image already installed"
3660fi
3661""" % {'type': recovery_type,
3662 'device': recovery_device,
3663 'sha1': recovery_img.sha1,
3664 'size': recovery_img.size}
3665 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003666 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003667if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3668 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003669 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003670 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3671 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3672 log -t recovery "Installing new recovery image: succeeded" || \\
3673 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003674else
3675 log -t recovery "Recovery image already installed"
3676fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003677""" % {'boot_size': boot_img.size,
3678 'boot_sha1': boot_img.sha1,
3679 'recovery_size': recovery_img.size,
3680 'recovery_sha1': recovery_img.sha1,
3681 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003682 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003683 'recovery_type': recovery_type,
3684 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003685 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003686
Bill Peckhame868aec2019-09-17 17:06:47 -07003687 # The install script location moved from /system/etc to /system/bin in the L
3688 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3689 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003690
Tao Bao32fcdab2018-10-12 10:30:39 -07003691 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003692
Tao Baoda30cfa2017-12-01 16:19:46 -08003693 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003694
3695
3696class DynamicPartitionUpdate(object):
3697 def __init__(self, src_group=None, tgt_group=None, progress=None,
3698 block_difference=None):
3699 self.src_group = src_group
3700 self.tgt_group = tgt_group
3701 self.progress = progress
3702 self.block_difference = block_difference
3703
3704 @property
3705 def src_size(self):
3706 if not self.block_difference:
3707 return 0
3708 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3709
3710 @property
3711 def tgt_size(self):
3712 if not self.block_difference:
3713 return 0
3714 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3715
3716 @staticmethod
3717 def _GetSparseImageSize(img):
3718 if not img:
3719 return 0
3720 return img.blocksize * img.total_blocks
3721
3722
3723class DynamicGroupUpdate(object):
3724 def __init__(self, src_size=None, tgt_size=None):
3725 # None: group does not exist. 0: no size limits.
3726 self.src_size = src_size
3727 self.tgt_size = tgt_size
3728
3729
3730class DynamicPartitionsDifference(object):
3731 def __init__(self, info_dict, block_diffs, progress_dict=None,
3732 source_info_dict=None):
3733 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003734 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003735
3736 self._remove_all_before_apply = False
3737 if source_info_dict is None:
3738 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003739 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003740
Tao Baof1113e92019-06-18 12:10:14 -07003741 block_diff_dict = collections.OrderedDict(
3742 [(e.partition, e) for e in block_diffs])
3743
Yifan Hong10c530d2018-12-27 17:34:18 -08003744 assert len(block_diff_dict) == len(block_diffs), \
3745 "Duplicated BlockDifference object for {}".format(
3746 [partition for partition, count in
3747 collections.Counter(e.partition for e in block_diffs).items()
3748 if count > 1])
3749
Yifan Hong79997e52019-01-23 16:56:19 -08003750 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003751
3752 for p, block_diff in block_diff_dict.items():
3753 self._partition_updates[p] = DynamicPartitionUpdate()
3754 self._partition_updates[p].block_difference = block_diff
3755
3756 for p, progress in progress_dict.items():
3757 if p in self._partition_updates:
3758 self._partition_updates[p].progress = progress
3759
3760 tgt_groups = shlex.split(info_dict.get(
3761 "super_partition_groups", "").strip())
3762 src_groups = shlex.split(source_info_dict.get(
3763 "super_partition_groups", "").strip())
3764
3765 for g in tgt_groups:
3766 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003767 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003768 assert p in self._partition_updates, \
3769 "{} is in target super_{}_partition_list but no BlockDifference " \
3770 "object is provided.".format(p, g)
3771 self._partition_updates[p].tgt_group = g
3772
3773 for g in src_groups:
3774 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003775 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003776 assert p in self._partition_updates, \
3777 "{} is in source super_{}_partition_list but no BlockDifference " \
3778 "object is provided.".format(p, g)
3779 self._partition_updates[p].src_group = g
3780
Yifan Hong45433e42019-01-18 13:55:25 -08003781 target_dynamic_partitions = set(shlex.split(info_dict.get(
3782 "dynamic_partition_list", "").strip()))
3783 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3784 if u.tgt_size)
3785 assert block_diffs_with_target == target_dynamic_partitions, \
3786 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3787 list(target_dynamic_partitions), list(block_diffs_with_target))
3788
3789 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3790 "dynamic_partition_list", "").strip()))
3791 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3792 if u.src_size)
3793 assert block_diffs_with_source == source_dynamic_partitions, \
3794 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3795 list(source_dynamic_partitions), list(block_diffs_with_source))
3796
Yifan Hong10c530d2018-12-27 17:34:18 -08003797 if self._partition_updates:
3798 logger.info("Updating dynamic partitions %s",
3799 self._partition_updates.keys())
3800
Yifan Hong79997e52019-01-23 16:56:19 -08003801 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003802
3803 for g in tgt_groups:
3804 self._group_updates[g] = DynamicGroupUpdate()
3805 self._group_updates[g].tgt_size = int(info_dict.get(
3806 "super_%s_group_size" % g, "0").strip())
3807
3808 for g in src_groups:
3809 if g not in self._group_updates:
3810 self._group_updates[g] = DynamicGroupUpdate()
3811 self._group_updates[g].src_size = int(source_info_dict.get(
3812 "super_%s_group_size" % g, "0").strip())
3813
3814 self._Compute()
3815
3816 def WriteScript(self, script, output_zip, write_verify_script=False):
3817 script.Comment('--- Start patching dynamic partitions ---')
3818 for p, u in self._partition_updates.items():
3819 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3820 script.Comment('Patch partition %s' % p)
3821 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3822 write_verify_script=False)
3823
3824 op_list_path = MakeTempFile()
3825 with open(op_list_path, 'w') as f:
3826 for line in self._op_list:
3827 f.write('{}\n'.format(line))
3828
3829 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3830
3831 script.Comment('Update dynamic partition metadata')
3832 script.AppendExtra('assert(update_dynamic_partitions('
3833 'package_extract_file("dynamic_partitions_op_list")));')
3834
3835 if write_verify_script:
3836 for p, u in self._partition_updates.items():
3837 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3838 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003839 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003840
3841 for p, u in self._partition_updates.items():
3842 if u.tgt_size and u.src_size <= u.tgt_size:
3843 script.Comment('Patch partition %s' % p)
3844 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3845 write_verify_script=write_verify_script)
3846 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003847 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003848
3849 script.Comment('--- End patching dynamic partitions ---')
3850
3851 def _Compute(self):
3852 self._op_list = list()
3853
3854 def append(line):
3855 self._op_list.append(line)
3856
3857 def comment(line):
3858 self._op_list.append("# %s" % line)
3859
3860 if self._remove_all_before_apply:
3861 comment('Remove all existing dynamic partitions and groups before '
3862 'applying full OTA')
3863 append('remove_all_groups')
3864
3865 for p, u in self._partition_updates.items():
3866 if u.src_group and not u.tgt_group:
3867 append('remove %s' % p)
3868
3869 for p, u in self._partition_updates.items():
3870 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3871 comment('Move partition %s from %s to default' % (p, u.src_group))
3872 append('move %s default' % p)
3873
3874 for p, u in self._partition_updates.items():
3875 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3876 comment('Shrink partition %s from %d to %d' %
3877 (p, u.src_size, u.tgt_size))
3878 append('resize %s %s' % (p, u.tgt_size))
3879
3880 for g, u in self._group_updates.items():
3881 if u.src_size is not None and u.tgt_size is None:
3882 append('remove_group %s' % g)
3883 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003884 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003885 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3886 append('resize_group %s %d' % (g, u.tgt_size))
3887
3888 for g, u in self._group_updates.items():
3889 if u.src_size is None and u.tgt_size is not None:
3890 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3891 append('add_group %s %d' % (g, u.tgt_size))
3892 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003893 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003894 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3895 append('resize_group %s %d' % (g, u.tgt_size))
3896
3897 for p, u in self._partition_updates.items():
3898 if u.tgt_group and not u.src_group:
3899 comment('Add partition %s to group %s' % (p, u.tgt_group))
3900 append('add %s %s' % (p, u.tgt_group))
3901
3902 for p, u in self._partition_updates.items():
3903 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003904 comment('Grow partition %s from %d to %d' %
3905 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003906 append('resize %s %d' % (p, u.tgt_size))
3907
3908 for p, u in self._partition_updates.items():
3909 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3910 comment('Move partition %s from default to %s' %
3911 (p, u.tgt_group))
3912 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003913
3914
jiajia tangf3f842b2021-03-17 21:49:44 +08003915def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003916 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003917 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003918
3919 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003920 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003921
3922 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003923 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003924 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003925 tmp_dir = MakeTempDir('boot_', suffix='.img')
3926 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003927 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3928 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003929 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3930 if not os.path.isfile(ramdisk):
3931 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3932 return None
3933 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003934 if ramdisk_format == RamdiskFormat.LZ4:
3935 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3936 elif ramdisk_format == RamdiskFormat.GZ:
3937 with open(ramdisk, 'rb') as input_stream:
3938 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003939 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3940 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003941 p2.wait()
3942 else:
3943 logger.error('Only support lz4 or minigzip ramdisk format.')
3944 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003945
3946 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3947 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3948 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3949 # the host environment.
3950 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003951 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003952
Yifan Hongc65a0542021-01-07 14:21:01 -08003953 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3954 prop_file = os.path.join(extracted_ramdisk, search_path)
3955 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003956 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003957 logger.warning(
3958 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003959
Yifan Hong7dc51172021-01-12 11:27:39 -08003960 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003961
Yifan Hong85ac5012021-01-07 14:43:46 -08003962 except ExternalError as e:
3963 logger.warning('Unable to get boot image build props: %s', e)
3964 return None
3965
3966
3967def GetBootImageTimestamp(boot_img):
3968 """
3969 Get timestamp from ramdisk within the boot image
3970
3971 Args:
3972 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3973
3974 Return:
3975 An integer that corresponds to the timestamp of the boot image, or None
3976 if file has unknown format. Raise exception if an unexpected error has
3977 occurred.
3978 """
3979 prop_file = GetBootImageBuildProp(boot_img)
3980 if not prop_file:
3981 return None
3982
3983 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3984 if props is None:
3985 return None
3986
3987 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003988 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3989 if timestamp:
3990 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003991 logger.warning(
3992 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003993 return None
3994
3995 except ExternalError as e:
3996 logger.warning('Unable to get boot image timestamp: %s', e)
3997 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003998
3999
4000def GetCareMap(which, imgname):
4001 """Returns the care_map string for the given partition.
4002
4003 Args:
4004 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
4005 imgname: The filename of the image.
4006
4007 Returns:
4008 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
4009 RangeSet; or None.
4010 """
4011 assert which in PARTITIONS_WITH_CARE_MAP
4012
4013 # which + "_image_size" contains the size that the actual filesystem image
4014 # resides in, which is all that needs to be verified. The additional blocks in
4015 # the image file contain verity metadata, by reading which would trigger
4016 # invalid reads.
4017 image_size = OPTIONS.info_dict.get(which + "_image_size")
4018 if not image_size:
4019 return None
4020
David Anderson9e95a022021-08-31 21:32:45 -07004021 disable_sparse = OPTIONS.info_dict.get(which + "_disable_sparse")
4022
Kelvin Zhang27324132021-03-22 15:38:38 -04004023 image_blocks = int(image_size) // 4096 - 1
Kelvin Zhang98ef7bb2022-01-07 14:41:46 -08004024 # It's OK for image_blocks to be 0, because care map ranges are inclusive.
4025 # So 0-0 means "just block 0", which is valid.
4026 assert image_blocks >= 0, "blocks for {} must be non-negative, image size: {}".format(
4027 which, image_size)
Kelvin Zhang27324132021-03-22 15:38:38 -04004028
4029 # For sparse images, we will only check the blocks that are listed in the care
4030 # map, i.e. the ones with meaningful data.
David Anderson9e95a022021-08-31 21:32:45 -07004031 if "extfs_sparse_flag" in OPTIONS.info_dict and not disable_sparse:
Kelvin Zhang27324132021-03-22 15:38:38 -04004032 simg = sparse_img.SparseImage(imgname)
4033 care_map_ranges = simg.care_map.intersect(
4034 rangelib.RangeSet("0-{}".format(image_blocks)))
4035
4036 # Otherwise for non-sparse images, we read all the blocks in the filesystem
4037 # image.
4038 else:
4039 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
4040
4041 return [which, care_map_ranges.to_string_raw()]
4042
4043
4044def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
4045 """Generates and adds care_map.pb for a/b partition that has care_map.
4046
4047 Args:
4048 output_file: The output zip file (needs to be already open),
4049 or file path to write care_map.pb.
4050 ab_partitions: The list of A/B partitions.
4051 image_paths: A map from the partition name to the image path.
4052 """
4053 if not output_file:
4054 raise ExternalError('Expected output_file for AddCareMapForAbOta')
4055
4056 care_map_list = []
4057 for partition in ab_partitions:
4058 partition = partition.strip()
4059 if partition not in PARTITIONS_WITH_CARE_MAP:
4060 continue
4061
4062 verity_block_device = "{}_verity_block_device".format(partition)
4063 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
4064 if (verity_block_device in OPTIONS.info_dict or
4065 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
4066 if partition not in image_paths:
4067 logger.warning('Potential partition with care_map missing from images: %s',
4068 partition)
4069 continue
4070 image_path = image_paths[partition]
4071 if not os.path.exists(image_path):
4072 raise ExternalError('Expected image at path {}'.format(image_path))
4073
4074 care_map = GetCareMap(partition, image_path)
4075 if not care_map:
4076 continue
4077 care_map_list += care_map
4078
4079 # adds fingerprint field to the care_map
4080 # TODO(xunchang) revisit the fingerprint calculation for care_map.
4081 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
4082 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
4083 "ro.{}.build.thumbprint".format(partition)]
4084
4085 present_props = [x for x in prop_name_list if
4086 partition_props and partition_props.GetProp(x)]
4087 if not present_props:
4088 logger.warning(
4089 "fingerprint is not present for partition %s", partition)
4090 property_id, fingerprint = "unknown", "unknown"
4091 else:
4092 property_id = present_props[0]
4093 fingerprint = partition_props.GetProp(property_id)
4094 care_map_list += [property_id, fingerprint]
4095
4096 if not care_map_list:
4097 return
4098
4099 # Converts the list into proto buf message by calling care_map_generator; and
4100 # writes the result to a temp file.
4101 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
4102 suffix=".txt")
4103 with open(temp_care_map_text, 'w') as text_file:
4104 text_file.write('\n'.join(care_map_list))
4105
4106 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
4107 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
4108 RunAndCheckOutput(care_map_gen_cmd)
4109
4110 if not isinstance(output_file, zipfile.ZipFile):
4111 shutil.copy(temp_care_map, output_file)
4112 return
4113 # output_file is a zip file
4114 care_map_path = "META/care_map.pb"
4115 if care_map_path in output_file.namelist():
4116 # Copy the temp file into the OPTIONS.input_tmp dir and update the
4117 # replace_updated_files_list used by add_img_to_target_files
4118 if not OPTIONS.replace_updated_files_list:
4119 OPTIONS.replace_updated_files_list = []
4120 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
4121 OPTIONS.replace_updated_files_list.append(care_map_path)
4122 else:
4123 ZipWrite(output_file, temp_care_map, arcname=care_map_path)
Kelvin Zhang26390482021-11-02 14:31:10 -07004124
4125
4126def IsSparseImage(filepath):
4127 with open(filepath, 'rb') as fp:
4128 # Magic for android sparse image format
4129 # https://source.android.com/devices/bootloader/images
4130 return fp.read(4) == b'\x3A\xFF\x26\xED'