blob: c7081541209c00a1bb50f2ea38d9384072b32fb2 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080071 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070072 self.extra_signapk_args = []
73 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080074 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080075 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070076 self.public_key_suffix = ".x509.pem"
77 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070078 # use otatools built boot_signer by default
79 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070080 self.boot_signer_args = []
81 self.verity_signer_path = None
82 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070083 self.verbose = False
84 self.tempfiles = []
85 self.device_specific = None
86 self.extras = {}
87 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070088 self.source_info_dict = None
89 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070090 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070091 # Stash size cannot exceed cache_size * threshold.
92 self.cache_size = None
93 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070094 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -070095 self.host_tools = {}
Dan Albert8b72aef2015-03-23 19:13:21 -070096
97
98OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -070099
Tao Bao71197512018-10-11 14:08:45 -0700100# The block size that's used across the releasetools scripts.
101BLOCK_SIZE = 4096
102
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800103# Values for "certificate" in apkcerts that mean special things.
104SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
105
Tao Bao5cc0abb2019-03-21 10:18:05 -0700106# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
107# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800108# descriptor into vbmeta.img. When adding a new entry here, the
109# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
110# accordingly.
Andrew Sculle077cf72021-02-18 10:27:29 +0000111AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
112 'system', 'system_ext', 'vendor', 'vendor_boot',
113 'vendor_dlkm', 'odm_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800114
Tao Bao08c190f2019-06-03 23:07:58 -0700115# Chained VBMeta partitions.
116AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
117
Tianjie Xu861f4132018-09-12 11:49:33 -0700118# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400119PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700120 'system',
121 'vendor',
122 'product',
123 'system_ext',
124 'odm',
125 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700126 'odm_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400127]
Tianjie Xu861f4132018-09-12 11:49:33 -0700128
Yifan Hong5057b952021-01-07 14:09:57 -0800129# Partitions with a build.prop file
Yifan Hong10482a22021-01-07 14:38:41 -0800130PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800131
Yifan Hongc65a0542021-01-07 14:21:01 -0800132# See sysprop.mk. If file is moved, add new search paths here; don't remove
133# existing search paths.
134RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700135
Kelvin Zhang563750f2021-04-28 12:46:17 -0400136
Tianjie Xu209db462016-05-24 17:34:52 -0700137class ErrorCode(object):
138 """Define error_codes for failures that happen during the actual
139 update package installation.
140
141 Error codes 0-999 are reserved for failures before the package
142 installation (i.e. low battery, package verification failure).
143 Detailed code in 'bootable/recovery/error_code.h' """
144
145 SYSTEM_VERIFICATION_FAILURE = 1000
146 SYSTEM_UPDATE_FAILURE = 1001
147 SYSTEM_UNEXPECTED_CONTENTS = 1002
148 SYSTEM_NONZERO_CONTENTS = 1003
149 SYSTEM_RECOVER_FAILURE = 1004
150 VENDOR_VERIFICATION_FAILURE = 2000
151 VENDOR_UPDATE_FAILURE = 2001
152 VENDOR_UNEXPECTED_CONTENTS = 2002
153 VENDOR_NONZERO_CONTENTS = 2003
154 VENDOR_RECOVER_FAILURE = 2004
155 OEM_PROP_MISMATCH = 3000
156 FINGERPRINT_MISMATCH = 3001
157 THUMBPRINT_MISMATCH = 3002
158 OLDER_BUILD = 3003
159 DEVICE_MISMATCH = 3004
160 BAD_PATCH_FILE = 3005
161 INSUFFICIENT_CACHE_SPACE = 3006
162 TUNE_PARTITION_FAILURE = 3007
163 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800164
Tao Bao80921982018-03-21 21:02:19 -0700165
Dan Albert8b72aef2015-03-23 19:13:21 -0700166class ExternalError(RuntimeError):
167 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700168
169
Tao Bao32fcdab2018-10-12 10:30:39 -0700170def InitLogging():
171 DEFAULT_LOGGING_CONFIG = {
172 'version': 1,
173 'disable_existing_loggers': False,
174 'formatters': {
175 'standard': {
176 'format':
177 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
178 'datefmt': '%Y-%m-%d %H:%M:%S',
179 },
180 },
181 'handlers': {
182 'default': {
183 'class': 'logging.StreamHandler',
184 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700185 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700186 },
187 },
188 'loggers': {
189 '': {
190 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700191 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700192 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700193 }
194 }
195 }
196 env_config = os.getenv('LOGGING_CONFIG')
197 if env_config:
198 with open(env_config) as f:
199 config = json.load(f)
200 else:
201 config = DEFAULT_LOGGING_CONFIG
202
203 # Increase the logging level for verbose mode.
204 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700205 config = copy.deepcopy(config)
206 config['handlers']['default']['level'] = 'INFO'
207
208 if OPTIONS.logfile:
209 config = copy.deepcopy(config)
210 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400211 'class': 'logging.FileHandler',
212 'formatter': 'standard',
213 'level': 'INFO',
214 'mode': 'w',
215 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700216 }
217 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700218
219 logging.config.dictConfig(config)
220
221
Yifan Hong8e332ff2020-07-29 17:51:55 -0700222def SetHostToolLocation(tool_name, location):
223 OPTIONS.host_tools[tool_name] = location
224
Kelvin Zhang563750f2021-04-28 12:46:17 -0400225
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900226def FindHostToolPath(tool_name):
227 """Finds the path to the host tool.
228
229 Args:
230 tool_name: name of the tool to find
231 Returns:
232 path to the tool if found under either one of the host_tools map or under
233 the same directory as this binary is located at. If not found, tool_name
234 is returned.
235 """
236 if tool_name in OPTIONS.host_tools:
237 return OPTIONS.host_tools[tool_name]
238
239 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
240 tool_path = os.path.join(my_dir, tool_name)
241 if os.path.exists(tool_path):
242 return tool_path
243
244 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700245
Kelvin Zhang563750f2021-04-28 12:46:17 -0400246
Tao Bao39451582017-05-04 11:10:47 -0700247def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700248 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700249
Tao Bao73dd4f42018-10-04 16:25:33 -0700250 Args:
251 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700252 verbose: Whether the commands should be shown. Default to the global
253 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700254 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
255 stdin, etc. stdout and stderr will default to subprocess.PIPE and
256 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800257 universal_newlines will default to True, as most of the users in
258 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700259
260 Returns:
261 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700262 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700263 if 'stdout' not in kwargs and 'stderr' not in kwargs:
264 kwargs['stdout'] = subprocess.PIPE
265 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800266 if 'universal_newlines' not in kwargs:
267 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700268
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900269 if args:
270 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700271 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900272 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700273
Kelvin Zhang766eea72021-06-03 09:36:08 -0400274 if verbose is None:
275 verbose = OPTIONS.verbose
276
Tao Bao32fcdab2018-10-12 10:30:39 -0700277 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400278 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700279 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700280 return subprocess.Popen(args, **kwargs)
281
282
Tao Bao986ee862018-10-04 15:46:16 -0700283def RunAndCheckOutput(args, verbose=None, **kwargs):
284 """Runs the given command and returns the output.
285
286 Args:
287 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700288 verbose: Whether the commands should be shown. Default to the global
289 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700290 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
291 stdin, etc. stdout and stderr will default to subprocess.PIPE and
292 subprocess.STDOUT respectively unless caller specifies any of them.
293
294 Returns:
295 The output string.
296
297 Raises:
298 ExternalError: On non-zero exit from the command.
299 """
Tao Bao986ee862018-10-04 15:46:16 -0700300 proc = Run(args, verbose=verbose, **kwargs)
301 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800302 if output is None:
303 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700304 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400305 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700306 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700307 if proc.returncode != 0:
308 raise ExternalError(
309 "Failed to run command '{}' (exit code {}):\n{}".format(
310 args, proc.returncode, output))
311 return output
312
313
Tao Baoc765cca2018-01-31 17:32:40 -0800314def RoundUpTo4K(value):
315 rounded_up = value + 4095
316 return rounded_up - (rounded_up % 4096)
317
318
Ying Wang7e6d4e42010-12-13 16:25:36 -0800319def CloseInheritedPipes():
320 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
321 before doing other work."""
322 if platform.system() != "Darwin":
323 return
324 for d in range(3, 1025):
325 try:
326 stat = os.fstat(d)
327 if stat is not None:
328 pipebit = stat[0] & 0x1000
329 if pipebit != 0:
330 os.close(d)
331 except OSError:
332 pass
333
334
Tao Bao1c320f82019-10-04 23:25:12 -0700335class BuildInfo(object):
336 """A class that holds the information for a given build.
337
338 This class wraps up the property querying for a given source or target build.
339 It abstracts away the logic of handling OEM-specific properties, and caches
340 the commonly used properties such as fingerprint.
341
342 There are two types of info dicts: a) build-time info dict, which is generated
343 at build time (i.e. included in a target_files zip); b) OEM info dict that is
344 specified at package generation time (via command line argument
345 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
346 having "oem_fingerprint_properties" in build-time info dict), all the queries
347 would be answered based on build-time info dict only. Otherwise if using
348 OEM-specific properties, some of them will be calculated from two info dicts.
349
350 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800351 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700352
353 Attributes:
354 info_dict: The build-time info dict.
355 is_ab: Whether it's a build that uses A/B OTA.
356 oem_dicts: A list of OEM dicts.
357 oem_props: A list of OEM properties that should be read from OEM dicts; None
358 if the build doesn't use any OEM-specific property.
359 fingerprint: The fingerprint of the build, which would be calculated based
360 on OEM properties if applicable.
361 device: The device name, which could come from OEM dicts if applicable.
362 """
363
364 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
365 "ro.product.manufacturer", "ro.product.model",
366 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700367 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
368 "product", "odm", "vendor", "system_ext", "system"]
369 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
370 "product", "product_services", "odm", "vendor", "system"]
371 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700372
Tianjiefdda51d2021-05-05 14:46:35 -0700373 # The length of vbmeta digest to append to the fingerprint
374 _VBMETA_DIGEST_SIZE_USED = 8
375
376 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700377 """Initializes a BuildInfo instance with the given dicts.
378
379 Note that it only wraps up the given dicts, without making copies.
380
381 Arguments:
382 info_dict: The build-time info dict.
383 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
384 that it always uses the first dict to calculate the fingerprint or the
385 device name. The rest would be used for asserting OEM properties only
386 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700387 use_legacy_id: Use the legacy build id to construct the fingerprint. This
388 is used when we need a BuildInfo class, while the vbmeta digest is
389 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700390
391 Raises:
392 ValueError: On invalid inputs.
393 """
394 self.info_dict = info_dict
395 self.oem_dicts = oem_dicts
396
397 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700398 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700399
Hongguang Chend7c160f2020-05-03 21:24:26 -0700400 # Skip _oem_props if oem_dicts is None to use BuildInfo in
401 # sign_target_files_apks
402 if self.oem_dicts:
403 self._oem_props = info_dict.get("oem_fingerprint_properties")
404 else:
405 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700406
Daniel Normand5fe8622020-01-08 17:01:11 -0800407 def check_fingerprint(fingerprint):
408 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
409 raise ValueError(
410 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
411 "3.2.2. Build Parameters.".format(fingerprint))
412
Daniel Normand5fe8622020-01-08 17:01:11 -0800413 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800414 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800415 try:
416 fingerprint = self.CalculatePartitionFingerprint(partition)
417 check_fingerprint(fingerprint)
418 self._partition_fingerprints[partition] = fingerprint
419 except ExternalError:
420 continue
421 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800422 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800423 # need a fingerprint when creating the image.
424 self._partition_fingerprints[
425 "system_other"] = self._partition_fingerprints["system"]
426
Tao Bao1c320f82019-10-04 23:25:12 -0700427 # These two should be computed only after setting self._oem_props.
428 self._device = self.GetOemProperty("ro.product.device")
429 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800430 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700431
432 @property
433 def is_ab(self):
434 return self._is_ab
435
436 @property
437 def device(self):
438 return self._device
439
440 @property
441 def fingerprint(self):
442 return self._fingerprint
443
444 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400445 def is_vabc(self):
446 vendor_prop = self.info_dict.get("vendor.build.prop")
447 vabc_enabled = vendor_prop and \
448 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
449 return vabc_enabled
450
451 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400452 def vendor_suppressed_vabc(self):
453 vendor_prop = self.info_dict.get("vendor.build.prop")
454 vabc_suppressed = vendor_prop and \
455 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
456 return vabc_suppressed and vabc_suppressed.lower() == "true"
457
458 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700459 def oem_props(self):
460 return self._oem_props
461
Kelvin Zhanga19fb312021-07-26 14:05:02 -0400462 @property
463 def avb_enabled(self):
464 return self.get("avb_enable") == "true"
465
Tao Bao1c320f82019-10-04 23:25:12 -0700466 def __getitem__(self, key):
467 return self.info_dict[key]
468
469 def __setitem__(self, key, value):
470 self.info_dict[key] = value
471
472 def get(self, key, default=None):
473 return self.info_dict.get(key, default)
474
475 def items(self):
476 return self.info_dict.items()
477
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000478 def _GetRawBuildProp(self, prop, partition):
479 prop_file = '{}.build.prop'.format(
480 partition) if partition else 'build.prop'
481 partition_props = self.info_dict.get(prop_file)
482 if not partition_props:
483 return None
484 return partition_props.GetProp(prop)
485
Daniel Normand5fe8622020-01-08 17:01:11 -0800486 def GetPartitionBuildProp(self, prop, partition):
487 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800488
489 # Boot image uses ro.[product.]bootimage instead of boot.
Kelvin Zhang563750f2021-04-28 12:46:17 -0400490 prop_partition = "bootimage" if partition == "boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800491
Daniel Normand5fe8622020-01-08 17:01:11 -0800492 # If provided a partition for this property, only look within that
493 # partition's build.prop.
494 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800495 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800496 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800497 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000498
499 prop_val = self._GetRawBuildProp(prop, partition)
500 if prop_val is not None:
501 return prop_val
502 raise ExternalError("couldn't find %s in %s.build.prop" %
503 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800504
Tao Bao1c320f82019-10-04 23:25:12 -0700505 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800506 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700507 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
508 return self._ResolveRoProductBuildProp(prop)
509
Tianjiefdda51d2021-05-05 14:46:35 -0700510 if prop == "ro.build.id":
511 return self._GetBuildId()
512
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000513 prop_val = self._GetRawBuildProp(prop, None)
514 if prop_val is not None:
515 return prop_val
516
517 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700518
519 def _ResolveRoProductBuildProp(self, prop):
520 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000521 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700522 if prop_val:
523 return prop_val
524
Steven Laver8e2086e2020-04-27 16:26:31 -0700525 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000526 source_order_val = self._GetRawBuildProp(
527 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700528 if source_order_val:
529 source_order = source_order_val.split(",")
530 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700531 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700532
533 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700534 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700535 raise ExternalError(
536 "Invalid ro.product.property_source_order '{}'".format(source_order))
537
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000538 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700539 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000540 "ro.product", "ro.product.{}".format(source_partition), 1)
541 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700542 if prop_val:
543 return prop_val
544
545 raise ExternalError("couldn't resolve {}".format(prop))
546
Steven Laver8e2086e2020-04-27 16:26:31 -0700547 def _GetRoProductPropsDefaultSourceOrder(self):
548 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
549 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000550 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700551 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000552 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700553 if android_version == "10":
554 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
555 # NOTE: float() conversion of android_version will have rounding error.
556 # We are checking for "9" or less, and using "< 10" is well outside of
557 # possible floating point rounding.
558 try:
559 android_version_val = float(android_version)
560 except ValueError:
561 android_version_val = 0
562 if android_version_val < 10:
563 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
564 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
565
Tianjieb37c5be2020-10-15 21:27:10 -0700566 def _GetPlatformVersion(self):
567 version_sdk = self.GetBuildProp("ro.build.version.sdk")
568 # init code switches to version_release_or_codename (see b/158483506). After
569 # API finalization, release_or_codename will be the same as release. This
570 # is the best effort to support pre-S dev stage builds.
571 if int(version_sdk) >= 30:
572 try:
573 return self.GetBuildProp("ro.build.version.release_or_codename")
574 except ExternalError:
575 logger.warning('Failed to find ro.build.version.release_or_codename')
576
577 return self.GetBuildProp("ro.build.version.release")
578
Tianjiefdda51d2021-05-05 14:46:35 -0700579 def _GetBuildId(self):
580 build_id = self._GetRawBuildProp("ro.build.id", None)
581 if build_id:
582 return build_id
583
584 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
585 if not legacy_build_id:
586 raise ExternalError("Couldn't find build id in property file")
587
588 if self.use_legacy_id:
589 return legacy_build_id
590
591 # Append the top 8 chars of vbmeta digest to the existing build id. The
592 # logic needs to match the one in init, so that OTA can deliver correctly.
593 avb_enable = self.info_dict.get("avb_enable") == "true"
594 if not avb_enable:
595 raise ExternalError("AVB isn't enabled when using legacy build id")
596
597 vbmeta_digest = self.info_dict.get("vbmeta_digest")
598 if not vbmeta_digest:
599 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
600 " id")
601 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
602 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
603
604 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
605 return legacy_build_id + '.' + digest_prefix
606
Tianjieb37c5be2020-10-15 21:27:10 -0700607 def _GetPartitionPlatformVersion(self, partition):
608 try:
609 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
610 partition)
611 except ExternalError:
612 return self.GetPartitionBuildProp("ro.build.version.release",
613 partition)
614
Tao Bao1c320f82019-10-04 23:25:12 -0700615 def GetOemProperty(self, key):
616 if self.oem_props is not None and key in self.oem_props:
617 return self.oem_dicts[0][key]
618 return self.GetBuildProp(key)
619
Daniel Normand5fe8622020-01-08 17:01:11 -0800620 def GetPartitionFingerprint(self, partition):
621 return self._partition_fingerprints.get(partition, None)
622
623 def CalculatePartitionFingerprint(self, partition):
624 try:
625 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
626 except ExternalError:
627 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
628 self.GetPartitionBuildProp("ro.product.brand", partition),
629 self.GetPartitionBuildProp("ro.product.name", partition),
630 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700631 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800632 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400633 self.GetPartitionBuildProp(
634 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800635 self.GetPartitionBuildProp("ro.build.type", partition),
636 self.GetPartitionBuildProp("ro.build.tags", partition))
637
Tao Bao1c320f82019-10-04 23:25:12 -0700638 def CalculateFingerprint(self):
639 if self.oem_props is None:
640 try:
641 return self.GetBuildProp("ro.build.fingerprint")
642 except ExternalError:
643 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
644 self.GetBuildProp("ro.product.brand"),
645 self.GetBuildProp("ro.product.name"),
646 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700647 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700648 self.GetBuildProp("ro.build.id"),
649 self.GetBuildProp("ro.build.version.incremental"),
650 self.GetBuildProp("ro.build.type"),
651 self.GetBuildProp("ro.build.tags"))
652 return "%s/%s/%s:%s" % (
653 self.GetOemProperty("ro.product.brand"),
654 self.GetOemProperty("ro.product.name"),
655 self.GetOemProperty("ro.product.device"),
656 self.GetBuildProp("ro.build.thumbprint"))
657
658 def WriteMountOemScript(self, script):
659 assert self.oem_props is not None
660 recovery_mount_options = self.info_dict.get("recovery_mount_options")
661 script.Mount("/oem", recovery_mount_options)
662
663 def WriteDeviceAssertions(self, script, oem_no_mount):
664 # Read the property directly if not using OEM properties.
665 if not self.oem_props:
666 script.AssertDevice(self.device)
667 return
668
669 # Otherwise assert OEM properties.
670 if not self.oem_dicts:
671 raise ExternalError(
672 "No OEM file provided to answer expected assertions")
673
674 for prop in self.oem_props.split():
675 values = []
676 for oem_dict in self.oem_dicts:
677 if prop in oem_dict:
678 values.append(oem_dict[prop])
679 if not values:
680 raise ExternalError(
681 "The OEM file is missing the property %s" % (prop,))
682 script.AssertOemProperty(prop, values, oem_no_mount)
683
684
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000685def ReadFromInputFile(input_file, fn):
686 """Reads the contents of fn from input zipfile or directory."""
687 if isinstance(input_file, zipfile.ZipFile):
688 return input_file.read(fn).decode()
689 else:
690 path = os.path.join(input_file, *fn.split("/"))
691 try:
692 with open(path) as f:
693 return f.read()
694 except IOError as e:
695 if e.errno == errno.ENOENT:
696 raise KeyError(fn)
697
698
Yifan Hong10482a22021-01-07 14:38:41 -0800699def ExtractFromInputFile(input_file, fn):
700 """Extracts the contents of fn from input zipfile or directory into a file."""
701 if isinstance(input_file, zipfile.ZipFile):
702 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500703 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800704 f.write(input_file.read(fn))
705 return tmp_file
706 else:
707 file = os.path.join(input_file, *fn.split("/"))
708 if not os.path.exists(file):
709 raise KeyError(fn)
710 return file
711
Kelvin Zhang563750f2021-04-28 12:46:17 -0400712
jiajia tangf3f842b2021-03-17 21:49:44 +0800713class RamdiskFormat(object):
714 LZ4 = 1
715 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800716
Kelvin Zhang563750f2021-04-28 12:46:17 -0400717
jiajia tang836f76b2021-04-02 14:48:26 +0800718def _GetRamdiskFormat(info_dict):
719 if info_dict.get('lz4_ramdisks') == 'true':
720 ramdisk_format = RamdiskFormat.LZ4
721 else:
722 ramdisk_format = RamdiskFormat.GZ
723 return ramdisk_format
724
Kelvin Zhang563750f2021-04-28 12:46:17 -0400725
Tao Bao410ad8b2018-08-24 12:08:38 -0700726def LoadInfoDict(input_file, repacking=False):
727 """Loads the key/value pairs from the given input target_files.
728
Tianjiea85bdf02020-07-29 11:56:19 -0700729 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700730 checks and returns the parsed key/value pairs for to the given build. It's
731 usually called early when working on input target_files files, e.g. when
732 generating OTAs, or signing builds. Note that the function may be called
733 against an old target_files file (i.e. from past dessert releases). So the
734 property parsing needs to be backward compatible.
735
736 In a `META/misc_info.txt`, a few properties are stored as links to the files
737 in the PRODUCT_OUT directory. It works fine with the build system. However,
738 they are no longer available when (re)generating images from target_files zip.
739 When `repacking` is True, redirect these properties to the actual files in the
740 unzipped directory.
741
742 Args:
743 input_file: The input target_files file, which could be an open
744 zipfile.ZipFile instance, or a str for the dir that contains the files
745 unzipped from a target_files file.
746 repacking: Whether it's trying repack an target_files file after loading the
747 info dict (default: False). If so, it will rewrite a few loaded
748 properties (e.g. selinux_fc, root_dir) to point to the actual files in
749 target_files file. When doing repacking, `input_file` must be a dir.
750
751 Returns:
752 A dict that contains the parsed key/value pairs.
753
754 Raises:
755 AssertionError: On invalid input arguments.
756 ValueError: On malformed input values.
757 """
758 if repacking:
759 assert isinstance(input_file, str), \
760 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700761
Doug Zongkerc9253822014-02-04 12:17:58 -0800762 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000763 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800764
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700765 try:
Michael Runge6e836112014-04-15 17:40:21 -0700766 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700767 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700768 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700769
Tao Bao410ad8b2018-08-24 12:08:38 -0700770 if "recovery_api_version" not in d:
771 raise ValueError("Failed to find 'recovery_api_version'")
772 if "fstab_version" not in d:
773 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800774
Tao Bao410ad8b2018-08-24 12:08:38 -0700775 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700776 # "selinux_fc" properties should point to the file_contexts files
777 # (file_contexts.bin) under META/.
778 for key in d:
779 if key.endswith("selinux_fc"):
780 fc_basename = os.path.basename(d[key])
781 fc_config = os.path.join(input_file, "META", fc_basename)
782 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700783
Daniel Norman72c626f2019-05-13 15:58:14 -0700784 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700785
Tom Cherryd14b8952018-08-09 14:26:00 -0700786 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700787 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700788 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700789 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700790
David Anderson0ec64ac2019-12-06 12:21:18 -0800791 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700792 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Yifan Hongf496f1b2020-07-15 16:52:59 -0700793 "vendor_dlkm", "odm_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800794 key_name = part_name + "_base_fs_file"
795 if key_name not in d:
796 continue
797 basename = os.path.basename(d[key_name])
798 base_fs_file = os.path.join(input_file, "META", basename)
799 if os.path.exists(base_fs_file):
800 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700801 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700802 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800803 "Failed to find %s base fs file: %s", part_name, base_fs_file)
804 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700805
Doug Zongker37974732010-09-16 17:44:38 -0700806 def makeint(key):
807 if key in d:
808 d[key] = int(d[key], 0)
809
810 makeint("recovery_api_version")
811 makeint("blocksize")
812 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700813 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700814 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700815 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700816 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800817 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700818
Steve Muckle903a1ca2020-05-07 17:32:10 -0700819 boot_images = "boot.img"
820 if "boot_images" in d:
821 boot_images = d["boot_images"]
822 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400823 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700824
Tao Bao765668f2019-10-04 22:03:00 -0700825 # Load recovery fstab if applicable.
826 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
jiajia tang836f76b2021-04-02 14:48:26 +0800827 ramdisk_format = _GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800828
Tianjie Xu861f4132018-09-12 11:49:33 -0700829 # Tries to load the build props for all partitions with care_map, including
830 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800831 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800832 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000833 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800834 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700835 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800836
Tao Bao3ed35d32019-10-07 20:48:48 -0700837 # Set up the salt (based on fingerprint) that will be used when adding AVB
838 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800839 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700840 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800841 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800842 fingerprint = build_info.GetPartitionFingerprint(partition)
843 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400844 d["avb_{}_salt".format(partition)] = sha256(
845 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700846
847 # Set the vbmeta digest if exists
848 try:
849 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
850 except KeyError:
851 pass
852
Kelvin Zhang39aea442020-08-17 11:04:25 -0400853 try:
854 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
855 except KeyError:
856 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700857 return d
858
Tao Baod1de6f32017-03-01 16:38:48 -0800859
Daniel Norman4cc9df62019-07-18 10:11:07 -0700860def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900861 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700862 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900863
Daniel Norman4cc9df62019-07-18 10:11:07 -0700864
865def LoadDictionaryFromFile(file_path):
866 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900867 return LoadDictionaryFromLines(lines)
868
869
Michael Runge6e836112014-04-15 17:40:21 -0700870def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700871 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700872 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700873 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700874 if not line or line.startswith("#"):
875 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700876 if "=" in line:
877 name, value = line.split("=", 1)
878 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700879 return d
880
Tao Baod1de6f32017-03-01 16:38:48 -0800881
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000882class PartitionBuildProps(object):
883 """The class holds the build prop of a particular partition.
884
885 This class loads the build.prop and holds the build properties for a given
886 partition. It also partially recognizes the 'import' statement in the
887 build.prop; and calculates alternative values of some specific build
888 properties during runtime.
889
890 Attributes:
891 input_file: a zipped target-file or an unzipped target-file directory.
892 partition: name of the partition.
893 props_allow_override: a list of build properties to search for the
894 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000895 build_props: a dict of build properties for the given partition.
896 prop_overrides: a set of props that are overridden by import.
897 placeholder_values: A dict of runtime variables' values to replace the
898 placeholders in the build.prop file. We expect exactly one value for
899 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800900 ramdisk_format: If name is "boot", the format of ramdisk inside the
901 boot image. Otherwise, its value is ignored.
902 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000903 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400904
Tianjie Xu9afb2212020-05-10 21:48:15 +0000905 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000906 self.input_file = input_file
907 self.partition = name
908 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000909 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000910 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000911 self.prop_overrides = set()
912 self.placeholder_values = {}
913 if placeholder_values:
914 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000915
916 @staticmethod
917 def FromDictionary(name, build_props):
918 """Constructs an instance from a build prop dictionary."""
919
920 props = PartitionBuildProps("unknown", name)
921 props.build_props = build_props.copy()
922 return props
923
924 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800925 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000926 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800927
928 if name == "boot":
Kelvin Zhang563750f2021-04-28 12:46:17 -0400929 data = PartitionBuildProps._ReadBootPropFile(
930 input_file, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800931 else:
932 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
933
934 props = PartitionBuildProps(input_file, name, placeholder_values)
935 props._LoadBuildProp(data)
936 return props
937
938 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800939 def _ReadBootPropFile(input_file, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800940 """
941 Read build.prop for boot image from input_file.
942 Return empty string if not found.
943 """
944 try:
945 boot_img = ExtractFromInputFile(input_file, 'IMAGES/boot.img')
946 except KeyError:
947 logger.warning('Failed to read IMAGES/boot.img')
948 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800949 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800950 if prop_file is None:
951 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500952 with open(prop_file, "r") as f:
953 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800954
955 @staticmethod
956 def _ReadPartitionPropFile(input_file, name):
957 """
958 Read build.prop for name from input_file.
959 Return empty string if not found.
960 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000961 data = ''
962 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
963 '{}/build.prop'.format(name.upper())]:
964 try:
965 data = ReadFromInputFile(input_file, prop_file)
966 break
967 except KeyError:
968 logger.warning('Failed to read %s', prop_file)
Yifan Hong10482a22021-01-07 14:38:41 -0800969 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000970
Yifan Hong125d0b62020-09-24 17:07:03 -0700971 @staticmethod
972 def FromBuildPropFile(name, build_prop_file):
973 """Constructs an instance from a build prop file."""
974
975 props = PartitionBuildProps("unknown", name)
976 with open(build_prop_file) as f:
977 props._LoadBuildProp(f.read())
978 return props
979
Tianjie Xu9afb2212020-05-10 21:48:15 +0000980 def _LoadBuildProp(self, data):
981 for line in data.split('\n'):
982 line = line.strip()
983 if not line or line.startswith("#"):
984 continue
985 if line.startswith("import"):
986 overrides = self._ImportParser(line)
987 duplicates = self.prop_overrides.intersection(overrides.keys())
988 if duplicates:
989 raise ValueError('prop {} is overridden multiple times'.format(
990 ','.join(duplicates)))
991 self.prop_overrides = self.prop_overrides.union(overrides.keys())
992 self.build_props.update(overrides)
993 elif "=" in line:
994 name, value = line.split("=", 1)
995 if name in self.prop_overrides:
996 raise ValueError('prop {} is set again after overridden by import '
997 'statement'.format(name))
998 self.build_props[name] = value
999
1000 def _ImportParser(self, line):
1001 """Parses the build prop in a given import statement."""
1002
1003 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001004 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001005 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001006
1007 if len(tokens) == 3:
1008 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1009 return {}
1010
Tianjie Xu9afb2212020-05-10 21:48:15 +00001011 import_path = tokens[1]
1012 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
1013 raise ValueError('Unrecognized import path {}'.format(line))
1014
1015 # We only recognize a subset of import statement that the init process
1016 # supports. And we can loose the restriction based on how the dynamic
1017 # fingerprint is used in practice. The placeholder format should be
1018 # ${placeholder}, and its value should be provided by the caller through
1019 # the placeholder_values.
1020 for prop, value in self.placeholder_values.items():
1021 prop_place_holder = '${{{}}}'.format(prop)
1022 if prop_place_holder in import_path:
1023 import_path = import_path.replace(prop_place_holder, value)
1024 if '$' in import_path:
1025 logger.info('Unresolved place holder in import path %s', import_path)
1026 return {}
1027
1028 import_path = import_path.replace('/{}'.format(self.partition),
1029 self.partition.upper())
1030 logger.info('Parsing build props override from %s', import_path)
1031
1032 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1033 d = LoadDictionaryFromLines(lines)
1034 return {key: val for key, val in d.items()
1035 if key in self.props_allow_override}
1036
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001037 def GetProp(self, prop):
1038 return self.build_props.get(prop)
1039
1040
Tianjie Xucfa86222016-03-07 16:31:19 -08001041def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1042 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001043 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001044 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001045 self.mount_point = mount_point
1046 self.fs_type = fs_type
1047 self.device = device
1048 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001049 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001050 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001051
1052 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001053 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001054 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001055 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001056 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001057
Tao Baod1de6f32017-03-01 16:38:48 -08001058 assert fstab_version == 2
1059
1060 d = {}
1061 for line in data.split("\n"):
1062 line = line.strip()
1063 if not line or line.startswith("#"):
1064 continue
1065
1066 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1067 pieces = line.split()
1068 if len(pieces) != 5:
1069 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1070
1071 # Ignore entries that are managed by vold.
1072 options = pieces[4]
1073 if "voldmanaged=" in options:
1074 continue
1075
1076 # It's a good line, parse it.
1077 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001078 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001079 options = options.split(",")
1080 for i in options:
1081 if i.startswith("length="):
1082 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001083 elif i == "slotselect":
1084 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001085 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001086 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001087 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001088
Tao Baod1de6f32017-03-01 16:38:48 -08001089 mount_flags = pieces[3]
1090 # Honor the SELinux context if present.
1091 context = None
1092 for i in mount_flags.split(","):
1093 if i.startswith("context="):
1094 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001095
Tao Baod1de6f32017-03-01 16:38:48 -08001096 mount_point = pieces[1]
1097 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001098 device=pieces[0], length=length, context=context,
1099 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001100
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001101 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001102 # system. Other areas assume system is always at "/system" so point /system
1103 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001104 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001105 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001106 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001107 return d
1108
1109
Tao Bao765668f2019-10-04 22:03:00 -07001110def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1111 """Finds the path to recovery fstab and loads its contents."""
1112 # recovery fstab is only meaningful when installing an update via recovery
1113 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001114 if info_dict.get('ab_update') == 'true' and \
1115 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001116 return None
1117
1118 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1119 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1120 # cases, since it may load the info_dict from an old build (e.g. when
1121 # generating incremental OTAs from that build).
1122 system_root_image = info_dict.get('system_root_image') == 'true'
1123 if info_dict.get('no_recovery') != 'true':
1124 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1125 if isinstance(input_file, zipfile.ZipFile):
1126 if recovery_fstab_path not in input_file.namelist():
1127 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1128 else:
1129 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1130 if not os.path.exists(path):
1131 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1132 return LoadRecoveryFSTab(
1133 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1134 system_root_image)
1135
1136 if info_dict.get('recovery_as_boot') == 'true':
1137 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1138 if isinstance(input_file, zipfile.ZipFile):
1139 if recovery_fstab_path not in input_file.namelist():
1140 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1141 else:
1142 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1143 if not os.path.exists(path):
1144 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1145 return LoadRecoveryFSTab(
1146 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1147 system_root_image)
1148
1149 return None
1150
1151
Doug Zongker37974732010-09-16 17:44:38 -07001152def DumpInfoDict(d):
1153 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001154 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001155
Dan Albert8b72aef2015-03-23 19:13:21 -07001156
Daniel Norman55417142019-11-25 16:04:36 -08001157def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001158 """Merges dynamic partition info variables.
1159
1160 Args:
1161 framework_dict: The dictionary of dynamic partition info variables from the
1162 partial framework target files.
1163 vendor_dict: The dictionary of dynamic partition info variables from the
1164 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001165
1166 Returns:
1167 The merged dynamic partition info dictionary.
1168 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001169
1170 def uniq_concat(a, b):
1171 combined = set(a.split(" "))
1172 combined.update(set(b.split(" ")))
1173 combined = [item.strip() for item in combined if item.strip()]
1174 return " ".join(sorted(combined))
1175
1176 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhang563750f2021-04-28 12:46:17 -04001177 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001178 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1179
1180 merged_dict = {"use_dynamic_partitions": "true"}
1181
1182 merged_dict["dynamic_partition_list"] = uniq_concat(
1183 framework_dict.get("dynamic_partition_list", ""),
1184 vendor_dict.get("dynamic_partition_list", ""))
1185
1186 # Super block devices are defined by the vendor dict.
1187 if "super_block_devices" in vendor_dict:
1188 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
1189 for block_device in merged_dict["super_block_devices"].split(" "):
1190 key = "super_%s_device_size" % block_device
1191 if key not in vendor_dict:
1192 raise ValueError("Vendor dict does not contain required key %s." % key)
1193 merged_dict[key] = vendor_dict[key]
1194
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001195 # Partition groups and group sizes are defined by the vendor dict because
1196 # these values may vary for each board that uses a shared system image.
1197 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001198 for partition_group in merged_dict["super_partition_groups"].split(" "):
1199 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001200 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001201 if key not in vendor_dict:
1202 raise ValueError("Vendor dict does not contain required key %s." % key)
1203 merged_dict[key] = vendor_dict[key]
1204
1205 # Set the partition group's partition list using a concatenation of the
1206 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001207 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001208 merged_dict[key] = uniq_concat(
1209 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301210
Daniel Normanb0c75912020-09-24 14:30:21 -07001211 # Various other flags should be copied from the vendor dict, if defined.
1212 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1213 "super_metadata_device", "super_partition_error_limit",
1214 "super_partition_size"):
1215 if key in vendor_dict.keys():
1216 merged_dict[key] = vendor_dict[key]
1217
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001218 return merged_dict
1219
1220
Daniel Norman21c34f72020-11-11 17:25:50 -08001221def PartitionMapFromTargetFiles(target_files_dir):
1222 """Builds a map from partition -> path within an extracted target files directory."""
1223 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1224 possible_subdirs = {
1225 "system": ["SYSTEM"],
1226 "vendor": ["VENDOR", "SYSTEM/vendor"],
1227 "product": ["PRODUCT", "SYSTEM/product"],
1228 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1229 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1230 "vendor_dlkm": [
1231 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1232 ],
1233 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
1234 }
1235 partition_map = {}
1236 for partition, subdirs in possible_subdirs.items():
1237 for subdir in subdirs:
1238 if os.path.exists(os.path.join(target_files_dir, subdir)):
1239 partition_map[partition] = subdir
1240 break
1241 return partition_map
1242
1243
Daniel Normand3351562020-10-29 12:33:11 -07001244def SharedUidPartitionViolations(uid_dict, partition_groups):
1245 """Checks for APK sharedUserIds that cross partition group boundaries.
1246
1247 This uses a single or merged build's shareduid_violation_modules.json
1248 output file, as generated by find_shareduid_violation.py or
1249 core/tasks/find-shareduid-violation.mk.
1250
1251 An error is defined as a sharedUserId that is found in a set of partitions
1252 that span more than one partition group.
1253
1254 Args:
1255 uid_dict: A dictionary created by using the standard json module to read a
1256 complete shareduid_violation_modules.json file.
1257 partition_groups: A list of groups, where each group is a list of
1258 partitions.
1259
1260 Returns:
1261 A list of error messages.
1262 """
1263 errors = []
1264 for uid, partitions in uid_dict.items():
1265 found_in_groups = [
1266 group for group in partition_groups
1267 if set(partitions.keys()) & set(group)
1268 ]
1269 if len(found_in_groups) > 1:
1270 errors.append(
1271 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1272 % (uid, ",".join(sorted(partitions.keys()))))
1273 return errors
1274
1275
Daniel Norman21c34f72020-11-11 17:25:50 -08001276def RunHostInitVerifier(product_out, partition_map):
1277 """Runs host_init_verifier on the init rc files within partitions.
1278
1279 host_init_verifier searches the etc/init path within each partition.
1280
1281 Args:
1282 product_out: PRODUCT_OUT directory, containing partition directories.
1283 partition_map: A map of partition name -> relative path within product_out.
1284 """
1285 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1286 cmd = ["host_init_verifier"]
1287 for partition, path in partition_map.items():
1288 if partition not in allowed_partitions:
1289 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1290 partition)
1291 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1292 # Add --property-contexts if the file exists on the partition.
1293 property_contexts = "%s_property_contexts" % (
1294 "plat" if partition == "system" else partition)
1295 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1296 property_contexts)
1297 if os.path.exists(property_contexts_path):
1298 cmd.append("--property-contexts=%s" % property_contexts_path)
1299 # Add the passwd file if the file exists on the partition.
1300 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1301 if os.path.exists(passwd_path):
1302 cmd.extend(["-p", passwd_path])
1303 return RunAndCheckOutput(cmd)
1304
1305
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001306def AppendAVBSigningArgs(cmd, partition):
1307 """Append signing arguments for avbtool."""
1308 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1309 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001310 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1311 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1312 if os.path.exists(new_key_path):
1313 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001314 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1315 if key_path and algorithm:
1316 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001317 avb_salt = OPTIONS.info_dict.get("avb_salt")
1318 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001319 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001320 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001321
1322
Tao Bao765668f2019-10-04 22:03:00 -07001323def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001324 """Returns the VBMeta arguments for partition.
1325
1326 It sets up the VBMeta argument by including the partition descriptor from the
1327 given 'image', or by configuring the partition as a chained partition.
1328
1329 Args:
1330 partition: The name of the partition (e.g. "system").
1331 image: The path to the partition image.
1332 info_dict: A dict returned by common.LoadInfoDict(). Will use
1333 OPTIONS.info_dict if None has been given.
1334
1335 Returns:
1336 A list of VBMeta arguments.
1337 """
1338 if info_dict is None:
1339 info_dict = OPTIONS.info_dict
1340
1341 # Check if chain partition is used.
1342 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001343 if not key_path:
1344 return ["--include_descriptors_from_image", image]
1345
1346 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1347 # into vbmeta.img. The recovery image will be configured on an independent
1348 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1349 # See details at
1350 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001351 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001352 return []
1353
1354 # Otherwise chain the partition into vbmeta.
1355 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1356 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001357
1358
Tao Bao02a08592018-07-22 12:40:45 -07001359def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1360 """Constructs and returns the arg to build or verify a chained partition.
1361
1362 Args:
1363 partition: The partition name.
1364 info_dict: The info dict to look up the key info and rollback index
1365 location.
1366 key: The key to be used for building or verifying the partition. Defaults to
1367 the key listed in info_dict.
1368
1369 Returns:
1370 A string of form "partition:rollback_index_location:key" that can be used to
1371 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001372 """
1373 if key is None:
1374 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001375 if key and not os.path.exists(key) and OPTIONS.search_path:
1376 new_key_path = os.path.join(OPTIONS.search_path, key)
1377 if os.path.exists(new_key_path):
1378 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001379 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001380 rollback_index_location = info_dict[
1381 "avb_" + partition + "_rollback_index_location"]
1382 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1383
1384
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001385def AppendGkiSigningArgs(cmd):
1386 """Append GKI signing arguments for mkbootimg."""
1387 # e.g., --gki_signing_key path/to/signing_key
1388 # --gki_signing_algorithm SHA256_RSA4096"
1389
1390 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
1391 # It's fine that a non-GKI boot.img has no gki_signing_key_path.
1392 if not key_path:
1393 return
1394
1395 if not os.path.exists(key_path) and OPTIONS.search_path:
1396 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1397 if os.path.exists(new_key_path):
1398 key_path = new_key_path
1399
1400 # Checks key_path exists, before appending --gki_signing_* args.
1401 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001402 raise ExternalError(
1403 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001404
1405 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
1406 if key_path and algorithm:
1407 cmd.extend(["--gki_signing_key", key_path,
1408 "--gki_signing_algorithm", algorithm])
1409
1410 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args")
1411 if signature_args:
1412 cmd.extend(["--gki_signing_signature_args", signature_args])
1413
1414
Daniel Norman276f0622019-07-26 14:13:51 -07001415def BuildVBMeta(image_path, partitions, name, needed_partitions):
1416 """Creates a VBMeta image.
1417
1418 It generates the requested VBMeta image. The requested image could be for
1419 top-level or chained VBMeta image, which is determined based on the name.
1420
1421 Args:
1422 image_path: The output path for the new VBMeta image.
1423 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001424 values. Only valid partition names are accepted, as partitions listed
1425 in common.AVB_PARTITIONS and custom partitions listed in
1426 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001427 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1428 needed_partitions: Partitions whose descriptors should be included into the
1429 generated VBMeta image.
1430
1431 Raises:
1432 AssertionError: On invalid input args.
1433 """
1434 avbtool = OPTIONS.info_dict["avb_avbtool"]
1435 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1436 AppendAVBSigningArgs(cmd, name)
1437
Hongguang Chenf23364d2020-04-27 18:36:36 -07001438 custom_partitions = OPTIONS.info_dict.get(
1439 "avb_custom_images_partition_list", "").strip().split()
1440
Daniel Norman276f0622019-07-26 14:13:51 -07001441 for partition, path in partitions.items():
1442 if partition not in needed_partitions:
1443 continue
1444 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001445 partition in AVB_VBMETA_PARTITIONS or
1446 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001447 'Unknown partition: {}'.format(partition)
1448 assert os.path.exists(path), \
1449 'Failed to find {} for {}'.format(path, partition)
1450 cmd.extend(GetAvbPartitionArg(partition, path))
1451
1452 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1453 if args and args.strip():
1454 split_args = shlex.split(args)
1455 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001456 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001457 # as a path relative to source tree, which may not be available at the
1458 # same location when running this script (we have the input target_files
1459 # zip only). For such cases, we additionally scan other locations (e.g.
1460 # IMAGES/, RADIO/, etc) before bailing out.
1461 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001462 chained_image = split_args[index + 1]
1463 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001464 continue
1465 found = False
1466 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1467 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001468 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001469 if os.path.exists(alt_path):
1470 split_args[index + 1] = alt_path
1471 found = True
1472 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001473 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001474 cmd.extend(split_args)
1475
1476 RunAndCheckOutput(cmd)
1477
1478
jiajia tang836f76b2021-04-02 14:48:26 +08001479def _MakeRamdisk(sourcedir, fs_config_file=None,
1480 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001481 ramdisk_img = tempfile.NamedTemporaryFile()
1482
1483 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1484 cmd = ["mkbootfs", "-f", fs_config_file,
1485 os.path.join(sourcedir, "RAMDISK")]
1486 else:
1487 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1488 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001489 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001490 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001491 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001492 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001493 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001494 else:
1495 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001496
1497 p2.wait()
1498 p1.wait()
1499 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001500 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001501
1502 return ramdisk_img
1503
1504
Steve Muckle9793cf62020-04-08 18:27:00 -07001505def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001506 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001507 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001508
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001509 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001510 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1511 we are building a two-step special image (i.e. building a recovery image to
1512 be loaded into /boot in two-step OTAs).
1513
1514 Return the image data, or None if sourcedir does not appear to contains files
1515 for building the requested image.
1516 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001517
Yifan Hong63c5ca12020-10-08 11:54:02 -07001518 if info_dict is None:
1519 info_dict = OPTIONS.info_dict
1520
Steve Muckle9793cf62020-04-08 18:27:00 -07001521 # "boot" or "recovery", without extension.
1522 partition_name = os.path.basename(sourcedir).lower()
1523
Yifan Hong63c5ca12020-10-08 11:54:02 -07001524 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001525 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001526 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1527 logger.info("Excluded kernel binary from recovery image.")
1528 else:
1529 kernel = "kernel"
Steve Muckle9793cf62020-04-08 18:27:00 -07001530 else:
1531 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001532 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001533 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001534 return None
1535
1536 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001537 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001538
Doug Zongkereef39442009-04-02 12:14:19 -07001539 img = tempfile.NamedTemporaryFile()
1540
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001541 if has_ramdisk:
jiajia tang836f76b2021-04-02 14:48:26 +08001542 ramdisk_format = _GetRamdiskFormat(info_dict)
1543 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1544 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001545
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001546 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1547 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1548
Yifan Hong63c5ca12020-10-08 11:54:02 -07001549 cmd = [mkbootimg]
1550 if kernel:
1551 cmd += ["--kernel", os.path.join(sourcedir, kernel)]
Doug Zongker38a649f2009-06-17 09:07:09 -07001552
Benoit Fradina45a8682014-07-14 21:00:43 +02001553 fn = os.path.join(sourcedir, "second")
1554 if os.access(fn, os.F_OK):
1555 cmd.append("--second")
1556 cmd.append(fn)
1557
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001558 fn = os.path.join(sourcedir, "dtb")
1559 if os.access(fn, os.F_OK):
1560 cmd.append("--dtb")
1561 cmd.append(fn)
1562
Doug Zongker171f1cd2009-06-15 22:36:37 -07001563 fn = os.path.join(sourcedir, "cmdline")
1564 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001565 cmd.append("--cmdline")
1566 cmd.append(open(fn).read().rstrip("\n"))
1567
1568 fn = os.path.join(sourcedir, "base")
1569 if os.access(fn, os.F_OK):
1570 cmd.append("--base")
1571 cmd.append(open(fn).read().rstrip("\n"))
1572
Ying Wang4de6b5b2010-08-25 14:29:34 -07001573 fn = os.path.join(sourcedir, "pagesize")
1574 if os.access(fn, os.F_OK):
1575 cmd.append("--pagesize")
1576 cmd.append(open(fn).read().rstrip("\n"))
1577
Steve Mucklef84668e2020-03-16 19:13:46 -07001578 if partition_name == "recovery":
1579 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301580 if not args:
1581 # Fall back to "mkbootimg_args" for recovery image
1582 # in case "recovery_mkbootimg_args" is not set.
1583 args = info_dict.get("mkbootimg_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001584 else:
1585 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001586 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001587 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001588
Tao Bao76def242017-11-21 09:25:31 -08001589 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +00001590 if args and args.strip():
1591 cmd.extend(shlex.split(args))
1592
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001593 if has_ramdisk:
1594 cmd.extend(["--ramdisk", ramdisk_img.name])
1595
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001596 AppendGkiSigningArgs(cmd)
1597
Tao Baod95e9fd2015-03-29 23:07:41 -07001598 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001599 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001600 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001601 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001602 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001603 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001604
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001605 if partition_name == "recovery":
1606 if info_dict.get("include_recovery_dtbo") == "true":
1607 fn = os.path.join(sourcedir, "recovery_dtbo")
1608 cmd.extend(["--recovery_dtbo", fn])
1609 if info_dict.get("include_recovery_acpio") == "true":
1610 fn = os.path.join(sourcedir, "recovery_acpio")
1611 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001612
Tao Bao986ee862018-10-04 15:46:16 -07001613 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001614
Tao Bao76def242017-11-21 09:25:31 -08001615 if (info_dict.get("boot_signer") == "true" and
Kelvin Zhang563750f2021-04-28 12:46:17 -04001616 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001617 # Hard-code the path as "/boot" for two-step special recovery image (which
1618 # will be loaded into /boot during the two-step OTA).
1619 if two_step_image:
1620 path = "/boot"
1621 else:
Tao Baobf70c312017-07-11 17:27:55 -07001622 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001623 cmd = [OPTIONS.boot_signer_path]
1624 cmd.extend(OPTIONS.boot_signer_args)
1625 cmd.extend([path, img.name,
1626 info_dict["verity_key"] + ".pk8",
1627 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001628 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001629
Tao Baod95e9fd2015-03-29 23:07:41 -07001630 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001631 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001632 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001633 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001634 # We have switched from the prebuilt futility binary to using the tool
1635 # (futility-host) built from the source. Override the setting in the old
1636 # TF.zip.
1637 futility = info_dict["futility"]
1638 if futility.startswith("prebuilts/"):
1639 futility = "futility-host"
1640 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001641 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001642 info_dict["vboot_key"] + ".vbprivk",
1643 info_dict["vboot_subkey"] + ".vbprivk",
1644 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001645 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001646 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001647
Tao Baof3282b42015-04-01 11:21:55 -07001648 # Clean up the temp files.
1649 img_unsigned.close()
1650 img_keyblock.close()
1651
David Zeuthen8fecb282017-12-01 16:24:01 -05001652 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001653 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001654 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001655 if partition_name == "recovery":
1656 part_size = info_dict["recovery_size"]
1657 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001658 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001659 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001660 "--partition_size", str(part_size), "--partition_name",
1661 partition_name]
1662 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001663 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001664 if args and args.strip():
1665 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001666 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001667
1668 img.seek(os.SEEK_SET, 0)
1669 data = img.read()
1670
1671 if has_ramdisk:
1672 ramdisk_img.close()
1673 img.close()
1674
1675 return data
1676
1677
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001678def _SignBootableImage(image_path, prebuilt_name, partition_name,
1679 info_dict=None):
1680 """Performs AVB signing for a prebuilt boot.img.
1681
1682 Args:
1683 image_path: The full path of the image, e.g., /path/to/boot.img.
1684 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
1685 boot-5.10.img, recovery.img.
1686 partition_name: The partition name, e.g., 'boot' or 'recovery'.
1687 info_dict: The information dict read from misc_info.txt.
1688 """
1689 if info_dict is None:
1690 info_dict = OPTIONS.info_dict
1691
1692 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1693 if info_dict.get("avb_enable") == "true":
1694 avbtool = info_dict["avb_avbtool"]
1695 if partition_name == "recovery":
1696 part_size = info_dict["recovery_size"]
1697 else:
1698 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1699
1700 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1701 "--partition_size", str(part_size), "--partition_name",
1702 partition_name]
1703 AppendAVBSigningArgs(cmd, partition_name)
1704 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1705 if args and args.strip():
1706 cmd.extend(shlex.split(args))
1707 RunAndCheckOutput(cmd)
1708
1709
Doug Zongkerd5131602012-08-02 14:46:42 -07001710def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001711 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001712 """Return a File object with the desired bootable image.
1713
1714 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1715 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1716 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001717
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001718 if info_dict is None:
1719 info_dict = OPTIONS.info_dict
1720
Doug Zongker55d93282011-01-25 17:03:34 -08001721 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1722 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001723 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001724 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001725
1726 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1727 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001728 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001729 return File.FromLocalFile(name, prebuilt_path)
1730
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001731 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1732 if os.path.exists(prebuilt_path):
1733 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1734 signed_img = MakeTempFile()
1735 shutil.copy(prebuilt_path, signed_img)
1736 partition_name = tree_subdir.lower()
1737 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1738 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001739
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001740 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001741
1742 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -08001743 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
1744 # for recovery.
1745 has_ramdisk = (info_dict.get("system_root_image") != "true" or
1746 prebuilt_name != "boot.img" or
1747 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001748
Doug Zongker6f1d0312014-08-22 08:07:12 -07001749 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001750 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001751 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001752 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001753 if data:
1754 return File(name, data)
1755 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001756
Doug Zongkereef39442009-04-02 12:14:19 -07001757
Steve Mucklee1b10862019-07-10 10:49:37 -07001758def _BuildVendorBootImage(sourcedir, info_dict=None):
1759 """Build a vendor boot image from the specified sourcedir.
1760
1761 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1762 turn them into a vendor boot image.
1763
1764 Return the image data, or None if sourcedir does not appear to contains files
1765 for building the requested image.
1766 """
1767
1768 if info_dict is None:
1769 info_dict = OPTIONS.info_dict
1770
1771 img = tempfile.NamedTemporaryFile()
1772
jiajia tang836f76b2021-04-02 14:48:26 +08001773 ramdisk_format = _GetRamdiskFormat(info_dict)
1774 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001775
1776 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1777 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1778
1779 cmd = [mkbootimg]
1780
1781 fn = os.path.join(sourcedir, "dtb")
1782 if os.access(fn, os.F_OK):
1783 cmd.append("--dtb")
1784 cmd.append(fn)
1785
1786 fn = os.path.join(sourcedir, "vendor_cmdline")
1787 if os.access(fn, os.F_OK):
1788 cmd.append("--vendor_cmdline")
1789 cmd.append(open(fn).read().rstrip("\n"))
1790
1791 fn = os.path.join(sourcedir, "base")
1792 if os.access(fn, os.F_OK):
1793 cmd.append("--base")
1794 cmd.append(open(fn).read().rstrip("\n"))
1795
1796 fn = os.path.join(sourcedir, "pagesize")
1797 if os.access(fn, os.F_OK):
1798 cmd.append("--pagesize")
1799 cmd.append(open(fn).read().rstrip("\n"))
1800
1801 args = info_dict.get("mkbootimg_args")
1802 if args and args.strip():
1803 cmd.extend(shlex.split(args))
1804
1805 args = info_dict.get("mkbootimg_version_args")
1806 if args and args.strip():
1807 cmd.extend(shlex.split(args))
1808
1809 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1810 cmd.extend(["--vendor_boot", img.name])
1811
Devin Moore50509012021-01-13 10:45:04 -08001812 fn = os.path.join(sourcedir, "vendor_bootconfig")
1813 if os.access(fn, os.F_OK):
1814 cmd.append("--vendor_bootconfig")
1815 cmd.append(fn)
1816
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001817 ramdisk_fragment_imgs = []
1818 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1819 if os.access(fn, os.F_OK):
1820 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1821 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001822 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1823 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001824 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001825 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1826 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001827 # Use prebuilt image if found, else create ramdisk from supplied files.
1828 if os.access(fn, os.F_OK):
1829 ramdisk_fragment_pathname = fn
1830 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001831 ramdisk_fragment_root = os.path.join(
1832 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001833 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1834 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001835 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1836 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1837 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1838
Steve Mucklee1b10862019-07-10 10:49:37 -07001839 RunAndCheckOutput(cmd)
1840
1841 # AVB: if enabled, calculate and add hash.
1842 if info_dict.get("avb_enable") == "true":
1843 avbtool = info_dict["avb_avbtool"]
1844 part_size = info_dict["vendor_boot_size"]
1845 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001846 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001847 AppendAVBSigningArgs(cmd, "vendor_boot")
1848 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1849 if args and args.strip():
1850 cmd.extend(shlex.split(args))
1851 RunAndCheckOutput(cmd)
1852
1853 img.seek(os.SEEK_SET, 0)
1854 data = img.read()
1855
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001856 for f in ramdisk_fragment_imgs:
1857 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001858 ramdisk_img.close()
1859 img.close()
1860
1861 return data
1862
1863
1864def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1865 info_dict=None):
1866 """Return a File object with the desired vendor boot image.
1867
1868 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1869 the source files in 'unpack_dir'/'tree_subdir'."""
1870
1871 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1872 if os.path.exists(prebuilt_path):
1873 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1874 return File.FromLocalFile(name, prebuilt_path)
1875
1876 logger.info("building image from target_files %s...", tree_subdir)
1877
1878 if info_dict is None:
1879 info_dict = OPTIONS.info_dict
1880
Kelvin Zhang0876c412020-06-23 15:06:58 -04001881 data = _BuildVendorBootImage(
1882 os.path.join(unpack_dir, tree_subdir), info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07001883 if data:
1884 return File(name, data)
1885 return None
1886
1887
Narayan Kamatha07bf042017-08-14 14:49:21 +01001888def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001889 """Gunzips the given gzip compressed file to a given output file."""
1890 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04001891 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001892 shutil.copyfileobj(in_file, out_file)
1893
1894
Tao Bao0ff15de2019-03-20 11:26:06 -07001895def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001896 """Unzips the archive to the given directory.
1897
1898 Args:
1899 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001900 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001901 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1902 archvie. Non-matching patterns will be filtered out. If there's no match
1903 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001904 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001905 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001906 if patterns is not None:
1907 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04001908 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07001909 names = input_zip.namelist()
1910 filtered = [
1911 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1912
1913 # There isn't any matching files. Don't unzip anything.
1914 if not filtered:
1915 return
1916 cmd.extend(filtered)
1917
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001918 RunAndCheckOutput(cmd)
1919
1920
Doug Zongker75f17362009-12-08 13:46:44 -08001921def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001922 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001923
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001924 Args:
1925 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1926 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1927
1928 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1929 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001930
Tao Bao1c830bf2017-12-25 10:43:47 -08001931 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001932 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001933 """
Doug Zongkereef39442009-04-02 12:14:19 -07001934
Tao Bao1c830bf2017-12-25 10:43:47 -08001935 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001936 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1937 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001938 UnzipToDir(m.group(1), tmp, pattern)
1939 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001940 filename = m.group(1)
1941 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001942 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001943
Tao Baodba59ee2018-01-09 13:21:02 -08001944 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001945
1946
Yifan Hong8a66a712019-04-04 15:37:57 -07001947def GetUserImage(which, tmpdir, input_zip,
1948 info_dict=None,
1949 allow_shared_blocks=None,
1950 hashtree_info_generator=None,
1951 reset_file_map=False):
1952 """Returns an Image object suitable for passing to BlockImageDiff.
1953
1954 This function loads the specified image from the given path. If the specified
1955 image is sparse, it also performs additional processing for OTA purpose. For
1956 example, it always adds block 0 to clobbered blocks list. It also detects
1957 files that cannot be reconstructed from the block list, for whom we should
1958 avoid applying imgdiff.
1959
1960 Args:
1961 which: The partition name.
1962 tmpdir: The directory that contains the prebuilt image and block map file.
1963 input_zip: The target-files ZIP archive.
1964 info_dict: The dict to be looked up for relevant info.
1965 allow_shared_blocks: If image is sparse, whether having shared blocks is
1966 allowed. If none, it is looked up from info_dict.
1967 hashtree_info_generator: If present and image is sparse, generates the
1968 hashtree_info for this sparse image.
1969 reset_file_map: If true and image is sparse, reset file map before returning
1970 the image.
1971 Returns:
1972 A Image object. If it is a sparse image and reset_file_map is False, the
1973 image will have file_map info loaded.
1974 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001975 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07001976 info_dict = LoadInfoDict(input_zip)
1977
1978 is_sparse = info_dict.get("extfs_sparse_flag")
1979
1980 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
1981 # shared blocks (i.e. some blocks will show up in multiple files' block
1982 # list). We can only allocate such shared blocks to the first "owner", and
1983 # disable imgdiff for all later occurrences.
1984 if allow_shared_blocks is None:
1985 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
1986
1987 if is_sparse:
1988 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1989 hashtree_info_generator)
1990 if reset_file_map:
1991 img.ResetFileMap()
1992 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04001993 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07001994
1995
1996def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
1997 """Returns a Image object suitable for passing to BlockImageDiff.
1998
1999 This function loads the specified non-sparse image from the given path.
2000
2001 Args:
2002 which: The partition name.
2003 tmpdir: The directory that contains the prebuilt image and block map file.
2004 Returns:
2005 A Image object.
2006 """
2007 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2008 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2009
2010 # The image and map files must have been created prior to calling
2011 # ota_from_target_files.py (since LMP).
2012 assert os.path.exists(path) and os.path.exists(mappath)
2013
Tianjie Xu41976c72019-07-03 13:57:01 -07002014 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
2015
Yifan Hong8a66a712019-04-04 15:37:57 -07002016
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002017def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2018 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08002019 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2020
2021 This function loads the specified sparse image from the given path, and
2022 performs additional processing for OTA purpose. For example, it always adds
2023 block 0 to clobbered blocks list. It also detects files that cannot be
2024 reconstructed from the block list, for whom we should avoid applying imgdiff.
2025
2026 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002027 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002028 tmpdir: The directory that contains the prebuilt image and block map file.
2029 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002030 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002031 hashtree_info_generator: If present, generates the hashtree_info for this
2032 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08002033 Returns:
2034 A SparseImage object, with file_map info loaded.
2035 """
Tao Baoc765cca2018-01-31 17:32:40 -08002036 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2037 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2038
2039 # The image and map files must have been created prior to calling
2040 # ota_from_target_files.py (since LMP).
2041 assert os.path.exists(path) and os.path.exists(mappath)
2042
2043 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2044 # it to clobbered_blocks so that it will be written to the target
2045 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2046 clobbered_blocks = "0"
2047
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002048 image = sparse_img.SparseImage(
2049 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
2050 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08002051
2052 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2053 # if they contain all zeros. We can't reconstruct such a file from its block
2054 # list. Tag such entries accordingly. (Bug: 65213616)
2055 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002056 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002057 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002058 continue
2059
Tom Cherryd14b8952018-08-09 14:26:00 -07002060 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2061 # filename listed in system.map may contain an additional leading slash
2062 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2063 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002064 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002065 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002066 arcname = entry.lstrip('/')
2067 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002068 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002069 else:
2070 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002071
2072 assert arcname in input_zip.namelist(), \
2073 "Failed to find the ZIP entry for {}".format(entry)
2074
Tao Baoc765cca2018-01-31 17:32:40 -08002075 info = input_zip.getinfo(arcname)
2076 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002077
2078 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002079 # image, check the original block list to determine its completeness. Note
2080 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002081 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002082 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002083
Tao Baoc765cca2018-01-31 17:32:40 -08002084 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2085 ranges.extra['incomplete'] = True
2086
2087 return image
2088
2089
Doug Zongkereef39442009-04-02 12:14:19 -07002090def GetKeyPasswords(keylist):
2091 """Given a list of keys, prompt the user to enter passwords for
2092 those which require them. Return a {key: password} dict. password
2093 will be None if the key has no password."""
2094
Doug Zongker8ce7c252009-05-22 13:34:54 -07002095 no_passwords = []
2096 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002097 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002098 devnull = open("/dev/null", "w+b")
2099 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002100 # We don't need a password for things that aren't really keys.
2101 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002102 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002103 continue
2104
T.R. Fullhart37e10522013-03-18 10:31:26 -07002105 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002106 "-inform", "DER", "-nocrypt"],
2107 stdin=devnull.fileno(),
2108 stdout=devnull.fileno(),
2109 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002110 p.communicate()
2111 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002112 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002113 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002114 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002115 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2116 "-inform", "DER", "-passin", "pass:"],
2117 stdin=devnull.fileno(),
2118 stdout=devnull.fileno(),
2119 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002120 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002121 if p.returncode == 0:
2122 # Encrypted key with empty string as password.
2123 key_passwords[k] = ''
2124 elif stderr.startswith('Error decrypting key'):
2125 # Definitely encrypted key.
2126 # It would have said "Error reading key" if it didn't parse correctly.
2127 need_passwords.append(k)
2128 else:
2129 # Potentially, a type of key that openssl doesn't understand.
2130 # We'll let the routines in signapk.jar handle it.
2131 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002132 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002133
T.R. Fullhart37e10522013-03-18 10:31:26 -07002134 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002135 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002136 return key_passwords
2137
2138
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002139def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002140 """Gets the minSdkVersion declared in the APK.
2141
changho.shin0f125362019-07-08 10:59:00 +09002142 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07002143 This can be both a decimal number (API Level) or a codename.
2144
2145 Args:
2146 apk_name: The APK filename.
2147
2148 Returns:
2149 The parsed SDK version string.
2150
2151 Raises:
2152 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002153 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002154 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09002155 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002156 stderr=subprocess.PIPE)
2157 stdoutdata, stderrdata = proc.communicate()
2158 if proc.returncode != 0:
2159 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09002160 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07002161 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002162
Tao Baof47bf0f2018-03-21 23:28:51 -07002163 for line in stdoutdata.split("\n"):
2164 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002165 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2166 if m:
2167 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002168 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002169
2170
2171def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002172 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002173
Tao Baof47bf0f2018-03-21 23:28:51 -07002174 If minSdkVersion is set to a codename, it is translated to a number using the
2175 provided map.
2176
2177 Args:
2178 apk_name: The APK filename.
2179
2180 Returns:
2181 The parsed SDK version number.
2182
2183 Raises:
2184 ExternalError: On failing to get the min SDK version number.
2185 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002186 version = GetMinSdkVersion(apk_name)
2187 try:
2188 return int(version)
2189 except ValueError:
2190 # Not a decimal number. Codename?
2191 if version in codename_to_api_level_map:
2192 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002193 raise ExternalError(
2194 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2195 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002196
2197
2198def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002199 codename_to_api_level_map=None, whole_file=False,
2200 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002201 """Sign the input_name zip/jar/apk, producing output_name. Use the
2202 given key and password (the latter may be None if the key does not
2203 have a password.
2204
Doug Zongker951495f2009-08-14 12:44:19 -07002205 If whole_file is true, use the "-w" option to SignApk to embed a
2206 signature that covers the whole file in the archive comment of the
2207 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002208
2209 min_api_level is the API Level (int) of the oldest platform this file may end
2210 up on. If not specified for an APK, the API Level is obtained by interpreting
2211 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2212
2213 codename_to_api_level_map is needed to translate the codename which may be
2214 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002215
2216 Caller may optionally specify extra args to be passed to SignApk, which
2217 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002218 """
Tao Bao76def242017-11-21 09:25:31 -08002219 if codename_to_api_level_map is None:
2220 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002221 if extra_signapk_args is None:
2222 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002223
Alex Klyubin9667b182015-12-10 13:38:50 -08002224 java_library_path = os.path.join(
2225 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2226
Tao Baoe95540e2016-11-08 12:08:53 -08002227 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2228 ["-Djava.library.path=" + java_library_path,
2229 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002230 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002231 if whole_file:
2232 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002233
2234 min_sdk_version = min_api_level
2235 if min_sdk_version is None:
2236 if not whole_file:
2237 min_sdk_version = GetMinSdkVersionInt(
2238 input_name, codename_to_api_level_map)
2239 if min_sdk_version is not None:
2240 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2241
T.R. Fullhart37e10522013-03-18 10:31:26 -07002242 cmd.extend([key + OPTIONS.public_key_suffix,
2243 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002244 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002245
Tao Bao73dd4f42018-10-04 16:25:33 -07002246 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002247 if password is not None:
2248 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002249 stdoutdata, _ = proc.communicate(password)
2250 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002251 raise ExternalError(
2252 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002253 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002254
Doug Zongkereef39442009-04-02 12:14:19 -07002255
Doug Zongker37974732010-09-16 17:44:38 -07002256def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002257 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002258
Tao Bao9dd909e2017-11-14 11:27:32 -08002259 For non-AVB images, raise exception if the data is too big. Print a warning
2260 if the data is nearing the maximum size.
2261
2262 For AVB images, the actual image size should be identical to the limit.
2263
2264 Args:
2265 data: A string that contains all the data for the partition.
2266 target: The partition name. The ".img" suffix is optional.
2267 info_dict: The dict to be looked up for relevant info.
2268 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002269 if target.endswith(".img"):
2270 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002271 mount_point = "/" + target
2272
Ying Wangf8824af2014-06-03 14:07:27 -07002273 fs_type = None
2274 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002275 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002276 if mount_point == "/userdata":
2277 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002278 p = info_dict["fstab"][mount_point]
2279 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002280 device = p.device
2281 if "/" in device:
2282 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002283 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002284 if not fs_type or not limit:
2285 return
Doug Zongkereef39442009-04-02 12:14:19 -07002286
Andrew Boie0f9aec82012-02-14 09:32:52 -08002287 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002288 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2289 # path.
2290 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2291 if size != limit:
2292 raise ExternalError(
2293 "Mismatching image size for %s: expected %d actual %d" % (
2294 target, limit, size))
2295 else:
2296 pct = float(size) * 100.0 / limit
2297 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2298 if pct >= 99.0:
2299 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002300
2301 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002302 logger.warning("\n WARNING: %s\n", msg)
2303 else:
2304 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002305
2306
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002307def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002308 """Parses the APK certs info from a given target-files zip.
2309
2310 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2311 tuple with the following elements: (1) a dictionary that maps packages to
2312 certs (based on the "certificate" and "private_key" attributes in the file;
2313 (2) a string representing the extension of compressed APKs in the target files
2314 (e.g ".gz", ".bro").
2315
2316 Args:
2317 tf_zip: The input target_files ZipFile (already open).
2318
2319 Returns:
2320 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2321 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2322 no compressed APKs.
2323 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002324 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002325 compressed_extension = None
2326
Tao Bao0f990332017-09-08 19:02:54 -07002327 # META/apkcerts.txt contains the info for _all_ the packages known at build
2328 # time. Filter out the ones that are not installed.
2329 installed_files = set()
2330 for name in tf_zip.namelist():
2331 basename = os.path.basename(name)
2332 if basename:
2333 installed_files.add(basename)
2334
Tao Baoda30cfa2017-12-01 16:19:46 -08002335 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002336 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002337 if not line:
2338 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002339 m = re.match(
2340 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002341 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2342 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002343 line)
2344 if not m:
2345 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002346
Tao Bao818ddf52018-01-05 11:17:34 -08002347 matches = m.groupdict()
2348 cert = matches["CERT"]
2349 privkey = matches["PRIVKEY"]
2350 name = matches["NAME"]
2351 this_compressed_extension = matches["COMPRESSED"]
2352
2353 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2354 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2355 if cert in SPECIAL_CERT_STRINGS and not privkey:
2356 certmap[name] = cert
2357 elif (cert.endswith(OPTIONS.public_key_suffix) and
2358 privkey.endswith(OPTIONS.private_key_suffix) and
2359 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2360 certmap[name] = cert[:-public_key_suffix_len]
2361 else:
2362 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2363
2364 if not this_compressed_extension:
2365 continue
2366
2367 # Only count the installed files.
2368 filename = name + '.' + this_compressed_extension
2369 if filename not in installed_files:
2370 continue
2371
2372 # Make sure that all the values in the compression map have the same
2373 # extension. We don't support multiple compression methods in the same
2374 # system image.
2375 if compressed_extension:
2376 if this_compressed_extension != compressed_extension:
2377 raise ValueError(
2378 "Multiple compressed extensions: {} vs {}".format(
2379 compressed_extension, this_compressed_extension))
2380 else:
2381 compressed_extension = this_compressed_extension
2382
2383 return (certmap,
2384 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002385
2386
Doug Zongkereef39442009-04-02 12:14:19 -07002387COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002388Global options
2389
2390 -p (--path) <dir>
2391 Prepend <dir>/bin to the list of places to search for binaries run by this
2392 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002393
Doug Zongker05d3dea2009-06-22 11:32:31 -07002394 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002395 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002396
Tao Bao30df8b42018-04-23 15:32:53 -07002397 -x (--extra) <key=value>
2398 Add a key/value pair to the 'extras' dict, which device-specific extension
2399 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002400
Doug Zongkereef39442009-04-02 12:14:19 -07002401 -v (--verbose)
2402 Show command lines being executed.
2403
2404 -h (--help)
2405 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002406
2407 --logfile <file>
2408 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002409"""
2410
Kelvin Zhang0876c412020-06-23 15:06:58 -04002411
Doug Zongkereef39442009-04-02 12:14:19 -07002412def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002413 print(docstring.rstrip("\n"))
2414 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002415
2416
2417def ParseOptions(argv,
2418 docstring,
2419 extra_opts="", extra_long_opts=(),
2420 extra_option_handler=None):
2421 """Parse the options in argv and return any arguments that aren't
2422 flags. docstring is the calling module's docstring, to be displayed
2423 for errors and -h. extra_opts and extra_long_opts are for flags
2424 defined by the caller, which are processed by passing them to
2425 extra_option_handler."""
2426
2427 try:
2428 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002429 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002430 ["help", "verbose", "path=", "signapk_path=",
2431 "signapk_shared_library_path=", "extra_signapk_args=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002432 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002433 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2434 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002435 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002436 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002437 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002438 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002439 sys.exit(2)
2440
Doug Zongkereef39442009-04-02 12:14:19 -07002441 for o, a in opts:
2442 if o in ("-h", "--help"):
2443 Usage(docstring)
2444 sys.exit()
2445 elif o in ("-v", "--verbose"):
2446 OPTIONS.verbose = True
2447 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002448 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002449 elif o in ("--signapk_path",):
2450 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002451 elif o in ("--signapk_shared_library_path",):
2452 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002453 elif o in ("--extra_signapk_args",):
2454 OPTIONS.extra_signapk_args = shlex.split(a)
2455 elif o in ("--java_path",):
2456 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002457 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002458 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002459 elif o in ("--android_jar_path",):
2460 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002461 elif o in ("--public_key_suffix",):
2462 OPTIONS.public_key_suffix = a
2463 elif o in ("--private_key_suffix",):
2464 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002465 elif o in ("--boot_signer_path",):
2466 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002467 elif o in ("--boot_signer_args",):
2468 OPTIONS.boot_signer_args = shlex.split(a)
2469 elif o in ("--verity_signer_path",):
2470 OPTIONS.verity_signer_path = a
2471 elif o in ("--verity_signer_args",):
2472 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07002473 elif o in ("-s", "--device_specific"):
2474 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002475 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002476 key, value = a.split("=", 1)
2477 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002478 elif o in ("--logfile",):
2479 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002480 else:
2481 if extra_option_handler is None or not extra_option_handler(o, a):
2482 assert False, "unknown option \"%s\"" % (o,)
2483
Doug Zongker85448772014-09-09 14:59:20 -07002484 if OPTIONS.search_path:
2485 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2486 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002487
2488 return args
2489
2490
Tao Bao4c851b12016-09-19 13:54:38 -07002491def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002492 """Make a temp file and add it to the list of things to be deleted
2493 when Cleanup() is called. Return the filename."""
2494 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2495 os.close(fd)
2496 OPTIONS.tempfiles.append(fn)
2497 return fn
2498
2499
Tao Bao1c830bf2017-12-25 10:43:47 -08002500def MakeTempDir(prefix='tmp', suffix=''):
2501 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2502
2503 Returns:
2504 The absolute pathname of the new directory.
2505 """
2506 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2507 OPTIONS.tempfiles.append(dir_name)
2508 return dir_name
2509
2510
Doug Zongkereef39442009-04-02 12:14:19 -07002511def Cleanup():
2512 for i in OPTIONS.tempfiles:
2513 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002514 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002515 else:
2516 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002517 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002518
2519
2520class PasswordManager(object):
2521 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002522 self.editor = os.getenv("EDITOR")
2523 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002524
2525 def GetPasswords(self, items):
2526 """Get passwords corresponding to each string in 'items',
2527 returning a dict. (The dict may have keys in addition to the
2528 values in 'items'.)
2529
2530 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2531 user edit that file to add more needed passwords. If no editor is
2532 available, or $ANDROID_PW_FILE isn't define, prompts the user
2533 interactively in the ordinary way.
2534 """
2535
2536 current = self.ReadFile()
2537
2538 first = True
2539 while True:
2540 missing = []
2541 for i in items:
2542 if i not in current or not current[i]:
2543 missing.append(i)
2544 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002545 if not missing:
2546 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002547
2548 for i in missing:
2549 current[i] = ""
2550
2551 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002552 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002553 if sys.version_info[0] >= 3:
2554 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002555 answer = raw_input("try to edit again? [y]> ").strip()
2556 if answer and answer[0] not in 'yY':
2557 raise RuntimeError("key passwords unavailable")
2558 first = False
2559
2560 current = self.UpdateAndReadFile(current)
2561
Kelvin Zhang0876c412020-06-23 15:06:58 -04002562 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002563 """Prompt the user to enter a value (password) for each key in
2564 'current' whose value is fales. Returns a new dict with all the
2565 values.
2566 """
2567 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002568 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002569 if v:
2570 result[k] = v
2571 else:
2572 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002573 result[k] = getpass.getpass(
2574 "Enter password for %s key> " % k).strip()
2575 if result[k]:
2576 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002577 return result
2578
2579 def UpdateAndReadFile(self, current):
2580 if not self.editor or not self.pwfile:
2581 return self.PromptResult(current)
2582
2583 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002584 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002585 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2586 f.write("# (Additional spaces are harmless.)\n\n")
2587
2588 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002589 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002590 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002591 f.write("[[[ %s ]]] %s\n" % (v, k))
2592 if not v and first_line is None:
2593 # position cursor on first line with no password.
2594 first_line = i + 4
2595 f.close()
2596
Tao Bao986ee862018-10-04 15:46:16 -07002597 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002598
2599 return self.ReadFile()
2600
2601 def ReadFile(self):
2602 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002603 if self.pwfile is None:
2604 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002605 try:
2606 f = open(self.pwfile, "r")
2607 for line in f:
2608 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002609 if not line or line[0] == '#':
2610 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002611 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2612 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002613 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002614 else:
2615 result[m.group(2)] = m.group(1)
2616 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002617 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002618 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002619 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002620 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002621
2622
Dan Albert8e0178d2015-01-27 15:53:15 -08002623def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2624 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002625
2626 # http://b/18015246
2627 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2628 # for files larger than 2GiB. We can work around this by adjusting their
2629 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2630 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2631 # it isn't clear to me exactly what circumstances cause this).
2632 # `zipfile.write()` must be used directly to work around this.
2633 #
2634 # This mess can be avoided if we port to python3.
2635 saved_zip64_limit = zipfile.ZIP64_LIMIT
2636 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2637
2638 if compress_type is None:
2639 compress_type = zip_file.compression
2640 if arcname is None:
2641 arcname = filename
2642
2643 saved_stat = os.stat(filename)
2644
2645 try:
2646 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2647 # file to be zipped and reset it when we're done.
2648 os.chmod(filename, perms)
2649
2650 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002651 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2652 # intentional. zip stores datetimes in local time without a time zone
2653 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2654 # in the zip archive.
2655 local_epoch = datetime.datetime.fromtimestamp(0)
2656 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002657 os.utime(filename, (timestamp, timestamp))
2658
2659 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2660 finally:
2661 os.chmod(filename, saved_stat.st_mode)
2662 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2663 zipfile.ZIP64_LIMIT = saved_zip64_limit
2664
2665
Tao Bao58c1b962015-05-20 09:32:18 -07002666def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002667 compress_type=None):
2668 """Wrap zipfile.writestr() function to work around the zip64 limit.
2669
2670 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2671 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2672 when calling crc32(bytes).
2673
2674 But it still works fine to write a shorter string into a large zip file.
2675 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2676 when we know the string won't be too long.
2677 """
2678
2679 saved_zip64_limit = zipfile.ZIP64_LIMIT
2680 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2681
2682 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2683 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002684 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002685 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002686 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002687 else:
Tao Baof3282b42015-04-01 11:21:55 -07002688 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002689 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2690 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2691 # such a case (since
2692 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2693 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2694 # permission bits. We follow the logic in Python 3 to get consistent
2695 # behavior between using the two versions.
2696 if not zinfo.external_attr:
2697 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002698
2699 # If compress_type is given, it overrides the value in zinfo.
2700 if compress_type is not None:
2701 zinfo.compress_type = compress_type
2702
Tao Bao58c1b962015-05-20 09:32:18 -07002703 # If perms is given, it has a priority.
2704 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002705 # If perms doesn't set the file type, mark it as a regular file.
2706 if perms & 0o770000 == 0:
2707 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002708 zinfo.external_attr = perms << 16
2709
Tao Baof3282b42015-04-01 11:21:55 -07002710 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002711 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2712
Dan Albert8b72aef2015-03-23 19:13:21 -07002713 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002714 zipfile.ZIP64_LIMIT = saved_zip64_limit
2715
2716
Tao Bao89d7ab22017-12-14 17:05:33 -08002717def ZipDelete(zip_filename, entries):
2718 """Deletes entries from a ZIP file.
2719
2720 Since deleting entries from a ZIP file is not supported, it shells out to
2721 'zip -d'.
2722
2723 Args:
2724 zip_filename: The name of the ZIP file.
2725 entries: The name of the entry, or the list of names to be deleted.
2726
2727 Raises:
2728 AssertionError: In case of non-zero return from 'zip'.
2729 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002730 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002731 entries = [entries]
2732 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002733 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002734
2735
Tao Baof3282b42015-04-01 11:21:55 -07002736def ZipClose(zip_file):
2737 # http://b/18015246
2738 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2739 # central directory.
2740 saved_zip64_limit = zipfile.ZIP64_LIMIT
2741 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2742
2743 zip_file.close()
2744
2745 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002746
2747
2748class DeviceSpecificParams(object):
2749 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002750
Doug Zongker05d3dea2009-06-22 11:32:31 -07002751 def __init__(self, **kwargs):
2752 """Keyword arguments to the constructor become attributes of this
2753 object, which is passed to all functions in the device-specific
2754 module."""
Tao Bao38884282019-07-10 22:20:56 -07002755 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002756 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002757 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002758
2759 if self.module is None:
2760 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002761 if not path:
2762 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002763 try:
2764 if os.path.isdir(path):
2765 info = imp.find_module("releasetools", [path])
2766 else:
2767 d, f = os.path.split(path)
2768 b, x = os.path.splitext(f)
2769 if x == ".py":
2770 f = b
2771 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002772 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002773 self.module = imp.load_module("device_specific", *info)
2774 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002775 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002776
2777 def _DoCall(self, function_name, *args, **kwargs):
2778 """Call the named function in the device-specific module, passing
2779 the given args and kwargs. The first argument to the call will be
2780 the DeviceSpecific object itself. If there is no module, or the
2781 module does not define the function, return the value of the
2782 'default' kwarg (which itself defaults to None)."""
2783 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002784 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002785 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2786
2787 def FullOTA_Assertions(self):
2788 """Called after emitting the block of assertions at the top of a
2789 full OTA package. Implementations can add whatever additional
2790 assertions they like."""
2791 return self._DoCall("FullOTA_Assertions")
2792
Doug Zongkere5ff5902012-01-17 10:55:37 -08002793 def FullOTA_InstallBegin(self):
2794 """Called at the start of full OTA installation."""
2795 return self._DoCall("FullOTA_InstallBegin")
2796
Yifan Hong10c530d2018-12-27 17:34:18 -08002797 def FullOTA_GetBlockDifferences(self):
2798 """Called during full OTA installation and verification.
2799 Implementation should return a list of BlockDifference objects describing
2800 the update on each additional partitions.
2801 """
2802 return self._DoCall("FullOTA_GetBlockDifferences")
2803
Doug Zongker05d3dea2009-06-22 11:32:31 -07002804 def FullOTA_InstallEnd(self):
2805 """Called at the end of full OTA installation; typically this is
2806 used to install the image for the device's baseband processor."""
2807 return self._DoCall("FullOTA_InstallEnd")
2808
2809 def IncrementalOTA_Assertions(self):
2810 """Called after emitting the block of assertions at the top of an
2811 incremental OTA package. Implementations can add whatever
2812 additional assertions they like."""
2813 return self._DoCall("IncrementalOTA_Assertions")
2814
Doug Zongkere5ff5902012-01-17 10:55:37 -08002815 def IncrementalOTA_VerifyBegin(self):
2816 """Called at the start of the verification phase of incremental
2817 OTA installation; additional checks can be placed here to abort
2818 the script before any changes are made."""
2819 return self._DoCall("IncrementalOTA_VerifyBegin")
2820
Doug Zongker05d3dea2009-06-22 11:32:31 -07002821 def IncrementalOTA_VerifyEnd(self):
2822 """Called at the end of the verification phase of incremental OTA
2823 installation; additional checks can be placed here to abort the
2824 script before any changes are made."""
2825 return self._DoCall("IncrementalOTA_VerifyEnd")
2826
Doug Zongkere5ff5902012-01-17 10:55:37 -08002827 def IncrementalOTA_InstallBegin(self):
2828 """Called at the start of incremental OTA installation (after
2829 verification is complete)."""
2830 return self._DoCall("IncrementalOTA_InstallBegin")
2831
Yifan Hong10c530d2018-12-27 17:34:18 -08002832 def IncrementalOTA_GetBlockDifferences(self):
2833 """Called during incremental OTA installation and verification.
2834 Implementation should return a list of BlockDifference objects describing
2835 the update on each additional partitions.
2836 """
2837 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2838
Doug Zongker05d3dea2009-06-22 11:32:31 -07002839 def IncrementalOTA_InstallEnd(self):
2840 """Called at the end of incremental OTA installation; typically
2841 this is used to install the image for the device's baseband
2842 processor."""
2843 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002844
Tao Bao9bc6bb22015-11-09 16:58:28 -08002845 def VerifyOTA_Assertions(self):
2846 return self._DoCall("VerifyOTA_Assertions")
2847
Tao Bao76def242017-11-21 09:25:31 -08002848
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002849class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002850 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002851 self.name = name
2852 self.data = data
2853 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002854 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002855 self.sha1 = sha1(data).hexdigest()
2856
2857 @classmethod
2858 def FromLocalFile(cls, name, diskname):
2859 f = open(diskname, "rb")
2860 data = f.read()
2861 f.close()
2862 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002863
2864 def WriteToTemp(self):
2865 t = tempfile.NamedTemporaryFile()
2866 t.write(self.data)
2867 t.flush()
2868 return t
2869
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002870 def WriteToDir(self, d):
2871 with open(os.path.join(d, self.name), "wb") as fp:
2872 fp.write(self.data)
2873
Geremy Condra36bd3652014-02-06 19:45:10 -08002874 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002875 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002876
Tao Bao76def242017-11-21 09:25:31 -08002877
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002878DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04002879 ".gz": "imgdiff",
2880 ".zip": ["imgdiff", "-z"],
2881 ".jar": ["imgdiff", "-z"],
2882 ".apk": ["imgdiff", "-z"],
2883 ".img": "imgdiff",
2884}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002885
Tao Bao76def242017-11-21 09:25:31 -08002886
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002887class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002888 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002889 self.tf = tf
2890 self.sf = sf
2891 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002892 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002893
2894 def ComputePatch(self):
2895 """Compute the patch (as a string of data) needed to turn sf into
2896 tf. Returns the same tuple as GetPatch()."""
2897
2898 tf = self.tf
2899 sf = self.sf
2900
Doug Zongker24cd2802012-08-14 16:36:15 -07002901 if self.diff_program:
2902 diff_program = self.diff_program
2903 else:
2904 ext = os.path.splitext(tf.name)[1]
2905 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002906
2907 ttemp = tf.WriteToTemp()
2908 stemp = sf.WriteToTemp()
2909
2910 ext = os.path.splitext(tf.name)[1]
2911
2912 try:
2913 ptemp = tempfile.NamedTemporaryFile()
2914 if isinstance(diff_program, list):
2915 cmd = copy.copy(diff_program)
2916 else:
2917 cmd = [diff_program]
2918 cmd.append(stemp.name)
2919 cmd.append(ttemp.name)
2920 cmd.append(ptemp.name)
2921 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002922 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04002923
Doug Zongkerf8340082014-08-05 10:39:37 -07002924 def run():
2925 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002926 if e:
2927 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002928 th = threading.Thread(target=run)
2929 th.start()
2930 th.join(timeout=300) # 5 mins
2931 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002932 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002933 p.terminate()
2934 th.join(5)
2935 if th.is_alive():
2936 p.kill()
2937 th.join()
2938
Tianjie Xua2a9f992018-01-05 15:15:54 -08002939 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002940 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002941 self.patch = None
2942 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002943 diff = ptemp.read()
2944 finally:
2945 ptemp.close()
2946 stemp.close()
2947 ttemp.close()
2948
2949 self.patch = diff
2950 return self.tf, self.sf, self.patch
2951
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002952 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08002953 """Returns a tuple of (target_file, source_file, patch_data).
2954
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002955 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08002956 computing the patch failed.
2957 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002958 return self.tf, self.sf, self.patch
2959
2960
2961def ComputeDifferences(diffs):
2962 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07002963 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002964
2965 # Do the largest files first, to try and reduce the long-pole effect.
2966 by_size = [(i.tf.size, i) for i in diffs]
2967 by_size.sort(reverse=True)
2968 by_size = [i[1] for i in by_size]
2969
2970 lock = threading.Lock()
2971 diff_iter = iter(by_size) # accessed under lock
2972
2973 def worker():
2974 try:
2975 lock.acquire()
2976 for d in diff_iter:
2977 lock.release()
2978 start = time.time()
2979 d.ComputePatch()
2980 dur = time.time() - start
2981 lock.acquire()
2982
2983 tf, sf, patch = d.GetPatch()
2984 if sf.name == tf.name:
2985 name = tf.name
2986 else:
2987 name = "%s (%s)" % (tf.name, sf.name)
2988 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07002989 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002990 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07002991 logger.info(
2992 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
2993 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002994 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07002995 except Exception:
2996 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002997 raise
2998
2999 # start worker threads; wait for them all to finish.
3000 threads = [threading.Thread(target=worker)
3001 for i in range(OPTIONS.worker_threads)]
3002 for th in threads:
3003 th.start()
3004 while threads:
3005 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003006
3007
Dan Albert8b72aef2015-03-23 19:13:21 -07003008class BlockDifference(object):
3009 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003010 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003011 self.tgt = tgt
3012 self.src = src
3013 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003014 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003015 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003016
Tao Baodd2a5892015-03-12 12:32:37 -07003017 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003018 version = max(
3019 int(i) for i in
3020 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003021 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003022 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003023
Tianjie Xu41976c72019-07-03 13:57:01 -07003024 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3025 version=self.version,
3026 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003027 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003028 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003029 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003030 self.touched_src_ranges = b.touched_src_ranges
3031 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003032
Yifan Hong10c530d2018-12-27 17:34:18 -08003033 # On devices with dynamic partitions, for new partitions,
3034 # src is None but OPTIONS.source_info_dict is not.
3035 if OPTIONS.source_info_dict is None:
3036 is_dynamic_build = OPTIONS.info_dict.get(
3037 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003038 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003039 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003040 is_dynamic_build = OPTIONS.source_info_dict.get(
3041 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003042 is_dynamic_source = partition in shlex.split(
3043 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003044
Yifan Hongbb2658d2019-01-25 12:30:58 -08003045 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003046 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3047
Yifan Hongbb2658d2019-01-25 12:30:58 -08003048 # For dynamic partitions builds, check partition list in both source
3049 # and target build because new partitions may be added, and existing
3050 # partitions may be removed.
3051 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3052
Yifan Hong10c530d2018-12-27 17:34:18 -08003053 if is_dynamic:
3054 self.device = 'map_partition("%s")' % partition
3055 else:
3056 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003057 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3058 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003059 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003060 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3061 OPTIONS.source_info_dict)
3062 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003063
Tao Baod8d14be2016-02-04 14:26:02 -08003064 @property
3065 def required_cache(self):
3066 return self._required_cache
3067
Tao Bao76def242017-11-21 09:25:31 -08003068 def WriteScript(self, script, output_zip, progress=None,
3069 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003070 if not self.src:
3071 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003072 script.Print("Patching %s image unconditionally..." % (self.partition,))
3073 else:
3074 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003075
Dan Albert8b72aef2015-03-23 19:13:21 -07003076 if progress:
3077 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003078 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003079
3080 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003081 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003082
Tao Bao9bc6bb22015-11-09 16:58:28 -08003083 def WriteStrictVerifyScript(self, script):
3084 """Verify all the blocks in the care_map, including clobbered blocks.
3085
3086 This differs from the WriteVerifyScript() function: a) it prints different
3087 error messages; b) it doesn't allow half-way updated images to pass the
3088 verification."""
3089
3090 partition = self.partition
3091 script.Print("Verifying %s..." % (partition,))
3092 ranges = self.tgt.care_map
3093 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003094 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003095 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3096 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003097 self.device, ranges_str,
3098 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003099 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003100 script.AppendExtra("")
3101
Tao Baod522bdc2016-04-12 15:53:16 -07003102 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003103 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003104
3105 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003106 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003107 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003108
3109 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003110 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003111 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003112 ranges = self.touched_src_ranges
3113 expected_sha1 = self.touched_src_sha1
3114 else:
3115 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3116 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003117
3118 # No blocks to be checked, skipping.
3119 if not ranges:
3120 return
3121
Tao Bao5ece99d2015-05-12 11:42:31 -07003122 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003123 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003124 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003125 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3126 '"%s.patch.dat")) then' % (
3127 self.device, ranges_str, expected_sha1,
3128 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003129 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003130 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003131
Tianjie Xufc3422a2015-12-15 11:53:59 -08003132 if self.version >= 4:
3133
3134 # Bug: 21124327
3135 # When generating incrementals for the system and vendor partitions in
3136 # version 4 or newer, explicitly check the first block (which contains
3137 # the superblock) of the partition to see if it's what we expect. If
3138 # this check fails, give an explicit log message about the partition
3139 # having been remounted R/W (the most likely explanation).
3140 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003141 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003142
3143 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003144 if partition == "system":
3145 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3146 else:
3147 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003148 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003149 'ifelse (block_image_recover({device}, "{ranges}") && '
3150 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003151 'package_extract_file("{partition}.transfer.list"), '
3152 '"{partition}.new.dat", "{partition}.patch.dat"), '
3153 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003154 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003155 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003156 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003157
Tao Baodd2a5892015-03-12 12:32:37 -07003158 # Abort the OTA update. Note that the incremental OTA cannot be applied
3159 # even if it may match the checksum of the target partition.
3160 # a) If version < 3, operations like move and erase will make changes
3161 # unconditionally and damage the partition.
3162 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003163 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003164 if partition == "system":
3165 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3166 else:
3167 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3168 script.AppendExtra((
3169 'abort("E%d: %s partition has unexpected contents");\n'
3170 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003171
Yifan Hong10c530d2018-12-27 17:34:18 -08003172 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003173 partition = self.partition
3174 script.Print('Verifying the updated %s image...' % (partition,))
3175 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3176 ranges = self.tgt.care_map
3177 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003178 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003179 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003180 self.device, ranges_str,
3181 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003182
3183 # Bug: 20881595
3184 # Verify that extended blocks are really zeroed out.
3185 if self.tgt.extended:
3186 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003187 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003188 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003189 self.device, ranges_str,
3190 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003191 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003192 if partition == "system":
3193 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3194 else:
3195 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003196 script.AppendExtra(
3197 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003198 ' abort("E%d: %s partition has unexpected non-zero contents after '
3199 'OTA update");\n'
3200 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003201 else:
3202 script.Print('Verified the updated %s image.' % (partition,))
3203
Tianjie Xu209db462016-05-24 17:34:52 -07003204 if partition == "system":
3205 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3206 else:
3207 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3208
Tao Bao5fcaaef2015-06-01 13:40:49 -07003209 script.AppendExtra(
3210 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003211 ' abort("E%d: %s partition has unexpected contents after OTA '
3212 'update");\n'
3213 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003214
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003215 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003216 ZipWrite(output_zip,
3217 '{}.transfer.list'.format(self.path),
3218 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003219
Tao Bao76def242017-11-21 09:25:31 -08003220 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3221 # its size. Quailty 9 almost triples the compression time but doesn't
3222 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003223 # zip | brotli(quality 6) | brotli(quality 9)
3224 # compressed_size: 942M | 869M (~8% reduced) | 854M
3225 # compression_time: 75s | 265s | 719s
3226 # decompression_time: 15s | 25s | 25s
3227
3228 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003229 brotli_cmd = ['brotli', '--quality=6',
3230 '--output={}.new.dat.br'.format(self.path),
3231 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003232 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003233 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003234
3235 new_data_name = '{}.new.dat.br'.format(self.partition)
3236 ZipWrite(output_zip,
3237 '{}.new.dat.br'.format(self.path),
3238 new_data_name,
3239 compress_type=zipfile.ZIP_STORED)
3240 else:
3241 new_data_name = '{}.new.dat'.format(self.partition)
3242 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3243
Dan Albert8e0178d2015-01-27 15:53:15 -08003244 ZipWrite(output_zip,
3245 '{}.patch.dat'.format(self.path),
3246 '{}.patch.dat'.format(self.partition),
3247 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003248
Tianjie Xu209db462016-05-24 17:34:52 -07003249 if self.partition == "system":
3250 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3251 else:
3252 code = ErrorCode.VENDOR_UPDATE_FAILURE
3253
Yifan Hong10c530d2018-12-27 17:34:18 -08003254 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003255 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003256 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003257 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003258 device=self.device, partition=self.partition,
3259 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003260 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003261
Kelvin Zhang0876c412020-06-23 15:06:58 -04003262 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003263 data = source.ReadRangeSet(ranges)
3264 ctx = sha1()
3265
3266 for p in data:
3267 ctx.update(p)
3268
3269 return ctx.hexdigest()
3270
Kelvin Zhang0876c412020-06-23 15:06:58 -04003271 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003272 """Return the hash value for all zero blocks."""
3273 zero_block = '\x00' * 4096
3274 ctx = sha1()
3275 for _ in range(num_blocks):
3276 ctx.update(zero_block)
3277
3278 return ctx.hexdigest()
3279
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003280
Tianjie Xu41976c72019-07-03 13:57:01 -07003281# Expose these two classes to support vendor-specific scripts
3282DataImage = images.DataImage
3283EmptyImage = images.EmptyImage
3284
Tao Bao76def242017-11-21 09:25:31 -08003285
Doug Zongker96a57e72010-09-26 14:57:41 -07003286# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003287PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003288 "ext4": "EMMC",
3289 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003290 "f2fs": "EMMC",
3291 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003292}
Doug Zongker96a57e72010-09-26 14:57:41 -07003293
Kelvin Zhang0876c412020-06-23 15:06:58 -04003294
Yifan Hongbdb32012020-05-07 12:38:53 -07003295def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3296 """
3297 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3298 backwards compatibility. It aborts if the fstab entry has slotselect option
3299 (unless check_no_slot is explicitly set to False).
3300 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003301 fstab = info["fstab"]
3302 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003303 if check_no_slot:
3304 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003305 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003306 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3307 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003308 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003309
3310
Yifan Hongbdb32012020-05-07 12:38:53 -07003311def GetTypeAndDeviceExpr(mount_point, info):
3312 """
3313 Return the filesystem of the partition, and an edify expression that evaluates
3314 to the device at runtime.
3315 """
3316 fstab = info["fstab"]
3317 if fstab:
3318 p = fstab[mount_point]
3319 device_expr = '"%s"' % fstab[mount_point].device
3320 if p.slotselect:
3321 device_expr = 'add_slot_suffix(%s)' % device_expr
3322 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003323 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003324
3325
3326def GetEntryForDevice(fstab, device):
3327 """
3328 Returns:
3329 The first entry in fstab whose device is the given value.
3330 """
3331 if not fstab:
3332 return None
3333 for mount_point in fstab:
3334 if fstab[mount_point].device == device:
3335 return fstab[mount_point]
3336 return None
3337
Kelvin Zhang0876c412020-06-23 15:06:58 -04003338
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003339def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003340 """Parses and converts a PEM-encoded certificate into DER-encoded.
3341
3342 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3343
3344 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003345 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003346 """
3347 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003348 save = False
3349 for line in data.split("\n"):
3350 if "--END CERTIFICATE--" in line:
3351 break
3352 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003353 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003354 if "--BEGIN CERTIFICATE--" in line:
3355 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003356 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003357 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003358
Tao Bao04e1f012018-02-04 12:13:35 -08003359
3360def ExtractPublicKey(cert):
3361 """Extracts the public key (PEM-encoded) from the given certificate file.
3362
3363 Args:
3364 cert: The certificate filename.
3365
3366 Returns:
3367 The public key string.
3368
3369 Raises:
3370 AssertionError: On non-zero return from 'openssl'.
3371 """
3372 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3373 # While openssl 1.1 writes the key into the given filename followed by '-out',
3374 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3375 # stdout instead.
3376 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3377 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3378 pubkey, stderrdata = proc.communicate()
3379 assert proc.returncode == 0, \
3380 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3381 return pubkey
3382
3383
Tao Bao1ac886e2019-06-26 11:58:22 -07003384def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003385 """Extracts the AVB public key from the given public or private key.
3386
3387 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003388 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003389 key: The input key file, which should be PEM-encoded public or private key.
3390
3391 Returns:
3392 The path to the extracted AVB public key file.
3393 """
3394 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3395 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003396 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003397 return output
3398
3399
Doug Zongker412c02f2014-02-13 10:58:24 -08003400def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3401 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003402 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003403
Tao Bao6d5d6232018-03-09 17:04:42 -08003404 Most of the space in the boot and recovery images is just the kernel, which is
3405 identical for the two, so the resulting patch should be efficient. Add it to
3406 the output zip, along with a shell script that is run from init.rc on first
3407 boot to actually do the patching and install the new recovery image.
3408
3409 Args:
3410 input_dir: The top-level input directory of the target-files.zip.
3411 output_sink: The callback function that writes the result.
3412 recovery_img: File object for the recovery image.
3413 boot_img: File objects for the boot image.
3414 info_dict: A dict returned by common.LoadInfoDict() on the input
3415 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003416 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003417 if info_dict is None:
3418 info_dict = OPTIONS.info_dict
3419
Tao Bao6d5d6232018-03-09 17:04:42 -08003420 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003421 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3422
3423 if board_uses_vendorimage:
3424 # In this case, the output sink is rooted at VENDOR
3425 recovery_img_path = "etc/recovery.img"
3426 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3427 sh_dir = "bin"
3428 else:
3429 # In this case the output sink is rooted at SYSTEM
3430 recovery_img_path = "vendor/etc/recovery.img"
3431 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3432 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003433
Tao Baof2cffbd2015-07-22 12:33:18 -07003434 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003435 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003436
3437 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003438 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003439 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003440 # With system-root-image, boot and recovery images will have mismatching
3441 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3442 # to handle such a case.
3443 if system_root_image:
3444 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003445 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003446 assert not os.path.exists(path)
3447 else:
3448 diff_program = ["imgdiff"]
3449 if os.path.exists(path):
3450 diff_program.append("-b")
3451 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003452 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003453 else:
3454 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003455
3456 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3457 _, _, patch = d.ComputePatch()
3458 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003459
Dan Albertebb19aa2015-03-27 19:11:53 -07003460 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003461 # The following GetTypeAndDevice()s need to use the path in the target
3462 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003463 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3464 check_no_slot=False)
3465 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3466 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003467 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003468 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003469
Tao Baof2cffbd2015-07-22 12:33:18 -07003470 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003471
3472 # Note that we use /vendor to refer to the recovery resources. This will
3473 # work for a separate vendor partition mounted at /vendor or a
3474 # /system/vendor subdirectory on the system partition, for which init will
3475 # create a symlink from /vendor to /system/vendor.
3476
3477 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003478if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3479 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003480 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003481 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3482 log -t recovery "Installing new recovery image: succeeded" || \\
3483 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003484else
3485 log -t recovery "Recovery image already installed"
3486fi
3487""" % {'type': recovery_type,
3488 'device': recovery_device,
3489 'sha1': recovery_img.sha1,
3490 'size': recovery_img.size}
3491 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003492 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003493if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3494 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003495 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003496 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3497 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3498 log -t recovery "Installing new recovery image: succeeded" || \\
3499 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003500else
3501 log -t recovery "Recovery image already installed"
3502fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003503""" % {'boot_size': boot_img.size,
3504 'boot_sha1': boot_img.sha1,
3505 'recovery_size': recovery_img.size,
3506 'recovery_sha1': recovery_img.sha1,
3507 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003508 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003509 'recovery_type': recovery_type,
3510 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003511 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003512
Bill Peckhame868aec2019-09-17 17:06:47 -07003513 # The install script location moved from /system/etc to /system/bin in the L
3514 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3515 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003516
Tao Bao32fcdab2018-10-12 10:30:39 -07003517 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003518
Tao Baoda30cfa2017-12-01 16:19:46 -08003519 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003520
3521
3522class DynamicPartitionUpdate(object):
3523 def __init__(self, src_group=None, tgt_group=None, progress=None,
3524 block_difference=None):
3525 self.src_group = src_group
3526 self.tgt_group = tgt_group
3527 self.progress = progress
3528 self.block_difference = block_difference
3529
3530 @property
3531 def src_size(self):
3532 if not self.block_difference:
3533 return 0
3534 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3535
3536 @property
3537 def tgt_size(self):
3538 if not self.block_difference:
3539 return 0
3540 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3541
3542 @staticmethod
3543 def _GetSparseImageSize(img):
3544 if not img:
3545 return 0
3546 return img.blocksize * img.total_blocks
3547
3548
3549class DynamicGroupUpdate(object):
3550 def __init__(self, src_size=None, tgt_size=None):
3551 # None: group does not exist. 0: no size limits.
3552 self.src_size = src_size
3553 self.tgt_size = tgt_size
3554
3555
3556class DynamicPartitionsDifference(object):
3557 def __init__(self, info_dict, block_diffs, progress_dict=None,
3558 source_info_dict=None):
3559 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003560 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003561
3562 self._remove_all_before_apply = False
3563 if source_info_dict is None:
3564 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003565 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003566
Tao Baof1113e92019-06-18 12:10:14 -07003567 block_diff_dict = collections.OrderedDict(
3568 [(e.partition, e) for e in block_diffs])
3569
Yifan Hong10c530d2018-12-27 17:34:18 -08003570 assert len(block_diff_dict) == len(block_diffs), \
3571 "Duplicated BlockDifference object for {}".format(
3572 [partition for partition, count in
3573 collections.Counter(e.partition for e in block_diffs).items()
3574 if count > 1])
3575
Yifan Hong79997e52019-01-23 16:56:19 -08003576 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003577
3578 for p, block_diff in block_diff_dict.items():
3579 self._partition_updates[p] = DynamicPartitionUpdate()
3580 self._partition_updates[p].block_difference = block_diff
3581
3582 for p, progress in progress_dict.items():
3583 if p in self._partition_updates:
3584 self._partition_updates[p].progress = progress
3585
3586 tgt_groups = shlex.split(info_dict.get(
3587 "super_partition_groups", "").strip())
3588 src_groups = shlex.split(source_info_dict.get(
3589 "super_partition_groups", "").strip())
3590
3591 for g in tgt_groups:
3592 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003593 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003594 assert p in self._partition_updates, \
3595 "{} is in target super_{}_partition_list but no BlockDifference " \
3596 "object is provided.".format(p, g)
3597 self._partition_updates[p].tgt_group = g
3598
3599 for g in src_groups:
3600 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003601 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003602 assert p in self._partition_updates, \
3603 "{} is in source super_{}_partition_list but no BlockDifference " \
3604 "object is provided.".format(p, g)
3605 self._partition_updates[p].src_group = g
3606
Yifan Hong45433e42019-01-18 13:55:25 -08003607 target_dynamic_partitions = set(shlex.split(info_dict.get(
3608 "dynamic_partition_list", "").strip()))
3609 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3610 if u.tgt_size)
3611 assert block_diffs_with_target == target_dynamic_partitions, \
3612 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3613 list(target_dynamic_partitions), list(block_diffs_with_target))
3614
3615 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3616 "dynamic_partition_list", "").strip()))
3617 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3618 if u.src_size)
3619 assert block_diffs_with_source == source_dynamic_partitions, \
3620 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3621 list(source_dynamic_partitions), list(block_diffs_with_source))
3622
Yifan Hong10c530d2018-12-27 17:34:18 -08003623 if self._partition_updates:
3624 logger.info("Updating dynamic partitions %s",
3625 self._partition_updates.keys())
3626
Yifan Hong79997e52019-01-23 16:56:19 -08003627 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003628
3629 for g in tgt_groups:
3630 self._group_updates[g] = DynamicGroupUpdate()
3631 self._group_updates[g].tgt_size = int(info_dict.get(
3632 "super_%s_group_size" % g, "0").strip())
3633
3634 for g in src_groups:
3635 if g not in self._group_updates:
3636 self._group_updates[g] = DynamicGroupUpdate()
3637 self._group_updates[g].src_size = int(source_info_dict.get(
3638 "super_%s_group_size" % g, "0").strip())
3639
3640 self._Compute()
3641
3642 def WriteScript(self, script, output_zip, write_verify_script=False):
3643 script.Comment('--- Start patching dynamic partitions ---')
3644 for p, u in self._partition_updates.items():
3645 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3646 script.Comment('Patch partition %s' % p)
3647 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3648 write_verify_script=False)
3649
3650 op_list_path = MakeTempFile()
3651 with open(op_list_path, 'w') as f:
3652 for line in self._op_list:
3653 f.write('{}\n'.format(line))
3654
3655 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3656
3657 script.Comment('Update dynamic partition metadata')
3658 script.AppendExtra('assert(update_dynamic_partitions('
3659 'package_extract_file("dynamic_partitions_op_list")));')
3660
3661 if write_verify_script:
3662 for p, u in self._partition_updates.items():
3663 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3664 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003665 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003666
3667 for p, u in self._partition_updates.items():
3668 if u.tgt_size and u.src_size <= u.tgt_size:
3669 script.Comment('Patch partition %s' % p)
3670 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3671 write_verify_script=write_verify_script)
3672 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003673 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003674
3675 script.Comment('--- End patching dynamic partitions ---')
3676
3677 def _Compute(self):
3678 self._op_list = list()
3679
3680 def append(line):
3681 self._op_list.append(line)
3682
3683 def comment(line):
3684 self._op_list.append("# %s" % line)
3685
3686 if self._remove_all_before_apply:
3687 comment('Remove all existing dynamic partitions and groups before '
3688 'applying full OTA')
3689 append('remove_all_groups')
3690
3691 for p, u in self._partition_updates.items():
3692 if u.src_group and not u.tgt_group:
3693 append('remove %s' % p)
3694
3695 for p, u in self._partition_updates.items():
3696 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3697 comment('Move partition %s from %s to default' % (p, u.src_group))
3698 append('move %s default' % p)
3699
3700 for p, u in self._partition_updates.items():
3701 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3702 comment('Shrink partition %s from %d to %d' %
3703 (p, u.src_size, u.tgt_size))
3704 append('resize %s %s' % (p, u.tgt_size))
3705
3706 for g, u in self._group_updates.items():
3707 if u.src_size is not None and u.tgt_size is None:
3708 append('remove_group %s' % g)
3709 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003710 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003711 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3712 append('resize_group %s %d' % (g, u.tgt_size))
3713
3714 for g, u in self._group_updates.items():
3715 if u.src_size is None and u.tgt_size is not None:
3716 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3717 append('add_group %s %d' % (g, u.tgt_size))
3718 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003719 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003720 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3721 append('resize_group %s %d' % (g, u.tgt_size))
3722
3723 for p, u in self._partition_updates.items():
3724 if u.tgt_group and not u.src_group:
3725 comment('Add partition %s to group %s' % (p, u.tgt_group))
3726 append('add %s %s' % (p, u.tgt_group))
3727
3728 for p, u in self._partition_updates.items():
3729 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003730 comment('Grow partition %s from %d to %d' %
3731 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003732 append('resize %s %d' % (p, u.tgt_size))
3733
3734 for p, u in self._partition_updates.items():
3735 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3736 comment('Move partition %s from default to %s' %
3737 (p, u.tgt_group))
3738 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003739
3740
jiajia tangf3f842b2021-03-17 21:49:44 +08003741def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003742 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003743 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003744
3745 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003746 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003747
3748 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003749 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003750 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003751 tmp_dir = MakeTempDir('boot_', suffix='.img')
3752 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003753 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3754 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003755 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3756 if not os.path.isfile(ramdisk):
3757 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3758 return None
3759 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003760 if ramdisk_format == RamdiskFormat.LZ4:
3761 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3762 elif ramdisk_format == RamdiskFormat.GZ:
3763 with open(ramdisk, 'rb') as input_stream:
3764 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003765 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3766 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003767 p2.wait()
3768 else:
3769 logger.error('Only support lz4 or minigzip ramdisk format.')
3770 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003771
3772 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3773 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3774 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3775 # the host environment.
3776 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003777 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003778
Yifan Hongc65a0542021-01-07 14:21:01 -08003779 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3780 prop_file = os.path.join(extracted_ramdisk, search_path)
3781 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003782 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003783 logger.warning(
3784 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003785
Yifan Hong7dc51172021-01-12 11:27:39 -08003786 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003787
Yifan Hong85ac5012021-01-07 14:43:46 -08003788 except ExternalError as e:
3789 logger.warning('Unable to get boot image build props: %s', e)
3790 return None
3791
3792
3793def GetBootImageTimestamp(boot_img):
3794 """
3795 Get timestamp from ramdisk within the boot image
3796
3797 Args:
3798 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3799
3800 Return:
3801 An integer that corresponds to the timestamp of the boot image, or None
3802 if file has unknown format. Raise exception if an unexpected error has
3803 occurred.
3804 """
3805 prop_file = GetBootImageBuildProp(boot_img)
3806 if not prop_file:
3807 return None
3808
3809 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3810 if props is None:
3811 return None
3812
3813 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003814 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3815 if timestamp:
3816 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003817 logger.warning(
3818 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003819 return None
3820
3821 except ExternalError as e:
3822 logger.warning('Unable to get boot image timestamp: %s', e)
3823 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003824
3825
3826def GetCareMap(which, imgname):
3827 """Returns the care_map string for the given partition.
3828
3829 Args:
3830 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
3831 imgname: The filename of the image.
3832
3833 Returns:
3834 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
3835 RangeSet; or None.
3836 """
3837 assert which in PARTITIONS_WITH_CARE_MAP
3838
3839 # which + "_image_size" contains the size that the actual filesystem image
3840 # resides in, which is all that needs to be verified. The additional blocks in
3841 # the image file contain verity metadata, by reading which would trigger
3842 # invalid reads.
3843 image_size = OPTIONS.info_dict.get(which + "_image_size")
3844 if not image_size:
3845 return None
3846
3847 image_blocks = int(image_size) // 4096 - 1
3848 assert image_blocks > 0, "blocks for {} must be positive".format(which)
3849
3850 # For sparse images, we will only check the blocks that are listed in the care
3851 # map, i.e. the ones with meaningful data.
3852 if "extfs_sparse_flag" in OPTIONS.info_dict:
3853 simg = sparse_img.SparseImage(imgname)
3854 care_map_ranges = simg.care_map.intersect(
3855 rangelib.RangeSet("0-{}".format(image_blocks)))
3856
3857 # Otherwise for non-sparse images, we read all the blocks in the filesystem
3858 # image.
3859 else:
3860 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
3861
3862 return [which, care_map_ranges.to_string_raw()]
3863
3864
3865def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
3866 """Generates and adds care_map.pb for a/b partition that has care_map.
3867
3868 Args:
3869 output_file: The output zip file (needs to be already open),
3870 or file path to write care_map.pb.
3871 ab_partitions: The list of A/B partitions.
3872 image_paths: A map from the partition name to the image path.
3873 """
3874 if not output_file:
3875 raise ExternalError('Expected output_file for AddCareMapForAbOta')
3876
3877 care_map_list = []
3878 for partition in ab_partitions:
3879 partition = partition.strip()
3880 if partition not in PARTITIONS_WITH_CARE_MAP:
3881 continue
3882
3883 verity_block_device = "{}_verity_block_device".format(partition)
3884 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
3885 if (verity_block_device in OPTIONS.info_dict or
3886 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
3887 if partition not in image_paths:
3888 logger.warning('Potential partition with care_map missing from images: %s',
3889 partition)
3890 continue
3891 image_path = image_paths[partition]
3892 if not os.path.exists(image_path):
3893 raise ExternalError('Expected image at path {}'.format(image_path))
3894
3895 care_map = GetCareMap(partition, image_path)
3896 if not care_map:
3897 continue
3898 care_map_list += care_map
3899
3900 # adds fingerprint field to the care_map
3901 # TODO(xunchang) revisit the fingerprint calculation for care_map.
3902 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
3903 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
3904 "ro.{}.build.thumbprint".format(partition)]
3905
3906 present_props = [x for x in prop_name_list if
3907 partition_props and partition_props.GetProp(x)]
3908 if not present_props:
3909 logger.warning(
3910 "fingerprint is not present for partition %s", partition)
3911 property_id, fingerprint = "unknown", "unknown"
3912 else:
3913 property_id = present_props[0]
3914 fingerprint = partition_props.GetProp(property_id)
3915 care_map_list += [property_id, fingerprint]
3916
3917 if not care_map_list:
3918 return
3919
3920 # Converts the list into proto buf message by calling care_map_generator; and
3921 # writes the result to a temp file.
3922 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
3923 suffix=".txt")
3924 with open(temp_care_map_text, 'w') as text_file:
3925 text_file.write('\n'.join(care_map_list))
3926
3927 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
3928 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
3929 RunAndCheckOutput(care_map_gen_cmd)
3930
3931 if not isinstance(output_file, zipfile.ZipFile):
3932 shutil.copy(temp_care_map, output_file)
3933 return
3934 # output_file is a zip file
3935 care_map_path = "META/care_map.pb"
3936 if care_map_path in output_file.namelist():
3937 # Copy the temp file into the OPTIONS.input_tmp dir and update the
3938 # replace_updated_files_list used by add_img_to_target_files
3939 if not OPTIONS.replace_updated_files_list:
3940 OPTIONS.replace_updated_files_list = []
3941 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
3942 OPTIONS.replace_updated_files_list.append(care_map_path)
3943 else:
3944 ZipWrite(output_file, temp_care_map, arcname=care_map_path)