blob: 60a9265720527678618a4cdee03b9dc7d8dbbf31 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080071 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
72 if "ANDROID_HOST_OUT" in os.environ:
73 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080074 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070075 self.extra_signapk_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000076 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070077 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080078 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080079 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070080 self.public_key_suffix = ".x509.pem"
81 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070082 # use otatools built boot_signer by default
83 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070084 self.boot_signer_args = []
85 self.verity_signer_path = None
86 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070087 self.verbose = False
88 self.tempfiles = []
89 self.device_specific = None
90 self.extras = {}
91 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070092 self.source_info_dict = None
93 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070094 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070095 # Stash size cannot exceed cache_size * threshold.
96 self.cache_size = None
97 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070098 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -070099 self.host_tools = {}
Dan Albert8b72aef2015-03-23 19:13:21 -0700100
101
102OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700103
Tao Bao71197512018-10-11 14:08:45 -0700104# The block size that's used across the releasetools scripts.
105BLOCK_SIZE = 4096
106
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800107# Values for "certificate" in apkcerts that mean special things.
108SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
109
Tao Bao5cc0abb2019-03-21 10:18:05 -0700110# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
111# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800112# descriptor into vbmeta.img. When adding a new entry here, the
113# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
114# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000115AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Andrew Sculle077cf72021-02-18 10:27:29 +0000116 'system', 'system_ext', 'vendor', 'vendor_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000117 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800118
Tao Bao08c190f2019-06-03 23:07:58 -0700119# Chained VBMeta partitions.
120AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
121
Tianjie Xu861f4132018-09-12 11:49:33 -0700122# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400123PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700124 'system',
125 'vendor',
126 'product',
127 'system_ext',
128 'odm',
129 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700130 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000131 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400132]
Tianjie Xu861f4132018-09-12 11:49:33 -0700133
Yifan Hong5057b952021-01-07 14:09:57 -0800134# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000135PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800136
Yifan Hongc65a0542021-01-07 14:21:01 -0800137# See sysprop.mk. If file is moved, add new search paths here; don't remove
138# existing search paths.
139RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700140
Kelvin Zhang563750f2021-04-28 12:46:17 -0400141
Tianjie Xu209db462016-05-24 17:34:52 -0700142class ErrorCode(object):
143 """Define error_codes for failures that happen during the actual
144 update package installation.
145
146 Error codes 0-999 are reserved for failures before the package
147 installation (i.e. low battery, package verification failure).
148 Detailed code in 'bootable/recovery/error_code.h' """
149
150 SYSTEM_VERIFICATION_FAILURE = 1000
151 SYSTEM_UPDATE_FAILURE = 1001
152 SYSTEM_UNEXPECTED_CONTENTS = 1002
153 SYSTEM_NONZERO_CONTENTS = 1003
154 SYSTEM_RECOVER_FAILURE = 1004
155 VENDOR_VERIFICATION_FAILURE = 2000
156 VENDOR_UPDATE_FAILURE = 2001
157 VENDOR_UNEXPECTED_CONTENTS = 2002
158 VENDOR_NONZERO_CONTENTS = 2003
159 VENDOR_RECOVER_FAILURE = 2004
160 OEM_PROP_MISMATCH = 3000
161 FINGERPRINT_MISMATCH = 3001
162 THUMBPRINT_MISMATCH = 3002
163 OLDER_BUILD = 3003
164 DEVICE_MISMATCH = 3004
165 BAD_PATCH_FILE = 3005
166 INSUFFICIENT_CACHE_SPACE = 3006
167 TUNE_PARTITION_FAILURE = 3007
168 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800169
Tao Bao80921982018-03-21 21:02:19 -0700170
Dan Albert8b72aef2015-03-23 19:13:21 -0700171class ExternalError(RuntimeError):
172 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700173
174
Tao Bao32fcdab2018-10-12 10:30:39 -0700175def InitLogging():
176 DEFAULT_LOGGING_CONFIG = {
177 'version': 1,
178 'disable_existing_loggers': False,
179 'formatters': {
180 'standard': {
181 'format':
182 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
183 'datefmt': '%Y-%m-%d %H:%M:%S',
184 },
185 },
186 'handlers': {
187 'default': {
188 'class': 'logging.StreamHandler',
189 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700190 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700191 },
192 },
193 'loggers': {
194 '': {
195 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700196 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700197 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700198 }
199 }
200 }
201 env_config = os.getenv('LOGGING_CONFIG')
202 if env_config:
203 with open(env_config) as f:
204 config = json.load(f)
205 else:
206 config = DEFAULT_LOGGING_CONFIG
207
208 # Increase the logging level for verbose mode.
209 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700210 config = copy.deepcopy(config)
211 config['handlers']['default']['level'] = 'INFO'
212
213 if OPTIONS.logfile:
214 config = copy.deepcopy(config)
215 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400216 'class': 'logging.FileHandler',
217 'formatter': 'standard',
218 'level': 'INFO',
219 'mode': 'w',
220 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700221 }
222 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700223
224 logging.config.dictConfig(config)
225
226
Yifan Hong8e332ff2020-07-29 17:51:55 -0700227def SetHostToolLocation(tool_name, location):
228 OPTIONS.host_tools[tool_name] = location
229
Kelvin Zhang563750f2021-04-28 12:46:17 -0400230
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900231def FindHostToolPath(tool_name):
232 """Finds the path to the host tool.
233
234 Args:
235 tool_name: name of the tool to find
236 Returns:
237 path to the tool if found under either one of the host_tools map or under
238 the same directory as this binary is located at. If not found, tool_name
239 is returned.
240 """
241 if tool_name in OPTIONS.host_tools:
242 return OPTIONS.host_tools[tool_name]
243
244 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
245 tool_path = os.path.join(my_dir, tool_name)
246 if os.path.exists(tool_path):
247 return tool_path
248
249 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700250
Kelvin Zhang563750f2021-04-28 12:46:17 -0400251
Tao Bao39451582017-05-04 11:10:47 -0700252def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700253 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700254
Tao Bao73dd4f42018-10-04 16:25:33 -0700255 Args:
256 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700257 verbose: Whether the commands should be shown. Default to the global
258 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700259 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
260 stdin, etc. stdout and stderr will default to subprocess.PIPE and
261 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800262 universal_newlines will default to True, as most of the users in
263 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700264
265 Returns:
266 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700267 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700268 if 'stdout' not in kwargs and 'stderr' not in kwargs:
269 kwargs['stdout'] = subprocess.PIPE
270 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800271 if 'universal_newlines' not in kwargs:
272 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700273
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900274 if args:
275 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700276 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900277 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700278
Kelvin Zhang766eea72021-06-03 09:36:08 -0400279 if verbose is None:
280 verbose = OPTIONS.verbose
281
Tao Bao32fcdab2018-10-12 10:30:39 -0700282 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400283 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700284 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700285 return subprocess.Popen(args, **kwargs)
286
287
Tao Bao986ee862018-10-04 15:46:16 -0700288def RunAndCheckOutput(args, verbose=None, **kwargs):
289 """Runs the given command and returns the output.
290
291 Args:
292 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700293 verbose: Whether the commands should be shown. Default to the global
294 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700295 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
296 stdin, etc. stdout and stderr will default to subprocess.PIPE and
297 subprocess.STDOUT respectively unless caller specifies any of them.
298
299 Returns:
300 The output string.
301
302 Raises:
303 ExternalError: On non-zero exit from the command.
304 """
Tao Bao986ee862018-10-04 15:46:16 -0700305 proc = Run(args, verbose=verbose, **kwargs)
306 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800307 if output is None:
308 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700309 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400310 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700311 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700312 if proc.returncode != 0:
313 raise ExternalError(
314 "Failed to run command '{}' (exit code {}):\n{}".format(
315 args, proc.returncode, output))
316 return output
317
318
Tao Baoc765cca2018-01-31 17:32:40 -0800319def RoundUpTo4K(value):
320 rounded_up = value + 4095
321 return rounded_up - (rounded_up % 4096)
322
323
Ying Wang7e6d4e42010-12-13 16:25:36 -0800324def CloseInheritedPipes():
325 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
326 before doing other work."""
327 if platform.system() != "Darwin":
328 return
329 for d in range(3, 1025):
330 try:
331 stat = os.fstat(d)
332 if stat is not None:
333 pipebit = stat[0] & 0x1000
334 if pipebit != 0:
335 os.close(d)
336 except OSError:
337 pass
338
339
Tao Bao1c320f82019-10-04 23:25:12 -0700340class BuildInfo(object):
341 """A class that holds the information for a given build.
342
343 This class wraps up the property querying for a given source or target build.
344 It abstracts away the logic of handling OEM-specific properties, and caches
345 the commonly used properties such as fingerprint.
346
347 There are two types of info dicts: a) build-time info dict, which is generated
348 at build time (i.e. included in a target_files zip); b) OEM info dict that is
349 specified at package generation time (via command line argument
350 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
351 having "oem_fingerprint_properties" in build-time info dict), all the queries
352 would be answered based on build-time info dict only. Otherwise if using
353 OEM-specific properties, some of them will be calculated from two info dicts.
354
355 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800356 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700357
358 Attributes:
359 info_dict: The build-time info dict.
360 is_ab: Whether it's a build that uses A/B OTA.
361 oem_dicts: A list of OEM dicts.
362 oem_props: A list of OEM properties that should be read from OEM dicts; None
363 if the build doesn't use any OEM-specific property.
364 fingerprint: The fingerprint of the build, which would be calculated based
365 on OEM properties if applicable.
366 device: The device name, which could come from OEM dicts if applicable.
367 """
368
369 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
370 "ro.product.manufacturer", "ro.product.model",
371 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700372 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
373 "product", "odm", "vendor", "system_ext", "system"]
374 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
375 "product", "product_services", "odm", "vendor", "system"]
376 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700377
Tianjiefdda51d2021-05-05 14:46:35 -0700378 # The length of vbmeta digest to append to the fingerprint
379 _VBMETA_DIGEST_SIZE_USED = 8
380
381 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700382 """Initializes a BuildInfo instance with the given dicts.
383
384 Note that it only wraps up the given dicts, without making copies.
385
386 Arguments:
387 info_dict: The build-time info dict.
388 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
389 that it always uses the first dict to calculate the fingerprint or the
390 device name. The rest would be used for asserting OEM properties only
391 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700392 use_legacy_id: Use the legacy build id to construct the fingerprint. This
393 is used when we need a BuildInfo class, while the vbmeta digest is
394 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700395
396 Raises:
397 ValueError: On invalid inputs.
398 """
399 self.info_dict = info_dict
400 self.oem_dicts = oem_dicts
401
402 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700403 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700404
Hongguang Chend7c160f2020-05-03 21:24:26 -0700405 # Skip _oem_props if oem_dicts is None to use BuildInfo in
406 # sign_target_files_apks
407 if self.oem_dicts:
408 self._oem_props = info_dict.get("oem_fingerprint_properties")
409 else:
410 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700411
Daniel Normand5fe8622020-01-08 17:01:11 -0800412 def check_fingerprint(fingerprint):
413 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
414 raise ValueError(
415 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
416 "3.2.2. Build Parameters.".format(fingerprint))
417
Daniel Normand5fe8622020-01-08 17:01:11 -0800418 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800419 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800420 try:
421 fingerprint = self.CalculatePartitionFingerprint(partition)
422 check_fingerprint(fingerprint)
423 self._partition_fingerprints[partition] = fingerprint
424 except ExternalError:
425 continue
426 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800427 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800428 # need a fingerprint when creating the image.
429 self._partition_fingerprints[
430 "system_other"] = self._partition_fingerprints["system"]
431
Tao Bao1c320f82019-10-04 23:25:12 -0700432 # These two should be computed only after setting self._oem_props.
433 self._device = self.GetOemProperty("ro.product.device")
434 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800435 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700436
437 @property
438 def is_ab(self):
439 return self._is_ab
440
441 @property
442 def device(self):
443 return self._device
444
445 @property
446 def fingerprint(self):
447 return self._fingerprint
448
449 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400450 def is_vabc(self):
451 vendor_prop = self.info_dict.get("vendor.build.prop")
452 vabc_enabled = vendor_prop and \
453 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
454 return vabc_enabled
455
456 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700457 def is_vabc_xor(self):
458 vendor_prop = self.info_dict.get("vendor.build.prop")
459 vabc_xor_enabled = vendor_prop and \
460 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
461 return vabc_xor_enabled
462
463 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400464 def vendor_suppressed_vabc(self):
465 vendor_prop = self.info_dict.get("vendor.build.prop")
466 vabc_suppressed = vendor_prop and \
467 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
468 return vabc_suppressed and vabc_suppressed.lower() == "true"
469
470 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700471 def oem_props(self):
472 return self._oem_props
473
Kelvin Zhanga19fb312021-07-26 14:05:02 -0400474 @property
475 def avb_enabled(self):
476 return self.get("avb_enable") == "true"
477
Tao Bao1c320f82019-10-04 23:25:12 -0700478 def __getitem__(self, key):
479 return self.info_dict[key]
480
481 def __setitem__(self, key, value):
482 self.info_dict[key] = value
483
484 def get(self, key, default=None):
485 return self.info_dict.get(key, default)
486
487 def items(self):
488 return self.info_dict.items()
489
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000490 def _GetRawBuildProp(self, prop, partition):
491 prop_file = '{}.build.prop'.format(
492 partition) if partition else 'build.prop'
493 partition_props = self.info_dict.get(prop_file)
494 if not partition_props:
495 return None
496 return partition_props.GetProp(prop)
497
Daniel Normand5fe8622020-01-08 17:01:11 -0800498 def GetPartitionBuildProp(self, prop, partition):
499 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800500
Devin Mooreb5195ff2022-02-11 18:44:26 +0000501 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
502 # This comes from the generic ramdisk
503 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800504
Daniel Normand5fe8622020-01-08 17:01:11 -0800505 # If provided a partition for this property, only look within that
506 # partition's build.prop.
507 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800508 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800509 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800510 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000511
512 prop_val = self._GetRawBuildProp(prop, partition)
513 if prop_val is not None:
514 return prop_val
515 raise ExternalError("couldn't find %s in %s.build.prop" %
516 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800517
Tao Bao1c320f82019-10-04 23:25:12 -0700518 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800519 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700520 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
521 return self._ResolveRoProductBuildProp(prop)
522
Tianjiefdda51d2021-05-05 14:46:35 -0700523 if prop == "ro.build.id":
524 return self._GetBuildId()
525
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000526 prop_val = self._GetRawBuildProp(prop, None)
527 if prop_val is not None:
528 return prop_val
529
530 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700531
532 def _ResolveRoProductBuildProp(self, prop):
533 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000534 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700535 if prop_val:
536 return prop_val
537
Steven Laver8e2086e2020-04-27 16:26:31 -0700538 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000539 source_order_val = self._GetRawBuildProp(
540 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700541 if source_order_val:
542 source_order = source_order_val.split(",")
543 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700544 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700545
546 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700547 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700548 raise ExternalError(
549 "Invalid ro.product.property_source_order '{}'".format(source_order))
550
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000551 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700552 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000553 "ro.product", "ro.product.{}".format(source_partition), 1)
554 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700555 if prop_val:
556 return prop_val
557
558 raise ExternalError("couldn't resolve {}".format(prop))
559
Steven Laver8e2086e2020-04-27 16:26:31 -0700560 def _GetRoProductPropsDefaultSourceOrder(self):
561 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
562 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000563 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700564 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000565 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700566 if android_version == "10":
567 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
568 # NOTE: float() conversion of android_version will have rounding error.
569 # We are checking for "9" or less, and using "< 10" is well outside of
570 # possible floating point rounding.
571 try:
572 android_version_val = float(android_version)
573 except ValueError:
574 android_version_val = 0
575 if android_version_val < 10:
576 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
577 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
578
Tianjieb37c5be2020-10-15 21:27:10 -0700579 def _GetPlatformVersion(self):
580 version_sdk = self.GetBuildProp("ro.build.version.sdk")
581 # init code switches to version_release_or_codename (see b/158483506). After
582 # API finalization, release_or_codename will be the same as release. This
583 # is the best effort to support pre-S dev stage builds.
584 if int(version_sdk) >= 30:
585 try:
586 return self.GetBuildProp("ro.build.version.release_or_codename")
587 except ExternalError:
588 logger.warning('Failed to find ro.build.version.release_or_codename')
589
590 return self.GetBuildProp("ro.build.version.release")
591
Tianjiefdda51d2021-05-05 14:46:35 -0700592 def _GetBuildId(self):
593 build_id = self._GetRawBuildProp("ro.build.id", None)
594 if build_id:
595 return build_id
596
597 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
598 if not legacy_build_id:
599 raise ExternalError("Couldn't find build id in property file")
600
601 if self.use_legacy_id:
602 return legacy_build_id
603
604 # Append the top 8 chars of vbmeta digest to the existing build id. The
605 # logic needs to match the one in init, so that OTA can deliver correctly.
606 avb_enable = self.info_dict.get("avb_enable") == "true"
607 if not avb_enable:
608 raise ExternalError("AVB isn't enabled when using legacy build id")
609
610 vbmeta_digest = self.info_dict.get("vbmeta_digest")
611 if not vbmeta_digest:
612 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
613 " id")
614 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
615 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
616
617 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
618 return legacy_build_id + '.' + digest_prefix
619
Tianjieb37c5be2020-10-15 21:27:10 -0700620 def _GetPartitionPlatformVersion(self, partition):
621 try:
622 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
623 partition)
624 except ExternalError:
625 return self.GetPartitionBuildProp("ro.build.version.release",
626 partition)
627
Tao Bao1c320f82019-10-04 23:25:12 -0700628 def GetOemProperty(self, key):
629 if self.oem_props is not None and key in self.oem_props:
630 return self.oem_dicts[0][key]
631 return self.GetBuildProp(key)
632
Daniel Normand5fe8622020-01-08 17:01:11 -0800633 def GetPartitionFingerprint(self, partition):
634 return self._partition_fingerprints.get(partition, None)
635
636 def CalculatePartitionFingerprint(self, partition):
637 try:
638 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
639 except ExternalError:
640 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
641 self.GetPartitionBuildProp("ro.product.brand", partition),
642 self.GetPartitionBuildProp("ro.product.name", partition),
643 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700644 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800645 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400646 self.GetPartitionBuildProp(
647 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800648 self.GetPartitionBuildProp("ro.build.type", partition),
649 self.GetPartitionBuildProp("ro.build.tags", partition))
650
Tao Bao1c320f82019-10-04 23:25:12 -0700651 def CalculateFingerprint(self):
652 if self.oem_props is None:
653 try:
654 return self.GetBuildProp("ro.build.fingerprint")
655 except ExternalError:
656 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
657 self.GetBuildProp("ro.product.brand"),
658 self.GetBuildProp("ro.product.name"),
659 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700660 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700661 self.GetBuildProp("ro.build.id"),
662 self.GetBuildProp("ro.build.version.incremental"),
663 self.GetBuildProp("ro.build.type"),
664 self.GetBuildProp("ro.build.tags"))
665 return "%s/%s/%s:%s" % (
666 self.GetOemProperty("ro.product.brand"),
667 self.GetOemProperty("ro.product.name"),
668 self.GetOemProperty("ro.product.device"),
669 self.GetBuildProp("ro.build.thumbprint"))
670
671 def WriteMountOemScript(self, script):
672 assert self.oem_props is not None
673 recovery_mount_options = self.info_dict.get("recovery_mount_options")
674 script.Mount("/oem", recovery_mount_options)
675
676 def WriteDeviceAssertions(self, script, oem_no_mount):
677 # Read the property directly if not using OEM properties.
678 if not self.oem_props:
679 script.AssertDevice(self.device)
680 return
681
682 # Otherwise assert OEM properties.
683 if not self.oem_dicts:
684 raise ExternalError(
685 "No OEM file provided to answer expected assertions")
686
687 for prop in self.oem_props.split():
688 values = []
689 for oem_dict in self.oem_dicts:
690 if prop in oem_dict:
691 values.append(oem_dict[prop])
692 if not values:
693 raise ExternalError(
694 "The OEM file is missing the property %s" % (prop,))
695 script.AssertOemProperty(prop, values, oem_no_mount)
696
697
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000698def ReadFromInputFile(input_file, fn):
699 """Reads the contents of fn from input zipfile or directory."""
700 if isinstance(input_file, zipfile.ZipFile):
701 return input_file.read(fn).decode()
702 else:
703 path = os.path.join(input_file, *fn.split("/"))
704 try:
705 with open(path) as f:
706 return f.read()
707 except IOError as e:
708 if e.errno == errno.ENOENT:
709 raise KeyError(fn)
710
711
Yifan Hong10482a22021-01-07 14:38:41 -0800712def ExtractFromInputFile(input_file, fn):
713 """Extracts the contents of fn from input zipfile or directory into a file."""
714 if isinstance(input_file, zipfile.ZipFile):
715 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500716 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800717 f.write(input_file.read(fn))
718 return tmp_file
719 else:
720 file = os.path.join(input_file, *fn.split("/"))
721 if not os.path.exists(file):
722 raise KeyError(fn)
723 return file
724
Kelvin Zhang563750f2021-04-28 12:46:17 -0400725
jiajia tangf3f842b2021-03-17 21:49:44 +0800726class RamdiskFormat(object):
727 LZ4 = 1
728 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800729
Kelvin Zhang563750f2021-04-28 12:46:17 -0400730
jiajia tang836f76b2021-04-02 14:48:26 +0800731def _GetRamdiskFormat(info_dict):
732 if info_dict.get('lz4_ramdisks') == 'true':
733 ramdisk_format = RamdiskFormat.LZ4
734 else:
735 ramdisk_format = RamdiskFormat.GZ
736 return ramdisk_format
737
Kelvin Zhang563750f2021-04-28 12:46:17 -0400738
Tao Bao410ad8b2018-08-24 12:08:38 -0700739def LoadInfoDict(input_file, repacking=False):
740 """Loads the key/value pairs from the given input target_files.
741
Tianjiea85bdf02020-07-29 11:56:19 -0700742 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700743 checks and returns the parsed key/value pairs for to the given build. It's
744 usually called early when working on input target_files files, e.g. when
745 generating OTAs, or signing builds. Note that the function may be called
746 against an old target_files file (i.e. from past dessert releases). So the
747 property parsing needs to be backward compatible.
748
749 In a `META/misc_info.txt`, a few properties are stored as links to the files
750 in the PRODUCT_OUT directory. It works fine with the build system. However,
751 they are no longer available when (re)generating images from target_files zip.
752 When `repacking` is True, redirect these properties to the actual files in the
753 unzipped directory.
754
755 Args:
756 input_file: The input target_files file, which could be an open
757 zipfile.ZipFile instance, or a str for the dir that contains the files
758 unzipped from a target_files file.
759 repacking: Whether it's trying repack an target_files file after loading the
760 info dict (default: False). If so, it will rewrite a few loaded
761 properties (e.g. selinux_fc, root_dir) to point to the actual files in
762 target_files file. When doing repacking, `input_file` must be a dir.
763
764 Returns:
765 A dict that contains the parsed key/value pairs.
766
767 Raises:
768 AssertionError: On invalid input arguments.
769 ValueError: On malformed input values.
770 """
771 if repacking:
772 assert isinstance(input_file, str), \
773 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700774
Doug Zongkerc9253822014-02-04 12:17:58 -0800775 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000776 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800777
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700778 try:
Michael Runge6e836112014-04-15 17:40:21 -0700779 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700780 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700781 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700782
Tao Bao410ad8b2018-08-24 12:08:38 -0700783 if "recovery_api_version" not in d:
784 raise ValueError("Failed to find 'recovery_api_version'")
785 if "fstab_version" not in d:
786 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800787
Tao Bao410ad8b2018-08-24 12:08:38 -0700788 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700789 # "selinux_fc" properties should point to the file_contexts files
790 # (file_contexts.bin) under META/.
791 for key in d:
792 if key.endswith("selinux_fc"):
793 fc_basename = os.path.basename(d[key])
794 fc_config = os.path.join(input_file, "META", fc_basename)
795 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700796
Daniel Norman72c626f2019-05-13 15:58:14 -0700797 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700798
Tom Cherryd14b8952018-08-09 14:26:00 -0700799 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700800 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700801 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700802 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700803
David Anderson0ec64ac2019-12-06 12:21:18 -0800804 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700805 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000806 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800807 key_name = part_name + "_base_fs_file"
808 if key_name not in d:
809 continue
810 basename = os.path.basename(d[key_name])
811 base_fs_file = os.path.join(input_file, "META", basename)
812 if os.path.exists(base_fs_file):
813 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700814 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700815 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800816 "Failed to find %s base fs file: %s", part_name, base_fs_file)
817 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700818
Doug Zongker37974732010-09-16 17:44:38 -0700819 def makeint(key):
820 if key in d:
821 d[key] = int(d[key], 0)
822
823 makeint("recovery_api_version")
824 makeint("blocksize")
825 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700826 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700827 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700828 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700829 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800830 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700831
Steve Muckle903a1ca2020-05-07 17:32:10 -0700832 boot_images = "boot.img"
833 if "boot_images" in d:
834 boot_images = d["boot_images"]
835 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400836 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700837
Tao Bao765668f2019-10-04 22:03:00 -0700838 # Load recovery fstab if applicable.
839 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
jiajia tang836f76b2021-04-02 14:48:26 +0800840 ramdisk_format = _GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800841
Tianjie Xu861f4132018-09-12 11:49:33 -0700842 # Tries to load the build props for all partitions with care_map, including
843 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800844 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800845 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000846 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800847 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700848 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800849
Tao Bao3ed35d32019-10-07 20:48:48 -0700850 # Set up the salt (based on fingerprint) that will be used when adding AVB
851 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800852 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700853 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800854 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800855 fingerprint = build_info.GetPartitionFingerprint(partition)
856 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400857 d["avb_{}_salt".format(partition)] = sha256(
858 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700859
860 # Set the vbmeta digest if exists
861 try:
862 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
863 except KeyError:
864 pass
865
Kelvin Zhang39aea442020-08-17 11:04:25 -0400866 try:
867 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
868 except KeyError:
869 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700870 return d
871
Tao Baod1de6f32017-03-01 16:38:48 -0800872
Daniel Norman4cc9df62019-07-18 10:11:07 -0700873def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900874 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700875 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900876
Daniel Norman4cc9df62019-07-18 10:11:07 -0700877
878def LoadDictionaryFromFile(file_path):
879 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900880 return LoadDictionaryFromLines(lines)
881
882
Michael Runge6e836112014-04-15 17:40:21 -0700883def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700884 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700885 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700886 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700887 if not line or line.startswith("#"):
888 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700889 if "=" in line:
890 name, value = line.split("=", 1)
891 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700892 return d
893
Tao Baod1de6f32017-03-01 16:38:48 -0800894
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000895class PartitionBuildProps(object):
896 """The class holds the build prop of a particular partition.
897
898 This class loads the build.prop and holds the build properties for a given
899 partition. It also partially recognizes the 'import' statement in the
900 build.prop; and calculates alternative values of some specific build
901 properties during runtime.
902
903 Attributes:
904 input_file: a zipped target-file or an unzipped target-file directory.
905 partition: name of the partition.
906 props_allow_override: a list of build properties to search for the
907 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000908 build_props: a dict of build properties for the given partition.
909 prop_overrides: a set of props that are overridden by import.
910 placeholder_values: A dict of runtime variables' values to replace the
911 placeholders in the build.prop file. We expect exactly one value for
912 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800913 ramdisk_format: If name is "boot", the format of ramdisk inside the
914 boot image. Otherwise, its value is ignored.
915 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000916 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400917
Tianjie Xu9afb2212020-05-10 21:48:15 +0000918 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000919 self.input_file = input_file
920 self.partition = name
921 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000922 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000923 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000924 self.prop_overrides = set()
925 self.placeholder_values = {}
926 if placeholder_values:
927 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000928
929 @staticmethod
930 def FromDictionary(name, build_props):
931 """Constructs an instance from a build prop dictionary."""
932
933 props = PartitionBuildProps("unknown", name)
934 props.build_props = build_props.copy()
935 return props
936
937 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800938 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000939 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800940
Devin Mooreafdd7c72021-12-13 22:04:08 +0000941 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400942 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000943 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800944 else:
945 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
946
947 props = PartitionBuildProps(input_file, name, placeholder_values)
948 props._LoadBuildProp(data)
949 return props
950
951 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000952 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800953 """
954 Read build.prop for boot image from input_file.
955 Return empty string if not found.
956 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000957 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800958 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000959 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800960 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000961 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800962 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800963 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800964 if prop_file is None:
965 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500966 with open(prop_file, "r") as f:
967 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800968
969 @staticmethod
970 def _ReadPartitionPropFile(input_file, name):
971 """
972 Read build.prop for name from input_file.
973 Return empty string if not found.
974 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000975 data = ''
976 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
977 '{}/build.prop'.format(name.upper())]:
978 try:
979 data = ReadFromInputFile(input_file, prop_file)
980 break
981 except KeyError:
982 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -0800983 if data == '':
984 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -0800985 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000986
Yifan Hong125d0b62020-09-24 17:07:03 -0700987 @staticmethod
988 def FromBuildPropFile(name, build_prop_file):
989 """Constructs an instance from a build prop file."""
990
991 props = PartitionBuildProps("unknown", name)
992 with open(build_prop_file) as f:
993 props._LoadBuildProp(f.read())
994 return props
995
Tianjie Xu9afb2212020-05-10 21:48:15 +0000996 def _LoadBuildProp(self, data):
997 for line in data.split('\n'):
998 line = line.strip()
999 if not line or line.startswith("#"):
1000 continue
1001 if line.startswith("import"):
1002 overrides = self._ImportParser(line)
1003 duplicates = self.prop_overrides.intersection(overrides.keys())
1004 if duplicates:
1005 raise ValueError('prop {} is overridden multiple times'.format(
1006 ','.join(duplicates)))
1007 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1008 self.build_props.update(overrides)
1009 elif "=" in line:
1010 name, value = line.split("=", 1)
1011 if name in self.prop_overrides:
1012 raise ValueError('prop {} is set again after overridden by import '
1013 'statement'.format(name))
1014 self.build_props[name] = value
1015
1016 def _ImportParser(self, line):
1017 """Parses the build prop in a given import statement."""
1018
1019 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001020 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001021 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001022
1023 if len(tokens) == 3:
1024 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1025 return {}
1026
Tianjie Xu9afb2212020-05-10 21:48:15 +00001027 import_path = tokens[1]
1028 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
1029 raise ValueError('Unrecognized import path {}'.format(line))
1030
1031 # We only recognize a subset of import statement that the init process
1032 # supports. And we can loose the restriction based on how the dynamic
1033 # fingerprint is used in practice. The placeholder format should be
1034 # ${placeholder}, and its value should be provided by the caller through
1035 # the placeholder_values.
1036 for prop, value in self.placeholder_values.items():
1037 prop_place_holder = '${{{}}}'.format(prop)
1038 if prop_place_holder in import_path:
1039 import_path = import_path.replace(prop_place_holder, value)
1040 if '$' in import_path:
1041 logger.info('Unresolved place holder in import path %s', import_path)
1042 return {}
1043
1044 import_path = import_path.replace('/{}'.format(self.partition),
1045 self.partition.upper())
1046 logger.info('Parsing build props override from %s', import_path)
1047
1048 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1049 d = LoadDictionaryFromLines(lines)
1050 return {key: val for key, val in d.items()
1051 if key in self.props_allow_override}
1052
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001053 def GetProp(self, prop):
1054 return self.build_props.get(prop)
1055
1056
Tianjie Xucfa86222016-03-07 16:31:19 -08001057def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1058 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001059 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001060 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001061 self.mount_point = mount_point
1062 self.fs_type = fs_type
1063 self.device = device
1064 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001065 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001066 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001067
1068 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001069 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001070 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001071 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001072 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001073
Tao Baod1de6f32017-03-01 16:38:48 -08001074 assert fstab_version == 2
1075
1076 d = {}
1077 for line in data.split("\n"):
1078 line = line.strip()
1079 if not line or line.startswith("#"):
1080 continue
1081
1082 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1083 pieces = line.split()
1084 if len(pieces) != 5:
1085 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1086
1087 # Ignore entries that are managed by vold.
1088 options = pieces[4]
1089 if "voldmanaged=" in options:
1090 continue
1091
1092 # It's a good line, parse it.
1093 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001094 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001095 options = options.split(",")
1096 for i in options:
1097 if i.startswith("length="):
1098 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001099 elif i == "slotselect":
1100 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001101 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001102 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001103 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001104
Tao Baod1de6f32017-03-01 16:38:48 -08001105 mount_flags = pieces[3]
1106 # Honor the SELinux context if present.
1107 context = None
1108 for i in mount_flags.split(","):
1109 if i.startswith("context="):
1110 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001111
Tao Baod1de6f32017-03-01 16:38:48 -08001112 mount_point = pieces[1]
1113 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001114 device=pieces[0], length=length, context=context,
1115 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001116
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001117 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001118 # system. Other areas assume system is always at "/system" so point /system
1119 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001120 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001121 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001122 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001123 return d
1124
1125
Tao Bao765668f2019-10-04 22:03:00 -07001126def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1127 """Finds the path to recovery fstab and loads its contents."""
1128 # recovery fstab is only meaningful when installing an update via recovery
1129 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001130 if info_dict.get('ab_update') == 'true' and \
1131 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001132 return None
1133
1134 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1135 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1136 # cases, since it may load the info_dict from an old build (e.g. when
1137 # generating incremental OTAs from that build).
1138 system_root_image = info_dict.get('system_root_image') == 'true'
1139 if info_dict.get('no_recovery') != 'true':
1140 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1141 if isinstance(input_file, zipfile.ZipFile):
1142 if recovery_fstab_path not in input_file.namelist():
1143 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1144 else:
1145 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1146 if not os.path.exists(path):
1147 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1148 return LoadRecoveryFSTab(
1149 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1150 system_root_image)
1151
1152 if info_dict.get('recovery_as_boot') == 'true':
1153 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1154 if isinstance(input_file, zipfile.ZipFile):
1155 if recovery_fstab_path not in input_file.namelist():
1156 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1157 else:
1158 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1159 if not os.path.exists(path):
1160 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1161 return LoadRecoveryFSTab(
1162 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1163 system_root_image)
1164
1165 return None
1166
1167
Doug Zongker37974732010-09-16 17:44:38 -07001168def DumpInfoDict(d):
1169 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001170 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001171
Dan Albert8b72aef2015-03-23 19:13:21 -07001172
Daniel Norman55417142019-11-25 16:04:36 -08001173def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001174 """Merges dynamic partition info variables.
1175
1176 Args:
1177 framework_dict: The dictionary of dynamic partition info variables from the
1178 partial framework target files.
1179 vendor_dict: The dictionary of dynamic partition info variables from the
1180 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001181
1182 Returns:
1183 The merged dynamic partition info dictionary.
1184 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001185
1186 def uniq_concat(a, b):
1187 combined = set(a.split(" "))
1188 combined.update(set(b.split(" ")))
1189 combined = [item.strip() for item in combined if item.strip()]
1190 return " ".join(sorted(combined))
1191
1192 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhang563750f2021-04-28 12:46:17 -04001193 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001194 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1195
1196 merged_dict = {"use_dynamic_partitions": "true"}
1197
1198 merged_dict["dynamic_partition_list"] = uniq_concat(
1199 framework_dict.get("dynamic_partition_list", ""),
1200 vendor_dict.get("dynamic_partition_list", ""))
1201
1202 # Super block devices are defined by the vendor dict.
1203 if "super_block_devices" in vendor_dict:
1204 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
1205 for block_device in merged_dict["super_block_devices"].split(" "):
1206 key = "super_%s_device_size" % block_device
1207 if key not in vendor_dict:
1208 raise ValueError("Vendor dict does not contain required key %s." % key)
1209 merged_dict[key] = vendor_dict[key]
1210
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001211 # Partition groups and group sizes are defined by the vendor dict because
1212 # these values may vary for each board that uses a shared system image.
1213 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001214 for partition_group in merged_dict["super_partition_groups"].split(" "):
1215 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001216 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001217 if key not in vendor_dict:
1218 raise ValueError("Vendor dict does not contain required key %s." % key)
1219 merged_dict[key] = vendor_dict[key]
1220
1221 # Set the partition group's partition list using a concatenation of the
1222 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001223 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001224 merged_dict[key] = uniq_concat(
1225 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301226
Daniel Normanb0c75912020-09-24 14:30:21 -07001227 # Various other flags should be copied from the vendor dict, if defined.
1228 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1229 "super_metadata_device", "super_partition_error_limit",
1230 "super_partition_size"):
1231 if key in vendor_dict.keys():
1232 merged_dict[key] = vendor_dict[key]
1233
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001234 return merged_dict
1235
1236
Daniel Norman21c34f72020-11-11 17:25:50 -08001237def PartitionMapFromTargetFiles(target_files_dir):
1238 """Builds a map from partition -> path within an extracted target files directory."""
1239 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1240 possible_subdirs = {
1241 "system": ["SYSTEM"],
1242 "vendor": ["VENDOR", "SYSTEM/vendor"],
1243 "product": ["PRODUCT", "SYSTEM/product"],
1244 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1245 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1246 "vendor_dlkm": [
1247 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1248 ],
1249 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001250 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001251 }
1252 partition_map = {}
1253 for partition, subdirs in possible_subdirs.items():
1254 for subdir in subdirs:
1255 if os.path.exists(os.path.join(target_files_dir, subdir)):
1256 partition_map[partition] = subdir
1257 break
1258 return partition_map
1259
1260
Daniel Normand3351562020-10-29 12:33:11 -07001261def SharedUidPartitionViolations(uid_dict, partition_groups):
1262 """Checks for APK sharedUserIds that cross partition group boundaries.
1263
1264 This uses a single or merged build's shareduid_violation_modules.json
1265 output file, as generated by find_shareduid_violation.py or
1266 core/tasks/find-shareduid-violation.mk.
1267
1268 An error is defined as a sharedUserId that is found in a set of partitions
1269 that span more than one partition group.
1270
1271 Args:
1272 uid_dict: A dictionary created by using the standard json module to read a
1273 complete shareduid_violation_modules.json file.
1274 partition_groups: A list of groups, where each group is a list of
1275 partitions.
1276
1277 Returns:
1278 A list of error messages.
1279 """
1280 errors = []
1281 for uid, partitions in uid_dict.items():
1282 found_in_groups = [
1283 group for group in partition_groups
1284 if set(partitions.keys()) & set(group)
1285 ]
1286 if len(found_in_groups) > 1:
1287 errors.append(
1288 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1289 % (uid, ",".join(sorted(partitions.keys()))))
1290 return errors
1291
1292
Daniel Norman21c34f72020-11-11 17:25:50 -08001293def RunHostInitVerifier(product_out, partition_map):
1294 """Runs host_init_verifier on the init rc files within partitions.
1295
1296 host_init_verifier searches the etc/init path within each partition.
1297
1298 Args:
1299 product_out: PRODUCT_OUT directory, containing partition directories.
1300 partition_map: A map of partition name -> relative path within product_out.
1301 """
1302 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1303 cmd = ["host_init_verifier"]
1304 for partition, path in partition_map.items():
1305 if partition not in allowed_partitions:
1306 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1307 partition)
1308 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1309 # Add --property-contexts if the file exists on the partition.
1310 property_contexts = "%s_property_contexts" % (
1311 "plat" if partition == "system" else partition)
1312 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1313 property_contexts)
1314 if os.path.exists(property_contexts_path):
1315 cmd.append("--property-contexts=%s" % property_contexts_path)
1316 # Add the passwd file if the file exists on the partition.
1317 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1318 if os.path.exists(passwd_path):
1319 cmd.extend(["-p", passwd_path])
1320 return RunAndCheckOutput(cmd)
1321
1322
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001323def AppendAVBSigningArgs(cmd, partition):
1324 """Append signing arguments for avbtool."""
1325 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1326 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001327 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1328 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1329 if os.path.exists(new_key_path):
1330 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001331 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1332 if key_path and algorithm:
1333 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001334 avb_salt = OPTIONS.info_dict.get("avb_salt")
1335 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001336 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001337 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001338
1339
Tao Bao765668f2019-10-04 22:03:00 -07001340def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001341 """Returns the VBMeta arguments for partition.
1342
1343 It sets up the VBMeta argument by including the partition descriptor from the
1344 given 'image', or by configuring the partition as a chained partition.
1345
1346 Args:
1347 partition: The name of the partition (e.g. "system").
1348 image: The path to the partition image.
1349 info_dict: A dict returned by common.LoadInfoDict(). Will use
1350 OPTIONS.info_dict if None has been given.
1351
1352 Returns:
1353 A list of VBMeta arguments.
1354 """
1355 if info_dict is None:
1356 info_dict = OPTIONS.info_dict
1357
1358 # Check if chain partition is used.
1359 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001360 if not key_path:
1361 return ["--include_descriptors_from_image", image]
1362
1363 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1364 # into vbmeta.img. The recovery image will be configured on an independent
1365 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1366 # See details at
1367 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001368 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001369 return []
1370
1371 # Otherwise chain the partition into vbmeta.
1372 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1373 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001374
1375
Tao Bao02a08592018-07-22 12:40:45 -07001376def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1377 """Constructs and returns the arg to build or verify a chained partition.
1378
1379 Args:
1380 partition: The partition name.
1381 info_dict: The info dict to look up the key info and rollback index
1382 location.
1383 key: The key to be used for building or verifying the partition. Defaults to
1384 the key listed in info_dict.
1385
1386 Returns:
1387 A string of form "partition:rollback_index_location:key" that can be used to
1388 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001389 """
1390 if key is None:
1391 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001392 if key and not os.path.exists(key) and OPTIONS.search_path:
1393 new_key_path = os.path.join(OPTIONS.search_path, key)
1394 if os.path.exists(new_key_path):
1395 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001396 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001397 rollback_index_location = info_dict[
1398 "avb_" + partition + "_rollback_index_location"]
1399 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1400
1401
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001402def _HasGkiCertificationArgs():
1403 return ("gki_signing_key_path" in OPTIONS.info_dict and
1404 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001405
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001406
1407def _GenerateGkiCertificate(image, image_name, partition_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001408 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001409 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001410
1411 if not os.path.exists(key_path) and OPTIONS.search_path:
1412 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1413 if os.path.exists(new_key_path):
1414 key_path = new_key_path
1415
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001416 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001417 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001418 raise ExternalError(
1419 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001420
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001421 output_certificate = tempfile.NamedTemporaryFile()
1422 cmd = [
1423 "generate_gki_certificate",
1424 "--name", image_name,
1425 "--algorithm", algorithm,
1426 "--key", key_path,
1427 "--output", output_certificate.name,
1428 image,
1429 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001430
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001431 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1432 signature_args = signature_args.strip()
1433 if signature_args:
1434 cmd.extend(["--additional_avb_args", signature_args])
1435
1436 args = OPTIONS.info_dict.get(
1437 "avb_" + partition_name + "_add_hash_footer_args", "")
1438 args = args.strip()
1439 if args:
1440 cmd.extend(["--additional_avb_args", args])
1441
1442 RunAndCheckOutput(cmd)
1443
1444 output_certificate.seek(os.SEEK_SET, 0)
1445 data = output_certificate.read()
1446 output_certificate.close()
1447 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001448
1449
Daniel Norman276f0622019-07-26 14:13:51 -07001450def BuildVBMeta(image_path, partitions, name, needed_partitions):
1451 """Creates a VBMeta image.
1452
1453 It generates the requested VBMeta image. The requested image could be for
1454 top-level or chained VBMeta image, which is determined based on the name.
1455
1456 Args:
1457 image_path: The output path for the new VBMeta image.
1458 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001459 values. Only valid partition names are accepted, as partitions listed
1460 in common.AVB_PARTITIONS and custom partitions listed in
1461 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001462 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1463 needed_partitions: Partitions whose descriptors should be included into the
1464 generated VBMeta image.
1465
1466 Raises:
1467 AssertionError: On invalid input args.
1468 """
1469 avbtool = OPTIONS.info_dict["avb_avbtool"]
1470 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1471 AppendAVBSigningArgs(cmd, name)
1472
Hongguang Chenf23364d2020-04-27 18:36:36 -07001473 custom_partitions = OPTIONS.info_dict.get(
1474 "avb_custom_images_partition_list", "").strip().split()
1475
Daniel Norman276f0622019-07-26 14:13:51 -07001476 for partition, path in partitions.items():
1477 if partition not in needed_partitions:
1478 continue
1479 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001480 partition in AVB_VBMETA_PARTITIONS or
1481 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001482 'Unknown partition: {}'.format(partition)
1483 assert os.path.exists(path), \
1484 'Failed to find {} for {}'.format(path, partition)
1485 cmd.extend(GetAvbPartitionArg(partition, path))
1486
1487 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1488 if args and args.strip():
1489 split_args = shlex.split(args)
1490 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001491 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001492 # as a path relative to source tree, which may not be available at the
1493 # same location when running this script (we have the input target_files
1494 # zip only). For such cases, we additionally scan other locations (e.g.
1495 # IMAGES/, RADIO/, etc) before bailing out.
1496 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001497 chained_image = split_args[index + 1]
1498 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001499 continue
1500 found = False
1501 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1502 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001503 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001504 if os.path.exists(alt_path):
1505 split_args[index + 1] = alt_path
1506 found = True
1507 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001508 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001509 cmd.extend(split_args)
1510
1511 RunAndCheckOutput(cmd)
1512
1513
jiajia tang836f76b2021-04-02 14:48:26 +08001514def _MakeRamdisk(sourcedir, fs_config_file=None,
1515 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001516 ramdisk_img = tempfile.NamedTemporaryFile()
1517
1518 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1519 cmd = ["mkbootfs", "-f", fs_config_file,
1520 os.path.join(sourcedir, "RAMDISK")]
1521 else:
1522 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1523 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001524 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001525 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001526 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001527 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001528 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001529 else:
1530 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001531
1532 p2.wait()
1533 p1.wait()
1534 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001535 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001536
1537 return ramdisk_img
1538
1539
Steve Muckle9793cf62020-04-08 18:27:00 -07001540def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001541 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001542 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001543
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001544 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001545 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1546 we are building a two-step special image (i.e. building a recovery image to
1547 be loaded into /boot in two-step OTAs).
1548
1549 Return the image data, or None if sourcedir does not appear to contains files
1550 for building the requested image.
1551 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001552
Yifan Hong63c5ca12020-10-08 11:54:02 -07001553 if info_dict is None:
1554 info_dict = OPTIONS.info_dict
1555
Steve Muckle9793cf62020-04-08 18:27:00 -07001556 # "boot" or "recovery", without extension.
1557 partition_name = os.path.basename(sourcedir).lower()
1558
Yifan Hong63c5ca12020-10-08 11:54:02 -07001559 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001560 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001561 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1562 logger.info("Excluded kernel binary from recovery image.")
1563 else:
1564 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001565 elif partition_name == "init_boot":
1566 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001567 else:
1568 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001569 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001570 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001571 return None
1572
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001573 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1574
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001575 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001576 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001577
Doug Zongkereef39442009-04-02 12:14:19 -07001578 img = tempfile.NamedTemporaryFile()
1579
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001580 if has_ramdisk:
jiajia tang836f76b2021-04-02 14:48:26 +08001581 ramdisk_format = _GetRamdiskFormat(info_dict)
1582 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1583 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001584
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001585 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1586 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1587
Yifan Hong63c5ca12020-10-08 11:54:02 -07001588 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001589 if kernel_path is not None:
1590 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001591
Benoit Fradina45a8682014-07-14 21:00:43 +02001592 fn = os.path.join(sourcedir, "second")
1593 if os.access(fn, os.F_OK):
1594 cmd.append("--second")
1595 cmd.append(fn)
1596
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001597 fn = os.path.join(sourcedir, "dtb")
1598 if os.access(fn, os.F_OK):
1599 cmd.append("--dtb")
1600 cmd.append(fn)
1601
Doug Zongker171f1cd2009-06-15 22:36:37 -07001602 fn = os.path.join(sourcedir, "cmdline")
1603 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001604 cmd.append("--cmdline")
1605 cmd.append(open(fn).read().rstrip("\n"))
1606
1607 fn = os.path.join(sourcedir, "base")
1608 if os.access(fn, os.F_OK):
1609 cmd.append("--base")
1610 cmd.append(open(fn).read().rstrip("\n"))
1611
Ying Wang4de6b5b2010-08-25 14:29:34 -07001612 fn = os.path.join(sourcedir, "pagesize")
1613 if os.access(fn, os.F_OK):
1614 cmd.append("--pagesize")
1615 cmd.append(open(fn).read().rstrip("\n"))
1616
Steve Mucklef84668e2020-03-16 19:13:46 -07001617 if partition_name == "recovery":
1618 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301619 if not args:
1620 # Fall back to "mkbootimg_args" for recovery image
1621 # in case "recovery_mkbootimg_args" is not set.
1622 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001623 elif partition_name == "init_boot":
1624 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001625 else:
1626 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001627 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001628 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001629
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001630 boot_signature = None
1631 if _HasGkiCertificationArgs():
1632 # Certify GKI images.
1633 boot_signature_bytes = b''
1634 if kernel_path is not None:
1635 boot_signature_bytes += _GenerateGkiCertificate(
1636 kernel_path, "generic_kernel", "boot")
1637 if has_ramdisk:
1638 boot_signature_bytes += _GenerateGkiCertificate(
1639 ramdisk_img.name, "generic_ramdisk", "init_boot")
1640
1641 if len(boot_signature_bytes) > 0:
1642 boot_signature = tempfile.NamedTemporaryFile()
1643 boot_signature.write(boot_signature_bytes)
1644 boot_signature.flush()
1645 cmd.extend(["--boot_signature", boot_signature.name])
1646 else:
1647 # Certified GKI boot/init_boot image mustn't set 'mkbootimg_version_args'.
1648 args = info_dict.get("mkbootimg_version_args")
1649 if args and args.strip():
1650 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001651
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001652 if has_ramdisk:
1653 cmd.extend(["--ramdisk", ramdisk_img.name])
1654
Tao Baod95e9fd2015-03-29 23:07:41 -07001655 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001656 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001657 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001658 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001659 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001660 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001661
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001662 if partition_name == "recovery":
1663 if info_dict.get("include_recovery_dtbo") == "true":
1664 fn = os.path.join(sourcedir, "recovery_dtbo")
1665 cmd.extend(["--recovery_dtbo", fn])
1666 if info_dict.get("include_recovery_acpio") == "true":
1667 fn = os.path.join(sourcedir, "recovery_acpio")
1668 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001669
Tao Bao986ee862018-10-04 15:46:16 -07001670 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001671
Tao Bao76def242017-11-21 09:25:31 -08001672 if (info_dict.get("boot_signer") == "true" and
Kelvin Zhang563750f2021-04-28 12:46:17 -04001673 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001674 # Hard-code the path as "/boot" for two-step special recovery image (which
1675 # will be loaded into /boot during the two-step OTA).
1676 if two_step_image:
1677 path = "/boot"
1678 else:
Tao Baobf70c312017-07-11 17:27:55 -07001679 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001680 cmd = [OPTIONS.boot_signer_path]
1681 cmd.extend(OPTIONS.boot_signer_args)
1682 cmd.extend([path, img.name,
1683 info_dict["verity_key"] + ".pk8",
1684 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001685 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001686
Tao Baod95e9fd2015-03-29 23:07:41 -07001687 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001688 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001689 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001690 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001691 # We have switched from the prebuilt futility binary to using the tool
1692 # (futility-host) built from the source. Override the setting in the old
1693 # TF.zip.
1694 futility = info_dict["futility"]
1695 if futility.startswith("prebuilts/"):
1696 futility = "futility-host"
1697 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001698 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001699 info_dict["vboot_key"] + ".vbprivk",
1700 info_dict["vboot_subkey"] + ".vbprivk",
1701 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001702 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001703 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001704
Tao Baof3282b42015-04-01 11:21:55 -07001705 # Clean up the temp files.
1706 img_unsigned.close()
1707 img_keyblock.close()
1708
David Zeuthen8fecb282017-12-01 16:24:01 -05001709 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001710 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001711 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001712 if partition_name == "recovery":
1713 part_size = info_dict["recovery_size"]
1714 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001715 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001716 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001717 "--partition_size", str(part_size), "--partition_name",
1718 partition_name]
1719 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001720 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001721 if args and args.strip():
1722 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001723 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001724
1725 img.seek(os.SEEK_SET, 0)
1726 data = img.read()
1727
1728 if has_ramdisk:
1729 ramdisk_img.close()
1730 img.close()
1731
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001732 if boot_signature is not None:
1733 boot_signature.close()
1734
David Zeuthend995f4b2016-01-29 16:59:17 -05001735 return data
1736
1737
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001738def _SignBootableImage(image_path, prebuilt_name, partition_name,
1739 info_dict=None):
1740 """Performs AVB signing for a prebuilt boot.img.
1741
1742 Args:
1743 image_path: The full path of the image, e.g., /path/to/boot.img.
1744 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001745 boot-5.10.img, recovery.img or init_boot.img.
1746 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001747 info_dict: The information dict read from misc_info.txt.
1748 """
1749 if info_dict is None:
1750 info_dict = OPTIONS.info_dict
1751
1752 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1753 if info_dict.get("avb_enable") == "true":
1754 avbtool = info_dict["avb_avbtool"]
1755 if partition_name == "recovery":
1756 part_size = info_dict["recovery_size"]
1757 else:
1758 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1759
1760 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1761 "--partition_size", str(part_size), "--partition_name",
1762 partition_name]
1763 AppendAVBSigningArgs(cmd, partition_name)
1764 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1765 if args and args.strip():
1766 cmd.extend(shlex.split(args))
1767 RunAndCheckOutput(cmd)
1768
1769
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001770def HasRamdisk(partition_name, info_dict=None):
1771 """Returns true/false to see if a bootable image should have a ramdisk.
1772
1773 Args:
1774 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1775 info_dict: The information dict read from misc_info.txt.
1776 """
1777 if info_dict is None:
1778 info_dict = OPTIONS.info_dict
1779
1780 if partition_name != "boot":
1781 return True # init_boot.img or recovery.img has a ramdisk.
1782
1783 if info_dict.get("recovery_as_boot") == "true":
1784 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1785
1786 if info_dict.get("system_root_image") == "true":
1787 # The ramdisk content is merged into the system.img, so there is NO
1788 # ramdisk in the boot.img or boot-<kernel version>.img.
1789 return False
1790
1791 if info_dict.get("init_boot") == "true":
1792 # The ramdisk is moved to the init_boot.img, so there is NO
1793 # ramdisk in the boot.img or boot-<kernel version>.img.
1794 return False
1795
1796 return True
1797
1798
Doug Zongkerd5131602012-08-02 14:46:42 -07001799def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001800 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001801 """Return a File object with the desired bootable image.
1802
1803 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1804 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1805 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001806
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001807 if info_dict is None:
1808 info_dict = OPTIONS.info_dict
1809
Doug Zongker55d93282011-01-25 17:03:34 -08001810 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1811 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001812 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001813 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001814
1815 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1816 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001817 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001818 return File.FromLocalFile(name, prebuilt_path)
1819
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001820 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001821 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1822 if os.path.exists(prebuilt_path):
1823 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1824 signed_img = MakeTempFile()
1825 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001826 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1827 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001828
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001829 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001830
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001831 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001832
Doug Zongker6f1d0312014-08-22 08:07:12 -07001833 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001834 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001835 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001836 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001837 if data:
1838 return File(name, data)
1839 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001840
Doug Zongkereef39442009-04-02 12:14:19 -07001841
Steve Mucklee1b10862019-07-10 10:49:37 -07001842def _BuildVendorBootImage(sourcedir, info_dict=None):
1843 """Build a vendor boot image from the specified sourcedir.
1844
1845 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1846 turn them into a vendor boot image.
1847
1848 Return the image data, or None if sourcedir does not appear to contains files
1849 for building the requested image.
1850 """
1851
1852 if info_dict is None:
1853 info_dict = OPTIONS.info_dict
1854
1855 img = tempfile.NamedTemporaryFile()
1856
jiajia tang836f76b2021-04-02 14:48:26 +08001857 ramdisk_format = _GetRamdiskFormat(info_dict)
1858 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001859
1860 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1861 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1862
1863 cmd = [mkbootimg]
1864
1865 fn = os.path.join(sourcedir, "dtb")
1866 if os.access(fn, os.F_OK):
1867 cmd.append("--dtb")
1868 cmd.append(fn)
1869
1870 fn = os.path.join(sourcedir, "vendor_cmdline")
1871 if os.access(fn, os.F_OK):
1872 cmd.append("--vendor_cmdline")
1873 cmd.append(open(fn).read().rstrip("\n"))
1874
1875 fn = os.path.join(sourcedir, "base")
1876 if os.access(fn, os.F_OK):
1877 cmd.append("--base")
1878 cmd.append(open(fn).read().rstrip("\n"))
1879
1880 fn = os.path.join(sourcedir, "pagesize")
1881 if os.access(fn, os.F_OK):
1882 cmd.append("--pagesize")
1883 cmd.append(open(fn).read().rstrip("\n"))
1884
1885 args = info_dict.get("mkbootimg_args")
1886 if args and args.strip():
1887 cmd.extend(shlex.split(args))
1888
1889 args = info_dict.get("mkbootimg_version_args")
1890 if args and args.strip():
1891 cmd.extend(shlex.split(args))
1892
1893 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1894 cmd.extend(["--vendor_boot", img.name])
1895
Devin Moore50509012021-01-13 10:45:04 -08001896 fn = os.path.join(sourcedir, "vendor_bootconfig")
1897 if os.access(fn, os.F_OK):
1898 cmd.append("--vendor_bootconfig")
1899 cmd.append(fn)
1900
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001901 ramdisk_fragment_imgs = []
1902 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1903 if os.access(fn, os.F_OK):
1904 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1905 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001906 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1907 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001908 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001909 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1910 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001911 # Use prebuilt image if found, else create ramdisk from supplied files.
1912 if os.access(fn, os.F_OK):
1913 ramdisk_fragment_pathname = fn
1914 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001915 ramdisk_fragment_root = os.path.join(
1916 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001917 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1918 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001919 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1920 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1921 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1922
Steve Mucklee1b10862019-07-10 10:49:37 -07001923 RunAndCheckOutput(cmd)
1924
1925 # AVB: if enabled, calculate and add hash.
1926 if info_dict.get("avb_enable") == "true":
1927 avbtool = info_dict["avb_avbtool"]
1928 part_size = info_dict["vendor_boot_size"]
1929 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001930 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001931 AppendAVBSigningArgs(cmd, "vendor_boot")
1932 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1933 if args and args.strip():
1934 cmd.extend(shlex.split(args))
1935 RunAndCheckOutput(cmd)
1936
1937 img.seek(os.SEEK_SET, 0)
1938 data = img.read()
1939
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001940 for f in ramdisk_fragment_imgs:
1941 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001942 ramdisk_img.close()
1943 img.close()
1944
1945 return data
1946
1947
1948def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1949 info_dict=None):
1950 """Return a File object with the desired vendor boot image.
1951
1952 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1953 the source files in 'unpack_dir'/'tree_subdir'."""
1954
1955 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1956 if os.path.exists(prebuilt_path):
1957 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1958 return File.FromLocalFile(name, prebuilt_path)
1959
1960 logger.info("building image from target_files %s...", tree_subdir)
1961
1962 if info_dict is None:
1963 info_dict = OPTIONS.info_dict
1964
Kelvin Zhang0876c412020-06-23 15:06:58 -04001965 data = _BuildVendorBootImage(
1966 os.path.join(unpack_dir, tree_subdir), info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07001967 if data:
1968 return File(name, data)
1969 return None
1970
1971
Narayan Kamatha07bf042017-08-14 14:49:21 +01001972def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001973 """Gunzips the given gzip compressed file to a given output file."""
1974 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04001975 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001976 shutil.copyfileobj(in_file, out_file)
1977
1978
Tao Bao0ff15de2019-03-20 11:26:06 -07001979def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001980 """Unzips the archive to the given directory.
1981
1982 Args:
1983 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001984 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001985 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1986 archvie. Non-matching patterns will be filtered out. If there's no match
1987 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001988 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001989 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001990 if patterns is not None:
1991 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04001992 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07001993 names = input_zip.namelist()
1994 filtered = [
1995 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1996
1997 # There isn't any matching files. Don't unzip anything.
1998 if not filtered:
1999 return
2000 cmd.extend(filtered)
2001
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002002 RunAndCheckOutput(cmd)
2003
2004
Daniel Norman78554ea2021-09-14 10:29:38 -07002005def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002006 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002007
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002008 Args:
2009 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2010 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2011
Daniel Norman78554ea2021-09-14 10:29:38 -07002012 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002013 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002014
Tao Bao1c830bf2017-12-25 10:43:47 -08002015 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002016 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002017 """
Doug Zongkereef39442009-04-02 12:14:19 -07002018
Tao Bao1c830bf2017-12-25 10:43:47 -08002019 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002020 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2021 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002022 UnzipToDir(m.group(1), tmp, patterns)
2023 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002024 filename = m.group(1)
2025 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002026 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002027
Tao Baodba59ee2018-01-09 13:21:02 -08002028 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002029
2030
Yifan Hong8a66a712019-04-04 15:37:57 -07002031def GetUserImage(which, tmpdir, input_zip,
2032 info_dict=None,
2033 allow_shared_blocks=None,
2034 hashtree_info_generator=None,
2035 reset_file_map=False):
2036 """Returns an Image object suitable for passing to BlockImageDiff.
2037
2038 This function loads the specified image from the given path. If the specified
2039 image is sparse, it also performs additional processing for OTA purpose. For
2040 example, it always adds block 0 to clobbered blocks list. It also detects
2041 files that cannot be reconstructed from the block list, for whom we should
2042 avoid applying imgdiff.
2043
2044 Args:
2045 which: The partition name.
2046 tmpdir: The directory that contains the prebuilt image and block map file.
2047 input_zip: The target-files ZIP archive.
2048 info_dict: The dict to be looked up for relevant info.
2049 allow_shared_blocks: If image is sparse, whether having shared blocks is
2050 allowed. If none, it is looked up from info_dict.
2051 hashtree_info_generator: If present and image is sparse, generates the
2052 hashtree_info for this sparse image.
2053 reset_file_map: If true and image is sparse, reset file map before returning
2054 the image.
2055 Returns:
2056 A Image object. If it is a sparse image and reset_file_map is False, the
2057 image will have file_map info loaded.
2058 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002059 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002060 info_dict = LoadInfoDict(input_zip)
2061
2062 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002063 if info_dict.get(which + "_disable_sparse"):
2064 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002065
2066 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2067 # shared blocks (i.e. some blocks will show up in multiple files' block
2068 # list). We can only allocate such shared blocks to the first "owner", and
2069 # disable imgdiff for all later occurrences.
2070 if allow_shared_blocks is None:
2071 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2072
2073 if is_sparse:
2074 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2075 hashtree_info_generator)
2076 if reset_file_map:
2077 img.ResetFileMap()
2078 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04002079 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07002080
2081
2082def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
2083 """Returns a Image object suitable for passing to BlockImageDiff.
2084
2085 This function loads the specified non-sparse image from the given path.
2086
2087 Args:
2088 which: The partition name.
2089 tmpdir: The directory that contains the prebuilt image and block map file.
2090 Returns:
2091 A Image object.
2092 """
2093 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2094 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2095
2096 # The image and map files must have been created prior to calling
2097 # ota_from_target_files.py (since LMP).
2098 assert os.path.exists(path) and os.path.exists(mappath)
2099
Tianjie Xu41976c72019-07-03 13:57:01 -07002100 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
2101
Yifan Hong8a66a712019-04-04 15:37:57 -07002102
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002103def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2104 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08002105 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2106
2107 This function loads the specified sparse image from the given path, and
2108 performs additional processing for OTA purpose. For example, it always adds
2109 block 0 to clobbered blocks list. It also detects files that cannot be
2110 reconstructed from the block list, for whom we should avoid applying imgdiff.
2111
2112 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002113 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002114 tmpdir: The directory that contains the prebuilt image and block map file.
2115 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002116 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002117 hashtree_info_generator: If present, generates the hashtree_info for this
2118 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08002119 Returns:
2120 A SparseImage object, with file_map info loaded.
2121 """
Tao Baoc765cca2018-01-31 17:32:40 -08002122 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2123 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2124
2125 # The image and map files must have been created prior to calling
2126 # ota_from_target_files.py (since LMP).
2127 assert os.path.exists(path) and os.path.exists(mappath)
2128
2129 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2130 # it to clobbered_blocks so that it will be written to the target
2131 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2132 clobbered_blocks = "0"
2133
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002134 image = sparse_img.SparseImage(
2135 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
2136 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08002137
2138 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2139 # if they contain all zeros. We can't reconstruct such a file from its block
2140 # list. Tag such entries accordingly. (Bug: 65213616)
2141 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002142 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002143 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002144 continue
2145
Tom Cherryd14b8952018-08-09 14:26:00 -07002146 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2147 # filename listed in system.map may contain an additional leading slash
2148 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2149 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002150 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002151 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002152 arcname = entry.lstrip('/')
2153 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002154 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002155 else:
2156 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002157
2158 assert arcname in input_zip.namelist(), \
2159 "Failed to find the ZIP entry for {}".format(entry)
2160
Tao Baoc765cca2018-01-31 17:32:40 -08002161 info = input_zip.getinfo(arcname)
2162 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002163
2164 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002165 # image, check the original block list to determine its completeness. Note
2166 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002167 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002168 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002169
Tao Baoc765cca2018-01-31 17:32:40 -08002170 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2171 ranges.extra['incomplete'] = True
2172
2173 return image
2174
2175
Doug Zongkereef39442009-04-02 12:14:19 -07002176def GetKeyPasswords(keylist):
2177 """Given a list of keys, prompt the user to enter passwords for
2178 those which require them. Return a {key: password} dict. password
2179 will be None if the key has no password."""
2180
Doug Zongker8ce7c252009-05-22 13:34:54 -07002181 no_passwords = []
2182 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002183 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002184 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002185
2186 # sorted() can't compare strings to None, so convert Nones to strings
2187 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002188 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002189 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002190 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002191 continue
2192
T.R. Fullhart37e10522013-03-18 10:31:26 -07002193 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002194 "-inform", "DER", "-nocrypt"],
2195 stdin=devnull.fileno(),
2196 stdout=devnull.fileno(),
2197 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002198 p.communicate()
2199 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002200 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002201 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002202 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002203 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2204 "-inform", "DER", "-passin", "pass:"],
2205 stdin=devnull.fileno(),
2206 stdout=devnull.fileno(),
2207 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002208 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002209 if p.returncode == 0:
2210 # Encrypted key with empty string as password.
2211 key_passwords[k] = ''
2212 elif stderr.startswith('Error decrypting key'):
2213 # Definitely encrypted key.
2214 # It would have said "Error reading key" if it didn't parse correctly.
2215 need_passwords.append(k)
2216 else:
2217 # Potentially, a type of key that openssl doesn't understand.
2218 # We'll let the routines in signapk.jar handle it.
2219 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002220 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002221
T.R. Fullhart37e10522013-03-18 10:31:26 -07002222 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002223 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002224 return key_passwords
2225
2226
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002227def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002228 """Gets the minSdkVersion declared in the APK.
2229
Martin Stjernholm58472e82022-01-07 22:08:47 +00002230 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2231 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002232
2233 Args:
2234 apk_name: The APK filename.
2235
2236 Returns:
2237 The parsed SDK version string.
2238
2239 Raises:
2240 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002241 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002242 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002243 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002244 stderr=subprocess.PIPE)
2245 stdoutdata, stderrdata = proc.communicate()
2246 if proc.returncode != 0:
2247 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09002248 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07002249 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002250
Tao Baof47bf0f2018-03-21 23:28:51 -07002251 for line in stdoutdata.split("\n"):
2252 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002253 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2254 if m:
2255 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002256 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002257
2258
2259def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002260 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002261
Tao Baof47bf0f2018-03-21 23:28:51 -07002262 If minSdkVersion is set to a codename, it is translated to a number using the
2263 provided map.
2264
2265 Args:
2266 apk_name: The APK filename.
2267
2268 Returns:
2269 The parsed SDK version number.
2270
2271 Raises:
2272 ExternalError: On failing to get the min SDK version number.
2273 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002274 version = GetMinSdkVersion(apk_name)
2275 try:
2276 return int(version)
2277 except ValueError:
2278 # Not a decimal number. Codename?
2279 if version in codename_to_api_level_map:
2280 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002281 raise ExternalError(
2282 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2283 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002284
2285
2286def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002287 codename_to_api_level_map=None, whole_file=False,
2288 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002289 """Sign the input_name zip/jar/apk, producing output_name. Use the
2290 given key and password (the latter may be None if the key does not
2291 have a password.
2292
Doug Zongker951495f2009-08-14 12:44:19 -07002293 If whole_file is true, use the "-w" option to SignApk to embed a
2294 signature that covers the whole file in the archive comment of the
2295 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002296
2297 min_api_level is the API Level (int) of the oldest platform this file may end
2298 up on. If not specified for an APK, the API Level is obtained by interpreting
2299 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2300
2301 codename_to_api_level_map is needed to translate the codename which may be
2302 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002303
2304 Caller may optionally specify extra args to be passed to SignApk, which
2305 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002306 """
Tao Bao76def242017-11-21 09:25:31 -08002307 if codename_to_api_level_map is None:
2308 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002309 if extra_signapk_args is None:
2310 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002311
Alex Klyubin9667b182015-12-10 13:38:50 -08002312 java_library_path = os.path.join(
2313 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2314
Tao Baoe95540e2016-11-08 12:08:53 -08002315 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2316 ["-Djava.library.path=" + java_library_path,
2317 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002318 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002319 if whole_file:
2320 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002321
2322 min_sdk_version = min_api_level
2323 if min_sdk_version is None:
2324 if not whole_file:
2325 min_sdk_version = GetMinSdkVersionInt(
2326 input_name, codename_to_api_level_map)
2327 if min_sdk_version is not None:
2328 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2329
T.R. Fullhart37e10522013-03-18 10:31:26 -07002330 cmd.extend([key + OPTIONS.public_key_suffix,
2331 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002332 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002333
Tao Bao73dd4f42018-10-04 16:25:33 -07002334 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002335 if password is not None:
2336 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002337 stdoutdata, _ = proc.communicate(password)
2338 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002339 raise ExternalError(
2340 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002341 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002342
Doug Zongkereef39442009-04-02 12:14:19 -07002343
Doug Zongker37974732010-09-16 17:44:38 -07002344def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002345 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002346
Tao Bao9dd909e2017-11-14 11:27:32 -08002347 For non-AVB images, raise exception if the data is too big. Print a warning
2348 if the data is nearing the maximum size.
2349
2350 For AVB images, the actual image size should be identical to the limit.
2351
2352 Args:
2353 data: A string that contains all the data for the partition.
2354 target: The partition name. The ".img" suffix is optional.
2355 info_dict: The dict to be looked up for relevant info.
2356 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002357 if target.endswith(".img"):
2358 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002359 mount_point = "/" + target
2360
Ying Wangf8824af2014-06-03 14:07:27 -07002361 fs_type = None
2362 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002363 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002364 if mount_point == "/userdata":
2365 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002366 p = info_dict["fstab"][mount_point]
2367 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002368 device = p.device
2369 if "/" in device:
2370 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002371 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002372 if not fs_type or not limit:
2373 return
Doug Zongkereef39442009-04-02 12:14:19 -07002374
Andrew Boie0f9aec82012-02-14 09:32:52 -08002375 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002376 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2377 # path.
2378 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2379 if size != limit:
2380 raise ExternalError(
2381 "Mismatching image size for %s: expected %d actual %d" % (
2382 target, limit, size))
2383 else:
2384 pct = float(size) * 100.0 / limit
2385 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2386 if pct >= 99.0:
2387 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002388
2389 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002390 logger.warning("\n WARNING: %s\n", msg)
2391 else:
2392 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002393
2394
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002395def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002396 """Parses the APK certs info from a given target-files zip.
2397
2398 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2399 tuple with the following elements: (1) a dictionary that maps packages to
2400 certs (based on the "certificate" and "private_key" attributes in the file;
2401 (2) a string representing the extension of compressed APKs in the target files
2402 (e.g ".gz", ".bro").
2403
2404 Args:
2405 tf_zip: The input target_files ZipFile (already open).
2406
2407 Returns:
2408 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2409 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2410 no compressed APKs.
2411 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002412 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002413 compressed_extension = None
2414
Tao Bao0f990332017-09-08 19:02:54 -07002415 # META/apkcerts.txt contains the info for _all_ the packages known at build
2416 # time. Filter out the ones that are not installed.
2417 installed_files = set()
2418 for name in tf_zip.namelist():
2419 basename = os.path.basename(name)
2420 if basename:
2421 installed_files.add(basename)
2422
Tao Baoda30cfa2017-12-01 16:19:46 -08002423 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002424 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002425 if not line:
2426 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002427 m = re.match(
2428 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002429 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2430 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002431 line)
2432 if not m:
2433 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002434
Tao Bao818ddf52018-01-05 11:17:34 -08002435 matches = m.groupdict()
2436 cert = matches["CERT"]
2437 privkey = matches["PRIVKEY"]
2438 name = matches["NAME"]
2439 this_compressed_extension = matches["COMPRESSED"]
2440
2441 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2442 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2443 if cert in SPECIAL_CERT_STRINGS and not privkey:
2444 certmap[name] = cert
2445 elif (cert.endswith(OPTIONS.public_key_suffix) and
2446 privkey.endswith(OPTIONS.private_key_suffix) and
2447 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2448 certmap[name] = cert[:-public_key_suffix_len]
2449 else:
2450 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2451
2452 if not this_compressed_extension:
2453 continue
2454
2455 # Only count the installed files.
2456 filename = name + '.' + this_compressed_extension
2457 if filename not in installed_files:
2458 continue
2459
2460 # Make sure that all the values in the compression map have the same
2461 # extension. We don't support multiple compression methods in the same
2462 # system image.
2463 if compressed_extension:
2464 if this_compressed_extension != compressed_extension:
2465 raise ValueError(
2466 "Multiple compressed extensions: {} vs {}".format(
2467 compressed_extension, this_compressed_extension))
2468 else:
2469 compressed_extension = this_compressed_extension
2470
2471 return (certmap,
2472 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002473
2474
Doug Zongkereef39442009-04-02 12:14:19 -07002475COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002476Global options
2477
2478 -p (--path) <dir>
2479 Prepend <dir>/bin to the list of places to search for binaries run by this
2480 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002481
Doug Zongker05d3dea2009-06-22 11:32:31 -07002482 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002483 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002484
Tao Bao30df8b42018-04-23 15:32:53 -07002485 -x (--extra) <key=value>
2486 Add a key/value pair to the 'extras' dict, which device-specific extension
2487 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002488
Doug Zongkereef39442009-04-02 12:14:19 -07002489 -v (--verbose)
2490 Show command lines being executed.
2491
2492 -h (--help)
2493 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002494
2495 --logfile <file>
2496 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002497"""
2498
Kelvin Zhang0876c412020-06-23 15:06:58 -04002499
Doug Zongkereef39442009-04-02 12:14:19 -07002500def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002501 print(docstring.rstrip("\n"))
2502 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002503
2504
2505def ParseOptions(argv,
2506 docstring,
2507 extra_opts="", extra_long_opts=(),
2508 extra_option_handler=None):
2509 """Parse the options in argv and return any arguments that aren't
2510 flags. docstring is the calling module's docstring, to be displayed
2511 for errors and -h. extra_opts and extra_long_opts are for flags
2512 defined by the caller, which are processed by passing them to
2513 extra_option_handler."""
2514
2515 try:
2516 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002517 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002518 ["help", "verbose", "path=", "signapk_path=",
Martin Stjernholm58472e82022-01-07 22:08:47 +00002519 "signapk_shared_library_path=", "extra_signapk_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002520 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002521 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2522 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002523 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002524 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002525 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002526 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002527 sys.exit(2)
2528
Doug Zongkereef39442009-04-02 12:14:19 -07002529 for o, a in opts:
2530 if o in ("-h", "--help"):
2531 Usage(docstring)
2532 sys.exit()
2533 elif o in ("-v", "--verbose"):
2534 OPTIONS.verbose = True
2535 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002536 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002537 elif o in ("--signapk_path",):
2538 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002539 elif o in ("--signapk_shared_library_path",):
2540 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002541 elif o in ("--extra_signapk_args",):
2542 OPTIONS.extra_signapk_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002543 elif o in ("--aapt2_path",):
2544 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002545 elif o in ("--java_path",):
2546 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002547 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002548 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002549 elif o in ("--android_jar_path",):
2550 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002551 elif o in ("--public_key_suffix",):
2552 OPTIONS.public_key_suffix = a
2553 elif o in ("--private_key_suffix",):
2554 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002555 elif o in ("--boot_signer_path",):
2556 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002557 elif o in ("--boot_signer_args",):
2558 OPTIONS.boot_signer_args = shlex.split(a)
2559 elif o in ("--verity_signer_path",):
2560 OPTIONS.verity_signer_path = a
2561 elif o in ("--verity_signer_args",):
2562 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07002563 elif o in ("-s", "--device_specific"):
2564 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002565 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002566 key, value = a.split("=", 1)
2567 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002568 elif o in ("--logfile",):
2569 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002570 else:
2571 if extra_option_handler is None or not extra_option_handler(o, a):
2572 assert False, "unknown option \"%s\"" % (o,)
2573
Doug Zongker85448772014-09-09 14:59:20 -07002574 if OPTIONS.search_path:
2575 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2576 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002577
2578 return args
2579
2580
Tao Bao4c851b12016-09-19 13:54:38 -07002581def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002582 """Make a temp file and add it to the list of things to be deleted
2583 when Cleanup() is called. Return the filename."""
2584 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2585 os.close(fd)
2586 OPTIONS.tempfiles.append(fn)
2587 return fn
2588
2589
Tao Bao1c830bf2017-12-25 10:43:47 -08002590def MakeTempDir(prefix='tmp', suffix=''):
2591 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2592
2593 Returns:
2594 The absolute pathname of the new directory.
2595 """
2596 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2597 OPTIONS.tempfiles.append(dir_name)
2598 return dir_name
2599
2600
Doug Zongkereef39442009-04-02 12:14:19 -07002601def Cleanup():
2602 for i in OPTIONS.tempfiles:
2603 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002604 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002605 else:
2606 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002607 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002608
2609
2610class PasswordManager(object):
2611 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002612 self.editor = os.getenv("EDITOR")
2613 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002614
2615 def GetPasswords(self, items):
2616 """Get passwords corresponding to each string in 'items',
2617 returning a dict. (The dict may have keys in addition to the
2618 values in 'items'.)
2619
2620 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2621 user edit that file to add more needed passwords. If no editor is
2622 available, or $ANDROID_PW_FILE isn't define, prompts the user
2623 interactively in the ordinary way.
2624 """
2625
2626 current = self.ReadFile()
2627
2628 first = True
2629 while True:
2630 missing = []
2631 for i in items:
2632 if i not in current or not current[i]:
2633 missing.append(i)
2634 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002635 if not missing:
2636 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002637
2638 for i in missing:
2639 current[i] = ""
2640
2641 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002642 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002643 if sys.version_info[0] >= 3:
2644 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002645 answer = raw_input("try to edit again? [y]> ").strip()
2646 if answer and answer[0] not in 'yY':
2647 raise RuntimeError("key passwords unavailable")
2648 first = False
2649
2650 current = self.UpdateAndReadFile(current)
2651
Kelvin Zhang0876c412020-06-23 15:06:58 -04002652 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002653 """Prompt the user to enter a value (password) for each key in
2654 'current' whose value is fales. Returns a new dict with all the
2655 values.
2656 """
2657 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002658 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002659 if v:
2660 result[k] = v
2661 else:
2662 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002663 result[k] = getpass.getpass(
2664 "Enter password for %s key> " % k).strip()
2665 if result[k]:
2666 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002667 return result
2668
2669 def UpdateAndReadFile(self, current):
2670 if not self.editor or not self.pwfile:
2671 return self.PromptResult(current)
2672
2673 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002674 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002675 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2676 f.write("# (Additional spaces are harmless.)\n\n")
2677
2678 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002679 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002680 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002681 f.write("[[[ %s ]]] %s\n" % (v, k))
2682 if not v and first_line is None:
2683 # position cursor on first line with no password.
2684 first_line = i + 4
2685 f.close()
2686
Tao Bao986ee862018-10-04 15:46:16 -07002687 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002688
2689 return self.ReadFile()
2690
2691 def ReadFile(self):
2692 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002693 if self.pwfile is None:
2694 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002695 try:
2696 f = open(self.pwfile, "r")
2697 for line in f:
2698 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002699 if not line or line[0] == '#':
2700 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002701 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2702 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002703 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002704 else:
2705 result[m.group(2)] = m.group(1)
2706 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002707 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002708 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002709 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002710 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002711
2712
Dan Albert8e0178d2015-01-27 15:53:15 -08002713def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2714 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002715
2716 # http://b/18015246
2717 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2718 # for files larger than 2GiB. We can work around this by adjusting their
2719 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2720 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2721 # it isn't clear to me exactly what circumstances cause this).
2722 # `zipfile.write()` must be used directly to work around this.
2723 #
2724 # This mess can be avoided if we port to python3.
2725 saved_zip64_limit = zipfile.ZIP64_LIMIT
2726 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2727
2728 if compress_type is None:
2729 compress_type = zip_file.compression
2730 if arcname is None:
2731 arcname = filename
2732
2733 saved_stat = os.stat(filename)
2734
2735 try:
2736 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2737 # file to be zipped and reset it when we're done.
2738 os.chmod(filename, perms)
2739
2740 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002741 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2742 # intentional. zip stores datetimes in local time without a time zone
2743 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2744 # in the zip archive.
2745 local_epoch = datetime.datetime.fromtimestamp(0)
2746 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002747 os.utime(filename, (timestamp, timestamp))
2748
2749 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2750 finally:
2751 os.chmod(filename, saved_stat.st_mode)
2752 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2753 zipfile.ZIP64_LIMIT = saved_zip64_limit
2754
2755
Tao Bao58c1b962015-05-20 09:32:18 -07002756def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002757 compress_type=None):
2758 """Wrap zipfile.writestr() function to work around the zip64 limit.
2759
2760 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2761 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2762 when calling crc32(bytes).
2763
2764 But it still works fine to write a shorter string into a large zip file.
2765 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2766 when we know the string won't be too long.
2767 """
2768
2769 saved_zip64_limit = zipfile.ZIP64_LIMIT
2770 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2771
2772 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2773 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002774 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002775 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002776 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002777 else:
Tao Baof3282b42015-04-01 11:21:55 -07002778 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002779 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2780 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2781 # such a case (since
2782 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2783 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2784 # permission bits. We follow the logic in Python 3 to get consistent
2785 # behavior between using the two versions.
2786 if not zinfo.external_attr:
2787 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002788
2789 # If compress_type is given, it overrides the value in zinfo.
2790 if compress_type is not None:
2791 zinfo.compress_type = compress_type
2792
Tao Bao58c1b962015-05-20 09:32:18 -07002793 # If perms is given, it has a priority.
2794 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002795 # If perms doesn't set the file type, mark it as a regular file.
2796 if perms & 0o770000 == 0:
2797 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002798 zinfo.external_attr = perms << 16
2799
Tao Baof3282b42015-04-01 11:21:55 -07002800 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002801 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2802
Dan Albert8b72aef2015-03-23 19:13:21 -07002803 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002804 zipfile.ZIP64_LIMIT = saved_zip64_limit
2805
2806
Tao Bao89d7ab22017-12-14 17:05:33 -08002807def ZipDelete(zip_filename, entries):
2808 """Deletes entries from a ZIP file.
2809
2810 Since deleting entries from a ZIP file is not supported, it shells out to
2811 'zip -d'.
2812
2813 Args:
2814 zip_filename: The name of the ZIP file.
2815 entries: The name of the entry, or the list of names to be deleted.
2816
2817 Raises:
2818 AssertionError: In case of non-zero return from 'zip'.
2819 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002820 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002821 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002822 # If list is empty, nothing to do
2823 if not entries:
2824 return
Tao Bao89d7ab22017-12-14 17:05:33 -08002825 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002826 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002827
2828
Tao Baof3282b42015-04-01 11:21:55 -07002829def ZipClose(zip_file):
2830 # http://b/18015246
2831 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2832 # central directory.
2833 saved_zip64_limit = zipfile.ZIP64_LIMIT
2834 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2835
2836 zip_file.close()
2837
2838 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002839
2840
2841class DeviceSpecificParams(object):
2842 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002843
Doug Zongker05d3dea2009-06-22 11:32:31 -07002844 def __init__(self, **kwargs):
2845 """Keyword arguments to the constructor become attributes of this
2846 object, which is passed to all functions in the device-specific
2847 module."""
Tao Bao38884282019-07-10 22:20:56 -07002848 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002849 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002850 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002851
2852 if self.module is None:
2853 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002854 if not path:
2855 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002856 try:
2857 if os.path.isdir(path):
2858 info = imp.find_module("releasetools", [path])
2859 else:
2860 d, f = os.path.split(path)
2861 b, x = os.path.splitext(f)
2862 if x == ".py":
2863 f = b
2864 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002865 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002866 self.module = imp.load_module("device_specific", *info)
2867 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002868 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002869
2870 def _DoCall(self, function_name, *args, **kwargs):
2871 """Call the named function in the device-specific module, passing
2872 the given args and kwargs. The first argument to the call will be
2873 the DeviceSpecific object itself. If there is no module, or the
2874 module does not define the function, return the value of the
2875 'default' kwarg (which itself defaults to None)."""
2876 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002877 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002878 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2879
2880 def FullOTA_Assertions(self):
2881 """Called after emitting the block of assertions at the top of a
2882 full OTA package. Implementations can add whatever additional
2883 assertions they like."""
2884 return self._DoCall("FullOTA_Assertions")
2885
Doug Zongkere5ff5902012-01-17 10:55:37 -08002886 def FullOTA_InstallBegin(self):
2887 """Called at the start of full OTA installation."""
2888 return self._DoCall("FullOTA_InstallBegin")
2889
Yifan Hong10c530d2018-12-27 17:34:18 -08002890 def FullOTA_GetBlockDifferences(self):
2891 """Called during full OTA installation and verification.
2892 Implementation should return a list of BlockDifference objects describing
2893 the update on each additional partitions.
2894 """
2895 return self._DoCall("FullOTA_GetBlockDifferences")
2896
Doug Zongker05d3dea2009-06-22 11:32:31 -07002897 def FullOTA_InstallEnd(self):
2898 """Called at the end of full OTA installation; typically this is
2899 used to install the image for the device's baseband processor."""
2900 return self._DoCall("FullOTA_InstallEnd")
2901
2902 def IncrementalOTA_Assertions(self):
2903 """Called after emitting the block of assertions at the top of an
2904 incremental OTA package. Implementations can add whatever
2905 additional assertions they like."""
2906 return self._DoCall("IncrementalOTA_Assertions")
2907
Doug Zongkere5ff5902012-01-17 10:55:37 -08002908 def IncrementalOTA_VerifyBegin(self):
2909 """Called at the start of the verification phase of incremental
2910 OTA installation; additional checks can be placed here to abort
2911 the script before any changes are made."""
2912 return self._DoCall("IncrementalOTA_VerifyBegin")
2913
Doug Zongker05d3dea2009-06-22 11:32:31 -07002914 def IncrementalOTA_VerifyEnd(self):
2915 """Called at the end of the verification phase of incremental OTA
2916 installation; additional checks can be placed here to abort the
2917 script before any changes are made."""
2918 return self._DoCall("IncrementalOTA_VerifyEnd")
2919
Doug Zongkere5ff5902012-01-17 10:55:37 -08002920 def IncrementalOTA_InstallBegin(self):
2921 """Called at the start of incremental OTA installation (after
2922 verification is complete)."""
2923 return self._DoCall("IncrementalOTA_InstallBegin")
2924
Yifan Hong10c530d2018-12-27 17:34:18 -08002925 def IncrementalOTA_GetBlockDifferences(self):
2926 """Called during incremental OTA installation and verification.
2927 Implementation should return a list of BlockDifference objects describing
2928 the update on each additional partitions.
2929 """
2930 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2931
Doug Zongker05d3dea2009-06-22 11:32:31 -07002932 def IncrementalOTA_InstallEnd(self):
2933 """Called at the end of incremental OTA installation; typically
2934 this is used to install the image for the device's baseband
2935 processor."""
2936 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002937
Tao Bao9bc6bb22015-11-09 16:58:28 -08002938 def VerifyOTA_Assertions(self):
2939 return self._DoCall("VerifyOTA_Assertions")
2940
Tao Bao76def242017-11-21 09:25:31 -08002941
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002942class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002943 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002944 self.name = name
2945 self.data = data
2946 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002947 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002948 self.sha1 = sha1(data).hexdigest()
2949
2950 @classmethod
2951 def FromLocalFile(cls, name, diskname):
2952 f = open(diskname, "rb")
2953 data = f.read()
2954 f.close()
2955 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002956
2957 def WriteToTemp(self):
2958 t = tempfile.NamedTemporaryFile()
2959 t.write(self.data)
2960 t.flush()
2961 return t
2962
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002963 def WriteToDir(self, d):
2964 with open(os.path.join(d, self.name), "wb") as fp:
2965 fp.write(self.data)
2966
Geremy Condra36bd3652014-02-06 19:45:10 -08002967 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002968 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002969
Tao Bao76def242017-11-21 09:25:31 -08002970
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002971DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04002972 ".gz": "imgdiff",
2973 ".zip": ["imgdiff", "-z"],
2974 ".jar": ["imgdiff", "-z"],
2975 ".apk": ["imgdiff", "-z"],
2976 ".img": "imgdiff",
2977}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002978
Tao Bao76def242017-11-21 09:25:31 -08002979
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002980class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002981 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002982 self.tf = tf
2983 self.sf = sf
2984 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002985 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002986
2987 def ComputePatch(self):
2988 """Compute the patch (as a string of data) needed to turn sf into
2989 tf. Returns the same tuple as GetPatch()."""
2990
2991 tf = self.tf
2992 sf = self.sf
2993
Doug Zongker24cd2802012-08-14 16:36:15 -07002994 if self.diff_program:
2995 diff_program = self.diff_program
2996 else:
2997 ext = os.path.splitext(tf.name)[1]
2998 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002999
3000 ttemp = tf.WriteToTemp()
3001 stemp = sf.WriteToTemp()
3002
3003 ext = os.path.splitext(tf.name)[1]
3004
3005 try:
3006 ptemp = tempfile.NamedTemporaryFile()
3007 if isinstance(diff_program, list):
3008 cmd = copy.copy(diff_program)
3009 else:
3010 cmd = [diff_program]
3011 cmd.append(stemp.name)
3012 cmd.append(ttemp.name)
3013 cmd.append(ptemp.name)
3014 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003015 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003016
Doug Zongkerf8340082014-08-05 10:39:37 -07003017 def run():
3018 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003019 if e:
3020 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003021 th = threading.Thread(target=run)
3022 th.start()
3023 th.join(timeout=300) # 5 mins
3024 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003025 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003026 p.terminate()
3027 th.join(5)
3028 if th.is_alive():
3029 p.kill()
3030 th.join()
3031
Tianjie Xua2a9f992018-01-05 15:15:54 -08003032 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003033 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003034 self.patch = None
3035 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003036 diff = ptemp.read()
3037 finally:
3038 ptemp.close()
3039 stemp.close()
3040 ttemp.close()
3041
3042 self.patch = diff
3043 return self.tf, self.sf, self.patch
3044
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003045 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003046 """Returns a tuple of (target_file, source_file, patch_data).
3047
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003048 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003049 computing the patch failed.
3050 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003051 return self.tf, self.sf, self.patch
3052
3053
3054def ComputeDifferences(diffs):
3055 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003056 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003057
3058 # Do the largest files first, to try and reduce the long-pole effect.
3059 by_size = [(i.tf.size, i) for i in diffs]
3060 by_size.sort(reverse=True)
3061 by_size = [i[1] for i in by_size]
3062
3063 lock = threading.Lock()
3064 diff_iter = iter(by_size) # accessed under lock
3065
3066 def worker():
3067 try:
3068 lock.acquire()
3069 for d in diff_iter:
3070 lock.release()
3071 start = time.time()
3072 d.ComputePatch()
3073 dur = time.time() - start
3074 lock.acquire()
3075
3076 tf, sf, patch = d.GetPatch()
3077 if sf.name == tf.name:
3078 name = tf.name
3079 else:
3080 name = "%s (%s)" % (tf.name, sf.name)
3081 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003082 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003083 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003084 logger.info(
3085 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3086 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003087 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003088 except Exception:
3089 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003090 raise
3091
3092 # start worker threads; wait for them all to finish.
3093 threads = [threading.Thread(target=worker)
3094 for i in range(OPTIONS.worker_threads)]
3095 for th in threads:
3096 th.start()
3097 while threads:
3098 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003099
3100
Dan Albert8b72aef2015-03-23 19:13:21 -07003101class BlockDifference(object):
3102 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003103 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003104 self.tgt = tgt
3105 self.src = src
3106 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003107 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003108 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003109
Tao Baodd2a5892015-03-12 12:32:37 -07003110 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003111 version = max(
3112 int(i) for i in
3113 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003114 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003115 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003116
Tianjie Xu41976c72019-07-03 13:57:01 -07003117 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3118 version=self.version,
3119 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003120 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003121 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003122 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003123 self.touched_src_ranges = b.touched_src_ranges
3124 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003125
Yifan Hong10c530d2018-12-27 17:34:18 -08003126 # On devices with dynamic partitions, for new partitions,
3127 # src is None but OPTIONS.source_info_dict is not.
3128 if OPTIONS.source_info_dict is None:
3129 is_dynamic_build = OPTIONS.info_dict.get(
3130 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003131 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003132 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003133 is_dynamic_build = OPTIONS.source_info_dict.get(
3134 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003135 is_dynamic_source = partition in shlex.split(
3136 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003137
Yifan Hongbb2658d2019-01-25 12:30:58 -08003138 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003139 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3140
Yifan Hongbb2658d2019-01-25 12:30:58 -08003141 # For dynamic partitions builds, check partition list in both source
3142 # and target build because new partitions may be added, and existing
3143 # partitions may be removed.
3144 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3145
Yifan Hong10c530d2018-12-27 17:34:18 -08003146 if is_dynamic:
3147 self.device = 'map_partition("%s")' % partition
3148 else:
3149 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003150 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3151 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003152 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003153 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3154 OPTIONS.source_info_dict)
3155 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003156
Tao Baod8d14be2016-02-04 14:26:02 -08003157 @property
3158 def required_cache(self):
3159 return self._required_cache
3160
Tao Bao76def242017-11-21 09:25:31 -08003161 def WriteScript(self, script, output_zip, progress=None,
3162 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003163 if not self.src:
3164 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003165 script.Print("Patching %s image unconditionally..." % (self.partition,))
3166 else:
3167 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003168
Dan Albert8b72aef2015-03-23 19:13:21 -07003169 if progress:
3170 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003171 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003172
3173 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003174 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003175
Tao Bao9bc6bb22015-11-09 16:58:28 -08003176 def WriteStrictVerifyScript(self, script):
3177 """Verify all the blocks in the care_map, including clobbered blocks.
3178
3179 This differs from the WriteVerifyScript() function: a) it prints different
3180 error messages; b) it doesn't allow half-way updated images to pass the
3181 verification."""
3182
3183 partition = self.partition
3184 script.Print("Verifying %s..." % (partition,))
3185 ranges = self.tgt.care_map
3186 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003187 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003188 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3189 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003190 self.device, ranges_str,
3191 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003192 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003193 script.AppendExtra("")
3194
Tao Baod522bdc2016-04-12 15:53:16 -07003195 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003196 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003197
3198 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003199 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003200 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003201
3202 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003203 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003204 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003205 ranges = self.touched_src_ranges
3206 expected_sha1 = self.touched_src_sha1
3207 else:
3208 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3209 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003210
3211 # No blocks to be checked, skipping.
3212 if not ranges:
3213 return
3214
Tao Bao5ece99d2015-05-12 11:42:31 -07003215 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003216 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003217 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003218 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3219 '"%s.patch.dat")) then' % (
3220 self.device, ranges_str, expected_sha1,
3221 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003222 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003223 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003224
Tianjie Xufc3422a2015-12-15 11:53:59 -08003225 if self.version >= 4:
3226
3227 # Bug: 21124327
3228 # When generating incrementals for the system and vendor partitions in
3229 # version 4 or newer, explicitly check the first block (which contains
3230 # the superblock) of the partition to see if it's what we expect. If
3231 # this check fails, give an explicit log message about the partition
3232 # having been remounted R/W (the most likely explanation).
3233 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003234 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003235
3236 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003237 if partition == "system":
3238 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3239 else:
3240 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003241 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003242 'ifelse (block_image_recover({device}, "{ranges}") && '
3243 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003244 'package_extract_file("{partition}.transfer.list"), '
3245 '"{partition}.new.dat", "{partition}.patch.dat"), '
3246 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003247 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003248 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003249 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003250
Tao Baodd2a5892015-03-12 12:32:37 -07003251 # Abort the OTA update. Note that the incremental OTA cannot be applied
3252 # even if it may match the checksum of the target partition.
3253 # a) If version < 3, operations like move and erase will make changes
3254 # unconditionally and damage the partition.
3255 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003256 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003257 if partition == "system":
3258 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3259 else:
3260 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3261 script.AppendExtra((
3262 'abort("E%d: %s partition has unexpected contents");\n'
3263 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003264
Yifan Hong10c530d2018-12-27 17:34:18 -08003265 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003266 partition = self.partition
3267 script.Print('Verifying the updated %s image...' % (partition,))
3268 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3269 ranges = self.tgt.care_map
3270 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003271 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003272 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003273 self.device, ranges_str,
3274 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003275
3276 # Bug: 20881595
3277 # Verify that extended blocks are really zeroed out.
3278 if self.tgt.extended:
3279 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003280 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003281 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003282 self.device, ranges_str,
3283 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003284 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003285 if partition == "system":
3286 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3287 else:
3288 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003289 script.AppendExtra(
3290 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003291 ' abort("E%d: %s partition has unexpected non-zero contents after '
3292 'OTA update");\n'
3293 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003294 else:
3295 script.Print('Verified the updated %s image.' % (partition,))
3296
Tianjie Xu209db462016-05-24 17:34:52 -07003297 if partition == "system":
3298 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3299 else:
3300 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3301
Tao Bao5fcaaef2015-06-01 13:40:49 -07003302 script.AppendExtra(
3303 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003304 ' abort("E%d: %s partition has unexpected contents after OTA '
3305 'update");\n'
3306 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003307
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003308 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003309 ZipWrite(output_zip,
3310 '{}.transfer.list'.format(self.path),
3311 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003312
Tao Bao76def242017-11-21 09:25:31 -08003313 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3314 # its size. Quailty 9 almost triples the compression time but doesn't
3315 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003316 # zip | brotli(quality 6) | brotli(quality 9)
3317 # compressed_size: 942M | 869M (~8% reduced) | 854M
3318 # compression_time: 75s | 265s | 719s
3319 # decompression_time: 15s | 25s | 25s
3320
3321 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003322 brotli_cmd = ['brotli', '--quality=6',
3323 '--output={}.new.dat.br'.format(self.path),
3324 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003325 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003326 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003327
3328 new_data_name = '{}.new.dat.br'.format(self.partition)
3329 ZipWrite(output_zip,
3330 '{}.new.dat.br'.format(self.path),
3331 new_data_name,
3332 compress_type=zipfile.ZIP_STORED)
3333 else:
3334 new_data_name = '{}.new.dat'.format(self.partition)
3335 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3336
Dan Albert8e0178d2015-01-27 15:53:15 -08003337 ZipWrite(output_zip,
3338 '{}.patch.dat'.format(self.path),
3339 '{}.patch.dat'.format(self.partition),
3340 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003341
Tianjie Xu209db462016-05-24 17:34:52 -07003342 if self.partition == "system":
3343 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3344 else:
3345 code = ErrorCode.VENDOR_UPDATE_FAILURE
3346
Yifan Hong10c530d2018-12-27 17:34:18 -08003347 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003348 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003349 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003350 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003351 device=self.device, partition=self.partition,
3352 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003353 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003354
Kelvin Zhang0876c412020-06-23 15:06:58 -04003355 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003356 data = source.ReadRangeSet(ranges)
3357 ctx = sha1()
3358
3359 for p in data:
3360 ctx.update(p)
3361
3362 return ctx.hexdigest()
3363
Kelvin Zhang0876c412020-06-23 15:06:58 -04003364 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003365 """Return the hash value for all zero blocks."""
3366 zero_block = '\x00' * 4096
3367 ctx = sha1()
3368 for _ in range(num_blocks):
3369 ctx.update(zero_block)
3370
3371 return ctx.hexdigest()
3372
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003373
Tianjie Xu41976c72019-07-03 13:57:01 -07003374# Expose these two classes to support vendor-specific scripts
3375DataImage = images.DataImage
3376EmptyImage = images.EmptyImage
3377
Tao Bao76def242017-11-21 09:25:31 -08003378
Doug Zongker96a57e72010-09-26 14:57:41 -07003379# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003380PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003381 "ext4": "EMMC",
3382 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003383 "f2fs": "EMMC",
3384 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003385}
Doug Zongker96a57e72010-09-26 14:57:41 -07003386
Kelvin Zhang0876c412020-06-23 15:06:58 -04003387
Yifan Hongbdb32012020-05-07 12:38:53 -07003388def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3389 """
3390 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3391 backwards compatibility. It aborts if the fstab entry has slotselect option
3392 (unless check_no_slot is explicitly set to False).
3393 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003394 fstab = info["fstab"]
3395 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003396 if check_no_slot:
3397 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003398 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003399 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3400 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003401 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003402
3403
Yifan Hongbdb32012020-05-07 12:38:53 -07003404def GetTypeAndDeviceExpr(mount_point, info):
3405 """
3406 Return the filesystem of the partition, and an edify expression that evaluates
3407 to the device at runtime.
3408 """
3409 fstab = info["fstab"]
3410 if fstab:
3411 p = fstab[mount_point]
3412 device_expr = '"%s"' % fstab[mount_point].device
3413 if p.slotselect:
3414 device_expr = 'add_slot_suffix(%s)' % device_expr
3415 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003416 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003417
3418
3419def GetEntryForDevice(fstab, device):
3420 """
3421 Returns:
3422 The first entry in fstab whose device is the given value.
3423 """
3424 if not fstab:
3425 return None
3426 for mount_point in fstab:
3427 if fstab[mount_point].device == device:
3428 return fstab[mount_point]
3429 return None
3430
Kelvin Zhang0876c412020-06-23 15:06:58 -04003431
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003432def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003433 """Parses and converts a PEM-encoded certificate into DER-encoded.
3434
3435 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3436
3437 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003438 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003439 """
3440 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003441 save = False
3442 for line in data.split("\n"):
3443 if "--END CERTIFICATE--" in line:
3444 break
3445 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003446 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003447 if "--BEGIN CERTIFICATE--" in line:
3448 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003449 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003450 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003451
Tao Bao04e1f012018-02-04 12:13:35 -08003452
3453def ExtractPublicKey(cert):
3454 """Extracts the public key (PEM-encoded) from the given certificate file.
3455
3456 Args:
3457 cert: The certificate filename.
3458
3459 Returns:
3460 The public key string.
3461
3462 Raises:
3463 AssertionError: On non-zero return from 'openssl'.
3464 """
3465 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3466 # While openssl 1.1 writes the key into the given filename followed by '-out',
3467 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3468 # stdout instead.
3469 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3470 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3471 pubkey, stderrdata = proc.communicate()
3472 assert proc.returncode == 0, \
3473 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3474 return pubkey
3475
3476
Tao Bao1ac886e2019-06-26 11:58:22 -07003477def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003478 """Extracts the AVB public key from the given public or private key.
3479
3480 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003481 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003482 key: The input key file, which should be PEM-encoded public or private key.
3483
3484 Returns:
3485 The path to the extracted AVB public key file.
3486 """
3487 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3488 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003489 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003490 return output
3491
3492
Doug Zongker412c02f2014-02-13 10:58:24 -08003493def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3494 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003495 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003496
Tao Bao6d5d6232018-03-09 17:04:42 -08003497 Most of the space in the boot and recovery images is just the kernel, which is
3498 identical for the two, so the resulting patch should be efficient. Add it to
3499 the output zip, along with a shell script that is run from init.rc on first
3500 boot to actually do the patching and install the new recovery image.
3501
3502 Args:
3503 input_dir: The top-level input directory of the target-files.zip.
3504 output_sink: The callback function that writes the result.
3505 recovery_img: File object for the recovery image.
3506 boot_img: File objects for the boot image.
3507 info_dict: A dict returned by common.LoadInfoDict() on the input
3508 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003509 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003510 if info_dict is None:
3511 info_dict = OPTIONS.info_dict
3512
Tao Bao6d5d6232018-03-09 17:04:42 -08003513 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003514 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3515
3516 if board_uses_vendorimage:
3517 # In this case, the output sink is rooted at VENDOR
3518 recovery_img_path = "etc/recovery.img"
3519 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3520 sh_dir = "bin"
3521 else:
3522 # In this case the output sink is rooted at SYSTEM
3523 recovery_img_path = "vendor/etc/recovery.img"
3524 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3525 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003526
Tao Baof2cffbd2015-07-22 12:33:18 -07003527 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003528 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003529
3530 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003531 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003532 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003533 # With system-root-image, boot and recovery images will have mismatching
3534 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3535 # to handle such a case.
3536 if system_root_image:
3537 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003538 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003539 assert not os.path.exists(path)
3540 else:
3541 diff_program = ["imgdiff"]
3542 if os.path.exists(path):
3543 diff_program.append("-b")
3544 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003545 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003546 else:
3547 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003548
3549 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3550 _, _, patch = d.ComputePatch()
3551 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003552
Dan Albertebb19aa2015-03-27 19:11:53 -07003553 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003554 # The following GetTypeAndDevice()s need to use the path in the target
3555 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003556 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3557 check_no_slot=False)
3558 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3559 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003560 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003561 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003562
Tao Baof2cffbd2015-07-22 12:33:18 -07003563 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003564
3565 # Note that we use /vendor to refer to the recovery resources. This will
3566 # work for a separate vendor partition mounted at /vendor or a
3567 # /system/vendor subdirectory on the system partition, for which init will
3568 # create a symlink from /vendor to /system/vendor.
3569
3570 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003571if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3572 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003573 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003574 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3575 log -t recovery "Installing new recovery image: succeeded" || \\
3576 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003577else
3578 log -t recovery "Recovery image already installed"
3579fi
3580""" % {'type': recovery_type,
3581 'device': recovery_device,
3582 'sha1': recovery_img.sha1,
3583 'size': recovery_img.size}
3584 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003585 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003586if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3587 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003588 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003589 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3590 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3591 log -t recovery "Installing new recovery image: succeeded" || \\
3592 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003593else
3594 log -t recovery "Recovery image already installed"
3595fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003596""" % {'boot_size': boot_img.size,
3597 'boot_sha1': boot_img.sha1,
3598 'recovery_size': recovery_img.size,
3599 'recovery_sha1': recovery_img.sha1,
3600 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003601 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003602 'recovery_type': recovery_type,
3603 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003604 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003605
Bill Peckhame868aec2019-09-17 17:06:47 -07003606 # The install script location moved from /system/etc to /system/bin in the L
3607 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3608 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003609
Tao Bao32fcdab2018-10-12 10:30:39 -07003610 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003611
Tao Baoda30cfa2017-12-01 16:19:46 -08003612 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003613
3614
3615class DynamicPartitionUpdate(object):
3616 def __init__(self, src_group=None, tgt_group=None, progress=None,
3617 block_difference=None):
3618 self.src_group = src_group
3619 self.tgt_group = tgt_group
3620 self.progress = progress
3621 self.block_difference = block_difference
3622
3623 @property
3624 def src_size(self):
3625 if not self.block_difference:
3626 return 0
3627 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3628
3629 @property
3630 def tgt_size(self):
3631 if not self.block_difference:
3632 return 0
3633 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3634
3635 @staticmethod
3636 def _GetSparseImageSize(img):
3637 if not img:
3638 return 0
3639 return img.blocksize * img.total_blocks
3640
3641
3642class DynamicGroupUpdate(object):
3643 def __init__(self, src_size=None, tgt_size=None):
3644 # None: group does not exist. 0: no size limits.
3645 self.src_size = src_size
3646 self.tgt_size = tgt_size
3647
3648
3649class DynamicPartitionsDifference(object):
3650 def __init__(self, info_dict, block_diffs, progress_dict=None,
3651 source_info_dict=None):
3652 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003653 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003654
3655 self._remove_all_before_apply = False
3656 if source_info_dict is None:
3657 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003658 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003659
Tao Baof1113e92019-06-18 12:10:14 -07003660 block_diff_dict = collections.OrderedDict(
3661 [(e.partition, e) for e in block_diffs])
3662
Yifan Hong10c530d2018-12-27 17:34:18 -08003663 assert len(block_diff_dict) == len(block_diffs), \
3664 "Duplicated BlockDifference object for {}".format(
3665 [partition for partition, count in
3666 collections.Counter(e.partition for e in block_diffs).items()
3667 if count > 1])
3668
Yifan Hong79997e52019-01-23 16:56:19 -08003669 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003670
3671 for p, block_diff in block_diff_dict.items():
3672 self._partition_updates[p] = DynamicPartitionUpdate()
3673 self._partition_updates[p].block_difference = block_diff
3674
3675 for p, progress in progress_dict.items():
3676 if p in self._partition_updates:
3677 self._partition_updates[p].progress = progress
3678
3679 tgt_groups = shlex.split(info_dict.get(
3680 "super_partition_groups", "").strip())
3681 src_groups = shlex.split(source_info_dict.get(
3682 "super_partition_groups", "").strip())
3683
3684 for g in tgt_groups:
3685 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003686 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003687 assert p in self._partition_updates, \
3688 "{} is in target super_{}_partition_list but no BlockDifference " \
3689 "object is provided.".format(p, g)
3690 self._partition_updates[p].tgt_group = g
3691
3692 for g in src_groups:
3693 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003694 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003695 assert p in self._partition_updates, \
3696 "{} is in source super_{}_partition_list but no BlockDifference " \
3697 "object is provided.".format(p, g)
3698 self._partition_updates[p].src_group = g
3699
Yifan Hong45433e42019-01-18 13:55:25 -08003700 target_dynamic_partitions = set(shlex.split(info_dict.get(
3701 "dynamic_partition_list", "").strip()))
3702 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3703 if u.tgt_size)
3704 assert block_diffs_with_target == target_dynamic_partitions, \
3705 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3706 list(target_dynamic_partitions), list(block_diffs_with_target))
3707
3708 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3709 "dynamic_partition_list", "").strip()))
3710 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3711 if u.src_size)
3712 assert block_diffs_with_source == source_dynamic_partitions, \
3713 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3714 list(source_dynamic_partitions), list(block_diffs_with_source))
3715
Yifan Hong10c530d2018-12-27 17:34:18 -08003716 if self._partition_updates:
3717 logger.info("Updating dynamic partitions %s",
3718 self._partition_updates.keys())
3719
Yifan Hong79997e52019-01-23 16:56:19 -08003720 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003721
3722 for g in tgt_groups:
3723 self._group_updates[g] = DynamicGroupUpdate()
3724 self._group_updates[g].tgt_size = int(info_dict.get(
3725 "super_%s_group_size" % g, "0").strip())
3726
3727 for g in src_groups:
3728 if g not in self._group_updates:
3729 self._group_updates[g] = DynamicGroupUpdate()
3730 self._group_updates[g].src_size = int(source_info_dict.get(
3731 "super_%s_group_size" % g, "0").strip())
3732
3733 self._Compute()
3734
3735 def WriteScript(self, script, output_zip, write_verify_script=False):
3736 script.Comment('--- Start patching dynamic partitions ---')
3737 for p, u in self._partition_updates.items():
3738 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3739 script.Comment('Patch partition %s' % p)
3740 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3741 write_verify_script=False)
3742
3743 op_list_path = MakeTempFile()
3744 with open(op_list_path, 'w') as f:
3745 for line in self._op_list:
3746 f.write('{}\n'.format(line))
3747
3748 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3749
3750 script.Comment('Update dynamic partition metadata')
3751 script.AppendExtra('assert(update_dynamic_partitions('
3752 'package_extract_file("dynamic_partitions_op_list")));')
3753
3754 if write_verify_script:
3755 for p, u in self._partition_updates.items():
3756 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3757 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003758 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003759
3760 for p, u in self._partition_updates.items():
3761 if u.tgt_size and u.src_size <= u.tgt_size:
3762 script.Comment('Patch partition %s' % p)
3763 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3764 write_verify_script=write_verify_script)
3765 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003766 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003767
3768 script.Comment('--- End patching dynamic partitions ---')
3769
3770 def _Compute(self):
3771 self._op_list = list()
3772
3773 def append(line):
3774 self._op_list.append(line)
3775
3776 def comment(line):
3777 self._op_list.append("# %s" % line)
3778
3779 if self._remove_all_before_apply:
3780 comment('Remove all existing dynamic partitions and groups before '
3781 'applying full OTA')
3782 append('remove_all_groups')
3783
3784 for p, u in self._partition_updates.items():
3785 if u.src_group and not u.tgt_group:
3786 append('remove %s' % p)
3787
3788 for p, u in self._partition_updates.items():
3789 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3790 comment('Move partition %s from %s to default' % (p, u.src_group))
3791 append('move %s default' % p)
3792
3793 for p, u in self._partition_updates.items():
3794 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3795 comment('Shrink partition %s from %d to %d' %
3796 (p, u.src_size, u.tgt_size))
3797 append('resize %s %s' % (p, u.tgt_size))
3798
3799 for g, u in self._group_updates.items():
3800 if u.src_size is not None and u.tgt_size is None:
3801 append('remove_group %s' % g)
3802 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003803 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003804 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3805 append('resize_group %s %d' % (g, u.tgt_size))
3806
3807 for g, u in self._group_updates.items():
3808 if u.src_size is None and u.tgt_size is not None:
3809 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3810 append('add_group %s %d' % (g, u.tgt_size))
3811 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003812 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003813 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3814 append('resize_group %s %d' % (g, u.tgt_size))
3815
3816 for p, u in self._partition_updates.items():
3817 if u.tgt_group and not u.src_group:
3818 comment('Add partition %s to group %s' % (p, u.tgt_group))
3819 append('add %s %s' % (p, u.tgt_group))
3820
3821 for p, u in self._partition_updates.items():
3822 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003823 comment('Grow partition %s from %d to %d' %
3824 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003825 append('resize %s %d' % (p, u.tgt_size))
3826
3827 for p, u in self._partition_updates.items():
3828 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3829 comment('Move partition %s from default to %s' %
3830 (p, u.tgt_group))
3831 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003832
3833
jiajia tangf3f842b2021-03-17 21:49:44 +08003834def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003835 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003836 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003837
3838 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003839 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003840
3841 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003842 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003843 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003844 tmp_dir = MakeTempDir('boot_', suffix='.img')
3845 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003846 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3847 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003848 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3849 if not os.path.isfile(ramdisk):
3850 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3851 return None
3852 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003853 if ramdisk_format == RamdiskFormat.LZ4:
3854 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3855 elif ramdisk_format == RamdiskFormat.GZ:
3856 with open(ramdisk, 'rb') as input_stream:
3857 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003858 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3859 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003860 p2.wait()
3861 else:
3862 logger.error('Only support lz4 or minigzip ramdisk format.')
3863 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003864
3865 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3866 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3867 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3868 # the host environment.
3869 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003870 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003871
Yifan Hongc65a0542021-01-07 14:21:01 -08003872 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3873 prop_file = os.path.join(extracted_ramdisk, search_path)
3874 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003875 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003876 logger.warning(
3877 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003878
Yifan Hong7dc51172021-01-12 11:27:39 -08003879 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003880
Yifan Hong85ac5012021-01-07 14:43:46 -08003881 except ExternalError as e:
3882 logger.warning('Unable to get boot image build props: %s', e)
3883 return None
3884
3885
3886def GetBootImageTimestamp(boot_img):
3887 """
3888 Get timestamp from ramdisk within the boot image
3889
3890 Args:
3891 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3892
3893 Return:
3894 An integer that corresponds to the timestamp of the boot image, or None
3895 if file has unknown format. Raise exception if an unexpected error has
3896 occurred.
3897 """
3898 prop_file = GetBootImageBuildProp(boot_img)
3899 if not prop_file:
3900 return None
3901
3902 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3903 if props is None:
3904 return None
3905
3906 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003907 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3908 if timestamp:
3909 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003910 logger.warning(
3911 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003912 return None
3913
3914 except ExternalError as e:
3915 logger.warning('Unable to get boot image timestamp: %s', e)
3916 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003917
3918
3919def GetCareMap(which, imgname):
3920 """Returns the care_map string for the given partition.
3921
3922 Args:
3923 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
3924 imgname: The filename of the image.
3925
3926 Returns:
3927 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
3928 RangeSet; or None.
3929 """
3930 assert which in PARTITIONS_WITH_CARE_MAP
3931
3932 # which + "_image_size" contains the size that the actual filesystem image
3933 # resides in, which is all that needs to be verified. The additional blocks in
3934 # the image file contain verity metadata, by reading which would trigger
3935 # invalid reads.
3936 image_size = OPTIONS.info_dict.get(which + "_image_size")
3937 if not image_size:
3938 return None
3939
David Anderson9e95a022021-08-31 21:32:45 -07003940 disable_sparse = OPTIONS.info_dict.get(which + "_disable_sparse")
3941
Kelvin Zhang27324132021-03-22 15:38:38 -04003942 image_blocks = int(image_size) // 4096 - 1
Kelvin Zhang98ef7bb2022-01-07 14:41:46 -08003943 # It's OK for image_blocks to be 0, because care map ranges are inclusive.
3944 # So 0-0 means "just block 0", which is valid.
3945 assert image_blocks >= 0, "blocks for {} must be non-negative, image size: {}".format(
3946 which, image_size)
Kelvin Zhang27324132021-03-22 15:38:38 -04003947
3948 # For sparse images, we will only check the blocks that are listed in the care
3949 # map, i.e. the ones with meaningful data.
David Anderson9e95a022021-08-31 21:32:45 -07003950 if "extfs_sparse_flag" in OPTIONS.info_dict and not disable_sparse:
Kelvin Zhang27324132021-03-22 15:38:38 -04003951 simg = sparse_img.SparseImage(imgname)
3952 care_map_ranges = simg.care_map.intersect(
3953 rangelib.RangeSet("0-{}".format(image_blocks)))
3954
3955 # Otherwise for non-sparse images, we read all the blocks in the filesystem
3956 # image.
3957 else:
3958 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
3959
3960 return [which, care_map_ranges.to_string_raw()]
3961
3962
3963def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
3964 """Generates and adds care_map.pb for a/b partition that has care_map.
3965
3966 Args:
3967 output_file: The output zip file (needs to be already open),
3968 or file path to write care_map.pb.
3969 ab_partitions: The list of A/B partitions.
3970 image_paths: A map from the partition name to the image path.
3971 """
3972 if not output_file:
3973 raise ExternalError('Expected output_file for AddCareMapForAbOta')
3974
3975 care_map_list = []
3976 for partition in ab_partitions:
3977 partition = partition.strip()
3978 if partition not in PARTITIONS_WITH_CARE_MAP:
3979 continue
3980
3981 verity_block_device = "{}_verity_block_device".format(partition)
3982 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
3983 if (verity_block_device in OPTIONS.info_dict or
3984 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
3985 if partition not in image_paths:
3986 logger.warning('Potential partition with care_map missing from images: %s',
3987 partition)
3988 continue
3989 image_path = image_paths[partition]
3990 if not os.path.exists(image_path):
3991 raise ExternalError('Expected image at path {}'.format(image_path))
3992
3993 care_map = GetCareMap(partition, image_path)
3994 if not care_map:
3995 continue
3996 care_map_list += care_map
3997
3998 # adds fingerprint field to the care_map
3999 # TODO(xunchang) revisit the fingerprint calculation for care_map.
4000 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
4001 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
4002 "ro.{}.build.thumbprint".format(partition)]
4003
4004 present_props = [x for x in prop_name_list if
4005 partition_props and partition_props.GetProp(x)]
4006 if not present_props:
4007 logger.warning(
4008 "fingerprint is not present for partition %s", partition)
4009 property_id, fingerprint = "unknown", "unknown"
4010 else:
4011 property_id = present_props[0]
4012 fingerprint = partition_props.GetProp(property_id)
4013 care_map_list += [property_id, fingerprint]
4014
4015 if not care_map_list:
4016 return
4017
4018 # Converts the list into proto buf message by calling care_map_generator; and
4019 # writes the result to a temp file.
4020 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
4021 suffix=".txt")
4022 with open(temp_care_map_text, 'w') as text_file:
4023 text_file.write('\n'.join(care_map_list))
4024
4025 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
4026 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
4027 RunAndCheckOutput(care_map_gen_cmd)
4028
4029 if not isinstance(output_file, zipfile.ZipFile):
4030 shutil.copy(temp_care_map, output_file)
4031 return
4032 # output_file is a zip file
4033 care_map_path = "META/care_map.pb"
4034 if care_map_path in output_file.namelist():
4035 # Copy the temp file into the OPTIONS.input_tmp dir and update the
4036 # replace_updated_files_list used by add_img_to_target_files
4037 if not OPTIONS.replace_updated_files_list:
4038 OPTIONS.replace_updated_files_list = []
4039 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
4040 OPTIONS.replace_updated_files_list.append(care_map_path)
4041 else:
4042 ZipWrite(output_file, temp_care_map, arcname=care_map_path)
Kelvin Zhang26390482021-11-02 14:31:10 -07004043
4044
4045def IsSparseImage(filepath):
4046 with open(filepath, 'rb') as fp:
4047 # Magic for android sparse image format
4048 # https://source.android.com/devices/bootloader/images
4049 return fp.read(4) == b'\x3A\xFF\x26\xED'