blob: fb5626d28b09de29662e0f9be1d849cc10d16f1c [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Doug Zongker8ce7c252009-05-22 13:34:54 -070020import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070021import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070022import getopt
23import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010024import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070025import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070026import json
27import logging
28import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070029import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080030import platform
Doug Zongkereef39442009-04-02 12:14:19 -070031import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070032import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070033import shutil
34import subprocess
35import sys
36import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070037import threading
38import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070039import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080040from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070041
Tianjie Xu41976c72019-07-03 13:57:01 -070042import images
Tao Baoc765cca2018-01-31 17:32:40 -080043import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070044from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070045
Tao Bao32fcdab2018-10-12 10:30:39 -070046logger = logging.getLogger(__name__)
47
Tao Bao986ee862018-10-04 15:46:16 -070048
Dan Albert8b72aef2015-03-23 19:13:21 -070049class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070052 # Set up search path, in order to find framework/ and lib64/. At the time of
53 # running this function, user-supplied search path (`--path`) hasn't been
54 # available. So the value set here is the default, which might be overridden
55 # by commandline flag later.
56 exec_path = sys.argv[0]
57 if exec_path.endswith('.py'):
58 script_name = os.path.basename(exec_path)
59 # logger hasn't been initialized yet at this point. Use print to output
60 # warnings.
61 print(
62 'Warning: releasetools script should be invoked as hermetic Python '
63 'executable -- build and run `{}` directly.'.format(script_name[:-3]),
64 file=sys.stderr)
Robin Lee34ea7392020-01-02 20:21:18 +010065 self.search_path = os.path.realpath(os.path.join(os.path.dirname(exec_path), '..'))
Pavel Salomatov32676552019-03-06 20:00:45 +030066
Dan Albert8b72aef2015-03-23 19:13:21 -070067 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080068 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070069 self.extra_signapk_args = []
70 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080071 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080072 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070073 self.public_key_suffix = ".x509.pem"
74 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070075 # use otatools built boot_signer by default
76 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070077 self.boot_signer_args = []
78 self.verity_signer_path = None
79 self.verity_signer_args = []
Tianjie0f307452020-04-01 12:20:21 -070080 self.aftl_tool_path = None
Dan Austin52903642019-12-12 15:44:00 -080081 self.aftl_server = None
82 self.aftl_key_path = None
83 self.aftl_manufacturer_key_path = None
84 self.aftl_signer_helper = None
Dan Albert8b72aef2015-03-23 19:13:21 -070085 self.verbose = False
86 self.tempfiles = []
87 self.device_specific = None
88 self.extras = {}
89 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070090 self.source_info_dict = None
91 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070092 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070093 # Stash size cannot exceed cache_size * threshold.
94 self.cache_size = None
95 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070096 self.logfile = None
Dan Albert8b72aef2015-03-23 19:13:21 -070097
98
99OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700100
Tao Bao71197512018-10-11 14:08:45 -0700101# The block size that's used across the releasetools scripts.
102BLOCK_SIZE = 4096
103
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800104# Values for "certificate" in apkcerts that mean special things.
105SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
106
Tao Bao5cc0abb2019-03-21 10:18:05 -0700107# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
108# that system_other is not in the list because we don't want to include its
109# descriptor into vbmeta.img.
Justin Yun6151e3f2019-06-25 15:58:13 +0900110AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'recovery', 'system',
Steve Mucklee1b10862019-07-10 10:49:37 -0700111 'system_ext', 'vendor', 'vendor_boot')
Tao Bao9dd909e2017-11-14 11:27:32 -0800112
Tao Bao08c190f2019-06-03 23:07:58 -0700113# Chained VBMeta partitions.
114AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
115
Tianjie Xu861f4132018-09-12 11:49:33 -0700116# Partitions that should have their care_map added to META/care_map.pb
Justin Yun6151e3f2019-06-25 15:58:13 +0900117PARTITIONS_WITH_CARE_MAP = ('system', 'vendor', 'product', 'system_ext', 'odm')
Tianjie Xu861f4132018-09-12 11:49:33 -0700118
119
Tianjie Xu209db462016-05-24 17:34:52 -0700120class ErrorCode(object):
121 """Define error_codes for failures that happen during the actual
122 update package installation.
123
124 Error codes 0-999 are reserved for failures before the package
125 installation (i.e. low battery, package verification failure).
126 Detailed code in 'bootable/recovery/error_code.h' """
127
128 SYSTEM_VERIFICATION_FAILURE = 1000
129 SYSTEM_UPDATE_FAILURE = 1001
130 SYSTEM_UNEXPECTED_CONTENTS = 1002
131 SYSTEM_NONZERO_CONTENTS = 1003
132 SYSTEM_RECOVER_FAILURE = 1004
133 VENDOR_VERIFICATION_FAILURE = 2000
134 VENDOR_UPDATE_FAILURE = 2001
135 VENDOR_UNEXPECTED_CONTENTS = 2002
136 VENDOR_NONZERO_CONTENTS = 2003
137 VENDOR_RECOVER_FAILURE = 2004
138 OEM_PROP_MISMATCH = 3000
139 FINGERPRINT_MISMATCH = 3001
140 THUMBPRINT_MISMATCH = 3002
141 OLDER_BUILD = 3003
142 DEVICE_MISMATCH = 3004
143 BAD_PATCH_FILE = 3005
144 INSUFFICIENT_CACHE_SPACE = 3006
145 TUNE_PARTITION_FAILURE = 3007
146 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800147
Tao Bao80921982018-03-21 21:02:19 -0700148
Dan Albert8b72aef2015-03-23 19:13:21 -0700149class ExternalError(RuntimeError):
150 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700151
152
Tao Bao32fcdab2018-10-12 10:30:39 -0700153def InitLogging():
154 DEFAULT_LOGGING_CONFIG = {
155 'version': 1,
156 'disable_existing_loggers': False,
157 'formatters': {
158 'standard': {
159 'format':
160 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
161 'datefmt': '%Y-%m-%d %H:%M:%S',
162 },
163 },
164 'handlers': {
165 'default': {
166 'class': 'logging.StreamHandler',
167 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700168 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700169 },
170 },
171 'loggers': {
172 '': {
173 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700174 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700175 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700176 }
177 }
178 }
179 env_config = os.getenv('LOGGING_CONFIG')
180 if env_config:
181 with open(env_config) as f:
182 config = json.load(f)
183 else:
184 config = DEFAULT_LOGGING_CONFIG
185
186 # Increase the logging level for verbose mode.
187 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700188 config = copy.deepcopy(config)
189 config['handlers']['default']['level'] = 'INFO'
190
191 if OPTIONS.logfile:
192 config = copy.deepcopy(config)
193 config['handlers']['logfile'] = {
194 'class': 'logging.FileHandler',
195 'formatter': 'standard',
196 'level': 'INFO',
197 'mode': 'w',
198 'filename': OPTIONS.logfile,
199 }
200 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700201
202 logging.config.dictConfig(config)
203
204
Tao Bao39451582017-05-04 11:10:47 -0700205def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700206 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700207
Tao Bao73dd4f42018-10-04 16:25:33 -0700208 Args:
209 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700210 verbose: Whether the commands should be shown. Default to the global
211 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700212 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
213 stdin, etc. stdout and stderr will default to subprocess.PIPE and
214 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800215 universal_newlines will default to True, as most of the users in
216 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700217
218 Returns:
219 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700220 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700221 if 'stdout' not in kwargs and 'stderr' not in kwargs:
222 kwargs['stdout'] = subprocess.PIPE
223 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800224 if 'universal_newlines' not in kwargs:
225 kwargs['universal_newlines'] = True
Tao Bao32fcdab2018-10-12 10:30:39 -0700226 # Don't log any if caller explicitly says so.
227 if verbose != False:
228 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700229 return subprocess.Popen(args, **kwargs)
230
231
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800232def RunAndWait(args, verbose=None, **kwargs):
Bill Peckham889b0c62019-02-21 18:53:37 -0800233 """Runs the given command waiting for it to complete.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800234
235 Args:
236 args: The command represented as a list of strings.
237 verbose: Whether the commands should be shown. Default to the global
238 verbosity if unspecified.
239 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
240 stdin, etc. stdout and stderr will default to subprocess.PIPE and
241 subprocess.STDOUT respectively unless caller specifies any of them.
242
Bill Peckham889b0c62019-02-21 18:53:37 -0800243 Raises:
244 ExternalError: On non-zero exit from the command.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800245 """
246 proc = Run(args, verbose=verbose, **kwargs)
247 proc.wait()
Bill Peckham889b0c62019-02-21 18:53:37 -0800248
249 if proc.returncode != 0:
250 raise ExternalError(
251 "Failed to run command '{}' (exit code {})".format(
252 args, proc.returncode))
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800253
254
Tao Bao986ee862018-10-04 15:46:16 -0700255def RunAndCheckOutput(args, verbose=None, **kwargs):
256 """Runs the given command and returns the output.
257
258 Args:
259 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700260 verbose: Whether the commands should be shown. Default to the global
261 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700262 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
263 stdin, etc. stdout and stderr will default to subprocess.PIPE and
264 subprocess.STDOUT respectively unless caller specifies any of them.
265
266 Returns:
267 The output string.
268
269 Raises:
270 ExternalError: On non-zero exit from the command.
271 """
Tao Bao986ee862018-10-04 15:46:16 -0700272 proc = Run(args, verbose=verbose, **kwargs)
273 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800274 if output is None:
275 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700276 # Don't log any if caller explicitly says so.
277 if verbose != False:
278 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700279 if proc.returncode != 0:
280 raise ExternalError(
281 "Failed to run command '{}' (exit code {}):\n{}".format(
282 args, proc.returncode, output))
283 return output
284
285
Tao Baoc765cca2018-01-31 17:32:40 -0800286def RoundUpTo4K(value):
287 rounded_up = value + 4095
288 return rounded_up - (rounded_up % 4096)
289
290
Ying Wang7e6d4e42010-12-13 16:25:36 -0800291def CloseInheritedPipes():
292 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
293 before doing other work."""
294 if platform.system() != "Darwin":
295 return
296 for d in range(3, 1025):
297 try:
298 stat = os.fstat(d)
299 if stat is not None:
300 pipebit = stat[0] & 0x1000
301 if pipebit != 0:
302 os.close(d)
303 except OSError:
304 pass
305
306
Tao Bao1c320f82019-10-04 23:25:12 -0700307class BuildInfo(object):
308 """A class that holds the information for a given build.
309
310 This class wraps up the property querying for a given source or target build.
311 It abstracts away the logic of handling OEM-specific properties, and caches
312 the commonly used properties such as fingerprint.
313
314 There are two types of info dicts: a) build-time info dict, which is generated
315 at build time (i.e. included in a target_files zip); b) OEM info dict that is
316 specified at package generation time (via command line argument
317 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
318 having "oem_fingerprint_properties" in build-time info dict), all the queries
319 would be answered based on build-time info dict only. Otherwise if using
320 OEM-specific properties, some of them will be calculated from two info dicts.
321
322 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800323 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700324
325 Attributes:
326 info_dict: The build-time info dict.
327 is_ab: Whether it's a build that uses A/B OTA.
328 oem_dicts: A list of OEM dicts.
329 oem_props: A list of OEM properties that should be read from OEM dicts; None
330 if the build doesn't use any OEM-specific property.
331 fingerprint: The fingerprint of the build, which would be calculated based
332 on OEM properties if applicable.
333 device: The device name, which could come from OEM dicts if applicable.
334 """
335
336 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
337 "ro.product.manufacturer", "ro.product.model",
338 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700339 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
340 "product", "odm", "vendor", "system_ext", "system"]
341 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
342 "product", "product_services", "odm", "vendor", "system"]
343 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700344
Tao Bao3ed35d32019-10-07 20:48:48 -0700345 def __init__(self, info_dict, oem_dicts=None):
Tao Bao1c320f82019-10-04 23:25:12 -0700346 """Initializes a BuildInfo instance with the given dicts.
347
348 Note that it only wraps up the given dicts, without making copies.
349
350 Arguments:
351 info_dict: The build-time info dict.
352 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
353 that it always uses the first dict to calculate the fingerprint or the
354 device name. The rest would be used for asserting OEM properties only
355 (e.g. one package can be installed on one of these devices).
356
357 Raises:
358 ValueError: On invalid inputs.
359 """
360 self.info_dict = info_dict
361 self.oem_dicts = oem_dicts
362
363 self._is_ab = info_dict.get("ab_update") == "true"
Tao Bao1c320f82019-10-04 23:25:12 -0700364
Hongguang Chend7c160f2020-05-03 21:24:26 -0700365 # Skip _oem_props if oem_dicts is None to use BuildInfo in
366 # sign_target_files_apks
367 if self.oem_dicts:
368 self._oem_props = info_dict.get("oem_fingerprint_properties")
369 else:
370 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700371
Daniel Normand5fe8622020-01-08 17:01:11 -0800372 def check_fingerprint(fingerprint):
373 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
374 raise ValueError(
375 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
376 "3.2.2. Build Parameters.".format(fingerprint))
377
378
379 self._partition_fingerprints = {}
380 for partition in PARTITIONS_WITH_CARE_MAP:
381 try:
382 fingerprint = self.CalculatePartitionFingerprint(partition)
383 check_fingerprint(fingerprint)
384 self._partition_fingerprints[partition] = fingerprint
385 except ExternalError:
386 continue
387 if "system" in self._partition_fingerprints:
388 # system_other is not included in PARTITIONS_WITH_CARE_MAP, but does
389 # need a fingerprint when creating the image.
390 self._partition_fingerprints[
391 "system_other"] = self._partition_fingerprints["system"]
392
Tao Bao1c320f82019-10-04 23:25:12 -0700393 # These two should be computed only after setting self._oem_props.
394 self._device = self.GetOemProperty("ro.product.device")
395 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800396 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700397
398 @property
399 def is_ab(self):
400 return self._is_ab
401
402 @property
403 def device(self):
404 return self._device
405
406 @property
407 def fingerprint(self):
408 return self._fingerprint
409
410 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700411 def oem_props(self):
412 return self._oem_props
413
414 def __getitem__(self, key):
415 return self.info_dict[key]
416
417 def __setitem__(self, key, value):
418 self.info_dict[key] = value
419
420 def get(self, key, default=None):
421 return self.info_dict.get(key, default)
422
423 def items(self):
424 return self.info_dict.items()
425
Daniel Normand5fe8622020-01-08 17:01:11 -0800426 def GetPartitionBuildProp(self, prop, partition):
427 """Returns the inquired build property for the provided partition."""
428 # If provided a partition for this property, only look within that
429 # partition's build.prop.
430 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
431 prop = prop.replace("ro.product", "ro.product.{}".format(partition))
432 else:
433 prop = prop.replace("ro.", "ro.{}.".format(partition))
434 try:
435 return self.info_dict.get("{}.build.prop".format(partition), {})[prop]
436 except KeyError:
437 raise ExternalError("couldn't find %s in %s.build.prop" %
438 (prop, partition))
439
Tao Bao1c320f82019-10-04 23:25:12 -0700440 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800441 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700442 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
443 return self._ResolveRoProductBuildProp(prop)
444
445 try:
446 return self.info_dict.get("build.prop", {})[prop]
447 except KeyError:
448 raise ExternalError("couldn't find %s in build.prop" % (prop,))
449
450 def _ResolveRoProductBuildProp(self, prop):
451 """Resolves the inquired ro.product.* build property"""
452 prop_val = self.info_dict.get("build.prop", {}).get(prop)
453 if prop_val:
454 return prop_val
455
Steven Laver8e2086e2020-04-27 16:26:31 -0700456 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tao Bao1c320f82019-10-04 23:25:12 -0700457 source_order_val = self.info_dict.get("build.prop", {}).get(
458 "ro.product.property_source_order")
459 if source_order_val:
460 source_order = source_order_val.split(",")
461 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700462 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700463
464 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700465 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700466 raise ExternalError(
467 "Invalid ro.product.property_source_order '{}'".format(source_order))
468
469 for source in source_order:
470 source_prop = prop.replace(
471 "ro.product", "ro.product.{}".format(source), 1)
472 prop_val = self.info_dict.get(
473 "{}.build.prop".format(source), {}).get(source_prop)
474 if prop_val:
475 return prop_val
476
477 raise ExternalError("couldn't resolve {}".format(prop))
478
Steven Laver8e2086e2020-04-27 16:26:31 -0700479 def _GetRoProductPropsDefaultSourceOrder(self):
480 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
481 # values of these properties for each Android release.
482 android_codename = self.info_dict.get("build.prop", {}).get(
483 "ro.build.version.codename")
484 if android_codename == "REL":
485 android_version = self.info_dict.get("build.prop", {}).get(
486 "ro.build.version.release")
487 if android_version == "10":
488 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
489 # NOTE: float() conversion of android_version will have rounding error.
490 # We are checking for "9" or less, and using "< 10" is well outside of
491 # possible floating point rounding.
492 try:
493 android_version_val = float(android_version)
494 except ValueError:
495 android_version_val = 0
496 if android_version_val < 10:
497 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
498 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
499
Tao Bao1c320f82019-10-04 23:25:12 -0700500 def GetOemProperty(self, key):
501 if self.oem_props is not None and key in self.oem_props:
502 return self.oem_dicts[0][key]
503 return self.GetBuildProp(key)
504
Daniel Normand5fe8622020-01-08 17:01:11 -0800505 def GetPartitionFingerprint(self, partition):
506 return self._partition_fingerprints.get(partition, None)
507
508 def CalculatePartitionFingerprint(self, partition):
509 try:
510 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
511 except ExternalError:
512 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
513 self.GetPartitionBuildProp("ro.product.brand", partition),
514 self.GetPartitionBuildProp("ro.product.name", partition),
515 self.GetPartitionBuildProp("ro.product.device", partition),
516 self.GetPartitionBuildProp("ro.build.version.release", partition),
517 self.GetPartitionBuildProp("ro.build.id", partition),
518 self.GetPartitionBuildProp("ro.build.version.incremental", partition),
519 self.GetPartitionBuildProp("ro.build.type", partition),
520 self.GetPartitionBuildProp("ro.build.tags", partition))
521
Tao Bao1c320f82019-10-04 23:25:12 -0700522 def CalculateFingerprint(self):
523 if self.oem_props is None:
524 try:
525 return self.GetBuildProp("ro.build.fingerprint")
526 except ExternalError:
527 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
528 self.GetBuildProp("ro.product.brand"),
529 self.GetBuildProp("ro.product.name"),
530 self.GetBuildProp("ro.product.device"),
531 self.GetBuildProp("ro.build.version.release"),
532 self.GetBuildProp("ro.build.id"),
533 self.GetBuildProp("ro.build.version.incremental"),
534 self.GetBuildProp("ro.build.type"),
535 self.GetBuildProp("ro.build.tags"))
536 return "%s/%s/%s:%s" % (
537 self.GetOemProperty("ro.product.brand"),
538 self.GetOemProperty("ro.product.name"),
539 self.GetOemProperty("ro.product.device"),
540 self.GetBuildProp("ro.build.thumbprint"))
541
542 def WriteMountOemScript(self, script):
543 assert self.oem_props is not None
544 recovery_mount_options = self.info_dict.get("recovery_mount_options")
545 script.Mount("/oem", recovery_mount_options)
546
547 def WriteDeviceAssertions(self, script, oem_no_mount):
548 # Read the property directly if not using OEM properties.
549 if not self.oem_props:
550 script.AssertDevice(self.device)
551 return
552
553 # Otherwise assert OEM properties.
554 if not self.oem_dicts:
555 raise ExternalError(
556 "No OEM file provided to answer expected assertions")
557
558 for prop in self.oem_props.split():
559 values = []
560 for oem_dict in self.oem_dicts:
561 if prop in oem_dict:
562 values.append(oem_dict[prop])
563 if not values:
564 raise ExternalError(
565 "The OEM file is missing the property %s" % (prop,))
566 script.AssertOemProperty(prop, values, oem_no_mount)
567
568
Tao Bao410ad8b2018-08-24 12:08:38 -0700569def LoadInfoDict(input_file, repacking=False):
570 """Loads the key/value pairs from the given input target_files.
571
572 It reads `META/misc_info.txt` file in the target_files input, does sanity
573 checks and returns the parsed key/value pairs for to the given build. It's
574 usually called early when working on input target_files files, e.g. when
575 generating OTAs, or signing builds. Note that the function may be called
576 against an old target_files file (i.e. from past dessert releases). So the
577 property parsing needs to be backward compatible.
578
579 In a `META/misc_info.txt`, a few properties are stored as links to the files
580 in the PRODUCT_OUT directory. It works fine with the build system. However,
581 they are no longer available when (re)generating images from target_files zip.
582 When `repacking` is True, redirect these properties to the actual files in the
583 unzipped directory.
584
585 Args:
586 input_file: The input target_files file, which could be an open
587 zipfile.ZipFile instance, or a str for the dir that contains the files
588 unzipped from a target_files file.
589 repacking: Whether it's trying repack an target_files file after loading the
590 info dict (default: False). If so, it will rewrite a few loaded
591 properties (e.g. selinux_fc, root_dir) to point to the actual files in
592 target_files file. When doing repacking, `input_file` must be a dir.
593
594 Returns:
595 A dict that contains the parsed key/value pairs.
596
597 Raises:
598 AssertionError: On invalid input arguments.
599 ValueError: On malformed input values.
600 """
601 if repacking:
602 assert isinstance(input_file, str), \
603 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700604
Doug Zongkerc9253822014-02-04 12:17:58 -0800605 def read_helper(fn):
Dan Albert8b72aef2015-03-23 19:13:21 -0700606 if isinstance(input_file, zipfile.ZipFile):
Tao Baoda30cfa2017-12-01 16:19:46 -0800607 return input_file.read(fn).decode()
Doug Zongkerc9253822014-02-04 12:17:58 -0800608 else:
Dan Albert8b72aef2015-03-23 19:13:21 -0700609 path = os.path.join(input_file, *fn.split("/"))
Doug Zongkerc9253822014-02-04 12:17:58 -0800610 try:
611 with open(path) as f:
612 return f.read()
Dan Albert8b72aef2015-03-23 19:13:21 -0700613 except IOError as e:
Doug Zongkerc9253822014-02-04 12:17:58 -0800614 if e.errno == errno.ENOENT:
615 raise KeyError(fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800616
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700617 try:
Michael Runge6e836112014-04-15 17:40:21 -0700618 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700619 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700620 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700621
Tao Bao410ad8b2018-08-24 12:08:38 -0700622 if "recovery_api_version" not in d:
623 raise ValueError("Failed to find 'recovery_api_version'")
624 if "fstab_version" not in d:
625 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800626
Tao Bao410ad8b2018-08-24 12:08:38 -0700627 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700628 # "selinux_fc" properties should point to the file_contexts files
629 # (file_contexts.bin) under META/.
630 for key in d:
631 if key.endswith("selinux_fc"):
632 fc_basename = os.path.basename(d[key])
633 fc_config = os.path.join(input_file, "META", fc_basename)
634 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700635
Daniel Norman72c626f2019-05-13 15:58:14 -0700636 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700637
Tom Cherryd14b8952018-08-09 14:26:00 -0700638 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700639 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700640 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700641 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700642
David Anderson0ec64ac2019-12-06 12:21:18 -0800643 # Redirect {partition}_base_fs_file for each of the named partitions.
644 for part_name in ["system", "vendor", "system_ext", "product", "odm"]:
645 key_name = part_name + "_base_fs_file"
646 if key_name not in d:
647 continue
648 basename = os.path.basename(d[key_name])
649 base_fs_file = os.path.join(input_file, "META", basename)
650 if os.path.exists(base_fs_file):
651 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700652 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700653 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800654 "Failed to find %s base fs file: %s", part_name, base_fs_file)
655 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700656
Doug Zongker37974732010-09-16 17:44:38 -0700657 def makeint(key):
658 if key in d:
659 d[key] = int(d[key], 0)
660
661 makeint("recovery_api_version")
662 makeint("blocksize")
663 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700664 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700665 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700666 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700667 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800668 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700669
Steve Muckle11c4bcf2020-05-07 17:32:10 -0700670 boot_images = "boot.img"
671 if "boot_images" in d:
672 boot_images = d["boot_images"]
673 for b in boot_images.split():
674 makeint(b.replace(".img","_size"))
675
Tao Bao765668f2019-10-04 22:03:00 -0700676 # Load recovery fstab if applicable.
677 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
Tianjie Xucfa86222016-03-07 16:31:19 -0800678
Tianjie Xu861f4132018-09-12 11:49:33 -0700679 # Tries to load the build props for all partitions with care_map, including
680 # system and vendor.
681 for partition in PARTITIONS_WITH_CARE_MAP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800682 partition_prop = "{}.build.prop".format(partition)
683 d[partition_prop] = LoadBuildProp(
Tianjie Xu861f4132018-09-12 11:49:33 -0700684 read_helper, "{}/build.prop".format(partition.upper()))
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800685 # Some partition might use /<partition>/etc/build.prop as the new path.
686 # TODO: try new path first when majority of them switch to the new path.
687 if not d[partition_prop]:
688 d[partition_prop] = LoadBuildProp(
689 read_helper, "{}/etc/build.prop".format(partition.upper()))
Tianjie Xu861f4132018-09-12 11:49:33 -0700690 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800691
Tao Bao3ed35d32019-10-07 20:48:48 -0700692 # Set up the salt (based on fingerprint) that will be used when adding AVB
693 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800694 if d.get("avb_enable") == "true":
Tao Bao3ed35d32019-10-07 20:48:48 -0700695 build_info = BuildInfo(d)
Daniel Normand5fe8622020-01-08 17:01:11 -0800696 for partition in PARTITIONS_WITH_CARE_MAP:
697 fingerprint = build_info.GetPartitionFingerprint(partition)
698 if fingerprint:
699 d["avb_{}_salt".format(partition)] = sha256(fingerprint).hexdigest()
Tao Bao12d87fc2018-01-31 12:18:52 -0800700
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700701 return d
702
Tao Baod1de6f32017-03-01 16:38:48 -0800703
Tao Baobcd1d162017-08-26 13:10:26 -0700704def LoadBuildProp(read_helper, prop_file):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700705 try:
Tao Baobcd1d162017-08-26 13:10:26 -0700706 data = read_helper(prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700707 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700708 logger.warning("Failed to read %s", prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700709 data = ""
Michael Runge6e836112014-04-15 17:40:21 -0700710 return LoadDictionaryFromLines(data.split("\n"))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700711
Tao Baod1de6f32017-03-01 16:38:48 -0800712
Daniel Norman4cc9df62019-07-18 10:11:07 -0700713def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900714 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700715 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900716
Daniel Norman4cc9df62019-07-18 10:11:07 -0700717
718def LoadDictionaryFromFile(file_path):
719 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900720 return LoadDictionaryFromLines(lines)
721
722
Michael Runge6e836112014-04-15 17:40:21 -0700723def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700724 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700725 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700726 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700727 if not line or line.startswith("#"):
728 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700729 if "=" in line:
730 name, value = line.split("=", 1)
731 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700732 return d
733
Tao Baod1de6f32017-03-01 16:38:48 -0800734
Tianjie Xucfa86222016-03-07 16:31:19 -0800735def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
736 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700737 class Partition(object):
Tao Baod1de6f32017-03-01 16:38:48 -0800738 def __init__(self, mount_point, fs_type, device, length, context):
Dan Albert8b72aef2015-03-23 19:13:21 -0700739 self.mount_point = mount_point
740 self.fs_type = fs_type
741 self.device = device
742 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700743 self.context = context
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700744
745 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800746 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700747 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700748 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -0700749 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700750
Tao Baod1de6f32017-03-01 16:38:48 -0800751 assert fstab_version == 2
752
753 d = {}
754 for line in data.split("\n"):
755 line = line.strip()
756 if not line or line.startswith("#"):
757 continue
758
759 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
760 pieces = line.split()
761 if len(pieces) != 5:
762 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
763
764 # Ignore entries that are managed by vold.
765 options = pieces[4]
766 if "voldmanaged=" in options:
767 continue
768
769 # It's a good line, parse it.
770 length = 0
771 options = options.split(",")
772 for i in options:
773 if i.startswith("length="):
774 length = int(i[7:])
Doug Zongker086cbb02011-02-17 15:54:20 -0800775 else:
Tao Baod1de6f32017-03-01 16:38:48 -0800776 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -0700777 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800778
Tao Baod1de6f32017-03-01 16:38:48 -0800779 mount_flags = pieces[3]
780 # Honor the SELinux context if present.
781 context = None
782 for i in mount_flags.split(","):
783 if i.startswith("context="):
784 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -0800785
Tao Baod1de6f32017-03-01 16:38:48 -0800786 mount_point = pieces[1]
787 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
788 device=pieces[0], length=length, context=context)
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800789
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700790 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700791 # system. Other areas assume system is always at "/system" so point /system
792 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700793 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -0800794 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700795 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700796 return d
797
798
Tao Bao765668f2019-10-04 22:03:00 -0700799def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
800 """Finds the path to recovery fstab and loads its contents."""
801 # recovery fstab is only meaningful when installing an update via recovery
802 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
803 if info_dict.get('ab_update') == 'true':
804 return None
805
806 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
807 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
808 # cases, since it may load the info_dict from an old build (e.g. when
809 # generating incremental OTAs from that build).
810 system_root_image = info_dict.get('system_root_image') == 'true'
811 if info_dict.get('no_recovery') != 'true':
812 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
813 if isinstance(input_file, zipfile.ZipFile):
814 if recovery_fstab_path not in input_file.namelist():
815 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
816 else:
817 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
818 if not os.path.exists(path):
819 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
820 return LoadRecoveryFSTab(
821 read_helper, info_dict['fstab_version'], recovery_fstab_path,
822 system_root_image)
823
824 if info_dict.get('recovery_as_boot') == 'true':
825 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
826 if isinstance(input_file, zipfile.ZipFile):
827 if recovery_fstab_path not in input_file.namelist():
828 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
829 else:
830 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
831 if not os.path.exists(path):
832 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
833 return LoadRecoveryFSTab(
834 read_helper, info_dict['fstab_version'], recovery_fstab_path,
835 system_root_image)
836
837 return None
838
839
Doug Zongker37974732010-09-16 17:44:38 -0700840def DumpInfoDict(d):
841 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -0700842 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700843
Dan Albert8b72aef2015-03-23 19:13:21 -0700844
Daniel Norman55417142019-11-25 16:04:36 -0800845def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700846 """Merges dynamic partition info variables.
847
848 Args:
849 framework_dict: The dictionary of dynamic partition info variables from the
850 partial framework target files.
851 vendor_dict: The dictionary of dynamic partition info variables from the
852 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700853
854 Returns:
855 The merged dynamic partition info dictionary.
856 """
857 merged_dict = {}
858 # Partition groups and group sizes are defined by the vendor dict because
859 # these values may vary for each board that uses a shared system image.
860 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Norman55417142019-11-25 16:04:36 -0800861 framework_dynamic_partition_list = framework_dict.get(
862 "dynamic_partition_list", "")
863 vendor_dynamic_partition_list = vendor_dict.get("dynamic_partition_list", "")
864 merged_dict["dynamic_partition_list"] = ("%s %s" % (
865 framework_dynamic_partition_list, vendor_dynamic_partition_list)).strip()
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700866 for partition_group in merged_dict["super_partition_groups"].split(" "):
867 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -0800868 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700869 if key not in vendor_dict:
870 raise ValueError("Vendor dict does not contain required key %s." % key)
871 merged_dict[key] = vendor_dict[key]
872
873 # Set the partition group's partition list using a concatenation of the
874 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -0800875 key = "super_%s_partition_list" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700876 merged_dict[key] = (
877 "%s %s" %
878 (framework_dict.get(key, ""), vendor_dict.get(key, ""))).strip()
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +0530879
880 # Pick virtual ab related flags from vendor dict, if defined.
881 if "virtual_ab" in vendor_dict.keys():
882 merged_dict["virtual_ab"] = vendor_dict["virtual_ab"]
883 if "virtual_ab_retrofit" in vendor_dict.keys():
884 merged_dict["virtual_ab_retrofit"] = vendor_dict["virtual_ab_retrofit"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700885 return merged_dict
886
887
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800888def AppendAVBSigningArgs(cmd, partition):
889 """Append signing arguments for avbtool."""
890 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
891 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -0700892 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
893 new_key_path = os.path.join(OPTIONS.search_path, key_path)
894 if os.path.exists(new_key_path):
895 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800896 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
897 if key_path and algorithm:
898 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -0700899 avb_salt = OPTIONS.info_dict.get("avb_salt")
900 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -0700901 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -0700902 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800903
904
Tao Bao765668f2019-10-04 22:03:00 -0700905def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -0700906 """Returns the VBMeta arguments for partition.
907
908 It sets up the VBMeta argument by including the partition descriptor from the
909 given 'image', or by configuring the partition as a chained partition.
910
911 Args:
912 partition: The name of the partition (e.g. "system").
913 image: The path to the partition image.
914 info_dict: A dict returned by common.LoadInfoDict(). Will use
915 OPTIONS.info_dict if None has been given.
916
917 Returns:
918 A list of VBMeta arguments.
919 """
920 if info_dict is None:
921 info_dict = OPTIONS.info_dict
922
923 # Check if chain partition is used.
924 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +0800925 if not key_path:
926 return ["--include_descriptors_from_image", image]
927
928 # For a non-A/B device, we don't chain /recovery nor include its descriptor
929 # into vbmeta.img. The recovery image will be configured on an independent
930 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
931 # See details at
932 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -0700933 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +0800934 return []
935
936 # Otherwise chain the partition into vbmeta.
937 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
938 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -0700939
940
Tao Bao02a08592018-07-22 12:40:45 -0700941def GetAvbChainedPartitionArg(partition, info_dict, key=None):
942 """Constructs and returns the arg to build or verify a chained partition.
943
944 Args:
945 partition: The partition name.
946 info_dict: The info dict to look up the key info and rollback index
947 location.
948 key: The key to be used for building or verifying the partition. Defaults to
949 the key listed in info_dict.
950
951 Returns:
952 A string of form "partition:rollback_index_location:key" that can be used to
953 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -0700954 """
955 if key is None:
956 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -0700957 if key and not os.path.exists(key) and OPTIONS.search_path:
958 new_key_path = os.path.join(OPTIONS.search_path, key)
959 if os.path.exists(new_key_path):
960 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -0700961 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -0700962 rollback_index_location = info_dict[
963 "avb_" + partition + "_rollback_index_location"]
964 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
965
966
Tianjie20dd8f22020-04-19 15:51:16 -0700967def ConstructAftlMakeImageCommands(output_image):
968 """Constructs the command to append the aftl image to vbmeta."""
Tianjie Xueaed60c2020-03-12 00:33:28 -0700969
970 # Ensure the other AFTL parameters are set as well.
Tianjie0f307452020-04-01 12:20:21 -0700971 assert OPTIONS.aftl_tool_path is not None, 'No aftl tool provided.'
Tianjie Xueaed60c2020-03-12 00:33:28 -0700972 assert OPTIONS.aftl_key_path is not None, 'No AFTL key provided.'
973 assert OPTIONS.aftl_manufacturer_key_path is not None, \
974 'No AFTL manufacturer key provided.'
975
976 vbmeta_image = MakeTempFile()
977 os.rename(output_image, vbmeta_image)
978 build_info = BuildInfo(OPTIONS.info_dict)
979 version_incremental = build_info.GetBuildProp("ro.build.version.incremental")
Tianjie0f307452020-04-01 12:20:21 -0700980 aftltool = OPTIONS.aftl_tool_path
Tianjie20dd8f22020-04-19 15:51:16 -0700981 server_argument_list = [OPTIONS.aftl_server, OPTIONS.aftl_key_path]
Tianjie0f307452020-04-01 12:20:21 -0700982 aftl_cmd = [aftltool, "make_icp_from_vbmeta",
Tianjie Xueaed60c2020-03-12 00:33:28 -0700983 "--vbmeta_image_path", vbmeta_image,
984 "--output", output_image,
985 "--version_incremental", version_incremental,
Tianjie20dd8f22020-04-19 15:51:16 -0700986 "--transparency_log_servers", ','.join(server_argument_list),
Tianjie Xueaed60c2020-03-12 00:33:28 -0700987 "--manufacturer_key", OPTIONS.aftl_manufacturer_key_path,
988 "--algorithm", "SHA256_RSA4096",
989 "--padding", "4096"]
990 if OPTIONS.aftl_signer_helper:
991 aftl_cmd.extend(shlex.split(OPTIONS.aftl_signer_helper))
Tianjie20dd8f22020-04-19 15:51:16 -0700992 return aftl_cmd
993
994
995def AddAftlInclusionProof(output_image):
996 """Appends the aftl inclusion proof to the vbmeta image."""
997
998 aftl_cmd = ConstructAftlMakeImageCommands(output_image)
Tianjie Xueaed60c2020-03-12 00:33:28 -0700999 RunAndCheckOutput(aftl_cmd)
1000
1001 verify_cmd = ['aftltool', 'verify_image_icp', '--vbmeta_image_path',
1002 output_image, '--transparency_log_pub_keys',
1003 OPTIONS.aftl_key_path]
1004 RunAndCheckOutput(verify_cmd)
1005
1006
Daniel Norman276f0622019-07-26 14:13:51 -07001007def BuildVBMeta(image_path, partitions, name, needed_partitions):
1008 """Creates a VBMeta image.
1009
1010 It generates the requested VBMeta image. The requested image could be for
1011 top-level or chained VBMeta image, which is determined based on the name.
1012
1013 Args:
1014 image_path: The output path for the new VBMeta image.
1015 partitions: A dict that's keyed by partition names with image paths as
1016 values. Only valid partition names are accepted, as listed in
1017 common.AVB_PARTITIONS.
1018 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1019 needed_partitions: Partitions whose descriptors should be included into the
1020 generated VBMeta image.
1021
1022 Raises:
1023 AssertionError: On invalid input args.
1024 """
1025 avbtool = OPTIONS.info_dict["avb_avbtool"]
1026 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1027 AppendAVBSigningArgs(cmd, name)
1028
1029 for partition, path in partitions.items():
1030 if partition not in needed_partitions:
1031 continue
1032 assert (partition in AVB_PARTITIONS or
1033 partition in AVB_VBMETA_PARTITIONS), \
1034 'Unknown partition: {}'.format(partition)
1035 assert os.path.exists(path), \
1036 'Failed to find {} for {}'.format(path, partition)
1037 cmd.extend(GetAvbPartitionArg(partition, path))
1038
1039 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1040 if args and args.strip():
1041 split_args = shlex.split(args)
1042 for index, arg in enumerate(split_args[:-1]):
1043 # Sanity check that the image file exists. Some images might be defined
1044 # as a path relative to source tree, which may not be available at the
1045 # same location when running this script (we have the input target_files
1046 # zip only). For such cases, we additionally scan other locations (e.g.
1047 # IMAGES/, RADIO/, etc) before bailing out.
1048 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001049 chained_image = split_args[index + 1]
1050 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001051 continue
1052 found = False
1053 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1054 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001055 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001056 if os.path.exists(alt_path):
1057 split_args[index + 1] = alt_path
1058 found = True
1059 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001060 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001061 cmd.extend(split_args)
1062
1063 RunAndCheckOutput(cmd)
1064
Tianjie Xueaed60c2020-03-12 00:33:28 -07001065 # Generate the AFTL inclusion proof.
Dan Austin52903642019-12-12 15:44:00 -08001066 if OPTIONS.aftl_server is not None:
Tianjie Xueaed60c2020-03-12 00:33:28 -07001067 AddAftlInclusionProof(image_path)
1068
Daniel Norman276f0622019-07-26 14:13:51 -07001069
Steve Mucklee1b10862019-07-10 10:49:37 -07001070def _MakeRamdisk(sourcedir, fs_config_file=None):
1071 ramdisk_img = tempfile.NamedTemporaryFile()
1072
1073 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1074 cmd = ["mkbootfs", "-f", fs_config_file,
1075 os.path.join(sourcedir, "RAMDISK")]
1076 else:
1077 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1078 p1 = Run(cmd, stdout=subprocess.PIPE)
1079 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
1080
1081 p2.wait()
1082 p1.wait()
1083 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
1084 assert p2.returncode == 0, "minigzip of %s ramdisk failed" % (sourcedir,)
1085
1086 return ramdisk_img
1087
1088
Steve Muckle9793cf62020-04-08 18:27:00 -07001089def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001090 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001091 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001092
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001093 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001094 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1095 we are building a two-step special image (i.e. building a recovery image to
1096 be loaded into /boot in two-step OTAs).
1097
1098 Return the image data, or None if sourcedir does not appear to contains files
1099 for building the requested image.
1100 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001101
Steve Muckle9793cf62020-04-08 18:27:00 -07001102 # "boot" or "recovery", without extension.
1103 partition_name = os.path.basename(sourcedir).lower()
1104
1105 if partition_name == "recovery":
1106 kernel = "kernel"
1107 else:
1108 kernel = image_name.replace("boot", "kernel")
1109 kernel = kernel.replace(".img","")
1110 if not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001111 return None
1112
1113 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001114 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001115
Doug Zongkerd5131602012-08-02 14:46:42 -07001116 if info_dict is None:
1117 info_dict = OPTIONS.info_dict
1118
Doug Zongkereef39442009-04-02 12:14:19 -07001119 img = tempfile.NamedTemporaryFile()
1120
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001121 if has_ramdisk:
Steve Mucklee1b10862019-07-10 10:49:37 -07001122 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file)
Doug Zongkereef39442009-04-02 12:14:19 -07001123
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001124 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1125 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1126
Steve Muckle9793cf62020-04-08 18:27:00 -07001127 cmd = [mkbootimg, "--kernel", os.path.join(sourcedir, kernel)]
Doug Zongker38a649f2009-06-17 09:07:09 -07001128
Benoit Fradina45a8682014-07-14 21:00:43 +02001129 fn = os.path.join(sourcedir, "second")
1130 if os.access(fn, os.F_OK):
1131 cmd.append("--second")
1132 cmd.append(fn)
1133
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001134 fn = os.path.join(sourcedir, "dtb")
1135 if os.access(fn, os.F_OK):
1136 cmd.append("--dtb")
1137 cmd.append(fn)
1138
Doug Zongker171f1cd2009-06-15 22:36:37 -07001139 fn = os.path.join(sourcedir, "cmdline")
1140 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001141 cmd.append("--cmdline")
1142 cmd.append(open(fn).read().rstrip("\n"))
1143
1144 fn = os.path.join(sourcedir, "base")
1145 if os.access(fn, os.F_OK):
1146 cmd.append("--base")
1147 cmd.append(open(fn).read().rstrip("\n"))
1148
Ying Wang4de6b5b2010-08-25 14:29:34 -07001149 fn = os.path.join(sourcedir, "pagesize")
1150 if os.access(fn, os.F_OK):
1151 cmd.append("--pagesize")
1152 cmd.append(open(fn).read().rstrip("\n"))
1153
Steve Mucklef84668e2020-03-16 19:13:46 -07001154 if partition_name == "recovery":
1155 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301156 if not args:
1157 # Fall back to "mkbootimg_args" for recovery image
1158 # in case "recovery_mkbootimg_args" is not set.
1159 args = info_dict.get("mkbootimg_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001160 else:
1161 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001162 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001163 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001164
Tao Bao76def242017-11-21 09:25:31 -08001165 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +00001166 if args and args.strip():
1167 cmd.extend(shlex.split(args))
1168
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001169 if has_ramdisk:
1170 cmd.extend(["--ramdisk", ramdisk_img.name])
1171
Tao Baod95e9fd2015-03-29 23:07:41 -07001172 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001173 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001174 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001175 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001176 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001177 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001178
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001179 if partition_name == "recovery":
1180 if info_dict.get("include_recovery_dtbo") == "true":
1181 fn = os.path.join(sourcedir, "recovery_dtbo")
1182 cmd.extend(["--recovery_dtbo", fn])
1183 if info_dict.get("include_recovery_acpio") == "true":
1184 fn = os.path.join(sourcedir, "recovery_acpio")
1185 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001186
Tao Bao986ee862018-10-04 15:46:16 -07001187 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001188
Tao Bao76def242017-11-21 09:25:31 -08001189 if (info_dict.get("boot_signer") == "true" and
1190 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001191 # Hard-code the path as "/boot" for two-step special recovery image (which
1192 # will be loaded into /boot during the two-step OTA).
1193 if two_step_image:
1194 path = "/boot"
1195 else:
Tao Baobf70c312017-07-11 17:27:55 -07001196 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001197 cmd = [OPTIONS.boot_signer_path]
1198 cmd.extend(OPTIONS.boot_signer_args)
1199 cmd.extend([path, img.name,
1200 info_dict["verity_key"] + ".pk8",
1201 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001202 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001203
Tao Baod95e9fd2015-03-29 23:07:41 -07001204 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001205 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001206 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001207 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001208 # We have switched from the prebuilt futility binary to using the tool
1209 # (futility-host) built from the source. Override the setting in the old
1210 # TF.zip.
1211 futility = info_dict["futility"]
1212 if futility.startswith("prebuilts/"):
1213 futility = "futility-host"
1214 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001215 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001216 info_dict["vboot_key"] + ".vbprivk",
1217 info_dict["vboot_subkey"] + ".vbprivk",
1218 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001219 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001220 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001221
Tao Baof3282b42015-04-01 11:21:55 -07001222 # Clean up the temp files.
1223 img_unsigned.close()
1224 img_keyblock.close()
1225
David Zeuthen8fecb282017-12-01 16:24:01 -05001226 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001227 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001228 avbtool = info_dict["avb_avbtool"]
Steve Muckle11c4bcf2020-05-07 17:32:10 -07001229 if partition_name == "recovery":
1230 part_size = info_dict["recovery_size"]
1231 else:
1232 part_size = info_dict[image_name.replace(".img","_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001233 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001234 "--partition_size", str(part_size), "--partition_name",
1235 partition_name]
1236 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001237 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001238 if args and args.strip():
1239 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001240 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001241
1242 img.seek(os.SEEK_SET, 0)
1243 data = img.read()
1244
1245 if has_ramdisk:
1246 ramdisk_img.close()
1247 img.close()
1248
1249 return data
1250
1251
Doug Zongkerd5131602012-08-02 14:46:42 -07001252def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001253 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001254 """Return a File object with the desired bootable image.
1255
1256 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1257 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1258 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001259
Doug Zongker55d93282011-01-25 17:03:34 -08001260 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1261 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001262 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001263 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001264
1265 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1266 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001267 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001268 return File.FromLocalFile(name, prebuilt_path)
1269
Tao Bao32fcdab2018-10-12 10:30:39 -07001270 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001271
1272 if info_dict is None:
1273 info_dict = OPTIONS.info_dict
1274
1275 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -08001276 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
1277 # for recovery.
1278 has_ramdisk = (info_dict.get("system_root_image") != "true" or
1279 prebuilt_name != "boot.img" or
1280 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001281
Doug Zongker6f1d0312014-08-22 08:07:12 -07001282 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001283 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001284 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001285 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001286 if data:
1287 return File(name, data)
1288 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001289
Doug Zongkereef39442009-04-02 12:14:19 -07001290
Steve Mucklee1b10862019-07-10 10:49:37 -07001291def _BuildVendorBootImage(sourcedir, info_dict=None):
1292 """Build a vendor boot image from the specified sourcedir.
1293
1294 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1295 turn them into a vendor boot image.
1296
1297 Return the image data, or None if sourcedir does not appear to contains files
1298 for building the requested image.
1299 """
1300
1301 if info_dict is None:
1302 info_dict = OPTIONS.info_dict
1303
1304 img = tempfile.NamedTemporaryFile()
1305
1306 ramdisk_img = _MakeRamdisk(sourcedir)
1307
1308 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1309 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1310
1311 cmd = [mkbootimg]
1312
1313 fn = os.path.join(sourcedir, "dtb")
1314 if os.access(fn, os.F_OK):
1315 cmd.append("--dtb")
1316 cmd.append(fn)
1317
1318 fn = os.path.join(sourcedir, "vendor_cmdline")
1319 if os.access(fn, os.F_OK):
1320 cmd.append("--vendor_cmdline")
1321 cmd.append(open(fn).read().rstrip("\n"))
1322
1323 fn = os.path.join(sourcedir, "base")
1324 if os.access(fn, os.F_OK):
1325 cmd.append("--base")
1326 cmd.append(open(fn).read().rstrip("\n"))
1327
1328 fn = os.path.join(sourcedir, "pagesize")
1329 if os.access(fn, os.F_OK):
1330 cmd.append("--pagesize")
1331 cmd.append(open(fn).read().rstrip("\n"))
1332
1333 args = info_dict.get("mkbootimg_args")
1334 if args and args.strip():
1335 cmd.extend(shlex.split(args))
1336
1337 args = info_dict.get("mkbootimg_version_args")
1338 if args and args.strip():
1339 cmd.extend(shlex.split(args))
1340
1341 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1342 cmd.extend(["--vendor_boot", img.name])
1343
1344 RunAndCheckOutput(cmd)
1345
1346 # AVB: if enabled, calculate and add hash.
1347 if info_dict.get("avb_enable") == "true":
1348 avbtool = info_dict["avb_avbtool"]
1349 part_size = info_dict["vendor_boot_size"]
1350 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001351 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001352 AppendAVBSigningArgs(cmd, "vendor_boot")
1353 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1354 if args and args.strip():
1355 cmd.extend(shlex.split(args))
1356 RunAndCheckOutput(cmd)
1357
1358 img.seek(os.SEEK_SET, 0)
1359 data = img.read()
1360
1361 ramdisk_img.close()
1362 img.close()
1363
1364 return data
1365
1366
1367def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1368 info_dict=None):
1369 """Return a File object with the desired vendor boot image.
1370
1371 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1372 the source files in 'unpack_dir'/'tree_subdir'."""
1373
1374 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1375 if os.path.exists(prebuilt_path):
1376 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1377 return File.FromLocalFile(name, prebuilt_path)
1378
1379 logger.info("building image from target_files %s...", tree_subdir)
1380
1381 if info_dict is None:
1382 info_dict = OPTIONS.info_dict
1383
1384 data = _BuildVendorBootImage(os.path.join(unpack_dir, tree_subdir), info_dict)
1385 if data:
1386 return File(name, data)
1387 return None
1388
1389
Narayan Kamatha07bf042017-08-14 14:49:21 +01001390def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001391 """Gunzips the given gzip compressed file to a given output file."""
1392 with gzip.open(in_filename, "rb") as in_file, \
1393 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001394 shutil.copyfileobj(in_file, out_file)
1395
1396
Tao Bao0ff15de2019-03-20 11:26:06 -07001397def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001398 """Unzips the archive to the given directory.
1399
1400 Args:
1401 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001402 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001403 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1404 archvie. Non-matching patterns will be filtered out. If there's no match
1405 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001406 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001407 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001408 if patterns is not None:
1409 # Filter out non-matching patterns. unzip will complain otherwise.
1410 with zipfile.ZipFile(filename) as input_zip:
1411 names = input_zip.namelist()
1412 filtered = [
1413 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1414
1415 # There isn't any matching files. Don't unzip anything.
1416 if not filtered:
1417 return
1418 cmd.extend(filtered)
1419
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001420 RunAndCheckOutput(cmd)
1421
1422
Doug Zongker75f17362009-12-08 13:46:44 -08001423def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001424 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001425
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001426 Args:
1427 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1428 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1429
1430 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1431 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001432
Tao Bao1c830bf2017-12-25 10:43:47 -08001433 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001434 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001435 """
Doug Zongkereef39442009-04-02 12:14:19 -07001436
Tao Bao1c830bf2017-12-25 10:43:47 -08001437 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001438 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1439 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001440 UnzipToDir(m.group(1), tmp, pattern)
1441 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001442 filename = m.group(1)
1443 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001444 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001445
Tao Baodba59ee2018-01-09 13:21:02 -08001446 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001447
1448
Yifan Hong8a66a712019-04-04 15:37:57 -07001449def GetUserImage(which, tmpdir, input_zip,
1450 info_dict=None,
1451 allow_shared_blocks=None,
1452 hashtree_info_generator=None,
1453 reset_file_map=False):
1454 """Returns an Image object suitable for passing to BlockImageDiff.
1455
1456 This function loads the specified image from the given path. If the specified
1457 image is sparse, it also performs additional processing for OTA purpose. For
1458 example, it always adds block 0 to clobbered blocks list. It also detects
1459 files that cannot be reconstructed from the block list, for whom we should
1460 avoid applying imgdiff.
1461
1462 Args:
1463 which: The partition name.
1464 tmpdir: The directory that contains the prebuilt image and block map file.
1465 input_zip: The target-files ZIP archive.
1466 info_dict: The dict to be looked up for relevant info.
1467 allow_shared_blocks: If image is sparse, whether having shared blocks is
1468 allowed. If none, it is looked up from info_dict.
1469 hashtree_info_generator: If present and image is sparse, generates the
1470 hashtree_info for this sparse image.
1471 reset_file_map: If true and image is sparse, reset file map before returning
1472 the image.
1473 Returns:
1474 A Image object. If it is a sparse image and reset_file_map is False, the
1475 image will have file_map info loaded.
1476 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001477 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07001478 info_dict = LoadInfoDict(input_zip)
1479
1480 is_sparse = info_dict.get("extfs_sparse_flag")
1481
1482 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
1483 # shared blocks (i.e. some blocks will show up in multiple files' block
1484 # list). We can only allocate such shared blocks to the first "owner", and
1485 # disable imgdiff for all later occurrences.
1486 if allow_shared_blocks is None:
1487 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
1488
1489 if is_sparse:
1490 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1491 hashtree_info_generator)
1492 if reset_file_map:
1493 img.ResetFileMap()
1494 return img
1495 else:
1496 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
1497
1498
1499def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
1500 """Returns a Image object suitable for passing to BlockImageDiff.
1501
1502 This function loads the specified non-sparse image from the given path.
1503
1504 Args:
1505 which: The partition name.
1506 tmpdir: The directory that contains the prebuilt image and block map file.
1507 Returns:
1508 A Image object.
1509 """
1510 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1511 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1512
1513 # The image and map files must have been created prior to calling
1514 # ota_from_target_files.py (since LMP).
1515 assert os.path.exists(path) and os.path.exists(mappath)
1516
Tianjie Xu41976c72019-07-03 13:57:01 -07001517 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
1518
Yifan Hong8a66a712019-04-04 15:37:57 -07001519
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001520def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1521 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08001522 """Returns a SparseImage object suitable for passing to BlockImageDiff.
1523
1524 This function loads the specified sparse image from the given path, and
1525 performs additional processing for OTA purpose. For example, it always adds
1526 block 0 to clobbered blocks list. It also detects files that cannot be
1527 reconstructed from the block list, for whom we should avoid applying imgdiff.
1528
1529 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07001530 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08001531 tmpdir: The directory that contains the prebuilt image and block map file.
1532 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08001533 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001534 hashtree_info_generator: If present, generates the hashtree_info for this
1535 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08001536 Returns:
1537 A SparseImage object, with file_map info loaded.
1538 """
Tao Baoc765cca2018-01-31 17:32:40 -08001539 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1540 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1541
1542 # The image and map files must have been created prior to calling
1543 # ota_from_target_files.py (since LMP).
1544 assert os.path.exists(path) and os.path.exists(mappath)
1545
1546 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
1547 # it to clobbered_blocks so that it will be written to the target
1548 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
1549 clobbered_blocks = "0"
1550
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001551 image = sparse_img.SparseImage(
1552 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
1553 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08001554
1555 # block.map may contain less blocks, because mke2fs may skip allocating blocks
1556 # if they contain all zeros. We can't reconstruct such a file from its block
1557 # list. Tag such entries accordingly. (Bug: 65213616)
1558 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08001559 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07001560 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08001561 continue
1562
Tom Cherryd14b8952018-08-09 14:26:00 -07001563 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
1564 # filename listed in system.map may contain an additional leading slash
1565 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
1566 # results.
Tao Baoda30cfa2017-12-01 16:19:46 -08001567 arcname = entry.replace(which, which.upper(), 1).lstrip('/')
Tao Baod3554e62018-07-10 15:31:22 -07001568
Tom Cherryd14b8952018-08-09 14:26:00 -07001569 # Special handling another case, where files not under /system
1570 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
Tao Baod3554e62018-07-10 15:31:22 -07001571 if which == 'system' and not arcname.startswith('SYSTEM'):
1572 arcname = 'ROOT/' + arcname
1573
1574 assert arcname in input_zip.namelist(), \
1575 "Failed to find the ZIP entry for {}".format(entry)
1576
Tao Baoc765cca2018-01-31 17:32:40 -08001577 info = input_zip.getinfo(arcname)
1578 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08001579
1580 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08001581 # image, check the original block list to determine its completeness. Note
1582 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08001583 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08001584 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08001585
Tao Baoc765cca2018-01-31 17:32:40 -08001586 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
1587 ranges.extra['incomplete'] = True
1588
1589 return image
1590
1591
Doug Zongkereef39442009-04-02 12:14:19 -07001592def GetKeyPasswords(keylist):
1593 """Given a list of keys, prompt the user to enter passwords for
1594 those which require them. Return a {key: password} dict. password
1595 will be None if the key has no password."""
1596
Doug Zongker8ce7c252009-05-22 13:34:54 -07001597 no_passwords = []
1598 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07001599 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07001600 devnull = open("/dev/null", "w+b")
1601 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001602 # We don't need a password for things that aren't really keys.
1603 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001604 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07001605 continue
1606
T.R. Fullhart37e10522013-03-18 10:31:26 -07001607 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07001608 "-inform", "DER", "-nocrypt"],
1609 stdin=devnull.fileno(),
1610 stdout=devnull.fileno(),
1611 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07001612 p.communicate()
1613 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001614 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07001615 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001616 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001617 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
1618 "-inform", "DER", "-passin", "pass:"],
1619 stdin=devnull.fileno(),
1620 stdout=devnull.fileno(),
1621 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07001622 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07001623 if p.returncode == 0:
1624 # Encrypted key with empty string as password.
1625 key_passwords[k] = ''
1626 elif stderr.startswith('Error decrypting key'):
1627 # Definitely encrypted key.
1628 # It would have said "Error reading key" if it didn't parse correctly.
1629 need_passwords.append(k)
1630 else:
1631 # Potentially, a type of key that openssl doesn't understand.
1632 # We'll let the routines in signapk.jar handle it.
1633 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001634 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07001635
T.R. Fullhart37e10522013-03-18 10:31:26 -07001636 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08001637 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07001638 return key_passwords
1639
1640
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001641def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07001642 """Gets the minSdkVersion declared in the APK.
1643
changho.shin0f125362019-07-08 10:59:00 +09001644 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07001645 This can be both a decimal number (API Level) or a codename.
1646
1647 Args:
1648 apk_name: The APK filename.
1649
1650 Returns:
1651 The parsed SDK version string.
1652
1653 Raises:
1654 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001655 """
Tao Baof47bf0f2018-03-21 23:28:51 -07001656 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09001657 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07001658 stderr=subprocess.PIPE)
1659 stdoutdata, stderrdata = proc.communicate()
1660 if proc.returncode != 0:
1661 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09001662 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07001663 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001664
Tao Baof47bf0f2018-03-21 23:28:51 -07001665 for line in stdoutdata.split("\n"):
1666 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001667 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
1668 if m:
1669 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09001670 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001671
1672
1673def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07001674 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001675
Tao Baof47bf0f2018-03-21 23:28:51 -07001676 If minSdkVersion is set to a codename, it is translated to a number using the
1677 provided map.
1678
1679 Args:
1680 apk_name: The APK filename.
1681
1682 Returns:
1683 The parsed SDK version number.
1684
1685 Raises:
1686 ExternalError: On failing to get the min SDK version number.
1687 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001688 version = GetMinSdkVersion(apk_name)
1689 try:
1690 return int(version)
1691 except ValueError:
1692 # Not a decimal number. Codename?
1693 if version in codename_to_api_level_map:
1694 return codename_to_api_level_map[version]
1695 else:
Tao Baof47bf0f2018-03-21 23:28:51 -07001696 raise ExternalError(
1697 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
1698 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001699
1700
1701def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07001702 codename_to_api_level_map=None, whole_file=False,
1703 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07001704 """Sign the input_name zip/jar/apk, producing output_name. Use the
1705 given key and password (the latter may be None if the key does not
1706 have a password.
1707
Doug Zongker951495f2009-08-14 12:44:19 -07001708 If whole_file is true, use the "-w" option to SignApk to embed a
1709 signature that covers the whole file in the archive comment of the
1710 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001711
1712 min_api_level is the API Level (int) of the oldest platform this file may end
1713 up on. If not specified for an APK, the API Level is obtained by interpreting
1714 the minSdkVersion attribute of the APK's AndroidManifest.xml.
1715
1716 codename_to_api_level_map is needed to translate the codename which may be
1717 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07001718
1719 Caller may optionally specify extra args to be passed to SignApk, which
1720 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07001721 """
Tao Bao76def242017-11-21 09:25:31 -08001722 if codename_to_api_level_map is None:
1723 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07001724 if extra_signapk_args is None:
1725 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07001726
Alex Klyubin9667b182015-12-10 13:38:50 -08001727 java_library_path = os.path.join(
1728 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
1729
Tao Baoe95540e2016-11-08 12:08:53 -08001730 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
1731 ["-Djava.library.path=" + java_library_path,
1732 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07001733 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07001734 if whole_file:
1735 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001736
1737 min_sdk_version = min_api_level
1738 if min_sdk_version is None:
1739 if not whole_file:
1740 min_sdk_version = GetMinSdkVersionInt(
1741 input_name, codename_to_api_level_map)
1742 if min_sdk_version is not None:
1743 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
1744
T.R. Fullhart37e10522013-03-18 10:31:26 -07001745 cmd.extend([key + OPTIONS.public_key_suffix,
1746 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08001747 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07001748
Tao Bao73dd4f42018-10-04 16:25:33 -07001749 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07001750 if password is not None:
1751 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07001752 stdoutdata, _ = proc.communicate(password)
1753 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07001754 raise ExternalError(
1755 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07001756 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07001757
Doug Zongkereef39442009-04-02 12:14:19 -07001758
Doug Zongker37974732010-09-16 17:44:38 -07001759def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08001760 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07001761
Tao Bao9dd909e2017-11-14 11:27:32 -08001762 For non-AVB images, raise exception if the data is too big. Print a warning
1763 if the data is nearing the maximum size.
1764
1765 For AVB images, the actual image size should be identical to the limit.
1766
1767 Args:
1768 data: A string that contains all the data for the partition.
1769 target: The partition name. The ".img" suffix is optional.
1770 info_dict: The dict to be looked up for relevant info.
1771 """
Dan Albert8b72aef2015-03-23 19:13:21 -07001772 if target.endswith(".img"):
1773 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001774 mount_point = "/" + target
1775
Ying Wangf8824af2014-06-03 14:07:27 -07001776 fs_type = None
1777 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001778 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07001779 if mount_point == "/userdata":
1780 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001781 p = info_dict["fstab"][mount_point]
1782 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08001783 device = p.device
1784 if "/" in device:
1785 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08001786 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07001787 if not fs_type or not limit:
1788 return
Doug Zongkereef39442009-04-02 12:14:19 -07001789
Andrew Boie0f9aec82012-02-14 09:32:52 -08001790 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08001791 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
1792 # path.
1793 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
1794 if size != limit:
1795 raise ExternalError(
1796 "Mismatching image size for %s: expected %d actual %d" % (
1797 target, limit, size))
1798 else:
1799 pct = float(size) * 100.0 / limit
1800 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
1801 if pct >= 99.0:
1802 raise ExternalError(msg)
1803 elif pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07001804 logger.warning("\n WARNING: %s\n", msg)
1805 else:
1806 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07001807
1808
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001809def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08001810 """Parses the APK certs info from a given target-files zip.
1811
1812 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
1813 tuple with the following elements: (1) a dictionary that maps packages to
1814 certs (based on the "certificate" and "private_key" attributes in the file;
1815 (2) a string representing the extension of compressed APKs in the target files
1816 (e.g ".gz", ".bro").
1817
1818 Args:
1819 tf_zip: The input target_files ZipFile (already open).
1820
1821 Returns:
1822 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
1823 the extension string of compressed APKs (e.g. ".gz"), or None if there's
1824 no compressed APKs.
1825 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001826 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01001827 compressed_extension = None
1828
Tao Bao0f990332017-09-08 19:02:54 -07001829 # META/apkcerts.txt contains the info for _all_ the packages known at build
1830 # time. Filter out the ones that are not installed.
1831 installed_files = set()
1832 for name in tf_zip.namelist():
1833 basename = os.path.basename(name)
1834 if basename:
1835 installed_files.add(basename)
1836
Tao Baoda30cfa2017-12-01 16:19:46 -08001837 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001838 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001839 if not line:
1840 continue
Tao Bao818ddf52018-01-05 11:17:34 -08001841 m = re.match(
1842 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07001843 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
1844 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08001845 line)
1846 if not m:
1847 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01001848
Tao Bao818ddf52018-01-05 11:17:34 -08001849 matches = m.groupdict()
1850 cert = matches["CERT"]
1851 privkey = matches["PRIVKEY"]
1852 name = matches["NAME"]
1853 this_compressed_extension = matches["COMPRESSED"]
1854
1855 public_key_suffix_len = len(OPTIONS.public_key_suffix)
1856 private_key_suffix_len = len(OPTIONS.private_key_suffix)
1857 if cert in SPECIAL_CERT_STRINGS and not privkey:
1858 certmap[name] = cert
1859 elif (cert.endswith(OPTIONS.public_key_suffix) and
1860 privkey.endswith(OPTIONS.private_key_suffix) and
1861 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
1862 certmap[name] = cert[:-public_key_suffix_len]
1863 else:
1864 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
1865
1866 if not this_compressed_extension:
1867 continue
1868
1869 # Only count the installed files.
1870 filename = name + '.' + this_compressed_extension
1871 if filename not in installed_files:
1872 continue
1873
1874 # Make sure that all the values in the compression map have the same
1875 # extension. We don't support multiple compression methods in the same
1876 # system image.
1877 if compressed_extension:
1878 if this_compressed_extension != compressed_extension:
1879 raise ValueError(
1880 "Multiple compressed extensions: {} vs {}".format(
1881 compressed_extension, this_compressed_extension))
1882 else:
1883 compressed_extension = this_compressed_extension
1884
1885 return (certmap,
1886 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001887
1888
Doug Zongkereef39442009-04-02 12:14:19 -07001889COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07001890Global options
1891
1892 -p (--path) <dir>
1893 Prepend <dir>/bin to the list of places to search for binaries run by this
1894 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07001895
Doug Zongker05d3dea2009-06-22 11:32:31 -07001896 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07001897 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07001898
Tao Bao30df8b42018-04-23 15:32:53 -07001899 -x (--extra) <key=value>
1900 Add a key/value pair to the 'extras' dict, which device-specific extension
1901 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08001902
Doug Zongkereef39442009-04-02 12:14:19 -07001903 -v (--verbose)
1904 Show command lines being executed.
1905
1906 -h (--help)
1907 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07001908
1909 --logfile <file>
1910 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07001911"""
1912
1913def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08001914 print(docstring.rstrip("\n"))
1915 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07001916
1917
1918def ParseOptions(argv,
1919 docstring,
1920 extra_opts="", extra_long_opts=(),
1921 extra_option_handler=None):
1922 """Parse the options in argv and return any arguments that aren't
1923 flags. docstring is the calling module's docstring, to be displayed
1924 for errors and -h. extra_opts and extra_long_opts are for flags
1925 defined by the caller, which are processed by passing them to
1926 extra_option_handler."""
1927
1928 try:
1929 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08001930 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08001931 ["help", "verbose", "path=", "signapk_path=",
1932 "signapk_shared_library_path=", "extra_signapk_args=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08001933 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07001934 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
1935 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Tianjie0f307452020-04-01 12:20:21 -07001936 "extra=", "logfile=", "aftl_tool_path=", "aftl_server=",
1937 "aftl_key_path=", "aftl_manufacturer_key_path=",
1938 "aftl_signer_helper="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07001939 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07001940 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08001941 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07001942 sys.exit(2)
1943
Doug Zongkereef39442009-04-02 12:14:19 -07001944 for o, a in opts:
1945 if o in ("-h", "--help"):
1946 Usage(docstring)
1947 sys.exit()
1948 elif o in ("-v", "--verbose"):
1949 OPTIONS.verbose = True
1950 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07001951 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001952 elif o in ("--signapk_path",):
1953 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08001954 elif o in ("--signapk_shared_library_path",):
1955 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001956 elif o in ("--extra_signapk_args",):
1957 OPTIONS.extra_signapk_args = shlex.split(a)
1958 elif o in ("--java_path",):
1959 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07001960 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08001961 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08001962 elif o in ("--android_jar_path",):
1963 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001964 elif o in ("--public_key_suffix",):
1965 OPTIONS.public_key_suffix = a
1966 elif o in ("--private_key_suffix",):
1967 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08001968 elif o in ("--boot_signer_path",):
1969 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07001970 elif o in ("--boot_signer_args",):
1971 OPTIONS.boot_signer_args = shlex.split(a)
1972 elif o in ("--verity_signer_path",):
1973 OPTIONS.verity_signer_path = a
1974 elif o in ("--verity_signer_args",):
1975 OPTIONS.verity_signer_args = shlex.split(a)
Tianjie0f307452020-04-01 12:20:21 -07001976 elif o in ("--aftl_tool_path",):
1977 OPTIONS.aftl_tool_path = a
Dan Austin52903642019-12-12 15:44:00 -08001978 elif o in ("--aftl_server",):
1979 OPTIONS.aftl_server = a
1980 elif o in ("--aftl_key_path",):
1981 OPTIONS.aftl_key_path = a
1982 elif o in ("--aftl_manufacturer_key_path",):
1983 OPTIONS.aftl_manufacturer_key_path = a
1984 elif o in ("--aftl_signer_helper",):
1985 OPTIONS.aftl_signer_helper = a
Doug Zongker05d3dea2009-06-22 11:32:31 -07001986 elif o in ("-s", "--device_specific"):
1987 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08001988 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08001989 key, value = a.split("=", 1)
1990 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07001991 elif o in ("--logfile",):
1992 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07001993 else:
1994 if extra_option_handler is None or not extra_option_handler(o, a):
1995 assert False, "unknown option \"%s\"" % (o,)
1996
Doug Zongker85448772014-09-09 14:59:20 -07001997 if OPTIONS.search_path:
1998 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
1999 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002000
2001 return args
2002
2003
Tao Bao4c851b12016-09-19 13:54:38 -07002004def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002005 """Make a temp file and add it to the list of things to be deleted
2006 when Cleanup() is called. Return the filename."""
2007 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2008 os.close(fd)
2009 OPTIONS.tempfiles.append(fn)
2010 return fn
2011
2012
Tao Bao1c830bf2017-12-25 10:43:47 -08002013def MakeTempDir(prefix='tmp', suffix=''):
2014 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2015
2016 Returns:
2017 The absolute pathname of the new directory.
2018 """
2019 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2020 OPTIONS.tempfiles.append(dir_name)
2021 return dir_name
2022
2023
Doug Zongkereef39442009-04-02 12:14:19 -07002024def Cleanup():
2025 for i in OPTIONS.tempfiles:
2026 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002027 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002028 else:
2029 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002030 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002031
2032
2033class PasswordManager(object):
2034 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002035 self.editor = os.getenv("EDITOR")
2036 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002037
2038 def GetPasswords(self, items):
2039 """Get passwords corresponding to each string in 'items',
2040 returning a dict. (The dict may have keys in addition to the
2041 values in 'items'.)
2042
2043 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2044 user edit that file to add more needed passwords. If no editor is
2045 available, or $ANDROID_PW_FILE isn't define, prompts the user
2046 interactively in the ordinary way.
2047 """
2048
2049 current = self.ReadFile()
2050
2051 first = True
2052 while True:
2053 missing = []
2054 for i in items:
2055 if i not in current or not current[i]:
2056 missing.append(i)
2057 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002058 if not missing:
2059 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002060
2061 for i in missing:
2062 current[i] = ""
2063
2064 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002065 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002066 if sys.version_info[0] >= 3:
2067 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002068 answer = raw_input("try to edit again? [y]> ").strip()
2069 if answer and answer[0] not in 'yY':
2070 raise RuntimeError("key passwords unavailable")
2071 first = False
2072
2073 current = self.UpdateAndReadFile(current)
2074
Dan Albert8b72aef2015-03-23 19:13:21 -07002075 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002076 """Prompt the user to enter a value (password) for each key in
2077 'current' whose value is fales. Returns a new dict with all the
2078 values.
2079 """
2080 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002081 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002082 if v:
2083 result[k] = v
2084 else:
2085 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002086 result[k] = getpass.getpass(
2087 "Enter password for %s key> " % k).strip()
2088 if result[k]:
2089 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002090 return result
2091
2092 def UpdateAndReadFile(self, current):
2093 if not self.editor or not self.pwfile:
2094 return self.PromptResult(current)
2095
2096 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002097 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002098 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2099 f.write("# (Additional spaces are harmless.)\n\n")
2100
2101 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002102 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002103 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002104 f.write("[[[ %s ]]] %s\n" % (v, k))
2105 if not v and first_line is None:
2106 # position cursor on first line with no password.
2107 first_line = i + 4
2108 f.close()
2109
Tao Bao986ee862018-10-04 15:46:16 -07002110 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002111
2112 return self.ReadFile()
2113
2114 def ReadFile(self):
2115 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002116 if self.pwfile is None:
2117 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002118 try:
2119 f = open(self.pwfile, "r")
2120 for line in f:
2121 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002122 if not line or line[0] == '#':
2123 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002124 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2125 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002126 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002127 else:
2128 result[m.group(2)] = m.group(1)
2129 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002130 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002131 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002132 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002133 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002134
2135
Dan Albert8e0178d2015-01-27 15:53:15 -08002136def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2137 compress_type=None):
2138 import datetime
2139
2140 # http://b/18015246
2141 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2142 # for files larger than 2GiB. We can work around this by adjusting their
2143 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2144 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2145 # it isn't clear to me exactly what circumstances cause this).
2146 # `zipfile.write()` must be used directly to work around this.
2147 #
2148 # This mess can be avoided if we port to python3.
2149 saved_zip64_limit = zipfile.ZIP64_LIMIT
2150 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2151
2152 if compress_type is None:
2153 compress_type = zip_file.compression
2154 if arcname is None:
2155 arcname = filename
2156
2157 saved_stat = os.stat(filename)
2158
2159 try:
2160 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2161 # file to be zipped and reset it when we're done.
2162 os.chmod(filename, perms)
2163
2164 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002165 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2166 # intentional. zip stores datetimes in local time without a time zone
2167 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2168 # in the zip archive.
2169 local_epoch = datetime.datetime.fromtimestamp(0)
2170 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002171 os.utime(filename, (timestamp, timestamp))
2172
2173 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2174 finally:
2175 os.chmod(filename, saved_stat.st_mode)
2176 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2177 zipfile.ZIP64_LIMIT = saved_zip64_limit
2178
2179
Tao Bao58c1b962015-05-20 09:32:18 -07002180def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002181 compress_type=None):
2182 """Wrap zipfile.writestr() function to work around the zip64 limit.
2183
2184 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2185 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2186 when calling crc32(bytes).
2187
2188 But it still works fine to write a shorter string into a large zip file.
2189 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2190 when we know the string won't be too long.
2191 """
2192
2193 saved_zip64_limit = zipfile.ZIP64_LIMIT
2194 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2195
2196 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2197 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002198 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002199 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002200 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002201 else:
Tao Baof3282b42015-04-01 11:21:55 -07002202 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002203 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2204 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2205 # such a case (since
2206 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2207 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2208 # permission bits. We follow the logic in Python 3 to get consistent
2209 # behavior between using the two versions.
2210 if not zinfo.external_attr:
2211 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002212
2213 # If compress_type is given, it overrides the value in zinfo.
2214 if compress_type is not None:
2215 zinfo.compress_type = compress_type
2216
Tao Bao58c1b962015-05-20 09:32:18 -07002217 # If perms is given, it has a priority.
2218 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002219 # If perms doesn't set the file type, mark it as a regular file.
2220 if perms & 0o770000 == 0:
2221 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002222 zinfo.external_attr = perms << 16
2223
Tao Baof3282b42015-04-01 11:21:55 -07002224 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002225 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2226
Dan Albert8b72aef2015-03-23 19:13:21 -07002227 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002228 zipfile.ZIP64_LIMIT = saved_zip64_limit
2229
2230
Tao Bao89d7ab22017-12-14 17:05:33 -08002231def ZipDelete(zip_filename, entries):
2232 """Deletes entries from a ZIP file.
2233
2234 Since deleting entries from a ZIP file is not supported, it shells out to
2235 'zip -d'.
2236
2237 Args:
2238 zip_filename: The name of the ZIP file.
2239 entries: The name of the entry, or the list of names to be deleted.
2240
2241 Raises:
2242 AssertionError: In case of non-zero return from 'zip'.
2243 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002244 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002245 entries = [entries]
2246 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002247 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002248
2249
Tao Baof3282b42015-04-01 11:21:55 -07002250def ZipClose(zip_file):
2251 # http://b/18015246
2252 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2253 # central directory.
2254 saved_zip64_limit = zipfile.ZIP64_LIMIT
2255 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2256
2257 zip_file.close()
2258
2259 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002260
2261
2262class DeviceSpecificParams(object):
2263 module = None
2264 def __init__(self, **kwargs):
2265 """Keyword arguments to the constructor become attributes of this
2266 object, which is passed to all functions in the device-specific
2267 module."""
Tao Bao38884282019-07-10 22:20:56 -07002268 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002269 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002270 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002271
2272 if self.module is None:
2273 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002274 if not path:
2275 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002276 try:
2277 if os.path.isdir(path):
2278 info = imp.find_module("releasetools", [path])
2279 else:
2280 d, f = os.path.split(path)
2281 b, x = os.path.splitext(f)
2282 if x == ".py":
2283 f = b
2284 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002285 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002286 self.module = imp.load_module("device_specific", *info)
2287 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002288 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002289
2290 def _DoCall(self, function_name, *args, **kwargs):
2291 """Call the named function in the device-specific module, passing
2292 the given args and kwargs. The first argument to the call will be
2293 the DeviceSpecific object itself. If there is no module, or the
2294 module does not define the function, return the value of the
2295 'default' kwarg (which itself defaults to None)."""
2296 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002297 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002298 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2299
2300 def FullOTA_Assertions(self):
2301 """Called after emitting the block of assertions at the top of a
2302 full OTA package. Implementations can add whatever additional
2303 assertions they like."""
2304 return self._DoCall("FullOTA_Assertions")
2305
Doug Zongkere5ff5902012-01-17 10:55:37 -08002306 def FullOTA_InstallBegin(self):
2307 """Called at the start of full OTA installation."""
2308 return self._DoCall("FullOTA_InstallBegin")
2309
Yifan Hong10c530d2018-12-27 17:34:18 -08002310 def FullOTA_GetBlockDifferences(self):
2311 """Called during full OTA installation and verification.
2312 Implementation should return a list of BlockDifference objects describing
2313 the update on each additional partitions.
2314 """
2315 return self._DoCall("FullOTA_GetBlockDifferences")
2316
Doug Zongker05d3dea2009-06-22 11:32:31 -07002317 def FullOTA_InstallEnd(self):
2318 """Called at the end of full OTA installation; typically this is
2319 used to install the image for the device's baseband processor."""
2320 return self._DoCall("FullOTA_InstallEnd")
2321
2322 def IncrementalOTA_Assertions(self):
2323 """Called after emitting the block of assertions at the top of an
2324 incremental OTA package. Implementations can add whatever
2325 additional assertions they like."""
2326 return self._DoCall("IncrementalOTA_Assertions")
2327
Doug Zongkere5ff5902012-01-17 10:55:37 -08002328 def IncrementalOTA_VerifyBegin(self):
2329 """Called at the start of the verification phase of incremental
2330 OTA installation; additional checks can be placed here to abort
2331 the script before any changes are made."""
2332 return self._DoCall("IncrementalOTA_VerifyBegin")
2333
Doug Zongker05d3dea2009-06-22 11:32:31 -07002334 def IncrementalOTA_VerifyEnd(self):
2335 """Called at the end of the verification phase of incremental OTA
2336 installation; additional checks can be placed here to abort the
2337 script before any changes are made."""
2338 return self._DoCall("IncrementalOTA_VerifyEnd")
2339
Doug Zongkere5ff5902012-01-17 10:55:37 -08002340 def IncrementalOTA_InstallBegin(self):
2341 """Called at the start of incremental OTA installation (after
2342 verification is complete)."""
2343 return self._DoCall("IncrementalOTA_InstallBegin")
2344
Yifan Hong10c530d2018-12-27 17:34:18 -08002345 def IncrementalOTA_GetBlockDifferences(self):
2346 """Called during incremental OTA installation and verification.
2347 Implementation should return a list of BlockDifference objects describing
2348 the update on each additional partitions.
2349 """
2350 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2351
Doug Zongker05d3dea2009-06-22 11:32:31 -07002352 def IncrementalOTA_InstallEnd(self):
2353 """Called at the end of incremental OTA installation; typically
2354 this is used to install the image for the device's baseband
2355 processor."""
2356 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002357
Tao Bao9bc6bb22015-11-09 16:58:28 -08002358 def VerifyOTA_Assertions(self):
2359 return self._DoCall("VerifyOTA_Assertions")
2360
Tao Bao76def242017-11-21 09:25:31 -08002361
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002362class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002363 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002364 self.name = name
2365 self.data = data
2366 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002367 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002368 self.sha1 = sha1(data).hexdigest()
2369
2370 @classmethod
2371 def FromLocalFile(cls, name, diskname):
2372 f = open(diskname, "rb")
2373 data = f.read()
2374 f.close()
2375 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002376
2377 def WriteToTemp(self):
2378 t = tempfile.NamedTemporaryFile()
2379 t.write(self.data)
2380 t.flush()
2381 return t
2382
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002383 def WriteToDir(self, d):
2384 with open(os.path.join(d, self.name), "wb") as fp:
2385 fp.write(self.data)
2386
Geremy Condra36bd3652014-02-06 19:45:10 -08002387 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002388 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002389
Tao Bao76def242017-11-21 09:25:31 -08002390
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002391DIFF_PROGRAM_BY_EXT = {
2392 ".gz" : "imgdiff",
2393 ".zip" : ["imgdiff", "-z"],
2394 ".jar" : ["imgdiff", "-z"],
2395 ".apk" : ["imgdiff", "-z"],
2396 ".img" : "imgdiff",
2397 }
2398
Tao Bao76def242017-11-21 09:25:31 -08002399
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002400class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002401 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002402 self.tf = tf
2403 self.sf = sf
2404 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002405 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002406
2407 def ComputePatch(self):
2408 """Compute the patch (as a string of data) needed to turn sf into
2409 tf. Returns the same tuple as GetPatch()."""
2410
2411 tf = self.tf
2412 sf = self.sf
2413
Doug Zongker24cd2802012-08-14 16:36:15 -07002414 if self.diff_program:
2415 diff_program = self.diff_program
2416 else:
2417 ext = os.path.splitext(tf.name)[1]
2418 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002419
2420 ttemp = tf.WriteToTemp()
2421 stemp = sf.WriteToTemp()
2422
2423 ext = os.path.splitext(tf.name)[1]
2424
2425 try:
2426 ptemp = tempfile.NamedTemporaryFile()
2427 if isinstance(diff_program, list):
2428 cmd = copy.copy(diff_program)
2429 else:
2430 cmd = [diff_program]
2431 cmd.append(stemp.name)
2432 cmd.append(ttemp.name)
2433 cmd.append(ptemp.name)
2434 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002435 err = []
2436 def run():
2437 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002438 if e:
2439 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002440 th = threading.Thread(target=run)
2441 th.start()
2442 th.join(timeout=300) # 5 mins
2443 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002444 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002445 p.terminate()
2446 th.join(5)
2447 if th.is_alive():
2448 p.kill()
2449 th.join()
2450
Tianjie Xua2a9f992018-01-05 15:15:54 -08002451 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002452 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002453 self.patch = None
2454 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002455 diff = ptemp.read()
2456 finally:
2457 ptemp.close()
2458 stemp.close()
2459 ttemp.close()
2460
2461 self.patch = diff
2462 return self.tf, self.sf, self.patch
2463
2464
2465 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08002466 """Returns a tuple of (target_file, source_file, patch_data).
2467
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002468 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08002469 computing the patch failed.
2470 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002471 return self.tf, self.sf, self.patch
2472
2473
2474def ComputeDifferences(diffs):
2475 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07002476 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002477
2478 # Do the largest files first, to try and reduce the long-pole effect.
2479 by_size = [(i.tf.size, i) for i in diffs]
2480 by_size.sort(reverse=True)
2481 by_size = [i[1] for i in by_size]
2482
2483 lock = threading.Lock()
2484 diff_iter = iter(by_size) # accessed under lock
2485
2486 def worker():
2487 try:
2488 lock.acquire()
2489 for d in diff_iter:
2490 lock.release()
2491 start = time.time()
2492 d.ComputePatch()
2493 dur = time.time() - start
2494 lock.acquire()
2495
2496 tf, sf, patch = d.GetPatch()
2497 if sf.name == tf.name:
2498 name = tf.name
2499 else:
2500 name = "%s (%s)" % (tf.name, sf.name)
2501 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07002502 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002503 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07002504 logger.info(
2505 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
2506 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002507 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07002508 except Exception:
2509 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002510 raise
2511
2512 # start worker threads; wait for them all to finish.
2513 threads = [threading.Thread(target=worker)
2514 for i in range(OPTIONS.worker_threads)]
2515 for th in threads:
2516 th.start()
2517 while threads:
2518 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07002519
2520
Dan Albert8b72aef2015-03-23 19:13:21 -07002521class BlockDifference(object):
2522 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07002523 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002524 self.tgt = tgt
2525 self.src = src
2526 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002527 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07002528 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002529
Tao Baodd2a5892015-03-12 12:32:37 -07002530 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08002531 version = max(
2532 int(i) for i in
2533 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08002534 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07002535 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07002536
Tianjie Xu41976c72019-07-03 13:57:01 -07002537 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
2538 version=self.version,
2539 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08002540 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002541 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08002542 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07002543 self.touched_src_ranges = b.touched_src_ranges
2544 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002545
Yifan Hong10c530d2018-12-27 17:34:18 -08002546 # On devices with dynamic partitions, for new partitions,
2547 # src is None but OPTIONS.source_info_dict is not.
2548 if OPTIONS.source_info_dict is None:
2549 is_dynamic_build = OPTIONS.info_dict.get(
2550 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002551 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07002552 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08002553 is_dynamic_build = OPTIONS.source_info_dict.get(
2554 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002555 is_dynamic_source = partition in shlex.split(
2556 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08002557
Yifan Hongbb2658d2019-01-25 12:30:58 -08002558 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08002559 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
2560
Yifan Hongbb2658d2019-01-25 12:30:58 -08002561 # For dynamic partitions builds, check partition list in both source
2562 # and target build because new partitions may be added, and existing
2563 # partitions may be removed.
2564 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
2565
Yifan Hong10c530d2018-12-27 17:34:18 -08002566 if is_dynamic:
2567 self.device = 'map_partition("%s")' % partition
2568 else:
2569 if OPTIONS.source_info_dict is None:
2570 _, device_path = GetTypeAndDevice("/" + partition, OPTIONS.info_dict)
2571 else:
2572 _, device_path = GetTypeAndDevice("/" + partition,
2573 OPTIONS.source_info_dict)
2574 self.device = '"%s"' % device_path
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002575
Tao Baod8d14be2016-02-04 14:26:02 -08002576 @property
2577 def required_cache(self):
2578 return self._required_cache
2579
Tao Bao76def242017-11-21 09:25:31 -08002580 def WriteScript(self, script, output_zip, progress=None,
2581 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002582 if not self.src:
2583 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08002584 script.Print("Patching %s image unconditionally..." % (self.partition,))
2585 else:
2586 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002587
Dan Albert8b72aef2015-03-23 19:13:21 -07002588 if progress:
2589 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002590 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08002591
2592 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08002593 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002594
Tao Bao9bc6bb22015-11-09 16:58:28 -08002595 def WriteStrictVerifyScript(self, script):
2596 """Verify all the blocks in the care_map, including clobbered blocks.
2597
2598 This differs from the WriteVerifyScript() function: a) it prints different
2599 error messages; b) it doesn't allow half-way updated images to pass the
2600 verification."""
2601
2602 partition = self.partition
2603 script.Print("Verifying %s..." % (partition,))
2604 ranges = self.tgt.care_map
2605 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002606 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002607 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
2608 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08002609 self.device, ranges_str,
2610 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08002611 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08002612 script.AppendExtra("")
2613
Tao Baod522bdc2016-04-12 15:53:16 -07002614 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00002615 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07002616
2617 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08002618 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00002619 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07002620
2621 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002622 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08002623 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07002624 ranges = self.touched_src_ranges
2625 expected_sha1 = self.touched_src_sha1
2626 else:
2627 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
2628 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07002629
2630 # No blocks to be checked, skipping.
2631 if not ranges:
2632 return
2633
Tao Bao5ece99d2015-05-12 11:42:31 -07002634 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002635 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002636 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08002637 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
2638 '"%s.patch.dat")) then' % (
2639 self.device, ranges_str, expected_sha1,
2640 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07002641 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07002642 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00002643
Tianjie Xufc3422a2015-12-15 11:53:59 -08002644 if self.version >= 4:
2645
2646 # Bug: 21124327
2647 # When generating incrementals for the system and vendor partitions in
2648 # version 4 or newer, explicitly check the first block (which contains
2649 # the superblock) of the partition to see if it's what we expect. If
2650 # this check fails, give an explicit log message about the partition
2651 # having been remounted R/W (the most likely explanation).
2652 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08002653 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08002654
2655 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07002656 if partition == "system":
2657 code = ErrorCode.SYSTEM_RECOVER_FAILURE
2658 else:
2659 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08002660 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08002661 'ifelse (block_image_recover({device}, "{ranges}") && '
2662 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08002663 'package_extract_file("{partition}.transfer.list"), '
2664 '"{partition}.new.dat", "{partition}.patch.dat"), '
2665 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07002666 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08002667 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07002668 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002669
Tao Baodd2a5892015-03-12 12:32:37 -07002670 # Abort the OTA update. Note that the incremental OTA cannot be applied
2671 # even if it may match the checksum of the target partition.
2672 # a) If version < 3, operations like move and erase will make changes
2673 # unconditionally and damage the partition.
2674 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08002675 else:
Tianjie Xu209db462016-05-24 17:34:52 -07002676 if partition == "system":
2677 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
2678 else:
2679 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
2680 script.AppendExtra((
2681 'abort("E%d: %s partition has unexpected contents");\n'
2682 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002683
Yifan Hong10c530d2018-12-27 17:34:18 -08002684 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07002685 partition = self.partition
2686 script.Print('Verifying the updated %s image...' % (partition,))
2687 # Unlike pre-install verification, clobbered_blocks should not be ignored.
2688 ranges = self.tgt.care_map
2689 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002690 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002691 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002692 self.device, ranges_str,
2693 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07002694
2695 # Bug: 20881595
2696 # Verify that extended blocks are really zeroed out.
2697 if self.tgt.extended:
2698 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002699 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002700 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002701 self.device, ranges_str,
2702 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07002703 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07002704 if partition == "system":
2705 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
2706 else:
2707 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07002708 script.AppendExtra(
2709 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002710 ' abort("E%d: %s partition has unexpected non-zero contents after '
2711 'OTA update");\n'
2712 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07002713 else:
2714 script.Print('Verified the updated %s image.' % (partition,))
2715
Tianjie Xu209db462016-05-24 17:34:52 -07002716 if partition == "system":
2717 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
2718 else:
2719 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
2720
Tao Bao5fcaaef2015-06-01 13:40:49 -07002721 script.AppendExtra(
2722 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002723 ' abort("E%d: %s partition has unexpected contents after OTA '
2724 'update");\n'
2725 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07002726
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002727 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08002728 ZipWrite(output_zip,
2729 '{}.transfer.list'.format(self.path),
2730 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002731
Tao Bao76def242017-11-21 09:25:31 -08002732 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
2733 # its size. Quailty 9 almost triples the compression time but doesn't
2734 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002735 # zip | brotli(quality 6) | brotli(quality 9)
2736 # compressed_size: 942M | 869M (~8% reduced) | 854M
2737 # compression_time: 75s | 265s | 719s
2738 # decompression_time: 15s | 25s | 25s
2739
2740 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01002741 brotli_cmd = ['brotli', '--quality=6',
2742 '--output={}.new.dat.br'.format(self.path),
2743 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002744 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07002745 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002746
2747 new_data_name = '{}.new.dat.br'.format(self.partition)
2748 ZipWrite(output_zip,
2749 '{}.new.dat.br'.format(self.path),
2750 new_data_name,
2751 compress_type=zipfile.ZIP_STORED)
2752 else:
2753 new_data_name = '{}.new.dat'.format(self.partition)
2754 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
2755
Dan Albert8e0178d2015-01-27 15:53:15 -08002756 ZipWrite(output_zip,
2757 '{}.patch.dat'.format(self.path),
2758 '{}.patch.dat'.format(self.partition),
2759 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002760
Tianjie Xu209db462016-05-24 17:34:52 -07002761 if self.partition == "system":
2762 code = ErrorCode.SYSTEM_UPDATE_FAILURE
2763 else:
2764 code = ErrorCode.VENDOR_UPDATE_FAILURE
2765
Yifan Hong10c530d2018-12-27 17:34:18 -08002766 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08002767 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002768 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002769 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002770 device=self.device, partition=self.partition,
2771 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07002772 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002773
Dan Albert8b72aef2015-03-23 19:13:21 -07002774 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00002775 data = source.ReadRangeSet(ranges)
2776 ctx = sha1()
2777
2778 for p in data:
2779 ctx.update(p)
2780
2781 return ctx.hexdigest()
2782
Tao Baoe9b61912015-07-09 17:37:49 -07002783 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
2784 """Return the hash value for all zero blocks."""
2785 zero_block = '\x00' * 4096
2786 ctx = sha1()
2787 for _ in range(num_blocks):
2788 ctx.update(zero_block)
2789
2790 return ctx.hexdigest()
2791
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002792
Tianjie Xu41976c72019-07-03 13:57:01 -07002793# Expose these two classes to support vendor-specific scripts
2794DataImage = images.DataImage
2795EmptyImage = images.EmptyImage
2796
Tao Bao76def242017-11-21 09:25:31 -08002797
Doug Zongker96a57e72010-09-26 14:57:41 -07002798# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07002799PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07002800 "ext4": "EMMC",
2801 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07002802 "f2fs": "EMMC",
2803 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07002804}
Doug Zongker96a57e72010-09-26 14:57:41 -07002805
Tao Bao76def242017-11-21 09:25:31 -08002806
Doug Zongker96a57e72010-09-26 14:57:41 -07002807def GetTypeAndDevice(mount_point, info):
2808 fstab = info["fstab"]
2809 if fstab:
Dan Albert8b72aef2015-03-23 19:13:21 -07002810 return (PARTITION_TYPES[fstab[mount_point].fs_type],
2811 fstab[mount_point].device)
Doug Zongker96a57e72010-09-26 14:57:41 -07002812 else:
Dan Albert8b72aef2015-03-23 19:13:21 -07002813 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002814
2815
2816def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08002817 """Parses and converts a PEM-encoded certificate into DER-encoded.
2818
2819 This gives the same result as `openssl x509 -in <filename> -outform DER`.
2820
2821 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08002822 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08002823 """
2824 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002825 save = False
2826 for line in data.split("\n"):
2827 if "--END CERTIFICATE--" in line:
2828 break
2829 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08002830 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002831 if "--BEGIN CERTIFICATE--" in line:
2832 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08002833 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002834 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08002835
Tao Bao04e1f012018-02-04 12:13:35 -08002836
2837def ExtractPublicKey(cert):
2838 """Extracts the public key (PEM-encoded) from the given certificate file.
2839
2840 Args:
2841 cert: The certificate filename.
2842
2843 Returns:
2844 The public key string.
2845
2846 Raises:
2847 AssertionError: On non-zero return from 'openssl'.
2848 """
2849 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
2850 # While openssl 1.1 writes the key into the given filename followed by '-out',
2851 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
2852 # stdout instead.
2853 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
2854 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
2855 pubkey, stderrdata = proc.communicate()
2856 assert proc.returncode == 0, \
2857 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
2858 return pubkey
2859
2860
Tao Bao1ac886e2019-06-26 11:58:22 -07002861def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07002862 """Extracts the AVB public key from the given public or private key.
2863
2864 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07002865 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07002866 key: The input key file, which should be PEM-encoded public or private key.
2867
2868 Returns:
2869 The path to the extracted AVB public key file.
2870 """
2871 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
2872 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07002873 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07002874 return output
2875
2876
Doug Zongker412c02f2014-02-13 10:58:24 -08002877def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
2878 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08002879 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08002880
Tao Bao6d5d6232018-03-09 17:04:42 -08002881 Most of the space in the boot and recovery images is just the kernel, which is
2882 identical for the two, so the resulting patch should be efficient. Add it to
2883 the output zip, along with a shell script that is run from init.rc on first
2884 boot to actually do the patching and install the new recovery image.
2885
2886 Args:
2887 input_dir: The top-level input directory of the target-files.zip.
2888 output_sink: The callback function that writes the result.
2889 recovery_img: File object for the recovery image.
2890 boot_img: File objects for the boot image.
2891 info_dict: A dict returned by common.LoadInfoDict() on the input
2892 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08002893 """
Doug Zongker412c02f2014-02-13 10:58:24 -08002894 if info_dict is None:
2895 info_dict = OPTIONS.info_dict
2896
Tao Bao6d5d6232018-03-09 17:04:42 -08002897 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002898 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
2899
2900 if board_uses_vendorimage:
2901 # In this case, the output sink is rooted at VENDOR
2902 recovery_img_path = "etc/recovery.img"
2903 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
2904 sh_dir = "bin"
2905 else:
2906 # In this case the output sink is rooted at SYSTEM
2907 recovery_img_path = "vendor/etc/recovery.img"
2908 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
2909 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08002910
Tao Baof2cffbd2015-07-22 12:33:18 -07002911 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002912 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07002913
2914 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08002915 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002916 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08002917 # With system-root-image, boot and recovery images will have mismatching
2918 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
2919 # to handle such a case.
2920 if system_root_image:
2921 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07002922 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08002923 assert not os.path.exists(path)
2924 else:
2925 diff_program = ["imgdiff"]
2926 if os.path.exists(path):
2927 diff_program.append("-b")
2928 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07002929 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08002930 else:
2931 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07002932
2933 d = Difference(recovery_img, boot_img, diff_program=diff_program)
2934 _, _, patch = d.ComputePatch()
2935 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08002936
Dan Albertebb19aa2015-03-27 19:11:53 -07002937 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07002938 # The following GetTypeAndDevice()s need to use the path in the target
2939 # info_dict instead of source_info_dict.
Dan Albertebb19aa2015-03-27 19:11:53 -07002940 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict)
2941 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict)
2942 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07002943 return
Doug Zongkerc9253822014-02-04 12:17:58 -08002944
Tao Baof2cffbd2015-07-22 12:33:18 -07002945 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002946
2947 # Note that we use /vendor to refer to the recovery resources. This will
2948 # work for a separate vendor partition mounted at /vendor or a
2949 # /system/vendor subdirectory on the system partition, for which init will
2950 # create a symlink from /vendor to /system/vendor.
2951
2952 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002953if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
2954 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002955 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07002956 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
2957 log -t recovery "Installing new recovery image: succeeded" || \\
2958 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07002959else
2960 log -t recovery "Recovery image already installed"
2961fi
2962""" % {'type': recovery_type,
2963 'device': recovery_device,
2964 'sha1': recovery_img.sha1,
2965 'size': recovery_img.size}
2966 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07002967 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002968if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
2969 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002970 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07002971 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
2972 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
2973 log -t recovery "Installing new recovery image: succeeded" || \\
2974 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08002975else
2976 log -t recovery "Recovery image already installed"
2977fi
Dan Albert8b72aef2015-03-23 19:13:21 -07002978""" % {'boot_size': boot_img.size,
2979 'boot_sha1': boot_img.sha1,
2980 'recovery_size': recovery_img.size,
2981 'recovery_sha1': recovery_img.sha1,
2982 'boot_type': boot_type,
2983 'boot_device': boot_device,
2984 'recovery_type': recovery_type,
2985 'recovery_device': recovery_device,
2986 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08002987
Bill Peckhame868aec2019-09-17 17:06:47 -07002988 # The install script location moved from /system/etc to /system/bin in the L
2989 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
2990 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07002991
Tao Bao32fcdab2018-10-12 10:30:39 -07002992 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08002993
Tao Baoda30cfa2017-12-01 16:19:46 -08002994 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08002995
2996
2997class DynamicPartitionUpdate(object):
2998 def __init__(self, src_group=None, tgt_group=None, progress=None,
2999 block_difference=None):
3000 self.src_group = src_group
3001 self.tgt_group = tgt_group
3002 self.progress = progress
3003 self.block_difference = block_difference
3004
3005 @property
3006 def src_size(self):
3007 if not self.block_difference:
3008 return 0
3009 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3010
3011 @property
3012 def tgt_size(self):
3013 if not self.block_difference:
3014 return 0
3015 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3016
3017 @staticmethod
3018 def _GetSparseImageSize(img):
3019 if not img:
3020 return 0
3021 return img.blocksize * img.total_blocks
3022
3023
3024class DynamicGroupUpdate(object):
3025 def __init__(self, src_size=None, tgt_size=None):
3026 # None: group does not exist. 0: no size limits.
3027 self.src_size = src_size
3028 self.tgt_size = tgt_size
3029
3030
3031class DynamicPartitionsDifference(object):
3032 def __init__(self, info_dict, block_diffs, progress_dict=None,
3033 source_info_dict=None):
3034 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003035 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003036
3037 self._remove_all_before_apply = False
3038 if source_info_dict is None:
3039 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003040 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003041
Tao Baof1113e92019-06-18 12:10:14 -07003042 block_diff_dict = collections.OrderedDict(
3043 [(e.partition, e) for e in block_diffs])
3044
Yifan Hong10c530d2018-12-27 17:34:18 -08003045 assert len(block_diff_dict) == len(block_diffs), \
3046 "Duplicated BlockDifference object for {}".format(
3047 [partition for partition, count in
3048 collections.Counter(e.partition for e in block_diffs).items()
3049 if count > 1])
3050
Yifan Hong79997e52019-01-23 16:56:19 -08003051 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003052
3053 for p, block_diff in block_diff_dict.items():
3054 self._partition_updates[p] = DynamicPartitionUpdate()
3055 self._partition_updates[p].block_difference = block_diff
3056
3057 for p, progress in progress_dict.items():
3058 if p in self._partition_updates:
3059 self._partition_updates[p].progress = progress
3060
3061 tgt_groups = shlex.split(info_dict.get(
3062 "super_partition_groups", "").strip())
3063 src_groups = shlex.split(source_info_dict.get(
3064 "super_partition_groups", "").strip())
3065
3066 for g in tgt_groups:
3067 for p in shlex.split(info_dict.get(
3068 "super_%s_partition_list" % g, "").strip()):
3069 assert p in self._partition_updates, \
3070 "{} is in target super_{}_partition_list but no BlockDifference " \
3071 "object is provided.".format(p, g)
3072 self._partition_updates[p].tgt_group = g
3073
3074 for g in src_groups:
3075 for p in shlex.split(source_info_dict.get(
3076 "super_%s_partition_list" % g, "").strip()):
3077 assert p in self._partition_updates, \
3078 "{} is in source super_{}_partition_list but no BlockDifference " \
3079 "object is provided.".format(p, g)
3080 self._partition_updates[p].src_group = g
3081
Yifan Hong45433e42019-01-18 13:55:25 -08003082 target_dynamic_partitions = set(shlex.split(info_dict.get(
3083 "dynamic_partition_list", "").strip()))
3084 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3085 if u.tgt_size)
3086 assert block_diffs_with_target == target_dynamic_partitions, \
3087 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3088 list(target_dynamic_partitions), list(block_diffs_with_target))
3089
3090 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3091 "dynamic_partition_list", "").strip()))
3092 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3093 if u.src_size)
3094 assert block_diffs_with_source == source_dynamic_partitions, \
3095 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3096 list(source_dynamic_partitions), list(block_diffs_with_source))
3097
Yifan Hong10c530d2018-12-27 17:34:18 -08003098 if self._partition_updates:
3099 logger.info("Updating dynamic partitions %s",
3100 self._partition_updates.keys())
3101
Yifan Hong79997e52019-01-23 16:56:19 -08003102 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003103
3104 for g in tgt_groups:
3105 self._group_updates[g] = DynamicGroupUpdate()
3106 self._group_updates[g].tgt_size = int(info_dict.get(
3107 "super_%s_group_size" % g, "0").strip())
3108
3109 for g in src_groups:
3110 if g not in self._group_updates:
3111 self._group_updates[g] = DynamicGroupUpdate()
3112 self._group_updates[g].src_size = int(source_info_dict.get(
3113 "super_%s_group_size" % g, "0").strip())
3114
3115 self._Compute()
3116
3117 def WriteScript(self, script, output_zip, write_verify_script=False):
3118 script.Comment('--- Start patching dynamic partitions ---')
3119 for p, u in self._partition_updates.items():
3120 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3121 script.Comment('Patch partition %s' % p)
3122 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3123 write_verify_script=False)
3124
3125 op_list_path = MakeTempFile()
3126 with open(op_list_path, 'w') as f:
3127 for line in self._op_list:
3128 f.write('{}\n'.format(line))
3129
3130 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3131
3132 script.Comment('Update dynamic partition metadata')
3133 script.AppendExtra('assert(update_dynamic_partitions('
3134 'package_extract_file("dynamic_partitions_op_list")));')
3135
3136 if write_verify_script:
3137 for p, u in self._partition_updates.items():
3138 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3139 u.block_difference.WritePostInstallVerifyScript(script)
3140 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3141
3142 for p, u in self._partition_updates.items():
3143 if u.tgt_size and u.src_size <= u.tgt_size:
3144 script.Comment('Patch partition %s' % p)
3145 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3146 write_verify_script=write_verify_script)
3147 if write_verify_script:
3148 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3149
3150 script.Comment('--- End patching dynamic partitions ---')
3151
3152 def _Compute(self):
3153 self._op_list = list()
3154
3155 def append(line):
3156 self._op_list.append(line)
3157
3158 def comment(line):
3159 self._op_list.append("# %s" % line)
3160
3161 if self._remove_all_before_apply:
3162 comment('Remove all existing dynamic partitions and groups before '
3163 'applying full OTA')
3164 append('remove_all_groups')
3165
3166 for p, u in self._partition_updates.items():
3167 if u.src_group and not u.tgt_group:
3168 append('remove %s' % p)
3169
3170 for p, u in self._partition_updates.items():
3171 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3172 comment('Move partition %s from %s to default' % (p, u.src_group))
3173 append('move %s default' % p)
3174
3175 for p, u in self._partition_updates.items():
3176 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3177 comment('Shrink partition %s from %d to %d' %
3178 (p, u.src_size, u.tgt_size))
3179 append('resize %s %s' % (p, u.tgt_size))
3180
3181 for g, u in self._group_updates.items():
3182 if u.src_size is not None and u.tgt_size is None:
3183 append('remove_group %s' % g)
3184 if (u.src_size is not None and u.tgt_size is not None and
3185 u.src_size > u.tgt_size):
3186 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3187 append('resize_group %s %d' % (g, u.tgt_size))
3188
3189 for g, u in self._group_updates.items():
3190 if u.src_size is None and u.tgt_size is not None:
3191 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3192 append('add_group %s %d' % (g, u.tgt_size))
3193 if (u.src_size is not None and u.tgt_size is not None and
3194 u.src_size < u.tgt_size):
3195 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3196 append('resize_group %s %d' % (g, u.tgt_size))
3197
3198 for p, u in self._partition_updates.items():
3199 if u.tgt_group and not u.src_group:
3200 comment('Add partition %s to group %s' % (p, u.tgt_group))
3201 append('add %s %s' % (p, u.tgt_group))
3202
3203 for p, u in self._partition_updates.items():
3204 if u.tgt_size and u.src_size < u.tgt_size:
3205 comment('Grow partition %s from %d to %d' % (p, u.src_size, u.tgt_size))
3206 append('resize %s %d' % (p, u.tgt_size))
3207
3208 for p, u in self._partition_updates.items():
3209 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3210 comment('Move partition %s from default to %s' %
3211 (p, u.tgt_group))
3212 append('move %s %s' % (p, u.tgt_group))